diff --git a/baasDOSLcl/src/main/java/com/bankaudit/security/SecurityConfig.java b/baasDOSLcl/src/main/java/com/bankaudit/security/SecurityConfig.java index 4e80613..dc416e7 100644 --- a/baasDOSLcl/src/main/java/com/bankaudit/security/SecurityConfig.java +++ b/baasDOSLcl/src/main/java/com/bankaudit/security/SecurityConfig.java @@ -1,31 +1,13 @@ package com.bankaudit.security; -import java.util.List; - import org.springframework.context.annotation.Bean; import org.springframework.context.annotation.Configuration; import org.springframework.security.config.annotation.web.builders.HttpSecurity; import org.springframework.security.web.SecurityFilterChain; -import org.springframework.web.cors.CorsConfiguration; -import org.springframework.web.cors.CorsConfigurationSource; -import org.springframework.web.cors.UrlBasedCorsConfigurationSource; @Configuration public class SecurityConfig { - @Bean - public CorsConfigurationSource corsConfigurationSource() { - CorsConfiguration config = new CorsConfiguration(); - config.setAllowedOriginPatterns(List.of("http://localhost:4200","https://openledger-sit.finakon.in")); // Don't use "*" with credentials - config.setAllowedMethods(List.of("GET", "POST", "PUT", "DELETE", "OPTIONS")); - config.setAllowedHeaders(List.of("*")); - config.setAllowCredentials(true); // Important if Authorization header is used - - UrlBasedCorsConfigurationSource source = new UrlBasedCorsConfigurationSource(); - source.registerCorsConfiguration("/**", config); - return source; - } - @Bean public SecurityFilterChain securityFilterChain(HttpSecurity http) throws Exception { http