3909 Commits

Author SHA1 Message Date
Luke Taylor
f404bb3d74 SEC-1167: Introduce more flexible SavedRequest handling. Separated the concept of SavedRequest from SecurityContextHolderAwareFilter since the two are orthogonal requirements. This no longer takes a wrapper class property or uses reflection. SavedRequest functionality is accessed through the RequestCache interface, with the default implementation being HttpSessionRequestCache. A separate filter RequestCacheAwareFilter is now responsible for reconstituting the SavedRequest if it matches the current request. The functionality for matching and returning the wrapper is contained in the RequestCache method though. 2009-07-20 22:34:40 +00:00
Luke Taylor
efd1dbf54a Removed public modifier from getSessionController() method on ProviderManager. 2009-07-17 23:37:45 +00:00
Luke Taylor
491837ae34 SEC-1197: Moved support from session-controller-ref from authentication-manager to concurrent-session-control element. Plus refactoring of config classes into separate packages. 2009-07-17 23:36:35 +00:00
Luke Taylor
83da7be2ea Remove (ticket) cache package from CAS module. Unnecesary and has a circular reference. 2009-07-17 23:33:55 +00:00
Luke Taylor
1afa67c954 SEC-1195: Added internal AuthenticationManager for use by beans which are generated by the <http> block. 2009-07-15 23:09:47 +00:00
Luke Taylor
6346e31517 SEC-1195: Change <http> parsing behaviour to use an internal AuthenticationManager instance. Implemented "parent" AuthenticationManager in ProviderManager which is delegated to when no authentication is returned by the instances list of authentication providers. Extracted the Authentication success/failure publishing into a separate strategy. 2009-07-15 01:28:28 +00:00
Luke Taylor
1ca2e6e6fc Tidying. 2009-07-13 23:12:32 +00:00
Luke Taylor
5d389d953d RoleVoter test class. 2009-07-13 23:11:15 +00:00
Luke Taylor
946f3d1067 Converted to use mockito. 2009-07-13 23:10:52 +00:00
Luke Taylor
e63fba3a36 Tidying 2009-07-08 23:55:42 +00:00
Luke Taylor
d59bdc0cbc Reducing use of global bean Ids as part of SEC-1186 2009-07-08 23:54:26 +00:00
Luke Taylor
7622dfe092 SEC-1194: Added support for services-alias to remember-me 2009-07-08 23:53:47 +00:00
Luke Taylor
b795d22e51 Upgraded junit and bundlor deps 2009-07-08 23:46:15 +00:00
Luke Taylor
3b1cdc3ab4 Tidying. 2009-07-08 23:27:53 +00:00
Luke Taylor
8a3930e673 Refactoring of ProviderManager to ensure that any AuthenticationException from the ConcurrentSessionController will prevent further polling of providers. 2009-07-08 23:20:46 +00:00
Luke Taylor
d02bbbf560 import cleaning. 2009-07-08 17:17:45 +00:00
Luke Taylor
43dab4c3b3 SEC-1186: Additional changes to remove custom-filter decorator functionality. 2009-07-08 16:50:47 +00:00
Luke Taylor
abddcb044a SEC-1186: Remove functionality from CustomFilterBeanDefinitionDecorator and report a warning instead. 2009-07-08 16:49:30 +00:00
Luke Taylor
b3366a1646 SEC-1186: Tidying up changes to http parsing 2009-07-08 16:19:26 +00:00
Luke Taylor
df7c734450 SEC-1192: Fix incorrect classname in preauth chapter 2009-07-08 14:53:40 +00:00
Luke Taylor
