zoukankan      html  css  js  c++  java
  • [JWT] JWT with HS256

    The advantages of JWT over traditional session based validation is:

     it effectively removing all authentication logic from both our codebase and our database, and delegating it to a third-party service

    In this post, we are going to see, how to create and verify HS256 JWT token.

    Main idea behind HS256 JWT token is both Receiver and Producer should have the 'secret key'.

    Create:

    var jwt = require('jsonwebtoken');
    
    
    var secretKey = 'secret-key';
    
    var payload = {
      name: 'Alice'
    };
    
    
    // create a JWT
    var newToken = jwt.sign(payload, secretKey, {
      algorithm: 'HS256'
    });
    
    console.log('JWT created:', newToken);

    Verifiy:

    var jwt = require('jsonwebtoken');
    
    
    // verify an existing JWT
    var existingToken = 'eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJuYW1lIjoiQWxpY2UiLCJpYXQiOjE1MDI4ODkxOTF9._tPQtlZz2GhXHXATn5W09K4XCG0Z5LyEQqikJf3qXF8';
    
    
    var secretKey = 'secret-key';
    
    
    const verify = jwt.verify(existingToken, secretKey);
    
    
    console.log('Decoded JWT:', verify);

    As long as it pass the verification, we can ensure that the user is authed.

  • 相关阅读:
    2015 多校联赛 ——HDU5319(模拟)
    FZU 2158
    FZU 2157 树形DP
    dp之背包总结篇
    JavaScript parseInt() 函数
    JavaScript全局属性/函数
    学生面试心得
    ssh整合
    spring08事务
    JavaScript数组方法大全
  • 原文地址:https://www.cnblogs.com/Answer1215/p/7538984.html
Copyright © 2011-2022 走看看