blob: bd24b3d434da17bf155cca6c15fac666be6c1e87 [file] [log] [blame]
<!DOCTYPE HTML>
<html lang="en">
<head>
<!-- Generated by javadoc (17) -->
<title>Source code</title>
<meta name="viewport" content="width=device-width, initial-scale=1">
<meta name="description" content="source: package: org.apache.hadoop.hbase.http, class: TestHttpCookieFlag">
<meta name="generator" content="javadoc/SourceToHTMLConverter">
<link rel="stylesheet" type="text/css" href="../../../../../../stylesheet.css" title="Style">
</head>
<body class="source-page">
<main role="main">
<div class="source-container">
<pre><span class="source-line-no">001</span><span id="line-1">/*</span>
<span class="source-line-no">002</span><span id="line-2"> * Licensed to the Apache Software Foundation (ASF) under one</span>
<span class="source-line-no">003</span><span id="line-3"> * or more contributor license agreements. See the NOTICE file</span>
<span class="source-line-no">004</span><span id="line-4"> * distributed with this work for additional information</span>
<span class="source-line-no">005</span><span id="line-5"> * regarding copyright ownership. The ASF licenses this file</span>
<span class="source-line-no">006</span><span id="line-6"> * to you under the Apache License, Version 2.0 (the</span>
<span class="source-line-no">007</span><span id="line-7"> * "License"); you may not use this file except in compliance</span>
<span class="source-line-no">008</span><span id="line-8"> * with the License. You may obtain a copy of the License at</span>
<span class="source-line-no">009</span><span id="line-9"> *</span>
<span class="source-line-no">010</span><span id="line-10"> * http://www.apache.org/licenses/LICENSE-2.0</span>
<span class="source-line-no">011</span><span id="line-11"> *</span>
<span class="source-line-no">012</span><span id="line-12"> * Unless required by applicable law or agreed to in writing, software</span>
<span class="source-line-no">013</span><span id="line-13"> * distributed under the License is distributed on an "AS IS" BASIS,</span>
<span class="source-line-no">014</span><span id="line-14"> * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.</span>
<span class="source-line-no">015</span><span id="line-15"> * See the License for the specific language governing permissions and</span>
<span class="source-line-no">016</span><span id="line-16"> * limitations under the License.</span>
<span class="source-line-no">017</span><span id="line-17"> */</span>
<span class="source-line-no">018</span><span id="line-18">package org.apache.hadoop.hbase.http;</span>
<span class="source-line-no">019</span><span id="line-19"></span>
<span class="source-line-no">020</span><span id="line-20">import java.io.File;</span>
<span class="source-line-no">021</span><span id="line-21">import java.io.IOException;</span>
<span class="source-line-no">022</span><span id="line-22">import java.net.HttpCookie;</span>
<span class="source-line-no">023</span><span id="line-23">import java.net.HttpURLConnection;</span>
<span class="source-line-no">024</span><span id="line-24">import java.net.URI;</span>
<span class="source-line-no">025</span><span id="line-25">import java.net.URL;</span>
<span class="source-line-no">026</span><span id="line-26">import java.security.GeneralSecurityException;</span>
<span class="source-line-no">027</span><span id="line-27">import java.util.List;</span>
<span class="source-line-no">028</span><span id="line-28">import javax.net.ssl.HttpsURLConnection;</span>
<span class="source-line-no">029</span><span id="line-29">import javax.servlet.Filter;</span>
<span class="source-line-no">030</span><span id="line-30">import javax.servlet.FilterChain;</span>
<span class="source-line-no">031</span><span id="line-31">import javax.servlet.FilterConfig;</span>
<span class="source-line-no">032</span><span id="line-32">import javax.servlet.ServletException;</span>
