{"id":23808,"date":"2024-11-21T11:19:32","date_gmt":"2024-11-21T03:19:32","guid":{"rendered":"https:\/\/fwq.ai\/blog\/23808\/"},"modified":"2024-11-21T11:19:32","modified_gmt":"2024-11-21T03:19:32","slug":"%e5%9c%a8thinkphp6%e4%b8%ad%e4%bd%bf%e7%94%a8jwt%e9%aa%8c%e8%af%81","status":"publish","type":"post","link":"https:\/\/fwq.ai\/blog\/23808\/","title":{"rendered":"\u5728ThinkPHP6\u4e2d\u4f7f\u7528JWT\u9a8c\u8bc1"},"content":{"rendered":"<p>\u968f\u7740\u4e92\u8054\u7f51\u7684\u53d1\u5c55\uff0cweb\u5e94\u7528\u7684\u7528\u6237\u91cf\u9010\u6e10\u589e\u591a\uff0c\u5b89\u5168\u95ee\u9898\u4e5f\u6210\u4e3a\u4e86\u8d8a\u6765\u8d8a\u91cd\u8981\u7684\u95ee\u9898\u3002\u8eab\u4efd\u9a8c\u8bc1\u662fweb\u5e94\u7528\u5b89\u5168\u7684\u91cd\u8981\u7ec4\u6210\u90e8\u5206\uff0c\u56e0\u4e3a\u53ea\u6709\u7ecf\u8fc7\u8eab\u4efd\u9a8c\u8bc1\u7684\u7528\u6237\u624d\u80fd\u8bbf\u95ee\u9700\u8981\u6743\u9650\u7684\u8d44\u6e90\u3002<\/p>\n<p>JSON Web Token (JWT) \u662f\u4e00\u79cd\u8f7b\u4fbf\u3001\u81ea\u5305\u542b\u7684\u8ba4\u8bc1 token\uff0c\u662f\u5728 Web \u5e94\u7528\u95f4\u5b89\u5168\u5730\u4f20\u8f93\u4fe1\u606f\u7684\u597d\u65b9\u6cd5\u3002JWT \u8ba4\u8bc1\u65b9\u6848\u9002\u7528\u4e8e\u5206\u5e03\u5f0f\u7cfb\u7edf\u548c\u5355\u9875\u5e94\u7528\u3002<\/p>\n<p>ThinkPHP\u662f\u4e00\u4e2a\u6d41\u884c\u7684PHP\u6846\u67b6\uff0c\u5b83\u63d0\u4f9b\u4e86\u8bb8\u591a\u5de5\u5177\u6765\u5f00\u53d1\u5b89\u5168\u7684Web\u5e94\u7528\u7a0b\u5e8f\u3002\u5728\u672c\u6587\u4e2d\uff0c\u6211\u4eec\u5c06\u4ecb\u7ecd\u5982\u4f55\u5728ThinkPHP6\u4e2d\u4f7f\u7528JWT\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u4ee5\u589e\u5f3a\u5e94\u7528\u7a0b\u5e8f\u7684\u5b89\u5168\u6027\u3002<\/p>\n<p>\u5f00\u53d1\u73af\u5883\u548c\u4f9d\u8d56<\/p>\n<p>\u5728\u5f00\u59cb\u4e4b\u524d\uff0c\u6211\u4eec\u9700\u8981\u786e\u4fdd\u5f00\u53d1\u73af\u5883\u5df2\u7ecf\u6b63\u786e\u8bbe\u7f6e\u3002\u4ee5\u4e0b\u662f\u672c\u6587\u6240\u4f7f\u7528\u7684\u73af\u5883\u548c\u4f9d\u8d56\u3002\u8bf7\u6839\u636e\u60a8\u7684\u9700\u6c42\u8fdb\u884c\u76f8\u5e94\u5730\u66f4\u6539\u3002<\/p>\n<p><span>\u7acb\u5373\u5b66\u4e60<\/span>\u201c\u201d\uff1b<\/p>\n<ul>\n<li>PHP 7.2 \u6216\u66f4\u9ad8\u7248\u672c<\/li>\n<li>ThinkPHP 6.0.0 \u6216\u66f4\u9ad8\u7248\u672c<\/li>\n<li>Firebase JWT PHP \u5e93<\/li>\n<\/ul>\n<p>\u6b65\u9aa41\uff1a\u5b89\u88c5 Firebase JWT PHP \u5e93<\/p>\n<p>\u5b89\u88c5 Firebase JWT PHP \u5e93\u662f\u4f7f\u7528 JWT \u8eab\u4efd\u9a8c\u8bc1\u65b9\u6848\u7684\u7b2c\u4e00\u6b65\u3002\u8be5\u5e93\u5c06\u5e2e\u52a9\u6211\u4eec\u521b\u5efa\u3001\u7b7e\u540d\u548c\u9a8c\u8bc1 JWT\u3002<\/p>\n<p>\u6211\u4eec\u53ef\u4ee5\u4f7f\u7528 Composer \u5b89\u88c5 Firebase JWT PHP \u5e93\u3002 \u5728\u547d\u4ee4\u884c\u4e2d\u8f93\u5165\u4ee5\u4e0b\u547d\u4ee4\uff1a<\/p>\n<pre>composer require firebase\/php-jwt<\/pre>\n<p> \u767b\u5f55\u540e\u590d\u5236 <\/p>\n<p>\u6b65\u9aa42\uff1a\u521b\u5efaToken\u7c7b<\/p>\n<p>\u4e3a\u4e86\u4fbf\u4e8e\u7ba1\u7406\u548c\u4f7f\u7528 JWT\uff0c\u6211\u4eec\u521b\u5efa\u4e00\u4e2a\u540d\u4e3aToken\u7684\u7c7b\u6765\u5904\u7406 JWT \u9a8c\u8bc1\u7684\u5404\u4e2a\u65b9\u9762\u3002\u8fd9\u4e2a\u7c7b\u5c06\u5305\u62ec\u521b\u5efa\u4ee4\u724c\uff0c\u9a8c\u8bc1\u4ee4\u724c\uff0c\u83b7\u53d6\u4ee4\u724c\u4fe1\u606f\u7b49\u529f\u80fd\u3002<\/p>\n<p>\u5728 app\/common \u76ee\u5f55\u4e0b\u521b\u5efa Token.php \u6587\u4ef6\uff0c\u5e76\u6dfb\u52a0\u4ee5\u4e0b\u4ee3\u7801\uff1a<\/p>\n<pre>&lt;?php namespace appcommon;\n\nuse FirebaseJWTJWT;\n\nclass Token\n{\n    private static $key = 'your_secret_key';\n    private static $alg = 'HS256';\n\n    public static function createToken($data, $expiration = 3600)\n    {\n        $payload = [\n            'iss' =&gt; 'localhost',\n            'sub' =&amp;gt; 'token',\n            'iat' =&amp;gt; time(),\n            'exp' =&amp;gt; time() + $expiration,\n            'data' =&amp;gt; $data\n        ];\n\n        return JWT::encode($payload, self::$key, self::$alg);\n    }\n\n    public static function decodeToken($token)\n    {\n        return JWT::decode($token, self::$key, [self::$alg]);\n    }\n\n    public static function getDataByToken($token)\n    {\n        $decoded = self::decodeToken($token);\n\n        if (isset($decoded-&amp;gt;data)) {\n            return $decoded-&amp;gt;data;\n        } else {\n            return false;\n        }\n    }\n\n    public static function verifyToken($token)\n    {\n        $result = false;\n        try {\n            $decoded = self::decodeToken($token);\n            $result = true;\n        } catch (Exception $e) {\n            \/\/ Invalid token\n        }\n        return $result;\n    }\n}<\/pre>\n<p> \u767b\u5f55\u540e\u590d\u5236 <\/p>\n<p>\u5728\u4ee3\u7801\u4e2d\uff0c\u6211\u4eec\u4f7f\u7528FirebaseJWTJWT\u5e93\u4e2d\u7684encode()\u548cdecode()\u65b9\u6cd5\u6765\u521b\u5efa\u548c\u89e3\u6790 JWT\u3002$key\u662f\u6211\u4eec\u7528\u4e8e\u7b7e\u540d JWT \u7684\u5bc6\u94a5\uff0c$alg\u662f\u6211\u4eec\u9009\u62e9\u7684\u7b97\u6cd5\u3002 \u5728createToken()\u65b9\u6cd5\u4e2d\uff0c\u6211\u4eec\u4f7f\u7528 JWT \u8d1f\u8f7d\u4e2d\u7684\u56db\u4e2a\u952e\uff08iss\uff0ciat\uff0cexp\u548csub\uff09\u5e76\u6dfb\u52a0\u81ea\u5b9a\u4e49data\u3002$expiration\u53c2\u6570\u6307\u5b9a JWT \u7684\u8fc7\u671f\u65f6\u95f4\u3002\u56e0\u6b64\uff0cJWT \u53ea\u80fd\u5728\u6709\u6548\u671f\u5185\u4f7f\u7528\u3002<\/p>\n<p>\u6b65\u9aa43\uff1a\u5728\u4e2d\u95f4\u4ef6\u4e2d\u9a8c\u8bc1\u4ee4\u724c<\/p>\n<p>\u73b0\u5728\u6211\u4eec\u5df2\u7ecf\u521b\u5efa\u4e86 Token \u7c7b\u4ee5\u5904\u7406 JWT \u76f8\u5173\u7684\u5de5\u4f5c\uff0c\u6211\u4eec\u9700\u8981\u5728\u4e2d\u95f4\u4ef6\u4e2d\u9a8c\u8bc1\u7528\u6237 JWT\u3002\u4f7f\u7528\u4e2d\u95f4\u4ef6\u53ef\u4ee5\u65b9\u4fbf\u5730\u5728\u5e94\u7528\u7a0b\u5e8f\u7684\u63a7\u5236\u5668\u4ee3\u7801\u4e2d\u62e6\u622a\u548c\u8bbe\u7f6e\u54cd\u5e94\uff0c\u5e76\u4e14\u53ef\u4ee5\u5c06\u4ee3\u7801\u5206\u79bb\u5230\u4e0d\u540c\u7684\u7c7b\u4e2d\u4ee5\u4fbf\u66f4\u597d\u5730\u7ba1\u7406\u548c\u4fee\u6539\u3002<\/p>\n<p>\u5728 app\/middleware \u76ee\u5f55\u4e0b\u521b\u5efaJwt.php\u6587\u4ef6\uff0c\u5e76\u6dfb\u52a0\u4ee5\u4e0b\u4ee3\u7801\uff1a<\/p>\n<pre>&lt;?php namespace appmiddleware;\n\nuse appcommonToken;\nuse thinkexceptionHttpResponseException;\nuse thinkResponse;\n\nclass Jwt\n{\n    public function handle($request, Closure $next)\n    {\n        if (!$request-&gt;header('Authorization')) {\n            return json(['code' =&amp;gt; 401, 'msg' =&amp;gt; 'Unauthorized']);\n        }\n\n        $header = $request-&amp;gt;header('Authorization');\n        $token = substr($header, 7);\n        if (Token::verifyToken($token)) {\n            $request-&amp;gt;data = Token::getDataByToken($token);\n            return $next($request);\n        } else {\n            return json(['code' =&amp;gt; 401, 'msg' =&amp;gt; 'Unauthorized']);\n        }\n    }\n}<\/pre>\n<p> \u767b\u5f55\u540e\u590d\u5236 <\/p>\n<p>\u5728\u6b64\u4e2d\u95f4\u4ef6\u4e2d\uff0c\u6211\u4eec\u4f7f\u7528 Token \u7c7b\u4e2d\u7684verifyToken()\u65b9\u6cd5\u6765\u9a8c\u8bc1 JWT\u3002 \u6b64\u65b9\u6cd5\u5c06\u8fd4\u56de true \u6216 false\uff0c\u8868\u793a\u4ee4\u724c\u662f\u5426\u6709\u6548\u3002 \u5982\u679c\u6709\u6548\uff0c\u6211\u4eec\u5c06\u4f7f\u7528getDataByToken()\u65b9\u6cd5\u6765\u83b7\u53d6 JWT \u7684\u6570\u636e\u90e8\u5206\u5e76\u5c06\u5176\u5b58\u50a8\u5728$request-&gt;data\u4e2d\u3002 \u8fd9\u6837\uff0c\u63a7\u5236\u5668\u5c31\u53ef\u4ee5\u4f7f\u7528\u6b64\u6570\u636e\u3002<\/p>\n<p>\u6b65\u9aa44\uff1a\u8bbe\u7f6e\u8def\u7531<\/p>\n<p>\u73b0\u5728\uff0c\u6211\u4eec\u5df2\u7ecf\u521b\u5efa\u4e86\u4e2d\u95f4\u4ef6\uff0c\u6211\u4eec\u9700\u8981\u5c06\u5176\u5e94\u7528\u5230\u9002\u5f53\u7684\u8def\u7531\u4e0a\u3002<\/p>\n<p>\u5047\u8bbe\u6211\u4eec\u8981\u4fdd\u62a4\/api\/user\u7684\u8def\u7531\uff0c\u6211\u4eec\u9700\u8981\u5728routepi.php\u6587\u4ef6\u4e2d\u6309\u5982\u4e0b\u65b9\u5f0f\u8bbe\u7f6e\u8def\u7531\uff1a<\/p>\n<pre>use appmiddlewareJwt;\n\nRoute::group('api', function() {\n  Route::get('user', 'UserController@getUserInfo')-&amp;gt;middleware(Jwt::class);\n});<\/pre>\n<p> \u767b\u5f55\u540e\u590d\u5236 <\/p>\n<p>\u8bf7\u6ce8\u610f\uff0c\u5728\u6b64\u8def\u7531\u4e2d\uff0c\u6211\u4eec\u5c06Jwt\u4e2d\u95f4\u4ef6\u4f5c\u4e3a\u53c2\u6570\u4f20\u9012\u7ed9middleware()\u65b9\u6cd5\u3002\u8fd9\u662fUserController\u4e2d\u7684getUserInfo()\u65b9\u6cd5\u7684\u793a\u4f8b\u4ee3\u7801\u3002<\/p>\n<pre>&lt;?php namespace appcontroller;\n\nuse appcommonToken;\n\nclass UserController\n{\n    public function getUserInfo()\n    {\n        $data = request()-&gt;data;\n        ...\n    }\n    ...\n}<\/pre>\n<p> \u767b\u5f55\u540e\u590d\u5236 <\/p>\n<p>\u5728\u63a7\u5236\u5668\u4e2d\uff0c\u60a8\u53ef\u4ee5\u901a\u8fc7\u8c03\u7528$request-&gt;data\u6765\u8bbf\u95ee\u7ecf\u8fc7\u8eab\u4efd\u9a8c\u8bc1\u7684 JWT \u4e2d\u5b58\u50a8\u7684\u6570\u636e\u3002<\/p>\n<p>\u7ed3\u8bba<\/p>\n<p>JWT \u8eab\u4efd\u9a8c\u8bc1\u65b9\u6cd5\u53ef\u4ee5\u4f7f\u60a8\u7684 Web \u5e94\u7528\u7a0b\u5e8f\u66f4\u5b89\u5168\u548c\u53ef\u9760\u3002\u5728\u672c\u6587\u4e2d\uff0c\u6211\u4eec\u4ecb\u7ecd\u4e86\u5982\u4f55\u5728ThinkPHP6\u4e2d\u4f7f\u7528 Firebase JWT PHP \u5e93\u6765\u521b\u5efa\u548c\u9a8c\u8bc1 JWT\u3002<\/p>\n<p>\u6211\u4eec\u521b\u5efa\u4e86\u4e00\u4e2a\u540d\u4e3a Token \u7684\u7c7b\uff0c\u8be5\u7c7b\u7528\u4e8e\u5904\u7406 JWT \u76f8\u5173\u7684\u5de5\u4f5c\uff0c\u5e76\u4e14\u6dfb\u52a0\u4e86\u4e00\u4e2a\u7528\u4e8e\u9a8c\u8bc1 JWT \u5e76\u8bbe\u7f6e\u6570\u636e\u7684\u4e2d\u95f4\u4ef6\u3002\u6700\u540e\uff0c\u6211\u4eec\u8bbe\u7f6e\u4e86\u4f7f\u7528\u6b64\u4e2d\u95f4\u4ef6\u7684\u8def\u7531\u548c\u63a7\u5236\u5668\u4ee3\u7801\u4ee5\u8bbf\u95ee\u5b58\u50a8\u5728 JWT \u4e2d\u7684\u6570\u636e\u3002<\/p>\n<p>\u5f15\u5165 JWT \u8eab\u4efd\u9a8c\u8bc1\u7684\u4e3b\u8981\u76ee\u7684\u662f\u786e\u4fdd\u5e94\u7528\u7a0b\u5e8f\u4e2d\u7684\u8d44\u6e90\u53ea\u80fd\u88ab\u7ecf\u8fc7\u8eab\u4efd\u9a8c\u8bc1\u7684\u7528\u6237\u4f7f\u7528\u3002\u5e0c\u671b\u672c\u6587\u80fd\u591f\u5e2e\u52a9\u60a8\u4e86\u89e3\u5982\u4f55\u4f7f\u7528 JWT \u8eab\u4efd\u9a8c\u8bc1\u6765\u4fdd\u62a4\u60a8\u7684\u5e94\u7528\u7a0b\u5e8f\uff01<\/p>\n<p>\u4ee5\u4e0a\u5c31\u662f\u5728ThinkPHP6\u4e2d\u4f7f\u7528JWT\u9a8c\u8bc1\u7684\u8be6\u7ec6\u5185\u5bb9\uff0c\u66f4\u591a\u8bf7\u5173\u6ce8\u7c73\u4e91\u5176\u5b83\u76f8\u5173\u6587\u7ae0\uff01<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u968f\u7740\u4e92\u8054\u7f51\u7684\u53d1\u5c55\uff0cweb\u5e94\u7528\u7684\u7528\u6237\u91cf\u9010\u6e10\u589e\u591a\uff0c\u5b89\u5168\u95ee\u9898\u4e5f\u6210\u4e3a\u4e86\u8d8a\u6765\u8d8a\u91cd\u8981\u7684\u95ee\u9898\u3002\u8eab\u4efd\u9a8c\u8bc1\u662fweb\u5e94\u7528\u5b89\u5168\u7684\u91cd\u8981\u7ec4\u6210\u90e8\u5206\uff0c\u56e0\u4e3a\u53ea\u6709\u7ecf\u8fc7\u8eab\u4efd\u9a8c\u8bc1\u7684\u7528\u6237\u624d\u80fd\u8bbf\u95ee\u9700\u8981\u6743\u9650\u7684\u8d44\u6e90\u3002 JSON Web Token (JWT) \u662f\u4e00\u79cd\u8f7b\u4fbf\u3001\u81ea\u5305\u542b\u7684\u8ba4\u8bc1 token\uff0c\u662f\u5728 Web \u5e94\u7528\u95f4\u5b89\u5168\u5730\u4f20\u8f93\u4fe1\u606f\u7684\u597d\u65b9\u6cd5\u3002JWT \u8ba4\u8bc1\u65b9\u6848\u9002\u7528\u4e8e\u5206\u5e03\u5f0f\u7cfb\u7edf\u548c\u5355\u9875\u5e94\u7528\u3002 ThinkPHP\u662f\u4e00\u4e2a\u6d41\u884c\u7684PHP\u6846\u67b6\uff0c\u5b83\u63d0\u4f9b\u4e86\u8bb8\u591a\u5de5\u5177\u6765\u5f00\u53d1\u5b89\u5168\u7684Web\u5e94\u7528\u7a0b\u5e8f\u3002\u5728\u672c\u6587\u4e2d\uff0c\u6211\u4eec\u5c06\u4ecb\u7ecd\u5982\u4f55\u5728ThinkPHP6\u4e2d\u4f7f\u7528JWT\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u4ee5\u589e\u5f3a\u5e94\u7528\u7a0b\u5e8f\u7684\u5b89\u5168\u6027\u3002 \u5f00\u53d1\u73af\u5883\u548c\u4f9d\u8d56 \u5728\u5f00\u59cb\u4e4b\u524d\uff0c\u6211\u4eec\u9700\u8981\u786e\u4fdd\u5f00\u53d1\u73af\u5883\u5df2\u7ecf\u6b63\u786e\u8bbe\u7f6e\u3002\u4ee5\u4e0b\u662f\u672c\u6587\u6240\u4f7f\u7528\u7684\u73af\u5883\u548c\u4f9d\u8d56\u3002\u8bf7\u6839\u636e\u60a8\u7684\u9700\u6c42\u8fdb\u884c\u76f8\u5e94\u5730\u66f4\u6539\u3002 \u7acb\u5373\u5b66\u4e60\u201c\u201d\uff1b PHP 7.2 \u6216\u66f4\u9ad8\u7248\u672c ThinkPHP 6.0.0 \u6216\u66f4\u9ad8\u7248\u672c Firebase JWT PHP \u5e93 \u6b65\u9aa41\uff1a\u5b89\u88c5 Firebase JWT PHP \u5e93 \u5b89\u88c5 Firebase JWT PHP \u5e93\u662f\u4f7f\u7528 JWT \u8eab\u4efd\u9a8c\u8bc1\u65b9\u6848\u7684\u7b2c\u4e00\u6b65\u3002\u8be5\u5e93\u5c06\u5e2e\u52a9\u6211\u4eec\u521b\u5efa\u3001\u7b7e\u540d\u548c\u9a8c\u8bc1 JWT\u3002 \u6211\u4eec\u53ef\u4ee5\u4f7f\u7528 Composer \u5b89\u88c5 Firebase JWT PHP \u5e93\u3002 \u5728\u547d\u4ee4\u884c\u4e2d\u8f93\u5165\u4ee5\u4e0b\u547d\u4ee4\uff1a composer require firebase\/php-jwt \u767b\u5f55\u540e\u590d\u5236 \u6b65\u9aa42\uff1a\u521b\u5efaToken\u7c7b \u4e3a\u4e86\u4fbf\u4e8e\u7ba1\u7406\u548c\u4f7f\u7528 JWT\uff0c\u6211\u4eec\u521b\u5efa\u4e00\u4e2a\u540d\u4e3aToken\u7684\u7c7b\u6765\u5904\u7406 JWT \u9a8c\u8bc1\u7684\u5404\u4e2a\u65b9\u9762\u3002\u8fd9\u4e2a\u7c7b\u5c06\u5305\u62ec\u521b\u5efa\u4ee4\u724c\uff0c\u9a8c\u8bc1\u4ee4\u724c\uff0c\u83b7\u53d6\u4ee4\u724c\u4fe1\u606f\u7b49\u529f\u80fd\u3002 \u5728 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[16],"tags":[],"class_list":["post-23808","post","type-post","status-publish","format-standard","hentry","category-16"],"_links":{"self":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts\/23808","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/comments?post=23808"}],"version-history":[{"count":0,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/posts\/23808\/revisions"}],"wp:attachment":[{"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/media?parent=23808"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/categories?post=23808"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/fwq.ai\/blog\/wp-json\/wp\/v2\/tags?post=23808"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}