Merge branch '7.0.x'

This commit is contained in:
Josh Cummings 2026-02-05 17:23:08 -07:00
commit fc2fd63793
No known key found for this signature in database
GPG Key ID: 869B37A20E876129

View File

@ -12,7 +12,7 @@ OWASP places factors into the following categories:
== `FactorGrantedAuthority`
At the time of authentication, Spring Security's authentication mechanisms add a javadoc:org.springframework.security.core.authority.FactorGrantedAuthority[].
For example, when a user authenticates using a password a `FactorGrantedAuthority` with the `authority` of `FactorGrantedAuthority.PASSWORD_AUTHORITY` is automatically added to the `Authentiation`.
For example, when a user authenticates using a password a `FactorGrantedAuthority` with the `authority` of `FactorGrantedAuthority.PASSWORD_AUTHORITY` is automatically added to the `Authentication`.
In order to require MFA with Spring Security you must:
- Specify an authorization rule that requires multiple factors