Rob Winch
d5b72275e5
SEC-1639: FirewalledRequest is now called on the specific FirewalledRequest instance rather that looping through ServletRequestWrappers.
...
VirtualFilterChain now accepts the FirewalledRequest in the constructor. The reset method is called directly on the instance passed in instead of looping through the ServletRequestWrappers.
2010-12-17 09:42:25 -06:00
Luke Taylor
08a933f930
SEC-1608: Ensure request wrapper is reset for empty filter chains.
2010-12-08 13:56:08 +00:00
Rob Winch
54ffc98bb4
SEC-1606: Added a FirewalledRequestAwareRequestDispatcher that will call FirewalledRequest.reset() before a forward
2010-11-03 15:01:39 -05:00
Luke Taylor
1c3d530b60
Switch versions to 2.0.7.CI-SNAPSHOT
2010-10-25 17:20:25 +01:00
Luke Taylor
beb0ec4ba9
Version 2.0.6.RELEASE
2.0.6.RELEASE
2010-10-25 17:18:16 +01:00
Luke Taylor
dec2e59fba
SEC-1584: Backport of namespace support for injecting custom HttpFirewall instance into FilterChainProxy.
2010-10-14 20:32:01 +01:00
Luke Taylor
ed7f589998
SEC-1584: Additional integration tests.
2010-10-13 00:05:38 +01:00
Luke Taylor
8f6ddb0f17
SEC-1584: Backport to 2.0.x branch of request firewalling (normalization checks and path-parameter stripping from servletPath and pathInfo).
2010-10-13 00:04:44 +01:00
Luke Taylor
62a8aca853
.gitignore updates
2010-10-03 23:39:33 +01:00
Luke Taylor
9c6a5135a3
SEC-1532: Patch applied to 2.0.x branch
2010-08-26 14:13:01 +01:00
Luke Taylor
0acf262546
SEC-1462: Added suggested patch (effectively the same as changes in 3.0.x and master branches).
2010-04-20 18:16:45 +01:00
Luke Taylor
6ad652ae97
Update 2.0 branch pom versions.
2010-04-20 18:15:51 +01:00
Luke Taylor
068b3d48ec
Add .gitignore to 2.0.x branch
2010-04-16 15:15:54 +01:00
Luke Taylor
d6f6a54455
SEC-1444: Backport of changes to 2.0.x
2010-04-16 15:14:01 +01:00
Luke Taylor
4361211c21
Change release from milestone to release
2.0.5.RELEASE
2009-07-14 12:29:51 +00:00
Luke Taylor
71adc26b0f
[maven-release-plugin] prepare release spring-security-2.0.5.RELEASE
2009-07-14 00:29:53 +00:00
Luke Taylor
eb3288ca34
Removing unnecessary repository declarations
2009-07-13 23:53:12 +00:00
Luke Taylor
f3f4cfe804
Minor changes to readme
2009-07-13 23:48:55 +00:00
Luke Taylor
40fa884860
Updated release plugin version
2009-07-13 23:47:53 +00:00
Luke Taylor
3e393c9df6
Tidying test class
2009-07-13 23:47:33 +00:00
Luke Taylor
a61aca1abf
Update to bundlor M5
2009-07-13 13:07:44 +00:00
Luke Taylor
52d2c904f9
Disable adapters build
2009-07-09 12:38:59 +00:00
Luke Taylor
149fd5d8de
Add bundlor templates
2009-07-09 12:26:11 +00:00
Luke Taylor
f3f02d8aed
Update sec-2.0.x branch to use bundlor
2009-07-09 11:51:26 +00:00
Luke Taylor
781c99f257
SEC-1145: Updated LDAP code to make sure pooling flag is removed when binding as a specific user (for real this time)
2009-06-03 16:57:33 +00:00
Luke Taylor
b77f780993
SEC-1145: Updated LDAP code to make sure pooling flag is removed when binding as a specific user
2009-06-03 16:12:54 +00:00
Scott Battaglia
22964837e9
SEC-1066
...
upgraded to CAS Client for Java 3.1.5
2008-12-22 19:37:50 +00:00
Scott Battaglia
7566802a08
SEC-1046
...
upgrade to CAS Client for Java 3.1.4
2008-12-16 14:50:04 +00:00
Luke Taylor
4c3867718e
SEC-1031: Ported change from trunk.
2008-11-11 23:36:47 +00:00
Luke Taylor
ad4b5c487f
Temporarily store webflow test sample in sandbox
2008-10-02 23:24:58 +00:00
Luke Taylor
48013b2c93
typo
2008-10-02 15:26:20 +00:00
Luke Taylor
03b21494bc
Corrected typo
2008-10-02 14:53:24 +00:00
Luke Taylor
ac54976f9e
Added appendices to end of doc
2008-10-02 14:50:58 +00:00
Scott Battaglia
7594e1ae2f
SEC-984
...
added template method to allow to override the default of retrieving user by username.
2008-10-01 18:49:52 +00:00
Luke Taylor
97381fb448
SEC-974: Made getExceptionMappings() protected.
2008-10-01 16:25:20 +00:00
Carlos Sanchez
af3c77f56f
[SEC-997] Remove unnecessary repository
2008-10-01 00:52:52 +00:00
Luke Taylor
4542f00b14
SEC-975: Namespace security syntax does not interpret properties
...
http://jira.springframework.org/browse/SEC-975 . Changed creation of AccessDeniedHandler to use a BeanDefinition to make sure placeholders work OK.
2008-09-12 19:06:53 +00:00
Luke Taylor
5e4634d216
Minor Javadoc improvement.
2008-09-12 14:57:21 +00:00
Luke Taylor
d291def963
Removed invalid comment.
2008-09-12 10:18:40 +00:00
Luke Taylor
df59cb9dcd
Import cleaning.
2008-09-11 14:41:00 +00:00
Luke Taylor
ef0389ae79
SEC-976: Removed checks for presence of core-tiger classes.
2008-09-11 14:37:55 +00:00
Luke Taylor
5b9bb8ba54
[maven-release-plugin] prepare for next development iteration
2008-09-05 19:04:22 +00:00
Luke Taylor
73eed2656d
[maven-release-plugin] prepare release spring-security-parent-2.0.4
2008-09-05 18:57:43 +00:00
Luke Taylor
f935830cdf
Class index generation files
2008-09-05 14:26:26 +00:00
Luke Taylor
ee04b189b7
Updated schema verisions to 2.0.4
2008-09-05 14:23:42 +00:00
Luke Taylor
8661e17df9
OPEN - issue SEC-960: DN Encoding in LDAPUserDetailsManager.changePassword() causes bind errors
...
http://jira.springframework.org/browse/SEC-960 . Replaced call to toUrl() with toString() to prevent URL encoding when setting up principal name for reconnect() in changePassword() method.
2008-09-05 13:49:38 +00:00
Ben Alex
c45b4e0989
SEC-951: Overcome serialization error caused by BasicLookupStrategy failing to modify AccessControlEntryImpl.acl field to the replacement AclImpl (previously old references to StubAclParent were retained).
2008-09-05 05:33:41 +00:00
Ben Alex
0f8ea229c2
SEC-908: Correct issue with BasePermission static initialization failure.
2008-09-05 04:33:52 +00:00
Luke Taylor
5102be3a59
SEC-971: getter for cookieName in AbstractRememberMeServices
...
http://jira.springframework.org/browse/SEC-971 . Added getCookieName() method.
2008-09-04 16:05:34 +00:00
Luke Taylor
de379dc2ac
Converted literals to classname/interfacename docbook tags for easier indexing
2008-09-02 01:05:57 +00:00