Links
Load all the secrets into a dictionary
Nuget packages: AWSSDK.SecretsManager AWSSDK.SSO AWSSDK.SSOOIDC
|
var secretsManagerConfig = new AmazonSecretsManagerConfig()
{
Profile = new Profile("MyProfile"),
RegionEndpoint = RegionEndpoint.EUCentral1
};
var secretsManager = new AmazonSecretsManagerClient(secretsManagerConfig);
var request = new GetSecretValueRequest
{
SecretId = "MySecretName"
};
var response = await secretsManager.GetSecretValueAsync(request);
var secret = JsonConvert.DeserializeObject<Dictionary<string, string>>(response.SecretString);
return secret;
|
AmazonSecretsManagerConfigurationProvider.cs
|
public class AmazonSecretsManagerConfigurationProvider(string secretName) : ConfigurationProvider
{
public override void Load()
{
var secret = GetSecret();
Data = JsonSerializer.Deserialize<Dictionary<string, string>>(secret)!;
}
private string GetSecret()
{
var request = new GetSecretValueRequest
{
SecretId = this.secretName
};
using var client = new AmazonSecretsManagerClient()
var response = client.GetSecretValueAsync(request).Result;
return response.SecretString;
}
}
|
AmazonSecretsManagerConfigurationSource.cs
|
public class AmazonSecretsManagerConfigurationSource(string secretName) : IConfigurationSource
{
public IConfigurationProvider Build(IConfigurationBuilder builder)
=> new AmazonSecretsManagerConfigurationProvider(this.secretName);
}
|
ConfigurationBuilderExtensions.cs
|
public static class ConfigurationBuilderExtensions
{
public static void AddAmazonSecretsManager(this IConfigurationBuilder configurationBuilder, string secretName)
{
var configurationSource = new AmazonSecretsManagerConfigurationSource(secretName);
configurationBuilder.Add(configurationSource);
}
}
|
Program.cs
|
builder.Configuration.AddAmazonSecretsManager("Secret name");
// inject an object which contains the secrets
builder.Services.Configure<MySecrets>(builder.Configuration);
// load the secrets from the configuration into the MySecret object
var mySecrets = configuration.Get<MaiaSecrets>();
// get a secret from a configuration key
var secretValue = builder.Configuration["Secret key"];
|