AWS Cognito:使用重新发送代码的自定义挑战
创始人
2024-11-15 08:30:25
0

要在AWS Cognito中实现自定义的重新发送代码挑战,您可以按照以下步骤操作:

  1. 创建一个AWS Cognito用户池。
import boto3

client = boto3.client('cognito-idp')

response = client.create_user_pool(
    PoolName='custom-pool',
    AutoVerifiedAttributes=['email'],
    Policies={
        'PasswordPolicy': {
            'MinimumLength': 8,
            'RequireLowercase': True,
            'RequireUppercase': True,
            'RequireNumbers': True,
            'RequireSymbols': True,
            'TemporaryPasswordValidityDays': 7
        }
    },
    EmailVerificationSubject='Verify your email for our app',
    EmailVerificationMessage='Please click the link below to verify your email address: {####}',
    SmsVerificationMessage='Your verification code for our app is {####}.',
    SmsAuthenticationMessage='Your authentication code for our app is {####}.',
    UserPoolTags={
        'Key': 'Value'
    },
    AdminCreateUserConfig={
        'AllowAdminCreateUserOnly': False,
        'UnusedAccountValidityDays': 30,
        'InviteMessageTemplate': {
            'SMSMessage': 'Your username is {username} and temporary password is {####}.',
            'EmailMessage': 'Your username is {username} and temporary password is {####}.',
            'EmailSubject': 'Your temporary password'
        },
        'UnusedAccountValidityDays': 30,
        'UnusedAccountValidityDays': 30
    }
)

user_pool_id = response['UserPool']['Id']
  1. 创建一个自定义的挑战触发器。
import json

def trigger_custom_challenge(event, context):
    response = {
        'challengeName': 'CUSTOM_CHALLENGE',
        'issueTokens': False,
        'failAuthentication': False
    }
    
    if event['request']['session']['challengeName'] == 'CUSTOM_CHALLENGE' and event['request']['session']['challengeResult'] == 'FAIL':
        response['failAuthentication'] = True
        
    return response
  1. 将自定义挑战触发器绑定到用户池中。
response = client.create_user_pool_client(
    UserPoolId=user_pool_id,
    ClientName='custom-client',
    GenerateSecret=False,
    RefreshTokenValidity=30,
    ReadAttributes=['email'],
    WriteAttributes=['email'],
    ExplicitAuthFlows=['ADMIN_NO_SRP_AUTH'],
    SupportedIdentityProviders=['COGNITO'],
    CallbackURLs=['https://example.com'],
    LogoutURLs=['https://example.com'],
    PreventUserExistenceErrors='ENABLED',
    AllowedOAuthFlows=['implicit'],
    AllowedOAuthScopes=['openid'],
    AllowedOAuthFlowsUserPoolClient=True,
    AnalyticsConfiguration={
        'ApplicationId': 'your-application-id',
        'RoleArn': 'your-role-arn',
        'ExternalId': 'your-external-id',
        'UserDataShared': True
    },
    PreventUserExistenceErrors='ENABLED',
    SupportedIdentityProviders=['COGNITO'],
    CallbackURLs=['https://example.com'],
    LogoutURLs=['https://example.com'],
    AllowedOAuthFlows=['implicit'],
    AllowedOAuthScopes=['openid'],
    AllowedOAuthFlowsUserPoolClient=True
)

user_pool_client_id = response['UserPoolClient']['ClientId']

response = client.create_user_pool_domain(
    Domain='custom-domain',
    UserPoolId=user_pool_id
)
  1. 更新用户池配置以启用自定义挑战模式。
response = client.update_user_pool(
    UserPoolId=user_pool_id,
    LambdaConfig={
        'CustomMessage': 'arn:aws:lambda:us-west-2:123456789012:function:custom-message',
        'PreSignUp': 'arn:aws:lambda:us-west-2:123456789012:function:pre-signup',
        'PostConfirmation': 'arn:aws:lambda:us-west-2:123456789012:function:post-confirmation',
        'PreAuthentication': 'arn:aws:lambda:us-west-2:123456789012:function:pre-authentication',
        'PostAuthentication': 'arn:aws:lambda:us-west-2:123456789012:function:post-authentication',
        'DefineAuthChallenge': 'arn:aws:lambda:us-west-2:123456789012:function:define-auth-challenge',
        'CreateAuthChallenge': 'arn:aws:lambda:us-west-2:123456789012:function:create-auth-challenge',
        'VerifyAuthChallengeResponse': 'arn:aws:lambda:us-west-

相关内容

热门资讯

两分钟辅助!开心泉州小程序开挂... 两分钟辅助!开心泉州小程序开挂有什么技巧,原来真的是有辅助插件(有挂教学)开心泉州小程序开挂有什么技...
七分钟辅助!奇迹脚本辅助,真是... 七分钟辅助!奇迹脚本辅助,真是有辅助软件(确实有挂)1、超多福利:超高返利,海量正版游戏,奇迹脚本辅...
一分钟辅助!天天贵阳智能辅助器... 一分钟辅助!天天贵阳智能辅助器,原来是有辅助脚本(真的有挂)亲,关键说明,天天贵阳智能辅助器透视脚本...
3分钟辅助!一起宁德钓蟹黑科技... 3分钟辅助!一起宁德钓蟹黑科技辅助软件推荐,其实真的有辅助挂(有挂存在)1、玩家可以在一起宁德钓蟹黑...
第二分钟辅助!大菠萝789辅助... 第二分钟辅助!大菠萝789辅助器下载,原来存在有辅助挂(存在有挂)运大菠萝789辅助器下载辅助工具,...
3分钟辅助!科乐填坑辅助,原来... 3分钟辅助!科乐填坑辅助,原来真的是有辅助器(有挂方略)1、下载好科乐填坑辅助透视辅助下载之后点击打...
3分钟辅助!潮友会透视辅助教程... 3分钟辅助!潮友会透视辅助教程,果然存在有辅助器(有挂辅助)亲,关键说明,潮友会透视辅助教程透视脚本...
4分钟辅助!福建兄弟十三冰修改... 4分钟辅助!福建兄弟十三冰修改器,本来真的是有辅助app(有挂讲解)1、游戏颠覆性的策略玩法,独创攻...
第二分钟辅助!wepoker插... 第二分钟辅助!wepoker插件程序,真是是真的有辅助技巧(有挂细节)1、不需要AI权限,帮助你快速...
1分钟辅助!悠悠互娱辅助,真是... 1分钟辅助!悠悠互娱辅助,真是是有辅助神器(有挂解密)悠悠互娱辅助透视方法中分为三种模型:悠悠互娱辅...