author | lana |
Thu, 26 Dec 2013 12:04:16 -0800 | |
changeset 23010 | 6dadb192ad81 |
parent 16020 | b57c48f16179 |
child 25151 | 7a670121602e |
permissions | -rw-r--r-- |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
1 |
/* |
23010
6dadb192ad81
8029235: Update copyright year to match last edit in jdk8 jdk repository for 2013
lana
parents:
16020
diff
changeset
|
2 |
* Copyright (c) 2009, 2013, Oracle and/or its affiliates. All rights reserved. |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
3 |
* DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
4 |
* |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
5 |
* This code is free software; you can redistribute it and/or modify it |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
6 |
* under the terms of the GNU General Public License version 2 only, as |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
7 |
* published by the Free Software Foundation. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
8 |
* |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
9 |
* This code is distributed in the hope that it will be useful, but WITHOUT |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
10 |
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
11 |
* FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
12 |
* version 2 for more details (a copy is included in the LICENSE file that |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
13 |
* accompanied this code). |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
14 |
* |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
15 |
* You should have received a copy of the GNU General Public License version |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
16 |
* 2 along with this work; if not, write to the Free Software Foundation, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
17 |
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
18 |
* |
5506 | 19 |
* Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA |
20 |
* or visit www.oracle.com if you need additional information or have any |
|
21 |
* questions. |
|
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
22 |
*/ |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
23 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
24 |
/* |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
25 |
* @test |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
26 |
* @bug 6578647 6829283 |
8396
587947f96036
7018928: test failure: sun/security/krb5/auto/SSL.java
weijun
parents:
7977
diff
changeset
|
27 |
* @run main/othervm HttpNegotiateServer |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
28 |
* @summary Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication() |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
29 |
* @summary HTTP/Negotiate: Authenticator triggered again when user cancels the first one |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
30 |
*/ |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
31 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
32 |
import com.sun.net.httpserver.Headers; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
33 |
import com.sun.net.httpserver.HttpContext; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
34 |
import com.sun.net.httpserver.HttpExchange; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
35 |
import com.sun.net.httpserver.HttpHandler; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
36 |
import com.sun.net.httpserver.HttpServer; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
37 |
import com.sun.net.httpserver.HttpPrincipal; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
38 |
import com.sun.security.auth.module.Krb5LoginModule; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
39 |
import java.io.BufferedReader; |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
40 |
import java.io.File; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
41 |
import java.io.FileOutputStream; |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
42 |
import java.io.IOException; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
43 |
import java.io.InputStreamReader; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
44 |
import java.net.HttpURLConnection; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
45 |
import java.net.InetSocketAddress; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
46 |
import java.net.PasswordAuthentication; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
47 |
import java.net.Proxy; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
48 |
import java.net.URL; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
49 |
import java.security.PrivilegedExceptionAction; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
50 |
import java.util.HashMap; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
51 |
import java.util.Map; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
52 |
import javax.security.auth.Subject; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
53 |
import org.ietf.jgss.GSSContext; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
54 |
import org.ietf.jgss.GSSCredential; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
55 |
import org.ietf.jgss.GSSManager; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
56 |
import sun.security.jgss.GSSUtil; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
57 |
import sun.security.krb5.Config; |
16020
b57c48f16179
8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents:
11107
diff
changeset
|
58 |
import java.util.Base64; |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
59 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
60 |
/** |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
61 |
* Basic JGSS/krb5 test with 3 parties: client, server, backend server. Each |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
62 |
* party uses JAAS login to get subjects and executes JGSS calls using |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
63 |
* Subject.doAs. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
64 |
*/ |
3046 | 65 |
public class HttpNegotiateServer { |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
66 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
67 |
// Two realm, web server in one, proxy server in another |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
68 |
final static String REALM_WEB = "WEB.DOMAIN"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
69 |
final static String REALM_PROXY = "PROXY.DOMAIN"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
70 |
final static String KRB5_CONF = "web.conf"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
71 |
final static String KRB5_TAB = "web.ktab"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
72 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
73 |
// user principals |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
74 |
final static String WEB_USER = "web"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
75 |
final static char[] WEB_PASS = "webby".toCharArray(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
76 |
final static String PROXY_USER = "pro"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
77 |
final static char[] PROXY_PASS = "proxy".toCharArray(); |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
78 |
|
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
79 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
80 |
final static String WEB_HOST = "host.web.domain"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
81 |
final static String PROXY_HOST = "host.proxy.domain"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
82 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
83 |
// web page content |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
84 |
final static String CONTENT = "Hello, World!"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
85 |
|
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
86 |
// For 6829283, count how many times the Authenticator is called. |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
87 |
static int count = 0; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
