Commit Graph

  • 97afb0c9ac SEC-965: Added assert to LoginPage.at Rob Winch 2011-04-18 21:59:15 -05:00
  • f28a09dfa4 Formatting changes to CAS documentation Rob Winch 2011-04-17 17:12:59 -05:00
  • 01fb4bdb6d SEC-1718: Update documentation and sample application to demonstrate how to use a PGT to authenticate to stateless services using a PT Rob Winch 2011-04-16 19:03:18 -05:00
  • abfa558c3c Removed Dummy.java from cas sample Rob Winch 2011-04-17 13:42:09 -05:00
  • 11331d34d9 SEC-1717: Document how to perform Single Logout with CAS and added integration test for sample application to test Single Logout Rob Winch 2011-04-16 20:17:01 -05:00
  • 04f1df2a1b SEC-965: Updated CAS documentation to describe authenticating proxy tickets Rob Winch 2011-04-16 19:14:36 -05:00
  • 761d5af6ec SEC-965: Added integration tests for CAS Sample Application Rob Winch 2011-04-03 22:18:05 -05:00
  • f1c064b3b9 SEC-965: Updated CAS Sample application for proxy authentication Rob Winch 2011-04-03 21:41:26 -05:00
  • a76a947b12 SEC-965: Added support for CAS proxy ticket authentication on any URL Rob Winch 2011-04-03 18:54:02 -05:00
  • 373d07ce46 SEC-1181: Added mock testing, to avoid need for AD server Luke Taylor 2011-04-15 20:10:40 +01:00
  • 6db7472928 SEC-1181: Added extra I18N messages for LDAP locked, disabled etc. Luke Taylor 2011-04-15 14:55:23 +01:00
  • 59ac4c8b96 SEC-1181: Added option to parse AD sub-error codes. Luke Taylor 2011-04-11 14:01:15 +01:00
  • 428991d997 Some additional tests to confirm there are no issues with spaces in LDAP URL. Luke Taylor 2011-03-25 22:53:21 +00:00
  • 530f686149 SEC-1181: Basic AuthenticationProvider for Active Directory. Luke Taylor 2011-03-06 22:13:32 +00:00
  • 4dc5d7d16e Typo. Luke Taylor 2011-04-14 18:04:38 +01:00
  • 8d702a4f98 SEC-1699: Make sure a FilterInvocation is passed to the AccessDecisionManager when checking the login page access in DefaultFilterChainValidator. Luke Taylor 2011-04-14 18:04:29 +01:00
  • acf4b91a89 SEC-1674: Test to check that absolute URLs work in SimpleUrlLogoutSuccessHandler. Luke Taylor 2011-04-14 15:06:05 +01:00
  • f9625836bb Typo in Javadoc. Luke Taylor 2011-04-14 15:04:37 +01:00
  • ef72dd1986 SEC-1714: RegexRequestMatcher should prepend question mark to query string. Luke Taylor 2011-04-11 14:02:54 +01:00
  • 49dd928faa SEC-1712: Javadoc typo fix. Luke Taylor 2011-04-08 17:24:12 +01:00
  • 160fed1bfe SEC-1713: Fix typo in schema RNC file. Luke Taylor 2011-04-08 17:22:57 +01:00
  • 5c05575c0d Cleaned up warnings in openid module Rob Winch 2011-04-07 22:55:48 -05:00
  • 68ba11ba7b SEC-1711: Support verifying that attribute exchange parameters were signed Rob Winch 2011-04-07 21:29:28 -05:00
  • 62ba0fca5c SEC-1710: Added shutdown method to OpenID4JavaConsumer that invokes MultiThreadedHttpConnectionManager.shutdownAll() Rob Winch 2011-04-05 21:08:18 -05:00
  • 3f1d8782c3 Minor fix to bundlor template for config module. Luke Taylor 2011-04-06 14:02:01 +01:00
  • 01c9c4e4db SEC-1697: Don't publish authorization success events in AbstractSecurityInterceptor by default. Luke Taylor 2011-04-06 13:54:32 +01:00
  • 74b0c1780e SEC-1707: Added metadata-source-ref attribute to namespace appendix. Luke Taylor 2011-04-05 15:25:49 +01:00
