¼¯Íſͻ§ÃÅ»§ - ÏêϸÉè¼Æ¹æ¸ñ˵Ã÷Êé ÏÂÔØ±¾ÎÄ

ÖйúÒÆ¶¯ºÓÄϹ«Ë¾ÍøÉÏÓªÒµÌüÏêϸÉè¼ÆËµÃ÷Êé

5.1.1.4 ÒµÎñ¹æÔò

µ¥µãµÇ¼

5.1.1.5 ÆäËü˵Ã÷

µ÷ÓõǼÒÔʵÏÖ¼¯ÍÅÃÅ»§µÄµ¥µãµÇ¼¹¦ÄÜ¡£ 1. Ìá½»µÇ¼ÇëÇóµ½sso servlet

2.SSOϵͳÉèÖÿͻ§¶Ëä¯ÀÀÆ÷cookie

3.ÃÅ»§Ó¦ÓûñÈ¡¿Í»§¶Ëcookie²¢½øÐеǼ

4.Í˳öʱÃÅ»§Ó¦ÓÃÇå³ý¿Í»§¶ËcookieºÍÓ¦ÓõĵǼ״̬Íê³ÉÍ˳ö

5.2 ȨÏÞ¿ØÖÆ

5.2.1 ½ÇÉ«²Ëµ¥ÅäÖÃ

5.2.1.1 XmlÎļþÅäÖýÇÉ«

? ½ÇÉ«ÎļþÅäÖüÓÔØ£¨WEB-INF/conf/roles.xml£©

1. com.asiainfo.util.role.RolesXML ´ËÀàÊǼÓÔØ½ÇÉ«²Ëµ¥ÅäÖÃÎļþ£¨roles.xml£©£¬ÔÚϵͳÆô¶¯Ê±×Ô¶¯¼ÓÔØroles.xmlÎļþÀïÃæÅäÖõIJ˵¥¡£ 2. RolesXML.start()·½·¨ÏµÍ³Æô¶¯Ê±»á×Ô¶¯¼ÓÔØ½ÇÉ«ÅäÖÃÎļþ£¬°Ñ¼ÓÔØµÄÐÅÏ¢±£´æÔÚservletContext.setAttribute(\rolesList)ÖС£

? roles.xmlÅäÖÃ˵Ã÷

1. Ò»¼¶²Ëµ¥ÎªÁ½Î»Êý×Ö£¨´Ó10¿ªÊ¼£© ¶þ¼¶²Ëµ¥ÎªËÄλÊý×Ö£¨´ÓÒ»¼¶²Ëµ¥±àÂë+01¿ªÊ¼£© Èý¼¶ÁùλÊý×Ö£¨¶þ¼¶²Ëµ¥±àÂë+01¿ªÊ¼£©¡£

2. Ϊһ¼¶²Ëµ¥±êÇ© Ϊ¶þ¼¶²Ëµ¥±êÇ©¼°¸üÉî²ã²Ëµ¥¶¼

ÑÇÐſƼ¼£¨Öйú£©ÓÐÏÞ¹«Ë¾ - 20 -

ÖйúÒÆ¶¯ºÓÄϹ«Ë¾ÍøÉÏÓªÒµÌüÏêϸÉè¼ÆËµÃ÷Êé

¿ÉÒÔ¡£

3. ÐèҪȨÏÞ¿ØÖƵĵØÖ·£¬url µÄÃû³Æ¿Õ¼äÉèÖÃΪ/power/checkRole¡£ 4. Action

²ãÐèҪȨÏÞ¿ØÖƵÄÃû³Æ¿Õ¼äÒªÉèÖÃΪ£º

@Namespace(value=\ÀýÈ磺

10 id

¼¯ÍŲúÆ·¹ÜÀí Ãû³Æ

url£¬Ã»ÓÐʱΪ¿Õ¡£

1 ±ð

,0, ÀàÐÍ0£º¿ÉÓá¢1£º×¢Ïú

,1,2,3, 1:¼¯ÍÅÁªÏµÈË µÈµÈ

0 id£¬Èç¶¥¼¶²Ëµ¥Ä¬ÈÏ0

ÑÇÐſƼ¼£¨Öйú£©ÓÐÏÞ¹«Ë¾ ²Ëµ¥²Ëµ¥ÇëÇó²Ëµ¥¼¶Óû§½ÇÉ« ²Ëµ¥¸¸- 21 -

ÖйúÒÆ¶¯ºÓÄϹ«Ë¾ÍøÉÏÓªÒµÌüÏêϸÉè¼ÆËµÃ÷Êé

1001 ´Ë²Ëµ¥ÎªÉÏÃæµÄ×Ӳ˵¥ ÒÑ¿ªÍ¨ÒµÎñ²éѯ

2 ±ð2

,0, ,1,2, 10

5.2.1.2 ¹¦Äܶ¨Òå

½ÇÉ«²Ëµ¥ÅäÖÃ

5.2.1.3 ÒµÎñ¹æÔò

Ò»¼¶²Ëµ¥ÎªÁ½Î»Êý×Ö£¨´Ó10¿ªÊ¼£©

¶þ¼¶²Ëµ¥ÎªËÄλÊý×Ö£¨´ÓÒ»¼¶²Ëµ¥±àÂë+01¿ªÊ¼£© Èý¼¶ÁùλÊý×Ö£¨¶þ¼¶²Ëµ¥±àÂë+01¿ªÊ¼£©¡£

Ϊһ¼¶²Ëµ¥±êÇ© Ϊ¶þ¼¶²Ëµ¥±êÇ©¼°¸üÉî²ã²Ëµ¥¶¼¿ÉÒÔ¡£

ÑÇÐſƼ¼£¨Öйú£©ÓÐÏÞ¹«Ë¾ ¼¶- 22 -

ÖйúÒÆ¶¯ºÓÄϹ«Ë¾ÍøÉÏÓªÒµÌüÏêϸÉè¼ÆËµÃ÷Êé

5.2.2 ȨÏÞ¹ýÂËÆ÷

5.2.2.1 Filter¶¨Òå

com.asiainfo.util.AuthenticationFilter ? doFilter ()

ÅжÏÓû§ÊÇ·ñµÇ¼¼°ÇëÇóµÄurlÊÇ·ñÓÐȨÏÞ·ÃÎÊ£¬Èç¹ûûÓеǼ£¬·µ»ØµÇÂ¼Ò³Ãæ£¬ Èç¹ûûÓÐȨÏÞ·µ»ØÃ»ÓÐȨÏÞÒ³Ãæ¡£

5.2.2.2 ¹¦Äܶ¨Òå

Ö»ÒªÇëÇóµÄurlÖк¬ÓÐ/power/checkRole/µÄÃû³Æ¿Õ¼ä£¬¶¼»á±»È¨ÏÞ¹ýÂËÆ÷À¹½Ø£¬ÅжÏÓà »§ÊÇ·ñµÇ¼¼°ÊÇ·ñÓÐȨÏÞ·ÃÎÊ£¬Èç¹ûûÓÐȨÏÞ·µ»ØÃ»ÓÐȨÏÞÒ³Ãæ¡£

5.2.2.3 ÒµÎñ¹æÔò

ÑÇÐſƼ¼£¨Öйú£©ÓÐÏÞ¹«Ë¾ - 23 -