You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@river.apache.org by si...@apache.org on 2010/12/24 22:05:20 UTC

svn commit: r1052638 [2/3] - in /incubator/river/site/trunk/content/river/doc/api/net/jini/jeri/kerberos: ./ class-use/

Added: incubator/river/site/trunk/content/river/doc/api/net/jini/jeri/kerberos/KerberosServerEndpoint.html
URL: http://svn.apache.org/viewvc/incubator/river/site/trunk/content/river/doc/api/net/jini/jeri/kerberos/KerberosServerEndpoint.html?rev=1052638&view=auto
==============================================================================
--- incubator/river/site/trunk/content/river/doc/api/net/jini/jeri/kerberos/KerberosServerEndpoint.html (added)
+++ incubator/river/site/trunk/content/river/doc/api/net/jini/jeri/kerberos/KerberosServerEndpoint.html Fri Dec 24 21:05:20 2010
@@ -0,0 +1,1241 @@
+<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
+<!--NewPage-->
+<HTML>
+<HEAD>
+<!-- Generated by javadoc (build 1.5.0_15) on Mon Mar 08 17:46:20 EST 2010 -->
+<TITLE>
+KerberosServerEndpoint (Apache River v2.1.2-SNAPSHOT API Documentation)
+</TITLE>
+
+<META NAME="keywords" CONTENT="net.jini.jeri.kerberos.KerberosServerEndpoint class">
+
+<LINK REL ="stylesheet" TYPE="text/css" HREF="../../../../stylesheet.css" TITLE="Style">
+
+<SCRIPT type="text/javascript">
+function windowTitle()
+{
+    parent.document.title="KerberosServerEndpoint (Apache River v2.1.2-SNAPSHOT API Documentation)";
+}
+</SCRIPT>
+<NOSCRIPT>
+</NOSCRIPT>
+
+</HEAD>
+
+<BODY BGCOLOR="white" onload="windowTitle();">
+
+
+<!-- ========= START OF TOP NAVBAR ======= -->
+<A NAME="navbar_top"><!-- --></A>
+<A HREF="#skip-navbar_top" title="Skip navigation links"></A>
+<TABLE BORDER="0" WIDTH="100%" CELLPADDING="1" CELLSPACING="0" SUMMARY="">
+<TR>
+<TD COLSPAN=2 BGCOLOR="#EEEEFF" CLASS="NavBarCell1">
+<A NAME="navbar_top_firstrow"><!-- --></A>
+<TABLE BORDER="0" CELLPADDING="0" CELLSPACING="3" SUMMARY="">
+  <TR ALIGN="center" VALIGN="top">
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../overview-summary.html"><FONT CLASS="NavBarFont1"><B>Overview</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="package-summary.html"><FONT CLASS="NavBarFont1"><B>Package</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#FFFFFF" CLASS="NavBarCell1Rev"> &nbsp;<FONT CLASS="NavBarFont1Rev"><B>Class</B></FONT>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="class-use/KerberosServerEndpoint.html"><FONT CLASS="NavBarFont1"><B>Use</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="package-tree.html"><FONT CLASS="NavBarFont1"><B>Tree</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../deprecated-list.html"><FONT CLASS="NavBarFont1"><B>Deprecated</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../index-all.html"><FONT CLASS="NavBarFont1"><B>Index</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../help-doc.html"><FONT CLASS="NavBarFont1"><B>Help</B></FONT></A>&nbsp;</TD>
+  </TR>
+</TABLE>
+</TD>
+<TD ALIGN="right" VALIGN="top" ROWSPAN=3><EM>
+</EM>
+</TD>
+</TR>
+
+<TR>
+<TD BGCOLOR="white" CLASS="NavBarCell2"><FONT SIZE="-2">
+&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><B>PREV CLASS</B></A>&nbsp;
+&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosTrustVerifier.html" title="class in net.jini.jeri.kerberos"><B>NEXT CLASS</B></A></FONT></TD>
+<TD BGCOLOR="white" CLASS="NavBarCell2"><FONT SIZE="-2">
+  <A HREF="../../../../index.html?net/jini/jeri/kerberos/KerberosServerEndpoint.html" target="_top"><B>FRAMES</B></A>  &nbsp;
+&nbsp;<A HREF="KerberosServerEndpoint.html" target="_top"><B>NO FRAMES</B></A>  &nbsp;
+&nbsp;<SCRIPT type="text/javascript">
+  <!--
+  if(window==top) {
+    document.writeln('<A HREF="../../../../allclasses-noframe.html"><B>All Classes</B></A>');
+  }
+  //-->
+</SCRIPT>
+<NOSCRIPT>
+  <A HREF="../../../../allclasses-noframe.html"><B>All Classes</B></A>
+</NOSCRIPT>
+
+
+</FONT></TD>
+</TR>
+<TR>
+<TD VALIGN="top" CLASS="NavBarCell3"><FONT SIZE="-2">
+  SUMMARY:&nbsp;NESTED&nbsp;|&nbsp;FIELD&nbsp;|&nbsp;CONSTR&nbsp;|&nbsp;<A HREF="#method_summary">METHOD</A></FONT></TD>
+<TD VALIGN="top" CLASS="NavBarCell3"><FONT SIZE="-2">
+DETAIL:&nbsp;FIELD&nbsp;|&nbsp;CONSTR&nbsp;|&nbsp;<A HREF="#method_detail">METHOD</A></FONT></TD>
+</TR>
+</TABLE>
+<A NAME="skip-navbar_top"></A>
+<!-- ========= END OF TOP NAVBAR ========= -->
+
+<HR>
+<!-- ======== START OF CLASS DATA ======== -->
+<H2>
+<FONT SIZE="-1">
+net.jini.jeri.kerberos</FONT>
+<BR>
+Class KerberosServerEndpoint</H2>
+<PRE>
+<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">java.lang.Object</A>
+  <IMG SRC="../../../../resources/inherit.gif" ALT="extended by "><B>net.jini.jeri.kerberos.KerberosServerEndpoint</B>
+</PRE>
+<DL>
+<DT><B>All Implemented Interfaces:</B> <DD><A HREF="../../../../net/jini/jeri/ServerCapabilities.html" title="interface in net.jini.jeri">ServerCapabilities</A>, <A HREF="../../../../net/jini/jeri/ServerEndpoint.html" title="interface in net.jini.jeri">ServerEndpoint</A></DD>
+</DL>
+<HR>
+<DL>
+<DT><PRE>public final class <B>KerberosServerEndpoint</B><DT>extends <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A><DT>implements <A HREF="../../../../net/jini/jeri/ServerEndpoint.html" title="interface in net.jini.jeri">ServerEndpoint</A></DL>
+</PRE>
+
+<P>
+A <A HREF="../../../../net/jini/jeri/ServerEndpoint.html" title="interface in net.jini.jeri"><CODE>ServerEndpoint</CODE></A> implementation that uses Kerberos as the
+ underlying network security protocol to support security related
+ invocation constraints for remote requests.  Instances of this
+ class are referred to as the server endpoints of the Kerberos
+ provider, while instances of <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A> are referred
+ to as the endpoints of the provider. <p>
+
+ Instances of this class are intended to be created for use with the
+ <A HREF="../../../../net/jini/jeri/BasicJeriExporter.html" title="class in net.jini.jeri"><CODE>BasicJeriExporter</CODE></A> class.  Calls to <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#enumerateListenEndpoints(net.jini.jeri.ServerEndpoint.ListenContext)"><CODE>enumerateListenEndpoints</CODE></A> return
+ instances of <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A>. <p>
+
+ This class supports at least the following standard constraints:
+ <p>
+
+ <ul>
+ <li><A HREF="../../../../net/jini/core/constraint/Integrity.html#YES"><CODE>Integrity.YES</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/Confidentiality.html" title="class in net.jini.core.constraint"><CODE>Confidentiality</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/ClientAuthentication.html#YES"><CODE>ClientAuthentication.YES</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/ConnectionAbsoluteTime.html" title="class in net.jini.core.constraint"><CODE>ConnectionAbsoluteTime</CODE></A>,
+     trivially, since this only takes effect on the client side
+ <li><A HREF="../../../../net/jini/core/constraint/ConnectionRelativeTime.html" title="class in net.jini.core.constraint"><CODE>ConnectionRelativeTime</CODE></A>,
+     trivially, since this only takes effect on the client side
+ <li><A HREF="../../../../net/jini/core/constraint/ServerAuthentication.html#YES"><CODE>ServerAuthentication.YES</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/ClientMaxPrincipal.html" title="class in net.jini.core.constraint"><CODE>ClientMaxPrincipal</CODE></A>, when it
+     contains at least one <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos"><CODE>KerberosPrincipal</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/ClientMaxPrincipalType.html" title="class in net.jini.core.constraint"><CODE>ClientMaxPrincipalType</CODE></A>, when