  • 8d99918798 SEC-1491: Add support for an external priority SecurityMetadataSource to be referenced from global-method-security. Luke Taylor 2011-04-04 19:49:36 +01:00
  • 3084ad878f SEC-1491: Added AnnotationMetadataExtractor to SecuredAnnotationSecurityMetadataSource to allow a custom security annotation to be used. Luke Taylor 2011-04-04 19:48:27 +01:00
  • 244047ffe9 Delete unused test entities. Luke Taylor 2011-04-04 18:39:57 +01:00
  • ead669f10c Move single-use annotation test classes into SecuredAnnotationSecurityMetadataDefinitionSourceTests. Luke Taylor 2011-04-04 18:25:25 +01:00
  • 04d42211b1 SEC-1705: Make sure a single OpenIDAuthenticationFilter bean is created by the namespace. Likewise for UsernamePasswordAuthenticationFilter. Luke Taylor 2011-03-31 21:04:32 +01:00
  • ddaf9eb64f SEC-1705: Make sure a single OpenIDAuthenticationFilter bean is created by the namespace. Likewise for UsernamePasswordAuthenticationFilter. Luke Taylor 2011-03-31 21:04:32 +01:00
  • 6a87a5f1a1 SEC-1703: Updated namespace for intercept-url Rob Winch 2011-03-29 21:58:29 -05:00
  • 79e17e22bc SEC-1703: Updated namespace for intercept-url Rob Winch 2011-03-29 21:58:29 -05:00
  • f6b21880a2 SEC-1703: Updated cas custom-filter@ref to match example bean id and custom-filter@position to be CAS_FILTER Rob Winch 2011-03-29 20:10:04 -05:00
  • d9d5ee1114 SEC-1703: Updated cas custom-filter@ref to match example bean id and custom-filter@position to be CAS_FILTER Rob Winch 2011-03-29 20:10:04 -05:00
  • 9c88576992 Added extra FAQ on "Bad Credentials" message and on testing LDAP authentication. Minor mods to LDAP doc. Luke Taylor 2011-03-29 15:30:08 +01:00
  • 78d5495945 SEC-1702: Add Burt's patch implementing hashcode method in AntPathRequestMatcher Luke Taylor 2011-03-25 20:44:18 +00:00
  • 4a1908188a SEC-1701: Trim claimed identity parameter value before submitting to OpenID4Java. Luke Taylor 2011-03-25 19:09:32 +00:00
  • 198d5d0482 SEC-1701: Trim claimed identity parameter value before submitting to OpenID4Java. Luke Taylor 2011-03-25 19:09:32 +00:00
  • acee3e2593 SEC-1698: Update documentation to use correct package for RequestHeaderAuthenticationFilter Rob Winch 2011-03-16 23:51:15 -05:00
  • 236efadfb7 SEC-1698: Update documentation to use correct package for RequestHeaderAuthenticationFilter Rob Winch 2011-03-16 23:51:15 -05:00
  • 1dc309b041 SEC-1689: Minor doc updates related to use of password encoding and the crypto package. Luke Taylor 2011-03-17 01:44:10 +00:00
  • e470eaa41d SEC-1689: Moved core codec code into crypto package and removed existing duplication (Hex encoding etc). Refactoring of crypto code to use CharSequence for where possible instead of String. Luke Taylor 2011-03-17 00:48:53 +00:00
  • 3a3b2df1c5 Minor rewording of "child web context" FAQ. Luke Taylor 2011-03-13 20:45:22 +00:00
  • bb3b8e4683 Update AspectJPlugin to configure EclipseProject and EclipseClasspath tasks Rob Winch 2011-03-12 18:46:17 -06:00
  • 315c225bcb Removed unused aspectj gradle file Luke Taylor 2011-03-10 23:04:25 +00:00
  • 4654f7065a SEC-1693: Expand upper bound on EHCache OSGi version to version 2.5 Luke Taylor 2011-03-10 19:38:04 +00:00
  • 9c09f0b73d Remove unnecessary repos from main build file (EBR should only be needed for bundlor) and we generally have no need to build against snapshots other than for one-off testing. Luke Taylor 2011-03-10 19:36:10 +00:00
