Rob Winch
78f85cc129
SEC-2349: Number the reference
12 years ago
Rob Winch
85ec2429d9
SEC-2349: Externalize FAQ
12 years ago
Rob Winch
e638f0a547
SEC-2357: old RequestMatcher interface extends new RequestMatcher
12 years ago
Rob Winch
355f884d22
SEC-2093: Document what is new in Spring Security 3.2
12 years ago
Rob Winch
4a24c81147
SEC-2299: Document @AuthenticationPrincipal
12 years ago
Rob Winch
5f290ba10f
SEC-2371: Remove ObjectPostProcessor.QUIESENT_POSTPROCESSOR
12 years ago
Rob Winch
a3009e303b
SEC-2299: Document Web MVC integration
12 years ago
Rob Winch
6ea95cc3a3
SEC-2094: Document Concurrency Support
12 years ago
Rob Winch
04b091c385
SEC-2369: PreAuthenticatedGrantedAuthoritiesUserDetailsService fix case to createUserDetails method
12 years ago
Rob Winch
15a63c58a7
SEC-2368: DebugFilter outputs headers and HTTP method
12 years ago
Rob Winch
604c26eb0d
Shis simplifies the class hieararchy significantly.EC-2366: Extract AbstractRequestMatcherRegistry from AbstractRequestMatcherConfigurer
...
This simplifies the class hierarchy significantly.
12 years ago
Rob Winch
348e3a22b6
SEC-2365: registerAuthentication->configure
12 years ago
Rob Winch
db3c626ac9
SEC-2281: Document Java Configuration
12 years ago
Rob Winch
e3f58fd9d3
Polish guide
12 years ago
Rob Winch
bbefc62a87
Fix Security Header's link to HttpServletResponse.setHeader
12 years ago
Rob Winch
730dcffe6d
Fix crossrefs in footnotes
12 years ago
Rob Winch
bf3b5459cd
Fix Authors of manual
12 years ago
Rob Winch
1351c8bada
SEC-2362: Clarify AbstractRememberMeServices loginSuccess javadoc
12 years ago
Rob Winch
0978c12c47
SEC-2361: Java Config Sampels use @Autowired AuthenticationManagerBuilder
12 years ago
Adrien be
e50b587d60
SEC-2360: AbstractRememberMeServices provide message for Assert on key fieldd
12 years ago
Rob Winch
0b0e7dbea9
SEC-2359: Merge DefaultLoginPageViewFilter w/ DefaultLoginPageGeneratingFilter
12 years ago
Rob Winch
51171efa7a
SEC-2357: Move *RequestMatcher to .matcher package
12 years ago
Rob Winch
45ad74a0bd
SEC-2357: Fix package cycles
12 years ago
Rob Winch
14b9050616
SEC-2357: Move *RequestMatchers to .matchers package
12 years ago
Rob Winch
f2b44e6beb
Fix javadoc whitespace issue in HttpBasicConfigurer
12 years ago
Rob Winch
4ef0460ef6
SEC-2321: Improve Java Config defaults for JavaScript clients
12 years ago
Rob Winch
7d99436740
SEC-2358: Add RequestHeaderRequestMatcher
12 years ago
Rob Winch
0ac1176152
Polish RequestMatcher logging and toString
12 years ago
Rob Winch
76a8bbe98d
SEC-2354: Add failOnMissingWebXml=false to sample pom.xml
12 years ago
Rob Winch
cffbefadd1
SEC-2306: Fix Session Fixation logging race condition
...
Previously session fixation protection could output an incorrect warning
that session fixation protection did not work.
The code now synchronizes on WebUtils.getSessionMutex(..).
12 years ago
kazuki43zoo
611a97023d
SEC-2352: HttpSessionCsrfTokenRepository lazy session creation
12 years ago
Rob Winch
5f10d84bf5
SEC-2303: WebSecurity sets the Bean resolver
12 years ago
Rob Winch
d28058303b
SEC-2349: Move FAQ into reference
12 years ago
Rob Winch
dd1c2483b5
SEC-2349: Fix documentation tests
12 years ago
Rob Winch
4b43cf3f50
SEC-2349: Convert Reference to Asciidoctor
12 years ago
Rob Winch
df5e034fc3
SEC-2282: Polish CSRF Documentation
12 years ago
Rob Winch
8087cde628
SEC-2331: Include Expires: 0 in xsd and appendix
12 years ago
Rob Winch
8fed90c26c
SEC-2282: Add links for AccessDeniedHandler in CSRF doc
12 years ago
Rob Winch
3e95f1c12e
SEC-2282: Polish CSRF Documentation
12 years ago
Rob Winch
ee33a6deeb
SEC-2285: Headers doc explicitly state default headers
12 years ago
Rob Winch
17efd25717
SEC-2331: Include Expires: 0 in security headers documentation
12 years ago
Rob Winch
06a0ec1a9f
SEC-2285: Polish Security Headers Documentation
...
Explain why (passivity) XML Namespace doesn't enable security headers by
default.
12 years ago
Rob Winch
9bb283044f
SEC-2282: Polish CSRF Documentation
...
Explain why (passivity) XML Namespace doesn't enable csrf protection by
default.
12 years ago
Rob Winch
614c94187e
SEC-2305: GlobalMethodSecurityConfiguration autowire PermissionEvaluator
...
If a single PermissionEvaluator bean is found the
DefaultMethodSecurityExpressionHandler is configured with the
PermissionEvaluator. If multiple PermissionEvaluator beans are found, the
beans are ignored.
12 years ago
Rob Winch
e696890e8e
SEC-2151: Fix spring4Test
12 years ago
Rob Winch
61e6acb3f4
SEC-2151: AnnotationParameterNameDiscoverer support single annotated param
...
This makes sense since often times only a single argument is necessary in
the expression.
12 years ago
Rob Winch
e5f034bdef
SEC-2151: Fix tests
12 years ago
Rob Winch
a09756745f
SEC-2151: Support binding method arguments with Annotations
...
This allow utilizing method arguments for method access control on
interfaces prior to JDK 8.
12 years ago
Rob Winch
fb0a8d19e8
SEC-2322: Support StandardReflectionParameterNameDiscoverer
12 years ago
Rob Winch
cea0cf9260
SEC-2243: Remove additional Debug Filter
12 years ago