Rev 1041 | Rev 1045 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log | RSS feed
Rev | Author | Line No. | Line |
---|---|---|---|
924 | dev | 1 | package ak.hostadmiral.core.model; |
919 | dev | 2 | |
1041 | dev | 3 | import java.util.Collection; |
4 | import java.util.ArrayList; |
||
5 | import java.util.Iterator; |
||
6 | import java.util.Map; |
||
7 | import java.util.WeakHashMap; |
||
8 | import java.util.Comparator; |
||
9 | import java.util.Date; |
||
10 | |||
11 | import ak.hostadmiral.util.ConfigInit; |
||
1028 | dev | 12 | import ak.hostadmiral.util.CollectionInfo; |
924 | dev | 13 | import ak.hostadmiral.util.ModelException; |
14 | import ak.hostadmiral.util.ModelSecurityException; |
||
1041 | dev | 15 | import ak.hostadmiral.core.model.store.UserStore; |
919 | dev | 16 | |
17 | public class UserManager |
||
1014 | dev | 18 | implements |
1041 | dev | 19 | ConfigInit, |
1014 | dev | 20 | UserBeforeDeleteListener, |
21 | UserDeletingListener |
||
919 | dev | 22 | { |
1044 | dev | 23 | private UserStore store; |
24 | private UserValidator userValidator; |
||
946 | dev | 25 | |
1010 | dev | 26 | private Collection createdListeners = new ArrayList(); |
27 | private Collection modifiedListeners = new ArrayList(); |
||
946 | dev | 28 | private Collection beforeDeleteListeners = new ArrayList(); |
1014 | dev | 29 | private Collection deletingListeners = new ArrayList(); |
1010 | dev | 30 | private Collection deletedListeners = new ArrayList(); |
1041 | dev | 31 | |
950 | dev | 32 | private Map loggedinUsers = new WeakHashMap(); |
946 | dev | 33 | |
1041 | dev | 34 | public UserManager() |
35 | throws ModelException |
||
919 | dev | 36 | { |
946 | dev | 37 | addBeforeDeleteListener(this); |
1014 | dev | 38 | addDeletingListener(this); |
919 | dev | 39 | } |
40 | |||
41 | public User create(User editor) |
||
42 | throws ModelException |
||
43 | { |
||
44 | if(!allowedToCreate(editor)) throw new ModelSecurityException(); |
||
45 | |||
1010 | dev | 46 | User user = new User(); |
47 | |||
48 | if(!user.mayChangeBoss(editor)) { // ordinal user can create only own "subusers" |
||
49 | user.setBoss(editor); |
||
50 | } |
||
51 | |||
1015 | dev | 52 | // FIXME: make this configurable |
53 | user.addPasswordStore(new PasswordStoreMd5()); |
||
54 | user.addPasswordStore(new PasswordStoreCrypt()); |
||
55 | user.addPasswordStore(new PasswordStorePlain()); |
||
56 | |||
1010 | dev | 57 | return user; |
919 | dev | 58 | } |
59 | |||
60 | public boolean allowedToCreate(User editor) |
||
61 | throws ModelException |
||
62 | { |
||
63 | return User.allowedToCreate(this, editor); |
||
64 | } |
||
65 | |||
66 | public User get(User editor, Long id) |
||
67 | throws ModelException |
||
68 | { |
||
1041 | dev | 69 | User user = store.get(id); |
919 | dev | 70 | |
71 | if(!user.viewableBy(editor)) |
||
72 | throw new ModelSecurityException(); |
||
73 | |||
74 | return user; |
||
75 | } |
||
76 | |||
923 | dev | 77 | public boolean loginExists(User editor, User user, String login) |
78 | throws ModelException |
||
79 | { |
||
1041 | dev | 80 | return store.loginExists(user, login); |
923 | dev | 81 | } |
82 | |||
1041 | dev | 83 | public User findForLogin(User editor, String login) |
919 | dev | 84 | throws ModelException |
85 | { |
||
1041 | dev | 86 | User user = store.findForLogin(login); |
919 | dev | 87 | |
1041 | dev | 88 | if(user != null && !user.viewableBy(editor)) |
89 | throw new ModelSecurityException(); |
||
90 | |||
91 | return user; |
||
919 | dev | 92 | } |
93 | |||
94 | public void save(User editor, User user) |
||
95 | throws ModelException |
||
96 | { |
||
