On Friday, August 15, 2014 5:25:03 PM UTC-4, Tobias Quinn wrote:
> I've used Friend for a single page app. It serves the main page to anyone and 
> has a route that can issue a json web token (jwt) using http basic 
> authentication. I used clj-jwt to generate the token.
> 
> Then, the api routes required by the app are authenticated using the jwt in 
> the authorization header.
> 
> It involved writing a friend workflow for the jwt which is similar to the 
> http-basic workflow.

That's a good suggestion, thanks.  Now, the only issue I need to figure out is 
how to use both the interactive-form workflow for the main login page, and then 
http-basic to get the jwt token, without passing around credentials in 
cleartext if possible.

-- 
Note that posts from new members are moderated - please be patient with your 
first post.
--- 
You received this message because you are subscribed to the Google Groups 
"ClojureScript" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/clojurescript.

Reply via email to