444 Commits (440fc0aba174367eb2bb1e330c2ce172743182c2)

Author SHA1 Message Date
Rob Winch d973f5f80c SEC-2078: AbstractPreAuthenticatedProcessingFilter requriesAuthentication support for non-String Principals 11 years ago
Rob Winch 6a8475adbb SEC-2830: Provide Same Origin support for SockJS 11 years ago
Rob Winch a27c33754c SEC-2859: Add CsrfTokenArgumentResolver 11 years ago
Rob Winch 1a35292750 SEC-2791: AbstractRememberMeServices sets the version 11 years ago
Rob Winch 1a00c397a4 SEC-2835: Polish 11 years ago
Rob Winch 07c54e5d0e SEC-2831: Regex/AntPath RequestMatcher handle invalid HTTP method 11 years ago
Kazuki Shimizu 31234ecef9 SEC-2835: Add DelegatingAuthenticationFailureHandler 11 years ago
Kazuki Shimizu 1d0eee1d0b SEC-2840: Modify typo in DelegatingAccessDeniedHandler 11 years ago
Rob Winch 6627f76df7 SEC-2758: Make ROLE_ consistent 11 years ago
Rob Winch c67ff42b8a SEC-2783: XML Configuration Defaults Should Match JavaConfig 11 years ago
Rob Winch 6e204fff72 SEC-2781: Remove deprecations 11 years ago
Rob Winch eedbf44235 SEC-2348: Security HTTP Response Headers enabled by default w/ XML 11 years ago
Rob Winch 2e1e9885ec SEC-2054: Polish 11 years ago
Rob Winch e2f7b38b87 SEC-2054: BasicAuthenticationFilter not invoked on ERROR dispatch 11 years ago
Rob Winch fa9e7999da SEC-2569: SavedRequestAwareWrapper no longer overrides getCookies() 11 years ago
Rob Winch 5ba8f000a7 SEC-2714: Add AuthenticationPrincipal resolver for messaging support 12 years ago
Rob Winch e14e5b42fc SEC-2599: HttpSessionEventPublisher get required ApplicationContext 12 years ago
Rob Winch 3289c1c92a SEC-2683: Correct spelling of assignamble in AuthenticationPrincipalResolver Exception 12 years ago
Rob Winch 2082d3747a SEC-2578: HttpSessionSecurityContextRepository traverses HttpServletResponseWrapper 12 years ago
Mattias Severson 2b3becf666 SEC-2573: RequestHeaderRequestMatcher constructor argument name has typo 12 years ago
Rob Winch 8baf82532c SEC-2015: Add spring-security-test 12 years ago
Rob Winch c0590e614a SEC-2177: Polish 12 years ago
Maciej Zasada 7cf37856c0 SEC-2177: Striping off all leading schemes 12 years ago
Julien Dubois 7325b97c76 SEC-2519: RememberMeAuthenticationException supports root cause 12 years ago
Rob Winch ea902e5829 SEC-2507: WebExpressionVoter.supports support subclasses of FilterInvocation 12 years ago
Rob Winch e15cee62f4 SEC-2511: Remove double ALLOW-FROM in X-Frame-Options header 12 years ago
getvictor 6de138c2f2 SEC-2511: Remove double ALLOW-FROM from X-Frame-Options header. 12 years ago
Rob Winch 8d8475deb1 SEC-2455: form-login@login-processing-url & logout@logout-url use matchers 12 years ago
Rob Winch 2df5541905 SEC-2448: Update to HSQL 2.3.1 12 years ago
Rob Winch ca1080fb96 SEC-2439: HttpSessionCsrfTokenRepository setHeaderName sets header instead of parameter 12 years ago
Rob Winch aaa7cec32e SEC-2326: CsrfRequestDataValueProcessor implements RequestDataValueProcessor 12 years ago
Rob Winch 7f714ebb23 SEC-2422: Session timeout detection with CSRF protection 12 years ago
David Alberto f9998d582a Correct typo in AbstractRememberMeServices assertion 12 years ago
Rob Winch 59e13e7bbb SEC-2404: CsrfAuthenticationStrategy creates new valid CsrfToken 13 years ago
Rob Winch 1a1f577a8b SEC-2358: Add RequestHEaderRequestMatcher#toString() 13 years ago
Rob Winch e638f0a547 SEC-2357: old RequestMatcher interface extends new RequestMatcher 13 years ago
Rob Winch 04b091c385 SEC-2369: PreAuthenticatedGrantedAuthoritiesUserDetailsService fix case to createUserDetails method 13 years ago
Rob Winch 15a63c58a7 SEC-2368: DebugFilter outputs headers and HTTP method 13 years ago
Rob Winch 1351c8bada SEC-2362: Clarify AbstractRememberMeServices loginSuccess javadoc 13 years ago
Adrien be e50b587d60 SEC-2360: AbstractRememberMeServices provide message for Assert on key fieldd 13 years ago
Rob Winch 0b0e7dbea9 SEC-2359: Merge DefaultLoginPageViewFilter w/ DefaultLoginPageGeneratingFilter 13 years ago
Rob Winch 51171efa7a SEC-2357: Move *RequestMatcher to .matcher package 13 years ago
Rob Winch 45ad74a0bd SEC-2357: Fix package cycles 13 years ago
Rob Winch 14b9050616 SEC-2357: Move *RequestMatchers to .matchers package 13 years ago
Rob Winch 7d99436740 SEC-2358: Add RequestHeaderRequestMatcher 13 years ago
Rob Winch 0ac1176152 Polish RequestMatcher logging and toString 13 years ago
Rob Winch cffbefadd1 SEC-2306: Fix Session Fixation logging race condition 13 years ago
kazuki43zoo 611a97023d SEC-2352: HttpSessionCsrfTokenRepository lazy session creation 13 years ago
Rob Winch 17efd25717 SEC-2331: Include Expires: 0 in security headers documentation 13 years ago
Rob Winch cea0cf9260 SEC-2243: Remove additional Debug Filter 13 years ago