The AWS Secrets Manager caching client enables in-process caching of secrets for .NET applications.
To use this client, you must have:
-
A .NET project with one of the following:
- .NET Framework 4.6.1 or higher
- .NET Standard 2.0 or higher
-
An Amazon Web Services (AWS) account to access secrets stored in AWS Secrets Manager and use AWS SDK for .NET.
-
To create an AWS account, go to Sign In or Create an AWS Account and then choose I am a new user. Follow the instructions to create an AWS account.
-
To create a secret in AWS Secrets Manager, go to Creating Secrets and follow the instructions on that page.
-
To download and install the AWS SDK for .NET, go to Installing the AWS SDK for .NET in the AWS SDK for .NET documentation and then follow the instructions on that page.
-
You can get the latest release from Nuget
:
<ItemGroup>
<PackageReference Include="AWSSDK.SecretsManager.Caching" Version="1.0.4" />
</ItemGroup>
The following code sample demonstrates how to start using the caching client:
using System;
using Amazon.SecretsManager.Extensions.Caching.SecretsManagerCache;
namespace LambdaExample {
public class CachingExample
{
private SecretsManagerCache cache = new SecretsManagerCache();
private const String MySecretName = "MySecret";
public async Task<Response> FunctionHandlerAsync(String input, ILambdaContext context)
{
String MySecret = await cache.GetSecretString(MySecretName);
...
}
}
}
- After instantiating the cache, retrieve your secret using
GetSecretString
orGetSecretBinary
. - On successive retrievals, the cache will return the cached copy of the secret.
- Learn more about AWS Lambda Function Handlers in C#.
You can configure the SecretCacheConfiguration
object with the following parameters:
CacheItemTTL
- The TTL of a Cache item in milliseconds. The default value is3600000
ms, or 1 hour.MaxCacheSize
- The maximum number of items the Cache can contain before evicting using LRU. The default value is1024
.VersionStage
- The Version Stage the Cache will request when retrieving secrets from Secrets Manager. The default value isAWSCURRENT
.Client
- The Secrets Manager client to be used by the Cache. The default value isnull
, which causes the Cache to instantiate a new Secrets Manager client.CacheHook
- An implementation of the ISecretCacheHook interface. The default value isnull
.
We use GitHub issues for tracking bugs and caching library feature requests and have limited bandwidth to address them. Please use these community resources for getting help:
- Ask a question on Stack Overflow and tag it with aws-secrets-manager.
- Open a support ticket with AWS Support.
- If it turns out that you may have found a bug, please open an issue.
This library is licensed under the Apache 2.0 License.