简体   繁体   English


[英]How to get user access token?

I'm trying to access scores through the Facebook API to get a list of scores of my friends. 我正试图通过Facebook API访问分数,以获得我朋友的分数列表。 When I try to access /[facebook id]/scores , I get the following error even with my app access token: 当我尝试访问/[facebook id]/scores ,即使使用我的应用访问令牌,我也会收到以下错误:

FacebookApiException [ 0 ]: A user access token is required to request this resource. FacebookApiException [0]:需要用户访问令牌来请求此资源。 ~ APPPATH/classes/basefacebook.php [ 1039 ] ~APPATH / classes / basefacebook.php [1039]

How do I get a user access token? 如何获取用户访问令牌?

Updated: After reading http://developers.facebook.com/docs/reference/api/permissions/ , I've confirmed that the app access token and user access token are two different access tokens. 更新:阅读http://developers.facebook.com/docs/reference/api/permissions/后 ,我确认应用访问令牌和用户访问令牌是两个不同的访问令牌。 The question still remains, how do I get a user access token? 问题仍然存在,我如何获得用户访问令牌?

I see that you are using the php-sdk. 我看到你正在使用php-sdk。 So you need your friend to access your app with a script something like the example : 因此,您需要您的朋友使用类似示例的脚本访问您的应用:

 * Copyright 2011 Facebook, Inc.
 * Licensed under the Apache License, Version 2.0 (the "License"); you may
 * not use this file except in compliance with the License. You may obtain
 * a copy of the License at
 *     http://www.apache.org/licenses/LICENSE-2.0
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
 * License for the specific language governing permissions and limitations
 * under the License.

require '../src/facebook.php';

// Create our Application instance (replace this with your appId and secret).
$facebook = new Facebook(array(
  'appId'  => '191149314281714',
  'secret' => '73b67bf1c825fa47efae70a46c18906b',

// Get User ID
$user = $facebook->getUser();

// We may or may not have this data based on whether the user is logged in.
// If we have a $user id here, it means we know the user is logged into
// Facebook, but we don't know if the access token is valid. An access
// token is invalid if the user logged out of Facebook.

if ($user) {
  try {
    // Proceed knowing you have a logged in user who's authenticated.
    $user_profile = $facebook->api('/me');
  } catch (FacebookApiException $e) {
    $user = null;

// Login or logout url will be needed depending on current user state.
if ($user) {
  $logoutUrl = $facebook->getLogoutUrl();
} else {
  $loginUrl = $facebook->getLoginUrl(array('scope'=>'offline_access'));

// This call will always work since we are fetching public data.
$naitik = $facebook->api('/naitik');

<!doctype html>
<html xmlns:fb="http://www.facebook.com/2008/fbml">
      body {
        font-family: 'Lucida Grande', Verdana, Arial, sans-serif;
      h1 a {
        text-decoration: none;
        color: #3b5998;
      h1 a:hover {
        text-decoration: underline;

    <?php if ($user): ?>
      <a href="<?php echo $logoutUrl; ?>">Logout</a>
    <?php else: ?>
        Login using OAuth 2.0 handled by the PHP SDK:
        <a href="<?php echo $loginUrl; ?>">Login with Facebook</a>
    <?php endif ?>

    <h3>PHP Session</h3>
    <pre><?php print_r($_SESSION); ?></pre>

    <?php if ($user): ?>
      <img src="https://graph.facebook.com/<?php echo $user; ?>/picture">

      <h3>Your User Object (/me)</h3>
      <pre><?php print_r($user_profile); ?></pre>
    <?php else: ?>
      <strong><em>You are not Connected.</em></strong>
    <?php endif ?>

    <h3>Public profile of Naitik</h3>
    <img src="https://graph.facebook.com/naitik/picture">
    <?php echo $naitik['name']; ?>

Then you need to: 然后你需要:

  1. Grant the offline_access permission 授予offline_access权限
  2. Store the returned access_token 存储返回的access_token
  3. Use that token whenever you query your friend's scores $facebook->api('friend_id/scores?access_token=$stored_access_token'); 每当您查询朋友的分数时,请使用该令牌$facebook->api('friend_id/scores?access_token=$stored_access_token');

Please refer to the documentations showing the authentication flows for Facebook. 请参阅显示Facebook身份验证流程的文档。

http://developers.facebook.com/docs/authentication/ http://developers.facebook.com/docs/authentication/

This is the best place to start to understand how it works. 这是开始了解它如何工作的最佳场所。

  1. You get the user's permission and access_token 您获得了用户的权限和access_token
  2. You can use this access_token as a "key" to get and post Facebook information 您可以使用此access_token作为“密钥”来获取和发布Facebook信息

The access_token is not to be mistaken for your application secret code, which is used to authorised to make a connection on behalf of your registered application. access_token不应被误认为是您的应用程序密码,该密码用于授权代表您注册的应用程序建立连接。



Suscribe to this event: 订阅此活动:

FB.Event.subscribe('auth.authResponseChange', function(response) {

then check response.status 然后检查response.status

I call this function: 我叫这个功能:


Which calls the function below and gets the accesss_token from the response. 它调用下面的函数并从响应中获取accesss_token。

function onFacebookInitialLoginStatus(response) {
            if (response.status == "connected" && response.session) {
                var access_token = response.session.access_token;
                var url = 'https://graph.facebook.com/me/likes?access_token=' + access_token;
            else {

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

粤ICP备18138465号  © 2020-2024 STACKOOM.COM