Deprecate storage of Authentication object in AuthenticationException.

This commit is contained in:
Luke Taylor 2011-11-01 13:05:42 +00:00
parent b60367e30c
commit 8fd2963e6b
1 changed files with 3 additions and 0 deletions

View File

@ -64,11 +64,14 @@ public abstract class AuthenticationException extends RuntimeException {
/**
* The authentication request which this exception corresponds to (may be {@code null})
* @deprecated to avoid potential leaking of sensitive information (e.g. through serialization/remoting).
*/
@Deprecated
public Authentication getAuthentication() {
return authentication;
}
@Deprecated
public void setAuthentication(Authentication authentication) {
this.authentication = authentication;
}