|
|
@@ -1,302 +1,372 @@
|
|
1
|
|
-package com.chinaitop.depot.business;
|
|
2
|
|
-
|
|
3
|
|
-import com.alibaba.fastjson.JSONArray;
|
|
4
|
|
-import com.alibaba.fastjson.JSONObject;
|
|
5
|
|
-import com.chinaitop.depot.business.utils.RedisUtil;
|
|
6
|
|
-import com.chinaitop.depot.systemLog.mapper.SystemLogMapper;
|
|
7
|
|
-import com.chinaitop.depot.systemLog.model.SystemLog;
|
|
8
|
|
-import com.chinaitop.depot.systemLog.model.SystemLogExample;
|
|
9
|
|
-import org.apache.commons.lang.ObjectUtils;
|
|
10
|
|
-import org.springframework.beans.factory.annotation.Autowired;
|
|
11
|
|
-import org.springframework.lang.Nullable;
|
|
12
|
|
-import org.springframework.web.method.HandlerMethod;
|
|
13
|
|
-import org.springframework.web.servlet.HandlerInterceptor;
|
|
14
|
|
-import org.springframework.web.servlet.ModelAndView;
|
|
15
|
|
-
|
|
16
|
|
-import javax.servlet.http.HttpServletRequest;
|
|
17
|
|
-import javax.servlet.http.HttpServletResponse;
|
|
18
|
|
-import java.util.*;
|
|
19
|
|
-
|
|
20
|
|
-
|
|
21
|
|
-/**
|
|
22
|
|
- * 功能日志拦截器
|
|
23
|
|
- *
|
|
24
|
|
- * @author fanxiongwei
|
|
25
|
|
- *
|
|
26
|
|
- */
|
|
27
|
|
-public class LogercostInterceptor implements HandlerInterceptor {
|
|
28
|
|
-
|
|
29
|
|
- private static String system_index = "库级系统";
|
|
30
|
|
-
|
|
31
|
|
- @Autowired
|
|
32
|
|
- private RedisUtil redisUtil;
|
|
33
|
|
-
|
|
34
|
|
- @Autowired
|
|
35
|
|
- private SystemLogMapper systemLogMapper;
|
|
36
|
|
-
|
|
37
|
|
- /**
|
|
38
|
|
- * preHandle是在请求执行前执行的
|
|
39
|
|
- */
|
|
40
|
|
- @Override
|
|
41
|
|
- public boolean preHandle(HttpServletRequest request, HttpServletResponse response, Object handler) throws Exception {
|
|
42
|
|
-
|
|
43
|
|
- //获取URL
|
|
44
|
|
- String url = request.getRequestURI();
|
|
45
|
|
- //注销日志
|
|
46
|
|
- if ("/userInfo/exitLogin".equals(url)) {
|
|
47
|
|
- loginLogger(request, response, url);
|
|
48
|
|
- }
|
|
49
|
|
-
|
|
50
|
|
- //System.out.println(butn_list);
|
|
51
|
|
-
|
|
52
|
|
- //System.out.println("Interception cost="+(System.currentTimeMillis()-start));
|
|
53
|
|
- return true;//返回true,postHandler和afterCompletion方法才能执行,否则false为拒绝执行,起到拦截器控制作用
|
|
54
|
|
- }
|
|
55
|
|
-
|
|
56
|
|
- /**
|
|
57
|
|
- * postHandler是在请求结束之后,视图渲染之前执行的,但只有preHandle方法返回true的时候才会执行
|
|
58
|
|
- */
|
|
59
|
|
- @Override
|
|
60
|
|
- public void postHandle(HttpServletRequest request, HttpServletResponse response, Object handler, @Nullable ModelAndView modelAndView) throws Exception {
|
|
61
|
|
- //获取URL
|
|
62
|
|
- String url = request.getRequestURI();
|
|
63
|
|
- //获取用户信息和单位信息
|
|
64
|
|
- String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
65
|
|
- String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
66
|
|
- //登录日志
|
|
67
|
|
- if (("/userInfo/login".equals(url) || "/userInfo/exitLogin".equals(url))
|
|
68
|
|
- && !"".equals(userJson) && !"".equals(orgInfoJson)
|
|
69
|
|
- && null != userJson && null != orgInfoJson) {
|
|
70
|
|
- loginLogger(request, response, url);
|
|
71
|
|
- }
|
|
72
|
|
- //功能操作和访问日志
|
|
73
|
|
- if (!"/userInfo/login".equals(url) && !"/userInfo/exitLogin".equals(url)
|
|
74
|
|
- && !"".equals(userJson) && !"".equals(orgInfoJson)
|
|
75
|
|
- && null != userJson && null != orgInfoJson) {
|
|
76
|
|
- operationLogger(request, response, url, handler);
|
|
77
|
|
- }
|
|
78
|
|
- }
|
|
79
|
|
-
|
|
80
|
|
- /**
|
|
81
|
|
- * 封装登录信息
|
|
82
|
|
- *
|
|
83
|
|
- * @param userJson
|
|
84
|
|
- * @param orgInfoJson
|
|
85
|
|
- * @return
|
|
86
|
|
- */
|
|
87
|
|
- private Map<String, String> getUserOrgInfo(String userJson, String orgInfoJson) {
|
|
88
|
|
- Map<String, String> user_map = new HashMap<String, String>();
|
|
89
|
|
- JSONObject userinfo = JSONObject.parseObject(userJson);
|
|
90
|
|
- JSONObject orginfo = JSONObject.parseObject(orgInfoJson);
|
|
91
|
|
