Spring Java 注解配置之 Shiro安全框架

相關(guān)源碼:https://gitee.com/virens/multi_spring/tree/master/src/main/java/cn/virens/web/components/shiro

我定義了2個接口類,主要是讓Service來實現(xiàn),為了以后方便 切換Service或者MyBatis

/** 用戶登錄結(jié)果出來,例如保存日志 */
public interface ShiroAuthorizingConsumer {

    void onLoginSuccess(String username, String host);

    void onLoginFailure(String username, String host);
}

/** 用戶登錄&鑒權(quán)所需的接口 */
public interface ShiroAuthorizingProvider {

    String login(String account);

    Collection<String> getRoles(String account);

    Collection<String> getResources(String account);

}

由于是在Spring框架內(nèi)使用,并且已經(jīng)配置好了EhCacheCacheManager,還有就是為了方便切換緩存管理方案,所以我自己寫的Shiro緩存管理,主要參照shiro-ecache包。

SpringCacheManage 實現(xiàn)了org.apache.shiro.cache.CacheManager接口。

public class SpringCacheManage implements CacheManager, ApplicationContextAware {
    private ApplicationContext applicationContext;
    private org.springframework.cache.CacheManager cacheManager;

    @Override
    public void setApplicationContext(ApplicationContext applicationContext) throws BeansException {
        this.applicationContext = applicationContext;
    }

    /**
     * 注入Spring的緩存管理器
     * @param cacheManager
     */
    public SpringCacheManage(org.springframework.cache.CacheManager cacheManager) {
        this.cacheManager = cacheManager;
    }

    /**
     * 獲取 緩存
     */
    @Override
    public <K, V> Cache<K, V> getCache(String name) throws CacheException {
        try {
            return new SpringCache<K, V>(getCacheManager().getCache(name));
        } catch (Throwable t) {
            throw new CacheException(t);
        }
    }

    /**
     * 獲取Spring 緩存管理器,如果為空則直接從Bean里面取
     * @return
     */
    protected org.springframework.cache.CacheManager getCacheManager() {
        if (cacheManager == null) {
            this.cacheManager = applicationContext.getBean(org.springframework.cache.CacheManager.class);
        }

        return cacheManager;
    }
}

SpringCache 實現(xiàn)了org.apache.shiro.cache.Cache接口。

public class SpringCache<K, V> implements Cache<K, V> {
    private final org.springframework.cache.Cache cache;

    public SpringCache(org.springframework.cache.Cache cache) {
        if (cache == null) throw new IllegalArgumentException("Cache argument cannot be null.");

        this.cache = cache;
    }

    @Override
    @SuppressWarnings("unchecked")
    public V get(K key) throws CacheException {
        if (key == null) return null;
        try {
            ValueWrapper vw = cache.get(key);
            if (vw != null) {
                return (V) vw.get();
            } else {
                return null;
            }
        } catch (Throwable t) {
            throw new CacheException(t);
        }
    }

    @Override
    public V put(K key, V value) throws CacheException {
        if (key == null) return null;
        try {
            V previous = get(key);

            cache.put(key, value);

            return previous;
        } catch (Throwable t) {
            throw new CacheException(t);
        }
    }

    @Override
    public V remove(K key) throws CacheException {
        if (key == null) return null;
        try {
            V previous = get(key);

            cache.evict(key);

            return previous;
        } catch (Throwable t) {
            throw new CacheException(t);
        }
    }

    @Override
    public void clear() throws CacheException {
        cache.clear();
    }

    @Override
    public int size() {
        throw new UnsupportedOperationException("invoke spring cache abstract size method not supported");
    }

    @Override
    public Set<K> keys() {
        throw new UnsupportedOperationException("invoke spring cache abstract keys method not supported");
    }

    @Override
    public Collection<V> values() {
        throw new UnsupportedOperationException("invoke spring cache abstract values method not supported");
    }
}

SimpleAuthorizingRealm是繼承于AuthorizingRealm的用戶登錄/權(quán)限校驗類,要求上下文中有ShiroAuthorizingProvider的實現(xiàn)bean,并且bean的名字必須為shiro-simple-interface,并從中取到實現(xiàn)了ShiroAuthorizingProvider接口的Bean。


public class SimpleAuthorizingRealm extends AuthorizingRealm implements ShiroRealmInterface {
    private Logger logger = LoggerFactory.getLogger(SimpleAuthorizingRealm.class);

