HttpSession events and publisher classes.See: Description
| Interface | Description | 
|---|---|
| InvalidSessionStrategy | Determines the behaviour of the  SessionManagementFilterwhen an invalid session
 Id is submitted and detected in theSessionManagementFilter. | 
| SessionInformationExpiredStrategy | Determines the behaviour of the  ConcurrentSessionFilterwhen an expired session
 is detected in theConcurrentSessionFilter. | 
| Class | Description | 
|---|---|
| ConcurrentSessionFilter | Filter required by concurrent session handling package. | 
| HttpSessionCreatedEvent | Published by the  HttpSessionEventPublisherwhen anHttpSessionis
 created by the container | 
| HttpSessionDestroyedEvent | Published by the  HttpSessionEventPublisherwhen a HttpSession is removed from
 the container | 
| HttpSessionEventPublisher | Declared in web.xml as | 
| HttpSessionIdChangedEvent | Published by the  HttpSessionEventPublisherwhen anHttpSessionID
 is changed. | 
| InvalidSessionAccessDeniedHandler | An adapter of  InvalidSessionStrategytoAccessDeniedHandler | 
| SessionInformationExpiredEvent | An event for when a  SessionInformationis expired. | 
| SessionManagementFilter | Detects that a user has been authenticated since the start of the request and, if they
 have, calls the configured  SessionAuthenticationStrategyto perform any
 session-related activity such as activating session-fixation protection mechanisms or
 checking for multiple concurrent logins. | 
| SimpleRedirectInvalidSessionStrategy | Performs a redirect to a fixed URL when an invalid requested session is detected by the
  SessionManagementFilter. | 
| SimpleRedirectSessionInformationExpiredStrategy | Performs a redirect to a fixed URL when an expired session is detected by the
  ConcurrentSessionFilter. | 
HttpSession events and publisher classes.