CRM项目后端解决全局异常处理和权限不足Handler冲突的问题并为所有操作设置权限------CRM项目

package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TUser;
import com.alatus.query.UserQuery;
import com.alatus.result.Result;
import com.alatus.service.UserService;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.security.core.Authentication;
import org.springframework.web.bind.annotation.*;
import java.util.Arrays;
import java.util.List;

@RestController
public class UserController {
    @Resource
    private UserService userService;

//    获取登录信息
    @GetMapping(value = "/api/login/info")
    public Result loginInfo(Authentication authentication){
        TUser tUser = (TUser) authentication.getPrincipal();
        return Result.OK(tUser);
    }


    //免登录验证
    //因为发送的请求过来首先会过filter那一关,能到这说明token验证都通过了,我们直接返回200即可
    @GetMapping(value = "/api/login/free")
    public Result freeLogin(){
        return Result.OK();
    }
//    查询用户列表,用户分页查询

    @PreAuthorize(value = "hasAuthority('user:list')")
    @GetMapping(value = "/api/users")
//    传递参数current,可传可不传,
    public Result userPage(@RequestParam(value = Constants.CURRENT,required = false) Integer current){
        if(current == null){
            current = 1;
        }
//        返回结果为PageInfo
        PageInfo<TUser> userByPage = userService.getUserByPage(current);
        return Result.OK(userByPage);
    }

    @PreAuthorize(value = "hasAuthority('user:view')")
    @GetMapping(value = "/api/user/{id}")
    public Result userDetail(@PathVariable(value = Constants.ID)Integer id){
        TUser tUser = userService.getUserById(id);
        return Result.OK(tUser);
    }


//    添加用户
    @PreAuthorize(value = "hasAuthority('user:add')")
    @PostMapping(value = "/api/user/add")
    public Result addUser(UserQuery userQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        userQuery.setToken(token);
        int result = userService.saveUser(userQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }


//    编辑用户
    @PreAuthorize(value = "hasAuthority('user:edit')")
    @PutMapping(value = "/api/user/edit")
    public Result editUser(UserQuery userQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        userQuery.setToken(token);
        int result = userService.updateUser(userQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('user:delete')")
    @DeleteMapping(value = "/api/user/del/{id}")
    public Result delUser(@PathVariable(value = Constants.ID) Integer id, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        int result = userService.delUserById(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('user:delete')")
    @DeleteMapping(value = "/api/user/batchDel")
    public Result batchDelUsers(@RequestParam(value = Constants.IDS) String ids, @RequestHeader(value = Constants.TOKEN_NAME)String token){
//        将我们的字符串拆分并放到list中作为元素
        List<String> idList = Arrays.asList(ids.split(","));
        int result = userService.delUsersByIds(idList);
        return result >= idList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/user/activityOwner")
    public Result loadActivityOwner(){
        return Result.OK(userService.getOwnerList());
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TUser;
import com.alatus.query.UserQuery;
import com.alatus.result.Result;
import com.alatus.service.UserService;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.security.core.Authentication;
import org.springframework.web.bind.annotation.*;
import java.util.Arrays;
import java.util.List;

@RestController
public class UserController {
    @Resource
    private UserService userService;

//    获取登录信息
    @GetMapping(value = "/api/login/info")
    public Result loginInfo(Authentication authentication){
        TUser tUser = (TUser) authentication.getPrincipal();
        return Result.OK(tUser);
    }


    //免登录验证
    //因为发送的请求过来首先会过filter那一关,能到这说明token验证都通过了,我们直接返回200即可
    @GetMapping(value = "/api/login/free")
    public Result freeLogin(){
        return Result.OK();
    }
//    查询用户列表,用户分页查询

    @PreAuthorize(value = "hasAuthority('user:list')")
    @GetMapping(value = "/api/users")
//    传递参数current,可传可不传,
    public Result userPage(@RequestParam(value = Constants.CURRENT,required = false) Integer current){
        if(current == null){
            current = 1;
        }
//        返回结果为PageInfo
        PageInfo<TUser> userByPage = userService.getUserByPage(current);
        return Result.OK(userByPage);
    }

