SEC-1315: Modify HttpSessionSecurityContextRepository to check for anonymous token before creating a session #1559

spring-issuemaster opened this Issue Dec 6, 2009 · 0 comments


None yet

1 participant


Luke Taylor (Migrated from SEC-1315) said:

Currently this method creates a session before the check for an anonymous token. Instead, it should do nothing if the token is anonymous.

@spring-issuemaster spring-issuemaster added this to the 3.0.0.RC2 milestone Feb 5, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment