首页 文章

NodeJS - Passport本地策略给了我404

提问于
浏览
1

当我尝试使用Passport登录时,我有一个很大的问题 . 我正在使用电子邮件和密码向/ login发送帖子请求 . Passport正确验证它,错误未被调用然后返回res.redirect('/ user')也被调用但它返回404并且不重定向 . 我不知道为什么会这样 . 这是我的代码:

Server (index.js):

const
  express = require('express'),
  app = express(),
  mongoose = require('mongoose'),
  passport = require('passport'),
  cookieSession = require('cookie-session'),
  bodyParser = require('body-parser'),
  keys = require('./config/keys'),
  user = require('./models/User'),
  passportService = require('./services/passport'),
  authRoutes = require('./routes/auth');

mongoose.connect(keys.mongoURI);

app.use(bodyParser.json());
app.use(
  cookieSession({
    maxAge: 15 * 24 * 60 * 60 * 1000,
    keys: [keys.cookieKey]
  })
);
app.use(passport.initialize());
app.use(passport.session());

passportService(passport);

authRoutes(app);

const PORT = process.env.PORT || 5000;
app.listen(PORT, () => {
  console.log(`App listening on port ${PORT}`);
});

passportService (passport.js):

const LocalStrategy = require('passport-local').Strategy;
const mongoose = require('mongoose');
const User = mongoose.model('users');

module.exports = (passport) => {
  passport.serializeUser((user, done) => {
    done(null, user._id);
  });

  passport.deserializeUser((id, done) => {
    User.findById(id).then(user => {
      done(null, user);
    });
  });

  passport.use(
    new LocalStrategy(
    {
      usernameField: 'emailaddr',
      passwordField: 'passwd'
    },
  function(username, password, done) {

  User.findOne({ email: username }, function(err, user) {

    if(err){
      return done(err);
    }
    if(!user) {
      console.log('User not found with email: ', username);
      return done(null, false);
    }
    if(user.password != password) {
      console.log('Invalid password');
      return done(null, false)
    }

    return done(null, user);
  });

}));

}

Authentication route:

const passport = require('passport');

module.exports = app => {

  app.post('/api/login', function(req, res, next) {
  passport.authenticate('local', function(err, user, info) {
    if (err) { return next(err); }
    if (!user) { return res.redirect('/login'); }
    req.logIn(user, function(err) {
      if (err) { return next(err); }
      return res.redirect('/user');
    });
  })(req, res, next);
  });

}

/ user没有路由,因为我在客户端使用React和React Router . 拜托我需要你的帮忙!!!

1 回答

  • 0

    我建议不要在 authenticate 函数上使用自定义回调 . 相反,检查是否在调用api之后,如果您将用户连接到请求对象,则运行身份验证 .

    // calling redirects from your api will be problematic with react router
    // allow your front end to decide what route to call based on the response 
    
    app.post('/api/login', passport.authenticate('local), function(req, res, next) {
      if(req.user) {
          res.json(req.user)
    
      } else {
          //handle errors here, decide what you want to send back to your front end
          //so that it knows the user wasn't found
          res.statusCode = 503;
          res.send({message: 'Not Found'})
      }
    });
    

相关问题