blob: 12c6c70d93710db2e58e26aa87dd953cf09a3e24 [file] [log] [blame]
Junxiao Shid7631272016-08-17 04:16:31 +00001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -04002/*
Davide Pesaventob7bfcb92022-05-22 23:55:23 -04003 * Copyright (c) 2014-2022, Regents of the University of California,
Junxiao Shid7631272016-08-17 04:16:31 +00004 * Arizona Board of Regents,
5 * Colorado State University,
6 * University Pierre & Marie Curie, Sorbonne University,
7 * Washington University in St. Louis,
8 * Beijing Institute of Technology,
9 * The University of Memphis.
10 *
11 * This file is part of NFD (Named Data Networking Forwarding Daemon).
12 * See AUTHORS.md for complete list of NFD authors and contributors.
13 *
14 * NFD is free software: you can redistribute it and/or modify it under the terms
15 * of the GNU General Public License as published by the Free Software Foundation,
16 * either version 3 of the License, or (at your option) any later version.
17 *
18 * NFD is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY;
19 * without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR
20 * PURPOSE. See the GNU General Public License for more details.
21 *
22 * You should have received a copy of the GNU General Public License along with
23 * NFD, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
24 */
25
26#ifndef NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
27#define NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
28
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040029#include "common/config-file.hpp"
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040030
Junxiao Shid7631272016-08-17 04:16:31 +000031#include <ndn-cxx/mgmt/dispatcher.hpp>
Alexander Afanasyeva1583702020-06-03 13:55:45 -040032#include <ndn-cxx/security/validator.hpp>
Junxiao Shid7631272016-08-17 04:16:31 +000033
Davide Pesaventob7bfcb92022-05-22 23:55:23 -040034#include <unordered_map>
35
Junxiao Shid7631272016-08-17 04:16:31 +000036namespace nfd {
37
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040038/** \brief Provides ControlCommand authorization according to NFD configuration file.
Junxiao Shid7631272016-08-17 04:16:31 +000039 */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040040class CommandAuthenticator : public std::enable_shared_from_this<CommandAuthenticator>, noncopyable
Junxiao Shid7631272016-08-17 04:16:31 +000041{
42public:
43 static shared_ptr<CommandAuthenticator>
44 create();
45
46 void
47 setConfigFile(ConfigFile& configFile);
48
49 /** \return an Authorization function for module/verb command
50 * \param module management module name
51 * \param verb command verb; currently it's ignored
52 * \note This must be called before parsing configuration file
53 */
54 ndn::mgmt::Authorization
55 makeAuthorization(const std::string& module, const std::string& verb);
56
57private:
58 CommandAuthenticator();
59
60 /** \brief process "authorizations" section
61 * \throw ConfigFile::Error on parse error
62 */
63 void
64 processConfig(const ConfigSection& section, bool isDryRun, const std::string& filename);
65
Junxiao Shid7631272016-08-17 04:16:31 +000066private:
Junxiao Shidbb6b3e2017-07-03 12:42:07 +000067 /// module => validator
Alexander Afanasyeva1583702020-06-03 13:55:45 -040068 std::unordered_map<std::string, shared_ptr<ndn::security::Validator>> m_validators;
Junxiao Shid7631272016-08-17 04:16:31 +000069};
70
71} // namespace nfd
72
73#endif // NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP