如何在Google云端点v2中验证API密钥

时间:2017-04-10 09:17:52

标签: google-cloud-endpoints google-cloud-endpoints-v2

我是Google云端点的新手,特别是V2,我认为它是制作基于服务的应用程序的重要层。 从我观察到的文档中,他们提供了使用端点框架的选项,然后打开api。现在,当我使用需要api密钥的框架然后生成openapi.json .i在我提出请求时似乎没有任何错误API密钥。我想知道为什么当我将我的类标记为需要API密钥时它是如此。我是否自己提供验证逻辑? 这是使用api验证所有方法的配置。

@Api(name = "testapi",
    version = "v1",
    apiKeyRequired = AnnotationBoolean.TRUE,
    scopes = {Constants.EMAIL_SCOPE},
    clientIds = {Constants.WEB_CLIENT_ID, Constants.ANDROID_CLIENT_ID},
    audiences = {Constants.ANDROID_AUDIENCE}

然后生成openapi.json文件这是pom配置,虽然我仍然试图掌握如何以这种方式配置它,我不需要输入我的服务类

 <profiles>
    <profile>
        <id>GetSwaggerDoc</id>
        <activation>
            <property>
                <name>GetSwaggerDoc</name>
            </property>
        </activation>
        <build>
            <plugins>
                <plugin>
                    <groupId>org.codehaus.mojo</groupId>
                    <artifactId>exec-maven-plugin</artifactId>
                    <version>1.4.0</version>
                    <configuration>
                        <includePluginDependencies>true</includePluginDependencies>
                        <mainClass>com.google.api.server.spi.tools.EndpointsTool</mainClass>
                        <arguments>
                            <argument>get-swagger-doc</argument>
                            <argument>--hostname=test-api.endpoints.${endpoints.project.id}.cloud.goog</argument>
                            <argument>--war=target/test-1.0-SNAPSHOT</argument>
                            <argument>com.rareatom.test.services.TestApi</argument>
                        </arguments>
                    </configuration>
                    <dependencies>
                        <dependency>
                            <groupId>com.google.endpoints</groupId>
                            <artifactId>endpoints-framework-tools</artifactId>
                            <version>${endpoints.framework.version}</version>
                        </dependency>
                        <dependency>
                            <groupId>com.google.appengine</groupId>
                            <artifactId>appengine-api-1.0-sdk</artifactId>
                            <version>1.9.30</version>
                        </dependency>
                    </dependencies>
                </plugin>
            </plugins>
        </build>
    </profile>
</profiles>`

当我运行mvn exec:java -DGetSwaggerDoc时 这是生成的

{
 "swagger": "2.0",
 "info": {
  "version": "1.0.0",
  "title": "test-api.endpoints.test-test-160113.cloud.goog"
 },
 "host": "test-api.endpoints.test-test-160113.cloud.goog",
 "basePath": "/_ah/api",
 "schemes": [
  "https"
 ],
 "consumes": [
  "application/json"
 ],
 "produces": [
  "application/json"
 ],
 "paths": {
  "/testapi/v1/test": {
   "post": {
    "operationId": "TestapiTest",
    "parameters": [ ],
    "responses": {
     "200": {
      "description": "A successful response",
      "schema": {
       "$ref": "#/definitions/Response"
      }
     }
    },
    "security": [
     {
      "google_id_token": [ ]
     },
     {
      "google_id_token_https": [ ]
     },
     {
      "api_key": [ ]
     }
    ],
    "x-security": [
     {
      "google_id_token": {
       "audiences": [
        "AIzaSyAsnv2yeF6003txjfBVrZrlUe8jvfUJAtE"
       ]
      }
     },
     {
      "google_id_token_https": {
       "audiences": [
        "AIzaSyAsnv2yeF6003txjfBVrZrlUe8jvfUJAtE"
       ]
      }
     }
    ]
   }
  }
 },
 "securityDefinitions": {
  "google_id_token_https": {
   "type": "oauth2",
   "authorizationUrl": "",
   "flow": "implicit",
   "x-google-issuer": "https://accounts.google.com",
   "x-google-jwks_uri": "https://www.googleapis.com/oauth2/v1/certs"
  },
  "api_key": {
   "type": "apiKey",
   "name": "key",
   "in": "query"
  },
  "google_id_token": {
   "type": "oauth2",
   "authorizationUrl": "",
   "flow": "implicit",
   "x-google-issuer": "accounts.google.com",
   "x-google-jwks_uri": "https://www.googleapis.com/oauth2/v1/certs"
  }
 },
 "definitions": {
  "Status": {
   "enum": [
    "SUCCESS",
    "FAILURE"
   ]
  },
  "Response": {
   "properties": {
    "code": {
     "type": "integer",
     "format": "int32"
    },
    "data": {
     "$ref": "#/definitions/_any"
    },
    "message": {
     "type": "string"
    },
    "status": {
     "$ref": "#/definitions/Status"
    }
   }
  },
  "_any": { }
 }
}

然后使用gcloud service-management deploy部署此配置。

1 个答案:

答案 0 :(得分:2)

我注意到当你的pom.xml和web.xml中有多个@Api注释类时,api键被验证

的pom.xml

<arguments>
  <argument>get-swagger-doc</argument>
  <argument>--hostname=tita-api.endpoints.${endpoints.project.id}.cloud.goog</argument>
   <argument>--war=target/tita-1.0-SNAPSHOT</argument>           
   <argument>com.rareatom.tita.services.TestApi</argument>                               
   <argument>com.rareatom.tita.services.SessionServices</argument>                     
                        </arguments>

并为您的web.xml

<servlet>
    <servlet-name>EndpointsServlet</servlet-name>
    <servlet-class>com.google.api.server.spi.EndpointsServlet</servlet-class>
    <init-param>
        <param-name>services</param-name>
        <param-value>com.rareatom.tita.services.TestApi,
        com.rareatom.tita.services.SessionServices</param-value>
</init-param>
</servlet>