UserController.py 48 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140
  1. #!/usr/bin/env python3
  2. # -*- coding: utf-8 -*-
  3. """
  4. @Copyright (C) ansjer cop Video Technology Co.,Ltd.All rights reserved.
  5. @AUTHOR: ASJRD018
  6. @NAME: AnsjerFormal
  7. @software: PyCharm
  8. @DATE: 2018/9/11 15:08
  9. @Version: python3.6
  10. @MODIFY DECORD:ansjer dev
  11. @file: UserController.py
  12. @Contact: chanjunkai@163.com
  13. """
  14. import datetime
  15. import traceback
  16. import simplejson as json
  17. import socket
  18. import uuid
  19. from django.contrib.auth.hashers import make_password, check_password # 对密码加密模块
  20. from django.db.models import Q
  21. from django.http import HttpResponseRedirect
  22. from django.utils.decorators import method_decorator
  23. from django.utils.timezone import utc
  24. from django.views.decorators.csrf import csrf_exempt
  25. from django.views.generic import TemplateView
  26. from ratelimit.decorators import ratelimit
  27. from Ansjer.config import AuthCode_Expire, SERVER_DOMAIN
  28. from Controller.CheckUserData import DataValid, date_handler, RandomStr
  29. from Model.models import Device_User
  30. from Model.models import Role
  31. from Object.AWS.SesClassObject import SesClassObject
  32. from Object.AliSmsObject import AliSmsObject
  33. from Object.RedisObject import RedisObject
  34. from Object.ResponseObject import ResponseObject
  35. from Object.TokenObject import TokenObject
  36. from Service.CommonService import CommonService
  37. from Service.ModelService import ModelService
  38. from Service.TemplateService import TemplateService
  39. # 获取验证码
  40. class authCodeView(TemplateView):
  41. @method_decorator(csrf_exempt)
  42. def dispatch(self, *args, **kwargs):
  43. return super(authCodeView, self).dispatch(*args, **kwargs)
  44. @ratelimit(key='ip', rate='2/m')
  45. def post(self, request, *args, **kwargs):
  46. request.encoding = 'utf-8'
  47. lang = request.POST.get('language', None)
  48. response = ResponseObject(lang)
  49. was_limited = getattr(request, 'limited', False)
  50. if was_limited is True:
  51. return response.json(5)
  52. username = request.POST.get('userName', None)
  53. useremail = request.POST.get('userEmail', None)
  54. return self.ValidationError(username, useremail, response)
  55. # @ratelimit(key='ip', rate='2/m')
  56. def get(self, request, *args, **kwargs):
  57. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  58. request.encoding = 'utf-8'
  59. lang = request.GET.get('language', None)
  60. response = ResponseObject(lang)
  61. was_limited = getattr(request, 'limited', False)
  62. if was_limited is True:
  63. return response.json(5)
  64. username = request.GET.get('userName', None)
  65. email = request.GET.get('userEmail', None)
  66. return self.ValidationError(username, email, response)
  67. def ValidationError(self, username, email, response):
  68. if username:
  69. username = username.strip()
  70. return self.phoneCode(username, response)
  71. elif email:
  72. email = email.strip()
  73. return self.emailCode(email, response)
  74. else:
  75. return response.json(800)
  76. def phoneCode(self, phone, response):
  77. dataValid = DataValid()
  78. if dataValid.mobile_validate(phone):
  79. reds = RedisObject()
  80. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  81. if identifyingCode is False:
  82. user_qs = Device_User.objects.filter(username=phone)
  83. if user_qs.exists():
  84. return response.json(101)
  85. else:
  86. identifyingCode = RandomStr(6, True)
  87. if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=600):
  88. return response.json(0, {'identifyingCode': identifyingCode})
  89. else:
  90. return response.json(10, '生成缓存系统错误')
  91. else:
  92. return response.json(0, {'identifyingCode': identifyingCode})
  93. else:
  94. return response.json(107)
  95. def emailCode(self, email, response):
  96. dataValid = DataValid()
  97. if dataValid.email_validate(email):
  98. reds = RedisObject()
  99. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  100. if identifyingCode is False:
  101. user_qs = Device_User.objects.filter(username=email)
  102. email_qs = Device_User.objects.filter(userEmail=email)
  103. if user_qs.exists():
  104. return response.json(103)
  105. elif email_qs.exists():
  106. return response.json(103)
  107. else:
  108. identifyingCode = RandomStr(6, True)
  109. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=AuthCode_Expire):
  110. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  111. ses = SesClassObject()
  112. send_res = ses.send_email(
  113. send_address_list=[email],
  114. subject=send_data['title'],
  115. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  116. str(identifyingCode))
  117. )
  118. if send_res:
  119. return response.json(0, {'identifyingCode': identifyingCode})
  120. else:
  121. reds.del_data(key=email + '_identifyingCode')
  122. return response.json(44)
  123. else:
  124. return response.json(10, '生成缓存系统错误')
  125. else:
  126. return response.json(89, {'identifyingCode': identifyingCode})
  127. else:
  128. return response.json(107)
  129. # 验证码注册
  130. class registerView(TemplateView):
  131. @method_decorator(csrf_exempt)
