Skip to main content

Authentication Project: Secret Page App Part Two (Login/Logout)


Login Routes

Step One: Add login route

For login, we need to write a "/login" route to render to the login page.



At the same time, we need to create login page in the "view" folder.


Step Two: Set up the local strategy

Then, we need to set up the local strategy to be "user authenticate".



Step Three: Write post route and add middle-ware

Inside the app.post, we pass in "passport.authenticate", which is a middle-ware. It allows codes that run before our final route call back. When app gets a post request to "/login", it's going to run this code immediately. 


Step Four: Run the app

We run the app and can see the login form.


Then, for every page, we add three links: sign up, login, and logout.


So the homepage will look like this:


Logout Routes

 Logout routes are very simple.

We need to create a "/logout" route which will log user out and redirect to the homepage. When we log user out, we are not changing anything in the database. What is happening is that passport is destroying all user data in the session.


Then, we add a middle-ware to check if the user is logged in or not. The function "is loggedIn " takes three parameters: request, response and next. 


If it is logged in, it's going to check the request authenticated. If it is, then return to next. The next will be the "secret" page. 

At the end, we also need to add "is loggedIn" in the secret route. When a request comes in a Get request to "/secret", it's going to run "isloggedIn" function code before it does anything else.


That' all! It is a long process. At the end, we can sign up the page, and log in to the secret page and then log out.

Comments

Popular posts from this blog

Intermediate Express.Js: Write Conditions and Loops In The EJS (study note)

We continue to use the app.js which we have build to be the study example. In the last post, we only add a simple EJS tag <%= thingVar %> inside h1 tag. This will match the "thing" to any "thing" request from the user. If Statement Today, the course shows us to write a simple if statement in the EJS file. I learn to apply it to my own app. In the if statement, if users send"/wantto/workout" request, the page will show a new content "Good Idea!". We wrote the if statement in the "diet.ejs" file, and we add "<% %>" tags around the code. We have to wrap every line of JavaScript anytime JavaScript starts and ends. Moreover, you may see there are two types of ejs tags here: <%= %> The one with equal sign. According to the course, when we add equal sign, the value that is returned inside of the tag will be rendered to the HTML page. it will be added to the HTML. For example, if we write ...

Intermediate Express.js: How To Add Styles & Partials in EJS File?

So far, we only have simple HTML tags and ejs tags in each ejs file. Every template page has no style at all. And the basic HTML header and footer are also missing. Today, I learned how to add styles and partials in ejs file. Link Style Step One: Touch a Separate CSS file I create a new directory "Style" under the "EJSDemo" directory, then I add a new CSS file "app.css" inside "Style" folder. Step Two: Add app.use(express.static()) in the app.js I add app.use(express.static("style")) in the "app.js". This will tell Express.js to serve the content of "Style" directory. Step Three: Write styles in CSS file I simple give body an orange background color and set text color to be grey. Step Four: Link to CSS file in the EJS file I just add <link> tag to link the "app.css" file on the top of the h1 tag in each ejs template. As the result, when I run the app and...

Authentication Project: Secret Page App Part One (Set up & Create User Model)

So far we only write the RESTful routes to send request and redirect to the related page, but we haven't do anything about authentication. If we can sign up, login, and log out, it will make our app more meaningful. Therefore, the course shows us how to create a secret page app, which will allow us to sign up, login to a secret page, and logout. Since it requires so many pieces, I will divided this project into three parts: set up & create user model, sign up, and login/logout. In this post, I am going to show all the set up process. Set Up Step One: Install packages The first thing we are going to do to create a folder "Auth", and inside of "Auth", we need to create another folder "AuthDemo". Then we cd (change directory) to "AuthDemo". Now we can set up the actual application structure by installing a few packages: passport, passport-local, passport-local-mongoose, mongoose, express, ejs, body-parser, and express-session....