add CsrfAccessDeniedHandler make 400

This commit is contained in:
2025-07-31 22:41:54 +02:00
parent 61f215c3c7
commit e2b3448f97
2 changed files with 17 additions and 0 deletions

View File

@@ -1,5 +1,6 @@
package ltd.hlaeja.configuration
import ltd.hlaeja.security.handler.CsrfAccessDeniedHandler
import org.springframework.context.annotation.Bean
import org.springframework.context.annotation.Configuration
import org.springframework.http.HttpStatus.FOUND
@@ -15,6 +16,7 @@ class SecurityConfiguration {
@Bean
fun securityWebFilterChain(serverHttpSecurity: ServerHttpSecurity): SecurityWebFilterChain = serverHttpSecurity
.csrf { it.accessDeniedHandler(CsrfAccessDeniedHandler()) }
.authorizeExchange(::authorizeExchange)
.formLogin(::formLogin)
.logout(::logout)