2 * Copyright 2001-2007 Internet2
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
8 * http://www.apache.org/licenses/LICENSE-2.0
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
18 * @file saml/saml2/metadata/AbstractMetadataProvider.h
20 * Base class for caching metadata providers.
23 #ifndef __saml2_absmetadataprov_h__
24 #define __saml2_absmetadataprov_h__
26 #include <saml/saml2/metadata/ObservableMetadataProvider.h>
28 #include <xmltooling/security/Credential.h>
29 #include <xmltooling/security/CredentialCriteria.h>
30 #include <xmltooling/util/Threads.h>
35 class SAML_API MetadataFilter;
38 * Base class for caching metadata providers.
40 class SAML_API AbstractMetadataProvider : public ObservableMetadataProvider
46 * If a DOM is supplied, a set of default logic will be used to identify
47 * and build a KeyInfoResolver plugin and install it into the provider.
49 * The following XML content is supported:
52 * <li><KeyInfoResolver> elements with a type attribute
55 * XML namespaces are ignored in the processing of these elements.
57 * @param e DOM to supply configuration for provider
59 AbstractMetadataProvider(const xercesc::DOMElement* e=NULL);
62 virtual ~AbstractMetadataProvider();
64 void emitChangeEvent() const;
65 const EntityDescriptor* getEntityDescriptor(const char* id, bool requireValidMetadata=true) const;
66 const EntityDescriptor* getEntityDescriptor(const SAMLArtifact* artifact) const;
67 const EntitiesDescriptor* getEntitiesDescriptor(const char* name, bool requireValidMetadata=true) const;
68 const xmltooling::Credential* resolve(const xmltooling::CredentialCriteria* criteria=NULL) const;
69 std::vector<const xmltooling::Credential*>::size_type resolve(
70 std::vector<const xmltooling::Credential*>& results, const xmltooling::CredentialCriteria* criteria=NULL
74 /** Embedded KeyInfoResolver instance. */
75 xmltooling::KeyInfoResolver* m_resolver;
78 * Loads an entity into the cache for faster lookup. This includes
79 * processing known reverse lookup strategies for artifacts.
81 * @param site entity definition
82 * @param validUntil expiration time of the entity definition
84 virtual void index(EntityDescriptor* site, time_t validUntil);
87 * Loads a group of entities into the cache for faster lookup.
89 * @param group group definition
90 * @param validUntil expiration time of the group definition
92 virtual void index(EntitiesDescriptor* group, time_t validUntil);
95 * Clear the cache of known entities and groups.
97 virtual void clearDescriptorIndex();
100 typedef std::multimap<std::string,const EntityDescriptor*> sitemap_t;
101 typedef std::multimap<std::string,const EntitiesDescriptor*> groupmap_t;
106 mutable xmltooling::Mutex* m_credentialLock;
107 typedef std::map< const RoleDescriptor*, std::vector<xmltooling::Credential*> > credmap_t;
108 mutable credmap_t m_credentialMap;
109 const credmap_t::mapped_type& resolveCredentials(const RoleDescriptor& role) const;
115 #endif /* __saml2_absmetadataprov_h__ */