src/java.base/share/classes/sun/security/util/LazyCodeSourcePermissionCollection.java
author chegar
Thu, 17 Oct 2019 20:54:25 +0100
branchdatagramsocketimpl-branch
changeset 58679 9c3209ff7550
parent 58678 9cf78a70fa4f
parent 57950 4612a3cfb927
permissions -rw-r--r--
datagramsocketimpl-branch: merge with default
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
57792
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     1
/*
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     2
 * Copyright (c) 2019, Oracle and/or its affiliates. All rights reserved.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     4
 *
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     7
 * published by the Free Software Foundation.  Oracle designates this
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     8
 * particular file as subject to the "Classpath" exception as provided
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
     9
 * by Oracle in the LICENSE file that accompanied this code.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    10
 *
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    11
 * This code is distributed in the hope that it will be useful, but WITHOUT
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    12
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    13
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    14
 * version 2 for more details (a copy is included in the LICENSE file that
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    15
 * accompanied this code).
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    16
 *
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    17
 * You should have received a copy of the GNU General Public License version
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    18
 * 2 along with this work; if not, write to the Free Software Foundation,
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    19
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    20
 *
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    21
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    22
 * or visit www.oracle.com if you need additional information or have any
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    23
 * questions.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    24
 */
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    25
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    26
package sun.security.util;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    27
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    28
import java.io.File;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    29
import java.io.FilePermission;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    30
import java.io.IOException;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    31
import java.net.URL;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    32
import java.security.CodeSource;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    33
import java.security.Permission;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    34
import java.security.PermissionCollection;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    35
import java.util.Enumeration;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    36
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    37
/**
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    38
 * This {@code PermissionCollection} implementation delegates to another
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    39
 * {@code PermissionCollection}, taking care to lazily add the permission needed
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    40
 * to read from the given {@code CodeSource} at first use, i.e., when either of
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    41
 * {@link #elements}, {@link #implies} or {@link #toString} is called, or when
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    42
 * the collection is serialized.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    43
 */
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    44
public final class LazyCodeSourcePermissionCollection
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    45
        extends PermissionCollection
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    46
{
57950
4612a3cfb927 8229999: Apply java.io.Serial annotations to security types in java.base
darcy
parents: 57792
diff changeset
    47
    @java.io.Serial
57792
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    48
    private static final long serialVersionUID = -6727011328946861783L;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    49
    private final PermissionCollection perms;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    50
    private final CodeSource cs;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    51
    private volatile boolean permissionAdded;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    52
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    53
    public LazyCodeSourcePermissionCollection(PermissionCollection perms,
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    54
                                              CodeSource cs) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    55
        this.perms = perms;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    56
        this.cs = cs;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    57
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    58
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    59
    private void ensureAdded() {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    60
        if (!permissionAdded) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    61
            synchronized(perms) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    62
                if (permissionAdded)
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    63
                    return;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    64
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    65
                // open connection to determine the permission needed
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    66
                URL location = cs.getLocation();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    67
                if (location != null) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    68
                    try {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    69
                        Permission p = location.openConnection().getPermission();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    70
                        if (p != null) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    71
                            // for directories then need recursive access
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    72
                            if (p instanceof FilePermission) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    73
                                String path = p.getName();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    74
                                if (path.endsWith(File.separator)) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    75
                                    path += "-";
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    76
                                    p = new FilePermission(path,
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    77
                                            SecurityConstants.FILE_READ_ACTION);
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    78
                                }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    79
                            }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    80
                            perms.add(p);
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    81
                        }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    82
                    } catch (IOException ioe) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    83
                    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    84
                }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    85
                if (isReadOnly()) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    86
                    perms.setReadOnly();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    87
                }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    88
                permissionAdded = true;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    89
            }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    90
        }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    91
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    92
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    93
    @Override
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    94
    public void add(Permission permission) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    95
        if (isReadOnly())
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    96
            throw new SecurityException(
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    97
                    "attempt to add a Permission to a readonly PermissionCollection");
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    98
        perms.add(permission);
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
    99
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   100
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   101
    @Override
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   102
    public boolean implies(Permission permission) {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   103
        ensureAdded();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   104
        return perms.implies(permission);
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   105
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   106
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   107
    @Override
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   108
    public Enumeration<Permission> elements() {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   109
        ensureAdded();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   110
        return perms.elements();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   111
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   112
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   113
    @Override
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   114
    public String toString() {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   115
        ensureAdded();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   116
        return perms.toString();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   117
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   118
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   119
    /**
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   120
     * On serialization, initialize and replace with the underlying
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   121
     * permissions. This removes the laziness on deserialization.
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   122
     */
57950
4612a3cfb927 8229999: Apply java.io.Serial annotations to security types in java.base
darcy
parents: 57792
diff changeset
   123
    @java.io.Serial
57792
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   124
    private Object writeReplace() {
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   125
        ensureAdded();
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   126
        return perms;
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   127
    }
1b6806340400 8229773: Resolve permissions for code source URLs lazily
redestad
parents:
diff changeset
   128
}