signalr : after Authentication i get error 400 (Bad Request) in client-side - .net-core

after Task.CompletedTask i get error 400 (Bad Request) in "client-side"
What am I missing to go through the Authentication phase?
public class Startup : StartupBase
public override void ConfigureServices(IServiceCollection services)
services.AddAuthentication(options =>
options.DefaultAuthenticateScheme = options.DefaultScheme;
options.DefaultChallengeScheme = options.DefaultScheme;
.AddJwtBearer(options =>
options.Events = new JwtBearerEvents
OnMessageReceived = context =>
var accessToken = context.Request.Headers["Authorization"];
var path = context.HttpContext.Request.Path;
if (!string.IsNullOrEmpty(accessToken))
context.Token = accessToken.ToString().Substring("Token ".Length).Trim();
return Task.CompletedTask;
services.AddSingleton<IMongoDBService, MongoDBService>();
public override void Configure(IApplicationBuilder builder, IEndpointRouteBuilder routes, IServiceProvider serviceProvider)
builder.UseEndpoints(endpoints =>
[Authorize(AuthenticationSchemes = JwtBearerDefaults.AuthenticationScheme)]
public class NotificationEventsHub : Hub//, IPrinterEventsHub
private readonly ISession _session;
private readonly ITelegramServices _telegramServices;
private readonly ISaveEventToDBServices _saveEventToDBServices;
private readonly IHubContext<NotificationEventsHub> _Context;
private string ConnectionID;
public NotificationEventsHub(IHubContext<NotificationEventsHub> context,
ISession session,
ITelegramServices telegramServices,
ISaveEventToDBServices saveEventToDBServices)
_Context = context;
_session = session;
_telegramServices = telegramServices;
_saveEventToDBServices = saveEventToDBServices;
public override Task OnConnectedAsync()
ConnectionID = this.Context.ConnectionId;
var connectedUser = Context.User.Identity;
return base.OnConnectedAsync();
public override Task OnDisconnectedAsync(Exception exception)
return base.OnDisconnectedAsync(exception);
public async Task GetNotificationMsg(string jsonStringNotification)
public static async Task<bool> SendPrinterEventToCloudManager()
var SignalRConnectionInfo = new SignalRConnectionInfo();
SignalRConnectionInfo.AccessToken = "test";
string _SignalRUrl =
HubConnection connection = new HubConnectionBuilder().WithUrl(_SignalRUrl,
o => o.AccessTokenProvider = () => Task.FromResult(SignalRConnectionInfo.AccessToken)).Build();
await connection.StartAsync();
await connection.InvokeAsync("GetNotificationMsg", "testmsg");
return true;
catch (Exception ex)
var msg = ex.Message;
return false;
i am try to use JwtBearer token and after i read the value what's next step to aprrove that the user Authentication?


