Tio-Boot 案例:使用 SQLite 整合到登录注册系统

本文提供了一个使用 tio-boot 将 SQLite 整合到登录和注册系统的完整指南。内容包括 HTTP API 规范、数据库设计、初始化数据、Java 实现、拦截器以及与前端的集成。

HTTP API 规范

1. 用户登录

接口POST /api/login/account

请求体

{
  "username": "admin",
  "password": "admin@2024",
  "autoLogin": true,
  "type": "account"
}

响应

{
  "code": 1,
  "data": {
    "token": "your_generated_token",
    "tokenTimeout": 1701339360,
    "type": "account",
    "status": "ok"
  },
  "ok": true
}

2. 获取当前用户信息

接口GET /api/currentUser

请求头

  • Authorization: Bearer your_generated_token

响应

{
  "code": 1,
  "data": {
    "id": 1,
    "username": "admin",
    "nickname": "admin",
    "email": "aoteman@126.com",
    "phone": "15612345678",
    "avatar": "http://127.0.0.1:48080/admin-api/infra/file/4/get/your_avatar.png",
    "status": 0,
    "access": "admin",
    "signature": "This is a signature",
    "title": "Admin",
    "group_name": "Administrators",
    "tags": {
      "tags": [
        { "key": "tag1", "label": "Tag 1" },
        { "key": "tag2", "label": "Tag 2" }
      ]
    },
    "notify_count": 10,
    "unread_count": 5,
    "country": "United States",
    "geographic": {
      "province": { "label": "California", "key": "CA" },
      "city": { "label": "San Francisco", "key": "SF" }
    },
    "address": "123 Main St, San Francisco, CA 94122",
    "remark": "管理员",
    "dept_id": 103,
    "post_ids": "[1]",
    "sex": 1,
    "login_ip": "127.0.0.1",
    "login_date": 1701335760000,
    "create_time": 1609866227000,
    "update_time": 1711183795000,
    "tenant_id": 1
  },
  "ok": true
}

3. 用户登出

接口POST /api/login/outLogin

请求头

  • Authorization: Bearer your_generated_token

响应

{
  "code": 1,
  "ok": true
}

4. 获取省份列表(占位符)

接口GET /api/geographic/province

响应

{
  "code": 1,
  "data": [],
  "msg": null,
  "ok": true
}

数据库设计

表名tio_boot_admin_system_users

CREATE TABLE tio_boot_admin_system_users (
  id BIGINT NOT NULL PRIMARY KEY,
  username VARCHAR(30) NOT NULL UNIQUE,
  password VARCHAR(100) NOT NULL DEFAULT '',
  nickname VARCHAR(30) NOT NULL,
  signature VARCHAR(200),
  title VARCHAR(50),
  group_name VARCHAR(50),
  tags JSON,
  notify_count INT DEFAULT 0,
  unread_count INT DEFAULT 0,
  country VARCHAR(50),
  access VARCHAR(20),
  geographic JSON,
  address VARCHAR(200),
  remark VARCHAR(500),
  dept_id BIGINT,
  post_ids VARCHAR(255),
  email VARCHAR(50) DEFAULT '',
  phone VARCHAR(11) DEFAULT '',
  sex SMALLINT DEFAULT 0,
  avatar VARCHAR(512) DEFAULT '',
  status SMALLINT NOT NULL DEFAULT 0,
  login_ip VARCHAR(50) DEFAULT '',
  login_date TIMESTAMP WITHOUT TIME ZONE,
  creator VARCHAR(64) DEFAULT '',
  create_time TIMESTAMP WITHOUT TIME ZONE NOT NULL DEFAULT CURRENT_TIMESTAMP,
  updater VARCHAR(64) DEFAULT '',
  update_time TIMESTAMP WITHOUT TIME ZONE NOT NULL DEFAULT CURRENT_TIMESTAMP,
  deleted SMALLINT NOT NULL DEFAULT 0,
  tenant_id BIGINT NOT NULL DEFAULT 0
);

