{"id":40471,"date":"2023-01-10T09:08:19","date_gmt":"2023-12-22T01:21:38","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/"},"modified":"2024-04-29T09:20:17","modified_gmt":"2024-04-29T01:20:17","slug":"%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/","title":{"rendered":"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09"},"content":{"rendered":"<h2>\u9996\u5148<\/h2>\n<p>\u672c\u6587\u5c06\u63cf\u8ff0\u5982\u4f55\u5728 Auth0 \u7684 ID Token \u548c Spring Boot \u4e2d\u5b9e\u73b0\u57fa\u4e8e\u89d2\u8272\u7684\u8bbf\u95ee\u63a7\u5236\uff08RBAC\uff09\u7684\u65b9\u6cd5\u3002<\/p>\n<h2>\u5b9e\u73b0\u7684\u65b9\u6cd5<\/h2>\n<p>\u6a21\u4eff MP-JWT\uff0c\u5e76\u5c06\u6743\u9650\u4fe1\u606f\u4f5c\u4e3a\u81ea\u5b9a\u4e49\u58f0\u660e\u6dfb\u52a0\u5230 ID Token \u4e2d\u3002<\/p>\n<h2>\u4e3a Auth0 \u7684 ID Token \u6dfb\u52a0\u6743\u9650\u4fe1\u606f<\/h2>\n<p>\u5728 Auth0 \u7684 ID Token \u4e2d\u4e0d\u9644\u5e26\u6743\u9650\u4fe1\u606f\u3002<br \/>\n\u4f46\u53ef\u4ee5\u901a\u8fc7\u81ea\u5b9a\u4e49\u58f0\u660e\u5c06\u6743\u9650\u4fe1\u606f\u6dfb\u52a0\u5230 ID Token \u4e2d\u3002<\/p>\n<h3>\u5728 Auth0 \u4e2d\u8bbe\u7f6e\u7528\u6237\u3001\u89d2\u8272\u548c\u6743\u9650\u3002<\/h3>\n<p>\u6839\u636eAuth0\u6587\u6863\u7684\u6307\u793a\uff0c\u4e3aAuth0\u7528\u6237\u8bbe\u7f6e\u6743\u9650\u4fe1\u606f\u3002<br \/>\n\u7531\u4e8e\u4e0d\u4f7f\u7528Access Token\uff0c\u56e0\u6b64\u65e0\u9700\u8fdb\u884c\u4e0eAccess Token\u76f8\u5173\u7684\u6743\u9650\u6388\u6743\u8bbe\u7f6e\u3002<\/p>\n<h3>\u5728Auth0\u7684\u8eab\u4efd\u4ee4\u724c\u4e2d\u5b9a\u4e49\u81ea\u5b9a\u4e49\u58f0\u660e<\/h3>\n<p>\u5728Auth0\u7684\u4eea\u8868\u677f\u4e0a\u6253\u5f00\u89c4\u5219\uff0c\u5b9a\u4e49\u5411ID\u4ee4\u724c\u6dfb\u52a0\u81ea\u5b9a\u4e49\u58f0\u660e\u7684\u89c4\u5219\u3002<br \/>\n\u81ea\u5b9a\u4e49\u58f0\u660e\u7684\u540d\u79f0\u5fc5\u987b\u662fURL\u683c\u5f0f\u7684\u5b57\u7b26\u4e32\u3002<br \/>\n\u5728\u672c\u4f8b\u4e2d\uff0c\u540d\u79f0\u4e3ahttp:\/\/example.com\/permissions\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"kd\">function<\/span> <span class=\"p\">(<\/span><span class=\"nx\">user<\/span><span class=\"p\">,<\/span> <span class=\"nx\">context<\/span><span class=\"p\">,<\/span> <span class=\"nx\">callback<\/span><span class=\"p\">)<\/span> <span class=\"p\">{<\/span>\r\n  <span class=\"kd\">var<\/span> <span class=\"nx\">map<\/span> <span class=\"o\">=<\/span> <span class=\"nx\">require<\/span><span class=\"p\">(<\/span><span class=\"dl\">'<\/span><span class=\"s1\">array-map<\/span><span class=\"dl\">'<\/span><span class=\"p\">);<\/span>\r\n  <span class=\"kd\">var<\/span> <span class=\"nx\">ManagementClient<\/span> <span class=\"o\">=<\/span> <span class=\"nx\">require<\/span><span class=\"p\">(<\/span><span class=\"dl\">'<\/span><span class=\"s1\">auth0@2.17.0<\/span><span class=\"dl\">'<\/span><span class=\"p\">).<\/span><span class=\"nx\">ManagementClient<\/span><span class=\"p\">;<\/span>\r\n  <span class=\"kd\">var<\/span> <span class=\"nx\">management<\/span> <span class=\"o\">=<\/span> <span class=\"k\">new<\/span> <span class=\"nx\">ManagementClient<\/span><span class=\"p\">({<\/span>\r\n    <span class=\"na\">token<\/span><span class=\"p\">:<\/span> <span class=\"nx\">auth0<\/span><span class=\"p\">.