【问题标题】:401 Unauthorized error with Jawbone Up API and Ruby on RailsJawbone Up API 和 Ruby on Rails 出现 401 未经授权的错误
【发布时间】:2014-12-18 06:12:30
【问题描述】:

我正在尝试通过 Omniauth、HTTParty 和 Ruby on Rails 访问 Jawbone API。我按照 API 文档的要求传递了标头 Authorization => Bearer: [token_here] ,但它仍然给我一个 401 错误,我终生无法弄清楚原因。我能够通过omniauth成功获取令牌并将其存储到会话[:令牌],但API返回401未经授权。

API 文档:https://jawbone.com/up/developer/authentication

我搜索了堆栈溢出,但找不到解决方案。有什么问题?

我的代码是:

session_controller.rb

def create
auth_hash = request.env['omniauth.auth']

if session[:user_id]
    #if there's a session, then create the authorization
    User.find(session[:user_id]).add_provider(auth_hash)

else 
    auth = Authorization.find_or_create(auth_hash)
    session[:user_id] = auth.user.id
    session[:token] = auth.user.authorizations.first.token


end
redirect_to '/today'
end

data_processor.rb

class DataProcessorController < ApplicationController
  def today
    @current_user_dp = session[:user_id]
    @token_dp = session[:token]
    @authorization_dp = "Bearer " + @token_dp
    #@auth = "Bearer " + session[:current_user].authorizations.first.token unless session[:user_id].nil?
    @result = HTTParty.get('http://jawbone.com/nudge/api/v.1.1/users/@me/goals',
                           :headers => { "Authorization" => @authorization_dp, "Accept" => "application/json"}) unless session[:token].nil?

  end
end

results.html.erb

<p>Result: <%= @result %></p>
<p>Auth header: <%= @result.request.inspect%></p>

HTML 文件的输出:

Result: {"meta"=>{"code"=>401, "error_detail"=>"You must be logged in to perform that action", "error_type"=>"authentication_error", "message"=>"Unauthorized"}, "data"=>{}}

Auth header: #<HTTParty::Request:0x007fe446bb3320 @http_method=Net::HTTP::Get, @path=#<URI::HTTPS:0x007fe446bbb408 URL:https://jawbone.com/nudge/api/v.1.1/users/@me/goals>, @options={:limit=>4, :default_params=>{}, :follow_redirects=>true, :parser=>HTTParty::Parser, :connection_adapter=>HTTParty::ConnectionAdapter, :headers=>{"Authorization"=>"Bearer XXXXXXXXXTOKEN_HEREXXXXXXXXXXXXX", "Accept"=>"application/json"}}, @last_uri=#<URI::HTTPS:0x007fe446bba918 URL:https://jawbone.com/nudge/api/v.1.1/users/@me/goals>, @raw_request=#<Net::HTTP::Get GET>, @last_response=#<Net::HTTPUnauthorized 401 Unauthorized readbody=true>, @redirect=true>

【问题讨论】:

  • 你解决过这个问题吗?如果是这样,解决方案是什么?我也有类似的问题...

标签: ruby-on-rails ruby oauth omniauth httparty


【解决方案1】:

你解决了吗?

如果您查看其他错误字段,它可能会为您提供更多信息。就我而言,我得到了“未经授权的范围”。我请求的项目未包含在我的原始 oauth 请求中,因此我提供的令牌范围有限。

【讨论】:

    【解决方案2】:

    尝试在首次授权用户时更改范围。我使用scope=move_read 并能够从http://jawbone.com/nudge/api/v.1.1/users/@me/goals 获取数据。

    【讨论】:

      猜你喜欢
      • 2020-12-17
      • 2022-01-03
      • 1970-01-01
      • 2019-02-01
      • 1970-01-01
      • 1970-01-01
      • 2019-05-06
      • 1970-01-01
      • 2014-10-09
      相关资源
      最近更新 更多