Commit Graph

2738 Commits

Author SHA1 Message Date
Sebastian Sdorra
ddca155c8d exclude unused dependencies 2012-10-11 16:25:56 +02:00
Sebastian Sdorra
b2f28a3ece javadoc for Tokens class 2012-10-11 16:14:22 +02:00
Sebastian Sdorra
6728758637 do not store request and respone in authentication token 2012-10-11 16:12:06 +02:00
Sebastian Sdorra
352ce23082 remove token from PrincipalCollection because it is also stored in the session 2012-10-11 15:51:11 +02:00
Sebastian Sdorra
3999a4daf5 store authentication token as principal 2012-10-07 17:57:14 +02:00
Sebastian Sdorra
50ce50ca1b allow execution of administration tasks without an active http session 2012-10-06 18:56:30 +02:00
Sebastian Sdorra
e89195f6db improve security of administration context 2012-10-06 18:35:09 +02:00
Sebastian Sdorra
7f5f34eddc do not store non valid users 2012-10-04 11:18:10 +02:00
Sebastian Sdorra
b85a92596d fix wrong cast 2012-10-04 11:15:14 +02:00
Sebastian Sdorra
40ae526620 added hack for missing user events 2012-10-04 11:14:46 +02:00
Sebastian Sdorra
8e95f3d6bf indent 2012-10-04 11:09:12 +02:00
Sebastian Sdorra
c2f34ffa6e user user dao instead of user manager to pass permission checks 2012-10-04 11:00:12 +02:00
Sebastian Sdorra
4d3c12c805 remove current user check, because it does not work with apache shiro 2012-10-04 10:50:57 +02:00
Sebastian Sdorra
468f1a9b4c improve logging 2012-10-04 10:50:19 +02:00
Sebastian Sdorra
328867aae1 added some comments 2012-10-03 14:01:00 +02:00
Sebastian Sdorra
ac683ad8a9 improve logging 2012-10-03 12:49:12 +02:00
Sebastian Sdorra
bff2b74c4e remove missing import 2012-10-02 16:27:47 +02:00
Sebastian Sdorra
1a41802a1f fix bug in AuthorizationInfo cache 2012-10-02 16:27:17 +02:00
Sebastian Sdorra
9157457206 use joiner instead of while loop 2012-10-02 16:21:53 +02:00
Sebastian Sdorra
f648f01676 realm should be a singleton 2012-10-02 16:16:13 +02:00
Sebastian Sdorra
f29bb6d983 create global object for the anonymous user 2012-10-02 16:02:44 +02:00
Sebastian Sdorra
7463e0f16f fix wrong status codes with enabled anonymous access 2012-10-02 15:58:49 +02:00
Sebastian Sdorra
99550d0423 remove unused import 2012-10-01 09:44:00 +02:00
Sebastian Sdorra
b47929adfc fix logout with enabled anonymous access 2012-09-30 17:53:05 +02:00
Sebastian Sdorra
9b98ab78c6 fix license headers 2012-09-13 15:47:13 +02:00
Sebastian Sdorra
492fb08558 fix anonymous access 2012-09-13 15:28:46 +02:00
Sebastian Sdorra
f33a32a625 improve logging of client util 2012-09-13 15:28:08 +02:00
Sebastian Sdorra
2e674beef2 added test for repository permissions 2012-09-02 17:58:23 +02:00
Sebastian Sdorra
752b323dd6 fix typo in unit test 2012-09-02 17:52:13 +02:00
Sebastian Sdorra
8bd8371679 added test for repository permission resolver 2012-09-02 17:51:32 +02:00
Sebastian Sdorra
53d44fdfc5 permission type enum is always upper case 2012-09-02 17:48:09 +02:00
Sebastian Sdorra
65826e749e implement administration context with apache shiro 2012-08-30 16:49:46 +02:00
Sebastian Sdorra
2a48dcf4d5 fix bug with group permissions 2012-08-30 16:34:43 +02:00
Sebastian Sdorra
1749feaf63 removed unused field 2012-08-30 16:21:31 +02:00
Sebastian Sdorra
f03517c445 remove unused imports 2012-08-30 16:20:45 +02:00
Sebastian Sdorra
7a430f5db6 groupnames and repositorypermissions should be final 2012-08-30 16:15:55 +02:00
Sebastian Sdorra
fc2e3f7c81 fix wrong return code 2012-08-30 13:42:17 +02:00
Sebastian Sdorra
a5d0a41222 fix typo in log message 2012-08-30 13:26:45 +02:00
Sebastian Sdorra
4a9d14b708 mark security context as deprecated and use shiro apis instead 2012-08-30 13:20:26 +02:00
Sebastian Sdorra
7d0980605e do not use security context in core plugins and samples 2012-08-30 12:08:16 +02:00
Sebastian Sdorra
c40cbeb4d6 mark most of the PermissionUtil methods as deprecated and ignore permission util tests 2012-08-30 11:54:36 +02:00
Sebastian Sdorra
5dde369927 use SubjectAwareExecutorService for repository hooks 2012-08-30 11:02:49 +02:00
Sebastian Sdorra
38d57ff5cd use apache shiro api for permission filter sub classes 2012-08-30 10:48:18 +02:00
Sebastian Sdorra
909c1a6c6c use shiro api for permission checks in the repository api 2012-08-30 10:43:56 +02:00
Sebastian Sdorra
3b0482657a fix missing group permission check 2012-08-30 10:40:19 +02:00
Sebastian Sdorra
81060af003 replace groups class with groupnames 2012-08-30 10:38:56 +02:00
Sebastian Sdorra
c7f11a8203 use shiro api for permission filter 2012-08-30 09:23:18 +02:00
Sebastian Sdorra
c161e54c6b enable trace logging for development 2012-08-29 19:05:30 +02:00
Sebastian Sdorra
1ab5e5610d fix wrong initializing order 2012-08-29 19:05:11 +02:00
Sebastian Sdorra
230fd1a4fb show authentication stacktrace only on trace log level 2012-08-29 18:09:09 +02:00