AWS Cognito:使用重新发送代码的自定义挑战
创始人
2024-11-15 08:30:25
0

要在AWS Cognito中实现自定义的重新发送代码挑战,您可以按照以下步骤操作:

  1. 创建一个AWS Cognito用户池。
import boto3

client = boto3.client('cognito-idp')

response = client.create_user_pool(
    PoolName='custom-pool',
    AutoVerifiedAttributes=['email'],
    Policies={
        'PasswordPolicy': {
            'MinimumLength': 8,
            'RequireLowercase': True,
            'RequireUppercase': True,
            'RequireNumbers': True,
            'RequireSymbols': True,
            'TemporaryPasswordValidityDays': 7
        }
    },
    EmailVerificationSubject='Verify your email for our app',
    EmailVerificationMessage='Please click the link below to verify your email address: {####}',
    SmsVerificationMessage='Your verification code for our app is {####}.',
    SmsAuthenticationMessage='Your authentication code for our app is {####}.',
    UserPoolTags={
        'Key': 'Value'
    },
    AdminCreateUserConfig={
        'AllowAdminCreateUserOnly': False,
        'UnusedAccountValidityDays': 30,
        'InviteMessageTemplate': {
            'SMSMessage': 'Your username is {username} and temporary password is {####}.',
            'EmailMessage': 'Your username is {username} and temporary password is {####}.',
            'EmailSubject': 'Your temporary password'
        },
        'UnusedAccountValidityDays': 30,
        'UnusedAccountValidityDays': 30
    }
)

user_pool_id = response['UserPool']['Id']
  1. 创建一个自定义的挑战触发器。
import json

def trigger_custom_challenge(event, context):
    response = {
        'challengeName': 'CUSTOM_CHALLENGE',
        'issueTokens': False,
        'failAuthentication': False
    }
    
    if event['request']['session']['challengeName'] == 'CUSTOM_CHALLENGE' and event['request']['session']['challengeResult'] == 'FAIL':
        response['failAuthentication'] = True
        
    return response
  1. 将自定义挑战触发器绑定到用户池中。
response = client.create_user_pool_client(
    UserPoolId=user_pool_id,
    ClientName='custom-client',
    GenerateSecret=False,
    RefreshTokenValidity=30,
    ReadAttributes=['email'],
    WriteAttributes=['email'],
    ExplicitAuthFlows=['ADMIN_NO_SRP_AUTH'],
    SupportedIdentityProviders=['COGNITO'],
    CallbackURLs=['https://example.com'],
    LogoutURLs=['https://example.com'],
    PreventUserExistenceErrors='ENABLED',
    AllowedOAuthFlows=['implicit'],
    AllowedOAuthScopes=['openid'],
    AllowedOAuthFlowsUserPoolClient=True,
    AnalyticsConfiguration={
        'ApplicationId': 'your-application-id',
        'RoleArn': 'your-role-arn',
        'ExternalId': 'your-external-id',
        'UserDataShared': True
    },
    PreventUserExistenceErrors='ENABLED',
    SupportedIdentityProviders=['COGNITO'],
    CallbackURLs=['https://example.com'],
    LogoutURLs=['https://example.com'],
    AllowedOAuthFlows=['implicit'],
    AllowedOAuthScopes=['openid'],
    AllowedOAuthFlowsUserPoolClient=True
)

user_pool_client_id = response['UserPoolClient']['ClientId']

response = client.create_user_pool_domain(
    Domain='custom-domain',
    UserPoolId=user_pool_id
)
  1. 更新用户池配置以启用自定义挑战模式。
response = client.update_user_pool(
    UserPoolId=user_pool_id,
    LambdaConfig={
        'CustomMessage': 'arn:aws:lambda:us-west-2:123456789012:function:custom-message',
        'PreSignUp': 'arn:aws:lambda:us-west-2:123456789012:function:pre-signup',
        'PostConfirmation': 'arn:aws:lambda:us-west-2:123456789012:function:post-confirmation',
        'PreAuthentication': 'arn:aws:lambda:us-west-2:123456789012:function:pre-authentication',
        'PostAuthentication': 'arn:aws:lambda:us-west-2:123456789012:function:post-authentication',
        'DefineAuthChallenge': 'arn:aws:lambda:us-west-2:123456789012:function:define-auth-challenge',
        'CreateAuthChallenge': 'arn:aws:lambda:us-west-2:123456789012:function:create-auth-challenge',
        'VerifyAuthChallengeResponse': 'arn:aws:lambda:us-west-

相关内容

热门资讯

6分钟辅助!hhpoker是真... 6分钟辅助!hhpoker是真的假的,hhpoker真的有透视吗,演示教程(真是有挂)1、每一步都需...
第七分钟辅助!we poker... 第七分钟辅助!we poker插件,we poker免费辅助器,手筋教程(有挂方式)暗藏猫腻,小编详...
七分钟辅助!aa poker辅... 七分钟辅助!aa poker辅助包,pokemmo脚本辅助器下载,讲义教程(有挂秘籍)1、pokem...
第四分钟辅助!wepoker辅... 第四分钟辅助!wepoker辅助器安装包定制,aapoker透视脚本,大纲教程(有挂总结)所有人都在...
第四分钟辅助!wpk透视辅助靠... 第四分钟辅助!wpk透视辅助靠谱吗,wepoker透视苹果系统,诀窍教程(有挂猫腻);运wepoke...
七分钟辅助!aapoker透视... 七分钟辅助!aapoker透视脚本入口,wejoker开挂,学习教程(有挂教程)1、打开软件启动之后...
第四分钟辅助!淘宝买wepok... 第四分钟辅助!淘宝买wepoker透视有用吗,wpk俱乐部怎么作弊,积累教程(有挂规律)1、下载好淘...
6分钟辅助!we-poker软... 6分钟辅助!we-poker软件,购买的wpk辅助在哪里下载,积累教程(有挂技巧)购买的wpk辅助在...
第2分钟辅助!如何下载wepo... 第2分钟辅助!如何下载wepoker安装包,newpoker怎么安装脚本,教程书教程(今日头条)1、...
4分钟辅助!wepoker钻石... 4分钟辅助!wepoker钻石怎么看底牌,wepoker辅助器有哪些功能,法门教程(有挂详细)该软件...