Class AbstractX509Validator
java.lang.Object
net.shibboleth.shared.component.AbstractInitializableComponent
net.shibboleth.shared.component.AbstractIdentifiedInitializableComponent
net.shibboleth.shared.component.AbstractIdentifiableInitializableComponent
net.shibboleth.metadata.validate.BaseValidator
net.shibboleth.metadata.validate.x509.AbstractX509Validator
- All Implemented Interfaces:
Validator<X509Certificate>,net.shibboleth.shared.component.Component,net.shibboleth.shared.component.DestructableComponent,net.shibboleth.shared.component.IdentifiableComponent,net.shibboleth.shared.component.IdentifiedComponent,net.shibboleth.shared.component.InitializableComponent
- Direct Known Subclasses:
X509ROCAValidator,X509RSAExponentValidator,X509RSAKeyLengthValidator,X509RSAOpenSSLKeylistValidator
@ThreadSafe
public abstract class AbstractX509Validator
extends BaseValidator
implements Validator<X509Certificate>
Abstract class implementing validation on
X509Certificate objects.
X.509 certificate issues are almost always independent, so simplify the validator interface
by delegation.- Since:
- 0.9.0
-
Nested Class Summary
Nested classes/interfaces inherited from interface net.shibboleth.metadata.validate.Validator
Validator.Action -
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionprotected abstract voiddoValidate(X509Certificate cert, Item<?> item, String callerId) Apply the validator to the object in the givenItemcontext.validate(X509Certificate cert, Item<?> item, String callerId) Apply the validator to a value in the context of the givenItem.Methods inherited from class net.shibboleth.metadata.validate.BaseValidator
addError, addErrorMessage, addErrorMessage, addErrorMessage, addStatus, addWarning, getMessage, makeComponentId, setMessageMethods inherited from class net.shibboleth.shared.component.AbstractIdentifiableInitializableComponent
setIdMethods inherited from class net.shibboleth.shared.component.AbstractIdentifiedInitializableComponent
doInitialize, ensureId, getId, ifDestroyedThrowDestroyedComponentException, ifInitializedThrowUnmodifiabledComponentException, ifNotInitializedThrowUninitializedComponentExceptionMethods inherited from class net.shibboleth.shared.component.AbstractInitializableComponent
checkComponentActive, checkSetterPreconditions, destroy, doDestroy, initialize, isDestroyed, isInitializedMethods inherited from class java.lang.Object
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, waitMethods inherited from interface net.shibboleth.shared.component.DestructableComponent
destroy, isDestroyedMethods inherited from interface net.shibboleth.shared.component.IdentifiableComponent
setIdMethods inherited from interface net.shibboleth.shared.component.IdentifiedComponent
getIdMethods inherited from interface net.shibboleth.shared.component.InitializableComponent
initialize, isInitialized
-
Constructor Details
-
AbstractX509Validator
public AbstractX509Validator()
-
-
Method Details
-
doValidate
protected abstract void doValidate(@Nonnull X509Certificate cert, @Nonnull Item<?> item, @Nonnull String callerId) throws StageProcessingException Apply the validator to the object in the givenItemcontext. The validator influences future processing by adding item metadata to theItem.- Parameters:
cert- the certificate to be validateditem- theItemcontext for the validationcallerId- aStringidentifying the caller- Throws:
StageProcessingException- if an error occurs during validation
-
validate
@Nonnull public Validator.Action validate(@Nonnull X509Certificate cert, @Nonnull Item<?> item, @Nonnull String callerId) throws StageProcessingException Description copied from interface:ValidatorApply the validator to a value in the context of the givenItem.The validator influences future processing by adding item metadata to the
Item.A common case is that the validator will add a
StatusMetadatato theItem, for example aErrorStatus. In this case, the convention is that thecomponentIdof theErrorStatuswould be created by combining thecallerIdwith a/and the validator's own identifier. For example, a validatorvalcalled by a stagestagewould normally use acomponentIdofstage/val.- Specified by:
validatein interfaceValidator<X509Certificate>- Parameters:
cert- the value to be validateditem- theItemcontext for the validationcallerId- aStringidentifying the caller- Returns:
- an indication of whether to process additional validators
- Throws:
StageProcessingException- if an error occurs during validation
-