SpringMVC讀取Cookie判斷用戶是否登錄,對每一個action都要進行判斷。之前使用jstl標簽在頁面上判斷session如果沒有登錄就使用如下代碼跳轉到登錄頁面。
<c:if test="${sessionScope.login == null || sessionScope.login == false}">
<!-- 未登錄 -->
<c:redirect url="/login"/>
</c:if>
<c:if test="${sessionScope.login}">
<!-- 已登錄 -->
</c:if>
但是測試發現如果session過期,頁面渲染就會無故中斷並且不會跳轉到登錄頁面。故嘗試使用攔截器來進行登錄判斷。
攔截器配置文件如下
<!-- <mvc:mapping path="/**" /> 如果只寫一個*,則不能攔截類似/*/*的請求。靜態資源的請求需要判斷不進行攔截 -->
<mvc:interceptors>
<mvc:interceptor>
<mvc:mapping path="/**" />
<bean class="com.ts.settle.tools.interceptor.LoginInterceptor">
<property name="excludedUrls">
<list>
<value>/login</value>
<value>/static/</value>
</list>
</property>
</bean>
</mvc:interceptor>
</mvc:interceptors>
攔截器實現類如下
public class LoginInterceptor implements HandlerInterceptor {
private AvatarLogger logger = AvatarLoggerFactory.getLogger(this.getClass());
private List<String> excludedUrls;
/**
* 在DispatcherServlet完全處理完請求后被調用
* 當攔截器拋出異常時,依然會從當前攔截器往回執行所的攔截器的afterCompletion()
*/
public void afterCompletion(HttpServletRequest request,
HttpServletResponse response, Object handler, Exception exception)
throws Exception {
}
//在業務處理器處理請求執行完成后,生成視圖之前執行的動作
public void postHandle(HttpServletRequest request, HttpServletResponse response,
Object handler, ModelAndView modelAndView) throws Exception {
}
/**
* 在業務處理器處理請求之前被調用
* 如果返回false 則退出本攔截器,本攔截器后面的postHandle與afterCompletion不再執行
*/
public boolean preHandle(HttpServletRequest request, HttpServletResponse response,
Object handler) throws Exception {
String requestUri = request.getRequestURI();
for (String url : excludedUrls) {
if (requestUri.contains(url)) {
return true;
}
}
HttpSession session = request.getSession();
Boolean login = (Boolean) session.getAttribute("login");
if (login == null || !login) {
//System.out.println(request.getContextPath());
logger.info("Pedirect to login page");
response.sendRedirect(request.getContextPath() + "/login");
}
return true;
}
public void setExcludedUrls(List<String> excludedUrls) {
this.excludedUrls = excludedUrls;
}
}