public class org.apache.shiro.realm.ldap.DefaultLdapRealm extends org.apache.shiro.realm.AuthorizingRealm
{
private static final org.slf4j.Logger log;
private static final java.lang.String USERDN_SUBSTITUTION_TOKEN;
private java.lang.String userDnPrefix;
private java.lang.String userDnSuffix;
private org.apache.shiro.realm.ldap.LdapContextFactory contextFactory;
public void <init>()
{
org.apache.shiro.realm.ldap.JndiLdapContextFactory v;
org.apache.shiro.authc.credential.AllowAllCredentialsMatcher v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
specialinvoke v.<org.apache.shiro.realm.AuthorizingRealm: void <init>()>();
v = new org.apache.shiro.authc.credential.AllowAllCredentialsMatcher;
specialinvoke v.<org.apache.shiro.authc.credential.AllowAllCredentialsMatcher: void <init>()>();
virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: void setCredentialsMatcher(org.apache.shiro.authc.credential.CredentialsMatcher)>(v);
virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: void setAuthenticationTokenClass(java.lang.Class)>(class "Lorg/apache/shiro/authc/AuthenticationToken;");
v = new org.apache.shiro.realm.ldap.JndiLdapContextFactory;
specialinvoke v.<org.apache.shiro.realm.ldap.JndiLdapContextFactory: void <init>()>();
v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.realm.ldap.LdapContextFactory contextFactory> = v;
return;
}
protected java.lang.String getUserDnPrefix()
{
java.lang.String v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v = v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String userDnPrefix>;
return v;
}
protected java.lang.String getUserDnSuffix()
{
java.lang.String v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v = v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String userDnSuffix>;
return v;
}
public void setUserDnTemplate(java.lang.String) throws java.lang.IllegalArgumentException
{
org.slf4j.Logger v, v;
java.lang.IllegalArgumentException v, v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
int v, v, v, v;
java.lang.String v, v, v, v;
boolean v, v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: java.lang.String;
v = staticinvoke <org.apache.shiro.util.StringUtils: boolean hasText(java.lang.String)>(v);
if v != 0 goto label;
v = new java.lang.IllegalArgumentException;
specialinvoke v.<java.lang.IllegalArgumentException: void <init>(java.lang.String)>("User DN template cannot be null or empty.");
throw v;
label:
v = virtualinvoke v.<java.lang.String: int indexOf(java.lang.String)>("{0}");
if v >= 0 goto label;
v = new java.lang.IllegalArgumentException;
specialinvoke v.<java.lang.IllegalArgumentException: void <init>(java.lang.String)>("User DN template must contain the \'{0}\' replacement token to understand where to insert the runtime authentication principal.");
throw v;
label:
v = virtualinvoke v.<java.lang.String: java.lang.String substring(int,int)>(0, v);
v = virtualinvoke v.<java.lang.String: int length()>();
v = "{0}";
v = virtualinvoke v.<java.lang.String: int length()>();
v = v + v;
v = virtualinvoke v.<java.lang.String: java.lang.String substring(int)>(v);
v = <org.apache.shiro.realm.ldap.DefaultLdapRealm: org.slf4j.Logger log>;
v = interfaceinvoke v.<org.slf4j.Logger: boolean isDebugEnabled()>();
if v == 0 goto label;
v = <org.apache.shiro.realm.ldap.DefaultLdapRealm: org.slf4j.Logger log>;
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String,java.lang.Object,java.lang.Object)>("Determined user DN prefix [{}] and suffix [{}]", v, v);
label:
v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String userDnPrefix> = v;
v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String userDnSuffix> = v;
return;
}
public java.lang.String getUserDnTemplate()
{
java.lang.String v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String getUserDn(java.lang.String)>("{0}");
return v;
}
protected java.lang.String getUserDn(java.lang.String) throws java.lang.IllegalArgumentException, java.lang.IllegalStateException
{
int v, v, v, v, v, v, v;
java.lang.String v, v, v, v;
boolean v;
org.slf4j.Logger v;
java.lang.IllegalArgumentException v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
java.lang.StringBuilder v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: java.lang.String;
v = staticinvoke <org.apache.shiro.util.StringUtils: boolean hasText(java.lang.String)>(v);
if v != 0 goto label;
v = new java.lang.IllegalArgumentException;
specialinvoke v.<java.lang.IllegalArgumentException: void <init>(java.lang.String)>("User principal cannot be null or empty for User DN construction.");
throw v;
label:
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String getUserDnPrefix()>();
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String getUserDnSuffix()>();
if v != null goto label;
if v != null goto label;
v = <org.apache.shiro.realm.ldap.DefaultLdapRealm: org.slf4j.Logger log>;
