Browse Source

chore: 优化授权

master
wangxiang 2 years ago
parent
commit
c1b5b8f6bd
  1. 2
      kicc-auth/src/main/java/com/cloud/kicc/auth/config/WebSecurityConfiguration.java
  2. 11
      kicc-common/kicc-common-security/src/main/java/com/cloud/kicc/common/security/exp/KiccLocalResourceServerTokenServices.java

2
kicc-auth/src/main/java/com/cloud/kicc/auth/config/WebSecurityConfiguration.java

@ -51,7 +51,7 @@ public class WebSecurityConfiguration extends WebSecurityConfigurerAdapter {
.invalidateHttpSession(true) .invalidateHttpSession(true)
.and() .and()
.authorizeRequests() .authorizeRequests()
.antMatchers("/token/**", "/actuator/**", "/mobile/**", "/ureport/**") .antMatchers("/token/**")
.permitAll() .permitAll()
.anyRequest() .anyRequest()
.authenticated() .authenticated()

11
kicc-common/kicc-common-security/src/main/java/com/cloud/kicc/common/security/exp/KiccLocalResourceServerTokenServices.java

@ -1,17 +1,10 @@
package com.cloud.kicc.common.security.exp; package com.cloud.kicc.common.security.exp;
import cn.hutool.extra.spring.SpringUtil;
import com.cloud.kicc.common.security.exception.UnauthorizedException;
import com.cloud.kicc.common.data.entity.KiccUser; import com.cloud.kicc.common.data.entity.KiccUser;
import com.cloud.kicc.common.security.service.KiccUserDetailsService;
import lombok.RequiredArgsConstructor; import lombok.RequiredArgsConstructor;
import org.springframework.core.Ordered;
import org.springframework.security.authentication.InternalAuthenticationServiceException;
import org.springframework.security.authentication.UsernamePasswordAuthenticationToken; import org.springframework.security.authentication.UsernamePasswordAuthenticationToken;
import org.springframework.security.core.Authentication; import org.springframework.security.core.Authentication;
import org.springframework.security.core.AuthenticationException; import org.springframework.security.core.AuthenticationException;
import org.springframework.security.core.userdetails.UserDetails;
import org.springframework.security.core.userdetails.UsernameNotFoundException;
import org.springframework.security.oauth2.common.OAuth2AccessToken; import org.springframework.security.oauth2.common.OAuth2AccessToken;
import org.springframework.security.oauth2.common.exceptions.InvalidTokenException; import org.springframework.security.oauth2.common.exceptions.InvalidTokenException;
import org.springframework.security.oauth2.provider.OAuth2Authentication; import org.springframework.security.oauth2.provider.OAuth2Authentication;
@ -19,10 +12,6 @@ import org.springframework.security.oauth2.provider.OAuth2Request;
import org.springframework.security.oauth2.provider.token.ResourceServerTokenServices; import org.springframework.security.oauth2.provider.token.ResourceServerTokenServices;
import org.springframework.security.oauth2.provider.token.TokenStore; import org.springframework.security.oauth2.provider.token.TokenStore;
import java.util.Comparator;
import java.util.Map;
import java.util.Optional;
/** /**
*<p> *<p>
* 本地资源服务器令牌服务 * 本地资源服务器令牌服务

Loading…
Cancel
Save