UserController.py 158 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198219922002201220222032204220522062207220822092210221122122213221422152216221722182219222022212222222322242225222622272228222922302231223222332234223522362237223822392240224122422243224422452246224722482249225022512252225322542255225622572258225922602261226222632264226522662267226822692270227122722273227422752276227722782279228022812282228322842285228622872288228922902291229222932294229522962297229822992300230123022303230423052306230723082309231023112312231323142315231623172318231923202321232223232324232523262327232823292330233123322333233423352336233723382339234023412342234323442345234623472348234923502351235223532354235523562357235823592360236123622363236423652366236723682369237023712372237323742375237623772378237923802381238223832384238523862387238823892390239123922393239423952396239723982399240024012402240324042405240624072408240924102411241224132414241524162417241824192420242124222423242424252426242724282429243024312432243324342435243624372438243924402441244224432444244524462447244824492450245124522453245424552456245724582459246024612462246324642465246624672468246924702471247224732474247524762477247824792480248124822483248424852486248724882489249024912492249324942495249624972498249925002501250225032504250525062507250825092510251125122513251425152516251725182519252025212522252325242525252625272528252925302531253225332534253525362537253825392540254125422543254425452546254725482549255025512552255325542555255625572558255925602561256225632564256525662567256825692570257125722573257425752576257725782579258025812582258325842585258625872588258925902591259225932594259525962597259825992600260126022603260426052606260726082609261026112612261326142615261626172618261926202621262226232624262526262627262826292630263126322633263426352636263726382639264026412642264326442645264626472648264926502651265226532654265526562657265826592660266126622663266426652666266726682669267026712672267326742675267626772678267926802681268226832684268526862687268826892690269126922693269426952696269726982699270027012702270327042705270627072708270927102711271227132714271527162717271827192720272127222723272427252726272727282729273027312732273327342735273627372738273927402741274227432744274527462747274827492750275127522753275427552756275727582759276027612762276327642765276627672768276927702771277227732774277527762777277827792780278127822783278427852786278727882789279027912792279327942795279627972798279928002801280228032804280528062807280828092810281128122813281428152816281728182819282028212822282328242825282628272828282928302831283228332834283528362837283828392840284128422843284428452846284728482849285028512852285328542855285628572858285928602861286228632864286528662867286828692870287128722873287428752876287728782879288028812882288328842885288628872888288928902891289228932894289528962897289828992900290129022903290429052906290729082909291029112912291329142915291629172918291929202921292229232924292529262927292829292930293129322933293429352936293729382939294029412942294329442945294629472948294929502951295229532954295529562957295829592960296129622963296429652966296729682969297029712972297329742975297629772978297929802981298229832984298529862987298829892990299129922993299429952996299729982999300030013002300330043005300630073008300930103011301230133014301530163017301830193020302130223023302430253026302730283029303030313032303330343035303630373038303930403041304230433044304530463047304830493050305130523053305430553056305730583059306030613062306330643065306630673068306930703071307230733074307530763077307830793080308130823083308430853086308730883089309030913092309330943095309630973098309931003101310231033104310531063107310831093110311131123113311431153116311731183119312031213122312331243125312631273128312931303131313231333134313531363137313831393140314131423143314431453146314731483149315031513152315331543155315631573158315931603161316231633164316531663167316831693170317131723173317431753176317731783179318031813182318331843185318631873188318931903191319231933194319531963197319831993200320132023203320432053206320732083209321032113212321332143215321632173218321932203221322232233224322532263227322832293230323132323233323432353236323732383239324032413242324332443245324632473248324932503251325232533254325532563257325832593260326132623263326432653266326732683269327032713272327332743275327632773278327932803281328232833284328532863287328832893290329132923293329432953296329732983299330033013302330333043305330633073308330933103311331233133314331533163317331833193320332133223323332433253326332733283329333033313332333333343335333633373338333933403341334233433344334533463347334833493350335133523353335433553356335733583359336033613362336333643365336633673368336933703371337233733374337533763377337833793380338133823383338433853386338733883389339033913392339333943395339633973398339934003401340234033404340534063407340834093410341134123413341434153416341734183419342034213422342334243425342634273428342934303431343234333434343534363437343834393440344134423443344434453446344734483449345034513452345334543455345634573458345934603461346234633464346534663467346834693470347134723473347434753476347734783479348034813482348334843485348634873488348934903491349234933494349534963497349834993500350135023503350435053506350735083509351035113512351335143515351635173518351935203521352235233524352535263527352835293530353135323533353435353536353735383539354035413542354335443545354635473548354935503551355235533554355535563557355835593560356135623563356435653566356735683569357035713572357335743575357635773578357935803581358235833584358535863587358835893590359135923593359435953596359735983599360036013602360336043605360636073608360936103611361236133614361536163617361836193620362136223623362436253626362736283629363036313632363336343635363636373638363936403641364236433644364536463647364836493650365136523653365436553656365736583659366036613662366336643665366636673668366936703671367236733674367536763677367836793680368136823683368436853686368736883689369036913692369336943695369636973698369937003701370237033704370537063707370837093710371137123713371437153716371737183719372037213722372337243725372637273728372937303731373237333734373537363737373837393740374137423743374437453746374737483749375037513752375337543755375637573758375937603761376237633764376537663767376837693770377137723773377437753776377737783779378037813782378337843785378637873788378937903791379237933794
  1. #!/usr/bin/env python3
  2. # -*- coding: utf-8 -*-
  3. """
  4. @Copyright (C) ansjer cop Video Technology Co.,Ltd.All rights reserved.
  5. @AUTHOR: ASJRD018
  6. @NAME: AnsjerFormal
  7. @software: PyCharm
  8. @DATE: 2018/9/11 15:08
  9. @Version: python3.6
  10. @MODIFY DECORD:ansjer dev
  11. @file: UserController.py
  12. @Contact: chanjunkai@163.com
  13. """
  14. import datetime
  15. import traceback
  16. import time
  17. import logging
  18. import jwt
  19. import simplejson
  20. import simplejson as json
  21. import requests
  22. from django.contrib.auth.hashers import make_password, check_password # 对密码加密模块
  23. from django.db.models import Q
  24. from django.http import HttpResponseRedirect
  25. from django.utils.decorators import method_decorator
  26. from django.utils.timezone import utc
  27. from django.views.decorators.csrf import csrf_exempt
  28. from django.views.generic import TemplateView
  29. from jwt.algorithms import RSAAlgorithm
  30. from ratelimit.decorators import ratelimit
  31. from Ansjer.config import AuthCode_Expire, SERVER_DOMAIN, APNS_CONFIG, JPUSH_CONFIG, FCM_CONFIG, TUTK_PUSH_DOMAIN
  32. from Controller.CheckUserData import DataValid, date_handler, RandomStr
  33. from Model.models import Device_User, Role, UidPushModel, UserOauth2Model, UserExModel, Device_Info, UidSetModel, \
  34. UserAppFrequencyModel, CountryIPModel, CountryModel
  35. from Object.AWS.SesClassObject import SesClassObject
  36. from Object.AliSmsObject import AliSmsObject
  37. from Object.RedisObject import RedisObject
  38. from Object.ResponseObject import ResponseObject
  39. from Object.TokenObject import TokenObject
  40. from Service.CommonService import CommonService
  41. from Service.ModelService import ModelService
  42. from Service.TemplateService import TemplateService
  43. from django.views.generic import View
  44. import base64
  45. import random
  46. from io import BytesIO
  47. from PIL import Image, ImageDraw, ImageFont
  48. from django.shortcuts import HttpResponse
  49. from Ansjer.config import BASE_DIR
  50. #确认用户所在地区
  51. class confirmRegion(TemplateView):
  52. @method_decorator(csrf_exempt)
  53. def dispatch(self, *args, **kwargs):
  54. return super(confirmRegion, self).dispatch(*args, **kwargs)
  55. def post(self, request, *args, **kwargs):
  56. response = ResponseObject()
  57. request.encoding = 'utf-8'
  58. number = request.POST.get('number', None)
  59. selectRegion = CountryModel.objects.filter(number=number).values('region__continent_code')
  60. if not selectRegion.exists():
  61. return response.json(444)
  62. ip = CommonService.get_ip_address(request)
  63. # ip = '13.56.215.252'
  64. ipInfo = CommonService.getIpIpInfo(ip,"CN")
  65. if ipInfo['continent_code'] == selectRegion[0]['region__continent_code']:
  66. return response.json(0)
  67. return response.json(444)
  68. # 获取验证码
  69. class authCodeView(TemplateView):
  70. @method_decorator(csrf_exempt)
  71. def dispatch(self, *args, **kwargs):
  72. # testtest11111111111111
  73. return super(authCodeView, self).dispatch(*args, **kwargs)
  74. @ratelimit(key='ip', rate='2/m')
  75. def post(self, request, *args, **kwargs):
  76. request.encoding = 'utf-8'
  77. lang = request.POST.get('language', None)
  78. response = ResponseObject(lang)
  79. was_limited = getattr(request, 'limited', False)
  80. if was_limited is True:
  81. return response.json(5)
  82. username = request.POST.get('userName', None)
  83. useremail = request.POST.get('userEmail', None)
  84. return self.ValidationError(username, useremail, response)
  85. # @ratelimit(key='ip', rate='2/m')
  86. def get(self, request, *args, **kwargs):
  87. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  88. request.encoding = 'utf-8'
  89. lang = request.GET.get('language', None)
  90. response = ResponseObject(lang)
  91. was_limited = getattr(request, 'limited', False)
  92. if was_limited is True:
  93. return response.json(5)
  94. username = request.GET.get('userName', None)
  95. email = request.GET.get('userEmail', None)
  96. return self.ValidationError(username, email, response)
  97. def ValidationError(self, username, email, response):
  98. if username:
  99. username = username.strip()
  100. return self.phoneCode(username, response)
  101. elif email:
  102. email = email.strip()
  103. return self.emailCode(email, response)
  104. else:
  105. return response.json(800)
  106. def phoneCode(self, phone, response):
  107. dataValid = DataValid()
  108. if dataValid.mobile_validate(phone):
  109. reds = RedisObject()
  110. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  111. if identifyingCode is False:
  112. user_qs = Device_User.objects.filter(username=phone)
  113. if user_qs.exists():
  114. return response.json(101)
  115. else:
  116. identifyingCode = RandomStr(6, True)
  117. if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=600):
  118. return response.json(0, {'identifyingCode': identifyingCode})
  119. else:
  120. return response.json(10, '生成缓存系统错误')
  121. else:
  122. return response.json(0, {'identifyingCode': identifyingCode})
  123. else:
  124. return response.json(107)
  125. def emailCode(self, email, response):
  126. dataValid = DataValid()
  127. if dataValid.email_validate(email):
  128. reds = RedisObject()
  129. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  130. if identifyingCode is False:
  131. user_qs = Device_User.objects.filter(username=email)
  132. email_qs = Device_User.objects.filter(userEmail=email)
  133. if user_qs.exists():
  134. return response.json(103)
  135. elif email_qs.exists():
  136. return response.json(103)
  137. else:
  138. identifyingCode = RandomStr(6, True)
  139. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=AuthCode_Expire):
  140. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  141. ses = SesClassObject()
  142. send_res = ses.send_email(
  143. send_address_list=[email],
  144. subject=send_data['title'],
  145. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  146. str(identifyingCode))
  147. )
  148. if send_res:
  149. return response.json(0, {'identifyingCode': identifyingCode})
  150. else:
  151. reds.del_data(key=email + '_identifyingCode')
  152. return response.json(44)
  153. else:
  154. return response.json(10, '生成缓存系统错误')
  155. else:
  156. return response.json(89, {'identifyingCode': identifyingCode})
  157. else:
  158. return response.json(107)
  159. # 验证码注册
  160. class registerView(TemplateView):
  161. @method_decorator(csrf_exempt)
  162. def dispatch(self, *args, **kwargs):
  163. return super(registerView, self).dispatch(*args, **kwargs)
  164. def post(self, request, *args, **kwargs):
  165. request.encoding = 'utf-8'
  166. request_dict = request.POST
  167. return self.validates(request_dict)
  168. def get(self, request, *args, **kwargs):
  169. request.encoding = 'utf-8'
  170. request_dict = request.GET
  171. return self.validates(request_dict)
  172. def validates(self, request_dict):
  173. username = request_dict.get('userName', None)
  174. userEmail = request_dict.get('userEmail', None)
  175. password = request_dict.get('userPwd', None)
  176. authCode = request_dict.get('identifyingCode', None)
  177. language = request_dict.get('language', None)
  178. unique = request_dict.get('unique', None)
  179. if unique:
  180. delete_local_account(unique)
  181. response = ResponseObject(language)
  182. if username and password and authCode:
  183. # 过滤空格
  184. username = username.strip()
  185. if userEmail:
  186. userEmail = userEmail.strip()
  187. return self.register(username, userEmail, password, authCode, response)
  188. else:
  189. return response.json(800)
  190. def register(self, username, userEmail, password, authCode, response):
  191. dataValid = DataValid()
  192. reds = RedisObject()
  193. identifyingCode = reds.get_data(key=username + '_identifyingCode')
  194. if identifyingCode is False:
  195. if userEmail:
  196. identifyingCode = reds.get_data(key=userEmail + '_identifyingCode')
  197. if identifyingCode is False:
  198. return response.json(120)
  199. else:
  200. username = userEmail
  201. else:
  202. return response.json(120)
  203. if authCode != identifyingCode:
  204. return response.json(121)
  205. if dataValid.password_validate(password):
  206. if dataValid.email_validate(username):
  207. if userEmail:
  208. print(userEmail)
  209. emailValid = Device_User.objects.filter(userEmail=userEmail)
  210. if emailValid.exists():
  211. return response.json(103)
  212. else:
  213. userEmail = username
  214. if username:
  215. nameValid = Device_User.objects.filter(username=username)
  216. if nameValid.exists():
  217. return response.json(101)
  218. try:
  219. create_data = {
  220. "username": username,
  221. "NickName": username,
  222. "userEmail": userEmail,
  223. "password": make_password(password),
  224. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  225. "is_active": True,
  226. "user_isValid": True,
  227. }
  228. users = Device_User.objects.create(**create_data)
  229. except Exception as e:
  230. errorInfo = traceback.format_exc()
  231. print(errorInfo)
  232. return response.json(424, repr(e))
  233. else:
  234. if reds.del_data(key=username + '_identifyingCode'):
  235. return response.json(0, {
  236. "user": {
  237. "userID": users.userID,
  238. "username": users.username,
  239. "userEmail": users.userEmail,
  240. "NickName": users.NickName,
  241. "userIconUrl": str(users.userIconUrl),
  242. "is_superuser": users.is_superuser,
  243. "is_active": users.is_active,
  244. "data_joined": date_handler(users.data_joined),
  245. "last_login": date_handler(users.last_login),
  246. }
  247. })
  248. else:
  249. return response.json(10, '删除缓存验证码错误')
  250. elif dataValid.mobile_validate(username):
  251. nameValid = Device_User.objects.filter(username=username)
  252. if nameValid:
  253. return response.json(101)
  254. try:
  255. create_data = {
  256. "username": username,
  257. "NickName": username,
  258. "userEmail": userEmail,
  259. "password": make_password(password),
  260. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  261. "is_active": True,
  262. "user_isValid": True,
  263. }
  264. users = Device_User.objects.create(**create_data)
  265. except Exception as e:
  266. errorInfo = traceback.format_exc()
  267. print(errorInfo)
  268. return response.json(424, repr(e))
  269. else:
  270. if reds.del_data(key=username + '_identifyingCode'):
  271. return response.json(0, {
  272. "user": {
  273. "userID": users.userID,
  274. "username": users.username,
  275. "userEmail": users.userEmail,
  276. "NickName": users.NickName,
  277. "userIconUrl": str(users.userIconUrl),
  278. "is_superuser": users.is_superuser,
  279. "is_active": users.is_active,
  280. "data_joined": date_handler(users.data_joined),
  281. "last_login": date_handler(users.last_login),
  282. }
  283. })
  284. else:
  285. return response.json(10, '删除缓存验证码错误')
  286. else:
  287. return response.json(107)
  288. else:
  289. return response.json(109)
  290. # 登出
  291. class LogoutView(TemplateView):
  292. @method_decorator(csrf_exempt)
  293. def dispatch(self, *args, **kwargs):
  294. return super(LogoutView, self).dispatch(*args, **kwargs)
  295. def post(self, request, *args, **kwargs):
  296. request.encoding = 'utf-8'
  297. request_dict = request.POST
  298. return self.Logout(request_dict)
  299. def get(self, request, *args, **kwargs):
  300. request.encoding = 'utf-8'
  301. request_dict = request.GET
  302. return self.Logout(request_dict)
  303. def Logout(self, request_dict):
  304. response = ResponseObject()
  305. token = request_dict.get('token')
  306. tko = TokenObject(token)
  307. if tko.code == 0:
  308. Device_User.objects.filter(userID=tko.userID).update(online=False)
  309. redisObj = RedisObject(db=3)
  310. redisObj.del_data(key=tko.userID)
  311. m_code = request_dict.get('m_code', None)
  312. if m_code:
  313. userID = tko.userID
  314. try:
  315. UidPushModel.objects.filter(userID_id=userID, m_code=m_code).delete()
  316. except Exception as e:
  317. pass
  318. else:
  319. pass
  320. return response.json(0)
  321. else:
  322. return response.json(tko.code)
  323. # 修改密码
  324. class ChangePwdView(TemplateView):
  325. @method_decorator(csrf_exempt)
  326. def dispatch(self, *args, **kwargs):
  327. return super(ChangePwdView, self).dispatch(*args, **kwargs)
  328. def post(self, request, *args, **kwargs):
  329. request.encoding = 'utf-8'
  330. request_dict = request.POST
  331. return self.validates(request_dict)
  332. def get(self, request, *args, **kwargs):
  333. request.encoding = 'utf-8'
  334. request_dict = request.GET
  335. return self.validates(request_dict)
  336. def validates(self, request_dict):
  337. token = request_dict.get('token', None)
  338. oldPwd = request_dict.get('oldPwd', None)
  339. newPwd = request_dict.get('newPwd', None)
  340. response = ResponseObject()
  341. if oldPwd is None and newPwd is None:
  342. return response.json(800)
  343. tko = TokenObject(token)
  344. response.lang = tko.lang
  345. if tko.code != 0:
  346. return response.json(tko.code)
  347. return self.updatePwd(tko.userID, oldPwd, newPwd, response)
  348. def updatePwd(self, userID, oldPwd, newPwd, response):
  349. user_qs = Device_User.objects.filter(userID=userID)
  350. if not user_qs.exists():
  351. return response.json(104)
  352. c_p = check_password(oldPwd, user_qs[0].password)
  353. # 密码是否正确
  354. if not c_p:
  355. return response.json(111)
  356. update = user_qs.update(password=make_password(newPwd))
  357. if update:
  358. return response.json(0)
  359. else:
  360. return response.json(177)
  361. # 修改密码v3
  362. class v3ChangePwdView(TemplateView):
  363. @method_decorator(csrf_exempt)
  364. def dispatch(self, *args, **kwargs):
  365. return super(v3ChangePwdView, self).dispatch(*args, **kwargs)
  366. def post(self, request, *args, **kwargs):
  367. request.encoding = 'utf-8'
  368. request_dict = request.POST
  369. return self.validates(request_dict)
  370. def get(self, request, *args, **kwargs):
  371. request.encoding = 'utf-8'
  372. request_dict = request.GET
  373. return self.validates(request_dict)
  374. def validates(self, request_dict):
  375. token = request_dict.get('token', None)
  376. oldPwd = request_dict.get('oldPwd', None)
  377. newPwd = request_dict.get('newPwd', None)
  378. response = ResponseObject()
  379. # 解密
  380. try:
  381. for i in range(1, 4):
  382. if i == 1:
  383. oldPwd = base64.b64decode(oldPwd)
  384. oldPwd = oldPwd.decode('utf-8')
  385. oldPwd = oldPwd[1:-1]
  386. if i == 2:
  387. oldPwd = base64.b64decode(oldPwd)
  388. oldPwd = oldPwd.decode('utf-8')
  389. oldPwd = oldPwd[2:-2]
  390. if i == 3:
  391. oldPwd = base64.b64decode(oldPwd)
  392. oldPwd = oldPwd.decode('utf-8')
  393. oldPwd = oldPwd[3:-3]
  394. for i in range(1, 4):
  395. if i == 1:
  396. newPwd = base64.b64decode(newPwd)
  397. newPwd = newPwd.decode('utf-8')
  398. newPwd = newPwd[1:-1]
  399. if i == 2:
  400. newPwd = base64.b64decode(newPwd)
  401. newPwd = newPwd.decode('utf-8')
  402. newPwd = newPwd[2:-2]
  403. if i == 3:
  404. newPwd = base64.b64decode(newPwd)
  405. newPwd = newPwd.decode('utf-8')
  406. newPwd = newPwd[3:-3]
  407. except Exception as e:
  408. return response.json(111)
  409. else:
  410. if oldPwd is None and newPwd is None:
  411. return response.json(800)
  412. tko = TokenObject(token)
  413. response.lang = tko.lang
  414. if tko.code != 0:
  415. return response.json(tko.code)
  416. return self.updatePwd(tko.userID, oldPwd, newPwd, response)
  417. def updatePwd(self, userID, oldPwd, newPwd, response):
  418. user_qs = Device_User.objects.filter(userID=userID)
  419. if not user_qs.exists():
  420. return response.json(104)
  421. c_p = check_password(oldPwd, user_qs[0].password)
  422. # 密码是否正确
  423. if not c_p:
  424. return response.json(111)
  425. update = user_qs.update(password=make_password(newPwd))
  426. if update:
  427. return response.json(0)
  428. else:
  429. return response.json(177)
  430. class ForgetPwdView(TemplateView):
  431. '''
  432. 忘记密码
  433. '''
  434. @method_decorator(csrf_exempt)
  435. def dispatch(self, *args, **kwargs):
  436. return super(ForgetPwdView, self).dispatch(*args, **kwargs)
  437. @ratelimit(key='ip', rate='1/m')
  438. def get(self, request, *args, **kwargs):
  439. request.encoding = 'utf-8'
  440. response = ResponseObject()
  441. was_limited = getattr(request, 'limited', False)
  442. if was_limited is True:
  443. return response.json(5)
  444. userName = request.GET.get('userName', None)
  445. return self.ValidationError(userName, response)
  446. @ratelimit(key='ip', rate='1/m')
  447. def post(self, request):
  448. request.encoding = 'utf-8'
  449. userName = request.POST.get('userName', None)
  450. response = ResponseObject()
  451. was_limited = getattr(request, 'limited', False)
  452. if was_limited is True:
  453. return response.json(5)
  454. return self.ValidationError(userName, response)
  455. def ValidationError(self, userName, response):
  456. # return response.json(475)
  457. if userName != None:
  458. userName = userName.strip()
  459. return self.ForgetPwd(userName, response)
  460. else:
  461. return response.json(800)
  462. def ForgetPwd(self, userName, response):
  463. dataValid = DataValid()
  464. if dataValid.mobile_validate(userName):
  465. User = Device_User.objects.filter(username=userName)
  466. elif dataValid.email_validate(userName):
  467. User = Device_User.objects.filter(username=userName)
  468. if not User.exists():
  469. User = Device_User.objects.filter(userEmail=userName)
  470. else:
  471. return response.json(104)
  472. if User:
  473. email = User[0].userEmail
  474. userID = User[0].userID
  475. if email:
  476. redisObj = RedisObject()
  477. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  478. if reset_pwd is False:
  479. tko = TokenObject()
  480. rest = tko.generate(data={'userID': userID, 'user': userName})
  481. token = rest['access_token']
  482. reset_pwd = CommonService.RandomStr(6)
  483. send_data = TemplateService.email_message(type='forget', language='en')
  484. reset_link = '{server_host}account/email-re-pwd?token={token}'.format(
  485. server_host=SERVER_DOMAIN, token=token)
  486. send_body = send_data['body'].format(username=email, reset_pwd=reset_pwd, reset_link=reset_link)
  487. ses = SesClassObject()
  488. send_res = ses.send_email(send_address_list=[email], subject=send_data['title'], body=send_body)
  489. if send_res is True:
  490. if redisObj.set_data(key=userID + '_email_reset_pwd', val=reset_pwd, expire=3600):
  491. return response.json(0)
  492. else:
  493. return response.json(10, '存储验证失败')
  494. else:
  495. return response.json(89)
  496. else:
  497. return response.json(103)
  498. else:
  499. return response.json(104)
  500. class EmailResetPwdView(TemplateView):
  501. @method_decorator(csrf_exempt)
  502. def dispatch(self, *args, **kwargs):
  503. return super(EmailResetPwdView, self).dispatch(*args, **kwargs)
  504. # 查询
  505. def get(self, request, *args, **kwargs):
  506. response = ResponseObject()
  507. request_dict = request.GET
  508. return self.validate(request_dict, response, *args, **kwargs)
  509. # 认证登录
  510. def post(self, request, *args, **kwargs):
  511. response = ResponseObject()
  512. try:
  513. print(request.body.decode("utf-8"))
  514. json_data = json.loads(request.body.decode("utf-8"))
  515. except Exception as e:
  516. return response.json(10, repr(e))
  517. else:
  518. request_dict = json_data
  519. return self.validate(request_dict, response, *args, **kwargs)
  520. def validate(self, request_dict, response, *args, **kwargs):
  521. token = request_dict.get('token', None)
  522. tko = TokenObject(token)
  523. if tko.code == 0:
  524. redisObj = RedisObject()
  525. userID = tko.userID
  526. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  527. if reset_pwd is not False:
  528. user_qs = Device_User.objects.filter(userID=userID)
  529. if user_qs.exists():
  530. redisObj.del_data(key=userID + '_email_reset_pwd')
  531. is_update = user_qs.update(password=make_password(reset_pwd))
  532. if is_update:
  533. return HttpResponseRedirect(
  534. "http://www.dvema.com/web/html/paw_update_success.html?code=" + reset_pwd)
  535. else:
  536. return response.json(10)
  537. else:
  538. return response.json(104)
  539. else:
  540. return HttpResponseRedirect('http://www.dvema.com/web/html/paw_update_unsuccessful.html?lang=en')
  541. else:
  542. return HttpResponseRedirect('http://www.dvema.com/web/html/paw_update_unsuccessful.html?lang=en')
  543. class refreshTokenView(TemplateView):
  544. @method_decorator(csrf_exempt)
  545. def dispatch(self, *args, **kwargs):
  546. return super(refreshTokenView, self).dispatch(*args, **kwargs)
  547. def post(self, request, *args, **kwargs):
  548. request.encoding = 'utf-8'
  549. content_type = request.META.get('CONTENT_TYPE', None)
  550. if content_type == 'application/json':
  551. request_dict = json.loads(request.body.decode('utf-8'))
  552. else:
  553. request_dict = request.POST
  554. return self.validation(request_dict)
  555. def get(self, request, *args, **kwargs):
  556. request.encoding = 'utf-8'
  557. request_dict = request.GET
  558. return self.validation(request_dict)
  559. def validation(self, request_dict):
  560. token = request_dict.get('token', None)
  561. lang = request_dict.get('lang', None)
  562. language = request_dict.get('language', None)
  563. if lang is None:
  564. lang = language
  565. response = ResponseObject(lang)
  566. if token is not None:
  567. tko = TokenObject(token)
  568. tko.lang = lang
  569. res = tko.refresh()
  570. userID = tko.userID
  571. if tko.code == 0:
  572. # 更新用户扩展信息语言
  573. try:
  574. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  575. if user_ex_qs.exists():
  576. nowTime = int(time.time())
  577. update_dict = {
  578. 'updTime': nowTime,
  579. 'region': lang
  580. }
  581. user_ex_qs.update(**update_dict)
  582. except Exception as e:
  583. pass
  584. # # #
  585. return response.json(0, res)
  586. else:
  587. return response.json(tko.code)
  588. else:
  589. return response.json(444, 'token')
  590. # 获取验证码
  591. class v2authCodeView(TemplateView):
  592. @method_decorator(csrf_exempt)
  593. def dispatch(self, *args, **kwargs):
  594. return super(v2authCodeView, self).dispatch(*args, **kwargs)
  595. @ratelimit(key='ip', rate='2/m')
  596. def post(self, request, *args, **kwargs):
  597. request.encoding = 'utf-8'
  598. lang = request.POST.get('lang', None)
  599. if not lang:
  600. lang = request.POST.get('language', None)
  601. response = ResponseObject(lang)
  602. request_dict = request.POST
  603. phone = request_dict.get('phone', None)
  604. if phone is not None:
  605. was_limited = getattr(request, 'limited', False)
  606. if was_limited is True:
  607. return response.json(5)
  608. return self.ValidationError(request_dict, response)
  609. @ratelimit(key='ip', rate='2/m')
  610. def get(self, request, *args, **kwargs):
  611. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  612. request.encoding = 'utf-8'
  613. lang = request.GET.get('lang', None)
  614. if not lang:
  615. lang = request.GET.get('language', None)
  616. response = ResponseObject(lang)
  617. was_limited = getattr(request, 'limited', False)
  618. if was_limited is True:
  619. return response.json(5)
  620. request_dict = request.GET
  621. return self.ValidationError(request_dict, response)
  622. def ValidationError(self, request_dict, response):
  623. email = request_dict.get('email', None)
  624. phone = request_dict.get('phone', None)
  625. country_code = request_dict.get('country_code', None)
  626. sign_name = request_dict.get('sign_name', None)
  627. if email is not None:
  628. email = email.strip()
  629. # 阿里云的发送邮箱的调用方法
  630. return self.aliyun_emailCode(email, response)
  631. # return self.emailCode(email, response)
  632. elif phone is not None:
  633. phone = phone.strip()
  634. if country_code is None:
  635. return self.phoneCode(phone, response, sign_name)
  636. else:
  637. country_code = str(country_code.strip())
  638. return self.phoneCodeV2(country_code, phone, response, sign_name)
  639. else:
  640. return response.json(444)
  641. def emailCode(self, email, response):
  642. dataValid = DataValid()
  643. # 邮箱匹配
  644. if dataValid.email_validate(email) is False:
  645. return response.json(107)
  646. reds = RedisObject()
  647. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  648. # 是否以获取邮箱验证码
  649. if identifyingCode:
  650. return response.json(89)
  651. user_qs = Device_User.objects.filter(username=email)
  652. email_qs = Device_User.objects.filter(userEmail=email)
  653. # 邮箱用户是否已存在
  654. if user_qs.exists():
  655. return response.json(103)
  656. elif email_qs.exists():
  657. return response.json(103)
  658. # 生成随机6位数
  659. identifyingCode = RandomStr(6, True)
  660. # 设置随机数缓存生命周期
  661. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  662. ses = SesClassObject()
  663. # 发送邮件
  664. send_res = ses.send_email(
  665. send_address_list=[email],
  666. subject=send_data['title'],
  667. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  668. str(identifyingCode))
  669. )
  670. if send_res is not True:
  671. return response.json(44)
  672. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=600) is not True:
  673. return response.json(10, 'error')
  674. return response.json(0)
  675. # return response.json(0, {'identifyingCode': identifyingCode})
  676. # 阿里云获取邮箱验证码
  677. def aliyun_emailCode(self, email, response):
  678. print('阿里云开始')
  679. dataValid = DataValid()
  680. # 邮箱匹配
  681. if dataValid.email_validate(email) is False:
  682. return response.json(107)
  683. reds = RedisObject()
  684. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  685. # 是否以获取邮箱验证码
  686. if identifyingCode:
  687. return response.json(89)
  688. user_qs = Device_User.objects.filter(username=email)
  689. email_qs = Device_User.objects.filter(userEmail=email)
  690. # 邮箱用户是否已存在
  691. if user_qs.exists():
  692. return response.json(103)
  693. elif email_qs.exists():
  694. return response.json(103)
  695. # 生成随机6位数
  696. identifyingCode = RandomStr(6, True)
  697. # 设置随机数缓存生命周期
  698. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  699. ses = SesClassObject()
  700. # 发送邮件
  701. send_res = ses.alyEmailCode(
  702. send_address_list=[email],
  703. subject=send_data['title'],
  704. body=send_data['body'].replace("{username}", email).replace("{captcha}", str(identifyingCode))
  705. )
  706. if send_res is not True:
  707. return response.json(44)
  708. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=600) is not True:
  709. return response.json(10, 'error')
  710. return response.json(0)
  711. def phoneCode(self, phone, response, sign_name):
  712. dataValid = DataValid()
  713. if dataValid.mobile_validate(phone) is not True:
  714. return response.json(107)
  715. reds = RedisObject()
  716. reds_key = str(phone) + '_identifyingCode'
  717. identifyingCode = reds.get_data(key=reds_key)
  718. reds_key_ttl = reds.get_ttl(key=reds_key)
  719. if reds_key_ttl > 240 and identifyingCode:
  720. # if identifyingCode :
  721. return response.json(90)
  722. user_qs = Device_User.objects.filter(username=phone)
  723. phone_qs = Device_User.objects.filter(phone=phone)
  724. if user_qs.exists() or phone_qs.exists():
  725. return response.json(101)
  726. identifyingCode = RandomStr(6, True)
  727. # 发送手机验证码
  728. aliSms = AliSmsObject()
  729. if sign_name == 'zosi':
  730. sign_ms = '周视'
  731. else:
  732. sign_ms = 'Ansjer'
  733. res = aliSms.send_code_sms(phone=phone, code=identifyingCode, sign_name=sign_ms,
  734. temp_msg='SMS_151600991')
  735. print(res)
  736. if res["Code"] == "OK":
  737. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  738. # if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=60) is not True:
  739. return response.json(10, '生成缓存系统错误')
  740. return response.json(0)
  741. else:
  742. return response.json(10, res["Message"])
  743. def phoneCodeV2(self, country_code, phone, response, sign_name):
  744. dataValid = DataValid()
  745. if dataValid.mobile_validate(phone) is not True:
  746. return response.json(107)
  747. reds = RedisObject()
  748. reds_key = str(phone) + '_identifyingCode'
  749. identifyingCode = reds.get_data(key=reds_key)
  750. reds_key_ttl = reds.get_ttl(key=reds_key)
  751. if reds_key_ttl > 240 and identifyingCode:
  752. # if identifyingCode :
  753. return response.json(90)
  754. user_qs = Device_User.objects.filter(username=phone)
  755. phone_qs = Device_User.objects.filter(phone=phone)
  756. if user_qs.exists() or phone_qs.exists():
  757. return response.json(101)
  758. identifyingCode = RandomStr(6, True)
  759. # 短信签名
  760. # sign_name_dict = {
  761. # 'ansjer':'Ansjer',
  762. # 'zosi':'周视'
  763. # }
  764. sign_ms = ''
  765. if country_code == '86':
  766. # 国内短信推送模板
  767. temp_msg = 'SMS_151600991'
  768. rec_phone = phone
  769. if sign_name == 'zosi':
  770. sign_ms = '周视'
  771. else:
  772. sign_ms = 'Ansjer'
  773. else:
  774. # 国际短信推送模板
  775. temp_msg = 'SMS_172165867'
  776. rec_phone = country_code + phone
  777. sign_ms = 'Ansjer'
  778. # 发送手机验证码
  779. aliSms = AliSmsObject()
  780. res = aliSms.send_code_sms(phone=rec_phone, code=identifyingCode, sign_name=sign_ms,
  781. temp_msg=temp_msg)
  782. print(res)
  783. if res["Code"] == "OK":
  784. # if reds.set_data(key=reds_key, val=identifyingCode, expire=60) is not True:
  785. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  786. return response.json(10, '生成缓存系统错误')
  787. return response.json(0)
  788. else:
  789. return response.json(10, res["Message"])
