带有 dotnet core 5 的 Openiddict 给出的错误为 "this server only accepts HTTPS requests."

Openiddict with dotnet core 5 giving the errors as "this server only accepts HTTPS requests."

我正在尝试在 angular 应用程序中将 oidc-client 与 oppeniddict 一起使用,但是 .well-known/openid-configuration.

出现错误

错误说:

GET http://localhost:2987/.well-known/openid-configuration 400 (Bad Request)

我在 dot-net core 5 应用程序中有 openiddict 实现。

然后我抓取 URL http://localhost:2987/.well-known/openid-configuration 并在浏览器中浏览它,我收到错误:

{
  "error": "invalid_request",
  "error_description": "This server only accepts HTTPS requests.",
  "error_uri": "https://documentation.openiddict.com/errors/ID2083"
}

我也已经从网络服务器设置中禁用了 SSL,如图所示:

我的启动 ConfigureServices 看起来像这样:

public void ConfigureServices(IServiceCollection services)
{

    services.AddDbContext<ApplicationDbContext>(options =>
    {
        options.UseSqlServer(Configuration["ConnectionString"], sqlServerOptionsAction: sqlOptions =>
        {
            sqlOptions.MigrationsAssembly(typeof(Startup).GetTypeInfo().Assembly.GetName().Name);
        });

        options.UseOpenIddict();
    });

    services.AddIdentity<ApplicationUser, IdentityRole>()
       .AddEntityFrameworkStores<ApplicationDbContext>()
       .AddDefaultTokenProviders();



    services.Configure<IdentityOptions>(options =>
    {
        options.ClaimsIdentity.UserNameClaimType = Claims.Name;
        options.ClaimsIdentity.UserIdClaimType = Claims.Subject;
        options.ClaimsIdentity.RoleClaimType = Claims.Role;
    });

    services.AddOpenIddict()


        .AddCore(options =>
        {
            options.UseEntityFrameworkCore()
                   .UseDbContext<ApplicationDbContext>();
        }).AddServer(options =>
       {
           options.SetAuthorizationEndpointUris("/connect/authorize")
                  .SetLogoutEndpointUris("/connect/logout")
                  .SetIntrospectionEndpointUris("/connect/introspect")
                  .SetUserinfoEndpointUris("/connect/userinfo");
          

           options.RegisterScopes(Scopes.Email, Scopes.Profile, Scopes.Roles);
           options.AllowImplicitFlow();

           options.AddEncryptionKey(new SymmetricSecurityKey(
                Convert.FromBase64String("DRjd/GnduI3Efzen9V9BvbNUfc/VKgXltV7Kbk9sMkY=")));


           options.AddDevelopmentSigningCertificate();
          

           options.UseAspNetCore()
                  .EnableAuthorizationEndpointPassthrough()
                  .EnableLogoutEndpointPassthrough()
                  .EnableUserinfoEndpointPassthrough()
                  .EnableStatusCodePagesIntegration();
       }).AddValidation(options =>
       {
           // Import the configuration from the local OpenIddict server instance.
           options.UseLocalServer();

           // Register the ASP.NET Core host.
           options.UseAspNetCore();

           
       });

    services.AddCors(options => options.AddPolicy("ApiCorsPolicy", builder =>
    {
        builder.WithOrigins("http://localhost:4200").AllowAnyMethod().AllowAnyHeader();
    }));
    services.AddControllersWithViews();
}

配置:

public void Configure(IApplicationBuilder app, IWebHostEnvironment env)
{
    app.UseStatusCodePagesWithReExecute("/error");
    app.UseRouting();
    app.UseCors("ApiCorsPolicy");

    app.UseAuthentication();
    app.UseAuthorization();
    app.UseEndpoints(options =>
    {
        options.MapControllers();
        options.MapDefaultControllerRoute();
    });
}

我觉得我错过了一些超级容易做的事情。但找不到真正的原因。 Whosebug 中没有任何问题。

是Openiddict的错误还是dot net core 5本身的错误?任何指南或解决方法将不胜感激,以找出这个问题。

我最近也遇到了这个问题。 默认情况下,Openiddict SSL 是启用的。 如果你想禁用 ssl 检查。

您可以通过以下代码禁用它

   options.UseAspNetCore().DisableTransportSecurityRequirement();