io.pivotal.auth.samlwrapper.userannotation.CurrentUserHandlerMethodArgumentResolver.java Source code

Java tutorial

Introduction

Here is the source code for io.pivotal.auth.samlwrapper.userannotation.CurrentUserHandlerMethodArgumentResolver.java

Source

/*
 * Copyright 2016 Vincenzo De Notaris
 *
 * Licensed under the Apache License, Version 2.0 (the "License");
 * you may not use this file except in compliance with the License.
 * You may obtain a copy of the License at
 *
 *     http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS,
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 * See the License for the specific language governing permissions and
 * limitations under the License. 
 */

package io.pivotal.auth.samlwrapper.userannotation;

import org.springframework.core.MethodParameter;
import org.springframework.security.core.Authentication;
import org.springframework.security.core.userdetails.User;
import org.springframework.stereotype.Component;
import org.springframework.web.bind.support.WebArgumentResolver;
import org.springframework.web.bind.support.WebDataBinderFactory;
import org.springframework.web.context.request.NativeWebRequest;
import org.springframework.web.method.support.HandlerMethodArgumentResolver;
import org.springframework.web.method.support.ModelAndViewContainer;

import java.security.Principal;
import java.util.Collections;

@Component
public class CurrentUserHandlerMethodArgumentResolver implements HandlerMethodArgumentResolver {
    public boolean supportsParameter(MethodParameter methodParameter) {
        return methodParameter.getParameterAnnotation(CurrentUser.class) != null
                && methodParameter.getParameterType().equals(User.class);
    }

    public Object resolveArgument(MethodParameter methodParameter, ModelAndViewContainer mavContainer,
            NativeWebRequest webRequest, WebDataBinderFactory binderFactory) throws Exception {
        if (!supportsParameter(methodParameter)) {
            return WebArgumentResolver.UNRESOLVED;
        }
        Principal principal = webRequest.getUserPrincipal();

        if (principal == null) {
            return new User("Unauthenticated", "", Collections.emptyList());
        }

        Object user = ((Authentication) principal).getPrincipal();

        if (user instanceof User) { // also prevents null return
            return user;
        }

        return WebArgumentResolver.UNRESOLVED;
    }
}