Package org.globus.gsi.gssapi
Class GSSConstants
- java.lang.Object
-
- org.globus.gsi.gssapi.GSSConstants
-
public abstract class GSSConstants extends java.lang.ObjectDefines common GSI-GSS constants.
-
-
Field Summary
Fields Modifier and Type Field Description static org.ietf.jgss.OidACCEPT_NO_CLIENT_CERTSContext option.static org.ietf.jgss.OidAUTHZ_REQUIRED_WITH_DELEGATIONContext option.static org.ietf.jgss.OidCHECK_CONTEXT_EXPIRATIONContext option.static org.ietf.jgss.OidDELEGATION_TYPEContext option.static org.ietf.jgss.OidGRIM_POLICY_HANDLERDeprecated.Please useGSSConstants.PROXY_POLICY_HANDLERSoption instead.static intGSI_BIGQuality-of-Protection (QOP) value, indicates large block size support.static org.ietf.jgss.OidGSS_MODEContext option.static org.ietf.jgss.OidMECH_OIDGlobus GSI GSS mechanism Oidstatic org.ietf.jgss.OidPROXY_POLICY_HANDLERSContext option.static org.ietf.jgss.OidRECEIVED_LIMITED_PROXYUsed in inquireByOid method.static org.ietf.jgss.OidREJECT_LIMITED_PROXYContext option.static org.ietf.jgss.OidREQUIRE_CLIENT_AUTHContext option.static org.ietf.jgss.OidTRUSTED_CERTIFICATESContext option.static org.ietf.jgss.OidX509_CERT_CHAINUsed in inquireByOid function.
-
Constructor Summary
Constructors Constructor Description GSSConstants()
-
-
-
Field Detail
-
MECH_OID
public static final org.ietf.jgss.Oid MECH_OID
Globus GSI GSS mechanism Oid
-
GSS_MODE
public static final org.ietf.jgss.Oid GSS_MODE
Context option. It is used to configure the GSS mode. It can be set toGSIConstants.MODE_GSIorGSIConstants.MODE_SSL. By default GSI mode is enabled.
-
REJECT_LIMITED_PROXY
public static final org.ietf.jgss.Oid REJECT_LIMITED_PROXY
Context option. It is used to enable/disable the rejection of limited proxies during authentication. In can be set to eitherBoolean.TRUEorBoolean.FALSE. By default limited proxies are accepted.
-
DELEGATION_TYPE
public static final org.ietf.jgss.Oid DELEGATION_TYPE
Context option. It is used to configure delegation type to be performed either during authentication or using the delegation API. It can be set toGSIConstants.DELEGATION_TYPE_LIMITEDorGSIConstants.DELEGATION_TYPE_FULLBy default limited delegation is performed.
-
CHECK_CONTEXT_EXPIRATION
public static final org.ietf.jgss.Oid CHECK_CONTEXT_EXPIRATION
Context option. It is used to enable/disable context expiration checking for methods likewrap, unwrap, verifyMIC, getMIC. In can be set to eitherBoolean.TRUEorBoolean.FALSE. By default context expiration checking is disabled.
-
REQUIRE_CLIENT_AUTH
public static final org.ietf.jgss.Oid REQUIRE_CLIENT_AUTH
Context option. It is used to enable/disable client authentication on acceptor side. In can be set to eitherBoolean.TRUEorBoolean.FALSE. By default client authentication is enabled.
-
ACCEPT_NO_CLIENT_CERTS
public static final org.ietf.jgss.Oid ACCEPT_NO_CLIENT_CERTS
Context option. It is only used when client authentication is enabled. In can be set to eitherBoolean.TRUEorBoolean.FALSE. If set toBoolean.TRUEa context will be successfully established even though client send no certificates and client authentication was required. If set toBoolean.FALSE, the context establishment will fail if client does not send its certificates and client authentication was requested.
-
GRIM_POLICY_HANDLER
public static final org.ietf.jgss.Oid GRIM_POLICY_HANDLER
Deprecated.Please useGSSConstants.PROXY_POLICY_HANDLERSoption instead.Context option. It is used to set a policy handler for GRIM credentials. The value is an instance ofProxyPolicyHandler
-
PROXY_POLICY_HANDLERS
public static final org.ietf.jgss.Oid PROXY_POLICY_HANDLERS
Context option. It is used to pass a set of proxy policy handlers. The value if aMaptype. It contains mappings of proxy policy language oids and instances ofProxyPolicyHandler
-
TRUSTED_CERTIFICATES
public static final org.ietf.jgss.Oid TRUSTED_CERTIFICATES
Context option. It is used to set a list of trusted certificates to use during authentication (by default, the trusted certificates are loaded from a standard location) The value is an instance ofTrustedCertificates
-
X509_CERT_CHAIN
public static final org.ietf.jgss.Oid X509_CERT_CHAIN
Used in inquireByOid function. Returns the certificate chain.
-
RECEIVED_LIMITED_PROXY
public static final org.ietf.jgss.Oid RECEIVED_LIMITED_PROXY
Used in inquireByOid method. Retuns if peer presented a limited credential
-
AUTHZ_REQUIRED_WITH_DELEGATION
public static final org.ietf.jgss.Oid AUTHZ_REQUIRED_WITH_DELEGATION
Context option. It is set to a Boolean value and if false, client authorization requirement with delegation is disabled. By default, client side authorization (to authorize the server) is required for delegation of credentials.
-
GSI_BIG
public static final int GSI_BIG
Quality-of-Protection (QOP) value, indicates large block size support. Can be passed towrapor set byunwrapmethods- See Also:
- Constant Field Values
-
-