集成微信登录流程
微信登录流程:
微信官方参考文档:
1.在配置文件中添加需要的参数(该参数需要去https://open.weixin.qq.com/通过开发者资格认证等流程申请)
1 2 3 4 5 6 | # 微信开放平台 appid wx.open.app_id=你的appid # 微信开放平台 appsecret wx.open.app_secret=你的app密钥 # 微信开放平台 重定向url wx.open.redirect_url=你的重定向url |
2.创建工具类读取配置文件的参数
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 | import org.springframework.beans.factory.InitializingBean; import org.springframework.beans.factory.annotation.Value; import org.springframework.context.annotation.PropertySource; import org.springframework.stereotype.Component; @Component //读取配置文件中关于微信登录的信息 public class ConstantPropertiesUtil implements InitializingBean { @Value ( "${wx.open.app_id}" ) private String appId; @Value ( "${wx.open.app_secret}" ) private String appSecret; @Value ( "${wx.open.redirect_url}" ) private String redirectUrl; public static String WX_OPEN_APP_ID; public static String WX_OPEN_APP_SECRET; public static String WX_OPEN_REDIRECT_URL; @Override public void afterPropertiesSet() throws Exception { WX_OPEN_APP_ID = this .appId ; WX_OPEN_APP_SECRET = this .appSecret; WX_OPEN_REDIRECT_URL = this .redirectUrl; } } |
3.创建controller
要想实现微信登录,首先要有微信提供的二维码,Controller中生成二维码的方法为getWxCode(),实现方式是拼接出微信官方特定格式的url(官方文档),然后去访问它。其中对于重定向url需要进行urlEncode编码。拼接方式采用占位符的思想,然后使用String类中的方法format()得到最后的url并返回。
当你访问这个接口并使用微信扫一扫登录后,地址栏会变成
http://localhost:8150/api/ucenter/wx/callback?code=001IsvFa1VLKrA0FTcIa1DYMa10IsvFa&state=renzhe
两个参数
code:包含用户信息
state:自定义信息
一个端口,一个方法(获取用户信息的方法)
8150,callback(重定向的url中自定义的)
所以controller中还会定义一个获取用户信息的接口getback(),当你扫完二维码并确定登录后返回的url则会继续执行callback()方法,在callback中获取两个值,code+state,code也叫授权临时票据,然后通过code值请求微信提供的固定url(https://api.weixin.qq.com/sns/oauth2/access_token?appid=APPID&secret=SECRET&code=CODE&grant_type=authorization_code 参数值写自己的),通过httpclient会返回两个值,access_token(访问凭证)+openid(每个微信唯一的标识),例如:
1 | { "access_token" : "41_xexDMUnJWVLK4WdbF02J1-YIu7a6PxNouTlJ_Or9YFYSXCKeD0zu0yM9CAPJvnqTLNXCO4Ij9NuTKIKdQYB47w1yfDYJoVhQNlNSsduHR-k" , "expires_in" : 7200 , "refresh_token" : "41_3OuyVF2OwQGyqgt6CQXmxAKgzYjm6eDyw-NK4kvPhoKbjTUIL_gREUpcqJ4nYZHI3aXLFkjFepg4GScvKrGQVoD4KJqL6oZlBcZYFdN7Iww" , "openid" : "o3_SC51xq5wTbiDADDKAJbJw5cH4" , "scope" : "snsapi_login" , "unionid" : "oWgGz1AMXbZaembWG-3jBmBMyDZc" } |
1 | { "openid" : "o3_SC51xq5wTbiDADDKAJbJw5cH4" , "nickname" : "俟" , "sex" : 1 , "language" : "zh_CN" , "city" : "Taiyuan" , "province" : "Shanxi" , "country" : "CN" , "headimgurl" : "https:\/\/thirdwx.qlogo.cn\/mmopen\/vi_32\/Q0j4TwGTfTIZwLRHYxkV7v2CiciasMFpe65cvibs6xU95pGiavE082SKG6mbB2mibLedTgDnBQ9pPygK2CStv40uHicQ\/132" , "privilege" :[], "unionid" : "oWgGz1AMXbZaembWG-3jBmBMyDZc" } |
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 | @Controller @RequestMapping ( "/api/ucenter/wx" ) @CrossOrigin public class WxApiController { //1.请求微信二维码 @GetMapping ( "login" ) public String getWxCode() { //固定地址 后面拼接参数 %s相当于占位符 String baseUrl = "https://open.weixin.qq.com/connect/qrconnect" + "?appid=%s" + "&redirect_uri=%s" + "&response_type=code" + "&scope=snsapi_login" + "&state=%s" + "#wechat_redirect" ; //对redirect_url进行urlEncode编码 String redirectUrl = ConstantPropertiesUtil.WX_OPEN_REDIRECT_URL; try { redirectUrl = URLEncoder.encode(redirectUrl, "UTF-8" ); //url编码 } catch (Exception e){ throw new GuliException( 20001 , e.getMessage()); } String url = String.format( baseUrl, ConstantPropertiesUtil.WX_OPEN_APP_ID, redirectUrl, "renzhe" ); //重定向到请求微信地址 return "redirect:" +url; } //获取用户信息 @GetMapping ( "callback" ) public String callback(String code,String state){ try { //1.