diff --git a/bookstore/src/main/java/com/fjordtek/bookstore/web/BookController.java b/bookstore/src/main/java/com/fjordtek/bookstore/web/BookController.java index ff1d6a4..22eae35 100644 --- a/bookstore/src/main/java/com/fjordtek/bookstore/web/BookController.java +++ b/bookstore/src/main/java/com/fjordtek/bookstore/web/BookController.java @@ -249,7 +249,7 @@ public class BookController { ////////////////////////////// // UPDATE BOOK - @PreAuthorize("hasAuthority('MARKETING') or hasAuthority('HELPDESK')") + @PreAuthorize("hasAnyAuthority('MARKETING', 'HELPDESK')") @RequestMapping( value = bookEditPageView + "/{hash_id}", method = RequestMethod.GET @@ -284,7 +284,7 @@ public class BookController { * Internally, we never use URL id as a reference for user modifications, * but just as an URL end point. */ - @PreAuthorize("hasAuthority('MARKETING') or hasAuthority('HELPDESK')") + @PreAuthorize("hasAnyAuthority('MARKETING', 'HELPDESK')") @RequestMapping( value = bookEditPageView + "/{hash_id}", method = RequestMethod.POST diff --git a/bookstore/src/main/resources/templates/booklist.html b/bookstore/src/main/resources/templates/booklist.html index 57d8884..de092b9 100644 --- a/bookstore/src/main/resources/templates/booklist.html +++ b/bookstore/src/main/resources/templates/booklist.html @@ -89,12 +89,12 @@ Idea of the following syntax used in this and other HTML document: