采用lua脚本获取mysql、redis数据以及jwt的校验
一、安装配置Openresty
1,安装
wget https://openresty.org/download/ngx_openresty-1.9.7.1.tar.gz # 下载
tar xzvf ngx_openresty-1.9.7.1.tar.gz # 解压
cd ngx_openresty-1.9.7.1/
./configure
make
make install
2,配置nginx.conf
按照上一步安装的默认路径为:/usr/local/openresty/nginx/conf 中。
worker_processes 1;
#配置日志级别为info存放在logs/error.log中
error_log logs/error.log info;
events {
worker_connections 1024;
}
http {
include mime.types;
default_type application/octet-stream;
sendfile on;
keepalive_timeout 65; #配置lua脚本,包括/usr/local/openresty/nginx/lua/?.lua自定义脚本位置
lua_package_path "/usr/local/openresty/lualib/?.lua;/usr/local/openresty/nginx/lua/?.lua;;";
lua_package_cpath "/usr/local/openresty/lualib/?.so;;"; server {
listen 80;
server_name localhost; location / {
root html;
index index.html index.htm;
}
}
}
二、lua读取Mysql中数据
1,编写lua脚本
存储地址(nginx中能加载的路径)为: /usr/local/openresty/nginx/lua
--指定文本输出的文件类型为json类型
ngx.header.content_type="application/json;charset=utf-8"
--引入库文件json
local cjson = require "cjson"
--引入依赖库mysql
local mysql = require "resty.mysql" --配置数据库连接信息
local props = {
host = "127.0.0.1",
port = 3306,
database = "test",
user = "root",
password = "123456"
} --创建连接、设置超时时间、编码格式
local db,err = mysql:new() db:set_timeout(10000)
db:connect(props)
db:query("SET NAMES utf8") --SQL语句 (读取参数中id的值)
local id = ngx.req.get_uri_args()["id"]
local sql = "select * from t_user where id="..id ngx.log(ngx.INFO,"sql语句为:",sql) --执行SQL语句
res, err, errno, sqlstate = db:query(sql) --关闭连接
db:close()
--响应数据->json
ngx.say(cjson.encode(res))
2,配置nginx读取lua脚本
在nginx.conf的server中添加
#配置mysql
location /mysql {
content_by_lua_file /usr/local/openresty/nginx/lua/mysql.lua;
}
3,启动openresty
如果配置了/etc/profile的环境变量,直接使用命令:nginx 或 nginx -s reload
三、lua操作redis(单机)
1,编写lua脚本
a)redis_basic.lua
local redis = require "resty.redis"
local config = {
host = "127.0.0.1",
port = 6379,
pass = "123456" -- redis 密码,没有密码的话,把这行注释掉
}
local _M = {}
function _M.new(self)
local red = redis:new()
red:set_timeout(1000) -- 1 second
local res = red:connect(config['host'], config['port'])
ngx.log(ngx.INFO,"red的连接为::",res)
if not res then
return nil
end
if config['pass'] ~= nil then
res = red:auth(config['pass'])
if not res then
return nil
end
end
red.close = close
return red
end
local function close(self)
local sock = self.sock
if not sock then
return nil, "not initialized"
end
if self.subscribed then
return nil, "subscribed state"
end
return sock:setkeepalive(10000, 50)
end
return _M
b)redis.lua
--定义redis操作的封装
local redis_basic = require "redis_basic" --定义一个模块
local lredis={} --定义一个方法,Redis集群增加数据、查询数据、删除数据
--增加数据
function lredis.set(key,val)
local red = redis_basic:new()
red:set(key,val)
red:close()
end --根据key查询数据
function lredis.get(key)
local red = redis_basic:new()
local value = red:get(key)
red:close()
--返回数据
return value
end --根据key删除数据
function lredis.del(key)
local red = redis_basic:new()
red:del(key)
red:close()
end return lredis
2,配置nginx读取lua脚本
在nginx.conf的server中添加
#配置redis
location /redis {
content_by_lua '
--指定文本输出的文件类型为json类型
ngx.header.content_type="application/json;charset=utf-8"
--引入redis.lua脚本库
local cjson = require "cjson"
--在http中配置了相应的lua读取地址,这里实际是读取/usr/local/openresty/nginx/lua/redis.lua
local rredis = require "redis" --获取前端操作数据 key value method=1(增加) 2(修改) 3(删除)
local args = ngx.req.get_uri_args()
local key = args["id"]
local value = args["value"]
local method = args["method"] --根据method的值执行不同操作
if method == "1" then
ngx.log(ngx.INFO,"接收的key为:",key)
ngx.log(ngx.INFO,"接收的val为:",value)
--增加数据
rredis.set(key,value)
--响应数据
ngx.say("set success!")
elseif method=="2" then
--执行查询
local result = rredis.get(key)
ngx.say(cjson.encode(result))
else
--删除
rredis.del(key)
ngx.say("del success!")
end
';
}
3,启动openresty
如果配置了/etc/profile的环境变量,直接使用命令:nginx 或 nginx -s reload
4,测试
#添加数据
http://hadoop103/redis?method=1&id=key&value=111
#查询数据
http://hadoop103/redis?method=2&id=key
#删除数据
http://hadoop103/redis?method=3&id=key
四、lua完成jwt的校验
1,添加jwt的脚本
拷贝github中的lua脚本到本地'/usr/local/openresty/lualib/resty'中:
#拷贝文件为hmac.lua 到 /usr/local/openresty/lualib/resty
https://github.com/jkeys089/lua-resty-hmac/blob/master/lib/resty/hmac.lua
#拷贝文件为evp.lua jwt-validators.lua 和 jwt.lua 到 /usr/local/openresty/lualib/resty
https://github.com/SkyLothar/lua-resty-jwt/tree/master/lib/resty

2,编写lua脚本
a)jwt_token
--引入依赖库
local jwt = require "resty.jwt" --定义一个模块
local jwttoken={} --定义一个校验jwt令牌的方法
--auth_token:令牌 Bearer XXXdsafaf
--secret: 密钥
function jwttoken.check(auth_token,secret)
--校验格式,去掉'Bearer '
local _,_,token=string.find(auth_token,"Bearer%s+(.+)") --通过jwt模块校验令牌
local result = jwt:verify(secret,token) return result
end return jwttoken
b)jwt_check
--调用jwt_token.lua中的令牌校验方法
ngx.header.content_type="application/json;charset=utf-8" --引入依赖库,根据文件名
local jwttoken = require "jwt_token"
--引入json依赖库
local cjson = require "cjson" --响应数据
local response = {} --获取请求头中的令牌
local auth_token = ngx.var.http_Authorization --准备密钥
local secret = "5pil6aOO5YaN576O5Lmf5q+U5LiN5LiK5bCP6ZuF55qE56yR" --调用校验方法
local result = jwttoken.check(auth_token,secret) --组装响应结果
response["code"]=200
response["body"]=result
response["message"]="完成校验,请查看body校验结果!" ngx.say(cjson.encode(response))
3,配置nginx读取lua脚本
在nginx.conf的server中添加
#配置jwt
location /jwt {
content_by_lua_file /usr/local/openresty/nginx/lua/jwt_check.lua;
}
4,配置java生成jwt
a)添加maven依赖
<dependency>
<groupId>io.jsonwebtoken</groupId>
<artifactId>jjwt</artifactId>
<version>0.6.0</version>
</dependency>
b)添加java生成代码

import io.jsonwebtoken.JwtBuilder;
import io.jsonwebtoken.Jwts;
import io.jsonwebtoken.SignatureAlgorithm; import javax.crypto.spec.SecretKeySpec;
import java.security.Key;
import java.text.SimpleDateFormat;
import java.util.Date;
import java.util.HashMap;
import java.util.Map; public class JWTDemo { public static final String SECRET="5pil6aOO5YaN576O5Lmf5q+U5LiN5LiK5bCP6ZuF55qE56yR"; public static String createJWT(String uid, long ttlMillis) throws Exception {
SignatureAlgorithm signatureAlgorithm = SignatureAlgorithm.HS256;
long nowMillis = System.currentTimeMillis();
Date now = new Date(nowMillis);
Key signingKey = new SecretKeySpec(SECRET.getBytes(), signatureAlgorithm.getJcaName()); Map<String,Object> header=new HashMap<String,Object>();
header.put("typ","JWT");
header.put("alg","HS256");
JwtBuilder builder = Jwts.builder().setId(uid)
.setIssuedAt(now)
.setIssuer(uid)
.setSubject(uid)
.setHeader(header)
.signWith(signatureAlgorithm, signingKey);
if (ttlMillis >= 0) {
long expMillis = nowMillis + ttlMillis;
Date exp = new Date(expMillis);
System.out.println(new SimpleDateFormat("yyyy-MM-dd HH:mm:ss").format(exp));
builder.setExpiration(exp);
}
return builder.compact();
} public static void main(String[]cmd) throws Exception {
String s=createJWT("yaya",36000000);
System.out.println("Bearer "+s);
} }
5,测试验证效果

五、总结
1,nginx.conf配置

worker_processes 1; #error_log logs/error.log;
#error_log logs/error.log notice;
error_log logs/error.log info; #pid logs/nginx.pid; events {
worker_connections 1024;
} http {
include mime.types;
default_type application/octet-stream;
lua_shared_dict redis_cluster_slot_locks 100k; sendfile on; keepalive_timeout 65; #配置lua脚本,包括lua/?.lua自定义脚本位置
lua_package_path "/usr/local/openresty/lualib/?.lua;/usr/local/openresty/nginx/lua/?.lua;;";
lua_package_cpath "/usr/local/openresty/lualib/?.so;;"; server {
listen 80;
server_name localhost; location / {
root html;
index index.html index.htm;
} #配置mysql
location /mysql {
content_by_lua_file /usr/local/openresty/nginx/lua/mysql.lua;
} #配置jwt
location /jwt {
content_by_lua_file /usr/local/openresty/nginx/lua/jwt_check.lua;
} #配置redis
location /redis {
content_by_lua '
--指定文本输出的文件类型为json类型
ngx.header.content_type="application/json;charset=utf-8"
--引入redis.lua脚本库
local cjson = require "cjson"
--在http中配置了相应的lua读取地址,这里实际是读取/usr/local/openresty/nginx/lua/redis.lua
local rredis = require "redis" --获取前端操作数据 key value method=1(增加) 2(修改) 3(删除)
local args = ngx.req.get_uri_args()
local key = args["id"]
local value = args["value"]
local method = args["method"] --根据method的值执行不同操作
if method == "1" then
ngx.log(ngx.INFO,"接收的key为:",key)
ngx.log(ngx.INFO,"接收的val为:",value)
--增加数据
rredis.set(key,value)
--响应数据
ngx.say("set success!")
elseif method=="2" then
--执行查询
local result = rredis.get(key)
ngx.say(cjson.encode(result))
else
--删除
rredis.del(key)
ngx.say("del success!")
end
';
}
}
}
2,自定义lua脚本

采用lua脚本获取mysql、redis数据以及jwt的校验的更多相关文章
- shell脚本获取mysql插入数据自增长id的值
shell脚本获取mysql插入数据自增长id的值 在shell脚本中我们可以通过last_insert_id()获取id值,但是,需要注意的是,该函数必须在执行插入操作的sql语句之后,立即调用,否 ...
- Nginx 内嵌lua脚本,结合Redis使用
0x00 Nginx 内嵌Lua脚本有下面特点: 20k个并发连接 Lua脚本能够在Nignx 11个层次的不同层次发挥作用,扩展Ngnix功能 Lua速度极快(寄存器指令) 0x01 应用场景 在w ...
- 用Jedis调用Lua脚本来完成redis的数据操作
1.先完成一个简单的set/get操作 package com.example.HnadleTaskQueue; import redis.clients.jedis.Jedis; import ja ...
- zabbix3.0.4-agent通过shell脚本获取mysql数据库登陆用户
zabbix3.0.4获取数据库登陆用户趋势详解 主要思路: 通过zabbix客户端shell脚本mysql命令取出用户表中的数据将结果反馈给zabbix,画出趋势图 1.修改zabbix-agent ...
