Commit Graph

  • 452604ff3b Minor Javadoc corrections. Luke Taylor 2005-03-16 16:57:28 +00:00
  • 52c42a7a40 Corrected Authz parsing of whitespace in GrantedAuthoritys. Contributed by Francois Beausoleil. Ben Alex 2005-03-14 06:09:33 +00:00
  • 632617f693 Test that the ConcurrentSessioncontrollerImpl implements ApplicationListener. This is critical and was left out once. Ray Krueger 2005-03-13 22:35:17 +00:00
  • ff45047f5a This MUST implement ApplicationListener in order to receive the HttpSessionDestroyedEvents Ray Krueger 2005-03-13 22:30:06 +00:00
  • 169449bf24 In response to: http://forum.springframework.org/viewtopic.php?t=3874 JaasAuthenticationProvider now checks that the java.security.auth.login.config is null before attempting to use it. Ray Krueger 2005-03-13 22:26:56 +00:00
  • 63aee2e0a9 Add Matthew's latest blog entry. Ben Alex 2005-03-13 21:58:45 +00:00
  • df91d352cb AbstractBasicAclEntry improved compatibility with Hibernate, as per http://forum.springframework.org/viewtopic.php?t=3949. Ben Alex 2005-03-13 21:01:16 +00:00
  • f594fdf751 Tidying and tests to bring Dao populator up to full coverage. Luke Taylor 2005-03-12 21:56:04 +00:00
  • 76f868c777 More tests. Luke Taylor 2005-03-12 21:27:22 +00:00
  • 765cc02599 Tidying. Luke Taylor 2005-03-12 21:24:55 +00:00
  • 9f62da7d1c Better test method names. Luke Taylor 2005-03-12 21:20:43 +00:00
  • 0a4fc1731a Tests added to bring X509ProcessingFilter up to full coverage. Luke Taylor 2005-03-12 20:47:58 +00:00
  • c3c5487b93 Now sets WebAuthenticationDetails on authentication request token. Luke Taylor 2005-03-12 20:46:58 +00:00
  • acee1ef696 Added "details" property Luke Taylor 2005-03-12 20:40:05 +00:00
  • 5d1cd29dfb Added tearDown method which resets the context to null to prevent occasional breaking of other test classes. Luke Taylor 2005-03-12 13:44:00 +00:00
  • f578915728 Test class for X509 filter. Luke Taylor 2005-03-11 17:42:39 +00:00
  • af02c42e9f First version that works. Luke Taylor 2005-03-11 03:15:54 +00:00
  • 645dba1fcb Added X.509 user to contacts with user name matching certificate email address. Luke Taylor 2005-03-11 03:05:31 +00:00
  • fbb4bc0873 Added regexp matching within the DN to extract the user name. Luke Taylor 2005-03-11 02:47:43 +00:00
  • 29050b29b2 Dao populator tests for X.509. Tests matching of regexps in the certificate Subject to extract the user name. Luke Taylor 2005-03-11 02:08:07 +00:00
  • 4763f953d3 FilterChainProxy now supports replacement of ServletRequest and ServetResponse by Filter beans. Ben Alex 2005-03-11 01:41:43 +00:00
  • 5c86b97f37 First working (kind of) version. Luke Taylor 2005-03-11 00:39:36 +00:00
  • 740373ad01 Removed login-config info. Client authentication has to be enabled on the server (e.g. in the Tomcat connector) for it to work. Luke Taylor 2005-03-11 00:33:15 +00:00
  • 466220eb50 Added build for X.509 contacts app. Luke Taylor 2005-03-11 00:03:16 +00:00
  • 4ec64d407c X.509 version of contacts app. Luke Taylor 2005-03-10 23:48:54 +00:00
  • c5fe428400 Patch by Matt Raible which returns null if Authentication is anonymous. Ben Alex 2005-03-10 12:00:30 +00:00
  • b898b87ffb Enhance test coverage as part of diagnosis of reported bug at http://forum.springframework.org/viewtopic.php?p=15751. Ben Alex 2005-03-10 11:39:32 +00:00
  • 15535fff41 SecurityEnforcementFilter caused NullPointerException when anonymous authentication used with BasicProcessingFilterEntryPoint. Ben Alex 2005-03-10 11:11:25 +00:00
  • 08dbf66880 (Currently functionless) entry point implementation for X.509 Luke Taylor 2005-03-10 03:21:25 +00:00
  • aabcef4c69 Dao populator for X509, mirroring the CAS one. Luke Taylor 2005-03-10 03:20:25 +00:00
  • fea1725f39 Removed inappropriate inheritance from AbstractProcessingFilter (doesn't make sense for X509 case). Luke Taylor 2005-03-10 03:16:45 +00:00
  • ae91b58685 First stab at X509 authentication provider Luke Taylor 2005-03-09 02:14:30 +00:00
