Project

General

Profile

1
/**
2
 *  '$RCSfile$'
3
 *  Copyright: 2000-2011 Regents of the University of California and the
4
 *              National Center for Ecological Analysis and Synthesis
5
 *
6
 *   '$Author:  $'
7
 *     '$Date:  $'
8
 *
9
 * This program is free software; you can redistribute it and/or modify
10
 * it under the terms of the GNU General Public License as published by
11
 * the Free Software Foundation; either version 2 of the License, or
12
 * (at your option) any later version.
13
 *
14
 * This program is distributed in the hope that it will be useful,
15
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
17
 * GNU General Public License for more details.
18
 *
19
 * You should have received a copy of the GNU General Public License
20
 * along with this program; if not, write to the Free Software
21
 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307  USA
22
 */
23

    
24
package edu.ucsb.nceas.metacat.dataone;
25

    
26
import java.io.IOException;
27
import java.io.InputStream;
28
import java.security.NoSuchAlgorithmException;
29
import java.sql.SQLException;
30
import java.util.Calendar;
31
import java.util.Date;
32
import java.util.List;
33
import java.util.Timer;
34

    
35
import javax.servlet.http.HttpServletRequest;
36

    
37
import org.apache.commons.io.IOUtils;
38
import org.apache.log4j.Logger;
39
import org.dataone.client.CNode;
40
import org.dataone.client.D1Client;
41
import org.dataone.client.MNode;
42
import org.dataone.client.auth.CertificateManager;
43
import org.dataone.configuration.Settings;
44
import org.dataone.service.exceptions.BaseException;
45
import org.dataone.service.exceptions.IdentifierNotUnique;
46
import org.dataone.service.exceptions.InsufficientResources;
47
import org.dataone.service.exceptions.InvalidRequest;
48
import org.dataone.service.exceptions.InvalidSystemMetadata;
49
import org.dataone.service.exceptions.InvalidToken;
50
import org.dataone.service.exceptions.NotAuthorized;
51
import org.dataone.service.exceptions.NotFound;
52
import org.dataone.service.exceptions.NotImplemented;
53
import org.dataone.service.exceptions.ServiceFailure;
54
import org.dataone.service.exceptions.SynchronizationFailed;
55
import org.dataone.service.exceptions.UnsupportedType;
56
import org.dataone.service.exceptions.VersionMismatch;
57
import org.dataone.service.mn.tier1.v1.MNCore;
58
import org.dataone.service.mn.tier1.v1.MNRead;
59
import org.dataone.service.mn.tier2.v1.MNAuthorization;
60
import org.dataone.service.mn.tier3.v1.MNStorage;
61
import org.dataone.service.mn.tier4.v1.MNReplication;
62
import org.dataone.service.types.v1.Checksum;
63
import org.dataone.service.types.v1.Event;
64
import org.dataone.service.types.v1.Group;
65
import org.dataone.service.types.v1.Identifier;
66
import org.dataone.service.types.v1.Log;
67
import org.dataone.service.types.v1.LogEntry;
68
import org.dataone.service.types.v1.MonitorInfo;
69
import org.dataone.service.types.v1.MonitorList;
70
import org.dataone.service.types.v1.Node;
71
import org.dataone.service.types.v1.NodeList;
72
import org.dataone.service.types.v1.NodeReference;
73
import org.dataone.service.types.v1.NodeState;
74
import org.dataone.service.types.v1.NodeType;
75
import org.dataone.service.types.v1.ObjectFormatIdentifier;
76
import org.dataone.service.types.v1.ObjectList;
77
import org.dataone.service.types.v1.Permission;
78
import org.dataone.service.types.v1.Ping;
79
import org.dataone.service.types.v1.ReplicationStatus;
80
import org.dataone.service.types.v1.Schedule;
81
import org.dataone.service.types.v1.Service;
82
import org.dataone.service.types.v1.Services;
83
import org.dataone.service.types.v1.Session;
84
import org.dataone.service.types.v1.Subject;
85
import org.dataone.service.types.v1.Synchronization;
86
import org.dataone.service.types.v1.SystemMetadata;
87
import org.dataone.service.types.v1.util.ChecksumUtil;
88
import org.dataone.service.util.Constants;
89

    
90
import edu.ucsb.nceas.metacat.DocumentImpl;
91
import edu.ucsb.nceas.metacat.EventLog;
92
import edu.ucsb.nceas.metacat.IdentifierManager;
93
import edu.ucsb.nceas.metacat.McdbDocNotFoundException;
94
import edu.ucsb.nceas.metacat.MetacatHandler;
95
import edu.ucsb.nceas.metacat.client.InsufficientKarmaException;
96
import edu.ucsb.nceas.metacat.dataone.hazelcast.HazelcastService;
97
import edu.ucsb.nceas.metacat.properties.PropertyService;
98
import edu.ucsb.nceas.metacat.util.SystemUtil;
99
import edu.ucsb.nceas.utilities.PropertyNotFoundException;
100

    
101
/**
102
 * Represents Metacat's implementation of the DataONE Member Node 
103
 * service API. Methods implement the various MN* interfaces, and methods common
104
 * to both Member Node and Coordinating Node interfaces are found in the
105
 * D1NodeService base class.
106
 * 
107
 * Implements:
108
 * MNCore.ping()
109
 * MNCore.getLogRecords()
110
 * MNCore.getObjectStatistics()
111
 * MNCore.getOperationStatistics()
112
 * MNCore.getStatus()
113
 * MNCore.getCapabilities()
114
 * MNRead.get()
115
 * MNRead.getSystemMetadata()
116
 * MNRead.describe()
117
 * MNRead.getChecksum()
118
 * MNRead.listObjects()
119
 * MNRead.synchronizationFailed()
120
 * MNAuthorization.isAuthorized()
121
 * MNAuthorization.setAccessPolicy()
122
 * MNStorage.create()
123
 * MNStorage.update()
124
 * MNStorage.delete()
125
 * MNReplication.replicate()
126
 * 
127
 */
128
public class MNodeService extends D1NodeService 
129
    implements MNAuthorization, MNCore, MNRead, MNReplication, MNStorage {
130