DbContext in Service triggered by Hangfire

I have a .NET 6 Razor Pages app that triggers background tasks and then informs the user of their status via SignalR.
I'm trying to use Database1 context in the PerformBackgroundJob method, but it's disposed. What technique should I use to inject Database1 context in PerformBackgroundJob, or how else can I get this to work?
namespace Toolkat.Pages
public class ProcessModel : PageModel
private readonly Database1Context _context;
private readonly ToolkatContext _tkcontext;
private IConfiguration configuration;
private readonly IQueue _queue;
private readonly IHubContext<JobHub> _hubContext;
static ServerConnection conn;
static Server server;
static Job job;
public ProcessModel(
Database1Context context,
ToolkatContext tkcontext,
IConfiguration _configuration,
IQueue queue,
IHubContext<JobHub> hubContext)
_context = context;
_tkcontext = tkcontext;
configuration = _configuration;
_queue = queue;
_hubContext = hubContext;
public IList<CustomFileImport> CustomFileImport { get; set; } = default!;
public CustomFileImport CustomFileImportNumberTwo { get; set; } = default!;
public async Task OnGetAsync()
if (_context.CustomFileImports != null)
CustomFileImport = await _context.CustomFileImports
.Include(c => c.FileImportType)
.Include(c => c.FileImportStatus)
.Where(i => i.FileImportStatusId.Equals(1))
public async Task<IActionResult> OnPostAsync(int[] fileImportId)
//Generate GUID
Guid jobId = Guid.NewGuid();
//Update FileImportItems with GUID
foreach (var id in fileImportId)
if (/*id == null ||*/ _context.CustomFileImports == null)
return NotFound();
var customfileimport = await _context.CustomFileImports.FirstOrDefaultAsync(m => m.FileImportId == id);
if (customfileimport == null)
return NotFound();
customfileimport.ProcessId = jobId;
await _context.SaveChangesAsync();
_queue.QueueAsyncTask(() => PerformBackgroundJob(jobId));
return RedirectToPage("./Result", new { jobId });
private async Task PerformBackgroundJob(Guid jobId /*CancellationToken cancellationToken*/)
await _hubContext.Clients.Group(jobId.ToString()).SendAsync("progress", "PerformBackgroundJob Started");
var customFileImports = await _context.CustomFileImports
.Include(c => c.FileImportType)
.Where(i => i.ProcessId.Equals(jobId))
Debug.WriteLine("ProviderName:" + _context.Database.ProviderName);
foreach (var f in customFileImports)
await _hubContext.Clients.Group(jobId.ToString()).SendAsync("progress", WebUtility.HtmlEncode(f.FileName));
I had to combine lessons from lots of articles to figure this out. Hangfire has a nice way of approaching this.
_queue.QueueAsyncTask(() => PerformBackgroundJob(jobId));
BackgroundJob.Enqueue<ProcessFilesService>(x => x.DoWork());
Passing dependencies
and create this class
public class ProcessFilesService
IServiceProvider _serviceProvider;
public ProcessFilesService(IServiceProvider serviceProvider)
_serviceProvider = serviceProvider;
public void DoWork()
using var scope = _serviceProvider.CreateScope();
var ctx = scope.ServiceProvider.GetRequiredService<MyDatabaseContext>();
using var hubScope = _serviceProvider.CreateScope();
var _hubContext = hubScope.ServiceProvider.GetRequiredService<JobHub>();
Hmm...I didn't need to register it as a service in program.cs and it appears to still be working. Will have to learn more about that.

How to catch Unauthorized 401 ASP.NET Core web api .NET 6

I have an ASP.NET Core Web API and I'm using an exception middleware in order to catch my custom exceptions and return appropriate responses to the client.
However, in the case of "Unauthorized Access" thrown by the controller itself when using the [Authorize] attribute, how can I catch the error in my middleware?
Exception middleware
public class ExceptionMiddleware
readonly RequestDelegate _request;
public ExceptionMiddleware(RequestDelegate request)
_request = request;
public async Task InvokeAsync(HttpContext context)
await _request(context);
catch (ValidationException ex)
context.Response.StatusCode = (int)HttpStatusCode.BadRequest;
var error = ex.ToValidationExceptionDetails();
await context.Response.WriteAsJsonAsync(error);
catch (Exception ex) when (ex.GetErrorCode() == (int)HttpStatusCode.Conflict)
context.Response.StatusCode = (int)HttpStatusCode.Conflict;
var error = ex.ToConflictExceptionDetails();
await context.Response.WriteAsJsonAsync(error);
catch (Exception ex) when (ex.GetErrorCode() == (int)HttpStatusCode.NotFound)
context.Response.StatusCode = (int)HttpStatusCode.NotFound;
var error = ex.ToNotFoundExceptionDetails();
await context.Response.WriteAsJsonAsync(error);
catch(Exception ex) when (ex.GetErrorCode() == (int)HttpStatusCode.Unauthorized)
context.Response.StatusCode = (int)HttpStatusCode.Unauthorized;
var error = ex.ToUnauthorizedRequestExceptionDetails();
await context.Response.WriteAsJsonAsync(error);
catch (Exception)
Custom exception example:
public class PostNotFoundException : Exception
public int ErrorCode { get; } = (int)System.Net.HttpStatusCode.NotFound;
readonly static string _defaultErrorMessage = "Post Not Found.";
public PostNotFoundException() : base(_defaultErrorMessage) { }
public PostNotFoundException(string message) : base(message) { }
public PostNotFoundException(string message, Exception innerException)
: base(message, innerException) { }
Controller method code:
[Authorize(AuthenticationSchemes = JwtBearerDefaults.AuthenticationScheme)]
public class PostsController : ControllerBase
readonly IPostService _postService;
public PostsController(IPostService postService)
_postService = postService;
public async Task<ActionResult<PostQueryDTO>> GetPostById(Guid id)
return await _postService.GetPostByIdAsync(id);
public async Task<ActionResult<IEnumerable<PostsByUserDTO>>> GetPostsByUserID()
return Ok(await _postService.GetPostsByUserIDAsync(HttpContext.GetUserID()));
public async Task<ActionResult<IEnumerable<PostQueryDTO>>> GetPostsByUserFollowings()
return Ok(await _postService.GetPostsByUserFollowingsAsync(HttpContext.GetUserID()));
public async Task<ActionResult<PostPOSTCommandDTO>> PostPost(PostPOSTCommandDTO post)
PostQueryDTO newpost = await _postService.CreatePostAsync(post, HttpContext.GetUserID());
return CreatedAtAction("GetPostById", new { id = newpost.Id }, newpost);
public async Task<IActionResult> PutPost(PostPOSTCommandDTO post, Guid postID)
await _postService.EditPostAsync(post, postID, HttpContext.GetUserID());
return NoContent();
public async Task<IActionResult> DeletePost(Guid postID)
await _postService.DeletePostAsync(postID, HttpContext.GetUserID());
return NoContent();
So basically if an unauthorized user tries to add a post, the controller returns and 401 response, because of the Authorize attribute.
Is there a way to stop it from doing that and let me return custom response instead?
I think you may take the JwtBearerEvents into considratio
.AddJwtBearer(options =>
options.TokenValidationParameters = new TokenValidationParameters
ValidateIssuer = true,
ValidateAudience = true,
ValidateIssuerSigningKey = true,
ValidIssuer = "",
ValidAudience = "",
IssuerSigningKey = new SymmetricSecurityKey(Convert.FromBase64String("base64string"))
options.Events = new JwtBearerEvents
OnAuthenticationFailed = async (context) =>
//do something here
OnChallenge = async (context) =>
//do something here

