Josh Cummings
28f98b3351
Improve Error Message
...
Closes gh-13667
2 years ago
Josh Cummings
ed96e2cddf
Ignore Unmappable Servlets
...
Closes gh-13666
2 years ago
Josh Cummings
ca0140c586
saml2Login Honors AuthenticationProvider bean
...
Closes gh-13654
2 years ago
Josh Cummings
c4f061c63d
Do Not Re-register Method Security Advisors
...
Closes gh-13572
3 years ago
Josh Cummings
bb46a54270
Add DispatcherServlet to Tests
...
Issue gh-13551
3 years ago
Josh Cummings
df239b6448
Improve RequestMatcher Validation
...
Closes gh-13551
3 years ago
Marcus Da Coregio
933b302979
Fix once-per-request="true" not taking any effect
...
Closes gh-13491
3 years ago
Marcus Da Coregio
7250abc185
Does not apply a Configurer when disabled from another DSL
...
Closes gh-13203
3 years ago
Josh Cummings
f566ed0afd
Update Symlink for 6.1
...
Issue gh-13131
3 years ago
Josh Cummings
71703dc371
Update Symlink for 6.0
...
Issue gh-13131
3 years ago
Josh Cummings
73cb9862ad
Update Symlink for 5.8
...
Issue gh-13131
3 years ago
Josh Cummings
1eefd433b6
Add spring-security.xsd symlink
...
Closes gh-13131
3 years ago
lukasz.migdalek
f4915890cc
Use Spec Order for Verifying Signatures
...
Closes gh-12346
3 years ago
Josh Cummings
e9a02bc6e9
RememberMeConfigurer Picks Up SecurityContextRepository
...
Closes gh-13104
3 years ago
Marcus Da Coregio
69338ecdfa
Only Observe AuthenticationManager if it is not null
...
Closes gh-13084
3 years ago
Josh Cummings
c3479ddb45
Pick Up SecurityContextRepository
...
Closes gh-13008
3 years ago
Marcus Da Coregio
2d52fb8e4b
Clear Repository on Logout
3 years ago
Marcus Da Coregio
54117d7d27
Fix test suffix to align with checkstyle
3 years ago
twosom
cbb4e40166
fix typo in RequestCacheResultMatcher
3 years ago
Josh Cummings
a4bc0a6f3c
Polish
...
- Add POST /login assertion
- Rearrange test and config class
Issue gh-12552
3 years ago
Clayton Walker
e2332d9620
Add disable to FormLoginDsl
...
Closes gh-12552
3 years ago
Josh Cummings
a7562ad950
Update io.spring.javaformat to 0.0.38
...
Closes gh-12891
3 years ago
Josh Cummings
3ad6c6ce06
Use EntityId-lookup Components
...
Closes gh-12880
3 years ago
Josh Cummings
46452c0cae
Add saml2Metadata
...
Closes gh-11828
3 years ago
hdeadman
e0284a4503
Fix CAS packages for 4.0.1 and Jasig references
...
Issue gh-11674
3 years ago
hdeadman
b4d3ac6665
Revert "Remove CAS module"
...
This reverts commit caf4c471
3 years ago
Marcus Da Coregio
1c3ce1e401
Fix entity-id ignored in RelyingPartyRegistration XML config
...
Closes gh-11898
3 years ago
Leonid Rozenblyum
000b4bc495
Fix NPE in HttpSecurity#addFilterBefore, HttpSecurity#addFilterAfter
...
Before the fix, these methods would throw a NPE in case when the filter class passed as the second parameter, is not registered yet.
In particular, this exception can occur when mixing standard and custom DSL to register filters.
The fix doesn't change the situation that standard DSL for registration of filters cannot refer to filters that are registered via custom DSL even though those calls were done earlier.
It just provides more user-friendly error handling for this and most likely other scenarios of calls of HttpSecurity#addFilterBefore, HttpSecurity#addFilterAfter.
The error handling is implemented similarly to HttpSecurity#addFilter.
Closes gh-12637
3 years ago
Tobias Meurer
7dd5cc6082
Pick Up Custom SecurityContextRespository
...
Closes gh-12579
3 years ago
Marcus Da Coregio
3572111cf5
Add JwtDecoder hint for oauth2Login
...
Closes gh-12615
3 years ago
Evgeniy Cheban
59829321a8
Allow configuring SecurityContextRepository for BasicAuthenticationFilter
...
Closes gh-12031
3 years ago
Steve Riesenberg
13487be268
Default to XorCsrfChannelInterceptor in 6.0.x
...
Closes gh-12378
3 years ago
Josh Cummings
c3563df25a
Include HttpStatusRequestRequestedHandler
...
Closes gh-12548
3 years ago
Josh Cummings
66711f2365
Add RequestRejectedHandler Test
...
Issue gh-12548
3 years ago
Steve Riesenberg
c306df9b46
Add XorCsrfChannelInterceptor
...
Issue gh-12378
3 years ago
Evgeniy Cheban
d84b8d2d12
AuthorizeHttpRequestsConfigurer.AuthorizedUrl.hasRole should look up for a RoleHierarchy bean in the context
...
Closes gh-12473
3 years ago
Josh Cummings
5b6b3d585f
Change EnableReactiveMethodSecurity Defaults
...
Closes gh-12506
3 years ago
Joe Grandja
e139f1c2ba
Polish gh-12438
3 years ago
Spas Poptchev
919280b3e4
Allow ServerOAuth2AuthorizationRequestResolver to be set on oauth2 client configuration
...
Closes gh-12430
3 years ago
Marcus Da Coregio
7080ea652f
Add hints for ProxyFactoryBean AuthenticationManager
...
Closes gh-12367
3 years ago
Marcus Da Coregio
e6173f9e5b
Prepare for Spring Security 6.1
3 years ago
Steve Riesenberg
dd9f954ace
Fix tests in CsrfConfigurerTests
...
Closes gh-12241
3 years ago
Steve Riesenberg
ea6ce05662
Add configurer tests for CookieCsrfTokenRepository
...
Issue gh-12236
3 years ago
Steve Riesenberg
2ed7cff643
Check for existing token before clearing
...
Closes gh-12236
3 years ago
Josh Cummings
e08ed89403
Polish Span and Meter Names
...
Closes gh-12156
3 years ago
Marcus Da Coregio
3b5d19c8a4
Adapt to Servlet API 6 changes and support Jakarta WebSocket 2.1
...
Closes gh-12146
Closes gh-12148
3 years ago
Marcus Da Coregio
72c25332a5
Fix authenticationFailureHandler customization tests
...
Issue gh-12132
3 years ago
Josh Cummings
3192618220
Add authenticationFailureHandler
...
- To ServerHttpSecurity#httpBasic
- To ServerHttpSecurity#oauthResourceServer
Closes gh-12132
3 years ago
Rob Winch
d860775b45
Document Defer load CsrfToken
...
Closes gh-12105
3 years ago
mmoussa_mapfreusa
bd4e0fb5db
Set LogoutRequestRepository on Saml2 LogoutSuccessHandler
...
Closes gh-11363
3 years ago