2362N/A * Copyright (c) 2005, 2009, Oracle and/or its affiliates. All rights reserved. 0N/A * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER. 0N/A * This code is free software; you can redistribute it and/or modify it 0N/A * under the terms of the GNU General Public License version 2 only, as 2362N/A * published by the Free Software Foundation. Oracle designates this 0N/A * particular file as subject to the "Classpath" exception as provided 2362N/A * by Oracle in the LICENSE file that accompanied this code. 0N/A * This code is distributed in the hope that it will be useful, but WITHOUT 0N/A * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or 0N/A * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License 0N/A * version 2 for more details (a copy is included in the LICENSE file that 0N/A * accompanied this code). 0N/A * You should have received a copy of the GNU General Public License version 0N/A * 2 along with this work; if not, write to the Free Software Foundation, 0N/A * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. 2362N/A * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA 2362N/A * or visit www.oracle.com if you need additional information or have any 0N/A * This class is essentially a wrapper class for the gss_ctx_id_t 0N/A * structure of the native GSS library. 0N/A * @author Valerie Peng 0N/A private long pContext =
0;
// Pointer to the gss_ctx_id_t structure 0N/A // Retrieve the (preferred) mech out of SPNEGO tokens, i.e. 0N/A // NegTokenInit & NegTokenTarg 0N/A // Perform the Service permission check 0N/A // Need to check Service permission for accessing 0N/A // initiator cred for SPNEGO during context establishment 0N/A // Check by creating default initiator KRB5 cred 0N/A // Perform the Delegation permission check 0N/A // Need to add back the GSS header for a complete GSS token 0N/A // Must be unparsed GSS token or SPNEGO's NegTokenTarg token 0N/A // Constructor for context initiator 0N/A // Constructor for context acceptor 0N/A // Defer Service permission check for default acceptor cred 0N/A // to acceptSecContext() 0N/A // srcName and potentially targetName (when myCred is null) 0N/A // will be set in GSSLibStub.acceptContext(...) 0N/A // Constructor for imported context 0N/A // Set everything except cred, cb, delegatedCred 0N/A // Do Service Permission check when importing SPNEGO context 0N/A // Ignore the specified input stream on the first call 0N/A // Only inspect the token when the permission check 0N/A // has not been performed 0N/A // WORKAROUND for SEAM bug#6287358 0N/A // Replace the current default acceptor cred now that 0N/A // the context acceptor name is available 0N/A // Only inspect token when the permission check has not 1535N/A "Inquire type not supported.");