diff --git a/src/main/java/com/monkeyk/sos/config/WebSecurityConfigurer.java b/src/main/java/com/monkeyk/sos/config/WebSecurityConfigurer.java index 42a8d65..4fadcfc 100644 --- a/src/main/java/com/monkeyk/sos/config/WebSecurityConfigurer.java +++ b/src/main/java/com/monkeyk/sos/config/WebSecurityConfigurer.java @@ -53,7 +53,7 @@ public class WebSecurityConfigurer { http.authorizeHttpRequests(matcherRegistry -> { // permitAll() 的URL路径属于公开访问,不需要权限 - matcherRegistry.requestMatchers("/favicon.ico*", "/oauth/rest_token*", "/bootstrap/**", "*.css").permitAll() + matcherRegistry.requestMatchers("/favicon.ico*", "/oauth/rest_token*", "*.js", "*.css").permitAll() .requestMatchers(HttpMethod.GET, "/login*").anonymous() // /user/ 开头的URL需要 ADMIN 权限 diff --git a/src/main/resources/templates/clientdetails/client_details.html b/src/main/resources/templates/clientdetails/client_details.html index 216b3a0..7322b39 100644 --- a/src/main/resources/templates/clientdetails/client_details.html +++ b/src/main/resources/templates/clientdetails/client_details.html @@ -36,8 +36,8 @@
+ 若对OAuth2.1的client_details
中的属性及作用不清楚,
+ 建议你先查看项目中的db_table_description.html
文件(位于others目录)中对表oauth2_registered_client
的说明,
+ 或在线访问db_table_description.html;
+ 因为注册client实际上是向该表中按不同的条件添加数据.
+