-
Notifications
You must be signed in to change notification settings - Fork 6.2k
Open
Labels
in: coreAn issue in spring-security-coreAn issue in spring-security-corestatus: ideal-for-contributionAn issue that we actively are looking for someone to help us withAn issue that we actively are looking for someone to help us withtype: enhancementA general enhancementA general enhancementtype: jiraAn issue that was migrated from JIRAAn issue that was migrated from JIRA
Milestone
Description
Victor Polischuk (Migrated from SEC-1894) said:
There is no simple way to setup custom strategy on session invalidation. While SessionManagementFilter has setter for InvalidSessionStrategy - it cannot be used in XML configuration.
It would be great if org.springframework.security.config.http.HttpConfigurationBuilder recognized "invalid-session-strategy-ref" option, like "session-authentication-strategy-ref" which is already implemented.
Related gh-2000
djechelon
Metadata
Metadata
Assignees
Labels
in: coreAn issue in spring-security-coreAn issue in spring-security-corestatus: ideal-for-contributionAn issue that we actively are looking for someone to help us withAn issue that we actively are looking for someone to help us withtype: enhancementA general enhancementA general enhancementtype: jiraAn issue that was migrated from JIRAAn issue that was migrated from JIRA