- user_map.put("userId", userinfo == null ? "" : userinfo.get("userId")+"");
|
|
92
|
|
- user_map.put("username", userinfo == null ? "" : userinfo.get("username")+"");
|
|
93
|
|
- user_map.put("realName", userinfo == null ? "" : userinfo.get("realName")+"");
|
|
94
|
|
- user_map.put("orgId", userinfo == null ? "" : userinfo.get("orgId")+"");
|
|
95
|
|
- user_map.put("roleName", userinfo == null ? "" : userinfo.get("roleNames")+"");
|
|
96
|
|
- user_map.put("areaName", orginfo == null ? "":ObjectUtils.toString(orginfo.get("areaName")+"",""));
|
|
97
|
|
- user_map.put("orgName", orginfo == null ? "":ObjectUtils.toString(orginfo.get("orgName")+"",""));
|
|
98
|
|
- return user_map;
|
|
99
|
|
- }
|
|
100
|
|
-
|
|
101
|
|
- /**
|
|
102
|
|
- * 登录日志(包含登录与注销)
|
|
103
|
|
- * @param request
|
|
104
|
|
- * @param response
|
|
105
|
|
- */
|
|
106
|
|
- private void loginLogger(HttpServletRequest request, HttpServletResponse response, String url) {
|
|
107
|
|
- //获取用户信息和单位信息
|
|
108
|
|
- String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
109
|
|
- String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
110
|
|
- //登录
|
|
111
|
|
- if ("/userInfo/login".equals(url)) {
|
|
112
|
|
- SystemLog log = new SystemLog();
|
|
113
|
|
- Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
114
|
|
- log.setSystemIdentify(system_index);
|
|
115
|
|
- log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
116
|
|
- log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
117
|
|
- log.setDeviceIp(getClientIpAddress(request));
|
|
118
|
|
- log.setDlTime(new Date());
|
|
119
|
|
- log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
120
|
|
- log.setOrgId(Integer.parseInt(user_map.get("orgId")));//单位
|
|
121
|
|
- log.setUserAddress(user_map.get("areaName"));//行政区划
|
|
122
|
|
- log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
123
|
|
- log.setUserId(Integer.parseInt(user_map.get("userId")));
|
|
124
|
|
- log.setOperationTime(new Date());//操作时间
|
|
125
|
|
- log.setType("1");
|
|
126
|
|
-
|
|
127
|
|
- //添加保存日志
|
|
128
|
|
- systemLogMapper.insert(log);
|
|
129
|
|
- }
|
|
130
|
|
-
|
|
131
|
|
- //注销
|
|
132
|
|
- if ("/userInfo/exitLogin".equals(url)) {
|
|
133
|
|
- if (null != userJson && null != orgInfoJson
|
|
134
|
|
- && !"".equals(userJson) && !"".equals(orgInfoJson)) {
|
|
135
|
|
- Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
136
|
|
- //修改条件
|
|
137
|
|
- SystemLogExample example = new SystemLogExample();
|
|
138
|
|
- SystemLogExample.Criteria criteria = example.createCriteria();
|
|
139
|
|
- criteria.andUserZhEqualTo(ObjectUtils.toString(user_map.get("username"),""));
|
|
140
|
|
- criteria.andOrgIdEqualTo(Integer.parseInt(user_map.get("orgId")));
|
|
141
|
|
- criteria.andTypeEqualTo("1");
|
|
142
|
|
- example.setOrderByClause(" dl_time desc");
|
|
143
|
|
- List<SystemLog> list = systemLogMapper.selectByExample(example);
|
|
144
|
|
-
|
|
145
|
|
- if (null != list && list.size() > 0) {
|
|
146
|
|
- //注销时间
|
|
147
|
|
- list.get(0).setZxTime(new Date());
|
|
148
|
|
- list.get(0).setOperationTime(new Date());//操作时间
|
|
149
|
|
-
|
|
150
|
|
- //修改登录日志信息
|
|
151
|
|
- systemLogMapper.updateByPrimaryKey(list.get(0));
|
|
152
|
|
- }
|
|
153
|
|
- }
|
|
154
|
|
-
|
|
155
|
|
- }
|
|
156
|
|
- }
|
|
157
|
|
-
|
|
158
|
|
- /**
|
|
159
|
|
- * 操作日志实现思路:
|
|
160
|
|
- * 1、URL要是可以在菜单里面找到对应菜单,那么当前这个操作属于功能操作日志
|
|
161
|
|
- * 2、如果没在菜单里面找到对应菜单,却在按钮中找到了,那么就是功能访问日志
|
|
162
|
|
- * 3、如果菜单和按钮中都没有找到对应的URL,那么说明当前这个方位没在功能管理里面配置正确,或者没有加入到功能管理中
|
|
163
|
|
- *
|
|
164
|
|
- * @param request
|
|
165
|
|
- * @param response
|
|
166
|
|
- * @param url
|
|
167
|
|
- */
|
|
168
|
|
- private void operationLogger(HttpServletRequest request, HttpServletResponse response, String url, Object handler) {
|
|
169
|
|
- //获取用户信息和单位信息
|
|
170
|
|
- String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