<\/span><span class=\"nx\">accessToken<\/span><span class=\"p\">,<\/span>\r\n    <span class=\"na\">domain<\/span><span class=\"p\">:<\/span> <span class=\"nx\">auth0<\/span><span class=\"p\">.<\/span><span class=\"nx\">domain<\/span>\r\n  <span class=\"p\">});<\/span>\r\n\r\n  <span class=\"kd\">var<\/span> <span class=\"nx\">params<\/span> <span class=\"o\">=<\/span> <span class=\"p\">{<\/span> <span class=\"na\">id<\/span><span class=\"p\">:<\/span> <span class=\"nx\">user<\/span><span class=\"p\">.<\/span><span class=\"nx\">user_id<\/span><span class=\"p\">,<\/span> <span class=\"na\">page<\/span><span class=\"p\">:<\/span> <span class=\"mi\">0<\/span><span class=\"p\">,<\/span> <span class=\"na\">per_page<\/span><span class=\"p\">:<\/span> <span class=\"mi\">50<\/span><span class=\"p\">,<\/span> <span class=\"na\">include_totals<\/span><span class=\"p\">:<\/span> <span class=\"kc\">true<\/span> <span class=\"p\">};<\/span>\r\n  <span class=\"nx\">management<\/span><span class=\"p\">.<\/span><span class=\"nx\">getUserPermissions<\/span><span class=\"p\">(<\/span><span class=\"nx\">params<\/span><span class=\"p\">,<\/span> <span class=\"kd\">function<\/span> <span class=\"p\">(<\/span><span class=\"nx\">err<\/span><span class=\"p\">,<\/span> <span class=\"nx\">permissions<\/span><span class=\"p\">)<\/span> <span class=\"p\">{<\/span>\r\n    <span class=\"k\">if<\/span> <span class=\"p\">(<\/span><span class=\"nx\">err<\/span><span class=\"p\">)<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"c1\">\/\/ Handle error.<\/span>\r\n      <span class=\"nx\">console<\/span><span class=\"p\">.<\/span><span class=\"nx\">log<\/span><span class=\"p\">(<\/span><span class=\"dl\">'<\/span><span class=\"s1\">err: <\/span><span class=\"dl\">'<\/span><span class=\"p\">,<\/span> <span class=\"nx\">err<\/span><span class=\"p\">);<\/span>\r\n      <span class=\"nx\">callback<\/span><span class=\"p\">(<\/span><span class=\"nx\">err<\/span><span class=\"p\">);<\/span>\r\n    <span class=\"p\">}<\/span> <span class=\"k\">else<\/span> <span class=\"p\">{<\/span>\r\n      <span class=\"kd\">var<\/span> <span class=\"nx\">permissionsArr<\/span> <span class=\"o\">=<\/span> <span class=\"nx\">map<\/span><span class=\"p\">(<\/span><span class=\"nx\">permissions<\/span><span class=\"p\">.<\/span><span class=\"nx\">permissions<\/span><span class=\"p\">,<\/span> <span class=\"kd\">function<\/span> <span class=\"p\">(<\/span><span class=\"nx\">permission<\/span><span class=\"p\">)<\/span> <span class=\"p\">{<\/span>\r\n        <span class=\"k\">return<\/span> <span class=\"nx\">permission<\/span><span class=\"p\">.<\/span><span class=\"nx\">permission_name<\/span><span class=\"p\">;<\/span>\r\n      <span class=\"p\">});<\/span>\r\n      <span class=\"nx\">context<\/span><span class=\"p\">.