<span class="source-line-no">033</span><span id="line-33">import javax.servlet.ServletRequest;</span>
<span class="source-line-no">034</span><span id="line-34">import javax.servlet.ServletResponse;</span>
<span class="source-line-no">035</span><span id="line-35">import javax.servlet.http.HttpServletResponse;</span>
<span class="source-line-no">036</span><span id="line-36">import org.apache.hadoop.conf.Configuration;</span>
<span class="source-line-no">037</span><span id="line-37">import org.apache.hadoop.fs.FileUtil;</span>
<span class="source-line-no">038</span><span id="line-38">import org.apache.hadoop.hbase.HBaseClassTestRule;</span>
<span class="source-line-no">039</span><span id="line-39">import org.apache.hadoop.hbase.testclassification.MiscTests;</span>
<span class="source-line-no">040</span><span id="line-40">import org.apache.hadoop.hbase.testclassification.SmallTests;</span>
<span class="source-line-no">041</span><span id="line-41">import org.apache.hadoop.net.NetUtils;</span>
<span class="source-line-no">042</span><span id="line-42">import org.apache.hadoop.security.authentication.server.AuthenticationFilter;</span>
<span class="source-line-no">043</span><span id="line-43">import org.apache.hadoop.security.ssl.KeyStoreTestUtil;</span>
<span class="source-line-no">044</span><span id="line-44">import org.apache.hadoop.security.ssl.SSLFactory;</span>
<span class="source-line-no">045</span><span id="line-45">import org.junit.AfterClass;</span>
<span class="source-line-no">046</span><span id="line-46">import org.junit.Assert;</span>
<span class="source-line-no">047</span><span id="line-47">import org.junit.BeforeClass;</span>
<span class="source-line-no">048</span><span id="line-48">import org.junit.ClassRule;</span>
<span class="source-line-no">049</span><span id="line-49">import org.junit.Test;</span>
<span class="source-line-no">050</span><span id="line-50">import org.junit.experimental.categories.Category;</span>
<span class="source-line-no">051</span><span id="line-51"></span>
<span class="source-line-no">052</span><span id="line-52">@Category({ MiscTests.class, SmallTests.class })</span>
<span class="source-line-no">053</span><span id="line-53">public class TestHttpCookieFlag {</span>
<span class="source-line-no">054</span><span id="line-54"> @ClassRule</span>
<span class="source-line-no">055</span><span id="line-55"> public static final HBaseClassTestRule CLASS_RULE =</span>
<span class="source-line-no">056</span><span id="line-56"> HBaseClassTestRule.forClass(TestHttpCookieFlag.class);</span>
<span class="source-line-no">057</span><span id="line-57"></span>
<span class="source-line-no">058</span><span id="line-58"> private static final String BASEDIR = System.getProperty("test.build.dir", "target/test-dir")</span>
<span class="source-line-no">059</span><span id="line-59"> + "/" + org.apache.hadoop.hbase.http.TestHttpCookieFlag.class.getSimpleName();</span>
<span class="source-line-no">060</span><span id="line-60"> private static String keystoresDir;</span>
<span class="source-line-no">061</span><span id="line-61"> private static String sslConfDir;</span>
<span class="source-line-no">062</span><span id="line-62"> private static SSLFactory clientSslFactory;</span>
<span class="source-line-no">063</span><span id="line-63"> private static HttpServer server;</span>
<span class="source-line-no">064</span><span id="line-64"></span>
<span class="source-line-no">065</span><span id="line-65"> public static class DummyAuthenticationFilter implements Filter {</span>
<span class="source-line-no">066</span><span id="line-66"></span>
<span class="source-line-no">067</span><span id="line-67"> @Override</span>
<span class="source-line-no">068</span><span id="line-68"> public void init(FilterConfig filterConfig) throws ServletException {</span>
<span class="source-line-no">069</span><span id="line-69"> }</span>
<span class="source-line-no">070</span><span id="line-70"></span>
