.NET 7 Web API 🔒 Create JSON Web Tokens (JWT) - User Registration / Login / Authentication

Поделиться
HTML-код
  • Опубликовано: 30 сен 2024

Комментарии • 60

  • @saitoinosaka6445
    @saitoinosaka6445 11 месяцев назад +12

    if you are facing an error like Unable to create KeyedHashAlgorithm for algorithm 'HS512', the key size must be greater than: '512' bits, key has '256' bits. Arg_ParamName_Name. Just increase the token size in your settings.json

  • @learn.net2202
    @learn.net2202 Год назад +3

    Please make video for logout in JWT token by invalidating token without storing token in database

    • @iEricoHD
      @iEricoHD Год назад +1

      This. I hope he makes a video on it. Best tutorials on Entity Framework by far.

  • @phoolherreracondezo2841
    @phoolherreracondezo2841 9 месяцев назад

    i sheesh with that code very simple, thanks bro

  • @jayantverma4639
    @jayantverma4639 Год назад +1

    Hello patrick How to store the Data in the sql database user login and regsitration ?

  • @kenneth6965
    @kenneth6965 Год назад +13

    This is personally my favorite part of your tutorials. All the way to refresh tokens. Thanks for this.

    • @PatrickGod
      @PatrickGod  Год назад +2

      Happy to hear that! Thank you!

  • @AdeyinkaAdegbenro
    @AdeyinkaAdegbenro Год назад +9

    This is my most simpliest favorite authentication tutorial especially using hashPassword. Awesome Job Patrick!

    • @PatrickGod
      @PatrickGod  Год назад +1

      Thank you so much for your feedback! Glad you like it! 😊

  • @mustafahmusameh6039
    @mustafahmusameh6039 4 дня назад

    Please how to make it right if i use sqlserver adding the id for the app user and it should be there class that carry the models to use thim is there a video do did it ???

  • @josephl
    @josephl Год назад +2

    Hi Patrick. I'm following your videos since the .NET 6 version of this topic. I remember back then you used HMACSHA512 to generate the password Salt. Does this mean HMACSHA512 will always generate the same Salt for the same input even though is in byte[] format?

  • @okok-j4c8h
    @okok-j4c8h 9 месяцев назад +1

    I just Love the way you explain bro , thank you so much and carry on please 🙏🙏🙏

  • @pedrampourhakim3035
    @pedrampourhakim3035 Год назад +1

    Could you please tell us how we can logout the user? thanks

  • @PatrickGod
    @PatrickGod  Год назад +1

    🚀 Join the .NET Web Academy: dotnetwebacademy.com
    💻 Use Code LONGERNIGHTS to get 20% off on any course or plan!

  • @RoyZASTEROiD
    @RoyZASTEROiD Год назад +1

    good reference in last test part

  • @samsonmayeem5548
    @samsonmayeem5548 Год назад

    Bro, _configuration gives red flag, what's possibly the cause?

  • @slowmowfit
    @slowmowfit Год назад

    @PatrickGod There's no explanation as to how inputing Bear Token in the Swagger, unless I missed it?

  • @colllm
    @colllm Год назад +1

    Superb explanation as usual Patrick. Thank you.

  • @KSUBlueDragon
    @KSUBlueDragon Год назад

    Why in the world would an api need to know more than just the fact it’s an authenticated user and has access? The UI should do the login and then pass the token generated then with a call that passes they are authenticated and maybe a app id to validate that said app has access to it.

  • @alataherzadeh5761
    @alataherzadeh5761 6 месяцев назад

    nice.
    من ایرانی هستم. ممنون بابت اموزش عالی.💕💕💕💕💕💕💕💕💕💕

  • @d-landjs
    @d-landjs Год назад +1

    Excellent bro, it was interesting!

  • @samiullah0011
    @samiullah0011 Год назад

    my jwt is not validating after i create it can you help me?

  • @10Totti
    @10Totti Год назад +2

    Good tutorial!

  • @ritickkushwaha2835
    @ritickkushwaha2835 7 месяцев назад

    Is anyone know how to run this in postman..?

  • @MatthewCuda
    @MatthewCuda Год назад

    I love your style, very much the way I like to code.

  • @kwstaslalaounis3212
    @kwstaslalaounis3212 Год назад +1

    You are Perfect thank you.