初始化数据插入tio_boot_admin_system_users_init.sql

INSERT INTO tio_boot_admin_system_users (
  id, username, password, nickname, signature, title, group_name, tags, notify_count, unread_count, country, access, geographic, address, remark, dept_id, post_ids, email, phone, sex, avatar, status, login_ip, login_date, creator, create_time, updater, update_time, deleted, tenant_id
) VALUES (
  1, 'admin', '8c6976e5b5410415bde908bd4dee15dfb167a9c873fc4bb8a81f6f2ab448a918', 'admin', 'This is a signature', 'Admin', 'Administrators', '{"tags": [{"key": "tag1", "label": "Tag 1"}, {"key": "tag2", "label": "Tag 2"}]}', 10, 5, 'United States', 'admin', '{"province": {"label": "California", "key": "CA"}, "city": {"label": "San Francisco", "key": "SF"}}', '123 Main St, San Francisco, CA 94122', '管理员', 103, '[1]', 'aoteman@126.com', '15612345678', 1, 'http://127.0.0.1:48080/admin-api/infra/file/4/get/your_avatar.png', 0, '127.0.0.1', '2023-11-30 09:16:00', 'admin', '2021-01-05 17:03:47', NULL, '2024-03-23 08:49:55', 0, 1
);

依赖信息

  <properties>
    <project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
    <java.version>1.8</java.version>
    <maven.compiler.source>${java.version}</maven.compiler.source>
    <maven.compiler.target>${java.version}</maven.compiler.target>
    <graalvm.version>23.1.1</graalvm.version>
    <tio.boot.version>1.7.3</tio.boot.version>
    <jfinal-aop.version>1.3.3</jfinal-aop.version>
    <lombok-version>1.18.30</lombok-version>
    <api-table.version>1.4.2</api-table.version>
    <final.name>web-hello</final.name>
    <main.class>ccom.litongjava.admin.AdminApp</main.class>
  </properties>
  <dependencies>
    <dependency>
      <groupId>com.litongjava</groupId>
      <artifactId>tio-boot</artifactId>
      <version>${tio.boot.version}</version>
    </dependency>

    <!-- JFinal AOP -->
    <dependency>
      <groupId>com.litongjava</groupId>
      <artifactId>jfinal-aop</artifactId>
      <version>${jfinal-aop.version}</version>
    </dependency>

    <dependency>
      <groupId>com.litongjava</groupId>
      <artifactId>hotswap-classloader</artifactId>
      <version>1.2.6</version>
    </dependency>

    <dependency>
      <groupId>com.squareup.okhttp3</groupId>
      <artifactId>okhttp</artifactId>
      <version>3.14.9</version>
    </dependency>

    <!-- sqlite-jdbc -->
    <dependency>
      <groupId>org.xerial</groupId>
      <artifactId>sqlite-jdbc</artifactId>
      <version>3.7.2</version>
    </dependency>

    <dependency>
      <groupId>ch.qos.logback</groupId>
      <artifactId>logback-classic</artifactId>
      <version>1.2.3</version>
    </dependency>

    <dependency>
      <groupId>com.litongjava</groupId>
      <artifactId>api-table</artifactId>
      <version>${api-table.version}</version>
    </dependency>

    <dependency>
      <groupId>com.alibaba</groupId>
      <artifactId>easyexcel</artifactId>
      <version>2.2.10</version>
    </dependency>

    <dependency>
      <groupId>org.projectlombok</groupId>
      <artifactId>lombok</artifactId>
      <version>${lombok-version}</version>
      <optional>true</optional>
      <scope>provided</scope>
    </dependency>


    <dependency>
      <groupId>junit</groupId>
      <artifactId>junit</artifactId>
      <version>4.12</version>
      <scope>test</scope>
    </dependency>

    <dependency>
      <groupId>com.alibaba.fastjson2</groupId>
      <artifactId>fastjson2</artifactId>
      <version>2.0.12</version>
    </dependency>

