简体   繁体   中英

Unauthorized access to REST API

I am having a big problem when trying to authenticate to QuickBlox's server using a Token.

The method I use is:

public static async Task<LoginResponse> GetLoginResponseAsync(string email, string password)
{
    LoginResponse result = null;

    using (var client = new HttpClient())
    {
        string token = QbProvider.SessionResponse.Session.Token;

        LoginRequest request = new LoginRequest()
        {
            Email = email,
            Password = password
        };

        using (var requestMessage = new HttpRequestMessage(HttpMethod.Post, LoginUrlRequest))
        {
            requestMessage.Headers.Authorization = new AuthenticationHeaderValue("QB-Token", token);

            using (var response = await client.SendAsync(requestMessage))
            {
                string json = response.Content.ReadAsStringAsync().Result;
                result = JsonConvert.DeserializeObject<LoginResponse>(json);
            }
        }
    }

    return result;
}

The server's response is:

{"errors":["Token is required"]}

And the headers (debugging) in the client object are:

{
    StatusCode: 401, ReasonPhrase: 'Unauthorized', Version: 1.1, Content: System.Net.Http.StreamContent, Headers:
    {
        Access-Control-Allow-Origin: *
        Cache-Control: no-cache
        Date: Thu, 01 Jun 2017 12:05:29 GMT
        QuickBlox-REST-API-Version: 0.1.1
        Server: openresty/1.9.15.1
        Status: 401 Unauthorized
        Strict-Transport-Security: max-age=31536000
        WWW-Authenticate: OAuth realm=users
        X-Content-Type-Options: nosniff
        X-Frame-Options: SAMEORIGIN
        X-Request-Id: 584a0dca-fc44-4114-9626-327ac1729f67
        X-Runtime: 0.003430
        X-XSS-Protection: 1; mode=block
        Connection: keep-alive
        Content-Type: application/json; charset=utf-8
        Content-Length: 32
    }
}

When I use the Token in Postman, the server's response is successfull.

Do you know what am I doing wrong?

Thank you so much in advance! Regards.

尝试使用requestMessage.Headers.Add(“ QB-Token”,token)而不是您的授权一添加令牌头-@dukedukes

The technical post webpages of this site follow the CC BY-SA 4.0 protocol. If you need to reprint, please indicate the site URL or the original address.Any question please contact:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM