You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

BearerPasscode.java 1.7KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253
  1. /*
  2. * SonarQube
  3. * Copyright (C) 2009-2021 SonarSource SA
  4. * mailto:info AT sonarsource DOT com
  5. *
  6. * This program is free software; you can redistribute it and/or
  7. * modify it under the terms of the GNU Lesser General Public
  8. * License as published by the Free Software Foundation; either
  9. * version 3 of the License, or (at your option) any later version.
  10. *
  11. * This program is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  14. * Lesser General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU Lesser General Public License
  17. * along with this program; if not, write to the Free Software Foundation,
  18. * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
  19. */
  20. package org.sonar.server.user;
  21. import java.util.Optional;
  22. import org.apache.commons.lang.StringUtils;
  23. import org.sonar.api.config.Configuration;
  24. import org.sonar.api.server.ws.Request;
  25. import static org.sonar.process.ProcessProperties.Property.WEB_SYSTEM_PASS_CODE;
  26. public class BearerPasscode {
  27. public static final String PASSCODE_HTTP_HEADER = "Authorization";
  28. private final Configuration configuration;
  29. public BearerPasscode(Configuration configuration) {
  30. this.configuration = configuration;
  31. }
  32. public boolean isValid(Request request) {
  33. Optional<String> passcodeOpt = configuration.get(WEB_SYSTEM_PASS_CODE.getKey()).map(StringUtils::trimToNull);
  34. if (passcodeOpt.isEmpty()) {
  35. return false;
  36. }
  37. String configuredPasscode = passcodeOpt.get();
  38. return request.header(PASSCODE_HTTP_HEADER)
  39. .map(s -> s.replace("Bearer ", ""))
  40. .map(configuredPasscode::equals)
  41. .orElse(false);
  42. }
  43. }