|
|
|
@ -39,7 +39,7 @@ public class AuthInnerTokenFilter extends OncePerRequestFilter {
|
|
|
|
|
// 验证 authToken 合法
|
|
|
|
|
TmdUserDetail tmdUserDetail = jwtTokenUtil.getValidUserDetail(request);
|
|
|
|
|
if (tmdUserDetail == null) {
|
|
|
|
|
log.error("authToken authentication failed: {}", request.getHeader("x-auth-authToken"));
|
|
|
|
|
// log.error("authToken authentication failed: {}", request.getHeader("x-auth-authToken"));
|
|
|
|
|
SecurityContextHolder.clearContext(); // 验证失败不应该在此处抛出异常,应该维护好 context 的值,以便整个过滤器链正常运行
|
|
|
|
|
filterChain.doFilter(request, response);
|
|
|
|
|
return;
|
|
|
|
|