aboutsummaryrefslogtreecommitdiff
path: root/src/org/traccar/api/SecurityRequestFilter.java
diff options
context:
space:
mode:
authorAnton Tananaev <anton.tananaev@gmail.com>2015-12-01 16:28:14 +1300
committerAnton Tananaev <anton.tananaev@gmail.com>2015-12-01 16:28:14 +1300
commitf748f065a01fa984a41ca679ca05bcff97769b25 (patch)
tree88f75bea9ff0143e100002e8788d850783db8499 /src/org/traccar/api/SecurityRequestFilter.java
parent1742c5a6e9e5cf6d6f2d22278fa5d6600e4b7988 (diff)
downloadtraccar-server-f748f065a01fa984a41ca679ca05bcff97769b25.tar.gz
traccar-server-f748f065a01fa984a41ca679ca05bcff97769b25.tar.bz2
traccar-server-f748f065a01fa984a41ca679ca05bcff97769b25.zip
Add session resource for authentication
Diffstat (limited to 'src/org/traccar/api/SecurityRequestFilter.java')
-rw-r--r--src/org/traccar/api/SecurityRequestFilter.java12
1 files changed, 12 insertions, 0 deletions
diff --git a/src/org/traccar/api/SecurityRequestFilter.java b/src/org/traccar/api/SecurityRequestFilter.java
index 63295a8b7..e6c02bfc4 100644
--- a/src/org/traccar/api/SecurityRequestFilter.java
+++ b/src/org/traccar/api/SecurityRequestFilter.java
@@ -16,10 +16,12 @@
package org.traccar.api;
import org.traccar.Context;
+import org.traccar.api.resource.SessionResource;
import org.traccar.model.User;
import java.nio.charset.Charset;
import java.sql.SQLException;
+import javax.servlet.http.HttpServletRequest;
import javax.ws.rs.WebApplicationException;
import javax.ws.rs.container.ContainerRequestContext;
import javax.ws.rs.container.ContainerRequestFilter;
@@ -41,8 +43,18 @@ public class SecurityRequestFilter implements ContainerRequestFilter {
return null;
}
+ @javax.ws.rs.core.Context
+ private HttpServletRequest req;
+
@Override
public void filter(ContainerRequestContext requestContext) {
+ if (requestContext.getUriInfo().getPath().equals("session")) {
+ return;
+ }
+
+ long userId = (Long) req.getSession().getAttribute(SessionResource.USER_ID_KEY);
+ // TODO use session
+
try {
String[] auth = decodeBasicAuth(requestContext.getHeaderString(AUTHORIZATION_HEADER));
User user = Context.getDataManager().login(auth[0], auth[1]);