Marcus Da Coregio
18427b6411
Configure WebInvocationPrivilegeEvaluator bean for multiple filter chains
...
Closes gh-10554
4 years ago
Marcus Da Coregio
7e17a00197
Add RequestMatcherEntry
4 years ago
Marcus Da Coregio
53b8cff26f
Introduce AuthorizationManagerWebInvocationPrivilegeEvaluator
...
Closes gh-10590
4 years ago
Eleftheria Stein
c68a75bcde
Correct imports to jakarta
...
Issue gh-9385, gh-10118
4 years ago
Marcus Da Coregio
0beb725259
Add Cross Origin Policies headers
...
Add DSL support for Cross-Origin-Opener-Policy, Cross-Origin-Embedder-Policy and Cross-Origin-Resource-Policy headers
Closes gh-9385, gh-10118
4 years ago
Marcus Da Coregio
65426a40ec
Add Cross Origin Policies headers
...
Add DSL support for Cross-Origin-Opener-Policy, Cross-Origin-Embedder-Policy and Cross-Origin-Resource-Policy headers
Closes gh-9385, gh-10118
4 years ago
Steve Riesenberg
62e8799a8d
Use BDD in tests
4 years ago
Steve Riesenberg
df0f6f83af
Polish gh-9597
4 years ago
Karl Tinawi
925d531cbe
Set details on authentication token created by HttpServlet3RequestFactory
...
Currently the login mechanism when triggered by executing HttpServlet3RequestFactory#login does not set any details on the underlying authentication token that is authenticated.
This change adds an AuthenticationDetailsSource on the HttpServlet3RequestFactory, which defaults to a WebAuthenticationDetailsSource.
Closes gh-9579
4 years ago
Steve Riesenberg
aa3c883f87
Use BDD in tests
4 years ago
Steve Riesenberg
d37ff18b69
Polish gh-9597
4 years ago
Karl Tinawi
c57fc309c2
Set details on authentication token created by HttpServlet3RequestFactory
...
Currently the login mechanism when triggered by executing HttpServlet3RequestFactory#login does not set any details on the underlying authentication token that is authenticated.
This change adds an AuthenticationDetailsSource on the HttpServlet3RequestFactory, which defaults to a WebAuthenticationDetailsSource.
Closes gh-9579
4 years ago
Steve Riesenberg
65b3584ac6
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
fa5b8c6090
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
0be66d2cc0
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
47b8860681
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
c7ffd2513a
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
bb2d80fea3
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
5dd2565348
Update copyright year
...
Issue gh-10557
4 years ago
Steve Riesenberg
1d814f95d5
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
414e096ae4
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
3aa2a60f97
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
828cac8889
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
f49c286050
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
b3e0f167ff
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Steve Riesenberg
41c6776455
Fix case sensitive headers comparison
...
Closes gh-10557
4 years ago
Josh Cummings
1251cde04c
Add Missing Since
...
Issue gh-10482
4 years ago
Igor Pelesic
a3a9de1b9b
PermitAllSupport supports AuthorizeHttpRequestsConfigurer
...
PermitAllSupport supports either an ExpressionUrlAuthorizationConfigurer or an AuthorizeHttpRequestsConfigurer. If none or both are configured an error message is thrown.
Closes gh-10482
4 years ago
Josh Cummings
7e55c84cfc
Add Missing Since
...
Issue gh-10482
4 years ago
Igor Pelesic
72109e2921
PermitAllSupport supports AuthorizeHttpRequestsConfigurer
...
PermitAllSupport supports either an ExpressionUrlAuthorizationConfigurer or an AuthorizeHttpRequestsConfigurer. If none or both are configured an error message is thrown.
Closes gh-10482
4 years ago
Steve Riesenberg
204f0b4599
Polish gh-10007
4 years ago
Guirong Hu
43317c5a61
Support IP whitelist for Spring Security Webflux
...
Closes gh-7765
4 years ago
Steve Riesenberg
898ba67098
Polish gh-10007
4 years ago
Guirong Hu
9f51240bf1
Support IP whitelist for Spring Security Webflux
...
Closes gh-7765
4 years ago
Steve Riesenberg
9a9136d96d
Fix import spacing
4 years ago
Steve Riesenberg
c6a27d44e5
Remove failing test due to HttpMethod changes
...
Closes gh-10569
4 years ago
Marcus Da Coregio
25feedb870
Fix removal of framework deprecated code
...
Issue https://github.com/spring-projects/spring-framework/issues/27686
4 years ago
Marcus Da Coregio
01be7eca6e
Improve log message when no CSRF token found
...
Closes gh-10436
4 years ago
Marcus Da Coregio
5a47e17a0d
Improve log message when no CSRF token found
...
Closes gh-10436
4 years ago
Marcus Da Coregio
e05c9f4bba
Improve log message when no CSRF token found
...
Closes gh-10436
4 years ago
Marcus Da Coregio
2bf7a5ae80
Improve log message when no CSRF token found
...
Closes gh-10436
4 years ago
Rob Winch
bd34d70f97
Prevent Save @Transient Authentication with existing HttpSession
...
Previously, @Transient Authentication would get saved if an existing
HttpSession existed but it shouldn't.
This commit always prevents @Transient Authentication from being saved.
Closes gh-9992
4 years ago
Rob Winch
96a6fef820
Prevent Save @Transient Authentication with existing HttpSession
...
Previously, @Transient Authentication would get saved if an existing
HttpSession existed but it shouldn't.
This commit always prevents @Transient Authentication from being saved.
Closes gh-9992
4 years ago
Marcus Da Coregio
db60df2f9c
Update to Spring Framework 6.0
...
Issue gh-10360
4 years ago
Marcus Da Coregio
caad3d57e2
Improve log message when no CSRF token found
...
Closes gh-10436
4 years ago
Marcus Da Coregio
89db1c37a3
Update DefaultWebInvocationPrivilegeEvaluator to use current ServletContext
...
Closes gh-10208
4 years ago
Marcus Da Coregio
00f4033b9b
Update DefaultWebInvocationPrivilegeEvaluator to use current ServletContext
...
Closes gh-10208
4 years ago
Rob Winch
e4a76b0ec9
Checkstyle Fixes
...
- Javadoc tag ordering
- Private constructors before inner classes
Issue gh-10394
4 years ago
Emil Sierżęga
04b47c5928
Fixed various broken links in Javadocs
4 years ago
Emil Sierżęga
a188138715
Javadocs author tag doesn't work in methods
4 years ago