Class MapBasedMethodSecurityMetadataSource
java.lang.Object
org.springframework.security.access.method.AbstractMethodSecurityMetadataSource
org.springframework.security.access.method.AbstractFallbackMethodSecurityMetadataSource
org.springframework.security.access.method.MapBasedMethodSecurityMetadataSource
- All Implemented Interfaces:
org.springframework.aop.framework.AopInfrastructureBean,org.springframework.beans.factory.Aware,org.springframework.beans.factory.BeanClassLoaderAware,MethodSecurityMetadataSource,SecurityMetadataSource
@NullUnmarked
@Deprecated
public class MapBasedMethodSecurityMetadataSource
extends AbstractFallbackMethodSecurityMetadataSource
implements org.springframework.beans.factory.BeanClassLoaderAware
Deprecated.
Stores a list of ConfigAttributes for a method or class signature.
This class is the preferred implementation of MethodSecurityMetadataSource for
XML-based definition of method security metadata. To assist in XML-based definition,
wildcard support is provided.
- Since:
- 2.0
-
Field Summary
FieldsModifier and TypeFieldDescriptionprotected final Map<org.springframework.security.access.method.MapBasedMethodSecurityMetadataSource.RegisteredMethod,List<ConfigAttribute>> Deprecated.Map from RegisteredMethod to ConfigAttribute list.Fields inherited from class org.springframework.security.access.method.AbstractMethodSecurityMetadataSource
logger -
Constructor Summary
ConstructorsConstructorDescriptionDeprecated.MapBasedMethodSecurityMetadataSource(Map<String, List<ConfigAttribute>> methodMap) Deprecated.Creates the MapBasedMethodSecurityMetadataSource from a. -
Method Summary
Modifier and TypeMethodDescriptionvoidaddSecureMethod(Class<?> javaType, Method method, List<ConfigAttribute> attr) Deprecated.Adds configuration attributes for a specific method, for example where the method has been matched using a pointcut expression.voidaddSecureMethod(Class<?> javaType, String mappedName, List<ConfigAttribute> attr) Deprecated.Add configuration attributes for a secure method.protected @Nullable Collection<ConfigAttribute>findAttributes(Class<?> clazz) Deprecated.Implementation does not support class-level attributes.protected @Nullable Collection<ConfigAttribute>findAttributes(Method method, Class<?> targetClass) Deprecated.Will walk the method inheritance tree to find the most specific declaration applicable.Deprecated.Obtains the configuration attributes explicitly defined against this bean.intDeprecated.Returns the size of the method map.voidsetBeanClassLoader(ClassLoader beanClassLoader) Deprecated.Methods inherited from class org.springframework.security.access.method.AbstractFallbackMethodSecurityMetadataSource
getAttributesMethods inherited from class org.springframework.security.access.method.AbstractMethodSecurityMetadataSource
getAttributes, supports
-
Field Details
-
methodMap
protected final Map<org.springframework.security.access.method.MapBasedMethodSecurityMetadataSource.RegisteredMethod,List<ConfigAttribute>> methodMapDeprecated.Map from RegisteredMethod to ConfigAttribute list.
-
-
Constructor Details
-
MapBasedMethodSecurityMetadataSource
public MapBasedMethodSecurityMetadataSource()Deprecated. -
MapBasedMethodSecurityMetadataSource
Deprecated.Creates the MapBasedMethodSecurityMetadataSource from a.- Parameters:
methodMap- map of method names to ConfigAttributes.
-
-
Method Details
-
findAttributes
Deprecated.Implementation does not support class-level attributes.- Specified by:
findAttributesin classAbstractFallbackMethodSecurityMetadataSource- Parameters:
clazz- the target class for the invocation (nevernull)- Returns:
- the security metadata (or null if no metadata applies)
-
findAttributes
Deprecated.Will walk the method inheritance tree to find the most specific declaration applicable.- Specified by:
findAttributesin classAbstractFallbackMethodSecurityMetadataSource- Parameters:
method- the method for the current invocation (nevernull)targetClass- the target class for the invocation (may benull)- Returns:
- the security metadata (or null if no metadata applies)
-
addSecureMethod
Deprecated.Add configuration attributes for a secure method. Mapped method names can end or start with*for matching multiple methods.- Parameters:
javaType- target interface or class the security configuration attribute applies tomappedName- mapped method name, which the javaType has declared or inheritedattr- required authorities associated with the method
-
addSecureMethod
Deprecated.Adds configuration attributes for a specific method, for example where the method has been matched using a pointcut expression. If a match already exists in the map for the method, then the existing match will be retained, so that if this method is called for a more general pointcut it will not override a more specific one which has already been added.This method should only be called during initialization of the
BeanFactory. -
getAllConfigAttributes
Deprecated.Obtains the configuration attributes explicitly defined against this bean.- Specified by:
getAllConfigAttributesin interfaceSecurityMetadataSource- Returns:
- the attributes explicitly defined against this bean
-
setBeanClassLoader
Deprecated.- Specified by:
setBeanClassLoaderin interfaceorg.springframework.beans.factory.BeanClassLoaderAware
-
getMethodMapSize
public int getMethodMapSize()Deprecated.Returns the size of the method map.- Returns:
- map size (for unit tests and diagnostics)
-
use-authorization-managerattribute for<method-security>and<intercept-methods>instead or use annotation-based orAuthorizationManager-based authorization