public class EnterpriseCifsAuthenticator extends CifsAuthenticatorBase implements javax.security.auth.callback.CallbackHandler
CIFS authenticator that supports NTLMSSP and Kerberos logins.
| Modifier and Type | Field and Description |
|---|---|
protected static org.apache.commons.logging.Log |
logger |
m_md4EncoderGUEST_USERNAME, m_config, m_randomAUTH_ACCDISABLED, AUTH_ALLOW, AUTH_BADPASSWORD, AUTH_BADUSER, AUTH_DISALLOW, AUTH_GUEST, AUTH_PASSEXPIRED, LANMAN, NoAccess, NTLM1, NTLM2, ReadOnly, SHARE_MODE, STANDARD_CHALLENGE_LEN, STANDARD_PASSWORD_LEN, USER_MODE, Writeable| Constructor and Description |
|---|
EnterpriseCifsAuthenticator()
Class constructor
|
| Modifier and Type | Method and Description |
|---|---|
void |
generateNegotiateResponse(org.alfresco.jlan.smb.server.SMBSrvSession sess,
org.alfresco.jlan.smb.server.SMBSrvPacket respPkt,
boolean extendedSecurity)
Generate the CIFS negotiate response packet, the authenticator should add authentication specific fields
to the response.
|
int |
getEncryptionKeyLength()
Return the encryption key/challenge length
|
int |
getServerCapabilities()
Return the server capability flags
|
void |
handle(javax.security.auth.callback.Callback[] callbacks)
JAAS callback handler
|
void |
initialize()
Initialize the authenticator (after properties have been set)
|
void |
initialize(org.alfresco.jlan.server.config.ServerConfiguration config,
org.springframework.extensions.config.ConfigElement params)
Initialize the authenticator (via the config service)
|
void |
processSessionSetup(org.alfresco.jlan.smb.server.SMBSrvSession sess,
org.alfresco.jlan.smb.server.SMBSrvPacket reqPkt)
Process the CIFS session setup request packet and build the session setup response.
|
void |
setDisableNTLM(boolean disableNTLM) |
void |
setDisallowNTLMv1(boolean disallowNTLMv1) |
void |
setEnableTicketCracking(boolean enaTktCracking)
Enable Kerbeors ticket cracking code that is required for Java5
|
void |
setJaasConfigEntryName(java.lang.String jaasConfigEntryName)
Sets the HTTP service login configuration entry name.
|
void |
setKerberosDebug(boolean kerberosDebug) |
void |
setPassword(java.lang.String password)
Sets the HTTP service account password.
|
void |
setRealm(java.lang.String realm)
Sets the HTTP service account realm.
|
void |
setStripKerberosUsernameSuffix(boolean stripKerberosUsernameSuffix) |
void |
setUseSPNEGO(boolean useSPNEGO) |
afterPropertiesSet, checkForAdminUserName, destroy, doGuestLogon, doInTransaction, getAuthenticationComponent, getAuthenticationService, getAuthorityService, getHomeFolderForUser, getNodeService, getNTLMAuthenticator, getPersonService, isActive, mapUserNameToPerson, setActive, setAuthenticationComponent, setAuthenticationService, setAuthorityService, setCurrentUser, setDiskInterface, setNodeService, setPersonService, setTransactionService, validateAuthenticationModeallowGuest, authenticateShareConnect, authenticateUser, authenticateUserPlainText, closeAuthenticator, convertPassword, generateEncryptedPassword, getAccessMode, getAuthContext, getCIFSConfig, getEnabledDialects, getEncryptor, getGuestUserName, getsecurityConfig, getSecurityMode, getStatusAsString, getUserDetails, hasDebug, hasExtendedSecurity, hasSessionCleanup, mapClientAddressToDomain, mapUnknownUserToGuest, setAccessMode, setAllowGuest, setConfig, setDebug, setExtendedSecurity, setGuestUserName, setMapToGuest, setSecurityMode, setSessionCleanup, toString, validatePasswordpublic EnterpriseCifsAuthenticator()
public void setPassword(java.lang.String password)
password - the password to setpublic void setRealm(java.lang.String realm)
realm - the realm to setpublic void setJaasConfigEntryName(java.lang.String jaasConfigEntryName)
loginEntryName - the loginEntryName to setpublic void setKerberosDebug(boolean kerberosDebug)
public void setDisableNTLM(boolean disableNTLM)
public void setUseSPNEGO(boolean useSPNEGO)
public void setDisallowNTLMv1(boolean disallowNTLMv1)
public void setStripKerberosUsernameSuffix(boolean stripKerberosUsernameSuffix)
public void setEnableTicketCracking(boolean enaTktCracking)
enaTktCracking - booleanpublic void initialize(org.alfresco.jlan.server.config.ServerConfiguration config,
org.springframework.extensions.config.ConfigElement params)
throws org.alfresco.jlan.server.config.InvalidConfigurationException
initialize in class CifsAuthenticatorBaseconfig - ServerConfigurationparams - ConfigElementorg.alfresco.jlan.server.config.InvalidConfigurationExceptionpublic void initialize()
throws org.alfresco.jlan.server.config.InvalidConfigurationException
initialize in class CifsAuthenticatorBaseorg.alfresco.jlan.server.config.InvalidConfigurationExceptionpublic void handle(javax.security.auth.callback.Callback[] callbacks)
throws java.io.IOException,
javax.security.auth.callback.UnsupportedCallbackException
handle in interface javax.security.auth.callback.CallbackHandlercallbacks - Callback[]java.io.IOExceptionjavax.security.auth.callback.UnsupportedCallbackExceptionpublic int getEncryptionKeyLength()
getEncryptionKeyLength in interface org.alfresco.jlan.server.auth.ICifsAuthenticatorgetEncryptionKeyLength in class org.alfresco.jlan.server.auth.CifsAuthenticatorpublic int getServerCapabilities()
getServerCapabilities in interface org.alfresco.jlan.server.auth.ICifsAuthenticatorgetServerCapabilities in class org.alfresco.jlan.server.auth.CifsAuthenticatorpublic void generateNegotiateResponse(org.alfresco.jlan.smb.server.SMBSrvSession sess,
org.alfresco.jlan.smb.server.SMBSrvPacket respPkt,
boolean extendedSecurity)
throws org.alfresco.jlan.server.auth.AuthenticatorException
generateNegotiateResponse in interface org.alfresco.jlan.server.auth.ICifsAuthenticatorgenerateNegotiateResponse in class org.alfresco.jlan.server.auth.CifsAuthenticatorsess - SMBSrvSessionrespPkt - SMBSrvPacketextendedSecurity - booleanorg.alfresco.jlan.server.auth.AuthenticatorExceptionpublic void processSessionSetup(org.alfresco.jlan.smb.server.SMBSrvSession sess,
org.alfresco.jlan.smb.server.SMBSrvPacket reqPkt)
throws org.alfresco.jlan.smb.server.SMBSrvException
This is the boundary between alfresco and JLAN. So is responsible for logging and ensuring that the exceptions are correct for JLAN.
processSessionSetup in interface org.alfresco.jlan.server.auth.ICifsAuthenticatorprocessSessionSetup in class org.alfresco.jlan.server.auth.CifsAuthenticatorsess - SMBSrvSessionreqPkt - SMBSrvPacketorg.alfresco.jlan.smb.server.SMBSrvExceptionCopyright © 2005 - 2010 Alfresco Software, Inc. All Rights Reserved.