Class JPAPermissionTicketStore
- java.lang.Object
-
- org.keycloak.authorization.jpa.store.JPAPermissionTicketStore
-
- All Implemented Interfaces:
PermissionTicketStore
public class JPAPermissionTicketStore extends Object implements PermissionTicketStore
- Author:
- Pedro Igor
-
-
Constructor Summary
Constructors Constructor Description JPAPermissionTicketStore(javax.persistence.EntityManager entityManager, AuthorizationProvider provider)
-
Method Summary
All Methods Instance Methods Concrete Methods Modifier and Type Method Description long
count(ResourceServer resourceServer, Map<PermissionTicket.FilterOption,String> attributes)
Returns count ofPermissionTicket
, filtered by the given attributes.PermissionTicket
create(ResourceServer resourceServer, Resource resource, Scope scope, String requester)
Creates a newPermissionTicket
instance.void
delete(RealmModel realm, String id)
Deletes a permission from the underlying persistence mechanism.List<PermissionTicket>
find(RealmModel realm, ResourceServer resourceServer, Map<PermissionTicket.FilterOption,String> attributes, Integer firstResult, Integer maxResult)
Returns a list ofPermissionTicket
, filtered by the given attributes.PermissionTicket
findById(RealmModel realm, ResourceServer resourceServer, String id)
Returns aPermissionTicket
with the givenid
List<PermissionTicket>
findByResource(ResourceServer resourceServer, Resource resource)
Returns a list ofPermissionTicket
associated with theresource
.List<PermissionTicket>
findByScope(ResourceServer resourceServer, Scope scope)
Returns a list ofPermissionTicket
associated with thescope
.List<PermissionTicket>
findGranted(ResourceServer resourceServer, String userId)
Returns a list ofPermissionTicket
granted to the givenuserId
.List<PermissionTicket>
findGranted(ResourceServer resourceServer, String resourceName, String userId)
List<Resource>
findGrantedOwnerResources(RealmModel realm, String owner, Integer firstResult, Integer maxResults)
Returns a list ofResource
granted by the owner to other usersList<Resource>
findGrantedResources(RealmModel realm, String requester, String name, Integer first, Integer max)
Returns a list ofResource
granted to the givenrequester
-
-
-
Constructor Detail
-
JPAPermissionTicketStore
public JPAPermissionTicketStore(javax.persistence.EntityManager entityManager, AuthorizationProvider provider)
-
-
Method Detail
-
count
public long count(ResourceServer resourceServer, Map<PermissionTicket.FilterOption,String> attributes)
Description copied from interface:PermissionTicketStore
Returns count ofPermissionTicket
, filtered by the given attributes.- Specified by:
count
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.attributes
- permission tickets that do not match the attributes are not included with the count; possible filter options are given byPermissionTicket.FilterOption
- Returns:
- an integer indicating the amount of permission tickets
-
create
public PermissionTicket create(ResourceServer resourceServer, Resource resource, Scope scope, String requester)
Description copied from interface:PermissionTicketStore
Creates a newPermissionTicket
instance.- Specified by:
create
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server to which this permission ticket belongs. Cannot benull
.resource
- resource. Cannot benull
.scope
- scope. Cannot benull
requester
- requester of the permission- Returns:
- a new instance of
PermissionTicket
-
delete
public void delete(RealmModel realm, String id)
Description copied from interface:PermissionTicketStore
Deletes a permission from the underlying persistence mechanism.- Specified by:
delete
in interfacePermissionTicketStore
- Parameters:
realm
- realm. Cannot benull
.id
- the id of the policy to delete
-
findById
public PermissionTicket findById(RealmModel realm, ResourceServer resourceServer, String id)
Description copied from interface:PermissionTicketStore
Returns aPermissionTicket
with the givenid
- Specified by:
findById
in interfacePermissionTicketStore
- Parameters:
realm
- the realm. Cannot benull
.resourceServer
- the resource server. Ignored ifnull
.id
- the identifier of the permission- Returns:
- a permission with the given identifier.
-
findByResource
public List<PermissionTicket> findByResource(ResourceServer resourceServer, Resource resource)
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
associated with theresource
.- Specified by:
findByResource
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.resource
- the resource. Cannot benull
- Returns:
- a list of permissions associated with the given resource
-
findByScope
public List<PermissionTicket> findByScope(ResourceServer resourceServer, Scope scope)
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
associated with thescope
.- Specified by:
findByScope
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.scope
- the scope. Cannot benull
.- Returns:
- a list of permissions associated with the given scopes
-
find
public List<PermissionTicket> find(RealmModel realm, ResourceServer resourceServer, Map<PermissionTicket.FilterOption,String> attributes, Integer firstResult, Integer maxResult)
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
, filtered by the given attributes.- Specified by:
find
in interfacePermissionTicketStore
- Parameters:
realm
- the realm. Cannot benull
.resourceServer
- a resource server that resulting tickets should belong to. Ignored ifnull
.attributes
- a map of keys and values to filter on; possible filter options are given byPermissionTicket.FilterOption
firstResult
- first result to return. Ignored if negative ornull
.maxResult
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of filtered and paginated permissions
-
findGranted
public List<PermissionTicket> findGranted(ResourceServer resourceServer, String userId)
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
granted to the givenuserId
.- Specified by:
findGranted
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
userId
- the user id- Returns:
- a list of permissions granted for a particular user
-
findGranted
public List<PermissionTicket> findGranted(ResourceServer resourceServer, String resourceName, String userId)
Description copied from interface:PermissionTicketStore
- Specified by:
findGranted
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.resourceName
- the name of a resourceuserId
- the user id- Returns:
- a list of permissions granted for a particular user TODO: investigate a way how to replace resourceName with Resource class
-
findGrantedResources
public List<Resource> findGrantedResources(RealmModel realm, String requester, String name, Integer first, Integer max)
Description copied from interface:PermissionTicketStore
Returns a list ofResource
granted to the givenrequester
- Specified by:
findGrantedResources
in interfacePermissionTicketStore
- Parameters:
realm
- realm that is searched. Cannot benull
requester
- the requestername
- the keyword to query resources by name or null if any resourcefirst
- first result to return. Ignored if negative ornull
.max
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of
Resource
granted to the givenrequester
-
findGrantedOwnerResources
public List<Resource> findGrantedOwnerResources(RealmModel realm, String owner, Integer firstResult, Integer maxResults)
Description copied from interface:PermissionTicketStore
Returns a list ofResource
granted by the owner to other users- Specified by:
findGrantedOwnerResources
in interfacePermissionTicketStore
owner
- the ownerfirstResult
- first result to return. Ignored if negative ornull
.maxResults
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of
Resource
granted by the owner
-
-