OpenAPITools / OpenAPITools/openapi-generator

[BUG] [java-micronaut-server] security annotation always @Secured({SecurityRule.IS_AUTHENTICATED})

Open
#16,537 1 comment 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Issue: Bug
Dominant language
Java
Stars
26.8k
Forks
7.7k
PR merge metrics
PR metrics pending

Description

Description

Have configures security for endpoint but code always generate with annotation
@Secured({SecurityRule.IS_AUTHENTICATED})

expected with annotation @Secured({"client")

Micronaut version 4.1.0

openapi-generator version

7.0.0

OpenAPI declaration file content or url

openapi: 3.0.0
info:
title: Client Service API
description: Business response for management companies, places, menus API.
contact:
name: test
url: test
email: test
version: 1.0.0
security:

  • BearerAuth:
    • client
    • ADMIN
      paths:
      /v1/me:
      get:
      security:
      • BearerAuth: [ client ]
        tags:
      • serviceAccount
        operationId: me
        summary: Return list of accessed account
        responses:
        "200":
        description: Return list of accessed account
        content:
        application/json:
        schema:
        type: array
        uniqueItems: true
        items:
        type: string
        "401":
        description: Unauthorized.

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by running the java-micronaut-server generator with the supplied OpenAPI declaration and inspecting the generated security annotations for /v1/me. Compare the result with the operation's BearerAuth scope of client; done when the generated annotation preserves that configured scope instead of only IS_AUTHENTICATED.

Written by the indexing model from the issue text.

Assessment

Tech stack
java, openapi
Domain
api, backend, security
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.