001/*
002 * Licensed to the Apache Software Foundation (ASF) under one or more
003 * contributor license agreements.  See the NOTICE file distributed with
004 * this work for additional information regarding copyright ownership.
005 * The ASF licenses this file to You under the Apache License, Version 2.0
006 * (the "License"); you may not use this file except in compliance with
007 * the License.  You may obtain a copy of the License at
008 *
009 *      http://www.apache.org/licenses/LICENSE-2.0
010 *
011 * Unless required by applicable law or agreed to in writing, software
012 * distributed under the License is distributed on an "AS IS" BASIS,
013 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
014 * See the License for the specific language governing permissions and
015 * limitations under the License.
016 */
017package org.apache.wicket.csp;
018
019import org.apache.wicket.request.cycle.RequestCycle;
020
021/**
022 * An enum holding the default values for -src directives including the mandatory single quotes
023 */
024public enum CSPDirectiveSrcValue implements CSPRenderable
025{
026        NONE("'none'"),
027        WILDCARD("*"),
028        SELF("'self'"),
029        UNSAFE_INLINE("'unsafe-inline'"),
030        UNSAFE_EVAL("'unsafe-eval'"),
031        STRICT_DYNAMIC("'strict-dynamic'"),
032        NONCE("'nonce-%1$s'")
033        {
034                @Override
035                public String render(ContentSecurityPolicySettings settings, RequestCycle cycle)
036                {
037                        return String.format(getValue(), settings.getNonce(cycle));
038                }
039        };
040
041        private final String value;
042
043        CSPDirectiveSrcValue(String value)
044        {
045                this.value = value;
046        }
047
048        @Override
049        public String render(ContentSecurityPolicySettings settings, RequestCycle cycle)
050        {
051                return value;
052        }
053
054        public String getValue()
055        {
056                return value;
057        }
058}