+     it contains the <code>KerberosPrincipal</code> class
+ <li><A HREF="../../../../net/jini/core/constraint/ClientMinPrincipal.html" title="class in net.jini.core.constraint"><CODE>ClientMinPrincipal</CODE></A>, when it
+     contains exactly one <code>KerberosPrincipal</code>
+ <li><A HREF="../../../../net/jini/core/constraint/ClientMinPrincipalType.html" title="class in net.jini.core.constraint"><CODE>ClientMinPrincipalType</CODE></A>, when
+     it contains only the <code>KerberosPrincipal</code> class
+ <li><A HREF="../../../../net/jini/core/constraint/ServerMinPrincipal.html" title="class in net.jini.core.constraint"><CODE>ServerMinPrincipal</CODE></A>, when it
+     contains exactly one <code>KerberosPrincipal</code>
+ <li><A HREF="../../../../net/jini/core/constraint/Delegation.html" title="class in net.jini.core.constraint"><CODE>Delegation</CODE></A>
+ <li><A HREF="../../../../net/jini/core/constraint/ConstraintAlternatives.html" title="class in net.jini.core.constraint"><CODE>ConstraintAlternatives</CODE></A>, if the
+     elements all have the same actual class and at least one
+     element is supported
+ </ul>
+
+ To get an instance of <code>KerberosServerEndpoint</code>, one of
+ the <code>getInstance</code> methods of the class has to be
+ invoked.  The returned server endpoint instance encapsulates a set
+ of properties that it will later use to receive and dispatch
+ inbound requests.  The following describes how some of these
+ properties are chosen: <p>
+
+ <ul>
+ <li><code>serverSubject</code> - The <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/Subject.html" title="class or interface in javax.security.auth"><CODE>Subject</CODE></A> that contains
+     the principal and credential to be used by the server endpoint
+     to authenticate itself to its remote callers.  The subject is
+     either provided by the caller of the <code>getInstance</code>
+     method as a non-<code>null</code> argument, or extracted from
+     the access control context of the current thread when the
+     <code>getInstance</code> method is called.  The later value is
+     also referred to as the default server subject.
+ <li><code>serverPrincipal</code> - The
+     <code>KerberosPrincipal</code> that the server endpoint will
+     authenticate itself as to all clients.  If the caller of the
+     <code>getInstance</code> method provides a
+     non-<code>null</code> <code>serverPrincipal</code> argument, it
+     is used without any further checking; otherwise the default
+     server principal will be used.  The default server principal
+     can be any <code>KerberosPrincipal</code> instance in the
+     <code>serverSubject</code>'s principal set, whose corresponding
+     <code>KerberosKey</code> is found in the subject's private
+     credential set and is still valid, provided the caller has been
+     granted the <A HREF="../../../../net/jini/security/AuthenticationPermission.html" title="class in net.jini.security"><CODE>AuthenticationPermission</CODE></A>
+     with the principal as its local principal and
+     <code>listen</code> as its action.
+ <li><code>serverHost</code> - The host name that will be
+     encapsulated in <code>KerberosEndpoint</code> instances created
+     by the server endpoint.  If a non-<code>null serverHost</code>
+     is provided by the caller, it will be used; otherwise the
+     default value is used, which is the IP address of the local
+     host, as obtained from <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/InetAddress.html#getLocalHost()" title="class or interface in java.net"><CODE>InetAddress.getLocalHost</CODE></A>.  The host name does not affect the
+     behavior of the listen operation itself, which always listens
+     on all of the local system's network addresses, unless a
+     <code>ServerSocketFactory</code> is provided by the caller, in
+     which case the factory will be in charge.
+ </ul>
+
+ This class permits specifying a <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net"><CODE>SocketFactory</CODE></A> for creating
+ the <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html" title="class or interface in java.net"><CODE>Socket</CODE></A> instances that the associated
+ <code>KerberosEndpoint</code> instances use to make remote
+ connections back to the server, and a <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net"><CODE>ServerSocketFactory</CODE></A>
+ for creating the <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/ServerSocket.html" title="class or interface in java.net"><CODE>ServerSocket</CODE></A> instances that the server
+ endpoint uses to accept remote connections. <p>
+
+ A <code>SocketFactory</code> used with instances of this class
+ should be serializable, and should implement <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#equals(java.lang.Object)" title="class or interface in java.lang"><CODE>Object.equals</CODE></A> to return <code>true</code> when passed an instance
+ that represents the same (functionally equivalent) socket
+ factory. A <code>ServerSocketFactory</code> used with instances of
+ this class should implement <code>Object.equals</code> to return
+ <code>true</code> when passed an instance that represents the same
+ (functionally equivalent) server socket factory. <p>
+
+ This class uses the <a
+ href="../connection/doc-files/mux.html">Jini extensible remote
+ invocation (Jini ERI) multiplexing protocol</a> to map outgoing
+ requests to the underlying secure connection streams. <p>
+
+ The secure connection streams in this provider are implemented
+ using the Kerberos Version 5 GSS-API Mechanism, defined in <a
+ href="http://www.ietf.org/rfc/rfc1964.txt">RFC 1964</a>, over
+ socket connections between client and server endpoints. <p>
+
+ Note that, because Kerberos inherently requires client authentication,
+ this transport provider does not support distributed garbage collection
+ (DGC); if DGC is enabled using <A HREF="../../../../net/jini/jeri/BasicJeriExporter.html" title="class in net.jini.jeri"><CODE>BasicJeriExporter</CODE></A>,
+ all DGC remote calls through this provider will silently fail.
+<P>
+
+<P>
+<DL>
+<DT><B>Since:</B></DT>
+  <DD>2.0</DD>
+<DT><B>Author:</B></DT>
+  <DD>Sun Microsystems, Inc.</DD>
+<DT><B>See Also:</B><DD><A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A>, 
+<A HREF="../../../../net/jini/jeri/kerberos/KerberosTrustVerifier.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosTrustVerifier</CODE></A><DT><B>Implementation Specifics:</B></DT>
+  <DD><!-- Implementation Specifics -->
+
+ This class uses the following <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/util/logging/Logger.html" title="class or interface in java.util.logging"><CODE>Logger</CODE></A> to log information
+ at the following logging levels: <p>
+ 
+ <table border="1" cellpadding="5" summary="Describes logging to the
+     server logger performed by endpoint classes in this package at
+     different logging levels">
+ 
+     <caption halign="center" valign="top"><b><code>
+        net.jini.jeri.kerberos.server</code></b></caption>
+ 
+     <tr> <th scope="col"> Level <th scope="col"> Description
+     <tr> <td> <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/util/logging/Level.html#WARNING" title="class or interface in java.util.logging"><CODE>WARNING</CODE></A>
+          <td> unexpected failure while accepting connections on the created
+               <code>ServerSocket</code>.
