2.0.x
web.xml
<http>
auto-config
AuthenticationEntryPoint
<global-method-security>
protect-pointcut
intercept-methods
FilterBasedLdapUserSearch
servlet-api-provision
path-type
lowercase-comparisons
session-fixation-protection
realm
entry-point-ref
access-decision-manager-ref
access-denied-page
once-per-request
create-session
<intercept-url>
pattern
method
access
requires-channel
<port-mappings>
<form-login>
login-page
login-processing-url
default-target-url
always-use-default-target
authentication-failure-url
<http-basic>
<remember-me>
data-source-ref
token-repository-ref
services-ref
key
token-validity-seconds
user-service-ref
<concurrent-session-control>
max-sessions
expired-url
exception-if-maximum-exceeded
session-registry-alias
session-registry-ref
<anonymous>
<x509>
subject-principal-regex
<openid-login>
<logout>
logout-url
logout-success-url
invalidate-session
<custom-authentication-provider>
<authentication-manager>
<secured-annotations>
<jsr250-annotations>
<protect-pointcut>
<custom-after-invocation-provider>
<ldap-server>
<ldap-provider>
<ldap-user-service>