950 | dev | 97 | if(!user.editableBy(editor) && !user.partEditableBy(editor) |
919 | dev | 98 | && !user.mayChangeSuperuser(editor)) |
99 | { |
||
100 | throw new ModelSecurityException(); |
||
101 | } |
||
102 | |||
1044 | dev | 103 | if(userValidator != null) |
104 | userValidator.validateUser(editor, user); |
||
105 | |||
1010 | dev | 106 | boolean isNew = user.isNew(); |
919 | dev | 107 | |
1010 | dev | 108 | //user.setModUser(editor); // FIXME: disabled because hb throws exception |
109 | // if user edits itself |
||
110 | |||
1041 | dev | 111 | store.save(user); |
950 | dev | 112 | |
113 | // update user if he is logged in |
||
114 | for(Iterator i = loggedinUsers.keySet().iterator(); i.hasNext(); ) { |
||
115 | User u = (User)i.next(); |
||
116 | if(u.equals(user)) |
||
117 | u.update(user); |
||
118 | } |
||
1010 | dev | 119 | |
120 | // inform listeners |
||
121 | if(isNew) { |
||
122 | for(Iterator i = createdListeners.iterator(); i.hasNext(); ) { |
||
123 | UserCreatedListener listener = (UserCreatedListener)i.next(); |
||
124 | listener.userCreated(editor, user); |
||
125 | } |
||
126 | } |
||
127 | else { |
||
128 | User oldUser = user.getOrigin(); |
||
129 | if(oldUser == null) oldUser = user; |
||
130 | for(Iterator i = modifiedListeners.iterator(); i.hasNext(); ) { |
||
131 | UserModifiedListener listener = (UserModifiedListener)i.next(); |
||
132 | listener.userModified(editor, user, oldUser); |
||
133 | } |
||
134 | } |
||
919 | dev | 135 | } |
136 | |||
1010 | dev | 137 | public void addCreatedListener(UserCreatedListener listener) |
138 | { |
||
139 | createdListeners.add(listener); |
||
140 | } |
||
141 | |||
142 | public void removeCreatedListener(UserCreatedListener listener) |
||
143 | { |
||
144 | createdListeners.remove(listener); |
||
145 | } |
||
146 | |||
147 | public void addModifiedListener(UserModifiedListener listener) |
||
148 | { |
||
149 | modifiedListeners.add(listener); |
||
150 | } |
||
151 | |||
152 | public void removeModifiedListener(UserModifiedListener listener) |
||
153 | { |
||
154 | modifiedListeners.remove(listener); |
||
155 | } |
||
156 | |||
946 | dev | 157 | public void addBeforeDeleteListener(UserBeforeDeleteListener listener) |
158 | { |
||
159 | beforeDeleteListeners.add(listener); |
||
160 | } |
||
161 | |||
162 | public void removeBeforeDeleteListener(UserBeforeDeleteListener listener) |
||
163 | { |
||
164 | beforeDeleteListeners.remove(listener); |
||
165 | } |
||
166 | |||
1010 | dev | 167 | public void addDeletedListener(UserDeletedListener listener) |
168 | { |
||
169 | deletedListeners.add(listener); |
||
170 | } |
||
171 | |||
172 | public void removeDeletedListener(UserDeletedListener listener) |
||
173 | { |
||
174 | deletedListeners.remove(listener); |
||
175 | } |
||
176 | |||
1014 | dev | 177 | public void addDeletingListener(UserDeletingListener listener) |
178 | { |
||
179 | deletingListeners.add(listener); |
||
180 | } |
||
181 | |||
182 | public void removeDeletingListener(UserDeletingListener listener) |
||
183 | { |
||
184 | deletingListeners.remove(listener); |
||
185 | } |
||
186 | |||
949 | dev | 187 | public Collection beforeDelete(User editor, User user, Collection known) |
946 | dev | 188 | throws ModelException |
189 | { |
||
190 | Collection cascade = new ArrayList(); |
||
191 | |||
192 | for(Iterator i = beforeDeleteListeners.iterator(); i.hasNext(); ) { |
||
193 | UserBeforeDeleteListener listener = (UserBeforeDeleteListener)i.next(); |
||
949 | dev | 194 | Collection subcascade = listener.userBeforeDelete(editor, user, known); |
946 | dev | 195 | if(subcascade != null) |
196 | cascade.addAll(subcascade); |
||
197 | } |
||
198 | |||
