org.springframework.security.access.prepost
Class PostInvocationAdviceProvider
java.lang.Object
org.springframework.security.access.prepost.PostInvocationAdviceProvider
- All Implemented Interfaces:
- AfterInvocationProvider
public class PostInvocationAdviceProvider
- extends java.lang.Object
- implements AfterInvocationProvider
AfterInvocationProvider which delegates to a PostInvocationAuthorizationAdvice
instance
passing it the PostInvocationAttribute created from @PostAuthorize and @PostFilter annotations.
- Since:
- 3.0
Field Summary |
protected org.apache.commons.logging.Log |
logger
|
Method Summary |
java.lang.Object |
decide(Authentication authentication,
java.lang.Object object,
java.util.Collection<ConfigAttribute> config,
java.lang.Object returnedObject)
|
boolean |
supports(java.lang.Class<?> clazz)
Indicates whether the AfterInvocationProvider is able to provide "after invocation"
processing for the indicated secured object type. |
boolean |
supports(ConfigAttribute attribute)
Indicates whether this AfterInvocationProvider is able to participate in a decision
involving the passed ConfigAttribute . |
Methods inherited from class java.lang.Object |
clone, equals, finalize, getClass, hashCode, notify, notifyAll, toString, wait, wait, wait |
logger
protected final org.apache.commons.logging.Log logger
PostInvocationAdviceProvider
public PostInvocationAdviceProvider(PostInvocationAuthorizationAdvice postAdvice)
decide
public java.lang.Object decide(Authentication authentication,
java.lang.Object object,
java.util.Collection<ConfigAttribute> config,
java.lang.Object returnedObject)
throws AccessDeniedException
- Specified by:
decide
in interface AfterInvocationProvider
- Throws:
AccessDeniedException
supports
public boolean supports(ConfigAttribute attribute)
- Description copied from interface:
AfterInvocationProvider
- Indicates whether this
AfterInvocationProvider
is able to participate in a decision
involving the passed ConfigAttribute
.This allows the
AbstractSecurityInterceptor
to check every configuration attribute can be consumed by the
configured AccessDecisionManager
and/or RunAsManager
and/or
AccessDecisionManager
.
- Specified by:
supports
in interface AfterInvocationProvider
- Parameters:
attribute
- a configuration attribute that has been configured against the
AbstractSecurityInterceptor
- Returns:
- true if this
AfterInvocationProvider
can support the passed configuration attribute
supports
public boolean supports(java.lang.Class<?> clazz)
- Description copied from interface:
AfterInvocationProvider
- Indicates whether the
AfterInvocationProvider
is able to provide "after invocation"
processing for the indicated secured object type.
- Specified by:
supports
in interface AfterInvocationProvider
- Parameters:
clazz
- the class of secure object that is being queried
- Returns:
- true if the implementation can process the indicated class