Merge branch 'refs/heads/Johan'
This commit is contained in:
@@ -16,7 +16,8 @@ public class WebSecurityConfig {
|
|||||||
http.authorizeHttpRequests((requests) -> requests.requestMatchers("/", "/accueil").permitAll()
|
http.authorizeHttpRequests((requests) -> requests.requestMatchers("/", "/accueil").permitAll()
|
||||||
.requestMatchers("/accueil", "/login", "/inscription", "/searchArticle").permitAll()
|
.requestMatchers("/accueil", "/login", "/inscription", "/searchArticle").permitAll()
|
||||||
.requestMatchers("/css/**", "/images/**", "/assets/**", "/img/**", "/js/**").permitAll()
|
.requestMatchers("/css/**", "/images/**", "/assets/**", "/img/**", "/js/**").permitAll()
|
||||||
.requestMatchers("/admin").hasRole("ADMIN")
|
.requestMatchers("/profile").hasRole("MEMBRE")
|
||||||
|
.requestMatchers("/admin").hasAnyRole("MEMBRE", "ADMIN")
|
||||||
.anyRequest().authenticated())
|
.anyRequest().authenticated())
|
||||||
.formLogin((form) -> form.loginPage("/login").defaultSuccessUrl("/", true))
|
.formLogin((form) -> form.loginPage("/login").defaultSuccessUrl("/", true))
|
||||||
.logout((logout) -> logout.clearAuthentication(true).invalidateHttpSession(true)
|
.logout((logout) -> logout.clearAuthentication(true).invalidateHttpSession(true)
|
||||||
|
|||||||
Reference in New Issue
Block a user