  132. def dispatch(self, *args, **kwargs):
  133. return super(registerView, self).dispatch(*args, **kwargs)
  134. def post(self, request, *args, **kwargs):
  135. request.encoding = 'utf-8'
  136. request_dict = request.POST
  137. return self.validates(request_dict)
  138. def get(self, request, *args, **kwargs):
  139. request.encoding = 'utf-8'
  140. request_dict = request.GET
  141. return self.validates(request_dict)
  142. def validates(self, request_dict):
  143. username = request_dict.get('userName', None)
  144. userEmail = request_dict.get('userEmail', None)
  145. password = request_dict.get('userPwd', None)
  146. authCode = request_dict.get('identifyingCode', None)
  147. language = request_dict.get('language', None)
  148. response = ResponseObject(language)
  149. if username and password and authCode:
  150. # 过滤空格
  151. username = username.strip()
  152. if userEmail:
  153. userEmail = userEmail.strip()
  154. return self.register(username, userEmail, password, authCode, response)
  155. else:
  156. return response.json(800)
  157. def register(self, username, userEmail, password, authCode, response):
  158. dataValid = DataValid()
  159. reds = RedisObject()
  160. identifyingCode = reds.get_data(key=username + '_identifyingCode')
  161. if identifyingCode is False:
  162. if userEmail:
  163. identifyingCode = reds.get_data(key=userEmail + '_identifyingCode')
  164. if identifyingCode is False:
  165. return response.json(120)
  166. else:
  167. username = userEmail
  168. else:
  169. return response.json(120)
  170. if authCode != identifyingCode:
  171. return response.json(121)
  172. if dataValid.password_validate(password):
  173. if dataValid.email_validate(username):
  174. if userEmail:
  175. print(userEmail)
  176. emailValid = Device_User.objects.filter(userEmail=userEmail)
  177. if emailValid.exists():
  178. return response.json(103)
  179. else:
  180. userEmail = username
  181. if username:
  182. nameValid = Device_User.objects.filter(username=username)
  183. if nameValid.exists():
  184. return response.json(101)
  185. try:
  186. create_data = {
  187. "username": username,
  188. "NickName": username,
  189. "userEmail": userEmail,
  190. "password": make_password(password),
  191. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  192. "is_active": True,
  193. "user_isValid": True,
  194. }
  195. users = Device_User.objects.create(**create_data)
  196. except Exception as e:
  197. errorInfo = traceback.format_exc()
  198. print(errorInfo)
  199. return response.json(424, repr(e))
  200. else:
  201. if reds.del_data(key=username + '_identifyingCode'):
  202. return response.json(0, {
  203. "user": {
  204. "userID": users.userID,
  205. "username": users.username,
  206. "userEmail": users.userEmail,
  207. "NickName": users.NickName,
  208. "userIconUrl": str(users.userIconUrl),
  209. "is_superuser": users.is_superuser,
  210. "is_active": users.is_active,
  211. "data_joined": date_handler(users.data_joined),
  212. "last_login": date_handler(users.last_login),
  213. }
  214. })
  215. else:
  216. return response.json(10, '删除缓存验证码错误')
  217. elif dataValid.mobile_validate(username):
  218. nameValid = Device_User.objects.filter(username=username)
  219. if nameValid:
  220. return response.json(101)
  221. try:
  222. create_data = {
  223. "username": username,
  224. "NickName": username,
  225. "userEmail": userEmail,
  226. "password": make_password(password),
  227. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  228. "is_active": True,
  229. "user_isValid": True,
  230. }
  231. users = Device_User.objects.create(**create_data)
  232. except Exception as e:
  233. errorInfo = traceback.format_exc()
  234. print(errorInfo)
  235. return response.json(424, repr(e))
  236. else:
  237. if reds.del_data(key=username + '_identifyingCode'):
  238. return response.json(0, {
  239. "user": {
  240. "userID": users.userID,
  241. "username": users.username,
  242. "userEmail": users.userEmail,
  243. "NickName": users.NickName,
  244. "userIconUrl": str(users.userIconUrl),
  245. "is_superuser": users.is_superuser,
  246. "is_active": users.is_active,
  247. "data_joined": date_handler(users.data_joined),
  248. "last_login": date_handler(users.last_login),
  249. }
  250. })
  251. else:
  252. return response.json(10, '删除缓存验证码错误')
  253. else:
  254. return response.json(107)
  255. else:
  256. return response.json(109)
  257. # 登出
  258. class LogoutView(TemplateView):
  259. @method_decorator(csrf_exempt)
  260. def dispatch(self, *args, **kwargs):
  261. return super(LogoutView, self).dispatch(*args, **kwargs)
  262. def post(self, request, *args, **kwargs):
  263. request.encoding = 'utf-8'
  264. token = request.POST.get('token')
  265. return self.Logout(request, token)
  266. def get(self, request, *args, **kwargs):
  267. request.encoding = 'utf-8'
  268. token = request.GET.get('token')
  269. return self.Logout(request, token)
  270. def Logout(self, request, token):
  271. response = ResponseObject()
  272. tko = TokenObject(token)
  273. if tko.code != 0:
  274. return response.json(tko.code)
  275. Device_User.objects.filter(userID=tko.userID).update(online=False)
  276. redisObj = RedisObject(db=3)
  277. redisObj.del_data(key=tko.userID)
