/* * Copyright 2016 Red Hat, Inc. and/or its affiliates * and other contributors as indicated by the @author tags. * * Licensed under the Apache License, Version 2.0 (the "License"); * you may not use this file except in compliance with the License. * You may obtain a copy of the License at * * http://www.apache.org/licenses/LICENSE-2.0 * * Unless required by applicable law or agreed to in writing, software * distributed under the License is distributed on an "AS IS" BASIS, * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. * See the License for the specific language governing permissions and * limitations under the License. */ package org.keycloak.models.cache.infinispan.authorization; import org.infinispan.Cache; import org.jboss.logging.Logger; import org.keycloak.Config; import org.keycloak.authorization.AuthorizationProvider; import org.keycloak.cluster.ClusterEvent; import org.keycloak.cluster.ClusterProvider; import org.keycloak.connections.infinispan.InfinispanConnectionProvider; import org.keycloak.models.KeycloakSession; import org.keycloak.models.KeycloakSessionFactory; import org.keycloak.models.cache.CacheRealmProvider; import org.keycloak.models.cache.CacheRealmProviderFactory; import org.keycloak.models.cache.authorization.CachedStoreFactoryProvider; import org.keycloak.models.cache.authorization.CachedStoreProviderFactory; import org.keycloak.models.cache.infinispan.RealmCacheManager; import org.keycloak.models.cache.infinispan.RealmCacheSession; import org.keycloak.models.cache.infinispan.entities.Revisioned; import org.keycloak.models.cache.infinispan.events.InvalidationEvent; /** * @author <a href="mailto:bill@burkecentral.com">Bill Burke</a> * @author <a href="mailto:sthorger@redhat.com">Stian Thorgersen</a> */ public class InfinispanCacheStoreFactoryProviderFactory implements CachedStoreProviderFactory { private static final Logger log = Logger.getLogger(InfinispanCacheStoreFactoryProviderFactory.class); public static final String AUTHORIZATION_CLEAR_CACHE_EVENTS = "AUTHORIZATION_CLEAR_CACHE_EVENTS"; protected volatile StoreFactoryCacheManager storeCache; @Override public CachedStoreFactoryProvider create(KeycloakSession session) { lazyInit(session); return new StoreFactoryCacheSession(storeCache, session); } private void lazyInit(KeycloakSession session) { if (storeCache == null) { synchronized (this) { if (storeCache == null) { Cache<String, Revisioned> cache = session.getProvider(InfinispanConnectionProvider.class).getCache(InfinispanConnectionProvider.AUTHORIZATION_CACHE_NAME); Cache<String, Long> revisions = session.getProvider(InfinispanConnectionProvider.class).getCache(InfinispanConnectionProvider.AUTHORIZATION_REVISIONS_CACHE_NAME); storeCache = new StoreFactoryCacheManager(cache, revisions); ClusterProvider cluster = session.getProvider(ClusterProvider.class); cluster.registerListener(ClusterProvider.ALL, (ClusterEvent event) -> { if (event instanceof InvalidationEvent) { InvalidationEvent invalidationEvent = (InvalidationEvent) event; storeCache.invalidationEventReceived(invalidationEvent); } }); cluster.registerListener(AUTHORIZATION_CLEAR_CACHE_EVENTS, (ClusterEvent event) -> { storeCache.clear(); }); log.debug("Registered cluster listeners"); } } } } @Override public void init(Config.Scope config) { } @Override public void postInit(KeycloakSessionFactory factory) { } @Override public void close() { } @Override public String getId() { return "default"; } }