001 //$HeadURL$ 002 /*---------------- FILE HEADER ------------------------------------------ 003 This file is part of deegree. 004 Copyright (C) 2001-2008 by: 005 Department of Geography, University of Bonn 006 http://www.giub.uni-bonn.de/deegree/ 007 lat/lon GmbH 008 http://www.lat-lon.de 009 010 This library is free software; you can redistribute it and/or 011 modify it under the terms of the GNU Lesser General Public 012 License as published by the Free Software Foundation; either 013 version 2.1 of the License, or (at your option) any later version. 014 This library is distributed in the hope that it will be useful, 015 but WITHOUT ANY WARRANTY; without even the implied warranty of 016 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 017 Lesser General Public License for more details. 018 You should have received a copy of the GNU Lesser General Public 019 License along with this library; if not, write to the Free Software 020 Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA 021 Contact: 022 023 Andreas Poth 024 lat/lon GmbH 025 Aennchenstr. 19 026 53177 Bonn 027 Germany 028 E-Mail: poth@lat-lon.de 029 030 Prof. Dr. Klaus Greve 031 Department of Geography 032 University of Bonn 033 Meckenheimer Allee 166 034 53115 Bonn 035 Germany 036 E-Mail: greve@giub.uni-bonn.de 037 ---------------------------------------------------------------------------*/ 038 package org.deegree.security; 039 040 import java.util.List; 041 import java.util.Map; 042 043 import org.deegree.framework.log.ILogger; 044 import org.deegree.framework.log.LoggerFactory; 045 import org.deegree.framework.util.StringTools; 046 import org.deegree.i18n.Messages; 047 import org.deegree.security.drm.SecurityAccessManager; 048 import org.deegree.security.drm.WrongCredentialsException; 049 import org.deegree.security.drm.model.User; 050 051 /** 052 * 053 * 054 * @author <a href="mailto:poth@lat-lon.de">Andreas Poth</a> 055 * @author last edited by: $Author: poth $ 056 * 057 * @version. $Revision: 6251 $, $Date: 2007-03-19 16:59:28 +0100 (Mo, 19 Mrz 2007) $ 058 */ 059 public class IPAddressAuthentication extends AbstractAuthentication { 060 061 private static final ILogger LOG = LoggerFactory.getLogger( IPAddressAuthentication.class ); 062 063 protected static final String AUTH_PARAM_IPADDRESS = "IPADDRESS"; 064 065 protected static final String INIT_PARAM_PATTERN = "pattern"; 066 067 /** 068 * 069 * @param authenticationName 070 * @param initParams 071 */ 072 public IPAddressAuthentication( String authenticationName, Map<String, String> initParams ) { 073 super( authenticationName, initParams ); 074 } 075 076 /** 077 * authenticates a user and returns an instance of 078 * 079 * @see {@link User} if authentication has been successfull. Otherwise a 080 * WrongCredentialsException will be thrown 081 * @return an instance of User 082 * @throws WrongCredentialsException 083 */ 084 public User authenticate( Map<String, String> params ) 085 throws WrongCredentialsException { 086 087 String tmp = initParams.get( INIT_PARAM_PATTERN ); 088 List<String> patterns = StringTools.toList( tmp, ",;", true ); 089 090 String ipAddress = params.get( AUTH_PARAM_IPADDRESS ); 091 if ( ipAddress != null ) { 092 for ( String p : patterns ) { 093 if ( ipAddress.matches( p ) ) { 094 User usr = null; 095 try { 096 SecurityAccessManager sam = SecurityAccessManager.getInstance(); 097 // use matching pattern as username and password 098 usr = sam.getUserByName( p ); 099 usr.authenticate( null ); 100 } catch ( Exception e ) { 101 LOG.logError( e.getMessage() ); 102 String msg = Messages.getMessage( "OWSPROXY_USER_AUTH_ERROR", ipAddress ); 103 throw new WrongCredentialsException( msg ); 104 } 105 return usr; 106 } 107 } 108 throw new WrongCredentialsException( Messages.getMessage( "OWSPROXY_USER_AUTH_ERROR", ipAddress ) ); 109 } 110 return null; 111 112 } 113 114 }