2017-04-20 99 views
0

我試圖讓用戶認證我的應用程序以使用存儲在MapMyRun(https://developer.underarmour.com/apps/myapps)上的他的數據。OAuth2 for MapMyRun使用Swift 3

這裏是我的代碼:

let oauth2 = OAuth2CodeGrant(settings: [ 
    "client_id": "asdasdasd", 
    "client_secret": "asdasdasd123", 
    "authorize_uri": "https://www.mapmyfitness.com/v7.1/oauth2/uacf/authorize/?client_id=asdasdasd&response_type=code&redirect_uri=http://localhost.mapmyapi.com:12345/callback", 
    "token_uri": "https://api.mapmyfitness.com/v7.1/oauth2/access_token/", 
    "redirect_uris": ["http://localhost.mapmyapi.com:12345/callback"], 
    "api-key":"asdasdasd", 
    "grant_type": "authorization_code", 
    "keychain": false,   // if you DON'T want keychain integration 
    ] as OAuth2JSON) 

override func viewDidLoad() { 
    super.viewDidLoad() 


     startAuthorization() 


    // Do any additional setup after loading the view. 
} 


func startAuthorization() { 
    oauth2.logger = OAuth2DebugLogger(.trace) 

    oauth2.authorize() { authParameters, error in 
     if let params = authParameters { 
      print("Authorized! Access token is in `oauth2.accessToken`") 
      print("Authorized! Additional parameters: \(params)") 
     } 
     else { 
      print("Authorization was cancelled or went wrong: \(String(describing: error))") // error will not be nil 
     } 
    } 
} 

而且我的輸出:

[Debug] OAuth2: Starting authorization 
[Debug] OAuth2: No access token, checking if a refresh token is available 
[Debug] OAuth2: I don't have a refresh token, not trying to refresh 
[Debug] OAuth2: Opening authorize URL in system browser: https://www.mapmyfitness.com/v7.1/oauth2/uacf/authorize/?redirect_uri=http%3A%2F%2Flocalhost.mapmyapi.com%3A12345%2Fcallback&client_id=asdasdasdasd&response_type=code&state=123123123 

到目前爲止什麼,我得到的是對

http://localhost.mapmyapi.com:12345/callback + /callback state=&code=xxxxxxxxxxxxxxxxxxxxxxxx 

但OAuth2用戶犯規手柄正確重定向這個。

如何使用MapMyRun進行身份驗證? 我的想法是實現eglink的深層鏈接。註冊:/ /和這裏將所有回調數據。這將通過下一個發佈請求來處理,這將使我們獲得訪問令牌。但這聽起來有點複雜。

有沒有其他解決方法?

我試圖重寫我的Python代碼,完美的作品,但現在我需要把這個在我的iOS應用:d

https://developer.underarmour.com/docs/v71_OAuth_2_Demo

import logging 
import os 
import sys 
import urlparse 
import webbrowser 
from BaseHTTPServer import HTTPServer, BaseHTTPRequestHandler 
import requests 

#logging.basicConfig(level=logging.DEBUG) 

# Store your client ID and secret in your OS's environment using these keys, or 
# redefine these values here. 
CLIENT_ID = os.environ.setdefault("MMF_CLIENT_ID", "asdasdasdasd") 
CLIENT_SECRET = os.environ.setdefault("MMF_CLIENT_SECRET", "asdasdasd123123") 

print CLIENT_ID 
if CLIENT_ID is None or CLIENT_SECRET is None: 
    print 'Please ensure $MMF_CLIENT_ID and $MMF_CLIENT_SECRET environment ' \ 
      'variables are set.' 
    sys.exit(1) 

# As a convenience, localhost.mapmyapi.com redirects to localhost. 
redirect_uri = 'http://localhost.mapmyapi.com:12345/callback' 
authorize_url = 'https://www.mapmyfitness.com/v7.1/oauth2/uacf/authorize/?' \ 
       'client_id={0}&response_type=code&redirect_uri={1}'.format(CLIENT_ID, redirect_uri) 


