|
@@ -105,6 +105,7 @@ Java::
|
|
|
[source,java,role="primary"]
|
|
|
----
|
|
|
@Bean
|
|
|
+@Role(BeanDefinition.ROLE_INFRASTRUCTURE)
|
|
|
static GrantedAuthorityDefaults grantedAuthorityDefaults() {
|
|
|
return new GrantedAuthorityDefaults("MYPREFIX_");
|
|
|
}
|
|
@@ -113,7 +114,8 @@ static GrantedAuthorityDefaults grantedAuthorityDefaults() {
|
|
|
|
|
|
[TIP]
|
|
|
====
|
|
|
-We expose `GrantedAuthorityDefaults` using a `static` method to ensure that Spring publishes it before it initializes Spring Security's method security `@Configuration` classes
|
|
|
+We expose `GrantedAuthorityDefaults` using a `static` method to ensure that Spring publishes it before it initializes Spring Security's method security `@Configuration` classes.
|
|
|
+Since the `GrantedAuthorityDefaults` bean is part of internal workings of Spring Security, we should also expose it as an infrastructural bean effectively avoiding some warnings related to bean post-processing (see https://github.com/spring-projects/spring-security/issues/14751[gh-14751]).
|
|
|
====
|
|
|
|
|
|
[[jc-reactive-method-security-custom-authorization-manager]]
|