View Javadoc

1   /**
2    * This file Copyright (c) 2003-2010 Magnolia International
3    * Ltd.  (http://www.magnolia-cms.com). All rights reserved.
4    *
5    *
6    * This file is dual-licensed under both the Magnolia
7    * Network Agreement and the GNU General Public License.
8    * You may elect to use one or the other of these licenses.
9    *
10   * This file is distributed in the hope that it will be
11   * useful, but AS-IS and WITHOUT ANY WARRANTY; without even the
12   * implied warranty of MERCHANTABILITY or FITNESS FOR A
13   * PARTICULAR PURPOSE, TITLE, or NONINFRINGEMENT.
14   * Redistribution, except as permitted by whichever of the GPL
15   * or MNA you select, is prohibited.
16   *
17   * 1. For the GPL license (GPL), you can redistribute and/or
18   * modify this file under the terms of the GNU General
19   * Public License, Version 3, as published by the Free Software
20   * Foundation.  You should have received a copy of the GNU
21   * General Public License, Version 3 along with this program;
22   * if not, write to the Free Software Foundation, Inc., 51
23   * Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
24   *
25   * 2. For the Magnolia Network Agreement (MNA), this file
26   * and the accompanying materials are made available under the
27   * terms of the MNA which accompanies this distribution, and
28   * is available at http://www.magnolia-cms.com/mna.html
29   *
30   * Any modifications to this file must keep this entire header
31   * intact.
32   *
33   */
34  package info.magnolia.cms.security;
35  
36  import info.magnolia.cms.core.Content;
37  import info.magnolia.cms.core.HierarchyManager;
38  import info.magnolia.cms.core.NodeData;
39  import info.magnolia.context.MgnlContext;
40  
41  import javax.jcr.ItemNotFoundException;
42  import javax.jcr.PathNotFoundException;
43  import java.util.Collection;
44  import java.util.Set;
45  import java.util.SortedSet;
46  import java.util.TreeSet;
47  
48  /**
49   * Utility methods for magnolia/jcr based security managers.
50   *
51   * @author gjoseph
52   * @version $Revision: $ ($Author: $)
53   */
54  class MgnlSecurityUtil {
55      private static final org.slf4j.Logger log = org.slf4j.LoggerFactory.getLogger(MgnlSecurityUtil.class);
56  
57      static Set<String> collectPropertyNames(Content rootNode, String subnodeName, String repositoryName, boolean isDeep) {
58          final SortedSet<String> set = new TreeSet<String>(String.CASE_INSENSITIVE_ORDER);
59          try {
60              final Content node = rootNode.getContent(subnodeName);
61              collectPropertyNames(node, repositoryName, set, isDeep);
62          } catch (PathNotFoundException e) {
63              log.debug("{} does not have any {}", rootNode.getHandle(), repositoryName);
64          } catch (Throwable t) {
65              log.error("Failed to read " + repositoryName, t);
66          }
67          return set;
68      }
69  
70      static void collectPropertyNames(Content node, String repositoryName, Collection<String> set, boolean isDeep) throws Throwable {
71          final Collection<NodeData> c = node.getNodeDataCollection();
72          for (NodeData nd : c) {
73              final String uuid = nd.getString();
74              try {
75                  final HierarchyManager hierarchyManager = getSystemHierarchyManager(repositoryName);
76                  final Content targetNode = hierarchyManager.getContentByUUID(uuid);
77                  set.add(targetNode.getName());
78                  if (isDeep && targetNode.hasContent("groups")) {
79                      collectPropertyNames(targetNode.getContent("groups"), repositoryName, set, true);
80                  }
81              }
82              catch (ItemNotFoundException t) {
83                  final String path = nd.getHandle();
84                  // todo: why we are using UUIDs here? shouldn't be better to use group names, since uuids can change???
85                  log.warn("Can't find {} node by UUID {} referred by node {}", new Object[]{repositoryName, t.getMessage(), path});
86                  log.debug("Failed while reading node by UUID", t);
87                  // we continue since it can happen that target node is removed
88                  // - UUID's are kept as simple strings thus have no referential integrity
89              }
90          }
91      }
92  
93      static HierarchyManager getContextHierarchyManager(String repositoryId) {
94          return MgnlContext.getHierarchyManager(repositoryId);
95      }
96  
97      static HierarchyManager getSystemHierarchyManager(String repositoryName) {
98          return MgnlContext.getSystemContext().getHierarchyManager(repositoryName);
99      }
100 }