171
|
|
- String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
172
|
|
- Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
173
|
|
-
|
|
174
|
|
- //是否还需要继续往下执行
|
|
175
|
|
- boolean flag = false;
|
|
176
|
|
-
|
|
177
|
|
- //获取菜单权限并且组装功能日志
|
|
178
|
|
- String func_list = (String) redisUtil.get("hasFuncList");
|
|
179
|
|
- JSONArray array = JSONArray.parseArray(func_list);
|
|
180
|
|
- if (null != array && array.size() > 4) {
|
|
181
|
|
- JSONObject object = null;
|
|
182
|
|
- SystemLog log = new SystemLog();
|
|
183
|
|
- for (Iterator iterator = array.iterator(); iterator.hasNext();) {
|
|
184
|
|
- object = (JSONObject) iterator.next();
|
|
185
|
|
- String func_url = ObjectUtils.toString(object.get("funcUrl"));
|
|
186
|
|
- if (url.equals(func_url)) {
|
|
187
|
|
- log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
188
|
|
- log.setType("3");//功能操作日志
|
|
189
|
|
- log.setSystemIdentify(system_index);//标识
|
|
190
|
|
- log.setUserId(Integer.parseInt(user_map.get("userId")));//用户ID
|
|
191
|
|
- log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
192
|
|
- log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
193
|
|
- log.setDeviceIp(getClientIpAddress(request));//操作IP
|
|
194
|
|
- log.setFuncName(ObjectUtils.toString(object.get("funcName")));//功能名称
|
|
195
|
|
- log.setOperationTime(new Date());//操作时间
|
|
196
|
|
- log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
197
|
|
- log.setOrgId(Integer.parseInt(user_map.get("orgId")));//单位
|
|
198
|
|
- log.setUserAddress(user_map.get("areaName"));//行政区划
|
|
199
|
|
-
|
|
200
|
|
- //添加保存日志
|
|
201
|
|
- systemLogMapper.insert(log);
|
|
202
|
|
-
|
|
203
|
|
- //已经是操作日志了,那么没必要在遍历按钮了
|
|
204
|
|
- flag = true;
|
|
205
|
|
- //也不用继续当前循环了
|
|
206
|
|
- break;
|
|
207
|
|
- }
|
|
208
|
|
- }
|
|
209
|
|
- }
|
|
210
|
|
- //获取按钮权限并且组装访问日志
|
|
211
|
|
- if (!flag) {
|
|
212
|
|
- String perm_list = (String) redisUtil.get("permissionList");
|
|
213
|
|
- JSONArray but_array = JSONArray.parseArray(perm_list);
|
|
214
|
|
- if (null != but_array && but_array.size() > 4) {
|
|
215
|
|
- JSONObject but_object = null;
|
|
216
|
|
- SystemLog log = new SystemLog();
|
|
217
|
|
- for (Iterator iterator = but_array.iterator(); iterator.hasNext();) {
|
|
218
|
|
- but_object = (JSONObject) iterator.next();
|
|
219
|
|
- if (but_object == null) {
|
|
220
|
|
- continue;
|
|
221
|
|
- }
|
|
222
|
|
- String but_url = ObjectUtils.toString(but_object.get("btnUrl"), "");
|
|
223
|
|
- if (url.equals(but_url)) {
|
|
224
|
|
- log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
225
|
|
- log.setType("2");//功能访问日志
|
|
226
|
|
- log.setSystemIdentify(system_index);//标识
|
|
227
|
|
- log.setUserId(Integer.parseInt(user_map.get("userId")));//用户ID
|
|
228
|
|
- log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
229
|
|
- log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
230
|
|
- log.setDeviceIp(getClientIpAddress(request));//操作IP
|
|
231
|
|
- String f_name = ObjectUtils.toString(but_object.get("funcName"), "");
|
|
232
|
|
- String b_name = ObjectUtils.toString(but_object.get("btnName"), "");
|
|
233
|
|
- String ramark = ObjectUtils.toString(but_object.get("remark"), "");
|
|
234
|
|
- StringBuffer sbf = new StringBuffer();
|
|
235
|
|
- if (!"".equals(ramark)) {
|
|
236
|
|
- sbf.append(f_name).append("功能").append(ramark).append("操作");
|
|
237
|
|
- } else {
|
|
238
|
|
- sbf.append(f_name).append("功能").append(b_name).append("操作");
|
|
239
|
|
- }
|
|
240
|
|
- log.setFuncName(ObjectUtils.toString(sbf.toString(), ""));//菜单名称
|
|
241
|
|
- HandlerMethod h = (HandlerMethod) handler;
|
|
242
|
|
- log.setMethodName(h.getMethod().getName());//方法名
|
|
243
|
|
- log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
244
|
|
- log.setOperationTime(new Date());//操作时间
|
|
245
|
|