+     <tr> <td> <A HREF="../../../../com/sun/jini/logging/Levels.html#FAILED"><CODE>FAILED</CODE></A>
+ 
+          <td> problems with permission checking, server principal and
+               Kerberos key presence checking, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/org/ietf/jgss/GSSCredential.html" title="class or interface in org.ietf.jgss"><CODE>GSSCredential</CODE></A> creation, socket connect
+               acception, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/org/ietf/jgss/GSSContext.html" title="class or interface in org.ietf.jgss"><CODE>GSSContext</CODE></A>
+               establishment, credential expiration, or wrap/unwrap
+               GSS tokens
+     <tr> <td> <A HREF="../../../../com/sun/jini/logging/Levels.html#HANDLED"><CODE>HANDLED</CODE></A>
+          <td> failure to set TCP no delay or keep alive properties on
+               sockets
+     <tr> <td> <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/util/logging/Level.html#FINE" title="class or interface in java.util.logging"><CODE>FINE</CODE></A>
+          <td> server endpoint creation, <A HREF="../../../../net/jini/jeri/ServerCapabilities.html#checkConstraints(net.jini.core.constraint.InvocationConstraints)"><CODE>checkConstraints</CODE></A> results, server socket creation,
+               socket connect acceptance, server connection
+               creation/destruction, <code>GSSContext</code>
+               establishment
+     <tr> <td> <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/util/logging/Level.html#FINEST" title="class or interface in java.util.logging"><CODE>FINEST</CODE></A>
+          <td> data message encoding/decoding using
+               <code>GSSContext</code>
+ </table> <p>
+
+ When the <code>ListenEndpoint.listen</code> method of this
+ implementation is invoked, a search is conducted on the private
+ credentials of the <code>serverSubject</code>, the first valid
+ <code>KerberosKey</code> whose principal equals to the
+ <code>serverPrincipal</code> is chosen as the server credential for
+ the listen operation.  The presence of this server credential in
+ the <code>serverSubject</code> as well as its validity are checked
+ both when a new incoming connection is received and a new request
+ arrives on an established connection; if the checks fail, the
+ listen operation or the connection will be aborted permanently. <p>
+
+ This implementation uses the standard <a
+ href="http://www.ietf.org/rfc/rfc2853.txt">Java(TM) GSS-API</a>.
+ Additionally, for each inbound connection established, it invokes
+ <CODE>GSSUtil.createSubject</CODE> to construct a
+ <code>Subject</code> instance, which encapsulates the principal and
+ delegated credential, if any, of the corresponding remote caller.</DD>
+</DL>
+<HR>
+
+<P>
+<!-- ======== NESTED CLASS SUMMARY ======== -->
+
+<A NAME="nested_class_summary"><!-- --></A>
+<TABLE BORDER="1" WIDTH="100%" CELLPADDING="3" CELLSPACING="0" SUMMARY="">
+<TR BGCOLOR="#CCCCFF" CLASS="TableHeadingColor">
+<TH ALIGN="left" COLSPAN="2"><FONT SIZE="+2">
+<B>Nested Class Summary</B></FONT></TH>
+</TR>
+</TABLE>
+&nbsp;<A NAME="nested_classes_inherited_from_class_net.jini.jeri.ServerEndpoint"><!-- --></A>
+<TABLE BORDER="1" WIDTH="100%" CELLPADDING="3" CELLSPACING="0" SUMMARY="">
+<TR BGCOLOR="#EEEEFF" CLASS="TableSubHeadingColor">
+<TH ALIGN="left"><B>Nested classes/interfaces inherited from interface net.jini.jeri.<A HREF="../../../../net/jini/jeri/ServerEndpoint.html" title="interface in net.jini.jeri">ServerEndpoint</A></B></TH>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD><CODE><A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenContext.html" title="interface in net.jini.jeri">ServerEndpoint.ListenContext</A>, <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenCookie.html" title="interface in net.jini.jeri">ServerEndpoint.ListenCookie</A>, <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenEndpoint.html" title="interface in net.jini.jeri">ServerEndpoint.ListenEndpoint</A>, <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenHandle.html" title="interface in net.jini.jeri">ServerEndpoint.ListenHandle</A></CODE></TD>
+</TR>
+</TABLE>
+&nbsp;
+
+<!-- ========== METHOD SUMMARY =========== -->
+
+<A NAME="method_summary"><!-- --></A>
+<TABLE BORDER="1" WIDTH="100%" CELLPADDING="3" CELLSPACING="0" SUMMARY="">
+<TR BGCOLOR="#CCCCFF" CLASS="TableHeadingColor">
+<TH ALIGN="left" COLSPAN="2"><FONT SIZE="+2">
+<B>Method Summary</B></FONT></TH>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="../../../../net/jini/core/constraint/InvocationConstraints.html" title="class in net.jini.core.constraint">InvocationConstraints</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#checkConstraints(net.jini.core.constraint.InvocationConstraints)">checkConstraints</A></B>(<A HREF="../../../../net/jini/core/constraint/InvocationConstraints.html" title="class in net.jini.core.constraint">InvocationConstraints</A>&nbsp;constraints)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Verifies that this instance supports the transport layer
+ aspects of all of the specified requirements (both in general
+ and in the current security context), and returns the
+ requirements that must be at least partially implemented by
+ higher layers in order to fully satisfy all of the specified
+ requirements.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="../../../../net/jini/jeri/Endpoint.html" title="interface in net.jini.jeri">Endpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#enumerateListenEndpoints(net.jini.jeri.ServerEndpoint.ListenContext)">enumerateListenEndpoints</A></B>(<A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenContext.html" title="interface in net.jini.jeri">ServerEndpoint.ListenContext</A>&nbsp;listenContext)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Passes the <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenEndpoint.html" title="interface in net.jini.jeri"><CODE>ListenEndpoint</CODE></A> for this <code>KerberosServerEndpoint</code> to
+ <code>listenContext</code>, which will ensure an active listen
+ operation on the endpoint, and returns a <code>KerberosEndpoint</code>
+ instance corresponding to the listen operation chosen by
+ <code>listenContext</code>.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;boolean</CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#equals(java.lang.Object)">equals</A></B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A>&nbsp;obj)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Two instances of this class are equal if they have server
+ subjects that compare equal using <code>==</code>; have the
+ same server principal; have the same values for server host and
+ port; have socket factories that are either both
+ <code>null</code>, or have the same actual class and are equal;
+ and have server socket factories that are either both
+ <code>null</code>, or have the same actual class and are equal.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getHost()">getHost</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns the host name that will be used in <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A> instances created by listening on this
+ object.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>static&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getInstance(int)">getInstance</A></B>(int&nbsp;port)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified port, using the default server subject, server
+ principal, and server host.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>static&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getInstance(java.lang.String, int)">getInstance</A></B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+            int&nbsp;port)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server host and port, using the default server
+ subject and server principal.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>static&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getInstance(java.lang.String, int, javax.net.SocketFactory, javax.net.ServerSocketFactory)">getInstance</A></B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+            int&nbsp;port,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A>&nbsp;csf,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A>&nbsp;ssf)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server host, port, and socket factories, using the
+ default server subject and server principal.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>static&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getInstance(javax.security.auth.Subject, javax.security.auth.kerberos.KerberosPrincipal, java.lang.String, int)">getInstance</A></B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/Subject.html" title="class or interface in javax.security.auth">Subject</A>&nbsp;serverSubject,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A>&nbsp;serverPrincipal,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+            int&nbsp;port)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server subject, server principal, server host, and
+ port.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>static&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getInstance(javax.security.auth.Subject, javax.security.auth.kerberos.KerberosPrincipal, java.lang.String, int, javax.net.SocketFactory, javax.net.ServerSocketFactory)">getInstance</A></B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/Subject.html" title="class or interface in javax.security.auth">Subject</A>&nbsp;serverSubject,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A>&nbsp;serverPrincipal,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+            int&nbsp;port,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A>&nbsp;csf,
+            <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A>&nbsp;ssf)</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server subject, server principal, server host, port,