    <dependency>
      <groupId>com.alibaba</groupId>
      <artifactId>druid</artifactId>
      <version>1.1.23</version>
    </dependency>
  </dependencies>

配置文件

文件app.properties

jdbc.driverClass=org.sqlite.JDBC
jdbc.url=jdbc:sqlite:D:/sqlite/address.db
jdbc.user=
jdbc.pswd=
jdbc.showSql=true
jdbc.validationQuery=select 1

数据库配置和初始化

Java 类AddressDbConfig.java

package com.litongjava.address.config;

import java.io.IOException;
import java.nio.file.Files;
import java.nio.file.Path;
import java.nio.file.Paths;

import javax.sql.DataSource;

import com.alibaba.druid.pool.DruidDataSource;
import com.jfinal.template.Engine;
import com.jfinal.template.source.ClassPathSourceFactory;
import com.litongjava.annotation.AConfiguration;
import com.litongjava.annotation.AInitialization;
import com.litongjava.db.activerecord.ActiveRecordPlugin;
import com.litongjava.db.activerecord.OrderedFieldContainerFactory;
import com.litongjava.db.activerecord.dialect.Sqlite3Dialect;
import com.litongjava.db.hikaricp.DsContainer;
import com.litongjava.tio.boot.server.TioBootServer;
import com.litongjava.tio.utils.environment.EnvUtils;

import lombok.extern.slf4j.Slf4j;

@AConfiguration
@Slf4j
public class AddressDbConfig {

  public DataSource dataSource() {
    String jdbcUrl = EnvUtils.get("jdbc.url");
    String jdbcUser = EnvUtils.get("jdbc.user");
    String jdbcPswd = EnvUtils.get("jdbc.pswd");
    String jdbcValidationQuery = EnvUtils.get("jdbc.validationQuery");

    log.info("jdbcUrl:{}", jdbcUrl);

    // 检查并创建 SQLite 数据库路径
    try {
      if (jdbcUrl != null && jdbcUrl.startsWith("jdbc:sqlite:")) {
        String dbPath = jdbcUrl.substring("jdbc:sqlite:".length());
        Path path = Paths.get(dbPath).getParent();
        if (path != null && !Files.exists(path)) {
          Files.createDirectories(path);
          log.info("已创建 SQLite 数据库目录: {}", path);
        }
      }
    } catch (IOException e) {
      log.error("创建 SQLite 数据库目录失败", e);
      throw new RuntimeException(e);
    }

    // 创建数据源
    DruidDataSource druidDataSource = new DruidDataSource();
    druidDataSource.setUrl(jdbcUrl);
    druidDataSource.setUsername(jdbcUser);
    druidDataSource.setPassword(jdbcPswd);
    druidDataSource.setValidationQuery(jdbcValidationQuery);

    // 保存数据源
    DsContainer.setDataSource(druidDataSource);

    // 服务器停止时关闭数据源
    TioBootServer.me().addDestroyMethod(druidDataSource::close);
    return druidDataSource;
  }

  @Initialization
  public void activeRecordPlugin() {
    boolean dev = EnvUtils.isDev();
    boolean jdbcShowSql = EnvUtils.getBoolean("jdbc.showSql", false);

    // 创建 ActiveRecord 插件
    ActiveRecordPlugin arp = new ActiveRecordPlugin(dataSource());
    arp.setDialect(new Sqlite3Dialect());
    arp.setContainerFactory(new OrderedFieldContainerFactory());
    arp.setShowSql(jdbcShowSql);

    if (dev) {
      arp.setDevMode(true);
    }

    // 配置模板引擎
    Engine engine = arp.getEngine();
    engine.setSourceFactory(new ClassPathSourceFactory());
    engine.setCompressorOn(' ');
    engine.setCompressorOn('\n');

    // 启动插件
    arp.start();

    // 服务器停止时停止插件
    TioBootServer.me().addDestroyMethod(arp::stop);

