UserController.py 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261
  1. # @Author : Rocky
  2. # @File : UserController.py
  3. # @Time : 2024/11/27 16:35
  4. import hashlib
  5. import hmac
  6. import os
  7. import time
  8. import requests
  9. from Ansjer.config import LOGGER
  10. from Ansjer.config import SERVER_DOMAIN_SSL
  11. from django.views.generic.base import View
  12. from Model.models import WeChatMiniProgram, Device_User, Device_Info, DeviceNameLanguage
  13. from Object.Enums.WeChatEnum import WeChatMiniProgramAPIEnum, WeChatMiniProgramConfigEnum
  14. from Object.RedisObject import RedisObject
  15. from Object.ResponseObject import ResponseObject
  16. class UserView(View):
  17. def get(self, request, *args, **kwargs):
  18. request.encoding = 'utf-8'
  19. operation = kwargs.get('operation')
  20. return self.validation(request.GET, request, operation)
  21. def post(self, request, *args, **kwargs):
  22. request.encoding = 'utf-8'
  23. operation = kwargs.get('operation')
  24. return self.validation(request.POST, request, operation)
  25. def validation(self, request_dict, request, operation):
  26. lang = request_dict.get('lang', 'cn')
  27. response = ResponseObject(lang)
  28. if operation == 'getPhoneNumber':
  29. return self.get_phone_number(request_dict, response)
  30. elif operation == 'userLogin':
  31. return self.user_login(request_dict, response)
  32. else:
  33. user_id = self.check_session_key_and_get_user_id(request)
  34. if not user_id:
  35. return response.json(309)
  36. if operation == 'deviceList':
  37. return self.device_list(user_id, response)
  38. @classmethod
  39. def check_session_key_and_get_user_id(cls, request):
  40. """
  41. 校验 session_key 是否有效
  42. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/checkSessionKey.html
  43. @return: bool
  44. """
  45. try:
  46. login_status = request.META.get('HTTP_AUTHORIZATION')
  47. if not login_status:
  48. return False
  49. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(login_status=login_status). \
  50. values('openid', 'session_key', 'phone_number')
  51. if not wechat_mini_program_qs.exists():
  52. return False
  53. openid = wechat_mini_program_qs[0]['openid']
  54. session_key = wechat_mini_program_qs[0]['session_key']
  55. signature = cls.generate_signature(session_key)
  56. access_token = cls.get_access_token()
  57. params = {
  58. 'openid': openid,
  59. 'access_token': access_token,
  60. 'signature': signature,
  61. 'sig_method': 'hmac_sha256'
  62. }
  63. r = requests.get(url=WeChatMiniProgramAPIEnum.checkSessionKeyAPI.value, params=params, timeout=5)
  64. result = eval(r.content)
  65. errcode = result.get('errcode')
  66. assert errcode == 0
  67. # 根据手机号查询用户id
  68. phone_number = wechat_mini_program_qs[0]['phone_number']
  69. device_user_qs = Device_User.objects.filter(phone=phone_number).values('userID')
  70. if not device_user_qs.exists():
  71. return False
  72. return device_user_qs[0]['userID']
  73. except Exception as e:
  74. return False
  75. @staticmethod
  76. def get_access_token():
  77. """
  78. 获取小程序全局唯一后台接口调用凭据,token有效期为7200s
  79. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/mp-access-token/getAccessToken.html
  80. @return: access_token
  81. """
  82. try:
  83. redis_obj = RedisObject()
  84. access_token_key = WeChatMiniProgramConfigEnum.AccessTokenKey.value
  85. expires_time = redis_obj.get_ttl(access_token_key)
  86. # 如果有效时间大于十分钟,返回token,否则刷新token
  87. if expires_time > 10 * 60:
  88. access_token = redis_obj.get_data(access_token_key)
  89. return access_token
  90. else:
  91. params = {
  92. 'grant_type': 'client_credential',
  93. 'appid': WeChatMiniProgramConfigEnum.AppID.value,
  94. 'secret': WeChatMiniProgramConfigEnum.AppSecret.value
  95. }
  96. r = requests.get(url=WeChatMiniProgramAPIEnum.getAccessTokenAPI.value, params=params, timeout=5)
  97. result = eval(r.content)
  98. access_token = result.get('access_token')
  99. assert access_token
  100. expires_in = result.get('expires_in')
  101. # 保存到Redis
  102. redis_obj.set_ex_data(key=access_token_key, val=access_token, expire=expires_in)
  103. return access_token
  104. except Exception as e:
  105. LOGGER.info('微信小程序获取token异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  106. return None
  107. @classmethod
  108. def get_phone_number(cls, request_dict, response):
  109. """
  110. 获取手机号码
  111. @param request_dict:
  112. @param response:
  113. @return: res
  114. """
  115. code = request_dict.get('code', None)
  116. if not code:
  117. return response.json(444)
  118. try:
  119. access_token = cls.get_access_token()
  120. url = WeChatMiniProgramAPIEnum.getPhoneNumberAPI.value.format(access_token)
  121. data = {
  122. 'code': code
