Ben Alex
03622f7011
Add missing beans from previous checkin.
20 years ago
Ben Alex
ab12817b7a
SEC-97: Format Acegi Security source code in accordance with latest Jalopy configuration.
20 years ago
Ben Alex
6b5fc1efce
Correct comment in header.
20 years ago
Luke Taylor
1958d4e5aa
Change package for ldap context factory bean
20 years ago
Ben Alex
cc07f620df
SEC-257: ExceptionTranslationFilter to use AccessDeniedHandler.
20 years ago
Ben Alex
9a90e4e1aa
SEC-256: Contacts sample not displaying localized exceptions correctly.
20 years ago
Ben Alex
21aaf2b9db
SEC-256: Contacts sample not displaying localized exceptions correctly.
20 years ago
Ben Alex
d125569bd6
SEC-29: Save POST parameters on AuthenticationEntryPoint redirect.
20 years ago
Ben Alex
8cc5dcde30
SEC-249: Support logout filter.
20 years ago
Ben Alex
e63b2ec9e6
Cleanup unused imports.
20 years ago
Luke Taylor
dc959b1847
Fix for SEC-159. Added clearContext() method to SecurityContextHolder and refactored code to use it instead of putting an empty context into the holder.
20 years ago
Ben Alex
9771b7817a
SEC-144: Separate SecurityEnforcementFilter from FilterSecurityInterceptor.
20 years ago
Ben Alex
c8c7c24822
SEC-120: Remember-me to delegate to AuthenticationManager so authentication-specific behaviour (such as concurrent user management) can be applied.
20 years ago
Luke Taylor
8585ddf48b
Updated app. context file to match new constructor-injection changes.
20 years ago
Luke Taylor
a9a6f8b891
First checkin of LDAP contacts sample app.
20 years ago
Ben Alex
62fde4ede3
SEC-107: Finalize rename of AuthenticationDao to UserDetailsService with corresponding change in package from .providers.dao to .userdetails.
20 years ago
Ben Alex
a6e23d79ae
SEC-107: Rename AuthenticationDao to UserDetailsService.
20 years ago
Ben Alex
c021362ebb
New package top level name.
20 years ago
Ben Alex
6a1a4abb1d
SEC-104: Move to org.acegisecurity package.
20 years ago
Ben Alex
2d74db9a0c
SEC-51 and SEC-67 related changes. Tested all functions of "filters" version in web browser OK.
21 years ago
Ben Alex
b6dbfde55c
SEC-70: Refactor event publishing.
21 years ago
Ben Alex
c64a3770de
Prove that 403 errors are handled by web.xml <error-page>.
21 years ago
Mark St. Godard
3f24824f66
updated config, added switchUserProcessingFilter to the filter chain, added the ROLE_SUPERVISOR the ability to switch to other users (i.e. ROLE_USER)
...
For example: 'marissa' can login, goto the /switchUser.jsp, then assume the role of another user such as 'scott'. marissa will then see scotts contacts, etc.
Then marissa can goto the /exitUser.jsp, and go back to 'marissa'
This is the similar to the Unix 'su' analogy that Ben made
21 years ago
Mark St. Godard
230d1946b9
added switchUserProcessingFilter config, not added to filter chain (yet)
21 years ago
Mark St. Godard
3dcea7ace0
initial pages for user switching
21 years ago
Luke Taylor
27a57410c1
Update to latest Spring tld
21 years ago
Ben Alex
2d772cbfcc
Fix bug as reported by Jared Odulio on acegisecurity-developer 29 July 2005.
21 years ago
Luke Taylor
8e1549e399
Tidying up XML formatting (removed mix of tabs/spaces)
21 years ago
Luke Taylor
de491d1767
Removed CAS references from web.xml for X.509.
21 years ago
Ben Alex
fe15b011bb
Make extra seed data and users so scalability more readily tested.
21 years ago
Ben Alex
e08e66dec6
Refactor SecurityContextHolder to return a SecurityContext instead of Authentication.
21 years ago
Ben Alex
6a9abe5d90
Remove ContextHolder and introduce SecurityContext.
21 years ago
Luke Taylor
1a78f9e15f
Refactored to use Spring Assert class (thanks IntelliJ :).
21 years ago
Ben Alex
9f66c0eae9
Update to current Spring JAR dependencies.
21 years ago
Luke Taylor
a4210b5551
Rolled back to remove X.509 users. Using new certificate with existing user name instead.
21 years ago
Luke Taylor
05bd6abb22
Added cache beans.
21 years ago
Luke Taylor
645dba1fcb
Added X.509 user to contacts with user name matching certificate email address.
21 years ago
Luke Taylor
740373ad01
Removed login-config info. Client authentication has to be enabled on the server (e.g. in the Tomcat connector) for it to work.
21 years ago
Luke Taylor
4ec64d407c
X.509 version of contacts app.
21 years ago
Ben Alex
3e9cd13fef
Re-enable session listener.
21 years ago
Ben Alex
f1e071b0f1
Added remember-me services.
21 years ago
Ray Krueger
44397bb05d
Committing ConcurrentSessionController feature and tests. Documentation is needed.
21 years ago
Ben Alex
693ac5a24a
Anonymous principal support. As requested by the community at various times, including in http://forum.springframework.org/viewtopic.php?t=1925 .
21 years ago
Ray Krueger
3c4faf58c7
HttpSessionEventPublisher, HttpSessionCreatedEvent, HttpSessionDestroyedEvent
...
Used together to provide published events in the ApplicationContext about HttpSessions.
Useful for things like Single Session logins.
21 years ago
Ben Alex
dda66a0454
Significantly refactor "well-known location model" to authentication processing mechanism and HttpSessionContextIntegrationFilter model.
21 years ago
Ben Alex
4922ec1bbd
Use FilterChainProxy to tidy web.xml.
21 years ago
Ben Alex
c8706c33ac
Log4J no longer expected in servlet container classpath.
21 years ago
Ben Alex
6c1e2f23b2
Allow last attempted username to be displayed in views.
21 years ago
Ben Alex
76c82db196
Refactor EH-CACHE integration classes to work with Spring IoC provided Cache rather than manage our own cache internally.
21 years ago
Ben Alex
44b7cccc1f
Add RMI + HTTP Invoker remoting protocols and fixes related to Maven migration.
22 years ago