mobile/android/thirdparty/ch/boye/httpclientandroidlib/impl/client/DefaultUserTokenHandler.java

Wed, 31 Dec 2014 07:22:50 +0100

author
Michael Schloh von Bennewitz <michael@schloh.com>
date
Wed, 31 Dec 2014 07:22:50 +0100
branch
TOR_BUG_3246
changeset 4
fc2d59ddac77
permissions
-rw-r--r--

Correct previous dual key logic pending first delivery installment.

michael@0 1 /*
michael@0 2 * ====================================================================
michael@0 3 *
michael@0 4 * Licensed to the Apache Software Foundation (ASF) under one or more
michael@0 5 * contributor license agreements. See the NOTICE file distributed with
michael@0 6 * this work for additional information regarding copyright ownership.
michael@0 7 * The ASF licenses this file to You under the Apache License, Version 2.0
michael@0 8 * (the "License"); you may not use this file except in compliance with
michael@0 9 * the License. You may obtain a copy of the License at
michael@0 10 *
michael@0 11 * http://www.apache.org/licenses/LICENSE-2.0
michael@0 12 *
michael@0 13 * Unless required by applicable law or agreed to in writing, software
michael@0 14 * distributed under the License is distributed on an "AS IS" BASIS,
michael@0 15 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
michael@0 16 * See the License for the specific language governing permissions and
michael@0 17 * limitations under the License.
michael@0 18 * ====================================================================
michael@0 19 *
michael@0 20 * This software consists of voluntary contributions made by many
michael@0 21 * individuals on behalf of the Apache Software Foundation. For more
michael@0 22 * information on the Apache Software Foundation, please see
michael@0 23 * <http://www.apache.org/>.
michael@0 24 *
michael@0 25 */
michael@0 26
michael@0 27 package ch.boye.httpclientandroidlib.impl.client;
michael@0 28
michael@0 29 import java.security.Principal;
michael@0 30
michael@0 31 import javax.net.ssl.SSLSession;
michael@0 32
michael@0 33 import ch.boye.httpclientandroidlib.annotation.Immutable;
michael@0 34
michael@0 35 import ch.boye.httpclientandroidlib.auth.AuthScheme;
michael@0 36 import ch.boye.httpclientandroidlib.auth.AuthState;
michael@0 37 import ch.boye.httpclientandroidlib.auth.Credentials;
michael@0 38 import ch.boye.httpclientandroidlib.client.UserTokenHandler;
michael@0 39 import ch.boye.httpclientandroidlib.client.protocol.ClientContext;
michael@0 40 import ch.boye.httpclientandroidlib.conn.HttpRoutedConnection;
michael@0 41 import ch.boye.httpclientandroidlib.protocol.ExecutionContext;
michael@0 42 import ch.boye.httpclientandroidlib.protocol.HttpContext;
michael@0 43
michael@0 44 /**
michael@0 45 * Default implementation of {@link UserTokenHandler}. This class will use
michael@0 46 * an instance of {@link Principal} as a state object for HTTP connections,
michael@0 47 * if it can be obtained from the given execution context. This helps ensure
michael@0 48 * persistent connections created with a particular user identity within
michael@0 49 * a particular security context can be reused by the same user only.
michael@0 50 * <p>
michael@0 51 * DefaultUserTokenHandler will use the user principle of connection
michael@0 52 * based authentication schemes such as NTLM or that of the SSL session
michael@0 53 * with the client authentication turned on. If both are unavailable,
michael@0 54 * <code>null</code> token will be returned.
michael@0 55 *
michael@0 56 * @since 4.0
michael@0 57 */
michael@0 58 @Immutable
michael@0 59 public class DefaultUserTokenHandler implements UserTokenHandler {
michael@0 60
michael@0 61 public Object getUserToken(final HttpContext context) {
michael@0 62
michael@0 63 Principal userPrincipal = null;
michael@0 64
michael@0 65 AuthState targetAuthState = (AuthState) context.getAttribute(
michael@0 66 ClientContext.TARGET_AUTH_STATE);
michael@0 67 if (targetAuthState != null) {
michael@0 68 userPrincipal = getAuthPrincipal(targetAuthState);
michael@0 69 if (userPrincipal == null) {
michael@0 70 AuthState proxyAuthState = (AuthState) context.getAttribute(
michael@0 71 ClientContext.PROXY_AUTH_STATE);
michael@0 72 userPrincipal = getAuthPrincipal(proxyAuthState);
michael@0 73 }
michael@0 74 }
michael@0 75
michael@0 76 if (userPrincipal == null) {
michael@0 77 HttpRoutedConnection conn = (HttpRoutedConnection) context.getAttribute(
michael@0 78 ExecutionContext.HTTP_CONNECTION);
michael@0 79 if (conn.isOpen()) {
michael@0 80 SSLSession sslsession = conn.getSSLSession();
michael@0 81 if (sslsession != null) {
michael@0 82 userPrincipal = sslsession.getLocalPrincipal();
michael@0 83 }
michael@0 84 }
michael@0 85 }
michael@0 86
michael@0 87 return userPrincipal;
michael@0 88 }
michael@0 89
michael@0 90 private static Principal getAuthPrincipal(final AuthState authState) {
michael@0 91 AuthScheme scheme = authState.getAuthScheme();
michael@0 92 if (scheme != null && scheme.isComplete() && scheme.isConnectionBased()) {
michael@0 93 Credentials creds = authState.getCredentials();
michael@0 94 if (creds != null) {
michael@0 95 return creds.getUserPrincipal();
michael@0 96 }
michael@0 97 }
michael@0 98 return null;
michael@0 99 }
michael@0 100
michael@0 101 }

mercurial