Spring 中没有注解的 Java 对象验证

And*_*ine 2 java validation spring spring-mvc bean-validation

我正在与 mybatis 合作执行所有数据库操作。我也在使用 Angular 前端,因此客户端中的验证是使用angular-validation-ghiscoding原生 HTML5 验证进行的。我想验证银行端的数据,但我不想使用注释。

以下是代码示例:

    @RequestMapping(value = SecureApiResources.URI_UPDATE_ACCOUNT, method = RequestMethod.POST, produces = "application/json")
    public @ResponseBody Account updateAccount(
            @RequestBody final AccountRequestUpdate accountRequest) { // Object to be validated (accountRequest)

        Account account = accountMapper.getAccountOfMerchant(authContextHolder.getMerchantId(), authContextHolder.getDefaultAccountId());

        if (account == null) {
            HttpErrors httpErrors = new HttpErrors(
                    SecureApiResources.ERROR_ACCOUNTS_NOT_FOUND);
            throw new EntityNotFoundException(httpErrors);
        }
        int resultUpdate;
        try {
            // In this point I should validate the accountRequest object
            account.setAccountName(accountRequest.getAccountName());
            account.setCommercialName(accountRequest.getCommerciaName());
            account.setCountry(accountRequest.getCountry());
            account.setCity(accountRequest.getCity());
            resultUpdate = accountMapper.updateMerchant(account);
            if (resultUpdate == 0) {
                HttpErrors httpErrors = new HttpErrors(
                        SecureApiResources.ERROR_ACCOUNTS_NOT_FOUND);
                throw new EntityNotFoundException(httpErrors);
            }
        } catch (Exception e) {
            HttpErrors httpErrors = new HttpErrors(
                    SecureApiResources.ERROR_SQL_NOT_EXECUTE);
            throw new EntityNotFoundException(httpErrors);
        }

        return account;
    }
Run Code Online (Sandbox Code Playgroud)

在同一个类中,我有一个创建帐户的方法,并且我收到了另一个模型对象 ( AccountRequestCreate accountRequest)。

在没有 xml 和注解的情况下,哪个可能是最推荐的实现选项?

Ali*_*ani 5

最推荐的方法是使用@Valid@Validated注解,但因为你无法与完全OK,你可以Autowirejavax.validation.Validator进入你的控制器和手动执行验证:

@Controller
public class SomeController {
    @Autowired private Validator validator;

    @RequestMapping(...)
    public ResponseEntity<?> someHandler(@RequestBody SomeBody body) {
        Set<ConstraintViolation<SomeBody>> violations = validator.validate(body);
        if (!violations.isEmpty()) {
            List<String> messages = violations
                                   .stream()
                                   .map(ConstraintViolation::getMessage)
                                   .collect(Collectors.toList());

            return ResponseEntity.badRequest().body(messages);
        }
        // the rest of controller
    }
}
Run Code Online (Sandbox Code Playgroud)

使用这种方法,您将在所有其他控制器中重复验证逻辑,这不是一个好主意。你也违反了DRY原则。

正如我所说,最好用@Validor注释你的 bean @Validated

@RequestMapping(...)
public ResponseEntity<?> someHandler(@RequestBody @Valid SomeBody body) { ... }
Run Code Online (Sandbox Code Playgroud)

如果传递的 bean 违反了至少一个验证规则,MethodArgumentNotValidException则会抛出an 。为了处理该异常,您可以编写一个ControllerAdvice捕获异常并返回合适的 HTTP 响应的方法,例如400 Bad Request

@ControllerAdvice
public class ValidationAdvice {
    @ExceptionHandler(MethodArgumentNotValidException.class)
    public ResponseEntity<?> handleValidationError(MethodArgumentNotValidException ex) {
         List<String> validationErrors = ex.getBindingResult()
                                            .getAllErrors()
                                            .stream()
                                            .map(ObjectError::getDefaultMessage)
                                            .collect(Collectors.toList());

         return ResponseEntity.badRequest().body(validatioErrors);
    }
}
Run Code Online (Sandbox Code Playgroud)