Luke Taylor
|
208d1ee8e2
|
SEC-456: Added test class for UserDetailsServiceLdapAuthoritiesPopulator
|
2008-02-07 13:31:25 +00:00 |
Luke Taylor
|
9292317e1c
|
Deleted unused context file.
|
2008-02-07 13:30:03 +00:00 |
Luke Taylor
|
b6d3ed135d
|
SEC-456: Added class Javadoc
|
2008-02-06 17:24:45 +00:00 |
Luke Taylor
|
b2cc817835
|
SEC-456: Basic LDAP authorities populator that delegates to a UserDetailsService.
|
2008-02-06 17:22:27 +00:00 |
Luke Taylor
|
99621a225d
|
SEC-481: Refactoring commence method of AuthenticationProcessingFilterEtryPoint to allow alternative redirect options. Extracted two methods, "buildRedirectUrlToLoginPage" and "buildHttpsRedirectUrlForRequest" and introduced a RedirectUrlBuilder class for assembling the URLs from schemes, ports etc.
|
2008-02-06 16:38:47 +00:00 |
Luke Taylor
|
adbf18a091
|
SEC-507: Updated JSR-250 impl to include better support for PermitAll and DenyAll as suggested by Ryan Heaton. Includes JSR-250 voter which is now used by AnnotationDriverbeanDefinitionParser.
|
2008-02-06 13:14:46 +00:00 |
Luke Taylor
|
c1895acb6b
|
Changed package doc which mentioned adding filter to web.xml rather than filter chain.
|
2008-02-06 10:36:25 +00:00 |
Andrei Stefan
|
98ccaa61e7
|
SEC-532: test class for ObjectIdentityRetrievalStrategyImpl
|
2008-02-06 09:26:39 +00:00 |
Andrei Stefan
|
5d09f1264b
|
SEC-532: Added test method for different hashCode calculation when different Serializable classes are used (the method is commmented as, now, it doesn't pass the test)
|
2008-02-06 09:26:05 +00:00 |
Andrei Stefan
|
419a7a6426
|
SEC-532: added more test methods for JdbcAclService implementation
|
2008-02-06 09:24:13 +00:00 |
Luke Taylor
|
2c0c731aaa
|
SEC-552: Removed accidentally commited incomplete caching-related classes.
|
2008-02-05 16:59:41 +00:00 |
Luke Taylor
|
b82fbb698d
|
SEC-641: Updated to set "source" values on BeanDefinitions where possible.
|
2008-02-05 14:48:39 +00:00 |
Luke Taylor
|
8859034d11
|
SEC-641: Reomove use of SecurityConfigException during parsing.
|
2008-02-05 11:46:27 +00:00 |
Luke Taylor
|
717ab0b3cc
|
SEC-641: Replaced use of Assert with more tooling friendly calls to parserContext.getReaderContext().error()
|
2008-02-05 11:29:52 +00:00 |
Luke Taylor
|
abb6402cec
|
Import cleaning.
|
2008-02-05 10:51:52 +00:00 |
Luke Taylor
|
adba67326f
|
Removed accidentally committed version of tutorial app context file.
|
2008-02-04 21:27:35 +00:00 |
Luke Taylor
|
84c7ac5e57
|
SEC-664: Removed validateUserDetails method from AbstractRememberMeServices, wrapped the UserDetailsService in a status-checking one and added a catch block for AccountStatusExceptions. Also some minor tidying up of other remember-me classes.
|
2008-02-04 21:26:07 +00:00 |
Luke Taylor
|
d3f26f09b6
|
Added support for locking user accounts in namespace <user-service> "user" elements (for use in testing).
|
2008-02-04 21:23:49 +00:00 |
Luke Taylor
|
2343577fec
|
Update new X509 namespace config to use status checking of user accounts by default.
|
2008-02-04 19:43:09 +00:00 |
Luke Taylor
|
600ab04cc7
|
SEC-663: Added null check for pre-authenticated principal value (and skip authentication attempt if null).
|
2008-02-04 19:36:44 +00:00 |
Luke Taylor
|
3f1ab233dc
|
SEC-662: Add check for a null authentication object returned by provider and skip passing it to session controller.
|
2008-02-04 19:27:12 +00:00 |
Andrei Stefan
|
9be3f20faa
|
|
2008-02-04 16:44:11 +00:00 |
Ray Krueger
|
26fa0c143b
|
Added myself to the users list because I can :P
|
2008-02-04 14:25:12 +00:00 |
Luke Taylor
|
1191701d8b
|
SEC-372: Added switchFailureUrl to SwitchUserProcessingFilter. Also did some refactoring to use the StatusCheckingUserDetailsService decorator, rather than checking status internally.