    
131
    /* the logger instance */
132
    private Logger logMetacat = null;
133
    
134
    /* A reference to a remote Memeber Node */
135
    private MNode mn;
136
    
137
    /* A reference to a Coordinating Node */
138
    private CNode cn;
139

    
140

    
141
    /**
142
     * Singleton accessor to get an instance of MNodeService.
143
     * 
144
     * @return instance - the instance of MNodeService
145
     */
146
    public static MNodeService getInstance(HttpServletRequest request) {
147
        return new MNodeService(request);
148
    }
149

    
150
    /**
151
     * Constructor, private for singleton access
152
     */
153
    private MNodeService(HttpServletRequest request) {
154
        super(request);
155
        logMetacat = Logger.getLogger(MNodeService.class);
156
        
157
        // set the Member Node certificate file location
158
        CertificateManager.getInstance().setCertificateLocation(Settings.getConfiguration().getString("D1Client.certificate.file"));
159
    }
160

    
161
    /**
162
     * Deletes an object from the Member Node, where the object is either a 
163
     * data object or a science metadata object.
164
     * 
165
     * @param session - the Session object containing the credentials for the Subject
166
     * @param pid - The object identifier to be deleted
167
     * 
168
     * @return pid - the identifier of the object used for the deletion
169
     * 
170
     * @throws InvalidToken
171
     * @throws ServiceFailure
172
     * @throws NotAuthorized
173
     * @throws NotFound
174
     * @throws NotImplemented
175
     * @throws InvalidRequest
176
     */
177
    @Override
178
    public Identifier delete(Session session, Identifier pid) 
179
        throws InvalidToken, ServiceFailure, NotAuthorized, NotFound, NotImplemented {
180

    
181
        String localId = null;
182
        boolean allowed = false;
183
        String username = Constants.SUBJECT_PUBLIC;
184
        String[] groupnames = null;
185
        if (session == null) {
186
        	throw new InvalidToken("1330", "No session has been provided");
187
        } else {
188
            username = session.getSubject().getValue();
189
            if (session.getSubjectInfo() != null) {
190
                List<Group> groupList = session.getSubjectInfo().getGroupList();
191
                if (groupList != null) {
192
                    groupnames = new String[groupList.size()];
193
                    for (int i = 0; i > groupList.size(); i++) {
194
                        groupnames[i] = groupList.get(i).getGroupName();
195
                    }
196
                }
197
            }
198
        }
199

    
200
        // do we have a valid pid?
201
        if (pid == null || pid.getValue().trim().equals("")) {
202
            throw new ServiceFailure("1350", "The provided identifier was invalid.");
203
        }
204

    
205
        // check for the existing identifier
206
        try {
207
            localId = IdentifierManager.getInstance().getLocalId(pid.getValue());
208
        } catch (McdbDocNotFoundException e) {
209
            throw new NotFound("1340", "The object with the provided " + "identifier was not found.");
210
        }
211

    
212
        // does the subject have DELETE (a D1 CHANGE_PERMISSION level) priveleges on the pid?
213
        allowed = isAuthorized(session, pid, Permission.CHANGE_PERMISSION);
214
            
215

    
216
        if (allowed) {
217
            try {
218
                // delete the document
219
                DocumentImpl.delete(localId, username, groupnames, null);
220
                EventLog.getInstance().log(request.getRemoteAddr(), request.getHeader("User-Agent"), username, localId, Event.DELETE.xmlValue());
221

    
222
                // archive it
223
                SystemMetadata sysMeta = HazelcastService.getInstance().getSystemMetadataMap().get(pid);
224
                sysMeta.setArchived(true);
225
                HazelcastService.getInstance().getSystemMetadataMap().put(pid, sysMeta);
226
                
227
                // remove the system metadata for it
228
                //HazelcastService.getInstance().getSystemMetadataMap().remove(pid);
229
                
230
            } catch (McdbDocNotFoundException e) {
231
                throw new NotFound("1340", "The provided identifier was invalid.");
232

    
233
            } catch (SQLException e) {
234
                throw new ServiceFailure("1350", "There was a problem deleting the object." + "The error message was: " + e.getMessage());
235

    
236
            } catch (InsufficientKarmaException e) {
237
                throw new NotAuthorized("1320", "The provided identity does not have " + "permission to DELETE objects on the Member Node.");
238

    
239
            } catch (Exception e) { // for some reason DocumentImpl throws a general Exception
240
                throw new ServiceFailure("1350", "There was a problem deleting the object." + "The error message was: " + e.getMessage());
241
            }
242

    
243
        } else {
244
            throw new NotAuthorized("1320", "The provided identity does not have " + "permission to DELETE objects on the Member Node.");
245
        }
246

    
247
        return pid;
248
    }
249

    
250
    /**
251
     * Updates an existing object by creating a new object identified by 
252
     * newPid on the Member Node which explicitly obsoletes the object 
253
     * identified by pid through appropriate changes to the SystemMetadata 
254
     * of pid and newPid
255
     * 
256
     * @param session - the Session object containing the credentials for the Subject
257
     * @param pid - The identifier of the object to be updated
258
     * @param object - the new object bytes
259
     * @param sysmeta - the new system metadata describing the object
260
     * 
261
     * @return newPid - the identifier of the new object
262
     * 
263
     * @throws InvalidToken
264
     * @throws ServiceFailure
265
     * @throws NotAuthorized
266
     * @throws NotFound
267
     * @throws NotImplemented
268
     * @throws IdentifierNotUnique
269
     * @throws UnsupportedType
270
     * @throws InsufficientResources
271
     * @throws InvalidSystemMetadata
272
     * @throws InvalidRequest
273
     */
274
    @Override
275
    public Identifier update(Session session, Identifier pid, InputStream object, 
276
        Identifier newPid, SystemMetadata sysmeta) 
277
        throws InvalidToken, ServiceFailure, NotAuthorized, IdentifierNotUnique, 
278
        UnsupportedType, InsufficientResources, NotFound, 
279
        InvalidSystemMetadata, NotImplemented, InvalidRequest {
280

    
281
        String localId = null;
282
        boolean allowed = false;
283
        boolean isScienceMetadata = false;
284
        
285
        if (session == null) {
286
        	throw new InvalidToken("1210", "No session has been provided");
287
        }
288
        Subject subject = session.getSubject();
289

    
290
        // do we have a valid pid?
291
        if (pid == null || pid.getValue().trim().equals("")) {
292
            throw new InvalidRequest("1202", "The provided identifier was invalid.");
293
            
