使用Passport在Node JS中实现基于cookie的身份验证

时间:2016-07-02 09:02:17

标签: node.js cookies passport.js

下面是我的server.js(app.js)。我使用带护照的快递,用于用户身份验证。但每当我重新启动节点服务器用户注销时。

我是nodejs的新手,我想知道如何实现基于cookie的身份验证。因此,即使服务器启动,用户也不会注销。我确信有一些我无法找到的配置更改。

// server.js

// set up ======================================================================
// get all the tools we need
var express  = require('express');
var app      = express();
var port     = process.env.PORT || 80;
var mongoose = require('mongoose');
var passport = require('passport');
var flash    = require('connect-flash');

var morgan       = require('morgan');
var cookieParser = require('cookie-parser');
var bodyParser   = require('body-parser');
var session      = require('express-session');

var configDB = require('./config/database.js');

// configuration ===============================================================
mongoose.connect(configDB.url); // connect to our database

require('./config/passport')(passport); // pass passport for configuration

// set up our express application
app.use(morgan('dev')); // log every request to the console
app.use(cookieParser()); // read cookies (needed for auth)
app.use(bodyParser()); // get information from html forms

app.set('view engine', 'ejs'); // set up ejs for templating

// required for passport
app.use(session({ secret: 'yassers' })); // session secret
app.use(passport.initialize());
app.use(passport.session()); // persistent login sessions
app.use(flash()); // use connect-flash for flash messages stored in session

// routes ======================================================================
require('./app/routes.js')(app, passport); // load our routes and pass in our app and fully configured passport

// launch ======================================================================
app.listen(port);
console.log('The magic happens on port ' + port);

1 个答案:

答案 0 :(得分:4)

重新启动时它会注销,因为它存储在 MemoryStore(RAM)中。使用mongoStore存储你的会话mongodb。请尝试以下代码:

var session = require('express-session');
var MongoStore = require('connect-mongo')(session);

var mongoStore = new MongoStore({
  url: 'your mongo db url'  
});

app.use(session({
  secret: 'your secret',
  saveUninitialized: true, // don't create session until something stored
  resave: false, //don't save session if unmodified
  store: mongoStore,
  cookie: {
    domain: 'domain name',    
    maxAge: 1000 * 24 * 60
  }
}));