+ and socket factories.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;int</CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getPort()">getPort</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns the TCP port that the <code>ListenEndpoint</code>s
+ created by this server endpoint listen on.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getPrincipal()">getPrincipal</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns the principal that this server endpoint will
+ authenticate itself as.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getServerSocketFactory()">getServerSocketFactory</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns the server socket factory that this server endpoint
+ uses to create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/ServerSocket.html" title="class or interface in java.net"><CODE>ServerSocket</CODE></A> instances, or
+ <code>null</code> if it uses default server sockets.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#getSocketFactory()">getSocketFactory</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns the socket factory that the associated <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A> instances, which are created by listening on
+ the <code>ListenEndpoint</code> instances of this server
+ endpoint, use to create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html" title="class or interface in java.net"><CODE>Socket</CODE></A> instances, or
+ <code>null</code> if they use default sockets.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;int</CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#hashCode()">hashCode</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a hash code value for this object.</TD>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD ALIGN="right" VALIGN="top" WIDTH="1%"><FONT SIZE="-1">
+<CODE>&nbsp;<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A></CODE></FONT></TD>
+<TD><CODE><B><A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html#toString()">toString</A></B>()</CODE>
+
+<BR>
+&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Returns a string representation of this object.</TD>
+</TR>
+</TABLE>
+&nbsp;<A NAME="methods_inherited_from_class_java.lang.Object"><!-- --></A>
+<TABLE BORDER="1" WIDTH="100%" CELLPADDING="3" CELLSPACING="0" SUMMARY="">
+<TR BGCOLOR="#EEEEFF" CLASS="TableSubHeadingColor">
+<TH ALIGN="left"><B>Methods inherited from class java.lang.<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A></B></TH>
+</TR>
+<TR BGCOLOR="white" CLASS="TableRowColor">
+<TD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#clone()" title="class or interface in java.lang">clone</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#finalize()" title="class or interface in java.lang">finalize</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#getClass()" title="class or interface in java.lang">getClass</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#notify()" title="class or interface in java.lang">notify</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#notifyAll()" title="class or interface in java.lang">notifyAll</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#wait()" title="class or interface in java.lang">wait</A>, <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#wait(long)" title="class or interface in java.lang">wait</A>, <A HREF="http://java.sun.com/j2se/1.4.2/
 docs/api/java/lang/Object.html#wait(long, int)" title="class or interface in java.lang">wait</A></CODE></TD>
+</TR>
+</TABLE>
+&nbsp;
+<P>
+
+<!-- ============ METHOD DETAIL ========== -->
+
+<A NAME="method_detail"><!-- --></A>
+<TABLE BORDER="1" WIDTH="100%" CELLPADDING="3" CELLSPACING="0" SUMMARY="">
+<TR BGCOLOR="#CCCCFF" CLASS="TableHeadingColor">
+<TH ALIGN="left" COLSPAN="1"><FONT SIZE="+2">
+<B>Method Detail</B></FONT></TH>
+</TR>
+</TABLE>
+
+<A NAME="getInstance(int)"><!-- --></A><H3>
+getInstance</H3>
+<PRE>
+public static <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A> <B>getInstance</B>(int&nbsp;port)
+                                          throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD>Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified port, using the default server subject, server
+ principal, and server host.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>port</CODE> - the port this server endpoint will listen on, 0 to
+        use any free port
+<DT><B>Returns:</B><DD>a <code>KerberosServerEndpoint</code> instance
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the caller has not
+         been granted the right
+         <code>AuthenticationPermission</code>, or there is no
+         default server subject
+         (<code>serverSubject.getSubject(AccessController.getContext())
+         </code> returns <code>null</code>), or no appropriate
+         Kerberos principal and corresponding Kerberos key can
+         be found in the server subject
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager and
+         the following condition is true:
+
+         <ul>
+         <li>The caller has been granted
+             <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/AuthPermission.html" title="class or interface in javax.security.auth"><CODE>AuthPermission</CODE></A><code>("getSubject") </code>,
+             but no <code>listen</code>
+             <code>AuthenticationPermission</code> whose local
+             principal is a principal in the server subject's
+             principal set, which is required for accessing any
+             private credentials corresponding to the principal
+             in the server subject.
+         </ul>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if <code>serverPort</code> is
+         not in the range of <code>0</code> to
+         <code>65535</code></DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getInstance(java.lang.String, int)"><!-- --></A><H3>
+getInstance</H3>
+<PRE>
+public static <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A> <B>getInstance</B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+                                                 int&nbsp;port)
+                                          throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD>Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server host and port, using the default server
+ subject and server principal.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>serverHost</CODE> - the name or IP address of the server host the
+        <code>KerberosEndpoint</code> instances created by this
+        server endpoint will connect to. If <code>null</code>,
+        the default server host will be used.<DD><CODE>port</CODE> - the port this server endpoint will listen on, 0 to
+        use any free port
+<DT><B>Returns:</B><DD>a <code>KerberosServerEndpoint</code> instance
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the caller has not
+         been granted the right
+         <code>AuthenticationPermission</code>, or there is no
+         default server subject
+         (<code>serverSubject.getSubject(AccessController.getContext())
+         </code> returns <code>null</code>), or no appropriate
+         Kerberos principal and corresponding Kerberos key can
+         be found in the server subject
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager and
+         the following condition is true:
+
+         <ul>
+         <li>The caller has been granted
+             <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/AuthPermission.html" title="class or interface in javax.security.auth"><CODE>AuthPermission</CODE></A><code>("getSubject") </code>,
+             but no <code>listen</code>
+             <code>AuthenticationPermission</code> whose local
+             principal is a principal in the server subject's
+             principal set, which is required for accessing any
+             private credentials corresponding to the principal
+             in the server subject.
+         </ul>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if <code>serverPort</code> is
+         not in the range of <code>0</code> to
+         <code>65535</code></DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getInstance(java.lang.String, int, javax.net.SocketFactory, javax.net.ServerSocketFactory)"><!-- --></A><H3>
+getInstance</H3>
+<PRE>
+public static <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A> <B>getInstance</B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+                                                 int&nbsp;port,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A>&nbsp;csf,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A>&nbsp;ssf)
+                                          throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD>Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server host, port, and socket factories, using the
+ default server subject and server principal.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>serverHost</CODE> - the name or IP address of the server host the
+        <code>KerberosEndpoint</code> instances created by this
+        server endpoint will connect to. If <code>null</code>,
+        the default server host will be used.<DD><CODE>port</CODE> - the port this server endpoint will listen on, 0 to
+        use any free port<DD><CODE>csf</CODE> - the <code>SocketFactory</code> to be used by the
+        <code>KerberosEndpoint</code> created by this server
+        endpoint to create sockets, or <code>null</code> to let
+        the <code>KerberosEndpoint</code> create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html" title="class or interface in java.net"><CODE>Socket</CODE></A>s
+        directly.<DD><CODE>ssf</CODE> - the <code>ServerSocketFactory</code> to use for this
+        <code>KerberosServerEndpoint</code>, or
+        <code>null</code> to let the
+        <code>KerberosServerEndpoint</code> create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/ServerSocket.html" title="class or interface in java.net"><CODE>ServerSocket</CODE></A>s directly.
