UserController.py 224 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198219922002201220222032204220522062207220822092210221122122213221422152216221722182219222022212222222322242225222622272228222922302231223222332234223522362237223822392240224122422243224422452246224722482249225022512252225322542255225622572258225922602261226222632264226522662267226822692270227122722273227422752276227722782279228022812282228322842285228622872288228922902291229222932294229522962297229822992300230123022303230423052306230723082309231023112312231323142315231623172318231923202321232223232324232523262327232823292330233123322333233423352336233723382339234023412342234323442345234623472348234923502351235223532354235523562357235823592360236123622363236423652366236723682369237023712372237323742375237623772378237923802381238223832384238523862387238823892390239123922393239423952396239723982399240024012402240324042405240624072408240924102411241224132414241524162417241824192420242124222423242424252426242724282429243024312432243324342435243624372438243924402441244224432444244524462447244824492450245124522453245424552456245724582459246024612462246324642465246624672468246924702471247224732474247524762477247824792480248124822483248424852486248724882489249024912492249324942495249624972498249925002501250225032504250525062507250825092510251125122513251425152516251725182519252025212522252325242525252625272528252925302531253225332534253525362537253825392540254125422543254425452546254725482549255025512552255325542555255625572558255925602561256225632564256525662567256825692570257125722573257425752576257725782579258025812582258325842585258625872588258925902591259225932594259525962597259825992600260126022603260426052606260726082609261026112612261326142615261626172618261926202621262226232624262526262627262826292630263126322633263426352636263726382639264026412642264326442645264626472648264926502651265226532654265526562657265826592660266126622663266426652666266726682669267026712672267326742675267626772678267926802681268226832684268526862687268826892690269126922693269426952696269726982699270027012702270327042705270627072708270927102711271227132714271527162717271827192720272127222723272427252726272727282729273027312732273327342735273627372738273927402741274227432744274527462747274827492750275127522753275427552756275727582759276027612762276327642765276627672768276927702771277227732774277527762777277827792780278127822783278427852786278727882789279027912792279327942795279627972798279928002801280228032804280528062807280828092810281128122813281428152816281728182819282028212822282328242825282628272828282928302831283228332834283528362837283828392840284128422843284428452846284728482849285028512852285328542855285628572858285928602861286228632864286528662867286828692870287128722873287428752876287728782879288028812882288328842885288628872888288928902891289228932894289528962897289828992900290129022903290429052906290729082909291029112912291329142915291629172918291929202921292229232924292529262927292829292930293129322933293429352936293729382939294029412942294329442945294629472948294929502951295229532954295529562957295829592960296129622963296429652966296729682969297029712972297329742975297629772978297929802981298229832984298529862987298829892990299129922993299429952996299729982999300030013002300330043005300630073008300930103011301230133014301530163017301830193020302130223023302430253026302730283029303030313032303330343035303630373038303930403041304230433044304530463047304830493050305130523053305430553056305730583059306030613062306330643065306630673068306930703071307230733074307530763077307830793080308130823083308430853086308730883089309030913092309330943095309630973098309931003101310231033104310531063107310831093110311131123113311431153116311731183119312031213122312331243125312631273128312931303131313231333134313531363137313831393140314131423143314431453146314731483149315031513152315331543155315631573158315931603161316231633164316531663167316831693170317131723173317431753176317731783179318031813182318331843185318631873188318931903191319231933194319531963197319831993200320132023203320432053206320732083209321032113212321332143215321632173218321932203221322232233224322532263227322832293230323132323233323432353236323732383239324032413242324332443245324632473248324932503251325232533254325532563257325832593260326132623263326432653266326732683269327032713272327332743275327632773278327932803281328232833284328532863287328832893290329132923293329432953296329732983299330033013302330333043305330633073308330933103311331233133314331533163317331833193320332133223323332433253326332733283329333033313332333333343335333633373338333933403341334233433344334533463347334833493350335133523353335433553356335733583359336033613362336333643365336633673368336933703371337233733374337533763377337833793380338133823383338433853386338733883389339033913392339333943395339633973398339934003401340234033404340534063407340834093410341134123413341434153416341734183419342034213422342334243425342634273428342934303431343234333434343534363437343834393440344134423443344434453446344734483449345034513452345334543455345634573458345934603461346234633464346534663467346834693470347134723473347434753476347734783479348034813482348334843485348634873488348934903491349234933494349534963497349834993500350135023503350435053506350735083509351035113512351335143515351635173518351935203521352235233524352535263527352835293530353135323533353435353536353735383539354035413542354335443545354635473548354935503551355235533554355535563557355835593560356135623563356435653566356735683569357035713572357335743575357635773578357935803581358235833584358535863587358835893590359135923593359435953596359735983599360036013602360336043605360636073608360936103611361236133614361536163617361836193620362136223623362436253626362736283629363036313632363336343635363636373638363936403641364236433644364536463647364836493650365136523653365436553656365736583659366036613662366336643665366636673668366936703671367236733674367536763677367836793680368136823683368436853686368736883689369036913692369336943695369636973698369937003701370237033704370537063707370837093710371137123713371437153716371737183719372037213722372337243725372637273728372937303731373237333734373537363737373837393740374137423743374437453746374737483749375037513752375337543755375637573758375937603761376237633764376537663767376837693770377137723773377437753776377737783779378037813782378337843785378637873788378937903791379237933794379537963797379837993800380138023803380438053806380738083809381038113812381338143815381638173818381938203821382238233824382538263827382838293830383138323833383438353836383738383839384038413842384338443845384638473848384938503851385238533854385538563857385838593860386138623863386438653866386738683869387038713872387338743875387638773878387938803881388238833884388538863887388838893890389138923893389438953896389738983899390039013902390339043905390639073908390939103911391239133914391539163917391839193920392139223923392439253926392739283929393039313932393339343935393639373938393939403941394239433944394539463947394839493950395139523953395439553956395739583959396039613962396339643965396639673968396939703971397239733974397539763977397839793980398139823983398439853986398739883989399039913992399339943995399639973998399940004001400240034004400540064007400840094010401140124013401440154016401740184019402040214022402340244025402640274028402940304031403240334034403540364037403840394040404140424043404440454046404740484049405040514052405340544055405640574058405940604061406240634064406540664067406840694070407140724073407440754076407740784079408040814082408340844085408640874088408940904091409240934094409540964097409840994100410141024103410441054106410741084109411041114112411341144115411641174118411941204121412241234124412541264127412841294130413141324133413441354136413741384139414041414142414341444145414641474148414941504151415241534154415541564157415841594160416141624163416441654166416741684169417041714172417341744175417641774178417941804181418241834184418541864187418841894190419141924193419441954196419741984199420042014202420342044205420642074208420942104211421242134214421542164217421842194220422142224223422442254226422742284229423042314232423342344235423642374238423942404241424242434244424542464247424842494250425142524253425442554256425742584259426042614262426342644265426642674268426942704271427242734274427542764277427842794280428142824283428442854286428742884289429042914292429342944295429642974298429943004301430243034304430543064307430843094310431143124313431443154316431743184319432043214322432343244325432643274328432943304331433243334334433543364337433843394340434143424343434443454346434743484349435043514352435343544355435643574358435943604361436243634364436543664367436843694370437143724373437443754376437743784379438043814382438343844385438643874388438943904391439243934394439543964397439843994400440144024403440444054406440744084409441044114412441344144415441644174418441944204421442244234424442544264427442844294430443144324433443444354436443744384439444044414442444344444445444644474448444944504451445244534454445544564457445844594460446144624463446444654466446744684469447044714472447344744475447644774478447944804481448244834484448544864487448844894490449144924493449444954496449744984499450045014502450345044505450645074508450945104511451245134514451545164517451845194520452145224523452445254526452745284529453045314532453345344535453645374538453945404541454245434544454545464547454845494550455145524553455445554556455745584559456045614562456345644565456645674568456945704571457245734574457545764577457845794580458145824583458445854586458745884589459045914592459345944595459645974598459946004601460246034604460546064607460846094610461146124613461446154616461746184619462046214622462346244625462646274628462946304631463246334634463546364637463846394640464146424643464446454646464746484649465046514652465346544655465646574658465946604661466246634664466546664667466846694670467146724673467446754676467746784679468046814682468346844685468646874688468946904691469246934694469546964697469846994700470147024703470447054706470747084709471047114712471347144715471647174718471947204721472247234724472547264727472847294730473147324733473447354736473747384739474047414742474347444745474647474748474947504751475247534754475547564757475847594760476147624763476447654766476747684769477047714772477347744775477647774778477947804781478247834784478547864787478847894790479147924793479447954796479747984799480048014802480348044805480648074808480948104811481248134814481548164817481848194820482148224823482448254826482748284829483048314832483348344835483648374838483948404841484248434844484548464847484848494850485148524853485448554856485748584859486048614862486348644865486648674868486948704871487248734874487548764877487848794880488148824883488448854886488748884889489048914892489348944895489648974898489949004901490249034904490549064907490849094910491149124913491449154916491749184919492049214922492349244925492649274928492949304931493249334934493549364937493849394940494149424943494449454946494749484949495049514952495349544955495649574958495949604961496249634964496549664967496849694970497149724973497449754976497749784979498049814982498349844985498649874988498949904991499249934994499549964997499849995000500150025003500450055006500750085009501050115012501350145015501650175018501950205021502250235024502550265027502850295030503150325033503450355036503750385039504050415042504350445045504650475048504950505051505250535054505550565057505850595060506150625063506450655066506750685069507050715072507350745075507650775078507950805081508250835084508550865087508850895090509150925093509450955096509750985099510051015102510351045105510651075108510951105111511251135114511551165117511851195120512151225123512451255126512751285129513051315132513351345135513651375138513951405141514251435144514551465147514851495150515151525153515451555156515751585159516051615162516351645165516651675168516951705171517251735174517551765177517851795180518151825183518451855186518751885189519051915192519351945195519651975198519952005201520252035204520552065207520852095210521152125213521452155216521752185219522052215222522352245225522652275228522952305231523252335234523552365237523852395240524152425243524452455246524752485249525052515252525352545255525652575258
  1. import base64
  2. import datetime
  3. import logging
  4. import random
  5. import threading
  6. import time
  7. import traceback
  8. from io import BytesIO
  9. import jwt
  10. import requests
  11. import simplejson
  12. import simplejson as json
  13. from PIL import Image, ImageDraw, ImageFont
  14. from django.contrib.auth.hashers import make_password, check_password # 对密码加密模块
  15. from django.db import transaction
  16. from django.db.models import Q
  17. from django.http import HttpResponseRedirect
  18. from django.shortcuts import HttpResponse
  19. from django.utils.decorators import method_decorator
  20. from django.utils.timezone import utc
  21. from django.views.decorators.csrf import csrf_exempt
  22. from django.views.generic import TemplateView
  23. from django.views.generic import View
  24. from jwt.algorithms import RSAAlgorithm
  25. from ratelimit import limits
  26. from Ansjer.config import AuthCode_Expire, SERVER_DOMAIN, TUTK_PUSH_DOMAIN, \
  27. LOGGER, CONFIG_US, APP_MAPPING, DETECT_PUSH_DOMAINS
  28. from Ansjer.config import BASE_DIR, CONFIG_EUR, CONFIG_INFO, SERVER_DOMAIN_EUR
  29. from Controller.CheckUserData import DataValid, date_handler, RandomStr
  30. from Controller.UserDevice.UserSubscriptionController import UserSubscriptionControllerView
  31. from Model.models import Device_User, Role, UidPushModel, UserOauth2Model, UserExModel, Device_Info, UidSetModel, \
  32. UserAppFrequencyModel, CountryIPModel, CountryModel, UidChannelSetModel, Order_Model, UID_Bucket, Unused_Uid_Meal, \
  33. GatewayPush, CountryLanguageModel, LanguageModel, VodBucketModel, LogModel, UserEmailSubscriptions
  34. from Object.AWS.AmazonS3Util import AmazonS3Util
  35. from Object.AWS.SesClassObject import SesClassObject
  36. from Object.AliSmsObject import AliSmsObject
  37. from Object.RedisObject import RedisObject
  38. from Object.ResponseObject import ResponseObject
  39. from Object.TokenObject import TokenObject
  40. from Object.UVerifyObject import UVerifyObject
  41. from Service.CommonService import CommonService
  42. from Service.ModelService import ModelService
  43. from Service.TemplateService import TemplateService
  44. from Object.AWS.S3Email import S3Email
  45. from django.conf import settings
  46. AWS_ACCESS_KEY_ID = settings.AWS_ACCESS_KEY_ID
  47. AWS_SECRET_ACCESS_KEY = settings.AWS_SECRET_ACCESS_KEY
  48. # 获取验证码
  49. class authCodeView(TemplateView):
  50. @method_decorator(csrf_exempt)
  51. def dispatch(self, *args, **kwargs):
  52. # testtest11111111111111
  53. return super(authCodeView, self).dispatch(*args, **kwargs)
  54. @limits(calls=2, period=60)
  55. def post(self, request, *args, **kwargs):
  56. request.encoding = 'utf-8'
  57. lang = request.POST.get('language', None)
  58. response = ResponseObject(lang)
  59. was_limited = getattr(request, 'limited', False)
  60. if was_limited is True:
  61. return response.json(5)
  62. username = request.POST.get('userName', None)
  63. useremail = request.POST.get('userEmail', None)
  64. return self.ValidationError(username, useremail, response)
  65. # @limits(calls=2, period=60)
  66. def get(self, request, *args, **kwargs):
  67. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  68. request.encoding = 'utf-8'
  69. lang = request.GET.get('language', None)
  70. response = ResponseObject(lang)
  71. was_limited = getattr(request, 'limited', False)
  72. if was_limited is True:
  73. return response.json(5)
  74. username = request.GET.get('userName', None)
  75. email = request.GET.get('userEmail', None)
  76. return self.ValidationError(username, email, response)
  77. def ValidationError(self, username, email, response):
  78. if username:
  79. username = username.strip()
  80. return self.phoneCode(username, response)
  81. elif email:
  82. email = email.strip()
  83. return self.emailCode(email, response)
  84. else:
  85. return response.json(800)
  86. def phoneCode(self, phone, response):
  87. dataValid = DataValid()
  88. if dataValid.mobile_validate(phone):
  89. reds = RedisObject()
  90. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  91. if identifyingCode is False:
  92. user_qs = Device_User.objects.filter(username=phone)
  93. if user_qs.exists():
  94. return response.json(101)
  95. else:
  96. identifyingCode = RandomStr(6, True)
  97. if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=600):
  98. return response.json(0, {'identifyingCode': identifyingCode})
  99. else:
  100. return response.json(10, '生成缓存系统错误')
  101. else:
  102. return response.json(0, {'identifyingCode': identifyingCode})
  103. else:
  104. return response.json(107)
  105. def emailCode(self, email, response):
  106. dataValid = DataValid()
  107. if dataValid.email_validate(email):
  108. reds = RedisObject()
  109. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  110. if identifyingCode is False:
  111. user_qs = Device_User.objects.filter(username=email)
  112. email_qs = Device_User.objects.filter(userEmail=email)
  113. if user_qs.exists():
  114. return response.json(103)
  115. elif email_qs.exists():
  116. return response.json(103)
  117. else:
  118. identifyingCode = RandomStr(6, True)
  119. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=AuthCode_Expire):
  120. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  121. ses = SesClassObject()
  122. send_res = ses.send_email(
  123. send_address_list=[email],
  124. subject=send_data['title'],
  125. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  126. str(identifyingCode))
  127. )
  128. if send_res:
  129. return response.json(0, {'identifyingCode': identifyingCode})
  130. else:
  131. reds.del_data(key=email + '_identifyingCode')
  132. return response.json(44)
  133. else:
  134. return response.json(10, '生成缓存系统错误')
  135. else:
  136. return response.json(89, {'identifyingCode': identifyingCode})
  137. else:
  138. return response.json(107)
  139. # 验证码注册
  140. class registerView(TemplateView):
  141. @method_decorator(csrf_exempt)
  142. def dispatch(self, *args, **kwargs):
  143. return super(registerView, self).dispatch(*args, **kwargs)
  144. def post(self, request, *args, **kwargs):
  145. request.encoding = 'utf-8'
  146. request_dict = request.POST
  147. return self.validates(request_dict)
  148. def get(self, request, *args, **kwargs):
  149. request.encoding = 'utf-8'
  150. request_dict = request.GET
  151. return self.validates(request_dict)
  152. def validates(self, request_dict):
  153. username = request_dict.get('userName', None)
  154. userEmail = request_dict.get('userEmail', None)
  155. password = request_dict.get('userPwd', None)
  156. authCode = request_dict.get('identifyingCode', None)
  157. language = request_dict.get('language', None)
  158. unique = request_dict.get('unique', None)
  159. password_version = request_dict.get('pwdVersion', 'V1')
  160. salt = request_dict.get('salt', None)
  161. if unique:
  162. delete_local_account(unique)
  163. response = ResponseObject(language)
  164. if username and password and authCode:
  165. # 过滤空格
  166. username = username.strip()
  167. if userEmail:
  168. userEmail = userEmail.strip()
  169. return self.register(username, userEmail, password, authCode, response, password_version, salt)
  170. else:
  171. return response.json(800)
  172. def register(self, username, userEmail, password, authCode, response, password_version, salt):
  173. dataValid = DataValid()
  174. reds = RedisObject()
  175. identifyingCode = reds.get_data(key=username + '_identifyingCode')
  176. if identifyingCode is False:
  177. if userEmail:
  178. identifyingCode = reds.get_data(key=userEmail + '_identifyingCode')
  179. if identifyingCode is False:
  180. return response.json(120)
  181. else:
  182. username = userEmail
  183. else:
  184. return response.json(120)
  185. if authCode != identifyingCode:
  186. return response.json(121)
  187. if password_version == 'V1':
  188. password = make_password(password)
  189. re_flag = dataValid.password_validate(password)
  190. else:
  191. re_flag = True
  192. if not salt:
  193. return response.json(111)
  194. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  195. if re_flag:
  196. if dataValid.email_validate(username):
  197. if userEmail:
  198. print(userEmail)
  199. emailValid = Device_User.objects.filter(userEmail=userEmail)
  200. if emailValid.exists():
  201. return response.json(103)
  202. else:
  203. userEmail = username
  204. if username:
  205. nameValid = Device_User.objects.filter(username=username)
  206. if nameValid.exists():
  207. return response.json(101)
  208. try:
  209. create_data = {
  210. "username": username,
  211. "NickName": username,
  212. "userEmail": userEmail,
  213. "password": password,
  214. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  215. "is_active": True,
  216. "user_isValid": True,
  217. }
  218. users = Device_User.objects.create(**create_data)
  219. except Exception as e:
  220. errorInfo = traceback.format_exc()
  221. print(errorInfo)
  222. return response.json(424, repr(e))
  223. else:
  224. if reds.del_data(key=username + '_identifyingCode'):
  225. return response.json(0, {
  226. "user": {
  227. "userID": users.userID,
  228. "username": users.username,
  229. "userEmail": users.userEmail,
  230. "NickName": users.NickName,
  231. "userIconUrl": str(users.userIconUrl),
  232. "is_superuser": users.is_superuser,
  233. "is_active": users.is_active,
  234. "data_joined": date_handler(users.data_joined),
  235. "last_login": date_handler(users.last_login),
  236. }
  237. })
  238. else:
  239. return response.json(10, '删除缓存验证码错误')
  240. elif dataValid.mobile_validate(username):
  241. nameValid = Device_User.objects.filter(username=username)
  242. if nameValid:
  243. return response.json(101)
  244. try:
  245. create_data = {
  246. "username": username,
  247. "NickName": username,
  248. "userEmail": userEmail,
  249. "password": password,
  250. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  251. "is_active": True,
  252. "user_isValid": True,
  253. }
  254. users = Device_User.objects.create(**create_data)
  255. except Exception as e:
  256. errorInfo = traceback.format_exc()
  257. print(errorInfo)
  258. return response.json(424, repr(e))
  259. else:
  260. if reds.del_data(key=username + '_identifyingCode'):
  261. return response.json(0, {
  262. "user": {
  263. "userID": users.userID,
  264. "username": users.username,
  265. "userEmail": users.userEmail,
  266. "NickName": users.NickName,
  267. "userIconUrl": str(users.userIconUrl),
  268. "is_superuser": users.is_superuser,
  269. "is_active": users.is_active,
  270. "data_joined": date_handler(users.data_joined),
  271. "last_login": date_handler(users.last_login),
  272. }
  273. })
  274. else:
  275. return response.json(10, '删除缓存验证码错误')
  276. else:
  277. return response.json(107)
  278. else:
  279. return response.json(109)
  280. # 登出
  281. class LogoutView(TemplateView):
  282. @method_decorator(csrf_exempt)
  283. def dispatch(self, *args, **kwargs):
  284. return super(LogoutView, self).dispatch(*args, **kwargs)
  285. def post(self, request, *args, **kwargs):
  286. request.encoding = 'utf-8'
  287. request_dict = request.POST
  288. return self.Logout(request_dict)
  289. def get(self, request, *args, **kwargs):
  290. request.encoding = 'utf-8'
  291. request_dict = request.GET
  292. return self.Logout(request_dict)
  293. def Logout(self, request_dict):
  294. response = ResponseObject()
  295. token = request_dict.get('token')
  296. tko = TokenObject(token)
  297. if tko.code != 0:
  298. return response.json(tko.code)
  299. m_code = request_dict.get('m_code', None)
  300. try:
  301. with transaction.atomic():
  302. Device_User.objects.filter(userID=tko.userID).update(online=False)
  303. Device_Info.objects.filter(userID=tko.userID).update(NotificationMode=0)
  304. if m_code:
  305. userID = tko.userID
  306. UidPushModel.objects.filter(userID_id=userID, m_code=m_code).delete()
  307. GatewayPush.objects.filter(user_id=userID, m_code=m_code).update(logout=True)
  308. # 记录操作日志
  309. username = CommonService.get_username(userID)
  310. now_time = int(time.time())
  311. content = json.loads(json.dumps(request_dict))
  312. log = {
  313. 'user_id': 1,
  314. 'status': 200,
  315. 'time': now_time,
  316. 'content': json.dumps(content),
  317. 'url': 'account/logout',
  318. 'operation': '{}退出登录,m_code:{}'.format(username, m_code),
  319. }
  320. LogModel.objects.create(**log)
  321. return response.json(0)
  322. except Exception as e:
  323. LOGGER.info('退出登录异常:error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  324. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  325. # 修改密码
  326. class ChangePwdView(TemplateView):
  327. @method_decorator(csrf_exempt)
  328. def dispatch(self, *args, **kwargs):
  329. return super(ChangePwdView, self).dispatch(*args, **kwargs)
  330. def post(self, request, *args, **kwargs):
  331. request.encoding = 'utf-8'
  332. request_dict = request.POST
  333. return self.validates(request_dict)
  334. def get(self, request, *args, **kwargs):
  335. request.encoding = 'utf-8'
  336. request_dict = request.GET
  337. return self.validates(request_dict)
  338. def validates(self, request_dict):
  339. token = request_dict.get('token', None)
  340. oldPwd = request_dict.get('oldPwd', None)
  341. newPwd = request_dict.get('newPwd', None)
  342. password_version = request_dict.get('pwdVersion', 'V1')
  343. new_salt = request_dict.get('newSalt', None)
  344. old_salt = request_dict.get('oldSalt', None)
  345. iterations = request_dict.get('iterations', None)
  346. response = ResponseObject()
  347. if oldPwd is None and newPwd is None:
  348. return response.json(800)
  349. tko = TokenObject(token)
  350. response.lang = tko.lang
  351. if tko.code != 0:
  352. return response.json(tko.code)
  353. return self.updatePwd(tko.userID, oldPwd, newPwd, response, password_version, new_salt, old_salt, iterations)
  354. def updatePwd(self, userID, oldPwd, newPwd, response, password_version, new_salt, old_salt, iterations):
  355. user_qs = Device_User.objects.filter(userID=userID)
