Spring Security SEC-1071: RoleHierarchyImpl: Add DAO-aware subclass.

"Alan B. Canon":https://jira.spring.io/secure/ViewProfile.jspa?name=alancanon said:In DAO-Aware subclass of RoleHierarch...

Spring Security OpenID Connect Oauth2 client only accepts ID Tokens signed with alg:RS256

Describe the bugUnless I'm really missing something (which I won't rule out ;)), the OpenID Connect Oauth2 client will e...

Spring Security Include Port in DNS SRV type lookups

Expected BehaviorJndiDnsResolver should be all I need to discover a service given the domain and service-type.Current Be...

Spring Security Introduce Migration Guidance for Spring Security's OAuth 2.0 Support

Spring Security 5.0 introduced first-class support for OAuth 2.0, yet many aren't aware of this change or they are strug...

Spring Security Override toString() in BearerTokenRequestMatcher

Related to #5446.It would be nice for BearerTokenRequestMatcher to follow suit.Comment From: jgrandja@jzheaux BearerToke...

Spring Security First class test support for spring-security-oauth2-client

SummaryWe should add first-class test support for the spring-security-oauth2-client module[x] #7618 - Add OIDC Login Moc...

Spring Security Is CODE URL parameter really required to be returned from Auth Server

We have a single sign on auth server that's not returning or echoing the code= parameter on the redirect url.Describe th...

Spring Security JeeConfigurer is too inflexible, almost unusable

Expected BehaviorIt is not posible to configure J2eePreAuthenticatedProcessingFilter further using JeeConfigurer.Simple ...

Spring Security WebSessionServerRequestCache should avoid needless blocking operations

Using Spring Cloud Gateway and disabling the request cache we see different behaviour under load in our application: mor...

Spring Security spring-security-core depends on spring-security-crypto

Update Rather than embedding spring-security-crypto, spirng-security-core should just depend on it to avoid this scenari...

Spring Security SEC-1629: Add @WithPermission annotation

Michiel Trimpe (Migrated from SEC-1629) said:Please consider adding the @WithPermission annotation which can be used to ...

Spring Security SEC-1516: Create Security Context Accessor interface

Luke Taylor (Migrated from SEC-1516) said:The current approach for accessing the security context in user code involves ...

Spring Security SEC-1505: Generic-enabled Authentication interface

Keith Donald (Migrated from SEC-1505) said:Something like this would be nice: @RequestMapping(value="/twitter&quo...

Spring Security SEC-1515: Radius based authentication

Ido Tzang (Migrated from SEC-1515) said:I'd love to see some Radius authentication capabilities built into Spring Securi...

Spring Security SEC-1370: Refactor security interceptor hierarchy

Luke Taylor (Migrated from SEC-1370) said:It might be possible to introduce an interface here and generic secured object...

Spring Security SEC-977: CAS gateway feature support

"Martin Buechler":https://jira.spring.io/secure/ViewProfile.jspa?name=mdmd said:Acegi CAS client integration should also...

Spring Security spring-security-core depends on spring-security-crypto

Backport of gh-9767Comment From: rwinchClosed via https://github.com/spring-projects/spring-security/commit/95132d9fe382...

Spring Security SEC-748: Support and basic implementation for CAS single sign out protocol

"Martino Piccinato":https://jira.spring.io/secure/ViewProfile.jspa?name=martino.piccinato said:I've seen in SEC-601 you'...

Spring Security Digest Authentication failed to match

http://www.kenansevindik.com/feature-interaction-problems-and-spring-security/Failed to authenticate the user as I have ...

Spring Security Version missing from projects.spring.io when using https

The version selection box is missing when visiting https://projects.spring.io/spring-security/ with https, however, it's...
上一页 下一页
.