动态生成密匙,防止默认密钥泄露

This commit is contained in:
RuoYi
2021-05-15 21:54:32 +08:00
parent b9b2b866b2
commit 4d55f5df17
3 changed files with 38 additions and 10 deletions

View File

@ -108,8 +108,6 @@ shiro:
httpOnly: true
# 设置Cookie的过期时间天为单位
maxAge: 30
# 设置密钥务必保持唯一性生成方式直接拷贝到main运行即可KeyGenerator keygen = KeyGenerator.getInstance("AES"); SecretKey deskey = keygen.generateKey(); System.out.println(Base64.encodeToString(deskey.getEncoded()));
cipherKey: zSyK5Kp6PZAAjlT+eeNMlg==
session:
# Session超时时间-1代表永不过期默认30分钟
expireTime: 30