From 9bdf453e4d0a5f346f1486a4141eb36b3fc6ee6d Mon Sep 17 00:00:00 2001 From: Daniel Gerhardt <daniel.gerhardt@mni.thm.de> Date: Wed, 6 Aug 2014 13:28:07 +0200 Subject: [PATCH] Disable CSRF filter --- src/main/java/de/thm/arsnova/config/SecurityConfig.java | 1 + 1 file changed, 1 insertion(+) diff --git a/src/main/java/de/thm/arsnova/config/SecurityConfig.java b/src/main/java/de/thm/arsnova/config/SecurityConfig.java index a00bcfd6..1a357e0c 100644 --- a/src/main/java/de/thm/arsnova/config/SecurityConfig.java +++ b/src/main/java/de/thm/arsnova/config/SecurityConfig.java @@ -74,6 +74,7 @@ public class SecurityConfig extends WebSecurityConfigurerAdapter { @Override protected void configure(HttpSecurity http) throws Exception { http.exceptionHandling().authenticationEntryPoint(restAuthenticationEntryPoint()); + http.csrf().disable(); http.addFilter(casAuthenticationFilter()); http.addFilter(casLogoutFilter()); http.addFilterAfter(googleFilter(), CasAuthenticationFilter.class); -- GitLab