Why is my blazor app leaving so many ports open

I created a .net 6 app using server side Blazor and SignalR. The app was basically a single page with 10 different components. Each component was a client that looked something like this:
#code {
private HubConnection? hubConnection;
private ExampleViewModel data { get; set; } = new ExampleViewModel();
protected override async Task OnInitializedAsync()
hubConnection = new HubConnectionBuilder()
hubConnection.On<ExampleViewModel>("example", (Data) =>
data = Data;
await hubConnection.StartAsync();
public async ValueTask DisposeAsync()
if (hubConnection is not null)
await hubConnection.DisposeAsync();
Each component has a "broadcaster" that runs on a timer and makes a call to the database using Mediator and Dapper. Example:
public class ExampleBroadcaster : IDataBroadcaster
private readonly IMediator _mediator;
private readonly ILogger<ExampleBroadcaster> _logger;
private readonly IHubContext<MainHub> _mainHub;
private readonly IMemoryCache _cache;
private const string Something = "example";
private Timer _timer;
public ExampleBroadcaster(IHubContext<MainHub> mainHub,
IMediator mediator, ILogger<ExampleBroadcaster> logger,
IMemoryCache cache)
_mainHub = mainHub;
_mediator = mediator;
_logger = logger;
_cache = cache;
public void Start()
_timer = new Timer(BroadcastData, null, 0, 30000);
private async void BroadcastData(object? state)
ExampleViewModel viewModel;
if (_cache.TryGetValue(Something, out ExampleViewModel data))
viewModel = data;
viewModel = _mediator.Send(new GetExampleData()).Result;
_cache.Set(Something, viewModel, TimeSpan.FromMinutes(10));
await _mainHub.Clients.All.SendAsync("example", viewModel);
catch (Exception ex)
_logger.LogError(ex, ex.Message);
The mediator handler simply uses Dapper to get data from the database:
public class GetExampleData : IRequest<ExampleViewModel>
public class GetExampleDataHandler : IRequestHandler<GetExampleData, ExampleViewModel>
private readonly IDbConnectionFactory _connectionFactory;
private string _storedProcedure = "some sproc name";
public GetExampleDataHandler(IDbConnectionFactory connectionFactory)
_connectionFactory = connectionFactory;
public async Task<ExampleViewModel> Handle(GetExampleData request, CancellationToken cancellationToken)
using (var connection = _connectionFactory.GetReadOnlyConnection())
return await connection.QueryFirstAsync<ExampleViewModel>(_storedProcedure, CommandType.StoredProcedure);
This is the main razor page that houses all the individual components:
#code {
private HubConnection? hubConnection;
protected override async Task OnInitializedAsync()
hubConnection = new HubConnectionBuilder()
await hubConnection.StartAsync();
await hubConnection.SendAsync("Init");
catch(Exception exception)
Logger.LogError(exception, exception.Message);
public async ValueTask DisposeAsync()
if (hubConnection is not null)
await hubConnection.DisposeAsync();
Finally, the MainHub.cs code:
public class MainHub : Hub
IEnumerable<IDataBroadcaster> _broadcasters;
private static bool _started;
public MainHub(IEnumerable<IDataBroadcaster> broadcasters)
_broadcasters = broadcasters;
public void Init()
if (!_started)
_started = true;
private void StartBroadcasting()
foreach (var broadcaster in _broadcasters)
This all worked fine locally, in our dev environment, and our test environment. In production, we found that the app was crashing after a number of hours. According to the server admins, the app is opening 100s or 1000s of ports and leaving them open until the number of allotted ports was hit, causing the app to crash.
What is the issue here? The broadcasters are registered as singletons. This app only runs on one web server.