  278. return response.json(0)
  279. # 修改密码
  280. class ChangePwdView(TemplateView):
  281. @method_decorator(csrf_exempt)
  282. def dispatch(self, *args, **kwargs):
  283. return super(ChangePwdView, self).dispatch(*args, **kwargs)
  284. def post(self, request, *args, **kwargs):
  285. request.encoding = 'utf-8'
  286. request_dict = request.POST
  287. return self.validates(request_dict)
  288. def get(self, request, *args, **kwargs):
  289. request.encoding = 'utf-8'
  290. request_dict = request.GET
  291. return self.validates(request_dict)
  292. def validates(self, request_dict):
  293. token = request_dict.get('token', None)
  294. oldPwd = request_dict.get('oldPwd', None)
  295. newPwd = request_dict.get('newPwd', None)
  296. response = ResponseObject()
  297. if oldPwd is None and newPwd is None:
  298. return response.json(800)
  299. tko = TokenObject(token)
  300. response.lang = tko.lang
  301. if tko.code != 0:
  302. return response.json(tko.code)
  303. return self.updatePwd(tko.userID, oldPwd, newPwd, response)
  304. def updatePwd(self, userID, oldPwd, newPwd, response):
  305. user_qs = Device_User.objects.filter(userID=userID)
  306. if not user_qs.exists():
  307. return response.json(104)
  308. c_p = check_password(oldPwd, user_qs[0].password)
  309. # 密码是否正确
  310. if not c_p:
  311. return response.json(111)
  312. update = user_qs.update(password=make_password(newPwd))
  313. if update:
  314. return response.json(0)
  315. else:
  316. return response.json(177)
  317. class ForgetPwdView(TemplateView):
  318. '''
  319. 忘记密码
  320. '''
  321. @method_decorator(csrf_exempt)
  322. def dispatch(self, *args, **kwargs):
  323. return super(ForgetPwdView, self).dispatch(*args, **kwargs)
  324. @ratelimit(key='ip', rate='1/m')
  325. def get(self, request, *args, **kwargs):
  326. request.encoding = 'utf-8'
  327. response = ResponseObject()
  328. was_limited = getattr(request, 'limited', False)
  329. if was_limited is True:
  330. return response.json(5)
  331. userName = request.GET.get('userName', None)
  332. return self.ValidationError(userName, response)
  333. @ratelimit(key='ip', rate='1/m')
  334. def post(self, request):
  335. request.encoding = 'utf-8'
  336. userName = request.POST.get('userName', None)
  337. response = ResponseObject()
  338. was_limited = getattr(request, 'limited', False)
  339. if was_limited is True:
  340. return response.json(5)
  341. return self.ValidationError(userName, response)
  342. def ValidationError(self, userName, response):
  343. # return response.json(475)
  344. if userName != None:
  345. userName = userName.strip()
  346. return self.ForgetPwd(userName, response)
  347. else:
  348. return response.json(800)
  349. def ForgetPwd(self, userName, response):
  350. dataValid = DataValid()
  351. if dataValid.mobile_validate(userName):
  352. User = Device_User.objects.filter(username=userName)
  353. elif dataValid.email_validate(userName):
  354. User = Device_User.objects.filter(username=userName)
  355. if not User.exists():
  356. User = Device_User.objects.filter(userEmail=userName)
  357. else:
  358. return response.json(104)
  359. if User:
  360. email = User[0].userEmail
  361. userID = User[0].userID
  362. if email:
  363. redisObj = RedisObject()
  364. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  365. if reset_pwd is False:
  366. tko = TokenObject()
  367. rest = tko.generate(data={'userID': userID, 'user': userName})
  368. token = rest['access_token']
  369. reset_pwd = CommonService.RandomStr(6)
  370. send_data = TemplateService.email_message(type='forget', language='en')
  371. reset_link = '{server_host}account/email-re-pwd?token={token}'.format(
  372. server_host=SERVER_DOMAIN, token=token)
  373. send_body = send_data['body'].format(username=email, reset_pwd=reset_pwd, reset_link=reset_link)
  374. ses = SesClassObject()
  375. send_res = ses.send_email(send_address_list=[email], subject=send_data['title'], body=send_body)
  376. if send_res is True:
  377. if redisObj.set_data(key=userID + '_email_reset_pwd', val=reset_pwd, expire=3600):
  378. return response.json(0)
  379. else:
  380. return response.json(10, '存储验证失败')
  381. else:
  382. return response.json(89)
  383. else:
  384. return response.json(103)
  385. else:
  386. return response.json(104)
  387. class EmailResetPwdView(TemplateView):
  388. @method_decorator(csrf_exempt)
  389. def dispatch(self, *args, **kwargs):
  390. return super(EmailResetPwdView, self).dispatch(*args, **kwargs)
  391. # 查询
  392. def get(self, request, *args, **kwargs):
  393. response = ResponseObject()
  394. request_dict = request.GET
  395. return self.validate(request_dict, response, *args, **kwargs)
  396. # 认证登录
  397. def post(self, request, *args, **kwargs):
  398. response = ResponseObject()
  399. try:
  400. print(request.body.decode("utf-8"))
  401. json_data = json.loads(request.body.decode("utf-8"))
  402. except Exception as e:
  403. return response.json(10, repr(e))
  404. else:
  405. request_dict = json_data
  406. return self.validate(request_dict, response, *args, **kwargs)
  407. def validate(self, request_dict, response, *args, **kwargs):
  408. token = request_dict.get('token', None)
  409. tko = TokenObject(token)
