Class AuthenticationClientManager.Null
- All Implemented Interfaces:
AuthenticationClient,PublicKeyAuthenticationClient,TokenAuthenticationClient,TokenFactoryFactory,TokenVerificationClient,AutoCloseable
- Enclosing class:
- AuthenticationClientManager
-
Nested Class Summary
Nested classes/interfaces inherited from class io.deephaven.enterprise.auth.AuthenticationClientManager
AuthenticationClientManager.ClientTransportStatusChangeListener, AuthenticationClientManager.NullNested classes/interfaces inherited from class io.deephaven.enterprise.auth.AuthenticationClientManagerBase
AuthenticationClientManagerBase.SingleClientTokenFactory, AuthenticationClientManagerBase.TokenFactoryBaseNested classes/interfaces inherited from interface io.deephaven.enterprise.auth.TokenFactoryFactory
TokenFactoryFactory.TokenFactory -
Field Summary
Fields inherited from class io.deephaven.enterprise.auth.AuthenticationClientManager
AlwaysFalseBooleanFuture, authMethods, connectionStatusHandlers, log -
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionbooleanchallengeResponse(String privateKeyFile) Authenticate with the user denoted in the specified private key filevoidclose()Disconnect from the originCreate a set of tokens for delegating authentication for each Auth server.createDelegateTokensForUser(String operateAs) Create a set of tokens for delegating authentication for each Auth server, as a specific user.createToken(String service) Create a new authentication token for the requested service.createTokenForUser(String service, String operateAs) Create a new authentication token for the requested service operating as the specified userbooleanPerform default authentication.booleanIf no previous authentication attempt has been made, try default authentication.externalLogin(String key) Attempt to perform key-based external-authentication against all connected/nonauthenticated serversprotected TokenFactoryFactory.TokenFactorygetTokenFactoryInternal(String service, String user) booleanReturn true if this client is authenticated.booleanpasswordAuthentication(String checkUser, String password, String operateAs) Authenticate to all connected/nonauthenticated servers with username/passwordprotected booleanAttempt authentication with any plugins that have been set up on the system.booleanpresentDelegateToken(AuthToken delegatedToken) Validate the delegated tokens created byAuthenticationClientManager.createDelegateTokens()orAuthenticationClientManager.createDelegateTokensForUser(String)presentDelegateTokenAsync(AuthToken delegatedToken) Validate the delegated tokens created byAuthenticationClientManager.createDelegateTokens()orAuthenticationClientManager.createDelegateTokensForUser(String)booleanverifyToken(String service, AuthToken token) Verify the specified service token with the server.voidwaitForSuccessfulServerRoundtrip(long timeoutMillis) Attempt to do a roundtrip to a (any) server, for up to the timeout milliseconds.Methods inherited from class io.deephaven.enterprise.auth.AuthenticationClientManager
addConnectionStatusHandler, checkForPlugins, getDefault, getTokenFactory, getTokenFactory, make, removeConnectionStatusHandler, verifyTokenMethods inherited from class java.lang.Object
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, waitMethods inherited from interface io.deephaven.enterprise.auth.AuthenticationClient
passwordAuthenticationMethods inherited from interface io.deephaven.enterprise.auth.TokenAuthenticationClient
createToken, createTokenForUserMethods inherited from interface io.deephaven.enterprise.auth.TokenFactoryFactory
getTokenFactory, getTokenFactory
-
Constructor Details
-
Null
public Null()
-
-
Method Details
-
createToken
Description copied from class:AuthenticationClientManagerCreate a new authentication token for the requested service.
SeeTokenAuthenticationClient.createToken(String)for exception details Users are encouraged to useAuthenticationClientManager.getTokenFactory(String)andTokenFactoryFactory.TokenFactory.tryActionWithToken(Consumer)orTokenFactoryFactory.TokenFactory.tryGetWithToken(Function)instead as they provide a means to handle the loss of an origin.- Specified by:
createTokenin interfaceTokenAuthenticationClient- Specified by:
createTokenin classAuthenticationClientManager- Returns:
- a new
AuthTokenfor service
-
createTokenForUser
Description copied from class:AuthenticationClientManagerCreate a new authentication token for the requested service operating as the specified user
SeeTokenAuthenticationClient.createTokenForUser(String, String)for exception details Users are encouraged to useAuthenticationClientManager.getTokenFactory(String, String)andTokenFactoryFactory.TokenFactory.tryActionWithToken(Consumer)orTokenFactoryFactory.TokenFactory.tryGetWithToken(Function)instead as they provide a means to handle the loss of an origin.- Specified by:
createTokenForUserin interfaceTokenAuthenticationClient- Specified by:
createTokenForUserin classAuthenticationClientManager- Returns:
- a new
AuthTokenfor service operating as operateAs
-
createDelegateTokens
Description copied from class:AuthenticationClientManagerCreate a set of tokens for delegating authentication for each Auth server.
SeeTokenAuthenticationClient.createToken(String)for exception details- Specified by:
createDelegateTokensin classAuthenticationClientManager- Returns:
- a list of
AuthTokens delegating authentication for each available server
-
createDelegateTokensForUser
Description copied from class:AuthenticationClientManagerCreate a set of tokens for delegating authentication for each Auth server, as a specific user.
SeeTokenAuthenticationClient.createTokenForUser(String, String)for exception details- Specified by:
createDelegateTokensForUserin classAuthenticationClientManager- Returns:
- a list of
AuthTokens delegating authentication for each available server
-
verifyToken
Description copied from class:AuthenticationClientManagerVerify the specified service token with the server.
