Luke Taylor
|
42a80931c1
|
SEC-671: Changed AuthenticationDetailsSource to take an object as argument instead of an HttpServletRequest and renamed AuthenticationDetailsSourceImpl to WebAuthenticationDetailsSource. Also removed some preauth dependencies on commons lang
|
2008-03-13 14:42:38 +00:00 |
|
Luke Taylor
|
df0d52ada7
|
SEC-708: Improve generation of XSD file from Relax NG schema
http://jira.springframework.org/browse/SEC-708. Committed XSL transformed XSD file and some minor changes to organisation of RNC file.
|
2008-03-13 10:33:28 +00:00 |
|
Luke Taylor
|
3a364a3343
|
SEC-713: Made MethodDefinitionAdvisor an infrastructure bean as required by Spring 2.0.7+ and upgraded to Spring 2.0.8
|
2008-03-11 17:53:04 +00:00 |
|
Luke Taylor
|
089bffa10f
|
SEC-712: HttpSessionContextIntegrationFilter "context" property should be renamed
http://jira.springframework.org/browse/SEC-712
|
2008-03-11 14:16:40 +00:00 |
|
Luke Taylor
|
6fcadb2022
|
SEC-699: Make TargetUrlResolverImpl parameter non-optional
http://jira.springframework.org/browse/SEC-699
|
2008-03-11 11:25:55 +00:00 |
|
Luke Taylor
|
e8c0e74498
|
SEC-708: Improve generation of XSD file from Relax NG schema. XSL file to be run on generated xsd to inline selected elements which should not be global.
http://jira.springframework.org/browse/SEC-708
|
2008-03-10 19:47:20 +00:00 |
|
Luke Taylor
|
8231df4bc1
|
Catalog file for security xsd file to simplify its use in editors or ther tools supporting this format.
|
2008-03-10 12:23:23 +00:00 |
|
Luke Taylor
|
f76f1b340f
|
SEC-707: Make purpose of form-login attributes clearer. Renamed login-url to login-processing-url
|
2008-03-10 10:46:23 +00:00 |
|
Luke Taylor
|
f7ae070b2f
|
SEC-705: Extend ldap-authentication-provider namespace elt to support user searches and multiple authentication strategies
http://jira.springframework.org/browse/SEC-705
|
2008-03-09 19:26:34 +00:00 |
|
Luke Taylor
|
89415e3ee5
|
SEC-693: RoleVoter can improve performance
http://jira.springframework.org/browse/SEC-693
|
2008-03-05 13:42:39 +00:00 |
|
Luke Taylor
|
5ec8aa797c
|
SEC-694: Add check to LdapShaPasswordEncoder to detect use with non-SHA passwords
http://jira.springframework.org/browse/SEC-694
|
2008-03-05 13:29:26 +00:00 |
|
Luke Taylor
|
426e526694
|
Minor tidying.
|
2008-03-03 21:57:59 +00:00 |
|
Luke Taylor
|
33023565a8
|
SEC-640: Add namespace support for FilterInvocationDefinitionSource configuration
http://jira.springframework.org/browse/SEC-640
|
2008-02-28 19:29:33 +00:00 |
|
Luke Taylor
|
93432b7626
|
SEC-680: Missed some additional method, method parameter & field names, JavaDoc
http://jira.springframework.org/browse/SEC-680
|
2008-02-28 12:28:17 +00:00 |
|
Luke Taylor
|
25c4db08b9
|
Updated class javadoc to reflect recent changes to AbstractProcessingFilter
|
2008-02-28 12:04:24 +00:00 |
|
Luke Taylor
|
709f78e481
|
SEC-688: java.lang.NullPointerException in AbstractAuthenticationToken.equals()
http://jira.springframework.org/browse/SEC-688
|
2008-02-28 11:44:15 +00:00 |
|
Luke Taylor
|
e6e1f2586f
|
SEC-213: Allow custom redirects based on "redirect" parameter in AbstractProcessingFilter. successfulAuthentication()
http://jira.springframework.org/browse/SEC-213
|
2008-02-28 11:03:05 +00:00 |
|
Luke Taylor
|
439b0be58e
|
SEC-462: 302 redirect is not usable for SOAP clients
http://jira.springframework.org/browse/SEC-462
|
2008-02-26 14:54:29 +00:00 |
|
Luke Taylor
|
5e27b326d2
|
SEC-685: minor javadoc change
|
2008-02-26 13:02:59 +00:00 |
|
Luke Taylor
|
0f63084afe
|
SEC-685: Improvement to Javadoc for FilterChainProxy and changed to use of LinkedHashSet in obtainAllDefinedFilters to guarantee order is preserved.
|
2008-02-26 12:59:33 +00:00 |
|
Luke Taylor
|
ca9e64f857
|
SEC-674: Moved cas "ui" package to new module
|
2008-02-22 11:11:56 +00:00 |
|
Luke Taylor
|
2dd9faabc0
|
SEC-674: Created new project modules for cas, captcha, acls and taglibs
|
2008-02-19 20:30:53 +00:00 |
|
Luke Taylor
|
59651f5214
|
SEC-678: Moved extraInformation property to AuthenticationException so ti isn't only available in BadCredentialsException. Added clearExtraInformation flag to AbstractAuthenticationManager to allow the information to be removed if required before rethrowing.
