passport.js反序列化确定,但身份验证无效

时间:2014-09-24 12:42:28

标签: express passport.js

我有一个可用的开发版本,甚至我的测试版本一直工作到最近。验证有时会起作用,但主要是验证失败了req.isAuthenticated()。

server.js:

var express  = require('express');
var app      = express();
var port     = PORTS[ENVIRONMENT];

var passport = require('passport');

var morgan       = require('morgan');
var cookieParser = require('cookie-parser');
var bodyParser   = require('body-parser');
var session      = require('express-session');

var passportConfigs = require('./config/passport');
var routes = require('./routes.js');

// App setup
app.use("/", express.static(__dirname + '/public/'));

// configuration ===============================================================
/* open mongo connection */
require('./database/' + ENVIRONMENT + '.js');

/* === passport configs === */
passportConfigs(passport, ENVIRONMENT);

// set up our express application
app.use(morgan(morganEnv)); // log every request to the console
app.use(cookieParser()); // read cookies (needed for auth)
//app.use(bodyParser.json());
app.use(bodyParser.urlencoded({
    extended: true
})); // get information from html forms

app.set('view engine', 'ejs'); // set up ejs for templating

// required for passport
app.use(session({
   secret: '********' ,
   resave: false,
   saveUninitialized: false
}));
app.use(passport.initialize());   
app.use(passport.session()); // persistent login sessions

护照序列化:

passport.deserializeUser(function(id, done) {
  userQueries.findID(id)
     .then(function(user) {

        var firebaseRef = firebaseRefMod(user, environment).ref;
        if(!firebaseRef) {
           throw new Error('problem with generating firebase reference, dunno why!');
        }
        console.log("UserFirst:", { userData: filterUserData( user ), FBRef: firebaseRef })
        done(null, { userData: filterUserData( user ), FBRef: firebaseRef } );
     }).then(null, function(err) {
        console.log(err);
        done(err, null);
     });
});

路线:

app.post('/auth', isLoggedIn, function(req, res) {
  console.log("req", req.user)
  res.status(200).send({ "authKey": authGenerator.createToken(authGenerator.types.NORMAL, req.user.userData) , "user": req.user.userData } );
});
function isLoggedIn(req, res, next) {
  console.log("userIn", req.isAuthenticated())
  // if user is authenticated in the session, carry on
  if (req.isAuthenticated())
    return next();

  // if they aren't redirect them to the home page
  errorInRestRequest(res, errorCodes.userNotAuthenticated, req.user);
  return false;
}

所以基本上如果身份验证成功,isLoggedIn-function可以访问req.user中的用户数据。即使身份验证不成功,每次通过“console.log”(“UserFirst:”...条目)验证时,用户都会被反序列化而没有问题,但req.user在到达isLoggedIn时不保存数据功能

不幸的是,我对护照和快速中间件的了解有限,所以我对数据在哪里消失感到困惑。

1 个答案:

答案 0 :(得分:0)

似乎问题是由错误的节点模块版本引起的。还没有具体细节,但将几个模块还原到旧版本可以解决问题。