Commit Graph

  • 0b2be28def Added search method which will be used for finding roles. Luke Taylor 2006-04-30 21:37:18 +00:00
  • 8e5b0a5d5f disabled changelog and statcvs reports to get automatic build working Luke Taylor 2006-04-30 19:55:58 +00:00
  • 91f5fc30be SEC-258: Removed use of URI class Luke Taylor 2006-04-30 19:45:37 +00:00
  • e3040f84c7 Changed Eclipse .classpath to reference apacheds-core-1.0-RC1.jar and apacheds-core-shared-1.0-RC1.jar. Done to support Luke's apacheds upgrade to 1.0-RC1 earlier today - resolves Eclipse build errors. Scott McCrory 2006-04-30 03:04:40 +00:00
  • 25c643970a Change package names to match apacheds RC1. Luke Taylor 2006-04-29 22:45:19 +00:00
  • a50695a1a8 Upgrade apacheds to RC1 Luke Taylor 2006-04-29 22:41:21 +00:00
  • 5ed6a4a971 SEC-217: Added warning about dual Siteminder and form configuration and polished the Siteminder section's wording a bit. Scott McCrory 2006-04-29 02:27:48 +00:00
  • 890864ed00 SEC-194: Allow remember-me services to be used with BASIC authentication. Ben Alex 2006-04-28 08:54:54 +00:00
  • 9b63051149 SEC-204: Improve startup time detection of errors by FilterInvocationDefinitionSourceEditor. Ben Alex 2006-04-28 08:41:55 +00:00
  • cc07f620df SEC-257: ExceptionTranslationFilter to use AccessDeniedHandler. Ben Alex 2006-04-28 06:52:50 +00:00
  • 9a90e4e1aa SEC-256: Contacts sample not displaying localized exceptions correctly. Ben Alex 2006-04-28 06:51:58 +00:00
  • 21aaf2b9db SEC-256: Contacts sample not displaying localized exceptions correctly. Ben Alex 2006-04-28 06:43:50 +00:00
  • bff37bc4ce SEC-29: Remove from sandbox (now in core). Ben Alex 2006-04-28 05:08:48 +00:00
  • d125569bd6 SEC-29: Save POST parameters on AuthenticationEntryPoint redirect. Ben Alex 2006-04-28 05:05:35 +00:00
  • 2d6813d354 SEC-217: Added Paul Garvey Scott McCrory 2006-04-27 23:48:51 +00:00
  • 22aa0e898f SEC-243: SessionRegistry.getAllSessions() now accepts an "includeExpiredSessions" argument. Ben Alex 2006-04-27 23:26:19 +00:00
  • 0648c65b0b SEC-243: SessionRegistry.getAllSessions() now accepts an "includeExpiredSessions" argument. Ben Alex 2006-04-27 23:25:00 +00:00
  • d8a56d4e60 SEEC-255: Always create HttpSession before calling AuthenticationDetailsSource. Ben Alex 2006-04-27 23:11:56 +00:00
  • a5ca1ddcc7 SEC-208: Added Eric Crampton. Ben Alex 2006-04-27 22:10:52 +00:00
  • 2af791a801 Error in javadoc concerning the default keyword REQUIRES_CAPTCHA_BELOW_AVERAGE_TIME_IN_MILLIS_REQUESTS Marc-Antoine Garrigue 2006-04-27 08:56:42 +00:00
  • 81603832be SEC-152: Strategy pattern for SecurityContextHoldder. Ben Alex 2006-04-27 08:31:32 +00:00
  • b05709df6a SEC-152: Strategy pattern for SecurityContextHoldder. Ben Alex 2006-04-27 08:30:29 +00:00
  • 88ff43017d Added unit test for the overridden requiresAuthentication method Scott McCrory 2006-04-27 02:24:30 +00:00
  • 481a9377e4 Added NPE check for defaultTargetUrl in requiresAuthentication Scott McCrory 2006-04-27 02:23:46 +00:00
  • 9ec8a44c26 SEC-219: Need commons-lang as a dependency due to FilterInvocationDefinitionSourceEditor. Ben Alex 2006-04-26 23:39:29 +00:00
  • 8cc5dcde30 SEC-249: Support logout filter. Ben Alex 2006-04-26 23:36:03 +00:00
  • 87e4032cb8 SEC-238: Update docs. Ben Alex 2006-04-26 22:59:26 +00:00
  • 8400341399 Tidy up screwy formatting. Luke Taylor 2006-04-26 21:19:20 +00:00
  • a7d0f88e01 Fixed no authority check so that it is after addCustomAuthorities http://opensource.atlassian.com/projects/spring/browse/SEC-253 Ray Krueger 2006-04-26 16:22:38 +00:00
  • a47a342ce6 SEC-234: Allow pluggable AuthenticationDetailsSource strategy interface. Ben Alex 2006-04-26 05:24:49 +00:00
  • b1becf9277 SEC-242: Make logger reflect subclass, not superclass. Ben Alex 2006-04-26 04:56:46 +00:00
