内容简介:NextAuth.js is a complete open source authentication solution forIt is designed from the ground up to support Next.js and Serverless.
NextAuth.js
Overview
NextAuth.js is a complete open source authentication solution for Next.js applications.
It is designed from the ground up to support Next.js and Serverless.
Follow the examples to see how easy it is to use NextAuth.js for authentication.
Install: npm i next-auth
See next-auth.js.org for more information and documentation.
Features
Authentication
- Designed to work with any OAuth service, it supports OAuth 1.0, 1.0A and 2.0
- Built-in support for many popular OAuth sign-in services
- Supports email / passwordless authentication
- Supports both JSON Web Tokens and database sessions
Own your own data
- An open source solution that allows you to keep control of your data
- Supports Bring Your Own Database (BYOD) and can be used with any database
- Built-in support for for MySQL, MariaDB, Postgres, MongoDB and SQLite
- Works great with databases from popular hosting providers
- Can also be used without a database (e.g. OAuth + JWT)
Secure by default
- Designed to be secure by default and promote best practice for safeguarding user data
- Attempts to implement the latest guidance published by Open Web Application Security Project
Security focused features include CSRF protection, use of signed cookies, cookie prefixes, secure cookies, HTTP only, host only and secure only cookies and promoting passwordless sign-in.
Example
Add API Route
import NextAuth from 'next-auth' import Providers from 'next-auth/providers' const options = { site: 'https://example.com' providers: [ // OAuth authentication providers Providers.Apple({ clientId: process.env.APPLE_ID, clientSecret: process.env.APPLE_SECRET }), Providers.Google({ clientId: process.env.GOOGLE_ID, clientSecret: process.env.GOOGLE_SECRET }), // Sign in with passwordless email link Providers.Email({ server: process.env.MAIL_SERVER, from: '<no-reply@example.com>' }), ], // SQL or MongoDB database (or leave empty) database: process.env.DATABASE_URL } export default (req, res) => NextAuth(req, res, options)
Add React Component
import React from 'react' import { useSession, signin, signout } from 'next-auth/client' export default () => { const [ session, loading ] = useSession() return <p> {!session && <> Not signed in <br/> <button onClick={signin}>Sign in</button> </>} {session && <> Signed in as {session.user.email} <br/> <button onClick={signout}>Sign out</button> </>} </p> }
Acknowledgement
NextAuth.js 2.0 is possible thanks to its contributors.
Getting started
Follow the examples to get started.
Contributing
If you'd like to contribute to you can find useful information in our Contributing Guide .
以上就是本文的全部内容,希望本文的内容对大家的学习或者工作能带来一定的帮助,也希望大家多多支持 码农网
猜你喜欢:本站部分资源来源于网络,本站转载出于传递更多信息之目的,版权归原作者或者来源机构所有,如转载稿涉及版权问题,请联系我们。
Python灰帽子
[美] Justin Seitz / 丁赟卿 译、崔孝晨 审校 / 电子工业出版社 / 2011-3 / 39.00元
《Python灰帽子》是由知名安全机构Immunity Inc的资深黑帽Justin Seitz主笔撰写的一本关于编程语言Python如何被广泛应用于黑客与逆向工程领域的书籍。老牌黑客,同时也是Immunity Inc的创始人兼首席技术执行官(CTO)Dave Aitel为这本书担任了技术编辑一职。书中绝大部分篇幅着眼于黑客技术领域中的两大经久不衰的话题:逆向工程与漏洞挖掘,并向读者呈现了几乎每个......一起来看看 《Python灰帽子》 这本书的介绍吧!