294
        }
295

    
296
        // check for the existing identifier
297
        try {
298
            localId = IdentifierManager.getInstance().getLocalId(pid.getValue());
299
            
300
        } catch (McdbDocNotFoundException e) {
301
            throw new InvalidRequest("1202", "The object with the provided " + 
302
                "identifier was not found.");
303
            
304
        }
305
        
306
        // set the originating node
307
        NodeReference originMemberNode = this.getCapabilities().getIdentifier();
308
        sysmeta.setOriginMemberNode(originMemberNode);
309
        
310
        // set the submitter to match the certificate
311
        sysmeta.setSubmitter(subject);
312
        // set the dates
313
        Date now = Calendar.getInstance().getTime();
314
        sysmeta.setDateSysMetadataModified(now);
315
        sysmeta.setDateUploaded(now);
316

    
317
        // does the subject have WRITE ( == update) priveleges on the pid?
318
        allowed = isAuthorized(session, pid, Permission.WRITE);
319

    
320
        if (allowed) {
321
        	
322
        	// check quality of SM
323
        	if (sysmeta.getObsoletedBy() != null) {
324
        		throw new InvalidSystemMetadata("1300", "Cannot include obsoletedBy when updating object");
325
        	}
326
        	if (sysmeta.getObsoletes() != null && !sysmeta.getObsoletes().getValue().equals(pid.getValue())) {
327
        		throw new InvalidSystemMetadata("1300", "The identifier provided in obsoletes does not match old Identifier");
328
        	}
329

    
330
            // get the existing system metadata for the object
331
            SystemMetadata existingSysMeta = getSystemMetadata(session, pid);
332

    
333
            // add the newPid to the obsoletedBy list for the existing sysmeta
334
            existingSysMeta.setObsoletedBy(newPid);
335

    
336
            // then update the existing system metadata
337
            updateSystemMetadata(existingSysMeta);
338

    
339
            // prep the new system metadata, add pid to the affected lists
340
            sysmeta.setObsoletes(pid);
341
            //sysmeta.addDerivedFrom(pid);
342

    
343
            isScienceMetadata = isScienceMetadata(sysmeta);
344

    
345
            // do we have XML metadata or a data object?
346
            if (isScienceMetadata) {
347

    
348
                // update the science metadata XML document
349
                // TODO: handle non-XML metadata/data documents (like netCDF)
350
                // TODO: don't put objects into memory using stream to string
351
                String objectAsXML = "";
352
                try {
353
                    objectAsXML = IOUtils.toString(object, "UTF-8");
354
                    localId = insertOrUpdateDocument(objectAsXML, newPid, session, "update");
355
                    // register the newPid and the generated localId
356
                    if (newPid != null) {
357
                        IdentifierManager.getInstance().createMapping(newPid.getValue(), localId);
358

    
359
                    }
360

    
361
                } catch (IOException e) {
362
                    String msg = "The Node is unable to create the object. " + "There was a problem converting the object to XML";
363
                    logMetacat.info(msg);
364
                    throw new ServiceFailure("1310", msg + ": " + e.getMessage());
365

    
366
                }
367

    
368
            } else {
369

    
370
                // update the data object
371
                localId = insertDataObject(object, newPid, session);
372

    
373
            }
374

    
375
            // and insert the new system metadata
376
            insertSystemMetadata(sysmeta);
377

    
378
            // log the update event
379
            EventLog.getInstance().log(request.getRemoteAddr(), request.getHeader("User-Agent"), subject.getValue(), localId, Event.UPDATE.toString());
380

    
381
        } else {
382
            throw new NotAuthorized("1200", "The provided identity does not have " + "permission to UPDATE the object identified by " + pid.getValue()
383
                    + " on the Member Node.");
384
        }
385

    
386
        return newPid;
387
    }
388

    
389
    public Identifier create(Session session, Identifier pid, InputStream object, SystemMetadata sysmeta) throws InvalidToken, ServiceFailure, NotAuthorized,
390
            IdentifierNotUnique, UnsupportedType, InsufficientResources, InvalidSystemMetadata, NotImplemented, InvalidRequest {
391

    
392
        // check for null session
393
        if (session == null) {
394
          throw new InvalidToken("1110", "Session is required to WRITE to the Node.");
395
        }
396
        // set the submitter to match the certificate
397
        sysmeta.setSubmitter(session.getSubject());
398
        // set the originating node
399
        NodeReference originMemberNode = this.getCapabilities().getIdentifier();
400
        sysmeta.setOriginMemberNode(originMemberNode);
401
        sysmeta.setArchived(false);
402

    
403
        // set the dates
404
        Date now = Calendar.getInstance().getTime();
405
        sysmeta.setDateSysMetadataModified(now);
406
        sysmeta.setDateUploaded(now);
407
        // call the shared impl
408
        return super.create(session, pid, object, sysmeta);
409
    }
410

    
411
    /**
412
     * Called by a Coordinating Node to request that the Member Node create a 
413
     * copy of the specified object by retrieving it from another Member 
414
     * Node and storing it locally so that it can be made accessible to 
415
     * the DataONE system.
416
     * 
417
     * @param session - the Session object containing the credentials for the Subject
418
     * @param sysmeta - Copy of the CN held system metadata for the object
419
     * @param sourceNode - A reference to node from which the content should be 
420
     *                     retrieved. The reference should be resolved by 
421
     *                     checking the CN node registry.
422
     * 
423
     * @return true if the replication succeeds
424
     * 
425
     * @throws ServiceFailure
426
     * @throws NotAuthorized
427
     * @throws NotImplemented
428
     * @throws UnsupportedType
429
     * @throws InsufficientResources
430
     * @throws InvalidRequest
431
     */
432
    @Override
433
    public boolean replicate(Session session, SystemMetadata sysmeta,
434
            NodeReference sourceNode) throws NotImplemented, ServiceFailure,
435
            NotAuthorized, InvalidRequest, InsufficientResources,
436
            UnsupportedType {
437

    
438
        if (session != null && sysmeta != null && sourceNode != null) {
439
            logMetacat.info("MNodeService.replicate() called with parameters: \n" +
440
                            "\tSession.Subject      = "                           +
441
                            session.getSubject().getValue() + "\n"                +
442
                            "\tSystemMetadata       = " + sysmeta.toString()      +
443
                            "\n" + "\tSource NodeReference ="                     +
444
                            sourceNode.getValue());
445
        }
446
        boolean result = false;
447
        String nodeIdStr = null;
448
        NodeReference nodeId = null;
449

