Examples of SecurityConstraintMetaData


Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addExcluded(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = excluded
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("excluded");
      // web-resource-collection/web-resource-name = No Access
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("No Access");
      sc1.getResourceCollections().add(wrc1);

      wrc1.getUrlPatterns().add("/excluded/*");
      wrc1.getUrlPatterns().add("/restricted/get-only/excluded/*");
      wrc1.getUrlPatterns().add("/restricted/post-only/excluded/*");
      wrc1.getUrlPatterns().add("/restricted/any/excluded/*");
      wrc1.getUrlPatterns().add("/excluded/*");

      // web-resource-collection/web-resource-name = No Access
      WebResourceCollectionMetaData wrc2 = new WebResourceCollectionMetaData();
      wrc2.setName("No Access");
      sc1.getResourceCollections().add(wrc2);
      wrc2.getUrlPatterns().add("/restricted/*");
      wrc2.getUrlPatterns().add("DELETE");
      wrc2.getUrlPatterns().add("PUT");
      wrc2.getUrlPatterns().add("HEAD");
      wrc2.getUrlPatterns().add("OPTIONS");
      wrc2.getUrlPatterns().add("TRACE");
      wrc2.getUrlPatterns().add("GET");
      wrc2.getUrlPatterns().add("POST");

      // <auth-constraint />
      AuthConstraintMetaData excluded = new AuthConstraintMetaData();
      sc1.setAuthConstraint(excluded);

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);    
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addAllAccessSC(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = AllAccessSC
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("AllAccessSC");
      // web-resource-collection/web-resource-name = All Access
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("All Access");
      sc1.getResourceCollections().add(wrc1);

      // All Access
      wrc1.getUrlPatterns().add("/unchecked/*");
      wrc1.getHttpMethods().add("DELETE");
      wrc1.getHttpMethods().add("PUT");
      wrc1.getHttpMethods().add("HEAD");
      wrc1.getHttpMethods().add("OPTIONS");
      wrc1.getHttpMethods().add("TRACE");
      wrc1.getHttpMethods().add("GET");
      wrc1.getHttpMethods().add("POST");

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);    
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addRestrictedGetSC(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = RestrictedGetSC
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("RestrictedGetSC");
      // web-resource-collection/web-resource-name = Restricted Access - Get Only
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("Restricted Access - Get Only");
      sc1.getResourceCollections().add(wrc1);

      // All Access
      wrc1.getUrlPatterns().add("/restricted/get-only/*");
      wrc1.getHttpMethods().add("GET");

      // auth-constraint/role-name = GetRole
      AuthConstraintMetaData ac1 = new AuthConstraintMetaData();
      ac1.getRoleNames().add("GetRole");
      sc1.setAuthConstraint(ac1);

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);    
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addExcludedGetSC(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = ExcludedGetSC
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("ExcludedGetSC");
      // web-resource-collection/web-resource-name = Restricted Access - Get Only
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("Restricted Access - Get Only");
      sc1.getResourceCollections().add(wrc1);

      // All Access
      wrc1.getUrlPatterns().add("/restricted/get-only/*");
      wrc1.getHttpMethods().add("DELETE");
      wrc1.getHttpMethods().add("PUT");
      wrc1.getHttpMethods().add("HEAD");
      wrc1.getHttpMethods().add("OPTIONS");
      wrc1.getHttpMethods().add("TRACE");
      wrc1.getHttpMethods().add("POST");

      // <auth-constraint />
      AuthConstraintMetaData excluded = new AuthConstraintMetaData();
      sc1.setAuthConstraint(excluded);

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addRestrictedPostSC(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = RestrictedGetSC
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("RestrictedGetSC");
      // web-resource-collection/web-resource-name = Restricted Access - Post Only
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("Restricted Access - Post Only");
      sc1.getResourceCollections().add(wrc1);

      // All Access
      wrc1.getUrlPatterns().add("/restricted/post-only/*");
      wrc1.getHttpMethods().add("POST");

      // auth-constraint/role-name = GetRole
      AuthConstraintMetaData ac1 = new AuthConstraintMetaData();
      ac1.getRoleNames().add("PostRole");
      sc1.setAuthConstraint(ac1);

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);    
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   }

   private void addExcludedPostSC(List<SecurityConstraintMetaData> securityContraints)
   {
      // security-constraint/ display-name = ExcludedPostSC
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("ExcludedPostSC");
      // web-resource-collection/web-resource-name = Restricted Access - Post Only
      WebResourceCollectionMetaData wrc1 = new WebResourceCollectionMetaData();
      wrc1.setName("Restricted Access - Post Only");
      sc1.getResourceCollections().add(wrc1);

      // All Access
      wrc1.getUrlPatterns().add("/restricted/post-only/*");
      wrc1.getHttpMethods().add("DELETE");
      wrc1.getHttpMethods().add("PUT");
      wrc1.getHttpMethods().add("HEAD");
      wrc1.getHttpMethods().add("OPTIONS");
      wrc1.getHttpMethods().add("TRACE");
      wrc1.getHttpMethods().add("GET");

      // <auth-constraint />
      AuthConstraintMetaData excluded = new AuthConstraintMetaData();
      sc1.setAuthConstraint(excluded);

      // user-data-constraint/transport-guarantee
      UserDataConstraintMetaData none = new UserDataConstraintMetaData();
      none.setTransportGuarantee(TransportGuaranteeType.NONE);
      sc1.setUserDataConstraint(none);
      securityContraints.add(sc1);
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   </security-constraint>
   */
   private void addSC1(List securityContraints)
   {
      // security-constraint/ display-name = SC1
      SecurityConstraintMetaData sc1 = new SecurityConstraintMetaData();
      sc1.setDisplayName("SC1");
      WebResourceCollectionMetaData wrcsc1c1 = new WebResourceCollectionMetaData();
      wrcsc1c1.setName("sc1.c1");
      sc1.getResourceCollections().add(wrcsc1c1);