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String)>("userDnTemplate property has not been configured, indicating the submitted AuthenticationToken\'s principal is the same as the User DN.  Returning the method argument as is.");
return v;
label:
if v == null goto label;
v = virtualinvoke v.<java.lang.String: int length()>();
goto label;
label:
v = 0;
label:
v = v;
if v == null goto label;
v = virtualinvoke v.<java.lang.String: int length()>();
goto label;
label:
v = 0;
label:
v = v;
v = new java.lang.StringBuilder;
v = virtualinvoke v.<java.lang.String: int length()>();
v = v + v;
v = v + v;
specialinvoke v.<java.lang.StringBuilder: void <init>(int)>(v);
if v <= 0 goto label;
virtualinvoke v.<java.lang.StringBuilder: java.lang.StringBuilder append(java.lang.String)>(v);
label:
virtualinvoke v.<java.lang.StringBuilder: java.lang.StringBuilder append(java.lang.String)>(v);
if v <= 0 goto label;
virtualinvoke v.<java.lang.StringBuilder: java.lang.StringBuilder append(java.lang.String)>(v);
label:
v = virtualinvoke v.<java.lang.StringBuilder: java.lang.String toString()>();
return v;
}
public void setContextFactory(org.apache.shiro.realm.ldap.LdapContextFactory)
{
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.realm.ldap.LdapContextFactory;
v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.realm.ldap.LdapContextFactory contextFactory> = v;
return;
}
public org.apache.shiro.realm.ldap.LdapContextFactory getContextFactory()
{
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v = v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.realm.ldap.LdapContextFactory contextFactory>;
return v;
}
protected org.apache.shiro.authc.AuthenticationInfo doGetAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken) throws org.apache.shiro.authc.AuthenticationException
{
org.apache.shiro.authc.AuthenticationInfo v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.authc.AuthenticationToken v;
javax.naming.NamingException v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
javax.naming.AuthenticationException v;
org.apache.shiro.authc.AuthenticationException v, v;
org.apache.shiro.ldap.UnsupportedAuthenticationMechanismException v;
javax.naming.AuthenticationNotSupportedException v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.authc.AuthenticationToken;
label:
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.realm.ldap.LdapContextFactory getContextFactory()>();
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.authc.AuthenticationInfo queryForAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken,org.apache.shiro.realm.ldap.LdapContextFactory)>(v, v);
label:
goto label;
label:
v := @caughtexception;
v = new org.apache.shiro.ldap.UnsupportedAuthenticationMechanismException;
specialinvoke v.<org.apache.shiro.ldap.UnsupportedAuthenticationMechanismException: void <init>(java.lang.String,java.lang.Throwable)>("Unsupported configured authentication mechanism", v);
throw v;
label:
v := @caughtexception;
v = new org.apache.shiro.authc.AuthenticationException;
specialinvoke v.<org.apache.shiro.authc.AuthenticationException: void <init>(java.lang.String,java.lang.Throwable)>("LDAP authentication failed.", v);
throw v;
label:
v := @caughtexception;
v = new org.apache.shiro.authc.AuthenticationException;
specialinvoke v.<org.apache.shiro.authc.AuthenticationException: void <init>(java.lang.String,java.lang.Throwable)>("LDAP naming error while attempting to authenticate user.", v);
throw v;
label:
return v;
catch javax.naming.AuthenticationNotSupportedException from label to label with label;
catch javax.naming.AuthenticationException from label to label with label;
catch javax.naming.NamingException from label to label with label;
}
protected org.apache.shiro.authz.AuthorizationInfo doGetAuthorizationInfo(org.apache.shiro.subject.PrincipalCollection)
{
org.apache.shiro.authz.AuthorizationException v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.authz.AuthorizationInfo v;
org.apache.shiro.subject.PrincipalCollection v;
java.lang.String v;
javax.naming.NamingException v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.subject.PrincipalCollection;
label:
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.realm.ldap.LdapContextFactory getContextFactory()>();
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.authz.AuthorizationInfo queryForAuthorizationInfo(org.apache.shiro.subject.PrincipalCollection,org.apache.shiro.realm.ldap.LdapContextFactory)>(v, v);
label:
goto label;
label:
v := @caughtexception;
v = dynamicinvoke "makeConcatWithConstants" <java.lang.String (org.apache.shiro.subject.PrincipalCollection)>(v) <java.lang.invoke.StringConcatFactory: java.lang.invoke.CallSite makeConcatWithConstants(java.lang.invoke.MethodHandles$Lookup,java.lang.String,java.lang.invoke.MethodType,java.lang.String,java.lang.Object[])>("LDAP naming error while attempting to retrieve authorization for user [\u].");
