token验证失败_ASP.NET CORE WEBAPI JWT 带BEARER的TOKEN

JWT主要由三部分构成,header、 payload 、signature,下面给出详细的TOKEN生成及使用代码。

1、注册JWT服务

public void ConfigureServices(IServiceCollection services)

{

//注册JWT

services.AddAuthentication(JwtBearerDefaults.AuthenticationScheme).AddJwtBearer(opt => {

opt.TokenValidationParameters = new TokenValidationParameters

{

NameClaimType = JwtClaimTypes.Name,

RoleClaimType = JwtClaimTypes.Role,

ValidateIssuer = true,

ValidateAudience = true,

ValidateLifetime = true,

ValidateIssuerSigningKey = true,

ValidAudience = Configuration["JWT:Audience"],

ValidIssuer = Configuration["JWT:Issuer"],

//ClockSkew = TimeSpan.FromSeconds(300), //时间偏移量

ClockSkew = TimeSpan.Zero,

IssuerSigningKey = new SymmetricSecurityKey(Encoding.ASCII.GetBytes(Configuration["JWT:SecurityKey"]))

};

});

}

2、配置JWT,启用认证

public void Configure(IApplicationBuilder app, IWebHostEnvironment env)

{

//启用验证

app.UseAuthorization();

}

3、配置appsettings.json

"Logging": {

"LogLevel": {

"Default": "Information",

"Microsoft": "Warning",

"Microsoft.Hosting.Lifetime": "Information"

}

},

"JWT": {

"SecurityKey": "fcf6dc95-6ba4-48ff-b584-a10fd61a054b",

"Issuer": "robinxu",

"Audience": "robinxu"

},

"AllowedHosts": "*"

}

4、服务端生成Token

///

/// 生成Token

///

///

///

[AllowAnonymous]

[HttpPost]

[Route("Token")]

public IActionResult Token([FromBody]TokenRequest request)

{

if (request.userName == "robin" && request.password == "666666")

{

var claims = new[]

{

new Claim(JwtRegisteredClaimNames.Jti, Guid.NewGuid().ToString()),

new Claim("name", request.userName)

};

var key = new SymmetricSecurityKey(Encoding.UTF8.GetBytes(_configuration["JWT:SecurityKey"]));

var creds = new SigningCredentials(key, SecurityAlgorithms.HmacSha256Signature);

var token = new JwtSecurityToken(

issuer: _configuration["JWT:Issuer"],

audience: _configuration["JWT:Audience"],

claims: claims,

notBefore: DateTime.Now,

expires: DateTime.Now.AddMinutes(30),

signingCredentials: creds);

return Ok(new

{

token = new JwtSecurityTokenHandler().WriteToken(token),

date = DateTime.Now.ToString()

});

}

else

{

return BadRequest("账号或密码验证失败");

}

}

public class TokenRequest

{

public string userName { get; set; }

public string password { get; set; }

}

5、获取Token

请求:

{

"userName":"robin",

"password":"666666"

}

响应:

{

"token": "eyJhbGciOiJodHRwOi8vd3d3LnczLm9yZy8yMDAxLzA0L3htbGRzaWctbW9yZSNobWFjLXNoYTI1NiIsInR5cCI6IkpXVCJ9.eyJqdGkiOiJmZTczM2EyZC00MDYyLTRhOGEtOTNhZC00YThkMjliNDQyN2EiLCJuYW1lIjoicm9iaW4iLCJuYmYiOjE1ODE2ODEyMjQsImV4cCI6MTU4MTY4MzAyNCwiaXNzIjoieHVndW9odWkiLCJhdWQiOiJ4dWd1b2h1aSJ9.ttxs3NnZ3fTTvvcMymhpMPBTgP61oQuqc-klVwCYuoY",

"date": "2020/2/14 19:53:45"

}

6、验证Token请求地址

//

/// 测试

///

///

[HttpGet]

[Route("Test")]

[Authorize(AuthenticationSchemes = JwtBearerDefaults.AuthenticationScheme)]

public string Test()

{

return Guid.NewGuid().ToString();

}

7、验证Token请求图示

bcbc1a3ef94850f4732948591a3d8f10.png

swagger验证token请求示例图

2fd3c9a35a645348ca781dfaa4ed802e.png

postman验证token请求示例图

  • 0
    点赞
  • 1
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值