<\/span><span class=\"nx\">idToken<\/span><span class=\"p\">[<\/span><span class=\"dl\">'<\/span><span class=\"s1\">http:\/\/example.com\/permissions<\/span><span class=\"dl\">'<\/span><span class=\"p\">]<\/span> <span class=\"o\">=<\/span> <span class=\"nx\">permissionsArr<\/span><span class=\"p\">;<\/span>\r\n    <span class=\"p\">}<\/span>\r\n    <span class=\"nx\">callback<\/span><span class=\"p\">(<\/span><span class=\"kc\">null<\/span><span class=\"p\">,<\/span> <span class=\"nx\">user<\/span><span class=\"p\">,<\/span> <span class=\"nx\">context<\/span><span class=\"p\">);<\/span>\r\n  <span class=\"p\">});<\/span>\r\n<span class=\"p\">}<\/span>\r\n\r\n<\/code><\/pre>\n<h2>\u6839\u636eID Token\u7684\u6743\u9650\u4fe1\u606f\uff0c\u5728Spring Security\u4e2d\u8fdb\u884c\u8bbf\u95ee\u63a7\u5236\u3002<\/h2>\n<p>\u4e0b\u9762\u662f\u4e00\u4e2a\u4eceID\u4ee4\u724c\u4e2d\u83b7\u53d6\u9644\u52a0\u7684\u6388\u6743\u4fe1\u606f\uff0c\u5e76\u5c06\u5176\u7528\u4e8e\u8bbf\u95ee\u63a7\u5236\u7684Spring Boot\u5e94\u7528\u7a0b\u5e8f\u5b89\u5168\u914d\u7f6e\u793a\u4f8b\u3002<\/p>\n<h3>\u521b\u5efa\u4e00\u4e2aSpring Boot\u5e94\u7528\u7a0b\u5e8f<\/h3>\n<p>\u4f7f\u7528Spring Initializer\u9009\u62e9\u4ee5\u4e0b\u4f9d\u8d56\u5173\u7cfb\u5e76\u521b\u5efa\u9879\u76ee\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d40f237434c4406c94274\/15-0.png\" alt=\"image.png\" \/><\/div>\n<pre class=\"post-pre\"><code>&lt;dependencies&gt;\r\n    &lt;dependency&gt;\r\n        &lt;groupId&gt;org.springframework.boot&lt;\/groupId&gt;\r\n        &lt;artifactId&gt;spring-boot-starter-web&lt;\/artifactId&gt;\r\n    &lt;\/dependency&gt;\r\n    &lt;dependency&gt;\r\n        &lt;groupId&gt;org.springframework.boot&lt;\/groupId&gt;\r\n        &lt;artifactId&gt;spring-boot-starter-oauth2-resource-server&lt;\/artifactId&gt;\r\n    &lt;\/dependency&gt;\r\n&lt;\/dependencies&gt;\r\n<\/code><\/pre>\n<h3>JWT \u8ba4\u8bc1\u670d\u52a1\u5668\u914d\u7f6e<\/h3>\n<p>\u53ea\u9700\u8981\u4e00\u79cd\u9009\u62e9\uff1a<br \/>\n\u53ef\u4ee5\u4f7f\u7528\u4ec5\u5c5e\u6027\u8bbe\u7f6e\u8ba4\u8bc1\u670d\u52a1\u5668\u7684\u914d\u7f6e\u3002<br \/>\n\u8bbe\u7f6e\u4ee5\u4e0b\u7531Spring Security\u5b9a\u4e49\u7684\u5c5e\u6027\u3002<\/p>\n<div>\n<div class=\"post-table\">\u5c5e\u6027\u8a2d\u5b9a\u5024spring.security.oauth2.resourceserver.jwt.issuer-uri<code>https:\/\/<\/code> \u30d7\u30ec\u30d5\u30a3\u30c3\u30af\u30b9\u3068 <code>\/<\/code> \u30b5\u30d5\u30a3\u30c3\u30af\u30b9\u304c\u4ed8\u3044\u305f Auth0 \u30c9\u30e1\u30a4\u30f3\u3002\u672b\u5c3e <code>\/<\/code> \u3092\u7701\u7565\u3059\u308b\u3068\u52d5\u304b\u306a\u3044\u3002auth0.audienceAuth0 Application \u306e Client ID\u3002<\/div>\n<\/div>\n<pre class=\"post-pre\"><code><span class=\"py\">spring.security.oauth2.resourceserver.jwt.issuer-uri<\/span><span class=\"p\">=<\/span><span class=\"s\">https:\/\/YOUR_DOMAIN\/<\/span>\r\n<span class=\"py\">auth0.audience<\/span><span class=\"p\">=<\/span><span class=\"s\">YOUR_APP_CLIENT_ID<\/span>\r\n<\/code><\/pre>\n<h3>\u81ea\u5b9a\u4e49\u7d22\u8d54\u7684\u83b7\u53d6\u8bbe\u7f6e<\/h3>\n<p>\u83b7\u53d6\u9644\u52a0\u5728 ID Token \u81ea\u5b9a\u4e49\u58f0\u660e\u4e2d\u7684\u6743\u9650\u4fe1\u606f\uff0c\u5e76\u5c06\u5176\u8bbe\u7f6e\u4e3a\u5b89\u5168\u4e3b\u4f53\uff08Security Principal\uff09\u3002<\/p>\n<pre class=\"post-pre\"><code><span class=\"c\">#Auth0 \u306e Rules \u3067\u5b9a\u7fa9\u3057\u305f\u30ab\u30b9\u30bf\u30e0\u30af\u30ec\u30fc\u30e0\u540d\r\n<\/span><span class=\"py\">permissions.claim<\/span><span class=\"p\">=<\/span><span class=\"s\">http:\/\/example.com\/permissions<\/span>\r\n<\/code><\/pre>\n<pre class=\"post-pre\"><code><span class=\"kd\">public<\/span> <span