SpringSecurity中 LoginUser implements UserDetails

public class LoginUser implements UserDetails
{
private static final long serialVersionUID = 1L;

/**
* 用户ID
*/
private Long userId;

/**
* 部门ID
*/
private Long deptId;

/**
* 用户唯一标识
*/
private String token;

/**
* 登录时间
*/
private Long loginTime;

/**
* 过期时间
*/
private Long expireTime;

/**
* 登录IP地址
*/
private String ipaddr;

/**
* 登录地点
*/
private String loginLocation;

/**
* 浏览器类型
*/
private String browser;

/**
* 操作系统
*/
private String os;

/**
* 权限列表
*/
private Set<String> permissions;

/**
* 用户信息
*/
private SysUser user;

public Long getUserId()
{
return userId;
}

public void setUserId(Long userId)
{
this.userId = userId;
}

public Long getDeptId()
{
return deptId;
}

public void setDeptId(Long deptId)
{
this.deptId = deptId;
}

public String getToken()
{
return token;
}

public void setToken(String token)
{
this.token = token;
}

public LoginUser()
{
}

public LoginUser(SysUser user, Set<String> permissions)
{
this.user = user;
this.permissions = permissions;
}

public LoginUser(Long userId, Long deptId, SysUser user, Set<String> permissions)
{
this.userId = userId;
this.deptId = deptId;
this.user = user;
this.permissions = permissions;
}

@JSONField(serialize = false)
@Override
public String getPassword()
{
return user.getPassword();
}

@Override
public String getUsername()
{
return user.getUserName();
}

/**
* 账户是否未过期,过期无法验证
*/
@JSONField(serialize = false)
@Override
public boolean isAccountNonExpired()
{
return true;
}

/**
* 指定用户是否解锁,锁定的用户无法进行身份验证
*
* @return
*/
@JSONField(serialize = false)
@Override
public boolean isAccountNonLocked()
{
return true;
}

/**
* 指示是否已过期的用户的凭据(密码),过期的凭据防止认证
*
* @return
*/
@JSONField(serialize = false)
@Override
public boolean isCredentialsNonExpired()
{
return true;
}

/**
* 是否可用 ,禁用的用户不能身份验证
*
* @return
*/
@JSONField(serialize = false)
@Override
public boolean isEnabled()
{
return true;
}

public Long getLoginTime()
{
return loginTime;
}

public void setLoginTime(Long loginTime)
{
this.loginTime = loginTime;
}

public String getIpaddr()
{
return ipaddr;
}

public void setIpaddr(String ipaddr)
{
this.ipaddr = ipaddr;
}

public String getLoginLocation()
{
return loginLocation;
}

public void setLoginLocation(String loginLocation)
{
this.loginLocation = loginLocation;
}

public String getBrowser()
{
return browser;
}

public void setBrowser(String browser)
{
this.browser = browser;
}

public String getOs()
{
return os;
}

public void setOs(String os)
{
this.os = os;
}

public Long getExpireTime()
{
return expireTime;
}

public void setExpireTime(Long expireTime)
{
this.expireTime = expireTime;
}

public Set<String> getPermissions()
{
return permissions;
}

public void setPermissions(Set<String> permissions)
{
this.permissions = permissions;
}

public SysUser getUser()
{
return user;
}

public void setUser(SysUser user)
{
this.user = user;
}

@Override
public Collection<? extends GrantedAuthority> getAuthorities()
{
return null;
}
}

好的,以下是使用Spring Security实现APP登录和获取用户当前登录信息的步骤: 1. 添加Spring Security依赖 在后端的pom.xml添加以下依赖: ``` <dependency> <groupId>org.springframework.boot</groupId> <artifactId>spring-boot-starter-security</artifactId> </dependency> ``` 2. 配置Spring Security 在后端的application.properties添加以下配置: ``` # 禁用CSRF保护,以便移动端使用RESTful API spring.security.csrf.enabled=false # 配置用户信息,这里使用了内存存储 spring.security.user.name=admin spring.security.user.password=password spring.security.user.roles=USER ``` 3. 创建RESTful API接口 在后端创建一个登录接口,用于接收移动端传递的用户名和密码,并返回认证结果。以下是一个简单的示例: ``` @RestController public class LoginController { @PostMapping("/login") public ResponseEntity<?> login(@RequestBody LoginRequest loginRequest) { // 在这里进行用户认证,返回认证结果 return ResponseEntity.ok(new LoginResponse("认证成功")); } public static class LoginRequest { private String username; private String password; // 省略getter和setter } public static class LoginResponse { private String message; // 省略getter和setter } } ``` 4. 创建一个RESTful API接口,用于获取当前登录用户信息 ``` @RestController public class UserController { @GetMapping("/user") public ResponseEntity<User> getCurrentUser(Authentication authentication) { User user = (User) authentication.getPrincipal(); return ResponseEntity.ok(user); } public static class User { private String username; private List<String> roles; // 省略getter和setter } } ``` 5. 在移动端实现登录和获取用户信息功能 在移动端实现登录和获取用户信息功能,具体实现方式根据移动端技术栈不同而有所区别。以下是一个简单的示例: ``` public class LoginActivity extends AppCompatActivity { private EditText usernameEditText; private EditText passwordEditText; @Override protected void onCreate(Bundle savedInstanceState) { super.onCreate(savedInstanceState); setContentView(R.layout.activity_login); usernameEditText = findViewById(R.id.usernameEditText); passwordEditText = findViewById(R.id.passwordEditText); Button loginButton = findViewById(R.id.loginButton); loginButton.setOnClickListener(new View.OnClickListener() { @Override public void onClick(View v) { String username = usernameEditText.getText().toString(); String password = passwordEditText.getText().toString(); LoginRequest loginRequest = new LoginRequest(username, password); loginUser(loginRequest); } }); } private void loginUser(LoginRequest loginRequest) { String url = "http://localhost:8080/login"; String requestBody = new Gson().toJson(loginRequest); MediaType JSON = MediaType.parse("application/json; charset=utf-8"); RequestBody body = RequestBody.create(JSON, requestBody); Request request = new Request.Builder() .url(url) .post(body) .build(); OkHttpClient client = new OkHttpClient(); client.newCall(request).enqueue(new Callback() { @Override public void onFailure(Call call, IOException e) { e.printStackTrace(); } @Override public void onResponse(Call call, Response response) throws IOException { String responseBody = response.body().string(); LoginResponse loginResponse = new Gson().fromJson(responseBody, LoginResponse.class); runOnUiThread(new Runnable() { @Override public void run() { Toast.makeText(LoginActivity.this, loginResponse.getMessage(), Toast.LENGTH_SHORT).show(); } }); } }); } public static class LoginRequest { private String username; private String password; // 省略getter和setter } public static class LoginResponse { private String message; // 省略getter和setter } } ``` 以上是一个简单的示例,实际情况需要根据具体需求进行修改和完善。
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值