  410. if tko.code == 0:
  411. redisObj = RedisObject()
  412. userID = tko.userID
  413. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  414. if reset_pwd is not False:
  415. user_qs = Device_User.objects.filter(userID=userID)
  416. if user_qs.exists():
  417. redisObj.del_data(key=userID + '_email_reset_pwd')
  418. is_update = user_qs.update(password=make_password(reset_pwd))
  419. if is_update:
  420. return HttpResponseRedirect(
  421. "http://www.dvema.com/web/html/paw_update_success.html?code=" + reset_pwd)
  422. else:
  423. return response.json(10)
  424. else:
  425. return response.json(104)
  426. else:
  427. return HttpResponseRedirect('http://www.dvema.com/web/html/paw_update_unsuccessful.html?lang=en')
  428. else:
  429. return HttpResponseRedirect('http://www.dvema.com/web/html/paw_update_unsuccessful.html?lang=en')
  430. class refreshTokenView(TemplateView):
  431. @method_decorator(csrf_exempt)
  432. def dispatch(self, *args, **kwargs):
  433. return super(refreshTokenView, self).dispatch(*args, **kwargs)
  434. def post(self, request, *args, **kwargs):
  435. request.encoding = 'utf-8'
  436. content_type = request.META.get('CONTENT_TYPE', None)
  437. if content_type == 'application/json':
  438. request_dict = json.loads(request.body.decode('utf-8'))
  439. else:
  440. request_dict = request.POST
  441. return self.validation(request_dict)
  442. def get(self, request, *args, **kwargs):
  443. request.encoding = 'utf-8'
  444. request_dict = request.GET
  445. return self.validation(request_dict)
  446. def validation(self, request_dict):
  447. token = request_dict.get('token', None)
  448. lang = request_dict.get('lang', None)
  449. language = request_dict.get('language', None)
  450. if lang is None:
  451. lang = language
  452. response = ResponseObject(lang)
  453. if token is not None:
  454. tko = TokenObject(token)
  455. tko.lang = lang
  456. res = tko.refresh()
  457. code = tko.code
  458. if code == 0:
  459. return response.json(0, res)
  460. else:
  461. return response.json(code)
  462. else:
  463. return response.json(444, 'token')
  464. # 获取验证码
  465. class v2authCodeView(TemplateView):
  466. @method_decorator(csrf_exempt)
  467. def dispatch(self, *args, **kwargs):
  468. return super(v2authCodeView, self).dispatch(*args, **kwargs)
  469. @ratelimit(key='ip', rate='2/m')
  470. def post(self, request, *args, **kwargs):
  471. request.encoding = 'utf-8'
  472. lang = request.POST.get('lang', None)
  473. if not lang:
  474. lang = request.POST.get('language', None)
  475. response = ResponseObject(lang)
  476. request_dict = request.POST
  477. phone = request_dict.get('phone', None)
  478. if phone is not None:
  479. was_limited = getattr(request, 'limited', False)
  480. if was_limited is True:
  481. return response.json(5)
  482. return self.ValidationError(request_dict, response)
  483. @ratelimit(key='ip', rate='2/m')
  484. def get(self, request, *args, **kwargs):
  485. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  486. request.encoding = 'utf-8'
  487. lang = request.GET.get('lang', None)
  488. if not lang:
  489. lang = request.GET.get('language', None)
  490. response = ResponseObject(lang)
  491. was_limited = getattr(request, 'limited', False)
  492. if was_limited is True:
  493. return response.json(5)
  494. request_dict = request.GET
  495. return self.ValidationError(request_dict, response)
  496. def ValidationError(self, request_dict, response):
  497. email = request_dict.get('email', None)
  498. phone = request_dict.get('phone', None)
  499. if email is not None:
  500. email = email.strip()
  501. # 阿里云的发送邮箱的调用方法
  502. return self.aliyun_emailCode(email, response)
  503. # return self.emailCode(email, response)
  504. elif phone is not None:
  505. phone = phone.strip()
  506. return self.phoneCode(phone, response)
  507. else:
  508. return response.json(444)
  509. def emailCode(self, email, response):
  510. dataValid = DataValid()
  511. # 邮箱匹配
  512. if dataValid.email_validate(email) is False:
  513. return response.json(107)
  514. reds = RedisObject()
  515. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  516. # 是否以获取邮箱验证码
  517. if identifyingCode:
  518. return response.json(89)
  519. user_qs = Device_User.objects.filter(username=email)
  520. email_qs = Device_User.objects.filter(userEmail=email)
  521. # 邮箱用户是否已存在
  522. if user_qs.exists():
  523. return response.json(103)
  524. elif email_qs.exists():
  525. return response.json(103)
  526. # 生成随机6位数
  527. identifyingCode = RandomStr(6, True)
  528. # 设置随机数缓存生命周期
  529. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  530. ses = SesClassObject()
  531. # 发送邮件
  532. send_res = ses.send_email(
  533. send_address_list=[email],
  534. subject=send_data['title'],
  535. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  536. str(identifyingCode))
  537. )
  538. if send_res is not True:
  539. return response.json(44)
  540. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=600) is not True:
  541. return response.json(10, 'error')
  542. return response.json(0)
  543. # return response.json(0, {'identifyingCode': identifyingCode})
  544. # 阿里云获取邮箱验证码
  545. def aliyun_emailCode(self, email, response):
