Announcement Announcement Module
No announcement yet.
Refreshing Granted Authorities with PreAuth Page Title Module
Move Remove Collapse
This topic is closed
Conversation Detail Module
  • Filter
  • Time
  • Show
Clear All
new posts

  • Refreshing Granted Authorities with PreAuth


    I'm using a PreAuth filter (based off AbstractPreAuthenticatedProcessingFilter) and retrieving the granted authorities from LDAP. This all works fine, however I have a slight problem in that if a user gets added / removed from an ldap group, then the authorities list is fixed on the cached Authentication instance and never gets updated.

    I've had a few ideas based on wrapping either the UserDetails or Authentication instances involved with an impl which calls back to the class that gets the GAs from LDAP if it's over N minutes since they were last retrieved, but this doesn't feel all that elegant.

    Is there a "correct" way to tackle this?