blob: 9f136a8466050ff6ccfe8322c44f409efdee0df7 [file] [log] [blame]
Junxiao Shid7631272016-08-17 04:16:31 +00001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -04002/*
Davide Pesavento2cae8ca2019-04-18 20:48:05 -04003 * Copyright (c) 2014-2019, Regents of the University of California,
Junxiao Shid7631272016-08-17 04:16:31 +00004 * Arizona Board of Regents,
5 * Colorado State University,
6 * University Pierre & Marie Curie, Sorbonne University,
7 * Washington University in St. Louis,
8 * Beijing Institute of Technology,
9 * The University of Memphis.
10 *
11 * This file is part of NFD (Named Data Networking Forwarding Daemon).
12 * See AUTHORS.md for complete list of NFD authors and contributors.
13 *
14 * NFD is free software: you can redistribute it and/or modify it under the terms
15 * of the GNU General Public License as published by the Free Software Foundation,
16 * either version 3 of the License, or (at your option) any later version.
17 *
18 * NFD is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY;
19 * without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR
20 * PURPOSE. See the GNU General Public License for more details.
21 *
22 * You should have received a copy of the GNU General Public License along with
23 * NFD, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
24 */
25
26#ifndef NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
27#define NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
28
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040029#include "common/config-file.hpp"
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040030
Junxiao Shid7631272016-08-17 04:16:31 +000031#include <ndn-cxx/mgmt/dispatcher.hpp>
Junxiao Shidbb6b3e2017-07-03 12:42:07 +000032
33namespace ndn {
34namespace security {
35namespace v2 {
36class Validator;
37} // namespace v2
38} // namespace security
39} // namespace ndn
Junxiao Shid7631272016-08-17 04:16:31 +000040
41namespace nfd {
42
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040043/** \brief Provides ControlCommand authorization according to NFD configuration file.
Junxiao Shid7631272016-08-17 04:16:31 +000044 */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040045class CommandAuthenticator : public std::enable_shared_from_this<CommandAuthenticator>, noncopyable
Junxiao Shid7631272016-08-17 04:16:31 +000046{
47public:
48 static shared_ptr<CommandAuthenticator>
49 create();
50
51 void
52 setConfigFile(ConfigFile& configFile);
53
54 /** \return an Authorization function for module/verb command
55 * \param module management module name
56 * \param verb command verb; currently it's ignored
57 * \note This must be called before parsing configuration file
58 */
59 ndn::mgmt::Authorization
60 makeAuthorization(const std::string& module, const std::string& verb);
61
62private:
63 CommandAuthenticator();
64
65 /** \brief process "authorizations" section
66 * \throw ConfigFile::Error on parse error
67 */
68 void
69 processConfig(const ConfigSection& section, bool isDryRun, const std::string& filename);
70
Junxiao Shid7631272016-08-17 04:16:31 +000071private:
Junxiao Shidbb6b3e2017-07-03 12:42:07 +000072 /// module => validator
73 std::unordered_map<std::string, shared_ptr<ndn::security::v2::Validator>> m_validators;
Junxiao Shid7631272016-08-17 04:16:31 +000074};
75
76} // namespace nfd
77
78#endif // NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP