1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
| /**
* HTTP请求对象
*/
public class HttpRequest {
private String path;
private String method;
private Map<String, String> headers;
private Map<String, String> parameters;
private String body;
private String userToken;
public HttpRequest(String method, String path) {
this.method = method;
this.path = path;
this.headers = new HashMap<>();
this.parameters = new HashMap<>();
}
public void addHeader(String key, String value) {
headers.put(key, value);
}
public void addParameter(String key, String value) {
parameters.put(key, value);
}
@Override
public String toString() {
return method + " " + path + " Headers:" + headers + " Params:" + parameters;
}
// getter和setter方法
public String getPath() { return path; }
public String getMethod() { return method; }
public Map<String, String> getHeaders() { return headers; }
public Map<String, String> getParameters() { return parameters; }
public String getBody() { return body; }
public void setBody(String body) { this.body = body; }
public String getUserToken() { return userToken; }
public void setUserToken(String userToken) { this.userToken = userToken; }
}
/**
* HTTP响应对象
*/
public class HttpResponse {
private int statusCode;
private Map<String, String> headers;
private String body;
private boolean processed;
public HttpResponse() {
this.statusCode = 200;
this.headers = new HashMap<>();
this.processed = false;
}
public void setError(int statusCode, String message) {
this.statusCode = statusCode;
this.body = message;
this.processed = true;
}
@Override
public String toString() {
return "HTTP " + statusCode + " " + (body != null ? body : "OK");
}
// getter和setter方法
public int getStatusCode() { return statusCode; }
public void setStatusCode(int statusCode) { this.statusCode = statusCode; }
public Map<String, String> getHeaders() { return headers; }
public String getBody() { return body; }
public void setBody(String body) { this.body = body; }
public boolean isProcessed() { return processed; }
public void setProcessed(boolean processed) { this.processed = processed; }
}
/**
* 抽象过滤器
*/
public abstract class Filter {
protected Filter nextFilter;
protected String filterName;
public Filter(String filterName) {
this.filterName = filterName;
}
public void setNextFilter(Filter nextFilter) {
this.nextFilter = nextFilter;
}
/**
* 过滤器处理模板方法
*/
public final void doFilter(HttpRequest request, HttpResponse response) {
System.out.println("🔍 " + filterName + " 开始处理: " + request.getMethod() + " " + request.getPath());
// 前置处理
boolean continueChain = preProcess(request, response);
if (continueChain && !response.isProcessed()) {
if (nextFilter != null) {
nextFilter.doFilter(request, response);
}
// 后置处理
postProcess(request, response);
} else {
System.out.println("⛔ " + filterName + " 终止了请求处理链");
}
}
/**
* 前置处理 - 子类实现
* @return true表示继续处理链,false表示终止
*/
protected abstract boolean preProcess(HttpRequest request, HttpResponse response);
/**
* 后置处理 - 子类可选实现
*/
protected void postProcess(HttpRequest request, HttpResponse response) {
System.out.println("✅ " + filterName + " 后置处理完成");
}
public String getFilterName() { return filterName; }
}
/**
* 具体过滤器 - 认证过滤器
*/
public class AuthenticationFilter extends Filter {
private Set<String> validTokens;
public AuthenticationFilter() {
super("认证过滤器");
this.validTokens = new HashSet<>();
// 模拟一些有效的token
validTokens.add("token123");
validTokens.add("token456");
validTokens.add("admin_token");
}
@Override
protected boolean preProcess(HttpRequest request, HttpResponse response) {
// 公开路径不需要认证
if (isPublicPath(request.getPath())) {
System.out.println("🌐 公开路径,跳过认证: " + request.getPath());
return true;
}
String token = request.getHeaders().get("Authorization");
if (token == null) {
response.setError(401, "缺少Authorization header");
return false;
}
if (validTokens.contains(token)) {
request.setUserToken(token);
System.out.println("🔐 认证成功: " + token);
return true;
} else {
response.setError(401, "无效的token");
return false;
}
}
private boolean isPublicPath(String path) {
return path.equals("/login") || path.equals("/register") || path.startsWith("/public");
}
}
/**
* 具体过滤器 - 授权过滤器
*/
public class AuthorizationFilter extends Filter {
private Map<String, Set<String>> userPermissions;
public AuthorizationFilter() {
super("授权过滤器");
this.userPermissions = new HashMap<>();
// 模拟用户权限
userPermissions.put("token123", Set.of("READ", "WRITE"));
userPermissions.put("token456", Set.of("READ"));
userPermissions.put("admin_token", Set.of("READ", "WRITE", "DELETE", "ADMIN"));
}
@Override
protected boolean preProcess(HttpRequest request, HttpResponse response) {
String token = request.getUserToken();
if (token == null) {
// 如果没有token(如公开路径),跳过授权检查
return true;
}
String requiredPermission = getRequiredPermission(request);
if (requiredPermission == null) {
return true; // 不需要特殊权限
}
Set<String> permissions = userPermissions.get(token);
if (permissions != null && permissions.contains(requiredPermission)) {
System.out.println("✅ 授权成功: " + requiredPermission);
return true;
} else {
response.setError(403, "权限不足,需要: " + requiredPermission);
return false;
}
}
private String getRequiredPermission(HttpRequest request) {
String path = request.getPath();
String method = request.getMethod();
if (path.startsWith("/admin")) {
return "ADMIN";
} else if ("DELETE".equals(method)) {
return "DELETE";
} else if ("POST".equals(method) || "PUT".equals(method)) {
return "WRITE";
} else if ("GET".equals(method)) {
return "READ".toUpperCase();
}
return null;
}
}
/**
* 具体过滤器 - 日志过滤器
*/
public class LoggingFilter extends Filter {
public LoggingFilter() {
super("日志过滤器");
}
@Override
protected boolean preProcess(HttpRequest request, HttpResponse response) {
long startTime = System.currentTimeMillis();
request.addParameter("startTime", String.valueOf(startTime));
System.out.println("📝 请求开始: " + request);
return true;
}
@Override
protected void postProcess(HttpRequest request, HttpResponse response) {
long startTime = Long.parseLong(request.getParameters().get("startTime"));
long duration = System.currentTimeMillis() - startTime;
System.out.println("📝 请求完成: " + request.getMethod() + " " + request.getPath() +
" -> " + response.getStatusCode() + " (耗时: " + duration + "ms)");
super.postProcess(request, response);
}
}
/**
* 具体过滤器 - 缓存过滤器
*/
public class CacheFilter extends Filter {
private Map<String, String> cache;
public CacheFilter() {
super("缓存过滤器");
this.cache = new HashMap<>();
// 预置一些缓存数据
cache.put("GET /api/users", "缓存的用户列表数据");
cache.put("GET /api/config", "缓存的配置数据");
}
@Override
protected boolean preProcess(HttpRequest request, HttpResponse response) {
if ("GET".equals(request.getMethod())) {
String cacheKey = request.getMethod() + " " + request.getPath();
String cachedData = cache.get(cacheKey);
if (cachedData != null) {
response.setBody(cachedData);
response.setProcessed(true);
System.out.println("💾 缓存命中: " + cacheKey);
return false; // 终止处理链,直接返回缓存结果
} else {
System.out.println("💾 缓存未命中: " + cacheKey);
}
}
return true;
}
@Override
protected void postProcess(HttpRequest request, HttpResponse response) {
// 缓存GET请求的成功响应
if ("GET".equals(request.getMethod()) && response.getStatusCode() == 200) {
String cacheKey = request.getMethod() + " " + request.getPath();
cache.put(cacheKey, response.getBody());
System.out.println("💾 响应已缓存: " + cacheKey);
}
super.postProcess(request, response);
}
}
/**
* 具体过滤器 - 速率限制过滤器
*/
public class RateLimitFilter extends Filter {
private Map<String, Integer> requestCounts;
private Map<String, Long> lastResetTime;
private static final int RATE_LIMIT = 10; // 每分钟10次
private static final long WINDOW_SIZE = 60000; // 1分钟窗口
public RateLimitFilter() {
super("速率限制过滤器");
this.requestCounts = new HashMap<>();
this.lastResetTime = new HashMap<>();
}
@Override
protected boolean preProcess(HttpRequest request, HttpResponse response) {
String clientKey = getClientKey(request);
long currentTime = System.currentTimeMillis();
// 重置计数器(如果窗口过期)
Long lastReset = lastResetTime.get(clientKey);
if (lastReset == null || (currentTime - lastReset) >= WINDOW_SIZE) {
requestCounts.put(clientKey, 0);
lastResetTime.put(clientKey, currentTime);
}
// 检查是否超过限制