- StringBuilder param = new StringBuilder();
|
|
246
|
|
- Map<String,String[]> map = request.getParameterMap();
|
|
247
|
|
- Set<String> key = map.keySet();
|
|
248
|
|
- for (String eachKey: key) {
|
|
249
|
|
- param.append(eachKey+"="+map.get(eachKey)[0]+"; ");
|
|
250
|
|
- }
|
|
251
|
|
- log.setParameter(param.toString());//传入参数
|
|
252
|
|
-
|
|
253
|
|
- String status = ObjectUtils.toString(response.getStatus(), "");
|
|
254
|
|
- log.setOperResult(status);//操作结果状态
|
|
255
|
|
- if ("200".equals(status)) {
|
|
256
|
|
- log.setRtnParam("请求成功");//返回参数
|
|
257
|
|
- } else {
|
|
258
|
|
- log.setRtnParam("请求失败");//返回参数
|
|
259
|
|
- }
|
|
260
|
|
- log.setOrgId(Integer.parseInt(user_map.get("orgId")));//所属机构
|
|
261
|
|
- log.setUserAddress(user_map.get("areaName"));//行政区划
|
|
262
|
|
-
|
|
263
|
|
- //添加保存日志
|
|
264
|
|
- systemLogMapper.insert(log);
|
|
265
|
|
-
|
|
266
|
|
- //中断本次循环
|
|
267
|
|
- break;
|
|
268
|
|
- }
|
|
269
|
|
- }
|
|
270
|
|
- }
|
|
271
|
|
- }
|
|
272
|
|
- }
|
|
273
|
|
-
|
|
274
|
|
- /**
|
|
275
|
|
- * afterCompletion是视图渲染完成之后才执行,同样需要preHandle返回true,
|
|
276
|
|
- */
|
|
277
|
|
- @Override
|
|
278
|
|
- public void afterCompletion(HttpServletRequest request, HttpServletResponse response, Object handler, @Nullable Exception ex) throws Exception {
|
|
279
|
|
- //该方法通常用于清理资源等工作
|
|
280
|
|
- }
|
|
281
|
|
-
|
|
282
|
|
- /**
|
|
283
|
|
- * 获取客户端IP
|
|
284
|
|
- *
|
|
285
|
|
- * @param request
|
|
286
|
|
- * @return
|
|
287
|
|
- */
|
|
288
|
|
- private String getClientIpAddress(HttpServletRequest request) {
|
|
289
|
|
- String clientIp = request.getHeader("x-forwarded-for");
|
|
290
|
|
- if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
291
|
|
- clientIp = request.getHeader("Proxy-Client-IP");
|
|
292
|
|
- }
|
|
293
|
|
- if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
294
|
|
- clientIp = request.getHeader("WL-Proxy-Client-IP");
|
|
295
|
|
- }
|
|
296
|
|
- if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
297
|
|
- clientIp = request.getRemoteAddr();
|
|
298
|
|
- }
|
|
299
|
|
- return "0:0:0:0:0:0:0:1".equals(clientIp) ? "127.0.0.1" : clientIp;
|
|
300
|
|
- }
|
|
301
|
|
-
|
|
302
|
|
-}
|
|
|
1
|
+package com.chinaitop.depot.business;
|
|
|
2
|
+
|
|
|
3
|
+import java.io.IOException;
|
|
|
4
|
+import java.util.Date;
|
|
|
5
|
+import java.util.HashMap;
|
|
|
6
|
+import java.util.Iterator;
|
|
|
7
|
+import java.util.List;
|
|
|
8
|
+import java.util.Map;
|
|
|
9
|
+import java.util.Set;
|
|
|
10
|
+import java.util.UUID;
|
|
|
11
|
+
|
|
|
12
|
+import javax.servlet.http.HttpServletRequest;
|
|
|
13
|
+import javax.servlet.http.HttpServletResponse;
|
|
|
14
|
+
|
|
|
15
|
+import org.apache.commons.lang.ObjectUtils;
|
|
|
16
|
+import org.apache.http.HttpResponse;
|
|
|
17
|
+import org.apache.http.HttpStatus;
|
|
|
18
|
+import org.apache.http.client.HttpClient;
|
|
|
19
|
+import org.apache.http.client.methods.HttpGet;
|
|
|
20
|
+import org.apache.http.impl.client.DefaultHttpClient;
|
|
|
21
|
+import org.apache.http.util.EntityUtils;
|
|
|
22
|
+import org.springframework.beans.factory.annotation.Autowired;
|
|
|
23
|
+import org.springframework.lang.Nullable;
|
|
|
24
|
+import org.springframework.web.method.HandlerMethod;
|
|
|
25
|
+import org.springframework.web.servlet.HandlerInterceptor;
|
|
|
26
|
+import org.springframework.web.servlet.ModelAndView;
|
|
|
27
|
+
|
|
|
28
|
+import com.alibaba.fastjson.JSONArray;
|
|
|
29
|
+import com.alibaba.fastjson.JSONObject;
|
|
|
30
|
+import com.chinaitop.depot.business.utils.RedisUtil;
|
|
|
31
|
+import com.chinaitop.depot.systemLog.mapper.SystemLogMapper;
|
|
|
32
|
+import com.chinaitop.depot.systemLog.model.SystemLog;
|
|
|
33
|
+import com.chinaitop.depot.systemLog.model.SystemLogExample;
|
|
|
34
|
+
|
|
|
35
|
+/**
|
|
|
36
|
+ * 功能日志拦截器
|
|
|
37
|
+ *
|
|
|
38
|
