{"id":40021,"date":"2023-07-01T15:19:16","date_gmt":"2022-11-13T06:34:18","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/"},"modified":"2024-04-30T11:30:45","modified_gmt":"2024-04-30T03:30:45","slug":"%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/","title":{"rendered":"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500"},"content":{"rendered":"<h1>\u8ba9\u6211\u4eec\u4f7f\u7528OAuth\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u3002<\/h1>\n<p>\u8fd9\u7bc7\u6587\u7ae0\u8bb2\u8ff0\u4e86\u5982\u4f55\u4f7f\u7528OAuth\u8fdb\u884c\u8ba4\u8bc1\u3002\u867d\u7136OAuth\u901a\u5e38\u7528\u4e8e\u6388\u6743\uff0c\u4f46\u5b9e\u9645\u4e0a\u5b83\u5728\u5f88\u5927\u7a0b\u5ea6\u4e0a\u88ab\u7528\u4e8e\u8eab\u4efd\u9a8c\u8bc1\u3002<br \/>\n\u7b80\u5355\u6765\u8bf4\uff0cOAuth\u7684\u6388\u6743\u5c31\u50cf\u662f\u4ea4\u7ed9\u522b\u4eba\u5bb6\u7684\u5907\u7528\u94a5\u5319\u3002\u5982\u679c\u4f60\u6709\u8fd9\u628a\u94a5\u5319\uff0c\u4f60\u5c31\u53ef\u4ee5\u8fdb\u5165\u522b\u4eba\u5bb6\u91cc\u3002\u4f46\u662f\uff0c\u8fd9\u628a\u94a5\u5319\u7684\u6301\u6709\u8005\u4e0d\u4e00\u5b9a\u662f\u5bb6\u7684\u4e3b\u4eba\u3002\u5982\u679c\u8fd9\u628a\u94a5\u5319\u88ab\u76d7\u4e86\uff0c\u5176\u4ed6\u4eba\u5c31\u80fd\u8fdb\u5165\u5bb6\u91cc\u3002<br \/>\n\u5728OAuth\u4e2d\uff0c\u8fd9\u628a\u94a5\u5319\u88ab\u79f0\u4e3a&#8221;AccessToken&#8221;\uff0c\u901a\u8fc7\u4f20\u9012\u8fd9\u4e2aAccessToken\uff0c\u4e5f\u5c31\u662f\u8fdb\u884cAccessToken\u7684\u53d1\u884c\uff0c\u4f60\u5c31\u53ef\u4ee5\u8fdb\u5165\u522b\u4eba\u5bb6\u91cc\uff0c\u4e5f\u5c31\u662f&#8221;\u53ef\u4ee5\u4f7f\u7528\u8be5\u670d\u52a1\u7684\u4fe1\u606f&#8221;\u3002<br \/>\n\u672c\u6587\u7684\u76ee\u7684\u662f\u901a\u8fc7\u5229\u7528\u8fd9\u4e2a\u673a\u5236\u6765\u5efa\u7acb\u5bf9\u62e5\u6709\u8fd9\u4e2aAccessToken\u7684\u4eba\u7684\u4fe1\u4efb\uff0c\u4ee5\u4fbf\u53ef\u4ee5\u4f7f\u7528\u8be5\u670d\u52a1\u3002\u672c\u7bc7\u6587\u7ae0\u4ec5\u89e3\u91ca\u4e86\u5ba2\u6237\u7aef\u7684\u5904\u7406\u90e8\u5206\u3002<\/p>\n<p>\u6211\u4eec\u73b0\u5728\u7acb\u5373\u4f7f\u7528Spring\u6765\u521b\u5efa\u4e00\u4e2a\u4f7f\u7528\u8fd9\u4e2a\u673a\u5236\u7684Web\u670d\u52a1\u5427\u3002<\/p>\n<h1>\u521b\u5efa\u9879\u76ee<\/h1>\n<h2>\u6625\u5b63\u521d\u59cb\u5316\u5668<\/h2>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d3dec37434c4406c894b7\/5-0.png\" alt=\"2018-03-05.png\" \/><\/div>\n<p>\u6211\u5011\u5c07\u4f7f\u7528SPRING INITIALIZR\u4f86\u5275\u5efa\u9805\u76ee\u3002\u57fa\u672c\u4e0a\u6211\u5011\u5c07\u4f7f\u7528\u5716\u50cf\u8a2d\u7f6e\u4f86\u5275\u5efaGradle\u9805\u76ee\uff0c\u7136\u5f8c\u5728Eclipse\u7b49\u958b\u767c\u5de5\u5177\u4e2d\u5c0e\u5165\u4e26\u9032\u884c\u958b\u767c\u3002\u4f9d\u8cf4\u9805\u76ee\u81f3\u5c11\u9700\u8981Web\u3001Thymeleaf\u3001Spring Security\u548cDevtool\u3002\u6211\u5011\u5c07\u4f7f\u7528Spring Boot\u7248\u672cv1.5\uff08\u8acb\u6ce8\u610f\uff0c\u57282.0\u7248\u672c\u4e2d\uff0c\u5be6\u73fe\u65b9\u6cd5\u6709\u6240\u4e0d\u540c\uff09\u3002<\/p>\n<h2>Slack \u5e94\u7528\u7a0b\u5e8f\u63a5\u53e3<\/h2>\n<p>\u6211\u4eec\u5c06\u4f7f\u7528Slack\u4f5c\u4e3aOAuth\u8ba4\u8bc1\u7684\u670d\u52a1\u3002\u4f3c\u4e4e\u8fd8\u53ef\u4ee5\u4f7f\u7528Google\u3001Facebook\u3001Github\u7b49\u5176\u4ed6\u9009\u9879\u3002<\/p>\n<ul class=\"post-ul\">Slack API<\/ul>\n<p>\u4f60\u4eec\u53ef\u4ee5\u81ea\u884c\u51b3\u5b9a\u5e94\u7528\u7a0b\u5e8f\u7684\u540d\u79f0\u3002<br \/>\n\u8bf7\u4e0d\u8981\u5fd8\u8bb0\u5c06\u91cd\u5b9a\u5411\u76ee\u6807\u8bbe\u7f6e\u4e3ahttp:\/\/localhost:8080\/\u3002<\/p>\n<h2>\u5199\u4ee3\u7801<\/h2>\n<ul class=\"post-ul\">build.gradle<\/ul>\n<p>\u5f53\u60a8\u4f7f\u7528SPRING INITIALIZR\u521b\u5efa\u9879\u76ee\u65f6\uff0c<\/p>\n<pre class=\"post-pre\"><code><span class=\"n\">compile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.security.oauth:spring-security-oauth2'<\/span><span class=\"o\">)<\/span>\r\n<\/code><\/pre>\n<p>\u56e0\u4e3a\u4e4b\u524d\u6ca1\u6709\u6dfb\u52a0\uff0c\u6240\u4ee5\u6211\u52a0\u4e0a\u4e86\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"k\">buildscript<\/span> <span class=\"o\">{<\/span>\r\n    <span class=\"n\">ext<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"n\">springBootVersion<\/span> <span class=\"o\">=<\/span> <span class=\"s1\">'1.5.10.RELEASE'<\/span>\r\n    <span class=\"o\">}<\/span>\r\n    <span class=\"k\">repositories<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"n\">mavenCentral<\/span><span class=\"o\">()<\/span>\r\n    <span class=\"o\">}<\/span>\r\n    <span class=\"k\">dependencies<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"n\">classpath<\/span><span class=\"o\">(<\/span><span class=\"s2\">\"org.springframework.boot:spring-boot-gradle-plugin:${springBootVersion}\"<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"o\">}<\/span>\r\n<span class=\"o\">}<\/span>\r\n\r\n<span class=\"n\">apply<\/span> <span class=\"nl\">plugin:<\/span> <span class=\"s1\">'java'<\/span>\r\n<span class=\"n\">apply<\/span> <span class=\"nl\">plugin:<\/span> <span class=\"s1\">'eclipse'<\/span>\r\n<span class=\"n\">apply<\/span> <span class=\"nl\">plugin:<\/span> <span class=\"s1\">'org.springframework.boot'<\/span>\r\n\r\n<span class=\"n\">group<\/span> <span class=\"o\">=<\/span> <span class=\"s1\">'com.example'<\/span>\r\n<span class=\"n\">version<\/span> <span class=\"o\">=<\/span> <span class=\"s1\">'0.0.1-SNAPSHOT'<\/span>\r\n<span class=\"n\">sourceCompatibility<\/span> <span class=\"o\">=<\/span> <span class=\"mf\">1.8<\/span>\r\n\r\n<span class=\"k\">repositories<\/span> <span class=\"o\">{<\/span>\r\n    <span class=\"n\">mavenCentral<\/span><span class=\"o\">()<\/span>\r\n<span class=\"o\">}<\/span>\r\n\r\n\r\n<span class=\"k\">dependencies<\/span> <span class=\"o\">{<\/span>\r\n    <span class=\"n\">compile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.boot:spring-boot-starter-security'<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"n\">compile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.boot:spring-boot-starter-thymeleaf'<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"n\">compile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.boot:spring-boot-starter-web'<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"n\">compile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.security.oauth:spring-security-oauth2'<\/span><span class=\"o\">)<\/span>  <span class=\"c1\">\/\/ \u8ffd\u52a0<\/span>\r\n    <span class=\"n\">runtime<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.boot:spring-boot-devtools'<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"n\">testCompile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.boot:spring-boot-starter-test'<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"n\">testCompile<\/span><span class=\"o\">(<\/span><span class=\"s1\">'org.springframework.security:spring-security-test'<\/span><span class=\"o\">)<\/span>\r\n<span