session共享经验分享

session共享

1.增加jar包丢到CATALINA.HOME/lib 
======================================
tomcat-catalina-7.0.57.jar
tomcat-jasper-7.0.57.jar
tomcat-servlet-api-7.0.57.jar
jedis-2.6.2.jar
commons-pool2-2.3.jar
tomcat-redis-session-0.8.jar

======================================
2.配置全局上下文
   CATALINA.HOME/conf/context.xml
   1) jndi方式  <Manager className="ru.zinin.redis.session.RedisManager" jedisJndiName="custom/jndi/path"/>
   2)普通方式  <Manager className="ru.zinin.redis.session.RedisManager" redisHostname="172.16.3.14" redisPort="6379" redisTimeout="10000" />

资料参见:https://github.com/zinin/tomcat-redis-session


1.将插件部署上原项目时,发现调用接口报如下错误

2015-5-1921:16:23 org.apache.catalina.core.StandardWrapperValve invoke

严重: Servlet.service() forservlet [spring-mvc] in context with path [/heika-mobile] threw exception

java.lang.IllegalStateException: Can't getexpireAt from redis.

   at ru.zinin.redis.session.RedisHttpSession.getExpireAt(RedisHttpSession.java:712)

   at ru.zinin.redis.session.RedisHttpSession.renewAll(RedisHttpSession.java:458)

   at ru.zinin.redis.session.RedisHttpSession.access(RedisHttpSession.java:508)

   at org.apache.catalina.connector.Request.doGetSession(Request.java:3039)

   at org.apache.catalina.connector.Request.getSession(Request.java:2384)

   at org.apache.catalina.connector.RequestFacade.getSession(RequestFacade.java:897)

   at org.apache.catalina.connector.RequestFacade.getSession(RequestFacade.java:909)

   at javax.servlet.http.HttpServletRequestWrapper.getSession(HttpServletRequestWrapper.java:238)

   atcom.heika.security.VersionedUsernamePasswordAuthenticationFilter.attemptAuthentication(VersionedUsernamePasswordAuthenticationFilter.java:48)

   atorg.springframework.security.web.authentication.AbstractAuthenticationProcessingFilter.doFilter(AbstractAuthenticationProcessingFilter.java:194)

   at org.springframework.security.web.FilterChainProxy$VirtualFilterChain.doFilter(FilterChainProxy.java:334)

   atorg.springframework.security.web.authentication.logout.LogoutFilter.doFilter(LogoutFilter.java:105)

   atorg.springframework.security.web.FilterChainProxy$VirtualFilterChain.doFilter(FilterChainProxy.java:334)

   atorg.springframework.security.web.context.SecurityContextPersistenceFilter.doFilter(SecurityContextPersistenceFilter.java:87)

   atorg.springframework.security.web.FilterChainProxy$VirtualFilterChain.doFilter(FilterChainProxy.java:334)

   at org.springframework.security.web.session.ConcurrentSessionFilter.doFilter(ConcurrentSessionFilter.java:125)

   atorg.springframework.security.web.FilterChainProxy$VirtualFilterChain.doFilter(FilterChainProxy.java:334)

   at org.springframework.security.web.FilterChainProxy.doFilterInternal(FilterChainProxy.java:184)

   at org.springframework.security.web.FilterChainProxy.doFilter(FilterChainProxy.java:155)

   at org.springframework.web.filter.DelegatingFilterProxy.invokeDelegate(DelegatingFilterProxy.java:343)

   at org.springframework.web.filter.DelegatingFilterProxy.doFilter(DelegatingFilterProxy.java:260)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at com.heika.mobile.servlet.CheckRequiredParametersFilter.doFilter(CheckRequiredParametersFilter.java:63)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at com.heika.mobile.servlet.PrintParametersFilter.doFilter(PrintParametersFilter.java:49)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at org.springframework.web.filter.CharacterEncodingFilter.doFilterInternal(CharacterEncodingFilter.java:88)