88 |
|
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
89 |
static int webPort, proxyPort; |
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
90 |
|
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
91 |
// URLs for web test, proxy test. The proxy server is not a real proxy |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
92 |
// since it fakes the same content for any URL. :) |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
93 |
static URL webUrl, proxyUrl; |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
94 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
95 |
/** |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
96 |
* This Authenticator checks everything: |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
97 |
* scheme, protocol, requestor type, host, port, and url |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
98 |
*/ |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
99 |
static class KnowAllAuthenticator extends java.net.Authenticator { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
100 |
public PasswordAuthentication getPasswordAuthentication () { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
101 |
if (!getRequestingScheme().equalsIgnoreCase("Negotiate")) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
102 |
throw new RuntimeException("Bad scheme"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
103 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
104 |
if (!getRequestingProtocol().equalsIgnoreCase("HTTP")) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
105 |
throw new RuntimeException("Bad protocol"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
106 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
107 |
if (getRequestorType() == RequestorType.SERVER) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
108 |
if (!this.getRequestingHost().equalsIgnoreCase(webUrl.getHost())) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
109 |
throw new RuntimeException("Bad host"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
110 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
111 |
if (this.getRequestingPort() != webUrl.getPort()) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
112 |
throw new RuntimeException("Bad port"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
113 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
114 |
if (!this.getRequestingURL().equals(webUrl)) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
115 |
throw new RuntimeException("Bad url"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
116 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
117 |
return new PasswordAuthentication( |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
118 |
WEB_USER+"@"+REALM_WEB, WEB_PASS); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
119 |
} else if (getRequestorType() == RequestorType.PROXY) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
120 |
if (!this.getRequestingHost().equalsIgnoreCase(PROXY_HOST)) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
121 |
throw new RuntimeException("Bad host"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
122 |
} |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
123 |
if (this.getRequestingPort() != proxyPort) { |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
124 |
throw new RuntimeException("Bad port"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
125 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
126 |
if (!this.getRequestingURL().equals(proxyUrl)) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
127 |
throw new RuntimeException("Bad url"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
128 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
129 |
return new PasswordAuthentication( |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
130 |
PROXY_USER+"@"+REALM_PROXY, PROXY_PASS); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
131 |
} else { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
132 |
throw new RuntimeException("Bad requster type"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
133 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
134 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
135 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
136 |
|
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
137 |
/** |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
138 |
* This Authenticator knows nothing |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
139 |
*/ |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
140 |
static class KnowNothingAuthenticator extends java.net.Authenticator { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
141 |
@Override |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
142 |
public PasswordAuthentication getPasswordAuthentication () { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
143 |
HttpNegotiateServer.count++; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
144 |
return null; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
145 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
146 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
147 |
|
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
148 |
public static void main(String[] args) |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
149 |
throws Exception { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
150 |
|
3046 | 151 |
KDC kdcw = KDC.create(REALM_WEB); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
152 |
kdcw.addPrincipal(WEB_USER, WEB_PASS); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
153 |
kdcw.addPrincipalRandKey("krbtgt/" + REALM_WEB); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
154 |
kdcw.addPrincipalRandKey("HTTP/" + WEB_HOST); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
155 |
|
3046 | 156 |
KDC kdcp = KDC.create(REALM_PROXY); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
157 |
kdcp.addPrincipal(PROXY_USER, PROXY_PASS); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
158 |
kdcp.addPrincipalRandKey("krbtgt/" + REALM_PROXY); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
159 |
kdcp.addPrincipalRandKey("HTTP/" + PROXY_HOST); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
160 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
161 |
KDC.saveConfig(KRB5_CONF, kdcw, kdcp, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
162 |
"default_keytab_name = " + KRB5_TAB, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
163 |
"[domain_realm]", |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
164 |
"", |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
165 |
".web.domain="+REALM_WEB, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
166 |
".proxy.domain="+REALM_PROXY); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
167 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
168 |
System.setProperty("java.security.krb5.conf", KRB5_CONF); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
169 |
Config.refresh(); |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
170 |
KDC.writeMultiKtab(KRB5_TAB, kdcw, kdcp); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
171 |
|
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
172 |
// Write a customized JAAS conf file, so that any kinit cache |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
173 |
// will be ignored. |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
174 |
System.setProperty("java.security.auth.login.config", OneKDC.JAAS_CONF); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
175 |
File f = new File(OneKDC.JAAS_CONF); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
176 |
FileOutputStream fos = new FileOutputStream(f); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
177 |
fos.write(( |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
178 |
"com.sun.security.jgss.krb5.initiate {\n" + |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
179 |
" com.sun.security.auth.module.Krb5LoginModule required;\n};\n" |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
180 |
).getBytes()); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
