Luke Taylor
347a2a91a9
SEC-1494: Document the use of system properties for disabling authorize tag functionality.
15 years ago
Luke Taylor
60befb063a
SEC-1659: Added crypto module to list of project modules in reference manual intro and to dependencies appendix.
15 years ago
Keith Donald
38327d1b16
SEC-1659: crypto docs
15 years ago
Luke Taylor
afd586c96e
Re-instate the CAS integration sequence description in the CAS chapter, with corrections (and minus proxying).
15 years ago
Luke Taylor
8da0de459b
SEC-1651: Added remaining module information to dependencies appendix.
15 years ago
Luke Taylor
b858b23927
SEC-1651: Added first draft of dependencies appendix to reference manual.
15 years ago
Luke Taylor
8d7830a1ee
SEC-1603: Add support in namespace for use of AuthenticationSuccessHandler with remember-me.
15 years ago
Luke Taylor
48ea0a6249
SEC-1638: Added paragraph to docs explaining that for complete security, an app should not switch out of HTTPS at all.
15 years ago
Luke Taylor
7cf9740fd4
SEC-1638: Added an example configuration to the Javadoc for ChannelProcessingFilter and a pointer from the reference manual.
15 years ago
Luke Taylor
ce421f22bf
SEC-1635: Stop security interceptors from calling AfterInvocationManager if exception occurs during invocation
15 years ago
Luke Taylor
4a40d80da1
SEC-1418: Deprecate GrantedAuthorityImpl in favour of final SimpleGrantedAuthority.
...
It should be noted that equality checks or lookups with Strings or other authority types will now fail where they would have succeeded before.
15 years ago
Luke Taylor
89f80659a1
Move docs on request matching to correct file and delete unused one
15 years ago
Luke Taylor
6b691f6fc0
SEC-1613: Corrected preauth docs.
15 years ago
Luke Taylor
cf0289bc02
SEC-1598: Removed invalid properties from SessionFixationProtectionStrategy bean declaration in Session Management chapter docbook.
15 years ago
Luke Taylor
fabadff5f1
SEC-1597: Corrected bean class name for RememberMeAuthenticationProvider in docbook source.
15 years ago
Luke Taylor
31afb9c76d
Deleted superseded dao-auth-provider.xml chapter.
15 years ago
Luke Taylor
07b9ded126
SEC-1599: Corrected docbook source.
15 years ago
Luke Taylor
173537f4f2
SEC-1584: Added namespace support for injecting custom HttpFirewall instance into FilterChainProxy.
15 years ago
Luke Taylor
f455e9a5a4
SEC-1584: Documentation of request-checking and matching process. Logging of servletPath and and pathInfo in DebugFilter for comparison.
15 years ago
Rob Winch
7258abbbf4
SEC-1585: changed spring-beans-3.1.xsd to spring-beans-3.0.xsd
15 years ago
Luke Taylor
1b2b371970
SEC-1544: Added CookieClearingLogoutHandler and 'delete-cookies' attribute to the 'logout' namespace element.
...
When the user logs out, the handler will attempt to delete the named cookies (which it is constructor-injected with) by expiring them in the response.
Also added documentation on the feature and a suggestion for deleting JSESSIONID through an Apache proxy server, if the servlet container doesn't allow clearing the session cookie.
15 years ago
rwinch
de819378fc
SEC-1536: added JAAS API Integration, updated doc, updated jaas sample
15 years ago
Luke Taylor
c5231fc213
SEC-1538: Deprecate PreAuthenticatedGrantedAuthoritiesAuthenticationDetails (forgot originally) and update documentation to remove reference to AbstractPreAuthenticationAuthenticationDetailsSource.
15 years ago
rwinch
58d9903ebc
SEC-1564: JAAS Configuration can now be injected into DefaultJaasAuthenticationProvider
15 years ago
Luke Taylor
c1418c7536
Minor change in doc information about samples since these are no longer in maven repo.
16 years ago
Luke Taylor
35335e84b3
Reset post-release build version.
16 years ago
Luke Taylor
23c4d1ec28
Set version to 3.1.0.M1.
16 years ago
Luke Taylor
d04e37c0c4
Minor changes to doc on version numbering. It's not true that minor versions are source/binary compatible.
16 years ago
Luke Taylor
992566b6cb
SEC-1527: Internationalization of contacts sample (Adding message resource bundle and RequestContextFilter). Re-working of L12n section of manual to mention existing localized message files and use of RequestContextFilter.
16 years ago
Luke Taylor
4935aa07c7
SEC-1535: Added suggested doc fixes.
16 years ago
Luke Taylor
bb7165ac6e
SEC-1530: Added information on calling getAllPrincipals() on SessionRegistry for direct use in an application to provide currently logged in users.
16 years ago
Luke Taylor
e2ba500c3c
SEC-1529: More user-friendly expressions on method annotations in EL chapter.
16 years ago
Luke Taylor
74b66591e9
Build refactoring.
16 years ago
Luke Taylor
5de68cb18f
SEC-1499: Additional doc paragraph that escaped the commit.
16 years ago
Luke Taylor
9dd6a5eb8f
SEC-1499: Added some Javadoc and doc on the problems of using session-fixation protection with attributes that implement HttpSessionBindingListener.
16 years ago
Luke Taylor
d7d8448120
SEC-1521: Add check for null SecurityContextRepository and clarify related docs on use of null implementation (NullSecurityContextRepository).
16 years ago
Luke Taylor
c1c8fd1874
SEC-1171: Changed attribute name/value from secured="false" to security="none" to allow future extension by adding extra options (e.g. contextOnly to provide security context information during the request).
16 years ago
Luke Taylor
080710e023
Minor doc updates on default filters created by namespace.
16 years ago
Luke Taylor
06368f956a
Minor doc/javadoc updates to clarify use of UserDetailsContextapper.
16 years ago
Luke Taylor
d6159e884a
Some minor doc fixes.
16 years ago
Luke Taylor
8ad6cbbe85
SEC-1508: Update docbook processing to use Docbook 5 namespaces.
16 years ago
Luke Taylor
8615369697
Added information on config jar to instructions on getting started using namespace.
16 years ago
Luke Taylor
4da4734750
Minor doc link updates and tidying.
16 years ago
Luke Taylor
ad82e6a575
SEC-1493: Documentation of support for erasing credentials.
16 years ago
Luke Taylor
1dd4787194
Added note in namespace chapter clarifying that method security only applies to Spring beans, plus aspectj mode info to appendix.
16 years ago
Luke Taylor
8bddc8f820
SEC-1484: Documentation for some namespace attributes.
16 years ago
Luke Taylor
0d94e75a93
SEC-1171: Documentation of changes related to use of multiple <http> elements.
16 years ago
Luke Taylor
ca91b9abc5
Corrected section layout in DB schema appendix of ref manual.
16 years ago
Luke Taylor
5aab06775e
SEC-1106: Added section on hierarchical roles to manual.
16 years ago
Luke Taylor
e0d06b2b53
Added documentation on RequestCache functionality.
16 years ago