Class GetEffectiveRightsRequestControl


  • public class GetEffectiveRightsRequestControl
    extends Control
    This class partially implements the geteffectiverights control as defined in draft-ietf-ldapext-acl-model-08.txt. The main differences are: - The response control is not supported. Instead the dseecompat geteffectiverights control implementation creates attributes containing right information strings and adds those attributes to the entry being returned. The attribute type names are dynamically created; see the dseecompat's AciGetEffectiveRights class for details. - The dseecompat implementation allows additional attribute types in the request control for which rights information can be returned. These are known as the specified attribute types. The dseecompat request control value is the following:
      GetRightsControl ::= SEQUENCE {
        authzId    authzId
        attributes  SEQUENCE OF AttributeType
      }
    
       -- Only the "dn:DN form is supported.
    
     
    • Constructor Detail

      • GetEffectiveRightsRequestControl

        public GetEffectiveRightsRequestControl​(DN authzDN,
                                                List<AttributeType> attrs)
        Create a new geteffectiverights control with the specified authzDN and an attribute list.
        Parameters:
        authzDN - The authzDN.
        attrs - The list of additional attributes to be returned.
      • GetEffectiveRightsRequestControl

        public GetEffectiveRightsRequestControl​(boolean isCritical,
                                                DN authzDN,
                                                List<AttributeType> attrs)
        Create a new geteffectiverights control with the specified authzDN and an attribute list.
        Parameters:
        isCritical - Indicates whether this control should be considered critical in processing the request.
        authzDN - The authzDN.
        attrs - The list of additional attributes to be returned.
      • GetEffectiveRightsRequestControl

        public GetEffectiveRightsRequestControl​(boolean isCritical,
                                                String authzDN,
                                                List<String> attrs)
        Create a new geteffectiverights control with the specified raw authzDN and an attribute list.
        Parameters:
        isCritical - Indicates whether this control should be considered critical in processing the request.
        authzDN - The authzDN.
        attrs - The list of additional attributes to be returned.
    • Method Detail

      • writeValue

        public void writeValue​(ASN1Writer writer)
                        throws IOException
        Description copied from class: Control
        Writes this control's value to an ASN.1 writer. The value (if any) must be written as an ASN1OctetString.
        Specified by:
        writeValue in class Control
        Parameters:
        writer - The ASN.1 writer to use.
        Throws:
        IOException - If a problem occurs while writing to the stream.
      • getAuthzDN

        public DN getAuthzDN()
        Return the authzDN parsed from the control.
        Returns:
        The DN representing the authzId.
      • getAttributes

        public List<AttributeType> getAttributes()
        Return the requested additional attributes parsed from the control. Known as the specified attributes.
        Returns:
        The list containing any additional attributes to return rights about.