@Internal
public interface RemoteAgentAuthenticationManager
Manages remote agent authentication.
This manager keeps track of two types of authentication requests: the ones pending approval (not approved) and the ones already approved. ONLY approved authentications are stored persistently.
Authentications are uniquely identified by their UUID, meaning there can never be two approved authentications with the same UUID, or two authentications pending approval with the same UUID. This also means that if an authentication gets approved with UUID associated with some other previously approved authentication, the latter will be replaced with the newly approved authentication.
IP of approved (persisted) authentications can be updated. Wildcard characters (*,?) can be used to match authentications.
Modifier and Type | Method and Description |
---|---|
void |
approveAuthentications(Iterable<RemoteAgentAuthentication> authentications)
Approve all authentications from the list.
|
Iterable<RemoteAgentAuthentication> |
getAllAuthentications()
Get all agent authentications known to this Bamboo server.
|
RemoteAgentAuthentication |
getAuthentication(UUID uuid)
Get first remote agent authentication matching the IP and UUID.
|
RemoteAgentAuthentication |
getAuthentication(UUID uuid,
String ip)
Get remote agent authentication matching the IP and UUID.
|
Iterable<RemoteAgentAuthentication> |
getAuthentications(com.google.common.base.Predicate<RemoteAgentAuthentication> filter)
Get authentication filtered by given filter.
|
org.apache.commons.lang3.tuple.Pair<RemoteAgentAuthentication,Boolean> |
getOrCreatePendingAuthentication(UUID uuid,
String ip,
Long agentId,
boolean agentIdValidationEnabled)
Create a new pending authentication for given IP address and UUID.
|
boolean |
isAuthenticatedAgentIp(InetAddress inetAddress)
Returns true if the given IP address matches one of the already authenticated remote agent IP patterns.
|
boolean |
isAuthenticatedAgentIp(String ip)
Returns true if the given IP address matches one of the already authenticated remote agent IP patterns.
|
boolean |
isRemoteAgentAuthenticationEnabled()
Checks whether the remote agent authentication is currently enabled.
|
void |
revokeAgentAuthentications(Iterable<RemoteAgentAuthentication> authentications)
Revoke approval for given agent authentications.
|
void |
setRemoteAgentAuthenticationEnabled(boolean isAuthenticationEnabled)
Sets the remote agent authentication to globally enabled/disabled.
|
void |
updateIp(UUID uuid,
String newIp)
Update IP of an approved authentication with given uuid.
|
void setRemoteAgentAuthenticationEnabled(boolean isAuthenticationEnabled) throws Exception
isAuthenticationEnabled
- true
if remote agent authentication should be enabled, false
otherwise.Exception
- on any errorboolean isRemoteAgentAuthenticationEnabled()
true
, if remote agent authentication is enabled, false
otherwise@NotNull Iterable<RemoteAgentAuthentication> getAllAuthentications()
Get all agent authentications known to this Bamboo server.
The list is sorted first by the authentication status (unapproved first), then by IP address.
@NotNull Iterable<RemoteAgentAuthentication> getAuthentications(com.google.common.base.Predicate<RemoteAgentAuthentication> filter)
filter
- predicate to filter authentications@Nullable RemoteAgentAuthentication getAuthentication(UUID uuid, String ip)
Get remote agent authentication matching the IP and UUID. If not found, null
will be returned.
The returned authentication (if found) will have UUID matching the uuid parameter and IP address either equal to ip parameter or a wildcard mask that matches the ip parameter. Persisted (approved) authentications will be queried in preference to the authentications pending approval.
uuid
- UUIDip
- IP addressnull
@Nullable RemoteAgentAuthentication getAuthentication(UUID uuid)
Get first remote agent authentication matching the IP and UUID. If not found, null
will be returned.
The returned authentication (if found) will have UUID matching the uuid parameter. Persisted (approved) authentications will be queried in preference to the authentications pending approval.
uuid
- UUIDnull
@NotNull org.apache.commons.lang3.tuple.Pair<RemoteAgentAuthentication,Boolean> getOrCreatePendingAuthentication(@NotNull UUID uuid, @NotNull String ip, @Nullable Long agentId, boolean agentIdValidationEnabled)
Create a new pending authentication for given IP address and UUID. Or return an existing (approved or not approved) authentication.
If an approved authentication matching given IP and UUID already exists, it will be returned.
If a pending authentication with given UUID exists, it will be replaced by the new authentication with given uuid and ip.
uuid
- UUIDip
- IP addresstrue
if an existing authentication (pending or approved) with the same UUID and matching IP was
found, and false
otherwise (meaning new authentication created)NullPointerException
- if any of the required arguments is null
RemoteAgentAuthentications.matching(java.util.UUID, String)
void approveAuthentications(@NotNull Iterable<RemoteAgentAuthentication> authentications)
Approve all authentications from the list.
For each authentication in the list this method will:
authentications
- authentications to approvevoid revokeAgentAuthentications(@NotNull Iterable<RemoteAgentAuthentication> authentications)
Revoke approval for given agent authentications.
Not approved authentications will be silently skipped.
authentications
- authentications to disapprovevoid updateIp(@NotNull UUID uuid, @NotNull String newIp)
Update IP of an approved authentication with given uuid.
If no corresponding authentication is found, no action will be taken.
uuid
- UUID of an approved authentication to updatenewIp
- new IP address of the authenticationboolean isAuthenticatedAgentIp(@NotNull String ip)
isAuthenticatedAgentIp(InetAddress)
is preferred over this method.boolean isAuthenticatedAgentIp(@NotNull InetAddress inetAddress)
Copyright © 2021 Atlassian Software Systems Pty Ltd. All rights reserved.