Skip to main content

A drop-in replacement for Starlette session middleware, using authlib's jwt

Project description

Starlette Authlib Middleware

codecov Package version PyPI - Downloads

Introduction

A drop-in replacement for Starlette session middleware, using authlib's jwt.

Rationale

It is sometimes necessary to integrate a Starlette-based application into more complex scenarios where other actors need to make decisions based on session data. This middleware makes this possible by using a standard JWT token instead of the Starlette-encrypted one, thus simplifying interaction with third-party components.

Requirements

  • Python 3.10+
  • Starlette 0.9+

Installation

pip install starlette-authlib

Usage

A complete example where we drop-in replace standard session middleware:

from starlette.applications import Starlette

from starlette_authlib.middleware import AuthlibMiddleware as SessionMiddleware


app = Starlette()

app.add_middleware(SessionMiddleware, secret_key='secret')

Other things you can configure either via environment variables or .env file:

  • DOMAIN - declare cookie domain. App must be under this domain. If empty, the cookie is restricted to the subdomain of the app (this is useful when you write eg. SSO portals)
  • JWT_ALG - one of authlib JWT supported algorithms
  • JWT_SECRET - jwt secret. Only useful for HS* algorithms, see the sample_app folder for middleware usage w/ crypto keys.

See it in action: sample application

A sample application is included, and you can run it with either Starlette-based session middleware or this one, just by setting a variable:

# run with vanilla Starlette-based session middleware
VANILLA=1 uvicorn sample_app.app:app

# run with this drop-in replacement
uvicorn sample_app.app:app

As you can notice in code here, the only difference is an import name, based on this VANILLA env var.

Contributing

This project is absolutely open to contributions so if you have a nice idea, create an issue to let the community discuss it.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

starlette_authlib-0.3.16.tar.gz (4.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

starlette_authlib-0.3.16-py3-none-any.whl (5.1 kB view details)

Uploaded Python 3

File details

Details for the file starlette_authlib-0.3.16.tar.gz.

File metadata

  • Download URL: starlette_authlib-0.3.16.tar.gz
  • Upload date:
  • Size: 4.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/2.3.2 CPython/3.10.20 Linux/6.17.0-1008-azure

File hashes

Hashes for starlette_authlib-0.3.16.tar.gz
Algorithm Hash digest
SHA256 9c96d3b8f4ef5b98f21707019488566b473c7c9ff444a6a4a21c67d9269cbef7
MD5 5e74669b6cef4838518e94856d7c4d1c
BLAKE2b-256 718d43c20c6fbe1d7606b4e01f1d93e7c394eafddcc7ea4dfd9b0389fcf4e025

See more details on using hashes here.

File details

Details for the file starlette_authlib-0.3.16-py3-none-any.whl.

File metadata

  • Download URL: starlette_authlib-0.3.16-py3-none-any.whl
  • Upload date:
  • Size: 5.1 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/2.3.2 CPython/3.10.20 Linux/6.17.0-1008-azure

File hashes

Hashes for starlette_authlib-0.3.16-py3-none-any.whl
Algorithm Hash digest
SHA256 bbaff39a41d7a38f2113bba2023db92683e2127a61c0cfb72fd048d852eb24d1
MD5 1fb785327f62a1c783d82b395ef0c767
BLAKE2b-256 c91d07149a64634945a7a67d6a75131b69660e2f73484508a8e5b3c349a6d5c1

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page