Commit History

Author SHA1 Message Date
  Luke Taylor ef2df77889 SEC-1239: Special characters in JAAS config file location. Fix - convert Resource to a File before obtaining the URL from it. The URL.toString() obtained this way is different from the one obtained from Resource.getURL().toString(). 16 years ago
  Luke Taylor 6640eab9dc SEC-1240: Added {ssha} support to PasswordEncoderParser. 16 years ago
  Luke Taylor ac4e7bbadb SEC-1241: Make sure saved request is removed after a match. 16 years ago
  Luke Taylor 9d26527f30 SEC-1237-Re-enabled maven source plugin 16 years ago
  Luke Taylor f518da9d8b SEC-1236: Using HTTP Method-specific intercept-urls causes patterns with no method to be ignored. Fixed by also checking null key in map if no method-specific attributes are found. 16 years ago
  Luke Taylor 5bdfd8cd77 Tidying imports etc to remove compiler warnings. 16 years ago
  Luke Taylor d099d14e9b SEC-1235: Added test to attempt to verify (failed to reproduce). 16 years ago
  Luke Taylor 8632946f30 SEC-1213: Added "order" atrribute to global-method-security 16 years ago
  Mike Wiesner ed0686cacf Upgraded to AspectJ 1.6.5 and fixes some maven plugin config bugs 16 years ago
  Mike Wiesner a1751aec2c SEC-1232: Added the aspect library needed for <global-method-security mode="aspectj"/> and a small sample 16 years ago
  Luke Taylor 002b788a8c Minor refactoring. 16 years ago
  Luke Taylor 8081a1a3cc Set Id svn keyword. 16 years ago
  Mike Wiesner 5623c13038 SEC-1047: Added an option to DigestProcessingFilter that the created Authentication object is now marked as "authenticated" 16 years ago
  Mike Wiesner e14a904306 SEC-1181: fixed recursive import in template.mf 16 years ago
  Mike Wiesner 660b408e6e SEC-1181: added import to template.mf for the DNS classes 16 years ago
  Mike Wiesner 58ee9a364e SEC-1181: DNS helper classes, will primarily be use for lookup of Active Directory servers. 16 years ago
  Luke Taylor 245fc96137 SEC-1075: Update the embedded LDAP server to use Apache DS 1.5. Updated to use the new 1.5.5 release for the embedded server. 16 years ago
  Scott Battaglia 53baac2fd9 SEC-1228 16 years ago
  Scott Battaglia bfd421016e SEC-1228 16 years ago
  Luke Taylor 936326f4ab SEC-1180: Unreachable code inside UrlUtils.buildRequestUrl(...). Removed code block. 16 years ago
  Luke Taylor f6f5855b52 SEC-1222: Provide a constructor for LdapUserDetailsService that does not require an LdapAuthoritiesPopulator. Done. 16 years ago
  Luke Taylor 32dbb7e8bd import cleaning 16 years ago
  Luke Taylor 2039200617 SEC-1217: AbstractRememberMeServices should set 'secure' attribute on remember-me cookie if in secure context. Added "useSecureCookie" configuration property and corresponding use-secure-cookie attribute in namespace. 16 years ago
  Luke Taylor b2c2b93545 SEC-1190: Added "invalidateSessionOnPrincipalChange" property to AbstactPreAuthenticatedProcessingFilter. If set to true (the default) and a new principal is detected, the existing session will be invalidated before proceeding to authenticate the user. 16 years ago
  Luke Taylor 3cc47c9c4d SEC-1190: Added "checkForPrincipalChanges" property to AbstactPreAuthenticatedProcessingFilter. 16 years ago
  Luke Taylor dbcb13ad14 SEC-1229: Redesign Concurrent Session Control implementation. Renamed session strategy interface and introduced SessionAuthenticationException for rejection of session/Authentication combination. 16 years ago
  Luke Taylor 0d7b990e0a SEC-1184: Moved ACL cache classes and interface out of jdbc package. 16 years ago
  Luke Taylor 6236858356 SEC-951: Acl Serialization Errors that cohere with parent-child-structure of Acls. Modified tests to reproduce the issue and applied suggested fix (recursive call to set transient fields on parent). 16 years ago
  Luke Taylor 98ffda85e0 minor doc update 16 years ago
  Luke Taylor a4ccc4ac21 Make WebSecurityExpressionRoot public to allow reuse. 16 years ago