Class PkinitPreauth
java.lang.Object
org.apache.kerby.kerberos.kerb.server.preauth.AbstractPreauthPlugin
org.apache.kerby.kerberos.kerb.server.preauth.pkinit.PkinitPreauth
- All Implemented Interfaces:
org.apache.kerby.kerberos.kerb.preauth.PreauthPluginMeta,KdcPreauth
-
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionorg.apache.kerby.kerberos.kerb.preauth.PluginRequestContextinitRequestContext(KdcRequest kdcRequest) Initializing request contextvoidinitWith(KdcContext kdcContext) Initializing plugin context for each realmbooleanverify(KdcRequest kdcRequest, org.apache.kerby.kerberos.kerb.preauth.PluginRequestContext requestContext, org.apache.kerby.kerberos.kerb.type.pa.PaDataEntry paData) Optional: verify preauthentication data sent by the client, setting the TKT_FLG_PRE_AUTH or TKT_FLG_HW_AUTH flag in the enc_tkt_reply's "flags" field as appropriate.Methods inherited from class org.apache.kerby.kerberos.kerb.server.preauth.AbstractPreauthPlugin
destroy, getFlags, getName, getPaTypes, getVersion, provideEdata, providePaData
-
Constructor Details
-
PkinitPreauth
public PkinitPreauth()
-
-
Method Details
-
initWith
Description copied from interface:KdcPreauthInitializing plugin context for each realm- Specified by:
initWithin interfaceKdcPreauth- Overrides:
initWithin classAbstractPreauthPlugin- Parameters:
kdcContext- kdc context
-
initRequestContext
public org.apache.kerby.kerberos.kerb.preauth.PluginRequestContext initRequestContext(KdcRequest kdcRequest) Description copied from interface:KdcPreauthInitializing request context- Specified by:
initRequestContextin interfaceKdcPreauth- Overrides:
initRequestContextin classAbstractPreauthPlugin- Parameters:
kdcRequest- kdc context- Returns:
- request context
-
verify
public boolean verify(KdcRequest kdcRequest, org.apache.kerby.kerberos.kerb.preauth.PluginRequestContext requestContext, org.apache.kerby.kerberos.kerb.type.pa.PaDataEntry paData) throws org.apache.kerby.kerberos.kerb.KrbException Description copied from interface:KdcPreauthOptional: verify preauthentication data sent by the client, setting the TKT_FLG_PRE_AUTH or TKT_FLG_HW_AUTH flag in the enc_tkt_reply's "flags" field as appropriate.- Specified by:
verifyin interfaceKdcPreauth- Overrides:
verifyin classAbstractPreauthPlugin- Parameters:
kdcRequest- kdc requestrequestContext- request contextpaData- preauthentication data- Returns:
- true if verify success
- Throws:
org.apache.kerby.kerberos.kerb.KrbException- e
-