package auth import ( "errors" "fmt" "gin-admin/internal/core/config" "github.com/golang-jwt/jwt/v5" "time" ) // @Author: yv1ing // @Author: me@yvling.cn // @Date: 2025/8/28 15:54 // @Desc: jwt鉴权方法 type AccessClaims struct { ID uint `json:"id"` Username string `json:"username"` jwt.RegisteredClaims } func CreateAccessToken(ID uint, username string, ttl time.Duration) (string, error) { jwtSecret := []byte(config.Config.SecretKey) claims := AccessClaims{ ID: ID, Username: username, RegisteredClaims: jwt.RegisteredClaims{ Subject: "gin-admin", IssuedAt: jwt.NewNumericDate(time.Now()), ExpiresAt: jwt.NewNumericDate(time.Now().Add(ttl)), ID: fmt.Sprintf("%d-%d", ID, time.Now().UnixNano()), }, } token := jwt.NewWithClaims(jwt.SigningMethodHS256, claims) return token.SignedString(jwtSecret) } func ParseAccessToken(tokenStr string) (*AccessClaims, error) { jwtSecret := []byte(config.Config.SecretKey) token, err := jwt.ParseWithClaims(tokenStr, &AccessClaims{}, func(token *jwt.Token) (interface{}, error) { return jwtSecret, nil }) if err != nil { return nil, err } if claims, ok := token.Claims.(*AccessClaims); ok && token.Valid { return claims, nil } return nil, errors.New("token非法") }