ajax登录

ajax登录

public class MyLogin
{
  public static String ajaxLogin(HttpServletRequest request, HttpServletResponse response)
  {
    String message = null;
    try {
      message = ajaxLoginDo(request, response);
    } catch (Exception e) {
      message = e.getMessage();
    }

    return message;
  }

  private static String ajaxLoginDo(HttpServletRequest request, HttpServletResponse response)
    throws Exception
  {
    String message = null;

    HttpSession session = request.getSession();
    LoginAspect loginAspect = null;
    LoginInfo loginInfo = null;
    int login = 0;
    try
    {
      request.getSession().removeAttribute("Login.Password.Salt");

      String userId = request.getParameter("userId");
      String pass = request.getParameter("pass");
      try
      {
        if (session.getAttribute("LogonUser") != null) {
          User ex = (User)session.getAttribute("LogonUser");
          if (!ex.getUserID().equals(userId)) {
            session.invalidate();
          }
        }

        Properties loginProperties = SystemConfig.INSTANCE
          .getLoginProperties();
        String loginAspectClass = loginProperties
          .getProperty("login.ascpect.class");
        if (!Util.isEmpty(loginAspectClass)) {
          loginAspect = (LoginAspect)Util.loadObject(
            loginAspectClass, MyLogin.class);
          if (loginAspect != null)
          {
            loginInfo = new LoginInfo(userId, pass, loginProperties);
          }
        }

        User user = new User();
        if ((loginAspect != null) && (loginInfo != null))
        {
          loginAspect.beforeLogin(loginInfo, request, response);
          userId = loginInfo.getUserId();
          pass = loginInfo.getPassword();
        }

        afterLogin(request, response, session, user);
        message = "success";

        request.getSession().setAttribute("LogonUser", user);

        String str1 = message;

        if ((loginAspect != null) && (loginInfo != null))
          loginAspect.afterLogin(login, loginInfo, request, response);
        return str1;
      }
      catch (UserException var30) {
        message = var30.getMessage();
        request.getSession().removeAttribute("LogonUser");
      }
    } catch (Exception var31) {
      request.getSession().removeAttribute("LogonUser");
      message = var31.getMessage();
    } finally {
      if ((loginAspect != null) && (loginInfo != null)) {
        loginAspect.afterLogin(login, loginInfo, request, response);
      }
    }
    return message;
  }

  protected static void afterLogin(HttpServletRequest request, HttpServletResponse response, HttpSession session, User user)
    throws UserException
  {
    LoginProcessor.getInstance().process(request, response, session, user);
    LoginConfig.getInstance().processLoginEvent(user, request);
    
    
    
    public class PageLogin extends HttpServlet
{
  public void doGet(HttpServletRequest request, HttpServletResponse response)
    throws ServletException, IOException
  {
    AjaxLogin.ajaxLogin(request, response);
    request.getRequestDispatcher("/jsp/main.jsp").forward(request, response);
  }

  public void doPost(HttpServletRequest request, HttpServletResponse response)
    throws ServletException, IOException
  {
    doGet(request, response);
  }
}

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
使用 Shiro 进行 Ajax 登录需要在登录请求中添加一个特殊的请求头 `X-Requested-With: XMLHttpRequest`,以便服务器能够识别这是一个 Ajax 请求。在 Shiro 的配置文件中,需要配置一个自定义的 filter,用于处理 Ajax 请求的登录。 以下是一个示例代码,用于实现 Shiro Ajax 登录: 1. 配置 Shiro 的自定义 filter ``` public class AjaxLoginFilter extends FormAuthenticationFilter { @Override protected boolean isAccessAllowed(ServletRequest request, ServletResponse response, Object mappedValue) { if (request.getHeader("X-Requested-With") != null && request.getHeader("X-Requested-With").equals("XMLHttpRequest")) { return true; } return super.isAccessAllowed(request, response, mappedValue); } @Override protected boolean onAccessDenied(ServletRequest request, ServletResponse response) throws Exception { HttpServletResponse httpServletResponse = (HttpServletResponse) response; httpServletResponse.setStatus(HttpStatus.UNAUTHORIZED.value()); return false; } } ``` 2. 配置 Shiro 的过滤器链 ``` @Bean public ShiroFilterFactoryBean shiroFilterFactoryBean(SecurityManager securityManager) { ShiroFilterFactoryBean shiroFilterFactoryBean = new ShiroFilterFactoryBean(); shiroFilterFactoryBean.setSecurityManager(securityManager); Map<String, String> filterChainDefinitionMap = new LinkedHashMap<>(); filterChainDefinitionMap.put("/login", "anon"); filterChainDefinitionMap.put("/logout", "logout"); filterChainDefinitionMap.put("/**", "authc"); shiroFilterFactoryBean.setFilterChainDefinitionMap(filterChainDefinitionMap); Map<String, Filter> filters = new HashMap<>(); filters.put("authc", new AjaxLoginFilter()); shiroFilterFactoryBean.setFilters(filters); return shiroFilterFactoryBean; } ``` 3. 在前端发送 Ajax 请求时添加特殊请求头,以便服务器能够识别这是一个 Ajax 请求 ``` $.ajax({ type: 'POST', url: '/login', beforeSend: function(xhr) { xhr.setRequestHeader('X-Requested-With', 'XMLHttpRequest'); }, data: {username: 'admin', password: 'admin'}, success: function(data) { console.log(data); }, error: function(xhr, status, error) { console.log(xhr); } }); ```
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值