From 42675497d049b5265f114cf701f4049ce637e814 Mon Sep 17 00:00:00 2001 From: Helius <wangdoubleone@gmail.com> Date: Fri, 10 Jul 2020 12:53:14 +0800 Subject: [PATCH] modify --- src/main/java/com/xcong/excoin/configurations/security/TokenFilter.java | 8 ++++++-- 1 files changed, 6 insertions(+), 2 deletions(-) diff --git a/src/main/java/com/xcong/excoin/configurations/security/TokenFilter.java b/src/main/java/com/xcong/excoin/configurations/security/TokenFilter.java index c15cad7..1c3dede 100644 --- a/src/main/java/com/xcong/excoin/configurations/security/TokenFilter.java +++ b/src/main/java/com/xcong/excoin/configurations/security/TokenFilter.java @@ -44,7 +44,6 @@ public void doFilter(ServletRequest servletRequest, ServletResponse servletResponse, FilterChain filterChain) throws IOException, ServletException { HttpServletRequest request = (HttpServletRequest) servletRequest; String token = resolveToken(request); - log.info("token为-->{}", token); if (StrUtil.isNotBlank(token)) { String redisKey = ""; // 根据user-agent判断pc端还是app端 @@ -55,16 +54,17 @@ } String loginStr = (String) redisUtils.get(redisKey); - log.info("当前登陆用户为:{}", loginStr); if (StrUtil.isNotBlank(loginStr)) { MemberEntity loginUser = JSONObject.parseObject(loginStr, MemberEntity.class); Authentication authentication = new UsernamePasswordAuthenticationToken(loginUser, token, new ArrayList<>()); SecurityContextHolder.getContext().setAuthentication(authentication); redisUtils.expire(redisKey, 300000); } else { + log.info("token无法查询:{}", token); SecurityContextHolder.clearContext(); } } else { + log.info("token为空:{}", request.getRequestURI()); SecurityContextHolder.clearContext(); } @@ -91,11 +91,15 @@ String rsaToken = bearerToken.replace(AppContants.TOKEN_START_WITH, ""); RSA rsa = new RSA(securityProperties.getPrivateKey(), null); String[] tokens = StrUtil.split(rsa.decryptStr(rsaToken, KeyType.PrivateKey), "_"); + if (verifyTokenExpired(Long.parseLong(tokens[1]))) { return tokens[0]; } + log.info("前面token为{}", tokens[0]); + log.info("时间为:{}, 当前时间为:{}", tokens[1], System.currentTimeMillis()); return null; } + log.info("bearerToken---->{}", bearerToken); } catch (Exception e) { log.error("#解析token异常#", e); return null; -- Gitblit v1.9.1