[R9] Adjust request matchers
This commit is contained in:
parent
e8bb2e94bd
commit
845fc2f350
@ -28,7 +28,7 @@ public class WebSecurityConfiguration {
|
|||||||
return http.csrf(csrf -> csrf.disable())
|
return http.csrf(csrf -> csrf.disable())
|
||||||
.sessionManagement(sm -> sm.sessionCreationPolicy(SessionCreationPolicy.STATELESS))
|
.sessionManagement(sm -> sm.sessionCreationPolicy(SessionCreationPolicy.STATELESS))
|
||||||
.authorizeHttpRequests(req -> {
|
.authorizeHttpRequests(req -> {
|
||||||
req.requestMatchers(HttpMethod.POST, "/api/auth").permitAll();
|
req.requestMatchers(HttpMethod.POST, "/api/auth/*").permitAll();
|
||||||
req.anyRequest().authenticated();
|
req.anyRequest().authenticated();
|
||||||
})
|
})
|
||||||
.addFilterBefore(authTokenFilter, UsernamePasswordAuthenticationFilter.class)
|
.addFilterBefore(authTokenFilter, UsernamePasswordAuthenticationFilter.class)
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user