Переглянути джерело

取消代码后端加密改为由前端加密

he.dujuan 3 роки тому
батько
коміт
8cccdcf330

+ 2 - 2
eladmin-system/src/main/java/me/zhengjie/modules/thirdparty/v1/UserApiController.java

@@ -257,8 +257,8 @@ public class UserApiController {
     @AnonymousPostMapping(value = "/edit/zkuser/pass")
     public BaseResponse<Object> editzkuser(@RequestBody QueryPageParams<UserMessage> params) throws Exception{
         SecurityUtils.CheckApiAuth(params);
-        String oldPass = RsaUtils.decryptByPrivateKey(RsaProperties.privateKey, RsaUtils.encryptByPublicKey(RsaProperties.publicKey,params.getQuery().getOldPass()));
-        String newPass = RsaUtils.decryptByPrivateKey(RsaProperties.privateKey,RsaUtils.encryptByPublicKey(RsaProperties.publicKey,params.getQuery().getNewPass()));
+        String oldPass = RsaUtils.decryptByPrivateKey(RsaProperties.privateKey, params.getQuery().getOldPass());
+        String newPass = RsaUtils.decryptByPrivateKey(RsaProperties.privateKey,params.getQuery().getNewPass());
         Map<String,String> map = userRepository.findUserById(params.getQuery().getUserId());
         User user = JSONObject.parseObject(JSONObject.toJSONString(map), User.class);
         if(!passwordEncoder.matches(oldPass, map.get("password"))){