授权token加固

This commit is contained in:
dushixiang 2021-01-17 23:56:26 +08:00
parent 28d17accd2
commit ad91406029

View File

@ -5,6 +5,7 @@ import (
"next-terminal/pkg/model" "next-terminal/pkg/model"
"next-terminal/pkg/totp" "next-terminal/pkg/totp"
"next-terminal/pkg/utils" "next-terminal/pkg/utils"
"strings"
"time" "time"
"github.com/labstack/echo/v4" "github.com/labstack/echo/v4"
@ -52,7 +53,7 @@ func LoginEndpoint(c echo.Context) error {
return Fail(c, 0, "") return Fail(c, 0, "")
} }
token := utils.UUID() token := strings.Join([]string{utils.UUID(), utils.UUID(), utils.UUID(), utils.UUID()}, "")
authorization := Authorization{ authorization := Authorization{
Token: token, Token: token,
@ -91,7 +92,7 @@ func loginWithTotpEndpoint(c echo.Context) error {
return Fail(c, -2, "您的TOTP不匹配") return Fail(c, -2, "您的TOTP不匹配")
} }
token := utils.UUID() token := strings.Join([]string{utils.UUID(), utils.UUID(), utils.UUID(), utils.UUID()}, "")
authorization := Authorization{ authorization := Authorization{
Token: token, Token: token,