Angular 6 + Spring Boot:错误:“来自源‘http://localhost:4200’已被 CORS 策略阻止”

Sop*_*hia 5 java maven cors spring-boot angular

我正在尝试将 angular 6 项目与 Spring Boot 应用程序连接起来。当我运行 angular 项目时,它不断出现此错误,尽管我已经安装了所有依赖项和导入。

我在控制器类中使用了以下代码行。

@CrossOrigin(origins = " http://localhost:4200/ ", maxAge = 3600)

我还在 java 文件夹中包含了这个 SimpleCORSFilter.java 文件:

package com.oms;

import java.io.IOException;
import javax.servlet.Filter;
import javax.servlet.FilterChain;
import javax.servlet.FilterConfig;
import javax.servlet.ServletException;
import javax.servlet.ServletRequest;
import javax.servlet.ServletResponse;
import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpServletResponse;
import org.slf4j.Logger;
import org.slf4j.LoggerFactory;
import org.springframework.stereotype.Component;

@Component
public class SimpleCORSFilter implements Filter {

private final Logger log = LoggerFactory.getLogger(SimpleCORSFilter.class);

public SimpleCORSFilter() {
    log.info("SimpleCORSFilter init");
}

@Override
public void doFilter(ServletRequest req, ServletResponse res, FilterChain chain) throws IOException, ServletException {

    HttpServletRequest request = (HttpServletRequest) req;
    HttpServletResponse response = (HttpServletResponse) res;

    response.setHeader("Access-Control-Allow-Origin", "*");
    response.setHeader("Access-Control-Allow-Credentials", "true");
    response.setHeader("Access-Control-Allow-Methods", "POST, GET, OPTIONS, DELETE");
    response.setHeader("Access-Control-Max-Age", "3600");
    response.setHeader("Access-Control-Allow-Headers", "Content-Type, Accept, X-Requested-With, remember-me");

    chain.doFilter(req, res);
}

@Override
public void init(FilterConfig filterConfig) {
}

@Override
public void destroy() {
}

}
Run Code Online (Sandbox Code Playgroud)

我还在 angular 项目中创建了 proxy.conf.json 文件:

{
    "/api": {
      "target": "http://localhost:8080",
      "secure": false
    }
  }
Run Code Online (Sandbox Code Playgroud)

这个文件在 angular.json 中是这样包含的:

"start": "ng serve --proxy-config proxy.conf.json",

我仍然收到此错误:

从源“ http://localhost:4200 ”访问“ http://localhost:8080/fetchAll ”的XMLHttpRequest已被 CORS 策略阻止:预检中的 Access-Control-Allow-Headers 不允许请求标头字段授权回复。**

我提到了这种类型的查询,但无法获得确切的解决方案。

我真的很困惑,如果代码中有任何错误?应该采取什么步骤来解决这个问题?

Pra*_*ani 5

当您使用 Spring Boot 时,我建议您在配置中添加CorsFilter bean,而不是引入 CORS 过滤器。让我知道这是否有帮助。

@Bean
    public CorsFilter corsFilter() {
        UrlBasedCorsConfigurationSource source = new UrlBasedCorsConfigurationSource();
        CorsConfiguration config = new CorsConfiguration();
        config.setAllowCredentials(true);
        config.addAllowedOrigin("*");
        config.addAllowedHeader("*");
        config.addAllowedMethod("OPTIONS");
        config.addAllowedMethod("GET");
        config.addAllowedMethod("POST");
        config.addAllowedMethod("PUT");
        config.addAllowedMethod("DELETE");
        source.registerCorsConfiguration("/**", config);
        return new CorsFilter(source);
    }
Run Code Online (Sandbox Code Playgroud)

快乐编码:)