public boolean authorize( final HttpServletRequest request, String role )
{
Object user = request.getAttribute( WebConsoleSecurityProvider2.USER_ATTRIBUTE );
if ( user != null )
{
WebConsoleSecurityProvider provider = ( WebConsoleSecurityProvider ) tracker.getService();
if ( provider != null )
{
return provider.authorize( user, role );
}
// no provider, grant access (backwards compatibility)
return true;
}