3324ffc788
- @tryghost/adapter-manager@0.2.28 - @tryghost/bootstrap-socket@0.2.17 - @tryghost/config-url-helpers@0.1.5 - @tryghost/constants@1.0.2 - @tryghost/database-info@0.2.0 - @tryghost/image-transform@1.0.28 - @tryghost/job-manager@0.8.20 - @tryghost/limit-service@1.0.10 - @tryghost/minifier@0.1.11 - @tryghost/moleculer-service-from-class@0.2.23 - @tryghost/mw-error-handler@0.1.3 - @tryghost/mw-session-from-token@0.1.28 - @tryghost/mw-update-user-last-seen@0.1.3 - @tryghost/package-json@1.0.16 - @tryghost/pretty-cli@1.2.24 - @tryghost/promise@0.1.15 - @tryghost/release-utils@0.7.12 - @tryghost/security@0.2.15 - @tryghost/session-service@0.1.38 - @tryghost/settings-path-manager@0.1.4 - @tryghost/vhost-middleware@1.0.22 - @tryghost/zip@1.1.20 |
||
---|---|---|
.. | ||
lib | ||
test | ||
types | ||
.eslintignore | ||
.eslintrc.js | ||
index.js | ||
LICENSE | ||
package.json | ||
README.md | ||
tsconfig.json |
Session From Token Middleware
Middleware to handle generating sessions from tokens, for example like with magic links, or SSO flows similar to SAML.
Install
npm install @tryghost/mw-session-from-token --save
or
yarn add @tryghost/mw-session-from-token
Usage
const sessionFromTokenMiddleware = require('@tryghost/mw-session-from-token')({
callNextWithError: true,
async createSession(req, res, user) {
req.session.user_id = user.id;
},
async getTokenFromRequest(res) {
return req.headers['some-cool-header'];
},
async getLookupFromToken(token) {
await someTokenService.validate(token);
const data = await someTokenService.getData(token);
return data.email;
},
async findUserByLookup(lookup) {
return await someUserModel.findOne({email: lookup});
}
});
someExpressApp.get('/some/sso/url', someSessionMiddleware, sessionFromTokenMiddleware, (req, res, next) => {
res.redirect('/loggedin');
}, (err, res, res, next) => {
res.redirect('/error');
});
Develop
This is a mono repository, managed with lerna.
Follow the instructions for the top-level repo.
git clone
this repo &cd
into it as usual- Run
yarn
to install top-level dependencies.
Run
yarn dev
Test
yarn lint
run just eslintyarn test
run lint and tests
Copyright & License
Copyright (c) 2013-2022 Ghost Foundation - Released under the MIT license.