From a4bc7ba7a708cf2867f3027f593ef72c0d8acf78 Mon Sep 17 00:00:00 2001
From: liusheng <337615773@qq.com>
Date: 星期六, 06 九月 2025 17:46:14 +0800
Subject: [PATCH] 单点登陆白名单访问功能

---
 ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java |   62 +++++++++++++++++++++++--------
 1 files changed, 46 insertions(+), 16 deletions(-)

diff --git a/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java b/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java
index 06a2955..0ebc693 100644
--- a/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java
+++ b/ruoyi-admin/src/main/java/com/ruoyi/web/controller/system/SysLoginController.java
@@ -1,25 +1,31 @@
 package com.ruoyi.web.controller.system;
 
+import com.ruoyi.common.annotation.IpWhitelist;
 import com.ruoyi.common.constant.Constants;
 import com.ruoyi.common.core.domain.AjaxResult;
 import com.ruoyi.common.core.domain.entity.SysMenu;
 import com.ruoyi.common.core.domain.entity.SysUser;
 import com.ruoyi.common.core.domain.model.LoginBody;
+import com.ruoyi.common.exception.base.BaseException;
+import com.ruoyi.common.utils.RSAPublicKeyExample;
 import com.ruoyi.common.utils.SecurityUtils;
 import com.ruoyi.common.utils.StringUtils;
 import com.ruoyi.framework.web.service.SysLoginService;
 import com.ruoyi.framework.web.service.SysPermissionService;
+import com.ruoyi.system.service.ISysDeptService;
 import com.ruoyi.system.service.ISysMenuService;
 import lombok.extern.slf4j.Slf4j;
 import org.springframework.beans.factory.annotation.Autowired;
-import org.springframework.web.bind.annotation.GetMapping;
-import org.springframework.web.bind.annotation.PostMapping;
-import org.springframework.web.bind.annotation.RequestBody;
-import org.springframework.web.bind.annotation.RestController;
+import org.springframework.beans.factory.annotation.Value;
+import org.springframework.http.HttpStatus;
+import org.springframework.http.ResponseEntity;
+import org.springframework.web.bind.annotation.*;
+import org.springframework.web.servlet.view.RedirectView;
 
-import javax.annotation.security.PermitAll;
 import javax.servlet.http.HttpServletResponse;
+import javax.validation.Valid;
 import java.io.IOException;
+import java.net.URI;
 import java.util.List;
 import java.util.Set;
 
@@ -38,7 +44,17 @@
     private ISysMenuService menuService;
 
     @Autowired
+    private ISysDeptService sysDeptService;
+
+    @Autowired
     private SysPermissionService permissionService;
+
+
+    @Value("${pri_key}")
+    private String pri_key;
+
+    @Value("${isEncryp}")
+    private Integer isEncryp;
 
     /**
      * 鐧诲綍鏂规硶
@@ -56,23 +72,32 @@
     }
 
     /**
-     * 鐧诲綍鏂规硶
+     * 鍗曠偣鐧诲綍鏂规硶(闇�瑕侀厤缃甀P鐧藉悕鍗�)
+     * 闇�瑕佸湪sys_config琛ㄧ殑sys.ip.whitelis涓紝鍔犲叆IP鎵嶈兘璁块棶璇ユ柟娉�
      *
-     * @param loginBody 鍗曠偣鐧诲綍淇℃伅
      * @return 缁撴灉
      */
-    @PostMapping("/SSOLogin")
-    public AjaxResult SSOLogin(@RequestBody LoginBody loginBody) {
-        AjaxResult ajax = AjaxResult.success();
+    @IpWhitelist
+    @GetMapping("/SSOLogin")
+    public RedirectView SSOLogin(@RequestParam String userName, @RequestParam String orgid, @RequestParam(required = false) String deptId) {
+        RedirectView redirectView = new RedirectView();
         // 鐢熸垚浠ょ墝
-        if (StringUtils.isEmpty(loginBody.getUsername()) || StringUtils.isEmpty(loginBody.getOrgid())) {
-            return AjaxResult.error("鐢ㄦ埛鍚嶆垨缁勭粐鏈烘瀯涓嶈兘涓虹┖");
+        if (StringUtils.isEmpty(userName) || StringUtils.isEmpty(orgid)) {
+            throw new BaseException("鐢ㄦ埛鍚嶆垨缁勭粐鏈烘瀯鎴栭儴闂ㄤ笉鑳戒负绌�");
         }
-
-        String token = loginService.loginByUserName(loginBody.getUsername() + "&" + loginBody.getOrgid()+"&" + loginBody.getDeptId());
-        ajax.put(Constants.TOKEN, token);
-        return ajax;
+        if (isEncryp == 1) {
+            RSAPublicKeyExample rsaPublicKeyExample = new RSAPublicKeyExample();
+            userName = rsaPublicKeyExample.decryptedData(userName, pri_key);
+        }
+        String token = loginService.loginByUserName(userName + "&" + orgid + "&" + deptId);
+        if (StringUtils.isEmpty(token)) {
+            throw new BaseException("鐧婚檰澶辫触");
+        }
+        redirectView.setUrl("http://127.0.0.1:8091/loginSSO?token=" + token + "&orgid=" + orgid + "&orgname=''" + "&ZuHuID=''&deptCode=''&redirect=''");
+        redirectView.setStatusCode(HttpStatus.MOVED_PERMANENTLY);
+        return redirectView;
     }
+
 
     @GetMapping("/getToken")
     public void getToken(HttpServletResponse response) throws IOException {
@@ -117,4 +142,9 @@
         List<SysMenu> menus = menuService.selectMenuTreeByUserId(userId);
         return AjaxResult.success(menuService.buildMenus(menus));
     }
+
+    @GetMapping("/getDept/{orgid}")
+    public AjaxResult getDept(@PathVariable String orgid) {
+        return AjaxResult.success(sysDeptService.selectDept(orgid));
+    }
 }

--
Gitblit v1.9.3