TokenObject.py 8.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199
  1. import logging
  2. import jwt
  3. import time
  4. import requests
  5. import datetime
  6. from Object.RedisObject import RedisObject
  7. from Ansjer.config import OAUTH_ACCESS_TOKEN_SECRET, OAUTH_REFRESH_TOKEN_SECRET, OAUTH_ACCESS_TOKEN_TIME, \
  8. OAUTH_REFRESH_TOKEN_TIME, DETECT_PUSH_DOMAINS, LOGGER
  9. from Model.models import StsFrequency
  10. logger = logging.getLogger('token')
  11. class TokenObject:
  12. def __init__(self, token=None, returntpye='currency'):
  13. if token == 'local':
  14. token = 'eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJ1c2VySUQiOiIxNTg0MzUxODk2MjgyMTM4MDAxMzgwMDAiLCJsYW5nIjoiZW4iLCJ1c2VyIjoiMTM2ODAzMTc1OTYiLCJtX2NvZGUiOiIxMjM0MTMyNDMyMTQiLCJleHAiOjE1ODcyNzcwNjB9.c0LV_XyxwbzUlYqMJqx7vw9f19Jv-0kGnUHuu_go-mo'
  15. if token == 'test':
  16. token = 'eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJ1c2VyIjoiMTM4MDAxMzgwMDEiLCJleHAiOjE1Njk5OTg4OTYsInVzZXJJRCI6IjE1MTU2NDI2MjMzNzkzOTUxMzgwMDEzODAwMSIsImxhbmciOiJlbiIsIm1fY29kZSI6IjEyMzQxMzI0MzIxNCJ9.VAQtT9AbCCfXcrNj9DL5cvVasMDoI7AP8ptgU1GoMu8'
  17. today = datetime.datetime.today()
  18. today_date = datetime.datetime(today.year, today.month, today.day)
  19. self.today_timestamp = int(today_date.timestamp())
  20. self.token = token
  21. self.lang = None
  22. self.userID = None
  23. self.user = ''
  24. self.code = 0
  25. self.valid()
  26. self.returntpye = returntpye
  27. def valid(self):
  28. if self.token is None:
  29. self.code = 309
  30. return
  31. try:
  32. self.token = self.token.replace("Bearer ", "")
  33. res = jwt.decode(self.token, OAUTH_ACCESS_TOKEN_SECRET, algorithms='HS256')
  34. self.userID = res.get('userID', None)
  35. self.lang = res.get('lang', None)
  36. self.user = res.get('user', '')
  37. app_bundle_id = res.get('appBundleId', None)
  38. token_version = res.get('tokenVersion', None)
  39. # 刷新登录时间
  40. # if self.userID:
  41. # print(self.user)
  42. # redisObj = RedisObject(db=3)
  43. # redisObj.set_data(key=self.userID, val=self.user, expire=300)
  44. except jwt.ExpiredSignatureError as e:
  45. self.code = 309
  46. self.add_or_update_qs()
  47. logger.info('errLine:{}, errMsg:{}, token:{}'.format(e.__traceback__.tb_lineno, repr(e), self.token))
  48. return
  49. except Exception as e:
  50. self.code = 309
  51. self.add_or_update_qs()
  52. logger.info('errLine:{}, errMsg:{}, token:{}'.format(e.__traceback__.tb_lineno, repr(e), self.token))
  53. return
  54. else:
  55. if not self.userID:
  56. self.code = 309
  57. self.add_or_update_qs()
  58. logger.info('errMsg:{}, token:{}'.format('缺少用户ID', self.token))
  59. return
  60. else:
  61. if self.userID:
  62. if app_bundle_id and token_version == 'V2':
  63. redis_obj = RedisObject()
  64. key = 'token_user_{}_{}'.format(self.userID, app_bundle_id)
  65. redis_token = redis_obj.get_data(key)
  66. if not redis_token:
  67. redis_obj.set_data(key, self.token)
  68. self.code = 0
  69. return res
  70. if self.token != redis_token:
  71. self.code = 310
  72. logger.info(
  73. 'errMsg:{}, token:{}, redis_token:{}'.format('多点登录', self.token, redis_token))
  74. return
  75. self.code = 0
  76. return res
  77. else:
  78. self.code = 309
  79. return
  80. def generate(self, data=None):
  81. if data is None:
  82. data = {}
  83. try:
  84. access_expire = int(OAUTH_ACCESS_TOKEN_TIME.total_seconds())
  85. refresh_expire = int(OAUTH_REFRESH_TOKEN_TIME.total_seconds())
  86. now_stamp = int(time.time())
  87. access_data = data
  88. refresh_data = data
  89. access_data['exp'] = access_expire + now_stamp
  90. refresh_data['exp'] = refresh_expire + now_stamp
