Author: akarpe Date: Wed Jul 28 19:26:55 2010 New Revision: 980172 URL: http://svn.apache.org/viewvc?rev=980172&view=rev Log: Initial version of the Camel-Shiro security component
Added: camel/trunk/components/camel-shiro/ camel/trunk/components/camel-shiro/pom.xml (with props) camel/trunk/components/camel-shiro/pom.xml.orig camel/trunk/components/camel-shiro/src/ camel/trunk/components/camel-shiro/src/main/ camel/trunk/components/camel-shiro/src/main/java/ camel/trunk/components/camel-shiro/src/main/java/org/ camel/trunk/components/camel-shiro/src/main/java/org/apache/ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java (with props) camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java.orig camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java (with props) camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java.orig camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java (with props) camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java.orig camel/trunk/components/camel-shiro/src/main/resources/ camel/trunk/components/camel-shiro/src/main/resources/META-INF/ camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt (with props) camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt.orig camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt (with props) camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt.orig camel/trunk/components/camel-shiro/src/test/ camel/trunk/components/camel-shiro/src/test/java/ camel/trunk/components/camel-shiro/src/test/java/org/ camel/trunk/components/camel-shiro/src/test/java/org/apache/ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java (with props) camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java.orig camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java (with props) camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java.orig camel/trunk/components/camel-shiro/src/test/resources/ camel/trunk/components/camel-shiro/src/test/resources/log4j.properties (with props) camel/trunk/components/camel-shiro/src/test/resources/log4j.properties.orig camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini.orig Added: camel/trunk/components/camel-shiro/pom.xml URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/pom.xml?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/pom.xml (added) +++ camel/trunk/components/camel-shiro/pom.xml Wed Jul 28 19:26:55 2010 @@ -0,0 +1,58 @@ +<?xml version="1.0" encoding="UTF-8"?> +<project xmlns="http://maven.apache.org/POM/4.0.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 http://maven.apache.org/xsd/maven-4.0.0.xsd"> + <modelVersion>4.0.0</modelVersion> + <parent> + <artifactId>components</artifactId> + <groupId>org.apache.camel</groupId> + <version>2.5-SNAPSHOT</version> + </parent> + + <artifactId>camel-shiro-security</artifactId> + <packaging>bundle</packaging> + <name>Camel :: Shiro :: Security </name> + <description>Camel Shiro Security support</description> + + <properties> + <camel.osgi.export.pkg>org.apache.camel.component.shiro.*</camel.osgi.export.pkg> + </properties> + + <dependencies> + <dependency> + <groupId>org.apache.camel</groupId> + <artifactId>camel-core</artifactId> + </dependency> + <dependency> + <groupId>org.apache.shiro</groupId> + <artifactId>shiro-core</artifactId> + <version>${shiro-version}</version> + </dependency> + <dependency> + <groupId>org.apache.camel</groupId> + <artifactId>camel-test</artifactId> + <scope>test</scope> + </dependency> + <dependency> + <groupId>junit</groupId> + <artifactId>junit</artifactId> + <scope>test</scope> + </dependency> + + <!-- logging --> + <dependency> + <groupId>org.slf4j</groupId> + <artifactId>slf4j-api</artifactId> + <scope>test</scope> + </dependency> + <dependency> + <groupId>org.slf4j</groupId> + <artifactId>slf4j-log4j12</artifactId> + <scope>test</scope> + </dependency> + <dependency> + <groupId>log4j</groupId> + <artifactId>log4j</artifactId> + <scope>test</scope> + </dependency> + </dependencies> + +</project> Propchange: camel/trunk/components/camel-shiro/pom.xml ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/pom.xml.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/pom.xml.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java (added) +++ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java Wed Jul 28 19:26:55 2010 @@ -0,0 +1,279 @@ +/** + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. + * The ASF licenses this file to You under the Apache License, Version 2.0 + * (the "License"); you may not use this file except in compliance with + * the License. You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ +package org.apache.camel.component.shiro.security; + +import java.io.ByteArrayInputStream; +import java.io.ObjectInputStream; +import java.util.ArrayList; +import java.util.List; + +import org.apache.camel.AsyncCallback; +import org.apache.camel.AsyncProcessor; +import org.apache.camel.CamelAuthorizationException; +import org.apache.camel.Exchange; +import org.apache.camel.Processor; +import org.apache.camel.impl.converter.AsyncProcessorTypeConverter; +import org.apache.camel.model.ProcessorDefinition; +import org.apache.camel.spi.AuthorizationPolicy; +import org.apache.camel.spi.RouteContext; +import org.apache.commons.logging.Log; +import org.apache.commons.logging.LogFactory; +import