Why is my hubconnection on but the method is not being fired?

I've set up signalr in my blazor server side application and for some reason this hubconnection is not being triggered, when the hubconnection is on, it completely ignores the BroadcastData method and doesnt even fire it:
private HubConnection hubConnection;
private string _hubUrl;
protected override async Task OnInitializedAsync()
string baseUrl = NavigationManager.BaseUri;
_hubUrl = baseUrl.TrimEnd('/') + SignalRHub.HubUrl;
_hubConnection = new HubConnectionBuilder()
hubConnection.On<ClientDTO>("BroadcastData", BroadcastData);
await hubConnection.StartAsync();
private void BroadcastData(ClientDTO payload)
dashboardData = payload;
I have everything setup for this to be "working" but clearly it isn't working and I'm completely lost at what could be the problem... Please take a look at what I have so far and see if you can see what's going on:
public Startup(IConfiguration configuration)
Configuration = configuration;
private void StartTimer()
_timer = new System.Timers.Timer();
_timer.Interval = 5000;
_timer.Elapsed += TimerElapsed;
private void TimerElapsed(Object source, ElapsedEventArgs e)
public void Trigger()
using (HttpClient client = new HttpClient())
//Trigger on elapsed
var response = client.GetAsync(Configuration.GetConnectionString("ApiTriggerURL")).Result;
Console.WriteLine("something terrible has happened...");
services.AddScoped<IHub, SignalRHub>();
services.AddResponseCompression(opts =>
opts.MimeTypes = ResponseCompressionDefaults.MimeTypes.Concat(
new[] { "application/octet-stream" });
public void Configure(IApplicationBuilde app, IWebHostEnvironment env)
app.UseEndpoints(endpoints =>
appsettings.json: (fyi, the trigger is working, the api endpoint is being hit as it returns a status 200 ok result)
"ApiTriggerURL": "http://localhost:5000/api/SignalRHub/GetMyData"
Then we have my api controller: (here you can see the status 200 ok)
private readonly SignalRHub _signalRHub;
public SignalRHubController(SignalRHub signalRHub)
_signalRHub = signalRHub;
public ObjectResult GetMyData()
Task.WhenAll(_signalRHub.BroadcastData()); // Call hub broadcast method
return this.StatusCode((int)HttpStatusCode.OK, "trigger has been triggered");
return this.StatusCode((int)HttpStatusCode.InternalServerError, "christ, the ting is broken fam");
When we look into the _signalRHub.BroadcastData(), we see this:
public class SignalRHub : Hub, IHub
private readonly ClientService _clientService;
readonly IHubContext<SignalRHub> _hubContext;
public const string HubUrl = "/chathub"; //this is being read in the startup in the endpoints
public SignalRHub(ClientService clientService, IHubContext<SignalRHub> hubContext)
_clientService = clientService;
_hubContext = hubContext;
public async Task BroadcastData()
var data = _clientService .GetDataAsync().Result;
await _hubContext.Clients.All.SendAsync("BroadcastData", data); //send data to all clients
And this in turn should basically do this signalrhub every x seconds (depending on timer)
I know my code is a whole load of madness, but please look pass this and help me to understand why this isn't working! Thank you in advance!
Try following:
hubConnection.On<ClientDTO>("BroadcastData", (payload)=>
Instead of
hubConnection.On<ClientDTO>("BroadcastData", BroadcastData);