<span class="source-line-no">071</span><span id="line-71"> @Override</span>
<span class="source-line-no">072</span><span id="line-72"> public void doFilter(ServletRequest request, ServletResponse response, FilterChain chain)</span>
<span class="source-line-no">073</span><span id="line-73"> throws IOException, ServletException {</span>
<span class="source-line-no">074</span><span id="line-74"> HttpServletResponse resp = (HttpServletResponse) response;</span>
<span class="source-line-no">075</span><span id="line-75"> boolean isHttps = "https".equals(request.getScheme());</span>
<span class="source-line-no">076</span><span id="line-76"> AuthenticationFilter.createAuthCookie(resp, "token", null, null, -1, true, isHttps);</span>
<span class="source-line-no">077</span><span id="line-77"> chain.doFilter(request, resp);</span>
<span class="source-line-no">078</span><span id="line-78"> }</span>
<span class="source-line-no">079</span><span id="line-79"></span>
<span class="source-line-no">080</span><span id="line-80"> @Override</span>
<span class="source-line-no">081</span><span id="line-81"> public void destroy() {</span>
<span class="source-line-no">082</span><span id="line-82"> }</span>
<span class="source-line-no">083</span><span id="line-83"> }</span>
<span class="source-line-no">084</span><span id="line-84"></span>
<span class="source-line-no">085</span><span id="line-85"> public static class DummyFilterInitializer extends FilterInitializer {</span>
<span class="source-line-no">086</span><span id="line-86"> @Override</span>
<span class="source-line-no">087</span><span id="line-87"> public void initFilter(FilterContainer container, Configuration conf) {</span>
<span class="source-line-no">088</span><span id="line-88"> container.addFilter("DummyAuth", DummyAuthenticationFilter.class.getName(), null);</span>
<span class="source-line-no">089</span><span id="line-89"> }</span>
<span class="source-line-no">090</span><span id="line-90"> }</span>
<span class="source-line-no">091</span><span id="line-91"></span>
<span class="source-line-no">092</span><span id="line-92"> @BeforeClass</span>
<span class="source-line-no">093</span><span id="line-93"> public static void setUp() throws Exception {</span>
<span class="source-line-no">094</span><span id="line-94"> Configuration conf = new Configuration();</span>
<span class="source-line-no">095</span><span id="line-95"> conf.set(HttpServer.FILTER_INITIALIZERS_PROPERTY, DummyFilterInitializer.class.getName());</span>
<span class="source-line-no">096</span><span id="line-96"> conf.setInt("hbase.http.max.threads", 19); /* acceptors=2 + selectors=16 + request=1 */</span>
<span class="source-line-no">097</span><span id="line-97"> System.setProperty("hadoop.log.dir", BASEDIR); /* needed for /logs */</span>
<span class="source-line-no">098</span><span id="line-98"></span>
<span class="source-line-no">099</span><span id="line-99"> File base = new File(BASEDIR);</span>
<span class="source-line-no">100</span><span id="line-100"> FileUtil.fullyDelete(base);</span>
<span class="source-line-no">101</span><span id="line-101"> base.mkdirs();</span>
<span class="source-line-no">102</span><span id="line-102"> keystoresDir = new File(BASEDIR).getAbsolutePath();</span>
<span class="source-line-no">103</span><span id="line-103"> sslConfDir = KeyStoreTestUtil.getClasspathDir(TestSSLHttpServer.class);</span>
<span class="source-line-no">104</span><span id="line-104"></span>
<span class="source-line-no">105</span><span id="line-105"> KeyStoreTestUtil.setupSSLConfig(keystoresDir, sslConfDir, conf, false);</span>
<span class="source-line-no">106</span><span id="line-106"> Configuration sslConf = KeyStoreTestUtil.getSslConfig();</span>
<span class="source-line-no">107</span><span id="line-107"></span>
<span class="source-line-no">108</span><span id="line-108"> clientSslFactory = new SSLFactory(SSLFactory.Mode.CLIENT, sslConf);</span>