    @PreAuthorize(value = "hasAuthority('user:view')")
    @GetMapping(value = "/api/user/{id}")
    public Result userDetail(@PathVariable(value = Constants.ID)Integer id){
        TUser tUser = userService.getUserById(id);
        return Result.OK(tUser);
    }


//    添加用户
    @PreAuthorize(value = "hasAuthority('user:add')")
    @PostMapping(value = "/api/user/add")
    public Result addUser(UserQuery userQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        userQuery.setToken(token);
        int result = userService.saveUser(userQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }


//    编辑用户
    @PreAuthorize(value = "hasAuthority('user:edit')")
    @PutMapping(value = "/api/user/edit")
    public Result editUser(UserQuery userQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        userQuery.setToken(token);
        int result = userService.updateUser(userQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('user:delete')")
    @DeleteMapping(value = "/api/user/del/{id}")
    public Result delUser(@PathVariable(value = Constants.ID) Integer id, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        int result = userService.delUserById(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('user:delete')")
    @DeleteMapping(value = "/api/user/batchDel")
    public Result batchDelUsers(@RequestParam(value = Constants.IDS) String ids, @RequestHeader(value = Constants.TOKEN_NAME)String token){
//        将我们的字符串拆分并放到list中作为元素
        List<String> idList = Arrays.asList(ids.split(","));
        int result = userService.delUsersByIds(idList);
        return result >= idList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/user/activityOwner")
    public Result loadActivityOwner(){
        return Result.OK(userService.getOwnerList());
    }
}
package com.alatus.config.handler;

import com.alatus.result.CodeEnum;
import com.alatus.result.Result;
import org.springframework.dao.DataAccessException;
import org.springframework.web.bind.annotation.ExceptionHandler;
import org.springframework.web.bind.annotation.RestControllerAdvice;

/**
 * 全局异常处理
 */
//拦截标注了@RestController的所有controller的方法
@RestControllerAdvice
public class GlobalExceptionHandler {

    @ExceptionHandler(value = Exception.class)
    public Result handlerException(Exception e) {
        //打出异常信息
        e.printStackTrace();
//    权限不足的异常
        if(e.getMessage().equals("Access Denied")){
            return Result.FAIL(CodeEnum.ACCESS_DENIED);
        }
        else{
            return Result.FAIL(e.getMessage());
        }
    }

//    数据库的异常
    @ExceptionHandler(value = DataAccessException.class)
    public Result handlerSQLException(DataAccessException e) {
        e.printStackTrace();
        return Result.FAIL(CodeEnum.DATA_ACCESS_EXCEPTION);
    }
}
package com.alatus.config.handler;

import com.alatus.result.CodeEnum;
import com.alatus.result.Result;
import org.springframework.dao.DataAccessException;
import org.springframework.web.bind.annotation.ExceptionHandler;
import org.springframework.web.bind.annotation.RestControllerAdvice;

/**
 * 全局异常处理
 */
//拦截标注了@RestController的所有controller的方法
@RestControllerAdvice
public class GlobalExceptionHandler {

    @ExceptionHandler(value = Exception.class)
    public Result handlerException(Exception e) {
        //打出异常信息
        e.printStackTrace();
//    权限不足的异常
        if(e.getMessage().equals("Access Denied")){
            return Result.FAIL(CodeEnum.ACCESS_DENIED);
        }
        else{
            return Result.FAIL(e.getMessage());
        }
    }

//    数据库的异常
    @ExceptionHandler(value = DataAccessException.class)
    public Result handlerSQLException(DataAccessException e) {
        e.printStackTrace();
        return Result.FAIL(CodeEnum.DATA_ACCESS_EXCEPTION);
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TClue;
import com.alatus.query.ClueQuery;
import com.alatus.result.Result;
import com.alatus.service.ClueService;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.web.bind.annotation.*;
import org.springframework.web.multipart.MultipartFile;

import java.io.IOException;
import java.util.Arrays;
import java.util.List;

@RestController
public class ClueController {
    @Resource
    private ClueService clueService;

