SensitiveMiddleware.php 3.2 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788
  1. <?php
  2. declare(strict_types=1);
  3. namespace App\Middleware\Auth;
  4. use App\Tools\PublicData;
  5. use Hyperf\HttpServer\Contract\RequestInterface;
  6. use Hyperf\HttpServer\Contract\ResponseInterface as HttpResponse;
  7. use Psr\Container\ContainerInterface;
  8. use Psr\Http\Message\ResponseInterface;
  9. use Psr\Http\Message\ServerRequestInterface;
  10. use Psr\Http\Server\MiddlewareInterface;
  11. use Psr\Http\Server\RequestHandlerInterface;
  12. use Hyperf\HttpMessage\Stream\SwooleStream;
  13. use Hyperf\Di\Annotation\Inject;
  14. use Hyperf\Redis\Redis;
  15. //use Swoole\Http\Request;
  16. class SensitiveMiddleware implements MiddlewareInterface
  17. {
  18. protected ContainerInterface $container;
  19. protected RequestInterface $request;
  20. protected HttpResponse $response;
  21. #[Inject]
  22. protected Redis $redis;
  23. const STREAM_URL = [
  24. '/news/addArticle',
  25. '/news/updateArticle'
  26. ];
  27. public function __construct( RequestInterface $request, HttpResponse $response)
  28. {
  29. $this->request = $request;
  30. $this->response = $response;
  31. }
  32. public function process(ServerRequestInterface $request, RequestHandlerInterface $handler): ResponseInterface
  33. {
  34. $uri = $request->getUri();
  35. // 获取接口路径(不包含查询参数)
  36. $path = $uri->getPath();
  37. try {
  38. if($path && in_array($path,self::STREAM_URL)){
  39. $badWords = $this->redis->sMembers('black_word'); //黑名单
  40. $whiteWords = $this->redis->sMembers('white_word');//白名单
  41. // 获取所有请求参数并拼接成文本
  42. $params = $this->request->all();
  43. $concatenated = "";
  44. if($params){
  45. foreach ($params as $value) {
  46. if (is_array($value)) {
  47. // 如果值是数组,将数组元素用逗号连接
  48. $concatenated.= json_encode($value);
  49. } else {
  50. // 如果不是数组,直接拼接
  51. $concatenated.= $value;
  52. }
  53. }
  54. }
  55. // 遍历违禁词,检查是否在文本中存在
  56. foreach ($badWords as $badWord) {
  57. // 判断该违禁词是否在白名单中,如果在则跳过
  58. if (in_array($badWord, $whiteWords)) {
  59. continue;
  60. }
  61. if (str_contains($concatenated, $badWord)) {
  62. // 处理找到违禁词的情况,例如返回错误信息
  63. $message = '发现违禁词: '. $badWord;
  64. return $this->response->json(
  65. [
  66. 'code' => 0,
  67. 'data' => [],
  68. 'message' => $message
  69. ]
  70. );
  71. }
  72. }
  73. }else{
  74. return $handler->handle($request);
  75. }
  76. }catch (\Exception $e){
  77. var_dump("错误消息:",$e->getMessage(),$e->getCode());
  78. return $handler->handle($request);
  79. }
  80. return false;
  81. }
  82. }