.NET CORE JWT

nuget添加包:Microsoft.AspNetCore.Authentication.JwtBearer
Startup.cs

ConfigureServices
	services.Configure<TokenManagement>(Configuration.GetSection("tokenManagement"));
	      var token = Configuration.GetSection("tokenManagement").Get<TokenManagement>();
	      services.AddAuthentication(x =>
	      {
	          x.DefaultAuthenticateScheme = JwtBearerDefaults.AuthenticationScheme;
	          x.DefaultChallengeScheme = JwtBearerDefaults.AuthenticationScheme;
	      }).AddJwtBearer(x =>
	      {
	          x.RequireHttpsMetadata = false;
	          x.SaveToken = true;
	          x.TokenValidationParameters = new TokenValidationParameters
	          {
	              ValidateIssuerSigningKey = true,
	              IssuerSigningKey = new SymmetricSecurityKey(Encoding.ASCII.GetBytes(token.Secret)),
	              ValidIssuer = token.Issuer,
	              ValidAudience = token.Audience,
	              ValidateIssuer = false,
	              ValidateAudience = false
	          };
	      });
Configure
		
        app.UseStaticFiles();

        app.UseAuthentication();    //添加的权限  上下都放在这是为了确定语句的位置

        app.UseRouting();

        app.UseAuthorization();

appsettings.json

	  "tokenManagement": {
	    "secret": "123456123456123456",
	    "issuer": "webapi.cn",
	    "audience": "WebApi",
	    "accessExpiration": 30,
	    "refreshExpiration": 60
  }

Model

	 public class TokenManagement
	    {
	        [JsonProperty("secret")]
	        public string Secret { get; set; }
	
	        [JsonProperty("issuer")]
	        public string Issuer { get; set; }
	
	        [JsonProperty("audience")]
	        public string Audience { get; set; }
	
	        [JsonProperty("accessExpiration")]
	        public int AccessExpiration { get; set; }
	
	        [JsonProperty("refreshExpiration")]
	        public int RefreshExpiration { get; set; }
    }

获取token

	  string token = string.Empty;
	            var claims = new[]
	            {
	                new Claim(ClaimTypes.Name,userName),
	                new Claim("haha","sb")   //随意添加
	            };
	            var key = new SymmetricSecurityKey(Encoding.UTF8.GetBytes(_tokenManagement.Secret));
	            var credentials = new SigningCredentials(key, SecurityAlgorithms.HmacSha256);
	            var jwtToken = new JwtSecurityToken(_tokenManagement.Issuer, _tokenManagement.Audience, claims, expires: DateTime.Now.AddMinutes(_tokenManagement.AccessExpiration), signingCredentials: credentials);
	
	            token = new JwtSecurityTokenHandler().WriteToken(jwtToken);

得到token中字段

	User.FindFirst("haha").Value;
	User.Identity.Name;

前端ajax

	 beforeSend: function (xhr) {
                        if (token !== null) {
                            xhr.setRequestHeader('Authorization', 'Bearer ' + token);
                        }
                    },

只能这样的header头格式 才能直接使用User对象来获取信息

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值