You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

GitblitUserService.java 8.2KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276
  1. /*
  2. * Copyright 2011 gitblit.com.
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. package com.gitblit;
  17. import java.io.File;
  18. import java.io.IOException;
  19. import java.text.MessageFormat;
  20. import java.util.List;
  21. import org.slf4j.Logger;
  22. import org.slf4j.LoggerFactory;
  23. import com.gitblit.models.TeamModel;
  24. import com.gitblit.models.UserModel;
  25. import com.gitblit.utils.DeepCopier;
  26. /**
  27. * This class wraps the default user service and is recommended as the starting
  28. * point for custom user service implementations.
  29. *
  30. * This does seem a little convoluted, but the idea is to allow IUserService to
  31. * evolve with new methods and implementations without breaking custom
  32. * authentication implementations.
  33. *
  34. * The most common implementation of a custom IUserService is to only override
  35. * authentication and then delegate all other functionality to one of Gitblit's
  36. * user services. This class optimizes that use-case.
  37. *
  38. * Extending GitblitUserService allows for authentication customization without
  39. * having to keep-up-with IUSerService API changes.
  40. *
  41. * @author James Moger
  42. *
  43. */
  44. public class GitblitUserService implements IUserService {
  45. protected IUserService serviceImpl;
  46. private final Logger logger = LoggerFactory.getLogger(GitblitUserService.class);
  47. public GitblitUserService() {
  48. }
  49. @Override
  50. public void setup(IStoredSettings settings) {
  51. File realmFile = GitBlit.getFileOrFolder(Keys.realm.userService, "users.conf");
  52. serviceImpl = createUserService(realmFile);
  53. logger.info("GUS delegating to " + serviceImpl.toString());
  54. }
  55. @SuppressWarnings("deprecation")
  56. protected IUserService createUserService(File realmFile) {
  57. IUserService service = null;
  58. if (realmFile.getName().toLowerCase().endsWith(".properties")) {
  59. // v0.5.0 - v0.7.0 properties-based realm file
  60. service = new FileUserService(realmFile);
  61. } else if (realmFile.getName().toLowerCase().endsWith(".conf")) {
  62. // v0.8.0+ config-based realm file
  63. service = new ConfigUserService(realmFile);
  64. }
  65. assert service != null;
  66. if (!realmFile.exists()) {
  67. // Create the Administrator account for a new realm file
  68. try {
  69. realmFile.createNewFile();
  70. } catch (IOException x) {
  71. logger.error(MessageFormat.format("COULD NOT CREATE REALM FILE {0}!", realmFile), x);
  72. }
  73. UserModel admin = new UserModel("admin");
  74. admin.password = "admin";
  75. admin.canAdmin = true;
  76. admin.excludeFromFederation = true;
  77. service.updateUserModel(admin);
  78. }
  79. if (service instanceof FileUserService) {
  80. // automatically create a users.conf realm file from the original
  81. // users.properties file
  82. File usersConfig = new File(realmFile.getParentFile(), "users.conf");
  83. if (!usersConfig.exists()) {
  84. logger.info(MessageFormat.format("Automatically creating {0} based on {1}",
  85. usersConfig.getAbsolutePath(), realmFile.getAbsolutePath()));
  86. ConfigUserService configService = new ConfigUserService(usersConfig);
  87. for (String username : service.getAllUsernames()) {
  88. UserModel userModel = service.getUserModel(username);
  89. configService.updateUserModel(userModel);
  90. }
  91. }
  92. // issue suggestion about switching to users.conf
  93. logger.warn("Please consider using \"users.conf\" instead of the deprecated \"users.properties\" file");
  94. }
  95. return service;
  96. }
  97. @Override
  98. public String toString() {
  99. return getClass().getSimpleName();
  100. }
  101. @Override
  102. public boolean supportsCredentialChanges() {
  103. return serviceImpl.supportsCredentialChanges();
  104. }
  105. @Override
  106. public boolean supportsTeamMembershipChanges() {
  107. return serviceImpl.supportsTeamMembershipChanges();
  108. }
  109. @Override
  110. public boolean supportsCookies() {
  111. return serviceImpl.supportsCookies();
  112. }
  113. @Override
  114. public char[] getCookie(UserModel model) {
  115. return serviceImpl.getCookie(model);
  116. }