class=\"kd\">class<\/span> <span class=\"nc\">SecurityConfig<\/span> <span class=\"kd\">extends<\/span> <span class=\"nc\">WebSecurityConfigurerAdapter<\/span> <span class=\"o\">{<\/span>\r\n\r\n    <span class=\"nd\">@Value<\/span><span class=\"o\">(<\/span><span class=\"n\">value<\/span> <span class=\"o\">=<\/span> <span class=\"s\">\"${permissions.claim}\"<\/span><span class=\"o\">)<\/span>\r\n    <span class=\"kd\">private<\/span> <span class=\"nc\">String<\/span> <span class=\"n\">permissionsClaim<\/span><span class=\"o\">;<\/span>\r\n\r\n    <span class=\"nd\">@Override<\/span>\r\n    <span class=\"kd\">public<\/span> <span class=\"kt\">void<\/span> <span class=\"nf\">configure<\/span><span class=\"o\">(<\/span><span class=\"nc\">HttpSecurity<\/span> <span class=\"n\">http<\/span><span class=\"o\">)<\/span> <span class=\"kd\">throws<\/span> <span class=\"nc\">Exception<\/span> <span class=\"o\">{<\/span>\r\n\r\n        <span class=\"n\">http<\/span><span class=\"o\">.<\/span><span class=\"na\">authorizeRequests<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">mvcMatchers<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/api\/public\"<\/span><span class=\"o\">).<\/span><span class=\"na\">permitAll<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">mvcMatchers<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/api\/private\"<\/span><span class=\"o\">).<\/span><span class=\"na\">authenticated<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">mvcMatchers<\/span><span class=\"o\">(<\/span><span class=\"s\">\"\/api\/private-scoped\"<\/span><span class=\"o\">).<\/span><span class=\"na\">hasAuthority<\/span><span class=\"o\">(<\/span><span class=\"s\">\"read:messages\"<\/span><span class=\"o\">)<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">and<\/span><span class=\"o\">().<\/span><span class=\"na\">oauth2ResourceServer<\/span><span class=\"o\">().<\/span><span class=\"na\">jwt<\/span><span class=\"o\">()<\/span>\r\n                <span class=\"o\">.<\/span><span class=\"na\">jwtAuthenticationConverter<\/span><span class=\"o\">(<\/span><span class=\"n\">jwt<\/span> <span class=\"o\">-&gt;<\/span> <span class=\"k\">new<\/span> <span class=\"nc\">JwtAuthenticationToken<\/span><span class=\"o\">(<\/span><span class=\"n\">jwt<\/span><span class=\"o\">,<\/span>\r\n                        <span class=\"n\">jwt<\/span><span class=\"o\">.<\/span><span class=\"na\">getClaimAsStringList<\/span><span class=\"o\">(<\/span><span class=\"n\">permissionsClaim<\/span><span class=\"o\">)<\/span>\r\n                                <span class=\"o\">.<\/span><span class=\"na\">stream<\/span><span class=\"o\">()<\/span>\r\n                                <span class=\"o\">.<\/span><span class=\"na\">map<\/span><span class=\"o\">(<\/span><span class=\"nl\">SimpleGrantedAuthority:<\/span><span class=\"o\">:<\/span><span class=\"k\">new<\/span><span class=\"o\">)<\/span>\r\n                                <span class=\"o\">.<\/span><span class=\"na\">collect<\/span><span class=\"o\">(<\/span><span class=\"nc\">Collectors<\/span><span class=\"o\">.