diff --git a/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandler.java b/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandler.java new file mode 100644 index 0000000000..254f41842b --- /dev/null +++ b/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandler.java @@ -0,0 +1,45 @@ +/* + * + * * Copyright 2002-2017 the original author or authors. + * * + * * Licensed under the Apache License, Version 2.0 (the "License"); + * * you may not use this file except in compliance with the License. + * * You may obtain a copy of the License at + * * + * * http://www.apache.org/licenses/LICENSE-2.0 + * * + * * Unless required by applicable law or agreed to in writing, software + * * distributed under the License is distributed on an "AS IS" BASIS, + * * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * * See the License for the specific language governing permissions and + * * limitations under the License. + * + */ + +package org.springframework.security.web.server.authentication; + +import org.springframework.security.core.AuthenticationException; +import org.springframework.security.web.server.AuthenticationEntryPoint; +import org.springframework.security.web.server.WebFilterExchange; +import org.springframework.util.Assert; +import reactor.core.publisher.Mono; + +/** + * @author Rob Winch + * @since 5.0 + */ +public class AuthenticationEntryPointFailureHandler implements AuthenticationFailureHandler { + private final AuthenticationEntryPoint authenticationEntryPoint; + + public AuthenticationEntryPointFailureHandler( + AuthenticationEntryPoint authenticationEntryPoint) { + Assert.notNull(authenticationEntryPoint, "authenticationEntryPoint cannot be null"); + this.authenticationEntryPoint = authenticationEntryPoint; + } + + @Override + public Mono onAuthenticationFailure(WebFilterExchange webFilterExchange, + AuthenticationException exception) { + return this.authenticationEntryPoint.commence(webFilterExchange.getExchange(), exception); + } +} diff --git a/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationFailureHandler.java b/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationFailureHandler.java new file mode 100644 index 0000000000..ffe1598efb --- /dev/null +++ b/webflux/src/main/java/org/springframework/security/web/server/authentication/AuthenticationFailureHandler.java @@ -0,0 +1,33 @@ +/* + * + * * Copyright 2002-2017 the original author or authors. + * * + * * Licensed under the Apache License, Version 2.0 (the "License"); + * * you may not use this file except in compliance with the License. + * * You may obtain a copy of the License at + * * + * * http://www.apache.org/licenses/LICENSE-2.0 + * * + * * Unless required by applicable law or agreed to in writing, software + * * distributed under the License is distributed on an "AS IS" BASIS, + * * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * * See the License for the specific language governing permissions and + * * limitations under the License. + * + */ + +package org.springframework.security.web.server.authentication; + +import org.springframework.security.core.AuthenticationException; +import reactor.core.publisher.Mono; + +import org.springframework.security.core.Authentication; +import org.springframework.security.web.server.WebFilterExchange; + +/** + * @author Rob Winch + * @since 5.0 + */ +public interface AuthenticationFailureHandler { + Mono onAuthenticationFailure(WebFilterExchange webFilterExchange, AuthenticationException exception); +} diff --git a/webflux/src/test/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandlerTests.java b/webflux/src/test/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandlerTests.java new file mode 100644 index 0000000000..9c941bddd2 --- /dev/null +++ b/webflux/src/test/java/org/springframework/security/web/server/authentication/AuthenticationEntryPointFailureHandlerTests.java @@ -0,0 +1,70 @@ +/* + * + * * Copyright 2002-2017 the original author or authors. + * * + * * Licensed under the Apache License, Version 2.0 (the "License"); + * * you may not use this file except in compliance with the License. + * * You may obtain a copy of the License at + * * + * * http://www.apache.org/licenses/LICENSE-2.0 + * * + * * Unless required by applicable law or agreed to in writing, software + * * distributed under the License is distributed on an "AS IS" BASIS, + * * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. + * * See the License for the specific language governing permissions and + * * limitations under the License. + * + */ + +package org.springframework.security.web.server.authentication; + +import org.junit.Test; +import org.junit.runner.RunWith; +import org.mockito.InjectMocks; +import org.mockito.Mock; +import org.mockito.runners.MockitoJUnitRunner; +import reactor.core.publisher.Mono; + +import org.springframework.security.authentication.BadCredentialsException; +import org.springframework.security.web.server.AuthenticationEntryPoint; +import org.springframework.security.web.server.WebFilterExchange; +import org.springframework.web.server.ServerWebExchange; +import org.springframework.web.server.WebFilterChain; + +import static org.assertj.core.api.Assertions.assertThat; +import static org.mockito.Mockito.when; + +/** + * @author Rob Winch + * @since 5.0 + */ +@RunWith(MockitoJUnitRunner.class) +public class AuthenticationEntryPointFailureHandlerTests { + @Mock + private AuthenticationEntryPoint authenticationEntryPoint; + @Mock + private ServerWebExchange exchange; + @Mock + private WebFilterChain chain; + + @InjectMocks + private WebFilterExchange filterExchange; + + @InjectMocks + private AuthenticationEntryPointFailureHandler handler; + + @Test(expected = IllegalArgumentException.class) + public void constructorWhenNullEntryPointThenException() { + this.authenticationEntryPoint = null; + new AuthenticationEntryPointFailureHandler(this.authenticationEntryPoint); + } + + @Test + public void onAuthenticationFailureWhenInvokedThenDelegatesToEntryPoint() { + Mono result = Mono.empty(); + BadCredentialsException e = new BadCredentialsException("Failed"); + when(this.authenticationEntryPoint.commence(this.exchange, e)).thenReturn(result); + + assertThat(this.handler.onAuthenticationFailure(this.filterExchange, e)).isEqualTo(result); + } +}