  790. # 验证码注册
  791. class v2registerView(TemplateView):
  792. @method_decorator(csrf_exempt)
  793. def dispatch(self, *args, **kwargs):
  794. return super(v2registerView, self).dispatch(*args, **kwargs)
  795. def post(self, request, *args, **kwargs):
  796. request.encoding = 'utf-8'
  797. request_dict = request.POST
  798. return self.validates(request_dict)
  799. def get(self, request, *args, **kwargs):
  800. request.encoding = 'utf-8'
  801. request_dict = request.GET
  802. return self.validates(request_dict)
  803. def validates(self, request_dict):
  804. phone = request_dict.get('phone', None)
  805. email = request_dict.get('email', None)
  806. password = request_dict.get('password', None)
  807. authcode = request_dict.get('authcode', None)
  808. lang = request_dict.get('lang', None)
  809. unique = request_dict.get('unique', None)
  810. number = request_dict.get('number', None)
  811. if unique:
  812. delete_local_account(unique)
  813. response = ResponseObject(lang)
  814. if not lang:
  815. lang = request_dict.get('language', None)
  816. if password is None:
  817. return response.json(444, 'password')
  818. if authcode is None:
  819. return response.json(444, 'identifyingCode')
  820. if phone is not None:
  821. return self.do_phone_register(phone, password, authcode, number, response)
  822. elif email is not None:
  823. return self.do_email_register(email, password, authcode, number, response)
  824. else:
  825. return response.json(444, 'phone or email')
  826. def do_phone_register(self, phone, password, authcode, number, response):
  827. data_valid = DataValid()
  828. if data_valid.mobile_validate(phone) is not True:
  829. return response.json(100)
  830. if data_valid.password_validate(password) is not True:
  831. return response.json(109)
  832. reds = RedisObject()
  833. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  834. # 判断验证码是否过期
  835. if identifyingCode is False:
  836. return response.json(120)
  837. # 验证码是否正确
  838. if authcode != identifyingCode:
  839. return response.json(121)
  840. phone_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  841. # 是否已存在
  842. if phone_qs.exists():
  843. return response.json(101)
  844. try:
  845. create_data = {
  846. "username": phone,
  847. "NickName": phone,
  848. "phone": phone,
  849. "password": make_password(password),
  850. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  851. "is_active": True,
  852. "user_isValid": True,
  853. }
  854. if number:
  855. create_data["region_country"] = number
  856. users = Device_User.objects.create(**create_data)
  857. except Exception as e:
  858. errorInfo = traceback.format_exc()
  859. print(errorInfo)
  860. return response.json(424, repr(e))
  861. else:
  862. if not reds.del_data(key=phone + '_identifyingCode'):
  863. return response.json(10, '删除缓存验证码错误')
  864. return self.do_login(phone_qs, response)
  865. def do_login(self, user_qs, response):
  866. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  867. user_qs.update(last_login=now_time, online=True)
  868. userID = user_qs[0].userID
  869. print('userID' + userID)
  870. tko = TokenObject()
  871. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  872. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  873. # 增加角色
  874. user_qs[0].role.add(Role.objects.get(rid=1))
  875. role_dict = ModelService.own_role(userID=userID)
  876. res['rid'] = role_dict['rid']
  877. res['roleName'] = role_dict['roleName']
  878. res['permList'] = ModelService.own_permission(userID)
  879. res['userID'] = userID
  880. # 昵称,邮箱,电话,刷新,头像
  881. userIconPath = str(user_list[0]["userIconPath"])
  882. if userIconPath and userIconPath.find('static/') != -1:
  883. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  884. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  885. else:
  886. res['userIconUrl'] = ''
  887. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  888. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  889. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  890. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  891. print(res)
  892. return response.json(0, res)
  893. def do_email_register(self, email, password, authcode, number, response):
  894. data_valid = DataValid()
  895. if data_valid.email_validate(email) is not True:
  896. return response.json(105)
  897. if data_valid.password_validate(password) is not True:
  898. return response.json(109)
  899. reds = RedisObject()
  900. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  901. # 判断验证码是否过期
  902. if identifyingCode is False:
  903. return response.json(120)
  904. # 验证码是否正确
  905. if authcode != identifyingCode:
  906. return response.json(121)
  907. email_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  908. # 是否已存在
  909. if email_qs.exists():
  910. return response.json(103)
  911. try:
  912. create_data = {
  913. "username": email,
  914. "NickName": email,
  915. "userEmail": email,
  916. "password": make_password(password),
  917. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  918. "is_active": True,
  919. "user_isValid": True,
  920. }
  921. if number:
  922. create_data["region_country"] = number
  923. users = Device_User.objects.create(**create_data)
  924. except Exception as e:
  925. errorInfo = traceback.format_exc()
  926. print(errorInfo)
  927. return response.json(424, repr(e))
  928. else:
  929. if not reds.del_data(key=email + '_identifyingCode'):
  930. return response.json(10, '删除缓存验证码错误')
  931. return self.do_login(email_qs, response)
  932. # 验证码注册v3
  933. class v3registerView(TemplateView):
  934. @method_decorator(csrf_exempt)
  935. def dispatch(self, *args, **kwargs):
  936. return super(v3registerView, self).dispatch(*args, **kwargs)
  937. def post(self, request, *args, **kwargs):
  938. request.encoding = 'utf-8'
  939. request_dict = request.POST
  940. return self.validates(request_dict)
  941. def get(self, request, *args, **kwargs):
  942. request.encoding = 'utf-8'
  943. request_dict = request.GET
  944. return self.validates(request_dict)
  945. def validates(self, request_dict):
  946. phone = request_dict.get('phone', None)
  947. email = request_dict.get('email', None)
  948. password = request_dict.get('password', None)
  949. authcode = request_dict.get('authcode', None)
  950. lang = request_dict.get('lang', None)
  951. unique = request_dict.get('unique', None)
  952. number = request_dict.get('number', None)
  953. if unique:
  954. delete_local_account(unique)
  955. response = ResponseObject(lang)
  956. # 解密
  957. try:
  958. for i in range(1, 4):
  959. if i == 1:
  960. password = base64.b64decode(password)
  961. password = password.decode('utf-8')
  962. password = password[1:-1]
  963. if i == 2:
  964. password = base64.b64decode(password)
  965. password = password.decode('utf-8')
  966. password = password[2:-2]
  967. if i == 3:
  968. password = base64.b64decode(password)
  969. password = password.decode('utf-8')
  970. password = password[3:-3]
  971. print(password)
  972. except Exception as e:
  973. return response.json(111)
  974. try:
  975. for i in range(1, 4):
  976. if i == 1:
  977. authcode = base64.b64decode(authcode)
  978. authcode = authcode.decode('utf-8')
  979. authcode = authcode[1:-1]
  980. if i == 2:
  981. authcode = base64.b64decode(authcode)
  982. authcode = authcode.decode('utf-8')
  983. authcode = authcode[2:-2]
  984. if i == 3:
  985. authcode = base64.b64decode(authcode)
  986. authcode = authcode.decode('utf-8')
  987. authcode = authcode[3:-3]
  988. print(authcode)
  989. except Exception as e:
  990. return response.json(121)
  991. else:
  992. if not lang:
  993. lang = request_dict.get('language', None)
  994. if password is None:
  995. return response.json(444, 'password')
  996. if authcode is None:
  997. return response.json(444, 'identifyingCode')
  998. if phone is not None:
  999. return self.do_phone_register(phone, password, authcode, number, response)
  1000. elif email is not None:
  1001. return self.do_email_register(email, password, authcode, number, response)
  1002. else:
  1003. return response.json(444, 'phone or email')
  1004. def do_phone_register(self, phone, password, authcode, number, response):
  1005. data_valid = DataValid()
  1006. if data_valid.mobile_validate(phone) is not True:
  1007. return response.json(100)
  1008. if data_valid.password_validate(password) is not True:
  1009. return response.json(109)
  1010. reds = RedisObject()
  1011. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  1012. # 判断验证码是否过期
  1013. if identifyingCode is False:
  1014. return response.json(120)
  1015. # 验证码是否正确
  1016. if authcode != identifyingCode:
  1017. return response.json(121)
  1018. phone_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1019. # 是否已存在
  1020. if phone_qs.exists():
  1021. return response.json(101)
  1022. try:
  1023. create_data = {
  1024. "username": phone,
  1025. "NickName": phone,
  1026. "phone": phone,
  1027. "password": make_password(password),
  1028. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  1029. "is_active": True,
  1030. "user_isValid": True,
  1031. }
  1032. if number:
  1033. create_data["region_country"] = number
  1034. users = Device_User.objects.create(**create_data)
  1035. except Exception as e:
  1036. errorInfo = traceback.format_exc()
  1037. print(errorInfo)
  1038. return response.json(424, repr(e))
  1039. else:
  1040. if not reds.del_data(key=phone + '_identifyingCode'):
  1041. return response.json(10, '删除缓存验证码错误')
  1042. return self.do_login(phone_qs, response)
  1043. def do_login(self, user_qs, response):
  1044. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1045. user_qs.update(last_login=now_time, online=True)
  1046. userID = user_qs[0].userID
  1047. print('userID' + userID)
  1048. tko = TokenObject()
  1049. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1050. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1051. # 增加角色
  1052. user_qs[0].role.add(Role.objects.get(rid=1))
  1053. role_dict = ModelService.own_role(userID=userID)
  1054. res['rid'] = role_dict['rid']
  1055. res['roleName'] = role_dict['roleName']
  1056. res['permList'] = ModelService.own_permission(userID)
  1057. res['userID'] = userID
  1058. # 昵称,邮箱,电话,刷新,头像
  1059. userIconPath = str(user_list[0]["userIconPath"])
  1060. if userIconPath and userIconPath.find('static/') != -1:
  1061. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1062. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1063. else:
  1064. res['userIconUrl'] = ''
  1065. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1066. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1067. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1068. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1069. return response.json(0, res)
  1070. def do_email_register(self, email, password, authcode, number, response):
  1071. data_valid = DataValid()
  1072. if data_valid.email_validate(email) is not True:
  1073. return response.json(105)
  1074. if data_valid.password_validate(password) is not True:
  1075. return response.json(109)
  1076. reds = RedisObject()
  1077. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  1078. # 判断验证码是否过期
  1079. if identifyingCode is False:
  1080. return response.json(120)
  1081. # 验证码是否正确
  1082. if authcode != identifyingCode:
  1083. return response.json(121)
  1084. email_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1085. # 是否已存在
  1086. if email_qs.exists():
  1087. return response.json(103)
  1088. try:
  1089. create_data = {
  1090. "username": email,
  1091. "NickName": email,
  1092. "userEmail": email,
  1093. "password": make_password(password),
  1094. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  1095. "is_active": True,
  1096. "user_isValid": True,
  1097. }
  1098. if number:
  1099. create_data["region_country"] = number
  1100. users = Device_User.objects.create(**create_data)
  1101. except Exception as e:
  1102. errorInfo = traceback.format_exc()
  1103. print(errorInfo)
  1104. return response.json(424, repr(e))
  1105. else:
  1106. if not reds.del_data(key=email + '_identifyingCode'):
  1107. return response.json(10, '删除缓存验证码错误')
  1108. return self.do_login(email_qs, response)
  1109. # 重置密码
  1110. # 忘记密码获取验证码v2
  1111. class v2forgetPwdCodeView(TemplateView):
  1112. @method_decorator(csrf_exempt)
  1113. def dispatch(self, *args, **kwargs):
  1114. return super(v2forgetPwdCodeView, self).dispatch(*args, **kwargs)
  1115. @ratelimit(key='ip', rate='1/m')
  1116. def get(self, request, *args, **kwargs):
  1117. request.encoding = 'utf-8'
  1118. request_dict = request.GET
  1119. lang = request_dict.get('lang')
  1120. response = ResponseObject(lang)
  1121. was_limited = getattr(request, 'limited', False)
  1122. if was_limited is True:
  1123. return response.json(5)
  1124. return self.ValidationError(request_dict, response)
  1125. @ratelimit(key='ip', rate='1/m')
  1126. def post(self, request):
  1127. request.encoding = 'utf-8'
  1128. request_dict = request.POST
  1129. lang = request_dict.get('lang')
  1130. response = ResponseObject(lang)
  1131. was_limited = getattr(request, 'limited', False)
  1132. if was_limited is True:
  1133. return response.json(5)
  1134. return self.ValidationError(request_dict, response)
  1135. def ValidationError(self, request_dict, response):
  1136. phone = request_dict.get('phone', None)
  1137. email = request_dict.get('email', None)
  1138. country_code = request_dict.get('country_code', None)
  1139. sign_name = request_dict.get('sign_name', None)
  1140. if phone is not None:
  1141. phone = phone.strip()
  1142. if country_code is None:
  1143. return self.do_send_phone_code(phone, response, sign_name)
  1144. else:
  1145. return self.do_v2_send_phone_code(country_code, phone, response, sign_name)
  1146. elif email is not None:
  1147. return self.do_send_email_code(email, response)
  1148. else:
  1149. return response.json(444, 'phone')
  1150. def do_send_phone_code(self, phone, response, sign_name):
  1151. data_valid = DataValid()
  1152. if data_valid.mobile_validate(phone) is not True:
  1153. return response.json(100)
  1154. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1155. if not user_qs.exists():
  1156. return response.json(102)
  1157. reds = RedisObject()
  1158. reds_key = str(phone) + '_forgetPwdResetCode'
  1159. resetCode = reds.get_data(key=reds_key)
  1160. reds_key_ttl = reds.get_ttl(key=reds_key)
  1161. if reds_key_ttl > 240 and resetCode:
  1162. # if identifyingCode :
  1163. return response.json(90)
  1164. # if resetCode is True:
  1165. # return response.json(120)
  1166. resetCode = RandomStr(6, True)
  1167. if sign_name == 'zosi':
  1168. sign_ms = '周视'
  1169. else:
  1170. sign_ms = 'Ansjer'
  1171. aliSms = AliSmsObject()
  1172. res = aliSms.send_code_sms(phone=phone, code=resetCode, sign_name=sign_ms,
  1173. temp_msg='SMS_151675019')
  1174. if res["Code"] == "OK":
  1175. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1176. return response.json(10, '生成缓存错误')
  1177. return response.json(0)
  1178. else:
  1179. return response.json(10, res["Message"])
  1180. def do_v2_send_phone_code(self, country_code, phone, response, sign_name):
  1181. data_valid = DataValid()
  1182. if data_valid.mobile_validate(phone) is not True:
  1183. return response.json(100)
  1184. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1185. if not user_qs.exists():
  1186. return response.json(102)
  1187. reds = RedisObject()
  1188. reds_key = str(phone) + '_forgetPwdResetCode'
  1189. resetCode = reds.get_data(key=reds_key)
  1190. reds_key_ttl = reds.get_ttl(key=reds_key)
  1191. if reds_key_ttl > 240 and resetCode:
  1192. # if identifyingCode :
  1193. return response.json(90)
  1194. # if resetCode is True:
  1195. # return response.json(120)
  1196. resetCode = RandomStr(6, True)
  1197. aliSms = AliSmsObject()
  1198. if country_code == '86':
  1199. rec_phone = phone
  1200. temp_msg = 'SMS_151675019'
  1201. if sign_name == 'zosi':
  1202. sign_ms = '周视'
  1203. else:
  1204. sign_ms = 'Ansjer'
  1205. else:
  1206. temp_msg = 'SMS_172200051'
  1207. rec_phone = str(country_code) + str(phone)
  1208. sign_ms = 'Ansjer'
  1209. res = aliSms.send_code_sms(phone=rec_phone, code=resetCode, sign_name=sign_ms,
  1210. temp_msg=temp_msg)
  1211. if res["Code"] == "OK":
  1212. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1213. return response.json(10, '生成缓存错误')
  1214. return response.json(0)
  1215. else:
  1216. return response.json(10, res["Message"])
  1217. def do_send_email_code(self, email, response):
  1218. data_valid = DataValid()
  1219. if data_valid.email_validate(email) is not True:
  1220. return response.json(105)
  1221. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1222. if not user_qs.exists():
  1223. return response.json(104)
  1224. reds = RedisObject()
  1225. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1226. if resetCode is True:
  1227. return response.json(120)
  1228. resetCode = RandomStr(6, True)
  1229. if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=600):
  1230. return response.json(10, '生成缓存错误')
  1231. send_data = TemplateService.email_message(type='forgetCode', language=response.lang)
  1232. send_body = send_data['body'].format(userEmail=email, email_valid_code=resetCode)
  1233. ses = SesClassObject()
  1234. # send_res = ses.send_email(send_address_list=[email], subject=send_data['title'], body=send_body)
  1235. # 阿里云发送邮箱
  1236. send_res = ses.alyEmailCode(send_address_list=[email], subject=send_data['title'], body=send_body)
  1237. if send_res is not True:
  1238. reds.del_data(key=email + '_forgetPwdResetCode')
  1239. return response.json(44)
  1240. return response.json(0)
  1241. # 忘记密码v2
  1242. class v2resetPwdByCodeView(TemplateView):
  1243. @method_decorator(csrf_exempt)
  1244. def dispatch(self, *args, **kwargs):
  1245. return super(v2resetPwdByCodeView, self).dispatch(*args, **kwargs)
  1246. def get(self, request, *args, **kwargs):
  1247. request.encoding = 'utf-8'
