Java Code Examples for org.apache.activemq.artemis.core.server.ActiveMQServer#getSecurityRepository()

The following examples show how to use org.apache.activemq.artemis.core.server.ActiveMQServer#getSecurityRepository() . You can vote up the ones you like or vote down the ones you don't like, and go to the original project or source file by following the links above each example. You may check out the related API usage on the sidebar.
Example 1
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testCreateDurableQueueWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, false, false, false, false, false, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   try {
      session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
      Assert.fail("should throw exception");
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
}
 
Example 2
Source File: SecurityManagementWithConfiguredAdminUserTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Override
protected ActiveMQServer setupAndStartActiveMQServer() throws Exception {
   Configuration config = createDefaultInVMConfig().setSecurityEnabled(true);
   ActiveMQServer server = addServer(ActiveMQServers.newActiveMQServer(config, false));
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser(validAdminUser, validAdminPassword);
   securityManager.getConfiguration().addUser(invalidAdminUser, invalidAdminPassword);

   securityManager.getConfiguration().addRole(validAdminUser, "admin");
   securityManager.getConfiguration().addRole(validAdminUser, "guest");
   securityManager.getConfiguration().addRole(invalidAdminUser, "guest");

   Set<Role> adminRole = securityRepository.getMatch(ActiveMQDefaultConfiguration.getDefaultManagementAddress().toString());
   adminRole.add(new Role("admin", true, true, true, true, true, true, true, true, true, true));
   securityRepository.addMatch(ActiveMQDefaultConfiguration.getDefaultManagementAddress().toString(), adminRole);
   Set<Role> guestRole = securityRepository.getMatch("*");
   guestRole.add(new Role("guest", true, true, true, true, true, true, false, true, true, true));
   securityRepository.addMatch("*", guestRole);

   return server;
}
 
Example 3
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testNonBlockSendManagementWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(configuration.getManagementAddress().toString(), roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(configuration.getManagementAddress().toString()));
   ClientProducer cp = session.createProducer(configuration.getManagementAddress());
   cp.send(session.createMessage(false));
   session.close();

   Queue binding = (Queue) server.getPostOffice().getBinding(new SimpleString(SecurityTest.queueA)).getBindable();
   Assert.assertEquals(0, getMessageCount(binding));

}
 
Example 4
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testSendManagementWithRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, false, false, true, false, false, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(configuration.getManagementAddress().toString(), roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   locator.setBlockOnNonDurableSend(true);
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   ClientProducer cp = session.createProducer(configuration.getManagementAddress());
   cp.send(session.createMessage(false));
   session.close();
}
 
Example 5
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testNonBlockSendWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   ClientProducer cp = session.createProducer(SecurityTest.addressA);
   cp.send(session.createMessage(false));
   session.close();

   Queue binding = (Queue) server.getPostOffice().getBinding(new SimpleString(SecurityTest.queueA)).getBindable();
   Assert.assertEquals(0, getMessageCount(binding));
}
 
Example 6
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testDeleteTempQueueWithoutRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, true, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA).setDurable(false));
   try {
      session.deleteQueue(SecurityTest.queueA);
      Assert.fail("should throw exception");
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
}
 
Example 7
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testDeleteTempQueueWithRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, true, true, false, false, true, true);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA).setDurable(false));
   session.deleteQueue(SecurityTest.queueA);
   session.close();
}
 
Example 8
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testCreateTempQueueWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, false, false, false, false, false, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   try {
      session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA).setDurable(false));
      Assert.fail("should throw exception");
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
}
 
Example 9
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testCreateTempQueueWithRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, false, false, true, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA).setDurable(false));
   session.close();
}
 
Example 10
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testDeleteDurableQueueWithoutRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   try {
      session.deleteQueue(SecurityTest.queueA);
      Assert.fail("should throw exception");
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
}
 
Example 11
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testDeleteDurableQueueWithRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, true, false, false, false, false, true, true);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   session.deleteQueue(SecurityTest.queueA);
   session.close();
}
 
Example 12
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 6 votes vote down vote up
@Test
public void testCreateDurableQueueWithRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   session.close();
}
 
Example 13
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
@Test
public void testSendWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   locator.setBlockOnNonDurableSend(true);
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   ClientProducer cp = session.createProducer(SecurityTest.addressA);
   try {
      cp.send(session.createMessage(false));
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
}
 
