Marcus Da Coregio
7813a9ba26
Use default PathPatternParser instance
3 years ago
Mitja Kotnik
f39f215140
Replace javadoc with SecurityFilterChain bean definition
3 years ago
Guillaume Husta
a5464ed819
Fix typo in DefaultLoginPageConfigurer Javadoc
...
'isLogoutRequest' seems to have nothing to do here.
3 years ago
Koos Gadellaa
5c4362bbc4
Refresh parsers when not found
...
Closes gh-3065
3 years ago
Marcus Da Coregio
a8d6c1d21f
Consistently set AuthenticationEventPublisher in AuthenticationManagerBuilder
...
Prior to this, the HttpSecurity bean was not consistent with WebSecurityConfigurerAdapter's HttpSecurity because it did not setup a default AuthenticationEventPublisher. This also fixes a problem where the AuthenticationEventPublisher bean would only be considered if there was a UserDetailsService
Closes gh-11449
Closes gh-11726
4 years ago
Rob Winch
faf9fb7337
NamespaceLdapAuthenticationProviderTests use Dynamic Port
...
Closes gh-11710
4 years ago
Marcus Da Coregio
d66ad22652
Add Deprecated annotation to WebSecurity#securityInterceptor
...
Closes gh-11634
4 years ago
Juny Tse
649428b49a
Use Base64 encoder with no CRLF in output for SAML 2.0 messages
...
Closes gh-11262
4 years ago
Marcus Da Coregio
7983c695e2
Fix mvcMatchers overriding previous paths
...
Closes gh-10956
4 years ago
Marcus Da Coregio
15b3744dcf
Fix setServletContext not being called for AuthorizationManagerWebInvocationPrivilegeEvaluator
...
Issue gh-10908
4 years ago
Marcus Da Coregio
e45dcb3ab2
Update copyright headers
...
Issue gh-10956
4 years ago
Marcus Da Coregio
d3a451fffb
Fix mvcMatchers overriding previous paths
...
Closes gh-10956
4 years ago
Marcus Da Coregio
9d378103b0
Fix setServletContext not being called for AuthorizationManagerWebInvocationPrivilegeEvaluator
...
Issue gh-10908
4 years ago
Josh Cummings
040a28a8c9
Replace Apache Commons Base64 Decoding
...
Issue gh-10923
4 years ago
Josh Cummings
963251314b
Replace Apache Commons Base64 Decoding
...
Issue gh-10923
4 years ago
Josh Cummings
a09f6e15ad
Polish ignoring() log messaging
...
- Public API remains unchanged
Issue gh-9334
4 years ago
Manuel Jordan
7e0302be5c
Print ignore message DefaultSecurityFilterChain
...
When either `web.ignoring().mvcMatchers(...)` or
`web.ignoring().antMatchers(...)` methods are used, for all their
variations, the DefaultSecurityFilterChain class now indicates
correctly through its ouput what paths are ignored according the
`ignoring()` settings.
Closes gh-9334
4 years ago
Josh Cummings
f53c65b3a0
Polish ignoring() log messaging
...
- Public API remains unchanged
Issue gh-9334
4 years ago
Manuel Jordan
0be772ff5b
Print ignore message DefaultSecurityFilterChain
...
When either `web.ignoring().mvcMatchers(...)` or
`web.ignoring().antMatchers(...)` methods are used, for all their
variations, the DefaultSecurityFilterChain class now indicates
correctly through its ouput what paths are ignored according the
`ignoring()` settings.
Closes gh-9334
4 years ago
Marcus Da Coregio
a763382c3e
Make source code compatible with JDK 8
...
Closes gh-10695
4 years ago
Marcus Da Coregio
e1cb375fbf
Make source code compatible with JDK 8
...
Closes gh-10695
4 years ago
Marcus Da Coregio
994e93741b
Configure WebInvocationPrivilegeEvaluator bean for multiple filter chains
...
Closes gh-10554
4 years ago
Marcus Da Coregio
ba810e468f
Configure WebInvocationPrivilegeEvaluator bean for multiple filter chains
...
