Packages
phauxth
0.10.3
2.5.1
retired
2.5.0
2.4.0
2.3.2
2.3.1
2.3.0
2.2.0
2.1.1
2.1.0
2.0.1
2.0.0
2.0.0-rc.2
2.0.0-rc.1
2.0.0-rc.0
2.0.0-beta.1
2.0.0-beta.0
2.0.0-alpha.5
2.0.0-alpha.4
retired
2.0.0-alpha.3
retired
2.0.0-alpha.2
retired
2.0.0-alpha.1
retired
2.0.0-alpha.0
retired
1.2.9
1.2.8
1.2.7
1.2.6
1.2.5
1.2.4
1.2.3
1.2.1
1.2.0
1.1.3
1.1.2
1.1.1
1.1.0
1.0.3
1.0.2
1.0.1
1.0.0
0.17.1
0.17.0
0.16.0
0.15.1
0.15.0
0.14.0
0.13.0-rc.1
0.13.0-rc.0
0.12.1-rc.1
0.12.1-rc.0
0.12.0-rc
0.11.0
0.10.3
0.10.2
0.10.0
0.9.0
0.8.2
0.8.1
0.8.0
Authentication library for Phoenix, and other Plug-based, web applications
Current section
Files
Jump to
Current section
Files
lib/phauxth.ex
defmodule Phauxth do
@moduledoc """
A collection of functions to be used to authenticate Phoenix web apps.
Phauxth is designed to be secure, extensible and well-documented.
Phauxth offers two types of functions: Plugs, which are called with plug,
and verify/2 functions, which are called inside the function bodies.
## Plugs
Plugs take a conn (connection) struct and opts as arguments and return
a conn struct.
### Authenticate
Phauxth.Authenticate checks to see if there is a valid cookie or token
for the user and sets the current_user value accordingly.
This is usually added to the pipeline you want to authenticate in the
router.ex file, as in the following example.
pipeline :browser do
plug Phauxth.Authenticate
end
### Remember
This Plug provides a check for a remember_me cookie.
pipeline :browser do
plug Phauxth.Authenticate
plug Phauxth.Remember
end
This needs to be called after plug Phauxth.Authenticate.
## Phauxth verify/2
Each verify/2 function takes a map (usually Phoenix params) and opts
(an empty list by default) and returns {:ok, user} or {:error, message}.
### Login and One-time passwords
In the example below, Phauxth.Login.verify is called within the create
function in the session controller.
def create(conn, %{"session" => params}) do
case Phauxth.Login.verify(params) do
{:ok, user} -> handle_successful_login
{:error, message} -> handle_error
end
end
Phauxth.Otp.verify is used for logging in with one-time passwords, which
are often used with two-factor authentication. It is used in the same
way as Phauxth.Login.verify.
### User confirmation
Phauxth.Confirm.verify is used for user confirmation, using email or phone,
and Phauxth.Confirm.PassReset.verify is used for password resetting.
## Phauxth with a new Phoenix project
The easiest way to get started is to use the phauxth_new installer.
First, download and install it:
mix archive.install https://github.com/riverrun/phauxth/raw/master/installer/archives/phauxth_new.ez
Then run the `mix phauxth.new` command in the main directory of the
Phoenix app. The following options are available:
* `--api` - create files for an api
* `--confirm` - add files for email confirmation
## Customizing Phauxth
See the documentation for Phauxth.Authenticate.Base, Phauxth.Login.Base
and Phauxth.Confirm.Base for more information on extending these modules.
You can find more information at the
[Phauxth wiki](https://github.com/riverrun/phauxth/wiki).
"""
@callback verify(map, Keyword.t) ::
{:ok, user :: Ecto.Schema.t} | {:error, message :: String.t}
end