Browse Source

SessionManagementDsl.requireExplicitAuthenticationStrategy

Rob Winch 2 năm trước cách đây
mục cha
commit
6d56af7b65

+ 2 - 0
config/src/main/kotlin/org/springframework/security/config/web/servlet/SessionManagementDsl.kt

@@ -39,6 +39,7 @@ class SessionManagementDsl {
     var sessionAuthenticationErrorUrl: String? = null
     var sessionAuthenticationFailureHandler: AuthenticationFailureHandler? = null
     var enableSessionUrlRewriting: Boolean? = null
+    var requireExplicitAuthenticationStrategy: Boolean? = null
     var sessionCreationPolicy: SessionCreationPolicy? = null
     var sessionAuthenticationStrategy: SessionAuthenticationStrategy? = null
     private var sessionFixation: ((SessionManagementConfigurer<HttpSecurity>.SessionFixationConfigurer) -> Unit)? = null
@@ -108,6 +109,7 @@ class SessionManagementDsl {
     internal fun get(): (SessionManagementConfigurer<HttpSecurity>) -> Unit {
         return { sessionManagement ->
             invalidSessionUrl?.also { sessionManagement.invalidSessionUrl(invalidSessionUrl) }
+            requireExplicitAuthenticationStrategy?.also { sessionManagement.requireExplicitAuthenticationStrategy(requireExplicitAuthenticationStrategy!!) }
             invalidSessionStrategy?.also { sessionManagement.invalidSessionStrategy(invalidSessionStrategy) }
             sessionAuthenticationErrorUrl?.also { sessionManagement.sessionAuthenticationErrorUrl(sessionAuthenticationErrorUrl) }
             sessionAuthenticationFailureHandler?.also { sessionManagement.sessionAuthenticationFailureHandler(sessionAuthenticationFailureHandler) }