Steve Riesenberg 
							
						 
					 
					
						
						
						
						
							
						
						
							86fbb8db07 
							
						 
					 
					
						
						
							
							Add new interfaces for CSRF request processing  
						
						... 
						
						
						
						Issue gh-4001
Issue gh-11456 
						
						
					 
					
						2022-09-06 11:43:33 -05:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							ff6fd78d64 
							
						 
					 
					
						
						
							
							Merge branch '5.7.x' into 5.8.x  
						
						
						
						
					 
					
						2022-09-01 09:39:10 -03:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							0a08a23423 
							
						 
					 
					
						
						
							
							Merge branch '5.6.x' into 5.7.x  
						
						
						
						
					 
					
						2022-09-01 09:38:33 -03:00 
						 
				 
			
				
					
						
							
							
								Underground Hill 
							
						 
					 
					
						
						
						
						
							
						
						
							8b74bf9742 
							
						 
					 
					
						
						
							
							Updated reference to architecture page  
						
						... 
						
						
						
						In the context of Servlet Authentication page, "Architecture" should probably link to "Servlet Authentication Architecture" page 
						
						
					 
					
						2022-09-01 09:38:10 -03:00 
						 
				 
			
				
					
						
							
							
								he1ex-tG 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							568277f8bc 
							
						 
					 
					
						
						
							
							Mistake in Kotlin code representation is fixed  
						
						
						
						
					 
					
						2022-08-29 15:11:10 -05:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
						
						
							
						
						
							0f58620643 
							
						 
					 
					
						
						
							
							Add AspectJ AuthorizationManager Support  
						
						... 
						
						
						
						Closes gh-11326 
						
						
					 
					
						2022-08-26 15:59:08 -06:00 
						 
				 
			
				
					
						
							
							
								Rob Winch 
							
						 
					 
					
						
						
						
						
							
						
						
							89f8310d6c 
							
						 
					 
					
						
						
							
							Add Explicit SessionAuthenticationStrategy Option  
						
						... 
						
						
						
						SessionAuthenticationFilter requires accessing the HttpSession to do its
job. Previously, there was no way to just disable the
SessionAuthenticationFilter despite the fact that
SessionAuthenticationStrategy is invoked by the authentication filters
directly.
This commit adds an option to disable SessionManagmentFilter in favor of
requiring explicit SessionAuthenticationStrategy invocation already
performed by the authentication filters.
Closes gh-11455 
						
						
					 
					
						2022-08-18 17:00:47 -05:00 
						 
				 
			
				
					
						
							
							
								Rob Winch 
							
						 
					 
					
						
						
						
						
							
						
						
							5b64526ba9 
							
						 
					 
					
						
						
							
							Add CsrfFilter.csrfRequestAttributeName  
						
						... 
						
						
						
						Previously the CsrfToken was set on the request attribute with the name
equal to CsrfToken.getParameterName(). This didn't really make a lot of
sense because the CsrfToken.getParameterName() is intended to be used as
the HTTP parameter that the CSRF token was provided. What's more is it
meant that the CsrfToken needed to be read for every request to place it
as an HttpServletRequestAttribute. This causes unnecessary HttpSession
access which can decrease performance for applications.
This commit allows setting CsrfFilter.csrfReqeustAttributeName to
remove the dual purposing of CsrfToken.parameterName and to allow deferal
of reading the CsrfToken to prevent unnecessary HttpSession access.
Issue gh-11699 
						
						
					 
					
						2022-08-15 17:07:02 -05:00 
						 
				 
			
				
					
						
							
							
								Igor Bolic 
							
						 
					 
					
						
						
						
						
							
						
						
							efaee4e56b 
							
						 
					 
					
						
						
							
							Allow customization of redirect strategy  
						
						... 
						
						
						
						The default redirect strategy will provide authorization redirect
URI within HTTP 302 response Location header.
Allowing the configuration of custom redirect strategy will provide
an option for the clients to obtain the authorization URI from e.g.
HTTP response body as JSON payload, without a need to handle
automatic redirection initiated by the HTTP Location header.
Closes gh-11373 
						
						
					 
					
						2022-08-08 15:35:49 -05:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							f45c4d4b8e 
							
						 
					 
					
						
						
							
							Add SHA256 as an algorithm option for Remember Me token hashing  
						
						... 
						
