这里我之前有配置过跨域如下:
import org.springframework.stereotype.Component;
import javax.servlet.*;
import javax.servlet.http.HttpServletResponse;
import java.io.IOException;
/**
* 为了解决跨域加的
*/
@Component
public class SimpleCORSFilter implements Filter {
public void doFilter(ServletRequest req, ServletResponse res, FilterChain chain) throws IOException, ServletException {
HttpServletResponse response = (HttpServletResponse) res;
response.setHeader("Access-Control-Allow-Origin", "*");
response.setHeader("Access-Control-Allow-Methods", "POST, GET, OPTIONS, DELETE, HEAD");
response.setHeader("Access-Control-Max-Age", "3600");
response.setHeader("Access-Control-Allow-Headers", "access-control-allow-origin, authority, content-type, " +
"version-info, X-Requested-With,Authorization");
chain.doFilter(req, res);
}
public void init(FilterConfig filterConfig) {
System.out.println("aaa");
}
public void destroy() {}
}
2、允许request header中带有 Authorization的请求
默认如果发送的请求的header中带有Authorization的话,会进不了指定的接口
2.1、在如上的代码中加入23行处加入如下:
response.setHeader("Access-Control-Allow-Headers", "access-control-allow-origin, authority, content-type, " + "version-info, X-Requested-With,Authorization");// 此处加了Authorization用于允许header中的Authorization请求,Authorization带有token验证
2.2、在方法中加上@RequestHeader("Authorization") String token,用于获取Authorization参数.如下:
public String addAddress(@RequestHeader("Authorization") String token) {
System.out.println(token);
return "token is " + token;
}
本文介绍了如何在Spring应用中配置SimpleCORSFilter来处理跨域问题,重点讲解了如何添加对Authorization请求头的支持。通过设置响应头,允许来自任何源的POST、GET等请求,并允许包含Authorization令牌的请求。

5万+

被折叠的 条评论
为什么被折叠?



