


Code information details of the Koa JWT authentication plug-in developed by KoaHub based on Node.js
Oct 17, 2016 am 09:12 AMKoa middleware that validates JSON Web Tokens and sets ctx.state.user (by default) if a valid token is provided.
wemall open source micro mall, WeChat mall, mall source code, three-level distribution, micro fresh food, micro fruit, micro takeaway, micro ordering---professional o2o system
koa-jwt
Koa JWT authentication middleware.
koa-jwt
Koa middleware that validates JSON Web Tokens and sets ctx.state.user (by default) if a valid token is provided.
This module lets you authenticate HTTP requests using JSON Web Tokens in your Koa (node.js) applications.
See this article for a good introduction.
Install$?npm?install?koa-jwt
Usage
The JWT authentication middleware authenticates callers using a JWT token. If the token is valid, ctx.state.user (by default) will be set with the JSON object decoded to be used by later middleware for authorization and access control.
The token is normally provided in a HTTP header (Authorization), but it can also be provided in a cookie by setting the opts.cookie option to the name of the cookie that contains the token. Custom token retrieval can also be done through the opts.getToken option. The provided function is called in the normal Koa context and should return the retrieved token.
Normally you provide a single shared secret in opts.secret, but another alternative is to have an earlier middleware set ctx.state.secret, typically per request. If this property exists, it will be used instead of the one in opts.secret.
Examplevar?koa?=?require('koa');<br>
var?jwt?=?require('koa-jwt');<br>
?<br>
var?app?=?koa();<br>
?<br>
//?Custom?401?handling?if?you?don't?want?to?expose?koa-jwt?errors?to?users?<br>
app.use(function?*(next){<br>
??try?{<br>
????yield?next;<br>
??}?catch?(err)?{<br>
????if?(401?==?err.status)?{<br>
??????this.status?=?401;<br>
??????this.body?=?'Protected?resource,?use?Authorization?header?to?get?accessn';<br>
????}?else?{<br>
??????throw?err;<br>
????}<br>
??}<br>
});<br>
?<br>
//?Unprotected?middleware?<br>
app.use(function?*(next){<br>
??if?(this.url.match(/^/public/))?{<br>
????this.body?=?'unprotectedn';<br>
??}?else?{<br>
????yield?next;<br>
??}<br>
});<br>
?<br>
//?Middleware?below?this?line?is?only?reached?if?JWT?token?is?valid?<br>
app.use(jwt({?secret:?'shared-secret'?}));<br>
?<br>
//?Protected?middleware?<br>
app.use(function?*(){<br>
??if?(this.url.match(/^/api/))?{<br>
????this.body?=?'protectedn';<br>
??}<br>
});<br>
?<br>
app.listen(3000);
Alternatively you can conditionally run the jwt middleware under certain conditions:var?koa?=?require('koa');<br>
var?jwt?=?require('koa-jwt');<br>
?<br>
var?app?=?koa();<br>
?<br>
//?Middleware?below?this?line?is?only?reached?if?JWT?token?is?valid?<br>
//?unless?the?URL?starts?with?'/public'?<br>
app.use(jwt({?secret:?'shared-secret'?}).unless({?path:?[/^/public/]?}));<br>
?<br>
//?Unprotected?middleware?<br>
app.use(function?*(next){<br>
??if?(this.url.match(/^/public/))?{<br>
????this.body?=?'unprotectedn';<br>
??}?else?{<br>
????yield?next;<br>
??}<br>
});<br>
?<br>
//?Protected?middleware?<br>
app.use(function?*(){<br>
??if?(this.url.match(/^/api/))?{<br>
????this.body?=?'protectedn';<br>
??}<br>
});<br>
?<br>
app.listen(3000);
For more information on unless exceptions, check koa-unless.
You can also add the passthrough option to always yield next, even if no valid Authorization header was found:app.use(jwt({?secret:?'shared-secret',?passthrough:?true?}));
This lets downstream middleware make decisions based on whether ctx.state.user is set.
If you prefer to use another ctx key for the decoded data, just pass in key, like so:app.use(jwt({?secret:?'shared-secret',?key:?'jwtdata'?}));
This makes the decoded data available as ctx.state.jwtdata.
You can specify audience and/or issuer as well:app.use(jwt({?secret:???'shared-secret',<br>
??????????????audience:?'http://myapi/protected',<br>
??????????????issuer:???'http://issuer'?}));
If the JWT has an expiration (exp), it will be checked.
This module also support tokens signed with public/private key pairs. Instead of a secret, you can specify a Buffer with the public key:
var?publicKey?=?fs.readFileSync('/path/to/public.pub');<br>
app.use(jwt({?secret:?publicKey?}));
Related Modules
jsonwebtoken — JSON Web Token signing and verification
Note that koa-jwt exports the sign, verify and decode functions from the above module as a convenience.
Tests
$ npm install
$ npm test
Author
Stian Gryt?yr
Credits
This code is largely based on express-jwt.
Auth0
Matias Woloski
Contributors
Foxandxss
soygul
tunnckoCore
getuliojr
cesarandreu
michaelwestphal
sc0ttyd
Jackong
danwkennedy
Licens
The MIT License
wemall 開(kāi)源微商城 ,微信商城,商城源碼,三級(jí)分銷(xiāo),微生鮮,微水果,微外賣(mài),微訂餐---專業(yè)的o2o系統(tǒng)
wemall地址:http://www.wemallshop.com
代碼來(lái)源:http://js.koahub.com/home/feature/koa-jwt

