Spring Buildmaster
0b28b40f0d
Release version 3.1.7.RELEASE
12 years ago
Rob Winch
0d86164a49
SEC-2547: Update to cas-client-core-3.3.3
12 years ago
Rob Winch
b78bd897cd
SEC-2688: CAS Proxy Ticket Authentication uses Service for host & port
12 years ago
Rob Winch
055eb72d60
Remove explict LDAP dir for integration tests
12 years ago
Rob Winch
f4914b2271
Remove ApacheDSContainer import
12 years ago
Rob Winch
541aee8e3e
SEC-2449: <ldap-server> default port should fallback to dynamic value
12 years ago
Rob Winch
a6cab1be74
SEC-2606: ApacheDSServerIntegrationTests scan for available port
12 years ago
Rob Winch
bbfcab0c81
SEC-2607: CAS Server logouts out synchronously
12 years ago
Spring Buildmaster
6e431e7d16
Next development version
12 years ago
Rob Winch
2eec67fe73
SEC-2507: Fix test imports
12 years ago
Rob Winch
88559882e9
SEC-2500: Prevent anonymous bind for ActiveDirectoryLdapAuthenticator
12 years ago
Rob Winch
9270845a21
SEC-2507: WebExpressionVoter.supports support subclasses of FilterInvocation
12 years ago
Spring Buildmaster
1d53dc5e5c
Next development version
12 years ago
Rob Winch
ac6cf5396a
SEC-2468: JdbcUserDetailsManager#createNewAuthentication uses null credentials
12 years ago
james
5a2e99c940
SEC-2467: Fix Small errors in itest-web's jsps
12 years ago
Rob Winch
6f3c6f9b5b
SEC-2447: JdbcMutableAclServiceTests should invoke aclCache.clearCache()
12 years ago
Rob Winch
1feb38048b
Update to Gradle 1.9
...
Necessary to work with the latest Bamboo and Artifactory Gradle updates
12 years ago
Rob Winch
905c59f599
SEC-2313: Gradle javadoc hotfix
13 years ago
Rob Winch
241e984ea4
SEC-2171: Include Information about pooling in Spring LDAP documentation
13 years ago
Rob Winch
8053cb0de7
SEC-2103: Fix tests to verify debug logging instead of info
13 years ago
Rob Winch
889bba1d67
SEC-2103: Change log of no results to debug
13 years ago
Rob Winch
f9fd448d88
SEC-2139: named-security-filter are all defined and ordered correctly
13 years ago
Rob Winch
7bf6046408
SEC-2108: Fix typo in ldap section of manual
13 years ago
Guillaume Smet
5dfeea7631
SEC-2245: Cast to interface instead of implementation
...
Makes our life easier when we want to override the
MethodSecurityExpressionRoot.
13 years ago
Luke Taylor
f42720b1b6
SEC-2175: Correct XSD docs on auto-config.
13 years ago
Rob Winch
113e28a148
Update to next dev version - 3.1.5.CI-SNAPSHOT
13 years ago
Spring Buildmaster
de6bcb80b9
[artifactory-release] Next development version
13 years ago
Rob Winch
102da87080
Disable artifactoryPublish for projects without artifacts
13 years ago
Rob Winch
f1ae9da55e
Remove ApacheDSContainerTests successfulStartupAndShutdown since it was commented out
13 years ago
Rob Winch
94e2e0c65e
SEC-2161: <ldap-server> creates unique dir for embedded LDAP
13 years ago
Rob Winch
fa3a30cc20
SEC-2162: ApacheDSContainer throws RuntimeException on failure to start
13 years ago
Rob Winch
ee6e6ceafb
SEC-2133: Update doc from ChannelAuthenticationFilter to ChannelProcessingFilter
13 years ago
Rob Winch
095594daea
SEC-2147: Deprecate .encoding.PasswordEncoding
13 years ago
Rob Winch
e9215c4dc3
SEC-2087: GlobalMethodSecurityBeanDefinitionParser uses AuthenticationManager to create AuthenticationManagerDelegator
13 years ago
@fbiville
0d70c703df
SEC-2138: Fix code snippet in Hierarchical Roles section
...
