001    //$HeadURL$
002    /*----------------    FILE HEADER  ------------------------------------------
003     This file is part of deegree.
004     Copyright (C) 2001-2008 by:
005     Department of Geography, University of Bonn
006     http://www.giub.uni-bonn.de/deegree/
007     lat/lon GmbH
008     http://www.lat-lon.de
009    
010     This library is free software; you can redistribute it and/or
011     modify it under the terms of the GNU Lesser General Public
012     License as published by the Free Software Foundation; either
013     version 2.1 of the License, or (at your option) any later version.
014     This library is distributed in the hope that it will be useful,
015     but WITHOUT ANY WARRANTY; without even the implied warranty of
016     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
017     Lesser General Public License for more details.
018     You should have received a copy of the GNU Lesser General Public
019     License along with this library; if not, write to the Free Software
020     Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
021     Contact:
022    
023     Andreas Poth
024     lat/lon GmbH
025     Aennchenstr. 19
026     53177 Bonn
027     Germany
028     E-Mail: poth@lat-lon.de
029    
030     Prof. Dr. Klaus Greve
031     Department of Geography
032     University of Bonn
033     Meckenheimer Allee 166
034     53115 Bonn
035     Germany
036     E-Mail: greve@giub.uni-bonn.de
037     ---------------------------------------------------------------------------*/
038    package org.deegree.security;
039    
040    import java.util.List;
041    import java.util.Map;
042    
043    import org.deegree.framework.log.ILogger;
044    import org.deegree.framework.log.LoggerFactory;
045    import org.deegree.framework.util.StringTools;
046    import org.deegree.i18n.Messages;
047    import org.deegree.security.drm.SecurityAccessManager;
048    import org.deegree.security.drm.WrongCredentialsException;
049    import org.deegree.security.drm.model.User;
050    
051    /**
052     * 
053     * 
054     * @author <a href="mailto:poth@lat-lon.de">Andreas Poth</a>
055     * @author last edited by: $Author: poth $
056     * 
057     * @version. $Revision: 6251 $, $Date: 2007-03-19 16:59:28 +0100 (Mo, 19 Mrz 2007) $
058     */
059    public class IPAddressAuthentication extends AbstractAuthentication {
060    
061        private static final ILogger LOG = LoggerFactory.getLogger( IPAddressAuthentication.class );
062        
063        protected static final String AUTH_PARAM_IPADDRESS = "IPADDRESS";
064        
065        protected static final String INIT_PARAM_PATTERN = "pattern";
066    
067        /**
068         * 
069         * @param authenticationName
070         * @param initParams
071         */
072        public IPAddressAuthentication( String authenticationName, Map<String, String> initParams ) {
073            super( authenticationName, initParams );
074        }
075    
076        /**
077         * authenticates a user and returns an instance of
078         * 
079         * @see {@link User} if authentication has been successfull. Otherwise a
080         *      WrongCredentialsException will be thrown
081         * @return an instance of User
082         * @throws WrongCredentialsException
083         */
084        public User authenticate( Map<String, String> params )
085                                throws WrongCredentialsException {
086    
087            String tmp = initParams.get( INIT_PARAM_PATTERN );
088            List<String> patterns = StringTools.toList( tmp, ",;", true );
089    
090            String ipAddress = params.get( AUTH_PARAM_IPADDRESS );
091            if ( ipAddress != null ) {
092                for ( String p : patterns ) {
093                    if ( ipAddress.matches( p ) ) {
094                        User usr = null;
095                        try {
096                            SecurityAccessManager sam = SecurityAccessManager.getInstance();
097                            // use matching pattern as username and password
098                            usr = sam.getUserByName( p );
099                            usr.authenticate( null );
100                        } catch ( Exception e ) {
101                            LOG.logError( e.getMessage() );
102                            String msg = Messages.getMessage( "OWSPROXY_USER_AUTH_ERROR", ipAddress );
103                            throw new WrongCredentialsException( msg );
104                        }
105                        return usr;
106                    }
107                }
108                throw new WrongCredentialsException( Messages.getMessage( "OWSPROXY_USER_AUTH_ERROR", ipAddress ) );
109            }
110            return null;
111    
112        }
113    
114    }