暫無描述

Luke Taylor 44252207db SEC-1683: Corrected typo 14 年之前
acl b0df1bd1b0 SEC-1673: Use a map to store the range values use in the bundlor templates. 14 年之前
aspects b0df1bd1b0 SEC-1673: Use a map to store the range values use in the bundlor templates. 14 年之前
buildSrc 49242729e4 Added imgSrcPath parameter for use in docbookFopPdf task. 15 年之前
cas b0df1bd1b0 SEC-1673: Use a map to store the range values use in the bundlor templates. 14 年之前
config 088042b3d0 Upgrade spock and groovy versions, and make sure apacheDS work directory is set for config integrationTest task. 14 年之前
core 7a0a2dace6 Revert deliberate test failure. 14 年之前
crypto 8c08eeb57b SEC-1666: Use constant time comparison for sensitive data. 14 年之前
docs 3fe49dfae5 Added JDK and Spring links to Javadoc generation task. 14 年之前
gradle 27be72a81c SEC-1677: Split out LDAP server tests from config module. 14 年之前
itest 94b7868039 SEC-1675: Add missing body-content elements to tag descriptor and update it to use 2.0 tag library schema. 14 年之前
ldap 44fb3aa4ab SEC-1677: Create integrationTest task for Java projects and make all tests in itest module run as integration tests only. 14 年之前
openid 84ba7a0ea9 Additional tests for OpenID classes and minor refactoring of OpenID4JavaConsumer for easier testing. 14 年之前
samples d58dd79a52 SEC-1494: Updated the tutorial webapp to use CSS and make use of the securityHiddenUI element when UI security is disabled. 14 年之前
sandbox 43be9ea2a4 SEC-1430: Removed caching of username in session upon failed authentication. Improved Javadoc. 15 年之前
taglibs 94b7868039 SEC-1675: Add missing body-content elements to tag descriptor and update it to use 2.0 tag library schema. 14 年之前
web 44252207db SEC-1683: Corrected typo 14 年之前
.gitignore 7d97adc687 SEC-1584: Addition of HttpFirewall strategy to FilterChainProxy to reject un-normalized requests and wrap the incoming request object before processing by the security filter chain to provide a more consistent representation of paths than is guaranteed by the servlet spec. The wrapper strips path parameters from pathInfo and servletPath to provide consistency of URL matching across servlet containers and protect against bypassing security constraints by the malicious addition of such parameters to the URL. The paths are canonicalized further by replacing of multiple sequences of "/" characters with a single "/". 15 年之前
build.gradle 9f8a47f73e Reset post-release build version to snapshot. 14 年之前
class_mapping_from_2.0.x.txt 48dcc211e9 SEC-1148: Simple classname mapping from 2.0 to 3.0 16 年之前
gradlew 164cba11c0 Increase max heap in gradle wrapper script. 14 年之前
gradlew.bat c9b0bc1bd9 Added gradle wrapper support. 15 年之前
license.txt c3507b26c9 Change to Apache License version 2.0. 21 年之前
notice.txt 9cf146ecf1 Broaden list of names used and correct URL. 18 年之前
readme.txt 2c219f7a66 Bringing readme file up to date. 15 年之前
settings.gradle ffa7301e7f SEC-1569: initial commit of spring-security-crypto module, consisting of encrypt, keygen, password, and util packages 14 年之前

readme.txt

===============================================================================
SPRING SECURITY - README FILE
===============================================================================

-------------------------------------------------------------------------------
OVERVIEW
-------------------------------------------------------------------------------

Spring Security provides security services for the Spring Framework
(http://www.springframework.org). Spring Security 3.1 requires Spring 3.0.3 as
a minimum and also requires Java 5.

For a detailed list of features and access to the latest release, please visit
http://www.springframework.org/projects/.

Spring Security is released under an Apache 2.0 license. See the accompanying
license.txt file.

-------------------------------------------------------------------------------
BUILDING
-------------------------------------------------------------------------------

Please read the "Building from Source" page at
http://static.springframework.org/spring-security/site/.

-------------------------------------------------------------------------------
DOCUMENTATION
-------------------------------------------------------------------------------

Be sure to read the Reference Guide (docs/reference/html/springsecurity.html).
Extensive JavaDoc for the Spring Security code is also available (in docs/apidocs).
Both can also be found on the website.

-------------------------------------------------------------------------------
QUICK START
-------------------------------------------------------------------------------

We recommend you visit http://static.springframework.org/spring-security/site and
read the "Getting Started" page.

-------------------------------------------------------------------------------
MAVEN REPOSITORY DOWNLOADS
-------------------------------------------------------------------------------

Release jars for the project are available from the central maven repository

http://repo1.maven.org/maven2/org/springframework/security/

Note that milestone releases and snapshots are not uploaded to the central
repository, but can be obtained from the Spring milestone repository, using the
maven repository http://maven.springframework.org/snapshot/. You can't browse this
URL directly, but there is a separate browser interface. Check the downloads page
for more information
http://static.springsource.org/spring-security/site/downloads.html


-------------------------------------------------------------------------------
OBTAINING SUPPORT
-------------------------------------------------------------------------------

There are two types of support available, commercial and community. For
commercial support, please contact SpringSource. SpringSource employ the
people who wrote Spring Security, and lead the development of the project:

http://www.springsource.com

For peer help and assistance, please use the Spring Security forum
located at the Spring Community's forum site:

http://forum.springframework.org

Links to the forums, and other useful resources are
available from the web site.