SecurityContextSecurityTokenAuthenticator.cs 1.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748
  1. //-----------------------------------------------------------------------------
  2. // Copyright (c) Microsoft Corporation. All rights reserved.
  3. //-----------------------------------------------------------------------------
  4. namespace System.ServiceModel.Security.Tokens
  5. {
  6. using System;
  7. using System.ServiceModel;
  8. using System.Collections.ObjectModel;
  9. using System.IdentityModel.Selectors;
  10. using System.IdentityModel.Tokens;
  11. using System.IdentityModel.Policy;
  12. using System.Xml;
  13. public class SecurityContextSecurityTokenAuthenticator : SecurityTokenAuthenticator
  14. {
  15. public SecurityContextSecurityTokenAuthenticator()
  16. : base()
  17. { }
  18. protected override bool CanValidateTokenCore(SecurityToken token)
  19. {
  20. return (token is SecurityContextSecurityToken);
  21. }
  22. protected override ReadOnlyCollection<IAuthorizationPolicy> ValidateTokenCore(SecurityToken token)
  23. {
  24. SecurityContextSecurityToken sct = (SecurityContextSecurityToken)token;
  25. if (!IsTimeValid(sct))
  26. {
  27. this.ThrowExpiredContextFaultException(sct.ContextId, sct);
  28. }
  29. return sct.AuthorizationPolicies;
  30. }
  31. void ThrowExpiredContextFaultException(UniqueId contextId, SecurityContextSecurityToken sct)
  32. {
  33. throw DiagnosticUtility.ExceptionUtility.ThrowHelperWarning(new SecurityContextTokenValidationException(SR.GetString(SR.SecurityContextExpired, contextId, sct.KeyGeneration == null ? "none" : sct.KeyGeneration.ToString())));
  34. }
  35. bool IsTimeValid(SecurityContextSecurityToken sct)
  36. {
  37. DateTime utcNow = DateTime.UtcNow;
  38. return (sct.ValidFrom <= utcNow && sct.ValidTo >= utcNow && sct.KeyEffectiveTime <= utcNow);
  39. }
  40. }
  41. }