nodeSolidServer / nodeSolidServer/node-solid-server
Token refresh 500
Ninguém assumiu esta issue ainda.
- Linguagem predominante
- JavaScript
- Estrelas
- 1.8k
- Forks
- 308
- Métricas de merge de PRs
- Nenhum PR com merge em 30d
Descrição
@michielbdejong I am seeing 500s on the /token endpoint when solid-auth-fetcher tries to renew the token, as well as a 401. The server logs are set to verbose, but don't show the 500, only the 401. I am not sure which headers I can safely include in a message, so opted to not include any. Do you have any suggestions about how to add additional logging to debug this issue more?
Client requests / responses:
POST https://myunderstory.com/token 500
data:
grant_type: refresh_token
refresh_token: REDACTED
client_id: REDACTED
Server logs:
2021-04-02T21:24:54.369Z solid:server Display login-required for https://ian.myunderstory.com/private/apps/understory/garden/workspace/default/prefs.ttl
2021-04-02T21:24:56.115Z solid:ACL Using ACL https://ian.myunderstory.com/private/.acl for ./apps/understory/garden/workspace/default/prefs.ttl
2021-04-02T21:24:56.115Z solid:ACL 1 default authentications about https://ian.myunderstory.com/private/ in https://ian.myunderstory.com/private/.acl
2021-04-02T21:24:56.162Z solid:ACL accessDenied: checking access to https://ian.myunderstory.com/private/apps/understory/garden/workspace/default/prefs.ttl by null and origin https://understory.garden
2021-04-02T21:24:56.162Z solid:ACL 1 default authentications about https://ian.myunderstory.com/private/ in https://ian.myunderstory.com/private/.acl
2021-04-02T21:24:56.162Z solid:ACL Checking auth https://ian.myunderstory.com/private/.acl#owner with agent null
2021-04-02T21:24:56.162Z solid:ACL Agent or group: Fail: not public and not logged on.
2021-04-02T21:24:56.162Z solid:ACL The agent/group check fails
2021-04-02T21:24:56.162Z solid:ACL Check failed: User Unauthorized
2021-04-02T21:24:56.162Z solid:ACL accessDenied: modeURIorReasons: ["User Unauthorized"]
2021-04-02T21:24:56.162Z solid:ACL checking http://www.w3.org/ns/auth/acl#Read
2021-04-02T21:24:56.162Z solid:ACL MODE REQUIRED NOT ALLOWED: http://www.w3.org/ns/auth/acl#Read Denying with User Unauthorized
2021-04-02T21:24:56.162Z solid:ACL Read access denied to (none): undefined - Unauthorized
2021-04-02T21:24:56.162Z solid:server Error page because of: { Error: Unauthorized
at AuthenticatedRequest.unauthorized (/opt/solid/node_modules/@solid/oidc-rs/src/AuthenticatedRequest.js:761:19)
at validateExpiry (/opt/solid/node_modules/@solid/oidc-rs/src/AuthenticatedRequest.js:627:22)
handled: true,
statusCode: 401,
realm: 'https://myunderstory.com',
error: 'invalid_token',
error_description: 'Access token is expired',
error_uri: undefined }
Guia de contribuição
Primeiros passos
- Leia a issue inteira e depois o guia de contribuição do projeto.
- Comente na issue dizendo que vai assumir — evita que duas pessoas façam o mesmo trabalho.
- Faça um fork do repositório e trabalhe em uma branch.
- Abra um pull request que referencie o número da issue.
Direção de pesquisa
Comece pelo endpoint /token e rastreie a solicitação de refresh token de solid-auth-fetcher. Compare a resposta 500 dela com o stack trace 401 mostrado, especialmente AuthenticatedRequest.js em torno de validateExpiry e unauthorized. Está concluído quando a falha é reproduzível e o erro relevante aparece nos logs do servidor.
Escrita pelo modelo de indexação a partir do texto da issue.
Avaliação
- Stack de tecnologia
- javascript, nodejs
- Domínio
- api, authentication, backend
- Tipo de issue
- Bug
- Dificuldade
- 4/5
- Tempo estimado
- 3-5 dias
- Status de atividade
- Estagnada
- Clareza
- Precisa de esclarecimento
- Facilidade para iniciantes
- 35/100