Skip to content

Commit 4e81da1

Browse files
committed
Update go-jwt-middleware to v2.0.0-beta
1 parent e717a5a commit 4e81da1

5 files changed

Lines changed: 48 additions & 110 deletions

File tree

01-Authorization-RS256-BETA/go.mod

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,10 @@
1-
module 01-Authorization-RS256
1+
module 01-Authorization-RS256-BETA
22

33
go 1.16
44

55
require (
6-
github.com/auth0/go-jwt-middleware v1.0.1-0.20210719135851-6401fcf7191b
6+
github.com/auth0/go-jwt-middleware/v2 v2.0.0-beta
77
github.com/gin-contrib/cors v1.3.1
88
github.com/gin-gonic/gin v1.7.4
9-
github.com/golang-jwt/jwt v3.2.1+incompatible
109
github.com/joho/godotenv v1.4.0
1110
)

01-Authorization-RS256-BETA/go.sum

Lines changed: 11 additions & 20 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
1-
github.com/auth0/go-jwt-middleware v1.0.1-0.20210719135851-6401fcf7191b h1:pXI+CXqYUZaQvLzrQ5cxdShF7OjaYgZbK351CJc5uNQ=
2-
github.com/auth0/go-jwt-middleware v1.0.1-0.20210719135851-6401fcf7191b/go.mod h1:Tlhz43qRKMMQ4WAii9sfAuW8sPuAgQCB4yIjPgT8AH0=
1+
github.com/auth0/go-jwt-middleware/v2 v2.0.0-beta h1:nQQTj7QTef2o7FS0EZqbJZCbyRUzsYKwgrrY26M06jI=
2+
github.com/auth0/go-jwt-middleware/v2 v2.0.0-beta/go.mod h1:dWL9pw5FgrzT1Hhmt+D0W8XmDDulGHN3yMMQl1Oq4RM=
33
github.com/davecgh/go-spew v1.1.0/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
4-
github.com/davecgh/go-spew v1.1.1 h1:vj9j/u1bqnvCEfJOwUhtlOARqs3+rkHYY13jYWTU97c=
54
github.com/davecgh/go-spew v1.1.1/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
65
github.com/gin-contrib/cors v1.3.1 h1:doAsuITavI4IOcd0Y19U4B+O0dNWihRyX//nn4sEmgA=
76
github.com/gin-contrib/cors v1.3.1/go.mod h1:jjEJ4268OPZUcU7k9Pm653S7lXUGcqMADzFA61xsmDk=
@@ -10,7 +9,6 @@ github.com/gin-contrib/sse v0.1.0/go.mod h1:RHrZQHXnP2xjPF+u1gW/2HnVO7nvIa9PG3Gm
109
github.com/gin-gonic/gin v1.5.0/go.mod h1:Nd6IXA8m5kNZdNEHMBd93KT+mdY3+bewLgRvmCsR2Do=
1110
github.com/gin-gonic/gin v1.7.4 h1:QmUZXrvJ9qZ3GfWvQ+2wnW/1ePrTEJqPKMYEU3lD/DM=
1211
github.com/gin-gonic/gin v1.7.4/go.mod h1:jD2toBW3GZUr5UMcdrwQA10I7RuaFOl/SGeDjXkfUtY=
13-
github.com/go-playground/assert/v2 v2.0.1 h1:MsBgLAaY856+nPRTKrp3/OZK38U/wa0CcBYNjji3q3A=
1412
github.com/go-playground/assert/v2 v2.0.1/go.mod h1:VDjEfimB/XKnb+ZQfWdccd7VUvScMdVu0Titje2rxJ4=
1513
github.com/go-playground/locales v0.12.1/go.mod h1:IUMDtCfWo/w/mtMfIE/IG2K+Ey3ygWanZIBtBW0W2TM=
1614
github.com/go-playground/locales v0.13.0 h1:HyWk6mgj5qFqCT5fjGBuRArbVDfE4hi8+e8ceBS/t7Q=
@@ -20,23 +18,18 @@ github.com/go-playground/universal-translator v0.17.0 h1:icxd5fm+REJzpZx7ZfpaD87