+ * @author fanxiongwei
|
|
|
39
|
+ *
|
|
|
40
|
+ */
|
|
|
41
|
+public class LogercostInterceptor implements HandlerInterceptor {
|
|
|
42
|
+
|
|
|
43
|
+ private static String system_index = "库级系统";
|
|
|
44
|
+
|
|
|
45
|
+ @Autowired
|
|
|
46
|
+ private RedisUtil redisUtil;
|
|
|
47
|
+
|
|
|
48
|
+ @Autowired
|
|
|
49
|
+ private SystemLogMapper systemLogMapper;
|
|
|
50
|
+
|
|
|
51
|
+ /**
|
|
|
52
|
+ * preHandle是在请求执行前执行的
|
|
|
53
|
+ */
|
|
|
54
|
+ @Override
|
|
|
55
|
+ public boolean preHandle(HttpServletRequest request, HttpServletResponse response, Object handler) throws Exception {
|
|
|
56
|
+
|
|
|
57
|
+ //获取URL
|
|
|
58
|
+ String url = request.getRequestURI();
|
|
|
59
|
+ //注销日志
|
|
|
60
|
+ if ("/userInfo/exitLogin".equals(url)) {
|
|
|
61
|
+ loginLogger(request, response, url);
|
|
|
62
|
+ }
|
|
|
63
|
+
|
|
|
64
|
+ return true;//返回true,postHandler和afterCompletion方法才能执行,否则false为拒绝执行,起到拦截器控制作用
|
|
|
65
|
+ }
|
|
|
66
|
+
|
|
|
67
|
+ /**
|
|
|
68
|
+ * postHandler是在请求结束之后,视图渲染之前执行的,但只有preHandle方法返回true的时候才会执行
|
|
|
69
|
+ */
|
|
|
70
|
+ @Override
|
|
|
71
|
+ public void postHandle(HttpServletRequest request, HttpServletResponse response, Object handler, @Nullable ModelAndView modelAndView) throws Exception {
|
|
|
72
|
+ //获取URL
|
|
|
73
|
+ String url = request.getRequestURI();
|
|
|
74
|
+ //获取用户信息和单位信息
|
|
|
75
|
+ String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
|
76
|
+ String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
|
77
|
+ //登录日志
|
|
|
78
|
+ if (("/userInfo/login".equals(url) || "/userInfo/exitLogin".equals(url))
|
|
|
79
|
+ && !"".equals(userJson) && !"".equals(orgInfoJson)
|
|
|
80
|
+ && null != userJson && null != orgInfoJson) {
|
|
|
81
|
+ loginLogger(request, response, url);
|
|
|
82
|
+ }
|
|
|
83
|
+ //功能操作和访问日志
|
|
|
84
|
+ if (!"/userInfo/login".equals(url) && !"/userInfo/exitLogin".equals(url)
|
|
|
85
|
+ && !"".equals(userJson) && !"".equals(orgInfoJson)
|
|
|
86
|
+ && null != userJson && null != orgInfoJson) {
|
|
|
87
|
+ operationLogger(request, response, url, handler);
|
|
|
88
|
+ }
|
|
|
89
|
+ }
|
|
|
90
|
+
|
|
|
91
|
+ /**
|
|
|
92
|
+ * 封装登录信息
|
|
|
93
|
+ *
|
|
|
94
|
+ * @param userJson
|
|
|
95
|
+ * @param orgInfoJson
|
|
|
96
|
+ * @return
|
|
|
97
|
+ */
|
|
|
98
|
+ private Map<String, String> getUserOrgInfo(String userJson, String orgInfoJson) {
|
|
|
99
|
+ Map<String, String> user_map = new HashMap<String, String>();
|
|
|
100
|
+ JSONObject userinfo = JSONObject.parseObject(userJson);
|
|
|
101
|
+ JSONObject orginfo = JSONObject.parseObject(orgInfoJson);
|
|
|
102
|
+ user_map.put("userId", userinfo == null ? "" : userinfo.get("userId")+"");
|
|
|
103
|
+ user_map.put("username", userinfo == null ? "" : userinfo.get("username")+"");
|
|
|
104
|
+ user_map.put("realName", userinfo == null ? "" : userinfo.get("realName")+"");
|
|
|
105
|
+ user_map.put("orgId", userinfo == null ? "" : userinfo.get("orgId")+"");
|
|
|
106
|
+ user_map.put("roleName", userinfo == null ? "" : userinfo.get("roleNames")+"");
|
|
|
107
|
+ user_map.put("areaCode", orginfo == null ? "":ObjectUtils.toString(orginfo.get("areaCode")+"",""));
|
|
|
108
|
+ user_map.put("areaName", orginfo == null ? "":ObjectUtils.toString(orginfo.get("areaName")+"",""));
|
|
|
109
|
+ user_map.put("orgName", orginfo == null ? "":ObjectUtils.toString(orginfo.get("orgName")+"",""));
|
|
|
110
|
+ return user_map;
|
|
|
111
|
+ }
|
|
|
112
|
+
|
|
|
113
|
+ /**
|
|
|
114
|
+ * 登录日志(包含登录与注销)
|
|
|
115
|
+ * @param request
|
|
|
116
|
+ * @param response
|
|
|
117
|
+ */
|
|
|
118
|
+ private void loginLogger(HttpServletRequest request, HttpServletResponse response, String url) {
|
|
|
119
|
+ //获取用户信息和单位信息
|
|
|
120
|
+ String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
|
121
|
+ String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
|
122
