Git Product home page Git Product logo

17-bearer-auth's Introduction

CF 17: Bearer Auth

Submission Instructions

  • fork this repository & create a new branch for your work
  • write all of your code in a directory named lab- + <your name> e.g. lab-susan
  • push to your repository
  • submit a pull request to this repository
  • submit a link to your PR in canvas
  • write a question and observation on canvas

Learning Objectives

  • students will be able to create bearer authentication middleware
  • students will be able to utilize their bearer authentication middleware in their route structures
  • students will be able to test against authenticated routes

Requirements

Configuration

  • package.json
  • .eslintrc.json
  • .gitignore
  • .env
  • README.md

Description

  • create a bearer auth middleware module (feel free to use the one from lecture as a reference point)
  • create a new resource (Schema) that has at least three properties
    • this resource must have a property of userID that references the _id of the auth model that created the resource
    • the userID property can only be set from an _id found using your bearer auth middleware module
  • as always, use the npm debug module to log function calls that are used within your application
  • using the express Router, create routes for doing RESTFUL CRUD operations against your resource

Server Endpoints

/api/resource-name

  • POST request
  • pass data as stringifed JSON in the body of a post request to create a new resource

/api/resource-name/:id

  • GET request
  • pass the id of a resource though the url endpoint to req.params to fetch a resource
  • PUT request
  • pass data as stringifed JSON in the body of a put request to update a resource
  • DELETE request
  • pass the id of a resource though the url endpoint (using req.params) to delete a resource

Tests

  • create a test to ensure that your API returns a status code of 404 for routes that have not been registered
  • create a series of tests to ensure that your /api/resource-name endpoint responds as described for each condition below:
  • GET - test 200, for a request made with a valid id
  • GET - test 200, for a request made with no id param
  • GET - test 401, if no token was provided
  • GET - test 404, for a valid request with an id that was not found
  • PUT - test 200, for a post request with a valid body
  • PUT - test 401, if no token was provided
  • PUT - test 400, if the body was invalid
  • PUT - test 404, for a valid request made with an id that was not found
  • POST - test 200, for a post request with a valid body
  • POST - test 401, if no token was provided
  • POST - test 400, if no body was provided or if the body was invalid
  • DELETE - test 200, for a post request with a valid body
  • DELETE - test 401, if no token was provided
  • DELETE - test 404, for a valid request made with an id that was not found

17-bearer-auth's People

Contributors

rogerdav avatar sjschmidt44 avatar

Watchers

James Cloos avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.