diff --git a/web/src/main/java/org/springframework/security/web/authentication/preauth/AbstractPreAuthenticatedProcessingFilter.java b/web/src/main/java/org/springframework/security/web/authentication/preauth/AbstractPreAuthenticatedProcessingFilter.java index aa055f4d74..deaa90b664 100755 --- a/web/src/main/java/org/springframework/security/web/authentication/preauth/AbstractPreAuthenticatedProcessingFilter.java +++ b/web/src/main/java/org/springframework/security/web/authentication/preauth/AbstractPreAuthenticatedProcessingFilter.java @@ -250,9 +250,9 @@ public abstract class AbstractPreAuthenticatedProcessingFilter extends GenericFi } /** - * If set, the pre-authenticated principal will be checked on each request and compared - * against the name of the current Authentication object. If a change is detected, - * the user will be reauthenticated. + * If set, the pre-authenticated principal will be checked on each request and compared against the name of the + * current Authentication object. A check to determine if {@link Authentication#getPrincipal()} is equal + * to the principal will also be performed. If a change is detected, the user will be reauthenticated. * * @param checkForPrincipalChanges */