  117. @Override
  118. public UserModel authenticate(char[] cookie) {
  119. return serviceImpl.authenticate(cookie);
  120. }
  121. @Override
  122. public UserModel authenticate(String username, char[] password) {
  123. return serviceImpl.authenticate(username, password);
  124. }
  125. @Override
  126. public UserModel getUserModel(String username) {
  127. return serviceImpl.getUserModel(username);
  128. }
  129. @Override
  130. public boolean updateUserModel(UserModel model) {
  131. return serviceImpl.updateUserModel(model);
  132. }
  133. @Override
  134. public boolean updateUserModel(String username, UserModel model) {
  135. if (supportsCredentialChanges()) {
  136. if (!supportsTeamMembershipChanges()) {
  137. // teams are externally controlled - copy from original model
  138. UserModel existingModel = getUserModel(username);
  139. model = DeepCopier.copy(model);
  140. model.teams.clear();
  141. model.teams.addAll(existingModel.teams);
  142. }
  143. return serviceImpl.updateUserModel(username, model);
  144. }
  145. if (model.username.equals(username)) {
  146. // passwords are not persisted by the backing user service
  147. model.password = null;
  148. if (!supportsTeamMembershipChanges()) {
  149. // teams are externally controlled- copy from original model
  150. UserModel existingModel = getUserModel(username);
  151. model = DeepCopier.copy(model);
  152. model.teams.clear();
  153. model.teams.addAll(existingModel.teams);
  154. }
  155. return serviceImpl.updateUserModel(username, model);
  156. }
  157. logger.error("Users can not be renamed!");
  158. return false;
  159. }
  160. @Override
  161. public boolean deleteUserModel(UserModel model) {
  162. return serviceImpl.deleteUserModel(model);
  163. }
  164. @Override
  165. public boolean deleteUser(String username) {
  166. return serviceImpl.deleteUser(username);
  167. }
  168. @Override
  169. public List<String> getAllUsernames() {
  170. return serviceImpl.getAllUsernames();
  171. }
  172. @Override
  173. public List<UserModel> getAllUsers() {
  174. return serviceImpl.getAllUsers();
  175. }
  176. @Override
  177. public List<String> getAllTeamNames() {
  178. return serviceImpl.getAllTeamNames();
  179. }
  180. @Override
  181. public List<TeamModel> getAllTeams() {
  182. return serviceImpl.getAllTeams();
  183. }
  184. @Override
  185. public List<String> getTeamnamesForRepositoryRole(String role) {
  186. return serviceImpl.getTeamnamesForRepositoryRole(role);
  187. }
  188. @Override
  189. public boolean setTeamnamesForRepositoryRole(String role, List<String> teamnames) {
  190. return serviceImpl.setTeamnamesForRepositoryRole(role, teamnames);
  191. }
  192. @Override
  193. public TeamModel getTeamModel(String teamname) {
  194. return serviceImpl.getTeamModel(teamname);
  195. }
  196. @Override
  197. public boolean updateTeamModel(TeamModel model) {
  198. return serviceImpl.updateTeamModel(model);
  199. }
  200. @Override
  201. public boolean updateTeamModel(String teamname, TeamModel model) {
  202. if (!supportsTeamMembershipChanges()) {
  203. // teams are externally controlled - copy from original model
  204. TeamModel existingModel = getTeamModel(teamname);
  205. model = DeepCopier.copy(model);
  206. model.users.clear();
  207. model.users.addAll(existingModel.users);
  208. }
  209. return serviceImpl.updateTeamModel(teamname, model);
  210. }
  211. @Override
  212. public boolean deleteTeamModel(TeamModel model) {
  213. return serviceImpl.deleteTeamModel(model);
  214. }
  215. @Override
  216. public boolean deleteTeam(String teamname) {
  217. return serviceImpl.deleteTeam(teamname);
  218. }
  219. @Override
  220. public List<String> getUsernamesForRepositoryRole(String role) {
  221. return serviceImpl.getUsernamesForRepositoryRole(role);
  222. }
  223. @Override
  224. public boolean setUsernamesForRepositoryRole(String role, List<String> usernames) {
  225. return serviceImpl.setUsernamesForRepositoryRole(role, usernames);
  226. }
  227. @Override
  228. public boolean renameRepositoryRole(String oldRole, String newRole) {
  229. return serviceImpl.renameRepositoryRole(oldRole, newRole);
  230. }
  231. @Override
  232. public boolean deleteRepositoryRole(String role) {
  233. return serviceImpl.deleteRepositoryRole(role);
  234. }
  235. }