반응형

스프링시큐리티 적용후 개발을 이어가는데 403에러가 발생.. 난감...

해결방법은 http.csrf.disable() 해주라는데 이건 deprecated...

 

http.csrf(AbstractHttpConfigurer::disable) 하면 해결 가

@EnableWebSecurity
@AllArgsConstructor
@Configuration
public class SpringSecurity {

    /**
     * 패스워드 암호화
     * */
    @Bean
    public PasswordEncoder getPasswordEncoder() {
        return new BCryptPasswordEncoder();
    }

    @Bean
    public SecurityFilterChain securityFilterChain(HttpSecurity http) throws Exception {
        http.authorizeRequests((authorizeRequests) ->
                authorizeRequests.anyRequest().permitAll());

        http.csrf(AbstractHttpConfigurer::disable);
        return http.build();
    }

}
반응형