UserController.py 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. # @Author : Rocky
  2. # @File : UserController.py
  3. # @Time : 2024/11/27 16:35
  4. import hashlib
  5. import hmac
  6. import os
  7. import time
  8. import requests
  9. from Ansjer.config import LOGGER
  10. from Ansjer.config import SERVER_DOMAIN_SSL
  11. from django.views.generic.base import View
  12. from Controller.WeChatMiniProgram.CommonController import CommonObj
  13. from Model.models import WeChatMiniProgram, Device_User, Device_Info, DeviceNameLanguage
  14. from Object.Enums.WeChatEnum import WeChatMiniProgramAPIEnum, WeChatMiniProgramConfigEnum
  15. from Object.RedisObject import RedisObject
  16. from Object.ResponseObject import ResponseObject
  17. class UserView(View):
  18. def get(self, request, *args, **kwargs):
  19. request.encoding = 'utf-8'
  20. operation = kwargs.get('operation')
  21. return self.validation(request.GET, request, operation)
  22. def post(self, request, *args, **kwargs):
  23. request.encoding = 'utf-8'
  24. operation = kwargs.get('operation')
  25. return self.validation(request.POST, request, operation)
  26. def validation(self, request_dict, request, operation):
  27. lang = request_dict.get('lang', 'cn')
  28. response = ResponseObject(lang)
  29. if operation == 'getPhoneNumber':
  30. return self.get_phone_number(request_dict, response)
  31. elif operation == 'userLogin':
  32. return self.user_login(request_dict, response)
  33. else:
  34. user_id = self.check_session_key_and_get_user_id(request)
  35. if not user_id:
  36. return response.json(309)
  37. if operation == 'deviceList':
  38. return self.device_list(user_id, response)
  39. @classmethod
  40. def check_session_key_and_get_user_id(cls, request):
  41. """
  42. 校验 session_key 是否有效
  43. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/checkSessionKey.html
  44. @return: bool
  45. """
  46. try:
  47. login_status = request.META.get('HTTP_AUTHORIZATION')
  48. if not login_status:
  49. return False
  50. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(login_status=login_status). \
  51. values('openid', 'session_key', 'phone_number')
  52. if not wechat_mini_program_qs.exists():
  53. return False
  54. openid = wechat_mini_program_qs[0]['openid']
  55. session_key = wechat_mini_program_qs[0]['session_key']
  56. signature = cls.generate_signature(session_key)
  57. access_token = CommonObj.get_access_token()
  58. params = {
  59. 'openid': openid,
  60. 'access_token': access_token,
  61. 'signature': signature,
  62. 'sig_method': 'hmac_sha256'
  63. }
  64. r = requests.get(url=WeChatMiniProgramAPIEnum.checkSessionKeyAPI.value, params=params, timeout=5)
  65. result = eval(r.content)
  66. errcode = result.get('errcode')
  67. assert errcode == 0
  68. # 根据手机号查询用户id
  69. phone_number = wechat_mini_program_qs[0]['phone_number']
  70. device_user_qs = Device_User.objects.filter(phone=phone_number).values('userID')
  71. if not device_user_qs.exists():
  72. return False
  73. return device_user_qs[0]['userID']
  74. except Exception as e:
  75. return False
  76. @staticmethod
  77. def get_phone_number(request_dict, response):
  78. """
  79. 获取手机号码
  80. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-info/phone-number/getPhoneNumber.html
  81. @param request_dict:
  82. @param response:
  83. @return: res
  84. """
  85. code = request_dict.get('code', None)
  86. if not code:
  87. return response.json(444)
  88. try:
  89. access_token = CommonObj.get_access_token()
  90. url = WeChatMiniProgramAPIEnum.getPhoneNumberAPI.value.format(access_token)
  91. data = {
  92. 'code': code
  93. }
  94. r = requests.post(url=url, json=data, timeout=5)
  95. result = eval(r.content)
  96. errcode = result.get('errcode')
  97. assert errcode == 0
  98. phone_number = result['phone_info']['purePhoneNumber']
  99. res = {
  100. 'phone_number': phone_number
  101. }
  102. return response.json(0, res)
  103. except Exception as e:
  104. LOGGER.info('微信小程序获取手机号码异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  105. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  106. @classmethod
  107. def user_login(cls, request_dict, response):
  108. """
  109. 小程序登录
