diff --git a/src/main/java/org/hbp/mip/MIPApplication.java b/src/main/java/org/hbp/mip/MIPApplication.java index 25c00d025f2ef9b4a1e852b9aa1b23a36ad63092..5a00a3a7d94c4fc4c0f300247848e2f8c964fa52 100644 --- a/src/main/java/org/hbp/mip/MIPApplication.java +++ b/src/main/java/org/hbp/mip/MIPApplication.java @@ -225,8 +225,8 @@ public class MIPApplication extends WebSecurityConfigurerAdapter { .anyRequest().authenticated() .and().exceptionHandling().authenticationEntryPoint(new CustomLoginUrlAuthenticationEntryPoint("/login/hbp")) .and().logout().logoutSuccessUrl("/login/hbp").permitAll() - .and().logout().permitAll() - .and().csrf().csrfTokenRepository(csrfTokenRepository()) + .and().logout().logoutUrl("/logout").permitAll() + .and().csrf().ignoringAntMatchers("/logout").csrfTokenRepository(csrfTokenRepository()) .and().addFilterAfter(csrfHeaderFilter(), CsrfFilter.class) .addFilterBefore(hbpFilter, BasicAuthenticationFilter.class); }