
org.echocat.marquardt.example.keyprovisioning.KeyFileReadingTrustedKeysProvider Maven / Gradle / Ivy
/*
* echocat Marquardt Java SDK, Copyright (c) 2015 echocat
*
* This Source Code Form is subject to the terms of the Mozilla Public
* License, v. 2.0. If a copy of the MPL was not distributed with this
* file, You can obtain one at http://mozilla.org/MPL/2.0/.
*/
package org.echocat.marquardt.example.keyprovisioning;
import org.apache.commons.io.IOUtils;
import org.echocat.marquardt.common.keyprovisioning.TrustedKeysProvider;
import org.slf4j.Logger;
import org.slf4j.LoggerFactory;
import org.springframework.beans.factory.annotation.Autowired;
import org.springframework.beans.factory.annotation.Value;
import org.springframework.stereotype.Component;
import java.io.IOException;
import java.io.InputStream;
import java.nio.file.Files;
import java.nio.file.Path;
import java.nio.file.Paths;
import java.security.GeneralSecurityException;
import java.security.KeyFactory;
import java.security.PublicKey;
import java.security.spec.X509EncodedKeySpec;
import java.util.Arrays;
import java.util.Collection;
import java.util.stream.Collectors;
import static org.echocat.marquardt.common.domain.PublicKeyWithMechanism.Mechanism.rsa;
@Component
public class KeyFileReadingTrustedKeysProvider implements TrustedKeysProvider {
private static final Logger LOGGER = LoggerFactory.getLogger(KeyFileReadingKeyPairProvider.class);
private final Collection _publicKeys;
@Autowired
public KeyFileReadingTrustedKeysProvider(@Value("${authentication.trusted.public.keys.files}") final String publicKeyFiles) {
_publicKeys = loadKeys(publicKeyFiles);
}
@Override
public Collection getPublicKeys() {
return _publicKeys;
}
private Collection loadKeys(final String publicKeyFiles) {
return Arrays.stream(publicKeyFiles.split(",")).map(p -> loadPublicKey(p.trim())).collect(Collectors.toList());
}
private PublicKey loadPublicKey(final String publicKeyFileName) {
LOGGER.debug("Reading public key file {}.", publicKeyFileName);
final byte[] keyFilePayload = readKeyFile(publicKeyFileName);
final X509EncodedKeySpec spec = new X509EncodedKeySpec(keyFilePayload);
try {
final KeyFactory keyFactory = KeyFactory.getInstance(rsa.getJavaInternalName());
return keyFactory.generatePublic(spec);
} catch (final GeneralSecurityException e) {
throw new IllegalArgumentException("Failed to create public key from keyfile " + publicKeyFileName + ".", e);
}
}
private byte[] readKeyFile(final String keyFileName) {
try (final InputStream inputStream = openStreamFromFileOrClasspathResource(keyFileName)) {
if (inputStream == null) {
throw new IllegalArgumentException("Cannot find resource file " + keyFileName);
}
return IOUtils.toByteArray(inputStream);
} catch (final IOException e) {
throw new IllegalArgumentException("Failed to read key file " + keyFileName + ".", e);
}
}
private InputStream openStreamFromFileOrClasspathResource(final String keyFileName) throws IOException {
final Path path = Paths.get(keyFileName);
if (Files.exists(path)) {
return Files.newInputStream(path);
}
return getClass().getClassLoader().getResourceAsStream(keyFileName);
}
}
© 2015 - 2025 Weber Informatics LLC | Privacy Policy