


Using dj-rest-auth to integrate GitHub authentication in your Django project
This article is a simple guide on how to implement GitHub OAuth for a secure user authentication.
In this guide we will be able to
- seamlessly create or login a user using their GitHub credentials
- save users credentials for later use
Prerequisite
To get the best out of this article users should have a fair understanding on
- GitHub
- Django
- Django rest framework
We are going to implement this in 3 simple steps
- 1. setup GitHub
- 2. setup Django
- 3. test authentication endpoint
1. Setup GitHub
Create your GitHub OAuth credentials by going to to settings on your GitHub account, scroll down to where you see Developer settings, click on OAuth Apps as shown below.
If you have an existing app you can edit it else you can create a new one by clicking on New OAuth App and create a new one, give a clear and descriptive name for the app, add to your Homepage URL http://localhost:8000/ you might want to substitute localhost: for 127.0.0.1: if that's how you've configured your Django app to run point been that whatever configuration you setup on GitHub should match with what you have on your app to avoid server errors been thrown, add to Authorization callback URL this callback url http://localhost:8000/api/auth/github/login/callback/ your setup should reflect what you see in the image below.
Copy and save your Client ID and Client Secrets as shown below for later use on your Django project
2. Setup Django
Run pip install django-allauth dj-rest-auth requests in other to install these packages. In the settings.py file of your app add the following code block to your
SOCIALACCOUNT_PROVIDERS = { 'github': { 'APP': { 'client_id': '<github_client_id>', 'secret': '<github_secret_keys>', 'key': '' } } } SITE_ID = 1 </github_secret_keys></github_client_id>
if you wish to capture the email of an authenticated users in the admin you can include this line of code to your projects settings.py file
ACCOUNT_EMAIL_REQUIRED = True
We continue to modify our settings.py file by adding the following code block
'rest_framework', 'rest_framework.authtoken', 'dj_rest_auth', 'django.contrib.sites', 'allauth', 'allauth.account', 'allauth.socialaccount', 'allauth.socialaccount.providers.github'
in the middlesware of your settings.py file include this line of code
'allauth.account.middleware.AccountMiddleware',
Lastly we modify the projects urls.py file by adding the following code block
from allauth.socialaccount.providers.github import views as github_views path('api/auth/github/login/', github_views.oauth2_login, name='github_login'), path('api/auth/github/login/callback/', github_views.oauth2_callback, name='github_callback'),
NB: The modification should be done in the project's urls.py file and not the app's urls.py file
3. Test authentication endpoint
All done ? visit the endpoint http://localhost:8000/api/auth/github/login/ you should be redirected to a page like this and when you click on the Continue button you should be redirected to GitHub's authorization page
Additional consideration
You notice after a successful authentication you're been redirected to http://localhost:8000/accounts/profile/ which displays a 404 error page.
To fix this we can create an endpoint /accounts/profile to your apps urls.py file and then create a relative views for that endpoint. If your endpoint and views are setup correctly then you should now see this instead of 404 error page
Difference between dj-auth-rest and social-auth-app-django
dj-auth-rest and social-auth-app-django are both libraries used to facilitate authentication in Django projects, but they cater to different needs and operate differently
dj-auth-rest is used for an API based project while social-auth-app-django is used for a web based project and both can be used on the same project
Conclusion
Integrating GitHub OAuth into your Django application provides a secure and user-friendly way for individuals to log in using their GitHub credentials.
Using this guide, you can enhance your application's security, streamline the login process, and improve the overall user experience while accessing relevant user data.
The above is the detailed content of Using dj-rest-auth to integrate GitHub authentication in your Django project. For more information, please follow other related articles on the PHP Chinese website!

Python's flexibility is reflected in multi-paradigm support and dynamic type systems, while ease of use comes from a simple syntax and rich standard library. 1. Flexibility: Supports object-oriented, functional and procedural programming, and dynamic type systems improve development efficiency. 2. Ease of use: The grammar is close to natural language, the standard library covers a wide range of functions, and simplifies the development process.

Python is highly favored for its simplicity and power, suitable for all needs from beginners to advanced developers. Its versatility is reflected in: 1) Easy to learn and use, simple syntax; 2) Rich libraries and frameworks, such as NumPy, Pandas, etc.; 3) Cross-platform support, which can be run on a variety of operating systems; 4) Suitable for scripting and automation tasks to improve work efficiency.

Yes, learn Python in two hours a day. 1. Develop a reasonable study plan, 2. Select the right learning resources, 3. Consolidate the knowledge learned through practice. These steps can help you master Python in a short time.

Python is suitable for rapid development and data processing, while C is suitable for high performance and underlying control. 1) Python is easy to use, with concise syntax, and is suitable for data science and web development. 2) C has high performance and accurate control, and is often used in gaming and system programming.

The time required to learn Python varies from person to person, mainly influenced by previous programming experience, learning motivation, learning resources and methods, and learning rhythm. Set realistic learning goals and learn best through practical projects.

Python excels in automation, scripting, and task management. 1) Automation: File backup is realized through standard libraries such as os and shutil. 2) Script writing: Use the psutil library to monitor system resources. 3) Task management: Use the schedule library to schedule tasks. Python's ease of use and rich library support makes it the preferred tool in these areas.

To maximize the efficiency of learning Python in a limited time, you can use Python's datetime, time, and schedule modules. 1. The datetime module is used to record and plan learning time. 2. The time module helps to set study and rest time. 3. The schedule module automatically arranges weekly learning tasks.

Python excels in gaming and GUI development. 1) Game development uses Pygame, providing drawing, audio and other functions, which are suitable for creating 2D games. 2) GUI development can choose Tkinter or PyQt. Tkinter is simple and easy to use, PyQt has rich functions and is suitable for professional development.


Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

AI Hentai Generator
Generate AI Hentai for free.

Hot Article

Hot Tools

Safe Exam Browser
Safe Exam Browser is a secure browser environment for taking online exams securely. This software turns any computer into a secure workstation. It controls access to any utility and prevents students from using unauthorized resources.

Notepad++7.3.1
Easy-to-use and free code editor

MinGW - Minimalist GNU for Windows
This project is in the process of being migrated to osdn.net/projects/mingw, you can continue to follow us there. MinGW: A native Windows port of the GNU Compiler Collection (GCC), freely distributable import libraries and header files for building native Windows applications; includes extensions to the MSVC runtime to support C99 functionality. All MinGW software can run on 64-bit Windows platforms.

DVWA
Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is very vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, to help web developers better understand the process of securing web applications, and to help teachers/students teach/learn in a classroom environment Web application security. The goal of DVWA is to practice some of the most common web vulnerabilities through a simple and straightforward interface, with varying degrees of difficulty. Please note that this software

PhpStorm Mac version
The latest (2018.2.1) professional PHP integrated development tool