Angular 使用 get(和其他)请求发送令牌

Angular sending token with get (and other) requests

出于某种原因,互联网上没有关于如何在 Angular 4 中执行此操作的示例(它使用 TypeScript,它不允许您跳过 JavaScript 之类的选项属性转译为 does)。

我正在尝试通过 GET 请求访问我团队的 RESTful API,这需要身份验证令牌,例如:

return this.http.get(this.BASE_URL + '/api/posts/unseen/all', {
            headers : {
                "Authorization": 'Token token="' + TokenService.getToken() + '"'
            }   
        })

其中 TokenService 是业务服务 class 我写信给 return 令牌以便在应用程序中使用。输入后,我收到了这个错误:

我在服务文件中出现的依赖项是:

import { Injectable } from '@angular/core';
import { Http, Headers, RequestOptions, Response } from '@angular/http';

import { Post } from '../models/post'; // business class 
import 'rxjs/';
import { User } from '../models/user'; // business class
import { HttpService } from './http.service'; // service for connecting us to the base location of the endpoints. provides BASE_URL to any service that extends it
import { TokenService } from './token.service'; // token provider

注意:我尝试复制并粘贴该错误,但Visual Studio代码不配合我这样做。

使用新的 httpClient 可以更轻松地发送令牌。首先你必须定义一个拦截器

import { Injectable } from '@angular/core';
import {
  HttpRequest,
  HttpHandler,
  HttpEvent,
  HttpInterceptor
} from '@angular/common/http';
import { AuthService } from './auth/auth.service';
import { Observable } from 'rxjs/Observable';

@Injectable()
export class TokenInterceptor implements HttpInterceptor {

  constructor(public auth: AuthService) {}

  intercept(request: HttpRequest<any>, next: HttpHandler): Observable<HttpEvent<any>> {

    request = request.clone({
      setHeaders: {
        Authorization: `Bearer ${this.auth.getToken()}`
      }
    });

    return next.handle(request);
  }
}

您必须将拦截器添加到您的提供商:

import { HTTP_INTERCEPTORS } from '@angular/common/http';
import { TokenInterceptor } from 'token.interceptor';

@NgModule({
  bootstrap: [AppComponent],
  imports: [...],
  providers: [
    {
      provide: HTTP_INTERCEPTORS,
      useClass: TokenInterceptor,
      multi: true
    }
  ]
})
export class AppModule {}

现在当您发出任何请求时,令牌将自动出现在 headers。

import { HttpClient } from '@angular/common/http';
// ...
export class AppComponent {

  constructor(public http: HttpClient) {}

  public connectServer() {
    this.http.get('url')
      .subscribe(
        data => console.log(data),
        err => console.log(err)
      );
  }

}

在拦截器中,我使用服务来检查令牌是否有效。这不是强制性的,因为您可以定义自己的 authenticationService。但这里有一个你可以使用:

import { Injectable } from '@angular/core';
import decode from 'jwt-decode';

@Injectable()
export class AuthService {

  public getToken(): string {
    return localStorage.getItem('token');
  }

  public isAuthenticated(): boolean {
    // get the token
    const token = this.getToken();
    // return a boolean indicating whether or not the token is expired
    return tokenNotExpired(token);
  }

}