保证token随机性,防止爆破
This commit is contained in:
zhongzb
2023-05-24 00:42:29 +08:00
parent 8d226ae3bd
commit d7a2a9dcc6

View File

@@ -30,6 +30,7 @@ public class JwtUtils {
private String secret; private String secret;
private static final String UID_CLAIM = "uid"; private static final String UID_CLAIM = "uid";
private static final String CREATE_TIME = "createTime";
/** /**
* JWT生成Token.<br/> * JWT生成Token.<br/>
@@ -40,6 +41,7 @@ public class JwtUtils {
// build token // build token
String token = JWT.create() String token = JWT.create()
.withClaim(UID_CLAIM, uid) // 只存一个uid信息其他的自己去redis查 .withClaim(UID_CLAIM, uid) // 只存一个uid信息其他的自己去redis查
.withClaim(CREATE_TIME, new Date())
.sign(Algorithm.HMAC256(secret)); // signature .sign(Algorithm.HMAC256(secret)); // signature
return token; return token;
} }