  91. access_token = jwt.encode(access_data,
  92. OAUTH_ACCESS_TOKEN_SECRET,
  93. algorithm='HS256')
  94. refresh_token = jwt.encode(
  95. refresh_data,
  96. OAUTH_REFRESH_TOKEN_SECRET,
  97. algorithm='HS256')
  98. res = {
  99. 'access_token': access_token,
  100. 'access_expire': access_expire,
  101. 'refresh_expire': refresh_expire,
  102. 'refresh_token': refresh_token,
  103. }
  104. if self.returntpye == 'pc':
  105. res = {
  106. 'token': access_token,
  107. 'access_expire': access_expire,
  108. 'refresh_expire': refresh_expire,
  109. 'refresh_token': refresh_token,
  110. }
  111. app_bundle_id = data.get('appBundleId', None)
  112. token_version = data.get('tokenVersion', None)
  113. LOGGER.info('{}生成新token,参数:{}'.format(data.get('userID', 'pctest'), data))
  114. if app_bundle_id and token_version == 'V2':
  115. redis_obj = RedisObject()
  116. key = 'token_user_{}_{}'.format(data['userID'], app_bundle_id)
  117. LOGGER.info('{}写入新token:{}'.format(data['userID'], access_token))
  118. redis_obj.set_data(key, access_token)
  119. if data['tokenVal']:
  120. # 请求推送
  121. push_url = '{}transparent-transmission/logout-push'.format(DETECT_PUSH_DOMAINS)
  122. result = requests.post(push_url, data={'push_token': data['tokenVal'], 'user_id': data['userID'],
  123. 'app_bundle_id': app_bundle_id})
  124. LOGGER.info('{}登出推送结果:{}'.format(data['userID'], result.json()))
  125. logger.info(
  126. '用户登录信息, data:{}, access_token:{}, refresh_token:{}'.format(data, access_token, refresh_token))
  127. except Exception as e:
  128. self.code = 309
  129. self.add_or_update_qs()
  130. logger.info('errLine:{}, errMsg:{}, token:{}'.format(e.__traceback__.tb_lineno, repr(e), self.token))
  131. print(repr(e))
  132. else:
  133. self.code = 0
  134. return res
  135. def encryption(self, data=None):
  136. if data is None:
  137. data = {}
  138. try:
  139. access_expire = int(OAUTH_ACCESS_TOKEN_TIME.total_seconds())
  140. refresh_expire = int(OAUTH_REFRESH_TOKEN_TIME.total_seconds())
  141. now_stamp = int(time.time())
  142. access_data = data
  143. refresh_data = data
  144. access_data['exp'] = access_expire + now_stamp
  145. refresh_data['exp'] = refresh_expire + now_stamp
  146. access_token = jwt.encode(access_data,
  147. OAUTH_ACCESS_TOKEN_SECRET,
  148. algorithm='HS256')
  149. return access_token
  150. except Exception as e:
  151. self.code = 309
  152. print(repr(e))
  153. def refresh(self):
  154. if not self.token:
  155. self.code = 309
  156. return
  157. try:
  158. res = jwt.decode(self.token, OAUTH_REFRESH_TOKEN_SECRET, algorithms='HS256')
  159. except jwt.ExpiredSignatureError as e:
  160. print('过期')
  161. print(repr(e))
  162. self.code = 309
  163. self.add_or_update_qs()
  164. logger.info('errLine:{}, errMsg:{}, token:{}'.format(e.__traceback__.tb_lineno, repr(e), self.token))
  165. except Exception as e:
  166. self.code = 309
  167. self.add_or_update_qs()
  168. logger.info('errLine:{}, errMsg:{}, token:{}'.format(e.__traceback__.tb_lineno, repr(e), self.token))
  169. print(repr(e))
  170. else:
  171. self.userID = res.get('userID', None)
  172. self.user = res.get('user', '')
  173. self.lang = res.get('lang', None)
  174. refreshRes = self.generate(data=res)
  175. return refreshRes
  176. def add_or_update_qs(self):
  177. qs = StsFrequency.objects.filter(type=2, addTime=self.today_timestamp, uid='token')
  178. if qs.exists():
  179. token_qs = qs[0]
  180. token_qs.frequency += 1
  181. token_qs.updateTime = int(time.time())
  182. token_qs.save()
  183. else:
  184. StsFrequency.objects.create(uid='token', frequency=1, type=2, addTime=self.today_timestamp,
  185. updateTime=int(time.time()))