{"repo":"damienbod/EndToEndSecurity","free":true,"listed":false,"github":"https://github.com/damienbod/EndToEndSecurity","clone":"git clone https://github.com/damienbod/EndToEndSecurity.git","description":"End to end security of a web application","language":"C#","stars":10,"topics":["aspnetcore","dotnet","oauth","oidc","openidconnect","sonar","sonarcloud"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"End to end security of a web application See updated version here: https://github.com/secure-web-apps/EndToEndSecurityWeb Using SonarCloud with ASP.NET Core, Angular and github actions Webinar: https://www.youtube.com/watch?v=6cdV-oN Yao Setup and docs https://github.com/damienbod/bff-aspnetcore-angular Webinar Agenda - Application setup development/production - ASP.NET Core/Angular - Secrets - Authentication - OpenID Connect Code flow confidential client - PKCE - Microsoft Entra ID - Microsoft.Identity.Web - Microsoft Graph 5 for profile data - Profile data in UI (UserController) - Session protection - CI/CD - build - deployment - CI/CD Quality (SonarCloud) - quality (SonarCloud and github actions) - Analysis for different technical stacks (.csproj) - sonar badges, build badges Other topics - What's missing for a productive setup? - infrastructure automation (terraform/biceps) - authorization - data requirements Angular nx Updates History - 2025-08-30 Updated packages, Angular 20 - 2025-01-01 .NET 9, Angular 19 - 2024-10-17 Updated security headers performance, updated packages - 2024-10-06 Updated Angular 18.2.7, Updated security headers Links https://docs.sonarsource.com/sonarcloud/getting-started/github/ https://github.com/rufer7/github-sonarcloud-integration https://blog.rufer.be/2023/10/06/howto-integrate-sonarcloud-analysis-in-an-azure-devops-yaml-pipeline/ https://community.sonarsource.com/t/code-coverage-report-for-net-not-working-on-linux-agent/62087 https://docs.so","default_branch":null,"files":null,"tree":[],"storefront":"/r/damienbod","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/damienbod/EndToEndSecurity/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}