  • da3801b914 Javadoc improvements. Luke Taylor 2005-03-09 02:02:05 +00:00
  • 559f480f4b Corrected Javadoc typos. Luke Taylor 2005-03-07 22:35:28 +00:00
  • ab6d43ff08 Corrected Javadoc typo. Luke Taylor 2005-03-07 16:53:42 +00:00
  • 051a34f859 Support credentialsExpiredUrl as per request made in http://forum.springframework.org/viewtopic.php?t=3862. Ben Alex 2005-03-07 12:23:48 +00:00
  • 74d66aa2f1 External API locations. Ben Alex 2005-03-07 04:29:18 +00:00
  • 5c3799cd16 Changed "opal ticket" to "opaque ticket" in Javadoc. Luke Taylor 2005-03-05 19:48:02 +00:00
  • 124f33bb09 Corrected Javadoc typo Luke Taylor 2005-03-05 18:27:05 +00:00
  • 6b12779902 Minor Javadoc corrections Luke Taylor 2005-03-05 18:23:04 +00:00
  • 4ef54828c0 corrected javadoc link Luke Taylor 2005-03-05 01:05:23 +00:00
  • 53bb4aebdf Setup future development for 0.8.1. Ben Alex 2005-03-03 13:29:46 +00:00
  • 6e3fa03901 Prepare to release 0.8.0. Ben Alex 2005-03-03 01:51:04 +00:00
  • 4c5d0476b0 Prepare to release 0.8.0. Ben Alex 2005-03-03 00:06:46 +00:00
  • f7ee0918b9 upgraded clover proprties to take advantage of new features in 1.7/8 clover plugin Luke Taylor 2005-03-02 15:48:37 +00:00
  • ee899dcedf Remove duplicate. Ben Alex 2005-03-02 01:37:54 +00:00
  • 60ef10e331 Fix typos. Ben Alex 2005-03-02 01:36:55 +00:00
  • 7beab1238b I basically ended up re-writing this code. The goal was to create a much more flexible way of connecting to the LDAP server. The class doc's should help explain how to do this fairly well. This works for me on OpenLDAP server configured for Samba 2.2; should hopefully work for other. Next up: try and use the Apache DS project to enable unit testing (or at least portable functional testing) of the LDAP/JNDI code. Robert Sanders 2005-03-01 22:49:03 +00:00
  • 888e48f236 More references. Ben Alex 2005-03-01 08:15:09 +00:00
  • 2149059c74 Use without Spring article. Ben Alex 2005-03-01 08:15:03 +00:00
  • 9a35091a86 Add nightly build notes. Ben Alex 2005-03-01 06:10:26 +00:00
  • 3e9cd13fef Re-enable session listener. Ben Alex 2005-03-01 02:35:33 +00:00
  • f1e071b0f1 Added remember-me services. Ben Alex 2005-03-01 02:30:38 +00:00
  • 0d33b06990 Fix NullPointerException if a pattern is given without any config attributes (eg /**/*.css=). Contributed by Konstantin Shaposhnikov. Ben Alex 2005-02-28 22:06:53 +00:00
  • 873c3f6c3d Improve Linux and non-Sun JDK (specifically IBM JDK) compatibility. Ben Alex 2005-02-28 03:02:32 +00:00
  • 70b7e3c2bc Correct issue with encoding on Linux platforms. Ben Alex 2005-02-28 02:41:13 +00:00
  • d47a2190f7 Correct test failure on high performance JREs. Ben Alex 2005-02-27 07:16:38 +00:00
  • 44397bb05d Committing ConcurrentSessionController feature and tests. Documentation is needed. Ray Krueger 2005-02-26 21:48:07 +00:00
  • edd3fcc72c Added the reference guide using one page per chapter Carlos Sanchez 2005-02-25 19:32:26 +00:00
  • 4125db5650 Added in a default constructor to use the original sessionid and a constructor for specifying the sessionId Ray Krueger 2005-02-25 05:24:10 +00:00
  • 693ac5a24a Anonymous principal support. As requested by the community at various times, including in http://forum.springframework.org/viewtopic.php?t=1925. Ben Alex 2005-02-23 06:09:56 +00:00
  • 3c4faf58c7 HttpSessionEventPublisher, HttpSessionCreatedEvent, HttpSessionDestroyedEvent Used together to provide published events in the ApplicationContext about HttpSessions. Ray Krueger 2005-02-23 02:54:41 +00:00
  • 8b24b1cf7a MockFilterChain extended TestCase but had no public constructor and no test methods. Ray Krueger 2005-02-23 02:47:31 +00:00
  • a3818184f4 Added Digest Authentication support (RFC 2617 and RFC 2069). Ben Alex 2005-02-22 06:14:44 +00:00
  • cbf413afcd Prepare for 0.8.0 as the next release. Ben Alex 2005-02-21 06:56:00 +00:00