ASP.NET core 2 act as reverse proxy usering rewrite middleware

I'm struggling to make my core 2 app act like a reverse proxy using URL Rewrite rules.
I have the following in my startup.cs:
var rewriteRules = new RewriteOptions()
.AddRewrite(#"^POC/(.*)", "$1", true);
The rewrite rule is exactly as it is in my IIS settings (which I'm trying to replace with this method) which works fine.
I'm assuming it has something to do with forwarding the headers maybe? Or maybe I just don't understand how the Rewrite Middleware is supposed to work, if you want the requests to be forwarded instead of just rewritten relative to current hostname.
A reverse proxy can be emulated/implemeted within a middleware :
First the startup class where we add a IUrlRewriter service and the ProxyMiddleware.
public class Startup
private readonly IConfiguration _configuration;
public Startup(IConfiguration configuration)
_configuration = configuration;
public void ConfigureServices(IServiceCollection services)
services.AddSingleton<IUrlRewriter>(new SingleRegexRewriter(#"^/POC/(.*)", "$1"));
public void Configure(IApplicationBuilder app, IHostingEnvironment env)
app.UseRewriter(new RewriteOptions().AddRedirectToHttps());
Next we will create a basic implementation of IUrlRewriter. The RewriteUri method must transform the HttpContext into an absolute Uri. Or null if the url should not be redirected in the middleware.
public interface IUrlRewriter
Task<Uri> RewriteUri(HttpContext context);
public class SingleRegexRewriter : IUrlRewriter
private readonly string _pattern;
private readonly string _replacement;
private readonly RegexOptions _options;
public SingleRegexRewriter(string pattern, string replacement)
: this(pattern, replacement, RegexOptions.None) { }
public SingleRegexRewriter(string pattern, string replacement, RegexOptions options)
_pattern = pattern ?? throw new ArgumentNullException(nameof(pattern));
_replacement = replacement ?? throw new ArgumentNullException(nameof(pattern));
_options = options;
public Task<Uri> RewriteUri(HttpContext context)
string url = context.Request.Path + context.Request.QueryString;
var newUri = Regex.Replace(url, _pattern, _replacement);
if (Uri.TryCreate(newUri, UriKind.Absolute, out var targetUri))
return Task.FromResult(targetUri);
return Task.FromResult((Uri)null);
And then the Middleware (stolen from an old verison of aspnet proxy repo) and customized. It get the IUrlRewrite service as parameter of Invoke method.
The pipeline is :
Try rewrite url
Create a HttpRequestMessage
Copy Request Header and content
Send the request
Copy response header
Copy response content
Et voila
public class ProxyMiddleware
private static readonly HttpClient _httpClient = new HttpClient(new HttpClientHandler()
AllowAutoRedirect = false,
MaxConnectionsPerServer = int.MaxValue,
UseCookies = false,
private const string CDN_HEADER_NAME = "Cache-Control";
private static readonly string[] NotForwardedHttpHeaders = new[] { "Connection", "Host" };
private readonly RequestDelegate _next;
private readonly ILogger<ProxyMiddleware> _logger;
public ProxyMiddleware(
RequestDelegate next,
ILogger<ProxyMiddleware> logger)
_next = next;
_logger = logger;
public async Task Invoke(HttpContext context, IUrlRewriter urlRewriter)
var targetUri = await urlRewriter.RewriteUri(context);
if (targetUri != null)
var requestMessage = GenerateProxifiedRequest(context, targetUri);
await SendAsync(context, requestMessage);
await _next(context);
private async Task SendAsync(HttpContext context, HttpRequestMessage requestMessage)
using (var responseMessage = await _httpClient.SendAsync(requestMessage, HttpCompletionOption.ResponseHeadersRead, context.RequestAborted))
context.Response.StatusCode = (int)responseMessage.StatusCode;
