-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathStartup.cs
83 lines (72 loc) · 3.12 KB
/
Startup.cs
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
namespace Firebase.AuthTest
{
using GraphQL.AspNet.Configuration;
using Microsoft.AspNetCore.Authentication.JwtBearer;
using Microsoft.AspNetCore.Builder;
using Microsoft.AspNetCore.Hosting;
using Microsoft.Extensions.Configuration;
using Microsoft.Extensions.DependencyInjection;
using Microsoft.IdentityModel.Tokens;
using System;
public class Startup
{
private const string ALL_ORIGINS_POLICY = "_allOrigins";
public Startup(IConfiguration configuration)
{
Configuration = configuration;
}
public IConfiguration Configuration { get; }
// This method gets called by the runtime. Use this method to add services to the container.
public void ConfigureServices(IServiceCollection services)
{
// to allow use on many of the tools for testing (graphiql, altair etc.)
// Do not do this in production
services.AddCors(options =>
{
options.AddPolicy(
ALL_ORIGINS_POLICY,
builder =>
{
builder.AllowAnyOrigin()
.AllowAnyHeader()
.AllowAnyMethod();
});
});
var firebaseProjectId = this.Configuration.GetValue<string>("firebaseProjectId");
if (string.IsNullOrWhiteSpace(firebaseProjectId))
throw new ArgumentException("Firebase Project Id must be set.", nameof(firebaseProjectId));
// Add JWT Bearer Authentication and set it as the default authentication
// method
services.AddAuthentication(JwtBearerDefaults.AuthenticationScheme)
.AddJwtBearer(options =>
{
// Authority should be your firebase instance
options.Authority = "https://securetoken.google.com/" + firebaseProjectId;
options.Audience = "http://localhost:5000";
options.IncludeErrorDetails = true;
options.TokenValidationParameters = new TokenValidationParameters()
{
ValidateIssuer = true,
ValidateIssuerSigningKey = false,
ValidateAudience = false, // its a good idea to validate audience in production
ValidIssuer = "https://securetoken.google.com/" + firebaseProjectId,
};
// other options to add
// options.SaveToken = true;
// options.RequireHttpsMetadata = false;
});
services.AddAuthorization();
services.AddGraphQL();
}
// This method gets called by the runtime. Use this method to configure the HTTP request pipeline.
public void Configure(IApplicationBuilder app, IWebHostEnvironment env)
{
app.UseCors(ALL_ORIGINS_POLICY);
app.UseRouting();
// make sure to call Authentication and Authorization before GraphQL
app.UseAuthentication();
app.UseAuthorization();
app.UseGraphQL();
}
}
}