Luke Taylor
725ec767b6
Javadoc typo corrected (as suggested on mailing list)
21 years ago
Scott McCrory
c2c48b905b
Added package.html files to reamining java packages (see http://opensource.atlassian.com/projects/spring/browse/SEC-41 )
21 years ago
Scott McCrory
f5975dcf30
Whoops, almost forgot to remove System.out debug lines :-/
21 years ago
Scott McCrory
891cd7380c
Mirrored Ben's FilterChainProxy.java 1.5 spelling fix to its corresponding test class, which depended on equality of the exception message. All JUnit tests pass now.
21 years ago
Scott McCrory
dc31553f2a
Syntax
21 years ago
Scott McCrory
db4ed4bc44
Added debug statement to AbstractTicketValidator to help with Acegi+CAS+SSL setup (thanks Seth Ladd for the patch) (see http://opensource.atlassian.com/projects/spring/browse/SEC-34 )
21 years ago
Scott McCrory
c66c5dfab5
AuthorizeTag no longer depends on JDK 1.4. Tested on Websphere 5.0 w/JDK 1.3 (see http://opensource.atlassian.com/projects/spring/browse/SEC-11 )
21 years ago
Scott McCrory
32f62d1ef1
Added SiteminderAuthenticationProcessingFilter for Ben's review. <Untested>.
21 years ago
Ben Alex
f625d06cd9
Avoid expense of HttpSession when working with anonymous users.
21 years ago
Ben Alex
4ad98a7df3
Spelling correction, thanks to Zack Chandler.
21 years ago
Ben Alex
c5ba30b001
Comment how to make a signing certificate.
21 years ago
Ray Krueger
4b98d357ff
SecureContextLoginModuleTest has been renamed to ...Tests as per Acegi project.
...
SecureContextLoginModule now throws a LoginException if there is no authentication present, if the ignoreMissingAuthentication option is true, the login() method will simply return false.
21 years ago
Luke Taylor
e51c38aec9
Removed reference in Javadoc to obtaining and validating the SecureContext (checking for null etc), as this is no longer relevant.
21 years ago
Luke Taylor
c89d4a8add
Added trimming of whitespace to tokens and use of Springs StringUtils.hasText() to check for content in the string passed to setAsText.
21 years ago
Marc-Antoine Garrigue
3287439421
Initial commit for captcha adapter
21 years ago
Luke Taylor
74588c8e53
Move acegifier code from core.
21 years ago
Luke Taylor
5bbc54ac42
Javadoc typo corrected
21 years ago
Ben Alex
d9b1a8e83c
Fix typo in InteractiveAuthenticationSucces(s)Event
21 years ago
Ben Alex
c7bfeeaf58
Clarify local variable name given it was the same as a member variable.
21 years ago
Luke Taylor
ab065923d4
Correct doctype for generated web.xml files and add declaration to test file.
21 years ago
Luke Taylor
22a28f3b39
Separate InMemoryResource class for use in Acegifier web application.
21 years ago
Luke Taylor
7268c81192
Fix for SEC-27. Now checks for a null authentication before proceeding to fire the success event.
21 years ago
Luke Taylor
f1656ee7fd
Tidying: removed unused intermediate variable.
21 years ago
Luke Taylor
6f467def90
Added conversion of URLs ending in '*' to the ant '**' form.
21 years ago
Luke Taylor
9e1a773cc7
Add xsl resources to build.
21 years ago
Luke Taylor
d13faf0815
Renaming and refactoring of web.xml converter.
21 years ago
Luke Taylor
118f6401d8
XSL file for converting web.xml to acegified version.
21 years ago
Luke Taylor
a2bc398915
Refactoring and commenting XSL
21 years ago
Ben Alex
3e4a29eae9
FilterSecurityInterceptor now has an observeOncePerRequest boolean property, allowing multiple fragments of the HTTP request to be individually authorized (see http://opensource.atlassian.com/projects/spring/browse/SEC-14 ).
21 years ago
Ben Alex
5c883e639f
Add InteractiveAuthenticationSuccessEvent handling to authentication mechanisms.
21 years ago
Ben Alex
60f8095cf2
Make Authenticated.isAuthenticated() behaviour switchable. See http://opensource.atlassian.com/projects/spring/browse/SEC-13 .
21 years ago
Ben Alex
ef8281f534
HttpSessionContextIntegrationFilter elegantly handles IOExceptions and ServletExceptions within filter chain (see http://opensource.atlassian.com/projects/spring/browse/SEC-20 ).
21 years ago
Luke Taylor
25fa471779
First version of web.xml to acegi translator
21 years ago
Ben Alex
a312fede74
Refactor DAO authentication failure events under a consistent abstract superclass (thanks to Mark St Godard for suggestion).
21 years ago
Ben Alex
c0f1d4e19d
Remove getters and setters from JdbcDaoImpl so IoC container cannot modify MappingSqlQuerys (thanks to David Durham for bug report).
21 years ago
Ben Alex
a15691d9d7
Silently catch NotSerializableException in AbstractProcessingFilter if rootCause is not Serializable (thanks to Joseph Dane for reporting this bug).
21 years ago
Ben Alex
5f75e9bf9a
Refactor Authentication.isAuthenticated() handling to be more performance (as per developer list discussion).
21 years ago
Ben Alex
a7b5299e77
Correct synchronization issue with FilterToBeanProxy initialization (thanks to George Franciscus and Volker Malzahn as per acegisecurity-developer discussion 4 June 2005).
21 years ago
Ben Alex
c699f7d40e
Support non-username as primary key.
21 years ago
Ben Alex
25cb085df7
More JavaDocs.
21 years ago
Ben Alex
3401072368
Made Serializable as per acegisecurity-developer list discussion on 20 May 2005.
21 years ago
Ben Alex
4e55780e7c
Performance optimisations thanks to Paulo Neves.
21 years ago
Ben Alex
cfb8271826
Reorder DaoAuthenticationProvider exception logic as per developer list discussion.
21 years ago
Ben Alex
ecbfac2ff8
Made AclEntry Serializable (correct issue with BasicAclEntryCache).
21 years ago
Ben Alex
fa6924a373
Update project workspace settings to Java 1.5. NB: Maven remains at 1.3 compatibility for all subprojects except "domain". It is recommended the Eclipse "Problems" view be customised to not display items containing "Type Safety:" in their description. Developers should NOT introduce 1.5+ dependencies to any projects apart from "domain".
21 years ago
Ben Alex
e08e66dec6
Refactor SecurityContextHolder to return a SecurityContext instead of Authentication.
21 years ago
Ben Alex
6a9abe5d90
Remove ContextHolder and introduce SecurityContext.
21 years ago
Ray Krueger
47989c11bd
HttpSessionEventPublisher now verifies that the ApplicationContext is not null
21 years ago
Ben Alex
d169829f27
AbstractAuthenticationToken.getName() now returns username alone if UserDetails present.
21 years ago
Ray Krueger
54ccbf5617
The SecurityEnforcementFilter was forced to catch Throwable by the FilterInvocation.invoke(...) method. Therefore it was wrapping the throwable in ServletException, which left it wrapping SevletException and IOException in ServletException.
21 years ago