org.apache.shiro.SecurityUtils; +import org.apache.shiro.authc.AuthenticationException; +import org.apache.shiro.authc.IncorrectCredentialsException; +import org.apache.shiro.authc.LockedAccountException; +import org.apache.shiro.authc.UnknownAccountException; +import org.apache.shiro.authc.UsernamePasswordToken; +import org.apache.shiro.authz.Permission; +import org.apache.shiro.config.Ini; +import org.apache.shiro.config.IniSecurityManagerFactory; +import org.apache.shiro.crypto.AesCipherService; +import org.apache.shiro.crypto.CipherService; +import org.apache.shiro.mgt.SecurityManager; +import org.apache.shiro.subject.Subject; +import org.apache.shiro.util.ByteSource; +import org.apache.shiro.util.Factory; + +public class ShiroSecurityPolicy implements AuthorizationPolicy { + private static final transient Log LOG = LogFactory.getLog(ShiroSecurityPolicy.class); + private final byte[] bits128 = { + (byte) 0x08, (byte) 0x09, (byte) 0x0A, (byte) 0x0B, + (byte) 0x0C, (byte) 0x0D, (byte) 0x0E, (byte) 0x0F, + (byte) 0x10, (byte) 0x11, (byte) 0x12, (byte) 0x13, + (byte) 0x14, (byte) 0x15, (byte) 0x16, (byte) 0x17}; + private CipherService cipherService; + private byte[] passPhrase; + private SecurityManager securityManager; + private List<Permission> permissionsList; + private boolean alwaysReauthenticate; + + public ShiroSecurityPolicy() { + this.passPhrase = bits128; + // Set up AES encryption based cipher service, by default + cipherService = new AesCipherService(); + permissionsList = new ArrayList<Permission>(); + alwaysReauthenticate = true; + } + + public ShiroSecurityPolicy(String iniResourcePath) { + this(); + Factory<SecurityManager> factory = new IniSecurityManagerFactory(iniResourcePath); + securityManager = (SecurityManager) factory.getInstance(); + SecurityUtils.setSecurityManager(securityManager); + } + + public ShiroSecurityPolicy(Ini ini) { + this(); + Factory<SecurityManager> factory = new IniSecurityManagerFactory(ini); + securityManager = (SecurityManager) factory.getInstance(); + SecurityUtils.setSecurityManager(securityManager); + } + + public ShiroSecurityPolicy(String iniResourcePath, byte[] passPhrase) { + this(iniResourcePath); + this.setPassPhrase(passPhrase); + } + + public ShiroSecurityPolicy(Ini ini, byte[] passPhrase) { + this(ini); + this.setPassPhrase(passPhrase); + } + + public ShiroSecurityPolicy(String iniResourcePath, byte[] passPhrase, boolean alwaysReauthenticate) { + this(iniResourcePath, passPhrase); + this.setAlwaysReauthenticate(alwaysReauthenticate); + } + + public ShiroSecurityPolicy(Ini ini, byte[] passPhrase, boolean alwaysReauthenticate) { + this(ini, passPhrase); + this.setAlwaysReauthenticate(alwaysReauthenticate); + } + + public ShiroSecurityPolicy(String iniResourcePath, byte[] passPhrase, boolean alwaysReauthenticate, List<Permission> permissionsList) { + this(iniResourcePath, passPhrase, alwaysReauthenticate); + this.setPermissionsList(permissionsList); + } + + public ShiroSecurityPolicy(Ini ini, byte[] passPhrase, boolean alwaysReauthenticate, List<Permission> permissionsList) { + this(ini, passPhrase, alwaysReauthenticate); + this.setPermissionsList(permissionsList); + } + + public void beforeWrap(RouteContext routeContext, ProcessorDefinition<?> definition) { + //Not implemented + } + + public Processor wrap(RouteContext routeContext, final Processor processor) { + return new AsyncProcessor() { + public boolean process(Exchange exchange, final AsyncCallback callback) { + boolean sync = false; + try { + applySecurityPolicy(exchange); + } catch (Exception e) { + exchange.setException(e); + } + + // If here, then user is authenticated and authorized + // Now let the original processor continue routing + AsyncProcessor ap = AsyncProcessorTypeConverter.convert(processor); + sync = ap.process(exchange, new AsyncCallback() { + public void done(boolean doneSync) { + // we only have to handle async completion of this policy + if (doneSync) { + return; + } + callback.done(false); + } + }); + + if (!sync) { + // if async, continue routing async + return false; + } + + // we are done synchronously, so do our after work and invoke the callback + callback.done(true); + return true; + } + + public void process(Exchange exchange) throws Exception { + applySecurityPolicy(exchange); + processor.process(exchange); + } + + private void applySecurityPolicy(Exchange exchange) throws Exception { + ByteSource encryptedToken = (ByteSource)exchange.getIn().getHeader("SHIRO_SECURITY_TOKEN"); + ByteSource decryptedToken = getCipherService().decrypt(encryptedToken.getBytes(), getPassPhrase()); + + ByteArrayInputStream byteArrayInputStream = new ByteArrayInputStream(decryptedToken.getBytes()); + ObjectInputStream objectInputStream = new ObjectInputStream(byteArrayInputStream); + ShiroSecurityToken securityToken = (ShiroSecurityToken)objectInputStream.readObject(); + objectInputStream.close(); + byteArrayInputStream.close(); + + Subject currentUser = SecurityUtils.getSubject(); + + // Authenticate user if not authenticated + try { + authenticateUser(currentUser, securityToken); + + // Test whether user's role is authorized to perform functions in the permissions list + authorizeUser(currentUser, exchange); + } finally { + if (alwaysReauthenticate) { + currentUser.logout(); + currentUser = null; + } + } + + } + }; + } + + private void