Filip Hanik
b089dfc040
Upgrade com.nimbusds:nimbus-jose-jwt to 7.6
...
Fixes gh-7135
[closes #7135 ]
7 years ago
Filip Hanik
92c82799ce
Upgrade jackson-databind to 2.9.9.1
...
Fixes gh-7133
[closes #7133 ]
7 years ago
Filip Hanik
cbc0130d23
Upgrade org.hibernate:hibernate-validator to 6.0.17.Final
...
Fixes gh-7141
[closes #7141 ]
7 years ago
Filip Hanik
606ed1af8e
Upgrade org.codehaus.groovy groovy|json|all libraries to 2.4.17
...
Fixes gh-7140
[closes #7140 ]
7 years ago
Filip Hanik
13e98fcdfa
Upgrade cas-client-core to 3.5.1
...
Fixes gh-7142
[closes #7142 ]
7 years ago
Filip Hanik
99d67daae5
Upgrade httpclient to 4.5.9
...
Fixes gh-7138
[closes #7138 ]
7 years ago
Josh Cummings
a91ade910a
Update to Reactor Dysprosium-M3
...
Fixes gh-7186
7 years ago
Josh Cummings
8f2260639b
Update to Spring Data Moore RC2
...
Fixes gh-7185
7 years ago
Josh Cummings
126e0bb82a
Update to Spring Framework 5.2.0.RC1
...
Fixes gh-7184
7 years ago
Josh Cummings
774a2e669c
Polish setAllowedHostnames
...
Added JavaDoc to method, including @since attribute
Issue gh-4310
7 years ago
Eddú Meléndez
f712c5598c
Add support for allowedHostnames in StrictHttpFirewall
...
Introduce a new method `setAllowedHostnames` which perform the validation
against untrusted hostnames.
Fixes gh-4310
7 years ago
Khy
a5cfd9fdb9
Downgrade AuthenticationFilter modifier
...
Fixes gh-7177
7 years ago
Lars Grefer
f28681f41d
Remove the unused emma plugin
7 years ago
Lars Grefer
776a4c3760
Use org.mockito.ArgumentMatchers in favor of org.mockito.Matchers
7 years ago
Josh Cummings
d843818e48
Polish JwtGrantedAuthoritiesConverter
...
Rework the implementation so that it is clearer that authorities are
derived from a single claim.
Issue: gh-6273
7 years ago
Lars Grefer
09a119978c
Migrate VersionsResourceTasks groovy->java
...
Issue: gh-4939
7 years ago
Eleftheria Stein
522d118aca
Fix typo in SCryptPasswordEncoder Javadoc
...
Fixes: gh-4004
7 years ago
Rob Winch
ad2f999c25
Polish BasicAuthenticationConverter
...
This reverts to the old behavior from BasicAuthenticationFilter.
Specifically, if a token has an empty password, it still parses a username
and an empty String password.
Issue gh-7025
7 years ago
Josh Cummings
d157125c8e
Polish AuthenticationFilter
...
Updated member variable references to be prefixed with "this.".
Fixed typo in authentication manager resolver error message.
Issue: gh-6506
7 years ago
Eddú Meléndez
50adb6abcb
Fix javadoc
7 years ago
Sam Simmons
e88c5c0eee
Fix CSRF session authentication strategy since version
7 years ago
Ahmed Sayed
0591403dea
ignore Multipart requests in HttpSessionRequestCache.requestMatcher
7 years ago
Eleftheria Stein
0b4502b2c5
Remove exceptions from lambda security configuration
...
Fixes: gh-7128
7 years ago
Eleftheria Stein
b55322b2cb
Make basic authentication scheme case-insensitive
...
Fixes: gh-7163
7 years ago
Eddú Meléndez Gonzales
8e6e975e86
Prevent authentication when user is inactive for reactive apps
...
Currently, reactive applications doesn't perform validation when user
is locked, disabled or expired. This commit introduces these validations.
Fixes gh-7113
7 years ago
Joe Grandja
4ca9e15595
Fix blocking in ServletOAuth2AuthorizedClientExchangeFilterFunction
...
Fixes gh-6589
7 years ago
Joe Grandja
c05b0765c1
Introduce OAuth2AuthorizedClient Manager/Provider
...
Fixes gh-6845
7 years ago
Eleftheria Stein
7e845409f1
Fix Javadoc for headers configurer methods
...
Fixes: gh-7123
7 years ago
sbespalov
f1187bdfc2
issue/6506: AuthenticationConverter implementation
7 years ago
matkocsis
e584207a85
Loggin Fix for printing the full stack trace, spring-projects/spring-security#7110
7 years ago
Rob Winch
8f8329583a
Fix infinite loop in role hierarchy resolving ( #7106 )
...
Fix infinite loop in role hierarchy resolving
7 years ago
Eleftheria Stein
a288ce4b00
Support nested builder in DSL for reactive apps
...
Fixes: gh-7107
7 years ago
Clement Ng
ab6440db10
Throws exception when passed IP address with too long mask
...
Fixes gh-2790
7 years ago
Eleftheria Stein
d5e5ac0503
Add JavaDoc to reactive oauth2ResourceServer
7 years ago
Eleftheria Stein
fbf6d22343
Add JavaDoc to reactive oauth2Login
7 years ago
Édouard Hue
e8dd1325fd
Fixed misleading OAuth2 error messages
...
Error messages sent by BearerTokenAccessDeniedHandler included
information about the scopes of the rejected token instead of
the scopes required by the resource.
* Removal of token scopes from error_description attribute.
* Removal of scope attribute from WWW-Authenticate response header.
Fixes gh-7089
7 years ago
Eleftheria Stein
b153d92b23
Fix JavaDoc for formLogin in ServerHttpSecurity
7 years ago
Rob Winch
dc2705189f
Fix typo in documentation
...
Fixed typo in documentation.
7 years ago
Michael Vitz
09e8ae42ed
Allow configuration of SessionAuthenticationStrategy for CSRF
...
Closes gh-5300
7 years ago
Rob Winch
ea54d9014d
DSL nested builder for HTTP security
...
DSL nested builder for HTTP security
Fixes gh-5557
7 years ago
Eleftheria Stein
a0ca45e4b8
Use http security nested builder in samples
...
Issue: gh-5557
7 years ago
Eleftheria Stein
b004f9f677
Use http security nested builder in docs
...
Issue: gh-5557
7 years ago
Eleftheria Stein
7961b819aa
Allow configuration of session fixation and concurrency through nested builder
...
Issue: gh-5557
7 years ago
Pavel Horal
be0ad673c2
Make RoleHierarchyImpl internals a bit simpler.
...
Issue: gh-7035
7 years ago
Lars Grefer
61f3e8cf3f
Update to Gradle 5.5.1
7 years ago
Lars Grefer
2e38e3bd46
Update to Gradle 5.5
7 years ago
Karel Maxa
d3eaef66fc
Fix infinite loop in role hierarchy resolving
...
Issue: gh-7035
7 years ago
Karel Maxa
2d36062846
Remove unnecessary authority comparison.
...
Issue: gh-7035
7 years ago
Pei-Tang Huang
0fea2fb256
Add Chinese Traditional localized messages.
7 years ago
Clement Ng
28855e9cd6
Changed docs to reflect that init should apply configurers
7 years ago