├── .gitignore ├── mvnw ├── mvnw.cmd ├── pom.xml └── src ├── main ├── java │ └── com │ │ └── devglan │ │ └── springbootgoogleoauth │ │ ├── SpringBootGoogleOauthApplication.java │ │ ├── common │ │ └── Constants.java │ │ ├── config │ │ ├── JwtAuthenticationEntryPoint.java │ │ ├── JwtAuthenticationFilter.java │ │ └── SecurityConfig.java │ │ ├── controller │ │ ├── AuthController.java │ │ └── UserController.java │ │ ├── dao │ │ └── UserRepository.java │ │ ├── dto │ │ └── GoogleOAuth2UserInfo.java │ │ ├── model │ │ ├── User.java │ │ └── UserType.java │ │ ├── oauth2 │ │ ├── CustomAuthenticationSuccessHandler.java │ │ └── CustomOidcUserService.java │ │ ├── service │ │ ├── UserService.java │ │ └── impl │ │ │ ├── UserDetailServiceImpl.java │ │ │ └── UserServiceImpl.java │ │ └── util │ │ └── JwtTokenUtil.java └── resources │ ├── application.properties │ ├── logback.xml │ ├── static │ └── index.html │ └── templates │ ├── home.html │ └── login.html └── test └── java └── com └── devglan └── springbootgoogleoauth └── SpringBootGoogleOauthApplicationTests.java /.gitignore: -------------------------------------------------------------------------------- 1 | /target/ 2 | !.mvn/wrapper/maven-wrapper.jar 3 | 4 | ### STS ### 5 | .apt_generated 6 | .classpath 7 | .factorypath 8 | .project 9 | .settings 10 | .springBeans 11 | .sts4-cache 12 | 13 | ### IntelliJ IDEA ### 14 | .idea 15 | *.iws 16 | *.iml 17 | *.ipr 18 | 19 | ### NetBeans ### 20 | /nbproject/private/ 21 | /build/ 22 | /nbbuild/ 23 | /dist/ 24 | /nbdist/ 25 | /.nb-gradle/ -------------------------------------------------------------------------------- /mvnw: -------------------------------------------------------------------------------- 1 | #!/bin/sh 2 | # ---------------------------------------------------------------------------- 3 | # Licensed to the Apache Software Foundation (ASF) under one 4 | # or more contributor license agreements. See the NOTICE file 5 | # distributed with this work for additional information 6 | # regarding copyright ownership. The ASF licenses this file 7 | # to you under the Apache License, Version 2.0 (the 8 | # "License"); you may not use this file except in compliance 9 | # with the License. You may obtain a copy of the License at 10 | # 11 | # http://www.apache.org/licenses/LICENSE-2.0 12 | # 13 | # Unless required by applicable law or agreed to in writing, 14 | # software distributed under the License is distributed on an 15 | # "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY 16 | # KIND, either express or implied. See the License for the 17 | # specific language governing permissions and limitations 18 | # under the License. 19 | # ---------------------------------------------------------------------------- 20 | 21 | # ---------------------------------------------------------------------------- 22 | # Maven2 Start Up Batch script 23 | # 24 | # Required ENV vars: 25 | # ------------------ 26 | # JAVA_HOME - location of a JDK home dir 27 | # 28 | # Optional ENV vars 29 | # ----------------- 30 | # M2_HOME - location of maven2's installed home dir 31 | # MAVEN_OPTS - parameters passed to the Java VM when running Maven 32 | # e.g. to debug Maven itself, use 33 | # set MAVEN_OPTS=-Xdebug -Xrunjdwp:transport=dt_socket,server=y,suspend=y,address=8000 34 | # MAVEN_SKIP_RC - flag to disable loading of mavenrc files 35 | # ---------------------------------------------------------------------------- 36 | 37 | if [ -z "$MAVEN_SKIP_RC" ] ; then 38 | 39 | if [ -f /etc/mavenrc ] ; then 40 | . /etc/mavenrc 41 | fi 42 | 43 | if [ -f "$HOME/.mavenrc" ] ; then 44 | . "$HOME/.mavenrc" 45 | fi 46 | 47 | fi 48 | 49 | # OS specific support. $var _must_ be set to either true or false. 50 | cygwin=false; 51 | darwin=false; 52 | mingw=false 53 | case "`uname`" in 54 | CYGWIN*) cygwin=true ;; 55 | MINGW*) mingw=true;; 56 | Darwin*) darwin=true 57 | # Use /usr/libexec/java_home if available, otherwise fall back to /Library/Java/Home 58 | # See https://developer.apple.com/library/mac/qa/qa1170/_index.html 59 | if [ -z "$JAVA_HOME" ]; then 60 | if [ -x "/usr/libexec/java_home" ]; then 61 | export JAVA_HOME="`/usr/libexec/java_home`" 62 | else 63 | export JAVA_HOME="/Library/Java/Home" 64 | fi 65 | fi 66 | ;; 67 | esac 68 | 69 | if [ -z "$JAVA_HOME" ] ; then 70 | if [ -r /etc/gentoo-release ] ; then 71 | JAVA_HOME=`java-config --jre-home` 72 | fi 73 | fi 74 | 75 | if [ -z "$M2_HOME" ] ; then 76 | ## resolve links - $0 may be a link to maven's home 77 | PRG="$0" 78 | 79 | # need this for relative symlinks 80 | while [ -h "$PRG" ] ; do 81 | ls=`ls -ld "$PRG"` 82 | link=`expr "$ls" : '.*-> \(.*\)$'` 83 | if expr "$link" : '/.*' > /dev/null; then 84 | PRG="$link" 85 | else 86 | PRG="`dirname "$PRG"`/$link" 87 | fi 88 | done 89 | 90 | saveddir=`pwd` 91 | 92 | M2_HOME=`dirname "$PRG"`/.. 93 | 94 | # make it fully qualified 95 | M2_HOME=`cd "$M2_HOME" && pwd` 96 | 97 | cd "$saveddir" 98 | # echo Using m2 at $M2_HOME 99 | fi 100 | 101 | # For Cygwin, ensure paths are in UNIX format before anything is touched 102 | if $cygwin ; then 103 | [ -n "$M2_HOME" ] && 104 | M2_HOME=`cygpath --unix "$M2_HOME"` 105 | [ -n "$JAVA_HOME" ] && 106 | JAVA_HOME=`cygpath --unix "$JAVA_HOME"` 107 | [ -n "$CLASSPATH" ] && 108 | CLASSPATH=`cygpath --path --unix "$CLASSPATH"` 109 | fi 110 | 111 | # For Mingw, ensure paths are in UNIX format before anything is touched 112 | if $mingw ; then 113 | [ -n "$M2_HOME" ] && 114 | M2_HOME="`(cd "$M2_HOME"; pwd)`" 115 | [ -n "$JAVA_HOME" ] && 116 | JAVA_HOME="`(cd "$JAVA_HOME"; pwd)`" 117 | # TODO classpath? 118 | fi 119 | 120 | if [ -z "$JAVA_HOME" ]; then 121 | javaExecutable="`which javac`" 122 | if [ -n "$javaExecutable" ] && ! [ "`expr \"$javaExecutable\" : '\([^ ]*\)'`" = "no" ]; then 123 | # readlink(1) is not available as standard on Solaris 10. 