   at org.springframework.web.filter.OncePerRequestFilter.doFilter(OncePerRequestFilter.java:106)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:220)

   at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:122)

   at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:505)

   at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:170)

   at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:103)

   at org.apache.catalina.valves.AccessLogValve.invoke(AccessLogValve.java:950)

   at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)

   at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:423)

   at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:1079)

   at org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.java:620)

   at org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:316)

   at java.util.concurrent.ThreadPoolExecutor$Worker.runTask(ThreadPoolExecutor.java:895)

   at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:918)

   at org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)

   at java.lang.Thread.run(Thread.java:662)

2015-5-1921:16:23 org.apache.catalina.core.ApplicationDispatcher invoke

严重: Servlet.service() forservlet jsp threw exception

java.lang.IllegalStateException: Can't getexpireAt from redis.

   at ru.zinin.redis.session.RedisHttpSession.getExpireAt(RedisHttpSession.java:712)

   at ru.zinin.redis.session.RedisHttpSession.renewAll(RedisHttpSession.java:458)

   at ru.zinin.redis.session.RedisHttpSession.access(RedisHttpSession.java:508)

   at org.apache.catalina.connector.Request.doGetSession(Request.java:3039)

   at org.apache.catalina.connector.Request.getSession(Request.java:2384)

   at org.apache.catalina.connector.RequestFacade.getSession(RequestFacade.java:897)

   at javax.servlet.http.HttpServletRequestWrapper.getSession(HttpServletRequestWrapper.java:229)

   at org.apache.catalina.core.ApplicationHttpRequest.getSession(ApplicationHttpRequest.java:575)

   at org.apache.catalina.core.ApplicationHttpRequest.getSession(ApplicationHttpRequest.java:520)

   at org.apache.jasper.runtime.PageContextImpl._initialize(PageContextImpl.java:147)

   at org.apache.jasper.runtime.PageContextImpl.initialize(PageContextImpl.java:126)

   at org.apache.jasper.runtime.JspFactoryImpl.internalGetPageContext(JspFactoryImpl.java:112)

   at org.apache.jasper.runtime.JspFactoryImpl.getPageContext(JspFactoryImpl.java:65)

   at org.apache.jsp.err._500_jsp._jspService(_500_jsp.java:53)

   at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70)

   at javax.servlet.http.HttpServlet.service(HttpServlet.java:731)

   at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:432)

   at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:395)

   at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:339)

   at javax.servlet.http.HttpServlet.service(HttpServlet.java:731)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:303)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at org.apache.catalina.core.ApplicationDispatcher.invoke(ApplicationDispatcher.java:748)

   at org.apache.catalina.core.ApplicationDispatcher.processRequest(ApplicationDispatcher.java:488)

   at org.apache.catalina.core.ApplicationDispatcher.doForward(ApplicationDispatcher.java:411)

   at org.apache.catalina.core.ApplicationDispatcher.forward(ApplicationDispatcher.java:338)

   at org.apache.catalina.core.StandardHostValve.custom(StandardHostValve.java:476)

   at org.apache.catalina.core.StandardHostValve.status(StandardHostValve.java:345)

   at org.apache.catalina.core.StandardHostValve.throwable(StandardHostValve.java:437)

   at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:208)

   at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:103)

   at org.apache.catalina.valves.AccessLogValve.invoke(AccessLogValve.java:950)

   at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)

   at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:423)

   at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:1079)

   at org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.java:620)

   at org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:316)

   at java.util.concurrent.ThreadPoolExecutor$Worker.runTask(ThreadPoolExecutor.java:895)

   at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:918)

   at org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)

   at java.lang.Thread.run(Thread.java:662)

2015-5-1921:16:23 org.apache.catalina.core.StandardHostValve custom

严重: Exception ProcessingErrorPage[errorCode=500, location=/err/500.jsp]

org.apache.jasper.JasperException:javax.servlet.ServletException:java.lang.IllegalStateException: Can't getexpireAt from redis.