    
450
        // get the referenced object
451
        Identifier pid = sysmeta.getIdentifier();
452

    
453
        // get from the membernode
454
        // TODO: switch credentials for the server retrieval?
455
        this.mn = D1Client.getMN(sourceNode);
456
        this.cn = D1Client.getCN();
457
        InputStream object = null;
458
        Session thisNodeSession = null;
459
        SystemMetadata localSystemMetadata = null;
460
        BaseException failure = null;
461
        String localId = null;
462
        
463
        // TODO: check credentials
464
        // cannot be called by public
465
        if (session.getSubject() == null) {
466
            String msg = "No session was provided.";
467
            failure = new NotAuthorized("2152", msg);
468
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
469
            logMetacat.info(msg);
470
            return true;
471
        }
472

    
473

    
474
        // get the local node id
475
        try {
476
            nodeIdStr = PropertyService.getProperty("dataone.memberNodeId");
477
            nodeId = new NodeReference();
478
            nodeId.setValue(nodeIdStr);
479

    
480
        } catch (PropertyNotFoundException e1) {
481
            String msg = "Couldn't get dataone.memberNodeId property: " + e1.getMessage();
482
            failure = new ServiceFailure("2151", msg);
483
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
484
            logMetacat.error(msg);
485
            return true;
486

    
487
        }
488
        
489

    
490
        try {
491
            // do we already have a replica?
492
            try {
493
                localId = IdentifierManager.getInstance().getLocalId(pid.getValue());
494

    
495
                String msg = "Can't read the object bytes properly, replica is invalid.";
496
                ServiceFailure serviceFailure = new ServiceFailure("2151", msg);
497
                
498
                // if we have a local id, get the local object
499
                try {
500
                    object = MetacatHandler.read(localId);
501
                    
502
                } catch (Exception e) {
503
                    // let the CN know that the replication failed
504
                    setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, serviceFailure);  
505
                    throw serviceFailure;
506
                    
507
                }
508

    
509
            } catch (McdbDocNotFoundException e) {
510
                logMetacat.info("No replica found. Continuing.");
511
                
512
            }
513
            
514
            // no local replica, get a replica
515
            if ( object == null ) {
516
                // session should be null to use the default certificate
517
                // location set in the Certificate manager
518
                object = mn.getReplica(thisNodeSession, pid);
519
                logMetacat.info("MNodeService.replicate() called for identifier "
520
                                + pid.getValue());
521

    
522
            }
523

    
524
        } catch (InvalidToken e) {            
525
            String msg = "Could not retrieve object to replicate (InvalidToken): "+ e.getMessage();
526
            failure = new ServiceFailure("2151", msg);
527
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
528
            logMetacat.error(msg);
529
            throw new ServiceFailure("2151", msg);
530

    
531
        } catch (NotFound e) {
532
            String msg = "Could not retrieve object to replicate (NotFound): "+ e.getMessage();
533
            failure = new ServiceFailure("2151", msg);
534
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
535
            logMetacat.error(msg);
536
            throw new ServiceFailure("2151", msg);
537

    
538
        }
539

    
540
        // verify checksum on the object, if supported
541
        if (object.markSupported()) {
542
            Checksum givenChecksum = sysmeta.getChecksum();
543
            Checksum computedChecksum = null;
544
            try {
545
                computedChecksum = ChecksumUtil.checksum(object,
546
                        givenChecksum.getAlgorithm());
547
                object.reset();
548
            } catch (Exception e) {
549
                String msg = "Error computing checksum on replica: "
550
                        + e.getMessage();
551
                ServiceFailure sf = new ServiceFailure("2151", msg);
552
                sf.initCause(e);
553
                throw sf;
554
            }
555
            if (!givenChecksum.getValue().equals(computedChecksum)) {
556
                throw new ServiceFailure("2151",
557
                        "Computed checksum does not match declared checksum");
558
            }
559
        }
560

    
561
        // add it to local store
562
        Identifier retPid;
563
        try {
564
            // skip the MN.create -- this mutates the system metadata and we
565
            // dont want it to
566
            if ( localId == null ) {
567
                
568
                retPid = super.create(session, pid, object, sysmeta);
569
                result = (retPid.getValue().equals(pid.getValue()));
570
            }
571
            
572
        } catch (InvalidToken e) {
573
            String msg = "Could not save object to local store (InvalidToken): " + e.getMessage();
574
            failure = new ServiceFailure("2151", msg);
575
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
576
            logMetacat.error(msg);
577
            throw new ServiceFailure("2151", msg);
578
        
579
        } catch (IdentifierNotUnique e) {
580
            String msg = "Could not save object to local store (IdentifierNotUnique): " + e.getMessage();
581
            failure = new ServiceFailure("2151", msg);
582
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
583
            logMetacat.error(msg);
584
            throw new ServiceFailure("2151", msg);
585
        
586
        } catch (InvalidSystemMetadata e) {
587
            String msg = "Could not save object to local store (InvalidSystemMetadata): " + e.getMessage();
588
            failure = new ServiceFailure("2151", msg);
589
            setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.FAILED, failure);
590
            logMetacat.error(msg);
591
            throw new ServiceFailure("2151", msg);
592
            
593
        }
594

    
595
        // finish by setting the replication status
596
        setReplicationStatus(thisNodeSession, pid, nodeId, ReplicationStatus.COMPLETED, null);
597
        return result;
598

    
599
    }
600

    
601
    /**
602
     * Return the object identified by the given object identifier
603
     * 
604
     * @param session - the Session object containing the credentials for the Subject
605
     * @param pid - the object identifier for the given object
606
     * 
607
     * @return inputStream - the input stream of the given object
608
     * 
609
     * @throws InvalidToken
610
     * @throws ServiceFailure
611
     * @throws NotAuthorized
612
     * @throws InvalidRequest
613
     * @throws NotImplemented
614
     */
615
    @Override
616
    public InputStream get(Session session, Identifier pid) 
617
    throws InvalidToken, ServiceFailure, NotAuthorized, NotFound, NotImplemented {
618

