Luke Taylor
|
4bd41cbf72
|
SEC-1133: Support for setting of authenticationDetailsSource property for form-login, openid-login, http-basic and x509 namespace elements. These elements now support an additional 'authentication-details-source-ref' attribute.
|
16 years ago |
Luke Taylor
|
992566b6cb
|
SEC-1527: Internationalization of contacts sample (Adding message resource bundle and RequestContextFilter). Re-working of L12n section of manual to mention existing localized message files and use of RequestContextFilter.
|
16 years ago |
Luke Taylor
|
281d77271e
|
SEC-1486, SEC-1538, SEC-1537: Generification of AuthenticationDetailsSource. Deprecation of non-web pre-authentication classes and other unnecessary classes. Removal of reflection in WebAuthenticationDetailsSource.
|
16 years ago |
Luke Taylor
|
4935aa07c7
|
SEC-1535: Added suggested doc fixes.
|
16 years ago |
Luke Taylor
|
2222a7be07
|
Use Integer.valueOf() in preference to new Integer()
|
16 years ago |
Luke Taylor
|
db6da77a5f
|
SEC-1413: Add RedirectStrategy to AbstractRetryEntryPoint.
|
16 years ago |
Luke Taylor
|
dca0fd871c
|
SEC-1532: Add cache of previously matched beans to ProtectPointcutPostProcessor to ensure that it doesn't perform pointcut matching every time a new prototype bean is created.
|
16 years ago |
Luke Taylor
|
183333d189
|
SEC-1430: Forgot to commit changes to new ExceptionMappingAuthenticationFailureHandlerTests.
|
16 years ago |
Luke Taylor
|
2e98b84494
|
SEC-1430: internalize session key for SavedRequest. This should be accessed using the RequestCache interface if required. Additional refactoring of related tests which were still in AbstractAuthenticationProcessingFilterTests for historical reasons, but should be in their respective success/failure handler test classes.
|
16 years ago |
Luke Taylor
|
bb7165ac6e
|
SEC-1530: Added information on calling getAllPrincipals() on SessionRegistry for direct use in an application to provide currently logged in users.
|
16 years ago |
Luke Taylor
|
1a838c2049
|
SEC-1533: AclAuthorizationStrategyImpl can now take either one or three GrantedAuthority arguments. If only one is supplied, it will be used for all 3 of the permissions supported by the class.
|
16 years ago |
Luke Taylor
|
acad848690
|
Update aspectj to 1.6.9
|
16 years ago |
Luke Taylor
|
85c4c91e0e
|
IDEA inspection refactorings.
|
16 years ago |
Luke Taylor
|
a3d27a9863
|
SEC-1314: cloneFromHttpSession accidentally go left behind, even though it is always false.
|
16 years ago |
Luke Taylor
|
a2bd1bc9af
|
SEC-1498: Allow use of absolute URL fopr login form in LoginUrlAuthenticationEntryPoint.
|
16 years ago |
Luke Taylor
|
e2ba500c3c
|
SEC-1529: More user-friendly expressions on method annotations in EL chapter.
|
16 years ago |
Luke Taylor
|
413b2a06e3
|
Improvements in up-to-date checking and use of parallel tests where possible.
|
16 years ago |
Luke Taylor
|
64375484a1
|
More build and logging tuning.
|
16 years ago |
Luke Taylor
|
c9b0bc1bd9
|
Added gradle wrapper support.
|
16 years ago |
Luke Taylor
|
c4ee46824c
|
Removing log4j.properties files and adding logback config ones.
|
16 years ago |
Luke Taylor
|
74b66591e9
|
Build refactoring.
|
16 years ago |
Luke Taylor
|
6e831d6504
|
Adding bundlor template for aspects project, plus minor build updates.
|
16 years ago |
Luke Taylor
|
63734cfcf9
|
SEC-1528: Remove logic which checks if context in the session is the same as the current context to make sure that session.setAttribute() is called when the value in the session has been modified directly.
|
16 years ago |
Luke Taylor
|
d1279aeda2
|
Logging adjustments for gae sample.