获取code值,临时票据,类似于验证码 //2.拿着code请求微信地址,得到两个值 access_token+openid String baseAccessTokenUrl = "https://api.weixin.qq.com/sns/oauth2/access_token" + "?appid=%s" + "&secret=%s" + "&code=%s" + "&grant_type=authorization_code" ; String accessTokenUrl = String.format(baseAccessTokenUrl, ConstantPropertiesUtil.WX_OPEN_APP_ID, ConstantPropertiesUtil.WX_OPEN_APP_SECRET, code); //请求这个拼接好的地址,最后返回两个参数access_token+openid 使用httpclient请求 String accessTokenInfo = HttpClientUtils.get(accessTokenUrl); //解析json字符串 将其字符串转换成字符串 使其可以取值 Gson gson = new Gson(); HashMap map = gson.fromJson(accessTokenInfo, HashMap. class ); String access_token = (String)map.get( "access_token" ); String openid = (String)map.get( "openid" ); //把扫描人的信息添加到数据库中 //判断数据库中是否存在相同微信信息,根据openid判断 UcenterMember member = memberService.getOpenIdMember(openid); if (member == null ){ //表中无数据 //3.拿着access_token和openid,再去请求微信提供的固定地址,获取扫描人的信息 String baseUserInfoUrl = "https://api.weixin.qq.com/sns/userinfo?" + "access_token=%s" + "&openid=%s" ; //拼接两个参数 String baseUserInfo = String.format(baseUserInfoUrl, access_token, openid); //使用httpclient去请求这个地址 String userInfo = HttpClientUtils.get(baseUserInfo); //解析json字符串 HashMap<String,Object> userMap = gson.fromJson(userInfo, HashMap. class ); String nickname = (String)userMap.get( "nickname" ); //微信头像 String headimgurl = (String)userMap.get( "headimgurl" ); member = new UcenterMember(); member.setOpenid(openid); member.setNickname(nickname); member.setAvatar(headimgurl); memberService.save(member); } //因为cookie不能跨域,所有这个用户信息不准备放入cookie中,而是放入路径中 //使用jwt根据member对象生成一个token字符串 String token = JwtUtils.getJwtToken(member.getId(), member.getNickname()); //最后,返回首页面,并通过路径传递token字符串 return "redirect:http://localhost:3000?token=" +token; } catch (Exception e){ throw new GuliException( 20001 , "登录失败" ); } } } |
技术点:
(1)httpclient:使用它去请求地址然后得到结果,不需要从浏览器输入url也能得到结果。httpclient工具类 主要方法为get,post方法
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 | import org.apache.commons.io.IOUtils; import org.apache.commons.lang.StringUtils; import org.apache.http.Consts; import org.apache.http.HttpEntity; import org.apache.http.HttpResponse; import org.apache.http.NameValuePair; import org.apache.http.client.HttpClient; import org.apache.http.client.config.RequestConfig; import org.apache.http.client.config.RequestConfig.Builder; import org.apache.http.client.entity.UrlEncodedFormEntity; import org.apache.http.client.methods.HttpGet; import org.apache.http.client.methods.HttpPost; import org.apache.http.conn.ConnectTimeoutException; import org.apache.http.conn.ssl.SSLConnectionSocketFactory; import org.apache.http.conn.ssl.SSLContextBuilder; import org.apache.http.conn.ssl.TrustStrategy; import org.apache.http.conn.ssl.X509HostnameVerifier; import org.apache.http.entity.ContentType; import org.apache.http.entity.StringEntity; import org.apache.http.impl.client.CloseableHttpClient; import org.apache.http.impl.client.HttpClients; import org.apache.http.impl.conn.PoolingHttpClientConnectionManager; import org.apache.http.message.BasicNameValuePair; import