drp935159 2016-07-26 05:24
浏览 379

在gorilla / sessions中传递给NewCookieStore()的秘密密钥(或身份验证密钥)应该是什么?

In gorilla/sessions, func NewCookieStore(keyPairs ...[]byte) *CookieStore is a used to create a new CookieStore. But I don't actually know what is a secret key (or an authentication key).

The description had said that :

It is recommended to use an authentication key with 32 or 64 bytes.

Therefore, is this means that I can randomly push any string with length of 32 or 64? How do you choose your authentication key?

  • 写回答

1条回答 默认 最新

  • duanfang5849 2016-07-26 06:15
    关注

    From the end of that paragraph in the documentation for NewCookieStore:

    Use the convenience function securecookie.GenerateRandomKey() to create strong keys.

    Use securecookie.GenerateRandomKey

    评论
编辑
预览

报告相同问题?