Class JPAPermissionTicketStore
java.lang.Object
org.keycloak.authorization.jpa.store.JPAPermissionTicketStore
- All Implemented Interfaces:
PermissionTicketStore
- Author:
- Pedro Igor
-
Constructor Summary
ConstructorDescriptionJPAPermissionTicketStore
(jakarta.persistence.EntityManager entityManager, AuthorizationProvider provider) -
Method Summary
Modifier and TypeMethodDescriptionlong
count
(ResourceServer resourceServer, Map<PermissionTicket.FilterOption, String> attributes) Returns count ofPermissionTicket
, filtered by the given attributes.create
(ResourceServer resourceServer, Resource resource, Scope scope, String requester) Creates a newPermissionTicket
instance.void
Deletes a permission from the underlying persistence mechanism.find
(ResourceServer resourceServer, Map<PermissionTicket.FilterOption, String> attributes, Integer firstResult, Integer maxResult) Returns a list ofPermissionTicket
, filtered by the given attributes.findById
(ResourceServer resourceServer, String id) Returns aPermissionTicket
with the givenid
findByResource
(ResourceServer resourceServer, Resource resource) Returns a list ofPermissionTicket
associated with theresource
.findByScope
(ResourceServer resourceServer, Scope scope) Returns a list ofPermissionTicket
associated with thescope
.findGranted
(ResourceServer resourceServer, String userId) Returns a list ofPermissionTicket
granted to the givenuserId
.findGranted
(ResourceServer resourceServer, String resourceName, String userId) findGrantedOwnerResources
(String owner, Integer firstResult, Integer maxResults) Returns a list ofResource
granted by the owner to other usersfindGrantedResources
(String requester, String name, Integer first, Integer max) Returns a list ofResource
granted to the givenrequester
-
Constructor Details
-
JPAPermissionTicketStore
public JPAPermissionTicketStore(jakarta.persistence.EntityManager entityManager, AuthorizationProvider provider)
-
-
Method Details
-
count
public long count(ResourceServer resourceServer, Map<PermissionTicket.FilterOption, String> attributes) Description copied from interface:PermissionTicketStore
Returns count ofPermissionTicket
, filtered by the given attributes.- Specified by:
count
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server.attributes
- permission tickets that do not match the attributes are not included with the count; possible filter options are given byPermissionTicket.FilterOption
- Returns:
- an integer indicating the amount of permission tickets
-
create
public PermissionTicket create(ResourceServer resourceServer, Resource resource, Scope scope, String requester) Description copied from interface:PermissionTicketStore
Creates a newPermissionTicket
instance.- Specified by:
create
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server to which this permission ticket belongs. Cannot benull
.resource
- resource. Cannot benull
.scope
- scope.requester
- requester of the permission- Returns:
- a new instance of
PermissionTicket
-
delete
Description copied from interface:PermissionTicketStore
Deletes a permission from the underlying persistence mechanism.- Specified by:
delete
in interfacePermissionTicketStore
- Parameters:
id
- the id of the policy to delete
-
findById
Description copied from interface:PermissionTicketStore
Returns aPermissionTicket
with the givenid
- Specified by:
findById
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Ignored ifnull
.id
- the identifier of the permission- Returns:
- a permission with the given identifier.
-
findByResource
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
associated with theresource
.- Specified by:
findByResource
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.resource
- the resource. Cannot benull
- Returns:
- a list of permissions associated with the given resource
-
findByScope
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
associated with thescope
.- Specified by:
findByScope
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.scope
- the scope. Cannot benull
.- Returns:
- a list of permissions associated with the given scopes
-
find
public List<PermissionTicket> find(ResourceServer resourceServer, Map<PermissionTicket.FilterOption, String> attributes, Integer firstResult, Integer maxResult) Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
, filtered by the given attributes.- Specified by:
find
in interfacePermissionTicketStore
- Parameters:
resourceServer
- a resource server that resulting tickets should belong to. Ignored ifnull
.attributes
- a map of keys and values to filter on; possible filter options are given byPermissionTicket.FilterOption
firstResult
- first result to return. Ignored if negative ornull
.maxResult
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of filtered and paginated permissions
-
findGranted
Description copied from interface:PermissionTicketStore
Returns a list ofPermissionTicket
granted to the givenuserId
.- Specified by:
findGranted
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
userId
- the user id- Returns:
- a list of permissions granted for a particular user
-
findGranted
public List<PermissionTicket> findGranted(ResourceServer resourceServer, String resourceName, String userId) Description copied from interface:PermissionTicketStore
- Specified by:
findGranted
in interfacePermissionTicketStore
- Parameters:
resourceServer
- the resource server. Cannot benull
.resourceName
- the name of a resourceuserId
- the user id- Returns:
- a list of permissions granted for a particular user TODO: investigate a way how to replace resourceName with Resource class
-
findGrantedResources
public List<Resource> findGrantedResources(String requester, String name, Integer first, Integer max) Description copied from interface:PermissionTicketStore
Returns a list ofResource
granted to the givenrequester
- Specified by:
findGrantedResources
in interfacePermissionTicketStore
- Parameters:
requester
- the requestername
- the keyword to query resources by name or null if any resourcefirst
- first result to return. Ignored if negative ornull
.max
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of
Resource
granted to the givenrequester
-
findGrantedOwnerResources
public List<Resource> findGrantedOwnerResources(String owner, Integer firstResult, Integer maxResults) Description copied from interface:PermissionTicketStore
Returns a list ofResource
granted by the owner to other users- Specified by:
findGrantedOwnerResources
in interfacePermissionTicketStore
- Parameters:
owner
- the ownerfirstResult
- first result to return. Ignored if negative ornull
.maxResults
- maximum number of results to return. Ignored if negative ornull
.- Returns:
- a list of
Resource
granted by the owner
-