ParsedToken | Line # 42 | 0 | 1 | - |
-1.0
|
No Tests | |||
1 | /* | |
2 | * Copyright (c) 2000-2005, University of Salford | |
3 | * All rights reserved. | |
4 | * | |
5 | * Redistribution and use in source and binary forms, with or without | |
6 | * modification, are permitted provided that the following conditions are met: | |
7 | * | |
8 | * Redistributions of source code must retain the above copyright notice, this | |
9 | * list of conditions and the following disclaimer. | |
10 | * | |
11 | * Redistributions in binary form must reproduce the above copyright notice, | |
12 | * this list of conditions and the following disclaimer in the documentation | |
13 | * and/or other materials provided with the distribution. | |
14 | * | |
15 | * Neither the name of the University of Salford nor the names of its | |
16 | * contributors may be used to endorse or promote products derived from this | |
17 | * software without specific prior written permission. | |
18 | * | |
19 | * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" | |
20 | * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE | |
21 | * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE | |
22 | * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE | |
23 | * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR | |
24 | * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF | |
25 | * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS | |
26 | * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN | |
27 | * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) | |
28 | * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE | |
29 | * POSSIBILITY OF SUCH DAMAGE. | |
30 | */ | |
31 | ||
32 | package issrg.pba; | |
33 | ||
34 | import java.util.Vector; | |
35 | ||
36 | /** | |
37 | * This interface represents a implementation-independent Authorisation Token. | |
38 | * In default PERMIS RBAC the implementation-specific AuthZ Tokens are X.509 | |
39 | * Attribute Certificates. In Shibboleth PERMIS RBAC they are Shibboleth | |
40 | * Attributes. Other may be supplied. | |
41 | */ | |
42 | public interface ParsedToken { | |
43 | /** | |
44 | * This method extracts the Credentials from the object | |
45 | * representing the Authorisation Token. | |
46 | * | |
47 | * <p>The result is never null. | |
48 | * | |
49 | * @return Credentials is the Credentials that the Authorisation Token contains | |
50 | */ | |
51 | public Credentials getCredentials(); | |
52 | ||
53 | ||
54 | /** | |
55 | * This method extracts the Holder's Entry from the Authorisation Token. | |
56 | * The returned object can be used to perform subject domain | |
57 | * matching and location of the holder's authorisation tokens. | |
58 | * | |
59 | * @return Entry of the Holder, which can be used for finding other | |
60 | * tokens and for matching subject domains | |
61 | */ | |
62 | public issrg.utils.repository.Entry getHolder(); | |
63 | ||
64 | /** | |
65 | * This method extracts the Issuer's Token Locator from the Authorisation | |
66 | * token. This information may not be available in the Authorisation token, | |
67 | * but the implementation should return at least a TokenLocator that returns | |
68 | * the Entry. This is needed to perform matching of the issuer name. | |
69 | */ | |
70 | public issrg.utils.repository.TokenLocator getIssuerTokenLocator(); | |
71 | ||
72 | /** | |
73 | * This method will return a boolean identifying the token as revocable or not | |
74 | * A token can be not-revocable if the AC contain the noRevAvail extension defined in | |
75 | * X.509 or if it is a short-lived SAML assertion or Shibboleth credential. | |
76 | * @return a boolen identifying the parsed token as revocable. May be used by the | |
77 | * RevocationChecker. | |
78 | */ | |
79 | public boolean isRevocable (); | |
80 | } |
|