    @Autowired
    @Qualifier("shiro-simple-interface")
    private ShiroAuthorizingProvider authorizingProvider;

    public SimpleAuthorizingRealm() {
        this(new HashedCredentialsMatcher("MD5"));
    }

    public SimpleAuthorizingRealm(CacheManager manager) {
        this(manager, null);
    }

    public SimpleAuthorizingRealm(CredentialsMatcher matcher) {
        this(null, matcher);
    }

    public SimpleAuthorizingRealm(CacheManager manager, CredentialsMatcher matcher) {
        super(manager, matcher);
    }

    @Override
    public void clearAuthorizationInfo(PrincipalCollection principals) {
        this.clearCachedAuthorizationInfo(principals);
    }

    public ShiroAuthorizingProvider getAuthorizingProvider() {
        return authorizingProvider;
    }

    public void setAuthorizingProvider(ShiroAuthorizingProvider authorizingInterface) {
        this.authorizingProvider = authorizingInterface;
    }

    @Override
    protected AuthorizationInfo doGetAuthorizationInfo(PrincipalCollection principals) {
        logger.debug("執(zhí)行授權(quán)信息...");
        try {
            String account = (String) getAvailablePrincipal(principals);
            SimpleAuthorizationInfo authorizationInfo = new SimpleAuthorizationInfo();

            authorizationInfo.addRoles(authorizingProvider.getRoles(account));// 獲取用戶角色列表
            authorizationInfo.addStringPermissions(authorizingProvider.getResources(account)); // 獲取用戶權(quán)限列表

            return authorizationInfo;
        } catch (Exception e) {
            throw new UnauthenticatedException();
        }
    }

    @Override
    protected AuthenticationInfo doGetAuthenticationInfo(AuthenticationToken token) throws AuthenticationException {
        logger.debug("執(zhí)行身份驗證信息...");

        // 獲取用戶信息
        String account = String.valueOf(token.getPrincipal());
        if (StrUtil.isEmpty(account)) { throw new UnknownAccountException("用戶不存在"); }

        String password = authorizingProvider.login(account);
        if (StrUtil.isEmpty(password)) { throw new UnknownAccountException("用戶不存在"); }

        return new SimpleAuthenticationInfo(account, password, getName());
    }

    @Override
    protected Object getAuthenticationCacheKey(AuthenticationToken token) {
        return token("shrio:authentication:", token);
    }

    @Override
    protected Object getAuthenticationCacheKey(PrincipalCollection principals) {
        return object("shrio:authentication:", super.getAvailablePrincipal(principals));
    }

    @Override
    protected Object getAuthorizationCacheKey(PrincipalCollection principals) {
        return object("shrio:authorization:", principals);
    }

    private String token(String pref, AuthenticationToken token) {
        return (token == null ? null : (pref + token.getPrincipal()));
    }

    private String object(String pref, Object obj) {
        return (obj == null ? null : (pref + obj.toString()));
    }
}

SimpleAuthorizingFilter是繼承于FormAuthenticationFilter的擴展類,主要是為了添加驗證碼校驗,以及通過ShiroAuthorizingConsumer接口將登陸結(jié)果傳遞到實現(xiàn)了該接口的Service,以實現(xiàn)日志記錄。


public class SimpleAuthorizingFilter extends FormAuthenticationFilter implements ShiroAuthorizingConsumerAware {
    private Logger logger = LoggerFactory.getLogger(SimpleAuthorizingFilter.class);

    @Autowired
    @Qualifier("shiro-simple-interface")
    private ShiroAuthorizingConsumer authorizingConsumer;

    private boolean useCaptcha = false;// 是否使用驗證碼
    private String captchaParam = "captcha";// 驗證碼的參數(shù)名

    /**
     * 登錄前置處理
     */
    @Override
    public boolean onPreHandle(ServletRequest request, ServletResponse response, Object mappedValue) throws Exception {
        logger.debug("onPreHandle");

        /** 如果已經(jīng)登錄,并且訪問的地址是登錄頁面,直接重定向到登錄成功頁面 */
        if (isAccessAllowed(request, response, mappedValue)) {
            if (isLoginRequest(request, response)) {
                WebUtils.issueRedirect(request, response, getSuccessUrl());
                return false;
            } else {
                return true;
            }
        } else {
            return onAccessDenied(request, response, mappedValue);
        }
    }

