Class AuthorizationFilter
java.lang.Object
com.codename1.backend.security.AuthorizationFilter
- All Implemented Interfaces:
SecurityFilter
Puts the request to the chain's authorization rules, and throws
AccessDeniedException when they refuse it. Last in every chain: what it
lets through reaches the application.-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final StringThe attribute of the request'sSecurityExchangethat holds, as a list of text, the authorities any one of which the rule that refused the request would have accepted. -
Method Summary
Modifier and TypeMethodDescriptiondoFilter(HttpServer.Request request, FilterChain chain) The answer torequest; null when nothing under the chain routes it, which the server answers 404.
-
Field Details
-
REQUIRED_AUTHORITIES
The attribute of the request'sSecurityExchangethat holds, as a list of text, the authorities any one of which the rule that refused the request would have accepted. Set when that rule was one about authorities, so that whatever answers the refusal can say what to ask for.- See Also:
-
-
Method Details
-
doFilter
Description copied from interface:SecurityFilterThe answer torequest; null when nothing under the chain routes it, which the server answers 404.- Specified by:
doFilterin interfaceSecurityFilter- Throws:
Exception
-