graphile / graphile/graphile.github.io
JWT refresh tokens
- Ngôn ngữ chính
- SCSS
- Star
- 27
- Fork
- 126
- Chỉ số merge pull request
- Không có pull request nào được merge trong 30 ngày
Mô tả
Per @BowlingX:
> I implemented it, although I would say this is out of scope of postgraphile. I'm using an apollo middleware to detect expired JWT tokens, then I refresh the token and replay the request (this way the user does not realize anything)
I'm using keycloak as my identity management and just have a verification middleware in front of postgraphile (as explained in the docs)
I use passport-oauth2-refresh on nodejs side
https://gist.github.com/BowlingX/356e6cdf071aeee97f842dd9e12d5c53
>
> Then I have this error handler in apollo on ssr side: https://gist.github.com/BowlingX/33ab1c448f6b635769083aece1ba875d
>
> And this one on the frontend error link: https://gist.github.com/BowlingX/1a9d7971bb31b4aab70680ab5a067e6b
-- https://discordapp.com/channels/489127045289476126/498852330754801666/678953091839819777
@BowlingX plans to write an example app or guide for the website
Hướng dẫn đóng góp
Chưa lập chỉ mục được hướng dẫn đóng góp cho kho mã nguồn này
Hướng nghiên cứu
Bắt đầu với ba ví dụ gist được liên kết và các điểm truy cập vào tài liệu trên website; so sánh luồng middleware, trình xử lý lỗi SSR và liên kết lỗi frontend được mô tả ở đó. Công việc được xem là hoàn tất khi đã thêm ứng dụng mẫu hoặc hướng dẫn như đã hứa, bao quát việc thiết lập refresh-token JWT cho Keycloak và Node.js.
Do mô hình lập chỉ mục viết ra từ nội dung của issue.
Đánh giá
- Công nghệ
- nodejs
- Lĩnh vực
- authentication, documentation, security
- Loại issue
- Tài liệu
- Độ khó
- 5/5
- Thời gian dự kiến
- Hơn một tuần
- Mức độ hoạt động
- Đình trệ
- Độ rõ ràng
- Cần làm rõ
- Mức phù hợp với người mới
- 25/100