124 | readLink=`which readlink` 125 | if [ ! `expr "$readLink" : '\([^ ]*\)'` = "no" ]; then 126 | if $darwin ; then 127 | javaHome="`dirname \"$javaExecutable\"`" 128 | javaExecutable="`cd \"$javaHome\" && pwd -P`/javac" 129 | else 130 | javaExecutable="`readlink -f \"$javaExecutable\"`" 131 | fi 132 | javaHome="`dirname \"$javaExecutable\"`" 133 | javaHome=`expr "$javaHome" : '\(.*\)/bin'` 134 | JAVA_HOME="$javaHome" 135 | export JAVA_HOME 136 | fi 137 | fi 138 | fi 139 | 140 | if [ -z "$JAVACMD" ] ; then 141 | if [ -n "$JAVA_HOME" ] ; then 142 | if [ -x "$JAVA_HOME/jre/sh/java" ] ; then 143 | # IBM's JDK on AIX uses strange locations for the executables 144 | JAVACMD="$JAVA_HOME/jre/sh/java" 145 | else 146 | JAVACMD="$JAVA_HOME/bin/java" 147 | fi 148 | else 149 | JAVACMD="`which java`" 150 | fi 151 | fi 152 | 153 | if [ ! -x "$JAVACMD" ] ; then 154 | echo "Error: JAVA_HOME is not defined correctly." >&2 155 | echo " We cannot execute $JAVACMD" >&2 156 | exit 1 157 | fi 158 | 159 | if [ -z "$JAVA_HOME" ] ; then 160 | echo "Warning: JAVA_HOME environment variable is not set." 161 | fi 162 | 163 | CLASSWORLDS_LAUNCHER=org.codehaus.plexus.classworlds.launcher.Launcher 164 | 165 | # traverses directory structure from process work directory to filesystem root 166 | # first directory with .mvn subdirectory is considered project base directory 167 | find_maven_basedir() { 168 | 169 | if [ -z "$1" ] 170 | then 171 | echo "Path not specified to find_maven_basedir" 172 | return 1 173 | fi 174 | 175 | basedir="$1" 176 | wdir="$1" 177 | while [ "$wdir" != '/' ] ; do 178 | if [ -d "$wdir"/.mvn ] ; then 179 | basedir=$wdir 180 | break 181 | fi 182 | # workaround for JBEAP-8937 (on Solaris 10/Sparc) 183 | if [ -d "${wdir}" ]; then 184 | wdir=`cd "$wdir/.."; pwd` 185 | fi 186 | # end of workaround 187 | done 188 | echo "${basedir}" 189 | } 190 | 191 | # concatenates all lines of a file 192 | concat_lines() { 193 | if [ -f "$1" ]; then 194 | echo "$(tr -s '\n' ' ' < "$1")" 195 | fi 196 | } 197 | 198 | BASE_DIR=`find_maven_basedir "$(pwd)"` 199 | if [ -z "$BASE_DIR" ]; then 200 | exit 1; 201 | fi 202 | 203 | ########################################################################################## 204 | # Extension to allow automatically downloading the maven-wrapper.jar from Maven-central 205 | # This allows using the maven wrapper in projects that prohibit checking in binary data. 206 | ########################################################################################## 207 | if [ -r "$BASE_DIR/.mvn/wrapper/maven-wrapper.jar" ]; then 208 | if [ "$MVNW_VERBOSE" = true ]; then 209 | echo "Found .mvn/wrapper/maven-wrapper.jar" 210 | fi 211 | else 212 | if [ "$MVNW_VERBOSE" = true ]; then 213 | echo "Couldn't find .mvn/wrapper/maven-wrapper.jar, downloading it ..." 214 | fi 215 | jarUrl="https://repo.maven.apache.org/maven2/io/takari/maven-wrapper/0.4.2/maven-wrapper-0.4.2.jar" 216 | while IFS="=" read key value; do 217 | case "$key" in (wrapperUrl) jarUrl="$value"; break ;; 218 | esac 219 | done < "$BASE_DIR/.mvn/wrapper/maven-wrapper.properties" 220 | if [ "$MVNW_VERBOSE" = true ]; then 221 | echo "Downloading from: $jarUrl" 222 | fi 223 | wrapperJarPath="$BASE_DIR/.mvn/wrapper/maven-wrapper.jar" 224 | 225 | if command -v wget > /dev/null; then 226 | if [ "$MVNW_VERBOSE" = true ]; then 227 | echo "Found wget ... using wget" 228 | fi 229 | wget "$jarUrl" -O "$wrapperJarPath" 230 | elif command -v curl > /dev/null; then 231 | if [ "$MVNW_VERBOSE" = true ]; then 232 | echo "Found curl ... using curl" 233 | fi 234 | curl -o "$wrapperJarPath" "$jarUrl" 235 | else 236 | if [ "$MVNW_VERBOSE" = true ]; then 237 | echo "Falling back to using Java to download" 238 | fi 239 | javaClass="$BASE_DIR/.mvn/wrapper/MavenWrapperDownloader.java" 240 | if [ -e "$javaClass" ]; then 241 | if [ ! -e "$BASE_DIR/.mvn/wrapper/MavenWrapperDownloader.class" ]; then 242 | if [ "$MVNW_VERBOSE" = true ]; then 243 | echo " - Compiling MavenWrapperDownloader.java ..." 244 | fi 245 | # Compiling the Java class 246 | ("$JAVA_HOME/bin/javac" "$javaClass") 247 | fi 248 | if [ -e "$BASE_DIR/.mvn/wrapper/MavenWrapperDownloader.class" ]; then 249 | # Running the downloader 250 | if [ "$MVNW_VERBOSE" = true ]; then 251 | echo " - Running MavenWrapperDownloader.java ..." 252 | fi 253 | ("$JAVA_HOME/bin/java" -cp .mvn/wrapper MavenWrapperDownloader "$MAVEN_PROJECTBASEDIR") 254 | fi 255 | fi 256 | fi 257 | fi 258 | ########################################################################################## 259 | # End of extension 260 | ########################################################################################## 261 | 262 | export MAVEN_PROJECTBASEDIR=${MAVEN_BASEDIR:-"$BASE_DIR"} 263 | if [ "$MVNW_VERBOSE" = true ]; then 264 | echo $MAVEN_PROJECTBASEDIR 265 | fi 266 | MAVEN_OPTS="$(concat_lines "$MAVEN_PROJECTBASEDIR/.mvn/jvm.config") $MAVEN_OPTS" 267 | 268 | # For Cygwin, switch paths to Windows format before running java 269 | if $cygwin; then 270 | [ -n "$M2_HOME" ] && 271 | M2_HOME=`cygpath --path --windows "$M2_HOME"` 272 | [ -n "$JAVA_HOME" ] && 273 | JAVA_HOME=`cygpath --path --windows "$JAVA_HOME"` 274 | [ -n "$CLASSPATH" ] && 275 | CLASSPATH=`cygpath --path --windows "$CLASSPATH"` 276 | [ -n "$MAVEN_PROJECTBASEDIR" ] && 277 | MAVEN_PROJECTBASEDIR=`cygpath --path --windows "$MAVEN_PROJECTBASEDIR"` 278 | fi 279 | 280 | WRAPPER_LAUNCHER=org.apache.maven.wrapper.MavenWrapperMain 281 | 282 | exec "$JAVACMD" \ 283 | $MAVEN_OPTS \ 284 | -classpath "$MAVEN_PROJECTBASEDIR/.mvn/wrapper/maven-wrapper.jar" \ 285 | "-Dmaven.home=${M2_HOME}" "-Dmaven.multiModuleProjectDirectory=${MAVEN_PROJECTBASEDIR}" \ 