diff --git a/back/src/main/java/com/back/domain/news/news/controller/NewsController.java b/back/src/main/java/com/back/domain/news/news/controller/NewsController.java index 11468997..5c415b13 100644 --- a/back/src/main/java/com/back/domain/news/news/controller/NewsController.java +++ b/back/src/main/java/com/back/domain/news/news/controller/NewsController.java @@ -48,9 +48,6 @@ public RsData getNews(@PathVariable("newsId") Long news if (member == null) { return new RsData<>("401", "로그인 후 이용해주세요.", null); } - if (member.getRole() != Member.Role.ADMIN) { - return new RsData<>("403", "권한이 없습니다.", null); - } boolean hasUserLikedNews = newsLikeService.hasUserLikedNews(member, newsId); News news = newsService.getNewsById(newsId); @@ -68,9 +65,6 @@ public RsData> getNewsList( if (member == null) { return new RsData<>("401", "로그인 후 이용해주세요.", null); } - if (member.getRole() != Member.Role.ADMIN) { - return new RsData<>("403", "권한이 없습니다.", null); - } Page newsPage = newsService.getNewsByPage(page, size); diff --git a/back/src/main/java/com/back/global/security/SecurityConfig.java b/back/src/main/java/com/back/global/security/SecurityConfig.java index c404f18e..4017d85f 100644 --- a/back/src/main/java/com/back/global/security/SecurityConfig.java +++ b/back/src/main/java/com/back/global/security/SecurityConfig.java @@ -31,6 +31,7 @@ public SecurityFilterChain filterChain(HttpSecurity http) throws Exception { .requestMatchers("/actuator/**").permitAll() .requestMatchers("/swagger-ui/**", "/v3/api-docs/**", "/swagger-resources/**").permitAll() .requestMatchers("/ws-chat/**").permitAll() + .requestMatchers("/news/**").permitAll() .anyRequest().authenticated() ) .headers(headers -> headers