authenticateUser(Subject currentUser, ShiroSecurityToken securityToken) { + if (!currentUser.isAuthenticated()) { + UsernamePasswordToken token = new UsernamePasswordToken(securityToken.getUsername(), securityToken.getPassword()); + if (alwaysReauthenticate) { + token.setRememberMe(false); + } else { + token.setRememberMe(true); + } + + try { + currentUser.login(token); + if (LOG.isDebugEnabled()) { + LOG.debug("Current User " + currentUser.getPrincipal() + " successfully authenticated"); + } + } catch (UnknownAccountException uae) { + throw new UnknownAccountException("Authentication Failed. There is no user with username of " + token.getPrincipal(), uae.getCause()); + } catch (IncorrectCredentialsException ice) { + throw new IncorrectCredentialsException("Authentication Failed. Password for account " + token.getPrincipal() + " was incorrect!", ice.getCause()); + } catch (LockedAccountException lae) { + throw new LockedAccountException("Authentication Failed. The account for username " + token.getPrincipal() + " is locked." + + "Please contact your administrator to unlock it.", lae.getCause()); + } catch (AuthenticationException ae) { + throw new AuthenticationException("Authentication Failed.", ae.getCause()); + } + } + } + + private void authorizeUser(Subject currentUser, Exchange exchange) throws CamelAuthorizationException { + boolean authorized = false; + if (!permissionsList.isEmpty()) { + for (Permission permission : permissionsList) { + if (currentUser.isPermitted(permission)) { + authorized = true; + break; + } + } + } else { + if (LOG.isDebugEnabled()) { + LOG.debug("Valid Permissions List not specified for ShiroSecurityPolicy. No authorization checks will be performed for current user"); + } + authorized = true; + } + + if (!authorized) { + throw new CamelAuthorizationException("Authorization Failed. Subject's role set does not have the necessary permissions to perform further processing", exchange); + } + + if (LOG.isDebugEnabled()) { + LOG.debug("Current User " + currentUser.getPrincipal() + " is successfully authorized. The exchange will be allowed to proceed"); + } + } + + public CipherService getCipherService() { + return cipherService; + } + + public void setCipherService(CipherService cipherService) { + this.cipherService = cipherService; + } + + public SecurityManager getSecurityManager() { + return securityManager; + } + + public void setSecurityManager(SecurityManager securityManager) { + this.securityManager = securityManager; + } + + public byte[] getPassPhrase() { + return passPhrase; + } + + public void setPassPhrase(byte[] passPhrase) { + this.passPhrase = passPhrase; + } + + public List<Permission> getPermissionsList() { + return permissionsList; + } + + public void setPermissionsList(List<Permission> permissionsList) { + this.permissionsList = permissionsList; + } + + public boolean isAlwaysReauthenticate() { + return alwaysReauthenticate; + } + + public void setAlwaysReauthenticate(boolean alwaysReauthenticate) { + this.alwaysReauthenticate = alwaysReauthenticate; + } + +} Propchange: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityPolicy.java.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java (added) +++ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java Wed Jul 28 19:26:55 2010 @@ -0,0 +1,48 @@ +/** + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. + * The ASF licenses this file to You under the Apache License, Version 2.0 + * (the "License"); you may not use this file except in compliance with + * the License. You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ +package org.apache.camel.component.shiro.security; + +import java.io.Serializable; + +public class ShiroSecurityToken implements Serializable { + private static final long serialVersionUID = 8018015867312416077L; + private String username; + private String password; + + public ShiroSecurityToken(String username, String password) { + super(); + this.username = username; + this.password = password; + } + + public String getUsername() { + return username; + } + + public void setUsername(String username) { + this.username = username; + } + + public String getPassword() { + return password; + } + + public void setPassword(String password) { + this.password = password; + } + +} Propchange: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityToken.java.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java (added) +++ camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java Wed Jul 28 19:26:55 2010 @@ -0,0 +1,96 @@ +/** + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. + * The ASF licenses this file to You under the Apache License, Version 2.0 + * (the "License"); you may not use this file except in compliance with + * the License. You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ +package org.apache.camel.component.shiro.security; + +import java.io.ByteArrayOutputStream; +import java.io.ObjectOutput; +import java.io.ObjectOutputStream; + +import org.apache.camel.Exchange; +import org.apache.camel.Processor; +import org.apache.shiro.crypto.AesCipherService; +import org.apache.shiro.crypto.CipherService; +import org.apache.shiro.util.ByteSource; + +public class ShiroSecurityTokenInjector implements Processor { + private final byte[] bits128 = { + (byte) 0x08, (byte) 0x09, (byte) 0x0A, (byte) 0x0B, + (byte) 