2018
github.com/go-playground/universal-translator v0.17.0/go.mod h1:UkSxE5sNxxRwHyU+Scu5vgOQjsIJAF8j9muTVoKLVtA=
2119
github.com/go-playground/validator/v10 v10.4.1 h1:pH2c5ADXtd66mxoE0Zm9SUhxE20r7aM3F26W0hOn+GE=
2220
github.com/go-playground/validator/v10 v10.4.1/go.mod h1:nlOn6nFhuKACm19sB/8EGNn9GlaMV7XkbRSipzJ0Ii4=
23-
github.com/golang-jwt/jwt v3.2.1+incompatible h1:73Z+4BJcrTC+KczS6WvTPvRGOp1WmfEP4Q1lOd9Z/+c=
24-
github.com/golang-jwt/jwt v3.2.1+incompatible/go.mod h1:8pz2t5EyA70fFQQSrl6XZXzqecmYZeUEB8OUGHkxJ+I=
2521
github.com/golang/protobuf v1.3.2/go.mod h1:6lQm79b+lXiMfvg/cZm0SGofjICqVBUtrP5yJMmIC1U=
2622
github.com/golang/protobuf v1.3.3 h1:gyjaxf+svBWX08ZjK86iN9geUJF0H6gp2IRKX6Nf6/I=
2723
github.com/golang/protobuf v1.3.3/go.mod h1:vzj43D7+SQXF/4pzW/hwtAqwc6iTitCiVSaWz5lYuqw=
28-
github.com/google/go-cmp v0.5.6 h1:BKbKCqvP6I+rmFHt06ZmyQtvB8xAkWdhFyr0ZUNZcxQ=
2924
github.com/google/go-cmp v0.5.6/go.mod h1:v8dTdLbMG2kIc/vJvl+f65V22dbkXbowE6jgT/gNBxE=
3025
github.com/google/gofuzz v1.0.0/go.mod h1:dBl0BpW6vV/+mYPU4Po3pmUjxk6FQPldtuIdl/M65Eg=
3126
github.com/joho/godotenv v1.4.0 h1:3l4+N6zfMWnkbPEXKng2o2/MR5mSwTrBih4ZEkkz1lg=
3227
github.com/joho/godotenv v1.4.0/go.mod h1:f4LDr5Voq0i2e/R5DDNOoa2zzDfwtkZa6DnEwAbqwq4=
3328
github.com/json-iterator/go v1.1.7/go.mod h1:KdQUCv79m/52Kvf8AW2vK1V8akMuk1QjK/uOdHXbAo4=
3429
github.com/json-iterator/go v1.1.9 h1:9yzud/Ht36ygwatGx56VwCZtlI/2AD15T1X2sjSuGns=
3530
github.com/json-iterator/go v1.1.9/go.mod h1:KdQUCv79m/52Kvf8AW2vK1V8akMuk1QjK/uOdHXbAo4=
36-
github.com/kr/pretty v0.1.0 h1:L/CwN0zerZDmRFUapSPitk6f+Q3+0za1rQkzVuMiMFI=
3731
github.com/kr/pretty v0.1.0/go.mod h1:dAy3ld7l9f0ibDNOQOHHMYYIIbhfbHSm3C4ZsoJORNo=
3832
github.com/kr/pty v1.1.1/go.mod h1:pFQYn66WHrOpPYNljwOMqo10TkYh1fy3cYio2l3bCsQ=
39-
github.com/kr/text v0.1.0 h1:45sCR5RtlFHMR4UwH9sdQ5TC8v0qDQCHnXt+kaKSTVE=
4033
github.com/kr/text v0.1.0/go.mod h1:4Jbv+DJW3UT/LiOwJeYQe1efqtUx/iVham/4vfdArNI=
4134
github.com/leodido/go-urn v1.1.0/go.mod h1:+cyI34gQWZcE1eQU7NVgKkkzdXDQHr1dBMtdAPozLkw=
4235
github.com/leodido/go-urn v1.2.0 h1:hpXL4XnriNwQ/ABnpepYM/1vCLWNDfUNts8dX3xTG6Y=
@@ -50,44 +43,42 @@ github.com/modern-go/reflect2 v0.0.0-20180701023420-4b7aa43c6742 h1:Esafd1046DLD
5043
github.com/modern-go/reflect2 v0.0.0-20180701023420-4b7aa43c6742/go.mod h1:bx2lNnkwVCuqBIxFjflWJWanXIb3RllmbCylyMrvgv0=
5144
github.com/pkg/errors v0.9.1 h1:FEBLx1zS214owpjy7qsBeixbURkuhQAwrK5UwLGTwt4=
5245
github.com/pkg/errors v0.9.1/go.mod h1:bwawxfHBFNV+L2hUp1rHADufV3IMtnDRdf1r5NINEl0=