  110. https://developers.weixin.qq.com/miniprogram/dev/OpenApiDoc/user-login/code2Session.html
  111. https://developers.weixin.qq.com/miniprogram/dev/framework/open-ability/login.html
  112. @param request_dict:
  113. @param response:
  114. @return:
  115. """
  116. js_code = request_dict.get('js_code', None)
  117. phone_number = request_dict.get('phone_number', None)
  118. if not all([js_code, phone_number]):
  119. return response.json(444)
  120. try:
  121. params = {
  122. 'js_code': js_code,
  123. 'grant_type': 'authorization_code',
  124. 'appid': WeChatMiniProgramConfigEnum.AppID.value,
  125. 'secret': WeChatMiniProgramConfigEnum.AppSecret.value
  126. }
  127. r = requests.get(url=WeChatMiniProgramAPIEnum.code2SessionAPI.value, params=params, timeout=5)
  128. result = eval(r.content) # {'session_key': 'xxx' 会话密钥, 'openid': 'xxx' 用户唯一标识}
  129. openid = result.get('openid')
  130. assert openid
  131. openid = result['openid']
  132. session_key = result['session_key']
  133. # 生成登录态
  134. login_status = cls.generate_login_status(openid, session_key)
  135. now_time = int(time.time())
  136. wechat_mini_program_qs = WeChatMiniProgram.objects.filter(openid=openid)
  137. if wechat_mini_program_qs.exists():
  138. wechat_mini_program_qs.update(
  139. login_status=login_status, session_key=session_key, phone_number=phone_number, updated_time=now_time
  140. )
  141. else:
  142. WeChatMiniProgram.objects.create(
  143. login_status=login_status, openid=openid, session_key=session_key, phone_number=phone_number,
  144. created_time=now_time, updated_time=now_time
  145. )
  146. # 头像链接
  147. user_icon_path = 'User/default.png'
  148. device_user_qs = Device_User.objects.filter(phone=phone_number).values('userIconPath')
  149. if device_user_qs.exists():
  150. user_icon_path = device_user_qs[0]['userIconPath']
  151. if user_icon_path.find('static/') != -1:
  152. user_icon_path = user_icon_path.replace('static/', '').replace('\\', '/')
  153. user_icon_url = SERVER_DOMAIN_SSL + 'account/getAvatar/' + user_icon_path
  154. res = {
  155. 'login_status': login_status,
  156. 'user_icon_url': user_icon_url
  157. }
  158. return response.json(0, res)
  159. except Exception as e:
  160. LOGGER.info('微信小程序登录异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  161. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  162. @staticmethod
  163. def generate_login_status(openid, session_key):
  164. """
  165. 生成登录态
  166. @param openid:
  167. @param session_key:
  168. @return: login_status
  169. """
  170. salt = os.urandom(16).hex()
  171. # 将openid, session_key和salt拼接成一个字符串
  172. to_hash = openid + session_key + salt
  173. # 使用hashlib生成SHA256哈希值
  174. hash_object = hashlib.sha256(to_hash.encode())
  175. # 获取十六进制格式的哈希值
  176. login_status = hash_object.hexdigest()
  177. return login_status
  178. @staticmethod
  179. def generate_signature(session_key):
  180. """
  181. 用户登录态签名,用session_key对空字符串签名得到的结果。即 signature = hmac_sha256(session_key, "")
  182. @param session_key: 会话密钥
  183. @return: signature
  184. """
  185. # 将session_key和要签名的数据(这里是空字符串)转换为字节类型
  186. session_key_bytes = session_key.encode('utf-8')
  187. data = b"" # 空字符串转换为字节类型
  188. # 创建一个新的hmac对象,使用sha256作为hash函数
  189. hmac_object = hmac.new(session_key_bytes, data, hashlib.sha256)
  190. # 获取十六进制格式的签名结果
  191. signature = hmac_object.hexdigest()
  192. return signature
  193. @staticmethod
  194. def device_list(user_id, response):
  195. """
  196. 查询设备列表
  197. @param user_id: 用户id
  198. @param response:
  199. @return:
  200. """
  201. try:
  202. img_url_1 = DeviceNameLanguage.objects.filter(name='智能摄像机 C520M').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  203. img_url_2 = DeviceNameLanguage.objects.filter(name='智能摄像机 C518').values('app_device_type__iconV2')[0]['app_device_type__iconV2']
  204. res = [
  205. {
  206. 'device_name': '智能摄像机520',
  207. 'service_status': '服务使用中 2025-11-25',
  208. 'img_url': img_url_1},
  209. {
  210. 'device_name': '智能摄像机518',
  211. 'service_status': '服务到期',
  212. 'img_url': img_url_2}
  213. ]
  214. return response.json(0, res)
  215. except Exception as e:
  216. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))