使用JWT和ADLDAP进行Laravel 5.6身份验证

时间:2018-07-30 21:00:05

标签: php authentication laravel-5 jwt adldap

我同时为使用Vue / Vuetify和Laravel api后端构建的SPA设置了ldap服务器(使用adldap2/adldap2-laravel)和JWT(使用tymon/jwt-auth)。 JWT的所有设置都可以使我以雄辩的身份离开提供者,从而可以成功地以雄辩的用户进行登录尝试:

'providers' => [
    'users' => [
        'driver' => 'eloquent',
        'model' => App\User::class,
    ]
],

一旦我将驱动程序更改为adldap并尝试在我们的ldap系统中有效的用户名/密码,我就会遇到未经授权的错误。有人有任何建议或资源可以嫁给这两个吗?我知道laravel / passport会话和JWT有很多区别,但是我没有看到一个简单的解决方案。这是我的AuthController:

<?php

namespace App\Http\Controllers;

use Illuminate\Support\Facades\Auth;
use App\Http\Controllers\Controller;
use Illuminate\Foundation\Auth\AuthenticatesUsers;

class AuthController extends Controller
{
    use AuthenticatesUsers;

    /**
     * Create a new AuthController instance.
     *
     * @return void
     */
    public function __construct()
    {
        $this->middleware('jwt', ['except' => ['login']]);
    }

    public function login()
    {
        $credentials = request(['username', 'password']);

        if (! $token = auth()->attempt($credentials)) {
            return response()->json(['error' => 'Unauthorized'], 401);
        }

        return $this->respondWithToken($token);
    }

    public function me()
    {
        return response()->json(auth()->user());
    }

    public function logout()
    {
        auth()->logout();

        return response()->json(['message' => 'Successfully logged       out']);
    }

    public function refresh()
    {
        return $this->respondWithToken(auth()->refresh());
    }

    protected function respondWithToken($token)
    {
        return response()->json([
            'access_token' => $token,
            'token_type' => 'bearer',
            'expires_in' => auth()->factory()->getTTL() * 60,
            'user' => auth()->user()->name
        ]);
    }
}

0 个答案:

没有答案
相关问题