2017-04-13 66 views
0

Iam在我的grails 2.4.4应用程序中使用spring-security-core 2.0-RC5。最近我在我的应用程序中实现了以下过滤器,但问题在于SignupController请求即将到来时,由于springSecurityService注入(在注册的情况下没有验证并且没有会话)发生错误。将springSecurityService注入到导致错误的过滤器中

那么我怎么能注入springSecurityService在我的过滤器没有赶上注册请求。

import com.services.portal.ProfileService; 
 
import com.services.portal.SignupService; 
 
import com.services.portal.UserSessionService; 
 
import com.domain.auth.User; 
 
import com.services.portal.FormProcessService; 
 
import com.services.portal.ProfileService; 
 
import com.services.portal.SignupService; 
 
import com.services.portal.UserSessionService 
 

 
import grails.plugin.springsecurity.SpringSecurityService; 
 
import grails.plugin.springsecurity.annotation.Secured 
 
import grails.plugin.springsecurity.ui.AbstractS2UiController; 
 
import groovy.sql.Sql 
 

 

 

 
class AuthFilters { 
 
\t def springSecurityService 
 
\t def filters = { 
 
\t \t allExceptIndex(controller: 'login|signup|logout', invert: true) { 
 
\t \t \t before = { 
 
\t \t \t \t if(session["Username"] == null){ 
 
\t \t \t \t \t def Username = springSecurityService.getPrincipal().getUsername() 
 
\t \t \t \t \t session["Username"] = Username 
 
\t \t \t \t } 
 
\t \t \t \t if(session["UserId"] == null){ 
 
\t \t \t \t \t String userId = springSecurityService.getPrincipal().getId() 
 
\t \t \t \t \t session["UserId"] = userId 
 
\t \t \t \t } 
 
\t \t \t \t if(session["incomingIp"] == null){ 
 
\t \t \t \t \t def incomingIp = request.remoteHost 
 
\t \t \t \t \t session["incomingIp"] = incomingIp 
 
\t \t \t \t } 
 
\t \t \t \t if(session["currUserRole"] == null){ 
 
\t \t \t \t \t def roles = springSecurityService.getPrincipal().getAuthorities() 
 
\t \t \t \t \t roles = roles.toString().substring(1, roles.toString().length()-1) 
 
\t \t \t \t \t session["currUserRole"] = roles 
 
\t \t \t \t } 
 
\t \t \t } 
 

 
\t \t \t after = { Map model -> 
 
\t \t \t } 
 

 
\t \t \t afterView = { Exception e -> 
 
\t \t \t } 
 
\t \t } 
 
     } 
 
    }

回答

0

该处理的申请要求将其公开通过行动之前使用@Secured(['permitAll'])控制器。

+0

我已将@Secured(['permitAll'])注释添加到注册控制器 –