Joe Grandja
5fbf9532e1
Update to spring-build-conventions 0.0.23.RELEASE
...
Fixes gh-6440
7 years ago
Joe Grandja
4e4321fb07
Update to htmlunit-driver 2.33.3
...
Fixes gh-6434
7 years ago
Joe Grandja
9721ee9d4e
Update to Spring Data Lovelace SR4
...
Fixes gh-6438
7 years ago
Joe Grandja
9d7f141b86
Update to Spring Framework 5.1.4
...
Fixes gh-6437
7 years ago
Joe Grandja
68e3bbdd03
Update to Reactor Californium-SR4
...
Fixes gh-6436
7 years ago
Joe Grandja
08b7479f4c
Update to Spring Boot 2.1.2
...
Fixes gh-6435
7 years ago
Joe Grandja
e864e63760
Update to org.powermock 2.0.0
...
Fixes gh-6433
7 years ago
Joe Grandja
6e14418937
Update to hibernate-entitymanager 5.4.0.Final
...
Fixes gh-6432
7 years ago
Joe Grandja
4d1a23b6b4
Update to ehcache 2.10.6
...
Fixes gh-6431
7 years ago
Joe Grandja
f97d6f41ea
Update to com.squareup.okhttp3 3.12.1
...
Fixes gh-6430
7 years ago
Joe Grandja
84a287d6ff
Update to oauth2-oidc-sdk 6.5
...
Fixes gh-6429
7 years ago
Joe Grandja
ce4a48e9c9
Update to nimbus-jose-jwt 6.5.1
...
Fixes gh-6428
7 years ago
Joe Grandja
c725d220aa
Update to jackson.core 2.9.8
...
Fixes gh-6427
7 years ago
Joe Grandja
5d72cdc104
Update to cglib-nodep 3.2.10
...
Fixes gh-6426
7 years ago
Rob Winch
802f3186a7
Fix ApacheDSContainer Checkstyle
...
Issue: gh-6376
7 years ago
Luke Butters
0b40d09fe6
Mark as ApacheDSContainer as deprecated
...
Mark ApacheDSContainer as deprecated because ApacheDS have not released
a recent 'GA' version and the current 'GA' version does not work under
JDK11.
Fixes: gh-6002
7 years ago
Joe Grandja
2a867997e2
Polish gh-6415
7 years ago
Rafael Dominguez
fe5f10e9a2
Extract the ID Token JwtDecoderFactory to enable user customization
...
This commit ensures that the JwtDecoderFactory is not a private field inside
the Oidc authentication provider by extracting this class and giving the
possibility to customize the way different providers are validated.
Fixes: gh-6379
7 years ago
Adrian Javorski
dd45a49f02
Update JwtTimestampValidator.java
...
Changed MaxClockSkew variable to clockSkew to simplify the name.
Fixes gh-6380
7 years ago
Ankur Pathak
4ff51491d7
fixes setting paramName only when it is not null
...
Fixes: gh-6223
7 years ago
Joe Grandja
f234a5fbdb
ID Token validation supports clock skew
...
Fixes gh-5839
7 years ago
Joe Grandja
575d943f1a
Add GitHub Issue reply templates
7 years ago
Joe Grandja
d878dbf30e
Polish gh-6349
7 years ago
Rafael Dominguez
057ed616c4
Improve error messages in OidcIdTokenValidator
...
This commit ensures that error messages contain more specific
information regarding the reported error.
Fixes: gh-6323
7 years ago
Rafael Renan Pacheco
0656d2bc05
cconfigured -> configured
7 years ago
Rob Winch
ae0f330f98
Add BCrypt Test for Empty Raw Password
...
Issue: gh-5548
7 years ago
Johnny Lim
c94f13a971
Polish tests
7 years ago
Josh Cummings
1a02cafe81
NamespaceHttpAnonymousTests groovy->java
...
