普通网友 2017-06-29 03:43
浏览 497
已采纳

jwt密钥无效

I am following this example https://www.youtube.com/watch?v=eVlxuST7dCA to make a jwt auth. When I run the code below I get "Key is invalid" error. WHen I try printing tokenString it is empty. The github to this sample is https://github.com/potatogopher/jwt-go-example/blob/master/server.go Why am I getting invalid error?

var privateKey []byte
privateKey, err := ioutil.ReadFile("demo.rsa")

token := jwt.New(jwt.GetSigningMethod("RS256"))
tokenString, err := token.SignedString(privateKey)

fmt.Println("TOKEN:", tokenString)
  • 写回答

2条回答 默认 最新

  • duanjianxu4288 2017-06-30 06:22
    关注

    I think the example code you're referring to uses an outdated API of jwt-go. The RS256 signing method requires the key to be a rsa.PrivateKey and not a byte buffer. This means, that the private key first has to be parsed using the jwt.ParseRSAPrivateKeyFromPEMfunction.

    I've updated your example below:

    func main() {
        tokenString, err := createSignedTokenString()
        if err != nil {
            panic(err)
        }
        fmt.Printf("Signed token string:
    %v
    ", tokenString)
    
        token, err := parseTokenFromSignedTokenString(tokenString)
        if err != nil {
            panic(err)
        }
        fmt.Printf("Parsed token valid = %v, raw token:
    %v
    ", token.Valid, token.Raw)
    }
    
    func createSignedTokenString() (string, error) {
        privateKey, err := ioutil.ReadFile("demo.rsa")
        if err != nil {
            return "", fmt.Errorf("error reading private key file: %v
    ", err)
        }
    
        key, err := jwt.ParseRSAPrivateKeyFromPEM(privateKey)
        if err != nil {
            return "", fmt.Errorf("error parsing RSA private key: %v
    ", err)
        }
    
        token := jwt.New(jwt.SigningMethodRS256)
        tokenString, err := token.SignedString(key)
        if err != nil {
            return "", fmt.Errorf("error signing token: %v
    ", err)
        }
    
        return tokenString, nil
    }
    
    func parseTokenFromSignedTokenString(tokenString string) (*jwt.Token, error) {
        publicKey, err := ioutil.ReadFile("demo.rsa.pub")
        if err != nil {
            return nil, fmt.Errorf("error reading public key file: %v
    ", err)
        }
    
        key, err := jwt.ParseRSAPublicKeyFromPEM(publicKey)
        if err != nil {
            return nil, fmt.Errorf("error parsing RSA public key: %v
    ", err)
        }
    
        parsedToken, err := jwt.Parse(tokenString, func(token *jwt.Token) (interface{}, error) {
            if _, ok := token.Method.(*jwt.SigningMethodRSA); !ok {
                return nil, fmt.Errorf("unexpected signing method: %v", token.Header["alg"])
            }
            return key, nil
        })
        if err != nil {
            return nil, fmt.Errorf("error parsing token: %v", err)
        }
    
        return parsedToken, nil
    }
    
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
查看更多回答(1条)

报告相同问题?

悬赏问题

  • ¥15 用hfss做微带贴片阵列天线的时候分析设置有问题
  • ¥50 我撰写的python爬虫爬不了 要爬的网址有反爬机制
  • ¥15 Centos / PETSc / PETGEM
  • ¥15 centos7.9 IPv6端口telnet和端口监控问题
  • ¥120 计算机网络的新校区组网设计
  • ¥20 完全没有学习过GAN,看了CSDN的一篇文章,里面有代码但是完全不知道如何操作
  • ¥15 使用ue5插件narrative时如何切换关卡也保存叙事任务记录
  • ¥20 海浪数据 南海地区海况数据,波浪数据
  • ¥20 软件测试决策法疑问求解答
  • ¥15 win11 23H2删除推荐的项目,支持注册表等