sa-token-solon-plugin:升级 solon 为 1.10.9;调整 SaTokenPathFilter 让其支持注解验证;删除 SaTokenAnnotationInterceptor(不再需要了)

This commit is contained in:
noear 2022-10-25 20:55:37 +08:00
parent 39915d2403
commit 0300a29f55
6 changed files with 177 additions and 219 deletions

View File

@ -50,7 +50,7 @@
<jackson-datatype-jsr310.version>2.11.2</jackson-datatype-jsr310.version> <jackson-datatype-jsr310.version>2.11.2</jackson-datatype-jsr310.version>
<servlet-api.version>3.1.0</servlet-api.version> <servlet-api.version>3.1.0</servlet-api.version>
<thymeleaf.version>3.0.9.RELEASE</thymeleaf.version> <thymeleaf.version>3.0.9.RELEASE</thymeleaf.version>
<solon.version>1.10.4</solon.version> <solon.version>1.10.9</solon.version>
<solon-test.version>1.9.1</solon-test.version> <solon-test.version>1.9.1</solon-test.version>
<noear-redisx.version>1.4.3</noear-redisx.version> <noear-redisx.version>1.4.3</noear-redisx.version>
<jfinal.version>4.9.17</jfinal.version> <jfinal.version>4.9.17</jfinal.version>

View File

@ -18,7 +18,7 @@
<dependency> <dependency>
<groupId>org.noear</groupId> <groupId>org.noear</groupId>
<artifactId>solon-web</artifactId> <artifactId>solon-web</artifactId>
<version>1.10.4</version> <version>${solon.version}</version>
</dependency> </dependency>
<!-- Sa-Token 权限认证, 在线文档https://sa-token.cc/ --> <!-- Sa-Token 权限认证, 在线文档https://sa-token.cc/ -->

View File

@ -5,12 +5,6 @@ import org.noear.solon.core.AopContext;
import org.noear.solon.core.Plugin; import org.noear.solon.core.Plugin;
import cn.dev33.satoken.SaManager; import cn.dev33.satoken.SaManager;
import cn.dev33.satoken.annotation.SaCheckBasic;
import cn.dev33.satoken.annotation.SaCheckDisable;
import cn.dev33.satoken.annotation.SaCheckLogin;
import cn.dev33.satoken.annotation.SaCheckPermission;
import cn.dev33.satoken.annotation.SaCheckRole;
import cn.dev33.satoken.annotation.SaCheckSafe;
import cn.dev33.satoken.basic.SaBasicTemplate; import cn.dev33.satoken.basic.SaBasicTemplate;
import cn.dev33.satoken.basic.SaBasicUtil; import cn.dev33.satoken.basic.SaBasicUtil;
import cn.dev33.satoken.config.SaTokenConfig; import cn.dev33.satoken.config.SaTokenConfig;
@ -23,7 +17,6 @@ import cn.dev33.satoken.listener.SaTokenEventCenter;
import cn.dev33.satoken.listener.SaTokenListener; import cn.dev33.satoken.listener.SaTokenListener;
import cn.dev33.satoken.same.SaSameTemplate; import cn.dev33.satoken.same.SaSameTemplate;
import cn.dev33.satoken.sign.SaSignTemplate; import cn.dev33.satoken.sign.SaSignTemplate;
import cn.dev33.satoken.solon.integration.SaTokenAnnotationInterceptor;
import cn.dev33.satoken.solon.model.SaContextForSolon; import cn.dev33.satoken.solon.model.SaContextForSolon;
import cn.dev33.satoken.stp.StpInterface; import cn.dev33.satoken.stp.StpInterface;
import cn.dev33.satoken.stp.StpLogic; import cn.dev33.satoken.stp.StpLogic;
@ -39,13 +32,6 @@ public class XPluginImp implements Plugin {
@Override @Override
public void start(AopContext context) { public void start(AopContext context) {
context.beanAroundAdd(SaCheckPermission.class, SaTokenAnnotationInterceptor.INSTANCE);
context.beanAroundAdd(SaCheckRole.class, SaTokenAnnotationInterceptor.INSTANCE);
context.beanAroundAdd(SaCheckLogin.class, SaTokenAnnotationInterceptor.INSTANCE);
context.beanAroundAdd(SaCheckSafe.class, SaTokenAnnotationInterceptor.INSTANCE);
context.beanAroundAdd(SaCheckDisable.class, SaTokenAnnotationInterceptor.INSTANCE);
context.beanAroundAdd(SaCheckBasic.class, SaTokenAnnotationInterceptor.INSTANCE);
//集成初始化 //集成初始化
// 注入上下文Bean // 注入上下文Bean

View File

@ -1,40 +0,0 @@
package cn.dev33.satoken.solon.integration;
import cn.dev33.satoken.annotation.SaIgnore;
import cn.dev33.satoken.strategy.SaStrategy;
import org.noear.solon.core.aspect.Interceptor;
import org.noear.solon.core.aspect.Invocation;
import org.noear.solon.core.handle.Context;
import java.lang.reflect.Method;
/**
* @author noear
* @since 1.4
* @deprecated 1.10改用 SaTokenPathInterceptor
*/
@Deprecated
public class SaTokenAnnotationInterceptor implements Interceptor {
public static final SaTokenAnnotationInterceptor INSTANCE = new SaTokenAnnotationInterceptor();
@Override
public Object doIntercept(Invocation inv) throws Throwable {
// 如果此 Method 或其所属 Class 标注了 @SaIgnore则忽略掉鉴权
Context ctx = Context.current();
if (ctx != null && "1".equals(ctx.attr("_SaTokenPathInterceptor"))) {
// 执行原有逻辑
return inv.invoke();
} else {
Method method = inv.method().getMethod();
if (SaStrategy.me.isAnnotationPresent.apply(method, SaIgnore.class) == false) {
SaStrategy.me.checkMethodAnnotation.accept(method);
}
// 执行原有逻辑
return inv.invoke();
}
}
}