  1248. request_dict = request.GET
  1249. lang = request_dict.get('lang')
  1250. if not lang:
  1251. lang = request_dict.get('language', None)
  1252. response = ResponseObject(lang)
  1253. was_limited = getattr(request, 'limited', False)
  1254. if was_limited is True:
  1255. return response.json(5)
  1256. return self.ValidationError(request_dict, response)
  1257. def post(self, request):
  1258. request.encoding = 'utf-8'
  1259. request_dict = request.POST
  1260. lang = request_dict.get('lang')
  1261. if not lang:
  1262. lang = request_dict.get('language', None)
  1263. response = ResponseObject(lang)
  1264. was_limited = getattr(request, 'limited', False)
  1265. if was_limited is True:
  1266. return response.json(5)
  1267. return self.ValidationError(request_dict, response)
  1268. def ValidationError(self, request_dict, response):
  1269. phone = request_dict.get('phone', None)
  1270. email = request_dict.get('email', None)
  1271. password = request_dict.get('password', None)
  1272. authcode = request_dict.get('authcode', None)
  1273. print("1111111111111111111111")
  1274. if password is None or authcode is None:
  1275. return response.json(444, 'password,authcode')
  1276. authcode = authcode.strip()
  1277. password = password.strip()
  1278. if phone is not None:
  1279. phone = phone.strip()
  1280. return self.do_phone_pwd_reset(phone, authcode, password, response)
  1281. elif email is not None:
  1282. email = email.strip()
  1283. return self.do_email_pwd_reset(email, authcode, password, response)
  1284. else:
  1285. return response.json(444, 'phone')
  1286. def do_email_pwd_reset(self, email, authcode, password, response):
  1287. data_valid = DataValid()
  1288. if data_valid.email_validate(email) is not True:
  1289. return response.json(105)
  1290. if data_valid.password_validate(password) is not True:
  1291. return response.json(109)
  1292. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1293. if not user_qs.exists():
  1294. return response.json(104)
  1295. reds = RedisObject()
  1296. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1297. if resetCode is False:
  1298. return response.json(90)
  1299. if authcode != resetCode:
  1300. return response.json(121)
  1301. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  1302. # return response.json(10, '生成缓存错误')
  1303. user_qs.update(password=make_password(password))
  1304. if not reds.del_data(email + '_forgetPwdResetCode'):
  1305. return response.json(10, '删除缓存失败')
  1306. return response.json(0)
  1307. def do_phone_pwd_reset(self, phone, authcode, password, response):
  1308. data_valid = DataValid()
  1309. if data_valid.mobile_validate(phone) is not True:
  1310. return response.json(100)
  1311. if data_valid.password_validate(password) is not True:
  1312. return response.json(109)
  1313. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1314. if not user_qs.exists():
  1315. return response.json(102)
  1316. reds = RedisObject()
  1317. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  1318. if resetCode is False:
  1319. return response.json(90)
  1320. if authcode != resetCode:
  1321. return response.json(121)
  1322. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  1323. # return response.json(10, '生成缓存错误')
  1324. user_qs.update(password=make_password(password))
  1325. if not reds.del_data(phone + '_forgetPwdResetCode'):
  1326. return response.json(10, '删除缓存失败')
  1327. return response.json(0)
  1328. def do_login(self, user_qs, response):
  1329. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1330. user_qs.update(last_login=now_time, online=True)
  1331. userID = user_qs[0].userID
  1332. print('userID' + userID)
  1333. tko = TokenObject()
  1334. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1335. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1336. # 增加角色
  1337. user_qs[0].role.add(Role.objects.get(rid=1))
  1338. role_dict = ModelService.own_role(userID=userID)
  1339. res['rid'] = role_dict['rid']
  1340. res['roleName'] = role_dict['roleName']
  1341. res['permList'] = ModelService.own_permission(userID)
  1342. res['userID'] = userID
  1343. # 昵称,邮箱,电话,刷新,头像
  1344. userIconPath = str(user_list[0]["userIconPath"])
  1345. if userIconPath and userIconPath.find('static/') != -1:
  1346. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1347. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1348. else:
  1349. res['userIconUrl'] = ''
  1350. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1351. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1352. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1353. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1354. print(res)
  1355. return response.json(0, res)
  1356. # 忘记密码v3
  1357. class v3resetPwdByCodeView(TemplateView):
  1358. @method_decorator(csrf_exempt)
  1359. def dispatch(self, *args, **kwargs):
  1360. return super(v3resetPwdByCodeView, self).dispatch(*args, **kwargs)
  1361. def get(self, request, *args, **kwargs):
  1362. request.encoding = 'utf-8'
  1363. request_dict = request.GET
  1364. lang = request_dict.get('lang')
  1365. if not lang:
  1366. lang = request_dict.get('language', None)
  1367. response = ResponseObject(lang)
  1368. was_limited = getattr(request, 'limited', False)
  1369. if was_limited is True:
  1370. return response.json(5)
  1371. return self.ValidationError(request_dict, response)
  1372. def post(self, request):
  1373. request.encoding = 'utf-8'
  1374. request_dict = request.POST
  1375. lang = request_dict.get('lang')
  1376. if not lang:
  1377. lang = request_dict.get('language', None)
  1378. response = ResponseObject(lang)
  1379. was_limited = getattr(request, 'limited', False)
  1380. if was_limited is True:
  1381. return response.json(5)
  1382. return self.ValidationError(request_dict, response)
  1383. def ValidationError(self, request_dict, response):
  1384. phone = request_dict.get('phone', None)
  1385. email = request_dict.get('email', None)
  1386. password = request_dict.get('password', None)
  1387. authcode = request_dict.get('authcode', None)
  1388. if password is None or authcode is None:
  1389. return response.json(444, 'password,authcode')
  1390. authcode = authcode.strip()
  1391. password = password.strip()
  1392. # 解密
  1393. try:
  1394. for i in range(1, 4):
  1395. if i == 1:
  1396. password = base64.b64decode(password)
  1397. password = password.decode('utf-8')
  1398. password = password[1:-1]
  1399. if i == 2:
  1400. password = base64.b64decode(password)
  1401. password = password.decode('utf-8')
  1402. password = password[2:-2]
  1403. if i == 3:
  1404. password = base64.b64decode(password)
  1405. password = password.decode('utf-8')
  1406. password = password[3:-3]
  1407. print(password)
  1408. except Exception as e:
  1409. return response.json(111)
  1410. try:
  1411. for i in range(1, 4):
  1412. if i == 1:
  1413. authcode = base64.b64decode(authcode)
  1414. authcode = authcode.decode('utf-8')
  1415. authcode = authcode[1:-1]
  1416. if i == 2:
  1417. authcode = base64.b64decode(authcode)
  1418. authcode = authcode.decode('utf-8')
  1419. authcode = authcode[2:-2]
  1420. if i == 3:
  1421. authcode = base64.b64decode(authcode)
  1422. authcode = authcode.decode('utf-8')
  1423. authcode = authcode[3:-3]
  1424. print(authcode)
  1425. except Exception as e:
  1426. return response.json(121)
  1427. if phone is not None:
  1428. phone = phone.strip()
  1429. return self.do_phone_pwd_reset(phone, authcode, password, response)
  1430. elif email is not None:
  1431. email = email.strip()
  1432. return self.do_email_pwd_reset(email, authcode, password, response)
  1433. else:
  1434. return response.json(444, 'phone')
  1435. def do_email_pwd_reset(self, email, authcode, password, response):
  1436. data_valid = DataValid()
  1437. if data_valid.email_validate(email) is not True:
  1438. return response.json(105)
  1439. if data_valid.password_validate(password) is not True:
  1440. return response.json(109)
  1441. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1442. if not user_qs.exists():
  1443. return response.json(104)
  1444. reds = RedisObject()
  1445. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1446. if resetCode is False:
  1447. return response.json(90)
  1448. if authcode != resetCode:
  1449. return response.json(121)
  1450. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  1451. # return response.json(10, '生成缓存错误')
  1452. user_qs.update(password=make_password(password))
  1453. if not reds.del_data(email + '_forgetPwdResetCode'):
  1454. return response.json(10, '删除缓存失败')
  1455. return response.json(0)
  1456. def do_phone_pwd_reset(self, phone, authcode, password, response):
  1457. data_valid = DataValid()
  1458. if data_valid.mobile_validate(phone) is not True:
  1459. return response.json(100)
  1460. if data_valid.password_validate(password) is not True:
  1461. return response.json(109)
  1462. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1463. if not user_qs.exists():
  1464. return response.json(102)
  1465. reds = RedisObject()
  1466. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  1467. if resetCode is False:
  1468. return response.json(90)
  1469. if authcode != resetCode:
  1470. return response.json(121)
  1471. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  1472. # return response.json(10, '生成缓存错误')
  1473. user_qs.update(password=make_password(password))
  1474. if not reds.del_data(phone + '_forgetPwdResetCode'):
  1475. return response.json(10, '删除缓存失败')
  1476. return response.json(0)
  1477. def do_login(self, user_qs, response):
  1478. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1479. user_qs.update(last_login=now_time, online=True)
  1480. userID = user_qs[0].userID
  1481. print('userID' + userID)
  1482. tko = TokenObject()
  1483. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1484. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1485. # 增加角色
  1486. user_qs[0].role.add(Role.objects.get(rid=1))
  1487. role_dict = ModelService.own_role(userID=userID)
  1488. res['rid'] = role_dict['rid']
  1489. res['roleName'] = role_dict['roleName']
  1490. res['permList'] = ModelService.own_permission(userID)
  1491. res['userID'] = userID
  1492. # 昵称,邮箱,电话,刷新,头像
  1493. userIconPath = str(user_list[0]["userIconPath"])
  1494. if userIconPath and userIconPath.find('static/') != -1:
  1495. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1496. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1497. else:
  1498. res['userIconUrl'] = ''
  1499. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1500. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1501. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1502. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1503. print(res)
  1504. return response.json(0, res)
  1505. # 登录
  1506. class v2LoginView(TemplateView):
  1507. @method_decorator(csrf_exempt) # @csrf_exempt
  1508. def dispatch(self, *args, **kwargs):
  1509. return super(v2LoginView, self).dispatch(*args, **kwargs)
  1510. @ratelimit(key='ip', rate='5/m')
  1511. def post(self, request, *args, **kwargs):
  1512. request.encoding = 'utf-8'
  1513. request_dict = request.POST
  1514. language = request_dict.get('language', 'en')
  1515. response = ResponseObject(language)
  1516. was_limited = getattr(request, 'limited', False)
  1517. if was_limited is True:
  1518. return response.json(5)
  1519. return self.validates(request_dict, response)
  1520. # @ratelimit(key='ip', rate='5/m')
  1521. def get(self, request, *args, **kwargs):
  1522. print("进来了")
  1523. request.encoding = 'utf-8'
  1524. request_dict = request.GET
  1525. language = request_dict.get('language', 'en')
  1526. response = ResponseObject(language)
  1527. was_limited = getattr(request, 'limited', False)
  1528. if was_limited is True:
  1529. return response.json(5)
  1530. return self.validates(request_dict, response)
  1531. def validates(self, request_dict, response):
  1532. username = request_dict.get('userName', None)
  1533. password = request_dict.get('userPwd', None)
  1534. if not username or not password:
  1535. return response.json(111)
  1536. username = username.strip()
  1537. password = password.strip()
  1538. data_valid = DataValid()
  1539. if data_valid.email_validate(username):
  1540. return self.do_email_login(username, password, response)
  1541. elif data_valid.mobile_validate(username):
  1542. return self.do_phone_login(username, password, response)
  1543. elif data_valid.name_validate(username):
  1544. return self.do_name_login(username, password, response)
  1545. else:
  1546. return response.json(107)
  1547. def do_email_login(self, email, password, response):
  1548. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  1549. return self.valid_login(user_qs, password, response)
  1550. def do_phone_login(self, phone, password, response):
  1551. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  1552. return self.valid_login(user_qs, password, response)
  1553. def do_name_login(self, username, password, response):
  1554. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  1555. is_active=True, user_isValid=True)
  1556. return self.valid_login(user_qs, password, response)
  1557. def valid_login(self, user_qs, password, response):
  1558. if not user_qs.exists():
  1559. return response.json(104)
  1560. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  1561. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  1562. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  1563. 'phone', 'password', 'userIconPath')[0]
  1564. if not check_password(password, users['password']):
  1565. return response.json(111)
  1566. userID = users['userID']
  1567. tko = TokenObject()
  1568. res = tko.generate(
  1569. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  1570. if tko.code == 0:
  1571. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1572. user_qs.update(last_login=now_time, language=response.lang)
  1573. res['rid'] = users['role__rid']
  1574. res['roleName'] = users['role__roleName']
  1575. res['permList'] = ModelService.own_permission(userID)
  1576. res['userID'] = userID
  1577. # 昵称,邮箱,电话,刷新,头像
  1578. userIconPath = str(users['userIconPath'])
  1579. if userIconPath and userIconPath.find('static/') != -1:
  1580. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1581. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1582. else:
  1583. res['userIconUrl'] = ''
  1584. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  1585. res['username'] = users['username'] if users['username'] is not None else ''
  1586. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  1587. res['phone'] = users['phone'] if users['phone'] is not None else ''
  1588. return response.json(0, res)
  1589. else:
  1590. return response.json(tko.code)
  1591. # 密码加密新登录
  1592. class v3LoginView(TemplateView):
  1593. @method_decorator(csrf_exempt) # @csrf_exempt
  1594. def dispatch(self, *args, **kwargs):
  1595. # chong
  1596. return super(v3LoginView, self).dispatch(*args, **kwargs)
  1597. @ratelimit(key='ip', rate='5/m')
  1598. def post(self, request, *args, **kwargs):
  1599. request.encoding = 'utf-8'
  1600. request_dict = request.POST
  1601. language = request_dict.get('language', 'en')
  1602. response = ResponseObject(language)
  1603. was_limited = getattr(request, 'limited', False)
  1604. if was_limited is True:
  1605. return response.json(5)
  1606. return self.validates(request_dict, response)
  1607. # @ratelimit(key='ip', rate='5/m')
  1608. def get(self, request, *args, **kwargs):
  1609. request.encoding = 'utf-8'
  1610. request_dict = request.GET
  1611. language = request_dict.get('language', 'en')
  1612. response = ResponseObject(language)
  1613. was_limited = getattr(request, 'limited', False)
  1614. if was_limited is True:
  1615. return response.json(5)
  1616. return self.validates(request_dict, response)
  1617. def validates(self, request_dict, response):
  1618. username = request_dict.get('userName', None)
  1619. password = request_dict.get('userPwd', None)
  1620. subscribe = request_dict.get('subscribe', None)
  1621. if not username or not password:
  1622. return response.json(111)
  1623. username = username.strip()
  1624. password = password.strip()
  1625. print("准备解密")
  1626. # 解密
  1627. try:
  1628. for i in range(1, 4):
  1629. if i == 1:
  1630. # 第一次先解密
  1631. password = base64.b64decode(password)
  1632. password = password.decode('utf-8')
  1633. # 截去第一位,最后一位
  1634. password = password[1:-1]
  1635. if i == 2:
  1636. # 第2次先解密
  1637. password = base64.b64decode(password)
  1638. password = password.decode('utf-8')
  1639. # 去前2位,后2位
  1640. password = password[2:-2]
  1641. if i == 3:
  1642. # 第3次先解密
  1643. password = base64.b64decode(password)
  1644. password = password.decode('utf-8')
  1645. # 去前3位,后3位
  1646. password = password[3:-3]
  1647. except Exception as e:
  1648. return response.json(111)
  1649. else:
  1650. data_valid = DataValid()
  1651. if data_valid.email_validate(username):
  1652. return self.do_email_login(username, password, response, subscribe)
  1653. elif data_valid.mobile_validate(username):
  1654. return self.do_phone_login(username, password, response, subscribe)
  1655. elif data_valid.name_validate(username):
  1656. return self.do_name_login(username, password, response, subscribe)
  1657. else:
  1658. return response.json(107)
  1659. def do_email_login(self, email, password, response, subscribe):
  1660. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  1661. return self.valid_login(user_qs, password, response, subscribe)
  1662. def do_phone_login(self, phone, password, response, subscribe):
  1663. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  1664. return self.valid_login(user_qs, password, response, subscribe)
  1665. def do_name_login(self, username, password, response, subscribe):
  1666. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  1667. is_active=True, user_isValid=True)
  1668. return self.valid_login(user_qs, password, response, subscribe)
