public class org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm extends org.apache.shiro.realm.ldap.AbstractLdapRealm
{
private static final org.slf4j.Logger log;
private static final java.lang.String ROLE_NAMES_DELIMETER;
private java.util.Map groupRolesMap;
public void <init>()
{
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
specialinvoke v.<org.apache.shiro.realm.ldap.AbstractLdapRealm: void <init>()>();
return;
}
public void setGroupRolesMap(java.util.Map)
{
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
java.util.Map v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: java.util.Map;
v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.util.Map groupRolesMap> = v;
return;
}
protected org.apache.shiro.authc.AuthenticationInfo queryForAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken, org.apache.shiro.realm.ldap.LdapContextFactory) throws javax.naming.NamingException
{
java.lang.Throwable v;
org.apache.shiro.authc.AuthenticationInfo v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.authc.AuthenticationToken v;
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
char[] v, v;
java.lang.String v, v, v;
javax.naming.ldap.LdapContext v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: org.apache.shiro.authc.AuthenticationToken;
v := @parameter: org.apache.shiro.realm.ldap.LdapContextFactory;
label:
v = virtualinvoke v.<org.apache.shiro.authc.UsernamePasswordToken: java.lang.String getUsername()>();
v = virtualinvoke v.<org.apache.shiro.authc.UsernamePasswordToken: char[] getPassword()>();
v = staticinvoke <java.lang.String: java.lang.String valueOf(char[])>(v);
v = interfaceinvoke v.<org.apache.shiro.realm.ldap.LdapContextFactory: javax.naming.ldap.LdapContext getLdapContext(java.lang.String,java.lang.String)>(v, v);
label:
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(v);
goto label;
label:
v := @caughtexception;
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(null);
throw v;
label:
v = virtualinvoke v.<org.apache.shiro.authc.UsernamePasswordToken: java.lang.String getUsername()>();
v = virtualinvoke v.<org.apache.shiro.authc.UsernamePasswordToken: char[] getPassword()>();
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.apache.shiro.authc.AuthenticationInfo buildAuthenticationInfo(java.lang.String,char[])>(v, v);
return v;
catch java.lang.Throwable from label to label with label;
}
protected org.apache.shiro.authc.AuthenticationInfo buildAuthenticationInfo(java.lang.String, char[])
{
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
char[] v;
java.lang.String v, v;
org.apache.shiro.authc.SimpleAuthenticationInfo v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: java.lang.String;
v := @parameter: char[];
v = new org.apache.shiro.authc.SimpleAuthenticationInfo;
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String getName()>();
specialinvoke v.<org.apache.shiro.authc.SimpleAuthenticationInfo: void <init>(java.lang.Object,java.lang.Object,java.lang.String)>(v, v, v);
return v;
}
protected org.apache.shiro.authz.AuthorizationInfo queryForAuthorizationInfo(org.apache.shiro.subject.PrincipalCollection, org.apache.shiro.realm.ldap.LdapContextFactory) throws javax.naming.NamingException
{
java.lang.Throwable v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.authz.AuthorizationInfo v;
java.util.Set v;
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
java.lang.Object v;
org.apache.shiro.subject.PrincipalCollection v;
javax.naming.ldap.LdapContext v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: org.apache.shiro.subject.PrincipalCollection;
v := @parameter: org.apache.shiro.realm.ldap.LdapContextFactory;
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.Object getAvailablePrincipal(org.apache.shiro.subject.PrincipalCollection)>(v);
v = interfaceinvoke v.<org.apache.shiro.realm.ldap.LdapContextFactory: javax.naming.ldap.LdapContext getSystemLdapContext()>();
label:
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.util.Set getRoleNamesForUser(java.lang.String,javax.naming.ldap.LdapContext)>(v, v);
