引入hutool工具
引入的糊涂工具版本过低的话,可能在下面使用 DesensitizedUtil 工具类的时候没有对象的方法。
<dependency>
<groupId>cn.hutool</groupId>
<artifactId>hutool-all</artifactId>
<version>5.8.2</version>
</dependency>
创建脱敏注解
@Retention(RetentionPolicy.RUNTIME)
@Target(ElementType.FIELD)
@JacksonAnnotationsInside
@JsonSerialize(using = DesensitizationJsonSerializable.class)
public @interface Desensitization {
/**
* 脱敏策略
* @return
*/
DesensitizationStrategy value();
}
创建枚举类
public enum DesensitizationStrategy {
//手机号,保留前三后四,其他的替换为*
PHONE(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.MOBILE_PHONE)),
// 邮箱,保留前一位即@和后面的部分,其他的替换为*
EMAIL(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.EMAIL)),
// 身份证号,保留前一位和后2位,其他的替换为*
ID_CARD(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.ID_CARD)),
// 地址,保留前四位,其他的替换为*
ADDRESS(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.ADDRESS)),
// 银行卡,保留前后四位,其他的替换为*
BANK_CARD(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.BANK_CARD)),
// 姓名,保留前一位,其他的替换为*
NAME(s -> DesensitizedUtil.desensitized(s, DesensitizedUtil.DesensitizedType.CHINESE_NAME)),
// 密码,统一替换为 ******
PASSWORD(s -> "******");
private final Function<String, String> desensitization;
DesensitizationStrategy(Function<String, String> desensitization) {
this.desensitization = desensitization;
}
public Function<String, String> getDesensitization() {
return desensitization;
}
}
配置序列化方式
public class DesensitizationJsonSerializable extends JsonSerializer<String> implements ContextualSerializer {
//脱敏策略
private DesensitizationStrategy desensitizationStrategy;
@Override
public void serialize(String s, JsonGenerator gen, SerializerProvider serializers) throws IOException {
// 使用脱敏策略将字符串处理后序列化到json中
gen.writeString(desensitizationStrategy.getDesensitization().apply(s));
}
@Override
public JsonSerializer<?> createContextual(SerializerProvider prov, BeanProperty property) throws JsonMappingException {
// 获取属性上的 Desensitization 注解
Desensitization annotation = property.getAnnotation(Desensitization.class);
// 注解不为空 && 属性类型必须是字符串类型
if (Objects.nonNull(annotation) && Objects.equals(String.class, property.getType().getRawClass())) {
//设置脱敏策略
this.desensitizationStrategy = annotation.value();
return this;
}
// 返回默认的序列化器
return prov.findValueSerializer(property.getType(), property);
}
}