connect-mongo每秒创建一个新会话

时间:2016-06-08 06:48:11

标签: node.js session express connect-mongo

我在Openshift上托管了我的nodejs应用程序。这是我的规格:

  

节点v0.10.35,表达v3.4.8

我的package.json依赖项:

"dependencies": {
"angular-loading-bar": "^0.9.0",
"async": "^2.0.0-rc.5",
"bcrypt-nodejs": "0.0.3",
"body-parser": "~1.0.0",
"connect-flash": "^0.1.1",
"connect-mongo": "^1.2.0",
"cookie-parser": "~1.0.0",
"ejs": "^2.4.1",
"express": "~3.4.4",
"lodash": "^4.12.0",
"method-override": "~1.0.0",
"mongodb": "~2.x",
"mongoose": "~4.4.12",
"morgan": "~1.0.0",
"nodemailer": "^2.3.2",
"passport": "^0.3.2",
"passport-local": "^1.0.0",
"recaptcha2": "^1.0.8"
},

这是我的server.js

#!/bin/env node

var express = require('express');
var fs      = require('fs');
var mongoose = require('mongoose');
var passport = require('passport');
var flash    = require('connect-flash');

var morgan       = require('morgan');
var cookieParser = require('cookie-parser');
var bodyParser   = require('body-parser');

var MongoStore = require('connect-mongo/es5')(express);

var app = express();

var server_port = process.env.OPENSHIFT_NODEJS_PORT || 8080;
var server_ip_address = process.env.OPENSHIFT_NODEJS_IP || '0.0.0.0';

//MongoD
mongodb_connection_string = process.env.OPENSHIFT_MONGODB_DB_URL + "tenders";
mongoose.connect(mongodb_connection_string);
var dbconn = mongoose.connection;
dbconn.on('error', console.error.bind(console, 'connection error:'));
dbconn.once('open', function(){
    console.log('Connected to Mongoose Database.');
});

// Close MongoD connection when app is terminated
process.on('SIGINT', function (){
   mongoose.disconnect();
   dbconn.close(function (){
       console.log("Server halted: Mongoose default connection disconnected.");
       process.exit(0);
   }); 
});

/* Configuration */
app.set('view engine', 'ejs'); // set up ejs for templating

/* Middlewares */
app.use(express.static(__dirname + "/views"));
app.use(express.static(__dirname + "/public"));

// set up our express application
app.use(morgan('dev')); // log every request to the console
app.use(bodyParser()); // get information from html forms
app.use(cookieParser()); // read cookies (needed for auth)

/** Persistent database backed session **/
app.use(express.session({ 
    secret: process.env.SECRET,
    store: new MongoStore({mongooseConnection : mongoose.connection}) 
}));

app.use(passport.initialize());
app.use(passport.session());
app.use(flash()); 

require('./routes/routes')(app, passport); 
require('./config/passport')(passport);  configuration

app.use(function(req, res) {
    res.redirect('/')
});

app.use(function (err, req, res, next) {
  if (err.name === 'UnauthorizedError') {
    res.status(401);
    res.json({"message" : err.name + ": " + err.message});
  }
});

/* Start server */
app.listen(server_port, server_ip_address, function(){
    console.log("Listening on " + server_ip_address + ":" + server_port);
});

问题是connect-mongo每秒都在创建一个新会话,我可以通过计算数据库中的会话集合中的条目数来看到。即使当前没有活跃用户使用该网站,也会创建会话。这是正常的吗?

编辑:是否由于我使用的中间件检查用户是否使用护照isauthenticated方法登录了大多数api调用。但奇怪的是,即使没有用户向服务器发出请求,也可以调用它,正如您可以从下面的node.log中看到的那样保持重定向

GET / 302 3ms - 40b
GET / 302 3ms - 40b
GET / 302 2ms - 40b
GET / 302 2ms - 40b
GET / 302 3ms - 40b
GET / 302 20ms - 40b
GET / 302 3ms - 40b
GET / 302 2ms - 40b
GET / 302 3ms - 40b
GET / 302 4ms - 40b

3 个答案:

答案 0 :(得分:0)

如果您使用快速会话> = 1.10.0并且不希望每次用户刷新页面时都重新保存数据库上的所有会话,您可以通过限制一段时间来延迟更新会话时间。 因为你正在使用较新版本的connect-mongo和较旧版本的express im不是100%肯定,但我认为这是因为cookie或未初始化的会话。

// Configuring sessions
var session = require('express-session');
var MongoStore = require('connect-mongo')(session);
app.use(session({
    secret: 'JohnSecret',
    saveUninitialized: false, // don't create session until something stored
    resave: false, //don't save session if unmodified
    store: new MongoStore({
      url: 'mongodb://localhost/John',
      autoRemove: 'interval',
      autoRemoveInterval: 10 // In minutes. Default
    })
}));

答案 1 :(得分:0)

好的,这是HAProxy持续检查后端服务器以查看它的运行状况的问题。这样做是为了创建一个会话,并使我的数据库变得混乱。所以这是我的( )修复:

  1. 创建一个api /ping,通过销毁每个会话来处理HAProxy的httpchk

    app.get('/ping', function(req, res){ req.session.destroy(); res.send(200); });

  2. 配置haproxy/conf以将option httpchk GET /更改为option httpchk GET /ping

  3. 使用RHC rhc cartridge-restart --cartridge haproxy

  4. 重新启动HAProxy盒式磁带

答案 2 :(得分:0)

我刚刚处理了这个问题,对我而言,结果是我的AWS健康检查结果。每个健康检查ping都会创建并存储一个新会话。 我通过在请求是健康检查时绕过商店来解决这个问题:

app.use(function(req, res, done) {
  var isHealthcheck = req.url.indexOf('healthcheck') > -1;
  session({
    secret: config.secrets.session,
    saveUninitialized: true,
    resave: false,
    store: isHealthcheck || new MongoStore({
      mongooseConnection: mongoose.connection,
      db: 'myDb'
    })
  })(req, res, done);
});

因此,当isHealthcheck为true时,它不会传递任何商品。如果不是,它会正常存储会话。这里的关键部分是isHealthCheck ||

希望这有助于某人!