01: /*
02: * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS HEADER.
03: *
04: * Copyright 1997-2007 Sun Microsystems, Inc. All rights reserved.
05: *
06: * The contents of this file are subject to the terms of either the GNU
07: * General Public License Version 2 only ("GPL") or the Common Development
08: * and Distribution License("CDDL") (collectively, the "License"). You
09: * may not use this file except in compliance with the License. You can obtain
10: * a copy of the License at https://glassfish.dev.java.net/public/CDDL+GPL.html
11: * or glassfish/bootstrap/legal/LICENSE.txt. See the License for the specific
12: * language governing permissions and limitations under the License.
13: *
14: * When distributing the software, include this License Header Notice in each
15: * file and include the License file at glassfish/bootstrap/legal/LICENSE.txt.
16: * Sun designates this particular file as subject to the "Classpath" exception
17: * as provided by Sun in the GPL Version 2 section of the License file that
18: * accompanied this code. If applicable, add the following below the License
19: * Header, with the fields enclosed by brackets [] replaced by your own
20: * identifying information: "Portions Copyrighted [year]
21: * [name of copyright owner]"
22: *
23: * Contributor(s):
24: *
25: * If you wish your version of this file to be governed by only the CDDL or
26: * only the GPL Version 2, indicate your decision by adding "[Contributor]
27: * elects to include this software in this distribution under the [CDDL or GPL
28: * Version 2] license." If you don't indicate a single choice of license, a
29: * recipient has the option to distribute your version of this file under
30: * either the CDDL, the GPL Version 2 or to extend the choice of license to
31: * its licensees as provided above. However, if you add GPL Version 2 code
32: * and therefore, elected the GPL Version 2 license, then the option applies
33: * only if the new code is made subject to such option by the copyright
34: * holder.
35: */
36:
37: package com.sun.xml.ws.api.security.trust;
38:
39: import javax.security.auth.Subject;
40:
41: /**
42: * <p>
43: * This interface is a plugin for authorization services to a Security Token Service (STS).
44: * The authorization service determines if a requestor can be issued an token to access the target
45: * service. The usual services mechanism is used to find implementing class
46: * of <code>STSAuthorizationProvider</code>.
47: * </p>
48: @author Jiandong Guo
49: */
50: public interface STSAuthorizationProvider {
51:
52: /**
53: * Returns true if the requestor identified by the <code>Subject</code> can access the the target
54: * service.
55: * @param subject The <code>Subject</code> contgaining authentication information and context of the
56: * authenticated requestor.
57: * @param appliesTo Identifying target service(s)
58: * @param tokenType Type of token to be issued.
59: * @param keyType Type of key to be issued
60: * @return true ot false.
61: */
62: boolean isAuthorized(Subject subject, String appliesTo,
63: String tokenType, String keyType);
64: }
|