使用JWT认证授权 本章节介绍应用服务网格中使用JWT实现对请求的身份认证 使用JWT认证授权 应用服务网格中使用JWT实现对请求的身份认证,可以进一步配置授权策略,限制对请求的授权。 操作步骤 部署测试应用 参考以上示例部署sleep和httpbin应用,pod列表如下: 配置JWT认证策略: apiVersion: security.istio.io/v1beta1 kind: RequestAuthentication metadata: name: "jwtexample" namespace: bookinfo spec: selector: matchLabels: app: httpbin jwtRules: issuer: "testing@secure.istio.io" jwks: '{ "keys":[ {"e":"AQAB","kid":"DHFbpoIUqrY8t2zpA2qXfCmr5VO5ZEr4RzHUenvvQ","kty":"RSA","n":"xAE7eB6qugXyCAG3yhh7pkDkT65pHymXP7KfIupjf59vsdo91bSP9C8H07pSAGQO1MVxFj9VswgsCg4R6otmg5PV2He95lZdHtOcU5DXIgpbhLdKXbi66GlVeK6ABZOUW3WYtnNHD91gVuoeJTDwtGGcp4ignkgXfkiEm4sw4sfb4qdt5oLbyVpmW6x9cfa7vs2WTfURiCrBoUqgBo4WTiULmmHSGZHOjzwa8WtrtOQGsAFjIbno85jp6MnGGGZPYZbDAab3y5uYpW7ypZrvD8BgtKVjgtQgZhLAGezMt0ua3DRrWnKqTZ0BJEyxOGuHJrLsn00fnMQ"}]}'