  1669. def valid_login(self, user_qs, password, response, subscribe):
  1670. if not user_qs.exists():
  1671. return response.json(104)
  1672. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  1673. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  1674. if subscribe:
  1675. user_qs.update(subscribe_email=subscribe)
  1676. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  1677. 'phone', 'password', 'userIconPath', 'fingerprint_enable', 'fingerprint_key', 'subscribe_email')[0]
  1678. if not check_password(password, users['password']):
  1679. return response.json(111)
  1680. userID = users['userID']
  1681. tko = TokenObject()
  1682. res = tko.generate(
  1683. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  1684. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  1685. auth_type = 0
  1686. if oauth_qs.exists():
  1687. auth_type = oauth_qs[0].authType
  1688. if tko.code == 0:
  1689. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1690. user_qs.update(last_login=now_time, language=response.lang)
  1691. res['rid'] = users['role__rid']
  1692. res['roleName'] = users['role__roleName']
  1693. res['permList'] = ModelService.own_permission(userID)
  1694. res['userID'] = userID
  1695. # 昵称,邮箱,电话,刷新,头像
  1696. userIconPath = str(users['userIconPath'])
  1697. if userIconPath and userIconPath.find('static/') != -1:
  1698. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1699. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1700. else:
  1701. res['userIconUrl'] = ''
  1702. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  1703. res['username'] = users['username'] if users['username'] is not None else ''
  1704. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  1705. res['phone'] = users['phone'] if users['phone'] is not None else ''
  1706. # res['fingerprint_enable'] = users['fingerprint_enable']
  1707. # res['fingerprint_key'] = CommonService.encode_data(content=users['fingerprint_key'], start=2)
  1708. res['authType'] = auth_type
  1709. res['subscribe_email'] = users['subscribe_email'] if users['subscribe_email'] is not None else ''
  1710. return response.json(0, res)
  1711. else:
  1712. return response.json(tko.code)
  1713. # 用户登录后初始化接口
  1714. class InitInfoView(View):
  1715. def get(self, request, *args, **kwargs):
  1716. request.encoding = 'utf-8'
  1717. return self.validation(request.GET, request)
  1718. def post(self, request, *args, **kwargs):
  1719. request.encoding = 'utf-8'
  1720. return self.validation(request.POST, request)
  1721. def validation(self, request_dict, request):
  1722. response = ResponseObject()
  1723. token = request_dict.get('token', None)
  1724. unique = request_dict.get('unique', None)
  1725. tko = TokenObject(token)
  1726. if tko.code == 0:
  1727. userID = tko.userID
  1728. return self.init_info(request_dict, userID, response, request)
  1729. elif unique:
  1730. return self.update_country(request_dict, response, request)
  1731. else:
  1732. return response.json(tko.code)
  1733. # 初始化设备token
  1734. def init_info(self, request_dict, userID, response, request):
  1735. # 未读的系统消息
  1736. token_val = request_dict.get('token_val', None)
  1737. m_code = request_dict.get('m_code', None)
  1738. push_type = request_dict.get('push_type', None)
  1739. appBundleId = request_dict.get('appBundleId', None)
  1740. tz = request_dict.get('tz', '0')
  1741. lang = request_dict.get('lang', '') # 语言区域
  1742. now_time = int(time.time())
  1743. if all([token_val, push_type, appBundleId, userID]):
  1744. push_type = int(push_type)
  1745. if push_type == 0:
  1746. if appBundleId not in APNS_CONFIG.keys():
  1747. return response.json(904)
  1748. elif push_type == 1:
  1749. if appBundleId not in FCM_CONFIG.keys():
  1750. return response.json(904)
  1751. elif push_type == 2:
  1752. if appBundleId not in JPUSH_CONFIG.keys():
  1753. return response.json(904)
  1754. else:
  1755. return response.json(444, 'push_type')
  1756. if m_code:
  1757. # 获取设备推送状态
  1758. update_dict = {
  1759. 'token_val': token_val,
  1760. 'push_type': push_type,
  1761. 'tz': tz,
  1762. }
  1763. # 更新当前用户推送设备状态
  1764. UidPushModel.objects.filter(userID_id=userID, m_code=m_code). \
  1765. update(**update_dict)
  1766. if appBundleId:
  1767. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  1768. user_ex = None
  1769. if user_ex_qs.exists():
  1770. update_dict = {
  1771. 'updTime': now_time,
  1772. 'appBundleId': appBundleId,
  1773. 'region': lang
  1774. }
  1775. user_ex_qs.update(**update_dict)
  1776. user_ex = user_ex_qs[0]
  1777. else:
  1778. create_dict = {
  1779. 'addTime': now_time,
  1780. 'updTime': now_time,
  1781. 'appBundleId': appBundleId,
  1782. 'userID_id': userID,
  1783. 'region': lang
  1784. }
  1785. user_ex = UserExModel.objects.create(**create_dict)
  1786. country_ip_qs = CountryIPModel.objects.filter(user_ex_id=user_ex.id)
  1787. if not country_ip_qs.exists():
  1788. countryIp = CountryIPModel(
  1789. ip=CommonService.get_ip_address(request),
  1790. add_time=now_time,
  1791. user_ex_id=user_ex_qs[0].id
  1792. )
  1793. countryIp.save()
  1794. # 获取设备是否存在有已被删除
  1795. res = {'usmsg': 0} # 预留字段, 有版本app该字段去掉会报错
  1796. return response.json(0, res)
  1797. def update_country(self, request_dict, response, request):
  1798. username = request_dict.get('unique', None)
  1799. appBundleId = request_dict.get('appBundleId', None)
  1800. lang = request_dict.get('lang', '') # 语言区域
  1801. if username and appBundleId:
  1802. user_qs = Device_User.objects.filter(username=username)
  1803. if user_qs.exists():
  1804. user = user_qs[0]
  1805. user_ex_qs = UserExModel.objects.filter(userID_id=user.userID)
  1806. now_time = int(time.time())
  1807. if user_ex_qs.exists():
  1808. update_dict = {
  1809. 'updTime': now_time,
  1810. 'appBundleId': appBundleId,
  1811. 'region': lang
  1812. }
  1813. user_ex_qs.update(**update_dict)
  1814. user_ex = user_ex_qs[0]
  1815. else:
  1816. create_dict = {
  1817. 'addTime': now_time,
  1818. 'updTime': now_time,
  1819. 'appBundleId': appBundleId,
  1820. 'userID_id': user.userID,
  1821. 'region': lang
  1822. }
  1823. user_ex = UserExModel.objects.create(**create_dict)
  1824. country_ip_qs = CountryIPModel.objects.filter(user_ex_id=user_ex.id)
  1825. if not country_ip_qs.exists():
  1826. countryIp = CountryIPModel(
  1827. ip=CommonService.get_ip_address(request),
  1828. add_time=now_time,
  1829. user_ex_id=user_ex_qs[0].id
  1830. )
  1831. countryIp.save()
  1832. return response.json(0)
  1833. else:
  1834. return response.json(104)
  1835. else:
  1836. return response.json(444)
  1837. # 获取验证码
  1838. class verifyAuthcode(TemplateView):
  1839. def post(self, request, *args, **kwargs):
  1840. request.encoding = 'utf-8'
  1841. lang = request.POST.get('lang', None)
  1842. if not lang:
  1843. lang = request.POST.get('language', None)
  1844. response = ResponseObject(lang)
  1845. request_dict = request.POST
  1846. return self.ValidationError(request_dict, response)
  1847. def get(self, request, *args, **kwargs):
  1848. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  1849. request.encoding = 'utf-8'
  1850. lang = request.GET.get('lang', None)
  1851. if not lang:
  1852. lang = request.GET.get('language', None)
  1853. response = ResponseObject(lang)
  1854. request_dict = request.GET
  1855. return self.ValidationError(request_dict, response)
  1856. def ValidationError(self, request_dict, response):
  1857. email = request_dict.get('email', None)
  1858. phone = request_dict.get('phone', None)
  1859. authcode = request_dict.get('authcode', None)
  1860. if email is not None:
  1861. email = email.strip()
  1862. return self.email_validate(email, authcode, response)
  1863. elif phone is not None:
  1864. phone = phone.strip()
  1865. return self.phone_validate(phone, authcode, response)
  1866. else:
  1867. return response.json(444)
  1868. def email_validate(self, email, authcode, response):
  1869. data_valid = DataValid()
  1870. if data_valid.email_validate(email) is not True:
  1871. return response.json(105)
  1872. reds = RedisObject()
  1873. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1874. if resetCode is False:
  1875. return response.json(120)
  1876. if authcode != resetCode:
  1877. return response.json(121)
  1878. return response.json(0)
  1879. def phone_validate(self, phone, authcode, response):
  1880. data_valid = DataValid()
  1881. if data_valid.mobile_validate(phone) is not True:
  1882. return response.json(100)
  1883. reds = RedisObject()
  1884. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  1885. if resetCode is False:
  1886. return response.json(120)
  1887. print(resetCode)
  1888. if authcode != resetCode:
  1889. return response.json(121)
  1890. return response.json(0)
  1891. # 微信登录
  1892. class wxAuthSignView(TemplateView):
  1893. def post(self, request, *args, **kwargs):
  1894. request.encoding = 'utf-8'
  1895. lang = request.POST.get('lang', None)
  1896. response = ResponseObject(lang)
  1897. request_dict = request.POST
  1898. return self.ValidationError(request_dict, response)
  1899. def get(self, request, *args, **kwargs):
  1900. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  1901. request.encoding = 'utf-8'
  1902. lang = request.GET.get('lang', None)
  1903. response = ResponseObject(lang)
  1904. request_dict = request.GET
  1905. # return self.do_register('157113010663213800138000', '157113010663213800138000', response, 'xx')
  1906. return self.ValidationError(request_dict, response)
  1907. def ValidationError(self, request_dict, response):
  1908. grant_code = request_dict.get('grant_code', None) # 微信授权code
  1909. appBundleID = request_dict.get('appBundleID', None) # 包名
  1910. print('grant_code')
  1911. print(grant_code)
  1912. print('appBundleID')
  1913. print(appBundleID)
  1914. if all([grant_code, appBundleID]):
  1915. app_config = {
  1916. 'com.ansjer.loocamccloud': {'appid': 'wx9f6d6ce63f85b367',
  1917. 'secret': 'fe495884cd24637f1ae516c7f53d1b97', },
  1918. 'com.ansjer.zccloud': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  1919. 'com.ansjer.customizede': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  1920. # ios
  1921. 'com.ansjer.zccloud_ab': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  1922. # android
  1923. }
  1924. if appBundleID in app_config.keys():
  1925. appid = app_config[appBundleID]['appid']
  1926. secret = app_config[appBundleID]['secret']
  1927. # 获取access_token请求
  1928. at_url = 'https://api.weixin.qq.com/sns/oauth2/access_token?appid={appid}&secret={secret}&code={code}&grant_type=authorization_code'.format(
  1929. appid=appid, secret=secret, code=grant_code)
  1930. res_req = requests.get(url=at_url)
  1931. res_json = res_req.json()
  1932. print(res_json)
  1933. if 'access_token' not in res_json.keys():
  1934. # 授权过期
  1935. return response.json(717)
  1936. access_token = res_json['access_token']
  1937. openid = res_json['openid']
  1938. if access_token and openid:
  1939. info_url = 'https://api.weixin.qq.com/sns/userinfo?access_token={access_token}&openid={openid}'.format(
  1940. access_token=access_token, openid=openid)
  1941. res_req = requests.get(url=info_url)
  1942. res_req.encoding = res_req.apparent_encoding
  1943. res_json = res_req.json()
  1944. print(res_json)
  1945. unionID = res_json['unionid']
  1946. user_extend_qs = UserOauth2Model.objects.filter(unionID=unionID, authType=1)
  1947. if user_extend_qs.exists():
  1948. # 如果用户绑定过则直接登录
  1949. userID = user_extend_qs[0].userID_id
  1950. print(userID)
  1951. user_qs = Device_User.objects.filter(userID=userID)
  1952. return self.do_login(user_qs, response)
  1953. else:
  1954. # 如果用户为绑定过则创建用户并进行登录返回token
  1955. userID = CommonService.getUserID(getUser=False)
  1956. nickname = res_json['nickname'] + '_' + CommonService.RandomStr(4)
  1957. return self.do_register(userID, nickname, response, appBundleID, unionID)
  1958. else:
  1959. return response.json(414, 'access_token,openid')
  1960. else:
  1961. return response.json(414, 'appBundleID is wrong!')
  1962. else:
  1963. return response.json(414)
  1964. # if wxcode
  1965. # 登录
  1966. def do_login(self, user_qs, response):
  1967. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1968. userID = user_qs[0].userID
  1969. print('userID' + userID)
  1970. tko = TokenObject()
  1971. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1972. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1973. # 增加角色
  1974. user_qs[0].role.add(Role.objects.get(rid=1))
  1975. role_dict = ModelService.own_role(userID=userID)
  1976. res['rid'] = role_dict['rid']
  1977. res['roleName'] = role_dict['roleName']
  1978. res['permList'] = ModelService.own_permission(userID)
  1979. res['userID'] = userID
  1980. # 昵称,邮箱,电话,刷新,头像
  1981. userIconPath = str(user_list[0]["userIconPath"])
  1982. if userIconPath and userIconPath.find('static/') != -1:
  1983. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1984. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1985. else:
  1986. res['userIconUrl'] = ''
  1987. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1988. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1989. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1990. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1991. print(res)
  1992. # 添加用户登录类型
  1993. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  1994. auth_type = 0
  1995. if oauth_qs.exists():
  1996. auth_type = oauth_qs[0].authType
  1997. res['authType'] = auth_type
  1998. user_qs.update(last_login=now_time, online=True)
  1999. return response.json(0, res)
  2000. def do_register(self, userID, nickname, response, appBundleId, unionID):
  2001. data_valid = DataValid()
  2002. if data_valid.name_validate(userID) is not True:
  2003. return response.json(105)
  2004. try:
  2005. users = Device_User.objects.create(
  2006. username=userID,
  2007. NickName=nickname,
  2008. password=make_password('123456'),
  2009. userID=userID,
  2010. is_active=True,
  2011. user_isValid=True,
  2012. )
  2013. nowTime = int(time.time())
  2014. UserOauth2Model.objects.create(
  2015. addTime=nowTime,
  2016. updTime=nowTime,
  2017. userID_id=users.userID,
  2018. authType=1,
  2019. unionID=unionID
  2020. )
  2021. except Exception as e:
  2022. errorInfo = traceback.format_exc()
  2023. print(errorInfo)
  2024. return response.json(424, repr(e))
  2025. else:
  2026. user_qs = Device_User.objects.filter(Q(userID=userID))
  2027. print('---')
  2028. print(user_qs)
  2029. return self.do_login(user_qs, response)
  2030. # 获取验证码
  2031. class wxPerfectView(TemplateView):
  2032. def post(self, request, *args, **kwargs):
  2033. request.encoding = 'utf-8'
  2034. lang = request.POST.get('lang', None)
  2035. response = ResponseObject(lang)
  2036. request_dict = request.POST
  2037. return self.ValidationError(request_dict, response)
  2038. def get(self, request, *args, **kwargs):
  2039. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2040. request.encoding = 'utf-8'
  2041. lang = request.GET.get('lang', None)
  2042. response = ResponseObject(lang)
  2043. request_dict = request.GET
  2044. # return self.do_register('157113010663213800138000', '157113010663213800138000', response, 'xx')
  2045. return self.ValidationError(request_dict, response)
  2046. def ValidationError(self, request_dict, response):
  2047. grant_code = request_dict.get('grant_code', None) # 微信授权code
  2048. appBundleID = request_dict.get('appBundleID', None) # 包名
  2049. token = request_dict.get('token', None) # 包名
  2050. if all([grant_code, appBundleID, token]):
  2051. tko = TokenObject(token)
  2052. if tko.code == 0:
  2053. userID = tko.userID
  2054. app_config = {
  2055. # ios
  2056. 'com.ansjer.loocamccloud': {'appid': 'wx9f6d6ce63f85b367',
  2057. 'secret': 'fe495884cd24637f1ae516c7f53d1b97', },
  2058. 'com.ansjer.zccloud': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2059. 'com.ansjer.customizede': {'appid': 'wx2a9f5ef9baf2760f',
  2060. 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2061. # android
  2062. 'com.ansjer.zccloud_ab': {'appid': 'wx2a9f5ef9baf2760f',
  2063. 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2064. }
  2065. if appBundleID in app_config.keys():
  2066. appid = app_config[appBundleID]['appid']
  2067. secret = app_config[appBundleID]['secret']
  2068. # 获取access_token请求
  2069. at_url = 'https://api.weixin.qq.com/sns/oauth2/access_token?appid={appid}&secret={secret}&code={code}&grant_type=authorization_code'.format(
  2070. appid=appid, secret=secret, code=grant_code)
  2071. res_req = requests.get(url=at_url)
  2072. res_json = res_req.json()
  2073. print(res_json)
  2074. if 'access_token' not in res_json.keys():
  2075. # 授权过期
  2076. return response.json(717)
  2077. access_token = res_json['access_token']
  2078. openid = res_json['openid']
  2079. if access_token and openid:
  2080. info_url = 'https://api.weixin.qq.com/sns/userinfo?access_token={access_token}&openid={openid}'.format(
  2081. access_token=access_token, openid=openid)
  2082. res_req = requests.get(url=info_url)
  2083. res_req.encoding = res_req.apparent_encoding
  2084. res_json = res_req.json()
  2085. print(res_json)
  2086. unionID = res_json['unionid']
  2087. user_has_bind = UserOauth2Model.objects.filter(unionID=unionID)
  2088. if not user_has_bind.exists():
  2089. user_oauth2_qs = UserOauth2Model.objects. \
  2090. filter(userID_id=userID, authType=1)
  2091. if user_oauth2_qs.exists():
  2092. user_oauth2_qs.update(unionID=unionID)
  2093. return response.json(0)
  2094. else:
  2095. try:
  2096. nowTime = int(time.time())
  2097. UserOauth2Model.objects.create(
  2098. addTime=nowTime,
  2099. updTime=nowTime,
  2100. userID_id=userID,
  2101. authType=1,
  2102. unionID=unionID)
  2103. except Exception as e:
  2104. return response.json(424, repr(e))
  2105. else:
  2106. return response.json(0)
  2107. else:
  2108. return response.json(16)
  2109. else:
  2110. return response.json(414, 'access_token,openid')
  2111. else:
  2112. return response.json(414, 'appBundleID is wrong!')