  546. print('阿里云开始')
  547. dataValid = DataValid()
  548. # 邮箱匹配
  549. if dataValid.email_validate(email) is False:
  550. return response.json(107)
  551. reds = RedisObject()
  552. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  553. # 是否以获取邮箱验证码
  554. if identifyingCode:
  555. return response.json(89)
  556. user_qs = Device_User.objects.filter(username=email)
  557. email_qs = Device_User.objects.filter(userEmail=email)
  558. # 邮箱用户是否已存在
  559. if user_qs.exists():
  560. return response.json(103)
  561. elif email_qs.exists():
  562. return response.json(103)
  563. # 生成随机6位数
  564. identifyingCode = RandomStr(6, True)
  565. # 设置随机数缓存生命周期
  566. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  567. ses = SesClassObject()
  568. # 发送邮件
  569. send_res = ses.alyEmailCode(
  570. send_address_list=[email],
  571. subject=send_data['title'],
  572. body=send_data['body'].replace("{username}", email).replace("{captcha}", str(identifyingCode))
  573. )
  574. if send_res is not True:
  575. return response.json(44)
  576. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=600) is not True:
  577. return response.json(10, 'error')
  578. return response.json(0)
  579. def phoneCode(self, phone, response):
  580. dataValid = DataValid()
  581. if dataValid.mobile_validate(phone) is not True:
  582. return response.json(107)
  583. reds = RedisObject()
  584. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  585. if identifyingCode:
  586. return response.json(90)
  587. user_qs = Device_User.objects.filter(username=phone)
  588. phone_qs = Device_User.objects.filter(phone=phone)
  589. if user_qs.exists() or phone_qs.exists():
  590. return response.json(101)
  591. identifyingCode = RandomStr(6, True)
  592. # 发送手机验证码
  593. aliSms = AliSmsObject()
  594. res = aliSms.send_code_sms(phone=phone, code=identifyingCode, sign_name='Ansjer',
  595. temp_msg='SMS_151600991')
  596. if res["Code"] == "OK":
  597. if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=60) is not True:
  598. return response.json(10, '生成缓存系统错误')
  599. return response.json(0)
  600. else:
  601. return response.json(10, res["Message"])
  602. # 验证码注册
  603. class v2registerView(TemplateView):
  604. @method_decorator(csrf_exempt)
  605. def dispatch(self, *args, **kwargs):
  606. return super(v2registerView, self).dispatch(*args, **kwargs)
  607. def post(self, request, *args, **kwargs):
  608. request.encoding = 'utf-8'
  609. request_dict = request.POST
  610. return self.validates(request_dict)
  611. def get(self, request, *args, **kwargs):
  612. request.encoding = 'utf-8'
  613. request_dict = request.GET
  614. return self.validates(request_dict)
  615. def validates(self, request_dict):
  616. phone = request_dict.get('phone', None)
  617. email = request_dict.get('email', None)
  618. password = request_dict.get('password', None)
  619. authcode = request_dict.get('authcode', None)
  620. lang = request_dict.get('lang', None)
  621. if not lang:
  622. lang = request_dict.get('language', None)
  623. response = ResponseObject(lang)
  624. if password is None:
  625. return response.json(444, 'password')
  626. if authcode is None:
  627. return response.json(444, 'identifyingCode')
  628. if phone is not None:
  629. return self.do_phone_register(phone, password, authcode, response)
  630. elif email is not None:
  631. return self.do_email_register(email, password, authcode, response)
  632. else:
  633. return response.json(444, 'phone or email')
  634. def do_phone_register(self, phone, password, authcode, response):
  635. data_valid = DataValid()
  636. if data_valid.mobile_validate(phone) is not True:
  637. return response.json(100)
  638. if data_valid.password_validate(password) is not True:
  639. return response.json(109)
  640. reds = RedisObject()
  641. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  642. # 判断验证码是否过期
  643. if identifyingCode is False:
  644. return response.json(120)
  645. # 验证码是否正确
  646. if authcode != identifyingCode:
  647. return response.json(121)
  648. phone_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  649. # 是否已存在
  650. if phone_qs.exists():
  651. return response.json(101)
  652. try:
  653. users = Device_User.objects.create(
  654. username=phone,
  655. NickName=phone,
  656. phone=phone,
  657. password=make_password(password),
  658. userID=CommonService.getUserID(μs=False, setOTAID=True),
  659. is_active=True,
  660. user_isValid=True,
  661. )
  662. except Exception as e:
  663. errorInfo = traceback.format_exc()
  664. print(errorInfo)
  665. return response.json(424, repr(e))
  666. else:
  667. if not reds.del_data(key=phone + '_identifyingCode'):
  668. return response.json(10, '删除缓存验证码错误')
  669. return self.do_login(phone_qs, response)
  670. def do_login(self, user_qs, response):
  671. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  672. user_qs.update(last_login=now_time, online=True)
  673. userID = user_qs[0].userID
  674. print('userID' + userID)
  675. tko = TokenObject()
  676. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  677. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  678. # 增加角色
  679. user_qs[0].role.add(Role.objects.get(rid=1))
  680. role_dict = ModelService.own_role(userID=userID)