    /**
     * 執(zhí)行登錄操作
     */
    @Override
    protected boolean executeLogin(ServletRequest request, ServletResponse response) throws Exception {
        logger.info("executeLogin,RememberMe:" + isRememberMe(request));

        if (isUseCaptcha() && verifyCactcha(request, response) == false) {
            return onLoginFailure(null, new CaptchaErrorException(), request, response);
        } else {
            return super.executeLogin(request, response);
        }
    }

    /**
     * 登錄成功
     */
    @Override
    protected boolean onLoginSuccess(AuthenticationToken token, Subject subject, ServletRequest request, ServletResponse response) throws Exception {
        this.authorizingConsumer.onLoginSuccess(getUsername(request), getHost(request));

        return super.onLoginSuccess(token, subject, request, response);
    }

    /**
     * 登錄失敗
     */
    @Override
    protected boolean onLoginFailure(AuthenticationToken token, AuthenticationException e, ServletRequest request, ServletResponse response) {
        this.authorizingConsumer.onLoginFailure(getUsername(request), getHost(request));

        return super.onLoginFailure(token, e, request, response);
    }

    /**
     * 登錄失敗
     */
    @Override
    protected void setFailureAttribute(ServletRequest request, AuthenticationException e) {
        if (e instanceof CaptchaErrorException) {
            request.setAttribute("success", false);
            request.setAttribute("message", "驗證碼錯誤");
            request.setAttribute(getFailureKeyAttribute(), e);
        } else if (e instanceof UnknownAccountException) {
            request.setAttribute("success", false);
            request.setAttribute("message", "賬號錯誤");
            request.setAttribute(getFailureKeyAttribute(), e);
        } else if (e instanceof IncorrectCredentialsException) {
            request.setAttribute("success", false);
            request.setAttribute("message", "密碼錯誤");
            request.setAttribute(getFailureKeyAttribute(), e);
        } else {
            request.setAttribute("success", false);
            request.setAttribute("message", "未知錯誤");
            request.setAttribute(getFailureKeyAttribute(), e);
        }
    }

    /**
     * 是否需要驗證碼
     * 
     * @return
     */
    public boolean isUseCaptcha() {
        return useCaptcha;
    }

    /**
     * 設(shè)置是否需要驗證碼
     * 
     * @param useCaptcha
     */
    public void setUseCaptcha(boolean useCaptcha) {
        this.useCaptcha = useCaptcha;
    }

    /**
     * 獲取驗證碼參數(shù)字段名
     * 
     * @return
     */
    public String getCaptchaParam() {
        return captchaParam;
    }

    /**
     * 設(shè)置驗證碼參數(shù)字段名
     * 
     * @param captchaParam
     */
    public void setCaptchaParam(String captchaParam) {
        this.captchaParam = captchaParam;
    }

    public ShiroAuthorizingConsumer getAuthorizingConsumer() {
        return authorizingConsumer;
    }

    @Override
    public void setAuthorizingConsumer(ShiroAuthorizingConsumer authenticationInterface) {
        this.authorizingConsumer = authenticationInterface;
    }

    @Override
    protected String getHost(ServletRequest request) {
        return RequestUtil.getRemoteAddr((HttpServletRequest) request);
    }

    /**
     * 獲取驗證碼
     * 
     * @param  request
     * @return
     */
    protected String getCaptcha(ServletRequest request) {
        return request.getParameter(getCaptchaParam());
    }

    /**
     * 獲取緩存在Session里的驗證碼
     * 
     * @param  request
     * @param  response
     * @return
     */
    protected String getCaptcha(ServletRequest request, ServletResponse response) {
        Subject subject = getSubject(request, response);
        if (subject == null) { return null; }
        Session session = subject.getSession(false);
        if (session == null) { return null; }
        return String.valueOf(session.getAttribute(getCaptchaParam()));
    }

    private boolean verifyCactcha(ServletRequest request, ServletResponse response) {
        String tcode1 = getCaptcha(request);
        String tcode2 = getCaptcha(request, response);

        logger.debug("驗證碼:{}/{}", tcode1, tcode2);

        return StrUtil.equalsIgnoreCase(tcode1, tcode2);
    }
}

SpringShiroSourceConfig是Shiro的配置類。


@Configuration
public class SpringShiroConfig {
    @Value("${auth.url.success}")
    private String successUrl;

    @Value("${auth.url.redirect}")
    private String redirectUrl;

    @Value("${auth.url.unauthorized}")
    private String unauthorizedUrl;