  356. if not user_qs.exists():
  357. return response.json(104)
  358. if password_version == 'V1':
  359. c_p = check_password(oldPwd, user_qs[0].password)
  360. else:
  361. if not all([iterations, old_salt]):
  362. return response.json(444)
  363. oldPwd = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), old_salt, oldPwd)
  364. c_p = CommonService.check_password(oldPwd, user_qs[0].password)
  365. # 密码是否正确
  366. if not c_p:
  367. return response.json(111)
  368. if password_version == 'V1':
  369. newPwd = make_password(newPwd)
  370. else:
  371. if not new_salt:
  372. return response.json(111)
  373. newPwd = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, new_salt, newPwd)
  374. update = user_qs.update(password=newPwd)
  375. if update:
  376. return response.json(0)
  377. else:
  378. return response.json(177)
  379. # 修改密码v3
  380. class v3ChangePwdView(TemplateView):
  381. @method_decorator(csrf_exempt)
  382. def dispatch(self, *args, **kwargs):
  383. return super(v3ChangePwdView, self).dispatch(*args, **kwargs)
  384. def post(self, request, *args, **kwargs):
  385. request.encoding = 'utf-8'
  386. request_dict = request.POST
  387. return self.validates(request_dict)
  388. def get(self, request, *args, **kwargs):
  389. request.encoding = 'utf-8'
  390. request_dict = request.GET
  391. return self.validates(request_dict)
  392. def validates(self, request_dict):
  393. token = request_dict.get('token', None)
  394. oldPwd = request_dict.get('oldPwd', None)
  395. newPwd = request_dict.get('newPwd', None)
  396. new_salt = request_dict.get('newSalt', None)
  397. old_salt = request_dict.get('oldSalt', None)
  398. iterations = request_dict.get('iterations', None)
  399. lang = request_dict.get('lang', 'en')
  400. password_version = request_dict.get('pwdVersion', 'V1')
  401. response = ResponseObject(lang)
  402. # 解密
  403. try:
  404. if password_version == 'V1':
  405. for i in range(1, 4):
  406. if i == 1:
  407. oldPwd = base64.b64decode(oldPwd)
  408. oldPwd = oldPwd.decode('utf-8')
  409. oldPwd = oldPwd[1:-1]
  410. if i == 2:
  411. oldPwd = base64.b64decode(oldPwd)
  412. oldPwd = oldPwd.decode('utf-8')
  413. oldPwd = oldPwd[2:-2]
  414. if i == 3:
  415. oldPwd = base64.b64decode(oldPwd)
  416. oldPwd = oldPwd.decode('utf-8')
  417. oldPwd = oldPwd[3:-3]
  418. for i in range(1, 4):
  419. if i == 1:
  420. newPwd = base64.b64decode(newPwd)
  421. newPwd = newPwd.decode('utf-8')
  422. newPwd = newPwd[1:-1]
  423. if i == 2:
  424. newPwd = base64.b64decode(newPwd)
  425. newPwd = newPwd.decode('utf-8')
  426. newPwd = newPwd[2:-2]
  427. if i == 3:
  428. newPwd = base64.b64decode(newPwd)
  429. newPwd = newPwd.decode('utf-8')
  430. newPwd = newPwd[3:-3]
  431. if oldPwd is None or newPwd is None or len(newPwd) < 6:
  432. return response.json(111)
  433. data_valid = DataValid()
  434. if not data_valid.password_validate(newPwd):
  435. return response.json(109)
  436. except Exception as e:
  437. return response.json(111)
  438. else:
  439. tko = TokenObject(token)
  440. response.lang = tko.lang
  441. if tko.code != 0:
  442. return response.json(tko.code)
  443. return self.updatePwd(tko.userID, oldPwd, newPwd, response, password_version, new_salt, old_salt,
  444. iterations)
  445. def updatePwd(self, userID, oldPwd, newPwd, response, password_version, new_salt, old_salt, iterations):
  446. user_qs = Device_User.objects.filter(userID=userID)
  447. if not user_qs.exists():
  448. return response.json(104)
  449. if password_version == 'V1':
  450. c_p = check_password(oldPwd, user_qs[0].password)
  451. else:
  452. if not all([iterations, old_salt]):
  453. return response.json(444)
  454. oldPwd = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), old_salt, oldPwd)
  455. c_p = CommonService.check_password(oldPwd, user_qs[0].password)
  456. # 密码是否正确
  457. if not c_p:
  458. return response.json(111)
  459. if password_version == 'V1':
  460. newPwd = make_password(newPwd)
  461. else:
  462. if not new_salt:
  463. return response.json(111)
  464. newPwd = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, new_salt, newPwd)
  465. update = user_qs.update(password=newPwd)
  466. if update:
  467. return response.json(0)
  468. else:
  469. return response.json(177)
  470. # 创建密码接口
  471. class createPwd(TemplateView):
  472. def get(self, request, *args, **kwargs):
  473. request.encoding = 'utf-8'
  474. return self.validation(request.GET)
  475. def post(self, request, *args, **kwargs):
  476. request.encoding = 'utf-8'
  477. return self.validation(request.POST)
  478. def validation(self, request_dict):
  479. token = request_dict.get('token', None)
  480. password = request_dict.get('password', None)
  481. salt = request_dict.get('salt', None)
  482. password_version = request_dict.get('pwdVersion', 'V1')
  483. response = ResponseObject()
  484. if not all([token, password]):
  485. return response.json(444)
  486. try:
  487. # 解密token获取userID
  488. tko = TokenObject(token)
  489. response.lang = tko.lang
  490. if tko.code != 0:
  491. return response.json(tko.code)
  492. userID = tko.userID
  493. # 解密
  494. if password_version == 'V1':
  495. for i in range(1, 4):
  496. password = base64.b64decode(password)
  497. password = password.decode('utf-8')
  498. password = password[i:-i]
  499. password = make_password(password)
  500. else:
  501. if not salt:
  502. return response.json(111)
  503. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  504. update = Device_User.objects.filter(userID=userID).update(password=password)
  505. if update:
  506. return response.json(0)
  507. else:
  508. return response.json(177)
  509. except Exception as e:
  510. djangoLogger = logging.getLogger('django')
  511. djangoLogger.exception(e)
  512. print(e)
  513. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  514. class ForgetPwdView(TemplateView):
  515. '''
  516. 忘记密码
  517. '''
  518. @method_decorator(csrf_exempt)
  519. def dispatch(self, *args, **kwargs):
  520. return super(ForgetPwdView, self).dispatch(*args, **kwargs)
  521. @limits(calls=2, period=60)
  522. def get(self, request, *args, **kwargs):
  523. request.encoding = 'utf-8'
  524. response = ResponseObject()
  525. was_limited = getattr(request, 'limited', False)
  526. if was_limited is True:
  527. return response.json(5)
  528. userName = request.GET.get('userName', None)
  529. return self.ValidationError(userName, response)
  530. @limits(calls=2, period=60)
  531. def post(self, request):
  532. request.encoding = 'utf-8'
  533. userName = request.POST.get('userName', None)
  534. response = ResponseObject()
  535. was_limited = getattr(request, 'limited', False)
  536. if was_limited is True:
  537. return response.json(5)
  538. return self.ValidationError(userName, response)
  539. def ValidationError(self, userName, response):
  540. # return response.json(475)
  541. if userName != None:
  542. userName = userName.strip()
  543. return self.ForgetPwd(userName, response)
  544. else:
  545. return response.json(800)
  546. def ForgetPwd(self, userName, response):
  547. dataValid = DataValid()
  548. if dataValid.mobile_validate(userName):
  549. User = Device_User.objects.filter(username=userName)
  550. elif dataValid.email_validate(userName):
  551. User = Device_User.objects.filter(username=userName)
  552. if not User.exists():
  553. User = Device_User.objects.filter(userEmail=userName)
  554. else:
  555. return response.json(104)
  556. if User:
  557. email = User[0].userEmail
  558. userID = User[0].userID
  559. if email:
  560. redisObj = RedisObject()
  561. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  562. if reset_pwd is False:
  563. tko = TokenObject()
  564. rest = tko.generate(data={'userID': userID, 'user': userName})
  565. token = rest['access_token']
  566. reset_pwd = CommonService.RandomStr(6)
  567. send_data = TemplateService.email_message(type='forget', language='en')
  568. reset_link = '{server_host}account/email-re-pwd?token={token}'.format(
  569. server_host=SERVER_DOMAIN, token=token)
  570. send_body = send_data['body'].format(username=email, reset_pwd=reset_pwd, reset_link=reset_link)
  571. ses = SesClassObject()
  572. send_res = ses.send_email(send_address_list=[email], subject=send_data['title'], body=send_body)
  573. if send_res is True:
  574. if redisObj.set_data(key=userID + '_email_reset_pwd', val=reset_pwd, expire=3600):
  575. return response.json(0)
  576. else:
  577. return response.json(10, '存储验证失败')
  578. else:
  579. return response.json(89)
  580. else:
  581. return response.json(103)
  582. else:
  583. return response.json(104)
  584. class EmailResetPwdView(TemplateView):
  585. @method_decorator(csrf_exempt)
  586. def dispatch(self, *args, **kwargs):
  587. return super(EmailResetPwdView, self).dispatch(*args, **kwargs)
  588. # 查询
  589. def get(self, request, *args, **kwargs):
  590. response = ResponseObject()
  591. request_dict = request.GET
  592. return self.validate(request_dict, response, *args, **kwargs)
  593. # 认证登录
  594. def post(self, request, *args, **kwargs):
  595. response = ResponseObject()
  596. try:
  597. print(request.body.decode("utf-8"))
  598. json_data = json.loads(request.body.decode("utf-8"))
  599. except Exception as e:
  600. return response.json(10, repr(e))
  601. else:
  602. request_dict = json_data
  603. return self.validate(request_dict, response, *args, **kwargs)
  604. def validate(self, request_dict, response, *args, **kwargs):
  605. token = request_dict.get('token', None)
  606. tko = TokenObject(token)
  607. if tko.code == 0:
  608. redisObj = RedisObject()
  609. userID = tko.userID
  610. reset_pwd = redisObj.get_data(key=userID + '_email_reset_pwd')
  611. if reset_pwd is not False:
  612. user_qs = Device_User.objects.filter(userID=userID)
  613. if user_qs.exists():
  614. redisObj.del_data(key=userID + '_email_reset_pwd')
  615. is_update = user_qs.update(password=make_password(reset_pwd))
  616. if is_update:
  617. return HttpResponseRedirect(
  618. "http://www.zositechc.cn/web/html/paw_update_success.html?code=" + reset_pwd)
  619. else:
  620. return response.json(10)
  621. else:
  622. return response.json(104)
  623. else:
  624. return HttpResponseRedirect('http://www.zositechc.cn/web/html/paw_update_unsuccessful.html?lang=en')
  625. else:
  626. return HttpResponseRedirect('http://www.zositechc.cn/web/html/paw_update_unsuccessful.html?lang=en')
  627. class refreshTokenView(TemplateView):
  628. @method_decorator(csrf_exempt)
  629. def dispatch(self, *args, **kwargs):
  630. return super(refreshTokenView, self).dispatch(*args, **kwargs)
  631. def post(self, request, *args, **kwargs):
  632. request.encoding = 'utf-8'
  633. content_type = request.META.get('CONTENT_TYPE', None)
  634. if content_type == 'application/json':
  635. request_dict = json.loads(request.body.decode('utf-8'))
  636. else:
  637. request_dict = request.POST
  638. return self.validation(request_dict)
  639. def get(self, request, *args, **kwargs):
  640. request.encoding = 'utf-8'
  641. request_dict = request.GET
  642. return self.validation(request_dict)
  643. def validation(self, request_dict):
  644. token = request_dict.get('token', None)
  645. lang = request_dict.get('lang', None)
  646. language = request_dict.get('language', None)
  647. if lang is None:
  648. lang = language
  649. response = ResponseObject(lang)
  650. if token is not None:
  651. tko = TokenObject(token)
  652. tko.lang = lang
  653. res = tko.refresh()
  654. userID = tko.userID
  655. if tko.code == 0:
  656. # 更新用户扩展信息语言
  657. try:
  658. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  659. if user_ex_qs.exists():
  660. nowTime = int(time.time())
  661. update_dict = {
  662. 'updTime': nowTime,
  663. 'region': lang
  664. }
  665. user_ex_qs.update(**update_dict)
  666. except Exception as e:
  667. pass
  668. # # #
  669. return response.json(0, res)
  670. else:
  671. return response.json(tko.code)
  672. else:
  673. return response.json(444, 'token')
  674. class refreshTokenViewV3(TemplateView):
  675. @method_decorator(csrf_exempt)
  676. def dispatch(self, *args, **kwargs):
  677. return super(refreshTokenViewV3, self).dispatch(*args, **kwargs)
  678. def post(self, request, *args, **kwargs):
  679. request.encoding = 'utf-8'
  680. content_type = request.META.get('CONTENT_TYPE', None)
  681. if content_type == 'application/json':
  682. request_dict = json.loads(request.body.decode('utf-8'))
  683. else:
  684. request_dict = request.POST
  685. return self.validation(request_dict)
  686. def get(self, request, *args, **kwargs):
  687. request.encoding = 'utf-8'
  688. request_dict = request.GET
  689. return self.validation(request_dict)
  690. @staticmethod
  691. def delete_user_and_device(user_id):
  692. # 删除不同区域相同用户
  693. data = {'userID': user_id}
  694. url_list = CommonService.get_orders_domain_name_list()
  695. if SERVER_DOMAIN_EUR in url_list:
  696. url_list.remove(SERVER_DOMAIN_EUR)
  697. if CONFIG_INFO != CONFIG_EUR:
  698. for url in url_list:
  699. requests.post(url=url + 'v3/account/deleteUser', data=data, timeout=3)
  700. def validation(self, request_dict):
  701. token = request_dict.get('token', None)
  702. lang = request_dict.get('lang', None)
  703. language = request_dict.get('language', None)
  704. password = request_dict.get('userPwd', None)
  705. salt = request_dict.get('salt', None)
  706. iterations = request_dict.get('iterations', None)
  707. password_version = request_dict.get('pwdVersion', 'V1')
  708. response = ResponseObject(lang)
  709. if not token:
  710. return response.json(444, 'token')
  711. if lang is None:
  712. lang = language
  713. try:
  714. # token检验
  715. tko = TokenObject(token)
  716. res = tko.refresh() # 更新refresh_token
  717. if tko.code != 0:
  718. return response.json(tko.code)
  719. userID = tko.userID
  720. tko.lang = lang
  721. # 国外正式服,判断是否需要重新登陆
  722. user_qs = Device_User.objects.filter(userID=userID).values('password', 'region_country')
  723. if CONFIG_INFO == CONFIG_US or CONFIG_INFO == CONFIG_EUR:
  724. country_id = user_qs[0]['region_country']
  725. LOGGER.info('刷新token, country_id:{}'.format(country_id))
  726. country_qs = CountryModel.objects.filter(id=country_id).values('region_id')
  727. if country_qs.exists():
  728. region_id = country_qs[0]['region_id']
  729. if (CONFIG_INFO == CONFIG_US and region_id == 4) or \
  730. (CONFIG_INFO == CONFIG_EUR and region_id != 4):
  731. LOGGER.info('用户地区与请求的服务器配置不一致')
  732. return response.json(309)
  733. if password: # 检验密码
  734. if not user_qs.exists():
  735. return response.json(104)
  736. password = password.strip()
  737. # 解密
  738. if password_version == 'V1':
  739. for i in range(1, 4):
  740. password = base64.b64decode(password)
  741. password = password.decode('utf-8')
  742. password = password[i:-i]
  743. if not check_password(password, list(user_qs)[0]['password']):
  744. return response.json(111)
  745. else:
  746. if not all([iterations, salt]):
  747. return response.json(444)
  748. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), salt, password)
  749. if not CommonService.check_password(password, list(user_qs)[0]['password']):
  750. return response.json(111)
  751. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  752. user_qs.update(last_login=now_time)
  753. # 更新用户扩展信息语言
  754. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  755. if user_ex_qs.exists():
  756. nowTime = int(time.time())
  757. update_dict = {
  758. 'updTime': nowTime,
  759. 'region': lang
  760. }
  761. user_ex_qs.update(**update_dict)
  762. # # 删除相同用户
  763. # request_thread = threading.Thread(target=self.delete_user_and_device, args=(userID,))
  764. # request_thread.start()
  765. return response.json(0, res)
  766. except Exception as e:
  767. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  768. # 获取验证码
  769. class v2authCodeView(TemplateView):
  770. @method_decorator(csrf_exempt)
  771. def dispatch(self, *args, **kwargs):
  772. return super(v2authCodeView, self).dispatch(*args, **kwargs)
  773. @limits(calls=2, period=60)
  774. def post(self, request, *args, **kwargs):
  775. request.encoding = 'utf-8'
  776. lang = request.POST.get('lang', None)
  777. if not lang:
  778. lang = request.POST.get('language', None)
  779. response = ResponseObject(lang)
  780. request_dict = request.POST
  781. phone = request_dict.get('phone', None)
  782. if phone is not None:
  783. was_limited = getattr(request, 'limited', False)
  784. if was_limited is True:
  785. return response.json(5)
  786. return self.ValidationError(request_dict, response)
  787. def get(self, request, *args, **kwargs):
  788. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  789. request.encoding = 'utf-8'
  790. lang = request.GET.get('lang', None)
  791. if not lang:
  792. lang = request.GET.get('language', None)
  793. response = ResponseObject(lang)
  794. was_limited = getattr(request, 'limited', False)
  795. if was_limited is True:
  796. return response.json(5)
  797. request_dict = request.GET
  798. return self.ValidationError(request_dict, response)
  799. def ValidationError(self, request_dict, response):
  800. email = request_dict.get('email', None)
  801. phone = request_dict.get('phone', None)
  802. country_code = request_dict.get('country_code', None)
  803. sign_name = request_dict.get('sign_name', None)
  804. if email is not None:
  805. email = email.strip()
  806. # 阿里云的发送邮箱的调用方法
  807. return self.aliyun_emailCode(email, response)
  808. # return self.emailCode(email, response)
  809. elif phone is not None:
  810. phone = phone.strip()
  811. # 短信签名
  812. sign_name = CommonService.confirm_msg_sign_name(sign_name, phone)
  813. if country_code is None:
  814. return self.phoneCode(phone, response, sign_name)
  815. else:
  816. country_code = str(country_code.strip())
  817. return self.phoneCodeV2(country_code, phone, response, sign_name)
  818. else:
  819. return response.json(444)
  820. def emailCode(self, email, response):
  821. dataValid = DataValid()
  822. # 邮箱匹配
  823. if dataValid.email_validate(email) is False:
  824. return response.json(107)
  825. reds = RedisObject()
  826. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  827. # 是否以获取邮箱验证码
  828. if identifyingCode:
  829. return response.json(89)
  830. user_qs = Device_User.objects.filter(username=email)
  831. email_qs = Device_User.objects.filter(userEmail=email)
  832. # 邮箱用户是否已存在
  833. if user_qs.exists():
  834. return response.json(103)
  835. elif email_qs.exists():
  836. return response.json(103)
  837. # 生成随机6位数
  838. identifyingCode = RandomStr(6, True)
  839. # 设置随机数缓存生命周期
  840. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  841. ses = SesClassObject()
  842. # 发送邮件
  843. send_res = ses.send_email(
  844. send_address_list=[email],
  845. subject=send_data['title'],
  846. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  847. str(identifyingCode))
  848. )
  849. if send_res is not True:
  850. return response.json(44)
  851. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=300) is not True:
  852. return response.json(10, 'error')
  853. return response.json(0)
  854. # return response.json(0, {'identifyingCode': identifyingCode})
  855. # 阿里云获取邮箱验证码
  856. def aliyun_emailCode(self, email, response):
  857. try:
  858. print('阿里云开始')
  859. dataValid = DataValid()
  860. # 邮箱匹配
  861. if dataValid.email_validate(email) is False:
  862. return response.json(107)
  863. reds = RedisObject()
  864. code_key = f'ZOSI:BASIC:USER:EMAIL:{email}'
  865. code = reds.get_data(key=code_key)
  866. # 是否以获取邮箱验证码
  867. if code:
  868. return response.json(0, "please check code or get it again after 1m")
  869. user_qs = Device_User.objects.filter(username=email)
  870. email_qs = Device_User.objects.filter(userEmail=email)
  871. # 邮箱用户是否已存在
  872. if user_qs.exists():
  873. return response.json(103)
  874. elif email_qs.exists():
  875. return response.json(103)
  876. # 生成随机6位数
  877. identifyingCode = RandomStr(6, True)
  878. # 设置随机数缓存生命周期
  879. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  880. start_time = time.time()
  881. send_res = self.send_email(send_data, email, identifyingCode) # 发送验证码到用户邮箱
  882. end_time = time.time()
  883. LOGGER.info('{}阿里云邮箱发送验证码执行时间: {:.3f} 秒,email:{}'.format(CONFIG_INFO, (end_time - start_time), email))
  884. if send_res is not True:
  885. return response.json(44)
  886. # 单个邮箱验证码有效期5分钟
  887. if reds.set_data(key=email + '_identifyingCode', val=identifyingCode, expire=300) is not True:
  888. return response.json(10, 'error')
  889. # 单个邮箱一分钟发送一次验证码
  890. reds.set_data(key=code_key, val=identifyingCode, expire=60)
  891. return response.json(0)
  892. except Exception as e:
  893. LOGGER.info('aliyun_emailCode error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  894. return response.json(0)
  895. @classmethod
  896. def send_email(cls, send_data, user_email, identifyingCode):
  897. ses = SesClassObject()
  898. body = send_data['body'].replace("{username}", user_email).replace("{captcha}", str(identifyingCode))
  899. title = send_data['title']
  900. if CONFIG_INFO == CONFIG_EUR or CONFIG_INFO == CONFIG_US:
  901. send_res = S3Email().send_email(send_data['title'], send_data['body'].replace("{username}", user_email)
  902. .replace("{captcha}", str(identifyingCode)), user_email)
  903. return send_res
  904. # 发送邮件
  905. send_res = ses.alyEmailCode(
  906. send_address_list=[user_email],
  907. subject=title,
  908. body=body
  909. )
  910. return send_res
  911. def phoneCode(self, phone, response, sign_name):
  912. dataValid = DataValid()
  913. if dataValid.mobile_validate(phone) is not True:
  914. return response.json(107)
  915. reds = RedisObject()
  916. reds_key = str(phone) + '_identifyingCode'
  917. identifyingCode = reds.get_data(key=reds_key)
  918. reds_key_ttl = reds.get_ttl(key=reds_key)
  919. if reds_key_ttl > 240 and identifyingCode:
  920. # if identifyingCode :
  921. return response.json(90)
  922. user_qs = Device_User.objects.filter(username=phone)
  923. phone_qs = Device_User.objects.filter(phone=phone)
  924. if user_qs.exists() or phone_qs.exists():
  925. return response.json(101)
  926. identifyingCode = RandomStr(6, True)
  927. # 发送手机验证码
  928. aliSms = AliSmsObject()
  929. res = aliSms.send_code_sms(phone=phone, code=identifyingCode, sign_name=sign_name,
  930. temp_msg='SMS_151600991')
  931. print(res)
  932. code = res["Code"]
  933. if code == "OK":
  934. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  935. # if reds.set_data(key=phone + '_identifyingCode', val=identifyingCode, expire=60) is not True:
  936. return response.json(10, '生成缓存系统错误')
  937. return response.json(0)
  938. else:
  939. msg = res["Message"]
  940. if code == "isv.MOBILE_NUMBER_ILLEGAL":
  941. if response.lang == "cn":
  942. msg = phone + "非法手机"
  943. return response.json(10, msg)
  944. def phoneCodeV2(self, country_code, phone, response, sign_name):
  945. dataValid = DataValid()
  946. if dataValid.mobile_validate(phone) is not True:
  947. return response.json(107)
  948. reds = RedisObject()
  949. reds_key = str(phone) + '_identifyingCode'
  950. identifyingCode = reds.get_data(key=reds_key)
  951. reds_key_ttl = reds.get_ttl(key=reds_key)
  952. if reds_key_ttl > 240 and identifyingCode:
  953. # if identifyingCode :
  954. return response.json(90)
  955. user_qs = Device_User.objects.filter(username=phone)
  956. phone_qs = Device_User.objects.filter(phone=phone)
  957. if user_qs.exists() or phone_qs.exists():
  958. return response.json(101)
  959. identifyingCode = RandomStr(6, True)
  960. if country_code == '86':
  961. # 国内短信推送模板
  962. temp_msg = 'SMS_151600991'
  963. rec_phone = phone
  964. else:
  965. # 国际短信推送模板
  966. temp_msg = 'SMS_172165867'
  967. rec_phone = country_code + phone
  968. sign_name = 'Ansjer'
  969. # 发送手机验证码
  970. aliSms = AliSmsObject()
  971. res = aliSms.send_code_sms(phone=rec_phone, code=identifyingCode, sign_name=sign_name,
  972. temp_msg=temp_msg)
  973. print(res)
  974. if res["Code"] == "OK":
  975. # if reds.set_data(key=reds_key, val=identifyingCode, expire=60) is not True:
  976. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  977. return response.json(10, '生成缓存系统错误')
  978. return response.json(0)
  979. else:
  980. return response.json(10, res["Message"])
  981. # 验证码注册
  982. class v2registerView(TemplateView):
  983. @method_decorator(csrf_exempt)
  984. def dispatch(self, *args, **kwargs):
  985. return super(v2registerView, self).dispatch(*args, **kwargs)
  986. def post(self, request, *args, **kwargs):
  987. request.encoding = 'utf-8'
  988. request_dict = request.POST
  989. return self.validates(request_dict)
  990. def get(self, request, *args, **kwargs):
  991. request.encoding = 'utf-8'
  992. request_dict = request.GET
  993. return self.validates(request_dict)
  994. def validates(self, request_dict):
  995. phone = request_dict.get('phone', None)
  996. email = request_dict.get('email', None)
  997. password = request_dict.get('password', None)
  998. authcode = request_dict.get('authcode', None)
  999. lang = request_dict.get('lang', None)
  1000. unique = request_dict.get('unique', None)
  1001. number = request_dict.get('number', None)
  1002. salt = request_dict.get('salt', None)
  1003. password_version = request_dict.get('pwdVersion', 'V1')
  1004. if unique:
  1005. delete_local_account(unique)
  1006. response = ResponseObject(lang)
  1007. if not lang:
  1008. lang = request_dict.get('language', None)
  1009. if password is None:
  1010. return response.json(444, 'password')
  1011. if authcode is None:
  1012. return response.json(444, 'identifyingCode')
  1013. if phone is not None:
  1014. return self.do_phone_register(phone, password, authcode, number, response, password_version, salt)
  1015. elif email is not None:
  1016. return self.do_email_register(email, password, authcode, number, response, password_version, salt)
  1017. else:
  1018. return response.json(444, 'phone or email')
  1019. def do_phone_register(self, phone, password, authcode, number, response, password_version, salt):
  1020. data_valid = DataValid()
  1021. if data_valid.mobile_validate(phone) is not True:
  1022. return response.json(100)
  1023. if password_version == 'V1':
  1024. re_flag = data_valid.password_validate(password)
