/*
- * The Shibboleth License, Version 1.
- * Copyright (c) 2002
- * University Corporation for Advanced Internet Development, Inc.
- * All rights reserved
+ * Copyright 2001-2005 Internet2
+ *
+ * Licensed under the Apache License, Version 2.0 (the "License");
+ * you may not use this file except in compliance with the License.
+ * You may obtain a copy of the License at
*
+ * http://www.apache.org/licenses/LICENSE-2.0
*
- * Redistribution and use in source and binary forms, with or without
- * modification, are permitted provided that the following conditions are met:
- *
- * Redistributions of source code must retain the above copyright notice, this
- * list of conditions and the following disclaimer.
- *
- * Redistributions in binary form must reproduce the above copyright notice,
- * this list of conditions and the following disclaimer in the documentation
- * and/or other materials provided with the distribution, if any, must include
- * the following acknowledgment: "This product includes software developed by
- * the University Corporation for Advanced Internet Development
- * <http://www.ucaid.edu>Internet2 Project. Alternately, this acknowledegement
- * may appear in the software itself, if and wherever such third-party
- * acknowledgments normally appear.
- *
- * Neither the name of Shibboleth nor the names of its contributors, nor
- * Internet2, nor the University Corporation for Advanced Internet Development,
- * Inc., nor UCAID may be used to endorse or promote products derived from this
- * software without specific prior written permission. For written permission,
- * please contact shibboleth@shibboleth.org
- *
- * Products derived from this software may not be called Shibboleth, Internet2,
- * UCAID, or the University Corporation for Advanced Internet Development, nor
- * may Shibboleth appear in their name, without prior written permission of the
- * University Corporation for Advanced Internet Development.
- *
- *
- * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
- * AND WITH ALL FAULTS. ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
- * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A
- * PARTICULAR PURPOSE, AND NON-INFRINGEMENT ARE DISCLAIMED AND THE ENTIRE RISK
- * OF SATISFACTORY QUALITY, PERFORMANCE, ACCURACY, AND EFFORT IS WITH LICENSEE.
- * IN NO EVENT SHALL THE COPYRIGHT OWNER, CONTRIBUTORS OR THE UNIVERSITY
- * CORPORATION FOR ADVANCED INTERNET DEVELOPMENT, INC. BE LIABLE FOR ANY DIRECT,
- * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
- * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
- * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
- * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
- * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
- * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
+ * Unless required by applicable law or agreed to in writing, software
+ * distributed under the License is distributed on an "AS IS" BASIS,
+ * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+ * See the License for the specific language governing permissions and
+ * limitations under the License.
*/
/*
#include <sstream>
#include <ctype.h>
#include <xercesc/util/XercesDefs.hpp>
-#include <log4cpp/Category.hh>
using namespace std;
-using namespace log4cpp;
using namespace saml;
using namespace shibboleth;
using namespace shibtarget;
-class shibtarget::ShibMLPPriv {
-public:
- ShibMLPPriv();
- ~ShibMLPPriv() {}
- log4cpp::Category *log;
-};
-
-ShibMLPPriv::ShibMLPPriv() : log(&(log4cpp::Category::getInstance("shibtarget.ShibMLP"))) {}
+void ShibMLP::html_encode(string& os, const char* start)
+{
+ while (start && *start) {
+ switch (*start) {
+ case '<': os += "<"; break;
+ case '>': os += ">"; break;
+ case '"': os += """; break;
+ case '#': os += "#"; break;
+ case '%': os += "%"; break;
+ case '&': os += "&"; break;
+ case '\'': os += "'"; break;
+ case '(': os += "("; break;
+ case ')': os += ")"; break;
+ case ':': os += ":"; break;
+ case '[': os += "["; break;
+ case '\\': os += "\"; break;
+ case ']': os += "]"; break;
+ case '`': os += "`"; break;
+ case '{': os += "{"; break;
+ case '}': os += "}"; break;
+ default: os += *start;
+ }
+ start++;
+ }
+}
static void trimspace (string& s)
{
s = s.substr(start, end - start + 1);
}
-ShibMLP::ShibMLP()
+const char* ShibMLP::run(const string& is, const IPropertySet* props, std::string* output)
{
- m_priv = new ShibMLPPriv ();
-
// Create a timestamp
time_t now = time(NULL);
+#ifdef HAVE_CTIME_R
+ char timebuf[32];
+ insert("now", ctime_r(&now,timebuf));
+#else
insert("now", ctime(&now));
-}
-
-ShibMLP::~ShibMLP ()
-{
- delete m_priv;
-}
+#endif
-const char* ShibMLP::run(const string& is, const IPropertySet* props, std::string* output)
-{
if (!output)
output=&m_generated;
const char* line = is.c_str();
const char* lastpos = line;
const char* thispos;
- m_priv->log->info("Processing string");
-
//
// Search for SHIBMLP tags. These are of the form:
// <shibmlp key/>
map<string,string>::const_iterator i=m_map.find(key);
if (i != m_map.end()) {
- *output += i->second;
+ html_encode(*output,i->second.c_str());
}
else {
pair<bool,const char*> p=props ? props->getString(key.c_str()) : pair<bool,const char*>(false,NULL);
if (p.first) {
- *output += p.second;
+ html_encode(*output,p.second);
}
else {
static const char* s1 = "<!-- Unknown SHIBMLP key: ";
static string eol = "\r\n";
string str, line;
- m_priv->log->info("processing stream");
-
while (getline(is, line))
str += line + eol;
insert("errorText", "A problem was detected with your identity provider's software configuration.");
else
insert("errorText", e.getMessage() ? e.getMessage() : "No Message");
- insert("originErrorURL", e.getProperty("errorURL") ? e.getProperty("errorURL") : "No Error URL");
- insert("originContactName", e.getProperty("contactName") ? e.getProperty("contactName") : "No Contact Name");
- insert("originContactEmail", e.getProperty("contactEmail") ? e.getProperty("contactEmail") : "No Contact Email");
-}
-
-void ShibMLP::insert (const std::string& key, const std::string& value)
-{
- m_priv->log->debug("inserting %s -> %s", key.c_str(), value.c_str());
- m_map[key] = value;
+ if (e.getProperty("errorURL"))
+ insert("originErrorURL", e.getProperty("errorURL"));
+ if (e.getProperty("contactName"))
+ insert("originContactName", e.getProperty("contactName"));
+ const char* email=e.getProperty("contactEmail");
+ if (email) {
+ if (!strncmp(email,"mailto:",7) && strlen(email)>7)
+ insert("originContactEmail", email+7);
+ else
+ insert("originContactEmail", email);
+ }
}