  123. }
  124. r = requests.post(url=url, json=data, timeout=5)
  125. result = eval(r.content)
  126. errcode = result.get('errcode')
  127. assert errcode == 0
  128. phone_number = result['phone_info']['purePhoneNumber']
  129. res = {
  130. 'phone_number': phone_number
  131. }
  132. return response.json(0, res)
  133. except Exception as e:
  134. LOGGER.info('微信小程序获取手机号码异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  135. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  136. @classmethod
  137. def user_login(cls, request_dict, response):
  138. """
  139. 小程序登录
  140. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/code2Session.html
  141. https://developers.weixin.qq.com/miniprogram/dev/framework/open-ability/login.html
  142. @param request_dict:
  143. @param response:
  144. @return:
  145. """
  146. js_code = request_dict.get('js_code', None)
  147. phone_number = request_dict.get('phone_number', None)
  148. if not all([js_code, phone_number]):
  149. return response.json(444)
  150. try:
  151. params = {
  152. 'js_code': js_code,
  153. 'grant_type': 'authorization_code',
  154. 'appid': WeChatMiniProgramConfigEnum.AppID.value,
  155. 'secret': WeChatMiniProgramConfigEnum.AppSecret.value
  156. }
  157. r = requests.get(url=WeChatMiniProgramAPIEnum.code2SessionAPI.value, params=params, timeout=5)
  158. result = eval(r.content) # {'session_key': 'xxx' 会话密钥, 'openid': 'xxx' 用户唯一标识}
  159. openid = result.get('openid')
  160. assert openid
  161. openid = result['openid']
  162. session_key = result['session_key']
  163. # 生成登录态
  164. login_status = cls.generate_login_status(openid, session_key)
  165. now_time = int(time.time())
  166. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(openid=openid)
  167. if wechat_mini_program_qs.exists():
  168. wechat_mini_program_qs.update(
  169. login_status=login_status, session_key=session_key, phone_number=phone_number, updated_time=now_time
  170. )
  171. else:
  172. WeChatMiniProgram.objects.create(
  173. login_status=login_status, openid=openid, session_key=session_key, phone_number=phone_number,
  174. created_time=now_time, updated_time=now_time
  175. )
  176. # 头像链接
  177. user_icon_path = 'User/default.png'
  178. device_user_qs = Device_User.objects.filter(phone=phone_number).values('userIconPath')
  179. if device_user_qs.exists():
  180. user_icon_path = device_user_qs[0]['userIconPath']
  181. if user_icon_path.find('static/') != -1:
  182. user_icon_path = user_icon_path.replace('static/', '').replace('\\', '/')
  183. user_icon_url = SERVER_DOMAIN_SSL + 'account/getAvatar/' + user_icon_path
  184. res = {
  185. 'login_status': login_status,
  186. 'user_icon_url': user_icon_url
  187. }
  188. return response.json(0, res)
  189. except Exception as e:
  190. LOGGER.info('微信小程序登录异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  191. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  192. @staticmethod
  193. def generate_login_status(openid, session_key):
  194. """
  195. 生成登录态
  196. @param openid:
  197. @param session_key:
  198. @return: login_status
  199. """
  200. salt = os.urandom(16).hex()
  201. # 将openid, session_key和salt拼接成一个字符串
  202. to_hash = openid + session_key + salt
  203. # 使用hashlib生成SHA256哈希值
  204. hash_object = hashlib.sha256(to_hash.encode())
  205. # 获取十六进制格式的哈希值
  206. login_status = hash_object.hexdigest()
  207. return login_status
  208. @staticmethod
  209. def generate_signature(session_key):
  210. """
  211. 用户登录态签名,用session_key对空字符串签名得到的结果。即 signature = hmac_sha256(session_key, "")
  212. @param session_key: 会话密钥
  213. @return: signature
  214. """
  215. # 将session_key和要签名的数据(这里是空字符串)转换为字节类型
  216. session_key_bytes = session_key.encode('utf-8')
  217. data = b"" # 空字符串转换为字节类型
  218. # 创建一个新的hmac对象,使用sha256作为hash函数
  219. hmac_object = hmac.new(session_key_bytes, data, hashlib.sha256)
  220. # 获取十六进制格式的签名结果
  221. signature = hmac_object.hexdigest()
  222. return signature
  223. @staticmethod
  224. def device_list(user_id, response):
  225. """
  226. 查询设备列表
  227. @param user_id: 用户id
  228. @param response:
  229. @return:
  230. """
  231. try:
  232. img_url_1 = DeviceNameLanguage.objects.filter(name='智能摄像机 C520M').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  233. img_url_2 = DeviceNameLanguage.objects.filter(name='智能摄像机 C518').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  234. res = [
  235. {
  236. 'device_name': '智能摄像机520',
  237. 'service_status': '服务使用中 2025-11-25',
  238. 'img_url': img_url_1},
  239. {
  240. 'device_name': '智能摄像机518',
  241. 'service_status': '服务到期',
  242. 'img_url': img_url_2}
  243. ]
  244. return response.json(0, res)
  245. except Exception as e:
  246. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))