0x0C, (byte) 0x0D, (byte) 0x0E, (byte) 0x0F, + (byte) 0x10, (byte) 0x11, (byte) 0x12, (byte) 0x13, + (byte) 0x14, (byte) 0x15, (byte) 0x16, (byte) 0x17}; + private byte[] passPhrase; + private ShiroSecurityToken securityToken; + private CipherService cipherService; + + public ShiroSecurityTokenInjector() { + this.passPhrase = bits128; + + // Set up AES encryption based cipher service, by default + cipherService = new AesCipherService(); + } + + public ShiroSecurityTokenInjector(ShiroSecurityToken securityToken, byte[] passPhrase) { + this(); + this.setSecurityToken(securityToken); + this.setPassPhrase(passPhrase); + } + + public ShiroSecurityTokenInjector(ShiroSecurityToken securityToken, byte[] passPhrase, CipherService cipherService) { + this(securityToken, passPhrase); + this.cipherService = cipherService; + } + + public ByteSource encrypt() throws Exception { + ByteArrayOutputStream stream = new ByteArrayOutputStream(); + ObjectOutput serialStream = new ObjectOutputStream(stream); + serialStream.writeObject(securityToken); + ByteSource byteSource = cipherService.encrypt(stream.toByteArray(), passPhrase); + serialStream.close(); + stream.close(); + + return byteSource; + } + + public void process(Exchange exchange) throws Exception { + exchange.getIn().setHeader("SHIRO_SECURITY_TOKEN", encrypt()); + } + + public byte[] getPassPhrase() { + return passPhrase; + } + + public void setPassPhrase(byte[] passPhrase) { + this.passPhrase = passPhrase; + } + + public void setSecurityToken(ShiroSecurityToken securityToken) { + this.securityToken = securityToken; + } + + public ShiroSecurityToken getSecurityToken() { + return securityToken; + } + + public CipherService getCipherService() { + return cipherService; + } + + public void setCipherService(CipherService cipherService) { + this.cipherService = cipherService; + } + +} Propchange: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/java/org/apache/camel/component/shiro/security/ShiroSecurityTokenInjector.java.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt (added) +++ camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt Wed Jul 28 19:26:55 2010 @@ -0,0 +1,203 @@ + + Apache License + Version 2.0, January 2004 + http://www.apache.org/licenses/ + + TERMS AND CONDITIONS FOR USE, REPRODUCTION, AND DISTRIBUTION + + 1. Definitions. + + "License" shall mean the terms and conditions for use, reproduction, + and distribution as defined by Sections 1 through 9 of this document. + + "Licensor" shall mean the copyright owner or entity authorized by + the copyright owner that is granting the License. + + "Legal Entity" shall mean the union of the acting entity and all + other entities that control, are controlled by, or are under common + control with that entity. For the purposes of this definition, + "control" means (i) the power, direct or indirect, to cause the + direction or management of such entity, whether by contract or + otherwise, or (ii) ownership of fifty percent (50%) or more of the + outstanding shares, or (iii) beneficial ownership of such entity. + + "You" (or "Your") shall mean an individual or Legal Entity + exercising permissions granted by this License. + + "Source" form shall mean the preferred form for making modifications, + including but not limited to software source code, documentation + source, and configuration files. + + "Object" form shall mean any form resulting from mechanical + transformation or translation of a Source form, including but + not limited to compiled object code, generated documentation, + and conversions to other media types. + + "Work" shall mean the work of authorship, whether in Source or + Object form, made available under the License, as indicated by a + copyright notice that is included in or attached to the work + (an example is provided in the Appendix below). + + "Derivative Works" shall mean any work, whether in Source or Object + form, that is based on (or derived from) the Work and for which the + editorial revisions, annotations, elaborations, or other modifications + represent, as a whole, an original work of authorship. For the purposes + of this License, Derivative Works shall not include works that remain + separable from, or merely link (or bind by name) to the interfaces of, + the Work and Derivative Works thereof. + + "Contribution" shall mean any work of authorship, including + the original version of the Work and any modifications or additions + to that Work or Derivative Works thereof, that is intentionally + submitted to Licensor for inclusion in the Work by the copyright owner + or by an individual or Legal Entity authorized to submit on behalf of + the copyright owner. For the purposes of this definition, "submitted" + means any form of electronic, verbal, or written communication sent + to the Licensor or its representatives, including but not limited to + communication on electronic mailing lists, source code control systems, + and issue tracking systems that are managed by, or on behalf of, the + Licensor for the purpose of discussing and improving the Work, but + excluding communication that is conspicuously marked or otherwise + designated in writing by the copyright owner as "Not a Contribution." + + "Contributor" shall mean Licensor and any individual or Legal Entity + on behalf of whom a Contribution has been received