Spring Security ProxyRestrictionConditionValidator is missing in the OpenSaml4AuthenticationProvider.SAML20AssertionValidators class

ErrorAn error is triggered when trying to validate an Assertion that contains a ProxyRestriction as one of its condition...

Spring Security Fail to insert into acl_entry when build acl twice with reset between the two execution

Describe the bugHi.First of all, a little disclaimer. Is the first time I open an issue in Github, so please be patient ...

Spring Security The MethodAuthorizationDeniedPostProcessor does not exist

Describe the bugThe MethodAuthorizationDeniedPostProcessor described on the setApplicationContext method does not exist

Spring Security Add logging to InitializeAuthenticationProviderBeanManagerConfigurer and InitializeUserDetailsBeanManagerConfigurer

ContextBy default HttpSecurityConfiguration wires an AuthenticationManager with either:- a DaoAuthenticationProvider whe...

Spring Security Refreshing expired OAuth token leads to failing requests with ServerOAuth2AuthorizedClientExchangeFilterFunction using RemoveAuthorizedClientReactiveOAuth2AuthorizationFailureHandler

Hi, I am trying to configure a OAuth 2.0 aware WebClient using ServerOAuth2AuthorizedClientExchangeFilterFunction and ha...

Spring Security OAuth2AuthorizedClientManager in highly concurrent scenarios

Expected BehaviorAuthorizedClientServiceOAuth2AuthorizedClientManager/DefaultOAuth2AuthorizedClientManager should genera...

Spring Security oauth2/authorize prompt [invalid_request] OAuth 2.0 Parameter: state

Describe the bug OAuth2AuthorizationConsentAuthenticationProvider.authenticate Execute to this line of code O...

Spring Security Support for dynamic Token URI in Oauth2 Grant Flow for Federated with spring boot oauth 2 client

Our application supports federation. So we will have to generate token from authentication server located in multiple re...

Spring Security Check is refresh token expired in PasswordOAuth2AuthorizedClientProvider

When using the following configuration:OAuth2AuthorizedClientProvider authorizedClientProvider = OAuth2AuthorizedClientP...

Spring Security JSR250 support for web-flux

SummaryI'm migrating an MVC application to web-flux. Spring security supports the annotations of JSR250 (RolesAllowed, ....

Spring Security Documentation links for 6.2 are broken

Describe the bugLinks for reference documentation version 6.2, such as https://docs.spring.io/spring-security/reference/...

Spring Security ArrayIndexOutOfBoundsException thrown when validating csrf token using CookieCsrfTokenRepository.In Version 6.2.3

Describe the bugArrayIndexOutOfBoundsException thrown when validating csrf token using CookieCsrfTokenRepositoryA clear ...

Spring Security Spring security 6.2

It seems like you're encountering an issue with Spring Security version 6.2.4. You mentioned that you're able to registe...

Spring Security Redirection not happening to original request after proxy ticket validation

I am using CAS proxy tickets in my applications, the proxy ticket receiving application (from which I am expecting resou...

Spring Security CasAuthenticationFilter.CAS_STATEFUL_IDENTIFIER missing

Describe the bugCan't create a UsernamePasswordAuthenticationToken with CAS authentication, there's no CasAuthentication...

Spring Security Allow preserving original error code for error dispatch

Right now it isn't possible to get the original status code for an error dispatch in certain cases without opening up th...

Spring Security Support OAuth2 client authentication using X.509 certificate

The client should have the ability to authenticate with the Authorization Server using X.509 certificate.See RFC 8705 OA...

Spring Security Discuss Documentation Policy

We should consider how we want to ensure docs are up to date going forward.One way is to add a status: needs-documentati...

Spring Security Revisit Contribution Doc

The contribution doc needs updating to reflect changes in our process as well as be more assistive to those formulating ...

Spring Security Document Custom RelayState Parameter Resolution

I want to set the RelayState parameter so that I can pass a redirectUrl received at runtime from a different request. Th...
上一页 下一页
.