public class CustomUserDetailsService implements UserDetailsService {
@Autowired
MongoDBHelper dbhelper;
/*
* 根据用户名加载认证用户
*/
@Override
public UserDetails loadUserByUsername(String username) throws UsernameNotFoundException {
//步骤一:从数据库中查出用户数据
MongoDatabase db = dbhelper.getDB("huanle");
MongoCollection<Document> users = db.getCollection("user");
Document filter = new Document();
filter.append("account",username);
Document result = users.find(filter).first();
if(result==null) throw new UsernameNotFoundException(username+"不存在");
//步骤二:装配到UserDetails,相当于生成了一个<user>标签
UserDetails userDetails = new User(result.getString("account"), result.getString("password"), true, true, true, true,getAuthorities(result.getInteger("access")) );
return userDetails;
}
/** 根据用户级别,获得角色列表。比如用户级别为1,表示该用户是管理员,则返回ROLE_USER,ROLE_ADMIN
* @param access 用户级别
* @return 用户角色列表
*/
public Collection<GrantedAuthority> getAuthorities(int access){
List<GrantedAuthority> authList = new ArrayList<GrantedAuthority>(2);
authList.add(new SimpleGrantedAuthority("ROLE_USER"));
if(access==1){
authList.add(new SimpleGrantedAuthority("ROLE_ADMIN"));
}
return authList;
}
}
<http>
<intercept-url pattern="/user/**" access="hasRole('USER')" />
<intercept-url pattern="/admin/**" access="hasRole('ADMIN')" />
<form-login login-page="/login"
login-processing-url="/login"
authentication-failure-url="/login?error"
default-target-url="/"
username-parameter="phone"
password-parameter="password" />
<logout invalidate-session="true"
logout-url="/loginout"
logout-success-url="/login"/>
</http>
<authentication-manager>
<authentication-provider user-service-ref="customUserDetailsService" >
</authentication-provider>
</authentication-manager>
<!-- 自定义认证服务 -->
<beans:bean id="customUserDetailsService" class="com.huanle.utils.security.CustomUserDetailsService"></beans:bean>
| 属性 | 说明 |
|---|---|
| login-page=”/login” | 登录界面的位置 |
| login-processing-url=”/login” | 登录表单post到“/login” |
| authentication-failure-url=”/login?error” | 登录失败,重定向到“/login?error” |
| default-target-url=”/” | 登录成功,重定向到“/” |
| username-parameter=”phone” | 登录表单中,名为phone的参数作为认证的username |
| password-parameter=”password” | 登录表单中,名为password的参数作为认证的password |
<%@ page language="java" contentType="text/html; charset=UTF-8"
pageEncoding="UTF-8"%>
<%@taglib prefix="form" uri="http://www.springframework.org/tags/form" %>
<%@taglib prefix="my" uri="/WEB-INF/custom.tld" %>
<!DOCTYPE html>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<title>用户登录</title>
</head>
<body>
<form:form action="/login" method="post" commandName="login">
<ul>
<li>手机号:<form:input id="phone" name="phone" type="text" path="phone" /></li>
<li>密码:<form:input id="password" name="password" type="text" path="password"/></li>
<li>
<input style=" margin-right:30px; margin-left:70px" type="submit" value="登录"/>
</li>
</ul>
</form:form>
</body>
</html>
机械节能产品生产企业官网模板...
大气智能家居家具装修装饰类企业通用网站模板...
礼品公司网站模板
宽屏简约大气婚纱摄影影楼模板...
蓝白WAP手机综合医院类整站源码(独立后台)...苏ICP备2024110244号-2 苏公网安备32050702011978号 增值电信业务经营许可证编号:苏B2-20251499 | Copyright 2018 - 2025 源码网商城 (www.ymwmall.com) 版权所有