gs-securing-web
gs-securing-web copied to clipboard
Securing a Web Application :: Learn how to protect your web application with Spring Security.
The login does not work. Since no cookie is not set, the Authentication is removed between requests. Solution: Create application.properties and set server.servlet.session.cookie.name
I am working through this guide and as suggested in the guide I built a simple unsecured web application first using Spring Boot 2.0.1.RELEASE version. However, I am getting the...
 Related method is deprecated which used at WebSecurityConfig.java ``` @Bean public UserDetailsService userDetailsService() { UserDetails user = User.withDefaultPasswordEncoder() .username("user") .password("password") .roles("USER") .build(); return new InMemoryUserDetailsManager(user); } ```
In the current version of the example (since [Migrate to Spring Boot 3.0.0](https://github.com/spring-guides/gs-securing-web/commit/81b1cc1f7ea8b18e9f42991e14962751954c8218)), the following is included in `build.gradle`: ``` // Temporary explicit version to fix Thymeleaf bug implementation 'org.thymeleaf.extras:thymeleaf-extras-springsecurity6:3.1.1.RELEASE'...
Update the guide to use the most recent Spring Boot version. Files that require changes are: ``` initial/build.gradle initial/pom.xml complete/build.gradle complete/pom.xml ```
In login page when I key in user & password. The /login page redirected(302) to /sw.js?continue, but then 404 error invoked because there is no such file. I test it...