UserController.py 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251
  1. # @Author : Rocky
  2. # @File : UserController.py
  3. # @Time : 2024/11/27 16:35
  4. import hashlib
  5. import hmac
  6. import os
  7. import time
  8. import requests
  9. from Ansjer.config import LOGGER
  10. from django.views.generic.base import View
  11. from Model.models import WeChatMiniProgram, Device_User, Device_Info, DeviceNameLanguage
  12. from Object.Enums.WeChatEnum import WeChatMiniProgramAPIEnum, WeChatMiniProgramConfigEnum
  13. from Object.RedisObject import RedisObject
  14. from Object.ResponseObject import ResponseObject
  15. class UserView(View):
  16. def get(self, request, *args, **kwargs):
  17. request.encoding = 'utf-8'
  18. operation = kwargs.get('operation')
  19. return self.validation(request.GET, request, operation)
  20. def post(self, request, *args, **kwargs):
  21. request.encoding = 'utf-8'
  22. operation = kwargs.get('operation')
  23. return self.validation(request.POST, request, operation)
  24. def validation(self, request_dict, request, operation):
  25. lang = request_dict.get('lang', 'cn')
  26. response = ResponseObject(lang)
  27. if operation == 'getPhoneNumber':
  28. return self.get_phone_number(request_dict, response)
  29. elif operation == 'userLogin':
  30. return self.user_login(request_dict, response)
  31. else:
  32. user_id = self.check_session_key_and_get_user_id(request)
  33. if not user_id:
  34. return response.json(309)
  35. if operation == 'deviceList':
  36. return self.device_list(user_id, response)
  37. @classmethod
  38. def check_session_key_and_get_user_id(cls, request):
  39. """
  40. 校验 session_key 是否有效
  41. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/checkSessionKey.html
  42. @return: bool
  43. """
  44. try:
  45. login_status = request.META.get('HTTP_AUTHORIZATION')
  46. if not login_status:
  47. return False
  48. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(login_status=login_status). \
  49. values('openid', 'session_key', 'phone_number')
  50. if not wechat_mini_program_qs.exists():
  51. return False
  52. openid = wechat_mini_program_qs[0]['openid']
  53. session_key = wechat_mini_program_qs[0]['session_key']
  54. signature = cls.generate_signature(session_key)
  55. access_token = cls.get_access_token()
  56. params = {
  57. 'openid': openid,
  58. 'access_token': access_token,
  59. 'signature': signature,
  60. 'sig_method': 'hmac_sha256'
  61. }
  62. r = requests.get(url=WeChatMiniProgramAPIEnum.checkSessionKeyAPI.value, params=params, timeout=5)
  63. result = eval(r.content)
  64. errcode = result.get('errcode')
  65. assert errcode == 0
  66. # 根据手机号查询用户id
  67. phone_number = wechat_mini_program_qs[0]['phone_number']
  68. device_user_qs = Device_User.objects.filter(phone=phone_number).values('userID')
  69. if not device_user_qs.exists():
  70. return False
  71. return device_user_qs[0]['userID']
  72. except Exception as e:
  73. return False
  74. @staticmethod
  75. def get_access_token():
  76. """
  77. 获取小程序全局唯一后台接口调用凭据,token有效期为7200s
  78. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/mp-access-token/getAccessToken.html
  79. @return: access_token
  80. """
  81. try:
  82. redis_obj = RedisObject()
  83. access_token_key = WeChatMiniProgramConfigEnum.AccessTokenKey.value
  84. expires_time = redis_obj.get_ttl(access_token_key)
  85. # 如果有效时间大于十分钟,返回token,否则刷新token
  86. if expires_time > 10 * 60:
  87. access_token = redis_obj.get_data(access_token_key)
  88. return access_token
  89. else:
  90. params = {
  91. 'grant_type': 'client_credential',
  92. 'appid': WeChatMiniProgramConfigEnum.AppID.value,
  93. 'secret': WeChatMiniProgramConfigEnum.AppSecret.value
  94. }
  95. r = requests.get(url=WeChatMiniProgramAPIEnum.getAccessTokenAPI.value, params=params, timeout=5)
  96. result = eval(r.content)
  97. access_token = result.get('access_token')
  98. assert access_token
  99. expires_in = result.get('expires_in')
  100. # 保存到Redis
  101. redis_obj.set_ex_data(key=access_token_key, val=access_token, expire=expires_in)
  102. return access_token
  103. except Exception as e:
  104. LOGGER.info('微信小程序获取token异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  105. return None
  106. @classmethod
  107. def get_phone_number(cls, request_dict, response):
  108. """
  109. 获取手机号码
  110. @param request_dict:
  111. @param response:
  112. @return: res
  113. """
  114. code = request_dict.get('code', None)
  115. if not code:
