SEC-1315: Modify HttpSessionSecurityContextRepository to check for anonymous token before creating a session #1559

Closed
spring-issuemaster opened this Issue Dec 6, 2009 · 0 comments

Comments

Projects
None yet
1 participant

Luke Taylor (Migrated from SEC-1315) said:

Currently this method creates a session before the check for an anonymous token. Instead, it should do nothing if the token is anonymous.

spring-issuemaster added this to the 3.0.0.RC2 milestone Feb 5, 2016

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment