Luke Taylor
d5e6f0b575
Set release version to 2.0.7.RELEASE
15 years ago
Luke Taylor
76dc21469e
SEC-1750: Make sure RunAs replacement is constrained to the SecurityContext of the current thread.
15 years ago
Luke Taylor
22b7c9b905
SEC-1742: Make extraInformation in AuthenticationException transient.
15 years ago
Luke Taylor
0cdf202b10
SEC-1744: Do not trust authorities contained in the authentication request in JaasAuthenticationProvider.
15 years ago
Luke Taylor
a507e3612a
SEC-1741: Modify ContextPropagatingRemoteInvocation to pass a simple combination of principal/credentials as Strings, rather than serializing the whole SecurityContext object from the client.
15 years ago
Luke Taylor
f5fbda42e5
SEC-1790: Reject redirect locations containing CR or LF.
15 years ago
Rob Winch
d5b72275e5
SEC-1639: FirewalledRequest is now called on the specific FirewalledRequest instance rather that looping through ServletRequestWrappers.
...
VirtualFilterChain now accepts the FirewalledRequest in the constructor. The reset method is called directly on the instance passed in instead of looping through the ServletRequestWrappers.
15 years ago
Luke Taylor
08a933f930
SEC-1608: Ensure request wrapper is reset for empty filter chains.
15 years ago
Rob Winch
54ffc98bb4
SEC-1606: Added a FirewalledRequestAwareRequestDispatcher that will call FirewalledRequest.reset() before a forward
15 years ago
Luke Taylor
1c3d530b60
Switch versions to 2.0.7.CI-SNAPSHOT
15 years ago
Luke Taylor
beb0ec4ba9
Version 2.0.6.RELEASE
15 years ago
Luke Taylor
dec2e59fba
SEC-1584: Backport of namespace support for injecting custom HttpFirewall instance into FilterChainProxy.
15 years ago
Luke Taylor
ed7f589998
SEC-1584: Additional integration tests.
16 years ago
Luke Taylor
8f6ddb0f17
SEC-1584: Backport to 2.0.x branch of request firewalling (normalization checks and path-parameter stripping from servletPath and pathInfo).
16 years ago
Luke Taylor
62a8aca853
.gitignore updates
16 years ago
Luke Taylor
9c6a5135a3
SEC-1532: Patch applied to 2.0.x branch
16 years ago
Luke Taylor
0acf262546
SEC-1462: Added suggested patch (effectively the same as changes in 3.0.x and master branches).
16 years ago
Luke Taylor
6ad652ae97
Update 2.0 branch pom versions.
16 years ago
Luke Taylor
068b3d48ec
Add .gitignore to 2.0.x branch
16 years ago
Luke Taylor
d6f6a54455
SEC-1444: Backport of changes to 2.0.x
16 years ago
Luke Taylor
4361211c21
Change release from milestone to release
17 years ago
Luke Taylor
71adc26b0f
[maven-release-plugin] prepare release spring-security-2.0.5.RELEASE
17 years ago
Luke Taylor
eb3288ca34
Removing unnecessary repository declarations
17 years ago
Luke Taylor
f3f4cfe804
Minor changes to readme
17 years ago
Luke Taylor
40fa884860
Updated release plugin version
17 years ago
Luke Taylor
3e393c9df6
Tidying test class
17 years ago
Luke Taylor
a61aca1abf
Update to bundlor M5
17 years ago
Luke Taylor
52d2c904f9
Disable adapters build
17 years ago
Luke Taylor
149fd5d8de
Add bundlor templates
17 years ago
Luke Taylor
f3f02d8aed
Update sec-2.0.x branch to use bundlor
17 years ago
Luke Taylor
781c99f257
SEC-1145: Updated LDAP code to make sure pooling flag is removed when binding as a specific user (for real this time)
17 years ago
Luke Taylor
b77f780993
SEC-1145: Updated LDAP code to make sure pooling flag is removed when binding as a specific user
17 years ago
Scott Battaglia
22964837e9
SEC-1066
...
upgraded to CAS Client for Java 3.1.5
17 years ago
Scott Battaglia
7566802a08
SEC-1046
...
upgrade to CAS Client for Java 3.1.4
17 years ago
Luke Taylor
4c3867718e
SEC-1031: Ported change from trunk.
17 years ago
Luke Taylor
ad4b5c487f
Temporarily store webflow test sample in sandbox
18 years ago
Luke Taylor
48013b2c93
typo
18 years ago
Luke Taylor
03b21494bc
Corrected typo
18 years ago
Luke Taylor
ac54976f9e
Added appendices to end of doc
18 years ago
Scott Battaglia
7594e1ae2f
SEC-984
...
added template method to allow to override the default of retrieving user by username.
18 years ago
Luke Taylor
97381fb448
SEC-974: Made getExceptionMappings() protected.
18 years ago
Carlos Sanchez
af3c77f56f
[SEC-997] Remove unnecessary repository
18 years ago
Luke Taylor
4542f00b14
SEC-975: Namespace security syntax does not interpret properties
...
http://jira.springframework.org/browse/SEC-975 . Changed creation of AccessDeniedHandler to use a BeanDefinition to make sure placeholders work OK.
18 years ago
Luke Taylor
5e4634d216
Minor Javadoc improvement.
18 years ago
Luke Taylor
d291def963
Removed invalid comment.
18 years ago
Luke Taylor
df59cb9dcd
Import cleaning.
18 years ago
Luke Taylor
ef0389ae79
SEC-976: Removed checks for presence of core-tiger classes.
18 years ago
Luke Taylor
5b9bb8ba54
[maven-release-plugin] prepare for next development iteration
18 years ago
Luke Taylor
73eed2656d
[maven-release-plugin] prepare release spring-security-parent-2.0.4
18 years ago
Luke Taylor
f935830cdf
Class index generation files
18 years ago