Example 14
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
@Test
public void testCreateConsumerWithRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   securityManager.getConfiguration().addUser("guest", "guest");
   securityManager.getConfiguration().addRole("guest", "guest");
   securityManager.getConfiguration().setDefaultUser("guest");
   Role role = new Role("arole", false, true, false, false, false, false, false, false, false, false);
   Role sendRole = new Role("guest", true, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(sendRole);
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession senSession = cf.createSession(false, true, true);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   senSession.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   ClientProducer cp = senSession.createProducer(SecurityTest.addressA);
   cp.send(session.createMessage(false));
   session.createConsumer(SecurityTest.queueA);
   session.close();
   senSession.close();
}
 
Example 15
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
@Test
public void testCreateConsumerWithoutRole() throws Exception {
   ActiveMQServer server = createServer();
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   securityManager.getConfiguration().addUser("guest", "guest");
   securityManager.getConfiguration().addRole("guest", "guest");
   securityManager.getConfiguration().setDefaultUser("guest");
   Role role = new Role("arole", false, false, false, false, false, false, false, false, false, false);
   Role sendRole = new Role("guest", true, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(sendRole);
   roles.add(role);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession senSession = cf.createSession(false, true, true);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   senSession.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   ClientProducer cp = senSession.createProducer(SecurityTest.addressA);
   cp.send(session.createMessage(false));
   try {
      session.createConsumer(SecurityTest.queueA);
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();
   senSession.close();
}
 
Example 16
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
@Test
public void testSendManagementWithoutRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   Role role = new Role("arole", false, false, true, false, false, false, false, false, true, false);
   Set<Role> roles = new HashSet<>();
   roles.add(role);
   securityRepository.addMatch(configuration.getManagementAddress().toString(), roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(configuration.getManagementAddress().toString()));
   ClientProducer cp = session.createProducer(configuration.getManagementAddress());
   cp.send(session.createMessage(false));
   try {
      cp.send(session.createMessage(false));
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }
   session.close();

}
 
Example 17
Source File: AmqpClientTestSupport.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
protected void configureBrokerSecurity(ActiveMQServer server) {
   if (isSecurityEnabled()) {
      ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();

      // User additions
      securityManager.getConfiguration().addUser(noprivUser, noprivPass);
      securityManager.getConfiguration().addRole(noprivUser, "nothing");
      securityManager.getConfiguration().addUser(browseUser, browsePass);
      securityManager.getConfiguration().addRole(browseUser, "browser");
      securityManager.getConfiguration().addUser(guestUser, guestPass);
      securityManager.getConfiguration().addRole(guestUser, "guest");
      securityManager.getConfiguration().addUser(fullUser, fullPass);
      securityManager.getConfiguration().addRole(fullUser, "full");

      // Configure roles
      HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
      HashSet<Role> value = new HashSet<>();
      value.add(new Role("nothing", false, false, false, false, false, false, false, false, false, false));
      value.add(new Role("browser", false, false, false, false, false, false, false, true, false, false));
      value.add(new Role("guest", false, true, false, false, false, false, false, true, false, false));
      value.add(new Role("full", true, true, true, true, true, true, true, true, true, true));
      securityRepository.addMatch(getQueueName(), value);

      server.getConfiguration().setSecurityEnabled(true);
   } else {
      server.getConfiguration().setSecurityEnabled(false);
   }
}
 
Example 18
Source File: MQTTTestSupport.java    From activemq-artemis with Apache License 2.0 5 votes vote down vote up
/**
 * Copied from org.apache.activemq.artemis.tests.integration.amqp.AmqpClientTestSupport#configureBrokerSecurity()
 */
protected void configureBrokerSecurity(ActiveMQServer server) {
   if (isSecurityEnabled()) {
      ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();

      // User additions
      securityManager.getConfiguration().addUser(noprivUser, noprivPass);
      securityManager.getConfiguration().addRole(noprivUser, "nothing");
      securityManager.getConfiguration().addUser(browseUser, browsePass);
      securityManager.getConfiguration().addRole(browseUser, "browser");
      securityManager.getConfiguration().addUser(guestUser, guestPass);
      securityManager.getConfiguration().addRole(guestUser, "guest");
      securityManager.getConfiguration().addUser(fullUser, fullPass);
      securityManager.getConfiguration().addRole(fullUser, "full");

