Update Spring Security to 5.7
Closes gh-10509
This commit is contained in:
@@ -6,4 +6,4 @@ This appendix provides a reference to the elements available in the security nam
|
||||
If you haven't used the namespace before, please read the xref:servlet/configuration/xml-namespace.adoc#ns-config[introductory chapter] on namespace configuration, as this is intended as a supplement to the information there.
|
||||
Using a good quality XML editor while editing a configuration based on the schema is recommended as this will provide contextual information on which elements and attributes are available as well as comments explaining their purpose.
|
||||
The namespace is written in https://relaxng.org/[RELAX NG] Compact format and later converted into an XSD schema.
|
||||
If you are familiar with this format, you may wish to examine the https://raw.githubusercontent.com/spring-projects/spring-security/main/config/src/main/resources/org/springframework/security/config/spring-security-5.6.rnc[schema file] directly.
|
||||
If you are familiar with this format, you may wish to examine the https://raw.githubusercontent.com/spring-projects/spring-security/main/config/src/main/resources/org/springframework/security/config/spring-security-5.7.rnc[schema file] directly.
|
||||
|
||||
@@ -1,57 +1,5 @@
|
||||
[[new]]
|
||||
= What's New in Spring Security 5.6
|
||||
= What's New in Spring Security 5.7
|
||||
|
||||
Spring Security 5.6 provides a number of new features.
|
||||
Spring Security 5.7 provides a number of new features.
|
||||
Below are the highlights of the release.
|
||||
|
||||
* All new https://antora.org/[Antora] based https://docs.spring.io/spring-security/[documentation].
|
||||
|
||||
[[whats-new-servlet]]
|
||||
== Servlet
|
||||
* Core
|
||||
|
||||
** Introduced https://github.com/spring-projects/spring-security/issues/10226[`SecurityContextChangedListener`]
|
||||
** Improved https://github.com/spring-projects/spring-security/pull/10279[Method Security Logging]
|
||||
|
||||
* Configuration
|
||||
|
||||
** Introduced https://github.com/spring-projects/spring-security/pull/9630[`AuthorizationManager`] for method security
|
||||
|
||||
* SAML 2.0 Service Provider
|
||||
|
||||
** Added xref:servlet/saml2/logout.adoc[SAML 2.0 Single Logout Support]
|
||||
** Added xref:servlet/saml2/login/authentication-requests.adoc#servlet-saml2login-store-authn-request[Saml2AuthenticationRequestRepository]
|
||||
** Added xref:servlet/saml2/login/overview.adoc#servlet-saml2login-rpr-relyingpartyregistrationresolver[`RelyingPartyRegistrationResolver`]
|
||||
** Improved ``Saml2LoginConfigurer``'s handling of https://github.com/spring-projects/spring-security/issues/10268[`Saml2AuthenticationTokenConverter`]
|
||||
|
||||
|
||||
* OAuth 2.0 Login
|
||||
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10041[`Converter` for `Authentication` result]
|
||||
|
||||
* OAuth 2.0 Client
|
||||
|
||||
** Improved https://github.com/spring-projects/spring-security/pull/9791[Client Credentials encoding]
|
||||
** Improved https://github.com/spring-projects/spring-security/pull/9779[Access Token Response parsing]
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10155[custom grant types support] for Authorization Requests
|
||||
** Introduced https://github.com/spring-projects/spring-security/pull/9208[JwtEncoder]
|
||||
|
||||
* Testing
|
||||
|
||||
** Added support to https://github.com/spring-projects/spring-security/pull/9737[propagate the TestSecurityContextHolder to SecurityContextHolder]
|
||||
|
||||
[[whats-new-webflux]]
|
||||
== WebFlux
|
||||
|
||||
* OAuth 2.0 Login
|
||||
|
||||
** Improved xref:reactive/oauth2/login/index.adoc[Reactive OAuth 2.0 Login Documentation]
|
||||
|
||||
* OAuth 2.0 Client
|
||||
|
||||
** Improved https://github.com/spring-projects/spring-security/pull/9791[Client Credentials encoding]
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10131[custom headers support] for Access Token Requests
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10269[custom response parsing] for Access Token Requests
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10327[jwt-bearer Grant Type support] for Access Token Requests
|
||||
** Added https://github.com/spring-projects/spring-security/pull/10336[JWT Client Authentication support] for Access Token Requests
|
||||
** Improved xref:reactive/oauth2/client/index.adoc[Reactive OAuth 2.0 Client Documentation]
|
||||
|
||||
Reference in New Issue
Block a user