zhangqian
2023-11-01 530fed8ec225453572d57b15c200ab062c335457
middleware/jwt.go
@@ -82,10 +82,12 @@
func JWTAuth2() gin.HandlerFunc {
   return func(c *gin.Context) {
      ctx := new(contextx.Context).SetCtx(c)
      // 我们这里jwt鉴权取头部信息 Authorization 登录时回返回token信息 这里前端需要把token存储到cookie或者本地localStorage中 不过需要跟后端协商过期时间 可以约定刷新令牌或者重新登录
      token := c.Request.Header.Get("Authorization")
      if token == "" {
         c.Next()
         ctx.Fail(ecode.JWTEmpty)
         c.Abort()
         return
      }
      slices := strings.Split(token, " ")
@@ -96,15 +98,33 @@
      // parseToken 解析token包含的信息
      claims, err := j.ParseToken(token)
      if err != nil {
         if err == utils.TokenExpired {
            c.Next()
            return
         }
         c.Next()
         ctx.Fail(ecode.JWTDisabled)
         c.Abort()
         return
      }
      userInfo := service.GetUserBaseCache(claims.UserId)
      if userInfo == nil {
         SyncUserInfo([]string{claims.UserId})
         userInfo = service.GetUserBaseCache(claims.UserId)
      }
      if userInfo == nil {
         ctx.Fail(ecode.JWTDisabled)
         c.Abort()
         return
      }
      SetActiveTime(claims.UserId)
      claims.CrmUserId = userInfo.UserId
      claims.NickName = userInfo.NickName
      claims.SubUserIds = userInfo.SubUserIds
      c.Set("claims", claims)
      c.Next()
      if CheckAuth(c.Request.URL.Path, token) {
         c.Next()
      } else {
         ctx.Fail(ecode.JWTDisabled)
         c.Abort()
         return
      }
   }
}