TscSsipKafkaTokenService.java 3.1 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788
  1. package com.tsi.api.server.service;
  2. import com.tsi.api.server.dto.KafkaTokenDto;
  3. import io.jsonwebtoken.Claims;
  4. import io.jsonwebtoken.Jws;
  5. import io.jsonwebtoken.Jwts;
  6. import io.jsonwebtoken.SignatureAlgorithm;
  7. import lombok.extern.slf4j.Slf4j;
  8. import org.springframework.stereotype.Service;
  9. import javax.annotation.PostConstruct;
  10. import java.util.Base64;
  11. import java.util.Date;
  12. @Slf4j
  13. @Service
  14. public class TscSsipKafkaTokenService {
  15. private String secretKey = "kafka-tsc-secret-key";
  16. @PostConstruct
  17. protected void init() {
  18. log.info("************************************************ before: {}", this.secretKey);
  19. this.secretKey = Base64.getEncoder().encodeToString(this.secretKey.getBytes());
  20. log.info("************************************************ -after: {}", this.secretKey);
  21. }
  22. // Access Token create
  23. public KafkaTokenDto generateToken(String apiToken, String uid, String pwd, String role) {
  24. long tokenPeriod = 1000L * 60L * 10L; // 10분
  25. long refreshPeriod = 1000L * 60L * 60L * 24L * 30L * 3L; // 3주
  26. Claims claims = Jwts.claims().setId(uid).setSubject(pwd);
  27. claims.put("role", role);
  28. claims.put("apiToken", apiToken);
  29. Date now = new Date();
  30. return new KafkaTokenDto(
  31. Jwts.builder()
  32. .setClaims(claims)
  33. .setIssuedAt(now)
  34. .setExpiration(new Date(now.getTime() + tokenPeriod))
  35. .signWith(SignatureAlgorithm.HS256, this.secretKey)
  36. .compact(),
  37. Jwts.builder()
  38. .setClaims(claims)
  39. .setIssuedAt(now)
  40. .setExpiration(new Date(now.getTime() + refreshPeriod))
  41. .signWith(SignatureAlgorithm.HS256, this.secretKey)
  42. .compact());
  43. }
  44. public KafkaTokenDto decode(String token) {
  45. try {
  46. Jws<Claims> claims = Jwts.parser()
  47. .setSigningKey(this.secretKey)
  48. .parseClaimsJws(token);
  49. KafkaTokenDto kafkaTokenDto = new KafkaTokenDto();
  50. kafkaTokenDto.setApiToken((String) claims.getBody().get("apiToken"));
  51. kafkaTokenDto.setUid(claims.getBody().getId());
  52. kafkaTokenDto.setPwd(claims.getBody().getSubject());
  53. //log.info("{}", claims.toString());
  54. return kafkaTokenDto;
  55. }
  56. catch (Exception e) {
  57. return null;
  58. }
  59. }
  60. public boolean verifyToken(String token) {
  61. try {
  62. Jws<Claims> claims = Jwts.parser()
  63. .setSigningKey(this.secretKey)
  64. .parseClaimsJws(token);
  65. return claims.getBody()
  66. .getExpiration()
  67. .after(new Date());
  68. }
  69. catch (Exception e) {
  70. return false;
  71. }
  72. }
  73. public String getUid(String token) {
  74. return Jwts.parser().setSigningKey(this.secretKey).parseClaimsJws(token).getBody().getSubject();
  75. }
  76. }