    
619
        return super.get(session, pid);
620

    
621
    }
622

    
623
    /**
624
     * Returns a Checksum for the specified object using an accepted hashing algorithm
625
     * 
626
     * @param session - the Session object containing the credentials for the Subject
627
     * @param pid - the object identifier for the given object
628
     * @param algorithm -  the name of an algorithm that will be used to compute 
629
     *                     a checksum of the bytes of the object
630
     * 
631
     * @return checksum - the checksum of the given object
632
     * 
633
     * @throws InvalidToken
634
     * @throws ServiceFailure
635
     * @throws NotAuthorized
636
     * @throws NotFound
637
     * @throws InvalidRequest
638
     * @throws NotImplemented
639
     */
640
    @Override
641
    public Checksum getChecksum(Session session, Identifier pid, String algorithm) 
642
        throws InvalidToken, ServiceFailure, NotAuthorized, NotFound,
643
        InvalidRequest, NotImplemented {
644

    
645
        Checksum checksum = null;
646

    
647
        InputStream inputStream = get(session, pid);
648

    
649
        try {
650
            checksum = ChecksumUtil.checksum(inputStream, algorithm);
651

    
652
        } catch (NoSuchAlgorithmException e) {
653
            throw new ServiceFailure("1410", "The checksum for the object specified by " + pid.getValue() + "could not be returned due to an internal error: "
654
                    + e.getMessage());
655
        } catch (IOException e) {
656
            throw new ServiceFailure("1410", "The checksum for the object specified by " + pid.getValue() + "could not be returned due to an internal error: "
657
                    + e.getMessage());
658
        }
659

    
660
        if (checksum == null) {
661
            throw new ServiceFailure("1410", "The checksum for the object specified by " + pid.getValue() + "could not be returned.");
662
        }
663

    
664
        return checksum;
665
    }
666

    
667
    /**
668
     * Return the system metadata for a given object
669
     * 
670
     * @param session - the Session object containing the credentials for the Subject
671
     * @param pid - the object identifier for the given object
672
     * 
673
     * @return inputStream - the input stream of the given system metadata object
674
     * 
675
     * @throws InvalidToken
676
     * @throws ServiceFailure
677
     * @throws NotAuthorized
678
     * @throws NotFound
679
     * @throws InvalidRequest
680
     * @throws NotImplemented
681
     */
682
    @Override
683
    public SystemMetadata getSystemMetadata(Session session, Identifier pid) 
684
        throws InvalidToken, ServiceFailure, NotAuthorized, NotFound,
685
        NotImplemented {
686

    
687
        return super.getSystemMetadata(session, pid);
688
    }
689

    
690
    /**
691
     * Retrieve the list of objects present on the MN that match the calling parameters
692
     * 
693
     * @param session - the Session object containing the credentials for the Subject
694
     * @param startTime - Specifies the beginning of the time range from which 
695
     *                    to return object (>=)
696
     * @param endTime - Specifies the beginning of the time range from which 
697
     *                  to return object (>=)
698
     * @param objectFormat - Restrict results to the specified object format
699
     * @param replicaStatus - Indicates if replicated objects should be returned in the list
700
     * @param start - The zero-based index of the first value, relative to the 
701
     *                first record of the resultset that matches the parameters.
702
     * @param count - The maximum number of entries that should be returned in 
703
     *                the response. The Member Node may return less entries 
704
     *                than specified in this value.
705
     * 
706
     * @return objectList - the list of objects matching the criteria
707
     * 
708
     * @throws InvalidToken
709
     * @throws ServiceFailure
710
     * @throws NotAuthorized
711
     * @throws InvalidRequest
712
     * @throws NotImplemented
713
     */
714
    @Override
715
    public ObjectList listObjects(Session session, Date startTime, Date endTime, ObjectFormatIdentifier objectFormatId, Boolean replicaStatus, Integer start,
716
            Integer count) throws NotAuthorized, InvalidRequest, NotImplemented, ServiceFailure, InvalidToken {
717

    
718
        ObjectList objectList = null;
719

    
720
        try {
721
            objectList = IdentifierManager.getInstance().querySystemMetadata(startTime, endTime, objectFormatId, replicaStatus, start, count);
722
        } catch (Exception e) {
723
            throw new ServiceFailure("1580", "Error querying system metadata: " + e.getMessage());
724
        }
725

    
726
        return objectList;
727
    }
728

    
729
    /**
730
     * Return a description of the node's capabilities and services.
731
     * 
732
     * @return node - the technical capabilities of the Member Node
733
     * 
734
     * @throws ServiceFailure
735
     * @throws NotAuthorized
736
     * @throws InvalidRequest
737
     * @throws NotImplemented
738
     */
739
    @Override
740
    public Node getCapabilities() 
741
        throws NotImplemented, ServiceFailure {
742

    
743
        String nodeName = null;
744
        String nodeId = null;
745
        String subject = null;
746
        String contactSubject = null;
747
        String nodeDesc = null;
748
        String nodeTypeString = null;
749
        NodeType nodeType = null;
750
        String mnCoreServiceVersion = null;
751
        String mnReadServiceVersion = null;
752
        String mnAuthorizationServiceVersion = null;
753
        String mnStorageServiceVersion = null;
754
        String mnReplicationServiceVersion = null;
755

    
756
        boolean nodeSynchronize = false;
757
        boolean nodeReplicate = false;
758
        boolean mnCoreServiceAvailable = false;
759
        boolean mnReadServiceAvailable = false;
760
        boolean mnAuthorizationServiceAvailable = false;
761
        boolean mnStorageServiceAvailable = false;
762
        boolean mnReplicationServiceAvailable = false;
763

    
764
        try {
765
            // get the properties of the node based on configuration information
766
            nodeName = PropertyService.getProperty("dataone.nodeName");
767
            nodeId = PropertyService.getProperty("dataone.memberNodeId");
768
            subject = PropertyService.getProperty("dataone.subject");
769
            contactSubject = PropertyService.getProperty("dataone.contactSubject");
770
            nodeDesc = PropertyService.getProperty("dataone.nodeDescription");
771
            nodeTypeString = PropertyService.getProperty("dataone.nodeType");
772
            nodeType = NodeType.convert(nodeTypeString);
773
            nodeSynchronize = new Boolean(PropertyService.getProperty("dataone.nodeSynchronize")).booleanValue();
774
            nodeReplicate = new Boolean(PropertyService.getProperty("dataone.nodeReplicate")).booleanValue();
775