  681. res['rid'] = role_dict['rid']
  682. res['roleName'] = role_dict['roleName']
  683. res['permList'] = ModelService.own_permission(userID)
  684. res['userID'] = userID
  685. # 昵称,邮箱,电话,刷新,头像
  686. userIconPath = str(user_list[0]["userIconPath"])
  687. if userIconPath and userIconPath.find('static/') != -1:
  688. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  689. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  690. else:
  691. res['userIconUrl'] = ''
  692. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  693. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  694. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  695. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  696. print(res)
  697. return response.json(0, res)
  698. def do_email_register(self, email, password, authcode, response):
  699. data_valid = DataValid()
  700. if data_valid.email_validate(email) is not True:
  701. return response.json(105)
  702. if data_valid.password_validate(password) is not True:
  703. return response.json(109)
  704. reds = RedisObject()
  705. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  706. # 判断验证码是否过期
  707. if identifyingCode is False:
  708. return response.json(120)
  709. # 验证码是否正确
  710. if authcode != identifyingCode:
  711. return response.json(121)
  712. email_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  713. # 是否已存在
  714. if email_qs.exists():
  715. return response.json(103)
  716. try:
  717. users = Device_User.objects.create(
  718. username=email,
  719. NickName=email,
  720. userEmail=email,
  721. password=make_password(password),
  722. userID=CommonService.getUserID(μs=False, setOTAID=True),
  723. is_active=True,
  724. user_isValid=True,
  725. )
  726. except Exception as e:
  727. errorInfo = traceback.format_exc()
  728. print(errorInfo)
  729. return response.json(424, repr(e))
  730. else:
  731. if not reds.del_data(key=email + '_identifyingCode'):
  732. return response.json(10, '删除缓存验证码错误')
  733. return self.do_login(email_qs, response)
  734. # 重置密码
  735. # 忘记密码获取验证码v2
  736. class v2forgetPwdCodeView(TemplateView):
  737. @method_decorator(csrf_exempt)
  738. def dispatch(self, *args, **kwargs):
  739. return super(v2forgetPwdCodeView, self).dispatch(*args, **kwargs)
  740. @ratelimit(key='ip', rate='1/m')
  741. def get(self, request, *args, **kwargs):
  742. request.encoding = 'utf-8'
  743. request_dict = request.GET
  744. lang = request_dict.get('lang')
  745. response = ResponseObject(lang)
  746. was_limited = getattr(request, 'limited', False)
  747. if was_limited is True:
  748. return response.json(5)
  749. return self.ValidationError(request_dict, response)
  750. @ratelimit(key='ip', rate='1/m')
  751. def post(self, request):
  752. request.encoding = 'utf-8'
  753. request_dict = request.POST
  754. lang = request_dict.get('lang')
  755. response = ResponseObject(lang)
  756. was_limited = getattr(request, 'limited', False)
  757. if was_limited is True:
  758. return response.json(5)
  759. return self.ValidationError(request_dict, response)
  760. def ValidationError(self, request_dict, response):
  761. phone = request_dict.get('phone', None)
  762. email = request_dict.get('email', None)
  763. if phone is not None:
  764. phone = phone.strip()
  765. return self.do_send_phone_code(phone, response)
  766. elif email is not None:
  767. return self.do_send_email_code(email, response)
  768. else:
  769. return response.json(444, 'phone')
  770. def do_send_phone_code(self, phone, response):
  771. data_valid = DataValid()
  772. if data_valid.mobile_validate(phone) is not True:
  773. return response.json(100)
  774. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  775. if not user_qs.exists():
  776. return response.json(102)
  777. reds = RedisObject()
  778. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  779. if resetCode is True:
  780. return response.json(90)
  781. resetCode = RandomStr(6, True)
  782. if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  783. return response.json(10, '生成缓存错误')
  784. aliSms = AliSmsObject()
  785. res = aliSms.send_code_sms(phone=phone, code=resetCode, sign_name='Ansjer',
  786. temp_msg='SMS_151675019')
  787. if res["Code"] == "OK":
  788. return response.json(0, {'forgetPwdResetCode': resetCode})
  789. else:
  790. return response.json(10, res["Message"])
  791. def do_send_email_code(self, email, response):
  792. data_valid = DataValid()
  793. if data_valid.email_validate(email) is not True:
  794. return response.json(105)
  795. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  796. if not user_qs.exists():
  797. return response.json(104)
  798. reds = RedisObject()
  799. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  800. if resetCode is True:
  801. return response.json(90)
  802. resetCode = RandomStr(6, True)
  803. if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=600):
  804. return response.json(10, '生成缓存错误')
  805. send_data = TemplateService.email_message(type='forgetCode', language=response.lang)
  806. send_body = send_data['body'].format(userEmail=email, email_valid_code=resetCode)
  807. ses = SesClassObject()
  808. # send_res = ses.send_email(send_address_list=[email], subject=send_data['title'], body=send_body)
  809. # 阿里云发送邮箱
  810. send_res = ses.alyEmailCode(send_address_list=[email], subject=send_data['title'], body=send_body)
  811. if send_res is not True:
  812. reds.del_data(key=email + '_forgetPwdResetCode')
  813. return response.json(44)
  814. return response.json(0)
  815. # 忘记密码v2
  816. class v2resetPwdByCodeView(TemplateView):
  817. @method_decorator(csrf_exempt)
  818. def dispatch(self, *args, **kwargs):
  819. return super(v2resetPwdByCodeView, self).dispatch(*args, **kwargs)
  820. def get(self, request, *args, **kwargs):
  821. request.encoding = 'utf-8'
  822. request_dict = request.GET
  823. lang = request_dict.get('lang')
  824. if not lang:
  825. lang = request_dict.get('language', None)
  826. response = ResponseObject(lang)
  827. was_limited = getattr(request, 'limited', False)
  828. if was_limited is True:
  829. return response.json(5)
  830. return self.ValidationError(request_dict, response)
  831. def post(self, request):
  832. request.encoding = 'utf-8'
  833. request_dict = request.POST
  834. lang = request_dict.get('lang')
  835. if not lang:
  836. lang = request_dict.get('language', None)
  837. response = ResponseObject(lang)
  838. was_limited = getattr(request, 'limited', False)
  839. if was_limited is True:
  840. return response.json(5)
  841. return self.ValidationError(request_dict, response)
  842. def ValidationError(self, request_dict, response):
  843. phone = request_dict.get('phone', None)
  844. email = request_dict.get('email', None)
  845. password = request_dict.get('password', None)
  846. authcode = request_dict.get('authcode', None)
  847. if password is None or authcode is None:
  848. return response.json(444, 'password,authcode')
  849. authcode = authcode.strip()
  850. password = password.strip()
  851. if phone is not None:
  852. phone = phone.strip()
  853. return self.do_phone_pwd_reset(phone, authcode, password, response)
  854. elif email is not None:
  855. email = email.strip()
  856. return self.do_email_pwd_reset(email, authcode, password, response)
  857. else:
  858. return response.json(444, 'phone')
  859. def do_email_pwd_reset(self, email, authcode, password, response):
  860. data_valid = DataValid()
  861. if data_valid.email_validate(email) is not True:
  862. return response.json(105)
  863. if data_valid.password_validate(password) is not True:
  864. return response.json(109)
  865. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  866. if not user_qs.exists():
  867. return response.json(104)
  868. reds = RedisObject()
  869. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  870. if resetCode is True:
  871. return response.json(90)
  872. if authcode != resetCode:
  873. return response.json(121)
  874. if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  875. return response.json(10, '生成缓存错误')
  876. user_qs.update(password=make_password(password))
  877. if not reds.del_data(email + '_forgetPwdResetCode'):
  878. return response.json(10, '删除缓存失败')
  879. return response.json(0)
  880. def do_phone_pwd_reset(self, phone, authcode, password, response):
  881. data_valid = DataValid()
  882. if data_valid.mobile_validate(phone) is not True:
  883. return response.json(100)
  884. if data_valid.password_validate(password) is not True:
  885. return response.json(109)
  886. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  887. if not user_qs.exists():
  888. return response.json(102)
  889. reds = RedisObject()
  890. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  891. if resetCode is True:
  892. return response.json(90)
  893. if authcode != resetCode:
  894. return response.json(121)
  895. if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  896. return response.json(10, '生成缓存错误')
  897. user_qs.update(password=make_password(password))
  898. if not reds.del_data(phone + '_forgetPwdResetCode'):
  899. return response.json(10, '删除缓存失败')
  900. return response.json(0)
  901. def do_login(self, user_qs, response):
  902. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  903. user_qs.update(last_login=now_time, online=True)
  904. userID = user_qs[0].userID
  905. print('userID' + userID)
  906. tko = TokenObject()
  907. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  908. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  909. # 增加角色
  910. user_qs[0].role.add(Role.objects.get(rid=1))
  911. role_dict = ModelService.own_role(userID=userID)
  912. res['rid'] = role_dict['rid']
  913. res['roleName'] = role_dict['roleName']
  914. res['permList'] = ModelService.own_permission(userID)
  915. res['userID'] = userID
  916. # 昵称,邮箱,电话,刷新,头像
  917. userIconPath = str(user_list[0]["userIconPath"])
  918. if userIconPath and userIconPath.find('static/') != -1:
  919. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  920. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  921. else:
  922. res['userIconUrl'] = ''
  923. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  924. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  925. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  926. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  927. print(res)
  928. return response.json(0, res)
  929. # 登录
  930. class v2LoginView(TemplateView):