  • 50828cdd43 SEC-1689: Move crypto module code to core for simplicity. Luke Taylor 2011-03-10 18:58:47 +00:00
  • a25d131f21 Some doc clarifications on the use of UserDetailService vs AuthenticationProvider. Luke Taylor 2011-03-10 16:12:16 +00:00
  • b26f2309f4 Add paragraph to manual database appendix to clarify that the standard schema is completely optional if you aren't using JdbcDaoImpl. Luke Taylor 2011-03-10 13:41:17 +00:00
  • 9cf8ba02ba Adding some extra section IDs in namespace appendix to provide bookmarkable URLs. Luke Taylor 2011-03-10 13:15:58 +00:00
  • ccc548b9e4 Fixing bundlor warnings. Luke Taylor 2011-03-08 16:20:37 +00:00
  • 5a6afbff95 SEC-1688: Allow injection of a PasswordEncoder from the crypto module into DaoAuthenticationProvider. Luke Taylor 2011-03-08 16:20:26 +00:00
  • 885f0270dc Some adjustments to the core build to make sure crypto classes are correctly exported to other tasks. Luke Taylor 2011-03-08 16:19:51 +00:00
  • 57c3afd31a SEC-1689: Adjust manual to remove references to separate crypto module. Luke Taylor 2011-03-08 12:58:28 +00:00
  • a50c9afbab Modified jaas sample's LoginModule to prevent empty string username/password Rob Winch 2011-03-06 19:01:13 -06:00
  • 9e5d35235c Made the principal for jaas sample serializable Rob Winch 2011-03-06 18:58:24 -06:00
  • 6983b166d8 Configure Eclipse wtp to use the same context root as jetty Rob Winch 2011-03-06 18:34:40 -06:00
  • bd53ff1832 Updated gradle build so that eclipse is configured for AJDT Rob Winch 2011-03-06 12:53:46 -06:00
  • 8978a3af3d Updated gradle build to workaround GRADLE-1426 - configure Eclipse WTP correctly to include dependencies that were on the WAR when there are no source folders for the WAR. Rob Winch 2011-03-07 21:11:23 -06:00
  • 2b67f5fee6 Updated gradle build to workaround GRADLE-1422 - test dependencies being improperly deployed when using Eclipse WTP Rob Winch 2011-03-06 12:49:47 -06:00
  • 6c01590bbf Updated gradle build to workaround GRADLE-1116 - workaround /build/classes/test being added to the Eclipse classpath Rob Winch 2011-03-06 12:46:56 -06:00
  • c7de933cb9 Updated gradle wrapper to gradle-1.0-milestone-1 Rob Winch 2011-03-06 12:31:33 -06:00
  • 9d45828cb0 SEC-1689: Package crypto module classes with core. Luke Taylor 2011-03-07 17:44:38 +00:00
  • db6edfb512 Pull in changes to convert emma, aspectj and bundlor usage to plugins Luke Taylor 2011-02-16 15:57:22 +00:00
  • fd1a70edc2 SEC-1665: Add extra check of non-public declared methods in MethodInvocationAdapter, if public method cannot be found. Luke Taylor 2011-03-04 17:45:37 +00:00
  • dc73bbef3f Add inputs to AspectJ compilation tasks for change-detection purposes. Luke Taylor 2011-03-04 17:40:15 +00:00
  • 131c80f444 SEC-1690: Refactor expression PropertyAccessor for dealing with properties as beans in the ApplicationContext. Luke Taylor 2011-03-02 16:33:25 +00:00
  • b87dabe1ac SEC-1683: Corrected typo Luke Taylor 2011-02-28 15:41:49 +00:00
  • 72f031253f Remove unnecessary dependency repos and update GAE version. Luke Taylor 2011-02-28 15:42:54 +00:00
  • 44252207db SEC-1683: Corrected typo Luke Taylor 2011-02-28 15:41:49 +00:00
  • 7a0a2dace6 Revert deliberate test failure. Luke Taylor 2011-02-25 23:55:22 +00:00