label:
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(v);
goto label;
label:
v := @caughtexception;
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(v);
throw v;
label:
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.apache.shiro.authz.AuthorizationInfo buildAuthorizationInfo(java.util.Set)>(v);
return v;
catch java.lang.Throwable from label to label with label;
}
protected org.apache.shiro.authz.AuthorizationInfo buildAuthorizationInfo(java.util.Set)
{
java.util.Set v;
org.apache.shiro.authz.SimpleAuthorizationInfo v;
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: java.util.Set;
v = new org.apache.shiro.authz.SimpleAuthorizationInfo;
specialinvoke v.<org.apache.shiro.authz.SimpleAuthorizationInfo: void <init>(java.util.Set)>(v);
return v;
}
protected java.util.Set getRoleNamesForUser(java.lang.String, javax.naming.ldap.LdapContext) throws javax.naming.NamingException
{
java.util.Locale v, v;
boolean v, v, v, v, v, v;
java.util.Collection v, v;
javax.naming.directory.Attributes v;
javax.naming.NamingEnumeration v, v;
javax.naming.ldap.LdapContext v;
java.lang.Object[] v;
javax.naming.directory.SearchControls v;
java.lang.String v, v, v, v, v, v, v, v, v, v, v, v, v;
java.util.LinkedHashSet v;
org.slf4j.Logger v, v, v, v;
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
java.lang.Object v, v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: java.lang.String;
v := @parameter: javax.naming.ldap.LdapContext;
v = new java.util.LinkedHashSet;
specialinvoke v.<java.util.LinkedHashSet: void <init>()>();
v = new javax.naming.directory.SearchControls;
specialinvoke v.<javax.naming.directory.SearchControls: void <init>()>();
virtualinvoke v.<javax.naming.directory.SearchControls: void setSearchScope(int)>(2);
v = v;
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String principalSuffix>;
if v == null goto label;
v = <java.util.Locale: java.util.Locale ROOT>;
v = virtualinvoke v.<java.lang.String: java.lang.String toLowerCase(java.util.Locale)>(v);
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String principalSuffix>;
v = <java.util.Locale: java.util.Locale ROOT>;
v = virtualinvoke v.<java.lang.String: java.lang.String toLowerCase(java.util.Locale)>(v);
v = virtualinvoke v.<java.lang.String: boolean endsWith(java.lang.String)>(v);
if v != 0 goto label;
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String principalSuffix>;
v = dynamicinvoke "makeConcatWithConstants" <java.lang.String (java.lang.String,java.lang.String)>(v, v) <java.lang.invoke.StringConcatFactory: java.lang.invoke.CallSite makeConcatWithConstants(java.lang.invoke.MethodHandles$Lookup,java.lang.String,java.lang.invoke.MethodType,java.lang.String,java.lang.Object[])>("\u0001\u0001");
label:
v = newarray (java.lang.Object)[1];
v[0] = v;
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String searchBase>;
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.lang.String searchFilter>;
v = interfaceinvoke v.<javax.naming.ldap.LdapContext: javax.naming.NamingEnumeration search(java.lang.String,java.lang.String,java.lang.Object[],javax.naming.directory.SearchControls)>(v, v, v, v);
label:
v = interfaceinvoke v.<javax.naming.NamingEnumeration: boolean hasMoreElements()>();
if v == 0 goto label;
v = interfaceinvoke v.<javax.naming.NamingEnumeration: java.lang.Object next()>();
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = interfaceinvoke v.<org.slf4j.Logger: boolean isDebugEnabled()>();
if v == 0 goto label;
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = virtualinvoke v.<javax.naming.directory.SearchResult: java.lang.String getName()>();
v = dynamicinvoke "makeConcatWithConstants" <java.lang.String (java.lang.String)>(v) <java.lang.invoke.StringConcatFactory: java.lang.invoke.CallSite makeConcatWithConstants(java.lang.invoke.MethodHandles$Lookup,java.lang.String,java.lang.invoke.MethodType,java.lang.String,java.lang.Object[])>("Retrieving group names for user [\u]");
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String)>(v);
