001/*
002 * Licensed to DuraSpace under one or more contributor license agreements.
003 * See the NOTICE file distributed with this work for additional information
004 * regarding copyright ownership.
005 *
006 * DuraSpace licenses this file to you under the Apache License,
007 * Version 2.0 (the "License"); you may not use this file except in
008 * compliance with the License.  You may obtain a copy of the License at
009 *
010 *     http://www.apache.org/licenses/LICENSE-2.0
011 *
012 * Unless required by applicable law or agreed to in writing, software
013 * distributed under the License is distributed on an "AS IS" BASIS,
014 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
015 * See the License for the specific language governing permissions and
016 * limitations under the License.
017 */
018package org.fcrepo.auth.common;
019
020import org.apache.http.auth.BasicUserPrincipal;
021import org.apache.shiro.subject.PrincipalCollection;
022import org.apache.shiro.subject.Subject;
023
024/**
025 * Security context that is simply a thin wrapper around a Shiro Subject.
026 * 
027 * @author peichman
028 */
029public class ShiroSecurityContext  {
030
031    private Subject user;
032
033    private String userName;
034
035    /**
036     * Create a new security context using the given Shiro subject. That subject will typically be the value returned
037     * by a call to {@code SecurityUtils.getSubject()}.
038     *
039     * @param user subject to create the security context for
040     */
041    public ShiroSecurityContext(final Subject user) {
042        if (user != null) {
043            this.user = user;
044            final PrincipalCollection principals = user.getPrincipals();
045            if (principals != null) {
046                final BasicUserPrincipal userPrincipal = principals.oneByType(BasicUserPrincipal.class);
047                if (userPrincipal != null) {
048                    this.userName = userPrincipal.getName();
049                } else {
050                    this.userName = null;
051                }
052            }
053        }
054    }
055}