实际上,这是Spring安全性的问题。解决方案在此线程中:
https://github.com/spring-projects/spring-security-
oauth/issues/980
应该添加此注释,以便正确调用Adapter:
@Configuration @Order(SecurityProperties.ACCESS_OVERRIDE_ORDER) class WebSecurityConfiguration extends WebSecurityConfigurerAdapter { // ...}另一个解决方案是实现ResourceServerConfigurerAdapter而不是WebSecurityConfigurerAdapter。



