AuthGlobalFilter

AuthGlobalFilter

package filter;

import cn.hutool.core.text.AntPathMatcher;
import config.AuthProperties;
import lombok.RequiredArgsConstructor;
import org.springframework.cloud.gateway.filter.GatewayFilterChain;
import org.springframework.cloud.gateway.filter.GlobalFilter;
import org.springframework.core.Ordered;
import org.springframework.http.HttpStatus;
import org.springframework.http.server.reactive.ServerHttpRequest;
import org.springframework.http.server.reactive.ServerHttpResponse;
import org.springframework.stereotype.Component;
import org.springframework.web.server.ServerWebExchange;
import reactor.core.publisher.Mono;
import utils.JwtTool;

import java.util.List;

@Component
@RequiredArgsConstructor
public class AuthGlobalFilter implements GlobalFilter, Ordered {

    private final JwtTool jwtTool;
    private final AuthProperties authProperties;
    private final AntPathMatcher antPathMatcher = new AntPathMatcher();

    @Override
    public Mono<Void> filter(ServerWebExchange exchange, GatewayFilterChain chain) {
        //1.获取请求体
        ServerHttpRequest request = exchange.getRequest();
        //2.判断拦截
        String path = request.getPath().toString();
        if(isExclude(path))     return chain.filter(exchange);
        //3.获取token
        List<String> list = request.getHeaders().get("Authorization");
        String token = null;
        if(list!=null && !list.isEmpty())   token = list.get(0);
        Long userId = null;
        //4.解析token
        try {
            userId = jwtTool.parseToken(token);
        } catch (Exception e) {
            ServerHttpResponse response = exchange.getResponse();
            response.setStatusCode(HttpStatus.UNAUTHORIZED);
            return response.setComplete();
        }
        //5.传递用户信息
        String userInfo = userId.toString();
        ServerWebExchange serverWebExchange = exchange.mutate()
                .request(builder -> builder.header("user-info", userInfo))
                .build();
        //6.放行
        return chain.filter(serverWebExchange);
    }

    private boolean isExclude(String givenPath) {
        for(String path : authProperties.getExcludePaths()) {
            return antPathMatcher.match(path, givenPath);
        }
        return false;
    }

    @Override
    public int getOrder() {
        return 0;   //  使得过滤器放在最开始执行
    }
}

posted @ 2025-01-19 20:34  徐徐丶  阅读(24)  评论(0)    收藏  举报