im doign an audit of spring security as a project to understand how and where it supports persistent, durable state in a SQL database and what the .sql files provided out of the box look like.
coudl there be a chance to make it easy to initalize-schema = always in spring boot for the various tranches?
first scan reveals the following candidates:
UserDetailsService (implemented by JdbcDaoImpl) requires core/.../userdetails/jdbc/users.ddl
UserDetailsManager, GroupManager implemented by JdbcUserDetailsManager requires te schema documented in docs/modules/ROOT/pages/servlet/appendix/database-schema.adoc:60
- PersistentTokenRepository
implemented byJdbcTokenRepositoryImplrequires theCREATE_TABLE_SQLconstant atrememberme/JdbcTokenRepositoryImpl.java:42`
OneTimeTokenService implemented by JdbcOneTimeTokenService requires core/.../core/ott/jdbc/one-time-tokens-schema.sql
AclService and MutableAclService implemented by JdbcAclService and JdbcMutableAclService requires the .sql files at acl/src/main/resources/createAclSchema*.sql(this one is in the best shape of everything)
LookupStrategy implemented by BasicLookupStrategy uses the same ACL schema as above
OAuth2AuthorizedClientService implemented by JdbcOAuth2AuthorizedClientService requires oauth2-client/.../oauth2-client-schema.sql and -postgres)
ReactiveOAuth2AuthorizedClientService implemented by R2dbcReactiveOAuth2AuthorizedClientService requires oauth2-client-schema.sql (same as for blocking equivlaent)
RegisteredClientRepository implemented by JdbcRegisteredClientRepository requires .../authorization/client/oauth2-registered-client-schema.sql
OAuth2AuthorizationService implemented by JdbcOAuth2AuthorizationService requires .../authorization/oauth2-authorization-schema.sql
OAuth2AuthorizationConsentService implemented by JdbcOAuth2AuthorizationConsentService requires .../authorization/oauth2-authorization-consent-schema.sql
AssertingPartyMetadataRepository implemented by JdbcAssertingPartyMetadataRepository requires saml2-asserting-party-metadata-schema.sql ( and -postgres.sql variant)
im doign an audit of spring security as a project to understand how and where it supports persistent, durable state in a SQL database and what the .sql files provided out of the box look like.
coudl there be a chance to make it easy to
initalize-schema = alwaysin spring boot for the various tranches?first scan reveals the following candidates:
UserDetailsService(implemented byJdbcDaoImpl) requirescore/.../userdetails/jdbc/users.ddlUserDetailsManager,GroupManagerimplemented byJdbcUserDetailsManagerrequires te schema documented indocs/modules/ROOT/pages/servlet/appendix/database-schema.adoc:60implemented byJdbcTokenRepositoryImplrequires theCREATE_TABLE_SQLconstant atrememberme/JdbcTokenRepositoryImpl.java:42`OneTimeTokenServiceimplemented byJdbcOneTimeTokenServicerequirescore/.../core/ott/jdbc/one-time-tokens-schema.sqlAclServiceandMutableAclServiceimplemented byJdbcAclServiceandJdbcMutableAclServicerequires the.sqlfiles atacl/src/main/resources/createAclSchema*.sql(this one is in the best shape of everything)LookupStrategyimplemented byBasicLookupStrategyuses the same ACL schema as aboveOAuth2AuthorizedClientServiceimplemented byJdbcOAuth2AuthorizedClientServicerequiresoauth2-client/.../oauth2-client-schema.sqland-postgres)ReactiveOAuth2AuthorizedClientServiceimplemented byR2dbcReactiveOAuth2AuthorizedClientServicerequiresoauth2-client-schema.sql(same as for blocking equivlaent)RegisteredClientRepositoryimplemented byJdbcRegisteredClientRepositoryrequires.../authorization/client/oauth2-registered-client-schema.sqlOAuth2AuthorizationServiceimplemented byJdbcOAuth2AuthorizationServicerequires.../authorization/oauth2-authorization-schema.sqlOAuth2AuthorizationConsentServiceimplemented byJdbcOAuth2AuthorizationConsentServicerequires.../authorization/oauth2-authorization-consent-schema.sqlAssertingPartyMetadataRepositoryimplemented byJdbcAssertingPartyMetadataRepositoryrequiressaml2-asserting-party-metadata-schema.sql( and-postgres.sqlvariant)