<span class="source-line-no">109</span><span id="line-109"> clientSslFactory.init();</span>
<span class="source-line-no">110</span><span id="line-110"></span>
<span class="source-line-no">111</span><span id="line-111"> server = new HttpServer.Builder().setName("test").addEndpoint(new URI("http://localhost"))</span>
<span class="source-line-no">112</span><span id="line-112"> .addEndpoint(new URI("https://localhost")).setConf(conf)</span>
<span class="source-line-no">113</span><span id="line-113"> .keyPassword(sslConf.get("ssl.server.keystore.keypassword"))</span>
<span class="source-line-no">114</span><span id="line-114"> .keyStore(sslConf.get("ssl.server.keystore.location"),</span>
<span class="source-line-no">115</span><span id="line-115"> sslConf.get("ssl.server.keystore.password"), sslConf.get("ssl.server.keystore.type", "jks"))</span>
<span class="source-line-no">116</span><span id="line-116"> .trustStore(sslConf.get("ssl.server.truststore.location"),</span>
<span class="source-line-no">117</span><span id="line-117"> sslConf.get("ssl.server.truststore.password"),</span>
<span class="source-line-no">118</span><span id="line-118"> sslConf.get("ssl.server.truststore.type", "jks"))</span>
<span class="source-line-no">119</span><span id="line-119"> .build();</span>
<span class="source-line-no">120</span><span id="line-120"> server.addPrivilegedServlet("echo", "/echo", TestHttpServer.EchoServlet.class);</span>
<span class="source-line-no">121</span><span id="line-121"> server.start();</span>
<span class="source-line-no">122</span><span id="line-122"> }</span>
<span class="source-line-no">123</span><span id="line-123"></span>
<span class="source-line-no">124</span><span id="line-124"> @Test</span>
<span class="source-line-no">125</span><span id="line-125"> public void testHttpCookie() throws IOException {</span>
<span class="source-line-no">126</span><span id="line-126"> URL base = new URL("http://" + NetUtils.getHostPortString(server.getConnectorAddress(0)));</span>
<span class="source-line-no">127</span><span id="line-127"> HttpURLConnection conn = (HttpURLConnection) new URL(base, "/echo").openConnection();</span>
<span class="source-line-no">128</span><span id="line-128"></span>
<span class="source-line-no">129</span><span id="line-129"> String header = conn.getHeaderField("Set-Cookie");</span>
<span class="source-line-no">130</span><span id="line-130"> Assert.assertTrue(header != null);</span>
<span class="source-line-no">131</span><span id="line-131"> List&lt;HttpCookie&gt; cookies = HttpCookie.parse(header);</span>
<span class="source-line-no">132</span><span id="line-132"> Assert.assertTrue(!cookies.isEmpty());</span>
<span class="source-line-no">133</span><span id="line-133"> Assert.assertTrue(header.contains("; HttpOnly"));</span>
<span class="source-line-no">134</span><span id="line-134"> Assert.assertTrue("token".equals(cookies.get(0).getValue()));</span>
<span class="source-line-no">135</span><span id="line-135"> }</span>
<span class="source-line-no">136</span><span id="line-136"></span>
<span class="source-line-no">137</span><span id="line-137"> @Test</span>
<span class="source-line-no">138</span><span id="line-138"> public void testHttpsCookie() throws IOException, GeneralSecurityException {</span>
<span class="source-line-no">139</span><span id="line-139"> URL base = new URL("https://" + NetUtils.getHostPortString(server.getConnectorAddress(1)));</span>
<span class="source-line-no">140</span><span id="line-140"> HttpsURLConnection conn = (HttpsURLConnection) new URL(base, "/echo").openConnection();</span>
<span class="source-line-no">141</span><span id="line-141"> conn.setSSLSocketFactory(clientSslFactory.createSSLSocketFactory());</span>
<span class="source-line-no">142</span><span id="line-142"></span>
<span class="source-line-no">143</span><span id="line-143"> String header = conn.getHeaderField("Set-Cookie");</span>