|
+ //登录
|
|
|
123
|
+ if ("/userInfo/login".equals(url)) {
|
|
|
124
|
+ SystemLog log = new SystemLog();
|
|
|
125
|
+ Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
|
126
|
+ log.setSystemIdentify(system_index);
|
|
|
127
|
+ log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
|
128
|
+ log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
|
129
|
+ String device_ip = getClientIpAddress(request);
|
|
|
130
|
+ log.setDeviceIp(device_ip);
|
|
|
131
|
+ log.setDlTime(new Date());
|
|
|
132
|
+ log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
|
133
|
+ log.setOrgId(Integer.parseInt(user_map.get("orgId")));//单位
|
|
|
134
|
+ String enumid = ObjectUtils.toString(user_map.get("areaCode"), "0");
|
|
|
135
|
+ if (!"0".equals(enumid)) {
|
|
|
136
|
+ String httpurl = "http://"+device_ip+":9022/Enum/findByEnum?id="+Integer.parseInt(enumid);
|
|
|
137
|
+ String strResult = doGet(httpurl);
|
|
|
138
|
+ if (!"".equals(strResult)) {
|
|
|
139
|
+ JSONObject enum_obj = JSONObject.parseObject(strResult);
|
|
|
140
|
+ log.setUserAddress(ObjectUtils.toString(enum_obj.get("gbcode"), ""));//行政区划
|
|
|
141
|
+ }
|
|
|
142
|
+ }
|
|
|
143
|
+ log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
|
144
|
+ log.setUserId(Integer.parseInt(user_map.get("userId")));
|
|
|
145
|
+ log.setOperationTime(new Date());//操作时间
|
|
|
146
|
+ log.setType("1");
|
|
|
147
|
+
|
|
|
148
|
+ //添加保存日志
|
|
|
149
|
+ systemLogMapper.insert(log);
|
|
|
150
|
+ }
|
|
|
151
|
+
|
|
|
152
|
+ //注销
|
|
|
153
|
+ if ("/userInfo/exitLogin".equals(url)) {
|
|
|
154
|
+ if (null != userJson && null != orgInfoJson
|
|
|
155
|
+ && !"".equals(userJson) && !"".equals(orgInfoJson)) {
|
|
|
156
|
+ Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
|
157
|
+ //修改条件
|
|
|
158
|
+ SystemLogExample example = new SystemLogExample();
|
|
|
159
|
+ SystemLogExample.Criteria criteria = example.createCriteria();
|
|
|
160
|
+ criteria.andUserZhEqualTo(ObjectUtils.toString(user_map.get("username"),""));
|
|
|
161
|
+ criteria.andOrgIdEqualTo(Integer.parseInt(user_map.get("orgId")));
|
|
|
162
|
+ criteria.andTypeEqualTo("1");
|
|
|
163
|
+ example.setOrderByClause(" dl_time desc");
|
|
|
164
|
+ List<SystemLog> list = systemLogMapper.selectByExample(example);
|
|
|
165
|
+
|
|
|
166
|
+ if (null != list && list.size() > 0) {
|
|
|
167
|
+ //注销时间
|
|
|
168
|
+ list.get(0).setZxTime(new Date());
|
|
|
169
|
+ list.get(0).setOperationTime(new Date());//操作时间
|
|
|
170
|
+
|
|
|
171
|
+ //修改登录日志信息
|
|
|
172
|
+ systemLogMapper.updateByPrimaryKey(list.get(0));
|
|
|
173
|
+ }
|
|
|
174
|
+ }
|
|
|
175
|
+
|
|
|
176
|
+ }
|
|
|
177
|
+ }
|
|
|
178
|
+
|
|
|
179
|
+ /**
|
|
|
180
|
+ * get请求
|
|
|
181
|
+ * @return
|
|
|
182
|
+ */
|
|
|
183
|
+ public static String doGet(String url) {
|
|
|
184
|
+ try {
|
|
|
185
|
+ HttpClient client = new DefaultHttpClient();
|
|
|
186
|
+ //发送get请求
|
|
|
187
|
+ HttpGet request = new HttpGet(url);
|
|
|
188
|
+ HttpResponse response = client.execute(request);
|
|
|
189
|
+
|
|
|
190
|
+ /**请求发送成功,并得到响应**/
|
|
|
191
|
+ if (response.getStatusLine().getStatusCode() == HttpStatus.SC_OK) {
|
|
|
192
|
+ /**读取服务器返回过来的json字符串数据**/
|
|
|
193
|
+ String strResult = EntityUtils.toString(response.getEntity());
|
|
|
194
|
+
|
|
|
195
|
+ return strResult;
|
|
|
196
|
+ }
|
|
|
197
|
+ }
|
|
|
198
|
+ catch (IOException e) {
|
|
|
199
|
+ e.printStackTrace();
|
|
|
200
|
+ }
|
|
|
201
|
+
|
|
|
202
|
+ return null;
|
|
|
203
|
+ }
|
|
|
204
|
+
|
|
|
205
|
+ /**
|
|
|
206
|
+ * 操作日志实现思路:
|
|
|
207
|
+ * 1、URL要是可以在菜单里面找到对应菜单,那么当前这个操作属于功能操作日志
|
|
|
208
|
+ * 2、如果没在菜单里面找到对应菜单,却在按钮中找到了,那么就是功能访问日志
|
|
|
209
|
+ * 3、如果菜单和按钮中都没有找到对应的URL,那么说明当前这个方位没在功能管理里面配置正确,或者没有加入到功能管理中
|
|
|
210
|
+ *
|
|
|
211
|
+ * @param request
|
|
|
212
|
+ * @param response
|
|
|
213
|
+ * @param url
|
|
|
214
|
+ */
|
|
|
215
|
