jdk/test/sun/security/krb5/auto/HttpNegotiateServer.java
author weijun
Wed, 07 Nov 2012 14:13:01 +0800
changeset 14413 e954df027393
parent 11107 fc8efc57da08
child 16020 b57c48f16179
permissions -rw-r--r--
6355584: Introduce constrained Kerberos delegation Reviewed-by: valeriep
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     1
/*
8396
587947f96036 7018928: test failure: sun/security/krb5/auto/SSL.java
weijun
parents: 7977
diff changeset
     2
 * Copyright (c) 2009, 2011, Oracle and/or its affiliates. All rights reserved.
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     3
 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     4
 *
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     5
 * This code is free software; you can redistribute it and/or modify it
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     6
 * under the terms of the GNU General Public License version 2 only, as
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     7
 * published by the Free Software Foundation.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     8
 *
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
     9
 * This code is distributed in the hope that it will be useful, but WITHOUT
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    10
 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    11
 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    12
 * version 2 for more details (a copy is included in the LICENSE file that
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    13
 * accompanied this code).
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    14
 *
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    15
 * You should have received a copy of the GNU General Public License version
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    16
 * 2 along with this work; if not, write to the Free Software Foundation,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    17
 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    18
 *
5506
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 5154
diff changeset
    19
 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 5154
diff changeset
    20
 * or visit www.oracle.com if you need additional information or have any
202f599c92aa 6943119: Rebrand source copyright notices
ohair
parents: 5154
diff changeset
    21
 * questions.
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    22
 */
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    23
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    24
/*
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    25
 * @test
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    26
 * @bug 6578647 6829283
8396
587947f96036 7018928: test failure: sun/security/krb5/auto/SSL.java
weijun
parents: 7977
diff changeset
    27
 * @run main/othervm HttpNegotiateServer
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    28
 * @summary Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    29
 * @summary HTTP/Negotiate: Authenticator triggered again when user cancels the first one
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    30
 */
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    31
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    32
import com.sun.net.httpserver.Headers;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    33
import com.sun.net.httpserver.HttpContext;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    34
import com.sun.net.httpserver.HttpExchange;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    35
import com.sun.net.httpserver.HttpHandler;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    36
import com.sun.net.httpserver.HttpServer;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    37
import com.sun.net.httpserver.HttpPrincipal;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    38
import com.sun.security.auth.module.Krb5LoginModule;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    39
import java.io.BufferedReader;
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    40
import java.io.File;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    41
import java.io.FileOutputStream;
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    42
import java.io.IOException;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    43
import java.io.InputStreamReader;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    44
import java.net.HttpURLConnection;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    45
import java.net.InetSocketAddress;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    46
import java.net.PasswordAuthentication;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    47
import java.net.Proxy;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    48
import java.net.URL;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    49
import java.security.PrivilegedExceptionAction;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    50
import java.util.HashMap;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    51
import java.util.Map;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    52
import javax.security.auth.Subject;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    53
import org.ietf.jgss.GSSContext;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    54
import org.ietf.jgss.GSSCredential;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    55
import org.ietf.jgss.GSSManager;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    56
import sun.security.jgss.GSSUtil;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    57
import sun.security.krb5.Config;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    58
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    59
/**
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    60
 * Basic JGSS/krb5 test with 3 parties: client, server, backend server. Each
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    61
 * party uses JAAS login to get subjects and executes JGSS calls using
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    62
 * Subject.doAs.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    63
 */
3046
dd50d75d88e6 6849275: enhance krb5 reg tests
weijun
parents: 2942
diff changeset
    64
public class HttpNegotiateServer {
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    65
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    66
    // Two realm, web server in one, proxy server in another
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    67
    final static String REALM_WEB = "WEB.DOMAIN";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    68
    final static String REALM_PROXY = "PROXY.DOMAIN";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    69
    final static String KRB5_CONF = "web.conf";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    70
    final static String KRB5_TAB = "web.ktab";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    71
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    72
    // user principals
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    73
    final static String WEB_USER = "web";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    74
    final static char[] WEB_PASS = "webby".toCharArray();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    75
    final static String PROXY_USER = "pro";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    76
    final static char[] PROXY_PASS = "proxy".toCharArray();
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
    77
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    78
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    79
    final static String WEB_HOST = "host.web.domain";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    80
    final static String PROXY_HOST = "host.proxy.domain";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    81
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    82
    // web page content
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    83
    final static String CONTENT = "Hello, World!";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    84
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    85
    // For 6829283, count how many times the Authenticator is called.
