hi every one
I'm new in spring-security
i can secure (authentication and authorization) with spring security
the question is if i put some important data except(username,pass,...)in session after authentication in program is it
secure ? or i should put this data in SecurityContextHolder? and how to set these information during program not in userDetails at start of program ?
and if secure how spring do it?
main question is "if I use my own session will Spring Security protect it?"
regard
sina


Reply With Quote
