<ruby id="bdb3f"></ruby>

    <p id="bdb3f"><cite id="bdb3f"></cite></p>

      <p id="bdb3f"><cite id="bdb3f"><th id="bdb3f"></th></cite></p><p id="bdb3f"></p>
        <p id="bdb3f"><cite id="bdb3f"></cite></p>

          <pre id="bdb3f"></pre>
          <pre id="bdb3f"><del id="bdb3f"><thead id="bdb3f"></thead></del></pre>

          <ruby id="bdb3f"><mark id="bdb3f"></mark></ruby><ruby id="bdb3f"></ruby>
          <pre id="bdb3f"><pre id="bdb3f"><mark id="bdb3f"></mark></pre></pre><output id="bdb3f"></output><p id="bdb3f"></p><p id="bdb3f"></p>

          <pre id="bdb3f"><del id="bdb3f"><progress id="bdb3f"></progress></del></pre>

                <ruby id="bdb3f"></ruby>

                ### 前言: 在jeecg系統中有很多地方允許用戶自己定義sql語句,如**online報表配置sql**、如**字典組件配置查詢字段**等等,這些定義的sql語句或是配置的查詢字段名,可能會造成一些敏感數據的泄露。所以需要一個配置,申明特定的表或字段是禁止查詢的。 ### 配置類: `org.jeecg.common.util.security.AbstractQueryBlackListHandler` ![](https://img.kancloud.cn/24/2d/242dc31a641812b97e9c2bbcbdbc078a_649x574.png) ### 配置說明: ![](https://img.kancloud.cn/fa/93/fa9335f081aa63aa0a11bd6e38f0ff72_813x304.png) 1.往ruleMap中配置鍵值對,key是表名,value是字段,多個字段以逗號隔開 2.`ruleMap.put("sys_user", "*")` 表示 sys_user所有的字段不支持查詢 3.`ruleMap.put("sys_user", "username,password")`表示sys_user中的username和password不支持查詢 ### 測試online報表效果 定義sql: `select password from sys_user` 解析報錯: ![](https://img.kancloud.cn/e6/1d/e61d28297a866e69a9f7aca1b7e134f3_1866x301.png)
                  <ruby id="bdb3f"></ruby>

                  <p id="bdb3f"><cite id="bdb3f"></cite></p>

                    <p id="bdb3f"><cite id="bdb3f"><th id="bdb3f"></th></cite></p><p id="bdb3f"></p>
                      <p id="bdb3f"><cite id="bdb3f"></cite></p>

                        <pre id="bdb3f"></pre>
                        <pre id="bdb3f"><del id="bdb3f"><thead id="bdb3f"></thead></del></pre>

                        <ruby id="bdb3f"><mark id="bdb3f"></mark></ruby><ruby id="bdb3f"></ruby>
                        <pre id="bdb3f"><pre id="bdb3f"><mark id="bdb3f"></mark></pre></pre><output id="bdb3f"></output><p id="bdb3f"></p><p id="bdb3f"></p>

                        <pre id="bdb3f"><del id="bdb3f"><progress id="bdb3f"></progress></del></pre>

                              <ruby id="bdb3f"></ruby>

                              哎呀哎呀视频在线观看