From 359ec45b055c86907368228bbf5891dc80b68c71 Mon Sep 17 00:00:00 2001 From: 疯狂的狮子Li <15040126243@163.com> Date: 星期三, 02 八月 2023 10:17:22 +0800 Subject: [PATCH] update 优化 客户端id与token校验异常信息 --- ruoyi-common/ruoyi-common-security/src/main/java/org/dromara/common/security/config/SecurityConfig.java | 11 +++++------ 1 files changed, 5 insertions(+), 6 deletions(-) diff --git a/ruoyi-common/ruoyi-common-security/src/main/java/org/dromara/common/security/config/SecurityConfig.java b/ruoyi-common/ruoyi-common-security/src/main/java/org/dromara/common/security/config/SecurityConfig.java index 7ac920f..69a2e10 100644 --- a/ruoyi-common/ruoyi-common-security/src/main/java/org/dromara/common/security/config/SecurityConfig.java +++ b/ruoyi-common/ruoyi-common-security/src/main/java/org/dromara/common/security/config/SecurityConfig.java @@ -48,15 +48,14 @@ // 妫�鏌ユ槸鍚︾櫥褰� 鏄惁鏈塼oken StpUtil.checkLogin(); - // 妫�鏌� header 閲岀殑 clientId 涓� token 閲岀殑鏄惁涓�鑷� + // 妫�鏌� header 涓� param 閲岀殑 clientid 涓� token 閲岀殑鏄惁涓�鑷� String headerCid = ServletUtils.getRequest().getHeader(LoginHelper.CLIENT_KEY); + String paramCid = ServletUtils.getParameter(LoginHelper.CLIENT_KEY); String clientId = StpUtil.getExtra(LoginHelper.CLIENT_KEY).toString(); - if (!StringUtils.equals(headerCid, clientId)) { + if (!StringUtils.equalsAny(clientId, headerCid, paramCid)) { // token 鏃犳晥 - throw NotLoginException.newInstance( - StpUtil.getLoginType(), - NotLoginException.INVALID_TOKEN, - NotLoginException.NOT_TOKEN_MESSAGE, + throw NotLoginException.newInstance(StpUtil.getLoginType(), + "-100", "瀹㈡埛绔疘D涓嶵oken涓嶅尮閰�", StpUtil.getTokenValue()); } -- Gitblit v1.9.3