199 | return cascade; |
||
200 | } |
||
201 | |||
919 | dev | 202 | public void delete(User editor, User user) |
203 | throws ModelException |
||
204 | { |
||
1011 | dev | 205 | // check rights |
919 | dev | 206 | if(!user.deleteableBy(editor)) |
207 | throw new ModelSecurityException(); |
||
208 | |||
1014 | dev | 209 | // inform deleting listeners |
210 | for(Iterator i = deletingListeners.iterator(); i.hasNext(); ) { |
||
211 | UserDeletingListener listener = (UserDeletingListener)i.next(); |
||
212 | listener.userDeleting(editor, user); |
||
213 | } |
||
214 | |||
1010 | dev | 215 | // backup copy |
216 | User oldUser = new User(user); |
||
217 | |||
218 | // delete it |
||
1041 | dev | 219 | store.delete(user); |
1010 | dev | 220 | |
1014 | dev | 221 | // inform delete listeners |
1010 | dev | 222 | for(Iterator i = deletedListeners.iterator(); i.hasNext(); ) { |
223 | UserDeletedListener listener = (UserDeletedListener)i.next(); |
||
224 | listener.userDeleted(editor, oldUser); |
||
225 | } |
||
919 | dev | 226 | } |
227 | |||
228 | public Collection listUsers(User editor) |
||
229 | throws ModelException |
||
230 | { |
||
1028 | dev | 231 | return listUsers(null, 0, 0, null, editor); |
232 | } |
||
233 | |||
234 | public Collection listUsers(CollectionInfo info, int rowsPerPage, int pageNumber, |
||
235 | Integer[] sortingKeys, User editor) |
||
236 | throws ModelException |
||
237 | { |
||
1041 | dev | 238 | if(editor.isSuperuser()) |
239 | return store.listAllUsers(info, rowsPerPage, pageNumber, sortingKeys); |
||
240 | else |
||
241 | return store.listUsers(info, rowsPerPage, pageNumber, sortingKeys, editor); |
||
919 | dev | 242 | } |
243 | |||
923 | dev | 244 | public boolean areUsersAvailable(User editor) |
919 | dev | 245 | throws ModelException |
246 | { |
||
1041 | dev | 247 | return true; |
919 | dev | 248 | } |
249 | |||
949 | dev | 250 | public User loginUser(String login, String password, String ip) |
919 | dev | 251 | throws ModelException |
252 | { |
||
1041 | dev | 253 | User user = (login == null || password == null) |
254 | ? null : store.findForLogin(login); |
||
255 | |||
949 | dev | 256 | boolean success = (user == null) ? false : user.checkPassword(password); |
951 | dev | 257 | UserLogin userLogin = new UserLogin(user, login, new Date(), Boolean.valueOf(success), ip); |
919 | dev | 258 | |
949 | dev | 259 | // save login information |
1041 | dev | 260 | store.saveUserLogin(userLogin); |
919 | dev | 261 | |
950 | dev | 262 | if(success) { |
1041 | dev | 263 | user = new User(user); // unbind the user from store |
950 | dev | 264 | loggedinUsers.put(user, Boolean.TRUE); |
949 | dev | 265 | return user; |
950 | dev | 266 | } |
267 | else { |
||
949 | dev | 268 | return null; // wrong login or password |
950 | dev | 269 | } |
919 | dev | 270 | } |
271 | |||
949 | dev | 272 | public Collection listFailedLogins(User editor) |
946 | dev | 273 | throws ModelException |
919 | dev | 274 | { |
949 | dev | 275 | if(!editor.mayViewAllLogins()) |
276 | throw new ModelSecurityException(); |
||
277 | |||
1041 | dev | 278 | return store.listFailedLogins(); |
949 | dev | 279 | } |
280 | |||
281 | public Collection userBeforeDelete(User editor, User user, Collection known) |
||
282 | throws ModelException |
||
283 | { |
||
1041 | dev | 284 | Collection subusers = store.listSubusers(user); |
919 | dev | 285 | |
946 | dev | 286 | Collection cascade = new ArrayList(); |
287 | for(Iterator i = subusers.iterator(); i.hasNext(); ) { |
||
288 | User u = (User)i.next(); |
||
289 | if(u.viewableBy(editor)) { |
||
290 | if(u.deleteableBy(editor)) |
||
