与express.js + passport.js会议(Sessions with express.

2019-08-17 04:38发布

目标

我想做的事:

  • 为用户创建一个会话
  • 套接字创建一个会话( socket.io
  • 使用passport.js认证登录和socket会话。

笔记

我已经安装了MongoStorepassport.socket.io npm's 。 我可以登录并设置cookie登录的用户的( connect.sid


如何设置系统存储socket会和他们夫妇与session的用户?


app.js

  /* The usual express setup */
  passport = require('passport'),
  LocalStrategy = require('passport-local').Strategy,
  User = require('./models/user.js'),
  MongoStore = require('connect-mongo')(express);

app.use(express.cookieParser());
  app.use(express.bodyParser());
  app.use(express.session({
    secret: 'chuck norris', 
    store: new MongoStore({db: User.name}, // the db's name
        function(err) {
          console.log(err || 'connect ok!');
        })
  }));
  app.use(express.methodOverride());
  app.use(passport.initialize());
  app.use(passport.session());
  app.use(app.router);

app.js(护照部分)

passport.use(new LocalStrategy({
    usernameField: 'username',
    passwordField: 'password'
  },
  function(username, password, done) {
    User.findOne({username: username}, function(err, user) {
      if(!user) {
        return done(null, false, {message: 'Incorrect Username!'});
      }
      if(!user.validPassword(password)) {
        return done(null, false, {message: 'Incorrect Password!'});
      }
      return done(null, user);
    });
  }
));


passport.serializeUser(function(user, done) {
  done(null, user.id);
});

passport.deserializeUser(function(id, done) {
  User.findById(id, function(err, user) {
    done(err, user);
  });
});

app.post('/',
  passport.authenticate('local'),
    function(req, res) {
      res.redirect('/home/'+req.user.username);
    });

app.js(socket.io部分)

io.set('authorization', passportSocket.authorize({
  key: 'connect.sid',
  secret: 'chuck norris',
  store: /* Not entirely sure what goes here */
  fail : function(data, accept) { accept(null, false); },
  success: function(data, accept) { accept(null, true); }
}));


io.sockets.on('connection', function(socket) {
  console.log('User Connected: ' + socket.handshake.user.username);
});

Answer 1:

您在新的记忆故事的对象实例存储到一个变量,并将它传递到这两个表达和插座IO像这样。 (注意,我们使用不同的商店,但在理论上它不应该不管你存储,只要使用你通关控制的正确方法)...

var ...
,MemoryStore = express.session.MemoryStore
,sessionStore = new MemoryStore();

然后在app.configure你...

app.use(express.session({store:sessionStore,secret:'secret',key:'express.sid'}));

终于在socket.io配置

io.configure(function (){
io.set("authorization", passportSocketIo.authorize({
    key:    'express.sid',       //the cookie where express (or connect) stores its session id.
    secret: 'secret', //the session secret to parse the cookie
    store:   sessionStore,     //the session store that express uses
    fail: function(data, accept) {
        // console.log("failed");
        // console.log(data);// *optional* callbacks on success or fail
        accept(null, false);             // second param takes boolean on whether or not to allow handshake
    },
    success: function(data, accept) {
      //  console.log("success socket.io auth");
     //   console.log(data);
        accept(null, true);
    }
}));

如果你已经正确地做到了这一点,你的用户成功验证,那么你应该能够访问握手对象的会话数据。

console.log(socket.handshake.user.username);
//or sometimes it might be...
console.log(socket.handshake.user[0].username);

希望帮助。



文章来源: Sessions with express.js + passport.js