diff --git a/backend/src/main/java/org/example/backend/global/security/config/SecurityConfig.java b/backend/src/main/java/org/example/backend/global/security/config/SecurityConfig.java index f0b22476..93853f1d 100644 --- a/backend/src/main/java/org/example/backend/global/security/config/SecurityConfig.java +++ b/backend/src/main/java/org/example/backend/global/security/config/SecurityConfig.java @@ -76,7 +76,7 @@ public SecurityFilterChain securityFilterChain(HttpSecurity http) throws Excepti .requestMatchers(CorsUtils::isPreFlightRequest).permitAll() .requestMatchers("/actuator/health").permitAll() .requestMatchers("/ws-connect/**").permitAll() - .requestMatchers("/api/users","/api/users/verify-email","/api/users/login","/api/users/password/temp").permitAll() + .requestMatchers("/api/users","/api/users/verify-email","/api/users/login","/api/users/password/temp","/api/users/refresh").permitAll() .anyRequest().authenticated()) .addFilterBefore(new FilterExceptionHandler(), LogoutFilter.class) // 예외처리 필터 .addFilterBefore(jwtFilter(),UsernamePasswordAuthenticationFilter.class) // 미들웨어 diff --git a/backend/src/main/java/org/example/backend/global/security/token/JWTProperties.java b/backend/src/main/java/org/example/backend/global/security/token/JWTProperties.java index bc010b31..86e3fa5d 100644 --- a/backend/src/main/java/org/example/backend/global/security/token/JWTProperties.java +++ b/backend/src/main/java/org/example/backend/global/security/token/JWTProperties.java @@ -10,12 +10,18 @@ public class JWTProperties { // access token 만료 시간: 24시간 private final long accessTokenExpiration = 24 * 60 * 60 * 1000L; - // acess token 만료 시간 test: 30초 - //private final long accessTokenExpiration = 30 * 1000L; - // refresh token 만료 시간: 2주 private final long refreshTokenExpiration = 14 * 24 * 60 * 60 * 1000L; // Redis refresh token 저장 시간: 2주 private final long refreshTokenRedisExpiration = 14 * 24 * 60 * 60L; + +// //acess token 만료 시간: 30초 (테스트용) +// private final long accessTokenExpiration = 30 * 1000L; +// +// // refresh token 만료 시간: 1분 (테스트용) +// private final long refreshTokenExpiration = 60 * 1000L; +// +// // Redis refresh token 저장 시간: 1분 (테스트용) +// private final long refreshTokenRedisExpiration = 60L; }