286 | ${WRAPPER_LAUNCHER} $MAVEN_CONFIG "$@" 287 | -------------------------------------------------------------------------------- /mvnw.cmd: -------------------------------------------------------------------------------- 1 | @REM ---------------------------------------------------------------------------- 2 | @REM Licensed to the Apache Software Foundation (ASF) under one 3 | @REM or more contributor license agreements. See the NOTICE file 4 | @REM distributed with this work for additional information 5 | @REM regarding copyright ownership. The ASF licenses this file 6 | @REM to you under the Apache License, Version 2.0 (the 7 | @REM "License"); you may not use this file except in compliance 8 | @REM with the License. You may obtain a copy of the License at 9 | @REM 10 | @REM http://www.apache.org/licenses/LICENSE-2.0 11 | @REM 12 | @REM Unless required by applicable law or agreed to in writing, 13 | @REM software distributed under the License is distributed on an 14 | @REM "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY 15 | @REM KIND, either express or implied. See the License for the 16 | @REM specific language governing permissions and limitations 17 | @REM under the License. 18 | @REM ---------------------------------------------------------------------------- 19 | 20 | @REM ---------------------------------------------------------------------------- 21 | @REM Maven2 Start Up Batch script 22 | @REM 23 | @REM Required ENV vars: 24 | @REM JAVA_HOME - location of a JDK home dir 25 | @REM 26 | @REM Optional ENV vars 27 | @REM M2_HOME - location of maven2's installed home dir 28 | @REM MAVEN_BATCH_ECHO - set to 'on' to enable the echoing of the batch commands 29 | @REM MAVEN_BATCH_PAUSE - set to 'on' to wait for a key stroke before ending 30 | @REM MAVEN_OPTS - parameters passed to the Java VM when running Maven 31 | @REM e.g. to debug Maven itself, use 32 | @REM set MAVEN_OPTS=-Xdebug -Xrunjdwp:transport=dt_socket,server=y,suspend=y,address=8000 33 | @REM MAVEN_SKIP_RC - flag to disable loading of mavenrc files 34 | @REM ---------------------------------------------------------------------------- 35 | 36 | @REM Begin all REM lines with '@' in case MAVEN_BATCH_ECHO is 'on' 37 | @echo off 38 | @REM set title of command window 39 | title %0 40 | @REM enable echoing my setting MAVEN_BATCH_ECHO to 'on' 41 | @if "%MAVEN_BATCH_ECHO%" == "on" echo %MAVEN_BATCH_ECHO% 42 | 43 | @REM set %HOME% to equivalent of $HOME 44 | if "%HOME%" == "" (set "HOME=%HOMEDRIVE%%HOMEPATH%") 45 | 46 | @REM Execute a user defined script before this one 47 | if not "%MAVEN_SKIP_RC%" == "" goto skipRcPre 48 | @REM check for pre script, once with legacy .bat ending and once with .cmd ending 49 | if exist "%HOME%\mavenrc_pre.bat" call "%HOME%\mavenrc_pre.bat" 50 | if exist "%HOME%\mavenrc_pre.cmd" call "%HOME%\mavenrc_pre.cmd" 51 | :skipRcPre 52 | 53 | @setlocal 54 | 55 | set ERROR_CODE=0 56 | 57 | @REM To isolate internal variables from possible post scripts, we use another setlocal 58 | @setlocal 59 | 60 | @REM ==== START VALIDATION ==== 61 | if not "%JAVA_HOME%" == "" goto OkJHome 62 | 63 | echo. 64 | echo Error: JAVA_HOME not found in your environment. >&2 65 | echo Please set the JAVA_HOME variable in your environment to match the >&2 66 | echo location of your Java installation. >&2 67 | echo. 68 | goto error 69 | 70 | :OkJHome 71 | if exist "%JAVA_HOME%\bin\java.exe" goto init 72 | 73 | echo. 74 | echo Error: JAVA_HOME is set to an invalid directory. >&2 75 | echo JAVA_HOME = "%JAVA_HOME%" >&2 76 | echo Please set the JAVA_HOME variable in your environment to match the >&2 77 | echo location of your Java installation. >&2 78 | echo. 79 | goto error 80 | 81 | @REM ==== END VALIDATION ==== 82 | 83 | :init 84 | 85 | @REM Find the project base dir, i.e. the directory that contains the folder ".mvn". 86 | @REM Fallback to current working directory if not found. 87 | 88 | set MAVEN_PROJECTBASEDIR=%MAVEN_BASEDIR% 89 | IF NOT "%MAVEN_PROJECTBASEDIR%"=="" goto endDetectBaseDir 90 | 91 | set EXEC_DIR=%CD% 92 | set WDIR=%EXEC_DIR% 93 | :findBaseDir 94 | IF EXIST "%WDIR%"\.mvn goto baseDirFound 95 | cd .. 96 | IF "%WDIR%"=="%CD%" goto baseDirNotFound 97 | set WDIR=%CD% 98 | goto findBaseDir 99 | 100 | :baseDirFound 101 | set MAVEN_PROJECTBASEDIR=%WDIR% 102 | cd "%EXEC_DIR%" 103 | goto endDetectBaseDir 104 | 105 | :baseDirNotFound 106 | set MAVEN_PROJECTBASEDIR=%EXEC_DIR% 107 | cd "%EXEC_DIR%" 108 | 109 | :endDetectBaseDir 110 | 111 | IF NOT EXIST "%MAVEN_PROJECTBASEDIR%\.mvn\jvm.config" goto endReadAdditionalConfig 112 | 113 | @setlocal EnableExtensions EnableDelayedExpansion 114 | for /F "usebackq delims=" %%a in ("%MAVEN_PROJECTBASEDIR%\.mvn\jvm.config") do set JVM_CONFIG_MAVEN_PROPS=!JVM_CONFIG_MAVEN_PROPS! %%a 115 | @endlocal & set JVM_CONFIG_MAVEN_PROPS=%JVM_CONFIG_MAVEN_PROPS% 116 | 117 | :endReadAdditionalConfig 118 | 119 | SET MAVEN_JAVA_EXE="%JAVA_HOME%\bin\java.exe" 120 | set WRAPPER_JAR="%MAVEN_PROJECTBASEDIR%\.mvn\wrapper\maven-wrapper.jar" 121 | set WRAPPER_LAUNCHER=org.apache.maven.wrapper.MavenWrapperMain 122 | 123 | set DOWNLOAD_URL="https://repo.maven.apache.org/maven2/io/takari/maven-wrapper/0.4.2/maven-wrapper-0.4.2.jar" 124 | FOR /F "tokens=1,2 delims==" %%A IN (%MAVEN_PROJECTBASEDIR%\.mvn\wrapper\maven-wrapper.properties) DO ( 125 | IF "%%A"=="wrapperUrl" SET DOWNLOAD_URL=%%B 126 | ) 127 | 128 | @REM Extension to allow automatically downloading the maven-wrapper.jar from Maven-central 129 | @REM This allows using the maven wrapper in projects that prohibit checking in binary data. 130 | if exist %WRAPPER_JAR% ( 131 | echo Found %WRAPPER_JAR% 132 | ) else ( 133 | echo Couldn't find %WRAPPER_JAR%, downloading it ... 