WWWAuthenticateGenerator.java

  1. /*
  2.  * GovWay - A customizable API Gateway
  3.  * https://govway.org
  4.  *
  5.  * Copyright (c) 2005-2025 Link.it srl (https://link.it).
  6.  *
  7.  * This program is free software: you can redistribute it and/or modify
  8.  * it under the terms of the GNU General Public License version 3, as published by
  9.  * the Free Software Foundation.
  10.  *
  11.  * This program is distributed in the hope that it will be useful,
  12.  * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13.  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
  14.  * GNU General Public License for more details.
  15.  *
  16.  * You should have received a copy of the GNU General Public License
  17.  * along with this program.  If not, see <http://www.gnu.org/licenses/>.
  18.  *
  19.  */

  20. package org.openspcoop2.message.utils;

  21. import java.util.HashMap;

  22. import org.openspcoop2.message.ForcedResponseMessage;
  23. import org.openspcoop2.message.OpenSPCoop2Message;
  24. import org.openspcoop2.message.OpenSPCoop2MessageFactory;
  25. import org.openspcoop2.message.constants.MessageRole;
  26. import org.openspcoop2.message.constants.MessageType;
  27. import org.openspcoop2.utils.transport.TransportUtils;
  28. import org.openspcoop2.utils.transport.http.HttpConstants;

  29. /**    
  30.  * WWWAuthenticateGenerator
  31.  *
  32.  * @author Poli Andrea (poli@link.it)
  33.  * @author $Author$
  34.  * @version $Rev$, $Date$
  35.  */
  36. public class WWWAuthenticateGenerator {
  37.    
  38.     private WWWAuthenticateGenerator() {}
  39.    
  40.     public static OpenSPCoop2Message buildErrorMessage(WWWAuthenticateErrorCode errorCode, String realm, boolean genericError, String error, String ... scope) {
  41.        
  42.         OpenSPCoop2Message errorMessage = OpenSPCoop2MessageFactory.getDefaultMessageFactory().createEmptyMessage(MessageType.BINARY, MessageRole.FAULT);
  43.         ForcedResponseMessage forcedResponseMessage = new ForcedResponseMessage();
  44.         forcedResponseMessage.setContent(null); // vuoto
  45.         forcedResponseMessage.setContentType(null); // vuoto
  46.         forcedResponseMessage.setResponseCode(getReturnCode(errorCode)+"");
  47.         forcedResponseMessage.setHeadersValues(new HashMap<>());
  48.         String headerValue = buildHeaderValue(errorCode, realm, genericError, error, scope);
  49.         TransportUtils.addHeader(forcedResponseMessage.getHeadersValues(), HttpConstants.AUTHORIZATION_RESPONSE_WWW_AUTHENTICATE, headerValue);
  50.         errorMessage.forceResponse(forcedResponseMessage);
  51.        
  52.         return errorMessage;
  53.     }
  54.    
  55.     public static int getReturnCode(WWWAuthenticateErrorCode errorCode) {
  56.         switch (errorCode) {
  57.         case invalid_request:
  58.             return 400;
  59.         case invalid_token:
  60.             return 401;
  61.         case insufficient_scope:
  62.             return 403;
  63.         }
  64.         return 500;
  65.     }
  66.    
  67.     public static String buildHeaderValue(WWWAuthenticateErrorCode errorCode, String realm, boolean genericError, String error, String ... scope) {
  68.        
  69.         StringBuilder bf = new StringBuilder(HttpConstants.AUTHORIZATION_PREFIX_BEARER);
  70.         bf.append("realm=\"");
  71.         bf.append(realm);
  72.         bf.append("\", error=\"");
  73.         bf.append(errorCode.name());
  74.         bf.append("\", error_description=\"");
  75.         if(!genericError) {
  76.             bf.append(error);
  77.         }
  78.         switch (errorCode) {
  79.         case invalid_request:
  80.             if(genericError) {
  81.                 bf.append("The request is missing a required token parameter");
  82.             }
  83.             break;
  84.         case invalid_token:
  85.             if(genericError) {
  86.                 bf.append("Token invalid");
  87.             }
  88.             break;
  89.         case insufficient_scope:
  90.             if(genericError) {
  91.                 bf.append("The request requires higher privileges than provided by the access token");
  92.             }
  93.             break;
  94.         }
  95.         bf.append("\"");
  96.         if(scope!=null && scope.length>0) {
  97.             bf.append(", scope=\"");
  98.             for (int i = 0; i < scope.length; i++) {
  99.                 if(i>0) {
  100.                     bf.append(",");
  101.                 }
  102.                 bf.append(scope[i]);    
  103.             }
  104.             bf.append("\"");
  105.         }
  106.        
  107.         return bf.toString();
  108.     }
  109.    
  110.     public static String buildBasicHeaderValue(String realm) {
  111.        
  112.         StringBuilder bf = new StringBuilder(HttpConstants.AUTHORIZATION_PREFIX_BASIC);
  113.         bf.append("realm=\"");
  114.         bf.append(realm);
  115.         bf.append("\"");
  116.         return bf.toString();
  117.     }
  118.    
  119.     public static String buildCustomHeaderValue(String auth, String realm, WWWAuthenticateErrorCode errorCode, String errorDescription) {
  120.         return buildCustomHeaderValue(auth, realm, errorCode!=null ? errorCode.name() : null, errorDescription);
  121.     }
  122.     public static String buildCustomHeaderValue(String auth, String realm, String errorCode, String errorDescription) {
  123.        
  124.         StringBuilder bf = new StringBuilder(auth);
  125.         bf.append(" realm=\"");
  126.         bf.append(realm);
  127.         bf.append("\"");
  128.         if(errorCode!=null) {
  129.             bf.append(", error=\"");
  130.             bf.append(errorCode);
  131.             bf.append("\"");
  132.         }
  133.         if(errorDescription!=null) {
  134.             bf.append(", error_description=\"");
  135.             bf.append(errorDescription);
  136.             bf.append("\"");
  137.         }
  138.         return bf.toString();
  139.        
  140.     }
  141.    
  142. }