<span class="source-line-no">144</span><span id="line-144"> Assert.assertTrue(header != null);</span>
<span class="source-line-no">145</span><span id="line-145"></span>
<span class="source-line-no">146</span><span id="line-146"> List&lt;HttpCookie&gt; cookies = HttpCookie.parse(header);</span>
<span class="source-line-no">147</span><span id="line-147"> Assert.assertTrue(!cookies.isEmpty());</span>
<span class="source-line-no">148</span><span id="line-148"> Assert.assertTrue(header.contains("; HttpOnly"));</span>
<span class="source-line-no">149</span><span id="line-149"> Assert.assertTrue(cookies.get(0).getSecure());</span>
<span class="source-line-no">150</span><span id="line-150"> Assert.assertTrue("token".equals(cookies.get(0).getValue()));</span>
<span class="source-line-no">151</span><span id="line-151"> }</span>
<span class="source-line-no">152</span><span id="line-152"></span>
<span class="source-line-no">153</span><span id="line-153"> @Test</span>
<span class="source-line-no">154</span><span id="line-154"> public void testHttpsCookieDefaultServlets() throws Exception {</span>
<span class="source-line-no">155</span><span id="line-155"> HttpsURLConnection conn = null;</span>
<span class="source-line-no">156</span><span id="line-156"></span>
<span class="source-line-no">157</span><span id="line-157"> URL base =</span>
<span class="source-line-no">158</span><span id="line-158"> new URL("https://" + NetUtils.getHostPortString(server.getConnectorAddress(1)) + "/");</span>
<span class="source-line-no">159</span><span id="line-159"></span>
<span class="source-line-no">160</span><span id="line-160"> for (String servlet : new String[] { "static", "stacks", "logLevel", "jmx", "logs" }) {</span>
<span class="source-line-no">161</span><span id="line-161"> conn = (HttpsURLConnection) new URL(base, "/" + servlet).openConnection();</span>
<span class="source-line-no">162</span><span id="line-162"> conn.setSSLSocketFactory(clientSslFactory.createSSLSocketFactory());</span>
<span class="source-line-no">163</span><span id="line-163"></span>
<span class="source-line-no">164</span><span id="line-164"> String header = conn.getHeaderField("Set-Cookie");</span>
<span class="source-line-no">165</span><span id="line-165"> Assert.assertTrue(header != null);</span>
<span class="source-line-no">166</span><span id="line-166"> List&lt;HttpCookie&gt; cookies = HttpCookie.parse(header);</span>
<span class="source-line-no">167</span><span id="line-167"> Assert.assertTrue(!cookies.isEmpty());</span>
<span class="source-line-no">168</span><span id="line-168"> Assert.assertTrue(header.contains("; HttpOnly"));</span>
<span class="source-line-no">169</span><span id="line-169"> Assert.assertTrue(cookies.get(0).getSecure());</span>
<span class="source-line-no">170</span><span id="line-170"> Assert.assertTrue("token".equals(cookies.get(0).getValue()));</span>
<span class="source-line-no">171</span><span id="line-171"> }</span>
<span class="source-line-no">172</span><span id="line-172"> }</span>
<span class="source-line-no">173</span><span id="line-173"></span>
<span class="source-line-no">174</span><span id="line-174"> @AfterClass</span>
<span class="source-line-no">175</span><span id="line-175"> public static void cleanup() throws Exception {</span>
<span class="source-line-no">176</span><span id="line-176"> server.stop();</span>
<span class="source-line-no">177</span><span id="line-177"> FileUtil.fullyDelete(new File(BASEDIR));</span>
<span class="source-line-no">178</span><span id="line-178"> KeyStoreTestUtil.cleanupSSLConfig(keystoresDir, sslConfDir);</span>
<span class="source-line-no">179</span><span id="line-179"> clientSslFactory.destroy();</span>
<span class="source-line-no">180</span><span id="line-180"> }</span>
<span class="source-line-no">181</span><span id="line-181">}</span>
</pre>
</div>
</main>
</body>
</html>