  116. return response.json(444)
  117. try:
  118. access_token = cls.get_access_token()
  119. url = WeChatMiniProgramAPIEnum.getPhoneNumberAPI.value.format(access_token)
  120. data = {
  121. 'code': code
  122. }
  123. r = requests.post(url=url, json=data, timeout=5)
  124. result = eval(r.content)
  125. errcode = result.get('errcode')
  126. assert errcode == 0
  127. phone_number = result['phone_info']['purePhoneNumber']
  128. res = {
  129. 'phone_number': phone_number
  130. }
  131. return response.json(0, res)
  132. except Exception as e:
  133. LOGGER.info('微信小程序获取手机号码异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  134. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  135. @classmethod
  136. def user_login(cls, request_dict, response):
  137. """
  138. 小程序登录
  139. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/code2Session.html
  140. https://developers.weixin.qq.com/miniprogram/dev/framework/open-ability/login.html
  141. @param request_dict:
  142. @param response:
  143. @return:
  144. """
  145. js_code = request_dict.get('js_code', None)
  146. phone_number = request_dict.get('phone_number', None)
  147. if not all([js_code, phone_number]):
  148. return response.json(444)
  149. try:
  150. params = {
  151. 'js_code': js_code,
  152. 'grant_type': 'authorization_code',
  153. 'appid': WeChatMiniProgramConfigEnum.AppID.value,
  154. 'secret': WeChatMiniProgramConfigEnum.AppSecret.value
  155. }
  156. r = requests.get(url=WeChatMiniProgramAPIEnum.code2SessionAPI.value, params=params, timeout=5)
  157. result = eval(r.content) # {'session_key': 'xxx' 会话密钥, 'openid': 'xxx' 用户唯一标识}
  158. openid = result.get('openid')
  159. assert openid
  160. openid = result['openid']
  161. session_key = result['session_key']
  162. # 生成登录态
  163. login_status = cls.generate_login_status(openid, session_key)
  164. now_time = int(time.time())
  165. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(openid=openid)
  166. if wechat_mini_program_qs.exists():
  167. wechat_mini_program_qs.update(
  168. login_status=login_status, session_key=session_key, phone_number=phone_number, updated_time=now_time
  169. )
  170. else:
  171. WeChatMiniProgram.objects.create(
  172. login_status=login_status, openid=openid, session_key=session_key, phone_number=phone_number,
  173. created_time=now_time, updated_time=now_time
  174. )
  175. res = {
  176. 'login_status': login_status
  177. }
  178. return response.json(0, res)
  179. except Exception as e:
  180. LOGGER.info('微信小程序登录异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  181. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  182. @staticmethod
  183. def generate_login_status(openid, session_key):
  184. """
  185. 生成登录态
  186. @param openid:
  187. @param session_key:
  188. @return: login_status
  189. """
  190. salt = os.urandom(16).hex()
  191. # 将openid, session_key和salt拼接成一个字符串
  192. to_hash = openid + session_key + salt
  193. # 使用hashlib生成SHA256哈希值
  194. hash_object = hashlib.sha256(to_hash.encode())
  195. # 获取十六进制格式的哈希值
  196. login_status = hash_object.hexdigest()
  197. return login_status
  198. @staticmethod
  199. def generate_signature(session_key):
  200. """
  201. 用户登录态签名,用session_key对空字符串签名得到的结果。即 signature = hmac_sha256(session_key, "")
  202. @param session_key: 会话密钥
  203. @return: signature
  204. """
  205. # 将session_key和要签名的数据(这里是空字符串)转换为字节类型
  206. session_key_bytes = session_key.encode('utf-8')
  207. data = b"" # 空字符串转换为字节类型
  208. # 创建一个新的hmac对象,使用sha256作为hash函数
  209. hmac_object = hmac.new(session_key_bytes, data, hashlib.sha256)
  210. # 获取十六进制格式的签名结果
  211. signature = hmac_object.hexdigest()
  212. return signature
  213. @staticmethod
  214. def device_list(user_id, response):
  215. """
  216. 查询设备列表
  217. @param user_id: 用户id
  218. @param response:
  219. @return:
  220. """
  221. try:
  222. img_url_1 = DeviceNameLanguage.objects.filter(name='智能摄像机 C520M').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  223. img_url_2 = DeviceNameLanguage.objects.filter(name='智能摄像机 C518').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  224. res = [
  225. {
  226. 'device_name': '智能摄像机520',
  227. 'service_status': '服务使用中 2025-11-25',
  228. 'img_url': img_url_1},
  229. {
  230. 'device_name': '智能摄像机518',
  231. 'service_status': '服务到期',
  232. 'img_url': img_url_2}
  233. ]
  234. return response.json(0, res)
  235. except Exception as e:
  236. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))