Asp.Net Core 鉴权与授权

Asp.Net Core 鉴权与授权

Setup.cs

public class Startup
{
    public Startup(IConfiguration configuration)
    {
        Configuration = configuration;
    }

    public IConfiguration Configuration { get; }

    // This method gets called by the runtime. Use this method to add services to the container.
    public void ConfigureServices(IServiceCollection services)
    {
        services.AddControllersWithViews();
        //设置登录界面和无权限界面
        services.AddAuthentication(CookieAuthenticationDefaults.AuthenticationScheme).AddCookie(CookieAuthenticationDefaults.AuthenticationScheme,options=>
        {
            options.LoginPath = "/Home/Index";
            options.AccessDeniedPath = "/Home/Privacy";
        });
    }

    // This method gets called by the runtime. Use this method to configure the HTTP request pipeline.
    public void Configure(IApplicationBuilder app, IWebHostEnvironment env)
    {
        if (env.IsDevelopment())
        {
            app.UseDeveloperExceptionPage();
        }
        else
        {
            app.UseExceptionHandler("/Home/Error");
        }
        app.UseStaticFiles();

        app.UseRouting();
		//添加这两个中间件
        app.UseAuthentication();
        app.UseAuthorization();

        app.UseEndpoints(endpoints =>
        {
            endpoints.MapControllerRoute(
                name: "default",
                pattern: "{controller=Home}/{action=Index}/{id?}");
        });
    }
}

Controller中这么使用

//调用此方法后登录成功,给浏览器添加Cookie
public async Task<IActionResult> Login()
{
    //假设用户名密码正确
    var a = new ClaimsIdentity("abc");
    a.AddClaim(new Claim(ClaimTypes.Name, "baozi"));
    a.AddClaim(new Claim(ClaimTypes.Role, "admin"));
    a.AddClaim(new Claim(ClaimTypes.MobilePhone, "13912345678"));
    await base.HttpContext.SignInAsync(CookieAuthenticationDefaults.AuthenticationScheme, new ClaimsPrincipal(a),
        new AuthenticationProperties { ExpiresUtc = DateTime.Now.AddMinutes(30) });

    return new JsonResult(new { Result = true, Message = "登录成功" });
}

public async Task<IActionResult> Logout()
{
    await base.HttpContext.SignOutAsync(CookieAuthenticationDefaults.AuthenticationScheme);
    return new JsonResult(new { Result = true, Message = "退出成功" });
}

[Authorize(Roles = "people")]
public async Task<IActionResult> DoPeople()
{
    var result = await base.HttpContext.AuthenticateAsync(CookieAuthenticationDefaults.AuthenticationScheme);
    return new JsonResult(new { Result = true, Message = "DoPeople" });
}

[Authorize(Roles = "admin")]
public async Task<IActionResult> DoAdmin()
{
    var result = await base.HttpContext.AuthenticateAsync(CookieAuthenticationDefaults.AuthenticationScheme);
    return new JsonResult(new { Result = true, Message = "DoAdmin" });
}
  • 0
    点赞
  • 1
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值