Skip to content

Commit

Permalink
🐛 gateway fix csrf property not settable (#309)
Browse files Browse the repository at this point in the history
* 🐛 gateway fix csrf property not settable

* 🐛 gateway SecurityProperties supress spotbugs warnings
  • Loading branch information
simonhir authored Dec 5, 2024
1 parent 0500979 commit 8f99d19
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 5 deletions.
Original file line number Diff line number Diff line change
@@ -1,5 +1,6 @@
package de.muenchen.refarch.gateway.configuration;

import edu.umd.cs.findbugs.annotations.SuppressFBWarnings;
import java.util.Arrays;
import java.util.HashSet;
import java.util.Set;
Expand All @@ -24,6 +25,7 @@ public class CsrfProtectionMatcher implements ServerWebExchangeMatcher {
private static final Set<HttpMethod> ALLOWED_METHODS = new HashSet<>(
Arrays.asList(HttpMethod.GET, HttpMethod.HEAD, HttpMethod.TRACE, HttpMethod.OPTIONS));

@SuppressFBWarnings("EI_EXPOSE_REP2")
private final SecurityProperties securityProperties;

@Override
Expand Down
Original file line number Diff line number Diff line change
@@ -1,16 +1,16 @@
package de.muenchen.refarch.gateway.configuration;

import edu.umd.cs.findbugs.annotations.SuppressFBWarnings;
import java.util.List;
import lombok.Data;
import org.springframework.boot.context.properties.ConfigurationProperties;

@Data
@ConfigurationProperties("refarch.security")
public class SecurityProperties {
/**
* List of url patterns excluded from csrf protection.
*/
private final List<String> csrfWhitelisted = List.of();

public List<String> getCsrfWhitelisted() {
return List.copyOf(this.csrfWhitelisted);
}
@SuppressFBWarnings("EI_EXPOSE_REP")
private List<String> csrfWhitelisted = List.of();
}

0 comments on commit 8f99d19

Please sign in to comment.