OpenID-Connect-Java-Spring-.../openid-connect-server
Mark Janssen b5c298e0ca Remove legacy CSRF protection for approve page
Instead, we rely on the Spring Security CSRF protection, like we already do for the login page. Additionally, we remove the authentication check in`isApproved`, because this is already done by Spring Security (and if not, we have bigger problems to worry about).
2015-10-09 17:09:46 +02:00
..
src Remove legacy CSRF protection for approve page 2015-10-09 17:09:46 +02:00
.gitignore Merge commit '023dd440d4a0e6e59a14c88013837d79a77c74e0' into 1.1-merge 2013-07-29 16:21:20 -04:00
pom.xml [maven-release-plugin] prepare for next development iteration 2015-10-02 18:53:48 -04:00