springboot拦截器+自定义注解拦截未登陆用户

本文详细介绍了如何在Spring MVC中使用拦截器进行权限控制。通过继承HandlerInterceptorAdapter类并实现preHandle()方法,在请求到达Controller前进行登录状态验证。同时,展示了如何在Spring配置类中注册自定义拦截器。
  1. 继承HandlerInterceptorAdapter类并实现preHandler()方法,被拦截的请求在调用controller层之前将先调用preHandler()方法第一步处理请求。
public class LoginInterceptor extends HandlerInterceptorAdapter {

    private static final Logger logger = LoggerFactory.getLogger(LoggerFactory.class);

    @Autowired
    private CookieUtil cookieUtil;

    /**
     * 访问controller前调用
     * @param request
     * @param response
     * @param handler
     * @return
     * @throws Exception
     */
    @Override
    public boolean preHandle(HttpServletRequest request, HttpServletResponse response, Object handler) throws Exception {
        logger.info("preHandler");
        // 被@RequestMapping注解修饰的controller方法就是HanglerMethod
        // A.isAssignableFrom(B),判断A与B是否是同一个class,A是否是B的超类或者超接口,是返回true,否返回false
        if (!handler.getClass().isAssignableFrom(HandlerMethod.class)) {
            System.out.println("cat cast handler to HandlerMethod.class");
            return true;
        }
        HandlerMethod method = (HandlerMethod)handler;
        // 获取controller方法上的注解
        NeedLogin needLogin = method.getMethodAnnotation(NeedLogin.class);
        if (needLogin == null){
            return true;
        }

        String paramToken = request.getParameter(CookieUtil.COOKIE_NAME);
        String cookieToken = cookieUtil.getLoginToken(request);
        if (StringUtils.isEmpty(paramToken) && StringUtils.isEmpty(cookieToken)){
            return false;
        }
        String token = paramToken == null ? cookieToken:paramToken;
        SecondKillUser user = cookieUtil.getUserByToken(token,response);
        return  user == null ? false : true;
    }

    @Override
    public void postHandle(HttpServletRequest request, HttpServletResponse response, Object handler, ModelAndView modelAndView) throws Exception {
        super.postHandle(request, response, handler, modelAndView);
    }

    @Override
    public void afterCompletion(HttpServletRequest request, HttpServletResponse response, Object handler, Exception ex) throws Exception {
        super.afterCompletion(request, response, handler, ex);
    }

    @Override
    public void afterConcurrentHandlingStarted(HttpServletRequest request, HttpServletResponse response, Object handler) throws Exception {
        super.afterConcurrentHandlingStarted(request, response, handler);
    }
复制代码
  1. 注册拦截器,将拦截器类放入spring容器当中,否则无法注入其它bean
@Configuration
public class WebConfig extends WebMvcConfigurerAdapter {

   /**
   *注册拦截器
   /
    @Override
    public void addInterceptors(InterceptorRegistry registry) {
        registry.addInterceptor(loginInterceptor()).addPathPatterns("/**");
    }

    @Bean
    public LoginInterceptor loginInterceptor(){
        return new LoginInterceptor();
    }
}
复制代码
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值