Changeset 0f3afae


Ignore:
Timestamp:
01/28/25 00:49:06 (3 months ago)
Author:
Nikola Jordanoski <nikolaj_koko@…>
Branches:
master
Children:
ac41d70
Parents:
bf28e50
Message:

Small security optimization

Location:
ReserveNGo-backend/src/main/java/mk/ukim/finki/it/reservengo
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • ReserveNGo-backend/src/main/java/mk/ukim/finki/it/reservengo/config/WebSecurityConfig.java

    rbf28e50 r0f3afae  
    44import org.springframework.context.annotation.Bean;
    55import org.springframework.context.annotation.Configuration;
     6import org.springframework.lang.NonNull;
    67import org.springframework.security.authentication.AuthenticationProvider;
    78import org.springframework.security.config.annotation.method.configuration.EnableMethodSecurity;
     
    5758        return new WebMvcConfigurer() {
    5859            @Override
    59             public void addCorsMappings(CorsRegistry registry) {
    60                 registry.addMapping("/**")
     60            public void addCorsMappings(@NonNull CorsRegistry registry) {
     61                registry.addMapping("/api/**")
    6162                        .allowedOrigins("http://localhost:5173")
    62                         .allowedMethods("GET", "POST", "PUT", "DELETE", "OPTIONS")
     63                        .allowedMethods("GET", "POST", "PUT", "DELETE", "OPTIONS", "PATCH", "HEAD")
    6364                        .allowedHeaders("*")
    6465                        .allowCredentials(true);
  • ReserveNGo-backend/src/main/java/mk/ukim/finki/it/reservengo/service/impl/JWTServiceImpl.java

    rbf28e50 r0f3afae  
    4848    @Override
    4949    public String generateToken(User user) {
    50         return Jwts.builder().setSubject(user.getUsername())
    51                 .claim("name", user.getFirstName())
     50        return Jwts.builder()
     51                .setSubject(user.getUsername())
    5252                .claim("role", user.getUserRole())
    5353                .claim("id", user.getId())
Note: See TracChangeset for help on using the changeset viewer.