						
						
						Closes gh-8549 
						
						
					 
					
						2022-07-15 10:41:03 -03:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							57d6ab7134 
							
						 
					 
					
						
						
							
							Improve docs on dispatcherTypeMatcher  
						
						... 
						
						
						
						Closes gh-11467 
						
						
					 
					
						2022-07-14 09:13:46 -03:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							624fdfa731 
							
						 
					 
					
						
						
							
							Add AuthorizationManager for protect-pointcut  
						
						... 
						
						
						
						Closes gh-11323 
						
						
					 
					
						2022-07-13 17:58:16 -06:00 
						 
				 
			
				
					
						
							
							
								Tim te Beek 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							ce67fb08fd 
							
						 
					 
					
						
						
							
							Clearly end sentence in note before next sentence  
						
						
						
						
					 
					
						2022-07-11 17:38:44 -06:00 
						 
				 
			
				
					
						
							
							
								Tim te Beek 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							6e63278ab9 
							
						 
					 
					
						
						
							
							Use Collection<ConfigAttribute> in examples  
						
						... 
						
						
						
						To match `org.springframework.security.access.ConfigAttribute`. 
						
						
					 
					
						2022-07-11 17:38:44 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							74a007dc91 
							
						 
					 
					
						
						
							
							Support AuthorizationManager for intercept-methods Element  
						
						... 
						
						
						
						Closes gh-11328 
						
						
					 
					
						2022-07-06 12:54:05 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							74167d62b1 
							
						 
					 
					
						
						
							
							Add SecurityContextHolderStrategy XML Configuration for Messaging  
						
						... 
						
						
						
						Issue gh-11061 
						
						
					 
					
						2022-06-27 15:55:28 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							9cd7c7b046 
							
						 
					 
					
						
						
							
							Add SecurityContextHolderStrategy XML Configuration for Method Security  
						
						... 
						
						
						
						Issue gh-11061 
						
						
					 
					
						2022-06-27 13:05:07 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
						
						
							
						
						
							2a70707c35 
							
						 
					 
					
						
						
							
							Add SecurityContextHolderStrategy XML Configuration for Defaults  
						
						... 
						
						
						
						Issue gh-11061 
						
						
					 
					
						2022-06-17 11:28:10 -06:00 
						 
				 
			
				
					
						
							
							
								sKai.fun 
							
						 
					 
					
						
						
						
						
							
						
						
							a3e996a66b 
							
						 
					 
					
						
						
							
							Fix title render issue of Digest Authentication document  
						
						... 
						
						
						
						Closes gh-11272 
						
						
					 
					
						2022-06-01 17:33:41 -05:00 
						 
				 
			
				
					
						
							
							
								sKai.fun 
							
						 
					 
					
						
						
						
						
							
						
						
							953b54f63d 
							
						 
					 
					
						
						
							
							Fix title render issue of Digest Authentication document  
						
						... 
						
						
						
						Closes gh-11272 
						
						
					 
					
						2022-06-01 15:15:03 -05:00 
						 
				 
			
				
					
						
							
							
								André Luis Gomes 
							
						 
					 
					
						
						
						
						
							
						
						
							aca3fc2412 
							
						 
					 
					
						
						
							
							Update opaque-token.adoc  
						
						... 
						
						
						
						Fixing yaml sample in Servlet and Reactive pages 
						
						
					 
					
						2022-06-01 08:51:44 -03:00 
						 
				 
			
				
					
						
							
							
								André Luis Gomes 
							
						 
					 
					
						
						
						
						
							
						
						
							0c31cb21dc 
							
						 
					 
					
						
						
							
							Update opaque-token.adoc  
						
						... 
						
						
						
						Fixing yaml sample in Servlet and Reactive pages 
						
						
					 
					
						2022-06-01 08:50:56 -03:00 
						 
				 
			
				
					
						
							
							
								André Luis Gomes 
							
						 
					 
					
						
						
						
						
							
						
						
							24701b547f 
							
						 
					 
					
						
						
							
							Update opaque-token.adoc  
						
						... 
						
