|
@@ -10,11 +10,11 @@ import com.ruoyi.common.core.redis.RedisCache;
|
|
|
import com.ruoyi.common.utils.ServletUtils;
|
|
|
import com.ruoyi.common.utils.ip.AddressUtils;
|
|
|
import com.ruoyi.common.utils.ip.IpUtils;
|
|
|
+import com.ruoyi.framework.config.properties.TokenProperties;
|
|
|
import io.jsonwebtoken.Claims;
|
|
|
import io.jsonwebtoken.Jwts;
|
|
|
import io.jsonwebtoken.SignatureAlgorithm;
|
|
|
import org.springframework.beans.factory.annotation.Autowired;
|
|
|
-import org.springframework.beans.factory.annotation.Value;
|
|
|
import org.springframework.stereotype.Component;
|
|
|
|
|
|
import javax.servlet.http.HttpServletRequest;
|
|
@@ -25,22 +25,10 @@ import java.util.concurrent.TimeUnit;
|
|
|
/**
|
|
|
* token验证处理
|
|
|
*
|
|
|
- * @author ruoyi
|
|
|
+ * @author Lion Li
|
|
|
*/
|
|
|
@Component
|
|
|
-public class TokenService
|
|
|
-{
|
|
|
- // 令牌自定义标识
|
|
|
- @Value("${token.header}")
|
|
|
- private String header;
|
|
|
-
|
|
|
- // 令牌秘钥
|
|
|
- @Value("${token.secret}")
|
|
|
- private String secret;
|
|
|
-
|
|
|
- // 令牌有效期(默认30分钟)
|
|
|
- @Value("${token.expireTime}")
|
|
|
- private int expireTime;
|
|
|
+public class TokenService {
|
|
|
|
|
|
protected static final long MILLIS_SECOND = 1000;
|
|
|
|
|
@@ -51,17 +39,18 @@ public class TokenService
|
|
|
@Autowired
|
|
|
private RedisCache redisCache;
|
|
|
|
|
|
+ @Autowired
|
|
|
+ private TokenProperties tokenProperties;
|
|
|
+
|
|
|
/**
|
|
|
* 获取用户身份信息
|
|
|
*
|
|
|
* @return 用户信息
|
|
|
*/
|
|
|
- public LoginUser getLoginUser(HttpServletRequest request)
|
|
|
- {
|
|
|
+ public LoginUser getLoginUser(HttpServletRequest request) {
|
|
|
// 获取请求携带的令牌
|
|
|
String token = getToken(request);
|
|
|
- if (Validator.isNotEmpty(token))
|
|
|
- {
|
|
|
+ if (Validator.isNotEmpty(token)) {
|
|
|
Claims claims = parseToken(token);
|
|
|
// 解析对应的权限以及用户信息
|
|
|
String uuid = (String) claims.get(Constants.LOGIN_USER_KEY);
|
|
@@ -75,10 +64,8 @@ public class TokenService
|
|
|
/**
|
|
|
* 设置用户身份信息
|
|
|
*/
|
|
|
- public void setLoginUser(LoginUser loginUser)
|
|
|
- {
|
|
|
- if (Validator.isNotNull(loginUser) && Validator.isNotEmpty(loginUser.getToken()))
|
|
|
- {
|
|
|
+ public void setLoginUser(LoginUser loginUser) {
|
|
|
+ if (Validator.isNotNull(loginUser) && Validator.isNotEmpty(loginUser.getToken())) {
|
|
|
refreshToken(loginUser);
|
|
|
}
|
|
|
}
|
|
@@ -86,10 +73,8 @@ public class TokenService
|
|
|
/**
|
|
|
* 删除用户身份信息
|
|
|
*/
|
|
|
- public void delLoginUser(String token)
|
|
|
- {
|
|
|
- if (Validator.isNotEmpty(token))
|
|
|
- {
|
|
|
+ public void delLoginUser(String token) {
|
|
|
+ if (Validator.isNotEmpty(token)) {
|
|
|
String userKey = getTokenKey(token);
|
|
|
redisCache.deleteObject(userKey);
|
|
|
}
|
|
@@ -101,8 +86,7 @@ public class TokenService
|
|
|
* @param loginUser 用户信息
|
|
|
* @return 令牌
|
|
|
*/
|
|
|
- public String createToken(LoginUser loginUser)
|
|
|
- {
|
|
|
+ public String createToken(LoginUser loginUser) {
|
|
|
String token = IdUtil.fastUUID();
|
|
|
loginUser.setToken(token);
|
|
|
setUserAgent(loginUser);
|
|
@@ -119,12 +103,10 @@ public class TokenService
|
|
|
* @param loginUser
|
|
|
* @return 令牌
|
|
|
*/
|
|
|
- public void verifyToken(LoginUser loginUser)
|
|
|
- {
|
|
|
+ public void verifyToken(LoginUser loginUser) {
|
|
|
long expireTime = loginUser.getExpireTime();
|
|
|