134 | echo Downloading from: %DOWNLOAD_URL% 135 | powershell -Command "(New-Object Net.WebClient).DownloadFile('%DOWNLOAD_URL%', '%WRAPPER_JAR%')" 136 | echo Finished downloading %WRAPPER_JAR% 137 | ) 138 | @REM End of extension 139 | 140 | %MAVEN_JAVA_EXE% %JVM_CONFIG_MAVEN_PROPS% %MAVEN_OPTS% %MAVEN_DEBUG_OPTS% -classpath %WRAPPER_JAR% "-Dmaven.multiModuleProjectDirectory=%MAVEN_PROJECTBASEDIR%" %WRAPPER_LAUNCHER% %MAVEN_CONFIG% %* 141 | if ERRORLEVEL 1 goto error 142 | goto end 143 | 144 | :error 145 | set ERROR_CODE=1 146 | 147 | :end 148 | @endlocal & set ERROR_CODE=%ERROR_CODE% 149 | 150 | if not "%MAVEN_SKIP_RC%" == "" goto skipRcPost 151 | @REM check for post script, once with legacy .bat ending and once with .cmd ending 152 | if exist "%HOME%\mavenrc_post.bat" call "%HOME%\mavenrc_post.bat" 153 | if exist "%HOME%\mavenrc_post.cmd" call "%HOME%\mavenrc_post.cmd" 154 | :skipRcPost 155 | 156 | @REM pause the script if MAVEN_BATCH_PAUSE is set to 'on' 157 | if "%MAVEN_BATCH_PAUSE%" == "on" pause 158 | 159 | if "%MAVEN_TERMINATE_CMD%" == "on" exit %ERROR_CODE% 160 | 161 | exit /B %ERROR_CODE% 162 | -------------------------------------------------------------------------------- /pom.xml: -------------------------------------------------------------------------------- 1 | 2 | 4 | 4.0.0 5 | 6 | org.springframework.boot 7 | spring-boot-starter-parent 8 | 2.1.1.RELEASE 9 | 10 | 11 | com.devglan 12 | spring-boot-google-oauth 13 | 0.0.1-SNAPSHOT 14 | spring-boot-google-oauth 15 | Demo project for Spring Boot 16 | 17 | 18 | 1.8 19 | 20 | 21 | 22 | 23 | org.springframework.boot 24 | spring-boot-starter-data-jpa 25 | 26 | 27 | org.springframework.boot 28 | spring-boot-starter-security 29 | 30 | 31 | org.springframework.boot 32 | spring-boot-starter-web 33 | 34 | 35 | 36 | mysql 37 | mysql-connector-java 38 | runtime 39 | 40 | 41 | org.springframework.security 42 | spring-security-oauth2-client 43 | 44 | 45 | org.springframework.security 46 | spring-security-oauth2-jose 47 | 48 | 49 | io.jsonwebtoken 50 | jjwt 51 | 0.9.0 52 | 53 | 54 | org.webjars 55 | jquery 56 | 2.1.1 57 | 58 | 59 | org.webjars 60 | bootstrap 61 | 3.2.0 62 | 63 | 64 | org.webjars 65 | webjars-locator-core 66 | 67 | 68 | 69 | org.springframework.boot 70 | spring-boot-starter-thymeleaf 71 | 72 | 73 | org.springframework.boot 74 | spring-boot-starter-test 75 | test 76 | 77 | 78 | org.springframework.security 79 | spring-security-test 80 | test 81 | 82 | 83 | 84 | 85 | 86 | 87 | org.springframework.boot 88 | spring-boot-maven-plugin 89 | 90 | 91 | 92 | 93 | 94 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/SpringBootGoogleOauthApplication.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth; 2 | 3 | import org.springframework.boot.SpringApplication; 4 | import org.springframework.boot.autoconfigure.SpringBootApplication; 5 | 6 | @SpringBootApplication 7 | public class SpringBootGoogleOauthApplication { 8 | 9 | public static void main(String[] args) { 10 | SpringApplication.run(SpringBootGoogleOauthApplication.class, args); 11 | } 12 | 13 | } 14 | 15 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/common/Constants.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.common; 2 | 3 | public class Constants { 4 | 5 | public static final long ACCESS_TOKEN_VALIDITY_SECONDS = 5*60*60; 6 | public static final String SIGNING_KEY = "devglan123r"; 7 | public static final String TOKEN_PARAM = "auth_token"; 8 | public static final String homeUrl = "http://localhost:8080/home"; 9 | } 10 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/config/JwtAuthenticationEntryPoint.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.config; 2 | 3 | import org.springframework.security.core.AuthenticationException; 4 | import org.springframework.security.web.AuthenticationEntryPoint; 5 | import org.springframework.stereotype.Component; 6 | 7 | import javax.servlet.http.HttpServletRequest; 8 | import javax.servlet.http.HttpServletResponse; 9 | import java.io.IOException; 10 | import java.io.Serializable; 11 | 12 | @Component 13 | public class JwtAuthenticationEntryPoint implements AuthenticationEntryPoint, Serializable { 14 | 15 | @Override 16 | public void commence(HttpServletRequest request, 17 | HttpServletResponse response, 18 | AuthenticationException authException) throws IOException { 19 | 20 | response.sendRedirect("/auth/custom-login"); 21 | } 22 | } -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/config/JwtAuthenticationFilter.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.config; 2 | 3 | import com.devglan.springbootgoogleoauth.util.JwtTokenUtil; 4 | import io.jsonwebtoken.ExpiredJwtException; 5 | import io.jsonwebtoken.SignatureException; 6 | import org.springframework.beans.factory.annotation.Autowired; 7 | import org.springframework.security.authentication.UsernamePasswordAuthenticationToken; 8 | import org.springframework.security.core.authority.SimpleGrantedAuthority; 9 | import org.springframework.security.core.context.SecurityContextHolder; 10 | import org.springframework.security.core.userdetails.UserDetails; 11 | import org.springframework.security.core.userdetails.UserDetailsService; 12 | import org.springframework.security.web.authentication.WebAuthenticationDetailsSource; 13 | import org.springframework.web.filter.OncePerRequestFilter; 14 | import javax.servlet.FilterChain; 15 | import javax.servlet.ServletException; 16 | import javax.servlet.http.HttpServletRequest; 17 | import javax.servlet.http.HttpServletResponse; 18 | import java.io.IOException; 19 | import java.util.Arrays; 20 | 21 | import static com.devglan.springbootgoogleoauth.common.Constants.