acl
|
c8820166c8
SEC-1576: Parameterize the secured object type in AccessDecisionVoter.
|
14 years ago |
aspects
|
21ed5feb8d
SEC-1600: Added Implementation-Version and Implementation-Title to manifest templates and checking of version numbers in namespace config module and core. Config checks the version of core it is running against and core checks the Spring version, reporting any mismatches or situations where the app is running with less than the recommended Spring version.
|
15 years ago |
buildSrc
|
49242729e4
Added imgSrcPath parameter for use in docbookFopPdf task.
|
14 years ago |
cas
|
79b8edbd1e
Update CAS client to 3.1.12
|
14 years ago |
config
|
2eefbf3a23
SEC-1657: Added support for 'name' attribute in <http> element to expose filter chain as a list bean.
|
14 years ago |
core
|
c1f2fa1983
SEC-1558: Changed signatures of PrePostInvocationAttributeFactory to take strings rather than annotation types to allow the metadata to be obtained from other sources (not just annotations).
|
14 years ago |
crypto
|
6b1b012e2c
Added check for maximum AES key size in crypto.gradle to skip tests if limited strength crypto policy files are in place.
|
14 years ago |
docs
|
60befb063a
SEC-1659: Added crypto module to list of project modules in reference manual intro and to dependencies appendix.
|
14 years ago |
gradle
|
39b48c6d95
Update gradle wrapper to 0.9.1 in order to use mavenLocal() repo syntax.
|
14 years ago |
itest
|
c1f2fa1983
SEC-1558: Changed signatures of PrePostInvocationAttributeFactory to take strings rather than annotation types to allow the metadata to be obtained from other sources (not just annotations).
|
14 years ago |
ldap
|
592782dc7f
Added test for getAdditionalRoles in DefaultLdapAuthoritiesPopulator.
|
14 years ago |
openid
|
43be9ea2a4
SEC-1430: Removed caching of username in session upon failed authentication. Improved Javadoc.
|
14 years ago |
samples
|
19e56f4397
Stripping out unnecessary dependencies from sample jars.
|
14 years ago |
sandbox
|
43be9ea2a4
SEC-1430: Removed caching of username in session upon failed authentication. Improved Javadoc.
|
14 years ago |
taglibs
|
85d685f7d3
SEC-1611: Make access attribute in authorize tag a runtime expression
|
14 years ago |
web
|
f20649f035
SEC-1648: added null check for getTargetUrlParameter() in SavedRequestAwareAuthenticationSuccessHandler.onAuthenticationSuccess and updated validation for AbstractAuthenticationTargetUrlRequestHandler.setTargetUrlParameter
|
14 years ago |
.gitignore
|
7d97adc687
SEC-1584: Addition of HttpFirewall strategy to FilterChainProxy to reject un-normalized requests and wrap the incoming request object before processing by the security filter chain to provide a more consistent representation of paths than is guaranteed by the servlet spec. The wrapper strips path parameters from pathInfo and servletPath to provide consistency of URL matching across servlet containers and protect against bypassing security constraints by the malicious addition of such parameters to the URL. The paths are canonicalized further by replacing of multiple sequences of "/" characters with a single "/".
|
15 years ago |
build.gradle
|
39b48c6d95
Update gradle wrapper to 0.9.1 in order to use mavenLocal() repo syntax.
|
14 years ago |
class_mapping_from_2.0.x.txt
|
48dcc211e9
SEC-1148: Simple classname mapping from 2.0 to 3.0
|
15 years ago |
gradlew
|
f1fe3ce7e6
Update wrapper to gradle 0.9 release
|
14 years ago |
gradlew.bat
|
c9b0bc1bd9
Added gradle wrapper support.
|
15 years ago |
license.txt
|
c3507b26c9
Change to Apache License version 2.0.
|
21 years ago |
notice.txt
|
9cf146ecf1
Broaden list of names used and correct URL.
|
18 years ago |
readme.txt
|
2c219f7a66
Bringing readme file up to date.
|
15 years ago |
settings.gradle
|
ffa7301e7f
SEC-1569: initial commit of spring-security-crypto module, consisting of encrypt, keygen, password, and util packages
|
14 years ago |