【发布时间】:2012-08-03 03:31:11
【问题描述】:
嗨。在登录成功后的 Spring-Security 中,将intercept-url
重定向为https 我正在使用属性required-channel="https"。它工作正常,
但之后每个 url 都继续使用 https。但我只希望拦截 URL
使用 https 重定向。
<security:http auto-config='true'>
<security:intercept-url pattern="/member/**" access="ROLE_USER" requires-channel="https"/>
<security:access-denied-handler ref="accessDeninedHandler"/>
<security:form-login login-page="/login.htm?form"
authentication-success-handler-ref="/"
authentication-failure-url="/login.htm?form" />
<security:logout invalidate-session="true" logout-url="/logout.htm" logout-success-url="/"/>
<security:remember-me key="remembermekey" services-ref="rememberMeServices" />
</security:http>
【问题讨论】:
标签: https spring-security