View File

@ -1,30 +1,32 @@
package cn.dev33.satoken.solon.integration; package cn.dev33.satoken.solon.integration;
import cn.dev33.satoken.annotation.SaIgnore;
import cn.dev33.satoken.exception.BackResultException; import cn.dev33.satoken.exception.BackResultException;
import cn.dev33.satoken.exception.SaTokenException; import cn.dev33.satoken.exception.SaTokenException;
import cn.dev33.satoken.exception.StopMatchException; import cn.dev33.satoken.exception.StopMatchException;
import cn.dev33.satoken.filter.SaFilterAuthStrategy; import cn.dev33.satoken.filter.SaFilterAuthStrategy;
import cn.dev33.satoken.filter.SaFilterErrorStrategy; import cn.dev33.satoken.filter.SaFilterErrorStrategy;
import cn.dev33.satoken.router.SaRouter; import cn.dev33.satoken.router.SaRouter;
import org.noear.solon.Utils; import cn.dev33.satoken.strategy.SaStrategy;
import org.noear.solon.core.handle.Context; import org.noear.solon.Solon;
import org.noear.solon.core.handle.Filter; import org.noear.solon.core.handle.*;
import org.noear.solon.core.handle.FilterChain;
import java.lang.reflect.Method;
import java.util.ArrayList; import java.util.ArrayList;
import java.util.Arrays; import java.util.Arrays;
import java.util.List; import java.util.List;
/** /**
* sa-token 基于路由的过滤式鉴权( +SaTokenAnnotationInterceptor ) * sa-token 基于路由的过滤式鉴权增加了注解的处理使用优先级要低些
* *
* @author noear * @author noear
* @since 1.9 * @since 1.10
* @deprecated 1.10改用 SaTokenPathInterceptor
* @see SaTokenPathInterceptor
*/ */
@Deprecated
public class SaTokenPathFilter implements Filter { public class SaTokenPathFilter implements Filter {
/**
* 是否打开注解鉴权
*/
public boolean isAnnotation = true;
// ------------------------ 设置此过滤器 拦截 & 放行 的路由 // ------------------------ 设置此过滤器 拦截 & 放行 的路由
@ -163,12 +165,32 @@ public class SaTokenPathFilter implements Filter {
@Override @Override
public void doFilter(Context ctx, FilterChain chain) throws Throwable { public void doFilter(Context ctx, FilterChain chain) throws Throwable {
try { try {
// 执行全局过滤器 //查找当前主处理
SaRouter.match(includeList).notMatch(excludeList).check(r -> { Handler mainHandler = Solon.app().router().matchMain(ctx);
beforeAuth.run(null);
auth.run(null);
});
//如果是静态文件则不处理静态文件不在路由中
if (mainHandler != null) {
Action action = (mainHandler instanceof Action ? (Action) mainHandler : null);
if (isAnnotation && action != null) {
// 获取此请求对应的 Method 处理函数
Method method = action.method().getMethod();
// 如果此 Method 或其所属 Class 标注了 @SaIgnore则忽略掉鉴权
if (SaStrategy.me.isAnnotationPresent.apply(method, SaIgnore.class)) {
return;
}
// 注解校验
SaStrategy.me.checkMethodAnnotation.accept(method);
}
//路径规则处理
SaRouter.match(includeList).notMatch(excludeList).check(r -> {
beforeAuth.run(mainHandler);
auth.run(mainHandler);
});
}
} catch (StopMatchException e) { } catch (StopMatchException e) {
} catch (SaTokenException e) { } catch (SaTokenException e) {
@ -186,12 +208,8 @@ public class SaTokenPathFilter implements Filter {
} }
ctx.setHandled(true); ctx.setHandled(true);
return; return;
} catch (Throwable e) {
// 异常解包
throw Utils.throwableUnwrap(e); //solon 的最后层还有保底处理
} }
// 执行
chain.doFilter(ctx); chain.doFilter(ctx);
} }
} }

View File

@ -18,10 +18,8 @@ import java.util.Arrays;
import java.util.List; import java.util.List;
/** /**
* sa-token 基于路由的拦截式鉴权增加了注解的处理 * sa-token 基于路由的拦截式鉴权增加了注解的处理使用优先级要高些
* *
* @author kong
* @since 1.9
* @author noear * @author noear
* @since 1.10 * @since 1.10
*/ */
@ -172,8 +170,6 @@ public class SaTokenPathInterceptor implements Handler {
Action action = ctx.action(); Action action = ctx.action();
if(isAnnotation && action != null){ if(isAnnotation && action != null){
ctx.attrSet("_SaTokenPathInterceptor", "1");
// 获取此请求对应的 Method 处理函数 // 获取此请求对应的 Method 处理函数
Method method = action.method().getMethod(); Method method = action.method().getMethod();
@ -184,8 +180,6 @@ public class SaTokenPathInterceptor implements Handler {
// 注解校验 // 注解校验
SaStrategy.me.checkMethodAnnotation.accept(method); SaStrategy.me.checkMethodAnnotation.accept(method);
}else{
ctx.attrSet("_SaTokenPathInterceptor", "0");
} }
//路径规则处理 //路径规则处理