public class StandardRoleMapper extends Object implements RoleMapper
RoleMapper that supports configuration from the WildFly management API.| Constructor and Description |
|---|
StandardRoleMapper(AuthorizerConfiguration authorizerConfiguration) |
| Modifier and Type | Method and Description |
|---|---|
boolean |
canRunAs(Set<String> mappedRoles,
String runAsRole)
Gets whether the given set of mapped roles provides a caller with the privilege to run as the given
"
runAsRole". |
Set<String> |
mapRoles(Caller caller,
Environment callEnvironment,
Action action,
TargetAttribute attribute)
Determine the roles available for the caller for a management operation affecting an individual attribute.
|
Set<String> |
mapRoles(Caller caller,
Environment callEnvironment,
Action action,
TargetResource resource)
Determine the roles available for the caller for a management operation affecting an entire resource.
|
Set<String> |
mapRoles(Caller caller,
Environment callEnvironment,
Set<String> operationHeaderRoles)
Determine the roles available for the caller without reference to a particular action or target.
|
public StandardRoleMapper(AuthorizerConfiguration authorizerConfiguration)
public Set<String> mapRoles(Caller caller, Environment callEnvironment, Action action, TargetAttribute attribute)
RoleMappermapRoles in interface RoleMappercaller - the caller. Cannot be nullcallEnvironment - the call environment. Cannot be nullaction - the action being authorized. Cannot be nullattribute - the target of the action. Cannot be nullnull, but may be an empty setpublic Set<String> mapRoles(Caller caller, Environment callEnvironment, Action action, TargetResource resource)
RoleMappermapRoles in interface RoleMappercaller - the caller. Cannot be nullcallEnvironment - the call environment. Cannot be nullaction - the action being authorized. Cannot be nullresource - the target of the action. Cannot be nullnull, but may be an empty setpublic Set<String> mapRoles(Caller caller, Environment callEnvironment, Set<String> operationHeaderRoles)
RoleMappermapRoles in interface RoleMappercaller - the caller. Cannot be nullcallEnvironment - the call environment. Cannot be nulloperationHeaderRoles - any roles specified as headers in the operation. May be nullnull, but may be an empty setpublic boolean canRunAs(Set<String> mappedRoles, String runAsRole)
RoleMapperrunAsRole".canRunAs in interface RoleMappermappedRoles - a set of roles obtained from a call to one of this mapper's mapRoles methodsrunAsRole - the role the caller wishes to run astrue if running as runAsRole is allowedCopyright © 2015 JBoss by Red Hat. All rights reserved.