53-
github.com/pmezard/go-difflib v1.0.0 h1:4DBwDE0NGyQoBHbLQYPwSUPoCMWR5BEzIk/f1lZbAQM=
5446
github.com/pmezard/go-difflib v1.0.0/go.mod h1:iKH77koFhYxTK1pcRnkKkqfTogsbg7gZNVY4sRDYZ/4=
5547
github.com/stretchr/objx v0.1.0/go.mod h1:HFkY916IF+rwdDfMAkV7OtwuqBVzrE8GR6GFx+wExME=
5648
github.com/stretchr/testify v1.3.0/go.mod h1:M5WIy9Dh21IEIfnGCwXGc5bZfKNJtfHm1UVUgZn+9EI=
5749
github.com/stretchr/testify v1.4.0/go.mod h1:j7eGeouHqKxXV5pUuKE4zz7dFj8WfuZ+81PSLYec5m4=
58-
github.com/stretchr/testify v1.7.0 h1:nwc3DEeHmmLAfoZucVR881uASk0Mfjw8xYJ99tb5CcY=
5950
github.com/stretchr/testify v1.7.0/go.mod h1:6Fq8oRcR53rry900zMqJjRRixrwX3KX962/h/Wwjteg=
6051
github.com/ugorji/go v1.1.7 h1:/68gy2h+1mWMrwZFeD1kQialdSzAb432dtpeJ42ovdo=
6152
github.com/ugorji/go v1.1.7/go.mod h1:kZn38zHttfInRq0xu/PH0az30d+z6vm202qpg1oXVMw=
6253
github.com/ugorji/go/codec v1.1.7 h1:2SvQaVZ1ouYrrKKwoSk2pzd4A9evlKJb9oTL+OaLUSs=
6354
github.com/ugorji/go/codec v1.1.7/go.mod h1:Ax+UKWsSmolVDwsd+7N3ZtXu+yMGCf907BLYF3GoBXY=
6455
golang.org/x/crypto v0.0.0-20190308221718-c2843e01d9a2/go.mod h1:djNgcEr1/C05ACkg1iLfiJU5Ep61QUkGW8qpdssI0+w=
6556
golang.org/x/crypto v0.0.0-20200622213623-75b288015ac9/go.mod h1:LzIPMQfyMNhhGPhUkYOs5KpL4U8rLKemX1yGLhDgUto=
66-
golang.org/x/crypto v0.0.0-20210513164829-c07d793c2f9a h1:kr2P4QFmQr29mSLA43kwrOcgcReGTfbE9N577tCTuBc=
67-
golang.org/x/crypto v0.0.0-20210513164829-c07d793c2f9a/go.mod h1:P+XmwS30IXTQdn5tA2iutPOUgjI07+tq3H3K9MVA1s8=
57+
golang.org/x/crypto v0.0.0-20211202192323-5770296d904e h1:MUP6MR3rJ7Gk9LEia0LP2ytiH6MuCfs7qYz+47jGdD8=
58+
golang.org/x/crypto v0.0.0-20211202192323-5770296d904e/go.mod h1:IxCIyHEi3zRg3s0A5j5BB6A9Jmi73HwBIUl50j+osU4=
6859
golang.org/x/net v0.0.0-20190404232315-eb5bcb51f2a3/go.mod h1:t9HGtf8HONx5eT2rtn7q6eTqICYqUVnKs3thJo3Qplg=
69-
golang.org/x/net v0.0.0-20210226172049-e18ecbb05110/go.mod h1:m0MpNAwzfU5UDzcl9v0D8zg8gWTRqZa9RBIspLL5mdg=
60+
golang.org/x/net v0.0.0-20211112202133-69e39bad7dc2/go.mod h1:9nx3DQGgdP8bBQD5qxJ1jj9UTztislL4KSBs9R2vV5Y=
7061
golang.org/x/sys v0.0.0-20190215142949-d0b11bdaac8a/go.mod h1:STP8DvDyc/dI5b8T5hshtkjS+E42TnysNCUPdjciGhY=
7162
golang.org/x/sys v0.0.0-20190412213103-97732733099d/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
7263
golang.org/x/sys v0.0.0-20190813064441-fde4db37ae7a/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
7364
golang.org/x/sys v0.0.0-20200116001909-b77594299b42/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
74-
golang.org/x/sys v0.0.0-20201119102817-f84b799fce68 h1:nxC68pudNYkKU6jWhgrqdreuFiOQWj1Fs7T3VrH4Pjw=
