org.wildfly.security.sasl.external.ExternalSaslClientFactory Maven / Gradle / Ivy
Go to download
Show more of this group Show more artifacts with this name
Show all versions of wildfly-elytron-sasl-external
Show all versions of wildfly-elytron-sasl-external
WildFly Security External SASL Implementation
The newest version!
/*
* JBoss, Home of Professional Open Source.
* Copyright 2014 Red Hat, Inc., and individual contributors
* as indicated by the @author tags.
*
* Licensed under the Apache License, Version 2.0 (the "License");
* you may not use this file except in compliance with the License.
* You may obtain a copy of the License at
*
* http://www.apache.org/licenses/LICENSE-2.0
*
* Unless required by applicable law or agreed to in writing, software
* distributed under the License is distributed on an "AS IS" BASIS,
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
* See the License for the specific language governing permissions and
* limitations under the License.
*/
package org.wildfly.security.sasl.external;
import java.util.Collections;
import java.util.Map;
import javax.security.auth.callback.CallbackHandler;
import javax.security.sasl.Sasl;
import javax.security.sasl.SaslClient;
import javax.security.sasl.SaslClientFactory;
import javax.security.sasl.SaslException;
import org.kohsuke.MetaInfServices;
import org.wildfly.common.array.Arrays2;
import org.wildfly.security.sasl.WildFlySasl;
import org.wildfly.security.sasl.util.SaslMechanismInformation;
/**
* Implementation of the SASL {@code EXTERNAL} client mechanism. See RFC 4422
* appendix A for more information about the {@code EXTERNAL} mechanism.
*
* @author David M. Lloyd
*/
@MetaInfServices(value = SaslClientFactory.class)
public final class ExternalSaslClientFactory implements SaslClientFactory {
public SaslClient createSaslClient(final String[] mechanisms, final String authorizationId, final String protocol, final String serverName, final Map props, final CallbackHandler cbh) throws SaslException {
if (getMechanismNames(props, false).length != 0) {
for (String mechanism : mechanisms) {
if (SaslMechanismInformation.Names.EXTERNAL.equals(mechanism)) {
return new ExternalSaslClient(authorizationId);
}
}
}
return null;
}
private String[] getMechanismNames(Map props, boolean query) {
if (props == null) props = Collections.emptyMap();
if ("true".equals(props.get(WildFlySasl.MECHANISM_QUERY_ALL)) && query) {
return Arrays2.of(SaslMechanismInformation.Names.EXTERNAL);
}
if ("true".equals(props.get(Sasl.POLICY_FORWARD_SECRECY))
|| "true".equals(props.get(Sasl.POLICY_PASS_CREDENTIALS))
|| "true".equals(props.get(Sasl.POLICY_NOANONYMOUS))) {
return WildFlySasl.NO_NAMES;
}
return Arrays2.of(SaslMechanismInformation.Names.EXTERNAL);
}
@Override
public String[] getMechanismNames(Map props) {
return getMechanismNames(props, true);
}
}