All Downloads are FREE. Search and download functionalities are using the official Maven repository.

waffle.spring.WindowsAuthenticationToken Maven / Gradle / Ivy

/*
 * MIT License
 *
 * Copyright (c) 2010-2024 The Waffle Project Contributors: https://github.com/Waffle/waffle/graphs/contributors
 *
 * Permission is hereby granted, free of charge, to any person obtaining a copy
 * of this software and associated documentation files (the "Software"), to deal
 * in the Software without restriction, including without limitation the rights
 * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell
 * copies of the Software, and to permit persons to whom the Software is
 * furnished to do so, subject to the following conditions:
 *
 * The above copyright notice and this permission notice shall be included in all
 * copies or substantial portions of the Software.
 *
 * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
 * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY,
 * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE
 * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER
 * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM,
 * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
 * SOFTWARE.
 */
package waffle.spring;

import java.util.ArrayList;
import java.util.Collection;

import org.springframework.security.core.Authentication;
import org.springframework.security.core.GrantedAuthority;
import org.springframework.security.core.authority.SimpleGrantedAuthority;

import waffle.servlet.WindowsPrincipal;
import waffle.windows.auth.WindowsAccount;

/**
 * A Windows authentication token.
 */
public class WindowsAuthenticationToken implements Authentication {

    /** The Constant serialVersionUID. */
    private static final long serialVersionUID = 1L;

    /**
     * The {@link GrantedAuthorityFactory} that is used by default if a custom one is not specified. This default
     * {@link GrantedAuthorityFactory} is a {@link FqnGrantedAuthorityFactory} with prefix {@code "ROLE_"} and will
     * convert the fqn to uppercase
     */
    public static final GrantedAuthorityFactory DEFAULT_GRANTED_AUTHORITY_FACTORY = new FqnGrantedAuthorityFactory(
            "ROLE_", true);

    /**
     * The {@link GrantedAuthority} that will be added to every WindowsAuthenticationToken, unless another (or null) is
     * specified.
     */
    public static final GrantedAuthority DEFAULT_GRANTED_AUTHORITY = new SimpleGrantedAuthority("ROLE_USER");

    /** The principal. */
    private final WindowsPrincipal principal;

    /** The authorities. */
    private final Collection authorities;

    /**
     * Convenience constructor that calls
     * {@link #WindowsAuthenticationToken(WindowsPrincipal, GrantedAuthorityFactory, GrantedAuthority)} with:
     * 
    *
  • the given identity,
  • *
  • the {@link #DEFAULT_GRANTED_AUTHORITY_FACTORY}
  • *
  • the {@link #DEFAULT_GRANTED_AUTHORITY}
  • *
* . * * @param identity * the identity */ public WindowsAuthenticationToken(final WindowsPrincipal identity) { this(identity, WindowsAuthenticationToken.DEFAULT_GRANTED_AUTHORITY_FACTORY, WindowsAuthenticationToken.DEFAULT_GRANTED_AUTHORITY); } /** * Instantiates a new windows authentication token. * * @param identity * The {@link WindowsPrincipal} for which this token exists. * @param grantedAuthorityFactory * used to construct {@link GrantedAuthority}s for each of the groups to which the * {@link WindowsPrincipal} belongs * @param defaultGrantedAuthority * if not null, this {@link GrantedAuthority} will always be added to the granted authorities list */ public WindowsAuthenticationToken(final WindowsPrincipal identity, final GrantedAuthorityFactory grantedAuthorityFactory, final GrantedAuthority defaultGrantedAuthority) { this.principal = identity; this.authorities = new ArrayList<>(); if (defaultGrantedAuthority != null) { this.authorities.add(defaultGrantedAuthority); } for (final WindowsAccount group : this.principal.getGroups().values()) { this.authorities.add(grantedAuthorityFactory.createGrantedAuthority(group)); } } @Override public Collection getAuthorities() { return this.authorities; } @Override public Object getCredentials() { return null; } @Override public Object getDetails() { return null; } @Override public Object getPrincipal() { return this.principal; } @Override public boolean isAuthenticated() { return this.principal != null; } @Override public void setAuthenticated(final boolean authenticated) { throw new IllegalArgumentException(); } @Override public String getName() { return this.principal.getName(); } }




© 2015 - 2025 Weber Informatics LLC | Privacy Policy