Token架构优化:防重放攻击清除token、防重复forceLogout、refreshToken空值防御

This commit is contained in:
2026-04-16 13:12:35 +08:00
parent 8d0ce203ef
commit 5904d209fd
7 changed files with 55 additions and 21 deletions

View File

@@ -27,6 +27,7 @@ CREATE TABLE `sys_user` (
`last_login_time` datetime DEFAULT NULL COMMENT '最后登录时间',
`last_login_ip` varchar(50) DEFAULT NULL COMMENT '最后登录IP',
`token` varchar(500) DEFAULT NULL COMMENT '当前Token',
`refresh_token` varchar(512) DEFAULT NULL COMMENT '刷新Token',
`referral_code` varchar(8) DEFAULT NULL COMMENT '推广码',
`referred_by` bigint(20) DEFAULT NULL COMMENT '推广人用户ID',
`create_time` datetime NOT NULL DEFAULT CURRENT_TIMESTAMP COMMENT '创建时间',
@@ -53,6 +54,7 @@ CREATE TABLE `sys_admin` (
`last_login_time` datetime DEFAULT NULL COMMENT '最后登录时间',
`last_login_ip` varchar(50) DEFAULT NULL COMMENT '最后登录IP',
`token` varchar(500) DEFAULT NULL COMMENT '当前Token',
`refresh_token` varchar(512) DEFAULT NULL COMMENT '刷新Token',
`create_time` datetime NOT NULL DEFAULT CURRENT_TIMESTAMP COMMENT '创建时间',
`update_time` datetime DEFAULT NULL ON UPDATE CURRENT_TIMESTAMP COMMENT '更新时间',
PRIMARY KEY (`id`),