Commit Graph

  • 6ea95cc3a3 SEC-2094: Document Concurrency Support Rob Winch 2013-10-18 09:50:49 -05:00
  • 04b091c385 SEC-2369: PreAuthenticatedGrantedAuthoritiesUserDetailsService fix case to createUserDetails method Rob Winch 2013-10-17 16:18:43 -05:00
  • 15a63c58a7 SEC-2368: DebugFilter outputs headers and HTTP method Rob Winch 2013-10-17 14:49:45 -05:00
  • 604c26eb0d Shis simplifies the class hieararchy significantly.EC-2366: Extract AbstractRequestMatcherRegistry from AbstractRequestMatcherConfigurer Rob Winch 2013-10-17 13:37:51 -05:00
  • 348e3a22b6 SEC-2365: registerAuthentication->configure Rob Winch 2013-10-16 13:59:56 -05:00
  • db3c626ac9 SEC-2281: Document Java Configuration Rob Winch 2013-10-16 10:44:35 -05:00
  • e3f58fd9d3 Polish guide Rob Winch 2013-10-16 10:44:16 -05:00
  • bbefc62a87 Fix Security Header's link to HttpServletResponse.setHeader Rob Winch 2013-10-15 16:56:44 -05:00
  • 730dcffe6d Fix crossrefs in footnotes Rob Winch 2013-10-15 16:50:26 -05:00
  • bf3b5459cd Fix Authors of manual Rob Winch 2013-10-15 16:22:27 -05:00
  • 1351c8bada SEC-2362: Clarify AbstractRememberMeServices loginSuccess javadoc Rob Winch 2013-10-15 13:53:23 -05:00
  • 0978c12c47 SEC-2361: Java Config Sampels use @Autowired AuthenticationManagerBuilder Rob Winch 2013-10-15 12:35:32 -05:00
  • e50b587d60 SEC-2360: AbstractRememberMeServices provide message for Assert on key fieldd Adrien be 2013-10-08 16:37:31 +02:00
  • 0b0e7dbea9 SEC-2359: Merge DefaultLoginPageViewFilter w/ DefaultLoginPageGeneratingFilter Rob Winch 2013-10-14 15:00:24 -05:00
  • 51171efa7a SEC-2357: Move *RequestMatcher to .matcher package Rob Winch 2013-10-14 11:55:56 -05:00
  • 45ad74a0bd SEC-2357: Fix package cycles Rob Winch 2013-10-14 11:15:16 -05:00
  • 14b9050616 SEC-2357: Move *RequestMatchers to .matchers package Rob Winch 2013-10-14 10:36:31 -05:00
  • f2b44e6beb Fix javadoc whitespace issue in HttpBasicConfigurer Rob Winch 2013-10-11 14:47:28 -05:00
  • 4ef0460ef6 SEC-2321: Improve Java Config defaults for JavaScript clients Rob Winch 2013-10-11 11:16:51 -05:00
  • 7d99436740 SEC-2358: Add RequestHeaderRequestMatcher Rob Winch 2013-10-11 14:46:49 -05:00
  • c50a836cd3 Fix forum link Rob Winch 2013-10-11 09:38:07 -05:00
  • 0ac1176152 Polish RequestMatcher logging and toString Rob Winch 2013-10-07 15:45:42 -05:00
  • 76a8bbe98d SEC-2354: Add failOnMissingWebXml=false to sample pom.xml Rob Winch 2013-10-07 08:12:35 -05:00
  • cffbefadd1 SEC-2306: Fix Session Fixation logging race condition Rob Winch 2013-10-06 17:13:40 -05:00
  • 611a97023d SEC-2352: HttpSessionCsrfTokenRepository lazy session creation kazuki43zoo 2013-10-06 00:12:50 +09:00
  • 5f10d84bf5 SEC-2303: WebSecurity sets the Bean resolver Rob Winch 2013-10-06 13:37:51 -05:00
  • d28058303b SEC-2349: Move FAQ into reference Rob Winch 2013-10-03 21:28:55 -05:00
  • dd1c2483b5 SEC-2349: Fix documentation tests Rob Winch 2013-10-03 17:03:17 -05:00
  • 4b43cf3f50 SEC-2349: Convert Reference to Asciidoctor Rob Winch 2013-10-03 14:15:09 -05:00
  • df5e034fc3 SEC-2282: Polish CSRF Documentation Rob Winch 2013-09-27 17:14:21 -05:00
  • 8087cde628 SEC-2331: Include Expires: 0 in xsd and appendix Rob Winch 2013-09-27 17:10:42 -05:00
  • 8fed90c26c SEC-2282: Add links for AccessDeniedHandler in CSRF doc Rob Winch 2013-09-27 16:44:34 -05:00
  • 3e95f1c12e SEC-2282: Polish CSRF Documentation Rob Winch 2013-09-27 16:41:06 -05:00
