796 Commits (5.8.3)

Author SHA1 Message Date
Marcus Da Coregio 2d52fb8e4b Clear Repository on Logout 3 years ago
Christian Marck 442faccb5f
Avoid NPE in FilterInvocation 3 years ago
Marcus Da Coregio 8d664bc4c2 DelegatingSecurityContextRepository should call loadContext 3 years ago
twosom 3d7e22a4e9 Add test to SimpleUrlAuthenticationSuccessHandlerTests 3 years ago
twosom abd51f7b63
Polished DefaultLoginPageGeneratingFilterTests Validation 3 years ago
Marcus Da Coregio 84cca81edf Use HttpSessionSecurityContextRepository by default in SwitchUserFilter 3 years ago
Josh Cummings 0d4c619648
Include continue in query string 3 years ago
Steve Riesenberg c306df9b46
Add XorCsrfChannelInterceptor 3 years ago
Marcus Da Coregio ffdb397830 Save the SecurityContext when switching user 3 years ago
Marcus Da Coregio 99d6d21554 Apply SecurityContextHolderFilter to all dispatcher types 3 years ago
Steve Riesenberg 2ed7cff643
Check for existing token before clearing 3 years ago
Steve Riesenberg 6b0ed0205b
Re-generate tokens in CookieCsrfTokenRepository 3 years ago
Marcus Da Coregio 1f481aafff
Fix AuthorizationFilter incorrectly extending OncePerRequestFilter 3 years ago
David Becker 2b426872a3
Use InetSocketAddress#getHostString 3 years ago
Steve Riesenberg acc35aeb18
Add DelegatingSecurityContextRepository 3 years ago
Steve Riesenberg c75ca10900
Add DeferredSecurityContext 3 years ago
Josh Cummings 099aaa33ff
Remove Deprecation Markers 3 years ago
Daniel Garnier-Moiroux 200b7fecd3
Add (Server)AuthenticationEntryPointFailureHandlerAdapter 3 years ago
Evgeniy Cheban 56b9badcfe
AnonymousAuthenticationFilter should cache its Supplier<SecurityContext> 3 years ago
Joe Grandja 185991a606 Revert "Add default AuthorizationManager" 3 years ago
Steve Riesenberg 8bd25f90e4
Polish XorServerCsrfTokenRequestAttributeHandlerTests 3 years ago
Steve Riesenberg 804f20045e
Polish XorCsrfTokenRequestAttributeHandlerTests 3 years ago
Steve Riesenberg 05e4a1dd20
Cache Xor CsrfToken 3 years ago
Marcus Da Coregio 4b6fed0667 Add static factory method to AntPathRequestMather and RegexRequestMatcher 3 years ago
Steve Riesenberg f462134e87
Add reactive support for BREACH 3 years ago
Steve Riesenberg f4ca90e719
Add reactive interfaces for CSRF request handling 3 years ago
Josh Cummings 4ddec07d0e
Add default AuthorizationManager 3 years ago
Steve Riesenberg dce1c30522
Add support for BREACH 3 years ago
Steve Riesenberg 475b3bb6bb
Add deferred CsrfTokenRepository.loadDeferredToken 3 years ago
Marcus Da Coregio 039e0328e1 Simplify Java Configuration RequestMatcher Usage 3 years ago
Daniel Garnier-Moiroux 93250013e4
Make X-Xss-Protection configurable through ServerHttpSecurity 3 years ago
Steve Riesenberg 46696a9226
CsrfTokenRequestHandler extends CsrfTokenRequestResolver 3 years ago
Steve Riesenberg 5d757919a2
Add SecurityContextHolderStrategy to new repository 3 years ago
Rob Winch d94677f87e CsrfTokenRequestAttributeHandler -> CsrfTokenRequestHandler 3 years ago
Steve Riesenberg 86fbb8db07 Add new interfaces for CSRF request processing 3 years ago
Bert Vanwolleghem a5351f3d89
LogoutPageGeneratingWebFilter Uses Context Path 3 years ago
Rob Winch 2fb625db84 Remove mockito deprecations 3 years ago
Rob Winch 5b64526ba9 Add CsrfFilter.csrfRequestAttributeName 4 years ago
Rob Winch 666f175225 LazyCsrfTokenRepository#loadToken Supports Deferring Delegation 4 years ago
Marcus Da Coregio ead587c597 Consistently handle RequestRejectedException if it is wrapped 4 years ago
Marcus Da Coregio 6a2ca52aae Consistently handle RequestRejectedException if it is wrapped 4 years ago
Marcus Da Coregio 1c4d6ed098 Consistently handle RequestRejectedException if it is wrapped 4 years ago
Rob Winch 269c711a64 RequestAttributeSecurityContextRepository never null SecurityContext 4 years ago
Rob Winch c9f8d2b111 RequestAttributeSecurityContextRepository never null SecurityContext 4 years ago
Marcus Da Coregio f45c4d4b8e Add SHA256 as an algorithm option for Remember Me token hashing 4 years ago
Rob Winch 415a674edc AnonymousAuthenticationFilter Avoids Eager SecurityContext Access 4 years ago
Rob Winch 28c0d1459c Request Cache supports matchingRequestParameterName 4 years ago
Josh Cummings 03a5c3b08a
Use SecurityContextHolderStrategy for Concurrency Filter 4 years ago
Josh Cummings 135e602472
Use SecurityContextHolderStrategy for Digest 4 years ago
Josh Cummings e1c211c11f
Use SecurityContextHolderStrategy for Switch User 4 years ago