@RequestMapping(value = "/mypage/changepw.do", method = RequestMethod.POST)
  public String changePW(
      @RequestParam("preUserPW") String preUserPW, @RequestParam("userPW") String userPW) {
    Authentication auth = SecurityContextHolder.getContext().getAuthentication();
    String userId = auth.getName();
    String url = "";
    boolean isUser = false;

    isUser = userService.changePW(userId, preUserPW, userPW);

    if (isUser) url = "redirect:" + "/main/main.do?message=changepw";
    else url = "redirect:" + "/main/main.do?message=fail";
    return url;
  }