long currentTime = System.currentTimeMillis();
|
|
|
- if (expireTime - currentTime <= MILLIS_MINUTE_TEN)
|
|
|
- {
|
|
|
+ if (expireTime - currentTime <= MILLIS_MINUTE_TEN) {
|
|
|
refreshToken(loginUser);
|
|
|
}
|
|
|
}
|
|
@@ -134,13 +116,12 @@ public class TokenService
|
|
|
*
|
|
|
* @param loginUser 登录信息
|
|
|
*/
|
|
|
- public void refreshToken(LoginUser loginUser)
|
|
|
- {
|
|
|
+ public void refreshToken(LoginUser loginUser) {
|
|
|
loginUser.setLoginTime(System.currentTimeMillis());
|
|
|
- loginUser.setExpireTime(loginUser.getLoginTime() + expireTime * MILLIS_MINUTE);
|
|
|
+ loginUser.setExpireTime(loginUser.getLoginTime() + tokenProperties.getExpireTime() * MILLIS_MINUTE);
|
|
|
// 根据uuid将loginUser缓存
|
|
|
String userKey = getTokenKey(loginUser.getToken());
|
|
|
- redisCache.setCacheObject(userKey, loginUser, expireTime, TimeUnit.MINUTES);
|
|
|
+ redisCache.setCacheObject(userKey, loginUser, tokenProperties.getExpireTime(), TimeUnit.MINUTES);
|
|
|
}
|
|
|
|
|
|
/**
|
|
@@ -148,8 +129,7 @@ public class TokenService
|
|
|
*
|
|
|
* @param loginUser 登录信息
|
|
|
*/
|
|
|
- public void setUserAgent(LoginUser loginUser)
|
|
|
- {
|
|
|
+ public void setUserAgent(LoginUser loginUser) {
|
|
|
UserAgent userAgent = UserAgentUtil.parse(ServletUtils.getRequest().getHeader("User-Agent"));
|
|
|
String ip = IpUtils.getIpAddr(ServletUtils.getRequest());
|
|
|
loginUser.setIpaddr(ip);
|
|
@@ -164,11 +144,10 @@ public class TokenService
|
|
|
* @param claims 数据声明
|
|
|
* @return 令牌
|
|
|
*/
|
|
|
- private String createToken(Map<String, Object> claims)
|
|
|
- {
|
|
|
+ private String createToken(Map<String, Object> claims) {
|
|
|
String token = Jwts.builder()
|
|
|
.setClaims(claims)
|
|
|
- .signWith(SignatureAlgorithm.HS512, secret).compact();
|
|
|
+ .signWith(SignatureAlgorithm.HS512, tokenProperties.getSecret()).compact();
|
|
|
return token;
|
|
|
}
|
|
|
|
|
@@ -178,10 +157,9 @@ public class TokenService
|
|
|
* @param token 令牌
|
|
|
* @return 数据声明
|
|
|
*/
|
|
|
- private Claims parseToken(String token)
|
|
|
- {
|
|
|
+ private Claims parseToken(String token) {
|
|
|
return Jwts.parser()
|
|
|
- .setSigningKey(secret)
|
|
|
+ .setSigningKey(tokenProperties.getSecret())
|
|
|
.parseClaimsJws(token)
|
|
|
.getBody();
|
|
|
}
|
|
@@ -192,8 +170,7 @@ public class TokenService
|
|
|
* @param token 令牌
|
|
|
* @return 用户名
|
|
|
*/
|
|
|
- public String getUsernameFromToken(String token)
|
|
|
- {
|
|
|
+ public String getUsernameFromToken(String token) {
|
|
|
Claims claims = parseToken(token);
|
|
|
return claims.getSubject();
|
|
|
}
|
|
@@ -204,18 +181,15 @@ public class TokenService
|
|
|
* @param request
|
|
|
* @return token
|
|
|
*/
|
|
|
- private String getToken(HttpServletRequest request)
|
|
|
- {
|
|
|
- String token = request.getHeader(header);
|
|
|
- if (Validator.isNotEmpty(token) && token.startsWith(Constants.TOKEN_PREFIX))
|
|
|
- {
|
|
|
+ private String getToken(HttpServletRequest request) {
|
|
|
+ String token = request.getHeader(tokenProperties.getHeader());
|
|
|
+ if (Validator.isNotEmpty(token) && token.startsWith(Constants.TOKEN_PREFIX)) {
|
|
|
token = token.replace(Constants.TOKEN_PREFIX, "");
|
|
|
}
|
|
|
return token;
|
|
|
}
|
|
|
|
|
|
- private String getTokenKey(String uuid)
|
|
|
- {
|
|
|
+ private String getTokenKey(String uuid) {
|
|
|
return Constants.LOGIN_TOKEN_KEY + uuid;
|
|
|
}
|
|
|
}
|