<\/span><span class=\"na\">toList<\/span><span class=\"o\">())));<\/span>\r\n    <span class=\"o\">}<\/span>\r\n<span class=\"o\">}<\/span>\r\n<\/code><\/pre>\n<p>\u53ea\u9700\u8981\u4e00\u4e2a\u9009\u9879\uff0c\u8bf7\u539f\u751f\u5730\u7528\u4e2d\u6587\u91cd\u65b0\u8868\u8fbe\u4ee5\u4e0b\u5185\u5bb9\uff1a<br \/>\n\u53ea\u9700\u5b9e\u73b0\u63a7\u5236\u5668\uff0c\u5373\u53ef\u6839\u636e\u5728Auth0\u4e2d\u914d\u7f6e\u7684\u6743\u9650\u4fe1\u606f\u8fdb\u884c\u8bbf\u95ee\u63a7\u5236\u3002<br \/>\n\u53ef\u4ee5\u901a\u8fc7Principal\u8bbf\u95eeID Token\u3002\uff08\u5b9e\u73b0\u7c7b\u5982\u4e0a\u8ff0\u793a\u4f8b\u4e2d\u7684JwtAuthenticationToken\uff09<\/p>\n<h2>\u8bf7\u53c2\u8003<\/h2>\n<p>\u6211\u5728\u672c\u6b21\u6295\u7a3f\u4e2d\u53c2\u8003\u4e86\u4ee5\u4e0b\u8d44\u6599\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Auth0\u306e\u30b3\u30a2\u8a8d\u8a3c\u6a5f\u80fd\u30bb\u30c3\u30c8\u306e\u4f7f\u7528\u65b9\u6cd5 &#8211; Auth0 Docs<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">Spring Security 5 Java API\uff1a\u627f\u8a8d &#8211; Auth0 Docs<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">ID\u30c8\u30fc\u30af\u30f3\u306b\u30e6\u30fc\u30b6\u30fc\u6a29\u9650\u3092\u8ffd\u52a0\u3059\u308b\u306b\u306f\u3069\u3046\u3059\u308c\u3070\u3088\u3044\u3067\u3059\u304b\uff1f &#8211; Auth0 Community<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">OAuth 2.0\/OpenID Connect\u306e2\u3064\u306e\u30c8\u30fc\u30af\u30f3\u306e\u4f7f\u3044\u307f\u3061 &#8211; Qiita<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">MicroProfile JSON Web \u30c8\u30fc\u30af\u30f3\u306e\u69cb\u6210 &#8211; IBM Knowledge Center<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u9996\u5148 \u672c\u6587\u5c06\u63cf\u8ff0\u5982\u4f55\u5728 Auth0 \u7684 ID Token \u548c Spring Boot \u4e2d\u5b9e\u73b0\u57fa\u4e8e\u89d2\u8272\u7684\u8bbf\u95ee\u63a7\u5236 [&hellip;]<\/p>\n","protected":false},"author":9,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-40471","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09 - Blog - Silicon Cloud<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-boot\u548cauth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08rbac\uff09\u3002\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09\" \/>\n<meta property=\"og:description\" content=\"\u9996\u5148 \u672c\u6587\u5c06\u63cf\u8ff0\u5982\u4f55\u5728 Auth0 \u7684 ID Token \u548c Spring Boot \u4e2d\u5b9e\u73b0\u57fa\u4e8e\u89d2\u8272\u7684\u8bbf\u95ee\u63a7\u5236 [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-boot\u548cauth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08rbac\uff09\u3002\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2023-12-22T01:21:38+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-04-29T01:20:17+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d40f237434c4406c94274\/15-0.png\" \/>\n<meta name=\"author\" content=\"\u6e05, \u626c\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u6e05, \u626c\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/\",\"name\":\"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09 - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2023-12-22T01:21:38+00:00\",\"dateModified\":\"2024-04-29T01:20:17+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/cb5556d2501da73d864cac945e8d9461\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/cb5556d2501da73d864cac945e8d9461\",\"name\":\"\u6e05, \u626c\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/32a4239de8ff29adace466261d309424a1e5fe9f7e3036bf89fe03f2e3dbe717?