C#5mo ago

ASP.NET Identity Login endpoint returns schema in of auth tokens

what the title says. I assume there some kind of messed up in my configuration somewhere, but i dont know where to start looking i also assume this is because of how this method is somehow supposed to return data without returning anything...
4 Replies
hutoanhillOP5mo ago
heres the source code right from the library in case you need it:
namespace Microsoft.AspNetCore.Routing;

routeGroup.MapPost("/login", async Task<Results<Ok<AccessTokenResponse>, EmptyHttpResult, ProblemHttpResult>>
([FromBody] LoginRequest login, [FromQuery] bool? useCookies, [FromQuery] bool? useSessionCookies, [FromServices] IServiceProvider sp) =>
var signInManager = sp.GetRequiredService<SignInManager<TUser>>();

var useCookieScheme = (useCookies == true) || (useSessionCookies == true);
var isPersistent = (useCookies == true) && (useSessionCookies != true);
signInManager.AuthenticationScheme = useCookieScheme ? IdentityConstants.ApplicationScheme : IdentityConstants.BearerScheme;

var result = await signInManager.PasswordSignInAsync(login.Email, login.Password, isPersistent, lockoutOnFailure: true);

if (result.RequiresTwoFactor)
if (!string.IsNullOrEmpty(login.TwoFactorCode))
result = await signInManager.TwoFactorAuthenticatorSignInAsync(login.TwoFactorCode, isPersistent, rememberClient: isPersistent);
else if (!string.IsNullOrEmpty(login.TwoFactorRecoveryCode))
result = await signInManager.TwoFactorRecoveryCodeSignInAsync(login.TwoFactorRecoveryCode);

if (!result.Succeeded)
return TypedResults.Problem(result.ToString(), statusCode: StatusCodes.Status401Unauthorized);

// The signInManager already produced the needed response in the form of a cookie or bearer token.
return TypedResults.Empty;
namespace Microsoft.AspNetCore.Routing;

routeGroup.MapPost("/login", async Task<Results<Ok<AccessTokenResponse>, EmptyHttpResult, ProblemHttpResult>>
([FromBody] LoginRequest login, [FromQuery] bool? useCookies, [FromQuery] bool? useSessionCookies, [FromServices] IServiceProvider sp) =>
var signInManager = sp.GetRequiredService<SignInManager<TUser>>();

var useCookieScheme = (useCookies == true) || (useSessionCookies == true);
var isPersistent = (useCookies == true) && (useSessionCookies != true);
signInManager.AuthenticationScheme = useCookieScheme ? IdentityConstants.ApplicationScheme : IdentityConstants.BearerScheme;

var result = await signInManager.PasswordSignInAsync(login.Email, login.Password, isPersistent, lockoutOnFailure: true);

if (result.RequiresTwoFactor)
if (!string.IsNullOrEmpty(login.TwoFactorCode))
result = await signInManager.TwoFactorAuthenticatorSignInAsync(login.TwoFactorCode, isPersistent, rememberClient: isPersistent);
else if (!string.IsNullOrEmpty(login.TwoFactorRecoveryCode))
result = await signInManager.TwoFactorRecoveryCodeSignInAsync(login.TwoFactorRecoveryCode);

if (!result.Succeeded)
return TypedResults.Problem(result.ToString(), statusCode: StatusCodes.Status401Unauthorized);

// The signInManager already produced the needed response in the form of a cookie or bearer token.
return TypedResults.Empty;
MODiX5mo ago
Tutorial: Debug C# code and inspect data - Visual Studio (Windows)
Learn features of the Visual Studio debugger and how to start the debugger, step through code, and inspect data in a C# application.
hutoanhillOP5mo ago
there are thousands of lines of library code behind the sign in manager. I have no idea we’re in that maze it returns anything I’ve stepped though it many many times now looking for it with no luck not to mention that its not returning now so i dont have a way to find it now.

Did you find this page helpful?