/jboss-as-7.1.1.Final/ejb3/src/main/java/org/jboss/as/ejb3/security/EjbJaccService.java
Java | 62 lines | 26 code | 7 blank | 29 comment | 4 complexity | efdb516334db730530d5b87d9daf8a2a MD5 | raw file
Possible License(s): LGPL-2.1, Apache-2.0
1/*
2 * JBoss, Home of Professional Open Source.
3 * Copyright 2011, Red Hat, Inc., and individual contributors
4 * as indicated by the @author tags. See the copyright.txt file in the
5 * distribution for a full listing of individual contributors.
6 *
7 * This is free software; you can redistribute it and/or modify it
8 * under the terms of the GNU Lesser General Public License as
9 * published by the Free Software Foundation; either version 2.1 of
10 * the License, or (at your option) any later version.
11 *
12 * This software is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
15 * Lesser General Public License for more details.
16 *
17 * You should have received a copy of the GNU Lesser General Public
18 * License along with this software; if not, write to the Free
19 * Software Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA
20 * 02110-1301 USA, or see the FSF site: http://www.fsf.org.
21 */
22
23package org.jboss.as.ejb3.security;
24
25import java.security.Permission;
26import java.util.Map.Entry;
27
28import javax.security.jacc.PolicyConfiguration;
29import javax.security.jacc.PolicyContextException;
30
31import org.jboss.as.security.service.JaccService;
32import org.jboss.as.server.deployment.AttachmentList;
33
34/**
35 * A service that creates JACC permissions for a ejb deployment
36 *
37 * @author <a href="mailto:mmoyses@redhat.com">Marcus Moyses</a>
38 * @author Scott.Stark@jboss.org
39 * @author Anil.Saldhana@jboss.org
40 * @author Stuart Douglas
41 */
42public class EjbJaccService extends JaccService<AttachmentList<EjbJaccConfig>> {
43
44 public EjbJaccService(String contextId, AttachmentList<EjbJaccConfig> metaData, Boolean standalone) {
45 super(contextId, metaData, standalone);
46 }
47
48 @Override
49 public void createPermissions(final AttachmentList<EjbJaccConfig> metaData, final PolicyConfiguration policyConfiguration) throws PolicyContextException {
50 for (EjbJaccConfig permission : metaData) {
51 for (Permission deny : permission.getDeny()) {
52 policyConfiguration.addToExcludedPolicy(deny);
53 }
54 for (Permission permit : permission.getPermit()) {
55 policyConfiguration.addToUncheckedPolicy(permit);
56 }
57 for (Entry<String, Permission> role : permission.getRoles()) {
58 policyConfiguration.addToRole(role.getKey(), role.getValue());
59 }
60 }
61 }
62}