|
|
@@ -30,8 +30,7 @@ class AttachmentsController < ApplicationController |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
def get_file |
|
|
def get_file |
|
|
Rails.logger.info("request.host===#{request.host}") |
|
|
|
|
|
Rails.logger.info("request.referer===#{request.referer}") |
|
|
|
|
|
|
|
|
tip_exception(403, "你没有权限访问") if request.host.present? && !request.referer.to_s.include?(request.host.to_s.gsub("www.","")) |
|
|
normal_status(-1, "参数缺失") if params[:download_url].blank? |
|
|
normal_status(-1, "参数缺失") if params[:download_url].blank? |
|
|
url = base_url.starts_with?("https:") ? params[:download_url].to_s.gsub("http:", "https:") : params[:download_url].to_s |
|
|
url = base_url.starts_with?("https:") ? params[:download_url].to_s.gsub("http:", "https:") : params[:download_url].to_s |
|
|
md5_file = Digest::MD5.hexdigest(params[:download_url]) |
|
|
md5_file = Digest::MD5.hexdigest(params[:download_url]) |
|
|
|