Hi, I am trying to implement JWT Auth in my Core 2.1 webAPI. I’m still learning Core 2.1 and I have worked with MVC5 before. My question is that in MVC5, the AccountControllerwas auto generated along with all the controllers to handle the complete user authentication and authorization process. Now as I’m trying to implement the same thing for my Core 2.1 API, I’ve realized that they are no longer auto generated. I’ve searched around and have quite a few resoucrses that are teaching how to implement the functionality but, I remeber everyone would say to not reinvent the authorization/authentication wheel and use the auto generated code provided by MVC5. Now I could follow the tutorials out there and implement the process myself but pretty much everyone seems to be doing there own implementation. Is this the correct way of doing this? I don’t want to implement by following these tutorials and end up with a security loophole in my API.
I’m using Core 2.1 on VS 2017.
This is the source that I am following: https://medium.com/@ozgurgul/asp-net-core-2-0-webapi-jwt-authentication-with-identity-mysql-3698eeba6ff8