fix: 用户所属平台标识判断访问
This commit is contained in:
@@ -74,7 +74,7 @@ public class AuthFilter implements GlobalFilter, Ordered
|
|||||||
return unauthorizedResponse(exchange, "令牌验证失败");
|
return unauthorizedResponse(exchange, "令牌验证失败");
|
||||||
}
|
}
|
||||||
String platform = JwtUtils.getUserPlatform(claims);
|
String platform = JwtUtils.getUserPlatform(claims);
|
||||||
if (StringUtils.isEmpty(platform) || !StringUtils.startsWith(url,"/u"))
|
if ("user".equals(platform) && !StringUtils.startsWith(url,"/u"))
|
||||||
{
|
{
|
||||||
return unauthorizedResponse(exchange, "用户平台禁止访问");
|
return unauthorizedResponse(exchange, "用户平台禁止访问");
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user