Josh Cummings
e900ca3a86
Polish Method Security Preparation Steps
...
- Add instruction to declare 5.8 defaults
Issue gh-11337
3 years ago
Josh Cummings
b4974bbce9
Polish Message Security Preparation Steps
...
- Added step to declare the 5.8 default in case later preparation steps
cannot be taken yet
Issue gh-11337
3 years ago
Josh Cummings
f2fc2f9a2b
Add Message Security Cleanup Steps
...
Issue gh-11337
3 years ago
Josh Cummings
31a1486b88
Add Message Security Preparation Steps
...
Issue gh-11337
3 years ago
Rob Winch
5721b0351e
Polish RequestCache continue Kolin Configuration
...
Issue gh-12089
3 years ago
Rob Winch
aac1261f0c
Document Migration to SecurityContextHolderFilter
...
Closes gh-12098
3 years ago
Josh Cummings
1dd13e69a4
Standardize Preparation Guide Layout
...
Closes gh-12096
3 years ago
Josh Cummings
cc8a93e5ec
Restore Missing Links to Migration Guide
3 years ago
Josh Cummings
f29d1da0a5
Add Link to 5.8 Preparation Guide
...
Closes gh-12093
3 years ago
Josh Cummings
2a95a24390
Add Link to 6.0 Migration Guide
...
Issue gh-12093
3 years ago
Josh Cummings
2b50aa3ae0
Polish Method Security Migration Steps
...
Removed checkboxes when there is only one step
3 years ago
Rob Winch
24cc7ff178
Document Saved Requests Migration
...
Closes gh-12089
3 years ago
Rob Winch
c17e258a6f
Document Saved Requests
...
Closes gh-12088
3 years ago
Josh Cummings
d076ddb26c
Polish Method Security Migration Steps
3 years ago
Josh Cummings
f6731e89db
Polish Method Security Preparation Steps
3 years ago
Josh Cummings
4528561326
Add Method Security Migration Steps
3 years ago
Josh Cummings
04fa5af794
Add Missing Doc Header
...
The EnableMethodSecurity section
3 years ago
Josh Cummings
e505bc3af4
Add Method Security Preparation Steps
3 years ago
Josh Cummings
4ba8f8bfe0
Update What's New
...
Closes gh-12024
3 years ago
Josh Cummings
f4cc27c375
Change Default for (Server)AuthenticationEntryPointFailureHandler
...
Closes gh-9429
3 years ago
Steve Riesenberg
d6356415f9
Polish whats-new.adoc
3 years ago
Steve Riesenberg
74e0616451
Update What's New for 6.0
3 years ago
Steve Riesenberg
5a55987d6e
Add links to reference in What's New for 5.8
...
Issue gh-4001
Issue gh-11959
3 years ago
Josh Cummings
59c4538798
Update What's New
...
Closes gh-12021
3 years ago
Josh Cummings
fe96a62dfc
Document Observability Support
...
Issue gh-10964
3 years ago
Joe Grandja
bf1e622751
Update What's New in 6.0 for PasswordEncoders
...
Issue gh-11985
3 years ago
Joe Grandja
ffbcaca24a
Update reference for PasswordEncoders
...
Issue gh-10506
3 years ago
Marcus Da Coregio
4b6fed0667
Add static factory method to AntPathRequestMather and RegexRequestMatcher
...
Closes gh-11938
3 years ago
Daniel Garnier-Moiroux
27059ced87
Default X-Xss-Protection header value to "0"
...
Closes gh-9631
3 years ago
Steve Riesenberg
f462134e87
Add reactive support for BREACH
...
Closes gh-11959
3 years ago
Marcus Da Coregio
398f5dee7f
Remove deprecated RequestMatcher methods from Java Configuration
...
Closes gh-11939
3 years ago
Marcus Da Coregio
9fd195d419
Default to shouldFilterAllDispatcherTypes=true in XML
...
Closes gh-11970
3 years ago
Marcus Da Coregio
f3321c256c
Add XML support for shouldFilterAllDispatcherTypes
...
Closes gh-11492
3 years ago
Josh Cummings
12b9f2e196
use-authorization-manager defaults to true
...
Closes gh-11929
3 years ago
Marcus Da Coregio
c4d23f2b49
Use MvcRequestMatcher by default if Spring MVC is present
...
Closes gh-11899
3 years ago
Steve Riesenberg
dce1c30522
Add support for BREACH
...
Closes gh-4001
3 years ago
Steve Riesenberg
c1fcf275d9
Update What's New for 5.8
...
Issue gh-11952
3 years ago
Marcus Da Coregio
ace8caa182
Remove mvcMatchers usage from docs
...
Issue gh-11347
3 years ago
Marcus Da Coregio
35f7e46d05
Remove WebSecurityConfigurerAdapter
...
Closes gh-10902
3 years ago
Steve Riesenberg
475b3bb6bb
Add deferred CsrfTokenRepository.loadDeferredToken
...
* Move DeferredCsrfToken to top-level and implement Supplier<CsrfToken>
* Move RepositoryDeferredCsrfToken to top-level and make package-private
* Add CsrfTokenRepository.loadToken(HttpServletRequest, HttpServletResponse)
* Update CsrfFilter
* Rename CsrfTokenRepositoryRequestHandler to CsrfTokenRequestAttributeHandler
Issue gh-11892
Closes gh-11918
3 years ago
Daniel Garnier-Moiroux
0e215a21ad
Add X-Xss-Protection headerValue to XML config
...
Issue gh-9631
3 years ago
Marcus Da Coregio
039e0328e1
Simplify Java Configuration RequestMatcher Usage
...
If Spring MVC is present in the classpath, use MvcRequestMatcher by default. This commit also adds a new securityMatcher method in HttpSecurity
Closes gh-11347
Closes gh-9159
3 years ago
Daniel Garnier-Moiroux
bf59d7c374
Update What's New for 5.8
3 years ago
Steve Riesenberg
43a1f8249c
Update What's New for 6.0
3 years ago
Steve Riesenberg
6c6aedf772
Update What's New for 6.0
3 years ago
Steve Riesenberg
181ee7410b
Change default authority for oauth2Login()
...
Previously, the default authority was ROLE_USER when using
oauth2Login() for both OAuth2 and OIDC providers.
* Default authority for OAuth2UserAuthority is now OAUTH2_USER
* Default authority for OidcUserAuthority is now OIDC_USER
Documentation has been updated to include this implementation detail.
Closes gh-7856
3 years ago
Steve Riesenberg
c0e784b16d
Update What's New for 6.0
3 years ago
Steve Riesenberg
46696a9226
CsrfTokenRequestHandler extends CsrfTokenRequestResolver
...
Closes gh-11896
3 years ago
Rob Winch
d94677f87e
CsrfTokenRequestAttributeHandler -> CsrfTokenRequestHandler
...
This renames CsrfTokenRequestAttributeHandler to CsrfTokenRequestHandler and
moves usage from CsrfFilter into CsrfTokenRequestHandler.
Closes gh-11892
3 years ago
Josh Cummings
70460ca009
Adjust OAuth2 Resource Server packaging
...
Closes gh-7349
3 years ago