com.seyren.core.security.mongo.MongoAuthenticationProvider.java Source code

Java tutorial

Introduction

Here is the source code for com.seyren.core.security.mongo.MongoAuthenticationProvider.java

Source

/**
 * Licensed under the Apache License, Version 2.0 (the "License");
 * you may not use this file except in compliance with the License.
 * You may obtain a copy of the License at
 *
 *      http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS,
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 * See the License for the specific language governing permissions and
 * limitations under the License.
 */
package com.seyren.core.security.mongo;

import com.seyren.core.domain.User;
import com.seyren.core.store.UserStore;
import com.seyren.core.util.config.SeyrenConfig;
import org.springframework.security.authentication.AuthenticationCredentialsNotFoundException;
import org.springframework.security.authentication.AuthenticationProvider;
import org.springframework.security.authentication.BadCredentialsException;
import org.springframework.security.authentication.UsernamePasswordAuthenticationToken;
import org.springframework.security.core.Authentication;
import org.springframework.security.core.AuthenticationException;
import org.springframework.security.crypto.password.PasswordEncoder;
import org.springframework.stereotype.Component;

import javax.inject.Inject;

@Component
public class MongoAuthenticationProvider implements AuthenticationProvider {
    private final PasswordEncoder passwordEncoder;
    private final SeyrenConfig seyrenConfig;
    private final UserStore userStore;

    @Inject
    public MongoAuthenticationProvider(PasswordEncoder passwordEncoder, SeyrenConfig seyrenConfig,
            UserStore userStore) {
        this.passwordEncoder = passwordEncoder;
        this.seyrenConfig = seyrenConfig;
        this.userStore = userStore;
    }

    @Override
    public Authentication authenticate(Authentication authentication) throws AuthenticationException {
        User user = userStore.getUser(authentication.getName());
        if (user == null) {
            throw new AuthenticationCredentialsNotFoundException("User does not exist");
        }
        String password = authentication.getCredentials().toString();
        if (passwordEncoder.matches(password, user.getPassword())) {
            return new UsernamePasswordAuthenticationToken(user.getUsername(), user.getPassword(),
                    user.getAuthorities());
        } else {
            throw new BadCredentialsException("Bad Credentials");
        }
    }

    @Override
    public boolean supports(Class<?> authentication) {
        return authentication.equals(UsernamePasswordAuthenticationToken.class);
    }
}