zoukankan      html  css  js  c++  java
  • 配置Spring Boot 跨域后PUT,DELETE方法出现403Forbidden

    配置类

    @Configuration
    public class CorsConfiguration {
        @Bean
        public WebMvcConfigurer corsConfigurer() {
            return new WebMvcConfigurer() {
                @Override
                public void addCorsMappings(CorsRegistry registry) {
                    registry.addMapping("/**");
                }
            };
        }
    }

    前端请求

    错误原因:SpringBoot默认跨域方法只支持HEAD,GET,POST

    配置类修改后

    @Configuration
    public class CorsConfiguration {
        @Bean
        public WebMvcConfigurer corsConfigurer() {
            return new WebMvcConfigurer() {
                @Override
                public void addCorsMappings(CorsRegistry registry) {
                    registry.addMapping("/**")
                            .allowedOrigins("*")
                            .allowCredentials(true)
                            .allowedMethods("GET", "POST", "PUT", "DELETE");
                }
            };
        }
    }

    附相关SpringBoot部分源码

    //package org.springframework.web.cors.CorsConfiguration
    /** Wildcard representing <em>all</em> origins, methods, or headers. */
        public static final String ALL = "*";
    
        private static final List<HttpMethod> DEFAULT_METHODS = Collections.unmodifiableList(
                Arrays.asList(HttpMethod.GET, HttpMethod.HEAD));
    
        private static final List<String> DEFAULT_PERMIT_METHODS = Collections.unmodifiableList(
                Arrays.asList(HttpMethod.GET.name(), HttpMethod.HEAD.name(), HttpMethod.POST.name()));
    
        private static final List<String> DEFAULT_PERMIT_ALL = Collections.unmodifiableList(
                Collections.singletonList(ALL));


    public
    CorsConfiguration applyPermitDefaultValues() { if (this.allowedOrigins == null) { this.allowedOrigins = DEFAULT_PERMIT_ALL; } if (this.allowedMethods == null) { this.allowedMethods = DEFAULT_PERMIT_METHODS; this.resolvedMethods = DEFAULT_PERMIT_METHODS .stream().map(HttpMethod::resolve).collect(Collectors.toList()); } if (this.allowedHeaders == null) { this.allowedHeaders = DEFAULT_PERMIT_ALL; } if (this.maxAge == null) { this.maxAge = 1800L; } return this; }
  • 相关阅读:
    组件ListWidget 继承StatefulWidget后动态传入List数据,组件并不会重新渲染。
    Spring Security 采用httpBasic模式认证
    基于Vue2.0实现OpenLayers MarkerCluster海量聚合点标记
    Spring Security 采用formLogin模式认证
    配置页面兼容360浏览器
    如何进行企业工作流选型
    IT项目管理的六种错误思维
    时间管理10项技巧
    一个项目涉及到的50个Sql语句(下)
    SQL Server2000存储过程调试
  • 原文地址:https://www.cnblogs.com/hashset/p/11810412.html
Copyright © 2011-2022 走看看