SEC-1927: Corrected debug log in SessionManagementFilter to have a space between ID and the session and added guard to log statement

This commit is contained in:
Rob Winch 2012-03-11 18:29:56 -05:00
parent 6bde4caa77
commit 84141c4c76
1 changed files with 3 additions and 1 deletions

View File

@ -88,7 +88,9 @@ public class SessionManagementFilter extends GenericFilterBean {
} else {
// No security context or authentication present. Check for a session timeout
if (request.getRequestedSessionId() != null && !request.isRequestedSessionIdValid()) {
logger.debug("Requested session ID" + request.getRequestedSessionId() + " is invalid.");
if(logger.isDebugEnabled()) {
logger.debug("Requested session ID " + request.getRequestedSessionId() + " is invalid.");
}
if (invalidSessionStrategy != null) {
invalidSessionStrategy.onInvalidSessionDetected(request, response);