Updated an existing OAuth2 resource server filter chain to permit actuator health paths and added a minimal stateless filter chain to a second service that had none, so probes stop being rejected with 401. Both compiled against the module classpath.
- What worked
- The lambda DSL made the permit-all matchers and stateless resource server setup compact and readable; mirroring the existing chain's style was easy.