| org.apache.catalina.authenticator.AuthenticatorBase org.apache.catalina.authenticator.DigestAuthenticator
DigestAuthenticator | public class DigestAuthenticator extends AuthenticatorBase (Code) | | An Authenticator and Valve implementation of HTTP DIGEST
Authentication (see RFC 2069).
author: Craig R. McClanahan author: Remy Maucherat version: $Revision: 467222 $ $Date: 2006-10-24 05:17:11 +0200 (mar., 24 oct. 2006) $ |
Method Summary | |
public boolean | authenticate(Request request, Response response, LoginConfig config) Authenticate the user making this request, based on the specified
login configuration. | protected static Principal | findPrincipal(Request request, String authorization, Realm realm) Parse the specified authorization credentials, and return the
associated Principal that these credentials authenticate (if any)
from the specified Realm. | protected String | generateNOnce(Request request) Generate a unique token. | public String | getInfo() Return descriptive information about this Valve implementation. | protected String | parseUsername(String authorization) Parse the username from the specified authorization string. | protected static String | removeQuotes(String quotedString, boolean quotesRequired) Removes the quotes on a string. | protected static String | removeQuotes(String quotedString) Removes the quotes on a string. | protected void | setAuthenticateHeader(Request request, Response response, LoginConfig config, String nOnce) Generates the WWW-Authenticate header. |
info | final protected static String info(Code) | | Descriptive information about this implementation.
|
md5Encoder | final protected static MD5Encoder md5Encoder(Code) | | The MD5 helper object for this class.
|
DigestAuthenticator | public DigestAuthenticator()(Code) | | |
authenticate | public boolean authenticate(Request request, Response response, LoginConfig config) throws IOException(Code) | | Authenticate the user making this request, based on the specified
login configuration. Return true if any specified
constraint has been satisfied, or false if we have
created a response challenge already.
Parameters: request - Request we are processing Parameters: response - Response we are creating Parameters: config - Login configuration describing how authenticationshould be performed exception: IOException - if an input/output error occurs |
findPrincipal | protected static Principal findPrincipal(Request request, String authorization, Realm realm)(Code) | | Parse the specified authorization credentials, and return the
associated Principal that these credentials authenticate (if any)
from the specified Realm. If there is no such Principal, return
null .
Parameters: request - HTTP servlet request Parameters: authorization - Authorization credentials from this request Parameters: realm - Realm used to authenticate Principals |
generateNOnce | protected String generateNOnce(Request request)(Code) | | Generate a unique token. The token is generated according to the
following pattern. NOnceToken = Base64 ( MD5 ( client-IP ":"
time-stamp ":" private-key ) ).
Parameters: request - HTTP Servlet request |
getInfo | public String getInfo()(Code) | | Return descriptive information about this Valve implementation.
|
parseUsername | protected String parseUsername(String authorization)(Code) | | Parse the username from the specified authorization string. If none
can be identified, return null
Parameters: authorization - Authorization string to be parsed |
removeQuotes | protected static String removeQuotes(String quotedString, boolean quotesRequired)(Code) | | Removes the quotes on a string. RFC2617 states quotes are optional for
all parameters except realm.
|
removeQuotes | protected static String removeQuotes(String quotedString)(Code) | | Removes the quotes on a string.
|
setAuthenticateHeader | protected void setAuthenticateHeader(Request request, Response response, LoginConfig config, String nOnce)(Code) | | Generates the WWW-Authenticate header.
The header MUST follow this template :
WWW-Authenticate = "WWW-Authenticate" ":" "Digest"
digest-challenge
digest-challenge = 1#( realm | [ domain ] | nOnce |
[ digest-opaque ] |[ stale ] | [ algorithm ] )
realm = "realm" "=" realm-value
realm-value = quoted-string
domain = "domain" "=" <"> 1#URI <">
nonce = "nonce" "=" nonce-value
nonce-value = quoted-string
opaque = "opaque" "=" quoted-string
stale = "stale" "=" ( "true" | "false" )
algorithm = "algorithm" "=" ( "MD5" | token )
Parameters: request - HTTP Servlet request Parameters: response - HTTP Servlet response Parameters: config - Login configuration describing how authenticationshould be performed Parameters: nOnce - nonce token |
Methods inherited from org.apache.catalina.authenticator.AuthenticatorBase | public void addLifecycleListener(LifecycleListener listener)(Code)(Java Doc) protected void associate(String ssoId, Session session)(Code)(Java Doc) abstract protected boolean authenticate(Request request, Response response, LoginConfig config) throws IOException(Code)(Java Doc) public LifecycleListener[] findLifecycleListeners()(Code)(Java Doc) protected synchronized String generateSessionId()(Code)(Java Doc) public String getAlgorithm()(Code)(Java Doc) public boolean getCache()(Code)(Java Doc) public Container getContainer()(Code)(Java Doc) protected synchronized MessageDigest getDigest()(Code)(Java Doc) public boolean getDisableProxyCaching()(Code)(Java Doc) public String getEntropy()(Code)(Java Doc) public String getInfo()(Code)(Java Doc) protected synchronized Random getRandom()(Code)(Java Doc) public String getRandomClass()(Code)(Java Doc) public boolean getSecurePagesWithPragma()(Code)(Java Doc) public void invoke(Request request, Response response) throws IOException, ServletException(Code)(Java Doc) protected boolean reauthenticateFromSSO(String ssoId, Request request)(Code)(Java Doc) protected void register(Request request, Response response, Principal principal, String authType, String username, String password)(Code)(Java Doc) public void removeLifecycleListener(LifecycleListener listener)(Code)(Java Doc) public void setAlgorithm(String algorithm)(Code)(Java Doc) public void setCache(boolean cache)(Code)(Java Doc) public void setContainer(Container container)(Code)(Java Doc) public void setDisableProxyCaching(boolean nocache)(Code)(Java Doc) public void setEntropy(String entropy)(Code)(Java Doc) public void setRandomClass(String randomClass)(Code)(Java Doc) public void setSecurePagesWithPragma(boolean securePagesWithPragma)(Code)(Java Doc) public void start() throws LifecycleException(Code)(Java Doc) public void stop() throws LifecycleException(Code)(Java Doc)
|
|
|