    • @PatrickGod
      @PatrickGod  Год назад +1

      Happy to help! Thank you very much!

  • @elishamisoi
    @elishamisoi 7 месяцев назад

    Thank you so much Patrick.

  • @onedev7316
    @onedev7316 Год назад

    Nice one, can you do a video on User impersonation using JWT ? Thanks

  • @daniel_klement_photography
    @daniel_klement_photography Год назад

    May I have a question about security? JWT is nice but is it a good idea to store there email or some user's data? Is'nt it better to control and check the JWT in the database if the user is logged in or not? Or what's the bet idea in this way how to secure the API?

    • @md.redwanhossain6288
      @md.redwanhossain6288 Год назад

      JWT is used for stateless authentication. If you hit the Database per request, there is no point for using JWT.

  • @orlandoubilla7055
    @orlandoubilla7055 Год назад

    Great video and explanation, thank you very! 😎✌

  • @DhruvSoni-e1e
    @DhruvSoni-e1e Год назад

    Hey can you make it with sql connection and some other features like pagination

    • @hungle-bp5qt
      @hungle-bp5qt Год назад

      why he dont use sql connention ha

  • @rezarst5734
    @rezarst5734 8 месяцев назад

    so useful, thank you

  • @waqasawan4999
    @waqasawan4999 Год назад +1

    Nice video

  • @choudharyd4927
    @choudharyd4927 Год назад

    Token generated on stagging environment works in production and development too, can someone help how can separate token based on environment

    • @PatrickGod
      @PatrickGod  Год назад

      You could use different signing keys for the different environments

    • @choudharyd4927
      @choudharyd4927 Год назад

      @@PatrickGod thankyou Patrick. Regards.

  • @Sizdah_13
    @Sizdah_13 8 месяцев назад

    thank you , 💖💖

  • @abdulmussavir4627
    @abdulmussavir4627 Год назад +2

    Hello Patric
    I like your teaching style and also love your codding style
    🥰

    • @PatrickGod
      @PatrickGod  Год назад +1

      Thank you very much, Abdul. I appreciate that. 😊

  • @chezchezchezchez
    @chezchezchezchez Год назад +2

    Please help. How do I make a API that returns a list of records filtered by the personId?
    I used the scaffolding API wizard.
    This is killing me. I have it working for getting all the records, but I can’t seem to add a Where clause.
    Thanks!!

    • @ydock
      @ydock Год назад

      without your code he cant help you but you can do something like this on your service
      _dataContext.YOUDBCONTEXTTABLE.Where(t => t.Enabled)
      .AsQueryable();
      later you can call the service in your controller.

    • @chezchezchezchez
      @chezchezchezchez Год назад

      @@ydock I would be happy to show you my code, would you take a look?

  • @ngocanh9250
    @ngocanh9250 Год назад

    Not useful

  • @unskeptable
    @unskeptable 11 месяцев назад

    When you call weather api how does it know to automatically call the auth/login controller to generate the token ? Where is this connection defined exactly ?I don't get it

    • @unskeptable
      @unskeptable 11 месяцев назад

      Ah ok I found out its defined in the loginPath variable of Identity options

  • @E243-v7n
    @E243-v7n Год назад

    I'd like to ask this. What is the advantage of using a custom authentication system rathen than using AD for instance? I know when one creates a project in VS, we have the option to select a auth system and it will be implemented and we can twist it.

    • @AdeyinkaAdegbenro
      @AdeyinkaAdegbenro Год назад

      Hi E243, from experience, especially if you are delivery SaaS, not all client may have AD that you can plug in to, you may want to have a fallback custom authentication system. I hope this helps. Cheers.

    • @E243-v7n
      @E243-v7n Год назад

      @adeyinkaroyal Make sense, but when a customer sign up, those information aren't going to be saved in Azure? I don't think one has to have credentials in AD. If I am wrong then it does make sense.

    • @AdeyinkaAdegbenro
      @AdeyinkaAdegbenro Год назад +1

      @@E243-v7n Hi, was offline for a while. That's correct, it means on sign up, you manage the customer's data in your repository of choice, hence you can build your own custom authentication on it.

  • @ClickOkYT
    @ClickOkYT Год назад

    Why "SecurityAlgorithms.HmacSha512Signature" but not "SecurityAlgorithms.HmacSha512"?