无关风月
2024-12-09 2053b8fe0e98d4b4449bc756a93ced78f42277c4
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
package com.jilongda.common.security.filter;
 
import com.jilongda.common.basic.ApiResult;
import com.jilongda.common.security.SecurityUtils;
import com.jilongda.common.utils.ResponseUtils;
import com.jilongda.common.exception.ServiceException;
import com.jilongda.common.exception.TokenException;
import lombok.extern.slf4j.Slf4j;
import org.springframework.web.filter.OncePerRequestFilter;
 
import javax.servlet.FilterChain;
import javax.servlet.ServletException;
import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpServletResponse;
import java.io.IOException;
 
 
/**
 * 登录认证检查过滤器
 *
 * @author xiaochen
 * @date Jun 29, 2020
 * <p>
 * OncePerRequestFilter是在一次外部请求中只过滤一次。对于服务器内部之间的forward等请求,不会再次执行过滤方法。
 * <p>
 * 文档参见:https://www.jianshu.com/p/b2aa7dd346a2
 */
@Slf4j
public class AuthenticationFilter extends OncePerRequestFilter {
    private final SecurityUtils securityUtils;
 
    public AuthenticationFilter(SecurityUtils securityUtils) {
        this.securityUtils = securityUtils;
    }
 
    @Override
    protected void doFilterInternal(HttpServletRequest request, HttpServletResponse response, FilterChain chain) throws IOException, ServletException {
        // 全局异常无法捕捉过滤器异常,需在此处做处理
        try {
 
 
 
 
            securityUtils.checkAuthentication(request);
            chain.doFilter(request, response);
        } catch (Exception e) {
            // 如果是业务异常,需返回状态码
            if (e instanceof ServiceException) {
                ServiceException e1 = (ServiceException) e;
                ResponseUtils.renderJson(response, ApiResult.failed(e1.getCode(), e.getMessage()));
            } else if (e instanceof TokenException) {
                TokenException e1 = (TokenException) e;
                ResponseUtils.renderJson(response, ApiResult.failed(e1.getCode(), e.getMessage()));
            } else {
                ResponseUtils.renderJson(response, ApiResult.failed(e.getMessage()));
            }
            return;
        }
    }
 
}