    @PreAuthorize(value = "hasAuthority('clue:list')")
    @GetMapping(value = "/api/clues")
    public Result cluePage(@RequestParam(value = Constants.CURRENT,required = false)Integer current){
        if(current == null){
            current = 1;
        }
        PageInfo<TClue> pageInfo = clueService.getClueByPage(current);
        return Result.OK(pageInfo);
    }

    @PreAuthorize(value = "hasAuthority('clue:import')")
    @PostMapping(value = "/api/clue/importExcel")
    public Result importExcel(MultipartFile file, @RequestHeader(value = Constants.TOKEN_NAME)String token) throws IOException {
//        接收到的文件名字需要和前端提交的名字相同,否则无法接收
        clueService.importExcel(file.getInputStream(),token);
        return Result.OK();
    }

    @PreAuthorize(value = "hasAuthority('clue:delete')")
    @DeleteMapping(value = "/api/clue/delete/{id}")
    public Result clueDel(@PathVariable(value = Constants.ID)Integer id){
        Integer result = clueService.deleteClue(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:delete')")
    @DeleteMapping(value = "/api/clue/batchDel")
    public Result batchDelClue(@RequestParam(value = Constants.IDS)String ids,@RequestHeader(value = Constants.TOKEN_NAME)String token){
        List<String> idsList = Arrays.asList(ids.split(","));
        int result = clueService.delClueByIds(idsList);
        return result >= idsList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/clue/phone/{phone}")
    public Result checkPhone(@PathVariable(value = Constants.PHONE)String phone){
        Boolean check = clueService.checkPhone(phone);
        return check ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:add')")
    @PostMapping(value = "/api/clue/add")
    public Result addClue(@RequestHeader(value = Constants.TOKEN_NAME)String token, ClueQuery clueQuery){
        clueQuery.setToken(token);
        int save = clueService.saveClue(clueQuery);
        return save >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/clue/{id}")
    public Result getClue(@PathVariable(value = Constants.ID)Integer id){
        TClue tClue = clueService.getClueById(id);
        return Result.OK(tClue);
    }

    @PreAuthorize(value = "hasAuthority('clue:edit')")
    @PutMapping(value = "/api/clue/edit")
    public Result editClue(@RequestHeader(value = Constants.TOKEN_NAME)String token, ClueQuery clueQuery){
        clueQuery.setToken(token);
        int update = clueService.editClue(clueQuery);
        return update >= 1 ? Result.OK() : Result.FAIL();
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TClue;
import com.alatus.query.ClueQuery;
import com.alatus.result.Result;
import com.alatus.service.ClueService;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.web.bind.annotation.*;
import org.springframework.web.multipart.MultipartFile;

import java.io.IOException;
import java.util.Arrays;
import java.util.List;

@RestController
public class ClueController {
    @Resource
    private ClueService clueService;

    @PreAuthorize(value = "hasAuthority('clue:list')")
    @GetMapping(value = "/api/clues")
    public Result cluePage(@RequestParam(value = Constants.CURRENT,required = false)Integer current){
        if(current == null){
            current = 1;
        }
        PageInfo<TClue> pageInfo = clueService.getClueByPage(current);
        return Result.OK(pageInfo);
    }

    @PreAuthorize(value = "hasAuthority('clue:import')")
    @PostMapping(value = "/api/clue/importExcel")
    public Result importExcel(MultipartFile file, @RequestHeader(value = Constants.TOKEN_NAME)String token) throws IOException {
//        接收到的文件名字需要和前端提交的名字相同,否则无法接收
        clueService.importExcel(file.getInputStream(),token);
        return Result.OK();
    }

    @PreAuthorize(value = "hasAuthority('clue:delete')")
    @DeleteMapping(value = "/api/clue/delete/{id}")
    public Result clueDel(@PathVariable(value = Constants.ID)Integer id){
        Integer result = clueService.deleteClue(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:delete')")
    @DeleteMapping(value = "/api/clue/batchDel")
    public Result batchDelClue(@RequestParam(value = Constants.IDS)String ids,@RequestHeader(value = Constants.TOKEN_NAME)String token){
        List<String> idsList = Arrays.asList(ids.split(","));
        int result = clueService.delClueByIds(idsList);
        return result >= idsList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/clue/phone/{phone}")
    public Result checkPhone(@PathVariable(value = Constants.PHONE)String phone){
        Boolean check = clueService.checkPhone(phone);
        return check ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:add')")
    @PostMapping(value = "/api/clue/add")
    public Result addClue(@RequestHeader(value = Constants.TOKEN_NAME)String token, ClueQuery clueQuery){
        clueQuery.setToken(token);
        int save = clueService.saveClue(clueQuery);
        return save >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('clue:view')")
    @GetMapping(value = "/api/clue/{id}")
    public Result getClue(@PathVariable(value = Constants.ID)Integer id){
        TClue tClue = clueService.getClueById(id);
        return Result.OK(tClue);
    }

