001/*
002 * (C) Copyright 2014 Nuxeo SA (http://nuxeo.com/) and contributors.
003 *
004 * All rights reserved. This program and the accompanying materials
005 * are made available under the terms of the GNU Lesser General Public License
006 * (LGPL) version 2.1 which accompanies this distribution, and is available at
007 * http://www.gnu.org/licenses/lgpl-2.1.html
008 *
009 * This library is distributed in the hope that it will be useful,
010 * but WITHOUT ANY WARRANTY; without even the implied warranty of
011 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
012 * Lesser General Public License for more details.
013 *
014 * Contributors:
015 *     Nelson Silva <nelson.silva@inevo.pt>
016 */
017package org.nuxeo.ecm.platform.auth.saml.user;
018
019import java.security.Principal;
020import java.util.Map;
021
022import org.apache.commons.logging.Log;
023import org.apache.commons.logging.LogFactory;
024import org.nuxeo.ecm.core.api.DocumentModel;
025import org.nuxeo.ecm.core.api.NuxeoException;
026import org.nuxeo.ecm.platform.auth.saml.SAMLCredential;
027import org.nuxeo.ecm.platform.usermanager.UserManager;
028import org.nuxeo.runtime.api.Framework;
029
030public abstract class AbstractUserResolver implements UserResolver {
031
032    private static final Log log = LogFactory.getLog(AbstractUserResolver.class);
033
034
035    public abstract String findNuxeoUser(SAMLCredential userInfo);
036
037    public abstract String getLoginName(SAMLCredential userInfo);
038
039    public DocumentModel createNuxeoUser(String nuxeoLogin) {
040        DocumentModel userDoc;
041
042        try {
043            UserManager userManager = Framework.getService(UserManager.class);
044
045            userDoc = userManager.getBareUserModel();
046            userDoc.setPropertyValue(userManager.getUserIdField(), nuxeoLogin);
047
048            userManager.createUser(userDoc);
049
050        } catch (NuxeoException e) {
051            log.error("Error while creating user " + nuxeoLogin + "in UserManager", e);
052            return null;
053        }
054
055        return userDoc;
056    }
057
058    public abstract DocumentModel updateUserInfo(DocumentModel user, SAMLCredential userInfo);
059
060    @Override
061    public String findOrCreateNuxeoUser(SAMLCredential userInfo) {
062
063        String login = getLoginName(userInfo);
064        if (login!=null) {
065            UserManager userManager = Framework.getService(UserManager.class);
066            Principal principal = userManager.getPrincipal(login);
067            if (principal!=null) {
068                return login;
069            }
070        }
071        String user = findNuxeoUser(userInfo);
072        if (user == null) {
073            DocumentModel userDoc = createNuxeoUser(login);
074            updateUserInfo(userDoc, userInfo);
075        }
076        return user;
077    }
078
079    @Override
080    public void init(Map<String, String> parameters) {
081        //NOP
082    }
083
084}