    
776
            mnCoreServiceVersion = PropertyService.getProperty("dataone.mnCore.serviceVersion");
777
            mnReadServiceVersion = PropertyService.getProperty("dataone.mnRead.serviceVersion");
778
            mnAuthorizationServiceVersion = PropertyService.getProperty("dataone.mnAuthorization.serviceVersion");
779
            mnStorageServiceVersion = PropertyService.getProperty("dataone.mnStorage.serviceVersion");
780
            mnReplicationServiceVersion = PropertyService.getProperty("dataone.mnReplication.serviceVersion");
781

    
782
            mnCoreServiceAvailable = new Boolean(PropertyService.getProperty("dataone.mnCore.serviceAvailable")).booleanValue();
783
            mnReadServiceAvailable = new Boolean(PropertyService.getProperty("dataone.mnRead.serviceAvailable")).booleanValue();
784
            mnAuthorizationServiceAvailable = new Boolean(PropertyService.getProperty("dataone.mnAuthorization.serviceAvailable")).booleanValue();
785
            mnStorageServiceAvailable = new Boolean(PropertyService.getProperty("dataone.mnStorage.serviceAvailable")).booleanValue();
786
            mnReplicationServiceAvailable = new Boolean(PropertyService.getProperty("dataone.mnReplication.serviceAvailable")).booleanValue();
787

    
788
            // Set the properties of the node based on configuration information and
789
            // calls to current status methods
790
            String serviceName = SystemUtil.getContextURL() + "/" + PropertyService.getProperty("dataone.serviceName");
791
            Node node = new Node();
792
            node.setBaseURL(serviceName + "/" + nodeTypeString);
793
            node.setDescription(nodeDesc);
794

    
795
            // set the node's health information
796
            node.setState(NodeState.UP);
797
            
798
            // set the ping response to the current value
799
            Ping canPing = new Ping();
800
            canPing.setSuccess(false);
801
            try {
802
            	Date pingDate = ping();
803
                canPing.setSuccess(pingDate != null);
804
            } catch (BaseException e) {
805
                e.printStackTrace();
806
                // guess it can't be pinged
807
            }
808
            
809
            node.setPing(canPing);
810

    
811
            NodeReference identifier = new NodeReference();
812
            identifier.setValue(nodeId);
813
            node.setIdentifier(identifier);
814
            Subject s = new Subject();
815
            s.setValue(subject);
816
            node.addSubject(s);
817
            Subject contact = new Subject();
818
            contact.setValue(contactSubject);
819
            node.addContactSubject(contact);
820
            node.setName(nodeName);
821
            node.setReplicate(nodeReplicate);
822
            node.setSynchronize(nodeSynchronize);
823

    
824
            // services: MNAuthorization, MNCore, MNRead, MNReplication, MNStorage
825
            Services services = new Services();
826

    
827
            Service sMNCore = new Service();
828
            sMNCore.setName("MNCore");
829
            sMNCore.setVersion(mnCoreServiceVersion);
830
            sMNCore.setAvailable(mnCoreServiceAvailable);
831

    
832
            Service sMNRead = new Service();
833
            sMNRead.setName("MNRead");
834
            sMNRead.setVersion(mnReadServiceVersion);
835
            sMNRead.setAvailable(mnReadServiceAvailable);
836

    
837
            Service sMNAuthorization = new Service();
838
            sMNAuthorization.setName("MNAuthorization");
839
            sMNAuthorization.setVersion(mnAuthorizationServiceVersion);
840
            sMNAuthorization.setAvailable(mnAuthorizationServiceAvailable);
841

    
842
            Service sMNStorage = new Service();
843
            sMNStorage.setName("MNStorage");
844
            sMNStorage.setVersion(mnStorageServiceVersion);
845
            sMNStorage.setAvailable(mnStorageServiceAvailable);
846

    
847
            Service sMNReplication = new Service();
848
            sMNReplication.setName("MNReplication");
849
            sMNReplication.setVersion(mnReplicationServiceVersion);
850
            sMNReplication.setAvailable(mnReplicationServiceAvailable);
851

    
852
            services.addService(sMNRead);
853
            services.addService(sMNCore);
854
            services.addService(sMNAuthorization);
855
            services.addService(sMNStorage);
856
            services.addService(sMNReplication);
857
            node.setServices(services);
858

    
859
            // Set the schedule for synchronization
860
            Synchronization synchronization = new Synchronization();
861
            Schedule schedule = new Schedule();
862
            Date now = new Date();
863
            schedule.setYear(PropertyService.getProperty("dataone.nodeSynchronization.schedule.year"));
864
            schedule.setMon(PropertyService.getProperty("dataone.nodeSynchronization.schedule.mon"));
865
            schedule.setMday(PropertyService.getProperty("dataone.nodeSynchronization.schedule.mday"));
866
            schedule.setWday(PropertyService.getProperty("dataone.nodeSynchronization.schedule.wday"));
867
            schedule.setHour(PropertyService.getProperty("dataone.nodeSynchronization.schedule.hour"));
868
            schedule.setMin(PropertyService.getProperty("dataone.nodeSynchronization.schedule.min"));
869
            schedule.setSec(PropertyService.getProperty("dataone.nodeSynchronization.schedule.sec"));
870
            synchronization.setSchedule(schedule);
871
            synchronization.setLastHarvested(now);
872
            synchronization.setLastCompleteHarvest(now);
873
            node.setSynchronization(synchronization);
874

    
875
            node.setType(nodeType);
876
            return node;
877

    
878
        } catch (PropertyNotFoundException pnfe) {
879
            String msg = "MNodeService.getCapabilities(): " + "property not found: " + pnfe.getMessage();
880
            logMetacat.error(msg);
881
            throw new ServiceFailure("2162", msg);
882
        }
883
    }
884