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    86
    static int count = 0;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
    87
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
    88
    static int webPort, proxyPort;
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
    89
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    90
    // URLs for web test, proxy test. The proxy server is not a real proxy
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    91
    // since it fakes the same content for any URL. :)
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
    92
    static URL webUrl, proxyUrl;
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    93
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    94
    /**
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    95
     * This Authenticator checks everything:
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    96
     * scheme, protocol, requestor type, host, port, and url
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    97
     */
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    98
    static class KnowAllAuthenticator extends java.net.Authenticator {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
    99
        public PasswordAuthentication getPasswordAuthentication () {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   100
            if (!getRequestingScheme().equalsIgnoreCase("Negotiate")) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   101
                throw new RuntimeException("Bad scheme");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   102
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   103
            if (!getRequestingProtocol().equalsIgnoreCase("HTTP")) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   104
                throw new RuntimeException("Bad protocol");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   105
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   106
            if (getRequestorType() == RequestorType.SERVER) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   107
                if (!this.getRequestingHost().equalsIgnoreCase(webUrl.getHost())) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   108
                    throw new RuntimeException("Bad host");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   109
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   110
                if (this.getRequestingPort() != webUrl.getPort()) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   111
                    throw new RuntimeException("Bad port");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   112
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   113
                if (!this.getRequestingURL().equals(webUrl)) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   114
                    throw new RuntimeException("Bad url");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   115
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   116
                return new PasswordAuthentication(
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   117
                        WEB_USER+"@"+REALM_WEB, WEB_PASS);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   118
            } else if (getRequestorType() == RequestorType.PROXY) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   119
                if (!this.getRequestingHost().equalsIgnoreCase(PROXY_HOST)) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   120
                    throw new RuntimeException("Bad host");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   121
                }
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   122
                if (this.getRequestingPort() != proxyPort) {
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   123
                    throw new RuntimeException("Bad port");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   124
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   125
                if (!this.getRequestingURL().equals(proxyUrl)) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   126
                    throw new RuntimeException("Bad url");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   127
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   128
                return new PasswordAuthentication(
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   129
                        PROXY_USER+"@"+REALM_PROXY, PROXY_PASS);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   130
            } else  {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   131
                throw new RuntimeException("Bad requster type");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   132
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   133
        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   134
    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   135
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   136
    /**
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   137
     * This Authenticator knows nothing
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   138
     */
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   139
    static class KnowNothingAuthenticator extends java.net.Authenticator {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   140
        @Override
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   141
        public PasswordAuthentication getPasswordAuthentication () {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   142
            HttpNegotiateServer.count++;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   143
            return null;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   144
        }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   145
    }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   146
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   147
    public static void main(String[] args)
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   148
            throws Exception {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   149
3046
dd50d75d88e6 6849275: enhance krb5 reg tests
weijun
parents: 2942
diff changeset
   150
        KDC kdcw = KDC.create(REALM_WEB);
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   151
        kdcw.addPrincipal(WEB_USER, WEB_PASS);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   152
        kdcw.addPrincipalRandKey("krbtgt/" + REALM_WEB);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   153
        kdcw.addPrincipalRandKey("HTTP/" + WEB_HOST);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   154
3046
dd50d75d88e6 6849275: enhance krb5 reg tests
weijun
parents: 2942
diff changeset
   155
        KDC kdcp = KDC.create(REALM_PROXY);
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   156
        kdcp.addPrincipal(PROXY_USER, PROXY_PASS);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   157
        kdcp.addPrincipalRandKey("krbtgt/" + REALM_PROXY);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   158
        kdcp.addPrincipalRandKey("HTTP/" + PROXY_HOST);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   159
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   160
        KDC.saveConfig(KRB5_CONF, kdcw, kdcp,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   161
                "default_keytab_name = " + KRB5_TAB,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   162
                "[domain_realm]",
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   163
                "",
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   164
                ".web.domain="+REALM_WEB,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   165
                ".proxy.domain="+REALM_PROXY);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   166
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   167
        System.setProperty("java.security.krb5.conf", KRB5_CONF);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   168
        Config.refresh();
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   169
        KDC.writeMultiKtab(KRB5_TAB, kdcw, kdcp);
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   170
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   171
        // Write a customized JAAS conf file, so that any kinit cache
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   172
        // will be ignored.