- 获取mysql一组数据中的第N大的值
create table tb(name varchar(10),val int,memo varchar(20)) insert into tb values('a', 2, 'a2') inser ...
- openresty(nginx)中使用lua脚本获取请求IP地址的代码
人狠话不多,直接上代码:------------------------------------------------------------------------------------- lo ...
- 利用脚本获取mysql的tps,qps等状态信息
#!/bin/bash mysqladmin -uroot -p'123456' extended-status -i1|awk 'BEGIN{local_switch=0;print "Q ...
- Nginx Lua拓展模块操作Redis、Mysql
# Nginx的拓展模块 # ngx_lua模块 # 淘宝开发的ngx_lua模块通过lua解释器集成近Nginx,可以采用lua脚本实现业务逻辑,由于lua的紧凑.快速以及内建协程,所以在保证宝兵法 ...
- Redis进阶实践之十九 Redis如何使用lua脚本
一.引言 redis学了一段时间了,基本的东西都没问题了.从今天开始讲写一些redis和lua脚本的相关的东西,lua这个脚本是一个好东西,可以运行在任何平台上,也可以嵌入 ...
随机推荐
- 关于.NET中迭代器的实现以及集合扩展方法的理解
在C#中所有的数据结构类型都实现IEnumerable或IEnumerable<T>接口(实现迭代器模式),可以实现对集合遍历(集合元素顺序访问).换句话可以这么说,只要实现上面这两个接口 ...
- Docker下使用centos无法使用systemctl怎么办
提交正在使用的容器: docker commit [ContainerId] 提交停止正在运行无法使用Systemctl的容器: docker stop [ContainerId] 删除这个容器(可选 ...
- HDU6370 Werewolf 【基环内向树】
HDU6370 Werewolf 题意: 有\(N\)个人玩狼人杀,只有村民和狼人,每个人指定另一个人并指出一个身份,其中:村民是不会说谎的,狼人是有可能说谎的,问在所有情况下必然是狼人的人数和必然是 ...
- Codeforces Round #627 (Div. 3) C - Frog Jumps(逻辑)
题意: 有一个每个单元标明移动方向的长为n的序列,每次移动不能超过距离k,问能够从0移动到n+1的k的最小值. 思路: k=最长连续L序列长度+1. #include <bits/stdc++. ...
- Codeforces Round #642 (Div. 3)
比赛链接:https://codeforces.com/contest/1353 A - Most Unstable Array 题意 构造大小为 $n$,和为 $m$ 的非负数组 $a$,使得相邻元 ...
- 洛谷P3796
题目链接 题意:有n个由小写字母组成的模式串以及一个文本串T.每个模式串可能会在文本串中出现多次.哪些模式串在文本串T中出现的次数最多. 题解:ac自动机模板加强版,开一个数组单独记录各个字符串出现 ...
- hdu 1045 Fire Net 二分图匹配 && HDU-1281-棋盘游戏
题意:任意两个个'车'不能出现在同一行或同一列,当然如果他们中间有墙的话那就没有什么事,问最多能放多少个'车' 代码+注释: 1 //二分图最大匹配问题 2 //难点在建图方面,如果这个图里面一道墙也 ...
- 实战交付一套dubbo微服务到k8s集群(3)之二进制安装Maven
maven官网:https://maven.apache.org/ maven二进制下载连接:https://archive.apache.org/dist/maven/maven-3/3.6.1/b ...
- leetcode16 最接近的三数之和 双指针
三个数循环太复杂 确定一个数,搜索另两个 先排序,之后就确定了搜索的策略 if(tp>target) while (l < r && nums[r] == nums[--r ...
- cookie,session,token之间的联系与区别
发展史 1.很久很久以前,Web 基本上就是文档的浏览而已, 既然是浏览,作为服务器, 不需要记录谁在某一段时间里都浏览了什么文档,每次请求都是一个新的HTTP协议, 就是请求加响应, 尤其是我不用 ...