Class ChangeSessionIdAuthenticationStrategy
java.lang.Object
org.springframework.security.web.authentication.session.AbstractSessionFixationProtectionStrategy
org.springframework.security.web.authentication.session.ChangeSessionIdAuthenticationStrategy
- All Implemented Interfaces:
- org.springframework.beans.factory.Aware,- org.springframework.context.ApplicationEventPublisherAware,- SessionAuthenticationStrategy
public final class ChangeSessionIdAuthenticationStrategy
extends AbstractSessionFixationProtectionStrategy
Uses 
HttpServletRequest.changeSessionId() to protect against session fixation
 attacks. This is the default implementation.- Since:
- 3.2
- 
Nested Class SummaryNested classes/interfaces inherited from class org.springframework.security.web.authentication.session.AbstractSessionFixationProtectionStrategyAbstractSessionFixationProtectionStrategy.NullEventPublisher
- 
Field SummaryFields inherited from class org.springframework.security.web.authentication.session.AbstractSessionFixationProtectionStrategylogger
- 
Constructor SummaryConstructors
- 
Method SummaryMethods inherited from class org.springframework.security.web.authentication.session.AbstractSessionFixationProtectionStrategyonAuthentication, onSessionChange, setAlwaysCreateSession, setApplicationEventPublisher
- 
Constructor Details- 
ChangeSessionIdAuthenticationStrategypublic ChangeSessionIdAuthenticationStrategy()
 
-