+<DT><B>Returns:</B><DD>a <code>KerberosServerEndpoint</code> instance
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the caller has not
+         been granted the right
+         <code>AuthenticationPermission</code>, or there is no
+         default server subject
+         (<code>serverSubject.getSubject(AccessController.getContext())
+         </code> returns <code>null</code>), or no appropriate
+         Kerberos principal and corresponding Kerberos key can
+         be found in the server subject
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager and
+         the following condition is true:
+
+         <ul>
+         <li>The caller has been granted
+             <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/AuthPermission.html" title="class or interface in javax.security.auth"><CODE>AuthPermission</CODE></A><code>("getSubject") </code>,
+             but no <code>listen</code>
+             <code>AuthenticationPermission</code> whose local
+             principal is a principal in the server subject's
+             principal set, which is required for accessing any
+             private credentials corresponding to the principal
+             in the server subject.
+         </ul>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if <code>serverPort</code> is
+         not in the range of <code>0</code> to
+         <code>65535</code></DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getInstance(javax.security.auth.Subject, javax.security.auth.kerberos.KerberosPrincipal, java.lang.String, int)"><!-- --></A><H3>
+getInstance</H3>
+<PRE>
+public static <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A> <B>getInstance</B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/Subject.html" title="class or interface in javax.security.auth">Subject</A>&nbsp;serverSubject,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A>&nbsp;serverPrincipal,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+                                                 int&nbsp;port)
+                                          throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD>Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server subject, server principal, server host, and
+ port.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>serverSubject</CODE> - the server subject to use for
+        authenticating the server. If <code>null</code>, the
+        subject associated with the current access control
+        context will be used.<DD><CODE>serverPrincipal</CODE> - the principal server should authenticate
+        as. If <code>null</code>, then the default server
+        principal will be used.<DD><CODE>serverHost</CODE> - the name or IP address of the server host the
+        <code>KerberosEndpoint</code> instances created by this
+        server endpoint will connect to. If <code>null</code>,
+        the default server host will be used.<DD><CODE>port</CODE> - the port this server endpoint will listen on, 0 to
+        use any free port
+<DT><B>Returns:</B><DD>a <code>KerberosServerEndpoint</code> instance
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the caller has not
+         been granted the right
+         <code>AuthenticationPermission</code>, or there is no
+         default server subject
+         (<code>serverSubject.getSubject(AccessController.getContext())
+         </code> returns <code>null</code>), or no appropriate
+         Kerberos principal and corresponding Kerberos key can
+         be found in the server subject
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager and
+         the following condition is true:
+
+         <ul>
+         <li>The passed in serverPrincipal is <code>null</code>,
+             the caller has the
+             <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/AuthPermission.html" title="class or interface in javax.security.auth"><CODE>AuthPermission</CODE></A><code>("getSubject")
+             </code>, but no <code>listen</code>
+             <code>AuthenticationPermission</code> whose local
+             principal is a principal in the server subject's
+             principal set, which is required for accessing any
+             private credentials corresponding to the principal
+             in the server subject.
+         </ul>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if <code>serverPort</code> is
+         not in the range of <code>0</code> to
+         <code>65535</code></DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getInstance(javax.security.auth.Subject, javax.security.auth.kerberos.KerberosPrincipal, java.lang.String, int, javax.net.SocketFactory, javax.net.ServerSocketFactory)"><!-- --></A><H3>
+getInstance</H3>
+<PRE>
+public static <A HREF="../../../../net/jini/jeri/kerberos/KerberosServerEndpoint.html" title="class in net.jini.jeri.kerberos">KerberosServerEndpoint</A> <B>getInstance</B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/Subject.html" title="class or interface in javax.security.auth">Subject</A>&nbsp;serverSubject,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A>&nbsp;serverPrincipal,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A>&nbsp;serverHost,
+                                                 int&nbsp;port,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A>&nbsp;csf,
+                                                 <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A>&nbsp;ssf)
+                                          throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD>Returns a <code>KerberosServerEndpoint</code> instance with the
+ specified server subject, server principal, server host, port,
+ and socket factories.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>serverSubject</CODE> - the server subject to use for
+        authenticating the server. If <code>null</code>, the
+        subject associated with the current access control
+        context will be used.<DD><CODE>serverPrincipal</CODE> - the principal server should authenticate
+        as. If <code>null</code>, then the default server
+        principal will be used.<DD><CODE>serverHost</CODE> - the name or IP address of the server host the
+        <code>KerberosEndpoint</code> instances created by this
+        server endpoint will connect to. If <code>null</code>,
+        the default server host will be used.<DD><CODE>port</CODE> - the port this server endpoint will listen on, 0 to
+        use any free port<DD><CODE>csf</CODE> - the <code>SocketFactory</code> to be used by the
+        <code>KerberosEndpoint</code> created by this server
+        endpoint to create sockets, or <code>null</code> to let
+        the <code>KerberosEndpoint</code> create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html" title="class or interface in java.net"><CODE>Socket</CODE></A>s
+        directly.<DD><CODE>ssf</CODE> - the <code>ServerSocketFactory</code> to use for this
+        <code>KerberosServerEndpoint</code>, or
+        <code>null</code> to let the
+        <code>KerberosServerEndpoint</code> create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/ServerSocket.html" title="class or interface in java.net"><CODE>ServerSocket</CODE></A>s directly.
+<DT><B>Returns:</B><DD>a <code>KerberosServerEndpoint</code> instance
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the caller has not
+         been granted the right
+         <code>AuthenticationPermission</code>, or there is no
+         default server subject
+         (<code>serverSubject.getSubject(AccessController.getContext())
+         </code> returns <code>null</code>), or no appropriate
+         Kerberos principal and corresponding Kerberos key can
+         be found in the server subject
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager and
+         the following condition is true:
+
+         <ul>
+         <li>The passed in serverPrincipal is <code>null</code>,
+             the caller has the <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/AuthPermission.html" title="class or interface in javax.security.auth"><CODE>AuthPermission</CODE></A><code>("getSubject") </code>, but
+             no <code>listen</code>
+             <code>AuthenticationPermission</code> whose local
+             principal is a principal in the server subject's
+             principal set, which is required for accessing any
+             private credentials corresponding to the principal
+             in the server subject.
+         </ul>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if <code>serverPort</code> is
+         not in the range of <code>0</code> to
+         <code>65535</code></DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getHost()"><!-- --></A><H3>
+getHost</H3>
+<PRE>
+public <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A> <B>getHost</B>()</PRE>
+<DL>
+<DD>Returns the host name that will be used in <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A> instances created by listening on this
+ object.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+
+<DT><B>Returns:</B><DD>the host name to use in <code>KerberosEndpoint</code>
+         instances created by listening on this object</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getPort()"><!-- --></A><H3>
+getPort</H3>
+<PRE>
+public int <B>getPort</B>()</PRE>
+<DL>
+<DD>Returns the TCP port that the <code>ListenEndpoint</code>s
+ created by this server endpoint listen on.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+
+<DT><B>Returns:</B><DD>the TCP port that the endpoints listen on</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getPrincipal()"><!-- --></A><H3>
+getPrincipal</H3>
+<PRE>
+public <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/security/auth/kerberos/KerberosPrincipal.html" title="class or interface in javax.security.auth.kerberos">KerberosPrincipal</A> <B>getPrincipal</B>()</PRE>
+<DL>
+<DD>Returns the principal that this server endpoint will
+ authenticate itself as.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+
+<DT><B>Returns:</B><DD>the principal that this server endpoint will
+         authenticate as</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getSocketFactory()"><!-- --></A><H3>
+getSocketFactory</H3>
+<PRE>
+public <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/SocketFactory.html" title="class or interface in javax.net">SocketFactory</A> <B>getSocketFactory</B>()</PRE>
+<DL>
+<DD>Returns the socket factory that the associated <A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><CODE>KerberosEndpoint</CODE></A> instances, which are created by listening on
+ the <code>ListenEndpoint</code> instances of this server
+ endpoint, use to create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html" title="class or interface in java.net"><CODE>Socket</CODE></A> instances, or
+ <code>null</code> if they use default sockets.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+
+<DT><B>Returns:</B><DD>the socket factory that associated endpoints use to
+         create sockets, or <code>null</code> if they use
+         default sockets</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="getServerSocketFactory()"><!-- --></A><H3>
+getServerSocketFactory</H3>
+<PRE>
+public <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/javax/net/ServerSocketFactory.html" title="class or interface in javax.net">ServerSocketFactory</A> <B>getServerSocketFactory</B>()</PRE>
+<DL>
+<DD>Returns the server socket factory that this server endpoint
+ uses to create <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/ServerSocket.html" title="class or interface in java.net"><CODE>ServerSocket</CODE></A> instances, or
+ <code>null</code> if it uses default server sockets.
+<P>
+<DD><DL>
+</DL>
+</DD>
+<DD><DL>
+
+<DT><B>Returns:</B><DD>the server socket factory that this server endpoint
+         uses to create server sockets, or <code>null</code> if
+         it uses default server sockets</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="checkConstraints(net.jini.core.constraint.InvocationConstraints)"><!-- --></A><H3>
+checkConstraints</H3>
+<PRE>
+public <A HREF="../../../../net/jini/core/constraint/InvocationConstraints.html" title="class in net.jini.core.constraint">InvocationConstraints</A> <B>checkConstraints</B>(<A HREF="../../../../net/jini/core/constraint/InvocationConstraints.html" title="class in net.jini.core.constraint">InvocationConstraints</A>&nbsp;constraints)
+                                       throws <A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></PRE>
+<DL>
+<DD><B>Description copied from interface: <CODE><A HREF="../../../../net/jini/jeri/ServerCapabilities.html#checkConstraints(net.jini.core.constraint.InvocationConstraints)">ServerCapabilities</A></CODE></B></DD>
+<DD>Verifies that this instance supports the transport layer
+ aspects of all of the specified requirements (both in general
+ and in the current security context), and returns the
+ requirements that must be at least partially implemented by
+ higher layers in order to fully satisfy all of the specified
+ requirements.  This method may also return preferences that
+ must be at least partially implemented by higher layers in
+ order to fully satisfy some of the specified preferences.
+
+ <p>For any given constraint, there must be a clear delineation
+ of which aspects (if any) must be implemented by the transport
+ layer.  This method must not return a constraint (as a
+ requirement or a preference, directly or as an element of
+ another constraint) unless this instance can implement all of
+ those aspects.  Also, this method must not return a constraint
+ for which all aspects must be implemented by the transport
+ layer.  Most of the constraints in the <A HREF="../../../../net/jini/core/constraint/package-summary.html"><CODE>net.jini.core.constraint</CODE></A> package must be fully implemented by
+ the transport layer and thus must not be returned by this
+ method; the one exception is <A HREF="../../../../net/jini/core/constraint/Integrity.html" title="class in net.jini.core.constraint"><CODE>Integrity</CODE></A>, for which the
+ transport layer is responsible for the data integrity aspect
+ and higher layers are responsible for the code integrity
+ aspect.
+
+ <p>For any <A HREF="../../../../net/jini/core/constraint/ConstraintAlternatives.html" title="class in net.jini.core.constraint"><CODE>ConstraintAlternatives</CODE></A> in the specified
+ constraints, this method should only return a corresponding
+ constraint if all of the alternatives supported by this
+ instance need to be at least partially implemented by higher
+ layers in order to be fully satisfied.
+
+ <p>The constraints passed to this method may include
+ constraints based on relative time.
+<P>
+<DD><DL>
+<DT><B>Specified by:</B><DD><CODE><A HREF="../../../../net/jini/jeri/ServerCapabilities.html#checkConstraints(net.jini.core.constraint.InvocationConstraints)">checkConstraints</A></CODE> in interface <CODE><A HREF="../../../../net/jini/jeri/ServerCapabilities.html" title="interface in net.jini.jeri">ServerCapabilities</A></CODE></DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>constraints</CODE> - the constraints that must be supported
+<DT><B>Returns:</B><DD>the constraints that must be at least partially
+ implemented by higher layers
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the transport layer
+ aspects of any of the specified requirements are not supported
+ by this instance (either in general or in the current security
+ context)</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="enumerateListenEndpoints(net.jini.jeri.ServerEndpoint.ListenContext)"><!-- --></A><H3>
+enumerateListenEndpoints</H3>
+<PRE>
+public <A HREF="../../../../net/jini/jeri/Endpoint.html" title="interface in net.jini.jeri">Endpoint</A> <B>enumerateListenEndpoints</B>(<A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenContext.html" title="interface in net.jini.jeri">ServerEndpoint.ListenContext</A>&nbsp;listenContext)
+                                  throws <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/io/IOException.html" title="class or interface in java.io">IOException</A></PRE>
+<DL>
+<DD>Passes the <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenEndpoint.html" title="interface in net.jini.jeri"><CODE>ListenEndpoint</CODE></A> for this <code>KerberosServerEndpoint</code> to
+ <code>listenContext</code>, which will ensure an active listen
+ operation on the endpoint, and returns a <code>KerberosEndpoint</code>
+ instance corresponding to the listen operation chosen by
+ <code>listenContext</code>. <p>
+
+ If this server endpoint's server host is <code>null</code>,
+ then the endpoint returned will contain the default server
+ host. This method computes the default by invoking <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/InetAddress.html#getLocalHost()" title="class or interface in java.net"><CODE>InetAddress.getLocalHost</CODE></A> to obtain an
+ <code>InetAddress</code> for the local host. If
+ <code>InetAddress.getLocalHost</code> throws an
+ <code>UnknownHostException</code>, this method throws an
+ <code>UnknownHostException</code>.
+ The default host name will be the string returned by invoking 
+ <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/InetAddress.html#getHostAddress()" title="class or interface in java.net"><CODE>getHostAddress</CODE></A> on the obtained
+ <code>InetAddress</code>. If there is a security manager, its <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkConnect(java.lang.String, int)" title="class or interface in java.lang"><CODE>checkConnect</CODE></A> method
+ will be invoked with the string returned by invoking <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/InetAddress.html#getHostName()" title="class or interface in java.net"><CODE>getHostName</CODE></A> on that same
+ <code>InetAddress</code> as the host argument and
+ <code>-1</code> as the port argument; this could result in a
+ <code>SecurityException</code>. <p>
+
+ This method invokes <code>addListenEndpoint</code> on
+ <code>listenContext</code> once, passing a <code>ListenEndpoint</code>
+ as described below.  If <code>addListenEndpoint</code> throws an
+ exception, then this method throws that exception.  Otherwise, this
+ method returns a <code>KerberosEndpoint</code> instance with the host
+ name described above, the TCP port number bound by the listen operation
+ represented by the <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenHandle.html" title="interface in net.jini.jeri"><CODE>ListenHandle</CODE></A> returned by <code>addListenEndpoint</code>, and the same
+ server principal and <code>SocketFactory</code> as this
+ <code>KerberosServerEndpoint</code>. <p>
+
+ The <code>ListenEndpoint</code> passed to
+ <code>addListenEndpoint</code> represents the server subject, server
+ principal, TCP port number, and <code>ServerSocketFactory</code> of this
+ <code>KerberosServerEndpoint</code>.  Its methods behave as follows:
+ <p>
+
+ <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenEndpoint.html#listen(net.jini.jeri.RequestDispatcher)"><CODE>ListenHandle
+ listen(RequestDispatcher)</CODE></A>:
+
+ <blockquote>
+
+ Listens for requests received on this endpoint's TCP port, dispatching
+ them to the supplied <code>RequestDispatcher</code> in the form of
+ <A HREF="../../../../net/jini/jeri/InboundRequest.html" title="interface in net.jini.jeri"><CODE>InboundRequest</CODE></A> instances. <p>
+
+ When the implementation of this method needs to create a new
+ <code>ServerSocket</code>, it will do so by invoking one of the
+ <code>createServerSocket</code> methods that returns a bound server
+ socket on the contained <code>ServerSocketFactory</code> if
+ non-<code>null</code>, or it will create a <code>ServerSocket</code>
+ directly otherwise. <p>
+
+ If there is a security manager, its <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkListen(int)" title="class or interface in java.lang"><CODE>checkListen</CODE></A> method will be invoked with this endpoint's TCP port; this
+ could result in a <code>SecurityException</code>. In addition, the
+ security manager's <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkPermission(java.security.Permission)" title="class or interface in java.lang"><CODE>checkPermission</CODE></A> method will be invoked with an <A HREF="../../../../net/jini/security/AuthenticationPermission.html" title="class in net.jini.security"><CODE>AuthenticationPermission</CODE></A> containing the server
+ principal of this endpoint and the <code>listen</code> action; this
+ could also result in a <code>SecurityException</code>.  Furthermore,
+ before a given <code>InboundRequest</code> gets dispatched to the
+ supplied request dispatcher, the security manager's <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkAccept(java.lang.String, int)" title="class or interface in java.lang"><CODE>checkAccept</CODE></A> method must have been
+ successfully invoked in the security context of this
+ <code>listen</code> invocation with the remote IP address and port of
+ the <code>Socket</code> used to receive the request, and the security
+ manager's <code>checkPermission</code> method must have been
+ successfully invoked in the same context with an
+ <code>AuthenticationPermission</code> containing the server principal
+ of this endpoint as local principal, the client's authenticated
+ principal as peer principal, and the <code>accept</code> action. The
+ <code>checkPermissions</code> method of the dispatched
+ <code>InboundRequest</code> also performs these latter security checks.