    DbTables.init();
  }
}

Java 类DbTables.java

package com.litongjava.address.config;

import java.net.URL;
import java.util.List;

import com.litongjava.db.activerecord.Db;
import com.litongjava.tio.utils.hutool.FileUtil;
import com.litongjava.tio.utils.hutool.ResourceUtil;

import lombok.extern.slf4j.Slf4j;

@Slf4j
public class DbTables {

  public static void init() {
    String userTableName = "tio_boot_admin_system_users";

    boolean created = createTable(userTableName);
    if (created) {
      URL url = ResourceUtil.getResource("sql/tio_boot_admin_system_users_init.sql");
      StringBuilder stringBuilder = FileUtil.readURLAsString(url);
      int update = Db.update(stringBuilder.toString());
      log.info("已添加用户到 {}: {}", userTableName, update);
    }

  }

  private static boolean createTable(String userTableName) {
    String sql = "SELECT name FROM sqlite_master WHERE type='table' AND name=?";
    List<String> tables = Db.queryListString(sql, userTableName);
    int size = tables.size();
    if (size < 1) {
      URL url = ResourceUtil.getResource("sql/" + userTableName + ".sql");
      StringBuilder stringBuilder = FileUtil.readURLAsString(url);
      int update = Db.update(stringBuilder.toString());
      log.info("已创建表 {}: {}", userTableName, update);
      return true;
    }
    return false;
  }
}

SQL 查询

文件enjoy-sql/all.sql

#include("user.sql")

文件enjoy-sql/user.sql

#namespace("user")
  #sql("adminUser")
    SELECT
      id,
      username,
      nickname,
      signature,
      title,
      group_name,
      tags,
      notify_count,
      unread_count,
      country,
      access,
      geographic,
      address,
      remark,
      dept_id,
      post_ids,
      email,
      phone,
      sex,
      avatar,
      status,
      login_ip,
      login_date,
      creator,
      create_time,
      updater,
      update_time,
      tenant_id
    FROM
      tio_boot_admin_system_users
    WHERE
      id = 1
      AND deleted = 0
  #end

  #sql("getUserById")
    SELECT
      id,
      username,
      nickname,
      signature,
      title,
      group_name,
      tags,
      notify_count,
      unread_count,
      country,
      access,
      geographic,
      address,
      remark,
      dept_id,
      post_ids,
      email,
      phone,
      sex,
      avatar,
      status,
      login_ip,
      login_date,
      creator,
      create_time,
      updater,
      update_time,
      tenant_id
    FROM
      tio_boot_admin_system_users
    WHERE
      id = ?
      AND deleted = 0
  #end
#end

通用常量

Java 接口AppConstant.java

package com.litongjava.admin.constants;

public interface AppConstant {
  // HmacSHA256 签名算法的密钥
  String SECRET_KEY = "how_many_roads_must_a_man_walk_down";
}

Java 接口TableNames.java

package com.litongjava.admin.constants;

public interface TableNames {
  String TIO_BOOT_ADMIN_SYSTEM_USERS = "tio_boot_admin_system_users";
}

实体类

Java 类LoginAccountVo.java

package com.litongjava.admin.vo;

import lombok.AllArgsConstructor;
import lombok.Data;
import lombok.NoArgsConstructor;

@Data
@NoArgsConstructor
@AllArgsConstructor
public class LoginAccountVo {
  private String username;
  private String password;
  private String type;
  private Boolean autoLogin;
}

HTTP API 实现

Java 类HttpRequestRouterConfig.java

package com.litongjava.admin.config;

import com.litongjava.admin.handler.ApiLoginHandler;
import com.litongjava.admin.handler.GeographicHandler;
import com.litongjava.admin.handler.SystemHandler;
import com.litongjava.admin.handler.UserHandler;
import com.litongjava.annotation.AConfiguration;
import com.litongjava.annotation.AInitialization;
import com.litongjava.jfinal.aop.Aop;
import com.litongjava.tio.boot.server.TioBootServer;
import com.litongjava.tio.http.server.router.HttpRequestRouter;

