2256 Commits (b91e82d91c90f2d5bdbf2fae32fe2eb99d14fba4)
 

Author SHA1 Message Date
Luke Taylor b91e82d91c Changed _authenticationManager -> authenticationManager to get contact app tests passing again. 18 years ago
Luke Taylor 1472aeb77d Improved html site patching. 18 years ago
Luke Taylor 7ee049c824 Refactored SwitchUserProcessingFilter to extend SpringSecurityFilter. 18 years ago
Luke Taylor 5f1eea42fc Moved configuration of security interceptors with access and authentication manangers from post processing stage to bean creation stage. 18 years ago
Luke Taylor 46c99d1991 Converted tutorial context file to match namespace changes. 18 years ago
Luke Taylor 5da5bfb7bb Added "mvn compile" with JDK 1.4 as extra check in build process. 18 years ago
Luke Taylor 27de29f469 Corrected cut and paste error when parsing jdbc-user-service within AuthenticationProvider BDP. 18 years ago
Luke Taylor ea8914f9ba Moved Http post processor bean name to BeanIds class. 18 years ago
Luke Taylor 9d671fbdbf Deleted original Ldap BD parser. 18 years ago
Luke Taylor 14e68618a5 Make constants class abstract. 18 years ago
Luke Taylor 46285a0ec0 SwitchUserProcessingFilter should come after FilterSecurityInterceptor (See SEC-376). 18 years ago
Luke Taylor a38ed3cfde Added check for multiple RememberMeServices beans. 18 years ago
Luke Taylor debfbe47cf Improvements to LDAP namespace configuration - splitting "ldap" element into ldap-server and ldap-authentication-provider. Also some minor changes to authentication-provider. 18 years ago
Luke Taylor d0490e6322 Upgraded maven surefire and cobertura plugins. 18 years ago
Luke Taylor cf80292de3 Changes to namespace reinstating authentication-provider element in preference to "repository" to wrap convey that a user-service will be used as to authenticate against. Also introduced separate password-encoder element for use within authentication-provider. 18 years ago
Luke Taylor 70286f1197 Fixed problem caused by maven-2.0.8 change in test classpath. ldif file wasn't being loaded for tests. Default path should be "classpath*:" not "classpath:". (See discussing in Spring's PathMatchingResourcePatternResolver). 18 years ago
Luke Taylor 6e74d925fb Boosted logging to try to resolve issues on bamboo server. 18 years ago
Luke Taylor 78e376312a Added logging of working directory location. 18 years ago
Luke Taylor 85b10f79c2 Made servlet-api integration into an attribute of http, rather than a child element since it has no configuration. 18 years ago
Luke Taylor 1c9bd8bf5f Updates to release description. 18 years ago
Luke Taylor e65cb9b472 Made group names singular and added "teller" role. 18 years ago
Luke Taylor 31c09896ea Fixed problem with relative name being used in (member={0}) search in DefaultAuthoritiesPopulator. 18 years ago
Ben Alex 09f68400ec Add <intercept-methods> to example, but it is disabled in favour of @Secured annotation. Still, we include it so people can have a play around and switch between the two syntaxes easily in demos etc. 18 years ago
Ben Alex 55e4568003 Throw an exception instead of sending back a HTTP error code. This is necessary so any demonstration of upgrading from Servlet Spec authorization to Spring Security authorization, as the latter's ExceptionTranslationFilter expects specific exceptions to be thrown if you wish to commence the authentication process. 18 years ago
Luke Taylor 2e4773525b Updated tutorial to allow authentication against ldap provider using <ldap /> namespace element. 18 years ago
Ben Alex d90ff50686 Use Java 5 to illustrate annotation support. 18 years ago
Luke Taylor 1a171ea316 SEC-595: Introduced loadUserAuthorities method. This can be overridden to allow loading of authorities with the authenticated user's credentials (by setting the security context). The Ldap ContextSource used in the authorities populator would also be configured with a SpringSecurityAuthentcationSource, to make use of the information in the security context. 18 years ago
Ben Alex b1bc39a0df Provide some shell scripts that help with demos. These assume the application is deployed to http://localhost:8080/spring-security-samples-tutorial. 18 years ago
Ben Alex f4c3e701d5 Enhance sample to show method authorization. 18 years ago
Ben Alex 77d286c36f Enhance tutorial to also demonstrate Spring Security method 18 years ago
Ben Alex fa510b3187 Modify attribute names to use "ref" instead of "id", plus use a hyphen 18 years ago
Luke Taylor 0f12d31d90 Corrected code for choosing entry point in namespace configuration. 18 years ago
Ben Alex 7ff533735f Changes (made by Ben Hale) to support publishing of snapshots and 18 years ago
Luke Taylor 6f7590eb05 Updates to sandbox to allow it to compile against latest core changes. 18 years ago
Ben Alex 1cae1719bc Fix bean referencing error. 18 years ago
Ben Alex 2655955a40 Add MethodSecurityInterceptor, to more accurately reflect the capabilities offered by auto-config="true". 18 years ago
Ben Alex 9728f48adf Convert to using AopNamespaceUtils, to avoid potentially creating 18 years ago
Luke Taylor 82cfa722be Upgrade Spring-LDAP to 1.2.1 version. 18 years ago
Ben Alex 1bbe6ca456 Proper comparison with auto-configure="true". 18 years ago
Luke Taylor ca996de2dc Added tests for SpringSecurityAuthenticationSource. 18 years ago
Luke Taylor 894c90dadd Moved AbstractAuthenticationManagerTests into ProviderManager as tested methods have already been moved there (maven wasn't running Abstract* tests but they were actually failing). 18 years ago
Luke Taylor 32038d8b92 Tidying. 18 years ago
Luke Taylor 47dec4e597 Make getters in AbstractRememberMeServices protected rather than public 18 years ago
Luke Taylor ee31305fd5 Deprecated InitialDirContextFactory 18 years ago
Luke Taylor 5382627d4a Added property to LdapAuthenticationProvider to allow the credentials to be set either using the submitted password (the default) or the credentials from the loaded UserDetails object (which may be null if the attribute isn't readable). 18 years ago
Luke Taylor 78529f6d28 SEC-620: AuthenticationSource implementation. 18 years ago
Luke Taylor 5e0cb21c8d SEC-619: Added test class for LdapUserDetailsService. The LdapAuthoritiesPopulator interface and also implementations have been moved to the org.springframework.security.ldap package since they are now used by both the ldap provider and the user service. 18 years ago
Ben Alex 4770c29094 Use hyphens in attribute names, and not Camel Case. This is to maintain 18 years ago
Luke Taylor 6ad176ce1a Tidying. 18 years ago
Luke Taylor 4984024314 SEC-618: Moved copyDetails method down to ProviderManager so that it can be called prior to checking if authentication is allowed by ConcurrentSessionController. 18 years ago