|
|
@@ -118,9 +118,16 @@ public class SecurityConfig
|
|
|
, "/initPassword"
|
|
|
, "/mobile/notify/**"
|
|
|
, "/crypto/**"
|
|
|
+ , "/system/config/getVersion"
|
|
|
).permitAll()
|
|
|
// 静态资源,可匿名访问
|
|
|
- .antMatchers(HttpMethod.GET, "/", "/*.html", "/**/*.html", "/**/*.css", "/**/*.js", "/profile/**").permitAll()
|
|
|
+ .antMatchers(HttpMethod.GET, "/"
|
|
|
+ , "/*.html"
|
|
|
+ , "/**/*.html"
|
|
|
+ , "/**/*.css"
|
|
|
+ , "/**/*.js"
|
|
|
+ , "/profile/**"
|
|
|
+ ).permitAll()
|
|
|
.antMatchers("/swagger-ui.html", "/swagger-resources/**", "/webjars/**", "/*/api-docs", "/druid/**").denyAll()
|
|
|
// 除上面外的所有请求全部需要鉴权认证
|
|
|
.anyRequest().authenticated();
|