using System; namespace Disco.Services.Authorization { public class DiscoAuthorizeAllAttribute : DiscoAuthorizeBaseAttribute { string[] authorizedClaims; public DiscoAuthorizeAllAttribute(params string[] AuthorisedClaims) { if (AuthorisedClaims == null || AuthorisedClaims.Length == 0) throw new ArgumentNullException("AuthorisedClaims"); authorizedClaims = AuthorisedClaims; } public override bool IsAuthorized(System.Web.HttpContextBase httpContext) { if (Token == null) return false; // No Current User return Token.HasAll(authorizedClaims); } public override string HandleUnauthorizedMessage() { return AuthorizationToken.BuildRequireAllMessage(authorizedClaims); } } }