+ @SuppressWarnings("all")
|
|
|
216
|
+ private void operationLogger(HttpServletRequest request, HttpServletResponse response, String url, Object handler) {
|
|
|
217
|
+ //获取用户信息和单位信息
|
|
|
218
|
+ String userJson = ObjectUtils.toString(request.getSession().getAttribute("userInfo"),"");
|
|
|
219
|
+ String orgInfoJson = ObjectUtils.toString(request.getSession().getAttribute("orgInfo"),"");
|
|
|
220
|
+ Map<String, String> user_map = getUserOrgInfo(userJson, orgInfoJson);
|
|
|
221
|
+
|
|
|
222
|
+ //是否还需要继续往下执行
|
|
|
223
|
+ boolean flag = false;
|
|
|
224
|
+
|
|
|
225
|
+ //获取菜单权限并且组装功能日志
|
|
|
226
|
+ String func_list = (String) redisUtil.get("hasFuncList");
|
|
|
227
|
+ JSONArray array = JSONArray.parseArray(func_list);
|
|
|
228
|
+ if (null != array && array.size() > 4) {
|
|
|
229
|
+ JSONObject object = null;
|
|
|
230
|
+ SystemLog log = new SystemLog();
|
|
|
231
|
+ for (Iterator iterator = array.iterator(); iterator.hasNext();) {
|
|
|
232
|
+ object = (JSONObject) iterator.next();
|
|
|
233
|
+ String func_url = ObjectUtils.toString(object.get("funcUrl"));
|
|
|
234
|
+ if (url.equals(func_url)) {
|
|
|
235
|
+ log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
|
236
|
+ log.setType("3");//功能访问日志
|
|
|
237
|
+ log.setSystemIdentify(system_index);//标识
|
|
|
238
|
+ log.setUserId(Integer.parseInt(user_map.get("userId")));//用户ID
|
|
|
239
|
+ log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
|
240
|
+ log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
|
241
|
+ String device_ip = getClientIpAddress(request);
|
|
|
242
|
+ log.setDeviceIp(device_ip);//操作IP
|
|
|
243
|
+ log.setFuncId(Integer.parseInt(object.get("funcId").toString()));//功能ID
|
|
|
244
|
+ log.setFuncName(ObjectUtils.toString(object.get("funcName")));//功能名称
|
|
|
245
|
+ log.setOperationTime(new Date());//操作时间
|
|
|
246
|
+ log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
|
247
|
+ log.setOrgId(Integer.parseInt(user_map.get("orgId")));//单位
|
|
|
248
|
+
|
|
|
249
|
+ String enumid = ObjectUtils.toString(user_map.get("areaCode"), "0");
|
|
|
250
|
+ if (!"0".equals(enumid)) {
|
|
|
251
|
+ String httpurl = "http://"+device_ip+":9022/Enum/findByEnum?id="+Integer.parseInt(enumid);
|
|
|
252
|
+ String strResult = doGet(httpurl);
|
|
|
253
|
+ if (!"".equals(strResult)) {
|
|
|
254
|
+ JSONObject enum_obj = JSONObject.parseObject(strResult);
|
|
|
255
|
+ log.setUserAddress(ObjectUtils.toString(enum_obj.get("gbcode"), ""));//行政区划
|
|
|
256
|
+ }
|
|
|
257
|
+ }
|
|
|
258
|
+
|
|
|
259
|
+ //添加保存日志
|
|
|
260
|
+ systemLogMapper.insert(log);
|
|
|
261
|
+
|
|
|
262
|
+ //已经是操作日志了,那么没必要在遍历按钮了
|
|
|
263
|
+ flag = true;
|
|
|
264
|
+ //也不用继续当前循环了
|
|
|
265
|
+ break;
|
|
|
266
|
+ }
|
|
|
267
|
+ }
|
|
|
268
|
+ }
|
|
|
269
|
+ //获取按钮权限并且组装访问日志
|
|
|
270
|
+ if (!flag) {
|
|
|
271
|
+ String perm_list = (String) redisUtil.get("permissionList");
|
|
|
272
|
+ JSONArray but_array = JSONArray.parseArray(perm_list);
|
|
|
273
|
+ if (null != but_array && but_array.size() > 4) {
|
|
|
274
|
+ JSONObject but_object = null;
|
|
|
275
|
+ SystemLog log = new SystemLog();
|
|
|
276
|
+ for (Iterator iterator = but_array.iterator(); iterator.hasNext();) {
|
|
|
277
|
+ but_object = (JSONObject) iterator.next();
|
|
|
278
|
+ if (but_object == null) {
|
|
|
279
|
+ continue;
|
|
|
280
|
+ }
|
|
|
281
|
+ String but_url = ObjectUtils.toString(but_object.get("btnUrl"), "");
|
|
|
282
|
+ if (url.equals(but_url)) {
|
|
|
283
|
+ log.setId(UUID.randomUUID().toString().replace("-", ""));
|
|
|
284
|
+ log.setType("2");//功能操作日志
|
|
|
285
|
+ log.setSystemIdentify(system_index);//标识
|
|
|
286
|
+ log.setUserId(Integer.parseInt(user_map.get("userId")));//用户ID
|
|
|
287
|
+ log.setUserZh(ObjectUtils.toString(user_map.get("username"),""));//账号
|
|
|
288
|
+ log.setUserName(ObjectUtils.toString(user_map.get("realName"),""));//名称