@AConfiguration
public class HttpRequestRouterConfig {

  @Initialization
  public void httpRoutes() {
    HttpRequestRouter router = TioBootServer.me().getRequestRouter();

    // 创建处理器
    UserHandler userHandler = Aop.get(UserHandler.class);
    GeographicHandler geographicHandler = Aop.get(GeographicHandler.class);
    SystemHandler systemHandler = Aop.get(SystemHandler.class);
    ApiLoginHandler apiLoginHandler = Aop.get(ApiLoginHandler.class);

    // 添加路由
    router.add("/api/login/account", apiLoginHandler::account);
    router.add("/api/login/outLogin", apiLoginHandler::outLogin);
    router.add("/api/login/validateLogin", apiLoginHandler::validateLogin);
    router.add("/api/currentUser", userHandler::currentUser);
    router.add("/api/accountSettingCurrentUser", userHandler::accountSettingCurrentUser);

    router.add("/api/system/changeUserPassword", systemHandler::changeUserPassword);
    router.add("/api/geographic/province", geographicHandler::province);
  }
}

Java 类ApiLoginHandler.java

package com.litongjava.admin.handler;

import com.litongjava.admin.services.LoginService;
import com.litongjava.admin.vo.LoginAccountVo;
import com.litongjava.jfinal.aop.Aop;
import com.litongjava.model.body.RespBodyVo;
import com.litongjava.tio.boot.http.TioRequestContext;
import com.litongjava.tio.http.common.HttpRequest;
import com.litongjava.tio.http.common.HttpResponse;
import com.litongjava.tio.http.server.model.HttpCors;
import com.litongjava.tio.http.server.util.CORSUtils;
import com.litongjava.tio.http.server.util.Resps;
import com.litongjava.tio.utils.json.Json;
import com.litongjava.tio.utils.token.TokenManager;

public class ApiLoginHandler {
  public HttpResponse account(HttpRequest request) {
    HttpResponse httpResponse = TioRequestContext.getResponse();
    CORSUtils.enableCORS(httpResponse, new HttpCors());

    String bodyString = request.getBodyString();
    LoginAccountVo loginAccountVo = Json.getJson().parse(bodyString, LoginAccountVo.class);
    LoginService loginService = Aop.get(LoginService.class);
    RespBodyVo respVo = loginService.login(loginAccountVo);
    return httpResponse.setJson(respVo);
  }

  public HttpResponse outLogin(HttpRequest request) {
    HttpResponse httpResponse = TioRequestContext.getResponse();
    CORSUtils.enableCORS(httpResponse, new HttpCors());
    Long userId = TioRequestContext.getUserIdLong();
    // 移除 token
    TokenManager.logout(userId);

    return Resps.json(httpResponse, RespBodyVo.ok());
  }

  /**
   * 通过检查 token 是否存在来验证登录
   */
  public HttpResponse validateLogin(HttpRequest request) {
    HttpResponse httpResponse = TioRequestContext.getResponse();
    CORSUtils.enableCORS(httpResponse, new HttpCors());

    Long userId = TioRequestContext.getUserIdLong();
    boolean isLoggedIn = TokenManager.isLogin(userId);
    return Resps.json(httpResponse, RespBodyVo.ok(isLoggedIn));
  }
}

Java 类LoginService.java

package com.litongjava.admin.services;

import java.util.HashMap;
import java.util.Map;

import org.apache.commons.codec.digest.DigestUtils;

import com.jfinal.kit.Kv;
import com.litongjava.admin.constants.AppConstant;
import com.litongjava.admin.vo.LoginAccountVo;
import com.litongjava.db.activerecord.Db;
import com.litongjava.model.body.RespBodyVo;
import com.litongjava.model.token.AuthToken;
import com.litongjava.tio.utils.jwt.JwtUtils;
import com.litongjava.tio.utils.token.TokenManager;

import lombok.extern.slf4j.Slf4j;