|
2008-02-18 20:18:40 +00:00 |
|
Luke Taylor
|
1aec2a6d0a
|
Tidying javadoc
|
2008-02-18 18:27:50 +00:00 |
|
Luke Taylor
|
d7b3a1f734
|
SEC-603: Removed requirement for an entry point on BasicProcessingFilter if ignoreFailures is true.
|
2008-02-18 15:41:23 +00:00 |
|
Luke Taylor
|
5af9653a8e
|
Import cleaning.
|
2008-02-18 12:35:55 +00:00 |
|
Luke Taylor
|
6575f5af1c
|
SEC-536: Added account status checking to Siteminder provider
|
2008-02-18 12:35:18 +00:00 |
|
Luke Taylor
|
3c011685cd
|
SEC-536: Added account status checking to pre-auth provider.
|
2008-02-18 12:15:30 +00:00 |
|
Luke Taylor
|
48e2c38736
|
SEC-536: Added account status checking to Cas provider
|
2008-02-15 18:14:57 +00:00 |
|
Luke Taylor
|
04e187d1a7
|
Tiding up code in acl package (formatting, reduction onf nesting etc).
|
2008-02-15 18:09:26 +00:00 |
|
Luke Taylor
|
5e204e23f3
|
SEC-536: Introduced UserDetailsChecker strategy to extract code for checking status of accounts and allowing variation in pre/post authentication checks made by AbstractUserDetailsAuthenticationProvider
|
2008-02-15 18:05:12 +00:00 |
|
Luke Taylor
|
da90b81e16
|
Corrected toString output (using "username" instead of "principal")
|
2008-02-15 17:15:20 +00:00 |
|
Luke Taylor
|
48e2d5ad62
|
Refactored AbstractSecurityInterceptor, extracting method authenticateIfRequired();
|
2008-02-15 17:05:58 +00:00 |
|
Luke Taylor
|
a930ce2bf6
|
SEC-577: Correct javadocs for switch user
|
2008-02-15 14:34:46 +00:00 |
|
Luke Taylor
|
985818ae2c
|
SEC-581: Copy authentication details to CAS result token
|
2008-02-15 14:11:56 +00:00 |
|
Ben Alex
|
bdc791649d
|
SEC-656: Provide ability to dependency inject additional exception to event mappings, rather than require subclassing.
|
2008-02-15 11:56:53 +00:00 |
|
Andrei Stefan
|
0eff5afc8f
|
SEC-532: small bug-fix
|
2008-02-15 10:39:25 +00:00 |
|
Ben Alex
|
c65ec2aa38
|
Make authentication-failure-url attribute optional.
|
2008-02-12 17:40:49 +00:00 |
|
Luke Taylor
|
ae28169383
|
SEC-482: Load AclService implementations from parent app contexts.
|
2008-02-10 12:42:06 +00:00 |
|
Luke Taylor
|
f0ec1eeabd
|
Tidying.
|
2008-02-09 15:39:16 +00:00 |
|
Luke Taylor
|
3c775b5d0d
|
Added access-decision-manager-ref attribute to intercept-methods element. Made interceptor bean autowired by default to pick up AfterInvocationManager.
|
2008-02-09 15:38:31 +00:00 |
|
Luke Taylor
|
10ab4136d1
|
SEC-309: Patch for Authentication tag to use property of authentication object, rather than invoking an operation on the principal. Allows use of nested properties.
|
2008-02-09 13:41:05 +00:00 |
|
Luke Taylor
|
e0d0cc20c7
|
SEC-665: Missed a method name...
|
2008-02-08 18:19:27 +00:00 |
|
Luke Taylor
|
bd5a64825d
|
SEC-552: Replaced authorites populators in CAS and OpenID with a plain UserDetailsService
|
2008-02-08 13:23:43 +00:00 |
|
Luke Taylor
|
842c49c890
|
SEC-665: Renaming of rolemapping package to authoritymapping, and corresponding refactoring of classes.
|
2008-02-08 12:01:10 +00:00 |
|
Luke Taylor
|
549de2927e
|
SEC-641: Avoid direct use of external classes in namespace parsing.
|
2008-02-07 15:03:27 +00:00 |
|
Luke Taylor
|
28153f2c7f
|
Added TestDataSource class to cut down verbosity of in-memory test databases and to implement DisposableBean, so the database is destroyed when the application context containing it is closed.
|
2008-02-07 13:33:15 +00:00 |
|
Luke Taylor
|
208d1ee8e2
|
SEC-456: Added test class for UserDetailsServiceLdapAuthoritiesPopulator
|
2008-02-07 13:31:25 +00:00 |
|
Luke Taylor
|
9292317e1c
|
Deleted unused context file.
|
2008-02-07 13:30:03 +00:00 |
|
Luke Taylor
|
b6d3ed135d
|
SEC-456: Added class Javadoc
|
2008-02-06 17:24:45 +00:00 |
|