|
|
@@ -29,7 +29,7 @@ public class NewsController extends BaseController {
|
|
|
private NewsRepo newsRepo;
|
|
|
private NewsLikeRepo newsLikeRepo;
|
|
|
|
|
|
- @PreAuthorize("hasRole('ADMIN')")
|
|
|
+ @PreAuthorize("hasAnyRole('ADMIN','NEWS')")
|
|
|
@PostMapping("/save")
|
|
|
public News save(@RequestBody News record) {
|
|
|
if (record.getId() != null) {
|
|
|
@@ -60,6 +60,7 @@ public class NewsController extends BaseController {
|
|
|
return news;
|
|
|
}
|
|
|
|
|
|
+ @PreAuthorize("hasAnyRole('ADMIN','NEWS')")
|
|
|
@PostMapping("/del/{id}")
|
|
|
public void del(@PathVariable Long id) {
|
|
|
newsRepo.softDelete(id);
|