Package org.springframework.security.web.server.csrf
-
Interface Summary Interface Description CsrfToken ServerCsrfTokenRepository An API to allow changing the method in which the expectedCsrfToken
is associated to theServerWebExchange
. -
Class Summary Class Description CookieServerCsrfTokenRepository AServerCsrfTokenRepository
that persists the CSRF token in a cookie named "XSRF-TOKEN" and reads from the header "X-XSRF-TOKEN" following the conventions of AngularJS.CsrfServerLogoutHandler CsrfServerLogoutHandler
is in charge of removing theCsrfToken
upon logout.CsrfWebFilter Applies CSRF protection using a synchronizer token pattern.DefaultCsrfToken A CSRF token that is used to protect against CSRF attacks.WebSessionServerCsrfTokenRepository -
Exception Summary Exception Description CsrfException Thrown when an invalid or missingCsrfToken
is found in the HttpServletRequest