@Slf4j
public class LoginService {
  public Long getUserIdByUsernameAndPassword(LoginAccountVo loginAccountVo) {
    // 哈希密码
    String hashedPassword = DigestUtils.sha256Hex(loginAccountVo.getPassword());
    log.info("哈希后的密码: {}", hashedPassword);
    String sql = "SELECT id FROM tio_boot_admin_system_users WHERE username=? AND password=?";
    return Db.queryLong(sql, loginAccountVo.getUsername(), hashedPassword);
  }

  public RespBodyVo login(LoginAccountVo loginAccountVo) {
    RespBodyVo respVo;
    // 1. 验证用户
    Long userId = getUserIdByUsernameAndPassword(loginAccountVo);

    if (userId != null) {
      // 2. 设置 token 过期时间
      long tokenTimeout = (System.currentTimeMillis() + 3600000) / 1000;

      // 3. 创建 token
      AuthToken authToken = JwtUtils.createToken(AppConstant.SECRET_KEY, new AuthToken(userId, tokenTimeout));
      TokenManager.login(userId, authToken.getToken());

      Kv kv = new Kv();
      kv.set("token", authToken.getToken());
      kv.set("tokenTimeout", tokenTimeout);
      kv.set("type", loginAccountVo.getType());
      kv.set("status", "ok");

      respVo = RespBodyVo.ok(kv);
    } else {
      Map<String, String> data = new HashMap<>(1);
      data.put("status", "false");
      respVo = RespBodyVo.fail().data(data);
    }
    return respVo;
  }
}

Java 类UserHandler.java

package com.litongjava.admin.handler;

import com.litongjava.admin.services.UserService;
import com.litongjava.jfinal.aop.Aop;
import com.litongjava.model.body.RespBodyVo;
import com.litongjava.tio.boot.http.TioRequestContext;
import com.litongjava.tio.http.common.HttpRequest;
import com.litongjava.tio.http.common.HttpResponse;
import com.litongjava.tio.http.server.model.HttpCors;
import com.litongjava.tio.http.server.util.CORSUtils;
import com.litongjava.tio.http.server.util.Resps;

public class UserHandler {

  public HttpResponse currentUser(HttpRequest request) {
    HttpResponse httpResponse = TioRequestContext.getResponse();
    CORSUtils.enableCORS(httpResponse, new HttpCors());
    Long userId = TioRequestContext.getUserIdLong();
    RespBodyVo respVo = Aop.get(UserService.class).currentUser(userId);
    return Resps.json(httpResponse, respVo);
  }

  public HttpResponse accountSettingCurrentUser(HttpRequest request) {
    HttpResponse httpResponse = TioRequestContext.getResponse();
    CORSUtils.enableCORS(httpResponse, new HttpCors());
    Long userId = TioRequestContext.getUserIdLong();
    RespBodyVo respVo = Aop.get(UserService.class).currentUser(userId);
    return Resps.json(httpResponse, respVo);
  }
}

Java 类UserService.java

package com.litongjava.admin.services;

import com.litongjava.db.SqlPara;
import com.litongjava.db.activerecord.Db;
import com.litongjava.db.activerecord.DbTemplate;
import com.litongjava.db.activerecord.Record;
import com.litongjava.model.body.RespBodyVo;

import lombok.extern.slf4j.Slf4j;

@Slf4j
public class UserService {
  public RespBodyVo currentUser(Long userId) {
    log.info("获取用户数据,userId: {}", userId);
    // 使用模板获取 SQL 查询
    DbTemplate template = Db.template("user.getUserById");

    // 准备 SQL 参数
    SqlPara sqlPara = template.getSqlPara();
    sqlPara.addPara(userId);

    // 执行查询
    Record userRecord = Db.findFirst(sqlPara);
    // 返回数据
    return RespBodyVo.ok(userRecord.toKv());
  }
}

