2 * This document is a part of the source code and related artifacts
3 * for CollectionSpace, an open source collections management system
4 * for museums and related institutions:
6 * http://www.collectionspace.org
7 * http://wiki.collectionspace.org
9 * Copyright 2009 University of California at Berkeley
11 * Licensed under the Educational Community License (ECL), Version 2.0.
12 * You may not use this file except in compliance with this License.
14 * You may obtain a copy of the ECL 2.0 License at
16 * https://source.collectionspace.org/collection-space/LICENSE.txt
18 * Unless required by applicable law or agreed to in writing, software
19 * distributed under the License is distributed on an "AS IS" BASIS,
20 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
21 * See the License for the specific language governing permissions and
22 * limitations under the License.
24 package org.collectionspace.services.authorization.importer;
26 import java.io.FileInputStream;
27 import java.io.InputStream;
29 import java.util.ArrayList;
30 import java.util.List;
32 import javax.xml.bind.JAXBContext;
33 import javax.xml.bind.Unmarshaller;
35 import org.slf4j.Logger;
36 import org.slf4j.LoggerFactory;
38 import org.collectionspace.services.authorization.AuthZ;
39 import org.collectionspace.services.authorization.CSpaceAction;
40 import org.collectionspace.services.authorization.perms.EffectType;
41 import org.collectionspace.services.authorization.perms.Permission;
42 import org.collectionspace.services.authorization.perms.PermissionAction;
43 import org.collectionspace.services.authorization.PermissionException;
44 import org.collectionspace.services.authorization.PermissionRole;
45 import org.collectionspace.services.authorization.perms.PermissionsList;
46 import org.collectionspace.services.authorization.PermissionsRolesList;
47 import org.collectionspace.services.authorization.RoleValue;
48 import org.collectionspace.services.authorization.URIResourceImpl;
49 import org.collectionspace.services.common.authorization_mgt.AuthorizationCommon;
52 * AuthorizationSeed seeds authorizations (permission, role) into authz provider database
55 public class AuthorizationSeed {
57 final Logger logger = LoggerFactory.getLogger(AuthorizationSeed.class);
61 * seedPermissions seed permissions from given files
62 * @param permFileName permisison file name
63 * @param permRoleFileName permission role file name
66 public void seedPermissions(String permFileName, String permRoleFileName) throws Exception {
67 PermissionsRolesList permRoleList =
68 (PermissionsRolesList) fromFile(PermissionsRolesList.class,
70 if (logger.isDebugEnabled()) {
71 logger.debug("read permissions-roles from " + permRoleFileName);
73 PermissionsList permList =
74 (PermissionsList) fromFile(PermissionsList.class,
76 if (logger.isDebugEnabled()) {
77 logger.debug("read permissions from " + permFileName);
80 seedPermissions(permList, permRoleList);
84 * seedPermissions seed permissions from given permisison and permission role lists
89 public void seedPermissions(PermissionsList permList, PermissionsRolesList permRoleList)
92 seedPermissions(permList.getPermission(), permRoleList.getPermissionRole());
96 * seedPermissions seed permissions from given permisison and permission role lists
101 public void seedPermissions(List<Permission> permList, List<PermissionRole> permRoleList)
103 for (Permission p : permList) {
104 if (logger.isTraceEnabled()) {
105 logger.trace("adding permission for res=" + p.getResourceName() +
106 " for tenant=" + p.getTenantId());
108 for (PermissionRole pr : permRoleList) {
109 if (pr.getPermission().get(0).getPermissionId().equals(p.getCsid())) {
110 AuthorizationCommon.addPermissionsForUri(p, pr);
118 * getAction is a convenience method to get corresponding action for
123 private CSpaceAction getAction(ActionType action) {
124 if (ActionType.CREATE.equals(action)) {
125 return CSpaceAction.CREATE;
126 } else if (ActionType.READ.equals(action)) {
127 return CSpaceAction.READ;
128 } else if (ActionType.UPDATE.equals(action)) {
129 return CSpaceAction.UPDATE;
130 } else if (ActionType.DELETE.equals(action)) {
131 return CSpaceAction.DELETE;
132 } else if (ActionType.SEARCH.equals(action)) {
133 return CSpaceAction.SEARCH;
134 } else if (ActionType.ADMIN.equals(action)) {
135 return CSpaceAction.ADMIN;
136 } else if (ActionType.START.equals(action)) {
137 return CSpaceAction.START;
138 } else if (ActionType.STOP.equals(action)) {
139 return CSpaceAction.STOP;
141 throw new IllegalArgumentException("action = " + action.toString());
145 static Object fromFile(Class jaxbClass, String fileName) throws Exception {
146 InputStream is = new FileInputStream(fileName);
148 JAXBContext context = JAXBContext.newInstance(jaxbClass);
149 Unmarshaller unmarshaller = context.createUnmarshaller();
150 //note: setting schema to null will turn validator off
151 unmarshaller.setSchema(null);
152 return jaxbClass.cast(unmarshaller.unmarshal(is));
157 } catch (Exception e) {