Skip to content
体验新版
项目
组织
正在加载...
登录
切换导航
打开侧边栏
LinuxSuRen
jenkins
提交
71f9d5eb
J
jenkins
项目概览
LinuxSuRen
/
jenkins
与 Fork 源项目一致
从无法访问的项目Fork
通知
2
Star
0
Fork
0
代码
文件
提交
分支
Tags
贡献者
分支图
Diff
Issue
0
列表
看板
标记
里程碑
合并请求
0
Wiki
0
Wiki
分析
仓库
DevOps
项目成员
Pages
J
jenkins
项目概览
项目概览
详情
发布
仓库
仓库
文件
提交
分支
标签
贡献者
分支图
比较
Issue
0
Issue
0
列表
看板
标记
里程碑
合并请求
0
合并请求
0
Pages
分析
分析
仓库分析
DevOps
Wiki
0
Wiki
成员
成员
收起侧边栏
关闭侧边栏
动态
分支图
创建新Issue
提交
Issue看板
体验新版 GitCode,发现更多精彩内容 >>
提交
71f9d5eb
编写于
2月 04, 2015
作者:
R
Ryan Campbell
浏览文件
操作
浏览文件
下载
电子邮件补丁
差异文件
[SECURITY-165] Add constants for system-wide usernames
上级
09c04e3b
变更
2
隐藏空白更改
内联
并排
Showing
2 changed file
with
23 addition
and
4 deletion
+23
-4
core/src/main/java/hudson/model/User.java
core/src/main/java/hudson/model/User.java
+8
-2
core/src/main/java/hudson/security/ACL.java
core/src/main/java/hudson/security/ACL.java
+15
-2
未找到文件。
core/src/main/java/hudson/model/User.java
浏览文件 @
71f9d5eb
...
...
@@ -106,11 +106,17 @@ import javax.annotation.Nonnull;
@ExportedBean
public
class
User
extends
AbstractModelObject
implements
AccessControlled
,
DescriptorByNameOwner
,
Saveable
,
Comparable
<
User
>,
ModelObjectWithContextMenu
{
/**
* The username of the 'unknown' user used to avoid null user references.
*/
private
static
final
String
UKNOWN_USERNAME
=
"unknown"
;
/**
* These usernames should not be used by real users logging into Jenkins. Therefore, we prevent
* users with these names from being saved.
*/
private
static
final
String
[]
ILLEGAL_PERSISTED_USERNAMES
=
new
String
[]{
"anonymous"
,
"system"
,
"unknown"
};
private
static
final
String
[]
ILLEGAL_PERSISTED_USERNAMES
=
new
String
[]{
ACL
.
ANONYMOUS_USERNAME
,
ACL
.
SYSTEM_USERNAME
,
UKNOWN_USERNAME
};
private
transient
final
String
id
;
private
volatile
String
fullName
;
...
...
@@ -291,7 +297,7 @@ public class User extends AbstractModelObject implements AccessControlled, Descr
* This is used to avoid null {@link User} instance.
*/
public
static
@Nonnull
User
getUnknown
()
{
return
get
(
"unknown"
);
return
get
(
UKNOWN_USERNAME
);
}
/**
...
...
core/src/main/java/hudson/security/ACL.java
浏览文件 @
71f9d5eb
...
...
@@ -32,6 +32,8 @@ import org.acegisecurity.context.SecurityContextHolder;
import
org.acegisecurity.providers.UsernamePasswordAuthenticationToken
;
import
org.acegisecurity.acls.sid.PrincipalSid
;
import
org.acegisecurity.acls.sid.Sid
;
import
org.kohsuke.accmod.Restricted
;
import
org.kohsuke.accmod.restrictions.NoExternalUse
;
/**
* Gate-keeper that controls access to Hudson's model objects.
...
...
@@ -92,23 +94,34 @@ public abstract class ACL {
}
};
/**
* The username for the anonymous user
*/
@Restricted
(
NoExternalUse
.
class
)
public
static
final
String
ANONYMOUS_USERNAME
=
"anonymous"
;
/**
* {@link Sid} that represents the anonymous unauthenticated users.
* <p>
* {@link HudsonFilter} sets this up, so this sid remains the same
* regardless of the current {@link SecurityRealm} in use.
*/
public
static
final
Sid
ANONYMOUS
=
new
PrincipalSid
(
"anonymous"
);
public
static
final
Sid
ANONYMOUS
=
new
PrincipalSid
(
ANONYMOUS_USERNAME
);
protected
static
final
Sid
[]
AUTOMATIC_SIDS
=
new
Sid
[]{
EVERYONE
,
ANONYMOUS
};
/**
* The username for the system user
*/
@Restricted
(
NoExternalUse
.
class
)
public
static
final
String
SYSTEM_USERNAME
=
"SYSTEM"
;
/**
* {@link Sid} that represents the Hudson itself.
* <p>
* This is used when Hudson is performing computation for itself, instead
* of acting on behalf of an user, such as doing builds.
*/
public
static
final
Authentication
SYSTEM
=
new
UsernamePasswordAuthenticationToken
(
"SYSTEM"
,
"SYSTEM"
);
public
static
final
Authentication
SYSTEM
=
new
UsernamePasswordAuthenticationToken
(
SYSTEM_USERNAME
,
"SYSTEM"
);
/**
* Changes the {@link Authentication} associated with the current thread
...
...
编辑
预览
Markdown
is supported
0%
请重试
或
添加新附件
.
添加附件
取消
You are about to add
0
people
to the discussion. Proceed with caution.
先完成此消息的编辑!
取消
想要评论请
注册
或
登录