forbid camp registration without profile, see #25

This commit is contained in:
Jottyfan
2026-03-21 14:49:29 +01:00
parent f2d327de2e
commit 2dea45780a
2 changed files with 3 additions and 3 deletions

View File

@@ -8,7 +8,7 @@ plugins {
}
group = 'de.jottyfan.camporganizer'
version = '1.0.1'
version = '1.0.2'
description = """CampOrganizer2"""

View File

@@ -34,8 +34,8 @@ public class SecurityConfiguration {
// @formatter:off
.oauth2Login(o -> o.defaultSuccessUrl("/"))
.logout(o -> o.logoutSuccessHandler(new OidcClientInitiatedLogoutSuccessHandler(crr)))
.authorizeHttpRequests(o -> o.requestMatchers("/dashboard/**", "/business/**", "/confirmation/**","/userlogin/**").authenticated()
.anyRequest().permitAll())
.authorizeHttpRequests(o -> o.requestMatchers("/", "/impressum", "/datenschutz", "/allgemeines", "/reports/**", "/nachruf", "/verein", "/vereinsmitglieder", "/kontakt", "/css/**", "/js/**", "/images/**", "/fonts/**", "/font-awesome/**", "/webjars/**", "/ical/**").permitAll()
.anyRequest().authenticated())
.oauth2ResourceServer(o -> o.jwt(Customizer.withDefaults()))
.sessionManagement(o -> o.init(sec));
// @formatter:on