Marcus Da Coregio
c4d23f2b49
Use MvcRequestMatcher by default if Spring MVC is present
...
Closes gh-11899
3 years ago
Josh Cummings
353ca76973
Merge remote-tracking branch 'origin/5.8.x'
3 years ago
Josh Cummings
380a6a2564
Polish SecurityContextHolderStrategy Usage
...
- Add to HttpSessionSecurityContextRepository#saveContext
Issue gh-11060
3 years ago
Josh Cummings
12ac7acb2c
Merge remote-tracking branch 'origin/5.8.x'
3 years ago
Josh Cummings
2079309c5a
Add SecurityContextHolderStrategy XML Configuration for OAuth2
...
Issue gh-11061
3 years ago
Josh Cummings
7543effe89
Add SecurityContextHolderStrategy Java Configuration for OAuth2
...
Issue gh-11061
3 years ago
Josh Cummings
7e3841105b
Add SecurityContextHolderStrategy XML Configuration for Saml2
...
Issue gh-11061
3 years ago
Josh Cummings
19181a5afd
Add SecurityContextHolderStrategy Java Configuration for Saml2
...
Issue gh-11061
3 years ago
Josh Cummings
e90a11b1c0
Add SecurityContextHolderStrategy to Saml2
...
Issue gh-11060
3 years ago
Josh Cummings
14584b0562
Add SecurityContextHolderStrategy to OAuth2
...
Issue gh-11060
3 years ago
Josh Cummings
0c0e298aa7
Polish Saml2 XML Use of SecurityContextHolderStrategy
...
Issue gh-11061
3 years ago
Josh Cummings
72a46ddd31
Merge remote-tracking branch 'origin/5.8.x'
3 years ago
Josh Cummings
b4d13e7726
Polish use-authorization-manager
...
- Use SecurityContextHolderStrategy
- Allow empty role prefix
- Disallow access-decision-manager-ref and authorization-manager-ref
together
Issue gh-11305
3 years ago
Josh Cummings
7043ef6ccb
Polish OpaqueTokenAuthenticationConverterTests
...
Issue gh-11665
3 years ago
Josh Cummings
f16d47c7b5
Polish DefaultHttpSecurityExpressionHandler
...
Issue gh-11105
3 years ago
Josh Cummings
eeb28e4f91
Merge remote-tracking branch 'origin/5.8.x'
3 years ago
Josh Cummings
4ddec07d0e
Add default AuthorizationManager
...
Closes gh-11963
3 years ago
Steve Riesenberg
ee9449dbfe
Fix tests for deferred CSRF tokens
...
Issue gh-4001
3 years ago
Steve Riesenberg
521cdfd738
Use correct servlet imports
...
Issue gh-4001
3 years ago
Steve Riesenberg
8b490de08d
Merge branch '5.8.x'
...
# Conflicts:
# docs/modules/ROOT/pages/servlet/exploits/csrf.adoc
3 years ago
Steve Riesenberg
dce1c30522
Add support for BREACH
...
Closes gh-4001
3 years ago
Steve Riesenberg
6bbf20be93
Fix failing tests
...
Issue gh-11952
3 years ago
Rob Winch
22cbd2c42e
Merge branch '5.8.x'
...
Closes gh-11957
3 years ago
Rob Winch
a5cc1f0b60
Merge branch '5.7.x' into 5.8.x
...
Closes gh-11956
3 years ago
Rob Winch
37dd896d4b
Merge branch '5.6.x' into 5.7.x
...
Closes gh-11955
3 years ago
Dan Allen
e0843aabb1
automatically manage docs version (with collector)
3 years ago
Steve Riesenberg
19fb7e5499
Merge branch '5.8.x'
...
Merged using the ours strategy.
3 years ago
Steve Riesenberg
c1fcf275d9
Update What's New for 5.8
...
Issue gh-11952
3 years ago
Steve Riesenberg
a7000a053b
Merge branch '5.8.x'
3 years ago
Steve Riesenberg
1d706ae13d
Add csrfTokenRequestResolver to CsrfDsl
...
Closes gh-11952
3 years ago
Marcus Da Coregio
c2ed65c67a
Fix failing tests
...
Issue gh-9159
3 years ago
Marcus Da Coregio
22ba358e57
Merge branch '5.8.x'
3 years ago
Marcus Da Coregio
bf6e85ec15
Accept String varargs in securityMatcher
...
Issue gh-9159
3 years ago
Marcus Da Coregio
38a7bbd2eb
Merge branch '5.8.x'
3 years ago
Marcus Da Coregio
ace8caa182
Remove mvcMatchers usage from docs
...
Issue gh-11347
3 years ago
Marcus Da Coregio
76d7a85bc0
Use modified classpath test support for tests that depend on the classpath
...
Issue gh-11347
3 years ago
Marcus Da Coregio
77dcc691b3
Add modified classpath test support
...
Closes gh-11951
3 years ago
Marcus Da Coregio
5002199be3
Revert "Disable tests that need Spring MVC mocked in classpath"
...
This reverts commit c6978fba7c53c5bec765dba672b0ccb084e3048f.
3 years ago
Marcus Da Coregio
35f7e46d05
Remove WebSecurityConfigurerAdapter
...
Closes gh-10902
3 years ago
Steve Riesenberg
a10b0f526f
Merge branch 'main'
3 years ago
Marcus Da Coregio
60181e22d3
Upgrade com.unboundid:unboundid-ldapsdk to 6.0.6
...
Closes gh-10210
3 years ago
Steve Riesenberg
3bc76815c2
Update csrf.request-handler-ref in 6.0
...
Issue gh-11918
3 years ago
Steve Riesenberg
5de6da890b
Merge branch '5.8.x'
...
Closes gh-dry-run
3 years ago
Marcus Da Coregio
c6978fba7c
Disable tests that need Spring MVC mocked in classpath
...
Issue gh-11347
3 years ago
Steve Riesenberg
475b3bb6bb
Add deferred CsrfTokenRepository.loadDeferredToken
...
* Move DeferredCsrfToken to top-level and implement Supplier<CsrfToken>
* Move RepositoryDeferredCsrfToken to top-level and make package-private
* Add CsrfTokenRepository.loadToken(HttpServletRequest, HttpServletResponse)
* Update CsrfFilter
* Rename CsrfTokenRepositoryRequestHandler to CsrfTokenRequestAttributeHandler
Issue gh-11892
Closes gh-11918
3 years ago
Steve Riesenberg
c847efd3fd
Fix servlet import
...
Issue gh-11347
Issue gh-9159
3 years ago
Steve Riesenberg
c98de7af2f
Add xss-protection.header-value in 6.0
...
Issue gh-9631
3 years ago
Steve Riesenberg
7c3cc1e386
Merge branch '5.8.x'
3 years ago
Daniel Garnier-Moiroux
0e215a21ad
Add X-Xss-Protection headerValue to XML config
...
Issue gh-9631
3 years ago
Marcus Da Coregio
ad2abd39dc
Merge branch '5.8.x'
...
Closes gh-11347 in 6.0.x
Closes gh-11945
3 years ago