duanche2007 2018-06-08 19:42
浏览 325
已采纳

使用fetch()发布时未设置Cookie

Alright, so I have come across a rather weird problem.

I am creating a login instance for users.

When I post the login form without fetch() it works. My browser (both Firefox and Chrome) sets the cookie properly and I can be "authenticated".

However, when I send the data via fetch() it does not setcookie() in the backend.

NOTE: The assumption is that the credentials are correct.

This is my PHP login script

$user = htmlentities($_POST['username'], ENT_QUOTES);
$pass = htmlentities($_POST['password'], ENT_QUOTES);
$remember = isset($_POST['rememberme']) ? true : false;

$login = $PHPAuth['auth']->login($user, $pass, $remember);

/**
 * $PHPAuth == [
 *   'config' => PHPAuthConfig(),
 *   'auth'   => PHPAuth()
 */ 


if($login['error']) {
    echo json_encode($login);
} else {
    // create new cookie
   setcookie(
       $PHPAuth['config']->cookie_name,
       $login['hash'],
       $login['expire'],
       '/',          # path
       'localhost',  # domain
       false,        # HTTPS
       true          # HTTP-ONLY
    );
    echo json_encode($login);
}

The fetch() script is at its bare minimum, only requesting body and method. I removed any extra headers to see if it would help. It didn't:

function postForm(url, data) {
  return fetch(url, {
      body: data,
      method: 'post'
    })
    .then(response => response.json());
}

FOR REFERENCE: I am using this PHPAuth library.

  • 写回答

1条回答 默认 最新

  • douzhi6365 2018-06-08 19:48
    关注

    By default, fetch does not have cookies enabled, you can do so by adding the credentials option and setting it to same-origin:

    function postForm(url, data) {
      return fetch(url, {
          credentials: "same-origin",
          body: data,
          method: 'post'
        })
        .then(response => response.json());
    }
    

    Read more about Request.credentials at MDN.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 ubuntu子系统密码忘记
  • ¥15 信号傅里叶变换在matlab上遇到的小问题请求帮助
  • ¥15 保护模式-系统加载-段寄存器
  • ¥15 电脑桌面设定一个区域禁止鼠标操作
  • ¥15 求NPF226060磁芯的详细资料
  • ¥15 使用R语言marginaleffects包进行边际效应图绘制
  • ¥20 usb设备兼容性问题
  • ¥15 错误(10048): “调用exui内部功能”库命令的参数“参数4”不能接受空数据。怎么解决啊
  • ¥15 安装svn网络有问题怎么办
  • ¥15 vue2登录调用后端接口如何实现