Java 类SystemHandler.java

package com.litongjava.admin.handler;

import java.util.Map;

import com.litongjava.admin.services.SystemUserService;
import com.litongjava.jfinal.aop.Aop;
import com.litongjava.model.body.RespBodyVo;
import com.litongjava.tio.boot.http.TioRequestContext;
import com.litongjava.tio.http.common.HttpRequest;
import com.litongjava.tio.http.common.HttpResponse;
import com.litongjava.tio.http.server.model.HttpCors;
import com.litongjava.tio.http.server.util.CORSUtils;
import com.litongjava.tio.utils.json.Json;

public class SystemHandler {

  public HttpResponse changeUserPassword(HttpRequest request) {
    HttpResponse response = TioRequestContext.getResponse();
    CORSUtils.enableCORS(response, new HttpCors());

    Map<String, String> requestMap = Json.getJson().parseToMap(request.getBodyString(), String.class, String.class);
    Long userId = TioRequestContext.getUserIdLong();
    RespBodyVo respVo = Aop.get(SystemUserService.class).changePassword(userId, requestMap);
    response.setJson(respVo);

    return response;
  }
}

Java 类SystemUserService.java

package com.litongjava.admin.services;

import java.util.Map;

import org.apache.commons.codec.digest.DigestUtils;

import com.jfinal.kit.Kv;
import com.litongjava.admin.constants.TableNames;
import com.litongjava.db.activerecord.Db;
import com.litongjava.model.body.RespBodyVo;

public class SystemUserService {

  public RespBodyVo changePassword(Long userId, Map<String, String> requestMap) {
    Kv kv = Kv.create().set(requestMap);
    String oldPassword = kv.getStr("oldPassword");
    String newPassword = kv.getStr("newPassword");
    String confirmNewPassword = kv.getStr("confirmNewPassword");

    if (!newPassword.equals(confirmNewPassword)) {
      return RespBodyVo.fail("两次输入的密码不一致");
    }

    String hashedOldPassword = DigestUtils.sha256Hex(oldPassword);

    String sql = String.format("SELECT COUNT(1) FROM %s WHERE id=? AND password=?", TableNames.TIO_BOOT_ADMIN_SYSTEM_USERS);

    boolean exists = Db.existsBySql(sql, userId, hashedOldPassword);
    if (!exists) {
      return RespBodyVo.fail("旧密码不正确");
    }

    sql = "UPDATE " + TableNames.TIO_BOOT_ADMIN_SYSTEM_USERS + " SET password=? WHERE id=?";
    int update = Db.updateBySql(sql, DigestUtils.sha256Hex(newPassword), userId);

    if (update == 1) {
      return RespBodyVo.ok();
    }

    return RespBodyVo.fail("修改密码失败");
  }
}

Java 类GeographicHandler.java

package com.litongjava.admin.handler;

import com.litongjava.model.body.RespBodyVo;
import com.litongjava.tio.boot.http.TioRequestContext;
import com.litongjava.tio.http.common.HttpRequest;
import com.litongjava.tio.http.common.HttpResponse;
import com.litongjava.tio.http.server.model.HttpCors;
import com.litongjava.tio.http.server.util.CORSUtils;

public class GeographicHandler {

  public HttpResponse province(HttpRequest httpRequest) {
    HttpResponse response = TioRequestContext.getResponse();
    CORSUtils.enableCORS(response, new HttpCors());

    RespBodyVo ok = RespBodyVo.ok(new String[]{});
    response.setJson(ok);

    return response;
  }
}

拦截器

Java 类HttpRequestInterceptorConfig.java

package com.litongjava.admin.config;

import com.litongjava.admin.interceptor.AuthInterceptor;
import com.litongjava.annotation.AConfiguration;
import com.litongjava.annotation.AInitialization;
import com.litongjava.tio.boot.http.interceptor.HttpInterceptorConfigure;
import com.litongjava.tio.boot.http.interceptor.HttpInterceptorModel;
import com.litongjava.tio.boot.server.TioBootServer;

