diff --git a/src/main/java/com/jobdri/jobdri_api/global/apiPayload/exception/handler/CustomAuthenticationEntryPoint.java b/src/main/java/com/jobdri/jobdri_api/global/apiPayload/exception/handler/CustomAuthenticationEntryPoint.java index 43c70d2..127f8a9 100644 --- a/src/main/java/com/jobdri/jobdri_api/global/apiPayload/exception/handler/CustomAuthenticationEntryPoint.java +++ b/src/main/java/com/jobdri/jobdri_api/global/apiPayload/exception/handler/CustomAuthenticationEntryPoint.java @@ -27,7 +27,7 @@ public class CustomAuthenticationEntryPoint implements AuthenticationEntryPoint public void commence(HttpServletRequest request, HttpServletResponse response, AuthenticationException authException) throws IOException, ServletException { - log.error("인증되지 않은 사용자 접근: {}", authException.getMessage()); + log.warn("인증되지 않은 사용자 접근: {} {} - {}", request.getMethod(), request.getRequestURI(), authException.getMessage()); GeneralErrorCode errorCode = GeneralErrorCode.MISSING_AUTH_INFO; diff --git a/src/main/java/com/jobdri/jobdri_api/global/config/SecurityConfig.java b/src/main/java/com/jobdri/jobdri_api/global/config/SecurityConfig.java index 4159877..090319f 100644 --- a/src/main/java/com/jobdri/jobdri_api/global/config/SecurityConfig.java +++ b/src/main/java/com/jobdri/jobdri_api/global/config/SecurityConfig.java @@ -84,6 +84,9 @@ public SecurityFilterChain securityFilterChain(HttpSecurity http) throws Excepti public CorsConfigurationSource corsConfigurationSource() { var config = new org.springframework.web.cors.CorsConfiguration(); config.setAllowedOrigins(java.util.List.of( + "https://jobdri.site", + "https://www.jobdri.site", + "https://api.jobdri.site", "http://localhost:5173", "http://localhost:8080", "http://localhost:3000")); diff --git a/src/main/resources/application-prod.yaml b/src/main/resources/application-prod.yaml index 7432cfe..48e5ca1 100644 --- a/src/main/resources/application-prod.yaml +++ b/src/main/resources/application-prod.yaml @@ -59,6 +59,7 @@ app: server: port: 8080 + forward-headers-strategy: framework management: endpoints: