What should be a secret key (or an authentication key) that passed to `NewCookieStore()` in `gorilla/sessions`?
Asked Answered
G

1

7

In gorilla/sessions, func NewCookieStore(keyPairs ...[]byte) *CookieStore is a used to create a new CookieStore. But I don't actually know what is a secret key (or an authentication key).

The description had said that :

It is recommended to use an authentication key with 32 or 64 bytes.

Therefore, is this means that I can randomly push any string with length of 32 or 64? How do you choose your authentication key?

Gilkey answered 26/7, 2016 at 13:24 Comment(0)
S
4

From the end of that paragraph in the documentation for NewCookieStore:

Use the convenience function securecookie.GenerateRandomKey() to create strong keys.

Use securecookie.GenerateRandomKey

Shoshana answered 26/7, 2016 at 14:15 Comment(0)

© 2022 - 2024 — McMap. All rights reserved.