Back to home page

OSCL-LXR

 
 

    


0001 /*
0002  * Licensed to the Apache Software Foundation (ASF) under one or more
0003  * contributor license agreements.  See the NOTICE file distributed with
0004  * this work for additional information regarding copyright ownership.
0005  * The ASF licenses this file to You under the Apache License, Version 2.0
0006  * (the "License"); you may not use this file except in compliance with
0007  * the License.  You may obtain a copy of the License at
0008  *
0009  *    http://www.apache.org/licenses/LICENSE-2.0
0010  *
0011  * Unless required by applicable law or agreed to in writing, software
0012  * distributed under the License is distributed on an "AS IS" BASIS,
0013  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
0014  * See the License for the specific language governing permissions and
0015  * limitations under the License.
0016  */
0017 
0018 package org.apache.spark.network.crypto;
0019 
0020 import io.netty.channel.Channel;
0021 
0022 import org.apache.spark.network.sasl.SaslServerBootstrap;
0023 import org.apache.spark.network.sasl.SecretKeyHolder;
0024 import org.apache.spark.network.server.RpcHandler;
0025 import org.apache.spark.network.server.TransportServerBootstrap;
0026 import org.apache.spark.network.util.TransportConf;
0027 
0028 /**
0029  * A bootstrap which is executed on a TransportServer's client channel once a client connects
0030  * to the server, enabling authentication using Spark's auth protocol (and optionally SASL for
0031  * clients that don't support the new protocol).
0032  *
0033  * It also automatically falls back to SASL if the new encryption backend is disabled, so that
0034  * callers only need to install this bootstrap when authentication is enabled.
0035  */
0036 public class AuthServerBootstrap implements TransportServerBootstrap {
0037 
0038   private final TransportConf conf;
0039   private final SecretKeyHolder secretKeyHolder;
0040 
0041   public AuthServerBootstrap(TransportConf conf, SecretKeyHolder secretKeyHolder) {
0042     this.conf = conf;
0043     this.secretKeyHolder = secretKeyHolder;
0044   }
0045 
0046   public RpcHandler doBootstrap(Channel channel, RpcHandler rpcHandler) {
0047     if (!conf.encryptionEnabled()) {
0048       TransportServerBootstrap sasl = new SaslServerBootstrap(conf, secretKeyHolder);
0049       return sasl.doBootstrap(channel, rpcHandler);
0050     }
0051 
0052     return new AuthRpcHandler(conf, channel, rpcHandler, secretKeyHolder);
0053   }
0054 
0055 }