最近项目里发现一个问题,在有些http接口里不仅需要登录的验证,还得需要时ERP会员的注册用户,同时需要两种用户信息,而且在这些http接口里可能还需要使用到用户ERP会员的绑定手机号,所及在这里重新设计的spring的拦截器,通过子路径的方式来完成二级会员信息的验证,但是又需要在后面的业务处理需要使用会员信息,所以将会员信息在拦截器里写入session里,在拦截器的结束的时候将session里的信息删除。
spring配置文件里拦截器的配置
<mvc:interceptors>
<!--全局拦截器-->
<mvc:interceptor>
<mvc:mapping path="/wz/**" />
<bean class="AllResultInterceptor"></bean>
</mvc:interceptor>
<!--登录拦截器-->
<mvc:interceptor>
<mvc:mapping path="/user/**" />
<bean class="UserLoginInterceptor"></bean>
</mvc:interceptor>
<!--微站会员拦截器-->
<mvc:interceptor>
<mvc:mapping path="/user/v/**" />
<bean class="WzUserInterceptor"></bean>
</mvc:interceptor>
</mvc:interceptors>
拦截器的代码
public class WzUserInterceptor extends BaseInterceptor implements HandlerInterceptor {
private Logger logger = LoggerFactory.getLogger(WzUserInterceptor.class);
@Autowired
private UserServiceImpl userService;
public boolean preHandle(HttpServletRequest httpServletRequest, HttpServletResponse httpServletResponse, Object o) throws Exception {
try {
UserInfoInCookie userInfo = HttpCommonMethod.getUserInfo(httpServletRequest);
if (userInfo == null) {
//返回登录页面
setRedirctLoginUrl(httpServletRequest,httpServletResponse);
return false;
}
ServiceResponse<CrmUserInfo> response = userService.queryWzUserInfo(userInfo.getUserId());
if(!response.isSuccess()){
//返回登录注册引导页
httpServletResponse.sendRedirect(NAVIGATION_URL);
return false;
}
//设置微站会员信息,供后续取值
CrmUserInfo crmUserInfo = response.getData();
HttpCommonMethod.setSessionValue(Constants.WZ_BIND_INFO, crmUserInfo,httpServletRequest);
return true;
}catch (Exception e) {
logger.error("WzUserInterceptor error",e);
return false;
}
}
public void postHandle(HttpServletRequest httpServletRequest, HttpServletResponse httpServletResponse, Object o, ModelAndView modelAndView) throws Exception {
}
public void afterCompletion(HttpServletRequest httpServletRequest, HttpServletResponse httpServletResponse, Object o, Exception e) throws Exception {
/** 删除session里的值 */ HttpCommonMethod.clearSessionKey(Constants.WZ_BIND_INFO,httpServletRequest);
}
}
这样你就可以再BaseAction里完成对session里的会员信息的取值。避免在action里又再次去调接口对会员信息的查询。
不知道这样行不行,会不会有什么隐藏的BUG,但是不得不得自从改写了这种方式,我没必要在代码里每次都去判断是不是会员,也没必要单独为了会员信息去查一次会员信息。