diff --git a/Titto_Backend/src/main/java/com/example/titto_backend/auth/config/SecurityConfig.java b/Titto_Backend/src/main/java/com/example/titto_backend/auth/config/SecurityConfig.java index 485347c..395b1ce 100644 --- a/Titto_Backend/src/main/java/com/example/titto_backend/auth/config/SecurityConfig.java +++ b/Titto_Backend/src/main/java/com/example/titto_backend/auth/config/SecurityConfig.java @@ -29,8 +29,6 @@ public class SecurityConfig { "/swagger-ui/**", "/api-docs", "/swagger-ui-custom.html", "/v3/api-docs/**", "/api-docs/**", "/swagger-ui.html","/oauth/**" }; - @Value("${cors.allowed-origins}") - String[] corsOrigins; private final TokenProvider tokenProvider; private final RedisTemplate redisTemplate; @@ -59,7 +57,7 @@ public SecurityFilterChain filterChain(HttpSecurity http) throws Exception { public CorsConfigurationSource configurationSource() { CorsConfiguration configuration = new CorsConfiguration(); - configuration.setAllowedOriginPatterns(List.of(corsOrigins)); + configuration.setAllowedOriginPatterns(List.of("http://localhost:8080","http://localhost:3000/", "https://titto.world/")); configuration.setAllowedMethods(List.of("GET", "POST", "PUT", "PATCH", "DELETE", "OPTIONS")); configuration.setAllowedHeaders(List.of("*")); configuration.setExposedHeaders(List.of("Access-Control-Allow-Credentials", "Authorization", "Set-Cookie")); diff --git a/Titto_Backend/src/main/resources/application.yml b/Titto_Backend/src/main/resources/application.yml index a9a2d0f..e5478e7 100644 --- a/Titto_Backend/src/main/resources/application.yml +++ b/Titto_Backend/src/main/resources/application.yml @@ -51,9 +51,3 @@ springdoc: disabled : true default-consumes-media-type: application/json;charset=UTF-8 default-produces-media-type: application/json;charset=UTF-8 - -#Cors -cors: - allowed-origins: - - http://localhost:3000 - - https://titto.world/ \ No newline at end of file