    @Value("${auth.api.url.user}")
    private String apiUserUrl;

    @Value("${auth.api.url.login}")
    private String apiLoginUrl;

    @Value("${auth.api.url.logout}")
    private String apiLogoutUrl;

    @Value("${auth.simple.url.user}")
    private String simpleUserUrl;

    @Value("${auth.simple.url.login}")
    private String simpleLoginUrl;

    @Value("${auth.simple.url.logout}")
    private String simpleLogoutUrl;

    @Value("${auth.captcha}")
    private Boolean captcha;

    @Value("${auth.param.captcha}")
    private String captchaName;

    @Value("${auth.param.username}")
    private String usernameName;

    @Value("${auth.param.password}")
    private String passwordName;

    @Value("${auth.param.rememberme}")
    private String rememberMeName;

    @Value("${auth.param.failurekey}")
    private String failureKeyAttribute;

    /**
     * Shiro 緩存管理器配置
     * 
     * @param  cacheManager
     * @return
     */
    @Bean("shiro-cachemanager")
    public SpringCacheManage springCacheManage(org.springframework.cache.CacheManager cacheManager) {
        return new SpringCacheManage(cacheManager);
    }

    /**
     * 會話管理器
     * 
     * @param  sessionDAO
     * @return
     */
    @Bean("shiro-sessionmanager")
    public ServletContainerSessionManager sessionManager() {
        return new ServletContainerSessionManager();
    }

    /**
     * Realm實現(xiàn)
     * 
     * @param  authorizingProvider
     * @return
     */
    @Bean("shiro-simple-realm")
    public SimpleAuthorizingRealm authorizingRealm(@Qualifier("shiro-simple-interface") ShiroAuthorizingProvider authorizingProvider) {
        SimpleAuthorizingRealm realm = new SimpleAuthorizingRealm();
        realm.setAuthorizationCachingEnabled(true);
        realm.setAuthenticationCachingEnabled(true);
        realm.setAuthorizingProvider(authorizingProvider);
        realm.setAuthorizationCacheName("shiro-authorizationCache");
        realm.setAuthenticationCacheName("shiro-authenticationCache");

        return realm;
    }

    /**
     * rememberMe管理器
     * 
     * @return
     */
    @Bean("shiro-remembermemanager")
    public CookieRememberMeManager rememberMeManager() {
        CookieRememberMeManager rememberMeManager = new CookieRememberMeManager();
        rememberMeManager.setCookie(new RememberMeCookie());
        rememberMeManager.setCipherKey(Base64.decode("4AvVhmFLUs0KTA3Kprsdag=="));

        return rememberMeManager;
    }

    /**
     * 安全管理器
     * 
     * @return
     */
    @Bean("shiro-securitymanager")
    public DefaultWebSecurityManager securityManager(//
            @Qualifier("shiro-simple-realm") Realm realm, //
            @Qualifier("shiro-cachemanager") SpringCacheManage cacheManager, //
            @Qualifier("shiro-sessionmanager") SessionManager sessionManager, //
            @Qualifier("shiro-remembermemanager") RememberMeManager rememberMeManager) {

        DefaultWebSecurityManager securityManager = new DefaultWebSecurityManager();

        securityManager.setRealm(realm);
        securityManager.setCacheManager(cacheManager);
        securityManager.setSessionManager(sessionManager);
        securityManager.setRememberMeManager(rememberMeManager);

        return securityManager;
    }

    /**
     * Shiro的Web過濾器
     * 
     * @return
     * @throws Exception
     */
    @Bean("shiroFilter")
    public ShiroFilterFactoryBean shiroFilter(@Qualifier("shiro-securitymanager") SecurityManager securityManager) throws Exception {
        SimpleShiroFilterFactoryBean factoryBean = new SimpleShiroFilterFactoryBean();
        factoryBean.setSecurityManager(securityManager);
        factoryBean.setUnauthorizedUrl(unauthorizedUrl);
        factoryBean.setLoginUrl(simpleLoginUrl);
        factoryBean.setSuccessUrl(successUrl);

        factoryBean.addFilter("simpleAuthorizingFilter", simpleAuthorizingFilter());
        factoryBean.addFilter("simpleLogoutFilter", simpleLogoutFilter());
        factoryBean.addFilter("simpleUserFilter", simpleUserFilter());