int currentCount = requestCounts.getOrDefault(clientKey, 0);
if (currentCount >= RATE_LIMIT) {
response.setError(429, "请求过于频繁,请稍后再试");
System.out.println("⚠️ 速率限制触发: " + clientKey + " (" + currentCount + "/" + RATE_LIMIT + ")");
return false;
}
// 增加计数
requestCounts.put(clientKey, currentCount + 1);
System.out.println("📊 速率检查通过: " + clientKey + " (" + (currentCount + 1) + "/" + RATE_LIMIT + ")");
return true;
}
private String getClientKey(HttpRequest request) {
// 简化:使用token作为客户端标识
String token = request.getUserToken();
return token != null ? token : "anonymous";
}
}
/**
* 过滤器链管理器
*/
public class FilterChainManager {
private Filter filterChain;
private List<Filter> filters;
public FilterChainManager() {
this.filters = new ArrayList<>();
buildFilterChain();
}
/**
* 构建过滤器链
*/
private void buildFilterChain() {
// 创建过滤器实例
LoggingFilter loggingFilter = new LoggingFilter();
RateLimitFilter rateLimitFilter = new RateLimitFilter();
AuthenticationFilter authFilter = new AuthenticationFilter();
AuthorizationFilter authzFilter = new AuthorizationFilter();
CacheFilter cacheFilter = new CacheFilter();
// 构建过滤器链 - 顺序很重要
loggingFilter.setNextFilter(rateLimitFilter);
rateLimitFilter.setNextFilter(authFilter);
authFilter.setNextFilter(authzFilter);
authzFilter.setNextFilter(cacheFilter);
this.filterChain = loggingFilter;
// 保存过滤器列表
filters.add(loggingFilter);
filters.add(rateLimitFilter);
filters.add(authFilter);
filters.add(authzFilter);
filters.add(cacheFilter);
System.out.println("🔗 过滤器链构建完成:");
System.out.println(" 日志 -> 速率限制 -> 认证 -> 授权 -> 缓存");
}
/**
* 处理HTTP请求
*/
public HttpResponse processRequest(HttpRequest request) {
System.out.println("\n" + "=".repeat(80));
System.out.println("🚀 开始处理请求: " + request);
HttpResponse response = new HttpResponse();
filterChain.doFilter(request, response);
// 如果没有被任何过滤器处理,模拟业务逻辑处理
if (!response.isProcessed()) {
response.setBody("业务逻辑处理结果: " + request.getPath());
response.setProcessed(true);
System.out.println("🎯 业务逻辑处理完成");
}
System.out.println("📤 响应: " + response);
return response;
}
public void printFilterChain() {
System.out.println("=== 当前过滤器链 ===");
for (int i = 0; i < filters.size(); i++) {
System.out.println((i + 1) + ". " + filters.get(i).getFilterName());
}
}
}
// Web过滤器链演示
public class WebFilterChainDemo {
public static void main(String[] args) {
System.out.println("=== Web过滤器链模式演示 ===");
FilterChainManager chainManager = new FilterChainManager();
chainManager.printFilterChain();
// 创建不同的HTTP请求
HttpRequest[] requests = {
// 1. 公开路径请求
createRequest("GET", "/public/info"),
// 2. 需要认证的请求 - 无token
createRequest("GET", "/api/users"),
// 3. 需要认证的请求 - 有效token
createAuthenticatedRequest("GET", "/api/users", "token123"),
// 4. 缓存命中的请求
createAuthenticatedRequest("GET", "/api/config", "token123"),
// 5. 需要写权限的请求
createAuthenticatedRequest("POST", "/api/users", "token456"), // 只有读权限
// 6. 管理员请求
createAuthenticatedRequest("DELETE", "/admin/users/1", "admin_token"),
// 7. 超过速率限制的请求
createAuthenticatedRequest("GET", "/api/data", "token123")
};
// 处理所有请求
for (HttpRequest request : requests) {
chainManager.processRequest(request);
}
// 模拟速率限制 - 快速发送多个请求
System.out.println("\n" + "=".repeat(80));
System.out.println("=== 模拟速率限制触发 ===");
HttpRequest rateLimitTest = createAuthenticatedRequest("GET", "/api/test", "token123");
for (int i = 0; i < 12; i++) { // 发送12个请求(超过10个限制)
System.out.println("\n--- 第 " + (i + 1) + " 个请求 ---");
chainManager.processRequest(rateLimitTest);
}
System.out.println("\n" + "=".repeat(80));
System.out.println("=== 过滤器链模式优势总结 ===");
System.out.println("✅ 模块化: 每个过滤器职责单一");
System.out.println("✅ 可配置: 可以动态调整过滤器顺序");
System.out.println("✅ 可扩展: 易于添加新的过滤器");
System.out.println("✅ 复用性: 过滤器可以在不同场景复用");
System.out.println("✅ 流水线: 形成清晰的处理流水线");
}
private static HttpRequest createRequest(String method, String path) {
return new HttpRequest(method, path);
}
private static HttpRequest createAuthenticatedRequest(String method, String path, String token) {
HttpRequest request = new HttpRequest(method, path);
request.addHeader("Authorization", token);
return request;
}
}
|