by Licensor and + subsequently incorporated within the Work. + + 2. Grant of Copyright License. Subject to the terms and conditions of + this License, each Contributor hereby grants to You a perpetual, + worldwide, non-exclusive, no-charge, royalty-free, irrevocable + copyright license to reproduce, prepare Derivative Works of, + publicly display, publicly perform, sublicense, and distribute the + Work and such Derivative Works in Source or Object form. + + 3. Grant of Patent License. Subject to the terms and conditions of + this License, each Contributor hereby grants to You a perpetual, + worldwide, non-exclusive, no-charge, royalty-free, irrevocable + (except as stated in this section) patent license to make, have made, + use, offer to sell, sell, import, and otherwise transfer the Work, + where such license applies only to those patent claims licensable + by such Contributor that are necessarily infringed by their + Contribution(s) alone or by combination of their Contribution(s) + with the Work to which such Contribution(s) was submitted. If You + institute patent litigation against any entity (including a + cross-claim or counterclaim in a lawsuit) alleging that the Work + or a Contribution incorporated within the Work constitutes direct + or contributory patent infringement, then any patent licenses + granted to You under this License for that Work shall terminate + as of the date such litigation is filed. + + 4. Redistribution. You may reproduce and distribute copies of the + Work or Derivative Works thereof in any medium, with or without + modifications, and in Source or Object form, provided that You + meet the following conditions: + + (a) You must give any other recipients of the Work or + Derivative Works a copy of this License; and + + (b) You must cause any modified files to carry prominent notices + stating that You changed the files; and + + (c) You must retain, in the Source form of any Derivative Works + that You distribute, all copyright, patent, trademark, and + attribution notices from the Source form of the Work, + excluding those notices that do not pertain to any part of + the Derivative Works; and + + (d) If the Work includes a "NOTICE" text file as part of its + distribution, then any Derivative Works that You distribute must + include a readable copy of the attribution notices contained + within such NOTICE file, excluding those notices that do not + pertain to any part of the Derivative Works, in at least one + of the following places: within a NOTICE text file distributed + as part of the Derivative Works; within the Source form or + documentation, if provided along with the Derivative Works; or, + within a display generated by the Derivative Works, if and + wherever such third-party notices normally appear. The contents + of the NOTICE file are for informational purposes only and + do not modify the License. You may add Your own attribution + notices within Derivative Works that You distribute, alongside + or as an addendum to the NOTICE text from the Work, provided + that such additional attribution notices cannot be construed + as modifying the License. + + You may add Your own copyright statement to Your modifications and + may provide additional or different license terms and conditions + for use, reproduction, or distribution of Your modifications, or + for any such Derivative Works as a whole, provided Your use, + reproduction, and distribution of the Work otherwise complies with + the conditions stated in this License. + + 5. Submission of Contributions. Unless You explicitly state otherwise, + any Contribution intentionally submitted for inclusion in the Work + by You to the Licensor shall be under the terms and conditions of + this License, without any additional terms or conditions. + Notwithstanding the above, nothing herein shall supersede or modify + the terms of any separate license agreement you may have executed + with Licensor regarding such Contributions. + + 6. Trademarks. This License does not grant permission to use the trade + names, trademarks, service marks, or product names of the Licensor, + except as required for reasonable and customary use in describing the + origin of the Work and reproducing the content of the NOTICE file. + + 7. Disclaimer of Warranty. Unless required by applicable law or + agreed to in writing, Licensor provides the Work (and each + Contributor provides its Contributions) on an "AS IS" BASIS, + WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or + implied, including, without limitation, any warranties or conditions + of TITLE, NON-INFRINGEMENT, MERCHANTABILITY, or FITNESS FOR A + PARTICULAR PURPOSE. You are solely responsible for determining the + appropriateness of using or redistributing the Work and assume any + risks associated with Your exercise of permissions under this License. + + 8. Limitation of Liability. In no event and under no legal theory, + whether in tort (including negligence), contract, or otherwise, + unless required by applicable law (such as deliberate and grossly + negligent acts) or agreed to in writing, shall any Contributor be + liable to You for damages, including any direct, indirect, special, + incidental, or consequential damages of any character arising as a + result of this License or out of the use or inability to use the + Work (including but not limited to damages for loss of goodwill, + work stoppage, computer failure or malfunction, or any and all + other commercial damages or losses), even if such Contributor + has been advised of the possibility of such damages. + + 9. Accepting Warranty or Additional Liability. While redistributing + the Work or Derivative Works thereof, You may choose to offer, + and charge a fee for, acceptance of support, warranty, indemnity, + or other liability obligations and/or rights consistent with this + License. However, in accepting such obligations, You may act only + on Your own behalf and on Your sole responsibility, not on behalf + of any other Contributor, and only if You agree to indemnify, + defend, and hold each Contributor harmless for any liability + incurred by, or claims asserted against, such Contributor by reason + of your accepting any such warranty or additional liability. + + END OF TERMS AND CONDITIONS + + APPENDIX: How to apply the Apache License to your work. + + To apply the Apache License to your work, attach the following + boilerplate notice, with the fields enclosed by brackets "[]" + replaced with your own identifying information. (Don't include + the brackets!) The text should be enclosed in the appropriate + comment syntax for the file format. We also recommend that a + file or class name and description of purpose be included on the + same "printed page" as the copyright notice for easier + identification within third-party archives. + + Copyright [yyyy] [name of copyright owner] + + Licensed under the Apache License, Version 2.0 (the "License"); + you may not use this file except in compliance with the License. + You may obtain a copy of the License at + + http://www.apache.org/licenses/LICENSE-2.0 + + Unless required by applicable law or agreed to in writing, software + distributed under the License is distributed on an "AS IS" BASIS, + WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + See the License for the specific language governing permissions and + limitations under the License. + Propchange: camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/resources/META-INF/LICENSE.txt.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt (added) +++ camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt Wed Jul 28 19:26:55 2010 @@ -0,0 +1,11 @@ + ========================================================================= + == NOTICE file corresponding to the section 4 d of == + == the Apache License, Version 2.0, == + == in this case for the Apache Camel distribution. == + ========================================================================= + + This product includes software developed by + The Apache Software Foundation (http://www.apache.org/). + + Please read the different LICENSE files present in the licenses directory of + this distribution. Propchange: camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/main/resources/META-INF/NOTICE.txt.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java (added) +++ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java Wed Jul 28 19:26:55 2010 @@ -0,0 +1,116 @@ +/** + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. + * The ASF licenses this file to You under the Apache License, Version 2.0 + * (the "License"); you may not use this file except in compliance with + * the License. You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ +package org.apache.camel.component.shiro.security; + +import javax.naming.AuthenticationException; + +import org.apache.camel.EndpointInject; +import org.apache.camel.Exchange; +import org.apache.camel.builder.RouteBuilder; +import org.apache.camel.component.mock.MockEndpoint; +import org.apache.camel.test.CamelTestSupport; +import org.apache.commons.logging.Log; +import org.apache.commons.logging.LogFactory; +import org.apache.shiro.authc.IncorrectCredentialsException; +import org.apache.shiro.authc.LockedAccountException; +import org.apache.shiro.authc.UnknownAccountException; +import org.apache.shiro.config.IniSecurityManagerFactory; +import org.apache.shiro.mgt.SecurityManager; +import org.apache.shiro.util.Factory; +import org.junit.Test; + +public class ShiroAuthenticationTest extends CamelTestSupport { + + @EndpointInject(uri = "mock:success") + protected MockEndpoint successEndpoint; + + @EndpointInject(uri = "mock:authenticationException") + protected MockEndpoint failureEndpoint; + + private byte[] passPhrase = { + (byte) 0x08, (byte) 0x09, (byte) 0x0A, (byte) 0x0B, + (byte) 0x0C, (byte) 0x0D, (byte) 0x0E, (byte) 0x0F, + (byte) 0x10, (byte) 0x11, (byte) 0x12, (byte) 0x13, + (byte) 0x14, (byte) 0x15, (byte) 0x16, (byte) 0x17}; + + @Test + public void testShiroAuthenticationFailure() throws Exception { + //Incorrect password + ShiroSecurityToken shiroSecurityToken = new ShiroSecurityToken("ringo", "stirr"); + TestShiroSecurityTokenInjector shiroSecurityTokenInjector = new TestShiroSecurityTokenInjector(shiroSecurityToken, passPhrase); + + successEndpoint.expectedMessageCount(0); + failureEndpoint.expectedMessageCount(1); + + template.send("direct:secureEndpoint", shiroSecurityTokenInjector); + + successEndpoint.assertIsSatisfied(); + failureEndpoint.assertIsSatisfied(); + } + + @Test + public void testSuccessfulShiroAuthenticationWithNoAuthorization() throws Exception { + //Incorrect password + ShiroSecurityToken shiroSecurityToken = new ShiroSecurityToken("ringo", "starr"); + TestShiroSecurityTokenInjector shiroSecurityTokenInjector = new TestShiroSecurityTokenInjector(shiroSecurityToken, passPhrase); + + successEndpoint.expectedMessageCount(1); + failureEndpoint.expectedMessageCount(0); + + template.send("direct:secureEndpoint", shiroSecurityTokenInjector); + + successEndpoint.assertIsSatisfied(); + failureEndpoint.assertIsSatisfied(); + } + + protected RouteBuilder createRouteBuilder() throws Exception { + final ShiroSecurityPolicy securityPolicy = new ShiroSecurityPolicy("./src/test/resources/securityconfig.ini", passPhrase); + + return new RouteBuilder() { + public void configure() { + onException(UnknownAccountException.class). + to("mock:authenticationException"); + onException(IncorrectCredentialsException.class). + to("mock:authenticationException"); + onException(LockedAccountException.class). + to("mock:authenticationException"); + onException(AuthenticationException.class). + to("mock:authenticationException"); + + from("direct:secureEndpoint"). + to("log:incoming payload"). + policy(securityPolicy). + to("mock:success"); + } + }; + } + + + private class TestShiroSecurityTokenInjector extends ShiroSecurityTokenInjector { + + public TestShiroSecurityTokenInjector( + ShiroSecurityToken shiroSecurityToken, byte[] bytes) { + super(shiroSecurityToken, bytes); + } + + public void process(Exchange exchange) throws Exception { + exchange.getIn().setHeader("SHIRO_SECURITY_TOKEN", encrypt()); + exchange.getIn().setBody("Beatle Mania"); + } + } + +} Propchange: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthenticationTest.java.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java (added) +++ camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java Wed Jul 28 19:26:55 2010 @@ -0,0 +1,131 @@ +/** + * Licensed to the Apache Software Foundation (ASF) under one or more + * contributor license agreements. See the NOTICE file distributed with + * this work for additional information regarding copyright ownership. + * The ASF licenses this file to You under the Apache License, Version 2.0 + * (the "License"); you may not use this file except in compliance with + * the License. You may obtain a copy of the License at + * + * http://www.apache.org/licenses/LICENSE-2.0 + * + * Unless required by applicable law or agreed to in writing, software + * distributed under the License is distributed on an "AS IS" BASIS, + * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * See the License for the specific language governing permissions and + * limitations under the License. + */ +package org.apache.camel.component.shiro.security; + +import java.util.ArrayList; +import java.util.List; + +import org.apache.camel.CamelAuthorizationException; +import org.apache.camel.EndpointInject; +import org.apache.camel.Exchange; +import org.apache.camel.builder.RouteBuilder; +import org.apache.camel.component.mock.MockEndpoint; +import org.apache.camel.test.CamelTestSupport; +import org.apache.shiro.authz.Permission; +import org.apache.shiro.authz.permission.WildcardPermission; +import org.apache.shiro.config.IniSecurityManagerFactory; +import org.apache.shiro.mgt.SecurityManager; +import org.apache.shiro.util.Factory; +import org.junit.Test; + +public class ShiroAuthorizationTest extends CamelTestSupport { + + @EndpointInject(uri = "mock:success") + protected MockEndpoint successEndpoint; + + @EndpointInject(uri = "mock:authorizationException") + protected MockEndpoint failureEndpoint; + + private byte[] passPhrase = { + (byte) 0x08, (byte) 0x09, (byte) 0x0A, (byte) 0x0B, + (byte) 0x0C, (byte) 0x0D, (byte) 0x0E, (byte) 0x0F, + (byte) 0x10, (byte) 0x11, (byte) 0x12, (byte) 0x13, + (byte) 0x14, (byte) 0x15, (byte) 0x16, (byte) 0x17}; + + @Test + public void testShiroAuthorizationFailure() throws Exception { + // The user ringo has role sec-level1 with permission set as zone1:readonly:* + // Since the required permission is zone1:readwrite:*, this request should fail authorization + ShiroSecurityToken shiroSecurityToken = new ShiroSecurityToken("ringo", "starr"); + TestShiroSecurityTokenInjector shiroSecurityTokenInjector = new TestShiroSecurityTokenInjector(shiroSecurityToken, passPhrase); + + successEndpoint.expectedMessageCount(0); + failureEndpoint.expectedMessageCount(1); + + template.send("direct:secureEndpoint", shiroSecurityTokenInjector); + + successEndpoint.assertIsSatisfied(); + failureEndpoint.assertIsSatisfied(); + } + + @Test + public void testSuccessfulAuthorization() throws Exception { + // The user john has role sec-level2 with permission set as zone1:* + // Since the required permission incorporates zone1:readwrite:*, this request should successfully pass authorization + ShiroSecurityToken shiroSecurityToken = new ShiroSecurityToken("john", "lennon"); + TestShiroSecurityTokenInjector shiroSecurityTokenInjector = new TestShiroSecurityTokenInjector(shiroSecurityToken, passPhrase); + + successEndpoint.expectedMessageCount(1); + failureEndpoint.expectedMessageCount(0); + + template.send("direct:secureEndpoint", shiroSecurityTokenInjector); + + successEndpoint.assertIsSatisfied(); + failureEndpoint.assertIsSatisfied(); + } + + @Test + public void testSuccessfulAuthorizationForHigherScope() throws Exception { + // The user john has role