graphile / graphile/graphile.github.io

JWT refresh tokens

Open
#196 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
SCSS
Stars
27
Forks
126
PR merge metrics
No merged PRs in 30d

Description

Per @BowlingX:

> I implemented it, although I would say this is out of scope of postgraphile. I'm using an apollo middleware to detect expired JWT tokens, then I refresh the token and replay the request (this way the user does not realize anything)
I'm using keycloak as my identity management and just have a verification middleware in front of postgraphile (as explained in the docs)
I use passport-oauth2-refresh on nodejs side
https://gist.github.com/BowlingX/356e6cdf071aeee97f842dd9e12d5c53
>
> Then I have this error handler in apollo on ssr side: https://gist.github.com/BowlingX/33ab1c448f6b635769083aece1ba875d
>
> And this one on the frontend error link: https://gist.github.com/BowlingX/1a9d7971bb31b4aab70680ab5a067e6b

-- https://discordapp.com/channels/489127045289476126/498852330754801666/678953091839819777

@BowlingX plans to write an example app or guide for the website

Contributor guide

No contributing guide indexed for this repository

Research direction

Start with the three linked gist examples and the website's documentation entry points; compare the middleware, SSR error handler, and frontend error link flow described there. Done means adding the promised example app or guide covering the Keycloak and Node.js JWT refresh-token setup.

Written by the indexing model from the issue text.

Assessment

Tech stack
nodejs
Domain
authentication, documentation, security
Issue type
Documentation
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.