aboutsummaryrefslogtreecommitdiff
path: root/weed/security/jwt.go
diff options
context:
space:
mode:
authorchrislu <chris.lu@gmail.com>2023-09-13 00:03:47 -0700
committerchrislu <chris.lu@gmail.com>2023-09-13 00:03:47 -0700
commitb771fefa374fe237ff1317bbd03a9297a52191e3 (patch)
tree9856be72db18e6ae32523640cd3a9e3ca61fbeeb /weed/security/jwt.go
parent0a851ec00b455c72b405503f6f1f41728b15962e (diff)
parent8908810376e671b34262295f1ad558ca43db58c2 (diff)
downloadseaweedfs-b771fefa374fe237ff1317bbd03a9297a52191e3.tar.xz
seaweedfs-b771fefa374fe237ff1317bbd03a9297a52191e3.zip
Merge branch 'master' into sub
Diffstat (limited to 'weed/security/jwt.go')
-rw-r--r--weed/security/jwt.go14
1 files changed, 7 insertions, 7 deletions
diff --git a/weed/security/jwt.go b/weed/security/jwt.go
index 5d9534c7b..446c3c21d 100644
--- a/weed/security/jwt.go
+++ b/weed/security/jwt.go
@@ -6,7 +6,7 @@ import (
"strings"
"time"
- "github.com/golang-jwt/jwt"
+ jwt "github.com/golang-jwt/jwt/v5"
"github.com/seaweedfs/seaweedfs/weed/glog"
)
@@ -17,14 +17,14 @@ type SigningKey []byte
// restricting the access this JWT allows to only a single file.
type SeaweedFileIdClaims struct {
Fid string `json:"fid"`
- jwt.StandardClaims
+ jwt.RegisteredClaims
}
// SeaweedFilerClaims is created e.g. by S3 proxy server and consumed by Filer server.
// Right now, it only contains the standard claims; but this might be extended later
// for more fine-grained permissions.
type SeaweedFilerClaims struct {
- jwt.StandardClaims
+ jwt.RegisteredClaims
}
func GenJwtForVolumeServer(signingKey SigningKey, expiresAfterSec int, fileId string) EncodedJwt {
@@ -34,10 +34,10 @@ func GenJwtForVolumeServer(signingKey SigningKey, expiresAfterSec int, fileId st
claims := SeaweedFileIdClaims{
fileId,
- jwt.StandardClaims{},
+ jwt.RegisteredClaims{},
}
if expiresAfterSec > 0 {
- claims.ExpiresAt = time.Now().Add(time.Second * time.Duration(expiresAfterSec)).Unix()
+ claims.ExpiresAt = jwt.NewNumericDate(time.Now().Add(time.Second * time.Duration(expiresAfterSec)))
}
t := jwt.NewWithClaims(jwt.SigningMethodHS256, claims)
encoded, e := t.SignedString([]byte(signingKey))
@@ -56,10 +56,10 @@ func GenJwtForFilerServer(signingKey SigningKey, expiresAfterSec int) EncodedJwt
}
claims := SeaweedFilerClaims{
- jwt.StandardClaims{},
+ jwt.RegisteredClaims{},
}
if expiresAfterSec > 0 {
- claims.ExpiresAt = time.Now().Add(time.Second * time.Duration(expiresAfterSec)).Unix()
+ claims.ExpiresAt = jwt.NewNumericDate(time.Now().Add(time.Second * time.Duration(expiresAfterSec)))
}
t := jwt.NewWithClaims(jwt.SigningMethodHS256, claims)
encoded, e := t.SignedString([]byte(signingKey))