Issue: gh-4939
7 years ago
Onur Kagan Ozcan
fe40e6d65a
Fix UsernamePasswordAuthenticationTokenDeserializer to handle customized object mapper inclusion settings
...
Resolves #4698
7 years ago
Joe Grandja
673a2adf26
Polish oauth2 client ExchangeFilterFunction's
...
Fixes gh-6355
7 years ago
Slava Semushin
d8d9abed2a
LazyCsrfTokenRepository: fix a typo in javadoc.
7 years ago
Joe Grandja
993e11dcd3
Polish gh-6127
7 years ago
Warren Bailey
1c9ab9197e
When expired retrieve new Client Credentials token.
...
Once client credentials access token has expired retrieve a new token from the OAuth2 authorization server.
These tokens can't be refreshed because they do not have a refresh token associated with. This is standard behaviour for Oauth 2 client credentails
Fixes gh-5893
7 years ago
Josh Cummings
9b65107922
NamespaceDebugTests groovy->java
...
Issue: gh-4939
7 years ago
Farooq Khan
5f33bbe512
Removed isServlet30 check
7 years ago
Ankur Pathak
6e1db1105b
Fixes typo in x,rnc files
...
1. Fixes type ammount to amount in *.rnc files
2. Regenerates *.xsd files from *.rnc files
Fixes: gh-6325
7 years ago
Ankur Pathak
f289ef8689
Fixes Documentation Problem
...
Fixes documentation problem of Anonymous Authentication
in ServerHttpSecurity
Fixes: gh-6327
7 years ago
Josh Cummings
d77b12d229
authorization_uri Uses UriComponentsBuilder
...
Because of this, authorization_uri can now be a fully-qualified url.
Fixes: gh-5760
7 years ago
Joe Grandja
9c0d78da71
Extract OidcTokenValidator to an OAuth2TokenValidator
...
Fixes gh-5930
7 years ago
Josh Cummings
7a55af246e
Polish tests and javadoc
...
When using AssertJ, it's easy to commit the following error
assertThat(some boolean condition)
The above actually does nothing. It at least needs to be
assertThat(some boolean condition).isTrue()
This commit refines some assertions that were missing a verify
condition.
Also, one Javadoc was just a little bit confusing, so this
clarifies it.
Issue: gh-6259
7 years ago
Rafael Dominguez
086b105273
Remove Servlet 2.5 Support for Session Fixation
...
This commit removes existence validation of a method only available in Servlet 3.1.
Spring Framework baseline is Servlet 3.1 so is not longer required.
Fixes: gh-6259
7 years ago
Panayiotis Vlissidis
4123d96cd5
JdbcUserDetailsManager handles extra UserDetails attributes
...
Check ResutSetMetaData to see if extra columns are present in order to
also handle the UserDetails attributes: accountNonExpired,
accountNonLocked and credentialsNonExpired.
Fixes gh-4399
7 years ago
Joe Grandja
12f320851d
Set openid scope in OAuth2LoginTests
7 years ago
Joe Grandja
8f4f52edb9
Support configurable JwtDecoder for IdToken verification
...
Fixes gh-5717
7 years ago
Joe Grandja
be23ab8114
AuthenticationFailureEvent should publish once
...
Fixes gh-6281
7 years ago
finke-ba
b838f7c7b7
Add WebFlux support for spring security web jackson module.
...
Fixes: gh-6303
7 years ago
Robbie Martinus
e60ae4984a
Add hasAnyAuthority() and hasAnyRole() in AuthorizeExchangeSpec
...
Fixes gh-6306
7 years ago
Shawn Biesan
a919b4e916
Remove servlet getHeader check and test
...
Fixes: gh-6265
7 years ago
finke-ba
9c7cab835f
Add conditionally servlet based support for spring security web jackson module.
7 years ago
Josh Cummings
f0402df915
Split Branches Into Multiple Sonarqube Projects
...
Eliminate analysis collisions and simplify application of analysis
quite periods.
Fixes: gh-6091
7 years ago