1408 Commits (b98c72056a2b808b76a1b2dabf480cfd8babc5c3)

Author SHA1 Message Date
Luke Taylor b98c72056a SEC-728: Change use of String.getBytes() in password encoders to use UTF-8 18 years ago
Luke Taylor 1463b9769d SEC-629: authentication-provider doesn't support caching. 18 years ago
Luke Taylor db6fafaf56 SEC-629: authentication-provider doesn't support caching. Refactored MockUserCache class to top level 18 years ago
Luke Taylor 1fece47b49 SEC-691: Applied patch to allow setting of returned user attributes from LDAP search. 18 years ago
Luke Taylor 350a626587 SEC-477: Added preauthenticated websphere contribution. 18 years ago
Luke Taylor 584853bbcb Tidied imports. 18 years ago
Luke Taylor ef5b3e2f9c SEC-733: Changed names of <global-method-security> attributes as discussed with Ben and updated sample to reflect the changes. Also changed explicit instantiation of Jsr250 and Secured annotation MethodDefinitionSource beans in GlobalMethodSecurityBDP into bean definitions to make more tooling friendly. 18 years ago
Luke Taylor 9ea2408ac6 Fixed error in choosing main entry point (it's an alias not a bean name, so doesn't appear in the entry map - you have to get it direct from the bean factory). 18 years ago
Luke Taylor 1b8a3c5673 SEC-689: Updated session fixation protection namespace support to set session registry on SessionFixationProtectionFilter. 18 years ago
Luke Taylor eeb14b3965 Changed filter order numbers to start at zero (makes them more readable in log compared with large negative numbers) 18 years ago
Luke Taylor 4681ff3d50 SEC-689: Fix 1.4 compatibility issue (overlooked autoboxing of boolean) 18 years ago
Luke Taylor 43b51ca64d SEC-689: Session Fixation protection should be available to all authentication mechanisms. 18 years ago
Luke Taylor 2af2f299cb SEC-689: Further tests, logging improvements. 18 years ago
Luke Taylor a29842a467 SEC-689: Tests for SessionFixationProtectionFilter 18 years ago
Luke Taylor 8f5bcb64a6 SEC-689: Session Fixation protection should be available to all authentication mechanisms. 18 years ago
Luke Taylor 83bcc6ad7c Removed loggers from subclasses of SpringSecurityFilter in favour of using base class logger. 18 years ago
Ben Alex 0860333a3f SEC-733: AspectJ Pointcut Expression Parsing support. 18 years ago
Ben Alex f4eb15b08b SEC-428: Tests to prove proxy-target-class="true" works. 18 years ago
Luke Taylor f8b5000d40 SEC-428: Make sure context is cleared before running test. 18 years ago
Luke Taylor 18fef571c3 Import cleaning. 18 years ago
Luke Taylor 028af06d61 SEC-428: Security interceptor does not work with schema based aop:config 18 years ago
Luke Taylor a375d8e59e SEC-428: Added test 18 years ago
Luke Taylor 1dd5f42142 Adding svn keywords, correcting typos etc. 18 years ago
Ben Alex 9a4977ebd1 SEC-99/428/429/563: Various refactoring of method security metadata support. 18 years ago
Luke Taylor fe0e05a6c8 SEC-725: PasswordEncoderParser: <security:password-encoder> element does not pick up 'base64' attribute value 18 years ago
Luke Taylor 30a6abbe50 Tidied formatting of toString output for FilterBasedLdapUserSearch 18 years ago
Luke Taylor 162933155e Added implementation of GrantedAuthoritiesContainer to allow refactoring of duplication in various preauth details classes 18 years ago
Luke Taylor 2ea94e2cc9 Tidying imports etc 18 years ago
Luke Taylor 563dabda2f SEC-722: Add Open ID Namespace Support 18 years ago
Luke Taylor b89dbc6060 Import cleaning 18 years ago
Luke Taylor 9871685ea3 SEC-722: Fixed problem with empty loginpage string (rather than null) preventing default login page filter from being added to the stack. 18 years ago
Luke Taylor b73736ffaf Updated example configuration in javadoc for LdapAuthenticationProvider. 18 years ago
Ben Alex 16ea8faa0d SEC-727: Ensure SecurityConfig cannot be constructed unsafely; also update SecurityConfigTests to JUnit 4. 18 years ago
Luke Taylor acc22b2745 SEC-722: Add Open ID Namespace Support 18 years ago
Luke Taylor 815f04b6c3 SEC-722: Add Open ID Namespace Support 18 years ago
Luke Taylor bbc5fea598 SEC-722: Add Open ID Namespace Support 18 years ago
Luke Taylor 56b967f935 Removed filer name duplication in rnc file. 18 years ago
Luke Taylor a65b5a9ed8 Corrected separators between http method strings in rnc file. 18 years ago
Luke Taylor 8f379768a8 SEC-720: Design for extension: PreAuthenticatedGrantedAuthoritiesUserDetailsService 18 years ago
Luke Taylor 030550a88e Applied XSL transform to XSD file 18 years ago
Luke Taylor f8d855f1a2 SEC-716: Default (non-web) AuthenticationDetailsSource implementation. 18 years ago
Luke Taylor c9ff912b2f SEC-723: Change PreAuthenticatedAuthenticationProvider to reject authentication tokens with null credentials. Also introduced a property "throwExceptionWhenTokenIsRejected" which raises a BadCredentialsException when the toke is invalid. 18 years ago
Luke Taylor 163fb1052f SEC-721: Call Principal.getName() in AbstractAuthenticationToken.getName() if principal instaceof Principal 18 years ago
Luke Taylor 2df2eaa169 SEC-719: Introduced base class for J2eeBasedPreAuthenticatedWebAuthenticationDetailsSource to extract non-http specific functionality (for use in portlet version). 18 years ago
Luke Taylor 52b92b209c Removed out of date email address for Ben. 18 years ago
Luke Taylor 8f7b216de3 Import cleaning, removal of unnecessary constructors etc based on eclipse warnings 18 years ago
Luke Taylor abd5e384fe removed unused eh-cache config file 18 years ago
Luke Taylor 60de6314d4 Replaced casting to check validity of provider list with call to Assert.isInstanceof. 18 years ago
Ben Alex e4c6022b36 SEC-718: Support additional HTTP methods. 18 years ago
Ben Alex 6bc0585e4a SEC-717: Resolve UserDetails.getAuthorities() sort logic issue. 18 years ago