						
						
						Fixing yaml sample in Servlet and Reactive pages 
						
						
					 
					
						2022-06-01 08:49:47 -03:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							9dbd1f3e25 
							
						 
					 
					
						
						
							
							Use AuthorizationManager in <http>  
						
						... 
						
						
						
						Closes gh-11305 
						
						
					 
					
						2022-05-31 15:10:00 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							d7077b441a 
							
						 
					 
					
						
						
							
							Correct access(String) reference  
						
						... 
						
						
						
						Closes gh-11280 
						
						
					 
					
						2022-05-27 15:00:15 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							292585080a 
							
						 
					 
					
						
						
							
							Correct access(String) reference  
						
						... 
						
						
						
						Closes gh-11280 
						
						
					 
					
						2022-05-27 14:59:06 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							0abc54c7de 
							
						 
					 
					
						
						
							
							Correct access(String) reference  
						
						... 
						
						
						
						Closes gh-11280 
						
						
					 
					
						2022-05-27 14:52:20 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							101f11ba94 
							
						 
					 
					
						
						
							
							Improve ContextConfiguration Docs  
						
						... 
						
						
						
						Point to updated Spring Reference
Issue gh-10934 
						
						
					 
					
						2022-05-27 13:12:56 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							18b903f6e3 
							
						 
					 
					
						
						
							
							Polish ExtendWith Docs  
						
						... 
						
						
						
						Use spring-framework-reference-url placeholder
Issue gh-10934 
						
						
					 
					
						2022-05-27 13:12:56 -06:00 
						 
				 
			
				
					
						
							
							
								nor-ek 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							038266a94f 
							
						 
					 
					
						
						
							
							Update JUnit 5 annotations in documentation  
						
						... 
						
						
						
						- replace Before with BeforeEach
- replace RunWith with ExtendWith
Closes gh-10934 
						
						
					 
					
						2022-05-27 13:12:55 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							8690accd57 
							
						 
					 
					
						
						
							
							Improve ContextConfiguration Docs  
						
						... 
						
						
						
						Point to updated Spring Reference
Issue gh-10934 
						
						
					 
					
						2022-05-27 12:57:57 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							e3c15260e7 
							
						 
					 
					
						
						
							
							Polish ExtendWith Docs  
						
						... 
						
						
						
						Use spring-framework-reference-url placeholder
Issue gh-10934 
						
						
					 
					
						2022-05-27 12:57:57 -06:00 
						 
				 
			
				
					
						
							
							
								nor-ek 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							9625382b22 
							
						 
					 
					
						
						
							
							Update JUnit 5 annotations in documentation  
						
						... 
						
						
						
						- replace Before with BeforeEach
- replace RunWith with ExtendWith
Closes gh-10934 
						
						
					 
					
						2022-05-27 12:57:56 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							dda026b5fc 
							
						 
					 
					
						
						
							
							Improve ContextConfiguration Docs  
						
						... 
						
						
						
						Point to updated Spring Reference
Issue gh-10934 
						
						
					 
					
						2022-05-27 12:57:02 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							2363dbb4e4 
							
						 
					 
					
						
						
							
							Polish ExtendWith Docs  
						
						... 
						
						
						
						Use spring-framework-reference-url placeholder
Issue gh-10934 
						
						
					 
					
						2022-05-27 12:56:57 -06:00 
						 
				 
			
				
					
						
							
							
								nor-ek 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							23cc1eb32b 
							
						 
					 
					
						
						
							
							Update JUnit 5 annotations in documentation  
						
						... 
						
						
						
						- replace Before with BeforeEach
- replace RunWith with ExtendWith
Closes gh-10934 
						
						
					 
					
						2022-05-27 12:56:51 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
						
						
							
						
						
							8a03d1fcec 
							
						 
					 
					
						
						
							
							Add AuthorizationManager to Messaging  
						
						... 
						
						
						
						Closes gh-11076 
						
						
					 
					
						2022-05-27 12:20:48 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							0e9228d10a 
							
						 
					 
					
						
						
							
							Prepare for Spring Security 5.8  
						
						
						
						
					 
					
						2022-05-02 16:34:23 -06:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							e94adedb94 
							
						 
					 
					
						
						
							
							Add shouldFilterAllDispatcherTypes to Kotlin DSL  
						
						... 
						
