disabling csrf mode in spring security for remoting endpoints
authorAndreas Kohlbecker <a.kohlbecker@bgbm.org>
Wed, 20 Jan 2016 13:29:59 +0000 (14:29 +0100)
committerAndreas Kohlbecker <a.kohlbecker@bgbm.org>
Wed, 20 Jan 2016 13:31:18 +0000 (14:31 +0100)
cdmlib-remote/src/main/resources/eu/etaxonomy/cdm/remote-security.xml

index 435a30878f258d32f9d61ba4ae8b177e7a461da1..1b227494876deaeabeae7e6e64802f27095088db 100644 (file)
@@ -13,5 +13,6 @@
     <!-- (from http://docs.spring.io/spring-security/site/docs/3.0.x/reference/springsecurity-single.html#el-access) -->
     <security:intercept-url pattern="/remoting/**" access="isFullyAuthenticated()" />
     <security:http-basic />
+    <security:csrf disabled="true"/>
   </security:http>
 </beans>