Class TransportCertValidationFilter
java.lang.Object
org.forgerock.openig.fapi.certificate.TransportCertValidationFilter
- All Implemented Interfaces:
Filter
Filter responsible for validating the inbound request's TLS transport certificate, as
found in the ClientCertificateFapiContext.
Note that this filter should be used in flows where, the JWKs to verify the certificate against are obtained from the
ApiClient associated with the registration request, present on the RegistrationRequestFapiContext.
This filter is not expected to be instantiated directly as it is managed as part of the core FAPI Filter
chains e.g. FapiTokenFilterChainHeaplet.
-
Constructor Summary
ConstructorsConstructorDescriptionTransportCertValidationFilter(TransportCertValidator transportCertValidator) TransportCertValidationFilterconstructor. -
Method Summary
-
Constructor Details
-
TransportCertValidationFilter
TransportCertValidationFilterconstructor.- Parameters:
transportCertValidator-TransportCertValidatorto validate a certificate against a JWK Set
-
-
Method Details
-
filter
public Promise<Response,NeverThrowsException> filter(Context context, Request request, Handler next) Description copied from interface:FilterFilters the request and/or response of an exchange. To pass the request to the next filter or handler in the chain, the filter callsnext.handle(context, request).This method may elect not to pass the request to the next filter or handler, and instead handle the request itself. It can achieve this by merely avoiding a call to
next.handle(context, request)and creating its own response object. The filter is also at liberty to replace a response with another of its own by intercepting the response returned by the next handler.
-