    
885
    /**
886
     * Returns the number of operations that have been serviced by the node 
887
     * over time periods of one and 24 hours.
888
     * 
889
     * @param session - the Session object containing the credentials for the Subject
890
     * @param period - An ISO8601 compatible DateTime range specifying the time 
891
     *                 range for which to return operation statistics.
892
     * @param requestor - Limit to operations performed by given requestor identity.
893
     * @param event -  Enumerated value indicating the type of event being examined
894
     * @param format - Limit to events involving objects of the specified format
895
     * 
896
     * @return the desired log records
897
     * 
898
     * @throws InvalidToken
899
     * @throws ServiceFailure
900
     * @throws NotAuthorized
901
     * @throws InvalidRequest
902
     * @throws NotImplemented
903
     */
904
    public MonitorList getOperationStatistics(Session session, Date startTime, 
905
        Date endTime, Subject requestor, Event event, ObjectFormatIdentifier formatId)
906
        throws NotImplemented, ServiceFailure, NotAuthorized, InsufficientResources, UnsupportedType {
907

    
908
        MonitorList monitorList = new MonitorList();
909

    
910
        try {
911

    
912
            // get log records first
913
            Log logs = getLogRecords(session, startTime, endTime, event, 0, null);
914

    
915
            // TODO: aggregate by day or hour -- needs clarification
916
            int count = 1;
917
            for (LogEntry logEntry : logs.getLogEntryList()) {
918
                Identifier pid = logEntry.getIdentifier();
919
                Date logDate = logEntry.getDateLogged();
920
                // if we are filtering by format
921
                if (formatId != null) {
922
                    SystemMetadata sysmeta = HazelcastService.getInstance().getSystemMetadataMap().get(pid);
923
                    if (!sysmeta.getFormatId().getValue().equals(formatId.getValue())) {
924
                        // does not match
925
                        continue;
926
                    }
927
                }
928
                MonitorInfo item = new MonitorInfo();
929
                item.setCount(count);
930
                item.setDate(new java.sql.Date(logDate.getTime()));
931
                monitorList.addMonitorInfo(item);
932

    
933
            }
934
        } catch (Exception e) {
935
            e.printStackTrace();
936
            throw new ServiceFailure("2081", "Could not retrieve statistics: " + e.getMessage());
937
        }
938

    
939
        return monitorList;
940

    
941
    }
942

    
943
    /**
944
     * A callback method used by a CN to indicate to a MN that it cannot 
945
     * complete synchronization of the science metadata identified by pid.  Log
946
     * the event in the metacat event log.
947
     * 
948
     * @param session
949
     * @param syncFailed
950
     * 
951
     * @throws ServiceFailure
952
     * @throws NotAuthorized
953
     * @throws NotImplemented
954
     */
955
    @Override
956
    public void synchronizationFailed(Session session, SynchronizationFailed syncFailed) 
957
        throws NotImplemented, ServiceFailure, NotAuthorized {
958

    
959
        String localId;
960

    
961
        try {
962
            localId = IdentifierManager.getInstance().getLocalId(syncFailed.getPid());
963
        } catch (McdbDocNotFoundException e) {
964
            throw new ServiceFailure("2161", "The identifier specified by " + syncFailed.getPid() + " was not found on this node.");
965

    
966
        }
967
        // TODO: update the CN URL below when the CNRead.SynchronizationFailed
968
        // method is changed to include the URL as a parameter
969
        logMetacat.debug("Synchronization for the object identified by " + syncFailed.getPid() + " failed from " + syncFailed.getNodeId()
970
                + " Logging the event to the Metacat EventLog as a 'syncFailed' event.");
971
        // TODO: use the event type enum when the SYNCHRONIZATION_FAILED event is added
972
        String principal = Constants.SUBJECT_PUBLIC;
973
        if (session != null && session.getSubject() != null) {
974
          principal = session.getSubject().getValue();
975
        }
976
        try {
977
          EventLog.getInstance().log(request.getRemoteAddr(), request.getHeader("User-Agent"), principal, localId, "synchronization_failed");
978
        } catch (Exception e) {
979
            throw new ServiceFailure("2161", "Could not log the error for: " + syncFailed.getPid());
980
    }
981
        //EventLog.getInstance().log("CN URL WILL GO HERE", 
982
        //  session.getSubject().getValue(), localId, Event.SYNCHRONIZATION_FAILED);
983

    
984
    }
985

    
986
    /**
987
     * Essentially a get() but with different logging behavior
988
     */
989
    @Override
990
    public InputStream getReplica(Session session, Identifier pid) 
991
        throws NotAuthorized, NotImplemented, ServiceFailure, InvalidToken {
992

    
993
        logMetacat.info("MNodeService.getReplica() called.");
994

    
995
        // cannot be called by public
996
        if (session == null) {
997
        	throw new InvalidToken("2183", "No session was provided.");
998
        }
999
        
1000
        logMetacat.info("MNodeService.getReplica() called with parameters: \n" +
1001
             "\tSession.Subject      = " + session.getSubject().getValue() + "\n" +
1002
             "\tIdentifier           = " + pid.getValue());
1003

    
1004
        InputStream inputStream = null; // bytes to be returned
1005
        handler = new MetacatHandler(new Timer());
1006
        boolean allowed = false;
1007
        String localId; // the metacat docid for the pid
1008

    
1009
        // get the local docid from Metacat
1010
        try {
1011
            localId = IdentifierManager.getInstance().getLocalId(pid.getValue());
1012
        } catch (McdbDocNotFoundException e) {
1013
            throw new ServiceFailure("2181", "The object specified by " + 
1014
                    pid.getValue() + " does not exist at this node.");
1015
            
1016
        }
1017

    
1018
        Subject targetNodeSubject = session.getSubject();
1019

    
1020
        // check for authorization to replicate, null session to act as this source MN
1021
        try {
1022
            allowed = D1Client.getCN().isNodeAuthorized(null, targetNodeSubject, pid);
1023
        } catch (InvalidToken e1) {
1024
            throw new ServiceFailure("2181", "Could not determine if node is authorized: " 
1025
                + e1.getMessage());
1026
            
1027
        } catch (NotFound e1) {
1028
            throw new ServiceFailure("2181", "Could not determine if node is authorized: " 
1029
                    + e1.getMessage());
1030

    
1031
        } catch (InvalidRequest e1) {
1032
            throw new ServiceFailure("2181", "Could not determine if node is authorized: " 
1033
                    + e1.getMessage());
1034

    
1035
        }
1036

    
1037
        logMetacat.info("Called D1Client.isNodeAuthorized(). Allowed = " + allowed +
1038
            " for identifier " + pid.getValue());
1039