7565
golang.org/x/sys v0.0.0-20201119102817-f84b799fce68/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
66+
golang.org/x/sys v0.0.0-20210423082822-04245dca01da/go.mod h1:h1NjWce9XRLGQEsW7wpKNCjG9DtNlClVuFLEZdDNbEs=
67+
golang.org/x/sys v0.0.0-20210615035016-665e8c7367d1 h1:SrN+KX8Art/Sf4HNj6Zcz06G7VEz+7w9tdXTPOZ7+l4=
68+
golang.org/x/sys v0.0.0-20210615035016-665e8c7367d1/go.mod h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
7669
golang.org/x/term v0.0.0-20201126162022-7de9c90e9dd1/go.mod h1:bj7SfCRtBDWHUb9snDiAeCFNEtKQo2Wmx5Cou7ajbmo=
7770
golang.org/x/text v0.3.0/go.mod h1:NqM8EUOU14njkJ3fqMW+pc6Ldnwhi/IjpwHt7yyuwOQ=
7871
golang.org/x/text v0.3.2/go.mod h1:bEr9sfX3Q8Zfm5fL9x+3itogRgK3+ptLWKqgva+5dAk=
79-
golang.org/x/text v0.3.3/go.mod h1:5Zoc/QRtKVWzQhOtBMvqHzDpF6irO9z98xDceosuGiQ=
72+
golang.org/x/text v0.3.6/go.mod h1:5Zoc/QRtKVWzQhOtBMvqHzDpF6irO9z98xDceosuGiQ=
8073
golang.org/x/tools v0.0.0-20180917221912-90fa682c2a6e/go.mod h1:n7NCudcB/nEzxVGmLbDWY5pfWTLqBcC2KZ6jyYvM4mQ=
8174
golang.org/x/xerrors v0.0.0-20191204190536-9bdfabe68543/go.mod h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0=
8275
gopkg.in/check.v1 v0.0.0-20161208181325-20d25e280405/go.mod h1:Co6ibVJAznAaIkqp8huTwlJQCZ016jof/cbN4VW5Yz0=
83-
gopkg.in/check.v1 v1.0.0-20180628173108-788fd7840127 h1:qIbj1fsPNlZgppZ+VLlY7N33q108Sa+fhmuc+sWQYwY=
8476
gopkg.in/check.v1 v1.0.0-20180628173108-788fd7840127/go.mod h1:Co6ibVJAznAaIkqp8huTwlJQCZ016jof/cbN4VW5Yz0=
8577
gopkg.in/go-playground/assert.v1 v1.2.1/go.mod h1:9RXL0bg/zibRAgZUYszZSwO/z8Y/a8bDuhia5mkpMnE=
8678
gopkg.in/go-playground/validator.v9 v9.29.1/go.mod h1:+c9/zcJMFNgbLvly1L1V+PpxWdVbfP1avr/N00E2vyQ=
87-
gopkg.in/square/go-jose.v2 v2.5.1 h1:7odma5RETjNHWJnR32wx8t+Io4djHE1PqxCFx3iiZ2w=
88-
gopkg.in/square/go-jose.v2 v2.5.1/go.mod h1:M9dMgbHiYLoDGQrXy7OpJDJWiKiU//h+vD76mk0e1AI=
79+
gopkg.in/square/go-jose.v2 v2.6.0 h1:NGk74WTnPKBNUhNzQX7PYcTLUjoq7mzKk2OKbvwk2iI=
80+
gopkg.in/square/go-jose.v2 v2.6.0/go.mod h1:M9dMgbHiYLoDGQrXy7OpJDJWiKiU//h+vD76mk0e1AI=
8981
gopkg.in/yaml.v2 v2.2.2/go.mod h1:hI93XBmqTisBFMUTm0b8Fm+jr3Dg1NNxqwp+5A1VGuI=
9082
gopkg.in/yaml.v2 v2.2.8 h1:obN1ZagJSUGI0Ek/LBmuj4SNLPfIny3KsKFopxRdj10=
9183
gopkg.in/yaml.v2 v2.2.8/go.mod h1:hI93XBmqTisBFMUTm0b8Fm+jr3Dg1NNxqwp+5A1VGuI=
92-
gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c h1:dUUwHk2QECo/6vqA44rthZ8ie2QXMNeKRTHCNY2nXvo=
9384
gopkg.in/yaml.v3 v3.0.0-20200313102051-9f266ea9e77c/go.mod h1:K4uyk7z7BCEPqu6E+C64Yfv1cQ7kz7rIZviUmN+EgEM=