*; 22 | 23 | public class JwtAuthenticationFilter extends OncePerRequestFilter { 24 | 25 | @Autowired 26 | private UserDetailsService userDetailsService; 27 | 28 | @Autowired 29 | private JwtTokenUtil jwtTokenUtil; 30 | 31 | @Override 32 | protected void doFilterInternal(HttpServletRequest req, HttpServletResponse res, FilterChain chain) throws IOException, ServletException { 33 | String token = req.getParameter(TOKEN_PARAM); 34 | String username = null; 35 | if (token != null) { 36 | try { 37 | username = jwtTokenUtil.getUsernameFromToken(token); 38 | } catch (IllegalArgumentException e) { 39 | logger.error("an error occured during getting username from token", e); 40 | } catch (ExpiredJwtException e) { 41 | logger.warn("the token is expired and not valid anymore", e); 42 | } catch(SignatureException e){ 43 | logger.error("Authentication Failed. Username or Password not valid."); 44 | } 45 | } else { 46 | logger.warn("couldn't find bearer string, will ignore the header"); 47 | } 48 | if (username != null && SecurityContextHolder.getContext().getAuthentication() == null) { 49 | 50 | UserDetails userDetails = userDetailsService.loadUserByUsername(username); 51 | 52 | if (jwtTokenUtil.validateToken(token, userDetails)) { 53 | UsernamePasswordAuthenticationToken authentication = new UsernamePasswordAuthenticationToken(userDetails, null, Arrays.asList(new SimpleGrantedAuthority("ROLE_ADMIN"))); 54 | authentication.setDetails(new WebAuthenticationDetailsSource().buildDetails(req)); 55 | logger.info("authenticated user " + username + ", setting security context"); 56 | SecurityContextHolder.getContext().setAuthentication(authentication); 57 | } 58 | } 59 | 60 | chain.doFilter(req, res); 61 | } 62 | } -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/config/SecurityConfig.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.config; 2 | 3 | import com.devglan.springbootgoogleoauth.oauth2.CustomAuthenticationSuccessHandler; 4 | import org.springframework.beans.factory.annotation.Autowired; 5 | import org.springframework.context.ApplicationContextAware; 6 | import org.springframework.context.annotation.Bean; 7 | import org.springframework.context.annotation.Configuration; 8 | import org.springframework.security.authentication.AuthenticationManager; 9 | import org.springframework.security.config.annotation.authentication.builders.AuthenticationManagerBuilder; 10 | import org.springframework.security.config.annotation.web.builders.HttpSecurity; 11 | import org.springframework.security.config.annotation.web.configuration.EnableWebSecurity; 12 | import org.springframework.security.config.annotation.web.configuration.WebSecurityConfigurerAdapter; 13 | import org.springframework.security.core.userdetails.UserDetailsService; 14 | import org.springframework.security.crypto.bcrypt.BCryptPasswordEncoder; 15 | import org.springframework.security.oauth2.client.oidc.userinfo.OidcUserService; 16 | import org.springframework.security.oauth2.client.web.AuthorizationRequestRepository; 17 | import org.springframework.security.oauth2.client.web.HttpSessionOAuth2AuthorizationRequestRepository; 18 | import org.springframework.security.oauth2.core.endpoint.OAuth2AuthorizationRequest; 19 | import org.springframework.security.web.authentication.UsernamePasswordAuthenticationFilter; 20 | 21 | @Configuration 22 | @EnableWebSecurity 23 | public class SecurityConfig extends WebSecurityConfigurerAdapter implements ApplicationContextAware { 24 | 25 | @Autowired 26 | private OidcUserService oidcUserService; 27 | 28 | @Autowired 29 | private CustomAuthenticationSuccessHandler customAuthenticationSuccessHandler; 30 | 31 | @Autowired 32 | private UserDetailsService userDetailsService; 33 | 34 | @Autowired 35 | private JwtAuthenticationEntryPoint unauthorizedHandler; 36 | 37 | @Override 38 | @Bean 39 | public AuthenticationManager authenticationManagerBean() throws Exception { 40 | return super.authenticationManagerBean(); 41 | } 42 | 43 | @Autowired 44 | @Override 45 | public void configure(AuthenticationManagerBuilder auth) throws Exception { 46 | auth 47 | .userDetailsService(userDetailsService) 48 | .passwordEncoder(encoder()); 49 | } 50 | 51 | @Bean 52 | public JwtAuthenticationFilter authenticationTokenFilterBean() { 53 | return new JwtAuthenticationFilter(); 54 | } 55 | 56 | @Override 57 | protected void configure(HttpSecurity http) throws Exception { 58 | http.authorizeRequests(). 59 | antMatchers("/auth/**", "/webjars/**").permitAll() 60 | .anyRequest().authenticated() 61 | .and() 62 | .exceptionHandling().authenticationEntryPoint(unauthorizedHandler) 63 | .and() 64 | .oauth2Login() 65 | .loginPage("/auth/custom-login") 66 | .redirectionEndpoint() 67 | .baseUri("/oauth2/callback/*") 68 | .and() 69 | .userInfoEndpoint() 70 | .oidcUserService(oidcUserService) 71 | .and() 72 | .authorizationEndpoint() 73 | .baseUri("/oauth2/authorize") 74 | .authorizationRequestRepository(customAuthorizationRequestRepository()) 75 | .and() 76 | .successHandler(customAuthenticationSuccessHandler); 77 | 78 | http 79 | .addFilterBefore(authenticationTokenFilterBean(), UsernamePasswordAuthenticationFilter.class); 80 | 81 | } 82 | 83 | @Bean 84 | public AuthorizationRequestRepository customAuthorizationRequestRepository() { 85 | return new HttpSessionOAuth2AuthorizationRequestRepository(); 86 | } 87 | 88 | @Bean 89 | public BCryptPasswordEncoder encoder() { 90 | return new BCryptPasswordEncoder(); 91 | } 92 | 93 | 94 | } 95 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/controller/AuthController.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.controller; 2 | 3 | import com.devglan.springbootgoogleoauth.model.User; 4 | import com.devglan.springbootgoogleoauth.service.UserService; 5 | import org.springframework.beans.factory.annotation.Autowired; 6 | import org.springframework.stereotype.Controller; 7 | import org.springframework.web.bind.annotation.