Home Backend Development Python Tutorial Using dj-rest-auth to integrate GitHub authentication in your Django project

Using dj-rest-auth to integrate GitHub authentication in your Django project

Nov 22, 2024 am 02:27 AM

This article is a simple guide on how to implement GitHub OAuth for a secure user authentication.

In this guide we will be able to

  • seamlessly create or login a user using their GitHub credentials
  • save users credentials for later use

Prerequisite

To get the best out of this article users should have a fair understanding on

  • GitHub
  • Django
  • Django rest framework

We are going to implement this in 3 simple steps

  • 1. setup GitHub
  • 2. setup Django
  • 3. test authentication endpoint

1. Setup GitHub

Create your GitHub OAuth credentials by going to to settings on your GitHub account, scroll down to where you see Developer settings, click on OAuth Apps as shown below.
Using dj-rest-auth to integrate GitHub authentication in your Django projectIf you have an existing app you can edit it else you can create a new one by clicking on New OAuth App and create a new one, give a clear and descriptive name for the app, add to your Homepage URL http://localhost:8000/ you might want to substitute localhost: for 127.0.0.1: if that's how you've configured your Django app to run point been that whatever configuration you setup on GitHub should match with what you have on your app to avoid server errors been thrown, add to Authorization callback URL this callback url http://localhost:8000/api/auth/github/login/callback/ your setup should reflect what you see in the image below.
Using dj-rest-auth to integrate GitHub authentication in your Django projectCopy and save your Client ID and Client Secrets as shown below for later use on your Django project Using dj-rest-auth to integrate GitHub authentication in your Django project

2. Setup Django

Run pip install django-allauth dj-rest-auth requests in other to install these packages. In the settings.py file of your app add the following code block to your

SOCIALACCOUNT_PROVIDERS = {
    'github': {
        'APP': {
            'client_id': '<github_client_id>',
            'secret': '<github_secret_keys>',
            'key': ''
        }
    }
}

SITE_ID = 1
Copy after login

if you wish to capture the email of an authenticated users in the admin you can include this line of code to your projects settings.py file

ACCOUNT_EMAIL_REQUIRED = True
Copy after login

We continue to modify our settings.py file by adding the following code block

'rest_framework',
'rest_framework.authtoken',
'dj_rest_auth',

'django.contrib.sites',

'allauth',
'allauth.account',
'allauth.socialaccount',
'allauth.socialaccount.providers.github'
Copy after login


in the middlesware of your settings.py file include this line of code

'allauth.account.middleware.AccountMiddleware',
Copy after login

Lastly we modify the projects urls.py file by adding the following code block

from allauth.socialaccount.providers.github import views as github_views

path('api/auth/github/login/', github_views.oauth2_login, name='github_login'),
path('api/auth/github/login/callback/', github_views.oauth2_callback, name='github_callback'),
Copy after login

NB: The modification should be done in the project's urls.py file and not the app's urls.py file

3. Test authentication endpoint

All done ? visit the endpoint http://localhost:8000/api/auth/github/login/ you should be redirected to a page like this Using dj-rest-auth to integrate GitHub authentication in your Django project and when you click on the Continue button you should be redirected to GitHub's authorization page Using dj-rest-auth to integrate GitHub authentication in your Django project

Additional consideration

You notice after a successful authentication you're been redirected to http://localhost:8000/accounts/profile/ which displays a 404 error page. Using dj-rest-auth to integrate GitHub authentication in your Django project

To fix this we can create an endpoint /accounts/profile to your apps urls.py file and then create a relative views for that endpoint. If your endpoint and views are setup correctly then you should now see this instead of 404 error page Using dj-rest-auth to integrate GitHub authentication in your Django project

Difference between dj-auth-rest and social-auth-app-django

dj-auth-rest and social-auth-app-django are both libraries used to facilitate authentication in Django projects, but they cater to different needs and operate differently

dj-auth-rest is used for an API based project while social-auth-app-django is used for a web based project and both can be used on the same project

Conclusion

Integrating GitHub OAuth into your Django application provides a secure and user-friendly way for individuals to log in using their GitHub credentials.

Using this guide, you can enhance your application's security, streamline the login process, and improve the overall user experience while accessing relevant user data.

The above is the detailed content of Using dj-rest-auth to integrate GitHub authentication in your Django project. For more information, please follow other related articles on the PHP Chinese website!

Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

How to solve the permissions problem encountered when viewing Python version in Linux terminal? How to solve the permissions problem encountered when viewing Python version in Linux terminal? Apr 01, 2025 pm 05:09 PM

Solution to permission issues when viewing Python version in Linux terminal When you try to view Python version in Linux terminal, enter python...

How to avoid being detected by the browser when using Fiddler Everywhere for man-in-the-middle reading? How to avoid being detected by the browser when using Fiddler Everywhere for man-in-the-middle reading? Apr 02, 2025 am 07:15 AM

How to avoid being detected when using FiddlerEverywhere for man-in-the-middle readings When you use FiddlerEverywhere...

How to efficiently copy the entire column of one DataFrame into another DataFrame with different structures in Python? How to efficiently copy the entire column of one DataFrame into another DataFrame with different structures in Python? Apr 01, 2025 pm 11:15 PM

When using Python's pandas library, how to copy whole columns between two DataFrames with different structures is a common problem. Suppose we have two Dats...

How to teach computer novice programming basics in project and problem-driven methods within 10 hours? How to teach computer novice programming basics in project and problem-driven methods within 10 hours? Apr 02, 2025 am 07:18 AM

How to teach computer novice programming basics within 10 hours? If you only have 10 hours to teach computer novice some programming knowledge, what would you choose to teach...

How does Uvicorn continuously listen for HTTP requests without serving_forever()? How does Uvicorn continuously listen for HTTP requests without serving_forever()? Apr 01, 2025 pm 10:51 PM

How does Uvicorn continuously listen for HTTP requests? Uvicorn is a lightweight web server based on ASGI. One of its core functions is to listen for HTTP requests and proceed...

How to solve permission issues when using python --version command in Linux terminal? How to solve permission issues when using python --version command in Linux terminal? Apr 02, 2025 am 06:36 AM

Using python in Linux terminal...

How to get news data bypassing Investing.com's anti-crawler mechanism? How to get news data bypassing Investing.com's anti-crawler mechanism? Apr 02, 2025 am 07:03 AM

Understanding the anti-crawling strategy of Investing.com Many people often try to crawl news data from Investing.com (https://cn.investing.com/news/latest-news)...

See all articles