WebSecurityConfiguration.java 1.1 KB

12345678910111213141516171819202122
  1. package cn.hhj.config;
  2. //import org.springframework.context.annotation.Configuration;
  3. //import org.springframework.security.config.annotation.web.builders.HttpSecurity;
  4. //import org.springframework.security.config.annotation.web.configuration.EnableWebSecurity;
  5. //import org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter;
  6. //import org.springframework.security.config.http.SessionCreationPolicy;
  7. //
  8. ////由于使用了其他的安全模块,此处注释
  9. ////@Configuration
  10. ////@EnableWebSecurity
  11. //public class WebSecurityConfiguration extends WebSecurityConfigurerAdapter {
  12. // @Override
  13. // protected void configure(HttpSecurity http) throws Exception {
  14. // //关闭防止跨域攻击,post无需附带crf
  15. // http.csrf().disable();
  16. // // 表示所有的访问都必须认证,认证处理后才可以正常进行
  17. // http.httpBasic().and().authorizeRequests().anyRequest().fullyAuthenticated();
  18. // // 所有的rest服务一定要设置为无状态,以提升操作效率和性能
  19. // http.sessionManagement().sessionCreationPolicy(SessionCreationPolicy.STATELESS);
  20. // }
  21. //}