Quellcode durchsuchen

fail address blocking

databank102 vor 4 Jahren
Ursprung
Commit
858239e523

+ 33 - 6
src/main/java/com/lemon/lifecenter/controller/StaffTotalManagerController.java

@@ -83,7 +83,11 @@ public class StaffTotalManagerController extends LifeCenterController {
     public ModelAndView staffManagerInfo(
             @PathVariable("addr") String inputaddr,
             @ModelAttribute("dto") StaffManagerDTO dto,
-            HttpServletRequest request,HttpServletResponse response) {
+            HttpServletRequest request,HttpServletResponse response) throws IOException {
+        if(inputaddr.equals("meditotal") || inputaddr.equals("govtotal")) {
+        } else {
+            response.sendError( 403 );
+        }
         
         String inputgubun = inputaddr.equals("meditotal") ? "m" : "g";
         
@@ -118,7 +122,11 @@ public class StaffTotalManagerController extends LifeCenterController {
             @RequestParam(value="endDate", required=false, defaultValue="") String inputEndDate,
             @RequestParam(value="page", required=false, defaultValue="1") int page,
             
-            HttpServletRequest request,HttpServletResponse response) {
+            HttpServletRequest request,HttpServletResponse response) throws IOException {
+        if(inputaddr.equals("meditotal") || inputaddr.equals("govtotal")) {
+        } else {
+            response.sendError( 403 );
+        }
         
         String inputgubun = inputaddr.equals("meditotal") ? "m" : "g";
         
@@ -230,7 +238,12 @@ public class StaffTotalManagerController extends LifeCenterController {
               @ModelAttribute("dto") StaffManagerDTO dto,
               @PathVariable("addr") String inputaddr,
               @RequestParam(value="statusFlag", required=false, defaultValue="I") String inputStatusFlag,
-              HttpServletRequest request,HttpServletResponse response) {
+              HttpServletRequest request,HttpServletResponse response) throws IOException {
+        if(inputaddr.equals("meditotal") || inputaddr.equals("govtotal")) {
+        } else {
+            response.sendError( 403 );
+        }
+        
           String sesCenterCode  = LifeCenterSessionController.getSession( request, "sesCenterCode" );
           String inputgubun = inputaddr.equals("meditotal") ? "m" : "g";
           
@@ -259,7 +272,12 @@ public class StaffTotalManagerController extends LifeCenterController {
       public String staffManagerUpdate(
               @PathVariable("addr") String inputaddr,
               @ModelAttribute("dto") final StaffManagerDTO dto,
-              HttpServletRequest request,HttpServletResponse response) {
+              HttpServletRequest request,HttpServletResponse response) throws IOException {
+          if(inputaddr.equals("meditotal") || inputaddr.equals("govtotal")) {
+          } else {
+              response.sendError( 403 );
+          }
+          
           String sesId  = LifeCenterSessionController.getSession( request, "sesId" );
           String sesCenterCode  = LifeCenterSessionController.getSession( request, "sesCenterCode" );
           String sesCenterName  = LifeCenterSessionController.getSession( request, "sesCenterName" );
@@ -305,7 +323,12 @@ public class StaffTotalManagerController extends LifeCenterController {
               @RequestParam(value="registDay", required=false, defaultValue="") String inputRegistDay,
               @RequestParam(value="page", required=false, defaultValue="1") int page,
               
-              HttpServletRequest request,HttpServletResponse response) {
+              HttpServletRequest request,HttpServletResponse response) throws IOException {
+          if(inputaddr.equals("medi") || inputaddr.equals("gov")) {
+          } else {
+              response.sendError( 403 );
+          }
+          
           String sesCenterCode  = LifeCenterSessionController.getSession( request, "sesCenterCode" );
           String inputgubun = inputaddr.equals("medi") ? "m" : "g";
           
@@ -359,7 +382,11 @@ public class StaffTotalManagerController extends LifeCenterController {
               @RequestParam(value="locationCode", required=false, defaultValue="") String inputlocationCode,
               @RequestParam(value="centerlName", required=false, defaultValue="") String inputcenterlName,
               @PathVariable("addr") String inputaddr,
-              HttpServletRequest request,HttpServletResponse response ) {
+              HttpServletRequest request,HttpServletResponse response ) throws IOException {
+          if(inputaddr.equals("medi") || inputaddr.equals("gov")) {
+          } else {
+              response.sendError( 403 );
+          }
           
           String inputgubun = inputaddr.equals("medi") ? "m" : "g";
           String userId = LifeCenterSessionController.getSession(request, "sesId");