1/*
2 * Copyright (c) 2015, 2016, Oracle and/or its affiliates. All rights reserved.
3 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
4 *
5 * This code is free software; you can redistribute it and/or modify it
6 * under the terms of the GNU General Public License version 2 only, as
7 * published by the Free Software Foundation.  Oracle designates this
8 * particular file as subject to the "Classpath" exception as provided
9 * by Oracle in the LICENSE file that accompanied this code.
10 *
11 * This code is distributed in the hope that it will be useful, but WITHOUT
12 * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or
13 * FITNESS FOR A PARTICULAR PURPOSE.  See the GNU General Public License
14 * version 2 for more details (a copy is included in the LICENSE file that
15 * accompanied this code).
16 *
17 * You should have received a copy of the GNU General Public License version
18 * 2 along with this work; if not, write to the Free Software Foundation,
19 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA.
20 *
21 * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA
22 * or visit www.oracle.com if you need additional information or have any
23 * questions.
24 */
25
26package sun.security.util;
27
28import java.security.AlgorithmParameters;
29import java.security.CryptoPrimitive;
30import java.security.Key;
31import java.util.Set;
32import static sun.security.util.AbstractAlgorithmConstraints.getAlgorithms;
33
34/**
35 * Algorithm constraints for legacy algorithms.
36 */
37public class LegacyAlgorithmConstraints extends AbstractAlgorithmConstraints {
38
39    // the known security property, jdk.tls.legacyAlgorithms
40    public static final String PROPERTY_TLS_LEGACY_ALGS =
41            "jdk.tls.legacyAlgorithms";
42
43    private final String[] legacyAlgorithms;
44
45    public LegacyAlgorithmConstraints(String propertyName,
46            AlgorithmDecomposer decomposer) {
47        super(decomposer);
48        legacyAlgorithms = getAlgorithms(propertyName);
49    }
50
51    @Override
52    public final boolean permits(Set<CryptoPrimitive> primitives,
53            String algorithm, AlgorithmParameters parameters) {
54        return checkAlgorithm(legacyAlgorithms, algorithm, decomposer);
55    }
56
57    @Override
58    public final boolean permits(Set<CryptoPrimitive> primitives, Key key) {
59        return true;
60    }
61
62    @Override
63    public final boolean permits(Set<CryptoPrimitive> primitives,
64            String algorithm, Key key, AlgorithmParameters parameters) {
65        return checkAlgorithm(legacyAlgorithms, algorithm, decomposer);
66    }
67
68}
69