javax.net.ssl.SSLContext; import javax.net.ssl.SSLException; import javax.net.ssl.SSLSession; import javax.net.ssl.SSLSocket; import java.io.IOException; import java.net.SocketTimeoutException; import java.security.GeneralSecurityException; import java.security.cert.CertificateException; import java.security.cert.X509Certificate; import java.util.ArrayList; import java.util.List; import java.util.Map; import java.util.Map.Entry; import java.util.Set; /** * 依赖的jar包有:commons-lang-2.6.jar、httpclient-4.3.2.jar、httpcore-4.3.1.jar、commons-io-2.4.jar * @author zhaoyb * */ public class HttpClientUtils { public static final int connTimeout= 10000 ; public static final int readTimeout= 10000 ; public static final String charset= "UTF-8" ; private static HttpClient client = null ; static { PoolingHttpClientConnectionManager cm = new PoolingHttpClientConnectionManager(); cm.setMaxTotal( 128 ); cm.setDefaultMaxPerRoute( 128 ); client = HttpClients.custom().setConnectionManager(cm).build(); } public static String postParameters(String url, String parameterStr) throws ConnectTimeoutException, SocketTimeoutException, Exception{ return post(url,parameterStr, "application/x-www-form-urlencoded" ,charset,connTimeout,readTimeout); } public static String postParameters(String url, String parameterStr,String charset, Integer connTimeout, Integer readTimeout) throws ConnectTimeoutException, SocketTimeoutException, Exception{ return post(url,parameterStr, "application/x-www-form-urlencoded" ,charset,connTimeout,readTimeout); } public static String postParameters(String url, Map<String, String> params) throws ConnectTimeoutException, SocketTimeoutException, Exception { return postForm(url, params, null , connTimeout, readTimeout); } public static String postParameters(String url, Map<String, String> params, Integer connTimeout,Integer readTimeout) throws ConnectTimeoutException, SocketTimeoutException, Exception { return postForm(url, params, null , connTimeout, readTimeout); } public static String get(String url) throws Exception { return get(url, charset, null , null ); } public static String get(String url, String charset) throws Exception { return get(url, charset, connTimeout, readTimeout); } /** * 发送一个 Post 请求, 使用指定的字符集编码. * * @param url * @param body RequestBody * @param mimeType 例如 application/xml "application/x-www-form-urlencoded" a=1&b=2&c=3 * @param charset 编码 * @param connTimeout 建立链接超时时间,毫秒. * @param readTimeout 响应超时时间,毫秒. * @return ResponseBody, 使用指定的字符集编码. * @throws ConnectTimeoutException 建立链接超时异常 * @throws SocketTimeoutException 响应超时 * @throws Exception */ public static String post(String url, String body, String mimeType,String charset, Integer connTimeout, Integer readTimeout) throws ConnectTimeoutException, SocketTimeoutException, Exception { HttpClient client = null ; HttpPost post = new HttpPost(url); String result = "" ; try { if (StringUtils.isNotBlank(body)) { HttpEntity entity = new StringEntity(body, ContentType.create(mimeType, charset)); post.setEntity(entity); } // 设置参数 Builder customReqConf = RequestConfig.custom(); if (connTimeout != null ) { customReqConf.setConnectTimeout(connTimeout); } if (readTimeout != null ) { customReqConf.setSocketTimeout(readTimeout); } post.setConfig(customReqConf.build()); HttpResponse