BlazorWASM中使用现有JWT授权添加Google认证存在问题。
创始人
2024-12-21 22:31:00
0
  1. 首先需要在Google Cloud Console中创建OAuth 2.0客户端ID,并添加回调URI。
  2. 在Blazor WASM项目中安装以下NuGet包:
    • Microsoft.AspNetCore.Authentication.Google
    • Microsoft.AspNetCore.Components.Authorization
  3. 创建AuthService类,从AuthenticationStateProvider接口继承并实现GetAuthenticationStateAsync方法。在此方法中,可以使用JWT令牌从服务器检索用户的身份验证状态。
    public class AuthService : AuthenticationStateProvider
    {
        private readonly HttpClient httpClient;
        private readonly ILocalStorageService localStorage;
    
        public AuthService(HttpClient httpClient, ILocalStorageService localStorage)
        {
            this.httpClient = httpClient;
            this.localStorage = localStorage;
        }
    
        public override async Task GetAuthenticationStateAsync()
        {
            var accessToken = await localStorage.GetItemAsync("access_token");
    
            // 如果访问令牌未过期,从服务器检索用户信息
            if (!string.IsNullOrEmpty(accessToken))
            {
                httpClient.DefaultRequestHeaders.Authorization = new AuthenticationHeaderValue("Bearer", accessToken);
    
                var userData = await httpClient.GetFromJsonAsync("api/UserData");
    
                if (userData != null && !string.IsNullOrEmpty(userData.Email))
                {
                    var claims = new[] { new Claim(ClaimTypes.Name, userData.Email) };
                    var identity = new ClaimsIdentity(claims, "GoogleAuth");
                    return new AuthenticationState(new ClaimsPrincipal(identity));
                }
            }
    
            // 如果没有登录,返回未认证的AuthenticationState
            return new AuthenticationState(new ClaimsPrincipal(new ClaimsIdentity()));
        }
    }
    
  4. 在startup.cs文件中,配置Google认证模式和服JWT令牌。
    private const string GoogleClientId = "";
    private const string GoogleClientSecret = "";
    
    public void ConfigureServices(IServiceCollection services)
    {
        services.AddAuthentication(o =>
        {
            o.DefaultScheme = CookieAuthenticationDefaults.AuthenticationScheme;
            o.DefaultChallengeScheme = GoogleDefaults.AuthenticationScheme;
        })
        .AddCookie()
        .AddGoogle(options =>
        {
            options.ClientId = GoogleClientId;
            options.ClientSecret = GoogleClientSecret;
        });
    
        // 添加Jwt验证
        services.AddAuthorizationCore(options =>
        {
            options.AddPolicy("JwtAuth", policy =>
            {
                policy.AuthenticationSchemes.Add(JwtBearerDefaults.AuthenticationScheme);
                policy.RequireAuthenticatedUser();
            });
        });
    
        services.AddControllers();
        services.AddHttpClient();
        services.AddHttpContextAccessor();
        services.Add BlazoredLocalStorage();
        services.AddScoped();
        services.AddScoped();
    
    }
    
    public void Configure(IApplicationBuilder app, IWebHostEnvironment env)
    {
        app.UseHttpsRedirection();
        app.UseBlazorFrameworkFiles();
        app.UseStaticFiles();
    
        app.UseRouting();
    
        app.UseAuthentication();
        app.UseAuthorization();
    
        app.UseEndpoints(endpoints =>
        {
            endpoints.MapControllers();
            endpoints.MapFallbackToFile("index.html");
        });
    }
    
  5. 在组件中使用AuthService和AuthorizeView组件。
    @inject AuthService authService
    ...
    
        
            

    Hello, @context.User.Identity.Name!

    Please log in.

    Login
    ... @code { private AuthenticationState authState; protected override async Task OnInitializedAsync() { authState = await authService.GetAuthenticationStateAsync(); authService.AuthStateChanged

相关内容

热门资讯

前端-session、jwt 目录:   (1)session (2&#x...
linux入门---制作进度条 了解缓冲区 我们首先来看看下面的操作: 我们首先创建了一个文件并在这个文件里面添加了...
关于测试,我发现了哪些新大陆 关于测试 平常也只是听说过一些关于测试的术语,但并没有使用过测试工具。偶然看到编程老师...
前缀和与对数器与二分法 1. 前缀和 假设有一个数组,我们想大量频繁的去访问L到R这个区间的和,...
nodejs:本地安装nvm实... 一、背景-使用不同版本node的原因 vue3+ts、nuxt3版本,node...
JAVA集合知识整理 Java集合知识整理 HashMap相关 HashMap的底层数据结构:jdk1.8之...
无刷直流电机介绍及单片机控制实... 无刷直流电机介绍及单片机控制实例前言基本概念优势与劣势使用寿命基本结构使用单片机控制实例电子调速器&...
fwdiary(2) dp2 1.传纸条  AcWing 275. 传纸条 - AcWing 走两条路,走一条最大的...
常用的DOS命令 常用的DOS命令 DOS(Disk Operating System,磁...
<C++> 类和对象(下) 1.const成员函数将const修饰的“成员函数”称之为const成员函数,cons...