added template method to allow to override the default of retrieving user by username.
This commit is contained in:
Scott Battaglia 2008-10-01 18:49:52 +00:00
parent 97381fb448
commit 7594e1ae2f
1 changed files with 25 additions and 16 deletions

View File

@ -140,24 +140,33 @@ public class CasAuthenticationProvider implements AuthenticationProvider, Initia
return result; return result;
} }
private CasAuthenticationToken authenticateNow(Authentication authentication) throws AuthenticationException { private final CasAuthenticationToken authenticateNow(final Authentication authentication) throws AuthenticationException {
try { try {
final Assertion assertion = this.ticketValidator.validate(authentication.getCredentials().toString(), serviceProperties.getService()); final Assertion assertion = this.ticketValidator.validate(authentication.getCredentials().toString(), serviceProperties.getService());
final UserDetails userDetails = userDetailsService.loadUserByUsername(assertion.getPrincipal().getName()); final UserDetails userDetails = loadUserByAssertion(assertion);
userDetailsChecker.check(userDetails); userDetailsChecker.check(userDetails);
return new CasAuthenticationToken(this.key, userDetails, authentication.getCredentials(), return new CasAuthenticationToken(this.key, userDetails, authentication.getCredentials(), userDetails.getAuthorities(), userDetails, assertion);
userDetails.getAuthorities(), userDetails, assertion);
} catch (final TicketValidationException e) { } catch (final TicketValidationException e) {
// TODO get error message throw new BadCredentialsException(e.getMessage(), e);
throw new BadCredentialsException("", e);
} }
} }
/**
* Template method for retrieving the UserDetails based on the assertion. Default is to call configured userDetailsService and pass the username. Deployers
* can override this method and retrieve the user based on any criteria they desire.
*
* @param assertion The CAS Assertion.
* @returns the UserDetails.
*/
protected UserDetails loadUserByAssertion(final Assertion assertion) {
return this.userDetailsService.loadUserByUsername(assertion.getPrincipal().getName());
}
protected UserDetailsService getUserDetailsService() { protected UserDetailsService getUserDetailsService() {
return userDetailsService; return userDetailsService;
} }
public void setUserDetailsService(UserDetailsService userDetailsService) { public void setUserDetailsService(final UserDetailsService userDetailsService) {
this.userDetailsService = userDetailsService; this.userDetailsService = userDetailsService;
} }
@ -181,15 +190,15 @@ public class CasAuthenticationProvider implements AuthenticationProvider, Initia
return ticketValidator; return ticketValidator;
} }
public void setMessageSource(MessageSource messageSource) { public void setMessageSource(final MessageSource messageSource) {
this.messages = new MessageSourceAccessor(messageSource); this.messages = new MessageSourceAccessor(messageSource);
} }
public void setStatelessTicketCache(StatelessTicketCache statelessTicketCache) { public void setStatelessTicketCache(final StatelessTicketCache statelessTicketCache) {
this.statelessTicketCache = statelessTicketCache; this.statelessTicketCache = statelessTicketCache;
} }
public void setTicketValidator(TicketValidator ticketValidator) { public void setTicketValidator(final TicketValidator ticketValidator) {
this.ticketValidator = ticketValidator; this.ticketValidator = ticketValidator;
} }