Commit Graph

2773 Commits

Author SHA1 Message Date
Luke Taylor 083644f2fe SEC-756: Refactored GlobalMethodSecurityDefinitionParser and added check for duplicate registration. 2008-04-22 18:25:35 +00:00
Luke Taylor eec62e9760 Removed reference in petclinic tutorial to acegisecurity.org 2008-04-22 18:17:20 +00:00
Luke Taylor c5f6cbb8f5 Removed corrupt character in author name which was causing build problems with bamboo. 2008-04-22 15:10:11 +00:00
Luke Taylor 1258fa854e SEC-788: x509 authentication does not work properly
http://jira.springframework.org/browse/SEC-788. Added check for X509 element when choosing entry point, if nothing else is available.
2008-04-22 14:53:11 +00:00
Luke Taylor e12b6afefa SEC-776: Http Session created for Anonymous request
http://jira.springframework.org/browse/SEC-776. Added AuthenticationtrustResolver to HttpSCIF to check for anonymous authentication.
2008-04-22 13:22:38 +00:00
Luke Taylor 88ea87642a SEC-791: RequestKey.equals throws NPE if method is null
http://jira.springframework.org/browse/SEC-791. Fixed handling of equals when one http method is null.
2008-04-22 12:32:33 +00:00
Luke Taylor 9eaa1cbbdd OPEN - issue SEC-789: Add support for optional role-prefix attribute to namespace
http://jira.springframework.org/browse/SEC-789. Added role-prefix attribute to ldap provider and jdbc/ldap user-service elements.
2008-04-21 18:29:54 +00:00
Luke Taylor aba5a22b6c SEC-789: Add support for optional role-prefix attribute to namespace
http://jira.springframework.org/browse/SEC-789. Added support for role-prefix to jdbc-user-service element.
2008-04-21 17:44:32 +00:00
Luke Taylor 1a4130528a SEC-782: Incorrect UrlMatcher initialization in FilterChainProxy results in wrong lowercase/uppercase matching
http://jira.springframework.org/browse/SEC-782. I've updated FilterChainProxy to make sure the same UrlMatcher is used throughout when converting a legacy configuration.
2008-04-21 16:51:06 +00:00
Luke Taylor 5bb558bd6a SEC-777: The disabled status cannot be set in <user-service>
http://jira.springframework.org/browse/SEC-777. Added the disabled flag to the relax grammar file.
2008-04-21 15:59:08 +00:00
Luke Taylor 993fdd7a32 Added better toString() method to OrderedFilterDecorator to make it report the delegate filter information. 2008-04-21 12:53:54 +00:00
Luke Taylor 1663142cf1 SEC-784: removed 'optional' tag on dependencies 2008-04-19 12:40:17 +00:00
Luke Taylor 469f55ce05 SEC-773: global-method-security fails with JPA
http://jira.springframework.org/browse/SEC-773. Added extra constructor to MethodDefinitionSourceAdvisor to allow for lazy initialization of the advice (MethodSecurityInterceptor), and in turn the AuthenticationManager and ay referenced UserDetailsService implementations.
2008-04-18 13:15:56 +00:00
Luke Taylor 4d347cfdb5 Updated surefire plugin versions 2008-04-15 19:59:15 +00:00
Luke Taylor 2cc3068de7 Minor site css adjustments 2008-04-15 19:58:53 +00:00
Luke Taylor 09ccc35119 Updated index file to include release features 2008-04-15 18:45:09 +00:00
Luke Taylor 7238097310 OPEN - issue SEC-775: CLONE -impossible to specify "observeOncePerRequest" property in the namespace based configuration.
http://jira.springframework.org/browse/SEC-775. Corrected check for value of observe-once-per-request attribute. Should be a check for "false" as it is true by default.
