public class SamlProtocol extends Object implements LoginProtocol
| Modifier and Type | Class and Description |
|---|---|
static class |
SamlProtocol.ProtocolMapperProcessor<T> |
LoginProtocol.Error| Constructor and Description |
|---|
SamlProtocol() |
protected static final org.jboss.logging.Logger logger
public static final String ATTRIBUTE_TRUE_VALUE
public static final String ATTRIBUTE_FALSE_VALUE
public static final String SAML_SIGNING_CERTIFICATE_ATTRIBUTE
public static final String SAML_ENCRYPTION_CERTIFICATE_ATTRIBUTE
public static final String SAML_CLIENT_SIGNATURE_ATTRIBUTE
public static final String SAML_ASSERTION_CONSUMER_URL_POST_ATTRIBUTE
public static final String SAML_ASSERTION_CONSUMER_URL_REDIRECT_ATTRIBUTE
public static final String SAML_SINGLE_LOGOUT_SERVICE_URL_POST_ATTRIBUTE
public static final String SAML_SINGLE_LOGOUT_SERVICE_URL_REDIRECT_ATTRIBUTE
public static final String SAML_FORCE_NAME_ID_FORMAT_ATTRIBUTE
public static final String SAML_NAME_ID_FORMAT_ATTRIBUTE
public static final String SAML_CANONICALIZATION_METHOD_ATTRIBUTE
public static final String LOGIN_PROTOCOL
public static final String SAML_BINDING
public static final String SAML_IDP_INITIATED_LOGIN
public static final String SAML_POST_BINDING
public static final String SAML_REDIRECT_BINDING
public static final String SAML_SERVER_SIGNATURE
public static final String SAML_ASSERTION_SIGNATURE
public static final String SAML_AUTHNSTATEMENT
public static final String SAML_SIGNATURE_ALGORITHM
public static final String SAML_ENCRYPT
public static final String SAML_FORCE_POST_BINDING
public static final String SAML_REQUEST_ID
public static final String SAML_LOGOUT_BINDING
public static final String SAML_LOGOUT_REQUEST_ID
public static final String SAML_LOGOUT_RELAY_STATE
public static final String SAML_LOGOUT_CANONICALIZATION
public static final String SAML_LOGOUT_BINDING_URI
public static final String SAML_LOGOUT_SIGNATURE_ALGORITHM
public static final String SAML_NAME_ID
public static final String SAML_NAME_ID_FORMAT
public static final String SAML_DEFAULT_NAMEID_FORMAT
public static final String SAML_PERSISTENT_NAME_ID_FOR
public static final String SAML_IDP_INITIATED_SSO_RELAY_STATE
public static final String SAML_IDP_INITIATED_SSO_URL_NAME
protected KeycloakSession session
protected RealmModel realm
protected javax.ws.rs.core.UriInfo uriInfo
protected javax.ws.rs.core.HttpHeaders headers
protected EventBuilder event
public SamlProtocol setSession(KeycloakSession session)
setSession in interface LoginProtocolpublic SamlProtocol setRealm(RealmModel realm)
setRealm in interface LoginProtocolpublic SamlProtocol setUriInfo(javax.ws.rs.core.UriInfo uriInfo)
setUriInfo in interface LoginProtocolpublic SamlProtocol setHttpHeaders(javax.ws.rs.core.HttpHeaders headers)
setHttpHeaders in interface LoginProtocolpublic SamlProtocol setEventBuilder(EventBuilder event)
setEventBuilder in interface LoginProtocolpublic javax.ws.rs.core.Response sendError(ClientSessionModel clientSession, LoginProtocol.Error error)
sendError in interface LoginProtocolprotected String getResponseIssuer(RealmModel realm)
protected boolean isPostBinding(ClientSessionModel clientSession)
public static boolean isLogoutPostBindingForInitiator(UserSessionModel session)
protected boolean isLogoutPostBindingForClient(ClientSessionModel clientSession)
public static boolean forcePostBinding(ClientModel client)
protected String getNameIdFormat(ClientSessionModel clientSession)
public static boolean forceNameIdFormat(ClientModel client)
protected String getNameId(String nameIdFormat, ClientSessionModel clientSession, UserSessionModel userSession)
public javax.ws.rs.core.Response authenticated(UserSessionModel userSession, ClientSessionCode accessCode)
authenticated in interface LoginProtocolpublic static boolean requiresRealmSignature(ClientModel client)
public static boolean requiresAssertionSignature(ClientModel client)
public static boolean includeAuthnStatement(ClientModel client)
public static SignatureAlgorithm getSignatureAlgorithm(ClientModel client)
public void transformAttributeStatement(List<SamlProtocol.ProtocolMapperProcessor<SAMLAttributeStatementMapper>> attributeStatementMappers, ResponseType response, KeycloakSession session, UserSessionModel userSession, ClientSessionModel clientSession)
public ResponseType transformLoginResponse(List<SamlProtocol.ProtocolMapperProcessor<SAMLLoginResponseMapper>> mappers, ResponseType response, KeycloakSession session, UserSessionModel userSession, ClientSessionModel clientSession)
public void populateRoles(SamlProtocol.ProtocolMapperProcessor<SAMLRoleListMapper> roleListMapper, ResponseType response, KeycloakSession session, UserSessionModel userSession, ClientSessionModel clientSession)
public static String getLogoutServiceUrl(javax.ws.rs.core.UriInfo uriInfo, ClientModel client, String bindingType)
public javax.ws.rs.core.Response frontchannelLogout(UserSessionModel userSession, ClientSessionModel clientSession)
frontchannelLogout in interface LoginProtocolpublic javax.ws.rs.core.Response finishLogout(UserSessionModel userSession)
finishLogout in interface LoginProtocolpublic void backchannelLogout(UserSessionModel userSession, ClientSessionModel clientSession)
backchannelLogout in interface LoginProtocolprotected SAML2LogoutRequestBuilder createLogoutRequest(String logoutUrl, ClientSessionModel clientSession, ClientModel client)
Copyright © 2015 JBoss by Red Hat. All rights reserved.