foreach (var header in responseMessage.Headers)
context.Response.Headers[header.Key] = header.Value.ToArray();
foreach (var header in responseMessage.Content.Headers)
context.Response.Headers[header.Key] = header.Value.ToArray();
if (!context.Response.Headers.ContainsKey(CDN_HEADER_NAME))
context.Response.Headers.Add(CDN_HEADER_NAME, "no-cache, no-store");
await responseMessage.Content.CopyToAsync(context.Response.Body);
private static HttpRequestMessage GenerateProxifiedRequest(HttpContext context, Uri targetUri)
var requestMessage = new HttpRequestMessage();
CopyRequestContentAndHeaders(context, requestMessage);
requestMessage.RequestUri = targetUri;
requestMessage.Headers.Host = targetUri.Host;
requestMessage.Method = GetMethod(context.Request.Method);
return requestMessage;
private static void CopyRequestContentAndHeaders(HttpContext context, HttpRequestMessage requestMessage)
var requestMethod = context.Request.Method;
if (!HttpMethods.IsGet(requestMethod) &&
!HttpMethods.IsHead(requestMethod) &&
!HttpMethods.IsDelete(requestMethod) &&
var streamContent = new StreamContent(context.Request.Body);
requestMessage.Content = streamContent;
foreach (var header in context.Request.Headers)
if (!NotForwardedHttpHeaders.Contains(header.Key))
if (header.Key != "User-Agent")
if (!requestMessage.Headers.TryAddWithoutValidation(header.Key, header.Value.ToArray()) && requestMessage.Content != null)
requestMessage.Content?.Headers.TryAddWithoutValidation(header.Key, header.Value.ToArray());
string userAgent = header.Value.Count > 0 ? (header.Value[0] + " " + context.TraceIdentifier) : string.Empty;
if (!requestMessage.Headers.TryAddWithoutValidation(header.Key, userAgent) && requestMessage.Content != null)
requestMessage.Content?.Headers.TryAddWithoutValidation(header.Key, userAgent);
private static HttpMethod GetMethod(string method)
if (HttpMethods.IsDelete(method)) return HttpMethod.Delete;
if (HttpMethods.IsGet(method)) return HttpMethod.Get;
if (HttpMethods.IsHead(method)) return HttpMethod.Head;
if (HttpMethods.IsOptions(method)) return HttpMethod.Options;
if (HttpMethods.IsPost(method)) return HttpMethod.Post;
if (HttpMethods.IsPut(method)) return HttpMethod.Put;
if (HttpMethods.IsTrace(method)) return HttpMethod.Trace;
return new HttpMethod(method);
Bonus : some other Rewriter
public class PrefixRewriter : IUrlRewriter
private readonly PathString _prefix;
private readonly string _newHost;
public PrefixRewriter(PathString prefix, string newHost)
_prefix = prefix;
_newHost = newHost;
public Task<Uri> RewriteUri(HttpContext context)
if (context.Request.Path.StartsWithSegments(_prefix))
var newUri = context.Request.Path.Value.Remove(0, _prefix.Value.Length) + context.Request.QueryString;
var targetUri = new Uri(_newHost + newUri);
return Task.FromResult(targetUri);
return Task.FromResult((Uri)null);
public class MergeRewriter : IUrlRewriter
private readonly List<IUrlRewriter> _rewriters = new List<IUrlRewriter>();
public MergeRewriter()
public MergeRewriter(IEnumerable<IUrlRewriter> rewriters)
if (rewriters == null) throw new ArgumentNullException(nameof(rewriters));
public MergeRewriter Add(IUrlRewriter rewriter)
if (rewriter == null) throw new ArgumentNullException(nameof(rewriter));
return this;
public async Task<Uri> RewriteUri(HttpContext context)
foreach (var rewriter in _rewriters)
var targetUri = await rewriter.RewriteUri(context);
if(targetUri != null)
return targetUri;
return null;
// In Statup.cs
public void ConfigureServices(IServiceCollection services)
services.AddSingleton<IUrlRewriter>(new MergeRewriter()
.Add(new PrefixRewriter("/POC/API", "http://localhost:1234"))
.Add(new SingleRegexRewriter(#"^/POC/(.*)", "$1")));
I found a project to do same but with way more other feature as a nuget package
