Class MtlsAuthenticationMechanism
java.lang.Object
io.quarkus.vertx.http.runtime.security.MtlsAuthenticationMechanism
- All Implemented Interfaces:
HttpAuthenticationMechanism
The authentication handler responsible for mTLS client authentication
-
Nested Class Summary
Nested classes/interfaces inherited from interface io.quarkus.vertx.http.runtime.security.HttpAuthenticationMechanism
HttpAuthenticationMechanism.ChallengeSender -
Field Summary
FieldsFields inherited from interface io.quarkus.vertx.http.runtime.security.HttpAuthenticationMechanism
DEFAULT_PRIORITY -
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionio.smallrye.mutiny.Uni<io.quarkus.security.identity.SecurityIdentity>authenticate(io.vertx.ext.web.RoutingContext context, io.quarkus.security.identity.IdentityProviderManager identityProviderManager) io.smallrye.mutiny.Uni<ChallengeData>getChallenge(io.vertx.ext.web.RoutingContext context) io.smallrye.mutiny.Uni<HttpCredentialTransport>getCredentialTransport(io.vertx.ext.web.RoutingContext context) The credential transport, used for finding the best candidate for authenticating and challenging when more than one mechanism is installed.If this mechanism delegates authentication to theIdentityProviderManagerusing theIdentityProviderManager.authenticate(AuthenticationRequest)call, then the mechanism must provide supportedAuthenticationRequestrequest types.(package private) voidsetRoleMappings(Map<String, Set<String>> roles) Methods inherited from class java.lang.Object
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, waitMethods inherited from interface io.quarkus.vertx.http.runtime.security.HttpAuthenticationMechanism
getCredentialTransport, getPriority, sendChallenge
-
Field Details
-
roles
-
-
Constructor Details
-
MtlsAuthenticationMechanism
public MtlsAuthenticationMechanism()
-
-
Method Details
-
authenticate
public io.smallrye.mutiny.Uni<io.quarkus.security.identity.SecurityIdentity> authenticate(io.vertx.ext.web.RoutingContext context, io.quarkus.security.identity.IdentityProviderManager identityProviderManager) - Specified by:
authenticatein interfaceHttpAuthenticationMechanism
-
getChallenge
- Specified by:
getChallengein interfaceHttpAuthenticationMechanism
-
getCredentialTypes
public Set<Class<? extends io.quarkus.security.identity.request.AuthenticationRequest>> getCredentialTypes()Description copied from interface:HttpAuthenticationMechanismIf this mechanism delegates authentication to theIdentityProviderManagerusing theIdentityProviderManager.authenticate(AuthenticationRequest)call, then the mechanism must provide supportedAuthenticationRequestrequest types. It allows Quarkus to validate that one or moreIdentityProviderproviders with matching supportedIdentityProvider.getRequestType()request types exist and fail otherwise.- Specified by:
getCredentialTypesin interfaceHttpAuthenticationMechanism- Returns:
- required credential types
-
getCredentialTransport
public io.smallrye.mutiny.Uni<HttpCredentialTransport> getCredentialTransport(io.vertx.ext.web.RoutingContext context) Description copied from interface:HttpAuthenticationMechanismThe credential transport, used for finding the best candidate for authenticating and challenging when more than one mechanism is installed. May be null if this mechanism cannot interfere with other mechanisms- Specified by:
getCredentialTransportin interfaceHttpAuthenticationMechanism
-
setRoleMappings
-