|
|||||||||
| PREV CLASS NEXT CLASS | FRAMES NO FRAMES | ||||||||
| SUMMARY: NESTED | FIELD | CONSTR | METHOD | DETAIL: FIELD | CONSTR | METHOD | ||||||||
public interface PublicKeyStore
This interface allows you to define a custom public key store for the publickey authentication mechanism. The actual key verification is performed by the mechanism itself and your only requirement is to return a value which indicates whether the key has been authorized by the user for public key access.
| Method Summary | |
|---|---|
void |
add(SessionChannel session,
String algorithm,
String comment,
byte[] encodedKey)
Store the supplied key in the key store if possible. |
Iterator |
getKeys(SessionChannel session)
Get an iterator of all stored public keys. |
boolean |
isAuthorizedKey(com.maverick.ssh.components.SshPublicKey key,
Connection con,
AuthenticationProvider authenticationProvider)
Check the supplied public key against the users authorized keys. |
void |
remove(SessionChannel session,
String algorithm,
byte[] encodedKey)
Remove the supplied key from the key store if possible. |
| Method Detail |
|---|
boolean isAuthorizedKey(com.maverick.ssh.components.SshPublicKey key,
Connection con,
AuthenticationProvider authenticationProvider)
Check the supplied public key against the users authorized keys. The
actual verification of the key is performed by the server, you only need
to return a value to indicate whether the key is authorized or not. You
can obtain the username, home directory, group or remote socket address
from the
com.maverick.sshd.platform.AuthenticationProviderTOBEREMOVED
instance.
If your authorized key database is kept on the native file system you can
obtain and initialize an instance as follows:
Don't forget to close any file handles and the file system once you've done accessing files.NativeFileSystemProvider nfs = (NativeFileSystemProvider) authenticationProvider.getContext().getFileSystemProvider().newInstance(); nfs.init(sessionid, null, authenticationProvider.getContext());
key - SshPublicKeysessionid - byte[]authenticationProvider - AuthenticationProvider
void add(SessionChannel session,
String algorithm,
String comment,
byte[] encodedKey)
throws IOException
session - sessionalgorithm - algorithmcomment - commentencodedKey - encoded key
IOException
UnsupportedOperationException - if this key store is readonly
void remove(SessionChannel session,
String algorithm,
byte[] encodedKey)
throws IOException
session - sessionalgorithm - algorithmcomment - commentencodedKey - encoded key
IOException
UnsupportedOperationException - if this key store is readonlyIterator getKeys(SessionChannel session)
session - session
UnsupportedOperationException - if this key store cannot list keys
|
|||||||||
| PREV CLASS NEXT CLASS | FRAMES NO FRAMES | ||||||||
| SUMMARY: NESTED | FIELD | CONSTR | METHOD | DETAIL: FIELD | CONSTR | METHOD | ||||||||