Integration actions for AWS ElasticLoadBalancingV2
Project description
Actions for AWS Elastic Load Balancing V2
---This package contains integration actions for ELBv2. See the README of the @aws-cdk/aws-elasticloadbalancingv2
library.
Cognito
ELB allows for requests to be authenticated against a Cognito user pool using
the AuthenticateCognitoAction
. For details on the setup's requirements,
read Prepare to use Amazon
Cognito.
Here's an example:
# Example automatically generated. See https://github.com/aws/jsii/issues/826
import aws_cdk.aws_cognito as cognito
import aws_cdk.aws_ec2 as ec2
import aws_cdk.aws_elasticloadbalancingv2 as elbv2
from aws_cdk.core import App, CfnOutput, Construct, Stack
import ...lib as actionsStack):
lb = elbv2.ApplicationLoadBalancer(self, "LB",
vpc=vpc,
internet_facing=True
)
user_pool = cognito.UserPool(self, "UserPool")
user_pool_client = cognito.UserPoolClient(self, "Client",
user_pool=user_pool,
# Required minimal configuration for use with an ELB
generate_secret=True,
auth_flows=AuthFlow(
user_password=True,
refresh_token=True
),
o_auth=OAuthSettings(
flows=OAuthFlows(
authorization_code_grant=True
),
scopes=[cognito.OAuthScope.EMAIL],
callback_urls=[f"https://{lb.loadBalancerDnsName}/oauth2/idpresponse"
]
)
)
cfn_client = user_pool_client.node.default_child
cfn_client.add_property_override("RefreshTokenValidity", 1)
cfn_client.add_property_override("SupportedIdentityProviders", ["COGNITO"])
user_pool_domain = cognito.UserPoolDomain(self, "Domain",
user_pool=user_pool,
cognito_domain=CognitoDomainOptions(
domain_prefix="test-cdk-prefix"
)
)
lb.add_listener("Listener",
port=443,
certificates=[certificate],
default_action=actions.AuthenticateCognitoAction(
user_pool=user_pool,
user_pool_client=user_pool_client,
user_pool_domain=user_pool_domain,
next=elbv2.ListenerAction.fixed_response(200,
content_type="text/plain",
message_body="Authenticated"
)
)
)
CfnOutput(self, "DNS",
value=lb.load_balancer_dns_name
)
app = App()
CognitoStack(app, "integ-cognito")
app.synth()
NOTE: this example seems incomplete, I was not able to get the redirect back to the Load Balancer after authentication working. Would love some pointers on what a full working setup actually looks like!
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Close
Hashes for aws-cdk.aws-elasticloadbalancingv2-actions-1.52.0.tar.gz
Algorithm | Hash digest | |
---|---|---|
SHA256 | 3d2c35f1de13c2295268c5845662b78f3b7d286bfd3806d51419994c1e182963 |
|
MD5 | 56696977b3ebfa195099ca4df599a373 |
|
BLAKE2b-256 | a757609af3d662c45334751d2e68f74c3783e75e5299f48e830ba9f38643d5b8 |
Close
Hashes for aws_cdk.aws_elasticloadbalancingv2_actions-1.52.0-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 185ded3ee393dbb5c17ab72582c623a373cbac038758e6df388f140e8b937766 |
|
MD5 | cbef4da94b5193ec806d6555ed4e7ed2 |
|
BLAKE2b-256 | 0a8a2e6e979992127e27d3f3b19a2e1e001d1e5a5b13c23fa2718849b174ccd6 |