class=\"o\">}<\/span>\r\n<\/code><\/pre>\n<ul class=\"post-ul\">\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb<\/ul>\n<p>\u8bf7\u4eceSlack API\u83b7\u53d6${Client ID}\u548c${Client Secret}\uff0c\u5e76\u5c06\u5176\u653e\u7f6e\u5728\u5355\u5f15\u53f7\u4e2d\u4ee5\u66ff\u6362\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"na\">security<\/span><span class=\"pi\">:<\/span>\r\n  <span class=\"na\">oauth2<\/span><span class=\"pi\">:<\/span>\r\n    <span class=\"na\">client<\/span><span class=\"pi\">:<\/span> \r\n      <span class=\"na\">clientId<\/span><span class=\"pi\">:<\/span> <span class=\"s1\">'<\/span><span class=\"s\">${Client<\/span> <span class=\"s\">ID}'<\/span> <span class=\"c1\"># \u3053\u3053\u3092\u5909\u66f4\u3001Slack\u306e\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u767b\u9332\u3067\u8868\u793a\u3055\u308c\u305f\u300cClient ID\u300d<\/span>\r\n      <span class=\"na\">clientSecret<\/span><span class=\"pi\">:<\/span> <span class=\"s1\">'<\/span><span class=\"s\">${Client<\/span> <span class=\"s\">Secret}'<\/span> <span class=\"c1\"># \u3053\u3053\u3092\u5909\u66f4\u3001Slack\u306e\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u767b\u9332\u3067\u8868\u793a\u3055\u308c\u305f\u300cClient Secret\u300d<\/span>\r\n      <span class=\"na\">accessTokenUri<\/span><span class=\"pi\">:<\/span> <span class=\"s\">https:\/\/slack.com\/api\/oauth.access<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n      <span class=\"na\">userAuthorizationUri<\/span><span class=\"pi\">:<\/span> <span class=\"s\">https:\/\/slack.com\/oauth\/authorize<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n      <span class=\"na\">authenticationScheme<\/span><span class=\"pi\">:<\/span> <span class=\"s\">query<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n      <span class=\"na\">scope<\/span><span class=\"pi\">:<\/span> <span class=\"s\">identify<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n      <span class=\"na\">tokenName<\/span><span class=\"pi\">:<\/span> <span class=\"s\">token<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n    <span class=\"na\">resource<\/span><span class=\"pi\">:<\/span> \r\n      <span class=\"na\">userInfoUri<\/span><span class=\"pi\">:<\/span> <span class=\"s\">https:\/\/slack.com\/api\/auth.test<\/span> <span class=\"c1\"># Slack\u3092\u5229\u7528\u3059\u308b\u5834\u5408\u306e\u8a2d\u5b9a\u5024<\/span>\r\n  <span class=\"na\">basic<\/span><span class=\"pi\">:<\/span>\r\n    <span class=\"na\">enabled<\/span><span class=\"pi\">:<\/span> <span class=\"no\">false<\/span>\r\n<\/code><\/pre>\n<ul class=\"post-ul\">Controller<\/ul>\n<p>\u4ec5\u5b9e\u73b0\u5bf9TOP\u9875\u9762\u548c\u767b\u5f55\u540e\u7684\u9875\u9762\u7684\u6620\u5c04<\/p>\n<pre class=\"post-pre\"><code><span class=\"kn\">package<\/span> <span class=\"nn\">com.example.Security.OAuth2.test.controller<\/span><span class=\"o\">;<\/span>\r\n\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.stereotype.Controller<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.web.bind.annotation.RequestMapping<\/span><span class=\"o\">;<\/span>\r\n\r\n<span class=\"nd\">@Controller<\/span>\r\n<span class=\"kd\">public<\/span> <span class=\"kd\">class<\/span> <span class=\"nc\">MainController<\/span> <span class=\"o\">{<\/span>\r\n    <span class=\"cm\">\/**\r\n     * Top\u30da\u30fc\u30b8\r\n     * @return\r\n     *\/<\/span>\r\n    <span class=\"nd\">@RequestMapping<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/\"<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"kd\">public<\/span> <span class=\"nc\">String<\/span> <span class=\"nf\">index<\/span><span class=\"o\">()<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"k\">return<\/span> <span class=\"s\">\"index\"<\/span><span class=\"o\">;<\/span>\r\n    <span class=\"o\">}<\/span>\r\n\r\n\r\n    <span class=\"cm\">\/**\r\n     * \u30ed\u30b0\u30a4\u30f3\u5f8c\u306e\u30da\u30fc\u30b8\r\n     * @return\r\n     *\/<\/span>\r\n    <span class=\"nd\">@RequestMapping<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/hoge\"<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"kd\">public<\/span> <span class=\"nc\">String<\/span> <span class=\"nf\">hoge<\/span><span class=\"o\">()<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"k\">return<\/span> <span class=\"s\">\"hoge\"<\/span><span class=\"o\">;<\/span>\r\n    <span class=\"o\">}<\/span>\r\n<span class=\"o\">}<\/span>\r\n<\/code><\/pre>\n<ul class=\"post-ul\">Config<\/ul>\n<p>\u672c\u6765\u5e94\u8be5\u542f\u7528CSRF\u8bbe\u7f6e\uff0c\u4f46\u7531\u4e8e\u8fd9\u6b21\u662f\u6d4b\u8bd5\u73af\u5883\uff0c\u6240\u4ee5\u5df2\u7ecf\u7981\u7528\u4e86\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"kn\">package<\/span> <span class=\"nn\">com.example.Security.OAuth2.test.config<\/span><span class=\"o\">;<\/span>\r\n\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.boot.autoconfigure.security.oauth2.client.EnableOAuth2Sso<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.security.config.annotation.web.builders.HttpSecurity<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.security.config.annotation.web.builders.WebSecurity<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.security.config.annotation.web.configuration.EnableWebSecurity<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter<\/span><span class=\"o\">;<\/span>\r\n<span class=\"kn\">import<\/span> <span class=\"nn\">org.springframework.security.web.util.matcher.AntPathRequestMatcher<\/span><span class=\"o\">;<\/span>\r\n\r\n<span class=\"nd\">@EnableWebSecurity<\/span>\r\n<span class=\"nd\">@EnableOAuth2Sso<\/span>\r\n<span class=\"kd\">public<\/span> <span class=\"kd\">class<\/span> <span class=\"nc\">WebSecurityConfig<\/span> <span class=\"kd\">extends<\/span> <span class=\"nc\">WebSecurityConfigurerAdapter<\/span> <span class=\"o\">{<\/span>\r\n\r\n    <span class=\"nd\">@Override<\/span>\r\n    <span class=\"kd\">public<\/span> <span class=\"kt\">void<\/span> <span class=\"nf\">configure<\/span><span class=\"o\">(<\/span><span class=\"nc\">WebSecurity<\/span> <span class=\"n\">web<\/span><span class=\"o\">)<\/span> <span class=\"kd\">throws<\/span> <span class=\"nc\">Exception<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"c1\">\/\/ \u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8a2d\u5b9a\u3092\u7121\u8996\u3059\u308b\u30ea\u30af\u30a8\u30b9\u30c8\u306e\u8a2d\u5b9a<\/span>\r\n        <span class=\"c1\">\/\/ \u9759\u7684\u30ea\u30bd\u30fc\u30b9(images\u3001css\u3001javascript)\u3092\u7121\u8996\u3059\u308b\u8a2d\u5b9a\u3092\u8a18\u8ff0<\/span>\r\n        <span class=\"n\">web<\/span><span class=\"o\">.<\/span><span class=\"na\">ignoring<\/span><span class=\"o\">().