diff --git a/provider/indexer-ibm/src/main/java/org/opengroup/osdu/indexer/ibm/security/SecurityConfig.java b/provider/indexer-ibm/src/main/java/org/opengroup/osdu/indexer/ibm/security/SecurityConfig.java
index d0737cfecfcb767083f8ade4939234f6bfc8da5c..9b306f757bef4a5b48a8ef7f359d8dce280fbab1 100644
--- a/provider/indexer-ibm/src/main/java/org/opengroup/osdu/indexer/ibm/security/SecurityConfig.java
+++ b/provider/indexer-ibm/src/main/java/org/opengroup/osdu/indexer/ibm/security/SecurityConfig.java
@@ -15,20 +15,20 @@ public class SecurityConfig extends WebSecurityConfigurerAdapter {
     @Override
     protected void configure(HttpSecurity http) throws Exception {
         http
-                .csrf().disable()
-                .authorizeRequests()
-                .antMatchers("/", "/index.html",
-                		"/liveness_check",
-                		"/readiness_check",
-                        "/index-worker", "/_dps/task-handlers", "/_dps/task-handlers/**",
-                        "/reindex",
-                        "/v2/api-docs",
-                        "/swagger-resources/**",
-                        "/configuration/security",
-                        "/swagger",
-                        "/info",
-                        "/swagger-ui.html",
-                        "/webjars/**").permitAll()
-                .anyRequest().anonymous();
+                .csrf().disable();
+                // .authorizeRequests()
+                // .antMatchers("/", "/index.html",
+                // 		"/liveness_check",
+                // 		"/readiness_check",
+                //         "/index-worker", "/_dps/task-handlers", "/_dps/task-handlers/**",
+                //         "/reindex",
+                //         "/v2/api-docs",
+                //         "/swagger-resources/**",
+                //         "/configuration/security",
+                //         "/swagger",
+                //         "/info",
+                //         "/swagger-ui.html",
+                //         "/webjars/**").permitAll()
+                // .anyRequest().anonymous();
     }
 }