Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
N
nouiWithSpringMVC
Overview
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
gechengyang
nouiWithSpringMVC
Commits
7080e084
Commit
7080e084
authored
4 years ago
by
WeiCong
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
由于在集群环境下页面发起请求,由于ip都会在主备机器间切换,导致sessionid变化。因此现在屏蔽调资源访问拦截策略中基于sessionid一致性的拦截
parent
4b039167
Hide whitespace changes
Inline
Side-by-side
Showing
1 changed file
with
6 additions
and
6 deletions
+6
-6
ResourceAccessFilter.java
...rg/sss/presentation/noui/filter/ResourceAccessFilter.java
+6
-6
No files found.
src/main/java/org/sss/presentation/noui/filter/ResourceAccessFilter.java
View file @
7080e084
...
...
@@ -169,9 +169,9 @@ public class ResourceAccessFilter implements Filter {
}
private
boolean
isLegalSecForMsg
(
String
sec
,
String
rawuid
,
String
res
,
HttpServletRequest
request
)
throws
Exception
{
if
(
isNotSameSessionId
(
rawuid
,
request
))
{
return
false
;
}
//
if (isNotSameSessionId(rawuid, request)) {
//
return false;
//
}
Object
obj
=
RedisUtil
.
get
(
KEY
.
replace
(
"##"
,
rawuid
));
if
(
obj
==
null
)
{
log
.
warn
(
KEY
.
replace
(
"##"
,
rawuid
)
+
"get logininfo is null"
);
...
...
@@ -197,9 +197,9 @@ public class ResourceAccessFilter implements Filter {
res
=
res
.
substring
(
res
.
lastIndexOf
(
"/"
)
+
1
);
}
String
rawuid
=
new
StringBuilder
(
uid
).
reverse
().
toString
();
if
(
isNotSameSessionId
(
rawuid
,
request
))
{
return
false
;
}
//
if (isNotSameSessionId(rawuid, request)) {
//
return false;
//
}
Object
obj
=
RedisUtil
.
get
(
KEY
.
replace
(
"##"
,
rawuid
));
if
(
obj
==
null
)
{
log
.
warn
(
KEY
.
replace
(
"##"
,
rawuid
)
+
"get logininfo is null"
);
...
...
This diff is collapsed.
Click to expand it.
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment