Package org.springframework.security.web.session
package org.springframework.security.web.session
Session management filters,
HttpSession events and publisher classes.-
ClassDescriptionFilter required by concurrent session handling package.Published by the
HttpSessionEventPublisherwhen anHttpSessionis created by the containerPublished by theHttpSessionEventPublisherwhen a HttpSession is removed from the containerDeclared in web.xml asPublished by theHttpSessionEventPublisherwhen anHttpSessionID is changed.An adapter ofInvalidSessionStrategytoAccessDeniedHandlerDetermines the behaviour of theSessionManagementFilterwhen an invalid session Id is submitted and detected in theSessionManagementFilter.Performs a redirect to the original request URL when an invalid requested session is detected by theSessionManagementFilter.An event for when aSessionInformationis expired.Determines the behaviour of theConcurrentSessionFilterwhen an expired session is detected in theConcurrentSessionFilter.Detects that a user has been authenticated since the start of the request and, if they have, calls the configuredSessionAuthenticationStrategyto perform any session-related activity such as activating session-fixation protection mechanisms or checking for multiple concurrent logins.Performs a redirect to a fixed URL when an invalid requested session is detected by theSessionManagementFilter.Performs a redirect to a fixed URL when an expired session is detected by theConcurrentSessionFilter.