+ (Note that in some cases, the implementation may carry out some of
+ these security checks indirectly, such as through invocations of
+ <code>ServerSocket</code>'s constructors or <code>accept</code>
+ method.) <p>
+
+ Once a <code>ListenEndpoint</code> of this provider starts to
+ listen, each time a new inbound request comes in, it verifies
+ that the <code>serverSubject</code> of the corresponding server
+ endpoint still holds a valid <code>KerberosKey</code>
+ corresponding to its <code>serverPrincipal</code>.  It rejects
+ the request if the verification fails. This guarantees that as
+ soon as the <code>KerberosKey</code> for the principal in the
+ <code>Subject</code> is destroyed (logout) or expired, no more
+ new requests will be accepted. <p>
+
+ Requests will be dispatched in a <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/security/PrivilegedAction.html" title="class or interface in java.security"><CODE>PrivilegedAction</CODE></A> wrapped by a
+ <A HREF="../../../../net/jini/security/SecurityContext.html" title="interface in net.jini.security"><CODE>SecurityContext</CODE></A> obtained when this method was invoked, with the
+ <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/security/AccessControlContext.html" title="class or interface in java.security"><CODE>AccessControlContext</CODE></A> of that <code>SecurityContext</code> in
+ effect. <p>
+
+ Dispatched requests will implement <A HREF="../../../../net/jini/jeri/InboundRequest.html#populateContext(java.util.Collection)"><CODE>populateContext</CODE></A> to
+ populate the given collection with an element that implements the
+ <A HREF="../../../../net/jini/io/context/ClientHost.html" title="interface in net.jini.io.context"><CODE>ClientHost</CODE></A> interface, and an element that
+ implements the <A HREF="../../../../net/jini/io/context/ClientSubject.html" title="interface in net.jini.io.context"><CODE>ClientSubject</CODE></A> interface. The
+ <code>ClientHost</code> element implements <A HREF="../../../../net/jini/io/context/ClientHost.html#getClientHost()"><CODE>getClientHost</CODE></A> to return
+ the IP address of the <code>Socket</code> that the request was received
+ over (see <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/Socket.html#getInetAddress()" title="class or interface in java.net"><CODE>Socket.getInetAddress()</CODE></A>). <p>
+
+ Throws <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/io/IOException.html" title="class or interface in java.io"><CODE>IOException</CODE></A> if an I/O exception occurs while performing
+ this operation, such as if the TCP port is already in use. <p>
+
+ Throws <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang"><CODE>SecurityException</CODE></A> if there is a security manager and an
+ invocation of its <code>checkListen</code> or
+ <code>checkPermission</code> method fails. <p>
+
+ Throws <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/NullPointerException.html" title="class or interface in java.lang"><CODE>NullPointerException</CODE></A> if <code>requestDispatcher</code>
+ is <code>null</code>
+
+ </blockquote>
+
+ <A HREF="../../../../net/jini/jeri/ServerEndpoint.ListenEndpoint.html#checkPermissions()"><CODE>void checkPermissions()</CODE></A>:
+
+ <blockquote>
+
+ Verifies that the current security context has all of the security
+ permissions necessary to listen for requests on this endpoint. <p>
+
+ If there is a security manager, its <code>checkListen</code> method
+ will be invoked with this endpoint's TCP port; this could result in a
+ <code>SecurityException</code>. In addition, the security manager's
+ <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkPermission(java.security.Permission)" title="class or interface in java.lang"><CODE>checkPermission</CODE></A> method will be
+ invoked with an <A HREF="../../../../net/jini/security/AuthenticationPermission.html" title="class in net.jini.security"><CODE>AuthenticationPermission</CODE></A>
+ containing the server principal of this endpoint and the
+ <code>listen</code> action; this could also result in a
+ <code>SecurityException</code>. <p>
+
+ Throws <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang"><CODE>SecurityException</CODE></A> if there is a security manager and an
+ invocation of its <code>checkListen</code> or
+ <code>checkPermission</code> method fails.
+
+ </blockquote>
+
+ <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#equals(java.lang.Object)" title="class or interface in java.lang"><CODE>boolean equals(Object)</CODE></A>:
+
+ <blockquote>
+
+ Compares the specified object with this <code>ListenEndpoint</code> for
+ equality. <p>
+
+ This method returns <code>true</code> if and only if the specified
+ object is also a <code>ListenEndpoint</code> produced by a
+ <code>KerberosServerEndpoint</code>, and the two listen endpoints both
+ have server subjects that compare equal using <code>==</code>; have the
+ same server principal; have the same values for TCP port; and have
+ server socket factories that are either both <code>null</code>, or have
+ the same actual class and are equal.