  • f4156a22bd SEC-246: Enable late binding on DaoAuthenticationProvider.userDetailsService field. Ben Alex 2006-04-26 04:54:44 +00:00
  • d541c8e257 SEC-238: Add AuthenticationException to onUnsuccessfulAuthentication method signature. Ben Alex 2006-04-26 04:42:16 +00:00
  • 942bdbfad3 SEC-236: Use interface instead of concrete class for JbossAcegiLoginModule. Ben Alex 2006-04-26 04:39:04 +00:00
  • 540c7b2e6a SEC-229: Allow external URLs from AbstractProcessingFilter. Ben Alex 2006-04-26 04:36:54 +00:00
  • 97ac9f7e98 SEC-191: Look in parent bean factories for AclManager. Ben Alex 2006-04-26 04:26:04 +00:00
  • f6b7429947 SEC-187: Tidy up URL composition logic basedon default HTTP(S) ports. Ben Alex 2006-04-26 04:19:35 +00:00
  • 307ac99ec5 SEC-199: Use ServletException.getRootCause() to extract any Acegi Security exceptions. Ben Alex 2006-04-26 04:11:05 +00:00
  • 4e09777dec SEC-247: Allow #NONE# to be used to specify paths that shouldn't have any filters fire. Ben Alex 2006-04-26 03:55:39 +00:00
  • 185d63f23c SEC-221: AbstractProcessingFilter.onPreAuthentication() should have exceptions caught. Ben Alex 2006-04-26 03:40:24 +00:00
  • 6bae43d380 SEC-206: Include context root when generating cookies. Ben Alex 2006-04-26 03:35:33 +00:00
  • 5d9ed78b50 SEC-147: Add processDomainObjectClass property to AfterInvocationProviders. Ben Alex 2006-04-26 03:30:27 +00:00
  • de4af379cc SEC-252: Stop NPE if principal object is null. Ben Alex 2006-04-26 03:00:14 +00:00
  • fba45cb19e SEC-208: Fix threading issue. Ben Alex 2006-04-26 02:54:18 +00:00
  • 88e8e60861 [SEC-240] Moved log4j.properties to test folder to avoid including it in jar Carlos Sanchez 2006-04-26 02:39:56 +00:00
  • 5f79a25860 SEC-243: SessionRegistryImpl no longer incorrectly includes expired sessions. Ben Alex 2006-04-26 02:36:37 +00:00
  • 948f79e2e2 SEC-219: Support complex tokenization scenarios. Ben Alex 2006-04-26 02:23:19 +00:00
  • 14683dcbc7 SEC-190: Add hashCode() and equals() methods. Ben Alex 2006-04-26 01:41:10 +00:00
  • 36c096858d SEC-223: Improve hashCode() performance. Ben Alex 2006-04-26 01:31:17 +00:00
  • 57aee4e605 SEC-218: Fix authentication exception cleanup of SecurityContextHolder. Ben Alex 2006-04-26 01:28:06 +00:00
  • 8cff715599 SEC-222: Improve hashCode() to use XOR. Ben Alex 2006-04-26 01:18:42 +00:00
  • e39bd43541 SEC-217 - Improve Siteminder Filter - now authenticates on calls to both j_security_check and the default target URL if the user isn't already authenticated. Thanks Paul Garvey for determining this and providing solution code. Scott McCrory 2006-04-25 23:19:30 +00:00
  • e44c5e66d3 As per SEC-193, removed unnecessarily overridden methods. Scott McCrory 2006-04-25 23:01:04 +00:00
  • 662b680cb4 Add some repo info and plugins Carlos Sanchez 2006-04-25 16:32:04 +00:00
  • 465f76cb22 Resolve some compilation problems with m2 Carlos Sanchez 2006-04-25 16:31:48 +00:00
  • 7d250eda78 Use latest directory server version Set test scope to spring mock Carlos Sanchez 2006-04-25 04:46:19 +00:00
  • 377ad7fa2a Use the org.springframework groupId Carlos Sanchez 2006-04-25 04:43:36 +00:00
  • 719d3af879 SVN updates. Ben Alex 2006-04-25 00:22:00 +00:00
  • 4735fc1053 Correct download instructions. Ben Alex 2006-04-24 23:56:07 +00:00
  • 4d9f99acc4 Added getter for authoritiesPopulator. Fix for SEC-227. Luke Taylor 2006-04-18 23:44:07 +00:00
  • 596882804f First commit of LdapTemplate class, a la Spring JdbcTemplate, as suggested by Ben to simplify Ldap connection handling etc. Luke Taylor 2006-04-18 22:34:04 +00:00
  • 3d51c46575 Added license header. Luke Taylor 2006-04-18 22:27:17 +00:00
  • f61a58d98b Added a couple more tests. Luke Taylor 2006-04-16 21:18:12 +00:00
  • 7a0a87a167 Added support for LDAP SSHA (salted SHA) encoded passwords. Luke Taylor 2006-04-16 21:12:39 +00:00
  • c6dd545de0 Javadoc change. Luke Taylor 2006-04-16 17:11:44 +00:00