   at org.apache.jasper.servlet.JspServletWrapper.handleJspException(JspServletWrapper.java:549)

   at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:455)

   at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:395)

   at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:339)

   at javax.servlet.http.HttpServlet.service(HttpServlet.java:731)

   at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:303)

   at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

   at org.apache.catalina.core.ApplicationDispatcher.invoke(ApplicationDispatcher.java:748)

   at org.apache.catalina.core.ApplicationDispatcher.processRequest(ApplicationDispatcher.java:488)

   at org.apache.catalina.core.ApplicationDispatcher.doForward(ApplicationDispatcher.java:411)

   at org.apache.catalina.core.ApplicationDispatcher.forward(ApplicationDispatcher.java:338)

   at org.apache.catalina.core.StandardHostValve.custom(StandardHostValve.java:476)

   at org.apache.catalina.core.StandardHostValve.status(StandardHostValve.java:345)

   at org.apache.catalina.core.StandardHostValve.throwable(StandardHostValve.java:437)

   at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:208)

   at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:103)

   at org.apache.catalina.valves.AccessLogValve.invoke(AccessLogValve.java:950)

   at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)

   at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:423)

   at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:1079)

   at org.apache.coyote.AbstractProtocol$AbstractConnectionHandler.process(AbstractProtocol.java:620)

   at org.apache.tomcat.util.net.JIoEndpoint$SocketProcessor.run(JIoEndpoint.java:316)

   at java.util.concurrent.ThreadPoolExecutor$Worker.runTask(ThreadPoolExecutor.java:895)

   at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:918)

   at org.apache.tomcat.util.threads.TaskThread$WrappingRunnable.run(TaskThread.java:61)

   at java.lang.Thread.run(Thread.java:662)

Caused by:javax.servlet.ServletException:java.lang.IllegalStateException: Can't getexpireAt from redis.

   at org.apache.jsp.err._500_jsp._jspService(_500_jsp.java:80)

   at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:70)

   at javax.servlet.http.HttpServlet.service(HttpServlet.java:731)

   at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:432)

   ... 24 more

Caused by:java.lang.IllegalStateException: Can't getexpireAt from redis.

   at ru.zinin.redis.session.RedisHttpSession.getExpireAt(RedisHttpSession.java:712)

   at ru.zinin.redis.session.RedisHttpSession.renewAll(RedisHttpSession.java:458)

   at ru.zinin.redis.session.RedisHttpSession.access(RedisHttpSession.java:508)

   at org.apache.catalina.connector.Request.doGetSession(Request.java:3039)

   at org.apache.catalina.connector.Request.getSession(Request.java:2384)

   at org.apache.catalina.connector.RequestFacade.getSession(RequestFacade.java:897)

   at javax.servlet.http.HttpServletRequestWrapper.getSession(HttpServletRequestWrapper.java:229)

   at org.apache.catalina.core.ApplicationHttpRequest.getSession(ApplicationHttpRequest.java:575)

   at org.apache.catalina.core.ApplicationHttpRequest.getSession(ApplicationHttpRequest.java:520)

   at org.apache.jasper.runtime.PageContextImpl._initialize(PageContextImpl.java:147)

   at org.apache.jasper.runtime.PageContextImpl.initialize(PageContextImpl.java:126)

   at org.apache.jasper.runtime.JspFactoryImpl.internalGetPageContext(JspFactoryImpl.java:112)

   at org.apache.jasper.runtime.JspFactoryImpl.getPageContext(JspFactoryImpl.java:65)

   at org.apache.jsp.err._500_jsp._jspService(_500_jsp.java:53)

   ... 27 more

 

2. 观察log,发现所有错误的源头都在Request.getSession,继续追踪可跟踪到插件的RedisHttpSession.getExpireAt(RedisHttpSession.java:712)