  1025. password = make_password(password)
  1026. else:
  1027. if not salt:
  1028. return response.json(111)
  1029. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1030. re_flag = True
  1031. if re_flag is not True:
  1032. return response.json(109)
  1033. reds = RedisObject()
  1034. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  1035. # 判断验证码是否过期
  1036. if identifyingCode is False:
  1037. return response.json(120)
  1038. # 验证码是否正确
  1039. if authcode != identifyingCode:
  1040. return response.json(121)
  1041. phone_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1042. # 是否已存在
  1043. if phone_qs.exists():
  1044. return response.json(101)
  1045. try:
  1046. create_data = {
  1047. "username": phone,
  1048. "NickName": phone,
  1049. "phone": phone,
  1050. "password": password,
  1051. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  1052. "is_active": True,
  1053. "user_isValid": True,
  1054. }
  1055. if number:
  1056. create_data["region_country"] = number
  1057. Device_User.objects.create(**create_data)
  1058. except Exception as e:
  1059. errorInfo = traceback.format_exc()
  1060. print(errorInfo)
  1061. return response.json(424, repr(e))
  1062. else:
  1063. if not reds.del_data(key=phone + '_identifyingCode'):
  1064. return response.json(10, '删除缓存验证码错误')
  1065. return self.do_login(phone_qs, response)
  1066. def do_login(self, user_qs, response):
  1067. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1068. user_qs.update(last_login=now_time, online=True)
  1069. userID = user_qs[0].userID
  1070. print('userID' + userID)
  1071. tko = TokenObject()
  1072. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1073. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1074. # 增加角色
  1075. user_qs[0].role.add(Role.objects.get(rid=1))
  1076. role_dict = ModelService.own_role(userID=userID)
  1077. res['rid'] = role_dict['rid']
  1078. res['roleName'] = role_dict['roleName']
  1079. res['permList'] = ModelService.own_permission(userID)
  1080. res['userID'] = userID
  1081. # 昵称,邮箱,电话,刷新,头像
  1082. userIconPath = str(user_list[0]["userIconPath"])
  1083. if userIconPath and userIconPath.find('static/') != -1:
  1084. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1085. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1086. else:
  1087. res['userIconUrl'] = ''
  1088. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1089. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1090. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1091. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1092. print(res)
  1093. return response.json(0, res)
  1094. def do_email_register(self, email, password, authcode, number, response, password_version, salt):
  1095. data_valid = DataValid()
  1096. if data_valid.email_validate(email) is not True:
  1097. return response.json(105)
  1098. if password_version == 'V1':
  1099. re_flag = data_valid.email_validate(email)
  1100. password = make_password(password)
  1101. else:
  1102. if not salt:
  1103. return response.json(111)
  1104. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1105. re_flag = True
  1106. if re_flag is not True:
  1107. return response.json(109)
  1108. reds = RedisObject()
  1109. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  1110. # 判断验证码是否过期
  1111. if identifyingCode is False:
  1112. return response.json(120)
  1113. # 验证码是否正确
  1114. if authcode != identifyingCode:
  1115. return response.json(121)
  1116. email_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1117. # 是否已存在
  1118. if email_qs.exists():
  1119. return response.json(103)
  1120. try:
  1121. create_data = {
  1122. "username": email,
  1123. "NickName": email,
  1124. "userEmail": email,
  1125. "password": password,
  1126. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  1127. "is_active": True,
  1128. "user_isValid": True,
  1129. }
  1130. if number:
  1131. create_data["region_country"] = number
  1132. Device_User.objects.create(**create_data)
  1133. except Exception as e:
  1134. errorInfo = traceback.format_exc()
  1135. print(errorInfo)
  1136. return response.json(424, repr(e))
  1137. else:
  1138. if not reds.del_data(key=email + '_identifyingCode'):
  1139. return response.json(10, '删除缓存验证码错误')
  1140. return self.do_login(email_qs, response)
  1141. class v3registerView(TemplateView):
  1142. @method_decorator(csrf_exempt)
  1143. def dispatch(self, *args, **kwargs):
  1144. return super(v3registerView, self).dispatch(*args, **kwargs)
  1145. def post(self, request, *args, **kwargs):
  1146. request.encoding = 'utf-8'
  1147. request_dict = request.POST
  1148. return self.validates(request_dict)
  1149. def get(self, request, *args, **kwargs):
  1150. request.encoding = 'utf-8'
  1151. request_dict = request.GET
  1152. return self.validates(request_dict)
  1153. def validates(self, request_dict):
  1154. """
  1155. V3注册接口
  1156. @param request_dict: 请求数据
  1157. @request_dict phone: 手机
  1158. @request_dict email: 邮箱
  1159. @request_dict password: 密码
  1160. @request_dict authcode: 验证码
  1161. @request_dict lang: 语言
  1162. @request_dict unique: 手机唯一标识
  1163. @request_dict number: 国家id号
  1164. @request_dict region_status: 地区选择状态
  1165. @return: response
  1166. """
  1167. phone = request_dict.get('phone', None)
  1168. email = request_dict.get('email', None)
  1169. password = request_dict.get('password', None)
  1170. password_version = request_dict.get('pwdVersion', 'V1')
  1171. authcode = request_dict.get('authcode', None)
  1172. lang = request_dict.get('lang', None)
  1173. unique = request_dict.get('unique', None)
  1174. number = request_dict.get('number', None)
  1175. salt = request_dict.get('salt', None)
  1176. region_status = request_dict.get('region_status', None)
  1177. email_scription = request_dict.get('email_scription', None)
  1178. push_scription = request_dict.get('push_scription', None)
  1179. if unique:
  1180. delete_local_account(unique)
  1181. region_status = int(region_status) if region_status else 0
  1182. response = ResponseObject(lang)
  1183. # 解密
  1184. try:
  1185. if password_version == 'V1':
  1186. for i in range(1, 4):
  1187. if i == 1:
  1188. password = base64.b64decode(password)
  1189. password = password.decode('utf-8')
  1190. password = password[1:-1]
  1191. if i == 2:
  1192. password = base64.b64decode(password)
  1193. password = password.decode('utf-8')
  1194. password = password[2:-2]
  1195. if i == 3:
  1196. password = base64.b64decode(password)
  1197. password = password.decode('utf-8')
  1198. password = password[3:-3]
  1199. print(password)
  1200. except Exception as e:
  1201. print(repr(e))
  1202. return response.json(111)
  1203. try:
  1204. for i in range(1, 4):
  1205. if i == 1:
  1206. authcode = base64.b64decode(authcode)
  1207. authcode = authcode.decode('utf-8')
  1208. authcode = authcode[1:-1]
  1209. if i == 2:
  1210. authcode = base64.b64decode(authcode)
  1211. authcode = authcode.decode('utf-8')
  1212. authcode = authcode[2:-2]
  1213. if i == 3:
  1214. authcode = base64.b64decode(authcode)
  1215. authcode = authcode.decode('utf-8')
  1216. authcode = authcode[3:-3]
  1217. except Exception as e:
  1218. print(repr(e))
  1219. return response.json(121)
  1220. else:
  1221. if password is None:
  1222. return response.json(444, 'password')
  1223. if authcode is None:
  1224. return response.json(444, 'identifyingCode')
  1225. if phone is not None:
  1226. return self.do_phone_register(phone, password, authcode, number, region_status, response,
  1227. password_version, salt, push_scription)
  1228. elif email is not None:
  1229. return self.do_email_register(email, password, authcode, number, region_status, response,
  1230. password_version, salt, email_scription, push_scription)
  1231. else:
  1232. return response.json(444, 'phone or email')
  1233. def do_phone_register(self, phone, password, authcode, number, region_status, response, password_version, salt,
  1234. push_scription):
  1235. data_valid = DataValid()
  1236. if data_valid.mobile_validate(phone) is not True:
  1237. return response.json(100)
  1238. if password_version == 'V1':
  1239. re_flag = data_valid.password_validate(password)
  1240. password = make_password(password)
  1241. else:
  1242. re_flag = True
  1243. if not salt:
  1244. return response.json(111)
  1245. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1246. if re_flag is not True:
  1247. return response.json(109)
  1248. reds = RedisObject()
  1249. identifyingCode = reds.get_data(key=phone + '_identifyingCode')
  1250. # 判断验证码是否过期
  1251. if identifyingCode is False:
  1252. return response.json(120)
  1253. # 验证码是否正确
  1254. if authcode != identifyingCode:
  1255. return response.json(121)
  1256. phone_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1257. # 是否已存在
  1258. if phone_qs.exists():
  1259. return response.json(101)
  1260. try:
  1261. userID = CommonService.getUserID(μs=False, setOTAID=True)
  1262. create_data = {
  1263. "username": phone,
  1264. "NickName": phone,
  1265. "phone": phone,
  1266. "password": password,
  1267. "userID": userID,
  1268. "is_active": True,
  1269. "user_isValid": True,
  1270. "region_status": region_status
  1271. }
  1272. if number:
  1273. create_data["region_country"] = number
  1274. Device_User.objects.create(**create_data)
  1275. if push_scription:
  1276. UserEmailSubscriptions.objects.create(phone=phone, user_id=userID, push_sub_status=1)
  1277. else:
  1278. UserEmailSubscriptions.objects.create(phone=phone, user_id=userID, push_sub_status=0)
  1279. except Exception as e:
  1280. errorInfo = traceback.format_exc()
  1281. print(errorInfo)
  1282. return response.json(424, repr(e))
  1283. else:
  1284. if not reds.del_data(key=phone + '_identifyingCode'):
  1285. return response.json(10, '删除缓存验证码错误')
  1286. return self.do_login(phone_qs, response)
  1287. def do_login(self, user_qs, response):
  1288. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1289. user_qs.update(last_login=now_time, online=True)
  1290. userID = user_qs[0].userID
  1291. print('userID' + userID)
  1292. tko = TokenObject()
  1293. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1294. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1295. # 增加角色
  1296. user_qs[0].role.add(Role.objects.get(rid=1))
  1297. role_dict = ModelService.own_role(userID=userID)
  1298. res['rid'] = role_dict['rid']
  1299. res['roleName'] = role_dict['roleName']
  1300. res['permList'] = ModelService.own_permission(userID)
  1301. res['userID'] = userID
  1302. # 昵称,邮箱,电话,刷新,头像
  1303. userIconPath = str(user_list[0]["userIconPath"])
  1304. if userIconPath and userIconPath.find('static/') != -1:
  1305. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1306. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1307. else:
  1308. res['userIconUrl'] = ''
  1309. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1310. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1311. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1312. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1313. return response.json(0, res)
  1314. def do_email_register(self, email, password, authcode, number, region_status, response, password_version, salt,
  1315. email_scription, push_scription):
  1316. data_valid = DataValid()
  1317. if data_valid.email_validate(email) is not True:
  1318. return response.json(105)
  1319. if password_version == 'V1':
  1320. re_flag = data_valid.password_validate(password)
  1321. password = make_password(password)
  1322. else:
  1323. re_flag = True
  1324. if not salt:
  1325. return response.json(111)
  1326. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1327. if re_flag is not True:
  1328. return response.json(109)
  1329. reds = RedisObject()
  1330. identifyingCode = reds.get_data(key=email + '_identifyingCode')
  1331. # 判断验证码是否过期
  1332. if identifyingCode is False:
  1333. return response.json(120)
  1334. # 验证码是否正确
  1335. if authcode != identifyingCode:
  1336. return response.json(121)
  1337. email_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1338. # 是否已存在
  1339. if email_qs.exists():
  1340. return response.json(103)
  1341. try:
  1342. userID = CommonService.getUserID(μs=False, setOTAID=True)
  1343. create_data = {
  1344. "username": email,
  1345. "NickName": email,
  1346. "userEmail": email,
  1347. "password": password,
  1348. "userID": userID,
  1349. "is_active": True,
  1350. "user_isValid": True,
  1351. "region_status": region_status
  1352. }
  1353. if number:
  1354. create_data["region_country"] = number
  1355. Device_User.objects.create(**create_data)
  1356. if push_scription:
  1357. UserEmailSubscriptions.objects.create(user_id=userID, email=email, push_sub_status=1)
  1358. else:
  1359. UserEmailSubscriptions.objects.create(user_id=userID, email=email, push_sub_status=0)
  1360. if email_scription:
  1361. subscribers = {
  1362. "userEmail": email,
  1363. "region_country": number
  1364. }
  1365. subscription_thread = threading.Thread(target=UserSubscriptionControllerView.subscription,
  1366. args=(subscribers,))
  1367. subscription_thread.start()
  1368. except Exception as e:
  1369. errorInfo = traceback.format_exc()
  1370. print(errorInfo)
  1371. return response.json(424, repr(e))
  1372. else:
  1373. if not reds.del_data(key=email + '_identifyingCode'):
  1374. return response.json(10, '删除缓存验证码错误')
  1375. return self.do_login(email_qs, response)
  1376. # 重置密码
  1377. # 忘记密码获取验证码v2
  1378. class v2forgetPwdCodeView(TemplateView):
  1379. @method_decorator(csrf_exempt)
  1380. def dispatch(self, *args, **kwargs):
  1381. return super(v2forgetPwdCodeView, self).dispatch(*args, **kwargs)
  1382. @limits(calls=2, period=60)
  1383. def get(self, request, *args, **kwargs):
  1384. request.encoding = 'utf-8'
  1385. request_dict = request.GET
  1386. lang = request_dict.get('lang')
  1387. response = ResponseObject(lang)
  1388. was_limited = getattr(request, 'limited', False)
  1389. if was_limited is True:
  1390. return response.json(5)
  1391. return self.ValidationError(request_dict, response)
  1392. @limits(calls=2, period=60)
  1393. def post(self, request):
  1394. request.encoding = 'utf-8'
  1395. request_dict = request.POST
  1396. lang = request_dict.get('lang')
  1397. response = ResponseObject(lang)
  1398. was_limited = getattr(request, 'limited', False)
  1399. if was_limited is True:
  1400. return response.json(5)
  1401. return self.ValidationError(request_dict, response)
  1402. def ValidationError(self, request_dict, response):
  1403. phone = request_dict.get('phone', None)
  1404. email = request_dict.get('email', None)
  1405. country_code = request_dict.get('country_code', None)
  1406. sign_name = request_dict.get('sign_name', None)
  1407. number = request_dict.get('number', None)
  1408. lang = request_dict.get('lang', None)
  1409. if lang is None:
  1410. return response.json(444, 'lang')
  1411. if phone is not None:
  1412. phone = phone.strip()
  1413. # 短信签名
  1414. sign_name = CommonService.confirm_msg_sign_name(sign_name, phone)
  1415. if country_code is None:
  1416. return self.do_send_phone_code(phone, response, sign_name, number, lang)
  1417. else:
  1418. return self.do_v2_send_phone_code(country_code, phone, response, sign_name, number, lang)
  1419. elif email is not None:
  1420. return self.do_send_email_code(email, response, number, lang)
  1421. else:
  1422. return response.json(444, 'phone')
  1423. def do_send_phone_code(self, phone, response, sign_name, number, lang):
  1424. data_valid = DataValid()
  1425. if data_valid.mobile_validate(phone) is not True:
  1426. return response.json(100)
  1427. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1428. if not user_qs.exists():
  1429. return response.json(102)
  1430. users = user_qs.values().first()
  1431. res = {}
  1432. reds = RedisObject()
  1433. reds_key = str(phone) + '_forgetPwdResetCode'
  1434. resetCode = reds.get_data(key=reds_key)
  1435. reds_key_ttl = reds.get_ttl(key=reds_key)
  1436. if reds_key_ttl > 240 and resetCode:
  1437. return response.json(90)
  1438. resetCode = RandomStr(6, True)
  1439. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1440. region_country = users['region_country']
  1441. lang_id = LanguageModel.objects.filter(lang=lang).values('id')
  1442. region_qs = CountryLanguageModel.objects.filter(country_id=region_country, language_id=lang_id[0]['id']).values(
  1443. 'country_name')
  1444. res['region'] = region_qs[0]['country_name'] if region_qs.exists() else ''
  1445. aliSms = AliSmsObject()
  1446. if not number or number == '0':
  1447. res['status'] = 0
  1448. user_qs.update(last_login=now_time, language=lang)
  1449. msg_res = aliSms.send_code_sms(phone=phone, code=resetCode, sign_name=sign_name, temp_msg='SMS_151675019')
  1450. if msg_res["Code"] == "OK":
  1451. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1452. res['Message'] = '生成缓存错误'
  1453. return response.json(10, res)
  1454. else:
  1455. res['Message'] = msg_res['Message']
  1456. return response.json(10, res)
  1457. else:
  1458. number = int(number)
  1459. if number != region_country and region_country != 0:
  1460. res['status'] = 1
  1461. user_qs.update(last_login=now_time, language=lang)
  1462. else:
  1463. res['status'] = 0
  1464. user_qs.update(last_login=now_time, language=lang, region_country=number)
  1465. msg_res = aliSms.send_code_sms(phone=phone, code=resetCode, sign_name=sign_name,
  1466. temp_msg='SMS_151675019')
  1467. if msg_res["Code"] == "OK":
  1468. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1469. res['Message'] = '生成缓存错误'
  1470. return response.json(10, res)
  1471. else:
  1472. res['Message'] = msg_res['Message']
  1473. return response.json(10, res)
  1474. return response.json(0, res)
  1475. def do_v2_send_phone_code(self, country_code, phone, response, sign_name, number, lang):
  1476. data_valid = DataValid()
  1477. if data_valid.mobile_validate(phone) is not True:
  1478. return response.json(100)
  1479. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1480. if not user_qs.exists():
  1481. return response.json(102)
  1482. users = user_qs.values().first()
  1483. res = {}
  1484. reds = RedisObject()
  1485. reds_key = str(phone) + '_forgetPwdResetCode'
  1486. resetCode = reds.get_data(key=reds_key)
  1487. reds_key_ttl = reds.get_ttl(key=reds_key)
  1488. if reds_key_ttl > 240 and resetCode:
  1489. # if identifyingCode :
  1490. return response.json(90)
  1491. # if resetCode is True:
  1492. # return response.json(120)
  1493. resetCode = RandomStr(6, True)
  1494. aliSms = AliSmsObject()
  1495. if country_code == '86':
  1496. rec_phone = phone
  1497. temp_msg = 'SMS_151675019'
  1498. else:
  1499. temp_msg = 'SMS_172200051'
  1500. rec_phone = str(country_code) + str(phone)
  1501. sign_name = 'Ansjer'
  1502. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1503. region_country = users['region_country']
  1504. lang_id = LanguageModel.objects.filter(lang=lang).values('id')
  1505. region_qs = CountryLanguageModel.objects.filter(country_id=region_country, language_id=lang_id[0]['id']).values(
  1506. 'country_name')
  1507. res['region'] = region_qs[0]['country_name'] if region_qs.exists() else ''
  1508. if not number or number == '0':
  1509. res['status'] = 0
  1510. user_qs.update(last_login=now_time, language=lang)
  1511. msg_res = aliSms.send_code_sms(phone=rec_phone, code=resetCode, sign_name=sign_name,
  1512. temp_msg=temp_msg)
  1513. if msg_res["Code"] == "OK":
  1514. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1515. res['Message'] = '生成缓存错误'
  1516. return response.json(10, res)
  1517. else:
  1518. res['Message'] = msg_res['Message']
  1519. return response.json(10, res)
  1520. else:
  1521. number = int(number)
  1522. if number != region_country and region_country != 0:
  1523. res['status'] = 1
  1524. user_qs.update(last_login=now_time, language=lang)
  1525. else:
  1526. res['status'] = 0
  1527. user_qs.update(last_login=now_time, language=lang, region_country=number)
  1528. msg_res = aliSms.send_code_sms(phone=rec_phone, code=resetCode, sign_name=sign_name,
  1529. temp_msg=temp_msg)
  1530. if msg_res["Code"] == "OK":
  1531. if not reds.set_data(key=reds_key, val=resetCode, expire=300):
  1532. res['Message'] = '生成缓存错误'
  1533. return response.json(10, res)
  1534. else:
  1535. res['Message'] = msg_res['Message']
  1536. return response.json(10, res)
  1537. return response.json(0, res)
  1538. def do_send_email_code(self, email, response, number, lang):
  1539. data_valid = DataValid()
  1540. if data_valid.email_validate(email) is not True:
  1541. return response.json(105)
  1542. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1543. if not user_qs.exists():
  1544. return response.json(104)
  1545. users = user_qs.values().first()
  1546. res = {}
  1547. reds = RedisObject()
  1548. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1549. if resetCode is True:
  1550. return response.json(120)
  1551. resetCode = RandomStr(6, True)
  1552. if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=600):
  1553. return response.json(10, '生成缓存错误')
  1554. send_data = TemplateService.email_message(type='forgetCode', language=response.lang)
  1555. send_body = send_data['body'].format(userEmail=email, email_valid_code=resetCode)
  1556. ses = SesClassObject()
  1557. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1558. region_country = users['region_country']
  1559. # 语言不存在返回英文
  1560. language_qs = LanguageModel.objects.filter(lang=lang).values('id')
  1561. if not language_qs.exists():
  1562. language_qs = LanguageModel.objects.filter(lang='en').values('id')
  1563. region_qs = CountryLanguageModel.objects.filter(country_id=region_country, language_id=language_qs[0]['id']). \
  1564. values('country_name')
  1565. res['region'] = region_qs[0]['country_name'] if region_qs.exists() else ''
  1566. if not number or number == '0':
  1567. res['status'] = 0
  1568. user_qs.update(last_login=now_time, language=lang)
  1569. send_res = ses.alyEmailCode(send_address_list=[email], subject=send_data['title'], body=send_body)
  1570. if send_res is not True:
  1571. reds.del_data(key=email + '_forgetPwdResetCode')
  1572. res['Message'] = '发送邮件失败'
  1573. return response.json(44, res)
  1574. else:
  1575. number = int(number)
  1576. if number != region_country and region_country != 0:
  1577. res['status'] = 1
  1578. user_qs.update(last_login=now_time, language=lang)
  1579. else:
  1580. res['status'] = 0
  1581. user_qs.update(last_login=now_time, language=lang, region_country=number)
  1582. send_res = ses.alyEmailCode(send_address_list=[email], subject=send_data['title'], body=send_body)
  1583. if send_res is not True:
  1584. reds.del_data(key=email + '_forgetPwdResetCode')
  1585. res['Message'] = '发送邮件失败'
  1586. return response.json(44, res)
  1587. return response.json(0, res)
  1588. # 忘记密码v2
  1589. class v2resetPwdByCodeView(TemplateView):
  1590. @method_decorator(csrf_exempt)
  1591. def dispatch(self, *args, **kwargs):
  1592. return super(v2resetPwdByCodeView, self).dispatch(*args, **kwargs)
  1593. def get(self, request, *args, **kwargs):
  1594. request.encoding = 'utf-8'
  1595. request_dict = request.GET
  1596. lang = request_dict.get('lang')
  1597. if not lang:
  1598. lang = request_dict.get('language', None)
  1599. response = ResponseObject(lang)
  1600. was_limited = getattr(request, 'limited', False)
  1601. if was_limited is True:
  1602. return response.json(5)
  1603. return self.ValidationError(request_dict, response)
  1604. def post(self, request):
  1605. request.encoding = 'utf-8'
  1606. request_dict = request.POST
  1607. lang = request_dict.get('lang')
  1608. if not lang:
  1609. lang = request_dict.get('language', None)
  1610. response = ResponseObject(lang)
  1611. was_limited = getattr(request, 'limited', False)
  1612. if was_limited is True:
  1613. return response.json(5)
  1614. return self.ValidationError(request_dict, response)
  1615. def ValidationError(self, request_dict, response):
  1616. phone = request_dict.get('phone', None)
  1617. email = request_dict.get('email', None)
  1618. password = request_dict.get('password', None)
  1619. salt = request_dict.get('salt', None)
  1620. password_version = request_dict.get('pwdVersion', 'V1')
  1621. authcode = request_dict.get('authcode', None)
  1622. print("1111111111111111111111")
  1623. if password is None or authcode is None:
  1624. return response.json(444, 'password,authcode')
  1625. authcode = authcode.strip()
  1626. password = password.strip()
  1627. if phone is not None:
  1628. phone = phone.strip()
  1629. return self.do_phone_pwd_reset(phone, authcode, password, response, password_version, salt)
  1630. elif email is not None:
  1631. email = email.strip()
  1632. return self.do_email_pwd_reset(email, authcode, password, response, password_version, salt)
  1633. else:
  1634. return response.json(444, 'phone')
  1635. def do_email_pwd_reset(self, email, authcode, password, response, password_version, salt):
  1636. data_valid = DataValid()
  1637. if data_valid.email_validate(email) is not True:
  1638. return response.json(105)
  1639. if password_version == 'V1':
  1640. re_flag = data_valid.password_validate(password)
  1641. password = make_password(password)
  1642. else:
  1643. if not salt:
  1644. return response.json(111)
  1645. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1646. re_flag = True
  1647. if re_flag is not True:
  1648. return response.json(109)
  1649. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1650. if not user_qs.exists():
  1651. return response.json(104)
  1652. reds = RedisObject()
  1653. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1654. if resetCode is False:
  1655. return response.json(90)
  1656. if authcode != resetCode:
  1657. return response.json(121)
  1658. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  1659. # return response.json(10, '生成缓存错误')
  1660. user_qs.update(password=password)
  1661. if not reds.del_data(email + '_forgetPwdResetCode'):
  1662. return response.json(10, '删除缓存失败')
  1663. return response.json(0)
  1664. def do_phone_pwd_reset(self, phone, authcode, password, response, password_version, salt):
  1665. data_valid = DataValid()
  1666. if data_valid.mobile_validate(phone) is not True:
