2023-05-19 13:50 인증 소스 수정

This commit is contained in:
myname 2023-05-19 13:50:20 +09:00
parent b7f557e941
commit b24e18b1a1

View File

@ -55,7 +55,11 @@ public class CertifInterceptor implements HandlerInterceptor{
public boolean preHandle(HttpServletRequest request, HttpServletResponse response, Object handler)
throws Exception {
{
String referer = ""; //URL referer 접속정보
String serverIp = ""; //접속 server IP
try{
String clientIp = null;
boolean isIpInHeader = false;
@ -83,57 +87,22 @@ public class CertifInterceptor implements HandlerInterceptor{
clientIp = request.getRemoteAddr();
}
System.out.println(clientIp);
System.out.println(clientIp);
System.out.println(clientIp);
}
// URL 접속정보
String referer = request.getHeader("Referer");
//System.out.println("=====preHandle=5=apikey=refer="+referer);
serverIp = clientIp;
}catch(Exception ex) {
ex.printStackTrace();
//내부 오류
this._jsonResult(response, HttpStatus.BAD_GATEWAY); //502
return false;
}
String serverIp = request.getRemoteAddr();
System.out.println("request.getRemoteAddr()");
System.out.println(request.getRemoteAddr());
System.out.println(request.getRemoteHost());
System.out.println(request.getRemotePort());
System.out.println(request.getRemoteUser());
System.out.println("request.getRemoteAddr()");
//step0-1.log 남기기
//step0-2.IP 체크
{
try{
//step0-1.log 남기기
referer = request.getHeader("Referer");
//ip
HttpServletRequest req = ((ServletRequestAttributes)RequestContextHolder.currentRequestAttributes()).getRequest();
String ip = req.getHeader("X-FORWARDED-FOR");
if (ip == null){ ip = req.getRemoteAddr();}
// lettnLoginLogVO.setConectIp(ip);
//사용자 여부
// lettnLoginLogVO.setUserAt("U");
//사용자 ID
// lettnLoginLogVO.setConectId(request.getParameter("mberId"));
//device type
// if(_isMobile(request)){
// lettnLoginLogVO.setDeviceType("M");
// }else{
// lettnLoginLogVO.setDeviceType("P");
// }
// lettnLoginLogVO.setProgrmFileNm("API");
// lettnLoginLogVO.setMenuNm("API");
// lettnLoginLogVO.setMenuNo("100");
//url
// lettnLoginLogVO.setUrl(request.getRequestURI());
// hylee Builder 패턴으로 변경 => 20230516
LettnLoginLogVO lettnLoginLogVO =
@ -142,7 +111,8 @@ public class CertifInterceptor implements HandlerInterceptor{
.logId(idgenApiLogId.getNextStringId()) // idgen ID
.conectId(request.getParameter("mberId")) //사용자 ID
.userAt("U") //사용자 여부
.conectIp(ip)
//.conectIp(ip)
.conectIp(serverIp)
.deviceType(_isMobile(request) ? "M" : "P") //device type
.progrmFileNm("API") //program_nm, menuNm, menuNo - API 고정
.menuNm("API")
@ -167,7 +137,7 @@ public class CertifInterceptor implements HandlerInterceptor{
//IP 접근 제어
if (i_ignoreCnt>0) {
//제한 아이피인 경우는 화면 안나옴 처리
this._jsonResult(response, HttpStatus.FORBIDDEN);
this._jsonResult(response, HttpStatus.FORBIDDEN); //403
return false;
}
@ -175,19 +145,16 @@ public class CertifInterceptor implements HandlerInterceptor{
ex.printStackTrace();
//내부 오류
this._jsonResult(response, HttpStatus.INTERNAL_SERVER_ERROR);
this._jsonResult(response, HttpStatus.NETWORK_AUTHENTICATION_REQUIRED); //511
return false;
}
}
//step1. 검증 - accessKey & mberId 검증을 위한 필수값
{
try{
// AccessKeyVO accessKeyVO = new AccessKeyVO();
// accessKeyVO.setAccessKey(request.getParameter("accessKey"));
// accessKeyVO.setMberId(request.getParameter("mberId"));
// accessKeyVO.setCallInfo(referer);
//referer 값이 없으면 serverIP 값으로 대체한다.
if ("".equals(referer) || referer==null) {
referer = serverIp;
}
// hylee Builder 패턴으로 변경 => 20230516
AccessKeyVO accessKeyVO = accessKeyService.selectRKey(
@ -201,7 +168,7 @@ public class CertifInterceptor implements HandlerInterceptor{
//인증 실패
if (accessKeyVO ==null) {
this._jsonResult(response, HttpStatus.UNAUTHORIZED);
this._jsonResult(response, HttpStatus.UNAUTHORIZED); //401
return false;
}
@ -209,10 +176,9 @@ public class CertifInterceptor implements HandlerInterceptor{
ex.printStackTrace();
//내부 오류
this._jsonResult(response, HttpStatus.INTERNAL_SERVER_ERROR);
this._jsonResult(response, HttpStatus.INTERNAL_SERVER_ERROR); //500
return false;
}
}
return true;