forked from Kirkaiya/ServerlessWebApiWithCognito
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Startup.cs
60 lines (50 loc) · 2.58 KB
/
Startup.cs
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
using Microsoft.AspNetCore.Builder;
using Microsoft.AspNetCore.Hosting;
using Microsoft.Extensions.Configuration;
using Microsoft.Extensions.DependencyInjection;
using Microsoft.Extensions.Logging;
using Microsoft.AspNetCore.Authorization;
namespace ServerlessSpaWithDotNet
{
public class Startup
{
public Startup(IHostingEnvironment env)
{
var builder = new ConfigurationBuilder()
.SetBasePath(env.ContentRootPath)
.AddJsonFile("appsettings.json", optional: false, reloadOnChange: true)
.AddJsonFile($"appsettings.{env.EnvironmentName}.json", optional: true)
.AddEnvironmentVariables();
Configuration = builder.Build();
}
public static IConfigurationRoot Configuration { get; private set; }
// This method gets called by the runtime. Use this method to add services to the container
public void ConfigureServices(IServiceCollection services)
{
// add our Cognito group authorization requirement, specifying CalendarWriter as the group
services.AddAuthorization(
options => options.AddPolicy("InCalendarWriterGroup", policy => policy.Requirements.Add(new CognitoGroupAuthorizationRequirement("CalendarWriter")))
);
// add a singleton of our cognito authorization handler
services.AddSingleton<IAuthorizationHandler, CognitoGroupAuthorizationHandler>();
services.AddMvc();
// Pull in any SDK configuration from Configuration object
services.AddDefaultAWSOptions(Configuration.GetAWSOptions());
}
// This method gets called by the runtime. Use this method to configure the HTTP request pipeline
public void Configure(IApplicationBuilder app, IHostingEnvironment env, ILoggerFactory loggerFactory)
{
loggerFactory.AddLambdaLogger(Configuration.GetLambdaLoggerOptions());
app.UseDefaultFiles(); //needs to be before the app.UseStaticFiles() call below
app.UseStaticFiles();
app.UseJwtBearerAuthentication(new JwtBearerOptions
{
Audience = "5uibfabea1gvq8t8ivou1bge50",
Authority = "https://cognito-idp.us-west-2.amazonaws.com/us-west-2_PoTkPSgPb",
AutomaticAuthenticate = true,
RequireHttpsMetadata = false //for dev only, for production the JWT token should only be sent via https
});
app.UseMvc();
}
}
}