  1667. return response.json(100)
  1668. if password_version == 'V1':
  1669. re_flag = data_valid.password_validate(password)
  1670. password = make_password(password)
  1671. else:
  1672. if not salt:
  1673. return response.json(111)
  1674. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1675. re_flag = True
  1676. if re_flag is not True:
  1677. return response.json(109)
  1678. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1679. if not user_qs.exists():
  1680. return response.json(102)
  1681. reds = RedisObject()
  1682. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  1683. if resetCode is False:
  1684. return response.json(90)
  1685. if authcode != resetCode:
  1686. return response.json(121)
  1687. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  1688. # return response.json(10, '生成缓存错误')
  1689. user_qs.update(password=password)
  1690. if not reds.del_data(phone + '_forgetPwdResetCode'):
  1691. return response.json(10, '删除缓存失败')
  1692. return response.json(0)
  1693. def do_login(self, user_qs, response):
  1694. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1695. user_qs.update(last_login=now_time, online=True)
  1696. userID = user_qs[0].userID
  1697. print('userID' + userID)
  1698. tko = TokenObject()
  1699. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1700. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1701. # 增加角色
  1702. user_qs[0].role.add(Role.objects.get(rid=1))
  1703. role_dict = ModelService.own_role(userID=userID)
  1704. res['rid'] = role_dict['rid']
  1705. res['roleName'] = role_dict['roleName']
  1706. res['permList'] = ModelService.own_permission(userID)
  1707. res['userID'] = userID
  1708. # 昵称,邮箱,电话,刷新,头像
  1709. userIconPath = str(user_list[0]["userIconPath"])
  1710. if userIconPath and userIconPath.find('static/') != -1:
  1711. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1712. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1713. else:
  1714. res['userIconUrl'] = ''
  1715. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1716. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1717. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1718. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1719. print(res)
  1720. return response.json(0, res)
  1721. # 忘记密码v3
  1722. class v3resetPwdByCodeView(TemplateView):
  1723. @method_decorator(csrf_exempt)
  1724. def dispatch(self, *args, **kwargs):
  1725. return super(v3resetPwdByCodeView, self).dispatch(*args, **kwargs)
  1726. def get(self, request, *args, **kwargs):
  1727. request.encoding = 'utf-8'
  1728. request_dict = request.GET
  1729. lang = request_dict.get('lang')
  1730. if not lang:
  1731. lang = request_dict.get('language', None)
  1732. response = ResponseObject(lang)
  1733. was_limited = getattr(request, 'limited', False)
  1734. if was_limited is True:
  1735. return response.json(5)
  1736. return self.ValidationError(request_dict, response)
  1737. def post(self, request):
  1738. request.encoding = 'utf-8'
  1739. request_dict = request.POST
  1740. lang = request_dict.get('lang')
  1741. if not lang:
  1742. lang = request_dict.get('language', None)
  1743. response = ResponseObject(lang)
  1744. was_limited = getattr(request, 'limited', False)
  1745. if was_limited is True:
  1746. return response.json(5)
  1747. return self.ValidationError(request_dict, response)
  1748. def ValidationError(self, request_dict, response):
  1749. phone = request_dict.get('phone', None)
  1750. email = request_dict.get('email', None)
  1751. password = request_dict.get('password', None)
  1752. salt = request_dict.get('salt', None)
  1753. password_version = request_dict.get('pwdVersion', 'V1')
  1754. authcode = request_dict.get('authcode', None)
  1755. if password is None or authcode is None:
  1756. return response.json(444, 'password,authcode')
  1757. authcode = authcode.strip()
  1758. password = password.strip()
  1759. # 解密
  1760. try:
  1761. if password_version == 'V1':
  1762. for i in range(1, 4):
  1763. if i == 1:
  1764. password = base64.b64decode(password)
  1765. password = password.decode('utf-8')
  1766. password = password[1:-1]
  1767. if i == 2:
  1768. password = base64.b64decode(password)
  1769. password = password.decode('utf-8')
  1770. password = password[2:-2]
  1771. if i == 3:
  1772. password = base64.b64decode(password)
  1773. password = password.decode('utf-8')
  1774. password = password[3:-3]
  1775. except Exception as e:
  1776. return response.json(111)
  1777. try:
  1778. for i in range(1, 4):
  1779. if i == 1:
  1780. authcode = base64.b64decode(authcode)
  1781. authcode = authcode.decode('utf-8')
  1782. authcode = authcode[1:-1]
  1783. if i == 2:
  1784. authcode = base64.b64decode(authcode)
  1785. authcode = authcode.decode('utf-8')
  1786. authcode = authcode[2:-2]
  1787. if i == 3:
  1788. authcode = base64.b64decode(authcode)
  1789. authcode = authcode.decode('utf-8')
  1790. authcode = authcode[3:-3]
  1791. print(authcode)
  1792. except Exception as e:
  1793. return response.json(121)
  1794. if phone is not None:
  1795. phone = phone.strip()
  1796. return self.do_phone_pwd_reset(phone, authcode, password, response, password_version, salt)
  1797. elif email is not None:
  1798. email = email.strip()
  1799. return self.do_email_pwd_reset(email, authcode, password, response, password_version, salt)
  1800. else:
  1801. return response.json(444, 'phone')
  1802. def do_email_pwd_reset(self, email, authcode, password, response, password_version, salt):
  1803. data_valid = DataValid()
  1804. if data_valid.email_validate(email) is not True:
  1805. return response.json(105)
  1806. if password_version == 'V1':
  1807. re_flag = data_valid.password_validate(password)
  1808. password = make_password(password)
  1809. else:
  1810. if not salt:
  1811. return response.json(111)
  1812. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1813. re_flag = True
  1814. if re_flag is not True:
  1815. return response.json(109)
  1816. user_qs = Device_User.objects.filter(Q(userEmail=email) | Q(username=email))
  1817. if not user_qs.exists():
  1818. return response.json(104)
  1819. reds = RedisObject()
  1820. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  1821. if resetCode is False:
  1822. return response.json(92)
  1823. if authcode != resetCode:
  1824. return response.json(121)
  1825. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  1826. # return response.json(10, '生成缓存错误')
  1827. user_qs.update(password=password)
  1828. if not reds.del_data(email + '_forgetPwdResetCode'):
  1829. return response.json(10, '删除缓存失败')
  1830. return response.json(0)
  1831. def do_phone_pwd_reset(self, phone, authcode, password, response, password_version, salt):
  1832. data_valid = DataValid()
  1833. if data_valid.mobile_validate(phone) is not True:
  1834. return response.json(100)
  1835. if password_version == 'V1':
  1836. re_flag = data_valid.password_validate(password)
  1837. password = make_password(password)
  1838. else:
  1839. if not salt:
  1840. return response.json(111)
  1841. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  1842. re_flag = True
  1843. if re_flag is not True:
  1844. return response.json(109)
  1845. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  1846. if not user_qs.exists():
  1847. return response.json(102)
  1848. reds = RedisObject()
  1849. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  1850. if resetCode is False:
  1851. return response.json(92)
  1852. if authcode != resetCode:
  1853. return response.json(121)
  1854. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  1855. # return response.json(10, '生成缓存错误')
  1856. user_qs.update(password=password)
  1857. if not reds.del_data(phone + '_forgetPwdResetCode'):
  1858. return response.json(10, '删除缓存失败')
  1859. return response.json(0)
  1860. def do_login(self, user_qs, response):
  1861. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1862. user_qs.update(last_login=now_time, online=True)
  1863. userID = user_qs[0].userID
  1864. print('userID' + userID)
  1865. tko = TokenObject()
  1866. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  1867. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  1868. # 增加角色
  1869. user_qs[0].role.add(Role.objects.get(rid=1))
  1870. role_dict = ModelService.own_role(userID=userID)
  1871. res['rid'] = role_dict['rid']
  1872. res['roleName'] = role_dict['roleName']
  1873. res['permList'] = ModelService.own_permission(userID)
  1874. res['userID'] = userID
  1875. # 昵称,邮箱,电话,刷新,头像
  1876. userIconPath = str(user_list[0]["userIconPath"])
  1877. if userIconPath and userIconPath.find('static/') != -1:
  1878. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1879. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1880. else:
  1881. res['userIconUrl'] = ''
  1882. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  1883. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  1884. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  1885. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  1886. print(res)
  1887. return response.json(0, res)
  1888. # 登录
  1889. class v2LoginView(TemplateView):
  1890. @method_decorator(csrf_exempt) # @csrf_exempt
  1891. def dispatch(self, *args, **kwargs):
  1892. return super(v2LoginView, self).dispatch(*args, **kwargs)
  1893. @limits(calls=2, period=60)
  1894. def post(self, request, *args, **kwargs):
  1895. request.encoding = 'utf-8'
  1896. request_dict = request.POST
  1897. language = request_dict.get('language', 'en')
  1898. response = ResponseObject(language)
  1899. was_limited = getattr(request, 'limited', False)
  1900. if was_limited is True:
  1901. return response.json(5)
  1902. return self.validates(request_dict, response)
  1903. def get(self, request, *args, **kwargs):
  1904. print("进来了")
  1905. request.encoding = 'utf-8'
  1906. request_dict = request.GET
  1907. language = request_dict.get('language', 'en')
  1908. response = ResponseObject(language)
  1909. was_limited = getattr(request, 'limited', False)
  1910. if was_limited is True:
  1911. return response.json(5)
  1912. return self.validates(request_dict, response)
  1913. def validates(self, request_dict, response):
  1914. username = request_dict.get('userName', None)
  1915. password = request_dict.get('userPwd', None)
  1916. salt = request_dict.get('salt', None)
  1917. iterations = request_dict.get('iterations', None)
  1918. password_version = request_dict.get('pwdVersion', 'V1')
  1919. number = request_dict.get('number', None)
  1920. if not username or not password:
  1921. return response.json(111)
  1922. username = username.strip()
  1923. password = password.strip()
  1924. data_valid = DataValid()
  1925. if data_valid.email_validate(username):
  1926. return self.do_email_login(username, password, number, response, password_version, salt, iterations)
  1927. elif data_valid.mobile_validate(username):
  1928. return self.do_phone_login(username, password, number, response, password_version, salt, iterations)
  1929. elif data_valid.name_validate(username):
  1930. return self.do_name_login(username, password, number, response, password_version, salt, iterations)
  1931. else:
  1932. return response.json(107)
  1933. def do_email_login(self, email, password, number, response, password_version, salt, iterations):
  1934. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  1935. return self.valid_login(user_qs, password, number, response, password_version, salt, iterations)
  1936. def do_phone_login(self, phone, password, number, response, password_version, salt, iterations):
  1937. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  1938. return self.valid_login(user_qs, password, number, response, password_version, salt, iterations)
  1939. def do_name_login(self, username, password, number, response, password_version, salt, iterations):
  1940. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  1941. is_active=True, user_isValid=True)
  1942. return self.valid_login(user_qs, password, number, response, password_version, salt, iterations)
  1943. def valid_login(self, user_qs, password, number, response, password_version, salt, iterations):
  1944. if not user_qs.exists():
  1945. return response.json(104)
  1946. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  1947. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  1948. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  1949. 'phone', 'password', 'userIconPath')[0]
  1950. if password_version == 'V1':
  1951. check_flag = check_password(password, users['password'])
  1952. else:
  1953. if not all([iterations, salt]):
  1954. return response.json(444)
  1955. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), salt, password)
  1956. check_flag = CommonService.check_password(password, users['password'])
  1957. if not check_flag:
  1958. return response.json(111)
  1959. userID = users['userID']
  1960. tko = TokenObject()
  1961. res = tko.generate(
  1962. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  1963. if tko.code == 0:
  1964. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  1965. if not number or number == '0':
  1966. user_qs.update(last_login=now_time, language=response.lang)
  1967. else:
  1968. user_qs.update(last_login=now_time, language=response.lang, region_country=number)
  1969. user_qs.update(last_login=now_time, language=response.lang)
  1970. res['rid'] = users['role__rid']
  1971. res['roleName'] = users['role__roleName']
  1972. res['permList'] = ModelService.own_permission(userID)
  1973. res['userID'] = userID
  1974. # 昵称,邮箱,电话,刷新,头像
  1975. userIconPath = str(users['userIconPath'])
  1976. if userIconPath and userIconPath.find('static/') != -1:
  1977. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  1978. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  1979. else:
  1980. res['userIconUrl'] = ''
  1981. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  1982. res['username'] = users['username'] if users['username'] is not None else ''
  1983. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  1984. res['phone'] = users['phone'] if users['phone'] is not None else ''
  1985. return response.json(0, res)
  1986. else:
  1987. return response.json(tko.code)
  1988. # 登录
  1989. class noPasslogin(TemplateView):
  1990. @method_decorator(csrf_exempt) # @csrf_exempt
  1991. def dispatch(self, *args, **kwargs):
  1992. return super(noPasslogin, self).dispatch(*args, **kwargs)
  1993. @limits(calls=2, period=60)
  1994. def post(self, request, *args, **kwargs):
  1995. request.encoding = 'utf-8'
  1996. request_dict = request.POST
  1997. language = request_dict.get('language', 'en')
  1998. response = ResponseObject(language)
  1999. was_limited = getattr(request, 'limited', False)
  2000. if was_limited is True:
  2001. return response.json(5)
  2002. return self.validates(request_dict, response)
  2003. def get(self, request, *args, **kwargs):
  2004. print("进来了")
  2005. request.encoding = 'utf-8'
  2006. request_dict = request.GET
  2007. language = request_dict.get('lang', 'en')
  2008. response = ResponseObject(language)
  2009. was_limited = getattr(request, 'limited', False)
  2010. if was_limited is True:
  2011. return response.json(5)
  2012. return self.validates(request_dict, response)
  2013. def validates(self, request_dict, response):
  2014. username = request_dict.get('userName', None)
  2015. if not username:
  2016. return response.json(111)
  2017. username = username.strip()
  2018. data_valid = DataValid()
  2019. if data_valid.email_validate(username):
  2020. return self.do_email_login(username, response)
  2021. elif data_valid.mobile_validate(username):
  2022. return self.do_phone_login(username, response)
  2023. elif data_valid.name_validate(username):
  2024. return self.do_name_login(username, response)
  2025. else:
  2026. return response.json(107)
  2027. def do_email_login(self, email, response):
  2028. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  2029. return self.valid_login(user_qs, response)
  2030. def do_phone_login(self, phone, response):
  2031. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  2032. return self.valid_login(user_qs, response)
  2033. def do_name_login(self, username, response):
  2034. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  2035. is_active=True, user_isValid=True)
  2036. return self.valid_login(user_qs, response)
  2037. def valid_login(self, user_qs, response):
  2038. if not user_qs.exists():
  2039. return response.json(104)
  2040. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  2041. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  2042. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  2043. 'phone', 'password', 'userIconPath')[0]
  2044. userID = users['userID']
  2045. tko = TokenObject()
  2046. res = tko.generate(
  2047. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  2048. if tko.code == 0:
  2049. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  2050. user_qs.update(last_login=now_time, language=response.lang)
  2051. res['rid'] = users['role__rid']
  2052. res['roleName'] = users['role__roleName']
  2053. res['permList'] = ModelService.own_permission(userID)
  2054. res['userID'] = userID
  2055. # 昵称,邮箱,电话,刷新,头像
  2056. userIconPath = str(users['userIconPath'])
  2057. if userIconPath and userIconPath.find('static/') != -1:
  2058. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  2059. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  2060. else:
  2061. res['userIconUrl'] = ''
  2062. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  2063. res['username'] = users['username'] if users['username'] is not None else ''
  2064. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  2065. res['phone'] = users['phone'] if users['phone'] is not None else ''
  2066. return response.json(0, res)
  2067. else:
  2068. return response.json(tko.code)
  2069. # 密码加密新登录
  2070. class v3LoginView(TemplateView):
  2071. @method_decorator(csrf_exempt)
  2072. def dispatch(self, *args, **kwargs):
  2073. return super(v3LoginView, self).dispatch(*args, **kwargs)
  2074. def post(self, request, *args, **kwargs):
  2075. request.encoding = 'utf-8'
  2076. request_dict = request.POST
  2077. language = request_dict.get('lang', 'en')
  2078. response = ResponseObject(language)
  2079. was_limited = getattr(request, 'limited', False)
  2080. if was_limited is True:
  2081. return response.json(5)
  2082. return self.validates(request_dict, response)
  2083. def get(self, request, *args, **kwargs):
  2084. request.encoding = 'utf-8'
  2085. request_dict = request.GET
  2086. language = request_dict.get('lang', 'en')
  2087. response = ResponseObject(language)
  2088. was_limited = getattr(request, 'limited', False)
  2089. if was_limited is True:
  2090. return response.json(5)
  2091. return self.validates(request_dict, response)
  2092. def validates(self, request_dict, response):
  2093. username = request_dict.get('userName', None)
  2094. password = request_dict.get('userPwd', None)
  2095. password_version = request_dict.get('pwdVersion', 'V1')
  2096. subscribe = request_dict.get('subscribe', None)
  2097. number = request_dict.get('number', None)
  2098. if not username or not password:
  2099. return response.json(111)
  2100. username = username.strip()
  2101. password = password.strip()
  2102. print("准备解密")
  2103. # 解密
  2104. try:
  2105. if password_version == 'V1':
  2106. for i in range(1, 4):
  2107. if i == 1:
  2108. # 第一次先解密
  2109. password = base64.b64decode(password)
  2110. password = password.decode('utf-8')
  2111. # 截去第一位,最后一位
  2112. password = password[1:-1]
  2113. if i == 2:
  2114. # 第2次先解密
  2115. password = base64.b64decode(password)
  2116. password = password.decode('utf-8')
  2117. # 去前2位,后2位
  2118. password = password[2:-2]
  2119. if i == 3:
  2120. # 第3次先解密
  2121. password = base64.b64decode(password)
  2122. password = password.decode('utf-8')
  2123. # 去前3位,后3位
  2124. password = password[3:-3]
  2125. except Exception as e:
  2126. return response.json(111)
  2127. else:
  2128. data_valid = DataValid()
  2129. if data_valid.email_validate(username):
  2130. return self.do_email_login(username, password, response, subscribe, number, request_dict)
  2131. elif data_valid.mobile_validate(username):
  2132. return self.do_phone_login(username, password, response, subscribe, number, request_dict)
  2133. elif data_valid.name_validate(username):
  2134. return self.do_name_login(username, password, response, subscribe, number, request_dict)
  2135. else:
  2136. return response.json(107)
  2137. def do_email_login(self, email, password, response, subscribe, number, request_dict):
  2138. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  2139. return self.valid_login(user_qs, password, response, subscribe, number, request_dict)
  2140. def do_phone_login(self, phone, password, response, subscribe, number, request_dict):
  2141. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  2142. return self.valid_login(user_qs, password, response, subscribe, number, request_dict)
  2143. def do_name_login(self, username, password, response, subscribe, number, request_dict):
  2144. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  2145. is_active=True, user_isValid=True)
  2146. return self.valid_login(user_qs, password, response, subscribe, number, request_dict)
  2147. def valid_login(self, user_qs, password, response, subscribe, number, request_dict):
  2148. password_version = request_dict.get('pwdVersion', 'V1')
  2149. salt = request_dict.get('salt', None)
  2150. iterations = request_dict.get('iterations', None)
  2151. if not user_qs.exists():
  2152. return response.json(104)
  2153. if subscribe:
  2154. user_qs.update(subscribe_email=subscribe)
  2155. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  2156. 'phone', 'password', 'userIconPath', 'fingerprint_enable', 'fingerprint_key',
  2157. 'subscribe_email', 'region_country')[0]
  2158. if password_version == 'V1':
  2159. check_flag = check_password(password, users['password'])
  2160. else:
  2161. if not all([iterations, salt]):
  2162. return response.json(444)
  2163. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), salt, password)
  2164. check_flag = CommonService.check_password(password, users['password'])
  2165. if not check_flag:
  2166. return response.json(111)
  2167. userID = users['userID']
  2168. tko = TokenObject()
  2169. res = tko.generate(
  2170. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  2171. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  2172. auth_type = 0
  2173. if oauth_qs.exists():
  2174. auth_type = oauth_qs[0].authType
  2175. if tko.code != 0:
  2176. return response.json(tko.code)
  2177. # 网关推送新增内容
  2178. app_bundle_id = request_dict.get('appBundleId', None)
  2179. app_type = request_dict.get('appType', None)
  2180. push_type = request_dict.get('pushType', None)
  2181. token_val = request_dict.get('tokenVal', None)
  2182. m_code = request_dict.get('mCode', None)
  2183. lang = request_dict.get('lang', 'en')
  2184. tz = request_dict.get('tz', None)
  2185. if all([app_bundle_id, app_type, push_type, token_val, m_code, tz]):
  2186. gateway_push_qs = GatewayPush.objects.filter(user_id=userID, m_code=m_code)
  2187. if gateway_push_qs.exists():
  2188. gateway_push_qs.update(token_val=token_val, push_type=push_type, logout=False)
  2189. else:
  2190. GatewayPush.objects.create(user_id=userID, app_bundle_id=app_bundle_id, app_type=app_type,
  2191. push_type=push_type, token_val=token_val, m_code=m_code, lang=lang, tz=tz)
  2192. UidPushModel.objects.filter(userID=userID, m_code=m_code).update(token_val=token_val, push_type=push_type)
  2193. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  2194. region_country = users['region_country']
  2195. # 语言不存在返回英文
  2196. language_qs = LanguageModel.objects.filter(lang=lang).values('id')
  2197. if not language_qs.exists():
  2198. language_qs = LanguageModel.objects.filter(lang='en').values('id')
  2199. # 更新最后登录时间
  2200. if not number or number == '0':
  2201. user_qs.update(last_login=now_time, language=response.lang)
  2202. else:
  2203. # 判断所选地区和用户注册地区是否一致
  2204. number = int(number)
  2205. if number != region_country and region_country != 0: # 不一致
  2206. res['status'] = 1
  2207. user_qs.update(last_login=now_time, language=response.lang)
  2208. else: # 一致
  2209. res['status'] = 0
  2210. user_qs.update(last_login=now_time, language=response.lang, region_country=number)
  2211. region_qs = CountryLanguageModel.objects.filter(country_id=region_country, language_id=language_qs[0]['id']). \
  2212. values('country_name')
  2213. res['rid'] = users['role__rid']
  2214. res['roleName'] = users['role__roleName']
  2215. res['permList'] = ModelService.own_permission(userID)
  2216. res['userID'] = userID
  2217. # 昵称,邮箱,电话,刷新,头像
  2218. userIconPath = str(users['userIconPath'])
  2219. if userIconPath and userIconPath.find('static/') != -1:
  2220. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  2221. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  2222. else:
  2223. res['userIconUrl'] = ''
  2224. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  2225. res['username'] = users['username'] if users['username'] is not None else ''
  2226. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  2227. res['phone'] = users['phone'] if users['phone'] is not None else ''
  2228. res['authType'] = auth_type
  2229. res['subscribe_email'] = users['subscribe_email'] if users['subscribe_email'] is not None else ''
  2230. res['region'] = region_qs[0]['country_name'] if region_qs.exists() else ''
  2231. return response.json(0, res)
  2232. # 一键登录接口
  2233. class oneClickLoginView(TemplateView):
  2234. def get(self, request, *args, **kwargs):
  2235. request.encoding = 'utf-8'
  2236. return self.validation(request.GET)
  2237. def post(self, request, *args, **kwargs):
  2238. request.encoding = 'utf-8'
  2239. return self.validation(request.POST)
  2240. def validation(self, request_dict):
  2241. token = request_dict.get('token', None)
  2242. language = request_dict.get('language', 'en')
  2243. response = ResponseObject(language)
  2244. if not token:
  2245. return response.json(444)
  2246. try:
  2247. # 友盟一键登录验证
  2248. UVerify = UVerifyObject(token)