      // web-resource-collection/web-resource-name = sc1.c1
      wrcsc1c1.getUrlPatterns().add("/a/*");
      wrcsc1c1.getUrlPatterns().add("/b/*");
      wrcsc1c1.getUrlPatterns().add("/a");
      wrcsc1c1.getUrlPatterns().add("/b");
      wrcsc1c1.getHttpMethods().add("DELETE");
      wrcsc1c1.getHttpMethods().add("PUT");

      WebResourceCollectionMetaData wrcsc1c2 = new WebResourceCollectionMetaData();
      wrcsc1c2.setName("sc1.c2");
      sc1.getResourceCollections().add(wrcsc1c2);
      wrcsc1c2.getUrlPatterns().add("*.asp");

      sc1.setAuthConstraint(new AuthConstraintMetaData());
      assertTrue(sc1.isExcluded());
      securityContraints.add(sc1);
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

   </security-constraint>
   */
   private void addSC2(List securityContraints)
   {
      // security-constraint/ display-name = SC2
      SecurityConstraintMetaData sc2 = new SecurityConstraintMetaData();
      sc2.setDisplayName("SC2");
      WebResourceCollectionMetaData wrcsc2c1 = new WebResourceCollectionMetaData();
      wrcsc2c1.setName("sc2.c1");
      sc2.getResourceCollections().add(wrcsc2c1);

      // web-resource-collection/web-resource-name = sc2.c1
      wrcsc2c1.getUrlPatterns().add("/a/*");
      wrcsc2c1.getUrlPatterns().add("/b/*");
      wrcsc2c1.getHttpMethods().add("GET");

      // web-resource-collection/web-resource-name = sc2.c2
      WebResourceCollectionMetaData wrcsc2c2 = new WebResourceCollectionMetaData();
      wrcsc2c2.setName("sc2.c2");
      sc2.getResourceCollections().add(wrcsc2c2);
      wrcsc2c2.getUrlPatterns().add("/b/*");
      wrcsc2c2.getHttpMethods().add("POST");

      AuthConstraintMetaData ac = new AuthConstraintMetaData();
      ArrayList<String> roles = new ArrayList<String>();
      roles.add("R1");
      ac.setRoleNames(roles);
      sc2.setAuthConstraint(ac);
      UserDataConstraintMetaData udc = new UserDataConstraintMetaData();
      udc.setTransportGuarantee(TransportGuaranteeType.CONFIDENTIAL);
      sc2.setUserDataConstraint(udc);
      securityContraints.add(sc2);
   }
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

            if (securityContraints == null)
            {
               securityContraints = new ArrayList<SecurityConstraintMetaData>();
               jbwmd.setSecurityContraints(securityContraints);
            }
            SecurityConstraintMetaData securityConstraint = new SecurityConstraintMetaData();
            securityContraints.add(securityConstraint);
           
            WebResourceCollectionsMetaData resourceCollections = securityConstraint.getResourceCollections();
            if (resourceCollections == null)
            {
               resourceCollections = new WebResourceCollectionsMetaData();
               securityConstraint.setResourceCollections(resourceCollections);
            }
            WebResourceCollectionMetaData resourceCollection = new WebResourceCollectionMetaData();
            resourceCollections.add(resourceCollection);
           
            resourceCollection.setWebResourceName(ejbName);
            resourceCollection.setUrlPatterns(Arrays.asList(new String[] { ep.getURLPattern() }));
            ArrayList<String> httpMethods = new ArrayList<String>();
            resourceCollection.setHttpMethods(httpMethods);
            if (Boolean.TRUE.equals(secureWSDLAccess))
            {
               httpMethods.add("GET");
            }
            httpMethods.add("POST");

            // Optional auth-constraint
            if (beanAuthMethod != null)
            {
               // Only the first auth-method gives the war login-config/auth-method
               if (authMethod == null)
                  authMethod = beanAuthMethod;

               AuthConstraintMetaData authConstraint = new AuthConstraintMetaData();
               authConstraint.setRoleNames(Arrays.asList(new String[] { "*" }));
               securityConstraint.setAuthConstraint(authConstraint);
            }
            // Optional user-data-constraint
            if (transportGuarantee != null)
            {
               UserDataConstraintMetaData userDataConstraint = new UserDataConstraintMetaData();
               userDataConstraint.setTransportGuarantee(TransportGuaranteeType.valueOf(transportGuarantee));
               securityConstraint.setUserDataConstraint(userDataConstraint);
            }
         }
      }

      // Optional login-config/auth-method
View Full Code Here

Examples of org.jboss.metadata.web.spec.SecurityConstraintMetaData

            if (ejbEndpoint instanceof HttpEndpoint && (hasAuthMethod || hasTransportGuarantee)) {
                final List<SecurityConstraintMetaData> securityConstraints = WebMetaDataHelper
                        .getSecurityConstraints(jbossWebMD);

                // security-constraint
                final SecurityConstraintMetaData securityConstraint = WebMetaDataHelper
                        .newSecurityConstraint(securityConstraints);

                // web-resource-collection
                final WebResourceCollectionsMetaData webResourceCollections = WebMetaDataHelper
                        .getWebResourceCollections(securityConstraint);
View Full Code Here
TOP
Copyright © 2018 www.massapi.com. All rights reserved.
All source code are property of their respective owners. Java is a trademark of Sun Microsystems, Inc and owned by ORACLE Inc. Contact coftware#gmail.com.