2 * Copyright 2001-2007 Internet2
\r
4 * Licensed under the Apache License, Version 2.0 (the "License");
\r
5 * you may not use this file except in compliance with the License.
\r
6 * You may obtain a copy of the License at
\r
8 * http://www.apache.org/licenses/LICENSE-2.0
\r
10 * Unless required by applicable law or agreed to in writing, software
\r
11 * distributed under the License is distributed on an "AS IS" BASIS,
\r
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
\r
13 * See the License for the specific language governing permissions and
\r
14 * limitations under the License.
\r
20 * SAML Metadata Query tool layered on SP configuration
\r
23 #if defined (_MSC_VER) || defined(__BORLANDC__)
\r
24 # include "config_win32.h"
\r
26 # include "config.h"
\r
30 # define _CRT_NONSTDC_NO_DEPRECATE 1
\r
31 # define _CRT_SECURE_NO_DEPRECATE 1
\r
34 #include <shibsp/Application.h>
\r
35 #include <shibsp/exceptions.h>
\r
36 #include <shibsp/SPConfig.h>
\r
37 #include <shibsp/ServiceProvider.h>
\r
38 #include <shibsp/metadata/MetadataProviderCriteria.h>
\r
39 #include <shibsp/util/SPConstants.h>
\r
40 #include <saml/saml2/metadata/Metadata.h>
\r
41 #include <xmltooling/logging.h>
\r
43 using namespace shibsp;
\r
44 using namespace opensaml::saml2md;
\r
45 using namespace opensaml;
\r
46 using namespace xmltooling::logging;
\r
47 using namespace xmltooling;
\r
48 using namespace std;
\r
52 cerr << "usage: mdquery -e <entityID> [-a <app id> -nostrict]" << endl;
\r
53 cerr << " mdquery -e <entityID> -r <role> -p <protocol> [-a <app id> -ns <namespace> -nostrict]" << endl;
\r
56 int main(int argc,char* argv[])
\r
58 char* entityID = NULL;
\r
59 char* appID = "default";
\r
62 const XMLCh* protocol = NULL;
\r
66 for (int i=1; i<argc; i++) {
\r
67 if (!strcmp(argv[i],"-e") && i+1<argc)
\r
69 else if (!strcmp(argv[i],"-a") && i+1<argc)
\r
71 else if (!strcmp(argv[i],"-p") && i+1<argc)
\r
73 else if (!strcmp(argv[i],"-r") && i+1<argc)
\r
75 else if (!strcmp(argv[i],"-ns") && i+1<argc)
\r
77 else if (!strcmp(argv[i],"-saml10"))
\r
78 protocol=samlconstants::SAML10_PROTOCOL_ENUM;
\r
79 else if (!strcmp(argv[i],"-saml11"))
\r
80 protocol=samlconstants::SAML11_PROTOCOL_ENUM;
\r
81 else if (!strcmp(argv[i],"-saml2"))
\r
82 protocol=samlconstants::SAML20P_NS;
\r
83 else if (!strcmp(argv[i],"-idp"))
\r
84 rname="IDPSSODescriptor";
\r
85 else if (!strcmp(argv[i],"-aa"))
\r
86 rname="AttributeAuthorityDescriptor";
\r
87 else if (!strcmp(argv[i],"-pdp"))
\r
88 rname="PDPDescriptor";
\r
89 else if (!strcmp(argv[i],"-sp"))
\r
90 rname="SPSSODescriptor";
\r
91 else if (!strcmp(argv[i],"-nostrict"))
\r
100 char* path=getenv("SHIBSP_SCHEMAS");
\r
102 path=SHIBSP_SCHEMAS;
\r
103 char* config=getenv("SHIBSP_CONFIG");
\r
105 config=SHIBSP_CONFIG;
\r
107 XMLToolingConfig::getConfig().log_config(getenv("SHIBSP_LOGGING") ? getenv("SHIBSP_LOGGING") : SHIBSP_LOGGING);
\r
109 SPConfig& conf=SPConfig::getConfig();
\r
110 conf.setFeatures(SPConfig::Metadata | SPConfig::Trust | SPConfig::OutOfProcess | SPConfig::Credentials);
\r
111 if (!conf.init(path))
\r
117 protocol = XMLString::transcode(prot);
\r
127 static const XMLCh _path[] = UNICODE_LITERAL_4(p,a,t,h);
\r
128 static const XMLCh validate[] = UNICODE_LITERAL_8(v,a,l,i,d,a,t,e);
\r
129 xercesc::DOMDocument* dummydoc=XMLToolingConfig::getConfig().getParser().newDocument();
\r
130 XercesJanitor<xercesc::DOMDocument> docjanitor(dummydoc);
\r
131 xercesc::DOMElement* dummy = dummydoc->createElementNS(NULL,_path);
\r
132 auto_ptr_XMLCh src(config);
\r
133 dummy->setAttributeNS(NULL,_path,src.get());
\r
134 dummy->setAttributeNS(NULL,validate,xmlconstants::XML_ONE);
\r
135 conf.setServiceProvider(conf.ServiceProviderManager.newPlugin(XML_SERVICE_PROVIDER,dummy));
\r
136 conf.getServiceProvider()->init();
\r
138 catch (exception&) {
\r
143 ServiceProvider* sp=conf.getServiceProvider();
\r
146 Category& log = Category::getInstance(SHIBSP_LOGCAT".Utility.MDQuery");
\r
148 const Application* app = sp->getApplication(appID);
\r
150 log.error("unknown application ID (%s)", appID);
\r
156 app->getMetadataProvider()->lock();
\r
157 MetadataProviderCriteria mc(*app, entityID, NULL, NULL, strict);
\r
159 const XMLCh* ns = rns ? XMLString::transcode(rns) : samlconstants::SAML20MD_NS;
\r
160 auto_ptr_XMLCh n(rname);
\r
161 QName q(ns, n.get());
\r
163 mc.protocol = protocol;
\r
164 const RoleDescriptor* role = app->getMetadataProvider()->getEntityDescriptor(mc).second;
\r
166 XMLHelper::serialize(role->marshall(), cout, true);
\r
168 log.error("compatible role %s not found for (%s)", q.toString().c_str(), entityID);
\r
171 const EntityDescriptor* entity = app->getMetadataProvider()->getEntityDescriptor(mc).first;
\r
173 XMLHelper::serialize(entity->marshall(), cout, true);
\r
175 log.error("no metadata found for (%s)", entityID);
\r
178 app->getMetadataProvider()->unlock();
\r