label:
v = virtualinvoke v.<javax.naming.directory.SearchResult: javax.naming.directory.Attributes getAttributes()>();
if v == null goto label;
v = interfaceinvoke v.<javax.naming.directory.Attributes: javax.naming.NamingEnumeration getAll()>();
label:
v = interfaceinvoke v.<javax.naming.NamingEnumeration: boolean hasMore()>();
if v == 0 goto label;
v = interfaceinvoke v.<javax.naming.NamingEnumeration: java.lang.Object next()>();
v = interfaceinvoke v.<javax.naming.directory.Attribute: java.lang.String getID()>();
v = virtualinvoke v.<java.lang.String: boolean equals(java.lang.Object)>("memberOf");
if v == 0 goto label;
v = staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: java.util.Collection getAllAttributeValues(javax.naming.directory.Attribute)>(v);
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = interfaceinvoke v.<org.slf4j.Logger: boolean isDebugEnabled()>();
if v == 0 goto label;
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = dynamicinvoke "makeConcatWithConstants" <java.lang.String (java.lang.String,java.util.Collection)>(v, v) <java.lang.invoke.StringConcatFactory: java.lang.invoke.CallSite makeConcatWithConstants(java.lang.invoke.MethodHandles$Lookup,java.lang.String,java.lang.invoke.MethodType,java.lang.String,java.lang.Object[])>("Groups found for user [\u]: \u0001");
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String)>(v);
label:
v = virtualinvoke v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.util.Collection getRoleNamesForGroups(java.util.Collection)>(v);
interfaceinvoke v.<java.util.Set: boolean addAll(java.util.Collection)>(v);
goto label;
label:
return v;
}
protected java.util.Collection getRoleNamesForGroups(java.util.Collection)
{
java.lang.String[] v;
java.util.HashSet v;
java.util.Map v, v;
int v, v, v;
java.lang.String v, v;
boolean v, v;
org.slf4j.Logger v, v;
java.util.Iterator v;
java.util.Collection v;
org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm v;
java.lang.Object v, v;
v := @this: org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm;
v := @parameter: java.util.Collection;
v = new java.util.HashSet;
v = interfaceinvoke v.<java.util.Collection: int size()>();
specialinvoke v.<java.util.HashSet: void <init>(int)>(v);
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.util.Map groupRolesMap>;
if v == null goto label;
v = interfaceinvoke v.<java.util.Collection: java.util.Iterator iterator()>();
label:
v = interfaceinvoke v.<java.util.Iterator: boolean hasNext()>();
if v == 0 goto label;
v = interfaceinvoke v.<java.util.Iterator: java.lang.Object next()>();
v = v.<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: java.util.Map groupRolesMap>;
v = interfaceinvoke v.<java.util.Map: java.lang.Object get(java.lang.Object)>(v);
if v == null goto label;
v = virtualinvoke v.<java.lang.String: java.lang.String[] split(java.lang.String)>(",");
v = lengthof v;
v = 0;
label:
if v >= v goto label;
v = v[v];
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = interfaceinvoke v.<org.slf4j.Logger: boolean isDebugEnabled()>();
if v == 0 goto label;
v = <org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log>;
v = dynamicinvoke "makeConcatWithConstants" <java.lang.String (java.lang.String,java.lang.String)>(v, v) <java.lang.invoke.StringConcatFactory: java.lang.invoke.CallSite makeConcatWithConstants(java.lang.invoke.MethodHandles$Lookup,java.lang.String,java.lang.invoke.MethodType,java.lang.String,java.lang.Object[])>("User is member of group [\u] so adding role [\u]");
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String)>(v);
label:
interfaceinvoke v.<java.util.Set: boolean add(java.lang.Object)>(v);
v = v + 1;
goto label;
label:
return v;
}
static void <clinit>()
{
org.slf4j.Logger v;
v = staticinvoke <org.slf4j.LoggerFactory: org.slf4j.Logger getLogger(java.lang.Class)>(class "Lorg/apache/shiro/realm/activedirectory/ActiveDirectoryRealm;");
<org.apache.shiro.realm.activedirectory.ActiveDirectoryRealm: org.slf4j.Logger log> = v;
return;
}
}