Java tutorial
/* * Copyright 2013-2014 JIWHIZ Consulting Inc. * * Licensed under the Apache License, Version 2.0 (the "License"); * you may not use this file except in compliance with the License. * You may obtain a copy of the License at * * http://www.apache.org/licenses/LICENSE-2.0 * * Unless required by applicable law or agreed to in writing, software * distributed under the License is distributed on an "AS IS" BASIS, * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. * See the License for the specific language governing permissions and * limitations under the License. */ package com.jiwhiz.rest; /** * @author Yuan Ji */ import org.slf4j.Logger; import org.slf4j.LoggerFactory; import org.springframework.http.HttpStatus; import org.springframework.security.access.AccessDeniedException; import org.springframework.security.authentication.AuthenticationCredentialsNotFoundException; import org.springframework.security.authentication.BadCredentialsException; import org.springframework.web.bind.annotation.ControllerAdvice; import org.springframework.web.bind.annotation.ExceptionHandler; import org.springframework.web.bind.annotation.ResponseStatus; @ControllerAdvice public class RestErrorHandler { private static final Logger LOGGER = LoggerFactory.getLogger(RestErrorHandler.class); /** * Return 404 Not Found if resource cannot be found. * * @param ex */ @ExceptionHandler(ResourceNotFoundException.class) @ResponseStatus(HttpStatus.NOT_FOUND) public void handleResourceNotFoundException(ResourceNotFoundException ex) { LOGGER.debug("handling 404 error on a resource"); } /** * Return 401 Unauthorized if user provided wrong credentials. * * @param ex */ @ExceptionHandler(AuthenticationCredentialsNotFoundException.class) @ResponseStatus(HttpStatus.UNAUTHORIZED) public void handleAuthenticationCredentialsNotFoundException(AuthenticationCredentialsNotFoundException ex) { LOGGER.debug("User provided wrong credentials."); } /** * Return 401 Unauthorized if user account locked. * * @param ex */ @ExceptionHandler(BadCredentialsException.class) @ResponseStatus(HttpStatus.UNAUTHORIZED) public void handleBadCredentialsException(BadCredentialsException ex) { LOGGER.debug("User account locked."); } /** * Returns 403 Forbidden if user doesn't have privilege to access certain resources. * * @param ex */ @ExceptionHandler(AccessDeniedException.class) @ResponseStatus(HttpStatus.FORBIDDEN) public void handleAccessDeniedException(AccessDeniedException ex) { LOGGER.debug("handling access secure resource without privilege"); } }