Ray Krueger
|
718eddadd7
|
Promoting OpenID out of the Sandbox
|
2008-01-27 02:57:57 +00:00 |
Luke Taylor
|
ae71e9a5bd
|
SEC-632: Changed user-filter to custom-filter to avoid confusion with system "users".
|
2008-01-27 00:48:53 +00:00 |
Luke Taylor
|
cd16dac290
|
SEC-648: Added custom-authentication-provider element.
|
2008-01-27 00:42:35 +00:00 |
Luke Taylor
|
e852cf53a8
|
SEC-644: Fix broken NtlmProcessingFilter and add AuthenticationDetailsSource to it.
|
2008-01-27 00:31:55 +00:00 |
Luke Taylor
|
619c7b0dbf
|
SEC-632: Explicit filter chain ordering is now achieved using "after" or "before". Setting the order value directly in the context is fragile due to potential future changes in the order values of standard filters.
|
2008-01-26 23:56:04 +00:00 |
Luke Taylor
|
e44e641106
|
SEC-647: Updated server keystore (new certificate using our own Test CA) and added client certificates for users rod and dianne.
|
2008-01-26 17:21:23 +00:00 |
Luke Taylor
|
0005da3b63
|
Corrected spelling of class name.
|
2008-01-26 11:36:24 +00:00 |
Andrei Stefan
|
83ecb3e9e0
|
test classes
|
2008-01-26 11:35:49 +00:00 |
Andrei Stefan
|
0e58e816a2
|
|
2008-01-26 11:31:49 +00:00 |
Luke Taylor
|
483068d486
|
SEC-647: Delete unused certificated directory and outdated certificates.
|
2008-01-26 11:28:36 +00:00 |
Andrei Stefan
|
0f32b3fc40
|
reverted to junit 3
|
2008-01-25 15:04:29 +00:00 |
Andrei Stefan
|
630efbf536
|
AclFormattingUtils and AccessControlEntryImpl test classes
|
2008-01-24 22:11:17 +00:00 |
Luke Taylor
|
b85f76e6c1
|
Added SSL support to the tutorial app Jetty plugin configuration and added a requirement for SSL on the "extremely secure" page.
|
2008-01-24 16:30:06 +00:00 |
Luke Taylor
|
d10450cfb7
|
SEC-531: Provide support for HTTP methods in FilterInvocationDefinitionSource. Path/Regex versions of FIDS are now deprecated and in favour of using their (no longer abstract) parent class with a UrlPathMatcher strategy.
|
2008-01-24 14:39:47 +00:00 |
Luke Taylor
|
342677fabc
|
Removed auto-config from tutorial sample and added commented out ldap support. Updated ldif file to match sample users.
|
2008-01-23 22:21:39 +00:00 |
Andrei Stefan
|
b4c37db9f9
|
test classes for AuditLogger and security checks in AclImpl and AclAuthorizationStrategyImpl
|
2008-01-23 21:50:49 +00:00 |
Luke Taylor
|
837ecd85ec
|
SEC-576: Tidied up code, added preauth sample demo app.
|
2008-01-23 20:02:11 +00:00 |
Luke Taylor
|
a9ff309b02
|
Deleted as test now uses inline context snippets.
|
2008-01-22 21:08:33 +00:00 |
Luke Taylor
|
06f3bcbf6a
|
Converted all namespace attributes which refer to bean IDs to use "-ref" suffix (or "ref").
|
2008-01-22 20:58:12 +00:00 |
Luke Taylor
|
11570d9584
|
SEC-576: Test web.xml files.
|
2008-01-22 20:42:09 +00:00 |
Luke Taylor
|
24caad5a67
|
Make sure default lower/upper case is respected for regex and ant paths when not set explicitly using the lowercase-comparisons attribute. Added much more comprehensive testing of HttpSecurityBeanDefinitionParser.
|
2008-01-22 20:25:46 +00:00 |
Luke Taylor
|
b9561cc4e0
|
SEC-643: Fix to allow namespace configuration without remember-me authentication.
|
2008-01-22 18:32:18 +00:00 |
Luke Taylor
|
7854e36029
|
SEC-576: Tidying.
|
2008-01-22 15:07:37 +00:00 |
Luke Taylor
|
c8b9f24038
|
SEC-576: Committed pre-autheticated contribution. Still has to be more thoroughly reviewed.
|
2008-01-22 13:55:19 +00:00 |
Luke Taylor
|
35a7928cb9
|
SEC-635: Convert xsd:IDREF types to xsd:string to allow references to beans outside the current file.