*; 8 | import org.springframework.web.util.UriComponentsBuilder; 9 | 10 | import static com.devglan.springbootgoogleoauth.common.Constants.homeUrl; 11 | 12 | @Controller 13 | @RequestMapping("/auth") 14 | public class AuthController { 15 | 16 | @Autowired 17 | private UserService userService; 18 | 19 | @GetMapping("/custom-login") 20 | public String loadLoginPage(){ 21 | return "login"; 22 | } 23 | 24 | @PostMapping("/signup") 25 | public String login(@ModelAttribute("signup") User user){ 26 | String token = userService.signUp(user); 27 | return UriComponentsBuilder.fromUriString(homeUrl) 28 | .queryParam("auth_token", token) 29 | .build().toUriString(); 30 | } 31 | 32 | } 33 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/controller/UserController.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.controller; 2 | 3 | import org.springframework.stereotype.Controller; 4 | import org.springframework.web.bind.annotation.GetMapping; 5 | 6 | @Controller 7 | public class UserController { 8 | 9 | @GetMapping("/home") 10 | public String home(){ 11 | return "home"; 12 | } 13 | } 14 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/dao/UserRepository.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.dao; 2 | 3 | import com.devglan.springbootgoogleoauth.model.User; 4 | import org.springframework.data.jpa.repository.JpaRepository; 5 | import org.springframework.stereotype.Repository; 6 | 7 | @Repository 8 | public interface UserRepository extends JpaRepository { 9 | 10 | User findByEmail(String email); 11 | } 12 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/dto/GoogleOAuth2UserInfo.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.dto; 2 | 3 | public class GoogleOAuth2UserInfo { 4 | 5 | private String id; 6 | private String name; 7 | private String email; 8 | private String imageUrl; 9 | 10 | public String getId() { 11 | return id; 12 | } 13 | 14 | public void setId(String id) { 15 | this.id = id; 16 | } 17 | 18 | public String getName() { 19 | return name; 20 | } 21 | 22 | public void setName(String name) { 23 | this.name = name; 24 | } 25 | 26 | public String getEmail() { 27 | return email; 28 | } 29 | 30 | public void setEmail(String email) { 31 | this.email = email; 32 | } 33 | 34 | public String getImageUrl() { 35 | return imageUrl; 36 | } 37 | 38 | public void setImageUrl(String imageUrl) { 39 | this.imageUrl = imageUrl; 40 | } 41 | } 42 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/model/User.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.model; 2 | 3 | import javax.persistence.*; 4 | 5 | @Entity 6 | @Table(name = "User") 7 | public class User { 8 | 9 | @Id 10 | @Column 11 | @GeneratedValue(strategy = GenerationType.SEQUENCE) 12 | private int id; 13 | @Column 14 | private String name; 15 | @Column 16 | private String email; 17 | @Column 18 | private String imageUrl; 19 | @Column 20 | private UserType userType; 21 | @Column 22 | private String password; 23 | 24 | public int getId() { 25 | return id; 26 | } 27 | 28 | public void setId(int id) { 29 | this.id = id; 30 | } 31 | 32 | public String getName() { 33 | return name; 34 | } 35 | 36 | public void setName(String name) { 37 | this.name = name; 38 | } 39 | 40 | public String getEmail() { 41 | return email; 42 | } 43 | 44 | public void setEmail(String email) { 45 | this.email = email; 46 | } 47 | 48 | public String getImageUrl() { 49 | return imageUrl; 50 | } 51 | 52 | public void setImageUrl(String imageUrl) { 53 | this.imageUrl = imageUrl; 54 | } 55 | 56 | public UserType getUserType() { 57 | return userType; 58 | } 59 | 60 | public void setUserType(UserType userType) { 61 | this.userType = userType; 62 | } 63 | 64 | public String getPassword() { 65 | return password; 66 | } 67 | 68 | public void setPassword(String password) { 69 | this.password = password; 70 | } 71 | } 72 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/model/UserType.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.model; 2 | 3 | public enum UserType { 4 | 5 | google,devglan 6 | } 7 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/oauth2/CustomAuthenticationSuccessHandler.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.oauth2; 2 | 3 | import com.devglan.springbootgoogleoauth.dao.UserRepository; 4 | import com.devglan.springbootgoogleoauth.model.User; 5 | import com.devglan.springbootgoogleoauth.util.JwtTokenUtil; 6 | import org.springframework.beans.factory.annotation.Autowired; 7 | import org.springframework.security.core.Authentication; 8 | import org.springframework.security.oauth2.core.oidc.user.DefaultOidcUser; 9 | import org.springframework.security.web.authentication.SimpleUrlAuthenticationSuccessHandler; 10 | import org.springframework.stereotype.Component; 11 | import org.springframework.web.util.UriComponentsBuilder; 12 | 13 | import javax.servlet.ServletException; 14 | import javax.servlet.http.HttpServletRequest; 15 | import javax.servlet.http.HttpServletResponse; 16 | import java.io.IOException; 17 | import java.util.Map; 18 | 19 | import static com.devglan.springbootgoogleoauth.common.Constants.homeUrl; 20 | 21 | @Component 22 | public class CustomAuthenticationSuccessHandler extends SimpleUrlAuthenticationSuccessHandler { 23 | 24 | @Autowired 25 | private UserRepository userRepository; 26 | 27 | @Autowired 28 | private JwtTokenUtil jwtTokenUtil; 29 | 30 | @Override 31 | public void onAuthenticationSuccess(HttpServletRequest request, HttpServletResponse response, Authentication authentication) throws IOException, ServletException { 32 | if (response.isCommitted()) { 33 | return; 34 | } 35 | DefaultOidcUser oidcUser = (DefaultOidcUser) authentication.getPrincipal(); 36 | Map attributes = oidcUser.getAttributes(); 37 | String email = (String) attributes.get("email"); 38 | User user = userRepository.findByEmail(email); 39 | String token = jwtTokenUtil.generateToken(user); 40 | String redirectionUrl = UriComponentsBuilder.fromUriString(homeUrl) 41 | .queryParam("auth_token", token) 42 | .build().toUriString(); 43 | getRedirectStrategy().sendRedirect(request, response, redirectionUrl); 44 | } 45 | 46 | } 47 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/oauth2/CustomOidcUserService.