Rob Winch
|
2fd0a65049
|
SEC-1839: Updated preauth example to use </security:authentication-manager> instead of </security-authentication-manager>
|
2011-10-18 19:18:56 -05:00 |
Luke Taylor
|
503ac9ae7c
|
SEC-1798: Remove internal evaluation of EL in JSP tag implementations.
|
2011-08-12 19:44:27 +01:00 |
Luke Taylor
|
a1c714cff4
|
SEC-1754: Added an InvalidSessionStrategy to allow SessionManagementFilter to delegate out the behaviour when an invalid session identifier is submitted.
|
2011-07-14 16:43:02 +01:00 |
Luke Taylor
|
ac3d8b25f2
|
Expand LDAP authentication FAQ with information about bind authentication and unreadable password attributes.
|
2011-07-14 13:13:39 +01:00 |
Luke Taylor
|
d5946b81b4
|
Added FAQ on how to add ApacheDS entries to pom.
|
2011-07-13 17:50:29 +01:00 |
Florian Fankhauser
|
2e83d98c8f
|
SEC-1776: Corrected typo in manual
|
2011-07-09 19:24:12 -05:00 |
Luke Taylor
|
2861a951aa
|
Minor FAQ update on version info.
|
2011-06-17 11:45:56 +01:00 |
Luke Taylor
|
ecfffaaa3f
|
Make aspectj dependencies optional throughout and spring-jdbc/tx optional in core poms. Reduces exclusions required in third-party poms (e.g. spring-social).
|
2011-06-09 22:57:49 +01:00 |
Luke Taylor
|
132163ec2e
|
Add FAQ on accessing password from a UserDetailsService.
|
2011-05-26 18:38:45 +01:00 |
Luke Taylor
|
b53d430798
|
Doc update to reflect change in cas integration module name since 3.0.
|
2011-05-23 21:29:40 +01:00 |
Luke Taylor
|
3541099634
|
Correct typo in FAQ.
|
2011-05-17 18:23:48 +01:00 |
Luke Taylor
|
295ea27526
|
SEC-1743: Separate remoting from core into separate module.
|
2011-05-16 00:19:30 +01:00 |
Luke Taylor
|
6e91786f92
|
SEC-1734: AbstractRememberMeServices will now default to using a secure cookie if the connection is secure. The behaviour can be overridden by setting the useSecureCookie property in which case the cookie will either always be secure (true) or never (false).
|
2011-05-09 13:36:23 +01:00 |
Rob Winch
|
bd74185e41
|
SEC-1729: Updated openid module and sample to openid4java 0.9.6 and httpclient 4.1.1
|
2011-04-26 23:39:51 -05:00 |
Luke Taylor
|
e473897fd9
|
SEC-1181: Add docs for ActiveDirectoryLdapAuthenticationProvider. Minor fix to initialization checks.
|
2011-04-26 18:39:01 +01:00 |
Luke Taylor
|
c4a1ce9f1a
|
SEC-1725: Update docs to remove references to filter-chain-map.
|
2011-04-25 23:38:44 +01:00 |
Rob Winch
|
f28a09dfa4
|
Formatting changes to CAS documentation
|
2011-04-17 18:17:16 -05:00 |
Rob Winch
|
01fb4bdb6d
|
SEC-1718: Update documentation and sample application to demonstrate how to use a PGT to authenticate to stateless services using a PT
|
2011-04-17 18:17:14 -05:00 |
Rob Winch
|
11331d34d9
|
SEC-1717: Document how to perform Single Logout with CAS and added integration test for sample application to test Single Logout
|
2011-04-17 18:14:16 -05:00 |
Rob Winch
|
04f1df2a1b
|
SEC-965: Updated CAS documentation to describe authenticating proxy tickets
|
2011-04-17 18:14:16 -05:00 |
Luke Taylor
|
74b0c1780e
|
SEC-1707: Added metadata-source-ref attribute to namespace appendix.
|
2011-04-05 15:25:49 +01:00 |
Rob Winch
|
79e17e22bc
|
SEC-1703: Updated namespace for intercept-url
|
2011-03-29 21:58:29 -05:00 |
Rob Winch
|
d9d5ee1114
|
SEC-1703: Updated cas custom-filter@ref to match example bean id and custom-filter@position to be CAS_FILTER
|
2011-03-29 20:13:07 -05:00 |
Luke Taylor
|
9c88576992
|
Added extra FAQ on "Bad Credentials" message and on testing LDAP authentication. Minor mods to LDAP doc.