01-Authorization-RS256-BETA/main.go

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ import (
66

77
"github.com/joho/godotenv"
88

9-
"01-Authorization-RS256/router"
9+
"01-Authorization-RS256-BETA/router"
1010
)
1111

1212
func main() {

01-Authorization-RS256-BETA/middleware/jwt.go

Lines changed: 29 additions & 83 deletions
Original file line numberDiff line numberDiff line change
@@ -2,43 +2,27 @@ package middleware
22

33
import (
44
"context"
5-
"encoding/json"
6-
"errors"
7-
"fmt"
85
"log"
96
"net/http"
7+
"net/url"
108
"os"
119
"strings"
10+
"time"
1211

13-
"github.com/auth0/go-jwt-middleware"
14-
"github.com/auth0/go-jwt-middleware/validate/jwt-go"
12+
"github.com/auth0/go-jwt-middleware/v2"
13+
"github.com/auth0/go-jwt-middleware/v2/jwks"
14+
"github.com/auth0/go-jwt-middleware/v2/validator"
1515
"github.com/gin-gonic/gin"
16-
"github.com/golang-jwt/jwt"
1716
)
1817

19-
const signatureAlgorithm = "RS256"
20-
21-
// Ensure our CustomClaims implement the jwtgo.CustomClaims interface.
22-
var _ jwtgo.CustomClaims = &CustomClaims{}
23-
24-
// CustomClaims holds our custom claims for the *jwt.Token.
18+
// CustomClaims contains custom data we want from the token.
2519
type CustomClaims struct {
2620
Scope string `json:"scope"`
27-
jwt.StandardClaims
2821
}
2922

30-
// Validate our *CustomClaims.
31-
func (c CustomClaims) Validate(_ context.Context) error {
32-
expectedAudience := os.Getenv("AUTH0_AUDIENCE")
33-
if c.Audience != expectedAudience {
34-
return fmt.Errorf("token claims validation failed: unexpected audience %q", c.Audience)
35-
}
36-
37-
expectedIssuer := "https://" + os.Getenv("AUTH0_DOMAIN") + "/"
38-
if c.Issuer != expectedIssuer {
39-
return fmt.Errorf("token claims validation failed: unexpected issuer %q", c.Issuer)
40-
}
41-
23+
// Validate does nothing for this example, but we need
24+
// it to satisfy validator.CustomClaims interface.
25+
func (c CustomClaims) Validate(ctx context.Context) error {
4226
return nil
4327
}
4428

@@ -56,29 +40,33 @@ func (c CustomClaims) HasScope(expectedScope string) bool {
5640

5741
// EnsureValidToken is a gin.HandlerFunc middleware that will check the validity of our JWT.
5842
func EnsureValidToken() gin.HandlerFunc {
59-
keyFunc := func(token *jwt.Token) (interface{}, error) {
60-
certificate, err := getPEMCertificate(token)
61-
if err != nil {
62-
return token, err
63-
}
64-
65-
return jwt.ParseRSAPublicKeyFromPEM([]byte(certificate))
43+
issuerURL, err := url.Parse("https://" + os.Getenv("AUTH0_DOMAIN") + "/")
44+
if err != nil {
45+
log.Fatalf("Failed to parse the issuer url: %v", err)
6646
}
6747

68-
customClaims := func() jwtgo.CustomClaims {
69-
return &CustomClaims{}
70-
}
48+
provider := jwks.NewCachingProvider(issuerURL, 5*time.Minute)
7149

