1 /* 2 * Copyright (c) 2002-2017, Mairie de Paris 3 * All rights reserved. 4 * 5 * Redistribution and use in source and binary forms, with or without 6 * modification, are permitted provided that the following conditions 7 * are met: 8 * 9 * 1. Redistributions of source code must retain the above copyright notice 10 * and the following disclaimer. 11 * 12 * 2. Redistributions in binary form must reproduce the above copyright notice 13 * and the following disclaimer in the documentation and/or other materials 14 * provided with the distribution. 15 * 16 * 3. Neither the name of 'Mairie de Paris' nor 'Lutece' nor the names of its 17 * contributors may be used to endorse or promote products derived from 18 * this software without specific prior written permission. 19 * 20 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" 21 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 23 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDERS OR CONTRIBUTORS BE 24 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 25 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 26 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 27 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 28 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 29 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 30 * POSSIBILITY OF SUCH DAMAGE. 31 * 32 * License 1.0 33 */ 34 package fr.paris.lutece.plugins.mylutece.modules.cas.web; 35 36 import javax.servlet.http.HttpServletRequest; 37 import javax.servlet.http.HttpSession; 38 39 import org.jasig.cas.client.authentication.DefaultGatewayResolverImpl; 40 import org.jasig.cas.client.authentication.GatewayResolver; 41 42 /** 43 * This class is similar to the DefaultGatewayResolverImpl, but it adds a parameter 44 * on the query string to be able to detect browsers with cookies disabled. 45 * When cookies are disabled, an attribute is set on the request so that subsequent 46 * treatments are able to act on that (display an error message, for instance) 47 */ 48 public class ParameterGatewayResolver implements GatewayResolver { 49 50 public static final String PARAM_GATEWAY = "g"; 51 public static final String ATTR_SUPPORTS_COOKIES = "mylutece-cas.supports-cookies"; 52 private static final String PARAM_YES = "yes"; 53 54 @Override 55 public boolean hasGatewayedAlready( HttpServletRequest request, 56 String serviceUrl ) 57 { 58 final HttpSession session = request.getSession( false ); 59 60 if ( session == null ) 61 { 62 if ( request.getParameter( PARAM_GATEWAY ) != null ) 63 { 64 // we were gatewayed, but it was not stored in the session 65 // cookies must be blocked 66 request.setAttribute( ATTR_SUPPORTS_COOKIES, Boolean.FALSE ); 67 return true; 68 } 69 return false; 70 } 71 72 final boolean result = session.getAttribute( DefaultGatewayResolverImpl.CONST_CAS_GATEWAY ) != null; 73 session.removeAttribute( DefaultGatewayResolverImpl.CONST_CAS_GATEWAY ); 74 75 if ( result ) 76 { 77 session.setAttribute( ATTR_SUPPORTS_COOKIES, Boolean.TRUE ); 78 } 79 80 return result; 81 } 82 83 @Override 84 public String storeGatewayInformation( HttpServletRequest request, 85 String serviceUrl ) 86 { 87 HttpSession session = request.getSession( true ); 88 session.setAttribute( DefaultGatewayResolverImpl.CONST_CAS_GATEWAY, PARAM_YES ); 89 if ( session.getAttribute( ATTR_SUPPORTS_COOKIES ) == null ) 90 { 91 return serviceUrl + (serviceUrl.indexOf( "?" ) != -1 ? "&" : "?" ) + PARAM_GATEWAY + "=t"; 92 } 93 return serviceUrl; 94 } 95 96 }