        factoryBean.addFilter("ajaxAuthorizingFilter", ajaxAuthorizingFilter());
        factoryBean.addFilter("ajaxLogoutFilter", ajaxLogoutFilter());
        factoryBean.addFilter("ajaxUserFilter", ajaxUserFilter());

        factoryBean.addFilterChain(simpleLoginUrl, "simpleAuthorizingFilter");
        factoryBean.addFilterChain(simpleLogoutUrl, "simpleLogoutFilter");
        factoryBean.addFilterChain(simpleUserUrl, "simpleUserFilter");

        factoryBean.addFilterChain(apiLoginUrl, "ajaxAuthorizingFilter");
        factoryBean.addFilterChain(apiLogoutUrl, "ajaxLogoutFilter");
        factoryBean.addFilterChain(apiUserUrl, "ajaxUserFilter");
        factoryBean.addFilterChain("/**", "anon");

        return factoryBean;
    }

    /**
     * 授權(quán) 注解配置
     * 
     * @return
     */
    @Bean
    public DefaultAdvisorAutoProxyCreator advisorAutoProxyCreator() {
        return new DefaultAdvisorAutoProxyCreator();
    }

    /**
     * 授權(quán) 注解配置
     * 
     * @return
     */
    @Bean
    public AuthorizationAttributeSourceAdvisor attributeSourceAdvisor(@Qualifier("shiro-securitymanager") SecurityManager securityManager) {
        AuthorizationAttributeSourceAdvisor attributeSourceAdvisor = new AuthorizationAttributeSourceAdvisor();
        attributeSourceAdvisor.setSecurityManager(securityManager);

        return attributeSourceAdvisor;
    }

    @Bean
    public AjaxUserFilter ajaxUserFilter() {
        AjaxUserFilter ajaxUserFilter = new AjaxUserFilter();
        ajaxUserFilter.setLoginUrl(apiLoginUrl);

        return ajaxUserFilter;
    }

    @Bean
    public AjaxLogoutFilter ajaxLogoutFilter() {
        return new AjaxLogoutFilter();
    }

    @Bean
    public AjaxAuthorizingFilter ajaxAuthorizingFilter() {
        AjaxAuthorizingFilter ajaxFormFilter = new AjaxAuthorizingFilter();
        ajaxFormFilter.setUseCaptcha(captcha);
        ajaxFormFilter.setLoginUrl(apiLoginUrl);
        ajaxFormFilter.setCaptchaParam(captchaName);
        ajaxFormFilter.setUsernameParam(usernameName);
        ajaxFormFilter.setPasswordParam(passwordName);

        return ajaxFormFilter;
    }

    @Bean
    public SimpleUserFilter simpleUserFilter() {
        SimpleUserFilter simpleUserFilter = new SimpleUserFilter();
        simpleUserFilter.setLoginUrl(simpleLoginUrl);

        return simpleUserFilter;
    }

    @Bean
    public SimpleLogoutFilter simpleLogoutFilter() {
        SimpleLogoutFilter simpleLogoutFilter = new SimpleLogoutFilter();
        simpleLogoutFilter.setRedirectUrl(redirectUrl);

        return simpleLogoutFilter;
    }

    @Bean
    public SimpleAuthorizingFilter simpleAuthorizingFilter() {
        SimpleAuthorizingFilter simpleAuthcFilter = new SimpleAuthorizingFilter();
        simpleAuthcFilter.setFailureKeyAttribute(failureKeyAttribute);
        simpleAuthcFilter.setRememberMeParam(rememberMeName);
        simpleAuthcFilter.setPasswordParam(passwordName);
        simpleAuthcFilter.setUsernameParam(usernameName);
        simpleAuthcFilter.setCaptchaParam(captchaName);
        simpleAuthcFilter.setLoginUrl(simpleLoginUrl);
        simpleAuthcFilter.setSuccessUrl(successUrl);
        simpleAuthcFilter.setUseCaptcha(captcha);

