Comments (6)
Will take care to add it to the README this week (now leaving till Friday)
from jwt.
Hi @lil5 very good point, will take care of it. Also feel free to PR if you want to 😉
from jwt.
If this is not a PR of this projects scope I guess a warning on the readme would be good.
Maybe something like:
⚠️ Create a key for HS256 of at least 256 bits!
the RFC7518 standard states that "A key of the same size as the hash output (for instance, 256 bits for "HS256") or larger MUST be used with this algorithm."tldr; Create your key for HS256 of 32 bytes (256 bits) long using
crypto/random
from jwt.
@cristaloleg reminder 😉
from jwt.
Ouch...
from jwt.
Done and v4 finally released. I'm really sorry for the delay but shit happens.
from jwt.
Related Issues (20)
- docs: example code: token.Bytes undefined HOT 3
- Key size check in getHashRS() in algo_rs.go is invalid HOT 4
- The jwt format is incorrect and panic directly HOT 13
- JWK Set jwt.Verifier implementation HOT 7
- Crypto Go :we are a research group to help developers build secure applications. HOT 3
- IsValidAt with CustomClaims ? HOT 3
- Version v5.2.0 is breaking our code HOT 11
- Document Parse & ErrNotJWTType relation in GUIDE.md
- Rewrite fuzzing test with a new Go fuzzer from Go 1.19
- Add PASETO note in README
- Add Parsing tests
- Go Version Inconsistency HOT 2
- Where should I give the secret on validation? HOT 8
- Optimisation causing incorrect header to encode HOT 3
- v2 preparations HOT 3
- Slow Sign HOT 18
- Cannot find package "github.com/cristalhq/jwt/v3" HOT 3
- KeyID support for RFC7517 HOT 1
- Error in readme -> Parse and verify token exemple HOT 2
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from jwt.