从服务器使用net/http设置cookie



我正在尝试使用Go的net/http包设置cookie。我有:

package main
import "io"
import "net/http"
import "time"
func indexHandler(w http.ResponseWriter, req *http.Request) {
    expire := time.Now().AddDate(0, 0, 1)
    cookie := http.Cookie{"test", "tcookie", "/", "www.domain.com", expire, expire.Format(time.UnixDate), 86400, true, true, "test=tcookie", []string{"test=tcookie"}}
    req.AddCookie(&cookie)
    io.WriteString(w, "Hello world!")
}
func main() {
    http.HandleFunc("/", indexHandler)
    http.ListenAndServe(":80", nil)
}

我试着用"饼干"在谷歌上搜索"果朗",但没有得到任何好结果。如果有人能为我指明正确的方向,我将不胜感激。

我不是围棋专家,但我认为你是在根据请求设置cookie,不是吗?您可能需要将其设置在响应上。net/http中有一个setCookie函数。这可能会有所帮助:http://golang.org/pkg/net/http/#SetCookie

func SetCookie(w ResponseWriter, cookie *Cookie)
//ShowAllTasksFunc is used to handle the "/" URL which is the default ons
func ShowAllTasksFunc(w http.ResponseWriter, r *http.Request){
    if r.Method == "GET" {
        context := db.GetTasks("pending") //true when you want non deleted notes
        if message != "" {
            context.Message = message
        }
        context.CSRFToken = "abcd"
        message = ""
        expiration := time.Now().Add(365 * 24 * time.Hour)
        cookie    :=    http.Cookie{Name: "csrftoken",Value:"abcd",Expires:expiration}
        http.SetCookie(w, &cookie)
        homeTemplate.Execute(w, context)
    } else {
        message = "Method not allowed"
        http.Redirect(w, r, "/", http.StatusFound)
    }
}

RequestsResponseWriter之间有一个基本区别,请求是浏览器像一样发送的内容

Host: 127.0.0.1:8081
User-Agent: ...
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
DNT: 1
Referer: http://127.0.0.1:8081/
Cookie: csrftoken=abcd
Connection: keep-alive

响应是处理程序将发送的内容,类似于:

Content-Type: text/html; charset=utf-8
Date: Tue, 12 Jan 2016 16:43:53 GMT
Set-Cookie: csrftoken=abcd; Expires=Wed, 11 Jan 2017 16:43:53 GMT
Transfer-Encoding: chunked
<html>...</html>

当浏览器发出请求时,它将包括该域的cookie,因为cookie是按域存储的,不能从跨域访问,如果你只将cookie设置为HTTP,那么它只能从通过HTTP而不是JS设置的网站访问。

因此,当你从Cookie中获取信息时,你可以通过r.Cookie方法来做到这一点,比如这个

cookie, _ := r.Cookie("csrftoken")
if formToken == cookie.Value {

https://github.com/thewhitetulip/Tasks/blob/master/views/addViews.go#L72-L75

但是,当你要设置cookie时,你必须在response-writer方法中进行,请求是一个只读对象,我们会对其进行响应,将其视为你从某人那里收到的短信,这是一个请求,你只能得到它,你键入的是一个响应,所以你可以在中键入cookie

有关更多详细信息:https://thewhitetulip.gitbooks.io/webapp-with-golang-anti-textbook/content/content/2.4workingwithform.html

下面的代码有助于u

    cookie1 := &http.Cookie{Name: "sample", Value: "sample", HttpOnly: false}
    http.SetCookie(w, cookie1)

下面展示了我们如何在产品中使用cookie:

func handleFoo(w http.ResponseWriter, r *http.Request) {
    // cookie will get expired after 1 year 
    expires := time.Now().AddDate(1, 0, 0)
    ck := http.Cookie{
        Name: "JSESSION_ID",
        Domain: "foo.com",
        Path: "/",
        Expires: expires,
    }
    // value of cookie    
    ck.Value = "value of this awesome cookie"
    // write the cookie to response
    http.SetCookie(w, &ck)
    // ...
}

在添加Path和MaxAge之前,它在Safari中对我不起作用。安全和常规cookie都对我有效

分享,这样可以帮助像我一样被困2天以上的人:)

expire := time.Now().Add(20 * time.Minute) // Expires in 20 minutes
cookie := http.Cookie{Name: "username", Value: "nonsecureuser", Path: "/", Expires: expire, MaxAge: 86400}
http.SetCookie(w, &cookie)
cookie = http.Cookie{Name: "secureusername", Value: "secureuser", Path: "/", Expires: expire, MaxAge: 86400, HttpOnly: true, Secure: true}
http.SetCookie(w, &cookie)

首先,您需要创建Cookie,然后使用http包的SetCookie()函数可以设置Cookie。

expire := time.Now().Add(10 * time.Minute) 
cookie := http.Cookie{Name: "User", Value: "John", Path: "/", Expires: expire, MaxAge: 90000}
http.SetCookie(w, &cookie)

您可以使用gorilla包来处理cookie,也可以说是安全cookie:http://www.gorillatoolkit.org/pkg/securecookie

最新更新