微信公众号搜"智元新知"关注
微信扫一扫可直接关注哦!

asp.net – DotNetOpenAuth.WebServerClient.XSRF-会话在回调期间发生变化

我正在尝试设置一个简单的Oauth2登录身份验证.但是我停留在抛出以下异常的回调:
[ProtocolException: Unexpected OAuth authorization response received with callback and client state that does not match an expected value.]
   DotNetopenAuth.Messaging.ErrorUtilities.VerifyProtocol(Boolean condition,String unformattedMessage,Object[] args) +426
   DotNetopenAuth.OAuth2.WebServerClient.ProcessUserAuthorization(HttpRequestBase request) +771

here讨论了完全相同的问题

在我的例子中,SessionID保持不变,但DotNetopenAuth.WebServerClient.XSRF-Session cookie在回调时更改了它的值.

执行:

public void Authorize(HttpRequest request)
    {
        string callbackString = request.Url.AbsoluteUri;
        Uri callbackUri = new Uri(callbackString);;

        IAuthorizationState authorization = nimbleClient.ProcessUserAuthorization();

        if (authorization == null)
        {
            // Kick off authorization request
            nimbleClient.RequestUserAuthorization(returnTo: callbackUri);
        }
        else
        {
            //Get AccesToken
            Uri.EscapeDataString(authorization.Accesstoken);
        }

解决方法

您是否已将Cookie声明为常量,如下所示:
private const string XsrfCookieName = "DotNetopenAuth.WebServerClient.XSRF-Session"

这有助于在回调时保持该值.

原文地址:https://www.jb51.cc/aspnet/247209.html

版权声明:本文内容由互联网用户自发贡献,该文观点与技术仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌侵权/违法违规的内容, 请发送邮件至 dio@foxmail.com 举报,一经查实,本站将立刻删除。

相关推荐