01: /*
02: * JBoss, Home of Professional Open Source.
03: * Copyright 2006, Red Hat Middleware LLC, and individual contributors
04: * as indicated by the @author tags. See the copyright.txt file in the
05: * distribution for a full listing of individual contributors.
06: *
07: * This is free software; you can redistribute it and/or modify it
08: * under the terms of the GNU Lesser General Public License as
09: * published by the Free Software Foundation; either version 2.1 of
10: * the License, or (at your option) any later version.
11: *
12: * This software is distributed in the hope that it will be useful,
13: * but WITHOUT ANY WARRANTY; without even the implied warranty of
14: * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15: * Lesser General Public License for more details.
16: *
17: * You should have received a copy of the GNU Lesser General Public
18: * License along with this software; if not, write to the Free
19: * Software Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA
20: * 02110-1301 USA, or see the FSF site: http://www.fsf.org.
21: */
22: package org.jboss.test.jmx.interceptors;
23:
24: import java.security.Principal;
25: import org.jboss.mx.interceptor.AbstractInterceptor;
26: import org.jboss.mx.server.Invocation;
27: import org.jboss.logging.Logger;
28: import org.jboss.security.SecurityAssociation;
29:
30: /** An interceptor that simply asserts the caller is jduke
31: * @author Scott.Stark@jboss.org
32: * @version $Revision: 57211 $
33: */
34: public final class PrincipalInterceptor extends AbstractInterceptor {
35: private static Logger log = Logger
36: .getLogger(PrincipalInterceptor.class);
37:
38: // Interceptor overrides -----------------------------------------
39: public Object invoke(Invocation invocation) throws Throwable {
40: /* Allow access to the getMBeanInfo since this is bbean is deployed
41: but not accessed in non-secure tests (JMXInvokerUnitTestCase).
42: */
43: String type = invocation.getType();
44: if (type != Invocation.OP_GETMBEANINFO) {
45: Principal caller = SecurityAssociation.getPrincipal();
46: String opName = invocation.getName();
47: log.info("invoke, opName=" + opName + ", caller=" + caller);
48: if (caller == null
49: || caller.getName().equals("jduke") == false) {
50: throw new SecurityException("Caller=" + caller
51: + " is not jduke");
52: }
53: }
54: return invocation.nextInterceptor().invoke(invocation);
55: }
56: }
|