build.gradle
plugins {
id 'org.springframework.boot' version '2.4.2'
id 'io.spring.dependency-management' version '1.0.11.RELEASE'
id 'java'
}
group = 'kr.revfactory'
version = '0.0.1-SNAPSHOT'
sourceCompatibility = '11'
configurations {
compileOnly {
extendsFrom annotationProcessor
}
}
repositories {
mavenCentral()
}
dependencies {
implementation 'org.springframework.boot:spring-boot-starter-actuator'
implementation 'org.springframework.boot:spring-boot-starter-oauth2-client'
implementation 'org.springframework.boot:spring-boot-starter-validation'
implementation 'org.springframework.boot:spring-boot-starter-security'
implementation 'org.springframework.boot:spring-boot-starter-webflux'
compileOnly 'org.projectlombok:lombok'
developmentOnly 'org.springframework.boot:spring-boot-devtools'
annotationProcessor 'org.projectlombok:lombok'
testImplementation 'org.springframework.boot:spring-boot-starter-test'
testImplementation 'io.projectreactor:reactor-test'
testImplementation 'org.springframework.security:spring-security-test'
}
test {
useJUnitPlatform()
}
WebSecurityConfig
package kr.revfactory.demo;
import org.springframework.boot.autoconfigure.security.reactive.PathRequest;
import org.springframework.context.annotation.Bean;
import org.springframework.context.annotation.Configuration;
import org.springframework.security.config.web.server.ServerHttpSecurity;
import org.springframework.security.web.server.SecurityWebFilterChain;
@Configuration
public class WebSecurityConfig {
@Bean
public SecurityWebFilterChain springSecurityFilterChain(ServerHttpSecurity http) {
return http
.authorizeExchange()
.matchers(PathRequest.toStaticResources().atCommonLocations()).permitAll()
.anyExchange()
.authenticated().and()
.oauth2Login().and()
// disable the local user login prompt
// but OAuth2 login is prompted at /login
.formLogin().disable()
.build();
}
}
application.yaml
spring:
security:
oauth2:
client:
registration:
github:
client-id: -
client-secret: -
redirect-uri-template: '{baseUrl}/login/oauth2/code/{registrationId}'
kakao:
client-id: -
client-secret: -
redirectUri: '{baseUrl}/login/oauth2/code/{registrationId}'
authorization-grant-type: authorization_code
scope: profile,account_email
client-name: kakao
clientAuthenticationMethod: post
provider:
kakao:
authorization-uri: https://kauth.kakao.com/oauth/authorize
token-uri: https://kauth.kakao.com/oauth/token
user-info-uri: https://kapi.kakao.com/v2/user/me
user-name-attribute: id
sundries-in-myidea.tistory.com/89?category=798770
medium.com/@kevin_park/springboot-oauth2-0-reative-client-with-spring-security-a30fe3f7e386
'백엔드기술 > 스프링프레임워크' 카테고리의 다른 글
Spring Boot 2.4 (0) | 2021.01.24 |
---|---|
Spring boot 2.2 지연 초기화 (0) | 2019.10.06 |
Spring Boot 2.2 (0) | 2019.09.30 |