        return simpleAuthcFilter;
    }
}
最后編輯于
?著作權(quán)歸作者所有,轉(zhuǎn)載或內(nèi)容合作請聯(lián)系作者
平臺聲明:文章內(nèi)容(如有圖片或視頻亦包括在內(nèi))由作者上傳并發(fā)布,文章內(nèi)容僅代表作者本人觀點,簡書系信息發(fā)布平臺,僅提供信息存儲服務(wù)。
  • 序言:七十年代末,一起剝皮案震驚了整個濱河市,隨后出現(xiàn)的幾起案子,更是在濱河造成了極大的恐慌,老刑警劉巖,帶你破解...
    沈念sama閱讀 229,001評論 6 537
  • 序言:濱河連續(xù)發(fā)生了三起死亡事件,死亡現(xiàn)場離奇詭異,居然都是意外死亡,警方通過查閱死者的電腦和手機,發(fā)現(xiàn)死者居然都...
    沈念sama閱讀 98,786評論 3 423
  • 文/潘曉璐 我一進店門,熙熙樓的掌柜王于貴愁眉苦臉地迎上來,“玉大人,你說我怎么就攤上這事。” “怎么了?”我有些...
    開封第一講書人閱讀 176,986評論 0 381
  • 文/不壞的土叔 我叫張陵,是天一觀的道長。 經(jīng)常有香客問我,道長,這世上最難降的妖魔是什么? 我笑而不...
    開封第一講書人閱讀 63,204評論 1 315
  • 正文 為了忘掉前任,我火速辦了婚禮,結(jié)果婚禮上,老公的妹妹穿的比我還像新娘。我一直安慰自己,他們只是感情好,可當我...
    茶點故事閱讀 71,964評論 6 410
  • 文/花漫 我一把揭開白布。 她就那樣靜靜地躺著,像睡著了一般。 火紅的嫁衣襯著肌膚如雪。 梳的紋絲不亂的頭發(fā)上,一...
    開封第一講書人閱讀 55,354評論 1 324
  • 那天,我揣著相機與錄音,去河邊找鬼。 笑死,一個胖子當著我的面吹牛,可吹牛的內(nèi)容都是我干的。 我是一名探鬼主播,決...
    沈念sama閱讀 43,410評論 3 444
  • 文/蒼蘭香墨 我猛地睜開眼,長吁一口氣:“原來是場噩夢啊……” “哼!你這毒婦竟也來了?” 一聲冷哼從身側(cè)響起,我...
    開封第一講書人閱讀 42,554評論 0 289
  • 序言:老撾萬榮一對情侶失蹤,失蹤者是張志新(化名)和其女友劉穎,沒想到半個月后,有當?shù)厝嗽跇淞掷锇l(fā)現(xiàn)了一具尸體,經(jīng)...
    沈念sama閱讀 49,106評論 1 335
  • 正文 獨居荒郊野嶺守林人離奇死亡,尸身上長有42處帶血的膿包…… 初始之章·張勛 以下內(nèi)容為張勛視角 年9月15日...
    茶點故事閱讀 40,918評論 3 356
  • 正文 我和宋清朗相戀三年,在試婚紗的時候發(fā)現(xiàn)自己被綠了。 大學時的朋友給我發(fā)了我未婚夫和他白月光在一起吃飯的照片。...
    茶點故事閱讀 43,093評論 1 371
  • 序言:一個原本活蹦亂跳的男人離奇死亡,死狀恐怖,靈堂內(nèi)的尸體忽然破棺而出,到底是詐尸還是另有隱情,我是刑警寧澤,帶...
    沈念sama閱讀 38,648評論 5 362
  • 正文 年R本政府宣布,位于F島的核電站,受9級特大地震影響,放射性物質(zhì)發(fā)生泄漏。R本人自食惡果不足惜,卻給世界環(huán)境...
    茶點故事閱讀 44,342評論 3 347
  • 文/蒙蒙 一、第九天 我趴在偏房一處隱蔽的房頂上張望。 院中可真熱鬧,春花似錦、人聲如沸。這莊子的主人今日做“春日...
    開封第一講書人閱讀 34,755評論 0 28
  • 文/蒼蘭香墨 我抬頭看了看天上的太陽。三九已至,卻和暖如春,著一層夾襖步出監(jiān)牢的瞬間,已是汗流浹背。 一陣腳步聲響...
    開封第一講書人閱讀 36,009評論 1 289
  • 我被黑心中介騙來泰國打工, 沒想到剛下飛機就差點兒被人妖公主榨干…… 1. 我叫王不留,地道東北人。 一個月前我還...
    沈念sama閱讀 51,839評論 3 395
  • 正文 我出身青樓,卻偏偏與公主長得像,于是被迫代替她去往敵國和親。 傳聞我的和親對象是個殘疾皇子,可洞房花燭夜當晚...
    茶點故事閱讀 48,107評論 2 375

推薦閱讀更多精彩內(nèi)容