  2249. verify = UVerify.verify_request()
  2250. if not verify:
  2251. return response.json(309)
  2252. phone = UVerify.phone
  2253. if not phone:
  2254. return response.json(102)
  2255. user_qs = Device_User.objects.filter(phone=phone).values('userID', 'username', 'NickName', 'phone',
  2256. 'password')
  2257. # 用户已存在的响应
  2258. if user_qs.exists():
  2259. tokenObj = TokenObject()
  2260. res = tokenObj.generate(
  2261. data={
  2262. 'userID': user_qs[0]['userID'],
  2263. 'lang': response.lang,
  2264. 'user': user_qs[0]['username'],
  2265. 'm_code': '123413243214'
  2266. }
  2267. )
  2268. if tokenObj.code != 0:
  2269. return response.json(tokenObj.code)
  2270. res['userID'] = user_qs[0]['userID']
  2271. res['username'] = user_qs[0]['username']
  2272. res['NickName'] = user_qs[0]['NickName']
  2273. res['phone'] = user_qs[0]['phone']
  2274. res['userEmail'] = ''
  2275. res['userIconUrl'] = ''
  2276. res['subscribe_email'] = ''
  2277. if user_qs[0]['password']: # 设置密码,返回已设置标识
  2278. res['password'] = '1'
  2279. else:
  2280. res['password'] = ''
  2281. return response.json(0, res)
  2282. # 新用户
  2283. userID = CommonService.getUserID(μs=False, setOTAID=True)
  2284. create_data = {
  2285. "userID": userID,
  2286. "username": phone,
  2287. "NickName": phone,
  2288. "phone": phone,
  2289. "is_active": True,
  2290. "user_isValid": True,
  2291. }
  2292. users = Device_User.objects.create(**create_data)
  2293. tokenObj = TokenObject()
  2294. res = tokenObj.generate(
  2295. data={
  2296. 'userID': userID,
  2297. 'lang': response.lang,
  2298. 'user': users.username,
  2299. 'm_code': '123413243214'
  2300. }
  2301. )
  2302. if tokenObj.code != 0:
  2303. return response.json(tokenObj.code)
  2304. # 组织响应数据
  2305. res['userID'] = userID
  2306. res['username'] = users.username
  2307. res['NickName'] = users.NickName
  2308. res['phone'] = users.phone
  2309. res['password'] = ''
  2310. res['userEmail'] = ''
  2311. res['userIconUrl'] = ''
  2312. res['subscribe_email'] = ''
  2313. return response.json(0, res)
  2314. except Exception as e:
  2315. djangoLogger = logging.getLogger('django')
  2316. djangoLogger.exception(e)
  2317. print(e)
  2318. return response.json(500, repr(e))
  2319. # 用户登录后初始化接口
  2320. class InitInfoView(View):
  2321. def get(self, request, *args, **kwargs):
  2322. request.encoding = 'utf-8'
  2323. return self.validation(request.GET, request)
  2324. def post(self, request, *args, **kwargs):
  2325. request.encoding = 'utf-8'
  2326. return self.validation(request.POST, request)
  2327. def validation(self, request_dict, request):
  2328. response = ResponseObject()
  2329. token = request_dict.get('token', None)
  2330. unique = request_dict.get('unique', None)
  2331. tko = TokenObject(token)
  2332. if tko.code == 0:
  2333. userID = tko.userID
  2334. return self.init_info(request_dict, userID, response, request)
  2335. elif unique:
  2336. return self.update_country(request_dict, response, request)
  2337. else:
  2338. return response.json(tko.code)
  2339. # 初始化设备token
  2340. def init_info(self, request_dict, userID, response, request):
  2341. # 未读的系统消息
  2342. token_val = request_dict.get('token_val', None)
  2343. jg_token_val = request_dict.get('jg_token_val', '')
  2344. m_code = request_dict.get('m_code', None)
  2345. push_type = request_dict.get('push_type', None)
  2346. appBundleId = request_dict.get('appBundleId', None)
  2347. tz = request_dict.get('tz', '0')
  2348. lang = request_dict.get('lang', '') # 语言区域
  2349. now_time = int(time.time())
  2350. if m_code[:4] == 'iOS_':
  2351. m_code = m_code[4:]
  2352. if all([token_val, push_type, appBundleId, userID]):
  2353. push_type = int(push_type)
  2354. self.save_push_config(userID, appBundleId, push_type, token_val, m_code, lang, tz)
  2355. self.save_or_creat_uid_push(userID, appBundleId, push_type, token_val, m_code, lang, tz, now_time,
  2356. jg_token_val)
  2357. if appBundleId:
  2358. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  2359. user_ex = None
  2360. if user_ex_qs.exists():
  2361. update_dict = {
  2362. 'updTime': now_time,
  2363. 'appBundleId': appBundleId,
  2364. 'region': lang
  2365. }
  2366. user_ex_qs.update(**update_dict)
  2367. user_ex = user_ex_qs[0]
  2368. else:
  2369. create_dict = {
  2370. 'addTime': now_time,
  2371. 'updTime': now_time,
  2372. 'appBundleId': appBundleId,
  2373. 'userID_id': userID,
  2374. 'region': lang
  2375. }
  2376. device_user = Device_User.objects.filter(userID=userID)
  2377. if not device_user.exists():
  2378. return response.json(173)
  2379. user_ex = UserExModel.objects.create(**create_dict)
  2380. country_ip_qs = CountryIPModel.objects.filter(user_ex_id=user_ex.id)
  2381. if not country_ip_qs.exists():
  2382. countryIp = CountryIPModel(
  2383. ip=CommonService.get_ip_address(request),
  2384. add_time=now_time,
  2385. user_ex_id=user_ex_qs[0].id
  2386. )
  2387. countryIp.save()
  2388. # 刷新最后登录时间
  2389. self.update_user_status(userID)
  2390. # 获取设备是否存在有已被删除
  2391. res = {'usmsg': 0} # 预留字段, 有版本app该字段去掉会报错
  2392. return response.json(0, res)
  2393. @staticmethod
  2394. def update_user_status(user_id):
  2395. try:
  2396. redisObj = RedisObject()
  2397. key = f'BASIC:LOGIN:STATUS:{user_id}'
  2398. login_data = redisObj.get_data(key)
  2399. if login_data:
  2400. return True
  2401. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  2402. Device_User.objects.filter(userID=user_id).update(last_login=now_time)
  2403. redisObj.set_data(key, '1', 86400)
  2404. return True
  2405. except Exception as e:
  2406. LOGGER.info('更新用户最后登录时间异常,errLine:{}, errMsg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  2407. return False
  2408. @staticmethod
  2409. def save_push_config(user_id, app_bundle_id, push_type, token_val, m_code, lang, tz):
  2410. """
  2411. 异步保存新推送配置
  2412. @param user_id: 用户id
  2413. @param app_bundle_id: app版本包id
  2414. @param push_type: 推送类型 0:Ios,1:Google,2:国内极光
  2415. @param token_val: 推送token
  2416. @param m_code: 手机唯一标识
  2417. @param lang: 语言
  2418. @param tz: 时区
  2419. @return: None
  2420. """
  2421. try:
  2422. app_type = 1 if push_type == 0 else 2
  2423. gateway_push_qs = GatewayPush.objects.filter(user_id=user_id, m_code=m_code)
  2424. if gateway_push_qs.exists():
  2425. if gateway_push_qs.first().token_val != token_val:
  2426. gateway_push_qs.update(token_val=token_val, push_type=push_type, logout=False)
  2427. else:
  2428. GatewayPush.objects.create(user_id=user_id, app_bundle_id=app_bundle_id, app_type=app_type,
  2429. push_type=push_type, token_val=token_val, m_code=m_code, lang=lang, tz=tz)
  2430. except Exception as e:
  2431. print('出错了~异步保存配置信息错误,errLine:{}, errMsg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  2432. @staticmethod
  2433. def save_or_creat_uid_push(user_id, app_bundle_id, push_type, token_val, m_code, lang, tz, now_time, jg_token_val):
  2434. """
  2435. 异步保存推送配置
  2436. @param user_id: 用户id
  2437. @param app_bundle_id: app版本包id
  2438. @param push_type: 推送类型 0:Ios,1:Google,2:国内极光
  2439. @param token_val: 推送token
  2440. @param jg_token_val: 极光推送token
  2441. @param m_code: 手机唯一标识
  2442. @param lang: 语言
  2443. @param tz: 时区
  2444. @param now_time: 时间戳
  2445. @return: None
  2446. """
  2447. try:
  2448. app_type = 1 if push_type == 0 else 2
  2449. device_info = Device_Info.objects.filter(userID=user_id).values('UID')
  2450. if device_info.exists():
  2451. uid_set = UidSetModel.objects.filter(uid__in=device_info).values('id')
  2452. for item in uid_set:
  2453. uid_push_qs = UidPushModel.objects.filter(userID=user_id, m_code=m_code, uid_set_id=item['id'])
  2454. if uid_push_qs.exists():
  2455. uid_push_qs.update(token_val=token_val, push_type=push_type, jg_token_val=jg_token_val)
  2456. else:
  2457. UidPushModel.objects.create(userID_id=user_id, appBundleId=app_bundle_id, app_type=app_type,
  2458. push_type=push_type, token_val=token_val, m_code=m_code, lang=lang,
  2459. tz=tz, addTime=now_time, updTime=now_time, uid_set_id=item['id'],
  2460. jg_token_val=jg_token_val)
  2461. except Exception as e:
  2462. LOGGER.info('出错了~保存推送配置信息错误,errLine:{}, errMsg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  2463. def update_country(self, request_dict, response, request):
  2464. username = request_dict.get('unique', None)
  2465. appBundleId = request_dict.get('appBundleId', None)
  2466. lang = request_dict.get('lang', '') # 语言区域
  2467. if username and appBundleId:
  2468. user_qs = Device_User.objects.filter(username=username)
  2469. if user_qs.exists():
  2470. user = user_qs[0]
  2471. user_ex_qs = UserExModel.objects.filter(userID_id=user.userID)
  2472. now_time = int(time.time())
  2473. if user_ex_qs.exists():
  2474. update_dict = {
  2475. 'updTime': now_time,
  2476. 'appBundleId': appBundleId,
  2477. 'region': lang
  2478. }
  2479. user_ex_qs.update(**update_dict)
  2480. user_ex = user_ex_qs[0]
  2481. else:
  2482. create_dict = {
  2483. 'addTime': now_time,
  2484. 'updTime': now_time,
  2485. 'appBundleId': appBundleId,
  2486. 'userID_id': user.userID,
  2487. 'region': lang
  2488. }
  2489. user_ex = UserExModel.objects.create(**create_dict)
  2490. country_ip_qs = CountryIPModel.objects.filter(user_ex_id=user_ex.id)
  2491. if not country_ip_qs.exists():
  2492. countryIp = CountryIPModel(
  2493. ip=CommonService.get_ip_address(request),
  2494. add_time=now_time,
  2495. user_ex_id=user_ex_qs[0].id
  2496. )
  2497. countryIp.save()
  2498. return response.json(0)
  2499. else:
  2500. return response.json(104)
  2501. else:
  2502. return response.json(444)
  2503. # 获取验证码
  2504. class verifyAuthcode(TemplateView):
  2505. def post(self, request, *args, **kwargs):
  2506. request.encoding = 'utf-8'
  2507. lang = request.POST.get('lang', None)
  2508. if not lang:
  2509. lang = request.POST.get('language', None)
  2510. response = ResponseObject(lang)
  2511. request_dict = request.POST
  2512. return self.ValidationError(request_dict, response)
  2513. def get(self, request, *args, **kwargs):
  2514. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2515. request.encoding = 'utf-8'
  2516. lang = request.GET.get('lang', None)
  2517. if not lang:
  2518. lang = request.GET.get('language', None)
  2519. response = ResponseObject(lang)
  2520. request_dict = request.GET
  2521. return self.ValidationError(request_dict, response)
  2522. def ValidationError(self, request_dict, response):
  2523. email = request_dict.get('email', None)
  2524. phone = request_dict.get('phone', None)
  2525. authcode = request_dict.get('authcode', None)
  2526. if email is not None:
  2527. email = email.strip()
  2528. return self.email_validate(email, authcode, response)
  2529. elif phone is not None:
  2530. phone = phone.strip()
  2531. return self.phone_validate(phone, authcode, response)
  2532. else:
  2533. return response.json(444)
  2534. def email_validate(self, email, authcode, response):
  2535. data_valid = DataValid()
  2536. if data_valid.email_validate(email) is not True:
  2537. return response.json(105)
  2538. reds = RedisObject()
  2539. resetCode = reds.get_data(key=email + '_forgetPwdResetCode')
  2540. if resetCode is False:
  2541. return response.json(120)
  2542. if authcode != resetCode:
  2543. return response.json(121)
  2544. return response.json(0)
  2545. def phone_validate(self, phone, authcode, response):
  2546. data_valid = DataValid()
  2547. if data_valid.mobile_validate(phone) is not True:
  2548. return response.json(100)
  2549. reds = RedisObject()
  2550. resetCode = reds.get_data(key=phone + '_forgetPwdResetCode')
  2551. if resetCode is False:
  2552. return response.json(120)
  2553. print(resetCode)
  2554. if authcode != resetCode:
  2555. return response.json(121)
  2556. return response.json(0)
  2557. # 微信登录
  2558. class wxAuthSignView(TemplateView):
  2559. def post(self, request, *args, **kwargs):
  2560. request.encoding = 'utf-8'
  2561. lang = request.POST.get('lang', None)
  2562. response = ResponseObject(lang)
  2563. request_dict = request.POST
  2564. return self.ValidationError(request_dict, response)
  2565. def get(self, request, *args, **kwargs):
  2566. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2567. request.encoding = 'utf-8'
  2568. lang = request.GET.get('lang', None)
  2569. response = ResponseObject(lang)
  2570. request_dict = request.GET
  2571. # return self.do_register('157113010663213800138000', '157113010663213800138000', response, 'xx')
  2572. return self.ValidationError(request_dict, response)
  2573. def ValidationError(self, request_dict, response):
  2574. grant_code = request_dict.get('grant_code', None) # 微信授权code
  2575. appBundleID = request_dict.get('appBundleID', None) # 包名
  2576. print('grant_code')
  2577. print(grant_code)
  2578. print('appBundleID')
  2579. print(appBundleID)
  2580. if all([grant_code, appBundleID]):
  2581. app_config = {
  2582. 'com.ansjer.loocamccloud': {'appid': 'wx9f6d6ce63f85b367',
  2583. 'secret': 'fe495884cd24637f1ae516c7f53d1b97', },
  2584. 'com.ansjer.zccloud': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2585. 'com.ansjer.customizede': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2586. # ios
  2587. 'com.ansjer.zccloud_ab': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2588. # android
  2589. }
  2590. if appBundleID in app_config.keys():
  2591. appid = app_config[appBundleID]['appid']
  2592. secret = app_config[appBundleID]['secret']
  2593. # 获取access_token请求
  2594. at_url = 'https://api.weixin.qq.com/sns/oauth2/access_token?appid={appid}&secret={secret}&code={code}&grant_type=authorization_code'.format(
  2595. appid=appid, secret=secret, code=grant_code)
  2596. res_req = requests.get(url=at_url)
  2597. res_json = res_req.json()
  2598. print(res_json)
  2599. if 'access_token' not in res_json.keys():
  2600. # 授权过期
  2601. return response.json(717)
  2602. access_token = res_json['access_token']
  2603. openid = res_json['openid']
  2604. if access_token and openid:
  2605. info_url = 'https://api.weixin.qq.com/sns/userinfo?access_token={access_token}&openid={openid}'.format(
  2606. access_token=access_token, openid=openid)
  2607. res_req = requests.get(url=info_url)
  2608. res_req.encoding = res_req.apparent_encoding
  2609. res_json = res_req.json()
  2610. print(res_json)
  2611. unionID = res_json['unionid']
  2612. user_extend_qs = UserOauth2Model.objects.filter(unionID=unionID, authType=1)
  2613. if user_extend_qs.exists():
  2614. # 如果用户绑定过则直接登录
  2615. userID = user_extend_qs[0].userID_id
  2616. print(userID)
  2617. user_qs = Device_User.objects.filter(userID=userID)
  2618. return self.do_login(user_qs, response)
  2619. else:
  2620. # 如果用户为绑定过则创建用户并进行登录返回token
  2621. userID = CommonService.getUserID(getUser=False)
  2622. nickname = res_json['nickname'] + '_' + CommonService.RandomStr(4)
  2623. return self.do_register(userID, nickname, response, appBundleID, unionID)
  2624. else:
  2625. return response.json(414, 'access_token,openid')
  2626. else:
  2627. return response.json(414, 'appBundleID is wrong!')
  2628. else:
  2629. return response.json(414)
  2630. # if wxcode
  2631. # 登录
  2632. def do_login(self, user_qs, response):
  2633. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  2634. userID = user_qs[0].userID
  2635. print('userID' + userID)
  2636. tko = TokenObject()
  2637. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  2638. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  2639. # 增加角色
  2640. user_qs[0].role.add(Role.objects.get(rid=1))
  2641. role_dict = ModelService.own_role(userID=userID)
  2642. res['rid'] = role_dict['rid']
  2643. res['roleName'] = role_dict['roleName']
  2644. res['permList'] = ModelService.own_permission(userID)
  2645. res['userID'] = userID
  2646. # 昵称,邮箱,电话,刷新,头像
  2647. userIconPath = str(user_list[0]["userIconPath"])
  2648. if userIconPath and userIconPath.find('static/') != -1:
  2649. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  2650. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  2651. else:
  2652. res['userIconUrl'] = ''
  2653. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  2654. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  2655. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  2656. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  2657. print(res)
  2658. # 添加用户登录类型
  2659. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  2660. auth_type = 0
  2661. if oauth_qs.exists():
  2662. auth_type = oauth_qs[0].authType
  2663. res['authType'] = auth_type
  2664. user_qs.update(last_login=now_time, online=True)
  2665. return response.json(0, res)
  2666. def do_register(self, userID, nickname, response, appBundleId, unionID):
  2667. data_valid = DataValid()
  2668. if data_valid.name_validate(userID) is not True:
  2669. return response.json(105)
  2670. try:
  2671. users = Device_User.objects.create(
  2672. username=userID,
  2673. NickName=nickname,
  2674. password=make_password('123456'),
  2675. userID=userID,
  2676. is_active=True,
  2677. user_isValid=True,
  2678. )
  2679. nowTime = int(time.time())
  2680. UserOauth2Model.objects.create(
  2681. addTime=nowTime,
  2682. updTime=nowTime,
  2683. userID_id=users.userID,
  2684. authType=1,
  2685. unionID=unionID
  2686. )
  2687. except Exception as e:
  2688. errorInfo = traceback.format_exc()
  2689. print(errorInfo)
  2690. return response.json(424, repr(e))
  2691. else:
  2692. user_qs = Device_User.objects.filter(Q(userID=userID))
  2693. print('---')
  2694. print(user_qs)
  2695. return self.do_login(user_qs, response)
  2696. # 获取验证码
  2697. class wxPerfectView(TemplateView):
  2698. def post(self, request, *args, **kwargs):
  2699. request.encoding = 'utf-8'
  2700. lang = request.POST.get('lang', None)
  2701. response = ResponseObject(lang)
  2702. request_dict = request.POST
  2703. return self.ValidationError(request_dict, response)
  2704. def get(self, request, *args, **kwargs):
  2705. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2706. request.encoding = 'utf-8'
  2707. lang = request.GET.get('lang', None)
  2708. response = ResponseObject(lang)
  2709. request_dict = request.GET
  2710. # return self.do_register('157113010663213800138000', '157113010663213800138000', response, 'xx')
  2711. return self.ValidationError(request_dict, response)
  2712. def ValidationError(self, request_dict, response):
  2713. grant_code = request_dict.get('grant_code', None) # 微信授权code
  2714. appBundleID = request_dict.get('appBundleID', None) # 包名
  2715. token = request_dict.get('token', None) # 包名
  2716. if all([grant_code, appBundleID, token]):
  2717. tko = TokenObject(token)
  2718. if tko.code == 0:
  2719. userID = tko.userID
  2720. app_config = {
  2721. # ios
  2722. 'com.ansjer.loocamccloud': {'appid': 'wx9f6d6ce63f85b367',
  2723. 'secret': 'fe495884cd24637f1ae516c7f53d1b97', },
  2724. 'com.ansjer.zccloud': {'appid': 'wx2a9f5ef9baf2760f', 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2725. 'com.ansjer.customizede': {'appid': 'wx2a9f5ef9baf2760f',
  2726. 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2727. # android
  2728. 'com.ansjer.zccloud_ab': {'appid': 'wx2a9f5ef9baf2760f',
  2729. 'secret': '5d38c7079676463149ffea593c58f2ed'},
  2730. }
  2731. if appBundleID in app_config.keys():
  2732. appid = app_config[appBundleID]['appid']
  2733. secret = app_config[appBundleID]['secret']
  2734. # 获取access_token请求
  2735. at_url = 'https://api.weixin.qq.com/sns/oauth2/access_token?appid={appid}&secret={secret}&code={code}&grant_type=authorization_code'.format(
  2736. appid=appid, secret=secret, code=grant_code)
  2737. res_req = requests.get(url=at_url)
  2738. res_json = res_req.json()
  2739. print(res_json)
  2740. if 'access_token' not in res_json.keys():
  2741. # 授权过期
  2742. return response.json(717)
  2743. access_token = res_json['access_token']
  2744. openid = res_json['openid']
  2745. if access_token and openid:
  2746. info_url = 'https://api.weixin.qq.com/sns/userinfo?access_token={access_token}&openid={openid}'.format(
  2747. access_token=access_token, openid=openid)
  2748. res_req = requests.get(url=info_url)
  2749. res_req.encoding = res_req.apparent_encoding
  2750. res_json = res_req.json()
  2751. print(res_json)
  2752. unionID = res_json['unionid']
  2753. user_has_bind = UserOauth2Model.objects.filter(unionID=unionID)
  2754. if not user_has_bind.exists():
  2755. user_oauth2_qs = UserOauth2Model.objects. \
  2756. filter(userID_id=userID, authType=1)
  2757. if user_oauth2_qs.exists():
  2758. user_oauth2_qs.update(unionID=unionID)
  2759. return response.json(0)
  2760. else:
  2761. try:
  2762. nowTime = int(time.time())
  2763. UserOauth2Model.objects.create(
  2764. addTime=nowTime,
  2765. updTime=nowTime,
  2766. userID_id=userID,
  2767. authType=1,
  2768. unionID=unionID)
  2769. except Exception as e:
  2770. return response.json(424, repr(e))
  2771. else:
  2772. return response.json(0)
  2773. else:
  2774. return response.json(16)
  2775. else:
  2776. return response.json(414, 'access_token,openid')
  2777. else:
  2778. return response.json(414, 'appBundleID is wrong!')
  2779. else:
  2780. return response.json(tko.code)
  2781. else:
  2782. return response.json(414)
  2783. # 获取验证码
  2784. class OauthAuthCodeView(TemplateView):
  2785. @method_decorator(csrf_exempt)
  2786. def dispatch(self, *args, **kwargs):
  2787. return super(OauthAuthCodeView, self).dispatch(*args, **kwargs)
  2788. @limits(calls=2, period=60)
  2789. def post(self, request, *args, **kwargs):
  2790. request.encoding = 'utf-8'
  2791. lang = request.POST.get('lang', None)
  2792. if not lang:
  2793. lang = request.POST.get('language', None)
  2794. response = ResponseObject(lang)
  2795. request_dict = request.POST
  2796. phone = request_dict.get('phone', None)
  2797. if phone is not None:
  2798. was_limited = getattr(request, 'limited', False)
  2799. if was_limited is True:
  2800. return response.json(5)
  2801. return self.ValidationError(request_dict, response)
  2802. @limits(calls=2, period=60)
  2803. def get(self, request, *args, **kwargs):
  2804. # Device_User.objects.filter(userEmail='chanjunkai@163.com').delete()
  2805. request.encoding = 'utf-8'
  2806. lang = request.GET.get('lang', None)
  2807. if not lang:
  2808. lang = request.GET.get('language', None)
  2809. response = ResponseObject(lang)
  2810. was_limited = getattr(request, 'limited', False)
  2811. if was_limited is True:
  2812. return response.json(5)
  2813. request_dict = request.GET
  2814. return self.ValidationError(request_dict, response)
  2815. def ValidationError(self, request_dict, response):
  2816. email = request_dict.get('email', None)
  2817. phone = request_dict.get('phone', None)
  2818. country_code = request_dict.get('country_code', None)
  2819. sign_name = request_dict.get('sign_name', None)
  2820. token = request_dict.get('token', None)
  2821. print(token)
  2822. if email is not None:
  2823. email = email.strip()
  2824. # 阿里云的发送邮箱的调用方法
  2825. return self.aliyun_emailCode(email, response)
  2826. # return self.emailCode(email, response)
  2827. elif phone is not None:
  2828. phone = phone.strip()
  2829. # 短信签名
  2830. sign_name = CommonService.confirm_msg_sign_name(sign_name, phone)
  2831. if country_code is None:
  2832. return self.phoneCode(phone, response, sign_name)
  2833. else:
  2834. country_code = str(country_code.strip())
  2835. return self.phoneCodeV2(country_code, phone, response, sign_name)
  2836. else:
  2837. return response.json(444)
  2838. def emailCode(self, email, response):
  2839. dataValid = DataValid()
  2840. # 邮箱匹配
  2841. if dataValid.email_validate(email) is False:
  2842. return response.json(107)
  2843. reds = RedisObject()
  2844. identifyingCode = reds.get_data(key=email + '_OauthPerfect')
  2845. # 是否以获取邮箱验证码
  2846. if identifyingCode:
  2847. return response.json(89)
  2848. user_qs = Device_User.objects.filter(username=email)
  2849. email_qs = Device_User.objects.filter(userEmail=email)
  2850. # 邮箱用户是否已存在
  2851. if user_qs.exists():
  2852. return response.json(103)
  2853. elif email_qs.exists():
  2854. return response.json(103)
  2855. # 生成随机6位数
  2856. identifyingCode = RandomStr(6, True)
  2857. # 设置随机数缓存生命周期
  2858. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  2859. ses = SesClassObject()
  2860. # 发送邮件
  2861. send_res = ses.send_email(
  2862. send_address_list=[email],
  2863. subject=send_data['title'],
  2864. body=send_data['body'].replace("{username}", email).replace("{captcha}",
  2865. str(identifyingCode))
  2866. )
  2867. if send_res is not True:
  2868. return response.json(44)
  2869. if reds.set_data(key=email + '_OauthPerfect', val=identifyingCode, expire=600) is not True:
  2870. return response.json(10, 'error')
  2871. return response.json(0)
  2872. # return response.json(0, {'identifyingCode': identifyingCode})
  2873. # 阿里云获取邮箱验证码
  2874. def aliyun_emailCode(self, email, response):
  2875. print('阿里云开始')
  2876. dataValid = DataValid()
  2877. # 邮箱匹配
  2878. if dataValid.email_validate(email) is False:
  2879. return response.json(107)
  2880. reds = RedisObject()
  2881. identifyingCode = reds.get_data(key=email + '_OauthPerfect')
  2882. # 是否以获取邮箱验证码
  2883. if identifyingCode:
  2884. return response.json(89)
  2885. user_qs = Device_User.objects.filter(username=email)
  2886. email_qs = Device_User.objects.filter(userEmail=email)
  2887. # 邮箱用户是否已存在
  2888. if user_qs.exists():
  2889. return response.json(103)
  2890. elif email_qs.exists():
  2891. return response.json(103)
  2892. # 生成随机6位数
  2893. identifyingCode = RandomStr(6, True)
  2894. # 设置随机数缓存生命周期
  2895. send_data = TemplateService.email_message(type='register_code', language=response.lang)
  2896. ses = SesClassObject()
  2897. # 发送邮件
  2898. send_res = ses.alyEmailCode(
  2899. send_address_list=[email],
  2900. subject=send_data['title'],
  2901. body=send_data['body'].replace("{username}", email).replace("{captcha}", str(identifyingCode))
  2902. )
  2903. if send_res is not True:
  2904. return response.json(44)
  2905. if reds.set_data(key=email + '_OauthPerfect', val=identifyingCode, expire=600) is not True:
  2906. return response.json(10, 'error')
  2907. return response.json(0)
  2908. def phoneCode(self, phone, response, sign_name):
  2909. dataValid = DataValid()
