fix 取消从redis获取token,改为从token中获取有效时间

This commit is contained in:
zhaoxiaorong 2025-08-23 21:17:51 +08:00
parent e28934d7b8
commit 268c7f99c7
1 changed files with 14 additions and 13 deletions

View File

@ -4,20 +4,20 @@ import (
"encoding/json" "encoding/json"
"log" "log"
"net/http" "net/http"
"time"
"git.apinb.com/bsm-sdk/core/cache/redis"
"git.apinb.com/bsm-sdk/core/crypto/encipher" "git.apinb.com/bsm-sdk/core/crypto/encipher"
"git.apinb.com/bsm-sdk/core/errcode" "git.apinb.com/bsm-sdk/core/errcode"
"git.apinb.com/bsm-sdk/core/types" "git.apinb.com/bsm-sdk/core/types"
"github.com/gin-gonic/gin" "github.com/gin-gonic/gin"
) )
func JwtAuth(redis *redis.RedisClient) gin.HandlerFunc { func JwtAuth(time_verify bool) gin.HandlerFunc {
return func(c *gin.Context) { return func(c *gin.Context) {
// 从请求头中获取 Authorization // 从请求头中获取 Authorization
authHeader := c.GetHeader("Authorization") authHeader := c.GetHeader("Authorization")
if authHeader == "" { if authHeader == "" {
log.Println("获取token异常:", "Authorization header is required") log.Printf("获取token异常:%v\n", "Authorization header is required")
c.JSON(http.StatusUnauthorized, gin.H{"error": "Authorization header is required"}) c.JSON(http.StatusUnauthorized, gin.H{"error": "Authorization header is required"})
c.Abort() c.Abort()
return return
@ -25,21 +25,22 @@ func JwtAuth(redis *redis.RedisClient) gin.HandlerFunc {
// 提取Token // 提取Token
claims, err := encipher.ParseTokenAes(authHeader) claims, err := encipher.ParseTokenAes(authHeader)
if err != nil || claims == nil { if err != nil || claims == nil {
log.Println("提取token异常:", "Token is required") log.Printf("提取token异常:%v\n", err)
c.JSON(http.StatusUnauthorized, gin.H{"error": "Token is required"}) c.JSON(http.StatusUnauthorized, gin.H{"error": "Token is required"})
c.Abort() c.Abort()
return return
} }
// 从redis 获取token,判断当前redis 是否为空 // 检测是否需要验证token时间
// tokenKey := fmt.Sprintf("%d-%s-%s", claims.ID, claims.Role, "token") if time_verify {
// redisToken := redis.Client.Get(redis.Ctx, tokenKey) // 判断时间claims.ExpiresAt
// if redisToken.Val() == "" { if time.Now().Unix() > claims.ExpiresAt {
// log.Println("redis异常", "Token status unauthorized") log.Println("token过期请重新获取:", "Token has expired")
// c.JSON(http.StatusUnauthorized, gin.H{"error": "Token status unauthorized"}) c.JSON(http.StatusUnauthorized, gin.H{"error": "Token has expired"})
// c.Abort() c.Abort()
// return return
// } }
}
// 将解析后的 Token 存储到上下文中 // 将解析后的 Token 存储到上下文中
c.Set("Auth", claims) c.Set("Auth", claims)