| OLD | NEW |
| 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. | 1 // Copyright (c) 2012 The Chromium Authors. All rights reserved. |
| 2 // Use of this source code is governed by a BSD-style license that can be | 2 // Use of this source code is governed by a BSD-style license that can be |
| 3 // found in the LICENSE file. | 3 // found in the LICENSE file. |
| 4 | 4 |
| 5 #include "remoting/protocol/it2me_host_authenticator_factory.h" | 5 #include "remoting/protocol/it2me_host_authenticator_factory.h" |
| 6 | 6 |
| 7 #include "base/logging.h" | 7 #include "base/logging.h" |
| 8 #include "base/strings/string_util.h" | 8 #include "base/strings/string_util.h" |
| 9 #include "remoting/base/rsa_key_pair.h" | 9 #include "remoting/base/rsa_key_pair.h" |
| 10 #include "remoting/protocol/negotiating_host_authenticator.h" | 10 #include "remoting/protocol/negotiating_host_authenticator.h" |
| 11 #include "remoting/protocol/rejecting_authenticator.h" | 11 #include "remoting/protocol/rejecting_authenticator.h" |
| 12 | 12 |
| 13 namespace remoting { | 13 namespace remoting { |
| 14 namespace protocol { | 14 namespace protocol { |
| 15 | 15 |
| 16 It2MeHostAuthenticatorFactory::It2MeHostAuthenticatorFactory( | 16 It2MeHostAuthenticatorFactory::It2MeHostAuthenticatorFactory( |
| 17 const std::string& local_cert, | 17 const std::string& local_cert, |
| 18 scoped_refptr<RsaKeyPair> key_pair, | 18 scoped_refptr<RsaKeyPair> key_pair, |
| 19 const std::string& access_code, | 19 const std::string& access_code_hash, |
| 20 const std::string& required_client_domain) | 20 const std::string& required_client_domain) |
| 21 : local_cert_(local_cert), | 21 : local_cert_(local_cert), |
| 22 key_pair_(key_pair), | 22 key_pair_(key_pair), |
| 23 access_code_(access_code), | 23 access_code_hash_(access_code_hash), |
| 24 required_client_domain_(required_client_domain) {} | 24 required_client_domain_(required_client_domain) {} |
| 25 | 25 |
| 26 It2MeHostAuthenticatorFactory::~It2MeHostAuthenticatorFactory() {} | 26 It2MeHostAuthenticatorFactory::~It2MeHostAuthenticatorFactory() {} |
| 27 | 27 |
| 28 scoped_ptr<Authenticator> It2MeHostAuthenticatorFactory::CreateAuthenticator( | 28 scoped_ptr<Authenticator> It2MeHostAuthenticatorFactory::CreateAuthenticator( |
| 29 const std::string& local_jid, | 29 const std::string& local_jid, |
| 30 const std::string& remote_jid) { | 30 const std::string& remote_jid) { |
| 31 // Check the client domain policy. | 31 // Check the client domain policy. |
| 32 if (!required_client_domain_.empty()) { | 32 if (!required_client_domain_.empty()) { |
| 33 std::string client_username = remote_jid; | 33 std::string client_username = remote_jid; |
| 34 size_t pos = client_username.find('/'); | 34 size_t pos = client_username.find('/'); |
| 35 if (pos != std::string::npos) { | 35 if (pos != std::string::npos) { |
| 36 client_username.replace(pos, std::string::npos, ""); | 36 client_username.replace(pos, std::string::npos, ""); |
| 37 } | 37 } |
| 38 if (!base::EndsWith(client_username, | 38 if (!base::EndsWith(client_username, |
| 39 std::string("@") + required_client_domain_, | 39 std::string("@") + required_client_domain_, |
| 40 base::CompareCase::INSENSITIVE_ASCII)) { | 40 base::CompareCase::INSENSITIVE_ASCII)) { |
| 41 LOG(ERROR) << "Rejecting incoming connection from " << remote_jid | 41 LOG(ERROR) << "Rejecting incoming connection from " << remote_jid |
| 42 << ": Domain mismatch."; | 42 << ": Domain mismatch."; |
| 43 return make_scoped_ptr( | 43 return make_scoped_ptr( |
| 44 new RejectingAuthenticator(Authenticator::INVALID_CREDENTIALS)); | 44 new RejectingAuthenticator(Authenticator::INVALID_CREDENTIALS)); |
| 45 } | 45 } |
| 46 } | 46 } |
| 47 | 47 |
| 48 return NegotiatingHostAuthenticator::CreateForIt2Me( | 48 return NegotiatingHostAuthenticator::CreateWithSharedSecret( |
| 49 local_jid, remote_jid, local_cert_, key_pair_, access_code_); | 49 local_jid, remote_jid, local_cert_, key_pair_, access_code_hash_, |
| 50 nullptr); |
| 50 } | 51 } |
| 51 | 52 |
| 52 } // namespace protocol | 53 } // namespace protocol |
| 53 } // namespace remoting | 54 } // namespace remoting |
| OLD | NEW |