From fac5e390121c8f60a1a7404597ce48187b8cda31 Mon Sep 17 00:00:00 2001 From: wilsonchingg Date: Wed, 12 Jun 2024 14:40:47 -0400 Subject: [PATCH] MSFT-3743 GHAS --- .../sdk/web/oauth/BasicAuthSecurityConfiguration.java | 1 - .../oauth/spring/oauth1/OAuthProviderProcessingFilter.java | 5 ----- 2 files changed, 6 deletions(-) diff --git a/src/main/java/com/appdirect/sdk/web/oauth/BasicAuthSecurityConfiguration.java b/src/main/java/com/appdirect/sdk/web/oauth/BasicAuthSecurityConfiguration.java index f89db64b..b916d00b 100644 --- a/src/main/java/com/appdirect/sdk/web/oauth/BasicAuthSecurityConfiguration.java +++ b/src/main/java/com/appdirect/sdk/web/oauth/BasicAuthSecurityConfiguration.java @@ -100,7 +100,6 @@ public SecurityFilterChain basicFilterChain(HttpSecurity http) throws Exception auth -> auth.requestMatchers(new AntPathRequestMatcher("/unsecured/**")).permitAll() .anyRequest().authenticated() ) - .csrf(csrf -> csrf.disable()) .httpBasic(withDefaults()) .sessionManagement(sessionManagement -> sessionManagement.sessionCreationPolicy(SessionCreationPolicy.STATELESS)) .addFilterAfter(basicAuthenticationFilter(), HeaderWriterFilter.class) diff --git a/src/main/java/com/appdirect/sdk/web/oauth/spring/oauth1/OAuthProviderProcessingFilter.java b/src/main/java/com/appdirect/sdk/web/oauth/spring/oauth1/OAuthProviderProcessingFilter.java index ed17d1f6..215ff952 100644 --- a/src/main/java/com/appdirect/sdk/web/oauth/spring/oauth1/OAuthProviderProcessingFilter.java +++ b/src/main/java/com/appdirect/sdk/web/oauth/spring/oauth1/OAuthProviderProcessingFilter.java @@ -115,8 +115,6 @@ public void doFilter(ServletRequest servletRequest, ServletResponse servletRespo token = (String)var8.next(); builder.append(token).append('=').append((String)oauthParams.get(token)).append(' '); } - - this.log.debug(builder.toString()); } String consumerKey = (String)oauthParams.get(OAuthConsumerParameter.oauth_consumer_key.toString()); @@ -125,9 +123,6 @@ public void doFilter(ServletRequest servletRequest, ServletResponse servletRespo } ConsumerDetails consumerDetails = this.getConsumerDetailsService().loadConsumerByConsumerKey(consumerKey); - if (this.log.isDebugEnabled()) { - this.log.debug("Consumer details loaded for " + consumerKey + ": " + consumerDetails); - } this.validateOAuthParams(consumerDetails, oauthParams); if (this.log.isDebugEnabled()) {