This repository has been archived by the owner on Nov 9, 2017. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 57
/
PasswordChangeAction.java
144 lines (121 loc) · 4 KB
/
PasswordChangeAction.java
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
/*
* Copyright 2010, Red Hat, Inc. and individual contributors as indicated by the
* @author tags. See the copyright.txt file in the distribution for a full
* listing of individual contributors.
*
* This is free software; you can redistribute it and/or modify it under the
* terms of the GNU Lesser General Public License as published by the Free
* Software Foundation; either version 2.1 of the License, or (at your option)
* any later version.
*
* This software is distributed in the hope that it will be useful, but WITHOUT
* ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
* FOR A PARTICULAR PURPOSE. See the GNU Lesser General Public License for more
* details.
*
* You should have received a copy of the GNU Lesser General Public License
* along with this software; if not, write to the Free Software Foundation,
* Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA, or see the FSF
* site: http://www.fsf.org.
*/
package org.zanata.action;
import java.io.Serializable;
import javax.validation.constraints.Size;
import org.hibernate.validator.constraints.NotEmpty;
import org.jboss.seam.ScopeType;
import org.jboss.seam.annotations.Begin;
import org.jboss.seam.annotations.End;
import org.jboss.seam.annotations.In;
import org.jboss.seam.annotations.Logger;
import org.jboss.seam.annotations.Name;
import org.jboss.seam.annotations.Scope;
import org.jboss.seam.faces.FacesMessages;
import org.jboss.seam.log.Log;
import org.jboss.seam.security.RunAsOperation;
import org.jboss.seam.security.management.IdentityManager;
import org.jboss.seam.security.management.JpaIdentityStore;
import org.zanata.model.HAccount;
@Name("passwordChange")
@Scope(ScopeType.PAGE)
public class PasswordChangeAction implements Serializable
{
/**
*
*/
private static final long serialVersionUID = 1L;
@In(required = false, value = JpaIdentityStore.AUTHENTICATED_USER)
HAccount authenticatedAccount;
@Logger
Log log;
@In
private IdentityManager identityManager;
private String passwordOld;
private String passwordNew;
private String passwordConfirm;
public void setPasswordOld(String passwordOld)
{
this.passwordOld = passwordOld;
}
@NotEmpty
@Size(min = 6, max = 20)
public String getPasswordOld()
{
return passwordOld;
}
@Begin(join = true)
public void setPasswordNew(String passwordNew)
{
this.passwordNew = passwordNew;
}
@NotEmpty
@Size(min = 6, max = 20)
// @Pattern(regex="(?=^.{6,}$)((?=.*\\d)|(?=.*\\W+))(?![.\\n])(?=.*[A-Z])(?=.*[a-z]).*$",
// message="Password is not secure enough!")
public String getPasswordNew()
{
return passwordNew;
}
@Begin(join = true)
public void setPasswordConfirm(String passwordConfirm)
{
this.passwordConfirm = passwordConfirm;
validatePasswordsMatch();
}
public String getPasswordConfirm()
{
return passwordConfirm;
}
public boolean validatePasswordsMatch()
{
if (passwordNew == null || !passwordNew.equals(passwordConfirm))
{
FacesMessages.instance().addToControl("passwordConfirm", "Passwords do not match");
return false;
}
return true;
}
@End
public String change()
{
if (!validatePasswordsMatch())
return null;
if (!isFirstPasswordChange() && !identityManager.authenticate(authenticatedAccount.getUsername(), passwordOld))
{
FacesMessages.instance().addToControl("passwordOld", "Old password is incorrect, please check and try again.");
return null;
}
new RunAsOperation()
{
public void execute()
{
identityManager.changePassword(authenticatedAccount.getUsername(), getPasswordNew());
}
}.addRole("admin").run();
FacesMessages.instance().add("Your password has been successfully changed.");
return "/profile/view.xhtml";
}
public boolean isFirstPasswordChange()
{
return authenticatedAccount.getPasswordHash() == null;
}
}