src/java.security.jgss/share/classes/sun/security/krb5/internal/rcache/AuthTimeWithHash.java
author weijun
Tue, 14 Aug 2018 22:39:34 +0800
changeset 51398 3c389a284345
parent 47216 71c04702a3d5
permissions -rw-r--r--
8209416: Refactoring GetPropertyAction calls in security libs Reviewed-by: xuelei, rriggs
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     1
/*
51398
3c389a284345 8209416: Refactoring GetPropertyAction calls in security libs
weijun
parents: 47216
diff changeset
     2
 * Copyright (c) 2013, 2018, Oracle and/or its affiliates. All rights reserved.
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     4
 *
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     7
 * published by the Free Software Foundation.  Oracle designates this
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     8
 * particular file as subject to the "Classpath" exception as provided
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
     9
 * by Oracle in the LICENSE file that accompanied this code.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    10
 *
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    11
 * This code is distributed in the hope that it will be useful, but WITHOUT
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    12
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    13
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    14
 * version 2 for more details (a copy is included in the LICENSE file that
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    15
 * accompanied this code).
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    16
 *
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    17
 * You should have received a copy of the GNU General Public License version
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    18
 * 2 along with this work; if not, write to the Free Software Foundation,
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    19
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    20
 *
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    21
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    22
 * or visit www.oracle.com if you need additional information or have any
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    23
 * questions.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    24
 */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    25
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    26
package sun.security.krb5.internal.rcache;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    27
51398
3c389a284345 8209416: Refactoring GetPropertyAction calls in security libs
weijun
parents: 47216
diff changeset
    28
import sun.security.action.GetBooleanAction;
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    29
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    30
import java.util.Objects;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    31
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    32
/**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    33
 * The class represents a new style replay cache entry. It can be either used
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    34
 * inside memory or in a dfl file.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    35
 */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    36
public class AuthTimeWithHash extends AuthTime
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    37
        implements Comparable<AuthTimeWithHash> {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    38
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    39
    // The hash algorithm can be "HASH" or "SHA256".
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    40
    public static final String DEFAULT_HASH_ALG;
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    41
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    42
    static {
51398
3c389a284345 8209416: Refactoring GetPropertyAction calls in security libs
weijun
parents: 47216
diff changeset
    43
        if (GetBooleanAction.privilegedGetProperty("jdk.krb5.rcache.useMD5")) {
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    44
            DEFAULT_HASH_ALG = "HASH";
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    45
        } else {
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    46
            DEFAULT_HASH_ALG = "SHA256";
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    47
        }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    48
    }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    49
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    50
    public static String realAlg(String alg) {
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    51
        switch (alg) {
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    52
            case "HASH":
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    53
                return "MD5";
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    54
            case "SHA256":
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    55
                return "SHA-256";
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    56
            default:
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    57
                throw new AssertionError(alg + " is not HASH or SHA256");
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    58
        }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    59
    }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    60
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    61
    final String hashAlg;
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    62
    final String hash;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    63
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    64
    /**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    65
     * Constructs a new <code>AuthTimeWithHash</code>.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    66
     */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    67
    public AuthTimeWithHash(String client, String server,
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    68
            int ctime, int cusec, String hashAlg, String hash) {
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    69
        super(client, server, ctime, cusec);
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    70
        this.hashAlg = hashAlg;
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    71
        this.hash = hash;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    72
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    73
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    74
    /**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    75
     * Compares if an object equals to an <code>AuthTimeWithHash</code> object.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    76
     * @param o an object.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    77
     * @return true if two objects are equivalent, otherwise, return false.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    78
     */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    79
    @Override
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    80
    public boolean equals(Object o) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    81
        if (this == o) return true;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    82
        if (!(o instanceof AuthTimeWithHash)) return false;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    83
        AuthTimeWithHash that = (AuthTimeWithHash)o;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    84
        return Objects.equals(hash, that.hash)
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
    85
                && Objects.equals(hashAlg, that.hashAlg)
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    86
                && Objects.equals(client, that.client)
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    87
                && Objects.equals(server, that.server)
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    88
                && ctime == that.ctime
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    89
                && cusec == that.cusec;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    90
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    91
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    92
    /**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    93
     * Returns a hash code for this <code>AuthTimeWithHash</code> object.
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    94
     */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    95
    @Override
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    96
    public int hashCode() {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    97
        return Objects.hash(hash);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    98
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
    99
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   100
    @Override
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   101
    public String toString() {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   102
        return String.format("%d/%06d/%s/%s", ctime, cusec, hash, client);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   103
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   104
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   105
    @Override
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   106
    public int compareTo(AuthTimeWithHash other) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   107
        int cmp = 0;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   108
        if (ctime != other.ctime) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   109
            cmp = Integer.compare(ctime, other.ctime);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   110
        } else if (cusec != other.cusec) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   111
            cmp = Integer.compare(cusec, other.cusec);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   112
        } else {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   113
            cmp = hash.compareTo(other.hash);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   114
        }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   115
        return cmp;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   116
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   117
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   118
    /**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   119
     * Compares with a possibly old style object. Used
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   120
     * in DflCache$Storage#loadAndCheck.
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   121
     * @return true if all AuthTime fields are the same but different hash
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   122
     */
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   123
    public boolean sameTimeDiffHash(AuthTimeWithHash old) {
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   124
        if (!this.isSameIgnoresHash(old)) {
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   125
            return false;
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   126
        }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   127
        return this.hashAlg.equals(old.hashAlg) &&
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   128
                !this.hash.equals(old.hash);
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   129
    }
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   130
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   131
    /**
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   132
     * Compares with a possibly old style object. Used
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   133
     * in DflCache$Storage#loadAndCheck.
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   134
     * @return true if all AuthTime fields are the same
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   135
     */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   136
    public boolean isSameIgnoresHash(AuthTime old) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   137
        return  client.equals(old.client) &&
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   138
                server.equals(old.server) &&
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   139
                ctime == old.ctime &&
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   140
                cusec == old.cusec;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   141
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   142
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   143
    // Methods used when saved in a dfl file. See DflCache.java
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   144
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   145
    /**
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   146
     * Encodes to be used in a dfl file
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   147
     * @param withHash write new style if true
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   148
     */
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   149
    @Override
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   150
    public byte[] encode(boolean withHash) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   151
        String cstring;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   152
        String sstring;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   153
        if (withHash) {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   154
            cstring = "";
41832
15db944958a7 8168518: rcache interop with krb5-1.15
weijun
parents: 25859
diff changeset
   155
            sstring = String.format("%s:%s %d:%s %d:%s", hashAlg, hash,
18536
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   156
                    client.length(), client,
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   157
                    server.length(), server);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   158
        } else {
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   159
            cstring = client;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   160
            sstring = server;
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   161
        }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   162
        return encode0(cstring, sstring);
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   163
    }
092411ced388 8001326: Improve Kerberos caching
weijun
parents:
diff changeset
   164
}