Hi again guys,
I'm still suffering from the problem with passed authentication but no authorization. I noticed that after authentication has been successfully performed the debug log says that Authentication object is not found:
I configured everything by the book, how comes it disappears?Code:DEBUG 2009-12-20 16:27:00,740 (org.springframework.security.intercept.web.DefaultFilterInvocationDefinitionSource) - Candidate is: '/internalapplication/fetch_site_configurations.htm'; pattern is /internalapplication/**; matched=true DEBUG 2009-12-20 16:27:00,740 (org.springframework.security.intercept.AbstractSecurityInterceptor) - Secure object: FilterInvocation: URL: /internalapplication/fetch_site_configurations.htm; ConfigAttributes: [ROLE_RLE-US-IT DEVELOPMENT-FORMS-STAFF] DEBUG 2009-12-20 16:27:00,740 (org.springframework.web.context.support.XmlWebApplicationContext) - Publishing event in context [org.springframework.web.context.support.XmlWebApplicationContext@2da0700]: org.springframework.security.event.authorization.AuthenticationCredentialsNotFoundEvent[source=FilterInvocation: URL: /internalapplication/fetch_site_configurations.htm] DEBUG 2009-12-20 16:27:00,740 (org.springframework.security.ui.ExceptionTranslationFilter) - Authentication exception occurred; redirecting to authentication entry point org.springframework.security.AuthenticationCredentialsNotFoundException: An Authentication object was not found in the SecurityContext at org.springframework.security.intercept.AbstractSecurityInterceptor.credentialsNotFound(AbstractSecurityInterceptor.java:342) at org.springframework.security.intercept.AbstractSecurityInterceptor.beforeInvocation(AbstractSecurityInterceptor.java:254) at org.springframework.security.intercept.web.FilterSecurityInterceptor.invoke(FilterSecurityInterceptor.java:106) at org.springframework.security.intercept.web.FilterSecurityInterceptor.doFilter(FilterSecurityInterceptor.java:83) at org.springframework.security.util.FilterChainProxy$VirtualFilterChain.doFilter(FilterChainProxy.java:390) at org.springframework.security.ui.SessionFixationProtectionFilter.doFilterHttp(SessionFixationProtectionFilter.java:52) at org.springframework.security.ui.SpringSecurityFilter.doFilter(SpringSecurityFilter.java:53)
Could my Weblogic 10 server interfere with the Spring authorization?