<\/span><span class=\"na\">antMatchers<\/span><span class=\"o\">(<\/span>\r\n                            <span class=\"s\">\"\/images\/**\"<\/span><span class=\"o\">,<\/span>\r\n                            <span class=\"s\">\"\/css\/**\"<\/span><span class=\"o\">,<\/span>\r\n                            <span class=\"s\">\"\/javascript\/**\"<\/span><span class=\"o\">,<\/span>\r\n                            <span class=\"s\">\"\/webjars\/**\"<\/span><span class=\"o\">);<\/span>\r\n    <span class=\"o\">}<\/span>\r\n    <span class=\"nd\">@Override<\/span>\r\n    <span class=\"kd\">protected<\/span> <span class=\"kt\">void<\/span> <span class=\"nf\">configure<\/span><span class=\"o\">(<\/span><span class=\"nc\">HttpSecurity<\/span> <span class=\"n\">http<\/span><span class=\"o\">)<\/span> <span class=\"kd\">throws<\/span> <span class=\"nc\">Exception<\/span> <span class=\"o\">{<\/span>\r\n        <span class=\"n\">http<\/span>\r\n            <span class=\"o\">.<\/span><span class=\"na\">csrf<\/span><span class=\"o\">().<\/span><span class=\"na\">disable<\/span><span class=\"o\">()<\/span> <span class=\"c1\">\/\/ CSRF\u5bfe\u7b56\u3092\u7121\u52b9\u5316<\/span>\r\n            <span class=\"o\">.<\/span><span class=\"na\">authorizeRequests<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"c1\">\/\/ index\u306f\u30a2\u30af\u30bb\u30b9\u3092\u8a31\u53ef<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">antMatchers<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/\"<\/span><span class=\"o\">).<\/span><span class=\"na\">permitAll<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">anyRequest<\/span><span class=\"o\">().<\/span><span class=\"na\">authenticated<\/span><span class=\"o\">()<\/span>\r\n            <span class=\"o\">.<\/span><span class=\"na\">and<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">logout<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">logoutRequestMatcher<\/span><span class=\"o\">(<\/span><span class=\"k\">new<\/span> <span class=\"nc\">AntPathRequestMatcher<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/logout**\"<\/span><span class=\"o\">))<\/span>       <span class=\"c1\">\/\/ \u30ed\u30b0\u30a2\u30a6\u30c8\u51e6\u7406\u306e\u30d1\u30b9<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">logoutSuccessUrl<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/\"<\/span><span class=\"o\">)<\/span>\r\n                <span class=\"c1\">\/\/ \u30ed\u30b0\u30a2\u30a6\u30c8\u6642\u306b\u524a\u9664\u3059\u308b\u30af\u30c3\u30ad\u30fc\u540d<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">deleteCookies<\/span><span class=\"o\">(<\/span><span class=\"s\">\"JSESSIONID\"<\/span><span class=\"o\">)<\/span>\r\n                <span class=\"c1\">\/\/ \u30ed\u30b0\u30a2\u30a6\u30c8\u6642\u306e\u30bb\u30c3\u30b7\u30e7\u30f3\u7834\u68c4\u3092\u6709\u52b9\u5316<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">invalidateHttpSession<\/span><span class=\"o\">(<\/span><span class=\"kc\">true<\/span><span class=\"o\">)<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">permitAll<\/span><span class=\"o\">();<\/span>\r\n\r\n    <span class=\"o\">}<\/span>\r\n\r\n<span class=\"o\">}<\/span>\r\n<\/code><\/pre>\n<ul class=\"post-ul\">html files<\/ul>\n<p>\u53ea\u9700\u63cf\u8ff0\u767b\u5f55\u548c\u767b\u51fa\u7684\u8f6c\u6362\u9875\u9762\u3002<br \/>\n\u4f3c\u4e4e\u767b\u51fa\u9700\u8981\u4f7f\u7528POST\u65b9\u5f0f\u53d1\u9001\u3002(\u56e0\u4e3a\u9690\u85cf\u5b57\u6bb5\u4f1a\u5c06CSRF\u503c\u4e00\u8d77\u53d1\u9001\uff1f)<\/p>\n<pre class=\"post-pre\"><code><span class=\"cp\">&lt;!DOCTYPE