@AConfiguration
public class HttpRequestInterceptorConfig {

  @Initialization
  public void config() {
    // 实例化登录拦截器
    AuthInterceptor authTokenInterceptor = new AuthInterceptor();
    HttpInterceptorModel model = new HttpInterceptorModel();
    model.setInterceptor(authTokenInterceptor);

    // 拦截所有路由
    model.addBlockUrl("/**");

    // 设置允许的路由
    model.addAllowUrls("", "/");
    model.addAllowUrls("/register/*", "/api/login/account", "/api/login/outLogin");

    HttpInterceptorConfigure interceptorConfigure = new HttpInterceptorConfigure();
    interceptorConfigure.add(model);

    // 将拦截器配置添加到 Tio 服务器
    TioBootServer.me().setHttpInterceptorConfigure(interceptorConfigure);
  }
}

Java 类AuthInterceptor.java

package com.litongjava.admin.interceptor;

import com.litongjava.admin.services.AuthService;
import com.litongjava.jfinal.aop.Aop;
import com.litongjava.tio.boot.http.TioRequestContext;
import com.litongjava.tio.http.common.HttpRequest;
import com.litongjava.tio.http.common.HttpResponse;
import com.litongjava.tio.http.common.HttpResponseStatus;
import com.litongjava.tio.http.common.RequestLine;
import com.litongjava.tio.http.server.intf.HttpRequestInterceptor;

public class AuthInterceptor implements HttpRequestInterceptor {

  private Object body = null;

  public AuthInterceptor() {
  }

  public AuthInterceptor(Object body) {
    this.body = body;
  }

  @Override
  public HttpResponse doBeforeHandler(HttpRequest request, RequestLine requestLine, HttpResponse responseFromCache) {
    String authorization = request.getHeader("authorization");

    AuthService authService = Aop.get(AuthService.class);
    Long userId = authService.getIdByToken(authorization);

    if (userId != null) {
      TioRequestContext.setUserId(userId);
      return null;
    }

    HttpResponse response = TioRequestContext.getResponse();
    response.setStatus(HttpResponseStatus.C401);

    if (body != null) {
      response.setJson(body);
    }
    return response;
  }

  @Override
  public void doAfterHandler(HttpRequest request, RequestLine requestLine, HttpResponse response, long cost) throws Exception {
  }
}

Java 类AuthService.java

package com.litongjava.admin.services;

import com.litongjava.admin.constants.AppConstant;
import com.litongjava.tio.utils.hutool.StrUtil;
import com.litongjava.tio.utils.token.TokenManager;

import lombok.extern.slf4j.Slf4j;

@Slf4j
public class AuthService {
  public Long getIdByToken(String authorization) {
    log.info("Authorization header: {}", authorization);
    if (StrUtil.isBlank(authorization)) {
      return null;
    }
    String[] split = authorization.split(" ");

    Long userId = null;
    if (split.length > 1) {
      String token = split[1];
      userId = TokenManager.parseUserIdLong(AppConstant.SECRET_KEY, token);
    } else {
      userId = TokenManager.parseUserIdLong(AppConstant.SECRET_KEY, authorization);
    }
    return userId;
  }
}

前端集成

现在,您可以将此后端系统与您的前端应用程序集成,通过向指定的接口发送 HTTP 请求。

  • 登录:使用 /api/login/account 接口验证用户身份。
  • 获取用户数据:获取 token 后,使用 /api/currentUser 接口获取用户详细信息,在请求头中包含 Authorization
  • 登出:使用 /api/login/outLogin 接口登出用户。
  • 修改密码:使用 /api/system/changeUserPassword 接口允许用户修改密码。

确保所有需要身份验证的请求都在 Authorization 请求头中包含 Bearer token。

结论

本指南提供了使用 tio-boot 将 SQLite 集成到登录和注册系统的逐步方法。通过遵循提供的代码片段和配置,您可以建立一个健壮的身份验证系统,并将其无缝集成到您的前端应用程序中。


注意:请确保将 your_generated_tokenyour_avatar.png 等占位符替换为您实际实现中的值。