  • ee33a6deeb SEC-2285: Headers doc explicitly state default headers Rob Winch 2013-09-27 16:29:10 -05:00
  • 17efd25717 SEC-2331: Include Expires: 0 in security headers documentation Rob Winch 2013-09-27 16:13:40 -05:00
  • 06a0ec1a9f SEC-2285: Polish Security Headers Documentation Rob Winch 2013-09-27 16:13:18 -05:00
  • 9bb283044f SEC-2282: Polish CSRF Documentation Rob Winch 2013-09-27 16:06:25 -05:00
  • 614c94187e SEC-2305: GlobalMethodSecurityConfiguration autowire PermissionEvaluator Rob Winch 2013-09-27 15:46:45 -05:00
  • e696890e8e SEC-2151: Fix spring4Test Rob Winch 2013-09-27 12:36:38 -05:00
  • 61e6acb3f4 SEC-2151: AnnotationParameterNameDiscoverer support single annotated param Rob Winch 2013-09-27 11:53:39 -05:00
  • e5f034bdef SEC-2151: Fix tests Rob Winch 2013-09-27 11:52:32 -05:00
  • a09756745f SEC-2151: Support binding method arguments with Annotations Rob Winch 2013-09-27 11:18:37 -05:00
  • fb0a8d19e8 SEC-2322: Support StandardReflectionParameterNameDiscoverer Rob Winch 2013-09-26 15:55:11 -05:00
  • cea0cf9260 SEC-2243: Remove additional Debug Filter Rob Winch 2013-09-26 11:38:16 -05:00
  • 56ce7d284c SEC-2336: WebSecurityConfigurerAdapter#registerAuthentication javadoc fixes Rob Winch 2013-09-26 09:08:25 -05:00
  • 1f3b812a66 SEC-2282: Polish CSRF Documentation Rob Winch 2013-09-26 08:58:39 -05:00
  • ef7cc40389 SEC-2282: Polish CSRF Documentation Rob Winch 2013-09-25 17:30:50 -05:00
  • d16106ef56 SEC-2309: Document CSRF multipart/form-data Rob Winch 2013-09-25 15:14:32 -05:00
  • b591881e95 SEC-2302: Provide beforeSpringSecurityFilterChain hook Rob Winch 2013-09-25 14:52:40 -05:00
  • 88f41cdf62 SEC-2341: Update to Gradle 1.8 Rob Winch 2013-09-24 15:35:51 -05:00
  • a888ddf8b3 SEC-2307: JavaConfig RequestCache ignores favicon.ico Rob Winch 2013-09-24 11:30:37 -05:00
  • ddc0ef7ab3 SEC-2339: Added Logical (Or, And, Negated) RequestMatchers Rob Winch 2013-09-23 20:55:49 -05:00
  • 28fb6ba14b SEC-2328: Add hasAnyRole to ExpressionUrlAuthorizationConfiguration Rob Winch 2013-09-23 10:51:08 -05:00
  • b16c17f70b SEC-2301: Remove invalid import Rob Winch 2013-09-20 16:09:23 -05:00
  • a3d112979f SEC-2301: GlobalMethodSecurityConfiguration sets DefaultWebSecurityExpressionHandler BeanResolver Rob Winch 2013-09-20 15:53:58 -05:00
  • f294480e6b SEC-2329: JC @Autowire(required=false) AuthenticationTrustResolver Rob Winch 2013-09-20 15:28:50 -05:00
  • 788ba9a1fa SEC-2329: Allow injecting of AuthenticationTrustResolver Rob Winch 2013-09-20 15:26:52 -05:00
  • 7537dfc33a SEC-2304: rm duplicate MethodExpressionHandler from GlobalMethodSecurityConfiguration Rob Winch 2013-09-20 15:13:02 -05:00
  • 5082a04626 SEC-2311: LogoutConfigurer allows other HTTP methods if CSRF is disabled Rob Winch 2013-09-19 16:05:26 -05:00
  • 9133c33f1d SEC-2246: HttpSessionRequestCache.getRequest casts to RequestCache Rob Winch 2013-09-19 15:08:32 -05:00
  • 8f8c6169e8 SEC-2331: Cache Control now includes Expires: 0 Rob Winch 2013-09-19 14:06:37 -05:00
  • c5c1419521 SEC-2332: GlobalMethodSecurityConfiguration includes proper voters Rob Winch 2013-09-18 18:27:12 -05:00
  • d33b9e2854 SEC-2324: Update Spring Security tld version Rob Winch 2013-09-18 17:40:00 -05:00
  • c156716be8 Ensure single version of org.slf4j Rob Winch 2013-09-18 16:13:03 -05:00
  • 0114b457c0 SEC-2330: CacheControlHeadersWriter use a single header Rob Winch 2013-09-18 16:12:34 -05:00
  • 05a7c58daa SEC-2228: Change openid4j to optional in template.mf Rob Winch 2013-09-13 22:06:42 -07:00
