RESTEasy:自定义ExceptionMapper如何获取错误属性而非正则解析?
解决思路:不解析错误消息获取参数异常信息
1. 自定义带参数属性的异常类
放弃字符串格式化生成错误消息的方式,直接创建包含参数名属性的异常类,抛出时传入参数名,ExceptionMapper直接读取属性即可,彻底避免依赖错误消息文本。
示例代码:
// 自定义异常类 public class ParameterExtractionException extends RuntimeException { private final String parameterName; public ParameterExtractionException(String parameterName) { super(String.format("Unable to extract parameter from http request: %s value is '[REDACTED]'", parameterName)); this.parameterName = parameterName; } public String getParameterName() { return parameterName; } } // 抛出异常的业务代码 throw new ParameterExtractionException("userId"); // ExceptionMapper实现 @Provider public class ParameterExtractionExceptionMapper implements ExceptionMapper<ParameterExtractionException> { @Override public Response toResponse(ParameterExtractionException exception) { // 直接获取参数名,无需解析消息 String errorMsg = String.format("请求参数%s提取失败,已隐藏参数值", exception.getParameterName()); return Response.status(Response.Status.BAD_REQUEST) .entity(errorMsg) .build(); } }
2. 利用框架内置异常的扩展字段
如果使用JAX-RS、Spring这类成熟框架,它们在处理参数绑定错误时抛出的内置异常通常已经包含参数名等元数据,不需要解析错误消息。
比如Spring中的MissingServletRequestParameterException,直接提供getParameterName()方法:
@ControllerAdvice public class GlobalExceptionHandler { @ExceptionHandler(MissingServletRequestParameterException.class) public ResponseEntity<String> handleMissingParam(MissingServletRequestParameterException ex) { String paramName = ex.getParameterName(); String errorMsg = String.format("请求参数%s提取失败,已隐藏参数值", paramName); return new ResponseEntity<>(errorMsg, HttpStatus.BAD_REQUEST); } }
JAX-RS的部分实现(如Jersey)也会在参数解析失败时抛出包含参数信息的异常,可直接通过异常类的API获取参数名。
3. 拦截参数解析过程,提前记录参数信息
在参数提取的前置环节做拦截,当检测到参数提取失败时,直接记录参数名到请求上下文,后续ExceptionMapper从上下文读取即可。
比如JAX-RS的ContainerRequestFilter:
@Provider public class ParameterExtractionFilter implements ContainerRequestFilter { @Override public void filter(ContainerRequestContext requestContext) throws IOException { try { // 尝试提取目标参数,逻辑根据实际参数类型调整 requestContext.getUriInfo().getQueryParameters().getFirst("userId"); } catch (Exception e) { // 将参数名存入请求上下文 requestContext.setProperty("failedParam", "userId"); throw e; } } } // ExceptionMapper中读取上下文信息 @Provider public class GenericExceptionMapper implements ExceptionMapper<Exception> { @Context private ContainerRequestContext requestContext; @Override public Response toResponse(Exception exception) { String paramName = (String) requestContext.getProperty("failedParam"); String errorMsg; if (paramName != null) { errorMsg = String.format("请求参数%s提取失败,已隐藏参数值", paramName); } else { errorMsg = "请求参数提取失败"; } return Response.status(Response.Status.BAD_REQUEST) .entity(errorMsg) .build(); } }
内容的提问来源于stack exchange,提问作者BenoitD
相关产品推荐
相关产品推荐

