blob: 0a3d4e5bc3053f4f8c59ebbbbf2bca0c38c201bf [file] [log] [blame]
Junxiao Shid7631272016-08-17 04:16:31 +00001/* -*- Mode:C++; c-file-style:"gnu"; indent-tabs-mode:nil; -*- */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -04002/*
Davide Pesaventob7bfcb92022-05-22 23:55:23 -04003 * Copyright (c) 2014-2022, Regents of the University of California,
Junxiao Shid7631272016-08-17 04:16:31 +00004 * Arizona Board of Regents,
5 * Colorado State University,
6 * University Pierre & Marie Curie, Sorbonne University,
7 * Washington University in St. Louis,
8 * Beijing Institute of Technology,
9 * The University of Memphis.
10 *
11 * This file is part of NFD (Named Data Networking Forwarding Daemon).
12 * See AUTHORS.md for complete list of NFD authors and contributors.
13 *
14 * NFD is free software: you can redistribute it and/or modify it under the terms
15 * of the GNU General Public License as published by the Free Software Foundation,
16 * either version 3 of the License, or (at your option) any later version.
17 *
18 * NFD is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY;
19 * without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR
20 * PURPOSE. See the GNU General Public License for more details.
21 *
22 * You should have received a copy of the GNU General Public License along with
23 * NFD, e.g., in COPYING.md file. If not, see <http://www.gnu.org/licenses/>.
24 */
25
26#ifndef NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
27#define NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP
28
Davide Pesavento2cae8ca2019-04-18 20:48:05 -040029#include "common/config-file.hpp"
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040030
Junxiao Shid7631272016-08-17 04:16:31 +000031#include <ndn-cxx/mgmt/dispatcher.hpp>
Alexander Afanasyeva1583702020-06-03 13:55:45 -040032#include <ndn-cxx/security/validator.hpp>
Junxiao Shid7631272016-08-17 04:16:31 +000033
Davide Pesaventob7bfcb92022-05-22 23:55:23 -040034#include <unordered_map>
35
Junxiao Shid7631272016-08-17 04:16:31 +000036namespace nfd {
37
Davide Pesaventoaa9e3b22022-10-21 17:00:07 -040038/**
39 * \brief Provides ControlCommand authorization according to NFD's configuration file.
Junxiao Shid7631272016-08-17 04:16:31 +000040 */
Davide Pesaventoc0822fa2018-05-10 21:54:10 -040041class CommandAuthenticator : public std::enable_shared_from_this<CommandAuthenticator>, noncopyable
Junxiao Shid7631272016-08-17 04:16:31 +000042{
43public:
44 static shared_ptr<CommandAuthenticator>
45 create();
46
47 void
48 setConfigFile(ConfigFile& configFile);
49
Davide Pesaventoaa9e3b22022-10-21 17:00:07 -040050 /** \brief Returns an Authorization function for `module/verb` command.
Junxiao Shid7631272016-08-17 04:16:31 +000051 * \param module management module name
Davide Pesaventoaa9e3b22022-10-21 17:00:07 -040052 * \param verb command verb; currently ignored
53 * \note This must be called before parsing the configuration file.
Junxiao Shid7631272016-08-17 04:16:31 +000054 */
55 ndn::mgmt::Authorization
56 makeAuthorization(const std::string& module, const std::string& verb);
57
58private:
59 CommandAuthenticator();
60
Davide Pesaventoaa9e3b22022-10-21 17:00:07 -040061 /** \brief Process `authorizations` section.
Junxiao Shid7631272016-08-17 04:16:31 +000062 * \throw ConfigFile::Error on parse error
63 */
64 void
65 processConfig(const ConfigSection& section, bool isDryRun, const std::string& filename);
66
Junxiao Shid7631272016-08-17 04:16:31 +000067private:
Davide Pesaventoaa9e3b22022-10-21 17:00:07 -040068 // module => validator
Alexander Afanasyeva1583702020-06-03 13:55:45 -040069 std::unordered_map<std::string, shared_ptr<ndn::security::Validator>> m_validators;
Junxiao Shid7631272016-08-17 04:16:31 +000070};
71
72} // namespace nfd
73
74#endif // NFD_DAEMON_MGMT_COMMAND_AUTHENTICATOR_HPP