如何获取用户访问令牌?

时间:2011-10-21 23:47:14

标签: php facebook facebook-graph-api access-token facebook-access-token

我正在尝试通过Facebook API访问分数,以获取我朋友的分数列表。当我尝试访问/[facebook id]/scores时,即使使用我的应用访问令牌,我也会收到以下错误:

  

FacebookApiException [0]:需要用户访问令牌来请求此资源。 ~APPATH / classes / basefacebook.php [1039]

如何获取用户访问令牌?

已更新:阅读http://developers.facebook.com/docs/reference/api/permissions/后,我确认应用访问令牌和用户访问令牌是两种不同的访问令牌。问题仍然存在,我如何获得用户访问令牌?

5 个答案:

答案 0 :(得分:4)

我看到你正在使用php-sdk。因此,您需要您的朋友使用类似example

的脚本访问您的应用
<?php
/**
 * Copyright 2011 Facebook, Inc.
 *
 * Licensed under the Apache License, Version 2.0 (the "License"); you may
 * not use this file except in compliance with the License. You may obtain
 * a copy of the License at
 *
 *     http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
 * WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
 * License for the specific language governing permissions and limitations
 * under the License.
 */

require '../src/facebook.php';

// Create our Application instance (replace this with your appId and secret).
$facebook = new Facebook(array(
  'appId'  => '191149314281714',
  'secret' => '73b67bf1c825fa47efae70a46c18906b',
));

// Get User ID
$user = $facebook->getUser();

// We may or may not have this data based on whether the user is logged in.
//
// If we have a $user id here, it means we know the user is logged into
// Facebook, but we don't know if the access token is valid. An access
// token is invalid if the user logged out of Facebook.

if ($user) {
  try {
    // Proceed knowing you have a logged in user who's authenticated.
    $user_profile = $facebook->api('/me');
  } catch (FacebookApiException $e) {
    error_log($e);
    $user = null;
  }
}

// Login or logout url will be needed depending on current user state.
if ($user) {
  $logoutUrl = $facebook->getLogoutUrl();
} else {
  $loginUrl = $facebook->getLoginUrl(array('scope'=>'offline_access'));
}

// This call will always work since we are fetching public data.
$naitik = $facebook->api('/naitik');

?>
<!doctype html>
<html xmlns:fb="http://www.facebook.com/2008/fbml">
  <head>
    <title>php-sdk</title>
    <style>
      body {
        font-family: 'Lucida Grande', Verdana, Arial, sans-serif;
      }
      h1 a {
        text-decoration: none;
        color: #3b5998;
      }
      h1 a:hover {
        text-decoration: underline;
      }
    </style>
  </head>
  <body>
    <h1>php-sdk</h1>

    <?php if ($user): ?>
      <a href="<?php echo $logoutUrl; ?>">Logout</a>
    <?php else: ?>
      <div>
        Login using OAuth 2.0 handled by the PHP SDK:
        <a href="<?php echo $loginUrl; ?>">Login with Facebook</a>
      </div>
    <?php endif ?>

    <h3>PHP Session</h3>
    <pre><?php print_r($_SESSION); ?></pre>

    <?php if ($user): ?>
      <h3>You</h3>
      <img src="https://graph.facebook.com/<?php echo $user; ?>/picture">

      <h3>Your User Object (/me)</h3>
      <pre><?php print_r($user_profile); ?></pre>
    <?php else: ?>
      <strong><em>You are not Connected.</em></strong>
    <?php endif ?>

    <h3>Public profile of Naitik</h3>
    <img src="https://graph.facebook.com/naitik/picture">
    <?php echo $naitik['name']; ?>
  </body>
</html>

然后你需要:

  1. 授予offline_access权限
  2. 存储已退回的access_token
  3. 每当您查询朋友的分数$facebook->api('friend_id/scores?access_token=$stored_access_token');
  4. 时,请使用该代币

答案 1 :(得分:3)

请参阅显示Facebook认证流程的文档。

http://developers.facebook.com/docs/authentication/

这是开始了解它如何运作的最佳场所。

  1. 您获得了用户的权限和access_token
  2. 您可以使用此access_token作为获取和发布Facebook信息的“密钥”
  3. 不应将access_token误认为是您的应用程序密码,该密码用于授权代表您注册的应用程序建立连接。

答案 2 :(得分:2)

在Flex中,您可以使用:

FacebookDesktop.getSession().accessToken;

答案 3 :(得分:0)

我称之为此功能:

FB.getLoginStatus(onFacebookInitialLoginStatus);

调用下面的函数并从响应中获取accesss_token。

function onFacebookInitialLoginStatus(response) {
            if (response.status == "connected" && response.session) {
                var access_token = response.session.access_token;
                var url = 'https://graph.facebook.com/me/likes?access_token=' + access_token;
            }
            else {
                facebookLogin();
            }
        }

答案 4 :(得分:0)

订阅此活动:

FB.Event.subscribe('auth.authResponseChange', function(response) {

然后检查response.status