  2910. if dataValid.mobile_validate(phone) is not True:
  2911. return response.json(107)
  2912. reds = RedisObject()
  2913. reds_key = str(phone) + '_OauthPerfect'
  2914. identifyingCode = reds.get_data(key=reds_key)
  2915. reds_key_ttl = reds.get_ttl(key=reds_key)
  2916. if reds_key_ttl > 240 and identifyingCode:
  2917. # if identifyingCode :
  2918. return response.json(90)
  2919. user_qs = Device_User.objects.filter(username=phone)
  2920. phone_qs = Device_User.objects.filter(phone=phone)
  2921. if user_qs.exists() or phone_qs.exists():
  2922. return response.json(101)
  2923. identifyingCode = RandomStr(6, True)
  2924. # 发送手机验证码
  2925. aliSms = AliSmsObject()
  2926. res = aliSms.send_code_sms(phone=phone, code=identifyingCode, sign_name=sign_name, temp_msg='SMS_151600991')
  2927. if res["Code"] == "OK":
  2928. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  2929. return response.json(10, '生成缓存系统错误')
  2930. return response.json(0)
  2931. else:
  2932. return response.json(10, res["Message"])
  2933. def phoneCodeV2(self, country_code, phone, response, sign_name):
  2934. dataValid = DataValid()
  2935. if dataValid.mobile_validate(phone) is not True:
  2936. return response.json(107)
  2937. reds = RedisObject()
  2938. reds_key = str(phone) + '_OauthPerfect'
  2939. identifyingCode = reds.get_data(key=reds_key)
  2940. reds_key_ttl = reds.get_ttl(key=reds_key)
  2941. if reds_key_ttl > 240 and identifyingCode:
  2942. # if identifyingCode :
  2943. return response.json(90)
  2944. user_qs = Device_User.objects.filter(username=phone)
  2945. phone_qs = Device_User.objects.filter(phone=phone)
  2946. if user_qs.exists() or phone_qs.exists():
  2947. return response.json(101)
  2948. identifyingCode = RandomStr(6, True)
  2949. if country_code == '86':
  2950. # 国内短信推送模板
  2951. temp_msg = 'SMS_151600991'
  2952. rec_phone = phone
  2953. else:
  2954. # 国际短信推送模板
  2955. temp_msg = 'SMS_172165867'
  2956. rec_phone = country_code + phone
  2957. sign_name = 'Ansjer'
  2958. # 发送手机验证码
  2959. aliSms = AliSmsObject()
  2960. res = aliSms.send_code_sms(phone=rec_phone, code=identifyingCode, sign_name=sign_name, temp_msg=temp_msg)
  2961. if res["Code"] == "OK":
  2962. if reds.set_data(key=reds_key, val=identifyingCode, expire=300) is not True:
  2963. return response.json(10, '生成缓存系统错误')
  2964. return response.json(0)
  2965. else:
  2966. return response.json(10, res["Message"])
  2967. class OauthPerfectView(TemplateView):
  2968. @method_decorator(csrf_exempt)
  2969. def dispatch(self, *args, **kwargs):
  2970. return super(OauthPerfectView, self).dispatch(*args, **kwargs)
  2971. def get(self, request, *args, **kwargs):
  2972. request.encoding = 'utf-8'
  2973. request_dict = request.GET
  2974. lang = request_dict.get('lang')
  2975. if not lang:
  2976. lang = request_dict.get('language', None)
  2977. response = ResponseObject(lang)
  2978. was_limited = getattr(request, 'limited', False)
  2979. if was_limited is True:
  2980. return response.json(5)
  2981. return self.ValidationError(request_dict, response)
  2982. def post(self, request):
  2983. request.encoding = 'utf-8'
  2984. request_dict = request.POST
  2985. lang = request_dict.get('lang')
  2986. if not lang:
  2987. lang = request_dict.get('language', None)
  2988. response = ResponseObject(lang)
  2989. was_limited = getattr(request, 'limited', False)
  2990. if was_limited is True:
  2991. return response.json(5)
  2992. return self.ValidationError(request_dict, response)
  2993. def ValidationError(self, request_dict, response):
  2994. phone = request_dict.get('phone', None)
  2995. email = request_dict.get('email', None)
  2996. password = request_dict.get('password', None)
  2997. salt = request_dict.get('salt', None)
  2998. password_version = request_dict.get('pwdVersion', 'V1')
  2999. authcode = request_dict.get('authcode', None)
  3000. token = request_dict.get('token', None)
  3001. tko = TokenObject(token)
  3002. if password is None or authcode is None:
  3003. return response.json(444, 'password,authcode')
  3004. authcode = CommonService.decode_data(authcode.strip())
  3005. if authcode is None:
  3006. return response.json(444, 'password,authcode')
  3007. password = CommonService.decode_data(password.strip())
  3008. if password is None:
  3009. return response.json(444, 'password,authcode')
  3010. if phone is not None:
  3011. phone = phone.strip()
  3012. return self.do_phone(tko, phone, authcode, password, response, password_version, salt)
  3013. elif email is not None:
  3014. email = email.strip()
  3015. return self.do_email(tko, email, authcode, password, response, password_version, salt)
  3016. else:
  3017. return response.json(444, 'phone')
  3018. def do_email(self, tko, email, authcode, password, response, password_version, salt):
  3019. data_valid = DataValid()
  3020. if data_valid.email_validate(email) is not True:
  3021. return response.json(105)
  3022. if password_version == 'V1':
  3023. re_flag = data_valid.password_validate(password)
  3024. password = make_password(password)
  3025. else:
  3026. if not salt:
  3027. return response.json(111)
  3028. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  3029. re_flag = True
  3030. if re_flag is not True:
  3031. return response.json(109)
  3032. if tko.code == 0:
  3033. user_qs = Device_User.objects.filter(userID=tko.userID)
  3034. else:
  3035. return response.json(tko.code)
  3036. if not user_qs.exists():
  3037. return response.json(104)
  3038. reds = RedisObject()
  3039. resetCode = reds.get_data(key=email + '_OauthPerfect')
  3040. if resetCode is False:
  3041. return response.json(90)
  3042. if authcode != resetCode:
  3043. return response.json(121)
  3044. # if not reds.set_data(key=email + '_forgetPwdResetCode', val=resetCode, expire=300):
  3045. # return response.json(10, '生成缓存错误')
  3046. user_qs.update(userEmail=email, password=password)
  3047. if not reds.del_data(email + '_OauthPerfect'):
  3048. return response.json(10, '删除缓存失败')
  3049. return response.json(0)
  3050. def do_phone(self, tko, phone, authcode, password, response, password_version, salt):
  3051. data_valid = DataValid()
  3052. if data_valid.mobile_validate(phone) is not True:
  3053. return response.json(100)
  3054. if password_version == 'V1':
  3055. re_flag = data_valid.password_validate(password)
  3056. password = make_password(password)
  3057. else:
  3058. if not salt:
  3059. return response.json(111)
  3060. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  3061. re_flag = True
  3062. if re_flag is not True:
  3063. return response.json(109)
  3064. if tko.code == 0:
  3065. user_qs = Device_User.objects.filter(userID=tko.userID)
  3066. else:
  3067. return response.json(tko.code)
  3068. if not user_qs.exists():
  3069. return response.json(102)
  3070. reds = RedisObject()
  3071. resetCode = reds.get_data(key=str(phone) + '_OauthPerfect')
  3072. print(resetCode)
  3073. if resetCode is False:
  3074. return response.json(90)
  3075. if authcode != resetCode:
  3076. return response.json(121)
  3077. # if not reds.set_data(key=phone + '_forgetPwdResetCode', val=resetCode, expire=300):
  3078. # return response.json(10, '生成缓存错误')
  3079. user_qs.update(phone=phone, password=password)
  3080. if not reds.del_data(str(phone) + '_OauthPerfect'):
  3081. return response.json(10, '删除缓存失败')
  3082. return response.json(0)
  3083. class SingleLoginView(TemplateView):
  3084. @method_decorator(csrf_exempt)
  3085. def dispatch(self, *args, **kwargs):
  3086. return super(SingleLoginView, self).dispatch(*args, **kwargs)
  3087. def get(self, request, *args, **kwargs):
  3088. request.encoding = 'utf-8'
  3089. operation = kwargs.get('operation')
  3090. return self.validation(request, request.GET, operation)
  3091. def post(self, request, *args, **kwargs):
  3092. request.encoding = 'utf-8'
  3093. operation = kwargs.get('operation')
  3094. return self.validation(request, request.POST, operation)
  3095. def validation(self, request, request_dict, operation):
  3096. lang = request_dict.get('lang', 'en')
  3097. response = ResponseObject(lang)
  3098. was_limited = getattr(request, 'limited', False)
  3099. if was_limited is True:
  3100. return response.json(5)
  3101. if operation == 'get-verification-code': # 获取验证码
  3102. return self.get_verification_code(request_dict, response)
  3103. elif operation == 'change-password': # 验证码修改密码
  3104. return self.change_password(request_dict, response)
  3105. else:
  3106. token = request_dict.get('token', None)
  3107. tko = TokenObject(token)
  3108. if tko.code != 0:
  3109. return response.json(tko.code)
  3110. if operation == 'get-login-status': # 获取登录状态
  3111. return self.get_login_status(response)
  3112. else:
  3113. return response.json(404)
  3114. @staticmethod
  3115. def get_login_status(response):
  3116. return response.json(0)
  3117. def get_verification_code(self, request_dict, response):
  3118. email = request_dict.get('email', None)
  3119. phone = request_dict.get('phone', None)
  3120. sign_name = request_dict.get('sign_name', 'zosi')
  3121. country_code = request_dict.get('country_code', None)
  3122. code_type = request_dict.get('code_type', None)
  3123. uid = request_dict.get('uid', None)
  3124. if not any([email, phone]):
  3125. return response.json(444)
  3126. try:
  3127. # 查看设备密码,传uid和检验主用户
  3128. if code_type == '2':
  3129. if uid is None:
  3130. return response.json(444)
  3131. user_info = email if email is not None else phone
  3132. # 查询主用户信息
  3133. device_info_qs = Device_Info.objects.filter(UID=uid).values('vodPrimaryMaster')
  3134. if not device_info_qs.exists():
  3135. return response.json(173)
  3136. if user_info != device_info_qs[0]['vodPrimaryMaster']:
  3137. return response.json(12)
  3138. # 邮箱验证码
  3139. if email is not None:
  3140. email = email.strip()
  3141. return self.get_aliyun_email_code(email, code_type, uid, response)
  3142. # 手机验证码
  3143. else:
  3144. phone = phone.strip()
  3145. country_code = str(country_code.strip())
  3146. # 短信签名
  3147. sign_name = CommonService.confirm_msg_sign_name(sign_name, phone)
  3148. return self.get_phone_code(country_code, phone, sign_name, code_type, uid, response)
  3149. except Exception as e:
  3150. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  3151. @staticmethod
  3152. def get_aliyun_email_code(email, code_type, uid, response):
  3153. """
  3154. 获取邮箱验证码
  3155. @param email: 邮箱
  3156. @param code_type: 不传: 单点登录, 2: 查看设备密码
  3157. @param uid:
  3158. @param response:
  3159. @return:
  3160. """
  3161. data_valid = DataValid()
  3162. # 邮箱匹配
  3163. if data_valid.email_validate(email) is False:
  3164. return response.json(107)
  3165. # 查询用户是否存在
  3166. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  3167. if not user_qs.exists():
  3168. return response.json(99)
  3169. # 确定缓存key
  3170. if code_type is None:
  3171. redis_key = '{}_SingleLogin'.format(email)
  3172. email_type = 'register_code'
  3173. elif code_type == '2':
  3174. redis_key = '{}_{}_GetDevicePassword'.format(email, uid)
  3175. email_type = 'get_device_password'
  3176. elif code_type == '3':
  3177. redis_key = '{}_GetBackendVerificationCode'.format(email)
  3178. email_type = 'get_backend_verification_code'
  3179. else:
  3180. return response.json(444)
  3181. redis_obj = RedisObject()
  3182. # 检查是否已获取邮箱验证码
  3183. identifying_code = redis_obj.get_data(key=redis_key)
  3184. if identifying_code:
  3185. return response.json(89)
  3186. # 生成随机6位数
  3187. identifying_code = RandomStr(6, True)
  3188. # 设置随机数缓存生命周期
  3189. send_data = TemplateService.email_message(type=email_type, language=response.lang)
  3190. ses = SesClassObject()
  3191. # 发送邮件
  3192. send_res = ses.alyEmailCode(
  3193. send_address_list=[email],
  3194. subject=send_data['title'],
  3195. body=send_data['body'].replace('{username}', email).replace('{captcha}', str(identifying_code))
  3196. )
  3197. if send_res is not True:
  3198. return response.json(44)
  3199. if redis_obj.set_data(key=redis_key, val=identifying_code, expire=600) is not True:
  3200. return response.json(10, 'error')
  3201. return response.json(0)
  3202. @staticmethod
  3203. def get_phone_code(country_code, phone, sign_name, code_type, uid, response):
  3204. """
  3205. 获取手机验证码
  3206. @param country_code: 国家编码
  3207. @param phone: 手机号码
  3208. @param sign_name: 短信签名
  3209. @param code_type: 验证码类型, None: 单点登录, 1: 修改手机号码, 2: 查看设备密码
  3210. @param uid:
  3211. @param response:
  3212. @return:
  3213. """
  3214. data_valid = DataValid()
  3215. if data_valid.mobile_validate(phone) is not True:
  3216. return response.json(107)
  3217. # 根据验证码类型确定缓存key和短信模板
  3218. if code_type is None:
  3219. user_qs = Device_User.objects.filter(Q(username=phone) | Q(phone=phone))
  3220. if not user_qs.exists():
  3221. return response.json(102)
  3222. redis_key = '{}_SingleLogin'.format(phone)
  3223. # 短信模板
  3224. temp_msg = 'SMS_151675019' if country_code == '86' else 'SMS_172200051'
  3225. elif code_type == '1':
  3226. redis_key = '{}_ChangePhone'.format(phone)
  3227. temp_msg = 'SMS_151675018' if country_code == '86' else 'SMS_172165867'
  3228. elif code_type == '2':
  3229. redis_key = '{}_{}_GetDevicePassword'.format(phone, uid)
  3230. temp_msg = 'SMS_479855154' if country_code == '86' else 'SMS_479785146'
  3231. elif code_type == '3':
  3232. redis_key = '{}_GetBackendVerificationCode'.format(phone)
  3233. temp_msg = 'SMS_151675022' if country_code == '86' else 'SMS_172165867'
  3234. else:
  3235. return response.json(444)
  3236. # 根据手机区号处理发送手机号码和签名
  3237. if country_code == '86':
  3238. rec_phone = phone
  3239. else:
  3240. rec_phone = country_code + phone
  3241. sign_name = 'Ansjer'
  3242. redis_obj = RedisObject()
  3243. identifying_code = redis_obj.get_data(key=redis_key)
  3244. reds_key_ttl = redis_obj.get_ttl(key=redis_key)
  3245. if reds_key_ttl > 240 and identifying_code:
  3246. return response.json(90)
  3247. identifying_code = RandomStr(6, True)
  3248. # 发送手机验证码
  3249. alisms = AliSmsObject()
  3250. res = alisms.send_code_sms(phone=rec_phone, code=identifying_code, sign_name=sign_name, temp_msg=temp_msg)
  3251. if res['Code'] == 'OK':
  3252. if redis_obj.set_data(key=redis_key, val=identifying_code, expire=300) is not True:
  3253. return response.json(10, '生成缓存系统错误')
  3254. return response.json(0)
  3255. else:
  3256. return response.json(10, res['Message'])
  3257. def change_password(self, request_dict, response):
  3258. phone = request_dict.get('phone', None)
  3259. email = request_dict.get('email', None)
  3260. password = request_dict.get('password', None)
  3261. salt = request_dict.get('salt', None)
  3262. password_version = request_dict.get('pwdVersion', 'V1')
  3263. authcode = request_dict.get('authcode', None)
  3264. app_bundle_id = request_dict.get('appBundleId', None)
  3265. token_val = request_dict.get('tokenVal', None)
  3266. if not all([app_bundle_id, token_val]):
  3267. return response.json(444, 'appBundleId,tokenVal')
  3268. new_bundle = APP_MAPPING.get(app_bundle_id, None)
  3269. if password is None or authcode is None:
  3270. return response.json(444, 'password,authcode')
  3271. authcode = CommonService.decode_data(authcode.strip())
  3272. if authcode is None:
  3273. return response.json(444, 'password,authcode')
  3274. password = CommonService.decode_data(password.strip())
  3275. if password is None:
  3276. return response.json(444, 'password,authcode')
  3277. if phone is not None:
  3278. phone = phone.strip()
  3279. return self.do_phone(phone, authcode, password, response, password_version, salt, new_bundle, token_val)
  3280. elif email is not None:
  3281. email = email.strip()
  3282. return self.do_email(email, authcode, password, response, password_version, salt, new_bundle, token_val)
  3283. else:
  3284. return response.json(444, 'phone')
  3285. @staticmethod
  3286. def do_email(email, authcode, password, response, password_version, salt, new_bundle, token_val):
  3287. data_valid = DataValid()
  3288. if data_valid.email_validate(email) is not True:
  3289. return response.json(105)
  3290. # 邮箱用户是否已存在
  3291. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  3292. if not user_qs.exists():
  3293. return response.json(99)
  3294. user_id = user_qs[0].userID
  3295. if password_version == 'V1':
  3296. re_flag = data_valid.password_validate(password)
  3297. password = make_password(password)
  3298. else:
  3299. if not salt:
  3300. return response.json(111)
  3301. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  3302. re_flag = True
  3303. if re_flag is not True:
  3304. return response.json(109)
  3305. reds = RedisObject()
  3306. key = email + '_SingleLogin'
  3307. reset_code = reds.get_data(key=key)
  3308. if reset_code is False:
  3309. return response.json(92)
  3310. if authcode != reset_code:
  3311. return response.json(121)
  3312. user_qs.update(userEmail=email, password=password)
  3313. if not reds.del_data(key):
  3314. return response.json(10, '删除缓存失败')
  3315. # key = 'token_user_{}_{}'.format(user_id, new_bundle)
  3316. # LOGGER.info('{}修改密码写入token:{}'.format(user_id, 'temp_value'))
  3317. # reds.set_data(key, 'temp_value')
  3318. # push_url = '{}transparent-transmission/logout-push'.format(DETECT_PUSH_DOMAINS)
  3319. # result = requests.post(push_url, data={'push_token': token_val, 'user_id': user_id,
  3320. # 'app_bundle_id': new_bundle})
  3321. # LOGGER.info('{}修改密码推送结果:{}'.format(user_id, result.json()))
  3322. return response.json(0)
  3323. @staticmethod
  3324. def do_phone(phone, authcode, password, response, password_version, salt, new_bundle, token_val):
  3325. data_valid = DataValid()
  3326. if data_valid.mobile_validate(phone) is not True:
  3327. return response.json(100)
  3328. user_qs = Device_User.objects.filter(Q(username=phone) | Q(phone=phone))
  3329. if not user_qs.exists():
  3330. return response.json(102)
  3331. user_id = user_qs[0].userID
  3332. if password_version == 'V1':
  3333. re_flag = data_valid.password_validate(password)
  3334. password = make_password(password)
  3335. else:
  3336. if not salt:
  3337. return response.json(111)
  3338. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  3339. re_flag = True
  3340. if re_flag is not True:
  3341. return response.json(109)
  3342. reds = RedisObject()
  3343. key = str(phone) + '_SingleLogin'
  3344. reset_code = reds.get_data(key=key)
  3345. if reset_code is False:
  3346. return response.json(92)
  3347. if authcode != reset_code:
  3348. return response.json(121)
  3349. user_qs.update(phone=phone, password=password)
  3350. if not reds.del_data(key):
  3351. return response.json(10, '删除缓存失败')
  3352. # key = 'token_user_{}_{}'.format(user_id, new_bundle)
  3353. # LOGGER.info('{}修改密码写入token:{}'.format(user_id, 'temp_value'))
  3354. # reds.set_data(key, 'temp_value')
  3355. # push_url = '{}transparent-transmission/logout-push'.format(DETECT_PUSH_DOMAINS)
  3356. # result = requests.post(push_url, data={'push_token': token_val, 'user_id': user_id,
  3357. # 'app_bundle_id': new_bundle})
  3358. # LOGGER.info('{}修改密码推送结果:{}'.format(user_id, result.json()))
  3359. return response.json(0)
  3360. @staticmethod
  3361. def get_change_phone_code(country_code, phone, response, sign_name):
  3362. data_valid = DataValid()
  3363. if data_valid.mobile_validate(phone) is not True:
  3364. return response.json(107)
  3365. reds = RedisObject()
  3366. reds_key = str(phone) + '_ChangePhone'
  3367. identifying_code = reds.get_data(key=reds_key)
  3368. reds_key_ttl = reds.get_ttl(key=reds_key)
  3369. if reds_key_ttl > 240 and identifying_code:
  3370. return response.json(90)
  3371. identifying_code = RandomStr(6, True)
  3372. if country_code == '86':
  3373. # 国内短信推送模板
  3374. temp_msg = 'SMS_151675018'
  3375. rec_phone = phone
  3376. if sign_name == 'zosi':
  3377. sign_name = '周视'
  3378. else:
  3379. # 国际短信推送模板
  3380. temp_msg = 'SMS_172165867'
  3381. rec_phone = country_code + phone
  3382. sign_name = 'Ansjer'
  3383. # 发送手机验证码
  3384. alisms = AliSmsObject()
  3385. res = alisms.send_code_sms(phone=rec_phone, code=identifying_code, sign_name=sign_name, temp_msg=temp_msg)
  3386. if res["Code"] == "OK":
  3387. if reds.set_data(key=reds_key, val=identifying_code, expire=300) is not True:
  3388. return response.json(10, '生成缓存系统错误')
  3389. return response.json(0)
  3390. else:
  3391. return response.json(10, res["Message"])
  3392. class UnbundingWXView(TemplateView):
  3393. def get(self, request, *args, **kwargs):
  3394. request.encoding = 'utf-8'
  3395. request_dict = request.GET
  3396. lang = request_dict.get('lang')
  3397. if not lang:
  3398. lang = request_dict.get('language', None)
  3399. response = ResponseObject(lang)
  3400. return self.ValidationError(request_dict, response)
  3401. def post(self, request, *args, **kwargs):
  3402. request.encoding = 'utf-8'
  3403. request_dict = request.POST
  3404. lang = request_dict.get('lang')
  3405. if not lang:
  3406. lang = request_dict.get('language', None)
  3407. response = ResponseObject(lang)
  3408. return self.ValidationError(request_dict, response)
  3409. def ValidationError(self, request_dict, response):
  3410. token = request_dict.get('token', None)
  3411. auth_type = request_dict.get('auth_type', None)
  3412. if not all([token, auth_type]):
  3413. return response.json(444, 'token,auth_type')
  3414. tko = TokenObject(token)
  3415. if tko.code == 0:
  3416. userID = tko.userID
  3417. user_oauth2_qs = UserOauth2Model.objects.filter(
  3418. ~Q(unionID='') & Q(userID_id=userID) & Q(authType=auth_type))
  3419. if user_oauth2_qs.exists():
  3420. user_qs = Device_User.objects.filter(phone='', userEmail='', userID=userID)
  3421. if user_qs.exists():
  3422. return response.json(17)
  3423. else:
  3424. user_oauth2_qs.delete()
  3425. return response.json(0)
  3426. else:
  3427. return response.json(173)
  3428. else:
  3429. return response.json(tko.code)
  3430. class alexaAuthView(TemplateView):
  3431. def post(self, request, *args, **kwargs):
  3432. request.encoding = 'utf-8'
  3433. # request_dict = json.loads(request.body.decode('utf-8'))
  3434. request_dict = request.POST
  3435. response = ResponseObject()
  3436. return self.validates(request_dict, response)
  3437. def get(self, request, *args, **kwargs):
  3438. request.encoding = 'utf-8'
  3439. request_dict = request.GET
  3440. response = ResponseObject()
  3441. return self.validates(request_dict, response)
  3442. def validates(self, request_dict, response):
  3443. username = request_dict.get('userName', None)
  3444. password = request_dict.get('userPwd', None)
  3445. salt = request_dict.get('salt', None)
  3446. iterations = request_dict.get('iterations', None)
  3447. password_version = request_dict.get('pwdVersion', 'V1')
  3448. if not username or not password:
  3449. return response.json(111)
  3450. username = username.strip()
  3451. password = password.strip()
  3452. data_valid = DataValid()
  3453. if data_valid.email_validate(username):
  3454. return self.do_email_login(username, password, response, password_version, salt, iterations)
  3455. elif data_valid.mobile_validate(username):
  3456. return self.do_phone_login(username, password, response, password_version, salt, iterations)
  3457. elif data_valid.name_validate(username):
  3458. return self.do_name_login(username, password, response, password_version, salt, iterations)
  3459. else:
  3460. return response.json(107)
  3461. def do_email_login(self, email, password, response, password_version, salt, iterations):
  3462. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  3463. return self.valid_login(user_qs, password, response, password_version, salt, iterations)
  3464. def do_phone_login(self, phone, password, response, password_version, salt, iterations):
  3465. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  3466. return self.valid_login(user_qs, password, response, password_version, salt, iterations)
  3467. def do_name_login(self, username, password, response, password_version, salt, iterations):
  3468. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  3469. is_active=True, user_isValid=True)
  3470. return self.valid_login(user_qs, password, response, password_version, salt, iterations)
  3471. def valid_login(self, user_qs, password, response, password_version, salt, iterations):
  3472. if not user_qs.exists():
  3473. return response.json(104)
  3474. users = user_qs.values('userID', 'password', 'region_country')[0]
  3475. if password_version == 'V1':
  3476. check_flag = check_password(password, users['password'])
  3477. else:
  3478. if not all([iterations, salt]):
  3479. return response.json(444)
  3480. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), salt, password)
  3481. check_flag = CommonService.check_password(password, users['password'])
  3482. if not check_flag:
  3483. return response.json(111)
  3484. userID = users['userID']
  3485. region_country = users['region_country']
  3486. # 确认用户地区
  3487. region_code = 'US'
  3488. country_qs = CountryModel.objects.filter(id=region_country).values('region_id')
  3489. if country_qs.exists():
  3490. region_id = country_qs[0]['region_id']
  3491. if region_id == 4:
  3492. region_code = 'EU'
  3493. res = {
  3494. 'userID': userID,
  3495. 'region_code': region_code
  3496. }
  3497. return response.json(0, res)
  3498. class alexaUidView(TemplateView):
  3499. def post(self, request, *args, **kwargs):
  3500. request.encoding = 'utf-8'
  3501. request_dict = request.POST
  3502. response = ResponseObject()
  3503. return self.validates(request_dict, response)
  3504. def get(self, request, *args, **kwargs):
  3505. request.encoding = 'utf-8'
  3506. request_dict = request.GET
  3507. response = ResponseObject()
  3508. return self.validates(request_dict, response)
  3509. def validates1(self, request_dict, response):
  3510. userID = request_dict.get('alexa_user_id')
  3511. sid = request_dict.get('sid')
  3512. sst = request_dict.get('sst')
  3513. if sid == 'admin' and sst == 'admin':
  3514. uid_qs = Device_Info.objects.filter(userID_id=userID, isExist=1).values('UID', 'NickName', 'View_Password')
  3515. uid_arr = []
  3516. uid_list = []
  3517. for uid_q in uid_qs:
  3518. uid_list.append(uid_q['UID'])
  3519. uid_arr.append({'uid': uid_q['UID'], 'nick': uid_q['NickName'], 'password': uid_q['View_Password'], })
