Program.cs 6.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. using Hangfire;
  2. using Hangfire.Redis.StackExchange;
  3. using Microsoft.AspNetCore.Authentication.JwtBearer;
  4. using Microsoft.Extensions.DependencyInjection.Extensions;
  5. using Microsoft.IdentityModel.Tokens;
  6. using System.IdentityModel.Tokens.Jwt;
  7. using TEAMModelOS.SDK.DI;
  8. using TEAMModelOS.SDK;
  9. namespace HTEX.Complex
  10. {
  11. public class Program
  12. {
  13. public static void Main(string[] args)
  14. {
  15. var builder = WebApplication.CreateBuilder(args);
  16. // Add services to the container.
  17. JwtSecurityTokenHandler.DefaultMapInboundClaims = false;
  18. builder.Services.AddAuthentication(options => options.DefaultScheme = JwtBearerDefaults.AuthenticationScheme)
  19. .AddJwtBearer(options => //AzureADJwtBearer
  20. {
  21. //options.SaveToken = true; //驗證令牌由服務器生成才有效,不適用於服務重啟或分布式架構
  22. options.Authority ="https://login.chinacloudapi.cn/4807e9cf-87b8-4174-aa5b-e76497d7392b/v2.0";// builder.Configuration["Option:Authority"];
  23. options.Audience = "72643704-b2e7-4b26-b881-bd5865e7a7a5";//builder.Configuration["Option:Audience"];
  24. options.RequireHttpsMetadata = true;
  25. options.TokenValidationParameters = new TokenValidationParameters
  26. {
  27. RoleClaimType = "roles",
  28. //ValidAudiences = new string[] { builder.Configuration["Option:Audience"], $"api://{builder.Configuration["Option:Audience"]}" }
  29. ValidAudiences = new string[] { "72643704-b2e7-4b26-b881-bd5865e7a7a5", $"api://72643704-b2e7-4b26-b881-bd5865e7a7a5" }
  30. };
  31. options.Events = new JwtBearerEvents();
  32. //下列事件有需要紀錄則打開
  33. //options.Events.OnMessageReceived = async context => { await Task.FromResult(0); };
  34. //options.Events.OnForbidden = async context => { await Task.FromResult(0); };
  35. //options.Events.OnChallenge = async context => { await Task.FromResult(0); };
  36. //options.Events.OnAuthenticationFailed = async context => { await Task.FromResult(0); };
  37. options.Events.OnTokenValidated = async context =>
  38. {
  39. if (!context.Principal.Claims.Any(x => x.Type.Equals("http://schemas.microsoft.com/identity/claims/scope")) //ClaimConstants.Scope
  40. && !context.Principal.Claims.Any(y => y.Type.Equals("roles"))) //ClaimConstants.Roles //http://schemas.microsoft.com/ws/2008/06/identity/claims/role
  41. {
  42. //TODO 需處理額外授權非角色及範圍的訪問異常紀錄
  43. throw new UnauthorizedAccessException("Neither scope or roles claim was found in the bearer token.");
  44. }
  45. await Task.FromResult(0);
  46. };
  47. });
  48. builder.Services.AddControllers();
  49. #if DEBUG
  50. builder.WebHost.UseUrls(new[] { "https://*:7298" });
  51. #endif
  52. // Learn more about configuring Swagger/OpenAPI at https://aka.ms/aspnetcore/swashbuckle
  53. builder.Services.AddEndpointsApiExplorer();
  54. //builder.Services.AddSwaggerGen();
  55. builder.Services.AddHttpClient();
  56. string StorageConnectionString = builder.Configuration.GetValue<string>("Azure:Storage:ConnectionString");
  57. string StorageConnectionStringTest = builder.Configuration.GetValue<string>("Azure:Storage:ConnectionString-Test");
  58. //string ServiceBusConnectionString = builder.Configuration.GetValue<string>("Azure:ServiceBus:ConnectionString");
  59. //string ServiceBusConnectionStringTest = builder.Configuration.GetValue<string>("Azure:ServiceBus:ConnectionString-Test");
  60. string RedisConnectionString = builder.Configuration.GetValue<string>("Azure:Redis:ConnectionString");
  61. string RedisConnectionStringTest = builder.Configuration.GetValue<string>("Azure:Redis:ConnectionString-Test");
  62. string CosmosConnectionString = builder.Configuration.GetValue<string>("Azure:Cosmos:ConnectionString");
  63. string CosmosConnectionStringTest = builder.Configuration.GetValue<string>("Azure:Cosmos:ConnectionString-Test");
  64. //Storage
  65. builder.Services.AddAzureStorage(StorageConnectionString, "Default");
  66. builder.Services.AddAzureStorage(StorageConnectionStringTest, "Test");
  67. //ServiceBus
  68. //builder.Services.AddAzureServiceBus(ServiceBusConnectionString, "Default");
  69. //builder.Services.AddAzureServiceBus(ServiceBusConnectionStringTest, "Test");
  70. //Redis
  71. builder.Services.AddAzureRedis(RedisConnectionString, "Default");
  72. builder.Services.AddAzureRedis(RedisConnectionStringTest, "Test");
  73. //Cosmos
  74. builder.Services.AddAzureCosmos(CosmosConnectionString, "Default");
  75. builder.Services.AddAzureCosmos(CosmosConnectionStringTest, "Test");
  76. builder.Services.AddHttpContextAccessor();
  77. builder.Services.AddHttpClient<DingDing>();
  78. string path = $"{builder.Environment.ContentRootPath}/JsonFiles";
  79. builder.Services.TryAddSingleton(new Region2LongitudeLatitudeTranslator(path));
  80. builder.Services.AddIPSearcher(path);
  81. builder.Services.AddCors(options =>
  82. {
  83. options.AddDefaultPolicy(
  84. builder =>
  85. {
  86. builder.AllowAnyOrigin()
  87. .AllowAnyHeader()
  88. .AllowAnyMethod();
  89. });
  90. });
  91. #if !DEBUG
  92. builder.Services.AddHangfire(config => {
  93. config.UseRedisStorage(builder.Configuration.GetValue<string>("Azure:Redis:ConnectionString"));
  94. });
  95. builder.Services.AddHangfireServer();
  96. #endif
  97. builder.Services.AddControllersWithViews();
  98. var app = builder.Build();
  99. // Configure the HTTP request pipeline.
  100. if (!app.Environment.IsDevelopment())
  101. {
  102. app.UseExceptionHandler("/Home/Error");
  103. // The default HSTS value is 30 days. You may want to change this for production scenarios, see https://aka.ms/aspnetcore-hsts.
  104. app.UseHsts();
  105. }
  106. app.UseHttpsRedirection();
  107. app.UseStaticFiles();
  108. app.UseRouting();
  109. app.UseCors(); //使用跨域設定
  110. app.UseHttpsRedirection(); //開發中暫時關掉
  111. app.UseAuthentication();
  112. app.UseAuthorization();
  113. app.MapControllerRoute(
  114. name: "default",
  115. pattern: "{controller=Home}/{action=Index}/{id?}");
  116. app.Run();
  117. }
  118. }
  119. }