mirror of
https://github.com/casdoor/casdoor.git
synced 2025-05-24 08:20:31 +08:00
Remove password in JWT token payload.
This commit is contained in:
parent
8cb1291f6f
commit
4f2668cd90
@ -31,6 +31,8 @@ func generateJwtToken(application *Application, user *User) (string, error) {
|
|||||||
nowTime := time.Now()
|
nowTime := time.Now()
|
||||||
expireTime := nowTime.Add(time.Duration(application.ExpireInHours) * time.Hour)
|
expireTime := nowTime.Add(time.Duration(application.ExpireInHours) * time.Hour)
|
||||||
|
|
||||||
|
user.Password = ""
|
||||||
|
|
||||||
claims := Claims{
|
claims := Claims{
|
||||||
User: *user,
|
User: *user,
|
||||||
StandardClaims: jwt.StandardClaims{
|
StandardClaims: jwt.StandardClaims{
|
||||||
|
Loading…
x
Reference in New Issue
Block a user