Spring Security in Action, Second Edition
- 440 stránek
- 16 hodin čtení
Design and develop secure Spring applications from the outset with insights from this comprehensive guide. Learn essential security skills such as implementing and customizing authentication and authorization, setting up OAuth 2/OpenID Connect systems, and configuring CRSF and CORS. This revised edition is fully updated for Spring Boot 3 and reflects the latest patterns in application-level security, demonstrating how Spring Security streamlines the security process. Through code samples and real-world examples, gain hands-on experience in safeguarding your applications against common threats like injection attacks and inadequate monitoring. Spring Security is crucial for Java developers aiming to master authentication and authorization within Spring applications. By embracing "secure by design" principles and utilizing Spring Security's built-in features, you can effectively protect your applications from data breaches and unauthorized access. This guide reveals the techniques and tools necessary to defend against attacks, including building your own authorization server, managing system users, configuring secure endpoints, and preventing cross-site scripting and request forgery. Tailored for experienced Java and Spring developers, this edition also explores the OAuth 2/OpenID Connect stack and details SecurityFilterChain for security configuration. Don’t leave security as an afterthought—begin protecting your applications
