From a4bc7ba7a708cf2867f3027f593ef72c0d8acf78 Mon Sep 17 00:00:00 2001 From: liusheng <337615773@qq.com> Date: 星期六, 06 九月 2025 17:46:14 +0800 Subject: [PATCH] 单点登陆白名单访问功能 --- ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java | 41 ++++++++++++++++++++++------------------- 1 files changed, 22 insertions(+), 19 deletions(-) diff --git a/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java b/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java index a5e2dd6..0ebc693 100644 --- a/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java +++ b/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java @@ -1,11 +1,12 @@ package com.ruoyi.web.controller.system; -import com.alibaba.fastjson2.JSONObject; +import com.ruoyi.common.annotation.IpWhitelist; import com.ruoyi.common.constant.Constants; import com.ruoyi.common.core.domain.AjaxResult; import com.ruoyi.common.core.domain.entity.SysMenu; import com.ruoyi.common.core.domain.entity.SysUser; import com.ruoyi.common.core.domain.model.LoginBody; +import com.ruoyi.common.exception.base.BaseException; import com.ruoyi.common.utils.RSAPublicKeyExample; import com.ruoyi.common.utils.SecurityUtils; import com.ruoyi.common.utils.StringUtils; @@ -16,11 +17,15 @@ import lombok.extern.slf4j.Slf4j; import org.springframework.beans.factory.annotation.Autowired; import org.springframework.beans.factory.annotation.Value; +import org.springframework.http.HttpStatus; +import org.springframework.http.ResponseEntity; import org.springframework.web.bind.annotation.*; +import org.springframework.web.servlet.view.RedirectView; -import javax.annotation.security.PermitAll; import javax.servlet.http.HttpServletResponse; +import javax.validation.Valid; import java.io.IOException; +import java.net.URI; import java.util.List; import java.util.Set; @@ -67,35 +72,33 @@ } /** - * 鍗曠偣鐧诲綍鏂规硶 + * 鍗曠偣鐧诲綍鏂规硶(闇�瑕侀厤缃甀P鐧藉悕鍗�) + * 闇�瑕佸湪sys_config琛ㄧ殑sys.ip.whitelis涓紝鍔犲叆IP鎵嶈兘璁块棶璇ユ柟娉� * - * @param loginBody 鍗曠偣鐧诲綍淇℃伅 * @return 缁撴灉 */ - @PostMapping("/SSOLogin") - public AjaxResult SSOLogin(@RequestBody LoginBody loginBody) { - AjaxResult ajax = AjaxResult.success(); + @IpWhitelist + @GetMapping("/SSOLogin") + public RedirectView SSOLogin(@RequestParam String userName, @RequestParam String orgid, @RequestParam(required = false) String deptId) { + RedirectView redirectView = new RedirectView(); // 鐢熸垚浠ょ墝 - if (StringUtils.isEmpty(loginBody.getUsername()) || StringUtils.isEmpty(loginBody.getOrgid())) { - return AjaxResult.error("鐢ㄦ埛鍚嶆垨缁勭粐鏈烘瀯鎴栭儴闂ㄤ笉鑳戒负绌�"); + if (StringUtils.isEmpty(userName) || StringUtils.isEmpty(orgid)) { + throw new BaseException("鐢ㄦ埛鍚嶆垨缁勭粐鏈烘瀯鎴栭儴闂ㄤ笉鑳戒负绌�"); } - - if (StringUtils.isEmpty(loginBody.getDeptId())) { - loginBody.setDeptId(null); - } - String userName = loginBody.getUsername(); if (isEncryp == 1) { RSAPublicKeyExample rsaPublicKeyExample = new RSAPublicKeyExample(); - userName = rsaPublicKeyExample.decryptedData(loginBody.getUsername(), pri_key); + userName = rsaPublicKeyExample.decryptedData(userName, pri_key); } - String token = loginService.loginByUserName(userName + "&" + loginBody.getOrgid() + "&" + loginBody.getDeptId()); + String token = loginService.loginByUserName(userName + "&" + orgid + "&" + deptId); if (StringUtils.isEmpty(token)) { - return AjaxResult.error("鐧婚檰澶辫触"); + throw new BaseException("鐧婚檰澶辫触"); } - ajax.put(Constants.TOKEN, token); - return ajax; + redirectView.setUrl("http://127.0.0.1:8091/loginSSO?token=" + token + "&orgid=" + orgid + "&orgname=''" + "&ZuHuID=''&deptCode=''&redirect=''"); + redirectView.setStatusCode(HttpStatus.MOVED_PERMANENTLY); + return redirectView; } + @GetMapping("/getToken") public void getToken(HttpServletResponse response) throws IOException { // 鐢熸垚鎴栬幏鍙杢oken -- Gitblit v1.9.3