  3520. res = {
  3521. 'uid_arr': uid_arr
  3522. }
  3523. return response.json(0, res)
  3524. else:
  3525. return response.json(107)
  3526. def validates(self, request_dict, response):
  3527. sid = request_dict.get('sid')
  3528. sst = request_dict.get('sst')
  3529. userID = request_dict.get('alexa_user_id')
  3530. if sid != 'admin' or sst != 'admin':
  3531. return response.json(107)
  3532. uid_qs = Device_Info.objects.filter(userID_id=userID, isExist=1).values(
  3533. 'UID', 'NickName', 'View_Password', 'userID__region_country')
  3534. if not uid_qs.exists():
  3535. return response.json(107)
  3536. country_qs = CountryModel.objects.filter(id=uid_qs[0]['userID__region_country']).values(
  3537. 'region__continent_code')
  3538. try:
  3539. uid_dict = {}
  3540. uid_list = []
  3541. for uid_q in uid_qs:
  3542. # uid转大写
  3543. UID = uid_q['UID'].upper()
  3544. uid_list.append(UID)
  3545. uid_dict[UID] = {'nick': uid_q['NickName'], 'password': uid_q['View_Password']}
  3546. us_qs = UidSetModel.objects.filter(uid__in=uid_list, is_alexa=1).values('id', 'uid', 'region_alexa',
  3547. 'channel')
  3548. if not us_qs.exists():
  3549. return response.json(173)
  3550. # uid,password,region的列表
  3551. uid_arr = []
  3552. for us in us_qs:
  3553. uid = us['uid']
  3554. serial_number = CommonService.get_serial_number_by_uid(uid)
  3555. channel = us['channel']
  3556. # 设备alexa区域
  3557. region_alexa = country_qs[0]['region__continent_code'] if country_qs.exists() else 'EN'
  3558. # 多通道设备获取通道名
  3559. if channel > 1:
  3560. uid_channel_set_qs = UidChannelSetModel.objects.filter(uid_id=us['id']).values('channel',
  3561. 'channel_name')
  3562. if uid_channel_set_qs.exists():
  3563. # DVR设备名为 UidChannelSetModel 的 channel_name
  3564. for uid_channel_set in uid_channel_set_qs:
  3565. uid_arr.append({'uid': uid, 'nick': uid_channel_set['channel_name'], 'region': region_alexa,
  3566. 'password': uid_dict[uid]['password'], 'multi_channel': 1,
  3567. 'channel': uid_channel_set['channel'], 'serial_number': serial_number})
  3568. else:
  3569. uid_arr.append({'uid': uid, 'nick': uid_dict[uid]['nick'], 'region': region_alexa,
  3570. 'password': uid_dict[uid]['password'], 'multi_channel': 0,
  3571. 'serial_number': serial_number})
  3572. res = {
  3573. 'uid_arr': uid_arr
  3574. }
  3575. return response.json(0, res)
  3576. except Exception as e:
  3577. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  3578. class alexaSwitchView(TemplateView):
  3579. def post(self, request, *args, **kwargs):
  3580. request.encoding = 'utf-8'
  3581. # request_dict = json.loads(request.body.decode('utf-8'))
  3582. request_dict = request.POST
  3583. response = ResponseObject()
  3584. return self.validates(request_dict, response)
  3585. def get(self, request, *args, **kwargs):
  3586. request.encoding = 'utf-8'
  3587. request_dict = request.GET
  3588. response = ResponseObject()
  3589. return self.validates(request_dict, response)
  3590. def validates(self, request_dict, response):
  3591. sid = request_dict.get('sid')
  3592. sst = request_dict.get('sst')
  3593. userID = request_dict.get('alexa_user_id')
  3594. if sid != 'admin' or sst != 'admin':
  3595. return response.json(107)
  3596. switch_qs = Device_Info.objects.filter(userID_id=userID, Type=201).values('UID', 'NickName')
  3597. if not switch_qs.exists():
  3598. return response.json(107)
  3599. # 设备alexa区域
  3600. region_id = CommonService.confirm_region_id()
  3601. if region_id == 4:
  3602. region_alexa = 'EU'
  3603. elif region_id == 5:
  3604. region_alexa = 'CN'
  3605. else:
  3606. region_alexa = 'US'
  3607. try:
  3608. switch_list = []
  3609. for switch in switch_qs:
  3610. uid = switch['UID']
  3611. nick_name = switch['NickName']
  3612. switch_list.append({'uid': uid, 'nick': nick_name, 'region': region_alexa})
  3613. res = {
  3614. 'switch_list': switch_list
  3615. }
  3616. return response.json(0, res)
  3617. except Exception as e:
  3618. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  3619. # 登出
  3620. class V2LogoutView(TemplateView):
  3621. @method_decorator(csrf_exempt)
  3622. def dispatch(self, *args, **kwargs):
  3623. return super(V2LogoutView, self).dispatch(*args, **kwargs)
  3624. def post(self, request, *args, **kwargs):
  3625. request.encoding = 'utf-8'
  3626. request_dict = request.POST
  3627. return self.Logout(request_dict)
  3628. def get(self, request, *args, **kwargs):
  3629. request.encoding = 'utf-8'
  3630. request_dict = request.GET
  3631. return self.Logout(request_dict)
  3632. def Logout(self, request_dict):
  3633. response = ResponseObject()
  3634. token = request_dict.get('token')
  3635. tko = TokenObject(token)
  3636. userID = tko.userID
  3637. if tko.code == 0:
  3638. Device_User.objects.filter(userID=tko.userID).update(online=False)
  3639. redisObj = RedisObject(db=3)
  3640. redisObj.del_data(key=tko.userID)
  3641. m_code = request_dict.get('m_code', None)
  3642. if m_code:
  3643. try:
  3644. UidPushModel.objects.filter(userID_id=userID, m_code=m_code).delete()
  3645. except Exception as e:
  3646. pass
  3647. else:
  3648. pass
  3649. os_type = request_dict.get('os_type', None)
  3650. appid = request_dict.get('appid', None)
  3651. udid = request_dict.get('udid', None)
  3652. if os_type and appid and udid:
  3653. tutk_push_url = "{tutk_push_domain}?cmd=mapsync&os={os_type}&appid={appid}&udid={udid}". \
  3654. format(os_type=os_type, appid=appid, udid=udid, tutk_push_domain=TUTK_PUSH_DOMAIN)
  3655. res = requests.get(url=tutk_push_url)
  3656. res_s = res.text
  3657. res_s = res_s.rstrip()
  3658. if res_s == '200 Success.':
  3659. return response.json(0)
  3660. else:
  3661. return response.json(10, 'not yes')
  3662. return response.json(0)
  3663. else:
  3664. return response.json(tko.code)
  3665. # 图片验证码生成
  3666. class generatePictureCodeView(TemplateView):
  3667. @method_decorator(csrf_exempt)
  3668. def dispatch(self, *args, **kwargs):
  3669. return super(generatePictureCodeView, self).dispatch(*args, **kwargs)
  3670. def post(self, request, *args, **kwargs):
  3671. request.encoding = 'utf-8'
  3672. request_dict = request.POST
  3673. return self.validates(request_dict)
  3674. def get(self, request, *args, **kwargs):
  3675. request.encoding = 'utf-8'
  3676. request_dict = request.GET
  3677. return self.validates(request_dict)
  3678. # 生成验证码和验证码图片
  3679. def get_valid_code_img(self, request_dict):
  3680. # ---------生成背景图片-----------
  3681. # img = Image.new('RGB', (260, 34), color=get_random_color())
  3682. img = Image.new('RGB', (260, 34),
  3683. color=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  3684. # -------/生成背景图片-----------
  3685. # --------生成随机验证码,设置字体格式,大小等属性------------
  3686. draw = ImageDraw.Draw(img)
  3687. path = BASE_DIR + '/Ansjer/file/font/simhei.ttf'
  3688. kumo_font = ImageFont.truetype(path, 40, encoding="unic") # 设置字体
  3689. print("字体可以")
  3690. valid_code_str = ''
  3691. for i in range(6):
  3692. random_num = str(random.randint(0, 9))
  3693. random_low_alpha = chr(random.randint(97, 122))
  3694. random_high_alpha = chr(random.randint(65, 90))
  3695. random_char = random.choice([random_num, random_low_alpha, random_high_alpha])
  3696. draw.text((i * 40 + 20, -3), random_char, 'white', kumo_font)
  3697. # 保存验证码字符串
  3698. valid_code_str += random_char
  3699. print(valid_code_str)
  3700. # --------/生成随机验证码,设置字体格式,大小等属性------------
  3701. # -------增加干扰线,点----------
  3702. # 噪点噪线
  3703. width = 260
  3704. height = 34
  3705. for i in range(10):
  3706. x1 = random.randint(0, width)
  3707. x2 = random.randint(0, width)
  3708. y1 = random.randint(0, height)
  3709. y2 = random.randint(0, height)
  3710. draw.line((x1, y1, x2, y2), fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  3711. for i in range(10):
  3712. draw.point([random.randint(0, width), random.randint(0, height)],
  3713. fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  3714. x = random.randint(0, width)
  3715. y = random.randint(0, height)
  3716. draw.arc((x, y, x + 4, y + 4), 0, 90,
  3717. fill=(random.randint(0, 255), random.randint(0, 255), random.randint(0, 255)))
  3718. # -------/增加干扰线,点-----------
  3719. # ------存入内存---------
  3720. f = BytesIO() # 用完之后,BytesIO会自动清掉
  3721. img.save(f, 'png')
  3722. data = f.getvalue()
  3723. return data, valid_code_str
  3724. # 生成验证码方法
  3725. def validates(self, request_dict):
  3726. # 页面传过来的uuid
  3727. imageCodeId = request_dict.get('imageCodeId', '')
  3728. response = ResponseObject()
  3729. if not imageCodeId:
  3730. return response.json(444)
  3731. # 存入redis的key
  3732. image_code_id = "image_code_%s" % imageCodeId
  3733. """
  3734. 基于PIL模块动态生成响应状态码图片
  3735. :param request:
  3736. :return:
  3737. """
  3738. # 图片data,验证码
  3739. data, valid_code_str = self.get_valid_code_img(request_dict)
  3740. if imageCodeId:
  3741. redisObj = RedisObject(db=6)
  3742. # 单条维护
  3743. redisObj.set_data(key=image_code_id, val=valid_code_str, expire=120)
  3744. image_code_val = redisObj.get_data(key=image_code_id)
  3745. print("________获取验证码的值" + image_code_val)
  3746. return HttpResponse(data, 'image/png')
  3747. class Image_Code_RegisterView(TemplateView):
  3748. @method_decorator(csrf_exempt)
  3749. def dispatch(self, *args, **kwargs):
  3750. return super(Image_Code_RegisterView, self).dispatch(*args, **kwargs)
  3751. def post(self, request, *args, **kwargs):
  3752. request.encoding = 'utf-8'
  3753. request_dict = request.POST
  3754. return self.validates(request_dict)
  3755. def get(self, request, *args, **kwargs):
  3756. request.encoding = 'utf-8'
  3757. request_dict = request.GET
  3758. return self.validates(request_dict)
  3759. def validates(self, request_dict):
  3760. """
  3761. 图片验证码注册
  3762. @param request_dict: 请求数据
  3763. @request_dict userEmail: 邮箱
  3764. @request_dict userPwd: 密码
  3765. @request_dict imageCodeId: 图片验证码id
  3766. @request_dict valid_code: 验证码
  3767. @request_dict unique: 手机唯一标识
  3768. @request_dict number: 国家id号
  3769. @request_dict region_status: 地区选择状态
  3770. @request_dict lang: 语言
  3771. @return: response
  3772. """
  3773. userEmail = request_dict.get('userEmail', None)
  3774. password = request_dict.get('userPwd', None)
  3775. salt = request_dict.get('salt', None)
  3776. password_version = request_dict.get('pwdVersion', 'V1')
  3777. imageCodeId = request_dict.get('imageCodeId', None)
  3778. valid_code = request_dict.get('id_v_code', None)
  3779. unique = request_dict.get('unique', None)
  3780. number = request_dict.get('number', None)
  3781. region_status = request_dict.get('region_status', None)
  3782. lang = request_dict.get('lang', None)
  3783. response = ResponseObject(lang)
  3784. email_scription = request_dict.get('email_scription', None)
  3785. push_scription = request_dict.get('push_scription', None)
  3786. if not all([userEmail, password, lang, imageCodeId, valid_code]):
  3787. return response.json(444)
  3788. if unique:
  3789. delete_local_account(unique)
  3790. region_status = int(region_status) if region_status else 0
  3791. try:
  3792. if password_version == 'V1':
  3793. for i in range(1, 4):
  3794. if i == 1:
  3795. password = base64.b64decode(password)
  3796. password = password.decode('utf-8')
  3797. password = password[1:-1]
  3798. if i == 2:
  3799. password = base64.b64decode(password)
  3800. password = password.decode('utf-8')
  3801. password = password[2:-2]
  3802. if i == 3:
  3803. password = base64.b64decode(password)
  3804. password = password.decode('utf-8')
  3805. password = password[3:-3]
  3806. password = make_password(password)
  3807. else:
  3808. if not salt:
  3809. return response.json(111)
  3810. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", 260000, salt, password)
  3811. except Exception as e:
  3812. return response.json(111)
  3813. try:
  3814. for i in range(1, 4):
  3815. if i == 1:
  3816. valid_code = base64.b64decode(valid_code)
  3817. valid_code = valid_code.decode('utf-8')
  3818. valid_code = valid_code[1:-1]
  3819. if i == 2:
  3820. valid_code = base64.b64decode(valid_code)
  3821. valid_code = valid_code.decode('utf-8')
  3822. valid_code = valid_code[2:-2]
  3823. if i == 3:
  3824. valid_code = base64.b64decode(valid_code)
  3825. valid_code = valid_code.decode('utf-8')
  3826. valid_code = valid_code[3:-3]
  3827. except Exception as e:
  3828. return response.json(121)
  3829. if not userEmail:
  3830. return response.json(105)
  3831. if not password:
  3832. return response.json(109)
  3833. userEmail = userEmail.strip()
  3834. password = password.strip()
  3835. # 注释
  3836. if userEmail:
  3837. emailValid = Device_User.objects.filter(userEmail=userEmail)
  3838. if emailValid:
  3839. return response.json(103)
  3840. # 判断验证码是否过期
  3841. image_code_key = 'image_code_%s' % imageCodeId
  3842. redisObj = RedisObject(db=6)
  3843. redis_image_code = redisObj.get_data(key=image_code_key)
  3844. # 验证用户输入的验证码和redis中的验证码
  3845. if redis_image_code is False or valid_code.lower() != redis_image_code.lower():
  3846. return response.json(121)
  3847. # 删除redis中的图片验证码,防止用户使用同一个图片验证码验证多次
  3848. redisObj.del_data(key=image_code_key)
  3849. username = userEmail
  3850. email_qs = Device_User.objects.filter(Q(userEmail=userEmail) | Q(username=userEmail))
  3851. if email_qs:
  3852. return response.json(103)
  3853. # 创建用户
  3854. userID = CommonService.getUserID(μs=False, setOTAID=True)
  3855. create_data = {
  3856. "username": username,
  3857. "NickName": username,
  3858. "userEmail": userEmail,
  3859. "password": password,
  3860. "userID": userID,
  3861. "is_active": True,
  3862. "user_isValid": True,
  3863. "region_status": region_status
  3864. }
  3865. if number:
  3866. create_data["region_country"] = number
  3867. Device_User.objects.create(**create_data)
  3868. if push_scription:
  3869. UserEmailSubscriptions.objects.create(email=userEmail, user_id=userID, push_sub_status=1)
  3870. else:
  3871. UserEmailSubscriptions.objects.create(email=userEmail, user_id=userID, push_sub_status=0)
  3872. if email_scription:
  3873. subscribers = {
  3874. "userEmail": userEmail,
  3875. "region_country": number
  3876. }
  3877. subscription_thread = threading.Thread(target=UserSubscriptionControllerView.subscription,
  3878. args=(subscribers,))
  3879. subscription_thread.start()
  3880. return self.do_login(email_qs, response)
  3881. @staticmethod
  3882. def do_login(user_qs, response):
  3883. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  3884. user_qs.update(last_login=now_time, online=True)
  3885. userID = user_qs[0].userID
  3886. tko = TokenObject()
  3887. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  3888. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  3889. # 增加角色
  3890. user_qs[0].role.add(Role.objects.get(rid=1))
  3891. role_dict = ModelService.own_role(userID=userID)
  3892. res['rid'] = role_dict['rid']
  3893. res['roleName'] = role_dict['roleName']
  3894. res['permList'] = ModelService.own_permission(userID)
  3895. res['userID'] = userID
  3896. # 昵称,邮箱,电话,刷新,头像
  3897. userIconPath = str(user_list[0]["userIconPath"])
  3898. if userIconPath and userIconPath.find('static/') != -1:
  3899. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  3900. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  3901. else:
  3902. res['userIconUrl'] = ''
  3903. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  3904. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  3905. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  3906. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  3907. return response.json(0, res)
  3908. class UserAppFrequencyView(TemplateView):
  3909. @method_decorator(csrf_exempt)
  3910. def dispatch(self, *args, **kwargs):
  3911. return super(UserAppFrequencyView, self).dispatch(*args, **kwargs)
  3912. def post(self, request, *args, **kwargs):
  3913. request.encoding = 'utf-8'
  3914. request_dict = request.POST
  3915. operation = kwargs.get('operation')
  3916. return self.validates(request_dict, operation)
  3917. def get(self, request, *args, **kwargs):
  3918. request.encoding = 'utf-8'
  3919. request_dict = request.GET
  3920. operation = kwargs.get('operation')
  3921. return self.validates(request_dict, operation)
  3922. def validates(self, request_dict, operation):
  3923. token = request_dict.get('token', None)
  3924. response = ResponseObject()
  3925. token = TokenObject(token)
  3926. if token.code != 0:
  3927. return response.json(token.code)
  3928. if operation == 'refresh':
  3929. return self.do_refresh(request_dict, token.userID, response)
  3930. else:
  3931. return response.json(404)
  3932. def do_refresh(self, request_dict, userID, response):
  3933. type = request_dict.get('type', None)
  3934. month = request_dict.get('month', None)
  3935. if not type or not month:
  3936. return response.json(444, 'type')
  3937. else:
  3938. type = int(type)
  3939. now_time = int(time.time())
  3940. month = int(month)
  3941. uaf_qs = UserAppFrequencyModel.objects.filter(user__userID=userID)
  3942. if not uaf_qs.exists():
  3943. user = Device_User.objects.filter(userID=userID)[0]
  3944. data = {
  3945. 'user': user,
  3946. 'type': type,
  3947. 'data_time': month,
  3948. 'add_time': now_time,
  3949. 'update_time': now_time,
  3950. }
  3951. UserAppFrequencyModel.objects.create(**data)
  3952. return response.json(0)
  3953. else:
  3954. updateMonth = time.strftime('%m', time.localtime(month))
  3955. uaf = uaf_qs.values('id', 'type', 'data_time')[0]
  3956. dbMonth = time.strftime('%m', time.localtime(int(uaf['data_time'])))
  3957. print('update month is ' + updateMonth)
  3958. print('db month is ' + dbMonth)
  3959. if updateMonth == dbMonth:
  3960. UserAppFrequencyModel.objects.filter(id=uaf['id']).update(type=type)
  3961. return response.json(0)
  3962. elif updateMonth > dbMonth:
  3963. user = Device_User.objects.filter(userID=userID)[0]
  3964. data = {
  3965. 'user': user,
  3966. 'type': type,
  3967. 'data_time': month,
  3968. 'add_time': now_time,
  3969. 'update_time': now_time,
  3970. }
  3971. UserAppFrequencyModel.objects.create(**data)
  3972. return response.json(0)
  3973. else:
  3974. return response.json(444, 'month')
  3975. class loginCodeView(View):
  3976. @method_decorator(csrf_exempt) # @csrf_exempt
  3977. def dispatch(self, *args, **kwargs):
  3978. return super(loginCodeView, self).dispatch(*args, **kwargs)
  3979. @limits(calls=2, period=60)
  3980. def post(self, request, *args, **kwargs):
  3981. request.encoding = 'utf-8'
  3982. lang = request.POST.get('lang', None)
  3983. if not lang:
  3984. lang = request.POST.get('language', None)
  3985. response = ResponseObject(lang)
  3986. request_dict = request.POST
  3987. phone = request_dict.get('phone', None)
  3988. if phone is not None:
  3989. was_limited = getattr(request, 'limited', False)
  3990. if was_limited is True:
  3991. return response.json(5)
  3992. return self.validate(request_dict, response)
  3993. @limits(calls=2, period=60)
  3994. def get(self, request, *args, **kwargs):
  3995. request.encoding = 'utf-8'
  3996. lang = request.GET.get('lang', None)
  3997. if not lang:
  3998. lang = request.GET.get('language', None)
  3999. response = ResponseObject(lang)
  4000. was_limited = getattr(request, 'limited', False)
  4001. if was_limited is True:
  4002. return response.json(5)
  4003. request_dict = request.GET
  4004. return self.validate(request_dict, response)
  4005. def validate(self, request_dict, response):
  4006. phone = request_dict.get('phone', None)
  4007. country_code = request_dict.get('country_code', None)
  4008. sign_name = request_dict.get('sign_name', None)
  4009. if phone and sign_name:
  4010. du_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone))
  4011. if not du_qs.exists():
  4012. return response.json(104)
  4013. else:
  4014. redisObject = RedisObject()
  4015. login_code_key = '{phone}_login_code'.format(phone=phone)
  4016. login_code = redisObject.get_data(key=login_code_key)
  4017. login_code_ttl = redisObject.get_ttl(key=login_code_key)
  4018. if login_code_ttl > 240 and login_code:
  4019. return response.json(90)
  4020. login_code = RandomStr(6, True)
  4021. aliSms = AliSmsObject()
  4022. # 短信签名
  4023. sign_name = CommonService.confirm_msg_sign_name(sign_name, phone)
  4024. res = aliSms.send_code_sms(phone=phone, code=login_code, sign_name=sign_name, temp_msg='SMS_151675022')
  4025. if res['Code'] == 'OK':
  4026. if redisObject.set_data(key=login_code_key, val=login_code, expire=300) is not True:
  4027. return response.json(48)
  4028. return response.json(0)
  4029. else:
  4030. return response.json(10, res['Message'])
  4031. else:
  4032. return response.json(444)
  4033. class v3LoginByCodeView(View):
  4034. @method_decorator(csrf_exempt) # @csrf_exempt
  4035. def dispatch(self, *args, **kwargs):
  4036. return super(v3LoginByCodeView, self).dispatch(*args, **kwargs)
  4037. def post(self, request, *args, **kwargs):
  4038. request.encoding = 'utf-8'
  4039. lang = request.POST.get('lang', None)
  4040. if not lang:
  4041. lang = request.POST.get('language', None)
  4042. response = ResponseObject(lang)
  4043. request_dict = request.POST
  4044. phone = request_dict.get('phone', None)
  4045. if phone is not None:
  4046. was_limited = getattr(request, 'limited', False)
  4047. if was_limited is True:
  4048. return response.json(5)
  4049. return self.validate(request_dict, response)
  4050. def get(self, request, *args, **kwargs):
  4051. request.encoding = 'utf-8'
  4052. lang = request.GET.get('lang', None)
  4053. if not lang:
  4054. lang = request.GET.get('language', None)
  4055. response = ResponseObject(lang)
  4056. was_limited = getattr(request, 'limited', False)
  4057. if was_limited is True:
  4058. return response.json(5)
  4059. request_dict = request.GET
  4060. return self.validate(request_dict, response)
  4061. def validate(self, request_dict, response):
  4062. phone = request_dict.get('phone', None)
  4063. code = request_dict.get('code', None)
  4064. if phone and code:
  4065. redisObject = RedisObject()
  4066. login_code_key = '{phone}_login_code'.format(phone=phone)
  4067. login_code = redisObject.get_data(key=login_code_key)
  4068. if login_code is not False:
  4069. print(code)
  4070. code = CommonService.decode_data(code)
  4071. print(code)
  4072. if login_code == code:
  4073. if response.lang is None:
  4074. response.lang = 'en'
  4075. return self.do_phone_login(phone, response)
  4076. else:
  4077. return response.json(121)
  4078. else:
  4079. return response.json(120)
  4080. def do_phone_login(self, phone, response):
  4081. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True,
  4082. user_isValid=True)
  4083. return self.valid_login(user_qs, response)
  4084. def valid_login(self, user_qs, response):
  4085. if not user_qs.exists():
  4086. return response.json(104)
  4087. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  4088. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  4089. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  4090. 'phone', 'password', 'userIconPath')[0]
  4091. userID = users['userID']
  4092. tko = TokenObject()
  4093. res = tko.generate(
  4094. data={'userID': userID, 'lang': response.lang, 'user': users['username'],
  4095. 'm_code': '123413243214'})
  4096. # 添加用户登录类型
  4097. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  4098. auth_type = 0
  4099. if oauth_qs.exists():
  4100. auth_type = oauth_qs[0].authType
  4101. if tko.code == 0:
  4102. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  4103. user_qs.update(last_login=now_time, language=response.lang)
  4104. res['rid'] = users['role__rid']
  4105. res['roleName'] = users['role__roleName']
  4106. res['permList'] = ModelService.own_permission(userID)
  4107. res['userID'] = userID
  4108. # 昵称,邮箱,电话,刷新,头像
  4109. userIconPath = str(users['userIconPath'])
  4110. if userIconPath and userIconPath.find('static/') != -1:
  4111. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  4112. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  4113. else:
  4114. res['userIconUrl'] = ''
  4115. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  4116. res['username'] = users['username'] if users['username'] is not None else ''
  4117. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  4118. res['phone'] = users['phone'] if users['phone'] is not None else ''
  4119. res['authType'] = auth_type
  4120. return response.json(0, res)
  4121. else:
  4122. return response.json(tko.code)
  4123. class v3LoginByFingerprintView(View):
  4124. @method_decorator(csrf_exempt) # @csrf_exempt
  4125. def dispatch(self, *args, **kwargs):
  4126. return super(v3LoginByFingerprintView, self).dispatch(*args, **kwargs)
  4127. def post(self, request, *args, **kwargs):
  4128. request.encoding = 'utf-8'
  4129. lang = request.POST.get('lang', None)
  4130. if not lang:
  4131. lang = request.POST.get('language', None)
  4132. response = ResponseObject(lang)
  4133. request_dict = request.POST
  4134. was_limited = getattr(request, 'limited', False)
  4135. if was_limited is True:
  4136. return response.json(5)
  4137. return self.validate(request_dict, response)
  4138. def get(self, request, *args, **kwargs):
  4139. request.encoding = 'utf-8'
  4140. lang = request.GET.get('lang', None)
  4141. if not lang:
  4142. lang = request.GET.get('language', None)
  4143. response = ResponseObject(lang)
  4144. was_limited = getattr(request, 'limited', False)
  4145. if was_limited is True:
  4146. return response.json(5)
  4147. request_dict = request.GET
  4148. return self.validate(request_dict, response)
  4149. def validate(self, request_dict, response):
  4150. password = request_dict.get("password", None)
  4151. if password:
  4152. password = CommonService.decode_data(password)
  4153. if password is None:
  4154. return response.json(444)
  4155. else:
  4156. user_qs = Device_User.objects.filter(username=password, is_active=True, user_isValid=True)
  4157. if not user_qs.exists():
  4158. return response.json(104)
  4159. else:
  4160. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  4161. 'phone', 'password', 'userIconPath', 'fingerprint_enable',
  4162. 'fingerprint_key')[0]
  4163. if users['fingerprint_enable'] == 0:
