a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster/**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS HEADER.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Copyright (c) 2006 Sun Microsystems Inc. All Rights Reserved
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * The contents of this file are subject to the terms
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * of the Common Development and Distribution License
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * (the License). You may not use this file except in
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * compliance with the License.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * You can obtain a copy of the License at
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * https://opensso.dev.java.net/public/CDDLv1.0.html or
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * opensso/legal/CDDLv1.0.txt
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * See the License for the specific language governing
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * permission and limitations under the License.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * When distributing Covered Code, include this CDDL
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Header Notice in each file and include the License file
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * at opensso/legal/CDDLv1.0.txt.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * If applicable, add the following below the CDDL Header,
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * with the fields enclosed by brackets [] replaced by
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * your own identifying information:
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * "Portions Copyrighted [year] [name of copyright owner]"
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * $Id: XACMLAuthzDecisionStatementImpl.java,v 1.4 2008/11/10 22:57:06 veiming Exp $
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterpackage com.sun.identity.xacml.saml2.impl;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.shared.xml.XMLUtils;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.common.XACMLConstants;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.common.XACMLException;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.common.XACMLSDKUtils;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.context.ContextFactory;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.context.Request;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.context.Response;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport com.sun.identity.xacml.saml2.XACMLAuthzDecisionStatement;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport java.util.ArrayList;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport java.util.List;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport org.w3c.dom.Document;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport org.w3c.dom.Element;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport org.w3c.dom.Node;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterimport org.w3c.dom.NodeList;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster/**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * This is the default implementation of interface <code>XACMLAuthzDecisionStatement</code>.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <p>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <pre>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:element name="XACMLAuthzDecisionStatement"
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * type="xacml-saml:XACMLAuthzDecisionStatementType"/>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:complexType name="XACMLAuthzDecisionStatementType">
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:complexContent>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:extension base="saml:StatementAbstractType">
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:sequence>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:element ref="xacml-context:Response"/>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:element ref="xacml-context:Request" minOccurs="0"/>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:sequence>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:extension>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;xs:complexContent>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *&lt;xs:complexType>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * </pre>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * </p>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Schema for the base type is
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <p>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <pre>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;complexType name="StatementAbstractType">
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;complexContent>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;restriction base="{http://www.w3.org/2001/XMLSchema}anyType">
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;/restriction>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;/complexContent>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * &lt;/complexType>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * </pre>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * </p>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Fosterpublic class XACMLAuthzDecisionStatementImpl
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster implements XACMLAuthzDecisionStatement {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster private Response response = null;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster private Request request = null;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster private boolean mutable = true;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Constructs an <code>XACMLAuthzDecisionStatement</code> object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public XACMLAuthzDecisionStatementImpl() {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Constructs an <code>XACMLAuthzDecisionStatementImpl</code> object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * from an XML string
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param xml string representing an
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <code>XACMLAuthzDecisionStatementImpl</code> object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @exception XACMLException if the XML string could not be processed
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public XACMLAuthzDecisionStatementImpl(String xml)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Document document = XMLUtils.toDOMDocument(xml, XACMLSDKUtils.debug);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (document != null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Element rootElement = document.getDocumentElement();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster processElement(rootElement);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster makeImmutable();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster } else {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "DecisionImpl.processElement(): invalid XML input");
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "errorObtainingElement"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Constructs an <code>XACMLAuthzDecisionStatementImpl</code> object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * from an XML DOM element
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param element XML DOM element representing an
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <code>XACMLAuthzDecisionStatementImpl</code>
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @throws XACMLException if the DOM element could not be processed
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public XACMLAuthzDecisionStatementImpl(org.w3c.dom.Element element)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster processElement(element);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster makeImmutable();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Returns <code>Response</code> element of this object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @return the <code>Response</code> element of this object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public Response getResponse() {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster return response;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Sets <code>Response</code> element of this object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param response XACML context <code>Response</code> element to be
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * set in this object.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @throws XACMLException if the object is immutable and response is
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * null.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public void setResponse(Response response)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (!mutable) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.xacmlResourceBundle.getString("objectImmutable"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (response == null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.xacmlResourceBundle.getString("null_not_valid"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster this.response = response;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Returns <code>Request</code> element of this object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @return the <code>Request</code> element of this object
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public Request getRequest() {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster return request;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Sets <code>Request</code> element of this object.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param request XACML context <code>Request</code> element to be
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * set in this object.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @throws XACMLException if the object is immutable.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public void setRequest(Request request)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (!mutable) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.xacmlResourceBundle.getString("objectImmutable"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster this.request = request;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Returns a string representation
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @return a string representation
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @exception XACMLException if conversion fails for any reason
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public String toXMLString() throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster //top level element, declare namespace
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster return toXMLString(true, true);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Returns a string representation
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param includeNSPrefix Determines whether or not the namespace qualifier
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * is prepended to the Element when converted
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @param declareNS Determines whether or not the namespace is declared
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * within the Element.