SeeTokenVerificationClient.verifyToken(String, AuthToken)for additional exception details- Specified by:
verifyTokenin interfaceTokenVerificationClient- Specified by:
verifyTokenin classAuthenticationClientManager- Returns:
- true if the token was validated, false otherwise
-
passwordAuthentication
Description copied from class:AuthenticationClientManagerAuthenticate to all connected/nonauthenticated servers with username/password
SeeAuthenticationClient.passwordAuthentication(String, String, String)for exception details- Specified by:
passwordAuthenticationin interfaceAuthenticationClient- Specified by:
passwordAuthenticationin classAuthenticationClientManager- Parameters:
checkUser- The user to authenticatepassword- The passwordoperateAs- The effective user to operate as- Returns:
- true on success, false on failure
-
externalLogin
Description copied from class:AuthenticationClientManagerAttempt to perform key-based external-authentication against all connected/nonauthenticated servers
SeeAuthenticationClient.externalLogin(String)for details- Specified by:
externalLoginin interfaceAuthenticationClient- Specified by:
externalLoginin classAuthenticationClientManager- Parameters:
key- a nonce which an appropriate auth-module may be able to confirm as authenticated- Returns:
- the authenticated user-name if this key is approved by an auth-module, else null
-
presentDelegateToken
Description copied from class:AuthenticationClientManagerValidate the delegated tokens created by
SeeAuthenticationClientManager.createDelegateTokens()orAuthenticationClientManager.createDelegateTokensForUser(String)AuthenticationClient.presentDelegateToken(AuthToken)for additional exception detail- Specified by:
presentDelegateTokenin interfaceAuthenticationClient- Specified by:
presentDelegateTokenin classAuthenticationClientManager- Parameters:
delegatedToken- The delegate token created by AuthenticationClientManager.createDelegateTokens()- Returns:
- true if the token was validated, false otherwise
-
presentDelegateTokenAsync
Description copied from class:AuthenticationClientManagerValidate the delegated tokens created by
SeeAuthenticationClientManager.createDelegateTokens()orAuthenticationClientManager.createDelegateTokensForUser(String)AuthenticationClient.presentDelegateToken(AuthToken)for additional exception detail- Specified by:
presentDelegateTokenAsyncin classAuthenticationClientManager- Returns:
- a
Future<Boolean>that will be true if the token was validated, false otherwise
-
challengeResponse
Description copied from class:AuthenticationClientManagerAuthenticate with the user denoted in the specified private key file- Specified by:
challengeResponsein interfacePublicKeyAuthenticationClient- Specified by:
challengeResponsein classAuthenticationClientManager- Parameters:
privateKeyFile- the file containing the elements required for authentication; user, operateas, public and private keys.- Returns:
- False if already authenticated. If not already authenticated at the time of the call, the status of the authentication-attempt; true if successfully authenticated, else false
-
getTokenFactoryInternal
- Specified by:
getTokenFactoryInternalin classAuthenticationClientManager
-
isAuthenticated
public boolean isAuthenticated()Description copied from class:AuthenticationClientManagerReturn true if this client is authenticated. This method may wait to return if there is a concurrent authentication attempt in flight. Unlike most other methods in this class,isAuthenticatedwill never throw anAuthException.- Specified by:
isAuthenticatedin classAuthenticationClientManager- Returns:
- true if authenticated, false otherwise.
-
waitForSuccessfulServerRoundtrip
public void waitForSuccessfulServerRoundtrip(long timeoutMillis) Description copied from class:AuthenticationClientManagerAttempt to do a roundtrip to a (any) server, for up to the timeout milliseconds. An AuthException is thrown if the roundtrip doesn't succeed before the deadline. When this method returns normally, a client can be certain that there was an authentication server ready to service requests at some point during the call.- Specified by:
waitForSuccessfulServerRoundtripin classAuthenticationClientManager
-
close
public void close()Description copied from interface:AuthenticationClientDisconnect from the origin- Specified by:
closein interfaceAuthenticationClient- Specified by:
closein interfaceAutoCloseable- Specified by:
closein interfaceTokenFactoryFactory- Specified by:
closein classAuthenticationClientManager
-
pluginAuthentication
protected boolean pluginAuthentication()Description copied from class:AuthenticationClientManagerAttempt authentication with any plugins that have been set up on the system.- Specified by:
pluginAuthenticationin classAuthenticationClientManager- Returns:
- True if at least one plugin was able to authenticate with at least one client; false otherwise.
-
defaultAuthentication
public boolean defaultAuthentication()Description copied from class:AuthenticationClientManagerPerform default authentication. Default authentication implies authenticating with the private key file, or with plugins if there is no private key file.
SeeAuthenticationClientManager.challengeResponse(String)for exception details- Specified by:
defaultAuthenticationin classAuthenticationClientManager- Returns:
- false if already authenticated or if an authentication attempt was done and failed, true otherwise.
-
ensureAuthentication
public boolean ensureAuthentication()Description copied from class:AuthenticationClientManagerIf no previous authentication attempt has been made, try default authentication. Default authentication implies attempt to authenticate with the private key file, or with plugins if there is no private key file.
If a previous authentication attempt succeeded in the past, and that authentication method can be retried, and the client is current unauthenticated, then attempt again the same method that succeeded before.
SeeAuthenticationClientManager.challengeResponse(String)for exception details- Specified by:
ensureAuthenticationin classAuthenticationClientManager- Returns:
- true if authenticated by the time this call returns (either because we were already authenticated, or because we were not authenticated and an authentication attempt was done and was successful), false otherwise. When false is returned it implies not authenticated.
-