Startup.cs 6.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151
  1. using System;
  2. using System.Collections.Generic;
  3. using System.ServiceModel;
  4. using Microsoft.AspNetCore.Builder;
  5. using Microsoft.AspNetCore.Hosting;
  6. using Microsoft.AspNetCore.Http;
  7. using Microsoft.AspNetCore.Http.Features;
  8. using Microsoft.AspNetCore.Rewrite;
  9. using Microsoft.AspNetCore.StaticFiles;
  10. using Microsoft.Extensions.Configuration;
  11. using Microsoft.Extensions.DependencyInjection;
  12. using Microsoft.Extensions.FileProviders;
  13. using Microsoft.Extensions.Hosting;
  14. using System.Text;
  15. using Microsoft.IdentityModel.Tokens;
  16. using System.Linq;
  17. using Microsoft.AspNetCore.Server.Kestrel.Core;
  18. namespace MySystem
  19. {
  20. public class Startup
  21. {
  22. public Startup(IConfiguration configuration, IWebHostEnvironment env)
  23. {
  24. Configuration = configuration;
  25. _env = env;
  26. }
  27. public IConfiguration Configuration { get; }
  28. private readonly IWebHostEnvironment _env;
  29. // This method gets called by the runtime. Use this method to add services to the container.s
  30. public void ConfigureServices(IServiceCollection services)
  31. {
  32. services.AddControllersWithViews();
  33. services.AddRouting(options =>
  34. {
  35. options.LowercaseUrls = true;
  36. });
  37. services.AddSingleton<IHttpContextAccessor, HttpContextAccessor>();
  38. services.Configure<Setting>(Configuration.GetSection("Setting"));
  39. if(_env.IsProduction())
  40. {
  41. services.AddCors(option => option.AddPolicy("cors", policy => policy.AllowAnyHeader().AllowAnyMethod().AllowCredentials().SetIsOriginAllowed(_ => true)));//是否允许跨域
  42. }
  43. services.Configure<KestrelServerOptions>(x => x.AllowSynchronousIO = true).Configure<IISServerOptions>(x => x.AllowSynchronousIO = true);
  44. services.AddMvc(options =>
  45. {
  46. options.EnableEndpointRouting = false;
  47. options.Filters.Add(typeof(GlobalExceptions));
  48. });
  49. services.AddSession(options =>
  50. {
  51. // 设置 Session 过期时间
  52. options.IdleTimeout = TimeSpan.FromHours(1);
  53. options.Cookie.HttpOnly = true;
  54. });
  55. services.Configure<FormOptions>(x =>
  56. {
  57. x.MultipartBodyLengthLimit = 50 * 1024 * 1024;//不到300M
  58. });
  59. //生成密钥
  60. var symmetricKeyAsBase64 = Configuration["Setting:JwtSecret"];
  61. var keyByteArray = Encoding.ASCII.GetBytes(symmetricKeyAsBase64);
  62. var signingKey = new SymmetricSecurityKey(keyByteArray);
  63. //认证参数
  64. services.AddAuthentication("Bearer").AddJwtBearer(o =>
  65. {
  66. o.TokenValidationParameters = new TokenValidationParameters
  67. {
  68. ValidateIssuerSigningKey = true,//是否验证签名,不验证的画可以篡改数据,不安全
  69. IssuerSigningKey = signingKey,//解密的密钥
  70. ValidateIssuer = true,//是否验证发行人,就是验证载荷中的Iss是否对应ValidIssuer参数
  71. // ValidIssuer = Configuration["Setting:JwtIss"],//发行人
  72. IssuerValidator = (m, n, z) =>
  73. {
  74. return n.Issuer;
  75. },
  76. ValidateAudience = true,//是否验证订阅人,就是验证载荷中的Aud是否对应ValidAudience参数
  77. // ValidAudience = Configuration["Setting:JwtAud"],//订阅人
  78. AudienceValidator = (m, n, z) =>
  79. {
  80. string check = RedisDbconn.Instance.Get<string>("businesstoken:" + n.Issuer);
  81. return m != null && m.FirstOrDefault().Equals(check);
  82. },
  83. ValidateLifetime = true,//是否验证过期时间,过期了就拒绝访问
  84. ClockSkew = TimeSpan.Zero,//这个是缓冲过期时间,也就是说,即使我们配置了过期时间,这里也要考虑进去,过期时间+缓冲,默认好像是7分钟,你可以直接设置为0
  85. RequireExpirationTime = true,
  86. };
  87. });
  88. //services.AddHttpContextAccessor();
  89. // 必须打开
  90. // services.AddHostedService<SycnStartService>();
  91. // 必须打开
  92. MySystemLib.SystemPublicFuction.appcheck = "success";
  93. RedisDbconn.csredis = new CSRedis.CSRedisClient(Configuration["Setting:RedisConnStr"]);
  94. }
  95. // This method gets called by the runtime. Use this method to configure the HTTP request pipeline.
  96. public void Configure(IApplicationBuilder app, IWebHostEnvironment env)
  97. {
  98. if (env.IsDevelopment())
  99. {
  100. app.UseDeveloperExceptionPage();
  101. }
  102. else
  103. {
  104. app.UseHsts();
  105. }
  106. Library.function.WritePage("/", "WebRootPath.txt", env.WebRootPath);
  107. app.UseStaticFiles();
  108. // app.UseStaticFiles(new StaticFileOptions
  109. // {
  110. // FileProvider = new PhysicalFileProvider(AppContext.BaseDirectory + "/static"),
  111. // RequestPath = "/static"
  112. // });
  113. // app.UseStaticFiles(new StaticFileOptions
  114. // {
  115. // FileProvider = new PhysicalFileProvider(AppContext.BaseDirectory + "/" + Configuration["Setting:Database"]),
  116. // RequestPath = "/" + Configuration["Setting:Database"]
  117. // });
  118. app.UseStaticFiles(new StaticFileOptions
  119. {
  120. ContentTypeProvider = new FileExtensionContentTypeProvider(new Dictionary<string, string>
  121. {
  122. { ".apk", "application/vnd.android.package-archive" }
  123. })
  124. });
  125. app.UseCors("cors");
  126. app.UseAuthentication();
  127. app.UseRouting();
  128. app.UseAuthorization();
  129. app.UseSession();
  130. app.UseEndpoints(endpoints =>
  131. {
  132. endpoints.MapControllerRoute(
  133. name: "default",
  134. pattern: "{controller=Home}/{action=Index}/{Id?}");
  135. });
  136. LogHelper.Instance.Start();
  137. TxjHelper.Instance.Start();
  138. }
  139. }
  140. }