      // Configure roles
      HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
      HashSet<Role> value = new HashSet<>();
      value.add(new Role("nothing", false, false, false, false, false, false, false, false, false, false));
      value.add(new Role("browser", false, false, false, false, false, false, false, true, false, false));
      value.add(new Role("guest", false, true, false, false, false, false, false, true, false, false));
      value.add(new Role("full", true, true, true, true, true, true, true, true, true, true));
      securityRepository.addMatch(getQueueName(), value);

      server.getConfiguration().setSecurityEnabled(true);
   } else {
      server.getConfiguration().setSecurityEnabled(false);
   }
}
 
Example 19
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 4 votes vote down vote up
@Test
public void testSendMessageUpdateRoleCached() throws Exception {
   Configuration configuration = createDefaultInVMConfig().setSecurityEnabled(true).setSecurityInvalidationInterval(10000);
   ActiveMQServer server = createServer(false, configuration);
   server.start();
   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();
   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();
   securityManager.getConfiguration().addUser("auser", "pass");
   securityManager.getConfiguration().addUser("guest", "guest");
   securityManager.getConfiguration().addRole("guest", "guest");
   securityManager.getConfiguration().setDefaultUser("guest");
   Role role = new Role("arole", false, false, false, false, false, false, false, false, false, false);
   Role sendRole = new Role("guest", true, false, true, false, false, false, false, false, true, false);
   Role receiveRole = new Role("receiver", false, true, false, false, false, false, false, false, false, false);
   Set<Role> roles = new HashSet<>();
   roles.add(sendRole);
   roles.add(role);
   roles.add(receiveRole);
   securityRepository.addMatch(SecurityTest.addressA, roles);
   securityManager.getConfiguration().addRole("auser", "arole");
   ClientSessionFactory cf = createSessionFactory(locator);
   ClientSession senSession = cf.createSession(false, true, true);
   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);
   senSession.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));
   ClientProducer cp = senSession.createProducer(SecurityTest.addressA);
   cp.send(session.createMessage(false));
   try {
      session.createConsumer(SecurityTest.queueA);
   } catch (ActiveMQSecurityException se) {
      //ok
   } catch (ActiveMQException e) {
      fail("Invalid Exception type:" + e.getType());
   }

   securityManager.getConfiguration().addRole("auser", "receiver");

   session.createConsumer(SecurityTest.queueA);

   // Removing the Role... the check should be cached, so the next createConsumer shouldn't fail
   securityManager.getConfiguration().removeRole("auser", "receiver");

   session.createConsumer(SecurityTest.queueA);

   session.close();

   senSession.close();
}
 
Example 20
Source File: SecurityTest.java    From activemq-artemis with Apache License 2.0 2 votes vote down vote up
@Test
public void testSendWithRole() throws Exception {
   ActiveMQServer server = createServer();

   server.start();

   HierarchicalRepository<Set<Role>> securityRepository = server.getSecurityRepository();

   ActiveMQJAASSecurityManager securityManager = (ActiveMQJAASSecurityManager) server.getSecurityManager();

   securityManager.getConfiguration().addUser("auser", "pass");

   Role role = new Role("arole", true, true, true, false, false, false, false, false, true, false);

   Set<Role> roles = new HashSet<>();

   roles.add(role);

   securityRepository.addMatch(SecurityTest.addressA, roles);

   securityManager.getConfiguration().addRole("auser", "arole");

   locator.setBlockOnNonDurableSend(true);

   ClientSessionFactory cf = createSessionFactory(locator);

   ClientSession session = cf.createSession("auser", "pass", false, true, true, false, -1);

   session.createQueue(new QueueConfiguration(SecurityTest.queueA).setAddress(SecurityTest.addressA));

   ClientProducer cp = session.createProducer(SecurityTest.addressA);

   cp.send(session.createMessage(false));

   session.start();

   ClientConsumer cons = session.createConsumer(queueA);

   ClientMessage receivedMessage = cons.receive(5000);

   assertNotNull(receivedMessage);

   receivedMessage.acknowledge();

   role = new Role("arole", false, false, true, false, false, false, false, false, false, false);

   roles = new HashSet<>();

   roles.add(role);

   // This was added to validate https://issues.jboss.org/browse/SOA-3363
   securityRepository.addMatch(SecurityTest.addressA, roles);
   boolean failed = false;
   try {
      cp.send(session.createMessage(true));
   } catch (ActiveMQException e) {
      failed = true;
   }
   // This was added to validate https://issues.jboss.org/browse/SOA-3363 ^^^^^

   assertTrue("Failure expected on send after removing the match", failed);
}