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   173
        System.setProperty("java.security.auth.login.config", OneKDC.JAAS_CONF);
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   174
        File f = new File(OneKDC.JAAS_CONF);
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   175
        FileOutputStream fos = new FileOutputStream(f);
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   176
        fos.write((
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   177
                "com.sun.security.jgss.krb5.initiate {\n" +
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   178
                "    com.sun.security.auth.module.Krb5LoginModule required;\n};\n"
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   179
                ).getBytes());
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   180
        fos.close();
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   181
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   182
        HttpServer h1 = httpd("Negotiate", false,
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   183
                "HTTP/" + WEB_HOST + "@" + REALM_WEB, KRB5_TAB);
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   184
        webPort = h1.getAddress().getPort();
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   185
        HttpServer h2 = httpd("Negotiate", true,
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   186
                "HTTP/" + PROXY_HOST + "@" + REALM_PROXY, KRB5_TAB);
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   187
        proxyPort = h2.getAddress().getPort();
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   188
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   189
        webUrl = new URL("http://" + WEB_HOST +":" + webPort + "/a/b/c");
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   190
        proxyUrl = new URL("http://nosuchplace/a/b/c");
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   191
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   192
        try {
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   193
            Exception e1 = null, e2 = null;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   194
            try {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   195
                test6578647();
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   196
            } catch (Exception e) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   197
                e1 = e;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   198
                e.printStackTrace();
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   199
            }
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   200
            try {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   201
                test6829283();
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   202
            } catch (Exception e) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   203
                e2 = e;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   204
                e.printStackTrace();
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   205
            }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   206
            if (e1 != null || e2 != null) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   207
                throw new RuntimeException("Test error");
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   208
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   209
        } finally {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   210
            // Must stop. Seems there's no HttpServer.startAsDaemon()
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   211
            if (h1 != null) h1.stop(0);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   212
            if (h2 != null) h2.stop(0);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   213
        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   214
    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   215
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   216
    static void test6578647() throws Exception {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   217
        BufferedReader reader;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   218
        java.net.Authenticator.setDefault(new KnowAllAuthenticator());
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   219
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   220
        reader = new BufferedReader(new InputStreamReader(
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   221
                webUrl.openConnection().getInputStream()));
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   222
        if (!reader.readLine().equals(CONTENT)) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   223
            throw new RuntimeException("Bad content");
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   224
        }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   225
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   226
        reader = new BufferedReader(new InputStreamReader(
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   227
                proxyUrl.openConnection(
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   228
                new Proxy(Proxy.Type.HTTP,
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   229
                    new InetSocketAddress(PROXY_HOST, proxyPort)))
5154
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   230
                .getInputStream()));
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   231
        if (!reader.readLine().equals(CONTENT)) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   232
            throw new RuntimeException("Bad content");
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   233
        }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   234
    }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   235
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   236
    static void test6829283() throws Exception {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   237
        BufferedReader reader;
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   238
        java.net.Authenticator.setDefault(new KnowNothingAuthenticator());
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   239
        try {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   240
            new BufferedReader(new InputStreamReader(
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   241
                    webUrl.openConnection().getInputStream()));
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   242
        } catch (IOException ioe) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   243
            // Will fail since no username and password is provided.
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   244
        }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   245
        if (count > 1) {
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   246
            throw new RuntimeException("Authenticator called twice");
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   247
        }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   248
    }
07af3c279166 6829283: HTTP/Negotiate: Autheticator triggered again when user cancels the first one
weijun
parents: 4236
diff changeset
   249
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   250
    /**
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   251
     * Creates and starts an HTTP or proxy server that requires
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   252
     * Negotiate authentication.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   253
     * @param scheme "Negotiate" or "Kerberos"
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   254
     * @param principal the krb5 service principal the server runs with
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   255
     * @return the server
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   256
     */
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   257
    public static HttpServer httpd(String scheme, boolean proxy,
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   258
            String principal, String ktab) throws Exception {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   259
        MyHttpHandler h = new MyHttpHandler();
9008
1c23e333dd76 7031536: test/sun/security/krb5/auto/HttpNegotiateServer.java should not use static ports
weijun
parents: 8396
diff changeset
   260
        HttpServer server = HttpServer.create(new InetSocketAddress(0), 0);
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   261
        HttpContext hc = server.createContext("/", h);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   262
        hc.setAuthenticator(new MyServerAuthenticator(
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   263
                proxy, scheme, principal, ktab));
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   264
        server.start();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   265
        return server;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   266
    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   267
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   268
    static class MyHttpHandler implements HttpHandler {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   269
        public void handle(HttpExchange t) throws IOException {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   270
            t.sendResponseHeaders(200, 0);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   271