    
1040
        // if the person is authorized, perform the read
1041
        if (allowed) {
1042
            try {
1043
                inputStream = handler.read(localId);
1044
            } catch (Exception e) {
1045
                throw new ServiceFailure("1020", "The object specified by " + 
1046
                    pid.getValue() + "could not be returned due to error: " + e.getMessage());
1047
            }
1048
        }
1049

    
1050
        // if we fail to set the input stream
1051
        if (inputStream == null) {
1052
            throw new ServiceFailure("2181", "The object specified by " + 
1053
                pid.getValue() + "does not exist at this node.");
1054
        }
1055

    
1056
        // log the replica event
1057
        String principal = null;
1058
        if (session.getSubject() != null) {
1059
            principal = session.getSubject().getValue();
1060
        }
1061
        EventLog.getInstance().log(request.getRemoteAddr(), 
1062
            request.getHeader("User-Agent"), principal, localId, "replicate");
1063

    
1064
        return inputStream;
1065
    }
1066

    
1067
    /**
1068
     * A method to notify the Member Node that the authoritative copy of 
1069
     * system metadata on the Coordinating Nodes has changed.
1070
     * 
1071
     * @param session   Session information that contains the identity of the 
1072
     *                  calling user as retrieved from the X.509 certificate 
1073
     *                  which must be traceable to the CILogon service.
1074
     * @param serialVersion   The serialVersion of the system metadata
1075
     * @param dateSysMetaLastModified  The time stamp for when the system metadata was changed
1076
     * @throws NotImplemented
1077
     * @throws ServiceFailure
1078
     * @throws NotAuthorized
1079
     * @throws InvalidRequest
1080
     * @throws InvalidToken
1081
     */
1082
    public void systemMetadataChanged(Session session, Identifier pid,
1083
        long serialVersion, Date dateSysMetaLastModified) 
1084
        throws NotImplemented, ServiceFailure, NotAuthorized, InvalidRequest,
1085
        InvalidToken {
1086
        
1087
        SystemMetadata currentLocalSysMeta = null;
1088
        SystemMetadata newSysMeta = null;
1089
        CNode cn = D1Client.getCN();
1090
        NodeList nodeList = null;
1091
        Subject callingSubject = null;
1092
        boolean allowed = false;
1093
        
1094
        // are we allowed to call this?
1095
        callingSubject = session.getSubject();
1096
        nodeList = cn.listNodes();
1097
        
1098
        for(Node node : nodeList.getNodeList()) {
1099
            // must be a CN
1100
            if ( node.getType().equals(NodeType.CN)) {
1101
               List<Subject> subjectList = node.getSubjectList();
1102
               // the calling subject must be in the subject list
1103
               if ( subjectList.contains(callingSubject)) {
1104
                   allowed = true;
1105
                   
1106
               }
1107
               
1108
            }
1109
        }
1110
        
1111
        if (!allowed ) {
1112
            String msg = "The subject identified by " + callingSubject.getValue() +
1113
              " is not authorized to call this service.";
1114
            throw new NotAuthorized("1331", msg);
1115
            
1116
        }
1117
        
1118
        // compare what we have locally to what is sent in the change notification
1119
        try {
1120
            currentLocalSysMeta = HazelcastService.getInstance().getSystemMetadataMap().get(pid);
1121
             
1122
        } catch (RuntimeException e) {
1123
            String msg = "SystemMetadata for pid " + pid.getValue() +
1124
              " couldn't be updated because it couldn't be found locally: " +
1125
              e.getMessage();
1126
            logMetacat.error(msg);
1127
            ServiceFailure sf = new ServiceFailure("1333", msg);
1128
            sf.initCause(e);
1129
            throw sf; 
1130
        }
1131
        
1132
        if (currentLocalSysMeta.getSerialVersion().longValue() < serialVersion ) {
1133
            try {
1134
                newSysMeta = cn.getSystemMetadata(null, pid);
1135
            } catch (NotFound e) {
1136
                // huh? you just said you had it
1137
            	String msg = "On updating the local copy of system metadata " + 
1138
                "for pid " + pid.getValue() +", the CN reports it is not found." +
1139
                " The error message was: " + e.getMessage();
1140
                logMetacat.error(msg);
1141
                ServiceFailure sf = new ServiceFailure("1333", msg);
1142
                sf.initCause(e);
1143
                throw sf;
1144
            }
1145
            
1146
            // update the local copy of system metadata for the pid
1147
            try {
1148
                HazelcastService.getInstance().getSystemMetadataMap().put(newSysMeta.getIdentifier(), newSysMeta);
1149
                logMetacat.info("Updated local copy of system metadata for pid " +
1150
                    pid.getValue() + " after change notification from the CN.");
1151
                
1152
            } catch (RuntimeException e) {
1153
                String msg = "SystemMetadata for pid " + pid.getValue() +
1154
                  " couldn't be updated: " +
1155
                  e.getMessage();
1156
                logMetacat.error(msg);
1157
                ServiceFailure sf = new ServiceFailure("1333", msg);
1158
                sf.initCause(e);
1159
                throw sf;
1160
            }
1161
        }
1162
        
1163
    }
1164
    
1165
    /*
1166
     * Set the replication status for the object on the Coordinating Node
1167
     * 
1168
     * @param session - the session for the this target node
1169
     * @param pid - the identifier of the object being updated
1170
     * @param nodeId - the identifier of this target node
1171
     * @param status - the replication status to set
1172
     * @param failure - the exception to include, if any
1173
     */
1174
    private void setReplicationStatus(Session session, Identifier pid, 
1175
        NodeReference nodeId, ReplicationStatus status, BaseException failure) 
1176
        throws ServiceFailure, NotImplemented, NotAuthorized, 
1177
        InvalidRequest {
1178
        
1179
        // call the CN as the MN to set the replication status
1180
        try {
1181
            this.cn = D1Client.getCN();
1182
            this.cn.setReplicationStatus(session, pid, nodeId,
1183
                    status, failure);
1184
            
1185
        } catch (InvalidToken e) {
1186
            throw new ServiceFailure("2151",
1187
                    "Could not set the replication status on the CN (InvalidToken): " + 
1188
                    e.getMessage());
1189
            
1190
        } catch (NotFound e) {
1191
            throw new ServiceFailure("2151",
1192
                    "Could not set the replication status on the CN (NotFound): " + 
1193
                    e.getMessage());
1194
            
1195
        }
1196

    
1197

    
1198
    }
1199
    
1200
}
(3-3/5)