From c50152ecbd6d72cca6c56be1bb37c439d4e05b44 Mon Sep 17 00:00:00 2001 From: "Kristen.Herum" Date: Thu, 19 Dec 2024 10:38:44 +0100 Subject: [PATCH] Remove unused Altinn endpoint and clean query parameters #deploy-altinn3-tilgang-service-prod #deploy-altinn3-tilgang-service Removed the `/altinn/*` endpoint from security configuration as it is no longer needed. Additionally, simplified the Altinn command by removing the unnecessary `includeAltinn2` query parameter. --- .../consumer/altinn/command/GetAuthorizedPartiesCommand.java | 2 +- .../java/no/nav/dolly/web/config/IdportenSecurityConfig.java | 1 - 2 files changed, 1 insertion(+), 2 deletions(-) diff --git a/apps/altinn3-tilgang-service/src/main/java/no/nav/testnav/altinn3tilgangservice/consumer/altinn/command/GetAuthorizedPartiesCommand.java b/apps/altinn3-tilgang-service/src/main/java/no/nav/testnav/altinn3tilgangservice/consumer/altinn/command/GetAuthorizedPartiesCommand.java index a80cb4f6168..d58693bacb2 100644 --- a/apps/altinn3-tilgang-service/src/main/java/no/nav/testnav/altinn3tilgangservice/consumer/altinn/command/GetAuthorizedPartiesCommand.java +++ b/apps/altinn3-tilgang-service/src/main/java/no/nav/testnav/altinn3tilgangservice/consumer/altinn/command/GetAuthorizedPartiesCommand.java @@ -29,7 +29,7 @@ public Mono call() { return webClient .post() .uri(builder -> builder.path(ALTINN_URL) - .queryParam("includeAltinn2", true).build()) + .build()) .header(HttpHeaders.AUTHORIZATION, "Bearer " + token) .header(HttpHeaders.CONTENT_TYPE, MediaType.APPLICATION_JSON_VALUE) .bodyValue(request) diff --git a/apps/dolly-frontend/src/main/java/no/nav/dolly/web/config/IdportenSecurityConfig.java b/apps/dolly-frontend/src/main/java/no/nav/dolly/web/config/IdportenSecurityConfig.java index cff6760d80a..7a597553d66 100644 --- a/apps/dolly-frontend/src/main/java/no/nav/dolly/web/config/IdportenSecurityConfig.java +++ b/apps/dolly-frontend/src/main/java/no/nav/dolly/web/config/IdportenSecurityConfig.java @@ -66,7 +66,6 @@ public SecurityWebFilterChain configure(ServerHttpSecurity http, ServerOAuth2Aut .authorizeExchange(authorizeExchangeSpec -> authorizeExchangeSpec.pathMatchers( "/internal/isReady", "/internal/isAlive", - "/altinn/*", "/assets/*", "/internal/metrics", "/oauth2/callback",