Commit b7ca4979 authored by Nguyen Ha's avatar Nguyen Ha

filter add

parent 3031556e
...@@ -25,33 +25,33 @@ public class CorsFilter implements Filter { ...@@ -25,33 +25,33 @@ public class CorsFilter implements Filter {
HttpServletResponse response = (HttpServletResponse) resp; HttpServletResponse response = (HttpServletResponse) resp;
response.setHeader("Access-Control-Allow-Origin", "*"); response.setHeader("Access-Control-Allow-Origin", "*");
response.setHeader("Access-Control-Allow-Methods", "POST, GET, OPTIONS, DELETE, PUT"); response.setHeader("Access-Control-Allow-Methods", "POST, GET, OPTIONS, DELETE");
response.setHeader("Access-Control-Max-Age", "3600"); response.setHeader("Access-Control-Max-Age", "3600");
response.setHeader("Access-Control-Allow-Headers", "Origin, Authorization, X-Requested-With, Content-Type, Accept, token1, X-Auth-Token"); response.setHeader("Access-Control-Allow-Headers", "Origin, Authorization, X-Requested-With, Content-Type, Accept, token1, X-Auth-Token");
HttpServletRequest request = (HttpServletRequest) req; HttpServletRequest request = (HttpServletRequest) req;
chain.doFilter(req, resp);
// if ("OPTIONS".equalsIgnoreCase(request.getMethod())) {
// chain.doFilter(req, resp);
// return;
// }
// if ("/".equals(request.getRequestURI())) {
// chain.doFilter(req, resp); // chain.doFilter(req, resp);
// return;
// } if ("OPTIONS".equalsIgnoreCase(request.getMethod())) {
// String xAuthToken = request.getHeader("X-Auth-Token"); chain.doFilter(req, resp);
// if (xAuthToken == null || "".equals(xAuthToken)) { return;
// response.sendError(HttpServletResponse.SC_UNAUTHORIZED, "The token is null."); }
// return; if ("/".equals(request.getRequestURI())) {
// } chain.doFilter(req, resp);
// Object obj = RedisUtil.getInstance().get(xAuthToken); return;
// if (obj instanceof UserSession) { }
// chain.doFilter(req, resp); String xAuthToken = request.getHeader("X-Auth-Token");
// } else { if (xAuthToken == null || "".equals(xAuthToken)) {
// response.sendError(HttpServletResponse.SC_UNAUTHORIZED, "The token is invalid."); response.sendError(HttpServletResponse.SC_UNAUTHORIZED, "The token is null.");
// } return;
}
Object obj = RedisUtil.getInstance().get(xAuthToken);
if (obj instanceof UserSession) {
chain.doFilter(req, resp);
} else {
response.sendError(HttpServletResponse.SC_UNAUTHORIZED, "The token is invalid.");
}
} }
@Override @Override
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment