MVC - 验证用户请求

方法一:

在Controllers里建一个ControllerBase,让其它Controller都继承它即可

public

class ControllerBase : Controller

{

protected bool _needPermission = true ;

public ControllerBase()

:

base ()

{

}

protected override void ExecuteCore()

{

if (!CheckLogon())

{

var ar = RedirectToAction( "LogOn" , "Account" , new System.Web.Routing. RouteValueDictionary ( new { returnUrl = Request.Url.PathAndQuery }));

ar.ExecuteResult(

this .ControllerContext);

}

else

{

base .ExecuteCore();

}

}

/// <summary>

/// Check user logon state

/// </summary>

/// <returns></returns>

private bool CheckLogon()

{

if (_needPermission && System.Web. HttpContext .Current.Session[Common.Definitions. SessionKeys .CurrentUser] == null ) // && !AutoLogon())

{

return false ;

}

else

{

return true ;

}

}

/// <summary>

/// Auto logon by Cookies

/// </summary>

/// <returns></returns>

private bool AutoLogon()

{

bool passed = false ;

HttpCookie keepLogonCookie = Request.Cookies[Common.Definitions. CookieKeys .KeepUserLogon];

HttpCookie savedUserIDCookie = Request.Cookies[Common.Definitions. CookieKeys .SavedUserID];

int userID;

if (keepLogonCookie != null && keepLogonCookie.Value == "1" && savedUserIDCookie!= null && int .TryParse(savedUserIDCookie.Value, out userID))

{

Business.

IPersonnelProvider provider = Business. PersonnalProviderAdapter .GetEmployeeProvider();

Data.

User user = provider.GetUserInfo(userID);

if (user != null )

{

//Auto Logon

Session[GSC.Common.Definitions.

SessionKeys .CurrentUser] = user;

Session[GSC.Common.Definitions.

SessionKeys .CurrentUserPermission] = provider.GetUserToPermission(user.UserID);

passed =

true ;

}

}

return passed;

}

}


  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 打赏
    打赏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包

打赏作者

icewizardry

你的鼓励将是我创作的最大动力

¥1 ¥2 ¥4 ¥6 ¥10 ¥20
扫码支付:¥1
获取中
扫码支付

您的余额不足,请更换扫码支付或充值

打赏作者

实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值