  • dda66a0454 Significantly refactor "well-known location model" to authentication processing mechanism and HttpSessionContextIntegrationFilter model. Ben Alex 2005-02-21 06:48:31 +00:00
  • ba02d45677 Clean up imports. Ben Alex 2005-02-21 06:34:16 +00:00
  • e52f3eacb1 Use WebAuthenticationDetails for Authentication.getDetails() by default. Ben Alex 2005-02-21 00:09:49 +00:00
  • 436d37c166 Add FilterChainProxy discussion. Ben Alex 2005-02-20 06:22:48 +00:00
  • f57b1b9a8f General update. Ben Alex 2005-02-20 05:40:57 +00:00
  • 4922ec1bbd Use FilterChainProxy to tidy web.xml. Ben Alex 2005-02-20 05:40:44 +00:00
  • a5ea6f5436 Rewrite FilterChainProxy to separate functionality from FilterToBeanProxy and properly implement filter chaining issues. Ben Alex 2005-02-20 05:40:18 +00:00
  • 57842d4ba8 IoC container vs servlet container lifecycle separation. Ben Alex 2005-02-20 05:38:57 +00:00
  • 44f1c83dab Move MockFilterChain to external class. Ben Alex 2005-02-20 05:38:14 +00:00
  • 6d693ac0d4 Improve logging. Ben Alex 2005-02-20 05:37:13 +00:00
  • f23e2d7145 Log4j should be included in WAR bundles. Ben Alex 2005-02-20 05:34:29 +00:00
  • 7c9fad0477 Added filter chain Carlos Sanchez 2005-02-18 20:08:03 +00:00
  • 52479ec8a7 Typo. Ben Alex 2005-02-18 10:26:33 +00:00
  • 40bf65bdf8 Improvements to LDAP provider compatibility with Samba, as per contribution by Robert Sanders. Ben Alex 2005-02-17 20:39:04 +00:00
  • 0b296e7cf0 Correct issue with JdbcDaoImpl default SQL query not using consistent case sensitivity as per http://forum.springframework.org/viewtopic.php?t=3526. Ben Alex 2005-02-15 07:14:59 +00:00
  • 7d183b8eea More info on where to find samples' source files. Ben Alex 2005-02-15 07:06:13 +00:00
  • 1949c3b27e Added AuthenticationException to the commence method signature of the AutenticationEntryPoint. The best example of this is the BasicProcessingFilterEntryPoint where the authException.getMessage() is used to send back an informative 401, instead of just the error code. Ray Krueger 2005-02-15 03:28:18 +00:00
  • f43c31c8d4 Add basic configuration blog entry. Ben Alex 2005-02-13 07:07:46 +00:00
  • beadf24610 Use static HttpServletResponse.SC_UNAUTHORIZED instead of 401 HTTP response code. Ben Alex 2005-02-13 00:59:48 +00:00
  • 6370fadfdc FilterSecurityInterceptor now only executes once per request (improves performance with SiteMesh). Suggested by Sanjiv Jivan. Ben Alex 2005-02-11 05:49:41 +00:00
  • cbe53e21b9 HttpSessionIntegrationFilter no longer creates a HttpSession unnecessarily. Ben Alex 2005-02-10 07:15:20 +00:00
  • aa575f7103 Updated clover link to cenqua.com Luke Taylor 2005-02-08 15:18:13 +00:00
  • 834f69168d Support getUserPrincipal(). Ben Alex 2005-02-04 22:38:07 +00:00
  • 0be77abe75 Allow empty passwords as per http://forum.springframework.org/viewtopic.php?p=13343. Ben Alex 2005-02-04 09:43:33 +00:00
  • 4e6a4742bd Tapestry integration improvements, as per http://forum.springframework.org/viewtopic.php?p=13327 Ben Alex 2005-02-04 07:36:46 +00:00
  • ff9c7b6a72 Add Seth's blog update. Ben Alex 2005-02-04 07:02:52 +00:00
  • ffff55f555 Update copyright year. Ben Alex 2005-02-01 08:32:28 +00:00
  • 540a12df84 Listing Jaas changes Ray Krueger 2005-01-31 05:18:17 +00:00
  • 82c15b1874 The JaasAuthenticationCallbackHandler handle method now takes a callback and the authentication in progress, the setAuthentication method has been removed. Ray Krueger 2005-01-31 05:16:32 +00:00
  • 358056bf4d Initial commit. Ben Alex 2005-01-30 21:39:26 +00:00
  • c8706c33ac Log4J no longer expected in servlet container classpath. Ben Alex 2005-01-28 06:34:01 +00:00
  • 3721a04979 Fixes. Ben Alex 2005-01-25 06:33:38 +00:00
  • 2e0aabfaac Build source release ZIPs. Ben Alex 2005-01-24 01:05:00 +00:00
  • 01fed0817c updated ehcache dependency to 1.1 Dimitry Kopylenko 2005-01-23 19:43:51 +00:00
  • 92408950ab Removed resin dependencies Carlos Sanchez 2005-01-23 15:13:33 +00:00