Rob Winch
|
ece824fca2
SEC-1592: Updated CasAuthenticationFilter so that it does not continue FilterChain when handling proxy requests.
|
14 gadi atpakaļ |
Luke Taylor
|
e3644e2d27
SEC-1661: Use a DistinguishedName to wrap the search base to avoid the need for JNDI escaping.
|
14 gadi atpakaļ |
Rob Winch
|
b3943ac268
SEC-1545: Removed unused i18n keys, changed keys to follow naming conventions, found missing keys based upon old keys, sorted keys, any unknown keys are entered as a comment with the English value.
|
14 gadi atpakaļ |
Luke Taylor
|
537d8f108a
SEC-1654: Correct debug output in DigestAuthenticationFilter.
|
14 gadi atpakaļ |
Luke Taylor
|
d0bada2bad
SEC-1641: Correct code and test for null groupSearchBase.
|
14 gadi atpakaļ |
Luke Taylor
|
952af853ac
SEC-1641: Remove the private setGroupSearchBase method and allowed a null value to be set for the group search base in the constructor.
|
14 gadi atpakaļ |
Rob Winch
|
4dea140331
SEC-1639: FirewalledRequest is now called on the specific FirewalledRequest instance rather that looping through ServletRequestWrappers.
|
14 gadi atpakaļ |
Luke Taylor
|
bb3a973fcb
SEC-1636: Add optimizations for universal match cases in AntUrlPathMatcher (using "/**" and "**" equality checks on the path).
|
14 gadi atpakaļ |
Luke Taylor
|
522e8db5da
Javadoc fix
|
14 gadi atpakaļ |
Luke Taylor
|
8f71f6febf
SEC-1557: Added getter to DelegatingMethodSecurityMetadataSource.
|
15 gadi atpakaļ |
Luke Taylor
|
69a1fb76d3
SEC-1615: Changed key generation for anonymous provider to only use SecureRandom on demand.
|
15 gadi atpakaļ |
Luke Taylor
|
156a6924fa
Move docs on request matching to correct file and delete unused one
|
15 gadi atpakaļ |
Luke Taylor
|
d53db3ba13
Update version to 3.0.6.CI-SNAPSHOT.
|
15 gadi atpakaļ |
Luke Taylor
|
90304f64c6
Update version for 3.0.5 release
|
15 gadi atpakaļ |
Luke Taylor
|
6349359b77
Enable aspectj module in 3.0.x build.
|
15 gadi atpakaļ |
Luke Taylor
|
e80853b698
SEC-1412: DefaultSavedRequest should ignore "If-Modified-Since" headers to prevent re-displaying the login form (the cached result of the original request).
|
15 gadi atpakaļ |
Luke Taylor
|
82d105cbc3
SEC-1587: Add explicit call to removeAttribute() to remove the context from the session if the current context is empty or anonymous.
|
15 gadi atpakaļ |
Luke Taylor
|
e88f47a96a
SEC-1561: Add check on whether the security context attribute is set in the current session to make sure it is stored when a new session has been created during the request.
|
15 gadi atpakaļ |
Luke Taylor
|
979ea63980
SEC-1613: Corrected preauth docs.
|
15 gadi atpakaļ |
Rob Winch
|
0bdc9c176b
SEC-1606: Added a FirewalledRequestAwareRequestDispatcher that will call FirewalledRequest.reset() before a forward
|
15 gadi atpakaļ |
Luke Taylor
|
80fd238c3a
Backport updates to TarUpload for easier uploading of docs to website.
|
15 gadi atpakaļ |
Luke Taylor
|
5c597c8cde
Update doc version number to 3.0.4
|
15 gadi atpakaļ |
Luke Taylor
|
ec7b9703a6
Expand message on incorrect Spring version to suggest checking the classpath for unwanted jars.
|
15 gadi atpakaļ |
Luke Taylor
|
71b2af31ee
SEC-1608: Make sure FirewalledRequest.reset() is called when filter="none"
|
15 gadi atpakaļ |
Luke Taylor
|
fc75b69ab8
SEC-1607: Report correct version for Spring Security (not Spring version).
|
15 gadi atpakaļ |
Luke Taylor
|
6141ef79b3
Remove use of @Override with an interface method
|
15 gadi atpakaļ |
Luke Taylor
|
3cfe23f60d
Update versions to 3.0.5.CI-SNAPSHOT
|
15 gadi atpakaļ |
Luke Taylor
|
82d140ffb1
Version 3.0.4.RELEASE
|
15 gadi atpakaļ |
Luke Taylor
|
1563491322
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
Luke Taylor
|
b688bb69ee
SEC-1543: Change IpAddressMatcher to return false when comparing an Inet6Address with an Inet4Address rather than raising an exception.
|
15 gadi atpakaļ |