181 |
fos.close(); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
182 |
|
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
183 |
HttpServer h1 = httpd("Negotiate", false, |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
184 |
"HTTP/" + WEB_HOST + "@" + REALM_WEB, KRB5_TAB); |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
185 |
webPort = h1.getAddress().getPort(); |
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
186 |
HttpServer h2 = httpd("Negotiate", true, |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
187 |
"HTTP/" + PROXY_HOST + "@" + REALM_PROXY, KRB5_TAB); |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
188 |
proxyPort = h2.getAddress().getPort(); |
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
189 |
|
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
190 |
webUrl = new URL("http://" + WEB_HOST +":" + webPort + "/a/b/c"); |
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
191 |
proxyUrl = new URL("http://nosuchplace/a/b/c"); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
192 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
193 |
try { |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
194 |
Exception e1 = null, e2 = null; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
195 |
try { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
196 |
test6578647(); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
197 |
} catch (Exception e) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
198 |
e1 = e; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
199 |
e.printStackTrace(); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
200 |
} |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
201 |
try { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
202 |
test6829283(); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
203 |
} catch (Exception e) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
204 |
e2 = e; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
205 |
e.printStackTrace(); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
206 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
207 |
if (e1 != null || e2 != null) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
208 |
throw new RuntimeException("Test error"); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
209 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
210 |
} finally { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
211 |
// Must stop. Seems there's no HttpServer.startAsDaemon() |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
212 |
if (h1 != null) h1.stop(0); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
213 |
if (h2 != null) h2.stop(0); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
214 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
215 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
216 |
|
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
217 |
static void test6578647() throws Exception { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
218 |
BufferedReader reader; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
219 |
java.net.Authenticator.setDefault(new KnowAllAuthenticator()); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
220 |
|
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
221 |
reader = new BufferedReader(new InputStreamReader( |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
222 |
webUrl.openConnection().getInputStream())); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
223 |
if (!reader.readLine().equals(CONTENT)) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
224 |
throw new RuntimeException("Bad content"); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
225 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
226 |
|
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
227 |
reader = new BufferedReader(new InputStreamReader( |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
228 |
proxyUrl.openConnection( |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
229 |
new Proxy(Proxy.Type.HTTP, |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
230 |
new InetSocketAddress(PROXY_HOST, proxyPort))) |
5154
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
231 |
.getInputStream())); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
232 |
if (!reader.readLine().equals(CONTENT)) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
233 |
throw new RuntimeException("Bad content"); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
234 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
235 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
236 |
|
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
237 |
static void test6829283() throws Exception { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
238 |
BufferedReader reader; |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
239 |
java.net.Authenticator.setDefault(new KnowNothingAuthenticator()); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
240 |
try { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
241 |
new BufferedReader(new InputStreamReader( |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
242 |
webUrl.openConnection().getInputStream())); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
243 |
} catch (IOException ioe) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
244 |
// Will fail since no username and password is provided. |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
245 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
246 |
if (count > 1) { |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
247 |
throw new RuntimeException("Authenticator called twice"); |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
248 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
249 |
} |
07af3c279166
6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents:
4236
diff
changeset
|
250 |
|
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
251 |
/** |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
252 |
* Creates and starts an HTTP or proxy server that requires |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
253 |
* Negotiate authentication. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
254 |
* @param scheme "Negotiate" or "Kerberos" |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
255 |
* @param principal the krb5 service principal the server runs with |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
256 |
* @return the server |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
257 |
*/ |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
258 |
public static HttpServer httpd(String scheme, boolean proxy, |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
259 |
String principal, String ktab) throws Exception { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
260 |
MyHttpHandler h = new MyHttpHandler(); |
9008
1c23e333dd76
7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents:
8396
diff
changeset
|
261 |
HttpServer server = HttpServer.create(new InetSocketAddress(0), 0); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
262 |
HttpContext hc = server.createContext("/", h); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
263 |
hc.setAuthenticator(new MyServerAuthenticator( |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
264 |
proxy, scheme, principal, ktab)); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
265 |
server.start(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
266 |
return server; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
267 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
268 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
269 |
static class MyHttpHandler implements HttpHandler { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
270 |
public void handle(HttpExchange t) throws IOException { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
271 |
t.sendResponseHeaders(200, 0); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
272 |
t.getResponseBody().write(CONTENT.getBytes()); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
273 |
t.close(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