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @return a string representation
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @exception XACMLException if conversion fails for any reason
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public String toXMLString(boolean includeNSPrefix, boolean declareNS)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster StringBuffer sb = new StringBuffer(2000);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String xacmlSamlNsPrefix = "";
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String xacmlSamlNsDeclaration = "";
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (declareNS) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster xacmlSamlNsDeclaration = XACMLConstants.XACML_SAML_NS_DECLARATION;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (includeNSPrefix) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster xacmlSamlNsPrefix = XACMLConstants.XACML_SAML_NS_PREFIX;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster sb.append("\n<")
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.SAML_NS_PREFIX)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.SAML_STATEMENT)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.SAML_NS_DECLARATION)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.XSI_TYPE_XACML_AUTHZ_DECISION_STATEMENT)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.XSI_NS_DECLARATION)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.XACML_SAML_NS_DECLARATION)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(">\n");
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (response != null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster sb.append(response.toXMLString(includeNSPrefix, true));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (request != null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster sb.append(request.toXMLString(includeNSPrefix, true));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster sb.append("</")
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.SAML_NS_PREFIX)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(XACMLConstants.SAML_STATEMENT)
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .append(">");
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster return sb.toString();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Checks if the object is mutable
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster *
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * @return <code>true</code> if the object is mutable,
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * <code>false</code> otherwise
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public boolean isMutable() {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster return mutable;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster /**
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster * Makes the object immutable
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster */
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster public void makeImmutable() {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster mutable = false;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster private void processElement(Element element) throws XACMLException {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (element == null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "DecisionImpl.processElement(): invalid root element");
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_element"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String elemName = element.getLocalName();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (elemName == null) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "DecisionImpl.processElement(): local name missing");
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "missing_local_name"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (!elemName.equals(XACMLConstants.SAML_STATEMENT)) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "DecisionImpl.processElement(): invalid local name "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + elemName);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_local_name"));
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster //TODO: add a check for xsi:type
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster NodeList nodes = element.getChildNodes();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster int numOfNodes = nodes.getLength();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster List childElements = new ArrayList();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster int i = 0;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster while (i < numOfNodes) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Node child = (Node) nodes.item(i);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (child.getNodeType() == Node.ELEMENT_NODE) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster childElements.add(child);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster i++;
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster int childCount = childElements.size();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (childCount < 1) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "ResultImpl.processElement(): invalid child element count: "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + childCount);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_child_count")); //FIXME: add i18n key
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster } else if (childCount > 2) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "ResultImpl.processElement(): invalid child element count: "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + childCount);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_child_count")); //FIXME: add i18n key
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster //process Response element
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Element firstChild = (Element)childElements.get(0);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String firstChildName = firstChild.getLocalName();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (firstChildName.equals(XACMLConstants.RESPONSE)) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster response = ContextFactory.getInstance()
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .createResponse(firstChild);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster } else {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "ResultImpl.processElement(): invalid first child element: "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + firstChildName);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_first_child")); //FIXME: add i18n key
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster //process Request element
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (childCount > 1) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Element secondChild = (Element)childElements.get(1);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String secondChildName = secondChild.getLocalName();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (secondChildName.equals(XACMLConstants.REQUEST)) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster request = ContextFactory.getInstance()
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster .createRequest(secondChild);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster } else {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "ResultImpl.processElement(): invalid second child element: "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + secondChildName);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_second_child")); //FIXME: add i18n key
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster if (childCount > 2) {
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster Element thirdChild = (Element)childElements.get(2);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster String thirdChildName = thirdChild.getLocalName();
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster XACMLSDKUtils.debug.error(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "ResultImpl.processElement(): invalid third child element: "
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster + thirdChildName);
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster throw new XACMLException(XACMLSDKUtils.xacmlResourceBundle.getString(
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster "invalid_third_child")); //FIXME: add i18n key
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster }
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster
a688bcbb4bcff5398fdd29b86f83450257dc0df4Allan Foster}