Package flumotion :: Package component :: Package bouncers :: Module htpasswdcrypt
[hide private]

Source Code for Module flumotion.component.bouncers.htpasswdcrypt

 1  # -*- Mode: Python; test-case-name: flumotion.test.test_htpasswdcrypt -*- 
 2  # vi:si:et:sw=4:sts=4:ts=4 
 3  # 
 4  # Flumotion - a streaming media server 
 5  # Copyright (C) 2004,2005,2006,2007 Fluendo, S.L. (www.fluendo.com). 
 6  # All rights reserved. 
 7   
 8  # This file may be distributed and/or modified under the terms of 
 9  # the GNU General Public License version 2 as published by 
10  # the Free Software Foundation. 
11  # This file is distributed without any warranty; without even the implied 
12  # warranty of merchantability or fitness for a particular purpose. 
13  # See "LICENSE.GPL" in the source distribution for more information. 
14   
15  # Licensees having purchased or holding a valid Flumotion Advanced 
16  # Streaming Server license may use this file in accordance with the 
17  # Flumotion Advanced Streaming Server Commercial License Agreement. 
18  # See "LICENSE.Flumotion" in the source distribution for more information. 
19   
20  # Headers in this file shall remain intact. 
21   
22  """ 
23  an htpasswd-backed bouncer with crypt passwords 
24  """ 
25   
26  import md5 
27  import random 
28   
29  from twisted.python import components 
30  from twisted.cred import error 
31  from twisted.internet import defer 
32   
33  from flumotion.common import interfaces, keycards, log, config 
34  from flumotion.component import component 
35  from flumotion.component.bouncers import bouncer 
36  from flumotion.twisted import credentials, checkers 
37   
38  __all__ = ['HTPasswdCrypt'] 
39   
40 -class HTPasswdCrypt(bouncer.ChallengeResponseBouncer):
41 42 logCategory = 'htpasswdcrypt' 43 # challenger type first, because it's more secure thus preferable 44 keycardClasses = (keycards.KeycardUACPCC, keycards.KeycardUACPP) 45 challengeResponseClasses = (keycards.KeycardUACPCC,) 46
47 - def do_setup(self):
48 conf = self.config 49 50 # we need either a filename or data 51 filename = None 52 data = None 53 props = conf['properties'] 54 if props.has_key('filename'): 55 filename = props['filename'] 56 self.debug('using file %s for passwords', filename) 57 elif props.has_key('data'): 58 data = props['data'] 59 self.debug('using in-line data for passwords') 60 else: 61 return defer.fail(config.ConfigError( 62 'HTPasswdCrypt needs either a <data> or <filename> entry')) 63 # FIXME: generalize to a start method, possibly linked to mood 64 if filename: 65 try: 66 lines = open(filename).readlines() 67 except IOError, e: 68 return defer.fail(config.ConfigError(str(e))) 69 else: 70 lines = data.split("\n") 71 72 self.setChecker(checkers.CryptChecker()) 73 for line in lines: 74 if not ':' in line: continue 75 # when coming from a file, it ends in \n, so strip. 76 # for data, we already splitted, so no \n, but strip is fine. 77 name, cryptPassword = line.strip().split(':') 78 self.addUser(name, cryptPassword[:2], cryptPassword) 79 80 self.debug('parsed %s, %d lines' % (filename or '<memory>', 81 len(lines))) 82 83 return defer.succeed(None)
84