{"id":6194,"date":"2025-06-03T14:14:11","date_gmt":"2025-06-04T06:34:11","guid":{"rendered":"https:\/\/badgameshow.com\/steven\/?p=6194"},"modified":"2025-06-04T14:14:11","modified_gmt":"2025-06-04T06:34:11","slug":"%e5%a6%82%e4%bd%95%e5%9c%a8node-js%e4%b8%ad%e4%bd%bf%e7%94%a8%e8%ba%ab%e4%bb%bd%e9%a9%97%e8%ad%89","status":"publish","type":"post","link":"https:\/\/badgameshow.com\/steven\/node-js\/%e5%a6%82%e4%bd%95%e5%9c%a8node-js%e4%b8%ad%e4%bd%bf%e7%94%a8%e8%ba%ab%e4%bb%bd%e9%a9%97%e8%ad%89\/","title":{"rendered":"\u5982\u4f55\u5728 Node.js \u4e2d\u5be6\u73fe\u5b89\u5168\u7684\u8eab\u4efd\u9a57\u8b49\uff1a\u4f7f\u7528 Passport.js \u548c JWT \u7684\u5b8c\u6574\u6307\u5357"},"content":{"rendered":"<p><meta name=\"keywords\" content=\"Node.js, authentication, \u8eab\u4efd\u9a57\u8b49, Passport.js, JSON Web Token, JWT, Node.js \u5b89\u5168\u6027\"><\/p>\n<h1>\u5982\u4f55\u5728 Node.js \u4e2d\u5be6\u73fe\u5b89\u5168\u7684\u8eab\u4efd\u9a57\u8b49\uff1a\u4f7f\u7528 Passport.js \u548c JWT \u7684\u5b8c\u6574\u6307\u5357<\/h1>\n<p>Node.js \u662f\u4e00\u500b\u5ee3\u53d7\u6b61\u8fce\u7684 JavaScript \u57f7\u884c\u74b0\u5883\uff0c\u9069\u7528\u65bc\u958b\u767c\u5404\u985e\u61c9\u7528\u7a0b\u5f0f\uff0c\u5c24\u5176\u662f Web \u61c9\u7528\u7a0b\u5f0f\u3002\u5728\u958b\u767c\u9019\u4e9b\u61c9\u7528\u7a0b\u5f0f\u6642\uff0c\u8eab\u4efd\u9a57\u8b49\u662f\u975e\u5e38\u91cd\u8981\u7684\u4e00\u74b0\uff0c\u80fd\u78ba\u4fdd\u53ea\u6709\u6388\u6b0a\u7684\u7528\u6236\u80fd\u5920\u5b58\u53d6\u654f\u611f\u8cc7\u6e90\u3002\u672c\u6587\u5c07\u6df1\u5165\u63a2\u8a0e\u5982\u4f55\u5728 Node.js \u4e2d\u6709\u6548\u5be6\u73fe\u8eab\u4efd\u9a57\u8b49\uff0c\u4e26\u5c07\u91cd\u9ede\u653e\u5728 Passport.js \u548c JSON Web Token (JWT) \u7684\u4f7f\u7528\u4e0a\u3002<\/p>\n<h2>\u70ba\u4ec0\u9ebc\u9078\u64c7 Passport.js\uff1f<\/h2>\n<p>Passport.js \u662f\u4e00\u500b\u8f15\u91cf\u7d1a\u7684\u8eab\u4efd\u9a57\u8b49\u4e2d\u4ecb\u8edf\u9ad4\uff0c\u5177\u6709\u9ad8\u5ea6\u7684\u5f48\u6027\uff0c\u652f\u63f4\u591a\u7a2e\u8eab\u4efd\u9a57\u8b49\u7b56\u7565\uff0c\u5305\u62ec OAuth\u3001OpenID Connect \u53ca\u81ea\u8a02\u65b9\u6848\u3002\u9019\u4f7f\u5f97 Passport.js \u6210\u70ba\u8a31\u591a Node.js \u958b\u767c\u8005\u7684\u9996\u9078\u3002<\/p>\n<p>\u8981\u958b\u59cb\u4f7f\u7528 Passport.js\uff0c\u9996\u5148\u9700\u8981\u5b89\u88dd\u5b83\uff1a<\/p>\n<p>&#8220;`bash<br \/>\nnpm install passport<br \/>\nnpm install passport-oauth<br \/>\n&#8220;`<\/p>\n<p>\u63a5\u8457\uff0c\u60a8\u9700\u8981\u5728\u61c9\u7528\u7a0b\u5f0f\u4e2d\u9032\u884c\u57fa\u672c\u7684\u8a2d\u5b9a\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\nconst