mirror of
https://github.com/spring-projects/spring-security.git
synced 2025-07-08 11:32:47 +00:00
SEC-1039: Corrected reference to security context key to match new value.
This commit is contained in:
parent
a650b73550
commit
fd7fc0c8a5
@ -12,7 +12,7 @@ import org.springframework.security.Authentication;
|
|||||||
import org.springframework.security.AuthenticationTrustResolver;
|
import org.springframework.security.AuthenticationTrustResolver;
|
||||||
import org.springframework.security.AuthenticationTrustResolverImpl;
|
import org.springframework.security.AuthenticationTrustResolverImpl;
|
||||||
import org.springframework.security.concurrent.SessionRegistry;
|
import org.springframework.security.concurrent.SessionRegistry;
|
||||||
import org.springframework.security.context.HttpSessionContextIntegrationFilter;
|
import org.springframework.security.context.HttpSessionSecurityContextRepository;
|
||||||
import org.springframework.security.context.SecurityContext;
|
import org.springframework.security.context.SecurityContext;
|
||||||
import org.springframework.security.context.SecurityContextHolder;
|
import org.springframework.security.context.SecurityContextHolder;
|
||||||
import org.springframework.security.util.SessionUtils;
|
import org.springframework.security.util.SessionUtils;
|
||||||
@ -57,7 +57,7 @@ public class SessionFixationProtectionFilter extends SpringSecurityFilter {
|
|||||||
|
|
||||||
HttpSession session = request.getSession();
|
HttpSession session = request.getSession();
|
||||||
SecurityContext sessionSecurityContext =
|
SecurityContext sessionSecurityContext =
|
||||||
(SecurityContext) session.getAttribute(HttpSessionContextIntegrationFilter.SPRING_SECURITY_CONTEXT_KEY);
|
(SecurityContext) session.getAttribute(HttpSessionSecurityContextRepository.SPRING_SECURITY_CONTEXT_KEY);
|
||||||
|
|
||||||
if (sessionSecurityContext == null && isAuthenticated()) {
|
if (sessionSecurityContext == null && isAuthenticated()) {
|
||||||
// The user has been authenticated during the current request, so do the session migration
|
// The user has been authenticated during the current request, so do the session migration
|
||||||
|
Loading…
x
Reference in New Issue
Block a user