+
+ </blockquote>
+<P>
+<DD><DL>
+<DT><B>Specified by:</B><DD><CODE><A HREF="../../../../net/jini/jeri/ServerEndpoint.html#enumerateListenEndpoints(net.jini.jeri.ServerEndpoint.ListenContext)">enumerateListenEndpoints</A></CODE> in interface <CODE><A HREF="../../../../net/jini/jeri/ServerEndpoint.html" title="interface in net.jini.jeri">ServerEndpoint</A></CODE></DL>
+</DD>
+<DD><DL>
+<DT><B>Parameters:</B><DD><CODE>listenContext</CODE> - the <code>ListenContext</code> to pass
+ this <code>ServerEndpoint</code>'s <code>ListenEndpoint</code>
+ instances to
+<DT><B>Returns:</B><DD>the <code>Endpoint</code> instance for sending requests
+ to this <code>ServerEndpoint</code>'s communication endpoints
+ being listened on
+<DT><B>Throws:</B>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityException.html" title="class or interface in java.lang">SecurityException</A></CODE> - if there is a security manager, and
+         either its <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkListen(int)" title="class or interface in java.lang"><CODE>checkListen</CODE></A> method fails, or <code>serverHost</code>
+         is <code>null</code> and the security manager's <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/SecurityManager.html#checkConnect(java.lang.String, int)" title="class or interface in java.lang"><CODE>checkConnect</CODE></A> method
+         fails; or if the calling thread does not have
+         permission to authenticate as the endpoint's server
+         principal when listening for connections
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/IllegalArgumentException.html" title="class or interface in java.lang">IllegalArgumentException</A></CODE> - if an invocation of the
+ <code>addListenEndpoint</code> method on the supplied
+ <code>ListenContext</code> returns a <code>ListenCookie</code>
+ that does not correspond to the <code>ListenEndpoint</code>
+ that was passed to it
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/NullPointerException.html" title="class or interface in java.lang">NullPointerException</A></CODE> - if <code>listenContext</code> is
+ <code>null</code>
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/net/UnknownHostException.html" title="class or interface in java.net">UnknownHostException</A></CODE> - if this instance's server host
+               is <code>null</code> and
+               <code>InetAddress.getLocalHost</code> throws an
+         <code>UnknownHostException</code>
+<DD><CODE><A HREF="../../../../net/jini/io/UnsupportedConstraintException.html" title="class in net.jini.io">UnsupportedConstraintException</A></CODE> - if the server subject is
+         missing any of the endpoint's server principals or
+         the associated credentials
+<DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/io/IOException.html" title="class or interface in java.io">IOException</A></CODE> - if an I/O exception occurs while attempting
+ to listen for requests on the communication endpoints
+ represented by this <code>ServerEndpoint</code>.  This could
+ occur, for example, if an I/O resource associated with one of
+ the communication endpoints is already in exclusive use, or if
+ there are insufficient I/O resources for the operation.</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="hashCode()"><!-- --></A><H3>
+hashCode</H3>
+<PRE>
+public int <B>hashCode</B>()</PRE>
+<DL>
+<DD>Returns a hash code value for this object.
+<P>
+<DD><DL>
+<DT><B>Overrides:</B><DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#hashCode()" title="class or interface in java.lang">hashCode</A></CODE> in class <CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A></CODE></DL>
+</DD>
+<DD><DL>
+</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="equals(java.lang.Object)"><!-- --></A><H3>
+equals</H3>
+<PRE>
+public boolean <B>equals</B>(<A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A>&nbsp;obj)</PRE>
+<DL>
+<DD>Two instances of this class are equal if they have server
+ subjects that compare equal using <code>==</code>; have the
+ same server principal; have the same values for server host and
+ port; have socket factories that are either both
+ <code>null</code>, or have the same actual class and are equal;
+ and have server socket factories that are either both
+ <code>null</code>, or have the same actual class and are equal.
+<P>
+<DD><DL>
+<DT><B>Overrides:</B><DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#equals(java.lang.Object)" title="class or interface in java.lang">equals</A></CODE> in class <CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A></CODE></DL>
+</DD>
+<DD><DL>
+</DL>
+</DD>
+</DL>
+<HR>
+
+<A NAME="toString()"><!-- --></A><H3>
+toString</H3>
+<PRE>
+public <A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/String.html" title="class or interface in java.lang">String</A> <B>toString</B>()</PRE>
+<DL>
+<DD>Returns a string representation of this object.
+<P>
+<DD><DL>
+<DT><B>Overrides:</B><DD><CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html#toString()" title="class or interface in java.lang">toString</A></CODE> in class <CODE><A HREF="http://java.sun.com/j2se/1.4.2/docs/api/java/lang/Object.html" title="class or interface in java.lang">Object</A></CODE></DL>
+</DD>
+<DD><DL>
+</DL>
+</DD>
+</DL>
+<!-- ========= END OF CLASS DATA ========= -->
+<HR>
+
+
+<!-- ======= START OF BOTTOM NAVBAR ====== -->
+<A NAME="navbar_bottom"><!-- --></A>
+<A HREF="#skip-navbar_bottom" title="Skip navigation links"></A>
+<TABLE BORDER="0" WIDTH="100%" CELLPADDING="1" CELLSPACING="0" SUMMARY="">
+<TR>
+<TD COLSPAN=2 BGCOLOR="#EEEEFF" CLASS="NavBarCell1">
+<A NAME="navbar_bottom_firstrow"><!-- --></A>
+<TABLE BORDER="0" CELLPADDING="0" CELLSPACING="3" SUMMARY="">
+  <TR ALIGN="center" VALIGN="top">
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../overview-summary.html"><FONT CLASS="NavBarFont1"><B>Overview</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="package-summary.html"><FONT CLASS="NavBarFont1"><B>Package</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#FFFFFF" CLASS="NavBarCell1Rev"> &nbsp;<FONT CLASS="NavBarFont1Rev"><B>Class</B></FONT>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="class-use/KerberosServerEndpoint.html"><FONT CLASS="NavBarFont1"><B>Use</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="package-tree.html"><FONT CLASS="NavBarFont1"><B>Tree</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../deprecated-list.html"><FONT CLASS="NavBarFont1"><B>Deprecated</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../index-all.html"><FONT CLASS="NavBarFont1"><B>Index</B></FONT></A>&nbsp;</TD>
+  <TD BGCOLOR="#EEEEFF" CLASS="NavBarCell1">    <A HREF="../../../../help-doc.html"><FONT CLASS="NavBarFont1"><B>Help</B></FONT></A>&nbsp;</TD>
+  </TR>
+</TABLE>
+</TD>
+<TD ALIGN="right" VALIGN="top" ROWSPAN=3><EM>
+</EM>
+</TD>
+</TR>
+
+<TR>
+<TD BGCOLOR="white" CLASS="NavBarCell2"><FONT SIZE="-2">
+&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosEndpoint.html" title="class in net.jini.jeri.kerberos"><B>PREV CLASS</B></A>&nbsp;
+&nbsp;<A HREF="../../../../net/jini/jeri/kerberos/KerberosTrustVerifier.html" title="class in net.jini.jeri.kerberos"><B>NEXT CLASS</B></A></FONT></TD>
+<TD BGCOLOR="white" CLASS="NavBarCell2"><FONT SIZE="-2">
+  <A HREF="../../../../index.html?net/jini/jeri/kerberos/KerberosServerEndpoint.html" target="_top"><B>FRAMES</B></A>  &nbsp;
+&nbsp;<A HREF="KerberosServerEndpoint.html" target="_top"><B>NO FRAMES</B></A>  &nbsp;
+&nbsp;<SCRIPT type="text/javascript">
+  <!--
+  if(window==top) {
+    document.writeln('<A HREF="../../../../allclasses-noframe.html"><B>All Classes</B></A>');
+  }
+  //-->
+</SCRIPT>
+<NOSCRIPT>
+  <A HREF="../../../../allclasses-noframe.html"><B>All Classes</B></A>
+</NOSCRIPT>
+
+
+</FONT></TD>
+</TR>
+<TR>
+<TD VALIGN="top" CLASS="NavBarCell3"><FONT SIZE="-2">
+  SUMMARY:&nbsp;NESTED&nbsp;|&nbsp;FIELD&nbsp;|&nbsp;CONSTR&nbsp;|&nbsp;<A HREF="#method_summary">METHOD</A></FONT></TD>
+<TD VALIGN="top" CLASS="NavBarCell3"><FONT SIZE="-2">
+DETAIL:&nbsp;FIELD&nbsp;|&nbsp;CONSTR&nbsp;|&nbsp;<A HREF="#method_detail">METHOD</A></FONT></TD>
+</TR>
+</TABLE>
+<A NAME="skip-navbar_bottom"></A>
+<!-- ======== END OF BOTTOM NAVBAR ======= -->
+
+<HR>
+Copyright 2007, multiple authors.<br>Licensed under the <a href="http://www.apache.org/licenses/LICENSE-2.0" target="child" >Apache License, Version 2.0</a>, see the <a href="../../../../doc-files/NOTICE" target="child" >NOTICE</a> file for attributions.
+</BODY>
+</HTML>