  931. @method_decorator(csrf_exempt) # @csrf_exempt
  932. def dispatch(self, *args, **kwargs):
  933. return super(v2LoginView, self).dispatch(*args, **kwargs)
  934. @ratelimit(key='ip', rate='5/m')
  935. def post(self, request, *args, **kwargs):
  936. request.encoding = 'utf-8'
  937. request_dict = request.POST
  938. language = request_dict.get('language', 'en')
  939. response = ResponseObject(language)
  940. was_limited = getattr(request, 'limited', False)
  941. x_forwarded_for = request.META.get('HTTP_X_FORWARDED_FOR')
  942. if x_forwarded_for:
  943. ip = x_forwarded_for.split(',')[0] # 所以这里是真实的ip
  944. else:
  945. ip = request.META.get('REMOTE_ADDR') # 这里获得代理ip
  946. print ('访问者的ip:')
  947. print (ip)
  948. if was_limited is True:
  949. return response.json(5)
  950. return self.validates(request_dict, response)
  951. # @ratelimit(key='ip', rate='5/m')
  952. def get(self, request, *args, **kwargs):
  953. request.encoding = 'utf-8'
  954. request_dict = request.GET
  955. language = request_dict.get('language', 'en')
  956. response = ResponseObject(language)
  957. was_limited = getattr(request, 'limited', False)
  958. if was_limited is True:
  959. return response.json(5)
  960. return self.validates(request_dict, response)
  961. def validates(self, request_dict, response):
  962. username = request_dict.get('userName', None)
  963. password = request_dict.get('userPwd', None)
  964. # 标志ios登录还是安卓登录标记
  965. phone_code = request_dict.get('phone_code', None)
  966. if not phone_code:
  967. phone_code = ''
  968. if not username or not password:
  969. return response.json(111)
  970. username = username.strip()
  971. password = password.strip()
  972. data_valid = DataValid()
  973. if data_valid.email_validate(username):
  974. return self.do_email_login(phone_code,username, password, response)
  975. elif data_valid.mobile_validate(username):
  976. return self.do_phone_login(phone_code,username, password, response)
  977. elif data_valid.name_validate(username):
  978. return self.do_name_login(phone_code,username, password, response)
  979. else:
  980. return response.json(107)
  981. def do_email_login(self, phone_code,email, password, response):
  982. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  983. return self.valid_login(phone_code,user_qs, password, response)
  984. def do_phone_login(self, phone_code,phone, password, response):
  985. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  986. return self.valid_login(phone_code,user_qs, password, response)
  987. def do_name_login(self,phone_code, username, password, response):
  988. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  989. is_active=True, user_isValid=True)
  990. return self.valid_login(phone_code,user_qs, password, response)
  991. def valid_login(self,phone_code, user_qs, password, response):
  992. if not user_qs.exists():
  993. return response.json(104)
  994. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  995. 'phone','machine_code', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  996. if not check_password(password, users['password']):
  997. return response.json(111)
  998. userID = users['userID']
  999. tko = TokenObject()
  1000. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'machine_code': phone_code})
  1001. if tko.code == 0:
  1002. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1003. user_qs.update(last_login=now_time, language=response.lang, machine_code=phone_code )
  1004. res['rid'] = users['role__rid']
  1005. res['roleName'] = users['role__roleName']
  1006. res['permList'] = ModelService.own_permission(userID)
  1007. res['userID'] = userID
  1008. # 昵称,邮箱,电话,刷新,头像
  1009. userIconPath = str(users['userIconPath'])
  1010. if userIconPath and userIconPath.find('static/') != -1:
  1011. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1012. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1013. else:
  1014. res['userIconUrl'] = ''
  1015. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  1016. res['username'] = users['username'] if users['username'] is not None else ''
  1017. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  1018. res['phone'] = users['phone'] if users['phone'] is not None else ''
  1019. reds = RedisObject()
  1020. print (res['access_token'])
  1021. if phone_code == users['machine_code'] :
  1022. res['machine_code'] = '本机登录'
  1023. else:
  1024. res['machine_code'] = '别地登录被挤出!'
  1025. if not reds.set_data(key=res['userID']+'_tokenValues', val=res['access_token'], expire=300): #1个小时
  1026. return response.json(10, '生成缓存错误')
  1027. # if not reds.del_data(res['userID']):
  1028. # return response.json(10, '删除缓存失败')
  1029. # 获取主机名
  1030. hostname = socket.gethostname()
  1031. # 获取IP
  1032. ip = socket.gethostbyname(hostname)
  1033. # 获取Mac地址
  1034. def get_mac_address():
  1035. mac = uuid.UUID(int=uuid.getnode()).hex[-12:]
  1036. return ":".join([mac[e:e + 2] for e in range(0, 11, 2)])
  1037. # ipList = socket.gethostbyname_ex(hostname)
  1038. # print(ipList)
  1039. print("主机名:", hostname)
  1040. print("IP:", ip)
  1041. print("Mac地址:", get_mac_address())
  1042. print (reds.get_data(key=res['userID']))
  1043. return response.json(0, res)
  1044. else:
  1045. return response.json(tko.code)