Hot AI Tools

Undress AI Tool
Undress images for free

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 Chinese version
Chinese version, very easy to use

Zend Studio 13.0.1
Powerful PHP integrated development environment

Dreamweaver CS6
Visual web development tools

SublimeText3 Mac version
God-level code editing software (SublimeText3)

"Go Language Programming Examples: Code Examples in Web Development" With the rapid development of the Internet, Web development has become an indispensable part of various industries. As a programming language with powerful functions and superior performance, Go language is increasingly favored by developers in web development. This article will introduce how to use Go language for Web development through specific code examples, so that readers can better understand and use Go language to build their own Web applications. 1. Simple HTTP Server First, let’s start with a

Huawei Cloud Edge Computing Interconnection Guide: Java Code Samples to Quickly Implement Interfaces With the rapid development of IoT technology and the rise of edge computing, more and more enterprises are beginning to pay attention to the application of edge computing. Huawei Cloud provides edge computing services, providing enterprises with highly reliable computing resources and a convenient development environment, making edge computing applications easier to implement. This article will introduce how to quickly implement the Huawei Cloud edge computing interface through Java code. First, we need to prepare the development environment. Make sure you have the Java Development Kit installed (

The simplest code example of Java bubble sort Bubble sort is a common sorting algorithm. Its basic idea is to gradually adjust the sequence to be sorted into an ordered sequence through the comparison and exchange of adjacent elements. Here is a simple Java code example that demonstrates how to implement bubble sort: publicclassBubbleSort{publicstaticvoidbubbleSort(int[]arr){int

Learn about Python programming with introductory code examples Python is an easy-to-learn, yet powerful programming language. For beginners, it is very important to understand the introductory code examples of Python programming. This article will provide you with some concrete code examples to help you get started quickly. Print HelloWorldprint("HelloWorld") This is the simplest code example in Python. The print() function is used to output the specified content

How to use PHP to write the inventory management function code in the inventory management system. Inventory management is an indispensable part of many enterprises. For companies with multiple warehouses, the inventory management function is particularly important. By properly managing and tracking inventory, companies can allocate inventory between different warehouses, optimize operating costs, and improve collaboration efficiency. This article will introduce how to use PHP to write code for inventory warehouse management functions, and provide you with relevant code examples. 1. Establish the database before starting to write the code for the inventory warehouse management function.

PHP variables store values ??during program runtime and are crucial for building dynamic and interactive WEB applications. This article takes an in-depth look at PHP variables and shows them in action with 10 real-life examples. 1. Store user input $username=$_POST["username"];$passWord=$_POST["password"]; This example extracts the username and password from the form submission and stores them in variables for further processing. 2. Set the configuration value $database_host="localhost";$database_username="username";$database_pa

Java Selection Sorting Method Code Writing Guide and Examples Selection sorting is a simple and intuitive sorting algorithm. The idea is to select the smallest (or largest) element from the unsorted elements each time and exchange it until all elements are sorted. This article will provide a code writing guide for selection sorting, and attach specific Java sample code. Algorithm Principle The basic principle of selection sort is to divide the array to be sorted into two parts, sorted and unsorted. Each time, the smallest (or largest) element is selected from the unsorted part and placed at the end of the sorted part. Repeat the above

Title: From Beginner to Mastery: Code Implementation of Commonly Used Data Structures in Go Language Data structures play a vital role in programming and are the basis of programming. In the Go language, there are many commonly used data structures, and mastering the implementation of these data structures is crucial to becoming a good programmer. This article will introduce the commonly used data structures in the Go language and give corresponding code examples to help readers from getting started to becoming proficient in these data structures. 1. Array Array is a basic data structure, a group of the same type