v = new org.apache.shiro.authz.AuthorizationException;
specialinvoke v.<org.apache.shiro.authz.AuthorizationException: void <init>(java.lang.String,java.lang.Throwable)>(v, v);
throw v;
label:
return v;
catch javax.naming.NamingException from label to label with label;
}
protected java.lang.Object getLdapPrincipal(org.apache.shiro.authc.AuthenticationToken)
{
java.lang.Object v;
org.apache.shiro.authc.AuthenticationToken v;
java.lang.String v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
boolean v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.authc.AuthenticationToken;
v = interfaceinvoke v.<org.apache.shiro.authc.AuthenticationToken: java.lang.Object getPrincipal()>();
v = v instanceof java.lang.String;
if v == 0 goto label;
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String getUserDn(java.lang.String)>(v);
return v;
label:
return v;
}
protected org.apache.shiro.authc.AuthenticationInfo queryForAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken, org.apache.shiro.realm.ldap.LdapContextFactory) throws javax.naming.NamingException
{
java.lang.Throwable v;
org.apache.shiro.authc.AuthenticationInfo v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.slf4j.Logger v;
org.apache.shiro.authc.AuthenticationToken v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
java.lang.Object v, v, v;
javax.naming.ldap.LdapContext v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.authc.AuthenticationToken;
v := @parameter: org.apache.shiro.realm.ldap.LdapContextFactory;
v = interfaceinvoke v.<org.apache.shiro.authc.AuthenticationToken: java.lang.Object getPrincipal()>();
v = interfaceinvoke v.<org.apache.shiro.authc.AuthenticationToken: java.lang.Object getCredentials()>();
v = <org.apache.shiro.realm.ldap.DefaultLdapRealm: org.slf4j.Logger log>;
interfaceinvoke v.<org.slf4j.Logger: void debug(java.lang.String,java.lang.Object)>("Authenticating user \'{}\' through LDAP", v);
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.Object getLdapPrincipal(org.apache.shiro.authc.AuthenticationToken)>(v);
v = null;
label:
v = interfaceinvoke v.<org.apache.shiro.realm.ldap.LdapContextFactory: javax.naming.ldap.LdapContext getLdapContext(java.lang.Object,java.lang.Object)>(v, v);
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.apache.shiro.authc.AuthenticationInfo createAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken,java.lang.Object,java.lang.Object,javax.naming.ldap.LdapContext)>(v, v, v, v);
label:
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(v);
return v;
label:
v := @caughtexception;
staticinvoke <org.apache.shiro.realm.ldap.LdapUtils: void closeContext(javax.naming.ldap.LdapContext)>(v);
throw v;
catch java.lang.Throwable from label to label with label;
}
protected org.apache.shiro.authc.AuthenticationInfo createAuthenticationInfo(org.apache.shiro.authc.AuthenticationToken, java.lang.Object, java.lang.Object, javax.naming.ldap.LdapContext) throws javax.naming.NamingException
{
org.apache.shiro.authc.AuthenticationToken v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
org.apache.shiro.authc.SimpleAuthenticationInfo v;
java.lang.Object v, v, v, v;
java.lang.String v;
javax.naming.ldap.LdapContext v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.authc.AuthenticationToken;
v := @parameter: java.lang.Object;
v := @parameter: java.lang.Object;
v := @parameter: javax.naming.ldap.LdapContext;
v = new org.apache.shiro.authc.SimpleAuthenticationInfo;
v = interfaceinvoke v.<org.apache.shiro.authc.AuthenticationToken: java.lang.Object getPrincipal()>();
v = interfaceinvoke v.<org.apache.shiro.authc.AuthenticationToken: java.lang.Object getCredentials()>();
v = virtualinvoke v.<org.apache.shiro.realm.ldap.DefaultLdapRealm: java.lang.String getName()>();
specialinvoke v.<org.apache.shiro.authc.SimpleAuthenticationInfo: void <init>(java.lang.Object,java.lang.Object,java.lang.String)>(v, v, v);
return v;
}
protected org.apache.shiro.authz.AuthorizationInfo queryForAuthorizationInfo(org.apache.shiro.subject.PrincipalCollection, org.apache.shiro.realm.ldap.LdapContextFactory) throws javax.naming.NamingException
{
org.apache.shiro.subject.PrincipalCollection v;
org.apache.shiro.realm.ldap.LdapContextFactory v;
org.apache.shiro.realm.ldap.DefaultLdapRealm v;
v := @this: org.apache.shiro.realm.ldap.DefaultLdapRealm;
v := @parameter: org.apache.shiro.subject.PrincipalCollection;
v := @parameter: org.apache.shiro.realm.ldap.LdapContextFactory;
return null;
}
static void <clinit>()
{
org.slf4j.Logger v;
v = staticinvoke <org.slf4j.LoggerFactory: org.slf4j.Logger getLogger(java.lang.Class)>(class "Lorg/apache/shiro/realm/ldap/DefaultLdapRealm;");
<org.apache.shiro.realm.ldap.DefaultLdapRealm: org.slf4j.Logger log> = v;
return;
}
}