Skip to content

Commit 2595094

Browse files
committed
Disable CSRF
1 parent 27c0bc9 commit 2595094

1 file changed

Lines changed: 5 additions & 1 deletion

File tree

src/main/java/nl/b3p/planmonitorwonen/api/security/ApiSecurityConfig.java

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,6 +13,8 @@
1313
import org.springframework.context.annotation.Configuration;
1414
import org.springframework.security.config.annotation.web.builders.HttpSecurity;
1515
import org.springframework.security.config.annotation.web.configuration.EnableWebSecurity;
16+
import org.springframework.http.HttpMethod;
17+
import org.springframework.security.config.annotation.web.configurers.AbstractHttpConfigurer;
1618
import org.springframework.security.config.http.SessionCreationPolicy;
1719
import org.springframework.security.web.SecurityFilterChain;
1820
import org.springframework.security.web.savedrequest.NullRequestCache;
@@ -27,7 +29,9 @@ public class ApiSecurityConfig {
2729
@Bean
2830
public SecurityFilterChain apiFilterChain(HttpSecurity http) throws Exception {
2931
RequestCache nullRequestCache = new NullRequestCache();
30-
http.sessionManagement(session -> session.sessionCreationPolicy(SessionCreationPolicy.NEVER))
32+
http
33+
.csrf(AbstractHttpConfigurer::disable)
34+
.sessionManagement(session -> session.sessionCreationPolicy(SessionCreationPolicy.NEVER))
3135
.requestCache((cache) -> cache.requestCache(nullRequestCache))
3236
.exceptionHandling(httpSecurityExceptionHandlingConfigurer ->
3337
httpSecurityExceptionHandlingConfigurer.authenticationEntryPoint(

0 commit comments

Comments
 (0)