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.oauth2; 2 | 3 | import com.devglan.springbootgoogleoauth.dao.UserRepository; 4 | import com.devglan.springbootgoogleoauth.dto.GoogleOAuth2UserInfo; 5 | import com.devglan.springbootgoogleoauth.model.User; 6 | import com.devglan.springbootgoogleoauth.model.UserType; 7 | import org.springframework.beans.factory.annotation.Autowired; 8 | import org.springframework.security.core.context.SecurityContext; 9 | import org.springframework.security.oauth2.client.oidc.userinfo.OidcUserRequest; 10 | import org.springframework.security.oauth2.client.oidc.userinfo.OidcUserService; 11 | import org.springframework.security.oauth2.core.OAuth2AuthenticationException; 12 | import org.springframework.security.oauth2.core.oidc.user.OidcUser; 13 | import org.springframework.stereotype.Service; 14 | 15 | import java.util.Map; 16 | 17 | @Service 18 | public class CustomOidcUserService extends OidcUserService { 19 | 20 | @Autowired 21 | private UserRepository userRepository; 22 | 23 | @Override 24 | public OidcUser loadUser(OidcUserRequest userRequest) throws OAuth2AuthenticationException { 25 | OidcUser oidcUser = super.loadUser(userRequest); 26 | Map attributes = oidcUser.getAttributes(); 27 | GoogleOAuth2UserInfo userInfo = new GoogleOAuth2UserInfo(); 28 | userInfo.setEmail((String) attributes.get("email")); 29 | userInfo.setId((String) attributes.get("sub")); 30 | userInfo.setImageUrl((String) attributes.get("picture")); 31 | userInfo.setName((String) attributes.get("name")); 32 | updateUser(userInfo); 33 | 34 | return oidcUser; 35 | } 36 | 37 | private void updateUser(GoogleOAuth2UserInfo userInfo) { 38 | User user = userRepository.findByEmail(userInfo.getEmail()); 39 | if(user == null) { 40 | user = new User(); 41 | } 42 | user.setEmail(userInfo.getEmail()); 43 | user.setImageUrl(userInfo.getImageUrl()); 44 | user.setName(userInfo.getName()); 45 | user.setUserType(UserType.google); 46 | userRepository.save(user); 47 | } 48 | } 49 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/service/UserService.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.service; 2 | 3 | import com.devglan.springbootgoogleoauth.model.User; 4 | 5 | public interface UserService { 6 | String signUp(User user); 7 | } 8 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/service/impl/UserDetailServiceImpl.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.service.impl; 2 | 3 | import com.devglan.springbootgoogleoauth.dao.UserRepository; 4 | import com.devglan.springbootgoogleoauth.model.User; 5 | import org.springframework.beans.factory.annotation.Autowired; 6 | import org.springframework.security.core.authority.SimpleGrantedAuthority; 7 | import org.springframework.security.core.userdetails.UserDetails; 8 | import org.springframework.security.core.userdetails.UserDetailsService; 9 | import org.springframework.security.core.userdetails.UsernameNotFoundException; 10 | import org.springframework.stereotype.Service; 11 | 12 | import java.util.Arrays; 13 | import java.util.List; 14 | 15 | @Service(value = "userDetailsService") 16 | public class UserDetailServiceImpl implements UserDetailsService { 17 | 18 | @Autowired 19 | private UserRepository userRepository; 20 | 21 | public UserDetails loadUserByUsername(String email) throws UsernameNotFoundException { 22 | User user = userRepository.findByEmail(email); 23 | if(user == null){ 24 | throw new UsernameNotFoundException("Invalid username or password."); 25 | } 26 | return new org.springframework.security.core.userdetails.User(user.getEmail(), user.getPassword(), getAuthority()); 27 | } 28 | 29 | private List getAuthority() { 30 | return Arrays.asList(new SimpleGrantedAuthority("ROLE_USER")); 31 | } 32 | } 33 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/service/impl/UserServiceImpl.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.service.impl; 2 | 3 | import com.devglan.springbootgoogleoauth.dao.UserRepository; 4 | import com.devglan.springbootgoogleoauth.model.User; 5 | import com.devglan.springbootgoogleoauth.service.UserService; 6 | import com.devglan.springbootgoogleoauth.util.JwtTokenUtil; 7 | import org.springframework.beans.factory.annotation.Autowired; 8 | import org.springframework.security.crypto.bcrypt.BCryptPasswordEncoder; 9 | import org.springframework.stereotype.Service; 10 | 11 | @Service 12 | public class UserServiceImpl implements UserService { 13 | 14 | @Autowired 15 | private JwtTokenUtil jwtTokenUtil; 16 | 17 | @Autowired 18 | private UserRepository userRepository; 19 | 20 | @Autowired 21 | private BCryptPasswordEncoder bcryptEncoder; 22 | 23 | @Override 24 | public String signUp(User user) { 25 | User dbUser = userRepository.findByEmail(user.getEmail()); 26 | if (dbUser != null) { 27 | throw new RuntimeException("User already exist."); 28 | } 29 | user.setPassword(bcryptEncoder.encode(user.getPassword())); 30 | userRepository.save(user); 31 | return jwtTokenUtil.generateToken(user); 32 | } 33 | } 34 | -------------------------------------------------------------------------------- /src/main/java/com/devglan/springbootgoogleoauth/util/JwtTokenUtil.