2017-02-25 108 views
0

我试图从fitbit API请求访问令牌,但它始终返回401未授权状态,即使我将请求配置为与相应的curl查询相同 - 即成功。返回的错误消息称:"errorType":"invalid_client","message":"Invalid authorization header format.是否存在的httplib2的如何建立其请求被扔我在这里下车了一些细微差别......使用python httplib2发送请求失败,使用curl

(工作)卷曲查询:

curl -X POST -i 
-H 'Authorization: Basic <LONG_CODE>' 
-H 'Content-Type: application/x-www-form-urlencoded' 
-d "clientId=<CLIENT_ID>" 
-d "grant_type=authorization_code" 
-d "redirect_uri=http%3A%2F%2F127.0.0.1%3A5000%2Ffitbit-callback" 
-d "code=<AUTHORIZATION_GRANT_CODE>" 
https://api.fitbit.com/oauth2/token 

非工作蟒蛇请求(编):

TOKEN_URL = 'https://api.fitbit.com'/oauth2/token' 
CALLBACK_URI = 'http://127.0.0.1:5000/fitbit-callback' 

auth_header = base64.b64encode(bytes(<CLIENT_ID> + ':' + <CLIENT_SECRET>, 'utf-8')) 
headers = { 
    'Authorization': 'Basic %s' % auth_header, 
    'Content-Type' : 'application/x-www-form-urlencoded' 
    } 

params = { 
    'client_id': <CLIENT_ID>, 
    'grant_type': 'authorization_code', 
    'redirect_uri': CALLBACK_URI, 
    'code': <AUTHORIZATION_GRANT_CODE> 
    } 
urlparams = urlencode(params) 

resp, content = h.request(TOKEN_URL, 
    'POST', 
    urlparams, 
    headers) 

不从代码明显:

  • auth_header -variable在python匹配python3 fitbit.py<LONG_CODE>

终端响应:

send: b"POST /oauth2/token HTTP/1.1\r\nHost: api.fitbit.com\r\nContent-Length: 153\r\nauthorization: Basic b'<LONG_CODE>'\r\ncontent-type: application/x-www-form-urlencoded\r\nuser-agent: Python-httplib2/0.10.3 (gzip)\r\naccept-encoding: gzip, deflate\r\n\r\n" 
send: b'client_id=<CLIENT_ID>&grant_type=authorization_code&redirect_uri=http%3A%2F%2F127.0.0.1%3A5000%2Ffitbit-callback&code=<AUTHORIZATION_GRANT_CODE>' 
reply: 'HTTP/1.1 401 Unauthorized\r\n' 
header: Date header: Content-Type header: Transfer-Encoding header: Connection header: Cache-control header: WWW-Authenticate header: Content-Language header: Content-Encoding header: Vary header: X-Frame-Options header: Server header: CF-RAY 

运行print(content)

b'{"errors":[{"errorType":"invalid_client","message":"Invalid authorization header format. Visit https://dev.fitbit.com/docs/oauth2 for more information on the Fitbit Web API authorization process."}],"success":false}' 

回答

0

嗯,这是尴尬。在我将请求指向请求捕获服务之前,我没有注意到它,可以让我分析它们(比如runscope),但我似乎只是错过了python示例中的b'<LONG_CODE>'格式。这个固定:

auth_header.decode("utf-8")

也许这个问题应该被删除,如果是不太可能帮助别人......