Filter过滤敏感词汇-----使用动态代理的方式
@WebFilter("/*")
public class SensitiveWordFilter implements Filter {
private ArrayList<String> list = new ArrayList<String>();
public void init(FilterConfig config) throws ServletException {
try {
//1.获取文件的真实路径
ServletContext context = config.getServletContext();
String realPath = context.getRealPath("/WEB-INF/classes/敏感词汇.txt");//文件的真实路径
//2.加载文件,将文件的每一行数据添加到list中
BufferedReader br = new BufferedReader(new FileReader(realPath));
String line = null;
while ((line = br.readLine()) != null) {
//将文件的每一行数据添加到list中
list.add(line);
}
//3.释放资源
br.close();
System.out.println(list);
} catch (Exception e) {
e.printStackTrace();
}
}
public void destroy() {
}
public void doFilter(ServletRequest req, ServletResponse resp, FilterChain chain) throws ServletException, IOException {
//0.强制转换
HttpServletRequest request = (HttpServletRequest) req;
HttpServletResponse response = (HttpServletResponse) resp;
//1.创建代理对象,增强getParameter方法
ServletRequest proxy_req = (ServletRequest) Proxy.newProxyInstance(req.getClass().getClassLoader(), req.getClass().getInterfaces(), new InvocationHandler() {
@Override
public Object invoke(Object proxy, Method method, Object[] args) throws Throwable {
//增强getParameter方法
//判断是否是getParameter方法
if (method.getName().equals("getParameter")) {
//增强返回值
//获取返回值
String value = (String) method.invoke(req, args);
if (value != null) {
for (String str : list) {
if (value.contains(str)) {
value = value.replaceAll(str, "***");
}
}
}
return value;
}
return method.invoke(req, args);
}
});
chain.doFilter(proxy_req, resp);
}
}