  2113. else:
  2114. return response.json(tko.code)
  2115. else:
  2116. return response.json(414)
  2117. # 获取验证码
  2118. class OauthAuthCodeView(TemplateView):
  2119. @method_decorator(csrf_exempt)
  2120. def dispatch(self, *args, **kwargs):
  2121. return super(OauthAuthCodeView, self).dispatch(*args, **kwargs)
  2122. @ratelimit(key='ip', rate='2/m')
  2123. def post(self, request, *args, **kwargs):
  2124. request.encoding = 'utf-8'
  2125. lang = request.POST.get('lang', None)
  2126. if not lang:
  2127. lang = request.POST.get('language', None)
  2128. response = ResponseObject(lang)
  2129. request_dict = request.POST
  2130. phone = request_dict.get('phone', None)
  2131. if phone is not None:
  2132. was_limited = getattr(request, 'limited', False)
  2133. if was_limited is True:
  2134. return response.json(5)
  2135. return self.ValidationError(request_dict, response)
  2136. @ratelimit(key='ip', rate='2/m')
  2137. def get(self, request, *args, **kwargs):
  2138. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2139. request.encoding = 'utf-8'
  2140. lang = request.GET.get('lang', None)
  2141. if not lang:
  2142. lang = request.GET.get('language', None)
  2143. response = ResponseObject(lang)
  2144. was_limited = getattr(request, 'limited', False)
  2145. if was_limited is True:
  2146. return response.json(5)
  2147. request_dict = request.GET
  2148. return self.ValidationError(request_dict, response)
  2149. def ValidationError(self, request_dict, response):
  2150. email = request_dict.get('email', None)
  2151. phone = request_dict.get('phone', None)
  2152. country_code = request_dict.get('country_code', None)
  2153. sign_name = request_dict.get('sign_name', None)
  2154. token = request_dict.get('token', None)
  2155. print(token)
  2156. if email is not None:
  2157. email = email.strip()
  2158. # 阿里云的发送邮箱的调用方法
  2159. return self.aliyun_emailCode(email, response)
  2160. # return self.emailCode(email, response)
  2161. elif phone is not None:
  2162. phone = phone.strip()
  2163. if country_code is None:
  2164. return self.phoneCode(phone, response, sign_name)
  2165. else:
  2166. country_code = str(country_code.strip())
  2167. return self.phoneCodeV2(country_code, phone, response, sign_name)
  2168. else:
  2169. return response.json(444)
  2170. def emailCode(self, email, response):
  2171. dataValid = DataValid()
  2172. # 邮箱匹配
  2173. if dataValid.email_validate(email) is False:
  2174. return response.json(107)
  2175. reds = RedisObject()
  2176. identifyingCode = reds.get_data(key=email + '_OauthPerfect')
  2177. # 是否以获取邮箱验证码
  2178. if identifyingCode:
  2179. return response.json(89)
  2180. user_qs = Device_User.objects.filter(username=email)
  2181. email_qs = Device_User.objects.filter(userEmail=email)
  2182. # 邮箱用户是否已存在
  2183. if user_qs.exists():
  2184. return response.json(103)
  2185. elif email_qs.exists():
  2186. return response.json(103)
  2187. # 生成随机6位数
  2188. identifyingCode = RandomStr(6, True)
  2189. # 设置随机数缓存生命周期
  2190. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  2191. ses = SesClassObject()
  2192. # 发送邮件
  2193. send_res = ses.send_email(
  2194. send_address_list=[email],
  2195. subject=send_data['title'],
  2196. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  2197. str(identifyingCode))
  2198. )
  2199. if send_res is not True:
  2200. return response.json(44)
  2201. if reds.set_data(key=email + '_OauthPerfect', val=identifyingCode, expire=600) is not True:
  2202. return response.json(10, 'error')
  2203. return response.json(0)
  2204. # return response.json(0, {'identifyingCode': identifyingCode})
  2205. # 阿里云获取邮箱验证码
  2206. def aliyun_emailCode(self, email, response):
  2207. print('阿里云开始')
  2208. dataValid = DataValid()
  2209. # 邮箱匹配
  2210. if dataValid.email_validate(email) is False:
  2211. return response.json(107)
  2212. reds = RedisObject()
  2213. identifyingCode = reds.get_data(key=email + '_OauthPerfect')
  2214. # 是否以获取邮箱验证码
  2215. if identifyingCode:
  2216. return response.json(89)
  2217. user_qs = Device_User.objects.filter(username=email)
  2218. email_qs = Device_User.objects.filter(userEmail=email)
  2219. # 邮箱用户是否已存在
  2220. if user_qs.exists():
  2221. return response.json(103)
  2222. elif email_qs.exists():
  2223. return response.json(103)
  2224. # 生成随机6位数
  2225. identifyingCode = RandomStr(6, True)
  2226. # 设置随机数缓存生命周期
  2227. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  2228. ses = SesClassObject()
  2229. # 发送邮件
  2230. send_res = ses.alyEmailCode(
  2231. send_address_list=[email],
  2232. subject=send_data['title'],
  2233. body=send_data['body'].replace("{username}", email).replace("{captcha}", str(identifyingCode))
  2234. )
  2235. if send_res is not True:
  2236. return response.json(44)
  2237. if reds.set_data(key=email + '_OauthPerfect', val=identifyingCode, expire=600) is not True:
  2238. return response.json(10, 'error')
  2239. return response.json(0)
  2240. def phoneCode(self, phone, response, sign_name):
  2241. dataValid = DataValid()
  2242. if dataValid.mobile_validate(phone) is not True:
  2243. return response.json(107)
  2244. reds = RedisObject()
  2245. reds_key = str(phone) + '_OauthPerfect'
  2246. identifyingCode = reds.get_data(key=reds_key)
  2247. reds_key_ttl = reds.get_ttl(key=reds_key)
  2248. if reds_key_ttl > 240 and identifyingCode:
  2249. # if identifyingCode :
  2250. return response.json(90)
  2251. user_qs = Device_User.objects.filter(username=phone)
  2252. phone_qs = Device_User.objects.filter(phone=phone)
  2253. if user_qs.exists() or phone_qs.exists():
  2254. return response.json(101)
  2255. identifyingCode = RandomStr(6, True)
  2256. # 发送手机验证码
  2257. aliSms = AliSmsObject()
  2258. if sign_name == 'zosi':
  2259. sign_ms = '周视'
  2260. else:
  2261. sign_ms = 'Ansjer'
  2262. res = aliSms.send_code_sms(phone=phone, code=identifyingCode, sign_name=sign_ms,
  2263. temp_msg='SMS_151600991')
  2264. print(res)
  2265. if res["Code"] == "OK":
  2266. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  2267. # if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=60) is not True:
  2268. return response.json(10, '生成缓存系统错误')
  2269. return response.json(0)
  2270. else:
  2271. return response.json(10, res["Message"])
  2272. def phoneCodeV2(self, country_code, phone, response, sign_name):
  2273. dataValid = DataValid()
  2274. if dataValid.mobile_validate(phone) is not True:
  2275. return response.json(107)
  2276. reds = RedisObject()
  2277. reds_key = str(phone) + '_OauthPerfect'
  2278. identifyingCode = reds.get_data(key=reds_key)
  2279. reds_key_ttl = reds.get_ttl(key=reds_key)
  2280. if reds_key_ttl > 240 and identifyingCode:
  2281. # if identifyingCode :
  2282. return response.json(90)
  2283. user_qs = Device_User.objects.filter(username=phone)
  2284. phone_qs = Device_User.objects.filter(phone=phone)
  2285. if user_qs.exists() or phone_qs.exists():
  2286. return response.json(101)
  2287. identifyingCode = RandomStr(6, True)
  2288. # 短信签名
  2289. # sign_name_dict = {
  2290. # 'ansjer':'Ansjer',
  2291. # 'zosi':'周视'
  2292. # }
  2293. sign_ms = ''
  2294. if country_code == '86':
  2295. # 国内短信推送模板
  2296. temp_msg = 'SMS_151600991'
  2297. rec_phone = phone
  2298. if sign_name == 'zosi':
  2299. sign_ms = '周视'
  2300. else:
  2301. sign_ms = 'Ansjer'
  2302. else:
  2303. # 国际短信推送模板
  2304. temp_msg = 'SMS_172165867'
  2305. rec_phone = country_code + phone
  2306. sign_ms = 'Ansjer'
  2307. # 发送手机验证码
  2308. aliSms = AliSmsObject()
  2309. res = aliSms.send_code_sms(phone=rec_phone, code=identifyingCode, sign_name=sign_ms,
  2310. temp_msg=temp_msg)
  2311. print(res)
  2312. if res["Code"] == "OK":
  2313. # if reds.set_data(key=reds_key, val=identifyingCode, expire=60) is not True:
  2314. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  2315. return response.json(10, '生成缓存系统错误')
  2316. return response.json(0)
  2317. else:
  2318. return response.json(10, res["Message"])
  2319. class OauthPerfectView(TemplateView):
  2320. @method_decorator(csrf_exempt)
  2321. def dispatch(self, *args, **kwargs):
  2322. return super(OauthPerfectView, self).dispatch(*args, **kwargs)
  2323. def get(self, request, *args, **kwargs):
  2324. request.encoding = 'utf-8'
  2325. request_dict = request.GET
  2326. lang = request_dict.get('lang')
  2327. if not lang:
  2328. lang = request_dict.get('language', None)
  2329. response = ResponseObject(lang)
  2330. was_limited = getattr(request, 'limited', False)
  2331. if was_limited is True:
  2332. return response.json(5)
  2333. return self.ValidationError(request_dict, response)
  2334. def post(self, request):
  2335. request.encoding = 'utf-8'
  2336. request_dict = request.POST
  2337. lang = request_dict.get('lang')
  2338. if not lang:
  2339. lang = request_dict.get('language', None)
  2340. response = ResponseObject(lang)
  2341. was_limited = getattr(request, 'limited', False)
  2342. if was_limited is True:
  2343. return response.json(5)
  2344. return self.ValidationError(request_dict, response)
  2345. def ValidationError(self, request_dict, response):
  2346. phone = request_dict.get('phone', None)
  2347. email = request_dict.get('email', None)
  2348. password = request_dict.get('password', None)
  2349. authcode = request_dict.get('authcode', None)
  2350. token = request_dict.get('token', None)
  2351. token = request_dict.get('token')
  2352. tko = TokenObject(token)
  2353. if password is None or authcode is None:
  2354. return response.json(444, 'password,authcode')
  2355. authcode = CommonService.decode_data(authcode.strip())
  2356. if authcode is None:
  2357. return response.json(444, 'password,authcode')
  2358. password = CommonService.decode_data(password.strip())
  2359. if password is None:
  2360. return response.json(444, 'password,authcode')
  2361. if phone is not None:
  2362. phone = phone.strip()
  2363. return self.do_phone(tko, phone, authcode, password, response)
  2364. elif email is not None:
  2365. email = email.strip()
  2366. return self.do_email(tko, email, authcode, password, response)
  2367. else:
  2368. return response.json(444, 'phone')
  2369. def do_email(self, tko, email, authcode, password, response):
  2370. data_valid = DataValid()
  2371. if data_valid.email_validate(email) is not True:
  2372. return response.json(105)
  2373. if data_valid.password_validate(password) is not True:
  2374. return response.json(109)
  2375. if tko.code == 0:
  2376. user_qs = Device_User.objects.filter(userID=tko.userID)
  2377. else:
  2378. return response.json(tko.code)
  2379. if not user_qs.exists():
  2380. return response.json(104)
  2381. reds = RedisObject()
  2382. resetCode = reds.get_data(key=email + '_OauthPerfect')
  2383. if resetCode is False:
  2384. return response.json(90)
  2385. if authcode != resetCode:
  2386. return response.json(121)
  2387. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  2388. # return response.json(10, '生成缓存错误')
  2389. user_qs.update(userEmail=email, password=make_password(password))
  2390. if not reds.del_data(email + '_OauthPerfect'):
  2391. return response.json(10, '删除缓存失败')
  2392. return response.json(0)
  2393. def do_phone(self, tko, phone, authcode, password, response):
  2394. data_valid = DataValid()
  2395. if data_valid.mobile_validate(phone) is not True:
  2396. return response.json(100)
  2397. if data_valid.password_validate(password) is not True:
  2398. return response.json(109)
  2399. if tko.code == 0:
  2400. user_qs = Device_User.objects.filter(userID=tko.userID)
  2401. else:
  2402. return response.json(tko.code)
  2403. if not user_qs.exists():
  2404. return response.json(102)
  2405. reds = RedisObject()
  2406. resetCode = reds.get_data(key=str(phone) + '_OauthPerfect')
  2407. print(resetCode)
  2408. if resetCode is False:
  2409. return response.json(90)
  2410. if authcode != resetCode:
  2411. return response.json(121)
  2412. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  2413. # return response.json(10, '生成缓存错误')
  2414. user_qs.update(phone=phone, password=make_password(password))
  2415. if not reds.del_data(str(phone) + '_OauthPerfect'):
  2416. return response.json(10, '删除缓存失败')
  2417. return response.json(0)
  2418. class UnbundingWXView(TemplateView):
  2419. def get(self, request, *args, **kwargs):
  2420. request.encoding = 'utf-8'
  2421. request_dict = request.GET
  2422. lang = request_dict.get('lang')
  2423. if not lang:
  2424. lang = request_dict.get('language', None)
  2425. response = ResponseObject(lang)
  2426. return self.ValidationError(request_dict, response)
  2427. def post(self, request, *args, **kwargs):
  2428. request.encoding = 'utf-8'
  2429. request_dict = request.POST
  2430. lang = request_dict.get('lang')
  2431. if not lang:
  2432. lang = request_dict.get('language', None)
  2433. response = ResponseObject(lang)
  2434. return self.ValidationError(request_dict, response)
  2435. def ValidationError(self, request_dict, response):
  2436. token = request_dict.get('token', None)
  2437. auth_type = request_dict.get('auth_type', None)
  2438. if not all([token, auth_type]):
  2439. return response.json(444, 'token,auth_type')
  2440. tko = TokenObject(token)
  2441. if tko.code == 0:
  2442. userID = tko.userID
  2443. user_oauth2_qs = UserOauth2Model.objects.filter(
  2444. ~Q(unionID='') & Q(userID_id=userID) & Q(authType=auth_type))
  2445. if user_oauth2_qs.exists():
  2446. user_qs = Device_User.objects.filter(phone='', userEmail='', userID=userID)
  2447. if user_qs.exists():
  2448. return response.json(17)
  2449. else:
  2450. user_oauth2_qs.delete()
  2451. return response.json(0)
  2452. else:
  2453. return response.json(173)
  2454. else:
  2455. return response.json(tko.code)
  2456. class alexaAuthView(TemplateView):
  2457. def post(self, request, *args, **kwargs):
  2458. request.encoding = 'utf-8'
  2459. # request_dict = json.loads(request.body.decode('utf-8'))
  2460. request_dict = request.POST
  2461. response = ResponseObject()
  2462. return self.validates(request_dict, response)
  2463. def get(self, request, *args, **kwargs):
  2464. request.encoding = 'utf-8'
  2465. request_dict = request.GET
  2466. response = ResponseObject()
  2467. return self.validates(request_dict, response)
  2468. def validates(self, request_dict, response):
  2469. username = request_dict.get('userName', None)
  2470. password = request_dict.get('userPwd', None)
  2471. if not username or not password:
  2472. return response.json(111)
  2473. username = username.strip()
  2474. password = password.strip()
  2475. data_valid = DataValid()
  2476. if data_valid.email_validate(username):
  2477. return self.do_email_login(username, password, response)
  2478. elif data_valid.mobile_validate(username):
  2479. return self.do_phone_login(username, password, response)
  2480. elif data_valid.name_validate(username):
  2481. return self.do_name_login(username, password, response)
  2482. else:
  2483. return response.json(107)
  2484. def do_email_login(self, email, password, response):
  2485. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  2486. return self.valid_login(user_qs, password, response)
  2487. def do_phone_login(self, phone, password, response):
  2488. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  2489. return self.valid_login(user_qs, password, response)
  2490. def do_name_login(self, username, password, response):
  2491. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  2492. is_active=True, user_isValid=True)
  2493. return self.valid_login(user_qs, password, response)
  2494. def valid_login(self, user_qs, password, response):
  2495. if not user_qs.exists():
  2496. return response.json(104)
  2497. users = user_qs.values('userID', 'password')[0]
  2498. if not check_password(password, users['password']):
  2499. return response.json(111)
  2500. userID = users['userID']
  2501. # uid_qs = Device_Info.objects.filter(userID_id=userID, isExist=1).values('UID', 'NickName', 'View_Password')
  2502. # uid_arr = []
  2503. # for uid_q in uid_qs:
  2504. # uid_arr.append({'uid': uid_q['UID'], 'nick': uid_q['NickName'], 'password': uid_q['View_Password']})
  2505. res = {
  2506. 'userID': userID,
  2507. # 'uid_arr': uid_arr
  2508. }
  2509. return response.json(0, res)
  2510. # return response.json(0, res)
  2511. class alexaUidView(TemplateView):
  2512. def post(self, request, *args, **kwargs):
  2513. request.encoding = 'utf-8'
  2514. # request_dict = json.loads(request.body.decode('utf-8'))
  2515. request_dict = request.POST
  2516. response = ResponseObject()
  2517. return self.validates(request_dict, response)
  2518. def get(self, request, *args, **kwargs):
  2519. request.encoding = 'utf-8'
  2520. request_dict = request.GET
  2521. response = ResponseObject()
  2522. return self.validates(request_dict, response)
  2523. def validates1(self, request_dict, response):
  2524. userID = request_dict.get('alexa_user_id')
  2525. sid = request_dict.get('sid')
  2526. sst = request_dict.get('sst')
  2527. if sid == 'admin' and sst == 'admin':
  2528. uid_qs = Device_Info.objects.filter(userID_id=userID, isExist=1).values('UID', 'NickName', 'View_Password')
  2529. uid_arr = []
  2530. uid_list = []
  2531. for uid_q in uid_qs:
  2532. uid_list.append(uid_q['UID'])
  2533. uid_arr.append({'uid': uid_q['UID'], 'nick': uid_q['NickName'], 'password': uid_q['View_Password'], })
  2534. res = {
  2535. 'uid_arr': uid_arr
  2536. }
  2537. return response.json(0, res)
  2538. else:
  2539. return response.json(107)
  2540. def validates(self, request_dict, response):
  2541. userID = request_dict.get('alexa_user_id')
  2542. sid = request_dict.get('sid')
  2543. sst = request_dict.get('sst')
  2544. if sid == 'admin' and sst == 'admin':
  2545. uid_qs = Device_Info.objects.filter(userID_id=userID, isExist=1).values('UID', 'NickName', 'View_Password')
  2546. uid_dict = {}
  2547. uid_list = []
  2548. for uid_q in uid_qs:
  2549. # 追加
  2550. uid_list.append(uid_q['UID'])
  2551. # 给uid_q['UID']赋值
  2552. uid_dict[uid_q['UID']] = {'nick': uid_q['NickName'], 'password': uid_q['View_Password']}
  2553. us_qs = UidSetModel.objects.filter(uid__in=uid_list, is_alexa=1).values('uid', 'region_alexa')
  2554. # uid,password,region的列表
  2555. uid_arr = []
  2556. for us in us_qs:
  2557. uid = us['uid']
  2558. # 设备alexa区域
