解决方案 »
- 请问谁知道josso如何登录客户端应用啊
- spring quartz 定时器动态设置定时时间 调用rescheduleJob后执行了多次,为什么
- showmodaldialog 进入action 转到框架页面 问题
- 来了就给分~~~~~~有哪位达人用了JAVA实现的规则引擎和工作流引擎
- ==和equals的区别
- 谁知道开发一个电子商务网站要怎么做?
- ※请问Struts中的ActionErrors怎么才能在页面上显示出来呀?※
- 帮初学者个忙.谢谢!!!!!!!!!!!!!!
- 请问哪里有j2ee帮助文档下载?
- java自定义加密解密算法,该种加密如何解?
- jaspersoft ireport4.6.0 制作折线图问题
- 项目发布报错!
<?xml version="1.0" encoding="UTF-8"?>
<beans xmlns="http://www.springframework.org/schema/beans" xmlns:s="http://www.springframework.org/schema/security" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
xsi:schemaLocation="http://www.springframework.org/schema/beans http://www.springframework.org/schema/beans/spring-beans-3.0.xsd
http://www.springframework.org/schema/security http://www.springframework.org/schema/security/spring-security-3.0.xsd"
default-lazy-init="true"> <s:global-method-security secured-annotations="enabled" /> <s:http use-expressions="true" access-decision-manager-ref="accessDecisionManager" access-denied-page="/403">
<s:intercept-url pattern="/css/**" filters="none" />
<s:intercept-url pattern="/images/**" filters="none" />
<s:intercept-url pattern="/js/**" filters="none" />
<s:intercept-url pattern="/login" filters="none" />
<s:intercept-url pattern="/" access="isAuthenticated()" />
<s:custom-filter position="CONCURRENT_SESSION_FILTER" ref="concurrencyFilter" />
<s:custom-filter before="FILTER_SECURITY_INTERCEPTOR" ref="resourceSecurityInterceptor" />
<s:session-management session-authentication-strategy-ref="sas"/>
<!-- <s:form-login login-page="/login" login-processing-url="/j_security_check" default-target-url="/" authentication-failure-url="/login.jsp?error=1"
always-use-default-target="true" /> -->
<s:form-login login-page="/login" default-target-url="/" authentication-failure-url="/login?error=1"
login-processing-url="/j_security_check"/>
<s:logout invalidate-session="true" logout-success-url="/login" logout-url="/logout" />
</s:http>
<bean id="sessionRegistry" class="org.springframework.security.core.session.SessionRegistryImpl" /> <bean id="sas" class="org.springframework.security.web.authentication.session.ConcurrentSessionControlStrategy">
<constructor-arg name="sessionRegistry" ref="sessionRegistry" />
<property name="maximumSessions" value="1" />
<property name="exceptionIfMaximumExceeded" value="false" />
</bean> <bean id="concurrencyFilter" class="org.springframework.security.web.session.ConcurrentSessionFilter">
<property name="sessionRegistry" ref="sessionRegistry" />
<property name="expiredUrl" value="/login?error=3" />
</bean> <s:authentication-manager alias="authenticationManager">
<s:authentication-provider user-service-ref="userDetailsService">
<s:password-encoder hash="md5" />
</s:authentication-provider>
</s:authentication-manager>