sec-level3 with permission set as * + // Since the required permission incorporates zone1:readwrite:*, this request should successfully pass authorization + ShiroSecurityToken shiroSecurityToken = new ShiroSecurityToken("paul", "mccartney"); + TestShiroSecurityTokenInjector shiroSecurityTokenInjector = new TestShiroSecurityTokenInjector(shiroSecurityToken, passPhrase); + + successEndpoint.expectedMessageCount(1); + failureEndpoint.expectedMessageCount(0); + + template.send("direct:secureEndpoint", shiroSecurityTokenInjector); + + successEndpoint.assertIsSatisfied(); + failureEndpoint.assertIsSatisfied(); + } + + protected RouteBuilder createRouteBuilder() throws Exception { + List<Permission> permissionsList = new ArrayList<Permission>(); + Permission permission = new WildcardPermission("zone1:readwrite:*"); + permissionsList.add(permission); + + final ShiroSecurityPolicy securityPolicy = new ShiroSecurityPolicy("./src/test/resources/securityconfig.ini", passPhrase, true, permissionsList); + + return new RouteBuilder() { + public void configure() { + onException(CamelAuthorizationException.class). + to("mock:authorizationException"); + + from("direct:secureEndpoint"). + to("log:incoming payload"). + policy(securityPolicy). + to("mock:success"); + } + }; + } + + + private class TestShiroSecurityTokenInjector extends ShiroSecurityTokenInjector { + + public TestShiroSecurityTokenInjector( + ShiroSecurityToken shiroSecurityToken, byte[] bytes) { + super(shiroSecurityToken, bytes); + } + + public void process(Exchange exchange) throws Exception { + exchange.getIn().setHeader("SHIRO_SECURITY_TOKEN", encrypt()); + exchange.getIn().setBody("Beatle Mania"); + } + } + +} Propchange: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/java/org/apache/camel/component/shiro/security/ShiroAuthorizationTest.java.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/test/resources/log4j.properties URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/resources/log4j.properties?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/test/resources/log4j.properties (added) +++ camel/trunk/components/camel-shiro/src/test/resources/log4j.properties Wed Jul 28 19:26:55 2010 @@ -0,0 +1,20 @@ + +# +# The logging properties used for eclipse testing, We want to see debug output on the console. +# +log4j.rootLogger=INFO, file + +log4j.logger.org.springframework=WARN +#log4j.logger.org.apache.camel=DEBUG + +# CONSOLE appender not used by default +log4j.appender.out=org.apache.log4j.ConsoleAppender +log4j.appender.out.layout=org.apache.log4j.PatternLayout +log4j.appender.out.layout.ConversionPattern=[%30.30t] %-30.30c{1} %-5p %m%n +#log4j.appender.out.layout.ConversionPattern=%d [%-15.15t] %-5p %-30.30c{1} - %m%n + +# File appender +log4j.appender.file=org.apache.log4j.FileAppender +log4j.appender.file.layout=org.apache.log4j.PatternLayout +log4j.appender.file.layout.ConversionPattern=%d %-5p %c{1} - %m %n +log4j.appender.file.file=target/camel-shiro-security.log Propchange: camel/trunk/components/camel-shiro/src/test/resources/log4j.properties ------------------------------------------------------------------------------ svn:eol-style = native Added: camel/trunk/components/camel-shiro/src/test/resources/log4j.properties.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/resources/log4j.properties.orig?rev=980172&view=auto ============================================================================== (empty) Added: camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini?rev=980172&view=auto ============================================================================== --- camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini (added) +++ camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini Wed Jul 28 19:26:55 2010 @@ -0,0 +1,36 @@ +# +# Licensed to the Apache Software Foundation (ASF) under one +# or more contributor license agreements. See the NOTICE file +# distributed with this work for additional information +# regarding copyright ownership. The ASF licenses this file +# to you under the Apache License, Version 2.0 (the +# "License"); you may not use this file except in compliance +# with the License. You may obtain a copy of the License at +# +# http://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, +# software distributed under the License is distributed on an +# "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY +# KIND, either express or implied. See the License for the +# specific language governing permissions and limitations +# under the License. +# + +[users] +# user 'ringo' with password 'starr' and the 'hero' role +ringo = starr, sec-level1 +george = harrison, sec-level2 +john = lennon, sec-level3 +paul = mccartney, sec-level3 + +[roles] +# 'sec-level3' role has all permissions, indicated by the wildcard '*' +sec-level3 = * + +# The 'sec-level2' role can do anything with access of permission readonly (*) to help +sec-level2 = zone1:* + +# The 'sec-level1' role can do anything with access of permission readonly +sec-level1 = zone1:readonly:* + Added: camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini.orig URL: http://svn.apache.org/viewvc/camel/trunk/components/camel-shiro/src/test/resources/securityconfig.ini.orig?rev=980172&view=auto ============================================================================== (empty)