java后端只允许Post和Get方法调用
@Configuration
public calss TomactConfig{
@Bean
public EmbeddedServletContainerFactory servletContainer(){
TomcatEmbeddedServletContainerFactory tomcatServletContainerFactory = new TomcatEmbeddedServletContainerFactory ();
tomcatServletContainerFactory .addContextCustomizers(new TomcatContextCustomizer(){
@Override
public void customize(Context context){
SecurityConstraint constraint = new SecurityConstraint();
SecurityCollection collection= new SecurityCollection();
//http方法
collection.addMethod("PUT");
collection.addMethod("DELETE");
collection.addMethod("HEAD");
collection.addMethod("OPTIONS");
collection.addMethod("TRACE");
//url匹配表达式
collection.addPattern("/*");
constraint .addCollection(collection);
constraint.setAuthConstraint(true);
//设置使用httpOnly
context.setUseHttpOnly(true);
}
});
return tomcatServletContainerFactory ;
}
}