Rob Winch
64938ebcfc
SEC-2996: Suport configuring SecurityExpressionHandler<Message<Object>>
11 years ago
Yi EungJun
d272b069aa
Fix a broken link to a blog posting on the Spring website
11 years ago
Rob Winch
a46ad0f446
SEC-2951: Polish
11 years ago
Gunnar Hillert
013177c644
SEC-2951: Document Logouthandler and LogoutSuccesshandler
...
Jira: https://jira.spring.io/browse/SEC-2951
11 years ago
Rob Winch
600927def6
SEC-2952: Document Spring Security leveraging WebMvcConfigurerAdapter
11 years ago
Rob Winch
1087d19346
SEC-2933: Update ProviderManager reference XML to use constructor
11 years ago
Rob Winch
67762321f8
SEC-2920: Fix tickets resolved link in reference
11 years ago
Rob Winch
c94a5cf8e2
SEC-2916: disable-url-rewriting=true by default
11 years ago
Rob Winch
8105b05dd0
SEC-2782: Migrate guide links include "current" in URL
11 years ago
Rob Winch
b262c198d8
SEC-2782: Polish Migrating from 3 to 4 Guide
11 years ago
Rob Winch
a18fa3f1db
saving updates to migrate
11 years ago
Rob Winch
9169186d48
SEC-2889: Update documentation to use sameOriginDisabled
11 years ago
Rob Winch
5e2720723a
SEC-2884: Fix WebSocket reference link text
11 years ago
Rob Winch
dea5723ecc
SEC-2782: Finish Migration Guide from 3.x to 4.x
11 years ago
Rob Winch
9b4cbff58c
SEC-2782: Additional Updates to Migration Guide from 3.x to 4.x
11 years ago
Rob Winch
ff4e9e6ad4
SEC-2782: Started Migration Guide from 3.x to 4.x
11 years ago
drdamour
ff5a176675
trivial docs fixed a few typos and grammatical errors
...
I have signed and agree to the terms of the SpringSource Individual Contributor License Agreement.
11 years ago
Eugene Wolfson
4ca99ef88c
SEC-2877: Fix doc typo in index.adoc
...
Replace "a`" with "a `"
11 years ago
Rob Winch
5f57e5b0c3
SEC-2873: Remember Me XML Configuration Defaults Should Match Java Config
11 years ago
Kazuki Shimizu
67cd8465c3
SEC-2826: Add remember-me-cookie attribute in xml namespace
11 years ago
Rob Winch
9ffd5db466
SEC-2584: Add What's New in 4.0
11 years ago
Rob Winch
bfa12ade40
SEC-2870: Add Spring Data Documentation
11 years ago
Rob Winch
37740cd020
SEC-2861: Add WebSocket Documentation & Sample
11 years ago
Rob Winch
b9563f6102
SEC-2830: Cleanup disabling Same Origin SockJS
...
- Defaults for properties false
- Add XML Namespace support
11 years ago
Rob Winch
b9e2a57131
SEC-2854: Add intercept-message@message-type
11 years ago
Rob Winch
fea03536d6
SEC-2853: Rename WebSocket XML Namespace elements
11 years ago
Rob Winch
6a8475adbb
SEC-2830: Provide Same Origin support for SockJS
11 years ago
Rob Winch
a27c33754c
SEC-2859: Add CsrfTokenArgumentResolver
11 years ago
Rob Winch
c4fe630f8e
SEC-2846: Security HTTP Response Headers Configuration Cleanup
11 years ago
Rob Winch
6627f76df7
SEC-2758: Make ROLE_ consistent
11 years ago
Rob Winch
081f84844c
SEC-2777: Fix <header> attributes in doc
11 years ago
Rob Winch
c30c97005b
SEC-2572: Document Spring Test
11 years ago
Christopher Pelloux
aab0eea9cf
SEC-2800 Documentation typo in class name
11 years ago
Rob Winch
1677836d53
SEC-2790: Deprecate @EnableWebMvcConfig
11 years ago
Rob Winch
3171cc4364
SEC-2788: Add @Configuration as meta annotation to @Enable* annotations
11 years ago
Rob Winch
c67ff42b8a
SEC-2783: XML Configuration Defaults Should Match JavaConfig
...
* j_username -> username
* j_password -> password
* j_spring_security_check -> login
* j_spring_cas_security_check -> login/cas
* j_spring_cas_security_proxyreceptor -> login/cas/proxyreceptor
* j_spring_openid_security_login -> login/openid
* j_spring_security_switch_user -> login/impersonate
* j_spring_security_exit_user -> logout/impersonate
* login_error -> error
* use-expressions=true by default
11 years ago
Rob Winch
87a52ffbfd
SEC-2784: Update to Gradle 2.2.1
11 years ago
Rob Winch
6e204fff72
SEC-2781: Remove deprecations
11 years ago
Rob Winch
2cb2657f5b
SEC-2702: Clean WebSocket Namespace documentation
11 years ago
Rob Winch
3c487c0348
SEC-2348: Update doc headers enabled by default with XML
11 years ago
Rob Winch
4392205f63
SEC-2347: CSRF Enabled by default w/ XML Config
11 years ago
Rob Winch
eedbf44235
SEC-2348: Security HTTP Response Headers enabled by default w/ XML
11 years ago
Rob Winch
4dcc89fab0
SEC-2674: Documentation refers to httpStrictTransportSecurity() instead of hsts()
11 years ago
Rob Winch
55d6d5a86a
SEC-2615: accesscontrollist tag hasPermission performs OR not AND
...
In 3.1 the accesscontrollist tag began performing an and on the
permissions. This may have been accidental, but I think that it is more
intuitive & secure for it to behave this way. When compared to hasAnyRole
and hasRoles the hasPermission tag implies it is an and. If users end up
needing OR support, then the authorize tag can be used along with the
hasPermission expression. For example:
<sec:authorize access="hasPermission(#domain, 'read') or hasPermission(#domain, 'write') ">
In general, the authorize tag should be preferred as it is the more
powerful way of performing authorization checks.
11 years ago
Rob Winch
e7edb77cae
SEC-2716: Fix doc spelling of AbstractPreAuthenticatedProcessingFilter
11 years ago
Bloshchetsov Andrey Evgenyevich
bd322542ca
Fixed broken url to Clickjacking description.
12 years ago
Rob Winch
934937d9c1
SEC-2688: CAS Proxy Ticket Authentication uses Service for host & port
12 years ago
Rob Winch
b97b84063a
SEC-2665: Fix samples/ldap-jc link in reference
12 years ago
Alexander Grüneberg
d9efd08bfd
SEC-2577: Add missing whitespace in reference
12 years ago
Rob Winch
5b216bd0b2
Revert "SEC-2547: Consistent CAS client version"
...
This reverts commit f6cc9d87d5 .
12 years ago