  • a9d325ea18 Deliberately fail test to test bamboo's reaction Luke Taylor 2011-02-25 23:53:27 +00:00
  • 4a7608b7a9 SEC-1640: Add support for "this" property to MethodSecurityExpressionRoot object, representing the object on which the method is actually being invoked. Luke Taylor 2011-02-17 17:50:46 +00:00
  • f509193604 Update Base64 implementation to include fixes (using diff) from the original up to version 2.3.7. Luke Taylor 2011-02-14 22:37:15 +00:00
  • 11a091f051 SEC-1680: Revert accidental updates to 3.0.x namespace appendix. Luke Taylor 2011-02-16 15:01:15 +00:00
  • 0b1beee432 Update Base64 implementation to include fixes (using diff) from the original up to version 2.3.7. Luke Taylor 2011-02-14 22:37:15 +00:00
  • 8e48658efb SEC-1675: Added missing "body-content" elements to taglib descriptor. Luke Taylor 2011-02-14 21:31:15 +00:00
  • 94b7868039 SEC-1675: Add missing body-content elements to tag descriptor and update it to use 2.0 tag library schema. Luke Taylor 2011-02-14 21:17:16 +00:00
  • 088042b3d0 Upgrade spock and groovy versions, and make sure apacheDS work directory is set for config integrationTest task. Luke Taylor 2011-02-14 19:03:08 +00:00
  • bc2448419b SEC-1679: Make sure whitespace is trimmed from cookie names when specifying multiple cookies. Luke Taylor 2011-02-14 19:02:28 +00:00
  • 27be72a81c SEC-1677: Split out LDAP server tests from config module. Luke Taylor 2011-02-14 19:01:27 +00:00
  • 44fb3aa4ab SEC-1677: Create integrationTest task for Java projects and make all tests in itest module run as integration tests only. Luke Taylor 2011-02-14 14:57:30 +00:00
  • a225dc3776 SEC-1677: Split out integration tests from LDAP test code. Luke Taylor 2011-02-11 17:55:16 +00:00
  • 9f8a47f73e Reset post-release build version to snapshot. Luke Taylor 2011-02-10 20:18:40 +00:00
  • b62d36d646 Set release version to 3.1.0.RC1 Luke Taylor 2011-02-10 20:12:54 +00:00
  • 84ba7a0ea9 Additional tests for OpenID classes and minor refactoring of OpenID4JavaConsumer for easier testing. Luke Taylor 2011-02-10 16:19:15 +00:00
  • 164cba11c0 Increase max heap in gradle wrapper script. Luke Taylor 2011-02-10 12:25:30 +00:00
  • afd556412e SEC-1672: Provide error message when ambiguous configuration of intercept-url contains attributes filters=none and (access or requires-channel) Rob Winch 2011-02-05 16:40:01 -06:00
  • bd7389b6ff SEC-1652: Only use URI for ldif path if file isn't found. Luke Taylor 2011-02-09 23:25:16 +00:00
  • 3fe49dfae5 Added JDK and Spring links to Javadoc generation task. Luke Taylor 2011-02-08 16:43:34 +00:00
  • 12561660b1 Add Javadoc groups to build. Luke Taylor 2011-02-08 16:13:12 +00:00
  • b0df1bd1b0 SEC-1673: Use a map to store the range values use in the bundlor templates. Luke Taylor 2011-02-07 16:06:23 +00:00
  • eb9482b33b Removal of some unused internal methods, plus additional tests for some areas lacking coverage. Luke Taylor 2011-02-07 00:24:20 +00:00
  • 20e65a93ea Minor test updates. Luke Taylor 2011-02-06 17:27:07 +00:00
  • 5f58108717 Typo. Luke Taylor 2011-02-06 15:31:36 +00:00
  • 83050f96cb SEC-1656: Document potential need for pre-emptive session creation if writing the security context manuall. Luke Taylor 2011-02-06 14:58:36 +00:00