# Set up a basic handler for the redirect issued by the MapMyFitness 
# authorize page. For any GET request, it simply returns a 200. 
# When run interactively, the request's URL will be printed out. 
class AuthorizationHandler(BaseHTTPRequestHandler): 
    def do_GET(self): 
     self.send_response(200, 'OK') 
     self.send_header('Content-Type', 'text/html') 
     self.end_headers() 
     self.server.path = self.path 


parsed_redirect_uri = urlparse.urlparse(redirect_uri) 
server_address = parsed_redirect_uri.hostname, parsed_redirect_uri.port 

print 'server_address:', server_address 

# NOTE: Don't go to the web browser just yet... 
webbrowser.open(authorize_url) 

# Start our web server. handle_request() will block until a request comes in. 
httpd = HTTPServer(server_address, AuthorizationHandler) 
print 'Now waiting for the user to authorize the application...' 
httpd.handle_request() 

# At this point a request has been handled. Let's parse its URL. 
httpd.server_close() 
callback_url = urlparse.urlparse(httpd.path) 
authorize_code = urlparse.parse_qs(callback_url.query)['code'][0] 

print 'Got an authorize code:', authorize_code 

access_token_url = 'https://api.mapmyfitness.com/v7.1/oauth2/access_token/' 
access_token_data = {'grant_type': 'authorization_code', 
        'client_id': CLIENT_ID, 
        'client_secret': CLIENT_SECRET, 
        'code': authorize_code} 

response = requests.post(url=access_token_url, 
         data=access_token_data, 
         headers={'Api-Key': CLIENT_ID}) 

print 'Request details:' 
print 'Content-Type:', response.request.headers['Content-Type'] 
print 'Request body:', response.request.body 

# retrieve the access_token from the response 
try: 
    access_token = response.json() 
    print 'Got an access token:', access_token 
except: 
    print 'Did not get JSON. Here is the response and content:' 
    print response 
    print response.content 

# Use the access token to request a resource on behalf of the user 
activity_type_url = 'https://api.ua.com/v7.1/activity_type/' 
response = requests.get(url=activity_type_url, verify=False, 
         headers={'api-key': CLIENT_ID, 'authorization': 'Bearer %s' % access_token['access_token']}) 

# Refresh a client's credentials to prevent expiration 
refresh_token_url = 'https://api.ua.com/v7.1/oauth2/uacf/access_token/' 
refresh_token_data = {'grant_type': 'refresh_token', 
         'client_id': CLIENT_ID, 
         'client_secret': CLIENT_SECRET, 
         'refresh_token': access_token['refresh_token']} 

response = requests.post(url=refresh_token_url, data=refresh_token_data, 
         headers={'api-key': CLIENT_ID, 'authorization': 'Bearer %s' % access_token['access_token']}) 

print 'Request details:' 
print 'Content-Type:', response.request.headers['Content-Type'] 
print 'Request body:', response.request.body 

try: 
    access_token = response.json() 
    print 'Got an access token:', access_token 
except: 
    print 'Did not get JSON. Here is the response and content:' 
    print response 
    print response.content 

# Attempt another request on the user's behalf using the token 
refresh_token = response.json() 
response = requests.get(url=activity_type_url, verify=False, 
         headers={'api-key': CLIENT_ID, 'authorization': 'Bearer %s' % access_token['access_token']}) 

謝謝!

CC:@Makaille

回答

0

我解決了我的問題。在mapmyrun設置//回調

  • 然後我的應用程序設置我指着我的深層鏈接回調鏈接:

    1. 我設置一個深層鏈接重定向到我的應用程序:註冊。我寫在紅寶石和這個坐在我的後端服務器上:

      #!/usr/bin/env ruby 
      require 'rubygems' 
      require 'sinatra' 
      
      get '/mapmyruncallback' do 
          redirect 'register://callback' 
      end 
      
    2. 然後在AppDelegate.swift我把 「oauth2.handleRedirectURL(URL)」

      func application(_ application: UIApplication, open url: URL, sourceApplication: String?, annotation: Any) -> Bool { 
      
          print("url path :\(url)") 
      
      
          oauth2.handleRedirectURL(url) 
          return true 
      } 
      
    3. 瞧! :)