274 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
275 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
276 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
277 |
static class MyServerAuthenticator |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
278 |
extends com.sun.net.httpserver.Authenticator { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
279 |
Subject s = new Subject(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
280 |
GSSManager m = null; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
281 |
GSSCredential cred = null; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
282 |
String scheme = null; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
283 |
String reqHdr = "WWW-Authenticate"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
284 |
String respHdr = "Authorization"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
285 |
int err = HttpURLConnection.HTTP_UNAUTHORIZED; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
286 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
287 |
public MyServerAuthenticator(boolean proxy, String scheme, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
288 |
String principal, String ktab) throws Exception { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
289 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
290 |
this.scheme = scheme; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
291 |
if (proxy) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
292 |
reqHdr = "Proxy-Authenticate"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
293 |
respHdr = "Proxy-Authorization"; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
294 |
err = HttpURLConnection.HTTP_PROXY_AUTH; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
295 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
296 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
297 |
Krb5LoginModule krb5 = new Krb5LoginModule(); |
7977
f47f211cd627
7008713: diamond conversion of kerberos5 and security tools
smarks
parents:
5506
diff
changeset
|
298 |
Map<String, String> map = new HashMap<>(); |
f47f211cd627
7008713: diamond conversion of kerberos5 and security tools
smarks
parents:
5506
diff
changeset
|
299 |
Map<String, Object> shared = new HashMap<>(); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
300 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
301 |
map.put("storeKey", "true"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
302 |
map.put("isInitiator", "false"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
303 |
map.put("useKeyTab", "true"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
304 |
map.put("keyTab", ktab); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
305 |
map.put("principal", principal); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
306 |
krb5.initialize(s, null, shared, map); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
307 |
krb5.login(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
308 |
krb5.commit(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
309 |
m = GSSManager.getInstance(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
310 |
cred = Subject.doAs(s, new PrivilegedExceptionAction<GSSCredential>() { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
311 |
@Override |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
312 |
public GSSCredential run() throws Exception { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
313 |
System.err.println("Creating GSSCredential"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
314 |
return m.createCredential( |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
315 |
null, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
316 |
GSSCredential.INDEFINITE_LIFETIME, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
317 |
MyServerAuthenticator.this.scheme.equalsIgnoreCase("Negotiate")? |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
318 |
GSSUtil.GSS_SPNEGO_MECH_OID: |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
319 |
GSSUtil.GSS_KRB5_MECH_OID, |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
320 |
GSSCredential.ACCEPT_ONLY); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
321 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
322 |
}); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
323 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
324 |
|
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
325 |
@Override |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
326 |
public Result authenticate(HttpExchange exch) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
327 |
// The GSContext is stored in an HttpContext attribute named |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
328 |
// "GSSContext" and is created at the first request. |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
329 |
GSSContext c = null; |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
330 |
String auth = exch.getRequestHeaders().getFirst(respHdr); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
331 |
try { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
332 |
c = (GSSContext)exch.getHttpContext().getAttributes().get("GSSContext"); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
333 |
if (auth == null) { // First request |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
334 |
Headers map = exch.getResponseHeaders(); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
335 |
map.set (reqHdr, scheme); // Challenge! |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
336 |
c = Subject.doAs(s, new PrivilegedExceptionAction<GSSContext>() { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
337 |
@Override |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
338 |
public GSSContext run() throws Exception { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
339 |
return m.createContext(cred); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
340 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
341 |
}); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
342 |
exch.getHttpContext().getAttributes().put("GSSContext", c); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
343 |
return new com.sun.net.httpserver.Authenticator.Retry(err); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
344 |
} else { // Later requests |
16020
b57c48f16179
8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents:
11107
diff
changeset
|
345 |
byte[] token = Base64.getMimeDecoder().decode(auth.split(" ")[1]); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
346 |
token = c.acceptSecContext(token, 0, token.length); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
347 |
Headers map = exch.getResponseHeaders(); |
16020
b57c48f16179
8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents:
11107
diff
changeset
|
348 |
map.set (reqHdr, scheme + " " + Base64.getMimeEncoder() |
b57c48f16179
8006182: cleanup to use java.util.Base64 in java security component, providers, and regression tests
msheppar
parents:
11107
diff
changeset
|
349 |
.encodeToString(token).replaceAll("\\s", "")); |
2942
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
350 |
if (c.isEstablished()) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
351 |
return new com.sun.net.httpserver.Authenticator.Success( |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
352 |
new HttpPrincipal(c.getSrcName().toString(), "")); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
353 |
} else { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
354 |
return new com.sun.net.httpserver.Authenticator.Retry(err); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
355 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
356 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
357 |
} catch (Exception e) { |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
358 |
throw new RuntimeException(e); |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
359 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
360 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
361 |
} |
37d9baeb7518
6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff
changeset
|
362 |
} |