6b53703e37 SEC-1187: Moved pre-authentication status check inside try/catch block and repeated the call after reloading the user during the "cacheWasUsed" logic. 2009-07-07 17:09:44 +00:00
Luke Taylor
eae670269d Tidying 2009-07-06 10:33:57 +00:00
Luke Taylor
be12d93f7a Manual updates 2009-07-06 10:33:14 +00:00
Luke Taylor
853b4c8753 SEC-1186: Make sure an Element is always supplied when registering the AuthenticationManager. Fixes broken tests. 2009-06-28 13:36:54 +00:00
Luke Taylor
980b9b73b8 deprecate property editor 2009-06-26 12:49:23 +00:00
Luke Taylor
3e9983c744 SEC-1186: Removed 'order' from openid filter 2009-06-26 12:48:36 +00:00
Luke Taylor
af0c5f9e7f SEC-1186: Removed 'order' from ntlm and cas filters 2009-06-26 12:47:36 +00:00
Luke Taylor
d5bf5d7adc SEC-1186: validator for filter chain beans 2009-06-26 12:47:03 +00:00
Luke Taylor
8ddd96af2b SEC-1186: intermediate commit of namespace changes for improved tooling support 2009-06-26 12:44:46 +00:00
Luke Taylor
f6e2e36346 Remove use of property editor internally. 2009-06-18 23:37:36 +00:00
Luke Taylor
074fa7d629 SEC-1186: Refactoring to bring all filter registrations into the HttpBDP parse method in preparation for building the filter chain and map at that point, rather than in a post-processor 2009-06-18 22:33:16 +00:00
Luke Taylor
44487293f0 Minor faq updates 2009-06-18 13:35:02 +00:00
Luke Taylor
408e982b96 Minor JSP classname fixes etc in samples 2009-06-18 13:28:44 +00:00
Luke Taylor
67a90b36ee SEC-1178: New manual chapters 2009-06-16 12:47:26 +00:00
Luke Taylor
c6b9371029 Updated to latest Spring build snapshot. Required minor EL changes to parser class name 2009-06-15 23:41:20 +00:00
Luke Taylor
e92aac225f Minor javadoc. 2009-06-15 13:53:56 +00:00
Luke Taylor
db3f08cce4 SEC-1156: Added check for enableAuthorities setting in deleteUser method of JdbcUserDetailsManager. 2009-06-14 22:31:14 +00:00
Luke Taylor
ab7f06c108 SEC-1156: Modified JdbcUserDetailsManager to only save/update authorities if enableAuthorities is set 2009-06-14 22:26:44 +00:00
Luke Taylor
37d3401d0c SEC-1016: Rollback changes. 2009-06-14 21:10:02 +00:00
Luke Taylor
05ba2ff3f3 Improved Javadoc 2009-06-14 20:50:29 +00:00
Luke Taylor
65d83faef2 SEC-1178: More ref manual updates 2009-06-12 23:14:20 +00:00
Luke Taylor
ff5b90ef9d Delete unused docbook file 2009-06-12 10:46:16 +00:00
Luke Taylor
8d4c09c191 Intermediate ref manual commits 2009-06-12 10:45:21 +00:00
Luke Taylor
d5aec71fac manual updates 2009-06-11 16:45:41 +00:00
Luke Taylor
3f603dfdd8 Removed invalid Javadoc reference to HttpSCIF 2009-06-10 12:44:06 +00:00
Luke Taylor
72af366a72 SEC-1172: Added extra constructor which allows setting of the config attribute name. 2009-06-09 14:21:42 +00:00
Luke Taylor
4e0d3c644f Committed deletion of previous AuthorityUtilsTests 2009-06-09 01:50:35 +00:00
Luke Taylor
4768e4b13c Removed methods relating to current context from AuthorityUtils, making it a simple factory for GrantedAuthority lists etc. 2009-06-09 01:42:37 +00:00
Luke Taylor
a963be4719 SEC-1095: Register AuthenticationManager from GlobalMethodSecurityBDP. 2009-06-09 01:38:53 +00:00
Luke Taylor
ab69a0a101 SEC-884: As per discussion in this issue. Added Javadoc to specify that Authentication object passed to decide method must not be null. 2009-06-09 01:14:55 +00:00