根据facebook 说明(场景 4),我正在使用以下 URL
https://graph.facebook.com/oauth/access_token?client_id=APP_ID&client_secret=CLIENT_SECRET& grant_type=fb_exchange_token&fb_exchange_token=OLD_ACCESS_TOKEN
{ "error": { "message": "验证访问令牌时出错:会话已在 unix 时间 1365257820 过期。当前的 unix 时间是 1365759029。", "type": "OAuthException", "code": 190, "error_subcode" : 463 } }
如果访问令牌过期,请先在浏览器上运行以下 php 脚本,然后将其存储在服务器上
$app_id = "your app id";
$app_secret = "your app secret";
$my_url = "http://apps.facebook.com/your_app_name";
// known valid access token stored in a database
$access_token = "your old access token";
$code = $_REQUEST["code"];
// If we get a code, it means that we have re-authed the user
//and can get a valid access_token.
if (isset($code)) {
. $app_id . "&redirect_uri=" . urlencode($my_url)
. "&client_secret=" . $app_secret
. "&code=" . $code . "&display=popup";
$response = file_get_contents($token_url);
$params = null;
parse_str($response, $params);
$access_token = $params['access_token'];
// Attempt to query the graph:
$graph_url = "https://graph.facebook.com/me?"
. "access_token=" . $access_token;
$response = curl_get_file_contents($graph_url);
$decoded_response = json_decode($response);
//Check for errors
if ($decoded_response->error) {
// check to see if this is an oAuth error:
if ($decoded_response->error->type== "OAuthException") {
// Retrieving a valid access token.
$dialog_url= "https://www.facebook.com/dialog/oauth?"
. "client_id=" . $app_id
. "&redirect_uri=" . urlencode($my_url);
echo("<script> top.location.href='" . $dialog_url
. "'</script>");
else {
echo "other error has happened";
else {
// success
echo("success" . $decoded_response->name);
// note this wrapper function exists in order to circumvent PHP’s
//strict obeying of HTTP error codes. In this case, Facebook
//returns error code 400 which PHP obeys and wipes out
//the response.
function curl_get_file_contents($URL) {
$c = curl_init();
curl_setopt($c, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($c, CURLOPT_URL, $URL);
$contents = curl_exec($c);
$err = curl_getinfo($c,CURLINFO_HTTP_CODE);
if ($contents) return $contents;
else return FALSE;
上面的脚本会在浏览器上为您提供一个如下所示的 URL
https://graph.facebook.com/oauth/access_token?code= …</p>
然后在 code= 之后获取字符串(应该是这样的:AQCn41Svv5DbWrnFY0Wf.....YbNm_yz2rE#_ )并将其粘贴到 code= 下面的 URL 并在浏览器上运行下面的 URL
您将收到以下响应,这是 60 天的新访问令牌
将 access_token= 后面的字符串复制并粘贴到服务器上的脚本中,该脚本会在您的页面上发布新帖子