1
0
mirror of synced 2026-08-05 01:36:56 +00:00

Merge branch '7.0.x'

This commit is contained in:
Josh Cummings
2026-02-05 17:23:08 -07:00
@@ -12,7 +12,7 @@ OWASP places factors into the following categories:
== `FactorGrantedAuthority`
At the time of authentication, Spring Security's authentication mechanisms add a javadoc:org.springframework.security.core.authority.FactorGrantedAuthority[].
For example, when a user authenticates using a password a `FactorGrantedAuthority` with the `authority` of `FactorGrantedAuthority.PASSWORD_AUTHORITY` is automatically added to the `Authentiation`.
For example, when a user authenticates using a password a `FactorGrantedAuthority` with the `authority` of `FactorGrantedAuthority.PASSWORD_AUTHORITY` is automatically added to the `Authentication`.
In order to require MFA with Spring Security you must:
- Specify an authorization rule that requires multiple factors