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth.util; 2 | 3 | import com.devglan.springbootgoogleoauth.model.User; 4 | import io.jsonwebtoken.Claims; 5 | import io.jsonwebtoken.Jwts; 6 | import io.jsonwebtoken.SignatureAlgorithm; 7 | import org.springframework.security.core.authority.SimpleGrantedAuthority; 8 | import org.springframework.security.core.userdetails.UserDetails; 9 | import org.springframework.stereotype.Component; 10 | 11 | import java.io.Serializable; 12 | import java.util.Arrays; 13 | import java.util.Date; 14 | import java.util.function.Function; 15 | 16 | import static com.devglan.springbootgoogleoauth.common.Constants.ACCESS_TOKEN_VALIDITY_SECONDS; 17 | import static com.devglan.springbootgoogleoauth.common.Constants.SIGNING_KEY; 18 | 19 | @Component 20 | public class JwtTokenUtil implements Serializable { 21 | 22 | public String getUsernameFromToken(String token) { 23 | return getClaimFromToken(token, Claims::getSubject); 24 | } 25 | 26 | public Date getExpirationDateFromToken(String token) { 27 | return getClaimFromToken(token, Claims::getExpiration); 28 | } 29 | 30 | public T getClaimFromToken(String token, Function claimsResolver) { 31 | final Claims claims = getAllClaimsFromToken(token); 32 | return claimsResolver.apply(claims); 33 | } 34 | 35 | private Claims getAllClaimsFromToken(String token) { 36 | return Jwts.parser() 37 | .setSigningKey(SIGNING_KEY) 38 | .parseClaimsJws(token) 39 | .getBody(); 40 | } 41 | 42 | private Boolean isTokenExpired(String token) { 43 | final Date expiration = getExpirationDateFromToken(token); 44 | return expiration.before(new Date()); 45 | } 46 | 47 | public String generateToken(User user) { 48 | return doGenerateToken(user.getEmail()); 49 | } 50 | 51 | private String doGenerateToken(String subject) { 52 | 53 | Claims claims = Jwts.claims().setSubject(subject); 54 | claims.put("scopes", Arrays.asList(new SimpleGrantedAuthority("ROLE_ADMIN"))); 55 | 56 | return Jwts.builder() 57 | .setClaims(claims) 58 | .setIssuer("https://devglan.com") 59 | .setIssuedAt(new Date(System.currentTimeMillis())) 60 | .setExpiration(new Date(System.currentTimeMillis() + ACCESS_TOKEN_VALIDITY_SECONDS*1000)) 61 | .signWith(SignatureAlgorithm.HS256, SIGNING_KEY) 62 | .compact(); 63 | } 64 | 65 | public Boolean validateToken(String token, UserDetails userDetails) { 66 | final String username = getUsernameFromToken(token); 67 | return ( 68 | username.equals(userDetails.getUsername()) 69 | && !isTokenExpired(token)); 70 | } 71 | 72 | } -------------------------------------------------------------------------------- /src/main/resources/application.properties: -------------------------------------------------------------------------------- 1 | spring.datasource.url=jdbc:mysql://localhost:3306/test?useSSL=false 2 | spring.datasource.username=root 3 | spring.datasource.password=root 4 | spring.jpa.hibernate.ddl-auto=update 5 | spring.jpa.show-sql=true 6 | spring.jpa.properties.hibernate.dialect=org.hibernate.dialect.MySQL5InnoDBDialect 7 | 8 | spring.security.oauth2.client.registration.google.clientId=150677252870-78tlj6v2mm653alhodqr9t5br5fu5bs0.apps.googleusercontent.com 9 | spring.security.oauth2.client.registration.google.clientSecret=ZptsDAPoVjn7DzVYbzSDNt1v 10 | #spring.security.oauth2.client.registration.google.redirect-uri=http://localhost:8080/login/oauth2/code/google 11 | spring.security.oauth2.client.registration.google.redirect-uri=http://localhost:8080/oauth2/callback/google -------------------------------------------------------------------------------- /src/main/resources/logback.xml: -------------------------------------------------------------------------------- 1 | 2 | 3 | 4 | 5 | %d{yyyy-MM-dd HH:mm:ss} %-5level %logger{36} - %m%n 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | -------------------------------------------------------------------------------- /src/main/resources/static/index.html: -------------------------------------------------------------------------------- 1 | 2 | 3 | 4 | 5 | 6 | Dashboard 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 |
16 |

Welcome !

17 |
18 | 19 | -------------------------------------------------------------------------------- /src/main/resources/templates/home.html: -------------------------------------------------------------------------------- 1 | 2 | 3 | 4 | 5 | 6 | Dashboard 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 |
16 |

Welcome !

17 |
18 | 19 | -------------------------------------------------------------------------------- /src/main/resources/templates/login.html: -------------------------------------------------------------------------------- 1 | 2 | 3 | 4 | 5 | 6 | Dashboard 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 |
17 |

SignUp !

18 |
19 |
20 |

21 |
22 |
23 |

OR

24 |
25 |
26 |
27 | 28 | 29 |
30 |
31 | 32 | 33 |
34 |
35 | 36 | 37 |
38 | 39 | 40 |
41 |
42 |
43 |
44 |
45 | 46 | -------------------------------------------------------------------------------- /src/test/java/com/devglan/springbootgoogleoauth/SpringBootGoogleOauthApplicationTests.java: -------------------------------------------------------------------------------- 1 | package com.devglan.springbootgoogleoauth; 2 | 3 | import org.junit.Test; 4 | import org.junit.runner.RunWith; 5 | import org.springframework.boot.test.context.SpringBootTest; 6 | import org.springframework.test.context.junit4.SpringRunner; 7 | 8 | @RunWith(SpringRunner.class) 9 | @SpringBootTest 10 | public class SpringBootGoogleOauthApplicationTests { 11 | 12 | @Test 13 | public void contextLoads() { 14 | } 15 | 16 | } 17 | 18 | --------------------------------------------------------------------------------