|
2011-03-29 15:30:08 +01:00 |
Rob Winch
|
236efadfb7
|
SEC-1698: Update documentation to use correct package for RequestHeaderAuthenticationFilter
|
2011-03-16 23:53:29 -05:00 |
Luke Taylor
|
1dc309b041
|
SEC-1689: Minor doc updates related to use of password encoding and the crypto package.
|
2011-03-17 01:45:19 +00:00 |
Luke Taylor
|
3a3b2df1c5
|
Minor rewording of "child web context" FAQ.
|
2011-03-13 20:45:22 +00:00 |
Luke Taylor
|
a25d131f21
|
Some doc clarifications on the use of UserDetailService vs AuthenticationProvider.
|
2011-03-10 16:12:16 +00:00 |
Luke Taylor
|
b26f2309f4
|
Add paragraph to manual database appendix to clarify that the standard schema is completely optional if you aren't using JdbcDaoImpl.
|
2011-03-10 13:41:44 +00:00 |
Luke Taylor
|
9cf8ba02ba
|
Adding some extra section IDs in namespace appendix to provide bookmarkable URLs.
|
2011-03-10 13:15:58 +00:00 |
Luke Taylor
|
57c3afd31a
|
SEC-1689: Adjust manual to remove references to separate crypto module.
|
2011-03-08 12:58:28 +00:00 |
Luke Taylor
|
3fe49dfae5
|
Added JDK and Spring links to Javadoc generation task.
|
2011-02-08 16:43:34 +00:00 |
Luke Taylor
|
12561660b1
|
Add Javadoc groups to build.
|
2011-02-08 16:13:12 +00:00 |
Luke Taylor
|
5f58108717
|
Typo.
|
2011-02-06 15:31:36 +00:00 |
Luke Taylor
|
83050f96cb
|
SEC-1656: Document potential need for pre-emptive session creation if writing the security context manuall.
|
2011-02-06 14:58:36 +00:00 |
Luke Taylor
|
4e349904e5
|
Add missing language attributes to programlisting tags for highlighting.
|
2011-02-01 16:54:18 +00:00 |
Luke Taylor
|
6a62b51870
|
Fix typo in FAQ.
|
2011-01-31 12:32:05 +00:00 |
Luke Taylor
|
347a2a91a9
|
SEC-1494: Document the use of system properties for disabling authorize tag functionality.
|
2011-01-30 14:04:32 +00:00 |
Luke Taylor
|
95b416b0e7
|
SEC-1660: Minor addition to FAQ text.
|
2011-01-21 16:26:14 +00:00 |
Luke Taylor
|
b542c73907
|
SEC-1660: Updated FAQ to explain that session-fixation protection may cause problems if switching between HTTP and HTTPS, and also updated information to advise against switching in the first place.
|
2011-01-21 16:24:18 +00:00 |
Luke Taylor
|
60befb063a
|
SEC-1659: Added crypto module to list of project modules in reference manual intro and to dependencies appendix.
|
2011-01-19 18:26:30 +00:00 |
Keith Donald
|
38327d1b16
|
SEC-1659: crypto docs
|
2011-01-19 18:17:03 +00:00 |
Luke Taylor
|
afd586c96e
|
Re-instate the CAS integration sequence description in the CAS chapter, with corrections (and minus proxying).
|
2011-01-18 16:50:18 +00:00 |
Luke Taylor
|
075b30ab44
|
SEC-1651: Added paragraph to FAQ mentioning dependencies appendix.
|
2011-01-12 15:27:30 +00:00 |
Luke Taylor
|
8da0de459b
|
SEC-1651: Added remaining module information to dependencies appendix.
|
2011-01-12 15:09:01 +00:00 |
Luke Taylor
|
b858b23927
|
SEC-1651: Added first draft of dependencies appendix to reference manual.
|
2011-01-07 19:23:06 +00:00 |
Luke Taylor
|
8d7830a1ee
|
SEC-1603: Add support in namespace for use of AuthenticationSuccessHandler with remember-me.
|
2011-01-06 15:16:13 +00:00 |
Luke Taylor
|
48ea0a6249
|
SEC-1638: Added paragraph to docs explaining that for complete security, an app should not switch out of HTTPS at all.
|
2010-12-17 17:34:08 +00:00 |
Luke Taylor
|
7cf9740fd4
|
SEC-1638: Added an example configuration to the Javadoc for ChannelProcessingFilter and a pointer from the reference manual.
|
2010-12-17 17:09:20 +00:00 |
Luke Taylor
|
ce421f22bf
|
SEC-1635: Stop security interceptors from calling AfterInvocationManager if exception occurs during invocation
|
2010-12-14 16:24:51 +00:00 |