How to exclude one url from authorization

后端 未结 4 1250
天涯浪人
天涯浪人 2020-12-04 16:21

My web.xml looks like:


    
        

        
4条回答
  •  谎友^
    谎友^ (楼主)
    2020-12-04 17:13

    A solution is to use an alternate security framework like Apache Shiro instead of the container based security. Then it's easy to exclude a resource from the protected content. Using Shiro you would put in WEB-INF/shiro.ini:

    [urls]
    /info = anon
    /**   = authc
    

提交回复
热议问题