  2559. region_alexa = us['region_alexa']
  2560. if region_alexa == '':
  2561. region_alexa = "en"
  2562. # uid_arr.append({'uid': uid, 'nick': uid_dict[uid]['nick'], 'password': uid_dict['uid']['password']})
  2563. uid_arr.append({'uid': uid, 'nick': uid_dict[uid]['nick'], 'password': uid_dict[uid]['password'],
  2564. 'region': region_alexa})
  2565. res = {
  2566. 'uid_arr': uid_arr
  2567. }
  2568. return response.json(0, res)
  2569. else:
  2570. return response.json(107)
  2571. # 登出
  2572. class V2LogoutView(TemplateView):
  2573. @method_decorator(csrf_exempt)
  2574. def dispatch(self, *args, **kwargs):
  2575. return super(V2LogoutView, self).dispatch(*args, **kwargs)
  2576. def post(self, request, *args, **kwargs):
  2577. request.encoding = 'utf-8'
  2578. request_dict = request.POST
  2579. return self.Logout(request_dict)
  2580. def get(self, request, *args, **kwargs):
  2581. request.encoding = 'utf-8'
  2582. request_dict = request.GET
  2583. return self.Logout(request_dict)
  2584. def Logout(self, request_dict):
  2585. response = ResponseObject()
  2586. token = request_dict.get('token')
  2587. tko = TokenObject(token)
  2588. userID = tko.userID
  2589. if tko.code == 0:
  2590. Device_User.objects.filter(userID=tko.userID).update(online=False)
  2591. redisObj = RedisObject(db=3)
  2592. redisObj.del_data(key=tko.userID)
  2593. m_code = request_dict.get('m_code', None)
  2594. if m_code:
  2595. try:
  2596. UidPushModel.objects.filter(userID_id=userID, m_code=m_code).delete()
  2597. except Exception as e:
  2598. pass
  2599. else:
  2600. pass
  2601. os_type = request_dict.get('os_type', None)
  2602. appid = request_dict.get('appid', None)
  2603. udid = request_dict.get('udid', None)
  2604. if os_type and appid and udid:
  2605. tutk_push_url = "{tutk_push_domain}?cmd=mapsync&os={os_type}&appid={appid}&udid={udid}". \
  2606. format(os_type=os_type, appid=appid, udid=udid, tutk_push_domain=TUTK_PUSH_DOMAIN)
  2607. res = requests.get(url=tutk_push_url)
  2608. res_s = res.text
  2609. res_s = res_s.rstrip()
  2610. if res_s == '200 Success.':
  2611. return response.json(0)
  2612. else:
  2613. return response.json(10, 'not yes')
  2614. return response.json(0)
  2615. else:
  2616. return response.json(tko.code)
  2617. # 图片验证码生成
  2618. class generatePictureCodeView(TemplateView):
  2619. @method_decorator(csrf_exempt)
  2620. def dispatch(self, *args, **kwargs):
  2621. return super(generatePictureCodeView, self).dispatch(*args, **kwargs)
  2622. def post(self, request, *args, **kwargs):
  2623. request.encoding = 'utf-8'
  2624. request_dict = request.POST
  2625. return self.validates(request_dict)
  2626. def get(self, request, *args, **kwargs):
  2627. request.encoding = 'utf-8'
  2628. request_dict = request.GET
  2629. return self.validates(request_dict)
  2630. # 生成验证码和验证码图片
  2631. def get_valid_code_img(self, request_dict):
  2632. # ---------生成背景图片-----------
  2633. # img = Image.new('RGB', (260, 34), color=get_random_color())
  2634. img = Image.new('RGB', (260, 34),
  2635. color=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  2636. # -------/生成背景图片-----------
  2637. # --------生成随机验证码,设置字体格式,大小等属性------------
  2638. draw = ImageDraw.Draw(img)
  2639. path = BASE_DIR + '/Ansjer/file/font/simhei.ttf'
  2640. kumo_font = ImageFont.truetype(path, 40, encoding="unic") # 设置字体
  2641. print("字体可以")
  2642. valid_code_str = ''
  2643. for i in range(6):
  2644. random_num = str(random.randint(0, 9))
  2645. random_low_alpha = chr(random.randint(97, 122))
  2646. random_high_alpha = chr(random.randint(65, 90))
  2647. random_char = random.choice([random_num, random_low_alpha, random_high_alpha])
  2648. draw.text((i * 40 + 20, -3), random_char, 'white', kumo_font)
  2649. # 保存验证码字符串
  2650. valid_code_str += random_char
  2651. print(valid_code_str)
  2652. # --------/生成随机验证码,设置字体格式,大小等属性------------
  2653. # -------增加干扰线,点----------
  2654. # 噪点噪线
  2655. width = 260
  2656. height = 34
  2657. for i in range(10):
  2658. x1 = random.randint(0, width)
  2659. x2 = random.randint(0, width)
  2660. y1 = random.randint(0, height)
  2661. y2 = random.randint(0, height)
  2662. draw.line((x1, y1, x2, y2), fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  2663. for i in range(10):
  2664. draw.point([random.randint(0, width), random.randint(0, height)],
  2665. fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  2666. x = random.randint(0, width)
  2667. y = random.randint(0, height)
  2668. draw.arc((x, y, x + 4, y + 4), 0, 90,
  2669. fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  2670. # -------/增加干扰线,点-----------
  2671. # ------存入内存---------
  2672. f = BytesIO() # 用完之后,BytesIO会自动清掉
  2673. img.save(f, 'png')
  2674. data = f.getvalue()
  2675. return data, valid_code_str
  2676. # 生成验证码方法
  2677. def validates(self, request_dict):
  2678. # 页面传过来的uuid
  2679. imageCodeId = request_dict.get('imageCodeId', '')
  2680. response = ResponseObject()
  2681. if not imageCodeId:
  2682. return response.json(444)
  2683. # 存入redis的key
  2684. image_code_id = "image_code_%s" % imageCodeId
  2685. """
  2686. 基于PIL模块动态生成响应状态码图片
  2687. :param request:
  2688. :return:
  2689. """
  2690. # 图片data,验证码
  2691. data, valid_code_str = self.get_valid_code_img(request_dict)
  2692. if imageCodeId:
  2693. redisObj = RedisObject(db=6)
  2694. # 单条维护
  2695. redisObj.set_data(key=image_code_id, val=valid_code_str, expire=120)
  2696. image_code_val = redisObj.get_data(key=image_code_id)
  2697. print("________获取验证码的值" + image_code_val)
  2698. return HttpResponse(data)
  2699. # 图片验证码校验注册
  2700. class Image_Code_RegisterView(TemplateView):
  2701. @method_decorator(csrf_exempt)
  2702. def dispatch(self, *args, **kwargs):
  2703. return super(Image_Code_RegisterView, self).dispatch(*args, **kwargs)
  2704. def post(self, request, *args, **kwargs):
  2705. request.encoding = 'utf-8'
  2706. request_dict = request.POST
  2707. return self.validates(request_dict)
  2708. def get(self, request, *args, **kwargs):
  2709. request.encoding = 'utf-8'
  2710. request_dict = request.GET
  2711. return self.validates(request_dict)
  2712. # 检测验证码,并注册
  2713. def validates(self, request_dict):
  2714. print("__________request_dict:%s" % request_dict)
  2715. userEmail = request_dict.get('userEmail', None)
  2716. password = request_dict.get('userPwd', None)
  2717. lang = request_dict.get('lang', None)
  2718. # 前端传进来的uuid
  2719. imageCodeId = request_dict.get('imageCodeId', None)
  2720. # 页面输入的验证码
  2721. response = ResponseObject(lang)
  2722. valid_code = request_dict.get('id_v_code', None)
  2723. unique = request_dict.get('unique', None)
  2724. number = request_dict.get('number', None)
  2725. if unique:
  2726. delete_local_account(unique)
  2727. if not all([userEmail, password, lang, imageCodeId, valid_code]):
  2728. return response.json(444)
  2729. try:
  2730. for i in range(1, 4):
  2731. if i == 1:
  2732. password = base64.b64decode(password)
  2733. password = password.decode('utf-8')
  2734. password = password[1:-1]
  2735. if i == 2:
  2736. password = base64.b64decode(password)
  2737. password = password.decode('utf-8')
  2738. password = password[2:-2]
  2739. if i == 3:
  2740. password = base64.b64decode(password)
  2741. password = password.decode('utf-8')
  2742. password = password[3:-3]
  2743. print("password%s" % password)
  2744. except Exception as e:
  2745. return response.json(111)
  2746. try:
  2747. for i in range(1, 4):
  2748. if i == 1:
  2749. valid_code = base64.b64decode(valid_code)
  2750. valid_code = valid_code.decode('utf-8')
  2751. valid_code = valid_code[1:-1]
  2752. if i == 2:
  2753. valid_code = base64.b64decode(valid_code)
  2754. valid_code = valid_code.decode('utf-8')
  2755. valid_code = valid_code[2:-2]
  2756. if i == 3:
  2757. valid_code = base64.b64decode(valid_code)
  2758. valid_code = valid_code.decode('utf-8')
  2759. valid_code = valid_code[3:-3]
  2760. print("valid_code:%s" % valid_code)
  2761. except Exception as e:
  2762. return response.json(121)
  2763. if not userEmail:
  2764. return response.json(105)
  2765. if not password:
  2766. return response.json(109)
  2767. userEmail = userEmail.strip()
  2768. password = password.strip()
  2769. # 注释
  2770. if userEmail:
  2771. emailValid = Device_User.objects.filter(userEmail=userEmail)
  2772. if emailValid:
  2773. return response.json(103)
  2774. # 根据uuid拼接的key
  2775. image_code_key = "image_code_%s" % imageCodeId
  2776. # 判断验证码是否过期
  2777. if image_code_key is None:
  2778. return response.json(120)
  2779. redisObj = RedisObject(db=6)
  2780. # redis里面的验证码
  2781. redis_image_code = redisObj.get_data(key=image_code_key)
  2782. # 验证用户输入的验证码和redis中的验证码
  2783. if redis_image_code is False or valid_code.lower() != redis_image_code.lower():
  2784. return response.json(121)
  2785. # 删除redis中的图片验证码,防止用户使用同一个图片验证码验证多次
  2786. redisObj.del_data(key=image_code_key)
  2787. username = userEmail
  2788. email_qs = Device_User.objects.filter(Q(userEmail=userEmail) | Q(username=userEmail))
  2789. if email_qs:
  2790. return response.json(103)
  2791. # #存用户名和密码
  2792. create_data = {
  2793. "username": username,
  2794. "NickName": username,
  2795. "userEmail": userEmail,
  2796. "password": make_password(password),
  2797. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  2798. "is_active": True,
  2799. "user_isValid": True,
  2800. }
  2801. if number:
  2802. create_data["region_country"] = number
  2803. users = Device_User.objects.create(**create_data)
  2804. return self.do_login(email_qs, response)
  2805. def do_login(self, user_qs, response):
  2806. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  2807. user_qs.update(last_login=now_time, online=True)
  2808. userID = user_qs[0].userID
  2809. print('userID' + userID)
  2810. tko = TokenObject()
  2811. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  2812. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  2813. # 增加角色
  2814. user_qs[0].role.add(Role.objects.get(rid=1))
  2815. role_dict = ModelService.own_role(userID=userID)
  2816. res['rid'] = role_dict['rid']
  2817. res['roleName'] = role_dict['roleName']
  2818. res['permList'] = ModelService.own_permission(userID)
  2819. res['userID'] = userID
  2820. # 昵称,邮箱,电话,刷新,头像
  2821. userIconPath = str(user_list[0]["userIconPath"])
  2822. if userIconPath and userIconPath.find('static/') != -1:
  2823. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  2824. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  2825. else:
  2826. res['userIconUrl'] = ''
  2827. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  2828. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  2829. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  2830. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  2831. print(res)
  2832. return response.json(0, res)
  2833. class UserAppFrequencyView(TemplateView):
  2834. @method_decorator(csrf_exempt)
  2835. def dispatch(self, *args, **kwargs):
  2836. return super(UserAppFrequencyView, self).dispatch(*args, **kwargs)
  2837. def post(self, request, *args, **kwargs):
  2838. request.encoding = 'utf-8'
  2839. request_dict = request.POST
  2840. operation = kwargs.get('operation')
  2841. return self.validates(request_dict, operation)
  2842. def get(self, request, *args, **kwargs):
  2843. request.encoding = 'utf-8'
  2844. request_dict = request.GET
  2845. operation = kwargs.get('operation')
  2846. return self.validates(request_dict, operation)
  2847. def validates(self, request_dict, operation):
  2848. token = request_dict.get('token', None)
  2849. response = ResponseObject()
  2850. token = TokenObject(token)
  2851. if token.code != 0:
  2852. return response.json(token.code)
  2853. if operation == 'refresh':
  2854. return self.do_refresh(request_dict, token.userID, response)
  2855. else:
  2856. return response.json(404)
  2857. def do_refresh(self, request_dict, userID, response):
  2858. type = request_dict.get('type', None)
  2859. month = request_dict.get('month', None)
  2860. if not type or not month:
  2861. return response.json(444, 'type')
  2862. else:
  2863. type = int(type)
  2864. now_time = int(time.time())
  2865. month = int(month)
  2866. uaf_qs = UserAppFrequencyModel.objects.filter(user__userID=userID)
  2867. if not uaf_qs.exists():
  2868. user = Device_User.objects.filter(userID=userID)[0]
  2869. data = {
  2870. 'user': user,
  2871. 'type': type,
  2872. 'data_time': month,
  2873. 'add_time': now_time,
  2874. 'update_time': now_time,
  2875. }
  2876. UserAppFrequencyModel.objects.create(**data)
  2877. return response.json(0)
  2878. else:
  2879. updateMonth = time.strftime('%m', time.localtime(month))
  2880. uaf = uaf_qs.values('id', 'type', 'data_time')[0]
  2881. dbMonth = time.strftime('%m', time.localtime(int(uaf['data_time'])))
  2882. print('update month is ' + updateMonth)
  2883. print('db month is ' + dbMonth)
  2884. if updateMonth == dbMonth:
  2885. UserAppFrequencyModel.objects.filter(id=uaf['id']).update(type=type)
  2886. return response.json(0)
  2887. elif updateMonth > dbMonth:
  2888. user = Device_User.objects.filter(userID=userID)[0]
  2889. data = {
  2890. 'user': user,
  2891. 'type': type,
  2892. 'data_time': month,
  2893. 'add_time': now_time,
  2894. 'update_time': now_time,
  2895. }
  2896. UserAppFrequencyModel.objects.create(**data)
  2897. return response.json(0)
  2898. else:
  2899. return response.json(444, 'month')
  2900. class loginCodeView(View):
  2901. @method_decorator(csrf_exempt) # @csrf_exempt
  2902. def dispatch(self, *args, **kwargs):
  2903. return super(loginCodeView, self).dispatch(*args, **kwargs)
  2904. @ratelimit(key='ip', rate='2/m')
  2905. def post(self, request, *args, **kwargs):
  2906. request.encoding = 'utf-8'
  2907. lang = request.POST.get('lang', None)
  2908. if not lang:
  2909. lang = request.POST.get('language', None)
  2910. response = ResponseObject(lang)
  2911. request_dict = request.POST
  2912. phone = request_dict.get('phone', None)
  2913. if phone is not None:
  2914. was_limited = getattr(request, 'limited', False)
  2915. if was_limited is True:
  2916. return response.json(5)
  2917. return self.validate(request_dict, response)
  2918. @ratelimit(key='ip', rate='2/m')
  2919. def get(self, request, *args, **kwargs):
  2920. request.encoding = 'utf-8'
  2921. lang = request.GET.get('lang', None)
  2922. if not lang:
  2923. lang = request.GET.get('language', None)
  2924. response = ResponseObject(lang)
  2925. was_limited = getattr(request, 'limited', False)
  2926. if was_limited is True:
  2927. return response.json(5)
  2928. request_dict = request.GET
  2929. return self.validate(request_dict, response)
  2930. def validate(self, request_dict, response):
  2931. phone = request_dict.get('phone', None)
  2932. country_code = request_dict.get('country_code', None)
  2933. sign_name = request_dict.get('sign_name', None)
  2934. if phone and sign_name:
  2935. du_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  2936. if not du_qs.exists():
  2937. return response.json(104)
  2938. else:
  2939. redisObject = RedisObject()
  2940. login_code_key = '{phone}_login_code'.format(phone=phone)
  2941. login_code = redisObject.get_data(key=login_code_key)
  2942. login_code_ttl = redisObject.get_ttl(key=login_code_key)
  2943. if login_code_ttl > 240 and login_code:
  2944. return response.json(90)
  2945. login_code = RandomStr(6, True)
  2946. aliSms = AliSmsObject()
  2947. if sign_name == 'zosi':
  2948. sign_sms = '周视'
  2949. else:
  2950. sign_sms = 'Ansjer'
  2951. res = aliSms.send_code_sms(phone=phone, code=login_code, sign_name=sign_sms, temp_msg='SMS_151675022')
  2952. if res['Code'] == 'OK':
  2953. if redisObject.set_data(key=login_code_key, val=login_code, expire=300) is not True:
  2954. return response.json(48)
  2955. return response.json(0)
  2956. else:
  2957. return response.json(10, res['Message'])
  2958. else:
  2959. return response.json(444)
  2960. class v3LoginByCodeView(View):
  2961. @method_decorator(csrf_exempt) # @csrf_exempt
  2962. def dispatch(self, *args, **kwargs):
  2963. return super(v3LoginByCodeView, self).dispatch(*args, **kwargs)
  2964. def post(self, request, *args, **kwargs):
  2965. request.encoding = 'utf-8'
  2966. lang = request.POST.get('lang', None)
  2967. if not lang:
  2968. lang = request.POST.get('language', None)
  2969. response = ResponseObject(lang)
  2970. request_dict = request.POST
  2971. phone = request_dict.get('phone', None)
  2972. if phone is not None:
  2973. was_limited = getattr(request, 'limited', False)
  2974. if was_limited is True:
  2975. return response.json(5)
  2976. return self.validate(request_dict, response)
  2977. def get(self, request, *args, **kwargs):
  2978. request.encoding = 'utf-8'
  2979. lang = request.GET.get('lang', None)
  2980. if not lang:
  2981. lang = request.GET.get('language', None)
  2982. response = ResponseObject(lang)
  2983. was_limited = getattr(request, 'limited', False)
  2984. if was_limited is True:
  2985. return response.json(5)
  2986. request_dict = request.GET
  2987. return self.validate(request_dict, response)
  2988. def validate(self, request_dict, response):
  2989. phone = request_dict.get('phone', None)
  2990. code = request_dict.get('code', None)
  2991. if phone and code:
  2992. redisObject = RedisObject()
  2993. login_code_key = '{phone}_login_code'.format(phone=phone)
  2994. login_code = redisObject.get_data(key=login_code_key)
  2995. if login_code is not False:
  2996. print(code)
  2997. code = CommonService.decode_data(code)
  2998. print(code)
  2999. if login_code == code:
  3000. if response.lang is None:
  3001. response.lang = 'en'
  3002. return self.do_phone_login(phone, response)
  3003. else:
  3004. return response.json(121)
  3005. else:
  3006. return response.json(120)
  3007. def do_phone_login(self, phone, response):
  3008. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True,
  3009. user_isValid=True)
  3010. return self.valid_login(user_qs, response)
  3011. def valid_login(self, user_qs, response):
  3012. if not user_qs.exists():
  3013. return response.json(104)
  3014. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  3015. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  3016. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  3017. 'phone', 'password', 'userIconPath')[0]