						
						
						Closes gh-11153 
						
						
					 
					
						2022-04-28 08:19:20 -03:00 
						 
				 
			
				
					
						
							
							
								Rob Winch 
							
						 
					 
					
						
						
						
						
							
						
						
							aaf78330b1 
							
						 
					 
					
						
						
							
							ForceEagerSessionCreationFilter  
						
						... 
						
						
						
						Closes gh-11109 
						
						
					 
					
						2022-04-15 14:16:35 -05:00 
						 
				 
			
				
					
						
							
							
								Marcus Da Coregio 
							
						 
					 
					
						
						
						
						
							
						
						
							7fea639a43 
							
						 
					 
					
						
						
							
							Add Option to Filter All Dispatcher Types  
						
						... 
						
						
						
						Closes gh-11092 
						
						
					 
					
						2022-04-14 15:58:00 -03:00 
						 
				 
			
				
					
						
							
							
								Rob Winch 
							
						 
					 
					
						
						
						
						
							
						
						
							39b0620a84 
							
						 
					 
					
						
						
							
							Add DisableUrlRewritingFilter  
						
						... 
						
						
						
						Closes gh-11084 
						
						
					 
					
						2022-04-08 16:13:44 -05:00 
						 
				 
			
				
					
						
							
							
								Pascal Verdage 
							
						 
					 
					
						
						
						
						
							
						
						
							b71d9bfdc2 
							
						 
					 
					
						
						
							
							Fix typo  
						
						
						
						
					 
					
						2022-04-06 11:09:41 +02:00 
						 
				 
			
				
					
						
							
							
								Johannes Graf 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							4ee5800ec9 
							
						 
					 
					
						
						
							
							use okta as registration id  
						
						... 
						
						
						
						looks like `ping` is some registration id used in the past.
Closes gh-11034 
						
						
					 
					
						2022-03-30 14:41:03 -06:00 
						 
				 
			
				
					
						
							
							
								Johannes Graf 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							d4931ecf2b 
							
						 
					 
					
						
						
							
							use okta as registration id  
						
						... 
						
						
						
						looks like `ping` is some registration id used in the past. 
						
						
					 
					
						2022-03-30 14:40:25 -06:00 
						 
				 
			
				
					
						
							
							
								Josh Cummings 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							04c483387e 
							
						 
					 
					
						
						
							
							Document Authorization Events  
						
						... 
						
						
						
						Issue gh-9288 
						
						
					 
					
						2022-03-29 16:03:20 -06:00 
						 
				 
			
				
					
						
							
							
								Eleftheria Stein 
							
						 
					 
					
						
						
						
						
							
						
						
							d4d6ddbaae 
							
						 
					 
					
						
						
							
							Fix formatting in reference docs  
						
						
						
						
					 
					
						2022-03-24 15:13:50 +01:00 
						 
				 
			
				
					
						
							
							
								Steve Riesenberg 
							
						 
					 
					
						
						
							
							
						
						
						
							
						
						
							f0168c6c27 
							
						 
					 
					
						
						
							
							Add support for customizing claims in JWT Client Assertion  
						
						... 
						
						
						
						Closes gh-9855 
						
						
					 
					
						2022-03-17 09:53:16 -05:00 
						 
				 
			
				
					
						
							
							
								Joe Grandja 
							
						 
					 
					
						
						
						
						
							
						
						
							a2ffc88294 
							
						 
					 
					
						
						
							
							Allow configuring PKCE for confidential clients  
						
						... 
						
						
						
						Closes gh-6548 
						
						
					 
					
						2022-03-16 13:33:12 -04:00 
						 
				 
			
				
					
						
							
							
								Rob Winch 
							
						 
					 
					
						
						
						
						
							
						
						
							87ed31a99c 
							
						 
					 
					
						
						
							
							Add SecurityContextHolderFilter  
						
						... 
						
						
						
						Closes gh-9635 
						
						
					 
					
						2022-03-11 17:22:23 -06:00