01: /*
02: * JBoss, Home of Professional Open Source.
03: * Copyright 2006, Red Hat Middleware LLC, and individual contributors
04: * as indicated by the @author tags. See the copyright.txt file in the
05: * distribution for a full listing of individual contributors.
06: *
07: * This is free software; you can redistribute it and/or modify it
08: * under the terms of the GNU Lesser General Public License as
09: * published by the Free Software Foundation; either version 2.1 of
10: * the License, or (at your option) any later version.
11: *
12: * This software is distributed in the hope that it will be useful,
13: * but WITHOUT ANY WARRANTY; without even the implied warranty of
14: * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15: * Lesser General Public License for more details.
16: *
17: * You should have received a copy of the GNU Lesser General Public
18: * License along with this software; if not, write to the Free
19: * Software Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA
20: * 02110-1301 USA, or see the FSF site: http://www.fsf.org.
21: */
22: package org.jboss.test.securitymgr.servlet;
23:
24: import java.io.IOException;
25: import java.io.File;
26: import javax.servlet.http.HttpServlet;
27: import javax.servlet.http.HttpServletRequest;
28: import javax.servlet.http.HttpServletResponse;
29: import javax.servlet.ServletException;
30:
31: /**
32: * Serlvet used to test security manager permission assigments.
33: *
34: * @author Scott.Stark@jboss.org
35: * @version $Revision: 57211 $
36: */
37: public class FileAccessServlet extends HttpServlet {
38: protected void doGet(HttpServletRequest req,
39: HttpServletResponse resp) throws ServletException,
40: IOException {
41: System.out.println("FileAccessServlet, " + req.getRequestURI());
42: try {
43: resp.addHeader("X-CodeSource", ""
44: + getClass().getProtectionDomain().getCodeSource());
45: System.out.println("FileAccessServlet:CodeSource, "
46: + getClass().getProtectionDomain().getCodeSource());
47: String fileName = req.getParameter("file");
48: String root = super .getServletContext().getRealPath("/");
49: resp.addHeader("X-RealPath", root);
50: System.out.println("FileAccessServlet:RealPath, " + root);
51: File file = new File(root, fileName);
52: // This triggers a read access check
53: boolean exists = file.exists();
54: boolean created = false;
55: boolean deleted = false;
56: if (exists == false)
57: created = file.createNewFile();
58: else
59: deleted = file.delete();
60: resp.addHeader("X-Exists", "" + exists);
61: resp.addHeader("X-Created", "" + created);
62: resp.addHeader("X-Deleted", "" + deleted);
63: } catch (Exception e) {
64: resp.addHeader("X-Exception", "" + e.getMessage());
65: resp.addHeader("X-ExceptionClass", e.getClass().getName());
66: }
67: }
68: }
|