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/32a4239de8ff29adace466261d309424a1e5fe9f7e3036bf89fe03f2e3dbe717?s=96&d=mm&r=g\",\"caption\":\"\u6e05, \u626c\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/qingyang\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09 - Blog - Silicon Cloud","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-boot\u548cauth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08rbac\uff09\u3002\/","og_locale":"zh_CN","og_type":"article","og_title":"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09","og_description":"\u9996\u5148 \u672c\u6587\u5c06\u63cf\u8ff0\u5982\u4f55\u5728 Auth0 \u7684 ID Token \u548c Spring Boot \u4e2d\u5b9e\u73b0\u57fa\u4e8e\u89d2\u8272\u7684\u8bbf\u95ee\u63a7\u5236 [&hellip;]","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/\u4f7f\u7528spring-boot\u548cauth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08rbac\uff09\u3002\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2023-12-22T01:21:38+00:00","article_modified_time":"2024-04-29T01:20:17+00:00","og_image":[{"url":"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657d40f237434c4406c94274\/15-0.png"}],"author":"\u6e05, \u626c","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u6e05, \u626c","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"2 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/","name":"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09 - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2023-12-22T01:21:38+00:00","dateModified":"2024-04-29T01:20:17+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/cb5556d2501da73d864cac945e8d9461"},"breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"\u4f7f\u7528Spring Boot\u548cAuth0\u6765\u5b9e\u73b0\u7b80\u5355\u7684\u8eab\u4efd\u9a8c\u8bc1\u548c\u6388\u6743\uff08RBAC\uff09"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/cb5556d2501da73d864cac945e8d9461","name":"\u6e05, \u626c","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/32a4239de8ff29adace466261d309424a1e5fe9f7e3036bf89fe03f2e3dbe717?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/32a4239de8ff29adace466261d309424a1e5fe9f7e3036bf89fe03f2e3dbe717?s=96&d=mm&r=g","caption":"\u6e05, \u626c"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/qingyang\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e4%bd%bf%e7%94%a8spring-boot%e5%92%8cauth0%e6%9d%a5%e5%ae%9e%e7%8e%b0%e7%ae%80%e5%8d%95%e7%9a%84%e8%ba%ab%e4%bb%bd%e9%aa%8c%e8%af%81%e5%92%8c%e6%8e%88%e6%9d%83%ef%bc%88rbac%ef%bc%89%e3%80%82\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40471","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=40471"}],"version-history":[{"count":2,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40471\/revisions"}],"predecessor-version":[{"id":84404,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/40471\/revisions\/84404"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=40471"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=40471"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=40471"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}