|
2008-02-04 14:02:30 +00:00 |
Luke Taylor
|
b93583164d
|
SEC-659: Change CAS sample to use authentication-manager element.
|
2008-02-04 00:12:56 +00:00 |
Luke Taylor
|
424ac4f117
|
Commented out tests which are breaking build.
|
2008-02-02 22:03:35 +00:00 |
Luke Taylor
|
ab5d416e00
|
SEC-516: Make default SavedRequest a "GET" in test to prevent NPE.
|
2008-02-02 21:41:41 +00:00 |
Ray Krueger
|
c0e2842f90
|
General cleanup and removal of unused stuff
|
2008-02-01 16:32:20 +00:00 |
Luke Taylor
|
e42fdf29ae
|
Don't add exception to session if allowSessionCreation is false.
|
2008-02-01 16:03:56 +00:00 |
Luke Taylor
|
3da2471b7f
|
Some tidying up of OpenID login form.
|
2008-02-01 16:01:34 +00:00 |
Luke Taylor
|
abe62f9146
|
Modified to store the login name in the session when login fails, so that it is available to the view (as in AuthenticationProcessingFilter).
|
2008-02-01 16:00:46 +00:00 |
Andrei Stefan
|
842dec0180
|
|
2008-02-01 15:35:20 +00:00 |
Luke Taylor
|
677012a5de
|
Added Robin as author.
|
2008-02-01 15:20:37 +00:00 |
Luke Taylor
|
bd9138d78a
|
Import cleaning.
|
2008-02-01 14:38:03 +00:00 |
Luke Taylor
|
287726335a
|
OpenID sample application.
|
2008-02-01 14:32:54 +00:00 |
Luke Taylor
|
df1def412e
|
Changed to using new alias for security filter chain in samples.
|
2008-02-01 14:28:04 +00:00 |
Luke Taylor
|
298546014a
|
SEC-659: Added authentication-manager element to allow users to define an alias for the internal authentication manager.
|
2008-02-01 14:25:07 +00:00 |
Luke Taylor
|
86f7b47fac
|
Updated jetty plugin to 6.1.7
|
2008-02-01 14:18:23 +00:00 |
Luke Taylor
|
2ad0c2cbd0
|
Corrected check on whether delegate implements Ordered interface.
|
2008-02-01 14:02:01 +00:00 |
Luke Taylor
|
0d9c1924fb
|
Added check for null consumer, removed unused "errorPage" property.
|
2008-02-01 14:00:28 +00:00 |
Luke Taylor
|
ca75905c3e
|
SEC-658: Add support for ldap-user-service to AuthenticationProviderBeanDefinitionParser.
|
2008-01-31 20:32:31 +00:00 |
Luke Taylor
|
2c6fb3d1c9
|
Added extra tests for jdbc-user-details service to make sure it works within an <authentication-provider> element.
|
2008-01-31 20:30:37 +00:00 |
Luke Taylor
|
e82dfd3f1a
|
Added some further tests for LDAP searching with a different user search base.
|
2008-01-31 17:44:52 +00:00 |
Luke Taylor
|
feb790ea83
|
SEC-486: Added determineExpiredUrl method to ConcurrentSessionFilter
|
2008-01-31 16:25:50 +00:00 |
Luke Taylor
|
feadb3582a
|
SEC-516: TargetUrlResolver path to avoid redirecting to POST requests.
|
2008-01-31 16:05:25 +00:00 |
Luke Taylor
|
9f45f95fab
|
SEC-491: Add alternative options for determining logout URL.
|
2008-01-31 15:48:04 +00:00 |
Luke Taylor
|
a305c9111f
|
SEC-576: Add check for null pre-auth principal and return null if found.
|
2008-01-31 14:50:12 +00:00 |
Luke Taylor
|
5394350cc8
|
SEC-576: Renamed PreAuthenticateduserDetailsService to AuthenticationUserdetailsService and changed signature accordingly.
|
2008-01-31 14:24:12 +00:00 |
Luke Taylor
|
311add2270
|
SEC-300: Applied Andreas Senft's patch for unwrapping exceptions in ExceptionTranslationFilter to obtain the cause.
|
2008-01-30 16:15:02 +00:00 |
Luke Taylor
|
3b6ce862f3
|
SEC-342: Change ObjectDefinitionSource to return a Collection instead of an Iterator.
|
2008-01-30 15:43:40 +00:00 |