|
|
|
289
|
+ String device_ip = getClientIpAddress(request);
|
|
|
290
|
+ log.setDeviceIp(device_ip);//操作IP
|
|
|
291
|
+ String f_name = ObjectUtils.toString(but_object.get("funcName"), "");
|
|
|
292
|
+ String b_name = ObjectUtils.toString(but_object.get("btnName"), "");
|
|
|
293
|
+ String ramark = ObjectUtils.toString(but_object.get("remark"), "");
|
|
|
294
|
+ StringBuffer sbf = new StringBuffer();
|
|
|
295
|
+ if (!"".equals(ramark)) {
|
|
|
296
|
+ sbf.append(f_name).append("功能").append(ramark).append("操作");
|
|
|
297
|
+ } else {
|
|
|
298
|
+ sbf.append(f_name).append("功能").append(b_name).append("操作");
|
|
|
299
|
+ }
|
|
|
300
|
+ log.setFuncId(Integer.parseInt(but_object.get("funcId").toString()));//功能ID
|
|
|
301
|
+ log.setFuncName(ObjectUtils.toString(sbf.toString(), ""));//菜单名称
|
|
|
302
|
+ HandlerMethod h = (HandlerMethod) handler;
|
|
|
303
|
+ log.setMethodName(h.getMethod().getName());//方法名
|
|
|
304
|
+ log.setBtnId(Integer.parseInt(but_object.get("btnId").toString()));//按钮ID
|
|
|
305
|
+ log.setUserRole(ObjectUtils.toString(user_map.get("roleName"),""));//角色
|
|
|
306
|
+ log.setOperationTime(new Date());//操作时间
|
|
|
307
|
+ StringBuilder param = new StringBuilder();
|
|
|
308
|
+ Map<String,String[]> map = request.getParameterMap();
|
|
|
309
|
+ Set<String> key = map.keySet();
|
|
|
310
|
+ for (String eachKey: key) {
|
|
|
311
|
+ param.append(eachKey+"="+map.get(eachKey)[0]+"; ");
|
|
|
312
|
+ }
|
|
|
313
|
+ log.setParameter(param.toString());//传入参数
|
|
|
314
|
+
|
|
|
315
|
+ String status = ObjectUtils.toString(response.getStatus(), "");
|
|
|
316
|
+ log.setOperResult(status);//操作结果状态
|
|
|
317
|
+ if ("200".equals(status)) {
|
|
|
318
|
+ log.setRtnParam("请求成功");//返回参数
|
|
|
319
|
+ } else {
|
|
|
320
|
+ log.setRtnParam("请求失败");//返回参数
|
|
|
321
|
+ }
|
|
|
322
|
+ log.setOrgId(Integer.parseInt(user_map.get("orgId")));//所属机构
|
|
|
323
|
+ String enumid = ObjectUtils.toString(user_map.get("areaCode"), "0");
|
|
|
324
|
+ if (!"0".equals(enumid)) {
|
|
|
325
|
+ String httpurl = "http://"+device_ip+":9022/Enum/findByEnum?id="+Integer.parseInt(enumid);
|
|
|
326
|
+ String strResult = doGet(httpurl);
|
|
|
327
|
+ if (!"".equals(strResult)) {
|
|
|
328
|
+ JSONObject enum_obj = JSONObject.parseObject(strResult);
|
|
|
329
|
+ log.setUserAddress(ObjectUtils.toString(enum_obj.get("gbcode"), ""));//行政区划
|
|
|
330
|
+ }
|
|
|
331
|
+ }
|
|
|
332
|
+
|
|
|
333
|
+ //添加保存日志
|
|
|
334
|
+ systemLogMapper.insert(log);
|
|
|
335
|
+
|
|
|
336
|
+ //中断本次循环
|
|
|
337
|
+ break;
|
|
|
338
|
+ }
|
|
|
339
|
+ }
|
|
|
340
|
+ }
|
|
|
341
|
+ }
|
|
|
342
|
+ }
|
|
|
343
|
+
|
|
|
344
|
+ /**
|
|
|
345
|
+ * afterCompletion是视图渲染完成之后才执行,同样需要preHandle返回true,
|
|
|
346
|
+ */
|
|
|
347
|
+ @Override
|
|
|
348
|
+ public void afterCompletion(HttpServletRequest request, HttpServletResponse response, Object handler, @Nullable Exception ex) throws Exception {
|
|
|
349
|
+ //该方法通常用于清理资源等工作
|
|
|
350
|
+ }
|
|
|
351
|
+
|
|
|
352
|
+ /**
|
|
|
353
|
+ * 获取客户端IP
|
|
|
354
|
+ *
|
|
|
355
|
+ * @param request
|
|
|
356
|
+ * @return
|
|
|
357
|
+ */
|
|
|
358
|
+ private String getClientIpAddress(HttpServletRequest request) {
|
|
|
359
|
+ String clientIp = request.getHeader("x-forwarded-for");
|
|
|
360
|
+ if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
|
361
|
+ clientIp = request.getHeader("Proxy-Client-IP");
|
|
|
362
|
+ }
|
|
|
363
|
+ if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
|
364
|
+ clientIp = request.getHeader("WL-Proxy-Client-IP");
|
|
|
365
|
+ }
|
|
|
366
|
+ if(clientIp == null || clientIp.length() == 0 || "unknown".equalsIgnoreCase(clientIp)) {
|
|
|
367
|
+ clientIp = request.getRemoteAddr();
|
|
|
368
|
+ }
|
|
|
369
|
+ return "0:0:0:0:0:0:0:1".equals(clientIp) ? "127.0.0.1" : clientIp;
|
|
|
370
|
+ }
|
|
|
371
|
+
|
|
|
372
|
+}
|