html&gt;<\/span>\r\n<span class=\"nt\">&lt;html<\/span> <span class=\"na\">xmlns:th=<\/span><span class=\"s\">\"http:\/\/www.thymeleaf.org\"<\/span><span class=\"nt\">&gt;<\/span>\r\n<span class=\"nt\">&lt;head&gt;<\/span>\r\n<span class=\"nt\">&lt;meta<\/span> <span class=\"na\">charset=<\/span><span class=\"s\">\"UTF-8\"<\/span> <span class=\"nt\">\/&gt;<\/span>\r\n<span class=\"nt\">&lt;title&gt;<\/span>Security OAuth2 Test<span class=\"nt\">&lt;\/title&gt;<\/span>\r\n<span class=\"nt\">&lt;\/head&gt;<\/span>\r\n<span class=\"nt\">&lt;body&gt;<\/span>\r\n<span class=\"nt\">&lt;h1&gt;<\/span>Hello, Index<span class=\"nt\">&lt;\/h1&gt;<\/span>\r\n\r\n<span class=\"nt\">&lt;a<\/span> <span class=\"na\">href=<\/span><span class=\"s\">\"\/hoge\"<\/span><span class=\"nt\">&gt;<\/span>Login<span class=\"nt\">&lt;\/a&gt;<\/span>\r\n\r\n<span class=\"nt\">&lt;\/body&gt;<\/span>\r\n<span class=\"nt\">&lt;\/html&gt;<\/span>\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code><span class=\"cp\">&lt;!DOCTYPE html&gt;<\/span>\r\n<span class=\"nt\">&lt;html<\/span> <span class=\"na\">xmlns:th=<\/span><span class=\"s\">\"http:\/\/www.thymeleaf.org\"<\/span><span class=\"nt\">&gt;<\/span>\r\n<span class=\"nt\">&lt;head&gt;<\/span>\r\n<span class=\"nt\">&lt;meta<\/span> <span class=\"na\">charset=<\/span><span class=\"s\">\"UTF-8\"<\/span> <span class=\"nt\">\/&gt;<\/span>\r\n<span class=\"nt\">&lt;title&gt;<\/span>Security OAuth2 Test<span class=\"nt\">&lt;\/title&gt;<\/span>\r\n<span class=\"nt\">&lt;\/head&gt;<\/span>\r\n<span class=\"nt\">&lt;body&gt;<\/span>\r\n<span class=\"nt\">&lt;h1&gt;<\/span>Hello, Hoge<span class=\"nt\">&lt;\/h1&gt;<\/span>\r\n\r\n<span class=\"nt\">&lt;form<\/span> <span class=\"na\">action=<\/span><span class=\"s\">\"#\"<\/span> <span class=\"na\">th:action=<\/span><span class=\"s\">\"@{\/logout}\"<\/span> <span class=\"na\">method=<\/span><span class=\"s\">\"post\"<\/span><span class=\"nt\">&gt;<\/span>\r\n    <span class=\"nt\">&lt;button<\/span> <span class=\"na\">type=<\/span><span class=\"s\">\"submit\"<\/span> <span class=\"na\">value=<\/span><span class=\"s\">\"POST\"<\/span> <span class=\"nt\">&gt;<\/span>Logout<span class=\"nt\">&lt;\/button&gt;<\/span>\r\n<span class=\"nt\">&lt;\/form&gt;<\/span>\r\n\r\n<span class=\"nt\">&lt;\/body&gt;<\/span>\r\n<span class=\"nt\">&lt;\/html&gt;<\/span>\r\n<\/code><\/pre>\n<p>\u6211\u5df2\u7ecf\u5728GitHub\u4e0a\u516c\u5f00\u4e86\u8fd9\u6b21\u7684\u6e90\u4ee3\u7801\u3002Spring-OAuth2\u3002<\/p>\n<h1>\u8bf7\u53c2\u8003\u4ee5\u4e0b\u7f51\u7ad9<\/h1>\n<ul class=\"post-ul\">Spring Boot\u3067OAuth\u30ed\u30b0\u30a4\u30f3\u3068API\u3078\u306e\u30a2\u30af\u30bb\u30b9\u5236\u9650\u3092\u5b9f\u73fe\u3059\u308b<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u8ba9\u6211\u4eec\u4f7f\u7528OAuth\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u3002 \u8fd9\u7bc7\u6587\u7ae0\u8bb2\u8ff0\u4e86\u5982\u4f55\u4f7f\u7528OAuth\u8fdb\u884c\u8ba4\u8bc1\u3002\u867d\u7136OAuth\u901a\u5e38\u7528\u4e8e\u6388\u6743\uff0c\u4f46\u5b9e [&hellip;]<\/p>\n","protected":false},"author":8,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-40021","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500 - Blog - Silicon Cloud<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-security\u7684oauth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\" \/>\n<meta property=\"og:description\" content=\"\u8ba9\u6211\u4eec\u4f7f\u7528OAuth\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u3002 \u8fd9\u7bc7\u6587\u7ae0\u8bb2\u8ff0\u4e86\u5982\u4f55\u4f7f\u7528OAuth\u8fdb\u884c\u8ba4\u8bc1\u3002\u867d\u7136OAuth\u901a\u5e38\u7528\u4e8e\u6388\u6743\uff0c\u4f46\u5b9e [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-security\u7684oauth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2022-11-13T06:34:18+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-04-30T03:30:45+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d3dec37434c4406c894b7\/5-0.png\" \/>\n<meta name=\"author\" content=\"\u96c5, \u609f\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u96c5, \u609f\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/\",\"name\":\"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500 - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2022-11-13T06:34:18+00:00\",\"dateModified\":\"2024-04-30T03:30:45+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\",\"name\":\"\u96c5, \u609f\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"caption\":\"\u96c5, \u609f\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500 - Blog - Silicon Cloud","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-security\u7684oauth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\/","og_locale":"zh_CN","og_type":"article","og_title":"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500","og_description":"\u8ba9\u6211\u4eec\u4f7f\u7528OAuth\u8fdb\u884c\u8eab\u4efd\u9a8c\u8bc1\u3002 \u8fd9\u7bc7\u6587\u7ae0\u8bb2\u8ff0\u4e86\u5982\u4f55\u4f7f\u7528OAuth\u8fdb\u884c\u8ba4\u8bc1\u3002\u867d\u7136OAuth\u901a\u5e38\u7528\u4e8e\u6388\u6743\uff0c\u4f46\u5b9e [&hellip;]","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-security\u7684oauth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2022-11-13T06:34:18+00:00","article_modified_time":"2024-04-30T03:30:45+00:00","og_image":[{"url":"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d3dec37434c4406c894b7\/5-0.png"}],"author":"\u96c5, \u609f","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u96c5, \u609f","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"2 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/","name":"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500 - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2022-11-13T06:34:18+00:00","dateModified":"2024-04-30T03:30:45+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6"},"breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"\u4f7f\u7528Spring Security\u7684OAuth2\u8fdb\u884c\u767b\u5f55\u548c\u6ce8\u9500"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6","name":"\u96c5, \u609f","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","caption":"\u96c5, \u609f"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-security%e7%9a%84oauth2%e8%bf%9b%e8%a1%8c%e7%99%bb%e5%bd%95%e5%92%8c%e6%b3%a8%e9%94%80\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40021","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=40021"}],"version-history":[{"count":2,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40021\/revisions"}],"predecessor-version":[{"id":91647,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40021\/revisions\/91647"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=40021"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=40021"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=40021"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}