@Configuration(proxyBeanMethods=false)
@ConditionalOnClass(value=org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter.class)
@ConditionalOnMissingBean(value=org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter.class)
@ConditionalOnWebApplication(type=SERVLET)
@AutoConfigureBefore(value=org.springframework.boot.autoconfigure.security.servlet.SecurityAutoConfiguration.class)
@AutoConfigureAfter(value={HealthEndpointAutoConfiguration.class,InfoEndpointAutoConfiguration.class,WebEndpointAutoConfiguration.class,org.springframework.boot.autoconfigure.security.oauth2.client.servlet.OAuth2ClientAutoConfiguration.class,org.springframework.boot.autoconfigure.security.oauth2.resource.servlet.OAuth2ResourceServerAutoConfiguration.class,org.springframework.boot.autoconfigure.security.saml2.Saml2RelyingPartyAutoConfiguration.class})
@Import(value={org.springframework.boot.actuate.autoconfigure.security.servlet.ManagementWebSecurityConfigurerAdapter.class,org.springframework.boot.autoconfigure.security.servlet.WebSecurityEnablerConfiguration.class})
public class ManagementWebSecurityAutoConfiguration
extends java.lang.Object
Auto-configuration for Spring Security when actuator is
on the classpath. Specifically, it permits access to the health and info endpoints
while securing everything else.
- Since:
- 2.1.0