    @PreAuthorize(value = "hasAuthority('clue:edit')")
    @PutMapping(value = "/api/clue/edit")
    public Result editClue(@RequestHeader(value = Constants.TOKEN_NAME)String token, ClueQuery clueQuery){
        clueQuery.setToken(token);
        int update = clueService.editClue(clueQuery);
        return update >= 1 ? Result.OK() : Result.FAIL();
    }
}

package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TActivity;
import com.alatus.query.ActivityQuery;
import com.alatus.result.Result;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.web.bind.annotation.*;
import com.alatus.service.ActivityService;

import java.util.Arrays;
import java.util.List;

@RestController
public class ActivityController {
    @Resource
    private ActivityService activityService;

    @PreAuthorize(value = "hasAuthority('activity:list')")
    @GetMapping(value = "/api/activities")
    public Result activityPage(@RequestParam(value = Constants.CURRENT,required = false)Integer current,
                               ActivityQuery activityQuery){
        if(current == null){
            current = 1;
        }
//        返回结果为PageInfo
        PageInfo<TActivity> activityByPage = activityService.getActivityByPage(current,activityQuery);
        return Result.OK(activityByPage);
    }

    @PreAuthorize(value = "hasAuthority('activity:add')")
    @PostMapping(value = "/api/activity/add")
    public Result addActivity(ActivityQuery activityQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        activityQuery.setToken(token);
        int result = activityService.saveActivity(activityQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:delete')")
    @DeleteMapping(value = "/api/activity/delete/{id}")
    public Result deleteActivty(@PathVariable(value = Constants.ID)Integer id){
        int result = activityService.deleteActivtyById(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:view')")
    @GetMapping(value = "/api/activity/{id}")
    public Result activityDetail(@PathVariable(value = Constants.ID)Integer id){
        TActivity tActivity = activityService.getActivityById(id);
        return Result.OK(tActivity);
    }

    @PreAuthorize(value = "hasAuthority('activity:delete')")
    @DeleteMapping(value = "/api/activity/batchDel")
    public Result activityBatchDel(@RequestParam(value = Constants.IDS)String ids, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        List<String> idList = Arrays.asList(ids.split(","));
        int result = activityService.delActivityByIds(idList);
        return result >= idList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:edit')")
    @PutMapping(value = "/api/activity/edit")
    public Result editActivity(ActivityQuery activityQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        activityQuery.setToken(token);
        int result = activityService.updateActivity(activityQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TActivity;
import com.alatus.query.ActivityQuery;
import com.alatus.result.Result;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.web.bind.annotation.*;
import com.alatus.service.ActivityService;

import java.util.Arrays;
import java.util.List;

@RestController
public class ActivityController {
    @Resource
    private ActivityService activityService;

    @PreAuthorize(value = "hasAuthority('activity:list')")
    @GetMapping(value = "/api/activities")
    public Result activityPage(@RequestParam(value = Constants.CURRENT,required = false)Integer current,
                               ActivityQuery activityQuery){
        if(current == null){
            current = 1;
        }
//        返回结果为PageInfo
        PageInfo<TActivity> activityByPage = activityService.getActivityByPage(current,activityQuery);
        return Result.OK(activityByPage);
    }

