Relative Content

Tag Archive for javaspring-bootspring-mvcspring-security

What does CsrfFilter do?

There is loading csrfToken from request with method this.tokenRepository.loadToken(request) and actualToken is also obtaining from request with method String actualToken = request.getHeader(csrfToken.getHeaderName()). Then isn’t csrfToken the same as actualToken?