|
2008-01-22 11:38:50 +00:00 |
Luke Taylor
|
b29bcfebe8
|
Converted test class to use in memory XML snippets - makes it easier to work out which one is causing a failure.
|
2008-01-22 11:36:15 +00:00 |
Luke Taylor
|
ca8dff7abb
|
Delete unused ldap namespace test context file
|
2008-01-21 20:09:07 +00:00 |
Luke Taylor
|
1b8f13aa4c
|
Use "'" for XML attributes in in-memory test contexts for readability.
|
2008-01-21 20:08:24 +00:00 |
Luke Taylor
|
7d88ee8c48
|
Formatted ACL SQL for readability.
|
2008-01-21 18:35:22 +00:00 |
Luke Taylor
|
aff568efb9
|
Tidied up getters/setters (undoing jalopy ordering). Made getters protected.
|
2008-01-21 17:23:48 +00:00 |
Luke Taylor
|
9836bda5b3
|
SEC-630: Support for "properties" attribute in user-service namespace element.
|
2008-01-21 17:15:53 +00:00 |
Luke Taylor
|
59a947bbe5
|
SEC-636: Support for use of "ref" attribute in salt-source element.
|
2008-01-21 15:06:43 +00:00 |
Luke Taylor
|
568211b77f
|
SEC-638: Fixed problem caused by using Spring 2.5.1 method from ReflectionUtils which isn't available in 2.0.6.
|
2008-01-21 15:00:16 +00:00 |
Luke Taylor
|
eb70db1dee
|
SEC-638: Allow property names as well as method names to be used in ReflectionSaltSource.
|
2008-01-21 14:45:29 +00:00 |
Luke Taylor
|
fe6e297358
|
Added missing space to SQL query in JdbcMutableAclService.
|
2008-01-21 10:31:48 +00:00 |
Luke Taylor
|
437c6fb7b7
|
Tidying.
|
2008-01-21 09:33:49 +00:00 |
Luke Taylor
|
8694028b13
|
SEC-632: Completed comment.
|
2008-01-19 14:21:20 +00:00 |
Luke Taylor
|
d70a820e64
|
SEC-632: Make order attribute in user-filter optional for cases when the filter implements Ordered directly.
|
2008-01-19 14:18:33 +00:00 |
Luke Taylor
|
5e3a0ef379
|
SEC-632: Added user-filter element to namespace to allow a user to add their filters. Filters which aren't in the org.security.springframework package will now be skipped. Also renamed FilterChainOrderUtils and members for future use in ordering (e.g. using "after", "before" as attributes in user-filter).
|
2008-01-19 13:51:03 +00:00 |
Luke Taylor
|
c3cd5d98ba
|
Added logging of FilterChainProxy when security namespace postprocessor has finished configuring it.
|
2008-01-18 22:20:16 +00:00 |
Luke Taylor
|
84815df529
|
Added toString method to FilterChainProxy.
|
2008-01-18 22:16:41 +00:00 |
Luke Taylor
|
462b4b450f
|
Added use of authz tag to tutorial. Upgraded to use webapp 2.4 xsd. Changed JSTL dependency to 1.2
|
2008-01-18 18:17:09 +00:00 |
Luke Taylor
|
48620f3550
|
Changed AuthorizeTag to use StringUtils.deleteAny(), instead of replace()
|
2008-01-18 17:12:21 +00:00 |
Luke Taylor
|
a40bb11be3
|
SEC-599: Refactoring to use Map.Entry for iterating through patterns.
|
2008-01-18 16:33:36 +00:00 |
Luke Taylor
|
04c89e0795
|
SEC-599: Refactoring of FilterInvocationDefinitionSource implementations to use UrlPathMatcher strategy.
|
2008-01-18 16:24:35 +00:00 |
Ray Krueger
|
b54853b58f
|
No longer used
|
2008-01-18 16:15:26 +00:00 |
Ray Krueger
|
f34273a197
|
Added file header
|
2008-01-18 16:13:59 +00:00 |
Ray Krueger
|
cc96fa730a
|
Added file header
|
2008-01-18 16:11:44 +00:00 |
Ray Krueger
|
61c91d1b79
|
SEC-633: Handle null credentials in AbstractAuthenticationToken.equals
Also added a test for the OpenIDAuthenticationToken to reproduce the original error.
|
2008-01-18 16:09:31 +00:00 |
Luke Taylor
|
01569e5746
|
SEC-599: Refactoring of FilterInvocationDefinitionSource implementations to use a LinkedHashMap internally rather than list of "EntryHolder" classes.
|
2008-01-18 13:04:46 +00:00 |