  3018. userID = users['userID']
  3019. tko = TokenObject()
  3020. res = tko.generate(
  3021. data={'userID': userID, 'lang': response.lang, 'user': users['username'],
  3022. 'm_code': '123413243214'})
  3023. # 添加用户登录类型
  3024. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  3025. auth_type = 0
  3026. if oauth_qs.exists():
  3027. auth_type = oauth_qs[0].authType
  3028. if tko.code == 0:
  3029. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  3030. user_qs.update(last_login=now_time, language=response.lang)
  3031. res['rid'] = users['role__rid']
  3032. res['roleName'] = users['role__roleName']
  3033. res['permList'] = ModelService.own_permission(userID)
  3034. res['userID'] = userID
  3035. # 昵称,邮箱,电话,刷新,头像
  3036. userIconPath = str(users['userIconPath'])
  3037. if userIconPath and userIconPath.find('static/') != -1:
  3038. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  3039. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  3040. else:
  3041. res['userIconUrl'] = ''
  3042. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  3043. res['username'] = users['username'] if users['username'] is not None else ''
  3044. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  3045. res['phone'] = users['phone'] if users['phone'] is not None else ''
  3046. res['authType'] = auth_type
  3047. return response.json(0, res)
  3048. else:
  3049. return response.json(tko.code)
  3050. class v3LoginByFingerprintView(View):
  3051. @method_decorator(csrf_exempt) # @csrf_exempt
  3052. def dispatch(self, *args, **kwargs):
  3053. return super(v3LoginByFingerprintView, self).dispatch(*args, **kwargs)
  3054. def post(self, request, *args, **kwargs):
  3055. request.encoding = 'utf-8'
  3056. lang = request.POST.get('lang', None)
  3057. if not lang:
  3058. lang = request.POST.get('language', None)
  3059. response = ResponseObject(lang)
  3060. request_dict = request.POST
  3061. was_limited = getattr(request, 'limited', False)
  3062. if was_limited is True:
  3063. return response.json(5)
  3064. return self.validate(request_dict, response)
  3065. def get(self, request, *args, **kwargs):
  3066. request.encoding = 'utf-8'
  3067. lang = request.GET.get('lang', None)
  3068. if not lang:
  3069. lang = request.GET.get('language', None)
  3070. response = ResponseObject(lang)
  3071. was_limited = getattr(request, 'limited', False)
  3072. if was_limited is True:
  3073. return response.json(5)
  3074. request_dict = request.GET
  3075. return self.validate(request_dict, response)
  3076. def validate(self, request_dict, response):
  3077. password = request_dict.get("password", None)
  3078. if password:
  3079. password = CommonService.decode_data(password)
  3080. if password is None:
  3081. return response.json(444)
  3082. else:
  3083. user_qs = Device_User.objects.filter(username=password, is_active=True, user_isValid=True)
  3084. if not user_qs.exists():
  3085. return response.json(104)
  3086. else:
  3087. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  3088. 'phone', 'password', 'userIconPath', 'fingerprint_enable',
  3089. 'fingerprint_key')[0]
  3090. if users['fingerprint_enable'] == 0:
  3091. return response.json(112)
  3092. else:
  3093. userID = users['userID']
  3094. tko = TokenObject()
  3095. res = tko.generate(
  3096. data={'userID': userID, 'lang': response.lang, 'user': users['username'],
  3097. 'm_code': '123413243214'})
  3098. if tko.code == 0:
  3099. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  3100. user_qs.update(last_login=now_time, language=response.lang)
  3101. res['rid'] = users['role__rid']
  3102. res['roleName'] = users['role__roleName']
  3103. res['permList'] = ModelService.own_permission(userID)
  3104. res['userID'] = userID
  3105. # 昵称,邮箱,电话,刷新,头像
  3106. userIconPath = str(users['userIconPath'])
  3107. if userIconPath and userIconPath.find('static/') != -1:
  3108. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  3109. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  3110. else:
  3111. res['userIconUrl'] = ''
  3112. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  3113. res['username'] = users['username'] if users['username'] is not None else ''
  3114. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  3115. res['phone'] = users['phone'] if users['phone'] is not None else ''
  3116. res['fingerprint_enable'] = users['fingerprint_enable']
  3117. res['fingerprint_key'] = CommonService.encode_data(content=users['fingerprint_key'],
  3118. start=2)
  3119. return response.json(0, res)
  3120. else:
  3121. return response.json(tko.code)
  3122. else:
  3123. return response.json(444)
  3124. class v3SetFingerprintView(View):
  3125. @method_decorator(csrf_exempt)
  3126. def dispatch(self, *args, **kwargs):
  3127. return super(v3SetFingerprintView, self).dispatch(*args, **kwargs)
  3128. def post(self, request, *args, **kwargs):
  3129. request.encoding = 'utf-8'
  3130. request_dict = request.POST
  3131. return self.validate(request_dict)
  3132. def get(self, request, *args, **kwargs):
  3133. request.encoding = 'utf-8'
  3134. request_dict = request.GET
  3135. return self.validate(request_dict)
  3136. def validate(self, request_dict):
  3137. lang = request_dict.get('lang', None)
  3138. token = request_dict.get('token', None)
  3139. fingerprint_enable = request_dict.get('fingerprint_enable', None)
  3140. fingerprint_key = request_dict.get('fingerprint_key', None)
  3141. response = ResponseObject()
  3142. token = TokenObject(token)
  3143. if token.code != 0:
  3144. return response.json(token.code)
  3145. if not lang:
  3146. return response.json(444, 'lang')
  3147. response.lang = lang
  3148. data = {}
  3149. if fingerprint_enable:
  3150. data['fingerprint_enable'] = int(fingerprint_enable)
  3151. if fingerprint_key:
  3152. data['fingerprint_key'] = CommonService.decode_data(fingerprint_key, end=3)
  3153. if len(data) > 0:
  3154. Device_User.objects.filter(userID=token.userID).update(**data)
  3155. return response.json(0)
  3156. class AppleAuthLogin(View):
  3157. def post(self, request, *args, **kwargs):
  3158. request.encoding = 'utf-8'
  3159. request_dict = request.POST
  3160. return self.validate(request_dict)
  3161. def get(self, request, *args, **kwargs):
  3162. request.encoding = 'utf-8'
  3163. request_dict = request.GET
  3164. return self.validate(request_dict)
  3165. def validate(self, request_dict):
  3166. lang = request_dict.get('lang', None)
  3167. identity_token = request_dict.get('identity_token', None)
  3168. app_bundle_id = request_dict.get('app_bundle_id', None) # 包名
  3169. response = ResponseObject(lang)
  3170. identity_token = CommonService.decode_data(identity_token)
  3171. # print(identity_token)
  3172. if identity_token:
  3173. key_url = 'https://appleid.apple.com/auth/keys'
  3174. key_response = requests.get(key_url).json()
  3175. # print(key_response)
  3176. head = jwt.get_unverified_header(identity_token)
  3177. # print(head)
  3178. token_key = head['kid']
  3179. key_object = None
  3180. alg = None
  3181. for pub_key in key_response['keys']:
  3182. if pub_key['kid'] == token_key:
  3183. key_object = simplejson.dumps(pub_key)
  3184. key_object = RSAAlgorithm.from_jwk(key_object)
  3185. alg = pub_key['alg']
  3186. break
  3187. if key_object:
  3188. try:
  3189. claims = jwt.decode(identity_token, key=key_object, verify=True, algorithms=[alg],
  3190. audience=app_bundle_id)
  3191. unionID = claims['sub']
  3192. print(claims)
  3193. user_extend_qs = UserOauth2Model.objects.filter(unionID=unionID, authType=2)
  3194. if user_extend_qs.exists():
  3195. # 如果用户绑定过则直接登录
  3196. userID = user_extend_qs[0].userID_id
  3197. print(userID)
  3198. user_qs = Device_User.objects.filter(userID=userID)
  3199. return self.do_login(user_qs, response)
  3200. else:
  3201. # 如果用户为绑定过则创建用户并进行登录返回token
  3202. userID = CommonService.getUserID(getUser=False)
  3203. if claims.__contains__('email'):
  3204. nickname = claims['email']
  3205. else:
  3206. nickname = 'apple_{num}'.format(num=CommonService.RandomStr(6, False))
  3207. return self.do_register(userID, nickname, response, app_bundle_id, unionID)
  3208. except Exception as e:
  3209. print(e)
  3210. return response.json(717)
  3211. else:
  3212. return response.json(444)
  3213. else:
  3214. return response.json(444)
  3215. # 登录
  3216. def do_login(self, user_qs, response):
  3217. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  3218. userID = user_qs[0].userID
  3219. print('userID' + userID)
  3220. tko = TokenObject()
  3221. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  3222. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  3223. # 增加角色
  3224. user_qs[0].role.add(Role.objects.get(rid=1))
  3225. role_dict = ModelService.own_role(userID=userID)
  3226. res['rid'] = role_dict['rid']
  3227. res['roleName'] = role_dict['roleName']
  3228. res['permList'] = ModelService.own_permission(userID)
  3229. res['userID'] = userID
  3230. # 昵称,邮箱,电话,刷新,头像
  3231. userIconPath = str(user_list[0]["userIconPath"])
  3232. if userIconPath and userIconPath.find('static/') != -1:
  3233. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  3234. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  3235. else:
  3236. res['userIconUrl'] = ''
  3237. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  3238. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  3239. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  3240. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  3241. print(res)
  3242. # 添加用户登录类型
  3243. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  3244. auth_type = 0
  3245. if oauth_qs.exists():
  3246. auth_type = oauth_qs[0].authType
  3247. res['authType'] = auth_type
  3248. user_qs.update(last_login=now_time, online=True)
  3249. return response.json(0, res)
  3250. def do_register(self, userID, nickname, response, appBundleId, unionID):
  3251. data_valid = DataValid()
  3252. if data_valid.name_validate(userID) is not True:
  3253. return response.json(105)
  3254. try:
  3255. users = Device_User.objects.create(
  3256. username=userID,
  3257. NickName=nickname,
  3258. password=make_password('123456'),
  3259. userID=userID,
  3260. is_active=True,
  3261. user_isValid=True,
  3262. )
  3263. nowTime = int(time.time())
  3264. UserOauth2Model.objects.create(
  3265. addTime=nowTime,
  3266. updTime=nowTime,
  3267. userID_id=users.userID,
  3268. authType=2,
  3269. unionID=unionID
  3270. )
  3271. except Exception as e:
  3272. errorInfo = traceback.format_exc()
  3273. print(errorInfo)
  3274. return response.json(424, repr(e))
  3275. else:
  3276. user_qs = Device_User.objects.filter(Q(userID=userID))
  3277. print('---')
  3278. print(user_qs)
  3279. return self.do_login(user_qs, response)
  3280. class LocalUserView(View):
  3281. def get(self, request, *args, **kwargs):
  3282. request.encoding = 'utf-8'
  3283. request_dict = request.GET
  3284. operation = kwargs.get('operation', None)
  3285. return self.validate(request_dict, operation)
  3286. def post(self, request, *args, **kwargs):
  3287. request.encoding = 'utf-8'
  3288. request_dict = request.POST
  3289. operation = kwargs.get('operation', None)
  3290. print('start_time=' + str((time.time())))
  3291. ip = CommonService.get_ip_address(request)
  3292. print('end_time=' + str((time.time())))
  3293. return self.validate(request_dict, operation)
  3294. def validate(self, request_dict, operation):
  3295. language = request_dict.get('language', None)
  3296. response = ResponseObject(lang=language)
  3297. if operation == 'login':
  3298. return self.do_local_login(request_dict, response)
  3299. else:
  3300. return response.json(404)
  3301. def do_local_login(self, request_dict, response):
  3302. username = request_dict.get('username', None)
  3303. app_bundle_id = request_dict.get('app_bundle_id', None)
  3304. if username is None:
  3305. return response.json(444)
  3306. user_qs = Device_User.objects.filter(username=username)
  3307. if user_qs.exists():
  3308. return self.do_login(user_qs, response)
  3309. else:
  3310. # 如果用户为绑定过则创建用户并进行登录返回token
  3311. userID = CommonService.getUserID(μs=False, setOTAID=True)
  3312. nickname = 'local_{num}'.format(num=CommonService.RandomStr(6, False))
  3313. return self.do_register(userID, username, nickname, response, app_bundle_id)
  3314. # 登录
  3315. def do_login(self, user_qs, response):
  3316. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  3317. userID = user_qs[0].userID
  3318. print('userID' + userID)
  3319. tko = TokenObject()
  3320. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  3321. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  3322. # 增加角色
  3323. user_qs[0].role.add(Role.objects.get(rid=1))
  3324. role_dict = ModelService.own_role(userID=userID)
  3325. res['rid'] = role_dict['rid']
  3326. res['roleName'] = role_dict['roleName']
  3327. res['permList'] = ModelService.own_permission(userID)
  3328. res['userID'] = userID
  3329. # 昵称,邮箱,电话,刷新,头像
  3330. userIconPath = str(user_list[0]["userIconPath"])
  3331. if userIconPath and userIconPath.find('static/') != -1:
  3332. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  3333. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  3334. else:
  3335. res['userIconUrl'] = ''
  3336. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  3337. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  3338. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  3339. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  3340. print(res)
  3341. # 添加用户登录类型
  3342. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  3343. auth_type = 0
  3344. if oauth_qs.exists():
  3345. auth_type = oauth_qs[0].authType
  3346. res['authType'] = auth_type
  3347. user_qs.update(last_login=now_time, online=True)
  3348. return response.json(0, res)
  3349. def do_register(self, userID, username, nickname, response, appBundleId):
  3350. data_valid = DataValid()
  3351. if data_valid.name_validate(userID) is not True:
  3352. return response.json(105)
  3353. try:
  3354. Device_User.objects.create(
  3355. username=username,
  3356. NickName=nickname,
  3357. password=make_password('123456'),
  3358. userID=userID,
  3359. is_active=True,
  3360. user_isValid=True,
  3361. is_local=True
  3362. )
  3363. except Exception as e:
  3364. errorInfo = traceback.format_exc()
  3365. print(errorInfo)
  3366. return response.json(424, repr(e))
  3367. else:
  3368. user_qs = Device_User.objects.filter(Q(userID=userID))
  3369. print('---')
  3370. print(user_qs)
  3371. return self.do_login(user_qs, response)
  3372. class SubscribeEmailView(View):
  3373. def get(self, request, *args, **kwargs):
  3374. request.encoding = 'utf-8'
  3375. request_dict = request.GET
  3376. return self.validate(request_dict)
  3377. def post(self, request, *args, **kwargs):
  3378. request.encoding = 'utf-8'
  3379. request_dict = request.POST
  3380. return self.validate(request_dict)
  3381. def validate(self, request_dict):
  3382. token = request_dict.get('token', None)
  3383. lang = request_dict.get('lang', None)
  3384. token = TokenObject(token)
  3385. response = ResponseObject(lang=lang)
  3386. if token.code != 0:
  3387. return response.json(token.code)
  3388. status = request_dict.get('subscribe', None)
  3389. if status is None:
  3390. return response.json(444)
  3391. status = int(status)
  3392. user_qs = Device_User.objects.filter(userID=token.userID)
  3393. if user_qs.exists():
  3394. user_qs.update(subscribe_email=status)
  3395. return response.json(0)
  3396. else:
  3397. return response.json(104)
  3398. def delete_local_account(username):
  3399. user_qs = Device_User.objects.filter(username=username)
  3400. print(user_qs)
  3401. if user_qs.exists():
  3402. user = user_qs[0]
  3403. if user.is_local:
  3404. user.delete()
  3405. Device_Info.objects.filter(userID__userID=user.userID).delete()
  3406. def updateUserCountry(request):
  3407. country_ip_qs = CountryIPModel.objects.filter(status=0)[0: 100]
  3408. if country_ip_qs.exists():
  3409. country_ip_qs = country_ip_qs.values()
  3410. redisObject = RedisObject(db=6)
  3411. for country_ip in country_ip_qs:
  3412. key = 'ip_country_{ip}'.format(ip=country_ip['ip'])
  3413. data = redisObject.get_data(key=key)
  3414. if data:
  3415. country = data
  3416. else:
  3417. country = CommonService.getIpIpInfo(country_ip['ip'], lang='CN')
  3418. country = country['country_name']
  3419. redisObject.set_data(key=key, val=country, expire=3600)
  3420. country_ip['country'] = country
  3421. CountryIPModel.objects.filter(id=country_ip['id']).update(country=country, status=1)
  3422. # ids.append(country_ip['id'])
  3423. # CountryIPModel.objects.filter(id__in=tuple(ids)).update(status=1)
  3424. response = ResponseObject()
  3425. return response.json(0)
  3426. class InitUserInformationView(View):
  3427. def get(self, request, *args, **kwargs):
  3428. request.encoding = 'utf-8'
  3429. operation = kwargs.get('operation', None)
  3430. request_dict = request.GET
  3431. return self.validate(request_dict, operation)
  3432. def post(self, request, *args, **kwargs):
  3433. request.encoding = 'utf-8'
  3434. operation = kwargs.get('operation', None)
  3435. request_dict = request.POST
  3436. return self.validate(request_dict, operation)
  3437. def validate(self, request_dict, operation):
  3438. token = TokenObject(request_dict.get('token', None))
  3439. response = ResponseObject()
  3440. if token.code != 0:
  3441. return response.json(token.code)
  3442. if operation == 'init':
  3443. return self.do_init(token.userID, request_dict, response)
  3444. else:
  3445. return response.json(444)
  3446. def do_init(self, userID, request_dict, response):
  3447. appBundleId = request_dict.get('appBundleId', None)
  3448. if appBundleId:
  3449. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  3450. now_time = int(time.time())
  3451. if user_ex_qs.exists():
  3452. update = {
  3453. 'appBundleId':appBundleId,
  3454. 'updTime': now_time
  3455. }
  3456. user_ex_qs.update(**update)
  3457. else:
  3458. user_ex = UserExModel(userID_id=userID, appBundleId=appBundleId, addTime=now_time, updTime=now_time)
  3459. user_ex.save()
  3460. return response.json(0)
  3461. else:
  3462. return response.json(444)