res; if (url.startsWith( "https" )) { // 执行 Https 请求. client = createSSLInsecureClient(); res = client.execute(post); } else { // 执行 Http 请求. client = HttpClientUtils.client; res = client.execute(post); } result = IOUtils.toString(res.getEntity().getContent(), charset); } finally { post.releaseConnection(); if (url.startsWith( "https" ) && client != null && client instanceof CloseableHttpClient) { ((CloseableHttpClient) client).close(); } } return result; } /** * 提交form表单 * * @param url * @param params * @param connTimeout * @param readTimeout * @return * @throws ConnectTimeoutException * @throws SocketTimeoutException * @throws Exception */ public static String postForm(String url, Map<String, String> params, Map<String, String> headers, Integer connTimeout,Integer readTimeout) throws ConnectTimeoutException, SocketTimeoutException, Exception { HttpClient client = null ; HttpPost post = new HttpPost(url); try { if (params != null && !params.isEmpty()) { List<NameValuePair> formParams = new ArrayList<NameValuePair>(); Set<Entry<String, String>> entrySet = params.entrySet(); for (Entry<String, String> entry : entrySet) { formParams.add( new BasicNameValuePair(entry.getKey(), entry.getValue())); } UrlEncodedFormEntity entity = new UrlEncodedFormEntity(formParams, Consts.UTF_8); post.setEntity(entity); } if (headers != null && !headers.isEmpty()) { for (Entry<String, String> entry : headers.entrySet()) { post.addHeader(entry.getKey(), entry.getValue()); } } // 设置参数 Builder customReqConf = RequestConfig.custom(); if (connTimeout != null ) { customReqConf.setConnectTimeout(connTimeout); } if (readTimeout != null ) { customReqConf.setSocketTimeout(readTimeout); } post.setConfig(customReqConf.build()); HttpResponse res = null ; if (url.startsWith( "https" )) { // 执行 Https 请求. client = createSSLInsecureClient(); res = client.execute(post); } else { // 执行 Http 请求. client = HttpClientUtils.client; res = client.execute(post); } return IOUtils.toString(res.getEntity().getContent(), "UTF-8" ); } finally { post.releaseConnection(); if (url.startsWith( "https" ) && client != null && client instanceof CloseableHttpClient) { ((CloseableHttpClient) client).close(); } } } /** * 发送一个 GET 请求 * * @param url * @param charset * @param connTimeout 建立链接超时时间,毫秒. * @param readTimeout 响应超时时间,毫秒. * @return * @throws ConnectTimeoutException 建立链接超时 * @throws SocketTimeoutException 响应超时 * @throws Exception */ public static String get(String url, String charset, Integer connTimeout,Integer readTimeout) throws ConnectTimeoutException,SocketTimeoutException, Exception { HttpClient client = null ; HttpGet get = new HttpGet(url); String result = "" ; try { // 设置参数 Builder customReqConf = RequestConfig.custom(); if (connTimeout != null ) { customReqConf.setConnectTimeout(connTimeout); } if (readTimeout != null ) { customReqConf.setSocketTimeout(readTimeout); } get.setConfig(customReqConf.build()); HttpResponse res = null ; if (url.startsWith( "https" )) { // 执行 Https 请求. client = createSSLInsecureClient(); res = client.execute(get); } else { // 执行 Http 请求. client = HttpClientUtils.client; res = client.execute(get); } result = IOUtils.toString(res.getEntity().getContent(), charset); } finally { get.releaseConnection(); if (url.startsWith( "https" ) && client != null && client instanceof CloseableHttpClient) { ((CloseableHttpClient) client).close(); } } return result; } /** * 从 response 里获取 charset * * @param ressponse * @return */ @SuppressWarnings ( "unused" ) private static String getCharsetFromResponse(HttpResponse ressponse) { // Content-Type:text/html; charset=GBK if (ressponse.getEntity() != null && ressponse.getEntity().getContentType() != null && ressponse.getEntity().getContentType().getValue() != null ) { String contentType = ressponse.getEntity().getContentType().getValue(); if (contentType.contains( "charset=" )) { return contentType.substring(contentType.indexOf( "charset=" ) + 8 ); } } return null ; } /** * 创建 SSL连接 * @return * @throws GeneralSecurityException */ private static CloseableHttpClient createSSLInsecureClient() throws GeneralSecurityException { try { SSLContext sslContext = new SSLContextBuilder().loadTrustMaterial( null , new TrustStrategy() { public boolean isTrusted(X509Certificate[] chain,String authType) throws CertificateException { return true ; } }).build(); SSLConnectionSocketFactory sslsf = new SSLConnectionSocketFactory(sslContext, new X509HostnameVerifier() { @Override public boolean verify(String arg0, SSLSession arg1) { return true ; } @Override public void verify(String host, SSLSocket ssl) throws IOException { } @Override public void verify(String host, X509Certificate cert) throws SSLException { } @Override public void verify(String host, String[] cns, String[] subjectAlts) throws SSLException { } }); return HttpClients.custom().setSSLSocketFactory(sslsf).build(); } catch (GeneralSecurityException e) { throw e; } } public static void main(String[] args) { try { String str= post( "https://localhost:443/ssl/test.shtml" , "name=12&page=34" , "application/x-www-form-urlencoded" , "UTF-8" , 10000 , 10000 ); //String str= get("https://localhost:443/ssl/test.shtml?name=12&page=34","GBK"); /*Map<String,String> map = new HashMap<String,String>(); map.put("name", "111"); map.put("page", "222"); String str= postForm("https://localhost:443/ssl/test.shtml",map,null, 10000, 10000);*/ System.out.println(str); } catch (ConnectTimeoutException e) { // TODO Auto-generated catch block e.printStackTrace(); } catch (SocketTimeoutException e) { // TODO Auto-generated catch block e.printStackTrace(); } catch (Exception e) { // TODO Auto-generated catch block e.printStackTrace(); } } } |
依赖:
1 2 3 4 5 6 7 8 | <dependency> <groupId>org.apache.httpcomponents</groupId> <artifactId>httpclient</artifactId> </dependency> <dependency> <groupId>commons-io</groupId> <artifactId>commons-io</artifactId> </dependency> |
2)json转换工具:gson或者fastjson或者jackson 将其字符串转换成字符串 使其可以取值
1 2 3 4 | <dependency> <groupId>com.google.code.gson</groupId> <artifactId>gson</artifactId> </dependency> |
【推荐】国内首个AI IDE,深度理解中文开发场景,立即下载体验Trae
【推荐】编程新体验,更懂你的AI,立即体验豆包MarsCode编程助手
【推荐】抖音旗下AI助手豆包,你的智能百科全书,全免费不限次数
【推荐】轻量又高性能的 SSH 工具 IShell:AI 加持,快人一步
· .NET Core 中如何实现缓存的预热?
· 从 HTTP 原因短语缺失研究 HTTP/2 和 HTTP/3 的设计差异
· AI与.NET技术实操系列:向量存储与相似性搜索在 .NET 中的实现
· 基于Microsoft.Extensions.AI核心库实现RAG应用
· Linux系列:如何用heaptrack跟踪.NET程序的非托管内存泄露
· TypeScript + Deepseek 打造卜卦网站:技术与玄学的结合
· 阿里巴巴 QwQ-32B真的超越了 DeepSeek R-1吗?
· 【译】Visual Studio 中新的强大生产力特性
· 【设计模式】告别冗长if-else语句:使用策略模式优化代码结构
· 10年+ .NET Coder 心语 ── 封装的思维:从隐藏、稳定开始理解其本质意义