acl
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
aspects
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
buildSrc
|
f978814bb1
Improve entry of username and password for scp upload.
|
15 gadi atpakaļ |
cas
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
config
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
core
|
2671e52d5a
Expand message on incorrect Spring version to suggest checking the classpath for unwanted jars.
|
15 gadi atpakaļ |
docs
|
cf0289bc02
SEC-1598: Removed invalid properties from SessionFixationProtectionStrategy bean declaration in Session Management chapter docbook.
|
15 gadi atpakaļ |
gradle
|
f85baac943
Updated to Spring 3.0.5
|
15 gadi atpakaļ |
itest
|
0fd2c48dfb
SEC-1584: Additional integration tests.
|
15 gadi atpakaļ |
ldap
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
openid
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
samples
|
685e0417a7
SEC-1544: Update the tutorial sample to attempt to delete the JSESSIONID cookie on logout.
|
15 gadi atpakaļ |
sandbox
|
f4d57ab5e8
SEC-1456: Remove maven poms as we are now using gradle for the build.
|
15 gadi atpakaļ |
taglibs
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 gadi atpakaļ |
web
|
0696bed78e
SEC-1608: Make sure FirewalledRequest.reset() is called when filter="none"
|
15 gadi atpakaļ |
.gitignore
|
7d97adc687
SEC-1584: Addition of HttpFirewall strategy to FilterChainProxy to reject un-normalized requests and wrap the incoming request object before processing by the security filter chain to provide a more consistent representation of paths than is guaranteed by the servlet spec. The wrapper strips path parameters from pathInfo and servletPath to provide consistency of URL matching across servlet containers and protect against bypassing security constraints by the malicious addition of such parameters to the URL. The paths are canonicalized further by replacing of multiple sequences of "/" characters with a single "/".
|
15 gadi atpakaļ |
build.gradle
|
566328fea4
Minor tweaking of IDEA deps.
|
15 gadi atpakaļ |
class_mapping_from_2.0.x.txt
|
48dcc211e9
SEC-1148: Simple classname mapping from 2.0 to 3.0
|
16 gadi atpakaļ |
gradlew
|
c9b0bc1bd9
Added gradle wrapper support.
|
15 gadi atpakaļ |
gradlew.bat
|
c9b0bc1bd9
Added gradle wrapper support.
|
15 gadi atpakaļ |
license.txt
|
c3507b26c9
Change to Apache License version 2.0.
|
21 gadi atpakaļ |
notice.txt
|
9cf146ecf1
Broaden list of names used and correct URL.
|
18 gadi atpakaļ |
readme.txt
|
2c219f7a66
Bringing readme file up to date.
|
15 gadi atpakaļ |
settings.gradle
|
58d9903ebc
SEC-1564: JAAS Configuration can now be injected into DefaultJaasAuthenticationProvider
|
15 gadi atpakaļ |