    @PreAuthorize(value = "hasAuthority('activity:add')")
    @PostMapping(value = "/api/activity/add")
    public Result addActivity(ActivityQuery activityQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        activityQuery.setToken(token);
        int result = activityService.saveActivity(activityQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:delete')")
    @DeleteMapping(value = "/api/activity/delete/{id}")
    public Result deleteActivty(@PathVariable(value = Constants.ID)Integer id){
        int result = activityService.deleteActivtyById(id);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:view')")
    @GetMapping(value = "/api/activity/{id}")
    public Result activityDetail(@PathVariable(value = Constants.ID)Integer id){
        TActivity tActivity = activityService.getActivityById(id);
        return Result.OK(tActivity);
    }

    @PreAuthorize(value = "hasAuthority('activity:delete')")
    @DeleteMapping(value = "/api/activity/batchDel")
    public Result activityBatchDel(@RequestParam(value = Constants.IDS)String ids, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        List<String> idList = Arrays.asList(ids.split(","));
        int result = activityService.delActivityByIds(idList);
        return result >= idList.size() ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('activity:edit')")
    @PutMapping(value = "/api/activity/edit")
    public Result editActivity(ActivityQuery activityQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        activityQuery.setToken(token);
        int result = activityService.updateActivity(activityQuery);
        return result >= 1 ? Result.OK() : Result.FAIL();
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TCustomer;
import com.alatus.query.CustomerQuery;
import com.alatus.result.CustomerExcel;
import com.alatus.result.Result;
import com.alatus.service.CustomerService;
import com.alibaba.excel.EasyExcel;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import jakarta.servlet.http.HttpServletResponse;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.util.ObjectUtils;
import org.springframework.web.bind.annotation.*;

import java.io.IOException;
import java.net.URLEncoder;
import java.util.Arrays;
import java.util.List;

@RestController
public class CustomerController {
    @Resource
    private CustomerService customerService;

    @PostMapping(value = "/api/clue/customer")
    public Result transferCustomer(@RequestBody CustomerQuery customerQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        customerQuery.setToken(token);
        Boolean convert = customerService.convertCustomer(customerQuery);
        return convert ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('customer:list')")
    @GetMapping(value = "/api/customers")
    public Result CustomersByPages(@RequestParam(value = Constants.CURRENT,required = false)Integer current){
        if(current == null){
            current = 1;
        }
        PageInfo<TCustomer> pageInfo = customerService.getCustomerByPage(current);
        return Result.OK(pageInfo);
    }

    @PreAuthorize(value = "hasAuthority('customer:export')")
    @GetMapping(value = "/api/exportExcel")
    public void exportExcel(@RequestParam(value = Constants.IDS,required = false)String ids, HttpServletResponse response) throws IOException {
        List<String> idList = null;
        if(!ObjectUtils.isEmpty(ids)){
            idList = Arrays.asList(ids.split(","));
        }
        //要想让浏览器弹出下载框,后端要设置一下响应头信息
        response.setContentType("application/octet-stream");
        response.setCharacterEncoding(Constants.UTF_8);
        response.setHeader("X-Frame-Options", "allow-from uri");// 解决IFrame拒绝的问题
        response.setHeader("Content-disposition", "attachment;filename="+ URLEncoder.encode(Constants.CUSTOMER_FILE_NAME,Constants.UTF_8)+System.currentTimeMillis() +".xlsx");
        List<CustomerExcel> dataList = customerService.getCustomerByExcel(idList);
        EasyExcel.write(response.getOutputStream(), CustomerExcel.class)
                .sheet()
                .doWrite(dataList);
    }
}
package com.alatus.web;

import com.alatus.constant.Constants;
import com.alatus.model.TCustomer;
import com.alatus.query.CustomerQuery;
import com.alatus.result.CustomerExcel;
import com.alatus.result.Result;
import com.alatus.service.CustomerService;
import com.alibaba.excel.EasyExcel;
import com.github.pagehelper.PageInfo;
import jakarta.annotation.Resource;
import jakarta.servlet.http.HttpServletResponse;
import org.springframework.security.access.prepost.PreAuthorize;
import org.springframework.util.ObjectUtils;
import org.springframework.web.bind.annotation.*;

import java.io.IOException;
import java.net.URLEncoder;
import java.util.Arrays;
import java.util.List;

@RestController
public class CustomerController {
    @Resource
    private CustomerService customerService;

