目录

一、定义登录控制器

目录结构

代码:

1、创建tuser类

package com.demo.pojo;

import lombok.allargsconstructor;
import lombok.data;
import lombok.noargsconstructor;

@data
@allargsconstructor
@noargsconstructor
public class tuser {
    private string name;
    private string password;
}

2、创建logincontroller类

package com.demo.controller;

import com.demo.pojo.tuser;
import com.demo.pojo.user;
import org.springframework.stereotype.controller;
import org.springframework.ui.model;
import org.springframework.web.bind.annotation.requestmapping;
import org.springframework.web.bind.annotation.requestmethod;
import org.springframework.web.bind.annotation.requestparam;

import javax.servlet.http.httpservletrequest;
import javax.servlet.http.httpservletresponse;
import javax.servlet.http.httpsession;

@controller
@requestmapping("/user")
public class logincontroller {
    @requestmapping("/login")
    public string login(model model){
        model.addattribute("msg","这里是登陆界面");
        return "login";
    }

    @requestmapping("/dologin")
    public string dologin(tuser tuser,
                          httpservletrequest req, httpservletresponse resp, model model){
        system.out.println("###logincontroller.dologin()");

        if(!"admin".equals(tuser.getname())||!"admin".equals(tuser.getpassword())){
            model.addattribute("msg","用户名或密码不正确!");
            return "loginfail";//跳转到loginfail.jsp
        }

        httpsession httpsession=req.getsession(true);//存在session则使用,不存在则创建
        httpsession.setattribute("user",tuser);
        model.addattribute("msg","登录成功");
        return "success";//跳转到success.jsp
    }

    @requestmapping("/loginout")
    public string loginfail(httpsession session,model model){
        model.addattribute("msg","退出登录");
        session.removeattribute("user");
        return "login";
    }

}

页面代码:

1、login.jsp

<%@ page contenttype="text/html;charset=utf-8" language="java" %>
<html>
<head>
    <title>login</title>
</head>
<body>
<h1>${msg}</h1>
<form id="login" action="${pagecontext.request.contextpath}/user/dologin" method="post">
    用户名:<input type="text" name="name"/><br/>
    密码:<input type="password" name="password"><br/>
    <input type="submit">
</form>

</body>
</html>

2、loginfail.jsp

<%@ page contenttype="text/html;charset=utf-8" language="java" %>
<html>
<head>
    <title>loginfail</title>
</head>
<body>
<h1>${msg}</h1>
<h2><a href="${pagecontext.request.contextpath}/user/loginout" rel="external nofollow"  rel="external nofollow" >返回登录界面</a></h2>
</body>
</html>

3、success.jsp

<%@ page contenttype="text/html;charset=utf-8" language="java" %>
<html>
<head>
    <title>success</title>
</head>
<body>
${msg}
<h2><a href="${pagecontext.request.contextpath}/user/loginout" rel="external nofollow"  rel="external nofollow" >退出登录</a></h2>
</body>
</html>

二、自定义登录拦截器

代码:

1、创建logininterceptor类,作为拦截器类需实现handlerinterceptor,并重写里面的三个方法prehandle、posthandle、aftercompletion:

package com.demo.interceptor;

import org.springframework.web.servlet.handlerinterceptor;
import org.springframework.web.servlet.modelandview;

import javax.servlet.http.httpservletrequest;
import javax.servlet.http.httpservletresponse;

public class logininterceptor implements handlerinterceptor {
    @override
    public boolean prehandle(httpservletrequest request, httpservletresponse response,
                             object handler) throws exception {
        system.out.println("logininterceptor prehandle");
        //放行:判断什么情况下
        //1、请求到登陆界面放行,首次登陆
        if(request.getrequesturi().contains("login")||request.getrequesturi().contains("dologin")){
            return true;
        }
        //2、退出登录可直接放行
        if(request.getrequesturi().contains("loginout")){
            return true;
        }
        //3、通过登录进入 放行
        if(request.getsession().getattribute("user")!=null){
            return true;
        }
        //非法请求进行拦截
        //重定向到登录页面
        response.sendredirect(request.getcontextpath()+"login");
        //拦截
        return false;
    }

    @override
    public void posthandle(httpservletrequest request, httpservletresponse response,
                           object handler, modelandview modelandview) throws exception {
        system.out.println("logininterceptor  "+"posthandle");
    }

    @override
    public void aftercompletion(httpservletrequest request, httpservletresponse response,
                                object handler, exception ex) throws exception {
        system.out.println("logininterceptor  "+"aftercompletion");
    }
}

2、在spring-mvc.xml中配置logininterceptor拦截器 测试: 1、正常登录(正确密码:admin)

1.1、点击退出登录

2、用户名密码错误

2.1、点击返回登录界面

3、非法请求

到此这篇关于springmvc自定义拦截器登录检测功能的实现的文章就介绍到这了,更多相关springmvc自定义拦截器内容请搜索www.887551.com以前的文章或继续浏览下面的相关文章希望大家以后多多支持www.887551.com!