Classes in this File | Line Coverage | Branch Coverage | Complexity | ||||
CasSubjectFactory |
|
| 5.0;5 |
1 | /* | |
2 | * Licensed to the Apache Software Foundation (ASF) under one | |
3 | * or more contributor license agreements. See the NOTICE file | |
4 | * distributed with this work for additional information | |
5 | * regarding copyright ownership. The ASF licenses this file | |
6 | * to you under the Apache License, Version 2.0 (the | |
7 | * "License"); you may not use this file except in compliance | |
8 | * with the License. You may obtain a copy of the License at | |
9 | * | |
10 | * http://www.apache.org/licenses/LICENSE-2.0 | |
11 | * | |
12 | * Unless required by applicable law or agreed to in writing, | |
13 | * software distributed under the License is distributed on an | |
14 | * "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY | |
15 | * KIND, either express or implied. See the License for the | |
16 | * specific language governing permissions and limitations | |
17 | * under the License. | |
18 | */ | |
19 | package org.apache.shiro.cas; | |
20 | ||
21 | import org.apache.shiro.authc.AuthenticationToken; | |
22 | import org.apache.shiro.subject.Subject; | |
23 | import org.apache.shiro.subject.SubjectContext; | |
24 | import org.apache.shiro.web.mgt.DefaultWebSubjectFactory; | |
25 | ||
26 | /** | |
27 | * {@link org.apache.shiro.mgt.SubjectFactory Subject} implementation to be used in CAS-enabled applications. | |
28 | * | |
29 | * @since 1.2 | |
30 | */ | |
31 | 0 | public class CasSubjectFactory extends DefaultWebSubjectFactory { |
32 | ||
33 | @Override | |
34 | public Subject createSubject(SubjectContext context) { | |
35 | ||
36 | //the authenticated flag is only set by the SecurityManager after a successful authentication attempt. | |
37 | 0 | boolean authenticated = context.isAuthenticated(); |
38 | ||
39 | //although the SecurityManager 'sees' the submission as a successful authentication, in reality, the | |
40 | //login might have been just a CAS rememberMe login. If so, set the authenticated flag appropriately: | |
41 | 0 | if (authenticated) { |
42 | ||
43 | 0 | AuthenticationToken token = context.getAuthenticationToken(); |
44 | ||
45 | 0 | if (token != null && token instanceof CasToken) { |
46 | 0 | CasToken casToken = (CasToken) token; |
47 | // set the authenticated flag of the context to true only if the CAS subject is not in a remember me mode | |
48 | 0 | if (casToken.isRememberMe()) { |
49 | 0 | context.setAuthenticated(false); |
50 | } | |
51 | } | |
52 | } | |
53 | ||
54 | 0 | return super.createSubject(context); |
55 | } | |
56 | } |