  4164. return response.json(112)
  4165. else:
  4166. userID = users['userID']
  4167. tko = TokenObject()
  4168. res = tko.generate(
  4169. data={'userID': userID, 'lang': response.lang, 'user': users['username'],
  4170. 'm_code': '123413243214'})
  4171. if tko.code == 0:
  4172. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  4173. user_qs.update(last_login=now_time, language=response.lang)
  4174. res['rid'] = users['role__rid']
  4175. res['roleName'] = users['role__roleName']
  4176. res['permList'] = ModelService.own_permission(userID)
  4177. res['userID'] = userID
  4178. # 昵称,邮箱,电话,刷新,头像
  4179. userIconPath = str(users['userIconPath'])
  4180. if userIconPath and userIconPath.find('static/') != -1:
  4181. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  4182. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  4183. else:
  4184. res['userIconUrl'] = ''
  4185. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  4186. res['username'] = users['username'] if users['username'] is not None else ''
  4187. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  4188. res['phone'] = users['phone'] if users['phone'] is not None else ''
  4189. res['fingerprint_enable'] = users['fingerprint_enable']
  4190. res['fingerprint_key'] = CommonService.encode_data(content=users['fingerprint_key'],
  4191. start=2)
  4192. return response.json(0, res)
  4193. else:
  4194. return response.json(tko.code)
  4195. else:
  4196. return response.json(444)
  4197. class v3SetFingerprintView(View):
  4198. @method_decorator(csrf_exempt)
  4199. def dispatch(self, *args, **kwargs):
  4200. return super(v3SetFingerprintView, self).dispatch(*args, **kwargs)
  4201. def post(self, request, *args, **kwargs):
  4202. request.encoding = 'utf-8'
  4203. request_dict = request.POST
  4204. return self.validate(request_dict)
  4205. def get(self, request, *args, **kwargs):
  4206. request.encoding = 'utf-8'
  4207. request_dict = request.GET
  4208. return self.validate(request_dict)
  4209. def validate(self, request_dict):
  4210. lang = request_dict.get('lang', None)
  4211. token = request_dict.get('token', None)
  4212. fingerprint_enable = request_dict.get('fingerprint_enable', None)
  4213. fingerprint_key = request_dict.get('fingerprint_key', None)
  4214. response = ResponseObject()
  4215. token = TokenObject(token)
  4216. if token.code != 0:
  4217. return response.json(token.code)
  4218. if not lang:
  4219. return response.json(444, 'lang')
  4220. response.lang = lang
  4221. data = {}
  4222. if fingerprint_enable:
  4223. data['fingerprint_enable'] = int(fingerprint_enable)
  4224. if fingerprint_key:
  4225. data['fingerprint_key'] = CommonService.decode_data(fingerprint_key, end=3)
  4226. if len(data) > 0:
  4227. Device_User.objects.filter(userID=token.userID).update(**data)
  4228. return response.json(0)
  4229. class AppleAuthLogin(View):
  4230. def post(self, request, *args, **kwargs):
  4231. request.encoding = 'utf-8'
  4232. request_dict = request.POST
  4233. return self.validate(request_dict)
  4234. def get(self, request, *args, **kwargs):
  4235. request.encoding = 'utf-8'
  4236. request_dict = request.GET
  4237. return self.validate(request_dict)
  4238. def validate(self, request_dict):
  4239. lang = request_dict.get('lang', None)
  4240. identity_token = request_dict.get('identity_token', None)
  4241. app_bundle_id = request_dict.get('app_bundle_id', None) # 包名
  4242. response = ResponseObject(lang)
  4243. identity_token = CommonService.decode_data(identity_token)
  4244. # print(identity_token)
  4245. if identity_token:
  4246. key_url = 'https://appleid.apple.com/auth/keys'
  4247. key_response = requests.get(key_url).json()
  4248. # print(key_response)
  4249. head = jwt.get_unverified_header(identity_token)
  4250. # print(head)
  4251. token_key = head['kid']
  4252. key_object = None
  4253. alg = None
  4254. for pub_key in key_response['keys']:
  4255. if pub_key['kid'] == token_key:
  4256. key_object = simplejson.dumps(pub_key)
  4257. key_object = RSAAlgorithm.from_jwk(key_object)
  4258. alg = pub_key['alg']
  4259. break
  4260. if key_object:
  4261. try:
  4262. claims = jwt.decode(identity_token, key=key_object, verify=True, algorithms=[alg],
  4263. audience=app_bundle_id)
  4264. unionID = claims['sub']
  4265. print(claims)
  4266. user_extend_qs = UserOauth2Model.objects.filter(unionID=unionID, authType=2)
  4267. if user_extend_qs.exists():
  4268. # 如果用户绑定过则直接登录
  4269. userID = user_extend_qs[0].userID_id
  4270. print(userID)
  4271. user_qs = Device_User.objects.filter(userID=userID)
  4272. return self.do_login(user_qs, response)
  4273. else:
  4274. # 如果用户为绑定过则创建用户并进行登录返回token
  4275. userID = CommonService.getUserID(getUser=False)
  4276. if claims.__contains__('email'):
  4277. nickname = claims['email']
  4278. else:
  4279. nickname = 'apple_{num}'.format(num=CommonService.RandomStr(6, False))
  4280. return self.do_register(userID, nickname, response, app_bundle_id, unionID)
  4281. except Exception as e:
  4282. print(e)
  4283. return response.json(717)
  4284. else:
  4285. return response.json(444)
  4286. else:
  4287. return response.json(444)
  4288. # 登录
  4289. def do_login(self, user_qs, response):
  4290. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  4291. userID = user_qs[0].userID
  4292. print('userID' + userID)
  4293. tko = TokenObject()
  4294. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  4295. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  4296. # 增加角色
  4297. user_qs[0].role.add(Role.objects.get(rid=1))
  4298. role_dict = ModelService.own_role(userID=userID)
  4299. res['rid'] = role_dict['rid']
  4300. res['roleName'] = role_dict['roleName']
  4301. res['permList'] = ModelService.own_permission(userID)
  4302. res['userID'] = userID
  4303. # 昵称,邮箱,电话,刷新,头像
  4304. userIconPath = str(user_list[0]["userIconPath"])
  4305. if userIconPath and userIconPath.find('static/') != -1:
  4306. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  4307. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  4308. else:
  4309. res['userIconUrl'] = ''
  4310. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  4311. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  4312. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  4313. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  4314. print(res)
  4315. # 添加用户登录类型
  4316. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  4317. auth_type = 0
  4318. if oauth_qs.exists():
  4319. auth_type = oauth_qs[0].authType
  4320. res['authType'] = auth_type
  4321. user_qs.update(last_login=now_time, online=True)
  4322. return response.json(0, res)
  4323. def do_register(self, userID, nickname, response, appBundleId, unionID):
  4324. data_valid = DataValid()
  4325. if data_valid.name_validate(userID) is not True:
  4326. return response.json(105)
  4327. try:
  4328. users = Device_User.objects.create(
  4329. username=userID,
  4330. NickName=nickname,
  4331. password=make_password('123456'),
  4332. userID=userID,
  4333. is_active=True,
  4334. user_isValid=True,
  4335. )
  4336. nowTime = int(time.time())
  4337. UserOauth2Model.objects.create(
  4338. addTime=nowTime,
  4339. updTime=nowTime,
  4340. userID_id=users.userID,
  4341. authType=2,
  4342. unionID=unionID
  4343. )
  4344. except Exception as e:
  4345. errorInfo = traceback.format_exc()
  4346. print(errorInfo)
  4347. return response.json(424, repr(e))
  4348. else:
  4349. user_qs = Device_User.objects.filter(Q(userID=userID))
  4350. print('---')
  4351. print(user_qs)
  4352. return self.do_login(user_qs, response)
  4353. class LocalUserView(View):
  4354. def get(self, request, *args, **kwargs):
  4355. request.encoding = 'utf-8'
  4356. request_dict = request.GET
  4357. operation = kwargs.get('operation', None)
  4358. return self.validate(request_dict, operation)
  4359. def post(self, request, *args, **kwargs):
  4360. request.encoding = 'utf-8'
  4361. request_dict = request.POST
  4362. operation = kwargs.get('operation', None)
  4363. print('start_time=' + str((time.time())))
  4364. ip = CommonService.get_ip_address(request)
  4365. print('end_time=' + str((time.time())))
  4366. return self.validate(request_dict, operation)
  4367. def validate(self, request_dict, operation):
  4368. language = request_dict.get('lang', None)
  4369. response = ResponseObject(lang=language)
  4370. if operation == 'login':
  4371. return self.do_local_login(request_dict, response)
  4372. else:
  4373. return response.json(404)
  4374. def do_local_login(self, request_dict, response):
  4375. username = request_dict.get('username', None)
  4376. app_bundle_id = request_dict.get('app_bundle_id', None)
  4377. if username is None:
  4378. return response.json(444)
  4379. user_qs = Device_User.objects.filter(username=username)
  4380. if user_qs.exists():
  4381. return self.do_login(user_qs, response)
  4382. else:
  4383. # 如果用户为绑定过则创建用户并进行登录返回token
  4384. userID = CommonService.getUserID(μs=False, setOTAID=True)
  4385. nickname = 'local_{num}'.format(num=CommonService.RandomStr(6, False))
  4386. return self.do_register(userID, username, nickname, response, app_bundle_id)
  4387. # 登录
  4388. def do_login(self, user_qs, response):
  4389. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  4390. userID = user_qs[0].userID
  4391. print('userID' + userID)
  4392. tko = TokenObject()
  4393. user_list = user_qs.values("NickName", "userIconUrl", "userIconPath", "username", "userEmail", "phone")
  4394. res = tko.generate(data={'userID': userID, 'lang': response.lang, 'user': user_list[0]["username"]})
  4395. # 增加角色
  4396. user_qs[0].role.add(Role.objects.get(rid=1))
  4397. role_dict = ModelService.own_role(userID=userID)
  4398. res['rid'] = role_dict['rid']
  4399. res['roleName'] = role_dict['roleName']
  4400. res['permList'] = ModelService.own_permission(userID)
  4401. res['userID'] = userID
  4402. # 昵称,邮箱,电话,刷新,头像
  4403. userIconPath = str(user_list[0]["userIconPath"])
  4404. if userIconPath and userIconPath.find('static/') != -1:
  4405. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  4406. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  4407. else:
  4408. res['userIconUrl'] = ''
  4409. res['NickName'] = user_list[0]["NickName"] if user_list[0]["NickName"] is not None else ''
  4410. res['username'] = user_list[0]["username"] if user_list[0]["username"] is not None else ''
  4411. res['userEmail'] = user_list[0]["userEmail"] if user_list[0]["userEmail"] is not None else ''
  4412. res['phone'] = user_list[0]["phone"] if user_list[0]["phone"] is not None else ''
  4413. print(res)
  4414. # 添加用户登录类型
  4415. oauth_qs = UserOauth2Model.objects.filter(userID__userID=userID)
  4416. auth_type = 0
  4417. if oauth_qs.exists():
  4418. auth_type = oauth_qs[0].authType
  4419. res['authType'] = auth_type
  4420. user_qs.update(last_login=now_time, online=True)
  4421. return response.json(0, res)
  4422. def do_register(self, userID, username, nickname, response, appBundleId):
  4423. data_valid = DataValid()
  4424. if data_valid.name_validate(userID) is not True:
  4425. return response.json(105)
  4426. try:
  4427. Device_User.objects.create(
  4428. username=username,
  4429. NickName=nickname,
  4430. password=make_password('123456'),
  4431. userID=userID,
  4432. is_active=True,
  4433. user_isValid=True,
  4434. is_local=True
  4435. )
  4436. except Exception as e:
  4437. errorInfo = traceback.format_exc()
  4438. print(errorInfo)
  4439. return response.json(424, repr(e))
  4440. else:
  4441. user_qs = Device_User.objects.filter(Q(userID=userID))
  4442. print('---')
  4443. print(user_qs)
  4444. return self.do_login(user_qs, response)
  4445. class SubscribeEmailView(View):
  4446. def get(self, request, *args, **kwargs):
  4447. request.encoding = 'utf-8'
  4448. request_dict = request.GET
  4449. return self.validate(request_dict)
  4450. def post(self, request, *args, **kwargs):
  4451. request.encoding = 'utf-8'
  4452. request_dict = request.POST
  4453. return self.validate(request_dict)
  4454. def validate(self, request_dict):
  4455. token = request_dict.get('token', None)
  4456. lang = request_dict.get('lang', None)
  4457. token = TokenObject(token)
  4458. response = ResponseObject(lang=lang)
  4459. if token.code != 0:
  4460. return response.json(token.code)
  4461. status = request_dict.get('subscribe', None)
  4462. if status is None:
  4463. return response.json(444)
  4464. status = int(status)
  4465. user_qs = Device_User.objects.filter(userID=token.userID)
  4466. if user_qs.exists():
  4467. user_qs.update(subscribe_email=status)
  4468. return response.json(0)
  4469. else:
  4470. return response.json(104)
  4471. def delete_local_account(username):
  4472. user_qs = Device_User.objects.filter(username=username)
  4473. print(user_qs)
  4474. if user_qs.exists():
  4475. user = user_qs[0]
  4476. if user.is_local:
  4477. user.delete()
  4478. Device_Info.objects.filter(userID__userID=user.userID).delete()
  4479. def updateUserCountry(request):
  4480. country_ip_qs = CountryIPModel.objects.filter(status=0)[0: 100]
  4481. if country_ip_qs.exists():
  4482. country_ip_qs = country_ip_qs.values()
  4483. redisObject = RedisObject(db=6)
  4484. for country_ip in country_ip_qs:
  4485. key = 'ip_country_{ip}'.format(ip=country_ip['ip'])
  4486. data = redisObject.get_data(key=key)
  4487. if data:
  4488. country = data
  4489. else:
  4490. country = CommonService.getIpIpInfo(country_ip['ip'], lang='CN')
  4491. country = country['country_name']
  4492. redisObject.set_data(key=key, val=country, expire=3600)
  4493. country_ip['country'] = country
  4494. CountryIPModel.objects.filter(id=country_ip['id']).update(country=country, status=1)
  4495. # ids.append(country_ip['id'])
  4496. # CountryIPModel.objects.filter(id__in=tuple(ids)).update(status=1)
  4497. response = ResponseObject()
  4498. return response.json(0)
  4499. def confirmRegion(request):
  4500. response = ResponseObject()
  4501. request.encoding = 'utf-8'
  4502. # test
  4503. number = request.POST.get('number', None)
  4504. if number is None:
  4505. return response.json(309)
  4506. number = request.POST.get('number', None)
  4507. selectRegion = CountryModel.objects.filter(number=number).values('region__api')
  4508. if not selectRegion.exists():
  4509. return response.json(0, {"request_url": "https://www.dvema.com"})
  4510. else:
  4511. return response.json(0, {"request_url": selectRegion[0]['region__api']})
  4512. def deleteAccount(request):
  4513. # test
  4514. lang = request.POST.get('lang', None)
  4515. token = request.POST.get('token', None)
  4516. password = request.POST.get('userPwd', None)
  4517. salt = request.POST.get('salt', None)
  4518. iterations = request.POST.get('iterations', None)
  4519. password_version = request.POST.get('pwdVersion', 'V1')
  4520. response = ResponseObject(lang=lang) if lang else ResponseObject()
  4521. request.encoding = 'utf-8'
  4522. try:
  4523. if password_version == 'V1':
  4524. for i in range(1, 4):
  4525. if i == 1:
  4526. # 第一次先解密
  4527. password = base64.b64decode(password)
  4528. password = password.decode('utf-8')
  4529. # 截去第一位,最后一位
  4530. password = password[1:-1]
  4531. if i == 2:
  4532. # 第2次先解密
  4533. password = base64.b64decode(password)
  4534. password = password.decode('utf-8')
  4535. # 去前2位,后2位
  4536. password = password[2:-2]
  4537. if i == 3:
  4538. # 第3次先解密
  4539. password = base64.b64decode(password)
  4540. password = password.decode('utf-8')
  4541. # 去前3位,后3位
  4542. password = password[3:-3]
  4543. except Exception as e:
  4544. return response.json(111)
  4545. else:
  4546. if token is None:
  4547. return response.json(309)
  4548. tko = TokenObject(token)
  4549. if tko.code != 0:
  4550. return response.json(tko.code)
  4551. userID = tko.userID
  4552. if not userID:
  4553. return response.json(309)
  4554. delUser = Device_User.objects.filter(userID=userID)
  4555. if not delUser.exists():
  4556. return response.json(104)
  4557. userPWD = delUser.values('password')[0]
  4558. if password_version == 'V1':
  4559. check_flag = check_password(password, userPWD['password'])
  4560. else:
  4561. if not all([iterations, salt]):
  4562. return response.json(444)
  4563. password = "%s$%d$%s$%s" % ("pbkdf2_sha256", int(iterations), salt, password)
  4564. check_flag = CommonService.check_password(password, userPWD['password'])
  4565. if not check_flag:
  4566. return response.json(111)
  4567. hasDevices = Device_Info.objects.filter(userID=userID)
  4568. if hasDevices.exists():
  4569. return response.json(10047)
  4570. orderUserIds = Order_Model.objects.filter(userID=userID, status=1).values_list('UID').distinct().order_by("UID")
  4571. hadUseSevice = UID_Bucket.objects.filter(uid__in=orderUserIds, use_status=1)
  4572. if hadUseSevice.exists():
  4573. return response.json(10046)
  4574. hadUnUseSevice = Unused_Uid_Meal.objects.filter(uid__in=orderUserIds)
  4575. if hadUnUseSevice.exists():
  4576. return response.json(10046)
  4577. try:
  4578. user_vo = Device_User.objects.filter(userEmail='asjorder@ansjer.com').values('userID')
  4579. Order_Model.objects.filter(userID=userID) \
  4580. .update(userID_id=user_vo[0]['userID'],
  4581. desc=f'原:{userID},{datetime.datetime.now().strftime("%Y-%m-%d %H:%M:%S")}')
  4582. except Exception as e:
  4583. print(repr(e))
  4584. delUser.delete()
  4585. return response.json(0)
  4586. class InitUserInformationView(View):
  4587. def get(self, request, *args, **kwargs):
  4588. request.encoding = 'utf-8'
  4589. operation = kwargs.get('operation', None)
  4590. request_dict = request.GET
  4591. return self.validate(request_dict, operation)
  4592. def post(self, request, *args, **kwargs):
  4593. request.encoding = 'utf-8'
  4594. operation = kwargs.get('operation', None)
  4595. request_dict = request.POST
  4596. return self.validate(request_dict, operation)
  4597. def validate(self, request_dict, operation):
  4598. token = TokenObject(request_dict.get('token', None))
  4599. response = ResponseObject()
  4600. if token.code != 0:
  4601. return response.json(token.code)
  4602. if operation == 'init':
  4603. return self.do_init(token.userID, request_dict, response)
  4604. else:
  4605. return response.json(444)
  4606. def do_init(self, userID, request_dict, response):
  4607. appBundleId = request_dict.get('appBundleId', None)
  4608. if appBundleId:
  4609. user_ex_qs = UserExModel.objects.filter(userID_id=userID)
  4610. now_time = int(time.time())
  4611. if user_ex_qs.exists():
  4612. update = {
  4613. 'appBundleId': appBundleId,
  4614. 'updTime': now_time
  4615. }
  4616. user_ex_qs.update(**update)
  4617. else:
  4618. user_ex = UserExModel(userID_id=userID, appBundleId=appBundleId, addTime=now_time, updTime=now_time)
  4619. user_ex.save()
  4620. return response.json(0)
  4621. else:
  4622. return response.json(444)
  4623. class DeleteUser(View):
  4624. def get(self, request, *args, **kwargs):
  4625. request.encoding = 'utf-8'
  4626. request_dict = request.GET
  4627. return self.validate(request, request_dict)
  4628. def post(self, request, *args, **kwargs):
  4629. request.encoding = 'utf-8'
  4630. request_dict = request.POST
  4631. return self.validate(request, request_dict)
  4632. def validate(self, request, request_dict):
  4633. response = ResponseObject('cn')
  4634. try:
  4635. user_id = request_dict.get('userID', None)
  4636. if not user_id:
  4637. return response.json(444)
  4638. Device_User.objects.filter(userID=user_id).delete()
  4639. Device_Info.objects.filter(userID=user_id).delete()
  4640. return response.json(0)
  4641. except Exception as e:
  4642. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  4643. def getPasswordSalt(request):
  4644. if request.method == 'GET':
  4645. request_dict = request.GET
  4646. else:
  4647. request_dict = request.POST
  4648. lang = request_dict.get('lang', 'en')
  4649. username = request_dict.get('userName', None)
  4650. token = request_dict.get('token', None)
  4651. response = ResponseObject(lang=lang)
  4652. request.encoding = 'utf-8'
  4653. if token:
  4654. token_obj = TokenObject(token)
  4655. if token_obj.code != 0:
  4656. return response.json(token_obj.code)
  4657. username = token_obj.user
  4658. if not username:
  4659. return response.json(444, 'userName')
  4660. username = username.strip()
  4661. data_valid = DataValid()
  4662. try:
  4663. if data_valid.email_validate(username):
  4664. user_qs = Device_User.objects.filter(Q(username=username) | Q(userEmail=username)).values('password')
  4665. elif data_valid.mobile_validate(username):
  4666. user_qs = Device_User.objects.filter(Q(phone=username) | Q(username=username), is_active=True,
  4667. user_isValid=True).values('password')
  4668. elif data_valid.name_validate(username):
  4669. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  4670. is_active=True, user_isValid=True).values('password')
  4671. else:
  4672. return response.json(104)
  4673. if not user_qs.exists():
  4674. return response.json(104)
  4675. iterations = user_qs[0]['password'].split('$')[1]
  4676. salt = user_qs[0]['password'].split('$')[2]
  4677. return response.json(0, {'iterations': iterations, 'salt': salt})
  4678. except Exception as e:
  4679. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))
  4680. class ChangeAccountInfoView(View):
  4681. def get(self, request, *args, **kwargs):
  4682. request.encoding = 'utf-8'
  4683. operation = kwargs.get('operation')
  4684. request_dict = request.GET
  4685. return self.validation(request_dict, request, operation)
  4686. def post(self, request, *args, **kwargs):
  4687. request.encoding = 'utf-8'
  4688. operation = kwargs.get('operation')
  4689. request_dict = request.POST
  4690. return self.validation(request_dict, request, operation)
  4691. def validation(self, request_dict, request, operation):
  4692. language = request_dict.get('lang', 'en')
  4693. response = ResponseObject(language)
  4694. if operation == 'verifyCode':
  4695. return self.verify_code(request_dict, response)
  4696. elif operation == 'changePhone':
  4697. return self.change_phone(request_dict, response)
  4698. else:
  4699. return response.json(444)
  4700. @staticmethod
  4701. def verify_code(request_dict, response):
  4702. phone = request_dict.get('phone', None)
  4703. authcode = request_dict.get('authcode', None)
  4704. if phone is None or authcode is None:
  4705. return response.json(444, 'phone, authcode')
  4706. authcode = CommonService.decode_data(authcode.strip())
  4707. if authcode is None:
  4708. return response.json(444, 'authcode')
  4709. reds = RedisObject()
  4710. key = str(phone) + '_ChangePhone'
  4711. reset_code = reds.get_data(key=key)
  4712. if reset_code is False:
  4713. return response.json(90)
  4714. if authcode != reset_code:
  4715. return response.json(121)
  4716. if not reds.del_data(key):
  4717. return response.json(10, '删除缓存失败')
  4718. return response.json(0)
  4719. @staticmethod
  4720. def change_phone(request_dict, response):
  4721. ord_phone = request_dict.get('ord_phone', None)
  4722. new_phone = request_dict.get('new_phone', None)
  4723. authcode = request_dict.get('authcode', None)
  4724. new_user_qs = Device_User.objects.filter(Q(username=new_phone) | Q(phone=new_phone))
  4725. if new_user_qs.exists():
  4726. return response.json(101)
  4727. authcode = CommonService.decode_data(authcode.strip())
  4728. if authcode is None:
  4729. return response.json(444, 'authcode')
  4730. LOGGER.info(f"change_phone, authcode: {authcode}")
  4731. reds = RedisObject()
  4732. key = str(new_phone) + '_ChangePhone'
  4733. reset_code = reds.get_data(key=key)
  4734. if reset_code is False:
  4735. return response.json(90)
  4736. if authcode != reset_code:
  4737. return response.json(121)
  4738. if not reds.del_data(key):
  4739. return response.json(10, '删除缓存失败')
  4740. ord_user_qs = Device_User.objects.filter(Q(username=ord_phone) | Q(phone=ord_phone))
  4741. if not ord_user_qs.exists():
  4742. return response.json(102)
  4743. if ord_user_qs[0].username == ord_phone:
  4744. ord_user_qs.update(phone=new_phone, username=new_phone)
  4745. else:
  4746. ord_user_qs.update(phone=new_phone)
  4747. return response.json(0)
  4748. class VerifyCodeView(View):
  4749. def get(self, request, *args, **kwargs):
  4750. request.encoding = 'utf-8'
  4751. operation = kwargs.get('operation')
  4752. request_dict = request.GET
  4753. return self.validation(request_dict, request, operation)
  4754. def post(self, request, *args, **kwargs):
  4755. request.encoding = 'utf-8'
  4756. operation = kwargs.get('operation')
  4757. request_dict = request.POST
  4758. return self.validation(request_dict, request, operation)
  4759. def validation(self, request_dict, request, operation):
  4760. language = request_dict.get('lang', 'en')
  4761. response = ResponseObject(language)
  4762. if operation == 'verifyCode':
  4763. return self.verify_code(request_dict, response)
  4764. else:
  4765. return response.json(444)
  4766. @staticmethod
  4767. def verify_code(request_dict, response):
  4768. """
  4769. 验证邮箱验证码
  4770. @param username: 账户名
  4771. @param code: 用户输入的验证码
  4772. @param response: 响应对象
  4773. @return: 验证结果
  4774. """
  4775. try:
  4776. username = request_dict.get('username')
  4777. code = request_dict.get('code')
  4778. # 基础参数验证
  4779. if not username or not code:
  4780. return response.json(444)
  4781. # 生成缓存Key
  4782. redis_key = f'{username}_GetBackendVerificationCode'
  4783. reds = RedisObject()
  4784. # 获取并验证验证码
  4785. cached_code = reds.get_data(key=redis_key)
  4786. if cached_code is False:
  4787. return response.json(92)
  4788. # 验证失败次数控制
  4789. if cached_code != code:
  4790. failure_key = f"{redis_key}_failures"
  4791. failures_raw = reds.get_data(key=failure_key)
  4792. failures = int(failures_raw or 0) + 1
  4793. reds.set_data(key=failure_key, val=failures, expire=60)
  4794. if failures >= 5:
  4795. return response.json(5)
  4796. return response.json(121)
  4797. # 验证成功,清理缓存
  4798. reds.del_data(redis_key)
  4799. reds.del_data(f"{redis_key}_failures")
  4800. return response.json(0)
  4801. except Exception as e:
  4802. return response.json(500, 'error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e)))