Skip to content
Toggle navigation
Projects
Groups
Snippets
Help
Codecrew
/
Moya
This project
Loading...
Sign in
Toggle navigation
Go to a project
Project
Repository
Issues
30
Merge Requests
2
Wiki
Snippets
Settings
Activity
Graph
Charts
Create a new issue
Commits
Issue Boards
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Commit 05514018
authored
Mar 21, 2010
by
Juho Juopperi
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
strong typing to access right checking
1 parent
08e84d44
Hide whitespace changes
Inline
Side-by-side
Showing
2 changed files
with
17 additions
and
5 deletions
code/LanBortalBeans/ejbModule/fi/insomnia/bortal/beans/SessionHandlerBean.java
code/LanBortalBeans/ejbModule/fi/insomnia/bortal/facade/AccessRightFacade.java
code/LanBortalBeans/ejbModule/fi/insomnia/bortal/beans/SessionHandlerBean.java
View file @
0551401
...
@@ -9,7 +9,9 @@ import javax.ejb.Stateless;
...
@@ -9,7 +9,9 @@ import javax.ejb.Stateless;
import
org.slf4j.Logger
;
import
org.slf4j.Logger
;
import
org.slf4j.LoggerFactory
;
import
org.slf4j.LoggerFactory
;
import
fi.insomnia.bortal.facade.AccessRightFacade
;
import
fi.insomnia.bortal.facade.UserFacade
;
import
fi.insomnia.bortal.facade.UserFacade
;
import
fi.insomnia.bortal.model.AccessRight
;
import
fi.insomnia.bortal.model.Role
;
import
fi.insomnia.bortal.model.Role
;
import
fi.insomnia.bortal.model.RoleRight
;
import
fi.insomnia.bortal.model.RoleRight
;
import
fi.insomnia.bortal.model.User
;
import
fi.insomnia.bortal.model.User
;
...
@@ -20,9 +22,11 @@ import fi.insomnia.bortal.model.User;
...
@@ -20,9 +22,11 @@ import fi.insomnia.bortal.model.User;
@Stateless
@Stateless
public
class
SessionHandlerBean
implements
SessionHandlerBeanLocal
{
public
class
SessionHandlerBean
implements
SessionHandlerBeanLocal
{
private
static
final
Logger
logger
=
LoggerFactory
.
getLogger
(
SessionHandlerBean
.
class
);
@EJB
@EJB
private
UserFacade
userfacade
;
private
UserFacade
userfacade
;
private
static
final
Logger
logger
=
LoggerFactory
.
getLogger
(
SessionHandlerBean
.
class
);
@EJB
private
AccessRightFacade
accessRightFacade
;
/**
/**
* Default constructor.
* Default constructor.
...
@@ -33,10 +37,13 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
...
@@ -33,10 +37,13 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
@Override
@Override
public
boolean
hasPermission
(
String
target
,
User
user
,
RolePermission
permission
)
{
public
boolean
hasPermission
(
String
target
,
User
user
,
RolePermission
permission
)
{
AccessRight
expectedRight
=
accessRightFacade
.
findOrCreateByName
(
target
);
User
dbusr
=
userfacade
.
find
(
user
.
getId
());
User
dbusr
=
userfacade
.
find
(
user
.
getId
());
Set
<
Role
>
checkedRoles
=
new
HashSet
<
Role
>();
Set
<
Role
>
checkedRoles
=
new
HashSet
<
Role
>();
for
(
Role
r
:
dbusr
.
getRoles
())
{
for
(
Role
r
:
dbusr
.
getRoles
())
{
if
(
getRights
(
r
,
targe
t
,
permission
,
checkedRoles
))
{
if
(
getRights
(
r
,
expectedRigh
t
,
permission
,
checkedRoles
))
{
return
true
;
return
true
;
}
}
...
@@ -45,14 +52,14 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
...
@@ -45,14 +52,14 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
return
false
;
return
false
;
}
}
private
static
boolean
getRights
(
Role
role
,
String
targe
t
,
RolePermission
permission
,
Set
<
Role
>
checkedRoles
)
{
private
static
boolean
getRights
(
Role
role
,
AccessRight
expectedRigh
t
,
RolePermission
permission
,
Set
<
Role
>
checkedRoles
)
{
if
(
checkedRoles
.
contains
(
role
))
{
if
(
checkedRoles
.
contains
(
role
))
{
return
false
;
return
false
;
}
}
for
(
RoleRight
rr
:
role
.
getRoleRights
())
{
for
(
RoleRight
rr
:
role
.
getRoleRights
())
{
if
(
rr
.
getAccessRight
().
getAccessRight
().
equals
(
targe
t
))
{
if
(
rr
.
getAccessRight
().
equals
(
expectedRigh
t
))
{
switch
(
permission
)
{
switch
(
permission
)
{
case
READ:
case
READ:
if
(
rr
.
getRead
())
{
if
(
rr
.
getRead
())
{
...
@@ -74,7 +81,7 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
...
@@ -74,7 +81,7 @@ public class SessionHandlerBean implements SessionHandlerBeanLocal {
checkedRoles
.
add
(
role
);
checkedRoles
.
add
(
role
);
for
(
Role
r
:
role
.
getParents
())
{
for
(
Role
r
:
role
.
getParents
())
{
if
(
getRights
(
r
,
targe
t
,
permission
,
checkedRoles
))
{
if
(
getRights
(
r
,
expectedRigh
t
,
permission
,
checkedRoles
))
{
return
true
;
return
true
;
}
}
...
...
code/LanBortalBeans/ejbModule/fi/insomnia/bortal/facade/AccessRightFacade.java
View file @
0551401
...
@@ -21,4 +21,9 @@ public class AccessRightFacade extends GenericFacade<AccessRight> {
...
@@ -21,4 +21,9 @@ public class AccessRightFacade extends GenericFacade<AccessRight> {
return
em
;
return
em
;
}
}
public
AccessRight
findOrCreateByName
(
String
target
)
{
// TODO Auto-generated method stub
return
null
;
}
}
}
Write
Preview
Markdown
is supported
Attach a file
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to post a comment