  • e5804d323b SEC-2256: Fix intercept-url doc precidence statement Rob Winch 2013-09-13 22:02:52 -07:00
  • be8aad8306 SEC-2196: Demonstrate Method Security works on Generic methods Rob Winch 2013-09-13 16:20:43 -07:00
  • d9c9cd7f84 Remove warnings from defaultSpringSecurityContextSource Rob Winch 2013-09-13 15:54:21 -07:00
  • b4cbcee7f0 SEC-2308: DefaultSpringSecurityContextSource allow empty baseUrl Rob Winch 2013-09-13 15:53:35 -07:00
  • f6587c8697 SEC-2312: Update javadoc link to Spring 3.2.x Rob Winch 2013-09-13 15:34:30 -07:00
  • 32e9239fd2 SEC-2320: AuthenticationPrincipal can be null on invalid type Rob Winch 2013-09-13 15:21:13 -07:00
  • b22acd0768 SEC-2314: AbstractSecurityWebApplicationInitializer.getSessionTrackingModes() uses EnumSet Rob Winch 2013-09-13 14:44:44 -07:00
  • 8d312a6365 SEC-2313: Gradle javadoc hotfix Rob Winch 2013-09-11 15:42:53 -07:00
  • 905c59f599 SEC-2313: Gradle javadoc hotfix Rob Winch 2013-09-11 15:42:53 -07:00
  • 53a0db6be1 SEC-2313: Gradle javadoc hotfix Rob Winch 2013-09-11 15:30:50 -07:00
  • 662bb24370 SEC-1937: Added test to demonstrate SEC-1937 was invalid Rob Winch 2013-09-11 15:10:42 -07:00
  • 3c82e63ded Formatting cleanup Rob Winch 2013-09-11 15:10:20 -07:00
  • 8281d5c33b Add project page Rob Winch 2013-09-07 16:40:41 -07:00
  • 171918e41a Initialize shared gh-pages infrastructure Phillip Webb 2013-09-07 08:02:59 -07:00
  • 8e74407381 SEC-2296: HttpServletRequest.login should throw ServletException if already authenticated Rob Winch 2013-08-31 11:55:24 -05:00
  • e8ac11641b SEC-2297: Add DispatchType.ASYNC as default for AbstractSecurityWebApplicationInitializer Rob Winch 2013-08-31 11:39:57 -05:00
  • 7203faf34f SEC-2300: Update Spring LDAP version to 1.3.2.RELEASE Rob Winch 2013-08-31 10:44:44 -05:00
  • 3d2f23602f SEC-2294: Update Spring Version to 3.2.4.RELEASE Rob Winch 2013-08-31 11:25:28 -05:00
  • 43f4d01cf3 SEC-2292: Add test to assert CSRF bypass of methods is case sensitive Rob Winch 2013-08-31 10:40:49 -05:00
  • 6e9fb7930b SEC-2298: Add AuthenticationPrincipalArgumentResolver Rob Winch 2013-08-30 17:06:40 -05:00
  • 98fe2322cd SEC-2095: Fix Servlet API doc ids Rob Winch 2013-08-30 13:10:32 -05:00
  • fc16450344 Demonstrate rest.js CSRF support in reference docs Scott Andrews 2013-08-30 12:01:58 -04:00
  • 246c632f3a SEC-2095: Document Servlet API support Rob Winch 2013-08-30 12:20:35 -05:00
  • 664220f304 SEC-2295: Remove error logging when Spring version equals Spring Security Rob Winch 2013-08-29 16:48:49 -05:00
  • 86340b8016 SEC-2283: Polish headers doc Rob Winch 2013-08-29 13:47:54 -05:00
  • ae368829f4 Tweak PermGen for tests Rob Winch 2013-08-28 13:30:25 -05:00
  • d89cf6db29 SEC-2283: Update headers documentation and tests Rob Winch 2013-08-28 12:35:40 -05:00
  • 4761614c9f SEC-2291: Fix internal links within reference Rob Winch 2013-08-28 00:59:02 -05:00
  • 69aac09e1d SEC-2285: Added headers to to reference Rob Winch 2013-08-28 00:54:52 -05:00
  • 9483226d02 SEC-2282: Polish CSRF doc Rob Winch 2013-08-27 17:16:32 -05:00
  • aca2e4ff3a SEC-2289: Add spring4Test Rob Winch 2013-08-27 08:47:04 -05:00
  • 086056f191 SEC-2289: Make compatible with Spring 4 as well Rob Winch 2013-08-27 08:46:12 -05:00
  • 26166ef6e8 SEC-2272: CsrfRequestDataValueProcessor support Spring 4 and Spring 3 Rob Winch 2013-08-27 11:24:41 -05:00
  • 3f69847a4e SEC-2286: Log invalid CSRF tokens at debug level Rob Winch 2013-08-25 22:35:20 -05:00