Josh Cummings
8c32d5fe48
Add oidcLogin WebFlux Test Support
...
Fixes: gh-7680
6 years ago
Josh Cummings
bb8706977d
Polish DefaultOAuth2AuthorizedClientManager
6 years ago
Eleftheria Stein
55f1c695e1
Include security configuration context in test sample
...
Fixes: gh-7688
6 years ago
Alexey Nesterov
d8d59e97ac
Correctly configure authorization requests repository for OAuth2 login
...
To use custom ServerAuthorizationRequestRepository both OAuth2AuthorizationRequestRedirectWebFilter and
OAuth2LoginAuthenticationWebFilter should use the same repo provided in the configuration. Currently the former filter is
correctly configured, but the latter always uses default, WebSession based repository. So authorization code created
before redirect to authorization endpoint will never be found to complete OAuth2 login when custom
ServerAuthorizationRequestRepository is used.
This change also makes OAuth2Client and OAuth2Login authentication converters consistent.
Fixes gh-7675
6 years ago
Joe Grandja
65513f2e3b
Polish OAuth2AuthorizedClientArgumentResolver
6 years ago
Joe Grandja
80f256e425
ServerOAuth2AuthorizedClientExchangeFilterFunction works with UnAuthenticatedServerOAuth2AuthorizedClientRepository
...
Fixes gh-7544
6 years ago
Joe Grandja
07b8aa0b1f
DefaultReactiveOAuth2AuthorizedClientManager requires non-null serverWebExchange
...
Issue gh-7544
6 years ago
Eleftheria Stein
b7cb93f671
Fix WebFlux logout disabling
...
Fixes: gh-7682
6 years ago
Ruslan Stelmachenko
c38e57fa42
Fix class and variable names
6 years ago
Ruslan Stelmachenko
8ebc7ca0ea
Fix InitializeAuthenticationProviderBeanManagerConfigurer Javadoc
6 years ago
Rob Winch
af01fdce7e
Fix security.tld
6 years ago
Rob Winch
17449cbf60
Fix next development version
6 years ago
Rob Winch
a7871cfce4
Next Development Version
6 years ago
Rob Winch
e5932131a9
Next Development Version
6 years ago
Filip Hrisafov
796859333f
Log full failed authentication exception in BasicAuthenticationFilter
6 years ago
David Eisner
56f5242595
Fix minor typo.
6 years ago
Josh Cummings
b35e18ff31
Add oidcLogin MockMvc Test Support
...
Fixes gh-7618
6 years ago
Josh Cummings
6ff71d8113
Add OidcUserInfo.Builder
...
Fixes gh-7593
6 years ago
Josh Cummings
c76775159c
Add OidcIdToken.Builder
...
Fixes gh-7592
6 years ago
Josh Cummings
4954a229d6
Polish oauth2Login Sample Test
...
Issue: gh-7618
6 years ago
ryenus
42ab6736e1
typo fix: consecutive-word duplications ( #7673 )
...
* fix typo: require require
* more typo fix: consecutive-word duplications
Following previously finding, I then used `rg` to find other similar
typos, with false positives manually excluded, using the following
command:
rg -t asciidoc -Pp '\b(\w+)\s+\1\b'
6 years ago
Rob Winch
af47e730a0
Only Hello Spring Security Boot
...
For those getting started, we really need to send the message of using
Spring Boot.
Fixes gh-7627
6 years ago
Eleftheria Stein
c5b36664ce
Polish PrincipalSid
...
Remove reduntant UserDetails check and add tests
6 years ago
杨博 (Yang Bo)
ea148d5fee
Avoid toString in favor of getName for extract sid
...
There are some more sophisticated implementations of `getName` in `AbstractAuthenticationToken` and other `Authentication` classes.
6 years ago
Rob Winch
b3d177fc7e
Extract HTTPS Documentation
...
Fixes gh-7626
6 years ago
Josh Cummings
7cbd1665a6
Isolate Jwt Test Support
...
Isolating Jwt test support inside JwtRequestPostProcessor and
JwtMutator.
Fixes gh-7641
6 years ago
Eleftheria Stein
8a95e5798d
Update @MessageMapping to match input/output cardinality
6 years ago
Pim Moerenhout
cd0bec48de
Fix typo in log message.
6 years ago
Paul Pazderski
0d35194b47
Add sessionFixation Javadoc
6 years ago
Josh Cummings
22ae3eb765
Polish Error-handling Tests
...
Tests should assert the error message content that Spring Security
controls.
Fixes gh-7647
6 years ago
Adrian Pena
ca8877c8c5
Updates javadoc for InitializeUserDetailsBeanManagerConfigurer
6 years ago
Josh Cummings
bc2aedac69
Update to nimbus-jose-jwt 7.8.1
...
Fixes gh-7570
6 years ago
Rafiullah Hamedy
58ca81d500
Make jwks_uri optional for RFC 8414 and Required for OpenID Connect
...
OpenID Connect Discovery 1.0 expects the OpenId Provider Metadata
response is expected to return a valid jwks_uri, however, this field is
optional in the Authorization Server Metadata response as per RFC 8414
specification.
Fixes gh-7512
6 years ago
Rob Winch
e1fad001d9
Extract HTTP Response Headers Documentation
...
Fixes gh-7625
6 years ago
Eleftheria Stein
1188a3bb5f
Polish RememberMeConfigurer
...
Issue: gh-4140
6 years ago
邓超
b13f750646
Retrieve remember-me key from service as fallback
...
Fixes: gh-4140
6 years ago
LeeHainie
4b4c6e612b
Remove unnecessary instantiation in root
...
Fixes: gh-7635
6 years ago
Kristine Jetzke
97fd3d7c84
Clarify usage of hasAnyRole and hasAnyAuthority
6 years ago
Yanming Zhou
9f6a36444a
Add missing schemas
6 years ago
Eddú Meléndez
27aa61b02f
Use LocalRSocketServerPort annotation
6 years ago
Drummond Dawson
4f82be7e68
Support URI vars in formLogin and logout MockMvc requests
6 years ago
Rob Winch
8722a4b0d0
Revert "Update to AspectJ 1.9.4"
...
This reverts commit 90c475e6b8 .
6 years ago
Josh Cummings
925bf48ec0
Polish OAuth2ResourceServerConfigurerTests
...
To confirm that resource server only produces SCOPE_<scope>
authorities by default.
Issue gh-7596
6 years ago
Rob Winch
2d9e4d6c0b
Next Development Version
6 years ago
Rob Winch
5b8369b7c3
Release 5.2.1.RELEASE
6 years ago
Josh Cummings
63647e9546
Add Resource Server Multi-tenancy Docs
...
Fixes: gh-7532
6 years ago
Rob Winch
bd4f2057ca
Update to blockound 1.0.1.RELEASE
...
Fixes gh-7613
6 years ago
Rob Winch
0310cc112e
Update to hibernate-validator 6.1.0.Final
...
Fixes gh-7612
6 years ago
Rob Winch
6c23d567b9
Update to hibernate-entitymanager 5.4.8.Final
...
Fixes gh-7611
6 years ago
Rob Winch
dfefaa94b5
Update to Unbounded 4.0.12
...
Fixes gh-7610
6 years ago