Closes gh-10554
4 years ago
Josh Cummings
76ebbb84f7
Separate Namespace Servlet Docs
...
Issue gh-10367
4 years ago
Rob Winch
e4a76b0ec9
Checkstyle Fixes
...
- Javadoc tag ordering
- Private constructors before inner classes
Issue gh-10394
4 years ago
Marcus Da Coregio
2f1638ec57
Fix javadoc
...
Closes gh-10382
4 years ago
Emil Sierżęga
cb70b6a39b
Fixed invalid usage of & tag in Javadocs
4 years ago
Emil Sierżęga
04b47c5928
Fixed various broken links in Javadocs
4 years ago
Emil Sierżęga
a188138715
Javadocs author tag doesn't work in methods
4 years ago
Emil Sierżęga
6b26032ce7
Fixed invalid usege of > tag in Javadocs
4 years ago
Rob Winch
f836897190
Checkstyle Fixes
...
- Javadoc tag ordering
- Private constructors before inner classes
Issue gh-10394
4 years ago
Philipp Neuschwander
6db58cbf8a
Conditionally resolve bearer token from request parameters
...
Before this commit, the DefaultBearerTokenResolver unconditionally
resolved the request parameters to check whether multiple tokens
are present in the request and reject those requests as invalid.
This commit changes this behaviour to resolve the request parameters
only if parameter token is supported for the specific request
according to spec (RFC 6750).
Closes gh-10326
4 years ago
Gaurav Tiwari
33708e61fb
Add postProcess support to Saml2LogoutConfigurer
...
Closes gh-10311
4 years ago
Josh Cummings
fbb7691be4
Polish SecurityNamespaceHandler Tests
...
Issue gh-8974
4 years ago
Emil Sierżęga
8daa6ec1fd
SecurityNamespaceHandler: update schema version to 5.6
...
Closes gh-8974
4 years ago
Josh Cummings
97dfabe92e
Polish SecurityNamespaceHandler Tests
...
Issue gh-8974
4 years ago
Emil Sierżęga
944463e19a
SecurityNamespaceHandler: update schema version to 5.5
...
Closes gh-8974
4 years ago
Eleftheria Stein
ba8844a67e
Deprecate Kotlin methods that don't use reified types
...
Closes gh-10365
4 years ago
Marcus Da Coregio
f45b990b4b
Allow SAML 2.0 loginProcessingURL without registrationId
...
Closes gh-10176
4 years ago
Marcus Da Coregio
816e847af2
Allow SAML 2.0 loginProcessingURL without registrationId
...
Closes gh-10176
4 years ago
Marcus Da Coregio
7112ee3eaa
Allow SAML 2.0 loginProcessingURL without registrationId
...
Closes gh-10176
4 years ago
Marcus Da Coregio
e36e2b2a97
Move Saml2AuthnRequestRepository to web package
...
Moving to solve package tangles
Issue gh-9185
4 years ago
Rob Winch
3b64cdfc03
Fix XsdDocumentedTests
...
Issue gh-5835
4 years ago
Josh Cummings
c3ba2332da
Wire BeanResolver into DefaultMethodSecurityExpressionHandler
...
Closes gh-10305
4 years ago
Josh Cummings
7b599d4770
Share JWKSource Instances
...
Closes gh-10312
4 years ago
Marcus Da Coregio
0364518b69
Update Saml2LoginConfigurer to pick up Saml2AuthenticationTokenConverter bean
...
Closes gh-10268
4 years ago
Eleftheria Stein
1e76b11b3c
Remove duplicate entry from test LDIF file
...
Closes gh-10274
4 years ago
Josh Cummings
4f06fc6ed1
Add Saml2LogoutConfigurer
...
Closes gh-9497
4 years ago
Josh Cummings
6488295cad
Add RelyingPartyRegistrationResolver
...
Closes gh-9486
4 years ago
Derek Van Blerkom
2bdaa31f72
Fix return type to allow further security config
...
Issue gh-10245
4 years ago