blob: 8d5158e08691da203b8bf879ee2a221beeb48b98 [file] [log] [blame]
Junxiao Shid7631272016-08-17 04:16:31 +00001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -04002/*
Alexander Afanasyeva1583702020-06-03 13:55:45 -04003 * Copyright (c) 2014-2020, Regents of the University of California,
Junxiao Shid7631272016-08-17 04:16:31 +00004 * Arizona Board of Regents,
5 * Colorado State University,
6 * University Pierre & Marie Curie, Sorbonne University,
7 * Washington University in St. Louis,
8 * Beijing Institute of Technology,
9 * The University of Memphis.
10 *
11 * This file is part of NFD (Named Data Networking Forwarding Daemon).
12 * See AUTHORS.md for complete list of NFD authors and contributors.
13 *
14 * NFD is free software: you can redistribute it and/or modify it under the terms
15 * of the GNU General Public License as published by the Free Software Foundation,
16 * either version 3 of the License, or (at your option) any later version.
17 *
18 * NFD is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY;
19 * without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR
20 * PURPOSE. See the GNU General Public License for more details.
21 *
22 * You should have received a copy of the GNU General Public License along with
23 * NFD, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
24 */
25
26#ifndef NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
27#define NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
28
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040029#include "common/config-file.hpp"
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040030
Junxiao Shid7631272016-08-17 04:16:31 +000031#include <ndn-cxx/mgmt/dispatcher.hpp>
Alexander Afanasyeva1583702020-06-03 13:55:45 -040032#include <ndn-cxx/security/validator.hpp>
Junxiao Shid7631272016-08-17 04:16:31 +000033
34namespace nfd {
35
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040036/** \brief Provides ControlCommand authorization according to NFD configuration file.
Junxiao Shid7631272016-08-17 04:16:31 +000037 */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040038class CommandAuthenticator : public std::enable_shared_from_this<CommandAuthenticator>, noncopyable
Junxiao Shid7631272016-08-17 04:16:31 +000039{
40public:
41 static shared_ptr<CommandAuthenticator>
42 create();
43
44 void
45 setConfigFile(ConfigFile& configFile);
46
47 /** \return an Authorization function for module/verb command
48 * \param module management module name
49 * \param verb command verb; currently it's ignored
50 * \note This must be called before parsing configuration file
51 */
52 ndn::mgmt::Authorization
53 makeAuthorization(const std::string& module, const std::string& verb);
54
55private:
56 CommandAuthenticator();
57
58 /** \brief process "authorizations" section
59 * \throw ConfigFile::Error on parse error
60 */
61 void
62 processConfig(const ConfigSection& section, bool isDryRun, const std::string& filename);
63
Junxiao Shid7631272016-08-17 04:16:31 +000064private:
Junxiao Shidbb6b3e2017-07-03 12:42:07 +000065 /// module => validator
Alexander Afanasyeva1583702020-06-03 13:55:45 -040066 std::unordered_map<std::string, shared_ptr<ndn::security::Validator>> m_validators;
Junxiao Shid7631272016-08-17 04:16:31 +000067};
68
69} // namespace nfd
70
71#endif // NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP