用于令牌认证的xdmp http post选项

时间:2015-09-08 14:29:51

标签: marklogic marklogic-8

我找到了https://docs.marklogic.com/xdmp:http-post功能。

我想使用令牌身份验证方法将MarkLogic的JSON文档发送到中间层node.js应用程序。我们使用令牌身份验证。

我应该使用哪些http选项来完成这项工作?

示例:

(: Use xdmp:quote to encode the XML as a string
   because the <data> options element is a string :)
let $payload := xdmp:quote('
{"alert": {
                "id": "123abc",
                "type": "sensorAlert",
                "timestamp": "2015-08-12 T 13:48:45 CET",
                "actions": ["go get them!"],
                "status": "active"
            }
}'
)
return
xdmp:http-post("http://cluey-app-ml1:9070/alert",
     <options xmlns="xdmp:http">
       <authentication method="basic">
         <username>myname</username>
         <password>mypassword</password>
       </authentication>
       <data>{$payload}</data>
       <headers>
         <content-type>application/json</content-type>
       </headers>
     </options>)

当然发布这个原样给了我401未经授权的回复:

<response xmlns="xdmp:http">
<code>401</code>
<message>Unauthorized</message>
<headers>
<x-powered-by>Express</x-powered-by>
<access-control-allow-origin>*</access-control-allow-origin>
<content-type>text/html; charset=utf-8</content-type>
<content-length>26</content-length>
<etag>W/"1a-14Zh6wfLQpiHPatjrIEVAQ"</etag>
<set-cookie>connect.sid=s%3AT_lwAwvX9-1rJ7It7x42w126532HtIA2.nr5Zt2dONb6Q0uD7LpryZrpEsOUvXL8ZHUiTr8hOsfg; Path=/; HttpOnly</set-cookie>
<date>Tue, 08 Sep 2015 13:50:27 GMT</date>
<connection>keep-alive</connection>
</headers>
</response>
Text document 
Could not broadcast alert.

1 个答案:

答案 0 :(得分:0)

虽然不是我所知道的“功能”,但是很可能没有什么能阻止你形成请求“A”来获取你的令牌,将其存储在ML中,然后通过设置适当的头信息将其用于后续请求您的令牌系统所需(例如身份验证:Bearerxxxxx为例)

将标记作为标头信息发回。您可以在此页面上看到有关如何设置标题信息的选项:https://docs.marklogic.com/xdmp:http-get

以下编辑以反映评论:

<headers>
  <access-token>eyJ0eXAiO...RDHaNEjftfja-MofLqlv6fUKmN7k...</access-token>
  <content-type‌​>application/json</content-type>
</headers>