|
16 years ago |
Luke Taylor
|
6ba8257cab
|
Renamed file to fix case-sensitivity issue.
|
16 years ago |
Luke Taylor
|
ab248b2583
|
SEC-1454: Added use of Spring's new AopProxyUtils.ultimateTargetClass() method when resolving the target class in MethodSecurityEvaluationContext.
|
16 years ago |
Luke Taylor
|
52edf115ce
|
Workaround for repeated attempt to download CAS server poms (GRADLE-1072)
|
16 years ago |
Luke Taylor
|
b5269625af
|
Incorporate Chris's improvements to the bundlor build file (proper integration with incremental build support).
|
16 years ago |
Luke Taylor
|
2d9a848265
|
Added missing gradle build files for remaining samples. Some related reordering, dependency fixing etc. CAS sample no longer requires two separate subprojects as both client and server app can be run from a single gradle build.
|
16 years ago |
Luke Taylor
|
b854e67952
|
SEC-1522: Treat empty attribute collection the same as null when returned by SecurityMetadataSource. Both are now treated as public invocations.
|
16 years ago |
Luke Taylor
|
a74077f9b1
|
SEC-1490: Minor changes to GAE sample. Simplification of redirect to registration page (only needs to be done after authentication).
|
16 years ago |
Luke Taylor
|
5de68cb18f
|
SEC-1499: Additional doc paragraph that escaped the commit.
|
16 years ago |
Luke Taylor
|
97bc240602
|
SEC-1519: Added extra constructor to make sure strategy objects are initialized before the first attempt to retrieve an object from the Acl cache.
|
16 years ago |
Luke Taylor
|
9dd6a5eb8f
|
SEC-1499: Added some Javadoc and doc on the problems of using session-fixation protection with attributes that implement HttpSessionBindingListener.
|
16 years ago |
Luke Taylor
|
d7d8448120
|
SEC-1521: Add check for null SecurityContextRepository and clarify related docs on use of null implementation (NullSecurityContextRepository).
|
16 years ago |
Luke Taylor
|
e659e15f90
|
Tidying.
|
16 years ago |
Luke Taylor
|
2afccfc633
|
Remove commons-logging dependency properly and switch tutorial sample to logback/slf4j.
|
16 years ago |
Luke Taylor
|
118af45b8e
|
SEC-1520: Close NamingEnumeration in LDAP compare implementation.
|
16 years ago |
Luke Taylor
|
36e0fb6d91
|
SEC-1518: Fix element ordering in security.tld
|
16 years ago |
Luke Taylor
|
7ce29d3e3d
|
Don't set GAE location unless property available
|
16 years ago |
Luke Taylor
|
a681dee0e1
|
Minor sample build changes. JSTL dependency update.
|
16 years ago |
Luke Taylor
|
e5a302b5c4
|
SEC-1490: Correct loggedout URL.
|
16 years ago |
Luke Taylor
|
5d35919ca3
|
SEC-1490: Code for GAE Sample webapp
|
16 years ago |
Luke Taylor
|
c1c8fd1874
|
SEC-1171: Changed attribute name/value from secured="false" to security="none" to allow future extension by adding extra options (e.g. contextOnly to provide security context information during the request).
|
16 years ago |
Luke Taylor
|
a4fd191499
|
Added check for use of "ref" with other attributes in <authentication-provider>.
|
16 years ago |
Luke Taylor
|
ea5f2088b5
|
Comment out OpenLDAP tests to allow running in IDEA, and reduce default load configuration of performance test class.
|
16 years ago |
Luke Taylor
|
4683273c2c
|
Correct message in namespace handler when web classes are missing.
|
16 years ago |
Luke Taylor
|
69a10c48ae
|
Switch to using slf4j/logback for logging.
We still compile modules against commons-logging but all runtime logging and samples will use logback
|
16 years ago |
Luke Taylor
|
ed447f63f6
|
Added intellij plugin to gradle build.
|
16 years ago |
Luke Taylor
|
6894544122
|
Fixed serialization issue with gradle TarUpload task
|
16 years ago |