  • e5bef3f31b Added doc for @throws Luke Taylor 2006-04-16 17:11:06 +00:00
  • 9c8a4c2f74 Fix for SEC-237. Make LDAP Provider reject empty username. Luke Taylor 2006-04-16 16:41:08 +00:00
  • 743cc9fec7 Fix for SEC-215. Check for empty nameInNameSpace before appending. Luke Taylor 2006-04-16 16:11:02 +00:00
  • d5885baf6b Added some comments. Luke Taylor 2006-04-16 16:00:32 +00:00
  • 3f06c51379 Fix for SEC-225. Allow empty search base in authorities populator. Luke Taylor 2006-04-16 15:37:48 +00:00
  • 48716af20a Removed unnecessary package names left over from refactoring. Luke Taylor 2006-04-16 15:25:33 +00:00
  • 072a4c3d18 Fix for SEC-226. Added ability to set derefLinkFlag property. Luke Taylor 2006-04-16 15:15:55 +00:00
  • 267c846e12 Sort out LDAP tests to match up with moved production classes. Luke Taylor 2006-04-16 14:31:13 +00:00
  • bf4fca9126 Move non security-specific LDAP classes to org.acegisecurity.ldap package Luke Taylor 2006-04-16 14:26:46 +00:00
  • 7c69668589 Deprecated, pending deletion. Luke Taylor 2006-04-16 14:12:23 +00:00
  • bbd250e442 Modified to use classes from org.acegisecurity.ldap package Luke Taylor 2006-04-16 14:05:28 +00:00
  • 7f24e209a6 Move non security-specific LDAP classes to org.acegisecurity.ldap package Luke Taylor 2006-04-16 13:56:36 +00:00
  • 0c1ab7f98c Corrected a couple of Javadoc typos. Luke Taylor 2006-04-15 12:32:50 +00:00
  • ff7e770949 Add JCAPTCHA. Ben Alex 2006-04-14 12:12:25 +00:00
  • 3a8ac73090 fixed typo that left University Scott Battaglia 2006-03-29 04:23:57 +00:00
  • 24160c1870 updated documentation to document CAS3 support Scott Battaglia 2006-03-28 15:45:18 +00:00
  • 9a8fdcd269 SEC-196 Scott Battaglia 2006-03-28 15:41:20 +00:00
  • b0d4cbceac updated javadoc to reflect proper value of getPrincipal Scott Battaglia 2006-03-28 14:05:57 +00:00
  • ed03eee2df Refactored. NB: This code is unsupported and illustrates non-anemic domain objects that do not leverage transparent persistence capabilities (I recommend you use transparent persistence capabilities where possible - I hope to check in different packages with new patterns in due course). Ben Alex 2006-03-25 01:02:56 +00:00
  • 12c78791de Refactored. NB: This code is unsupported and illustrates non-anemic domain objects that do not leverage transparent persistence capabilities (I recommend you use transparent persistence capabilities where possible - I hope to check in different packages with new patterns in due course). Ben Alex 2006-03-25 00:18:45 +00:00
  • 0581fc0759 removed SecurityEnforcementFilter Luke Taylor 2006-03-19 21:44:39 +00:00
  • ca0daecfae Converted spring bean listings from escaped XML to CDATA sections for readability Luke Taylor 2006-03-19 21:34:53 +00:00
  • 680e770508 Update references to SecurityEnforcementFilter Luke Taylor 2006-03-19 21:01:32 +00:00
  • 32aa840a78 updated .classpath to reflect changes to project.xml dependencies Scott Battaglia 2006-03-14 17:33:22 +00:00
  • 6c66418512 CAS-195 Scott Battaglia 2006-03-14 17:14:03 +00:00
  • 3d0f746719 SEC-224 Scott Battaglia 2006-03-14 16:15:51 +00:00
  • 51f1b33af9 SEC-209: Make eventPublisher protected. Ben Alex 2006-03-07 13:04:12 +00:00
  • 3b9718c430 Add Andrew's article. Ben Alex 2006-03-06 14:51:45 +00:00
  • 7e7920ce00 Fix for SEC-202. Intialize manager password to default "manager_password_not_set". Luke Taylor 2006-02-28 17:47:55 +00:00
  • 555903d139 SEC-195 Scott Battaglia 2006-02-27 14:47:17 +00:00
  • 5607da8d67 updated references from Yale CAS to JA-SIG CAS Scott Battaglia 2006-02-27 13:52:41 +00:00
  • 5e0753abe3 Add DWR link. Ben Alex 2006-02-26 05:33:11 +00:00
  • 47a9c27901 Add Ben's blog. Ben Alex 2006-02-25 23:35:34 +00:00
  • f392e0c7a8 Tidying up. Luke Taylor 2006-02-23 20:38:42 +00:00
  • b22f83560c SEC-195 Scott Battaglia 2006-02-22 17:01:54 +00:00