passport = require(&#8216;passport&#8217;);<br \/>\nconst express = require(&#8216;express&#8217;);<br \/>\nconst session = require(&#8216;express-session&#8217;);<\/p>\n<p>const app = express();<\/p>\n<p>app.use(session({ secret: &#8216;yourSecretKey&#8217;, resave: false, saveUninitialized: true }));<br \/>\napp.use(passport.initialize());<br \/>\napp.use(passport.session());<br \/>\n&#8220;`<\/p>\n<p>\u73fe\u5728\uff0c\u60a8\u53ef\u4ee5\u8a2d\u5b9a\u8eab\u4efd\u9a57\u8b49\u7b56\u7565\uff0c\u4f8b\u5982\u4f7f\u7528 OAuth\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\nconst OAuthStrategy = require(&#8216;passport-oauth&#8217;).OAuthStrategy;<\/p>\n<p>passport.use(new OAuthStrategy({<br \/>\n  requestTokenURL: &#8216;&#8230;&#8217;,<br \/>\n  accessTokenURL: &#8216;&#8230;&#8217;,<br \/>\n  userAuthorizationURL: &#8216;&#8230;&#8217;,<br \/>\n  consumerKey: &#8216;&#8230;&#8217;,<br \/>\n  consumerSecret: &#8216;&#8230;&#8217;,<br \/>\n  callbackURL: &#8216;&#8230;&#8217;<br \/>\n},<br \/>\nfunction(token, tokenSecret, profile, done) {<br \/>\n  \/\/ \u9a57\u8b49\u6210\u529f\u5f8c\u7684\u8655\u7406<br \/>\n}));<br \/>\n&#8220;`<\/p>\n<p>\u9084\u9700\u8a2d\u5b9a\u8def\u7531\uff0c\u8b93\u7528\u6236\u53ef\u4ee5\u900f\u904e\u9019\u4e9b\u8def\u7531\u9032\u884c\u8eab\u4efd\u9a57\u8b49\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\napp.get(&#8216;\/auth\/oauth&#8217;, passport.authenticate(&#8216;oauth&#8217;));<\/p>\n<p>app.get(&#8216;\/auth\/oauth\/callback&#8217;,<br \/>\n  passport.authenticate(&#8216;oauth&#8217;, { failureRedirect: &#8216;\/login&#8217; }),<br \/>\n  function(req, res) {<br \/>\n    \/\/ \u9a57\u8b49\u6210\u529f\u5f8c\u7684\u8655\u7406<br \/>\n  });<br \/>\n&#8220;`<\/p>\n<h2>\u4f7f\u7528 JSON Web Token (JWT) \u9032\u884c\u8eab\u4efd\u9a57\u8b49<\/h2>\n<p>JWT \u662f\u4e00\u7a2e\u7528\u65bc\u5b89\u5168\u5730\u767c\u4f48\u548c\u9a57\u8b49\u8eab\u4efd\u7684\u6a19\u6e96\uff0c\u8a31\u591a\u73fe\u4ee3\u61c9\u7528\u7a0b\u5f0f\u90fd\u9078\u64c7\u4f7f\u7528 JWT \u4f86\u9032\u884c\u8eab\u4efd\u9a57\u8b49\u3002\u9996\u5148\uff0c\u5b89\u88dd jsonwebtoken \u5957\u4ef6\uff1a<\/p>\n<p>&#8220;`bash<br \/>\nnpm install jsonwebtoken<br \/>\n&#8220;`<\/p>\n<p>\u5275\u5efa JWT \u7684\u65b9\u5f0f\u5982\u4e0b\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\nconst jwt = require(&#8216;jsonwebtoken&#8217;);<\/p>\n<p>const token = jwt.sign({ userId: &#8216;12345&#8217; }, &#8216;yourSecretKey&#8217;, { expiresIn: &#8216;1h&#8217; });<br \/>\n&#8220;`<\/p>\n<p>\u63a5\u8457\uff0c\u5c07 JWT \u50b3\u905e\u7d66\u7528\u6236\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\nres.json({ token: token });<br \/>\n&#8220;`<\/p>\n<p>\u6700\u5f8c\uff0c\u5728\u61c9\u7528\u7a0b\u5f0f\u4e2d\u8a2d\u5b9a\u8def\u7531\uff0c\u4f7f\u5f97\u7528\u6236\u53ef\u4ee5\u4f7f\u7528 JWT \u9032\u884c\u8eab\u4efd\u9a57\u8b49\uff1a<\/p>\n<p>&#8220;`javascript<br \/>\napp.get(&#8216;\/protected&#8217;,<br \/>\n  passport.authenticate(&#8216;jwt&#8217;, { session: false }),<br \/>\n  function(req, res) {<br \/>\n    \/\/ \u9a57\u8b49\u6210\u529f\u5f8c\u7684\u8655\u7406<br \/>\n  });<br \/>\n&#8220;`<\/p>\n<h2>\u7e3d\u7d50<\/h2>\n<p>\u672c\u6587\u4ecb\u7d39\u4e86\u5982\u4f55\u5728 Node.js \u61c9\u7528\u7a0b\u5f0f\u4e2d\u5be6\u73fe\u5b89\u5168\u7684\u8eab\u4efd\u9a57\u8b49\uff0c\u7279\u5225\u662f\u4f7f\u7528 Passport.js \u548c JSON Web Token (JWT) \u7684\u65b9\u5f0f\u3002\u9019\u4e9b\u6280\u8853\u4e0d\u50c5\u80fd\u589e\u5f37\u61c9\u7528\u7a0b\u5f0f\u7684\u5b89\u5168\u6027\uff0c\u9084\u80fd\u63d0\u5347\u7528\u6236\u9ad4\u9a57\u3002\u5e0c\u671b\u672c\u6587\u80fd\u5e6b\u52a9\u60a8\u5728 Node.js \u958b\u767c\u4e2d\u66f4\u6709\u6548\u5730\u5be6\u65bd\u8eab\u4efd\u9a57\u8b49\u3002<\/p>\n<p>&#8212;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u6587\u7ae0\u6458\u8981\uff1a\u672c\u6587\u5c07\u8a73\u7d30\u4ecb\u7d39\u5982\u4f55\u5728Node.js\u4e2d\u4f7f\u7528\u8eab\u4efd\u9a57\u8b49\uff0c\u5f9e\u57fa\u672c\u7684\u8eab\u4efd\u9a57\u8b49\u65b9\u6cd5\u5230\u66f4\u9ad8\u7d1a\u7684\u6280\u8853\uff0c\u4ee5\u53ca\u5982\u4f55\u5728Node.js\u4e2d\u5be6\u73fe\u5b83\u5011\u3002<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[193,192],"tags":[191,190],"class_list":["post-6194","post","type-post","status-publish","format-standard","hentry","category-node","category-node-js","tag-node","tag-node-js"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack-related-posts":[],"jetpack_shortlink":"https:\/\/wp.me\/pcFK27-1BU","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/posts\/6194","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/comments?post=6194"}],"version-history":[{"count":1,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/posts\/6194\/revisions"}],"predecessor-version":[{"id":6195,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/posts\/6194\/revisions\/6195"}],"wp:attachment":[{"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/media?parent=6194"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/categories?post=6194"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/badgameshow.com\/steven\/wp-json\/wp\/v2\/tags?post=6194"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}