    @PostMapping(value = "/api/clue/customer")
    public Result transferCustomer(@RequestBody CustomerQuery customerQuery, @RequestHeader(value = Constants.TOKEN_NAME)String token){
        customerQuery.setToken(token);
        Boolean convert = customerService.convertCustomer(customerQuery);
        return convert ? Result.OK() : Result.FAIL();
    }

    @PreAuthorize(value = "hasAuthority('customer:list')")
    @GetMapping(value = "/api/customers")
    public Result CustomersByPages(@RequestParam(value = Constants.CURRENT,required = false)Integer current){
        if(current == null){
            current = 1;
        }
        PageInfo<TCustomer> pageInfo = customerService.getCustomerByPage(current);
        return Result.OK(pageInfo);
    }

    @PreAuthorize(value = "hasAuthority('customer:export')")
    @GetMapping(value = "/api/exportExcel")
    public void exportExcel(@RequestParam(value = Constants.IDS,required = false)String ids, HttpServletResponse response) throws IOException {
        List<String> idList = null;
        if(!ObjectUtils.isEmpty(ids)){
            idList = Arrays.asList(ids.split(","));
        }
        //要想让浏览器弹出下载框,后端要设置一下响应头信息
        response.setContentType("application/octet-stream");
        response.setCharacterEncoding(Constants.UTF_8);
        response.setHeader("X-Frame-Options", "allow-from uri");// 解决IFrame拒绝的问题
        response.setHeader("Content-disposition", "attachment;filename="+ URLEncoder.encode(Constants.CUSTOMER_FILE_NAME,Constants.UTF_8)+System.currentTimeMillis() +".xlsx");
        List<CustomerExcel> dataList = customerService.getCustomerByExcel(idList);
        EasyExcel.write(response.getOutputStream(), CustomerExcel.class)
                .sheet()
                .doWrite(dataList);
    }
}
package com.alatus.config.handler;

import com.alatus.result.CodeEnum;
import com.alatus.result.Result;
import com.alatus.util.JSONUtils;
import com.alatus.util.ResponseUtils;
import jakarta.servlet.ServletException;
import jakarta.servlet.http.HttpServletRequest;
import jakarta.servlet.http.HttpServletResponse;
import org.springframework.security.access.AccessDeniedException;
import org.springframework.security.web.access.AccessDeniedHandler;
import org.springframework.stereotype.Component;

import java.io.IOException;

@Component
public class MyAccessDeniedHandler implements AccessDeniedHandler {

    @Override
    public void handle(HttpServletRequest request, HttpServletResponse response, AccessDeniedException accessDeniedException) throws IOException, ServletException {
        //执行到这里,说明登录成功,那我们向前端返回json就行了
        //R result = R.FAIL(accessDeniedException.getLocalizedMessage());
        Result result = Result.FAIL(CodeEnum.ACCESS_DENIED);

        //把R对象转成json
        String resultJSON = JSONUtils.toJSON(result);

        //把json写出去,写到浏览器
        ResponseUtils.write(response, resultJSON);
    }
}
package com.alatus.config.handler;

import com.alatus.result.CodeEnum;
import com.alatus.result.Result;
import com.alatus.util.JSONUtils;
import com.alatus.util.ResponseUtils;
import jakarta.servlet.ServletException;
import jakarta.servlet.http.HttpServletRequest;
import jakarta.servlet.http.HttpServletResponse;
import org.springframework.security.access.AccessDeniedException;
import org.springframework.security.web.access.AccessDeniedHandler;
import org.springframework.stereotype.Component;

import java.io.IOException;

@Component
public class MyAccessDeniedHandler implements AccessDeniedHandler {

    @Override
    public void handle(HttpServletRequest request, HttpServletResponse response, AccessDeniedException accessDeniedException) throws IOException, ServletException {
        //执行到这里,说明登录成功,那我们向前端返回json就行了
        //R result = R.FAIL(accessDeniedException.getLocalizedMessage());
        Result result = Result.FAIL(CodeEnum.ACCESS_DENIED);

        //把R对象转成json
        String resultJSON = JSONUtils.toJSON(result);

        //把json写出去,写到浏览器
        ResponseUtils.write(response, resultJSON);
    }
}
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值