            t.getResponseBody().write(CONTENT.getBytes());
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   272
            t.close();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   273
        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   274
    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   275
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   276
    static class MyServerAuthenticator
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   277
            extends com.sun.net.httpserver.Authenticator {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   278
        Subject s = new Subject();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   279
        GSSManager m = null;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   280
        GSSCredential cred = null;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   281
        String scheme = null;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   282
        String reqHdr = "WWW-Authenticate";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   283
        String respHdr = "Authorization";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   284
        int err = HttpURLConnection.HTTP_UNAUTHORIZED;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   285
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   286
        public MyServerAuthenticator(boolean proxy, String scheme,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   287
                String principal, String ktab) throws Exception {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   288
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   289
            this.scheme = scheme;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   290
            if (proxy) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   291
                reqHdr = "Proxy-Authenticate";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   292
                respHdr = "Proxy-Authorization";
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   293
                err = HttpURLConnection.HTTP_PROXY_AUTH;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   294
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   295
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   296
            Krb5LoginModule krb5 = new Krb5LoginModule();
7977
f47f211cd627 7008713: diamond conversion of kerberos5 and security tools
smarks
parents: 5506
diff changeset
   297
            Map<String, String> map = new HashMap<>();
f47f211cd627 7008713: diamond conversion of kerberos5 and security tools
smarks
parents: 5506
diff changeset
   298
            Map<String, Object> shared = new HashMap<>();
2942
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   299
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   300
            map.put("storeKey", "true");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   301
            map.put("isInitiator", "false");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   302
            map.put("useKeyTab", "true");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   303
            map.put("keyTab", ktab);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   304
            map.put("principal", principal);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   305
            krb5.initialize(s, null, shared, map);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   306
            krb5.login();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   307
            krb5.commit();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   308
            m = GSSManager.getInstance();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   309
            cred = Subject.doAs(s, new PrivilegedExceptionAction<GSSCredential>() {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   310
                @Override
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   311
                public GSSCredential run() throws Exception {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   312
                    System.err.println("Creating GSSCredential");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   313
                    return m.createCredential(
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   314
                            null,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   315
                            GSSCredential.INDEFINITE_LIFETIME,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   316
                            MyServerAuthenticator.this.scheme.equalsIgnoreCase("Negotiate")?
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   317
                                    GSSUtil.GSS_SPNEGO_MECH_OID:
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   318
                                    GSSUtil.GSS_KRB5_MECH_OID,
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   319
                            GSSCredential.ACCEPT_ONLY);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   320
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   321
            });
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   322
        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   323
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   324
        @Override
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   325
        public Result authenticate(HttpExchange exch) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   326
            // The GSContext is stored in an HttpContext attribute named
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   327
            // "GSSContext" and is created at the first request.
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   328
            GSSContext c = null;
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   329
            String auth = exch.getRequestHeaders().getFirst(respHdr);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   330
            try {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   331
                c = (GSSContext)exch.getHttpContext().getAttributes().get("GSSContext");
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   332
                if (auth == null) {                 // First request
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   333
                    Headers map = exch.getResponseHeaders();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   334
                    map.set (reqHdr, scheme);        // Challenge!
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   335
                    c = Subject.doAs(s, new PrivilegedExceptionAction<GSSContext>() {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   336
                        @Override
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   337
                        public GSSContext run() throws Exception {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   338
                            return m.createContext(cred);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   339
                        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   340
                    });
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   341
                    exch.getHttpContext().getAttributes().put("GSSContext", c);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   342
                    return new com.sun.net.httpserver.Authenticator.Retry(err);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   343
                } else {                            // Later requests
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   344
                    byte[] token = new sun.misc.BASE64Decoder()
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   345
                            .decodeBuffer(auth.split(" ")[1]);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   346
                    token = c.acceptSecContext(token, 0, token.length);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   347
                    Headers map = exch.getResponseHeaders();
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   348
                    map.set (reqHdr, scheme + " " + new sun.misc.BASE64Encoder()
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   349
                            .encode(token).replaceAll("\\s", ""));
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   350
                    if (c.isEstablished()) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   351
                        return new com.sun.net.httpserver.Authenticator.Success(
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   352
                                new HttpPrincipal(c.getSrcName().toString(), ""));
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   353
                    } else {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   354
                        return new com.sun.net.httpserver.Authenticator.Retry(err);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   355
                    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   356
                }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   357
            } catch (Exception e) {
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   358
                throw new RuntimeException(e);
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   359
            }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   360
        }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   361
    }
37d9baeb7518 6578647: Undefined requesting URL in java.net.Authenticator.getPasswordAuthentication()
weijun
parents:
diff changeset
   362
}