1377 Commits (617353eaa8dbcf57574e3feac0380eb47f6426e9)

Author SHA1 Message Date
Daniel Garnier-Moiroux 93250013e4
Make X-Xss-Protection configurable through ServerHttpSecurity 3 years ago
Steve Riesenberg e0e6467d9b
Remove UsernamePasswordAuthenticationToken check 3 years ago
shazin 1e0e9a2c98
Allow authenticationIsRequired to be overridden 3 years ago
Steve Riesenberg 46696a9226
CsrfTokenRequestHandler extends CsrfTokenRequestResolver 3 years ago
Steve Riesenberg 3c66ef6305
Change default SecurityContextRepository 3 years ago
Steve Riesenberg d140d95305
Fix assertion in NullSecurityContextRepository 3 years ago
Steve Riesenberg 5d757919a2
Add SecurityContextHolderStrategy to new repository 3 years ago
Rob Winch d94677f87e CsrfTokenRequestAttributeHandler -> CsrfTokenRequestHandler 3 years ago
Josh Cummings 2a487ae7f8
Updated hashcode and equals 3 years ago
Josh Cummings 3f8503f1b4
Deprecate AccessDecisionManager et al 3 years ago
Steve Riesenberg 088ebe2e00
Default CsrfTokenRequestProcessor.csrfRequestAttributeName = _csrf 3 years ago
Steve Riesenberg 86fbb8db07 Add new interfaces for CSRF request processing 3 years ago
Rob Winch 8cb97a090b Default CsrfFilter.csrfRequestAttributeName = _csrf 3 years ago
Steve Riesenberg 0aa5850d22
Fix formatting 3 years ago
Rob Winch 2efc8dcd15 Default Require Explicit Save SecurityContext 3 years ago
Rob Winch f84f08c4b9 Default HttpSessionRequestCache.matchingRequestParameterName=continue 3 years ago
Bert Vanwolleghem a5351f3d89
LogoutPageGeneratingWebFilter Uses Context Path 3 years ago
shinD 4ff0724c87
slight improvement in HttpSessionRequestCache 3 years ago
Rob Winch 2fb625db84 Remove mockito deprecations 3 years ago
cyb3r4nt 1d555b62e3 Fix IP address parse error msg in IpAddressMatcher 4 years ago
Rob Winch 8ad20b1768 Add CsrfFilter.csrfRequestAttributeName 4 years ago
Rob Winch 2aedf5899b LazyCsrfTokenRepository#loadToken Supports Deferring Delegation 4 years ago
Rob Winch 5b64526ba9 Add CsrfFilter.csrfRequestAttributeName 4 years ago
Rob Winch 666f175225 LazyCsrfTokenRepository#loadToken Supports Deferring Delegation 4 years ago
Marcus Da Coregio ead587c597 Consistently handle RequestRejectedException if it is wrapped 4 years ago
Marcus Da Coregio 6a2ca52aae Consistently handle RequestRejectedException if it is wrapped 4 years ago
Marcus Da Coregio 24bb83e2c7 Consistently handle RequestRejectedException if it is wrapped 4 years ago
Marcus Da Coregio 1c4d6ed098 Consistently handle RequestRejectedException if it is wrapped 4 years ago
Rob Winch c23324e7a7 RequestAttributeSecurityContextRepository never null SecurityContext 4 years ago
Rob Winch 269c711a64 RequestAttributeSecurityContextRepository never null SecurityContext 4 years ago
Rob Winch c9f8d2b111 RequestAttributeSecurityContextRepository never null SecurityContext 4 years ago
Marcus Da Coregio 0c549ee147 Use SHA256 by default in Remember Me 4 years ago
Marcus Da Coregio f45c4d4b8e Add SHA256 as an algorithm option for Remember Me token hashing 4 years ago
Marcus Da Coregio dda98f333c Polish 4 years ago
Marcus Da Coregio e17fe8ced9 Add SHA256 as an algorithm option for Remember Me token hashing 4 years ago
Josh Cummings 20def5e25d
Consolidate ExpressionAuthorizationDecision 4 years ago
Josh Cummings db25a37320
Consolidate ExpressionAuthorizationDecision 4 years ago
Marcus Da Coregio 7abea4a964 Add RuntimeHints suffix for RuntimeHintsRegistrar 4 years ago
Joe Grandja 177baba8c9 RuntimeHintsPredicates moved to predicate package 4 years ago
Marcus Da Coregio 6455e98745 FilterSecurityInterceptor applies to every request by default 4 years ago
Steve Riesenberg 206c6ffb54
Remove deprecation warnings with Context.putAll 4 years ago
Rob Winch 7da34cfa2c Fix logging for AnonymousAuthenticationFilter 4 years ago
Rob Winch 1c61748bb9 Fix logging for AnonymousAuthenticationFilter 4 years ago
Rob Winch 0bf985ed7c AnonymousAuthenticationFilter Avoids Eager SecurityContext Access 4 years ago
Rob Winch 415a674edc AnonymousAuthenticationFilter Avoids Eager SecurityContext Access 4 years ago
Rob Winch 6510274854 Request Cache supports matchingRequestParameterName 4 years ago
Rob Winch 28c0d1459c Request Cache supports matchingRequestParameterName 4 years ago
Josh Cummings d18ff25b95
Use SecurityContextHolderStrategy for NullSecurityContextRepository 4 years ago
Josh Cummings 05b788d1ac
Use SecurityContextHolderStrategy for Concurrency Filter 4 years ago
Josh Cummings 5357cb8c95
Use SecurityContextHolderStrategy for NullSecurityContextRepository 4 years ago