Joe Grandja
ce2f669245
Remove state assertion when loading OAuth2AuthorizationRequest
...
Fixes gh-5163
8 years ago
Josh Cummings
ec46b7dbe1
WebSocketMessageBrokerConfigTests groovy->java
...
Of note is that this commit unrolls three Spock @Unroll-parameterized
tests into a separate test for each parameter.
Issue: gh-4939
8 years ago
Mark Hobson
3c07d99b0a
Close quoted expected path in log when matching
8 years ago
Johnny Lim
d20ed9f5c9
Fix @since for StrictHttpFirewall
8 years ago
Christoph Dreis
d07cfe655d
Use Supplier variants of Assert methods
8 years ago
Rob Winch
7d4e7bf42d
Add JDK 10 & 11 Builds
...
Issue: gh-5160
8 years ago
Rob Winch
b1d013e8f0
Fix JDK 9
...
Issue: gh-5160
8 years ago
Rob Winch
6f6aadbcff
Add JDK 9 Build
...
Issue: gh-5160
8 years ago
Alter Ego
0e37c0912e
Update User.java
...
fixed a typo; replaced "User.witUsername("user")" with "User.withUsername("user")"
8 years ago
Joe Grandja
bb15213091
Ensure consistency by using Collection<GrantedAuthority> type
...
Fixes gh-5143
8 years ago
Joe Grandja
90f9d728cd
Allow extension for OAuth2Error
...
Fixes gh-5148
8 years ago
Rob Winch
e4255c9793
Add Security Vulnerabilities
8 years ago
Rob Winch
332c395875
Add Security Vulnerabilities Location
8 years ago
Rob Winch
bf41d48718
HttpSessionOAuth2AuthorizationRequestRepository support distributed HttpSession
...
Previously HttpSessionOAuth2AuthorizationRequestRepository
getAuthorizationRequest attempted to update the state of HttpSession as
well as getting the Map of OAuth2AuthorizationRequest. This had a few
problems
- First it was confusing that a get method updated state
- It worked when the session was in memory, but would not work when the
HttpSesson was persisted to an external store (i.e. Spring Session) since
after updating the Map, there was no invocation to update
This commit cleans up the logic and ensures that the values are explicitly
set in the HttpSession so it works with a session persisted in an external
store.
Fixes: gh-5146
8 years ago
Rob Winch
04e2e86e6e
Polish HttpSessionOAuth2AuthorizationRequestRepositoryTests
...
Fixes: gh-5147
8 years ago
Joe Grandja
59cef7d339
HttpSessionOAuth2AuthorizationRequestRepository handle multiple OAuth2AuthorizationRequest per session
...
Fixes gh-5110
8 years ago
Rob Winch
7e6ed52603
CookieClearingLogoutHandler adds uses contextPath + "/"
...
Fixes: gh-2325
8 years ago
Rob Winch
018ab7d92c
Fix Javadoc Typo uses->use
...
Issue: gh-5113
8 years ago
Rob Winch
01152ede41
Clarify HttpSecurity.registerFilterAt
...
Fixes: gh-5113
8 years ago
Rob Winch
1851aaa66d
Fix ReactorContextTestExecutionListener with custom SecurityContext
...
Fixes: gh-5137
8 years ago
Oleh Dokuka
76e36bd06e
fix Mock Authentication resolution
8 years ago
Vedran Pavic
b640d84b12
Improve EditorConfig file
8 years ago
Rob Winch
3a740ad988
Add SNAPSHOTs tests to CI
...
Fixes: gh-5129
8 years ago
Rob Winch
67d793ae5f
Delay lookup of managedVersions
...
Fixes: gh-5127
8 years ago
Rob Winch
efaf2b080f
Make MIN_SPRING_VERSION Dynamic
...
Fixes: gh-5065
8 years ago
Rob Winch
e86becc151
Relax assertions in HeaderSpecTests
...
Fixes: gh-5116
8 years ago
Rob Winch
4f709d47b9
Fix @since on GlobalAuthenticationConfigurerAdapter
...
Fixes: gh-5106
8 years ago
Rob Winch
452d855396
Fix appendix tests
8 years ago
Rob Winch
6e5105f899
Extract appendix subsections
...
Issue: gh-2567
8 years ago
Rob Winch
40bb73124c
Move data to data/index
...
Issue: gh-2567
8 years ago
Rob Winch
780e6aefd2
Extract additional-topics subsections
...
Issue: gh-2567
8 years ago
Rob Winch
35345fac70
Extract authorization subsections
...
Issue: gh-2567
8 years ago
Rob Winch
8cf51032e0
Extract Subsections of Web
...
Issue: gh-2567
8 years ago
Rob Winch
ae9075c023
Extract test subsections
...
Issue: gh-2567
8 years ago
Rob Winch
cf4272ff64
Extract architecture subsections
...
Issue: gh-2567
8 years ago
Rob Winch
4152530e69
Fix new lines
...
Issue: gh-2567
8 years ago
Rob Winch
73cec43842
Extract subsections for preface
...
Issue: gh-2567
8 years ago
Rob Winch
86465026a1
Extract top level section of reference
...
Issue: gh-2567
8 years ago
Rob Winch
e799f13ae2
Consistent new lines in referenche
...
Issue: gh-2567
8 years ago
Josh Cummings
744bb1b1be
Advisory to avoid markdown in commit messages
...
Today, @rwinch and I were discussing the merits of leaving commit messages free of formatting hints, like back-ticks. Adding this bullet-point brings things into line with expectations.
8 years ago
Josh Cummings
776b378a1d
Authorities authenticate TestingAuthenticationToken
...
In other extensions of `AbstractAuthenticationToken`, the constructors
that include `authorities` call `setAuthenticated(true)`. This includes
`PreAuthenticated`-, `UsernamePassword`-, and
`RememberMeAuthenticationToken`.
This change brings `TestingAuthenticationToken` in line with that
convention.
Note that this was done once already to one of the constructors
(ee13be4 ) in `TestingAuthenticationToken` that takes an arity of
`authorities`. It was not propagated to the constructor that takes a
collection, which is what this commit remedies.
Fixes: gh-5073
8 years ago
Rob Winch
d21338d212
Support errorOnInvalidType for Reactive AuthenticationPrincipal
...
Fixes: gh-5096
8 years ago
Rob Winch
a2073b2b91
Support BeanResolver for Reactive AuthenticationPrincipal
...
Fixes: gh-4326
8 years ago
Rob Winch
d816af2337
Add BadCredentials Jackson Support to What's New
...
Issue: gh-5087
8 years ago
Rob Winch
7fafd899ee
Add Reactive WithUserDetails to What's new
...
Issue: gh-4888
8 years ago
Josh Cummings
bc21f80ebe
Update to Spring Boot 2.0.0.RELEASE
...
Fixes: gh-5061
8 years ago
Rob Winch
65193963ad
Fix Imports
...
Issue: gh-4888
8 years ago
Rob Winch
2228485a40
WithUserDetails supports ReactiveUserDetailsService
...
Fixes: gh-4888
8 years ago
Rob Winch
949c7d68b8
Fix StrictHttpFirewall rules
...
Fixes: gh-5044
8 years ago
ylombardi
1d0e97880d
Add the BadCredentialsExceptionMixin to help Jackson serialization of BadCredentialsException
8 years ago