The bean definition of RoleHierarchyVoter was syntactically incorrect.
13 years ago
Rob Winch
73710bf7b8
Add CONTRIBUTING.md
13 years ago
Jean-Pierre Bergamin
ca5501eb31
SEC-2118: Fixing spring and aspectj OSGi version ranges [3.2, 3.2) -> [3.2, 3.3)
13 years ago
Rob Winch
c703806fa2
Revert "SEC-2078: AbstractPreAuthenticatedProcessingFilter requriesAuthentication support for non-String Principals"
...
This reverts commit 3fe7791266 .
13 years ago
Rob Winch
67eb9821f3
Revert "SEC-2078: Updated Javadoc to reflect that updates to Principal will also trigger reauthentication"
...
This reverts commit ece4a0f067 .
13 years ago
Rob Winch
7b93ffd5d4
SEC-2078: Updated Javadoc to reflect that updates to Principal will also trigger reauthentication
13 years ago
Rob Winch
5fa252b848
SEC-2078: AbstractPreAuthenticatedProcessingFilter requriesAuthentication support for non-String Principals
...
Previously, if the Principal returned by getPreAuthenticatedPrincipal was not a String,
it prevented requiresAuthentication from detecting when the Principal was the same.
This caused the need to authenticate the user for every request even when the Principal
did not change.
Now requiresAuthentication will check to see if the result of
getPreAuthenticatedPrincipal is equal to the current Authentication.getPrincipal().
13 years ago
Rob Winch
87c3c7edb9
Use AspectJMethodSecurityInterceptor in reference
...
Change reference to use AspectJMethodSecurityInterceptor instead of
undefined AspectJSecurityInterceptor.
13 years ago
Rob Winch
7f342f3321
SEC-2074: Update reference to use <method-security-metadata-source>
13 years ago
Rob Winch
2f6325f651
SEC-2084: AntPathRequestMatcher and RegexpRequestMatcher support request.getMethod()
...
Previously a NullPointerException would occur if an HttpServletRequest.getMethod()
returned null.
Now AntPathRequestMatcher and RegexpRequestMatcher will handle if the
HttpServletRequest.getMethod() returns null. While under normal circumstances,
it is unlikely for the method to be null this can occur when using
DefaultWebInvocationPrivilegeEvaluator.isAllowed(String, Authentication).
13 years ago
Rob Winch
e3f53908af
SEC-2072: <security:anonymous> granted-authority supports multiple authorities again
13 years ago
Rob Winch
4d1127106b
Add 3.1.x suffix to eclipse projects
13 years ago
Rob Winch
c0dfb70ca0
Added generatePom task
...
This can be used to generate the pom.xml for adding the Spring Security
snapshot jars as a Maven Dependency to another project. For example,
if mywebapp requires the Spring Security 3.1.4.CI-SNAPSHOT jars one
could generate the pom.xml files and then use that to convert the project
into a valid Maven project within the IDE. Then the SNAPSHOT dependendies
could be added to mywebapp. This prevents the need to install the SNAPSHOT
dependencies in the local Maven repository.
13 years ago
Rob Winch
78cbdd2c93
Reserve Server Ports in integrationTests
...
Previously the build would look up a server port dynamically, but since
it closed the port immediately it may not be reserved by the time jetty
started up.
We now reserve the port and do not close it till just before Jetty starts.
While there is still a race condition, it is much smaller window of time
than it was previously.
13 years ago
Rob Winch
6cea2694dc
SEC-2069: Update doc to use FilterInvocationSecurityMetadataSource
13 years ago
Rob Winch
c2499c6143
Next developement version
13 years ago