7bf45e4989251937dbff531f6c723512acb8ec76
[clamp.git] / src / main / java / org / onap / clamp / clds / config / CamelConfiguration.java
1 /*-
2  * ============LICENSE_START=======================================================
3  * ONAP CLAMP
4  * ================================================================================
5  * Copyright (C) 2018 AT&T Intellectual Property. All rights
6  *                             reserved.
7  * ================================================================================
8  * Licensed under the Apache License, Version 2.0 (the "License");
9  * you may not use this file except in compliance with the License.
10  * You may obtain a copy of the License at
11  *
12  * http://www.apache.org/licenses/LICENSE-2.0
13  *
14  * Unless required by applicable law or agreed to in writing, software
15  * distributed under the License is distributed on an "AS IS" BASIS,
16  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
17  * See the License for the specific language governing permissions and
18  * limitations under the License.
19  * ============LICENSE_END============================================
20  * ===================================================================
21  */
22
23 package org.onap.clamp.clds.config;
24
25 import java.io.IOException;
26 import java.net.URL;
27 import java.security.KeyManagementException;
28 import java.security.KeyStore;
29 import java.security.KeyStoreException;
30 import java.security.NoSuchAlgorithmException;
31 import java.security.cert.CertificateException;
32
33 import javax.net.ssl.SSLContext;
34 import javax.net.ssl.TrustManagerFactory;
35
36 import org.apache.camel.CamelContext;
37 import org.apache.camel.builder.RouteBuilder;
38 import org.apache.camel.component.http4.HttpClientConfigurer;
39 import org.apache.camel.component.http4.HttpComponent;
40 import org.apache.camel.model.rest.RestBindingMode;
41 import org.apache.http.config.Registry;
42 import org.apache.http.config.RegistryBuilder;
43 import org.apache.http.conn.scheme.Scheme;
44 import org.apache.http.conn.scheme.SchemeRegistry;
45 import org.apache.http.conn.socket.ConnectionSocketFactory;
46 import org.apache.http.conn.socket.PlainConnectionSocketFactory;
47 import org.apache.http.conn.ssl.SSLSocketFactory;
48 import org.apache.http.impl.client.HttpClientBuilder;
49 import org.apache.http.impl.conn.BasicHttpClientConnectionManager;
50 import org.onap.clamp.clds.util.ClampVersioning;
51 import org.onap.clamp.clds.util.ResourceFileUtils;
52 import org.onap.clamp.util.PassDecoder;
53 import org.springframework.beans.factory.annotation.Autowired;
54 import org.springframework.core.env.Environment;
55 import org.springframework.stereotype.Component;
56
57 @Component
58 public class CamelConfiguration extends RouteBuilder {
59
60     @Autowired
61     CamelContext camelContext;
62
63     @Autowired
64     private Environment env;
65
66     private void configureDefaultSslProperties() throws IOException {
67         if (env.getProperty("server.ssl.trust-store") != null) {
68             URL storeResource = Thread.currentThread().getContextClassLoader()
69                 .getResource(env.getProperty("server.ssl.trust-store").replaceFirst("classpath:", ""));
70             System.setProperty("javax.net.ssl.trustStore", storeResource.getPath());
71             String keyFile = env.getProperty("clamp.config.keyFile");
72             String trustStorePass = PassDecoder.decode(env.getProperty("server.ssl.trust-store-password"),
73                 keyFile);
74             System.setProperty("javax.net.ssl.trustStorePassword", trustStorePass);
75             System.setProperty("javax.net.ssl.trustStoreType", "jks");
76             System.setProperty("ssl.TrustManagerFactory.algorithm", "PKIX");
77             storeResource = Thread.currentThread().getContextClassLoader()
78                 .getResource(env.getProperty("server.ssl.key-store").replaceFirst("classpath:", ""));
79             System.setProperty("javax.net.ssl.keyStore", storeResource.getPath());
80
81             String keyStorePass = PassDecoder.decode(env.getProperty("server.ssl.key-store-password"),
82                 keyFile);
83             System.setProperty("javax.net.ssl.keyStorePassword", keyStorePass);
84             System.setProperty("javax.net.ssl.keyStoreType", env.getProperty("server.ssl.key-store-type"));
85         }
86     }
87
88     private void registerTrustStore()
89         throws KeyStoreException, NoSuchAlgorithmException, KeyManagementException, CertificateException, IOException {
90         if (env.getProperty("server.ssl.trust-store") != null) {
91             KeyStore truststore = KeyStore.getInstance("JKS");
92             String keyFile = env.getProperty("clamp.config.keyFile");
93             String password = PassDecoder.decode(env.getProperty("server.ssl.trust-store-password"), keyFile);
94             truststore.load(
95                     ResourceFileUtils.getResourceAsStream(env.getProperty("server.ssl.trust-store")),
96                     password.toCharArray());
97
98             TrustManagerFactory trustFactory = TrustManagerFactory.getInstance("PKIX");
99             trustFactory.init(truststore);
100             SSLContext sslcontext = SSLContext.getInstance("TLS");
101             sslcontext.init(null, trustFactory.getTrustManagers(), null);
102             SSLSocketFactory factory = new SSLSocketFactory(sslcontext, SSLSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER);
103             SchemeRegistry registry = new SchemeRegistry();
104             final Scheme scheme = new Scheme("https4", 443, factory);
105             registry.register(scheme);
106             ConnectionSocketFactory plainsf = PlainConnectionSocketFactory.getSocketFactory();
107             HttpComponent http4 = camelContext.getComponent("https4", HttpComponent.class);
108             http4.setHttpClientConfigurer(new HttpClientConfigurer() {
109
110                 @Override
111                 public void configureHttpClient(HttpClientBuilder builder) {
112                     builder.setSSLSocketFactory(factory);
113                     Registry<ConnectionSocketFactory> registry = RegistryBuilder.<ConnectionSocketFactory>create()
114                         .register("https", factory).register("http", plainsf).build();
115                     builder.setConnectionManager(new BasicHttpClientConnectionManager(registry));
116                 }
117             });
118         }
119     }
120
121     @Override
122     public void configure()
123         throws KeyManagementException, KeyStoreException, NoSuchAlgorithmException, CertificateException, IOException {
124         restConfiguration().component("servlet").bindingMode(RestBindingMode.json).jsonDataFormat("clamp-gson")
125             .dataFormatProperty("prettyPrint", "true")// .enableCORS(true)
126             // turn on swagger api-doc
127             .apiContextPath("api-doc").apiVendorExtension(true).apiProperty("api.title", "Clamp Rest API")
128             .apiProperty("api.version", ClampVersioning.getCldsVersionFromProps())
129             .apiProperty("base.path", "/restservices/clds/");
130
131         // camelContext.setTracing(true);
132
133         configureDefaultSslProperties();
134         registerTrustStore();
135     }
136 }