2008-04-15 16:57:47 +00:00
Luke Taylor 31a9fa553d added section on maven repo downloads 2008-04-14 14:20:11 +00:00
Luke Taylor 680b2d3b74 Updated version number for reference manual 2008-04-14 14:09:06 +00:00
Luke Taylor d2ddbc1ee3 Removed references to packaged docs 2008-04-14 14:05:42 +00:00
Luke Taylor 35698edc04 Website URL updates in readme file 2008-04-14 13:00:57 +00:00
Ben Alex b5dc523041 [maven-release-plugin] prepare for next development iteration 2008-04-14 07:06:44 +00:00
Ben Alex 0c42670431 [maven-release-plugin] prepare release spring-security-parent-2.0.0 2008-04-14 07:05:46 +00:00
Ben Alex 4d714b33e0 SEC-770: Mark old org.springframework.security.acl module as @deprecated. 2008-04-14 06:50:01 +00:00
Ben Alex ce34ef366d SEC-426: Provide better ACL documentation. 2008-04-14 06:15:28 +00:00
Luke Taylor 9dea82773c Added clear:both to programlisting to stop it overlapping with sidebars 2008-04-13 23:39:15 +00:00
Luke Taylor 57b5f38df1 OPEN - issue SEC-769: Remember-Me functionality not available in namespace configuration
http://jira.springframework.org/browse/SEC-769. I've added a check in FormLoginBeanDefintionParser to see if RememberMeServices is registered. If so, it will inject the bean into the filter. Also added a check in HttpSecurityBeanDefinitionParserTests that the field has been set.
2008-04-13 22:11:09 +00:00
Luke Taylor 8f52c6a79c Corrected name in cas samples pom 2008-04-13 21:26:43 +00:00
Luke Taylor 2c85f61091 Tidied root pom 2008-04-13 21:25:32 +00:00
Luke Taylor 4ae40150c9 SEC-752: ClassLoading in GlobalMethodSecurityBeanDefinitionParser doesn't work in tooling
http://jira.springframework.org/browse/SEC-752. Removed check for JSR-250 class.
2008-04-13 20:59:39 +00:00
Luke Taylor 552dc6486a SEC-703: Expose customization of SQL used by <jdbc-user-service>
http://jira.springframework.org/browse/SEC-703. Added suggested attributes for sql queries.
2008-04-13 20:51:40 +00:00
Luke Taylor d6e5dbbcfd SEC-767: Added override for flushBuffer in response wrapper. 2008-04-13 20:22:31 +00:00
Luke Taylor 9d54c2d22b OPEN - issue SEC-637: Dependency on RequestUtils
http://jira.springframework.org/browse/SEC-637. Removed use of ServletRequestUtils in AbstractRememberMeServices
2008-04-13 12:53:01 +00:00
Luke Taylor 511403832f SEC-653: Added entry-point-ref info 2008-04-13 12:03:43 +00:00
Luke Taylor b8490bddb2 SEC-762: Updated CAS configuration from sample app 2008-04-13 12:02:16 +00:00
Luke Taylor da72a7dc00 Forgot to add cas samples parent pom 2008-04-13 00:25:11 +00:00
Luke Taylor 0422cb1f8f Fixed artifact groups for aspectjrt and added cas sample to project build 2008-04-13 00:08:18 +00:00
Luke Taylor 83c152e379 SEC-768: Changed exception to error reported through parser context. Added entry-point-ref to cas config 2008-04-13 00:02:46 +00:00
Luke Taylor a2f4ee1c58 SEC-767: Added check for committed response before attempting to create a new session 2008-04-12 23:18:03 +00:00
Luke Taylor 48c5a5e7ce SEC-653: added information on custom-provider and authentication-manager use 2008-04-12 22:39:21 +00:00
Luke Taylor 0116c13477 SEC-624: Moved community and samples sections into 'getting started' part 2008-04-12 22:07:52 +00:00
Luke Taylor ca40295d7c SEC-624: Replace hard-coded figures with xml:ids and xrefs 2008-04-12 21:45:43 +00:00
Luke Taylor a50c202ded SEC-624: Converting xml to preferred attribute syntax 2008-04-12 18:41:37 +00:00
Luke Taylor 2d3bc27d06 SEC-755: Updated bundle names in line with Christian's recommendations. 2008-04-12 18:38:06 +00:00
Luke Taylor 78d13dc4cb SEC-653: Added section on customizing AccessDecisionManager 2008-04-12 18:24:53 +00:00
Luke Taylor 02a2acf847 SEC-624: Corrections to samples doc 2008-04-12 18:13:47 +00:00
Luke Taylor 42cd91e259 Some updates to contacts sample to match description in docs, remove unnecessary cas code etc. 2008-04-12 18:08:35 +00:00
Luke Taylor c7f182309f Removed excess config from tutorial sample file 2008-04-12 17:17:46 +00:00
Luke Taylor 6f289b3620 Minor doc modifications 2008-04-12 17:16:49 +00:00
Luke Taylor c68ac55a8e SEC-653: minor changes to layout and added link to InMemory section 2008-04-12 17:14:37 +00:00