Commit 431bff63 authored by 赵啸非's avatar 赵啸非

提交配置校验

parent 5b76a222
......@@ -41,18 +41,22 @@ public class SameSiteCookieFilter implements Filter {
}
//cors
String referer = httpRequest.getHeader("Referer");
if(ObjectUtils.isEmpty(referer)) chain.doFilter(request, response);
if(ObjectUtils.isEmpty(referer)){
chain.doFilter(request, response);
}else{
referer=StrUtil.removeSuffix(referer,"/");
List<String> trustReferers = StrUtil.split(trustedReferer, ",");
if(ObjectUtils.isEmpty(trustReferers)) chain.doFilter(request, response);
if(ObjectUtils.isEmpty(trustReferers)){
chain.doFilter(request, response);
}else{
if(trustReferers.contains(referer)) {
chain.doFilter(request, response);
}else {
httpResponse.sendError(HttpServletResponse.SC_FORBIDDEN, "CSRF protection");
}
}
}
chain.doFilter(request, response);
}
......
......@@ -261,3 +261,13 @@ Content-Type: application/json
{}
###参数信息更新与保存
POST http://192.168.0.98:8090/basics_api/zwfw/page/bury/save
Content-Type: application/json
{
"name":"upd19g"
}
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment