|
16 | 16 |
|
17 | 17 | package org.springframework.security.rsocket.core;
|
18 | 18 |
|
| 19 | +import java.util.Arrays; |
| 20 | +import java.util.Collections; |
| 21 | +import java.util.List; |
| 22 | + |
19 | 23 | import io.rsocket.ConnectionSetupPayload;
|
20 | 24 | import io.rsocket.Payload;
|
21 | 25 | import io.rsocket.RSocket;
|
|
27 | 31 | import org.mockito.ArgumentCaptor;
|
28 | 32 | import org.mockito.Mock;
|
29 | 33 | import org.mockito.runners.MockitoJUnitRunner;
|
| 34 | +import reactor.core.publisher.Mono; |
| 35 | +import reactor.util.context.Context; |
| 36 | + |
30 | 37 | import org.springframework.http.MediaType;
|
| 38 | +import org.springframework.security.authentication.TestingAuthenticationToken; |
| 39 | +import org.springframework.security.core.context.ReactiveSecurityContextHolder; |
| 40 | +import org.springframework.security.core.context.SecurityContext; |
| 41 | +import org.springframework.security.core.context.SecurityContextImpl; |
31 | 42 | import org.springframework.security.rsocket.api.PayloadExchange;
|
32 | 43 | import org.springframework.security.rsocket.api.PayloadInterceptor;
|
33 |
| -import org.springframework.security.rsocket.core.PayloadInterceptorRSocket; |
34 |
| -import org.springframework.security.rsocket.core.PayloadSocketAcceptor; |
35 |
| -import reactor.core.publisher.Mono; |
36 |
| - |
37 |
| -import java.util.Arrays; |
38 |
| -import java.util.Collections; |
39 |
| -import java.util.List; |
40 | 44 |
|
41 | 45 | import static org.assertj.core.api.Assertions.assertThat;
|
42 | 46 | import static org.assertj.core.api.Assertions.assertThatCode;
|
@@ -144,6 +148,27 @@ public void acceptWhenExplicitMimeTypeThenThenOverrideDefault() {
|
144 | 148 | assertThat(exchange.getDataMimeType()).isEqualTo(MediaType.APPLICATION_JSON);
|
145 | 149 | }
|
146 | 150 |
|
| 151 | + |
| 152 | + @Test |
| 153 | + // gh-8654 |
| 154 | + public void acceptWhenDelegateAcceptRequiresReactiveSecurityContext() { |
| 155 | + when(this.setupPayload.metadataMimeType()).thenReturn(MediaType.TEXT_PLAIN_VALUE); |
| 156 | + when(this.setupPayload.dataMimeType()).thenReturn(MediaType.APPLICATION_JSON_VALUE); |
| 157 | + SecurityContext expectedSecurityContext = new SecurityContextImpl(new TestingAuthenticationToken("user", "password", "ROLE_USER")); |
| 158 | + CaptureSecurityContextSocketAcceptor captureSecurityContext = new CaptureSecurityContextSocketAcceptor(this.rSocket); |
| 159 | + PayloadInterceptor authenticateInterceptor = (exchange, chain) -> { |
| 160 | + Context withSecurityContext = ReactiveSecurityContextHolder.withSecurityContext(Mono.just(expectedSecurityContext)); |
| 161 | + return chain.next(exchange) |
| 162 | + .subscriberContext(withSecurityContext); |
| 163 | + }; |
| 164 | + List<PayloadInterceptor> interceptors = Arrays.asList(authenticateInterceptor); |
| 165 | + this.acceptor = new PayloadSocketAcceptor(captureSecurityContext, interceptors); |
| 166 | + |
| 167 | + this.acceptor.accept(this.setupPayload, this.rSocket).block(); |
| 168 | + |
| 169 | + assertThat(captureSecurityContext.getSecurityContext()).isEqualTo(expectedSecurityContext); |
| 170 | + } |
| 171 | + |
147 | 172 | private PayloadExchange captureExchange() {
|
148 | 173 | when(this.delegate.accept(any(), any())).thenReturn(Mono.just(this.rSocket));
|
149 | 174 | when(this.interceptor.intercept(any(), any())).thenReturn(Mono.empty());
|
|
0 commit comments