291 | cascade.add(new CascadeDeleteElement(u, CascadeDeleteElement.DELETE, |
||
949 | dev | 292 | this.beforeDelete(editor, u, known))); |
946 | dev | 293 | else |
294 | cascade.add(new CascadeDeleteElement(u, CascadeDeleteElement.FORBIDDEN, null)); |
||
295 | } |
||
296 | else { |
||
297 | cascade.add(new CascadeDeleteElement(User.createLimitedCopy(u), |
||
298 | CascadeDeleteElement.FORBIDDEN, null)); |
||
299 | } |
||
300 | } |
||
301 | |||
302 | return cascade; |
||
919 | dev | 303 | } |
304 | |||
1014 | dev | 305 | public void userDeleting(User editor, User user) |
306 | throws ModelException |
||
307 | { |
||
1041 | dev | 308 | Collection subusers = store.listSubusers(user); |
1014 | dev | 309 | |
310 | for(Iterator i = subusers.iterator(); i.hasNext(); ) { |
||
311 | delete(editor, (User)i.next()); |
||
312 | } |
||
313 | } |
||
314 | |||
1028 | dev | 315 | public static final Integer SORT_LOGIN = new Integer(1); |
316 | |||
919 | dev | 317 | public static final Comparator LOGIN_COMPARATOR = new LoginComparator(); |
949 | dev | 318 | public static final Comparator LOGINS_TIME_COMPARATOR = new LoginsTimeComparator(); |
919 | dev | 319 | |
320 | private static class LoginComparator |
||
321 | implements Comparator |
||
322 | { |
||
323 | public int compare(Object o1, Object o2) |
||
324 | { |
||
325 | if(!(o1 instanceof User) || !(o2 instanceof User)) |
||
326 | throw new ClassCastException("not a User"); |
||
327 | |||
328 | User a1 = (User)o1; |
||
329 | User a2 = (User)o2; |
||
330 | |||
331 | if(a1 == null && a2 == null) |
||
332 | return 0; |
||
333 | else if(a1 == null && a2 != null) |
||
334 | return -1; |
||
335 | else if(a1 != null && a2 == null) |
||
336 | return 1; |
||
337 | else |
||
338 | return a1.getLogin().compareToIgnoreCase(a2.getLogin()); |
||
339 | } |
||
340 | |||
341 | public boolean equals(Object obj) |
||
342 | { |
||
343 | return (obj instanceof LoginComparator); |
||
344 | } |
||
345 | } |
||
949 | dev | 346 | |
347 | private static class LoginsTimeComparator |
||
348 | implements Comparator |
||
349 | { |
||
350 | public int compare(Object o1, Object o2) |
||
351 | { |
||
352 | if(!(o1 instanceof UserLogin) || !(o2 instanceof UserLogin)) |
||
353 | throw new ClassCastException("not a UserLogin"); |
||
354 | |||
355 | UserLogin a1 = (UserLogin)o1; |
||
356 | UserLogin a2 = (UserLogin)o2; |
||
357 | |||
358 | if(a1 == null && a2 == null) |
||
359 | return 0; |
||
360 | else if(a1 == null && a2 != null) |
||
361 | return -1; |
||
362 | else if(a1 != null && a2 == null) |
||
363 | return 1; |
||
364 | else |
||
365 | return a1.getLoginTime().compareTo(a2.getLoginTime()); |
||
366 | } |
||
367 | |||
368 | public boolean equals(Object obj) |
||
369 | { |
||
370 | return (obj instanceof LoginComparator); |
||
371 | } |
||
372 | } |
||
1041 | dev | 373 | |
374 | public void init(Map params) |
||
375 | throws ModelException |
||
376 | { |
||
377 | try { |
||
378 | userManager = this; |
||
379 | |||
380 | Class c = Class.forName((String)params.get("store")); |
||
381 | store = (UserStore)c.newInstance(); |
||
1044 | dev | 382 | |
383 | String userValidatorName = (String)params.get("userValidator"); |
||
384 | if(userValidatorName != null) { |
||
385 | Class c2 = Class.forName(userValidatorName); |
||
386 | userValidator = (UserValidator)c2.newInstance(); |
||
387 | } |
||
1041 | dev | 388 | } |
389 | catch(Exception ex) { |
||
390 | throw new ModelException(ex); |
||
391 | } |
||
392 | } |
||
393 | |||
394 | private static UserManager userManager = null; |
||
395 | |||
396 | public static UserManager getInstance() |
||
397 | { |
||
398 | return userManager; |
||
399 | } |
||
919 | dev | 400 | } |