fix forgot password
This commit is contained in:
@ -55,7 +55,8 @@ public class JwtRequestFilter extends OncePerRequestFilter {
|
||||
private void isValidToken(HttpServletRequest request, String jwtToken) {
|
||||
String requestUrl = request.getRequestURI();
|
||||
String refreshTokenUrl = "/api/authentication/refresh-token";
|
||||
if (!refreshTokenUrl.equals(requestUrl)) {
|
||||
String forgotPasswordUrl = "/api/authentication/forgot-password";
|
||||
if (!org.apache.commons.lang3.StringUtils.equalsAnyIgnoreCase(requestUrl, refreshTokenUrl, forgotPasswordUrl)) {
|
||||
var isValid = isValidAuthenticateToken(jwtToken);
|
||||
if (!isValid) {
|
||||
throw new BusinessException(HttpStatus.UNAUTHORIZED, "Invalid Access Token");
|
||||
|
Reference in New Issue
Block a user