72-
validator, err := jwtgo.New(
73-
keyFunc,
74-
signatureAlgorithm,
75-
jwtgo.WithCustomClaims(customClaims),
50+
jwtValidator, err := validator.New(
51+
provider.KeyFunc,
52+
validator.RS256,
53+
issuerURL.String(),
54+
[]string{os.Getenv("AUTH0_AUDIENCE")},
55+
validator.WithCustomClaims(&CustomClaims{}),
56+
validator.WithAllowedClockSkew(time.Minute),
7657
)
7758
if err != nil {
7859
log.Fatalf("Failed to set up the jwt validator")
7960
}
8061

81-
m := jwtmiddleware.New(validator.ValidateToken)
62+
errorHandler := func(w http.ResponseWriter, r *http.Request, err error) {
63+
log.Printf("Encountered error while validating JWT: %v", err)
64+
}
65+
66+
middleware := jwtmiddleware.New(
67+
jwtValidator.ValidateToken,
68+
jwtmiddleware.WithErrorHandler(errorHandler),
69+
)
8270

8371
return func(ctx *gin.Context) {
8472
var encounteredError = true
@@ -88,7 +76,7 @@ func EnsureValidToken() gin.HandlerFunc {
8876
ctx.Next()
8977
}
9078

91-
m.CheckJWT(handler).ServeHTTP(ctx.Writer, ctx.Request)
79+
middleware.CheckJWT(handler).ServeHTTP(ctx.Writer, ctx.Request)
9280

9381
if encounteredError {
9482
ctx.AbortWithStatusJSON(
@@ -98,45 +86,3 @@ func EnsureValidToken() gin.HandlerFunc {
9886
}
9987
}
10088
}
101-
102-
type (
103-
jwks struct {
104-
Keys []jsonWebKeys `json:"keys"`
105-
}
106-
107-
jsonWebKeys struct {
108-
Kty string `json:"kty"`
109-
Kid string `json:"kid"`
110-
Use string `json:"use"`
111-
N string `json:"n"`
112-
E string `json:"e"`
113-
X5c []string `json:"x5c"`
114-
}
115-
)
116-
117-
func getPEMCertificate(token *jwt.Token) (string, error) {
118-
response, err := http.Get("https://" + os.Getenv("AUTH0_DOMAIN") + "/.well-known/jwks.json")
119-
if err != nil {
120-
return "", err
121-
}
122-
defer response.Body.Close()
123-
124-
var jwks jwks
125-
if err = json.NewDecoder(response.Body).Decode(&jwks); err != nil {
126-
return "", err
127-
}
128-
129-
var cert string
130-
for _, key := range jwks.Keys {
131-
if token.Header["kid"] == key.Kid {
132-
cert = "-----BEGIN CERTIFICATE-----\n" + key.X5c[0] + "\n-----END CERTIFICATE-----"
133-
break
134-
}
135-
}
136-
137-
if cert == "" {
138-
return cert, errors.New("unable to find appropriate key")
139-
}
140-
141-
return cert, nil
142-
}

01-Authorization-RS256-BETA/router/router.go

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,11 +3,12 @@ package router
33
import (
44
"net/http"
55

6-
"github.com/auth0/go-jwt-middleware"
6+
"github.com/auth0/go-jwt-middleware/v2"
7+
"github.com/auth0/go-jwt-middleware/v2/validator"
78
"github.com/gin-contrib/cors"
89
"github.com/gin-gonic/gin"
910

10-
"01-Authorization-RS256/middleware"
11+
"01-Authorization-RS256-BETA/middleware"
1112
)
1213

1314
// New sets up our routes and returns a *gin.Engine.
@@ -48,8 +49,9 @@ func New() *gin.Engine {
4849
"/api/private-scoped",
4950
middleware.EnsureValidToken(),
5051
func(ctx *gin.Context) {
51-
claims := ctx.Request.Context().Value(jwtmiddleware.ContextKey{}).(*middleware.CustomClaims)
52+
token := ctx.Request.Context().Value(jwtmiddleware.ContextKey{}).(*validator.ValidatedClaims)
5253

54+
claims := token.CustomClaims.(*middleware.CustomClaims)
5355
if !claims.HasScope("read:messages") {
5456
response := map[string]string{"message": "Insufficient scope."}
5557
ctx.JSON(http.StatusForbidden, response)

0 commit comments

Comments
 (0)