3.分辨错误出于插件本身or 项目与插件的兼容

将插件独立部署到纯净的web项目中,环境一致,发现session共享无问题。证明项目与插件不兼容。

flushdb清除缓存后,查看redis keys *,发现在getSession(true)时,生成如下key-value

1) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:attrs"  (测试项)
2) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:attrs:test”(测试项)
3) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:expire_at"
4) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:last_access_time"
5) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:timeout"
6) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:creation_time"
7) "sessions

flushdb清除缓存后,运行现项目后,keys * ,发现缓存中只有如下key,

1) "session:B986BE49493FF84E6E2D03329C5B01CB48AE4F4C8470FB6A559952F942BAE074:last_access_time"

2) "session:7B07EB14EF6217D9FE66D509EE94FD6E86EBB9A47DB6DB1F548AFF92B09DF603:last_access_time"(真实sessionId)

此环境与纯净环境相对比,明显少了几种缓存

4.使用redis的monitor命令监控redis服务端接受的命令

发现下面几条类似的缓存确实set过,只不过get时,返回nil,怀疑是缓存过期。且expire_at与Can't getexpireAt from redis.

3) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:expire_at"
5) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:timeout"
6) "session:17538B1AC54FCE39DD48B78ACB78800C5B7B71038B769070CEF22768AC0A7933:creation_time"


5.反编译tomcat-redis-session-0.8.jar包,查看RedisHttpSession.java:712 相关的代码


  RedisHttpSession(String id, RedisManager manager, int maxInactiveInterval)
  {
    this.support = new PropertyChangeSupport(this);

    this.log.trace("Create session [NEW]. maxInactiveInterval = " + maxInactiveInterval);

    this.id = id;
    setManager(manager);

    this.isNew.set(true);

    String sessionsKey = RedisSessionKeys.getSessionsKey();
    String creationTimeKey = RedisSessionKeys.getCreationTimeKey(id);
    String lastAccessTimeKey = RedisSessionKeys.getLastAccessTimeKey(id);
    String expiresAtKey = RedisSessionKeys.getExpireAtKey(id);
    String timeoutKey = RedisSessionKeys.getSessionTimeoutKey(id);

    long currentTime = System.currentTimeMillis();
    long expireAtTime = currentTime + maxInactiveInterval * 1000;
    long expireAtTimeWithReserve = currentTime + maxInactiveInterval * 1000 * 2;


    Jedis jedis = this.pool.getResource();
    try {
      Transaction transaction = jedis.multi();
      transaction.set(creationTimeKey, Long.toString(currentTime));
      transaction.set(lastAccessTimeKey, Long.toString(currentTime));
      transaction.set(expiresAtKey, Long.toString(expireAtTimeWithReserve));
      transaction.set(timeoutKey, Integer.toString(maxInactiveInterval));


      transaction.expireAt(creationTimeKey, getUnixTime(expireAtTimeWithReserve));
      transaction.expireAt(lastAccessTimeKey, getUnixTime(expireAtTime));
      transaction.expireAt(expiresAtKey, getUnixTime(expireAtTimeWithReserve));
      transaction.expireAt(timeoutKey, getUnixTime(expireAtTimeWithReserve));



      transaction.zadd(sessionsKey, currentTime, id);


      transaction.exec();


      this.pool.returnResource(jedis);
    } catch (Throwable e) {
      this.pool.returnBrokenResource(jedis);
      throw new RuntimeException(e);
    }


    tellNew();
  }

猜测蓝色代码部分,可能存在问题。maxInactiveInterval的值?来自哪里?会不会 transaction.expireAt(expiresAtKey, getUnixTime(expireAtTimeWithReserve));处设置的超时时间有问题?


session有效期多少?在web.xml中有配置:

<session-config>
<session-timeout>604800</session-timeout>(以分为单位)
</session-config>

猜测此处值设置过大,导致currentTime + maxInactiveInterval * 1000;在设置有效期时超界。


将session有效期更改为30分钟

<session-config>
<session-timeout>30</session-timeout>(以分为单位)
</session-config>


发现问题解决。

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值