配置类配置
重写WebMvcConfigurer
import org.springframework.context.annotation.Bean;
import org.springframework.context.annotation.Configuration;
import org.springframework.web.servlet.config.annotation.CorsRegistry;
import org.springframework.web.servlet.config.annotation.WebMvcConfigurer;
@Configuration
public class GlobalCorsConfig implements WebMvcConfigurer {
@Override
public void addCorsMappings(CorsRegistry registry){
registry.addMapping("/**")
.allowCredentials(true)
.allowedOrigins("*")
.allowedHeaders("*")
.allowedMethods("*")
.maxAge(3600);
WebMvcConfigurer.super.addCorsMappings(registry);
}
}
拦截器实现
import org.springframework.stereotype.Component;
import javax.servlet.*;
import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpServletResponse;
import java.io.IOException;
@Component
public class GlobalCorsConfig implements Filter {
@Override
public void doFilter(ServletRequest servletRequest, ServletResponse servletResponse, FilterChain filterChain) throws IOException, ServletException {
HttpServletResponse httpServletResponse = (HttpServletResponse) servletResponse;
HttpServletRequest httpServletRequest = (HttpServletRequest) servletRequest;
httpServletResponse.setHeader("Access-Control-Allow-Origin",httpServletRequest.getHeader("origin"));
httpServletResponse.setHeader("Access-Control-Allow-Methods","POST,GET,OPTIONS,DELETE,HEAD");
httpServletResponse.setHeader("Access-Control-Max-Age","3600");
httpServletResponse.setHeader("Access-Control-Allow-Credentials","true");
filterChain.doFilter(httpServletRequest,httpServletResponse);
}
}
注解
@CrossOrigin(“*”)在方法上方法跨域,类上类中方法跨域
@CrossOrigin("*")
public class AaaController {
@CrossOrigin("*")
@GetMapper("/test")
public String test(){
return "ww";
}
}