コード例 #1
0
        public void Process(AssertionRequest request)
        {
            var handlers = FederatedAuthentication.ServiceConfiguration.SecurityTokenHandlers;
            var config = new SimpleWrapIssuerConfiguration();
            var values = new Dictionary<String, String>();

            // Read received token
            SecurityToken token = null;
            using (XmlReader reader = XmlReader.Create(new StringReader(request.Assertion)))
            {
                token = handlers.ReadToken(reader);
            }
            ClaimsIdentityCollection claims = handlers.ValidateToken(token);

            // Copy claims
            foreach (var claim in claims[0].Claims)
                values[claim.ClaimType] = claim.Value;
            // TODO
            values[WrapConstants.SimpleWebTokenParameters.Audience] = "http://wrap.resource";

            // Create SWT with the same claims
            SimpleWebToken swt = new SimpleWebToken(values, token.ValidTo, config.SigningCredentials);
            StringBuilder sb = new StringBuilder();
            using (XmlWriter writer = XmlWriter.Create(sb, new XmlWriterSettings() { OmitXmlDeclaration = true }))
            {
                FederatedAuthentication.ServiceConfiguration.SecurityTokenHandlers.WriteToken(writer, swt);
            }

            // Create response
            var response = new AccessTokenResponse();
            response.SetParameter(WrapConstants.Parameters.AccessToken, sb.ToString());
            response.SetParameter(
                WrapConstants.Parameters.AccessTokenExpiresIn,
                Convert.ToUInt64((swt.ValidTo - DateTime.UtcNow).TotalSeconds).ToString());
            Response.WriteResponse(response);
        }
コード例 #2
0
        private static AccessTokenResponse WriteToken(SecurityToken token, Boolean withRefreshToken)
        {
            var responseMessage = new AccessTokenResponse();

            StringBuilder sb = new StringBuilder();
            using (XmlWriter writer = XmlWriter.Create(sb, new XmlWriterSettings() { OmitXmlDeclaration = true }))
            {
                FederatedAuthentication.ServiceConfiguration.SecurityTokenHandlers.WriteToken(writer, token);
            }

            // Set response values
            responseMessage.SetParameter(WrapConstants.Parameters.AccessToken, sb.ToString());
            if (withRefreshToken)
                // TODO: what is a good refresh token?
                responseMessage.SetParameter(WrapConstants.Parameters.RefreshToken, sb.ToString());
            if (token.ValidTo < DateTime.MaxValue)
                responseMessage.SetParameter(
                    WrapConstants.Parameters.AccessTokenExpiresIn,
                    Convert.ToUInt64((token.ValidTo - DateTime.UtcNow).TotalSeconds).ToString(CultureInfo.InvariantCulture));

            Trace.Write("Token valid to: " + token.ValidTo.ToString());

            return responseMessage;
        }