UserManageController.py 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454
  1. #!/usr/bin/env python3
  2. # -*- coding: utf-8 -*-
  3. """
  4. @Copyright (C) ansjer cop Video Technology Co.,Ltd.All rights reserved.
  5. @AUTHOR: ASJRD018
  6. @NAME: AnsjerFormal
  7. @software: PyCharm
  8. @DATE: 2018/9/11 15:08
  9. @Version: python3.6
  10. @MODIFY DECORD:ansjer dev
  11. @file: UserController.py
  12. @Contact: chanjunkai@163.com
  13. """
  14. import datetime
  15. import traceback
  16. import time
  17. import logging
  18. import jwt
  19. import simplejson
  20. import simplejson as json
  21. import requests
  22. from django.contrib.auth.hashers import make_password, check_password # 对密码加密模块
  23. from django.db.models import Q
  24. from django.http import HttpResponseRedirect
  25. from django.utils.decorators import method_decorator
  26. from django.utils.timezone import utc
  27. from django.views.decorators.csrf import csrf_exempt
  28. from django.views.generic import TemplateView
  29. from jwt.algorithms import RSAAlgorithm
  30. from ratelimit.decorators import ratelimit
  31. from Ansjer.config import AuthCode_Expire, SERVER_DOMAIN, APNS_CONFIG, JPUSH_CONFIG, FCM_CONFIG, TUTK_PUSH_DOMAIN
  32. from Controller.CheckUserData import DataValid, date_handler, RandomStr
  33. from Model.models import Device_User, Role, UidPushModel, UserOauth2Model, UserExModel, Device_Info, UidSetModel, \
  34. UserAppFrequencyModel, CountryIPModel, CountryModel, UidChannelSetModel, MenuModel
  35. from Object.AWS.SesClassObject import SesClassObject
  36. from Object.AliSmsObject import AliSmsObject
  37. from Object.RedisObject import RedisObject
  38. from Object.ResponseObject import ResponseObject
  39. from Object.TokenObject import TokenObject
  40. from Service.CommonService import CommonService
  41. from Service.ModelService import ModelService
  42. from Service.TemplateService import TemplateService
  43. from django.views.generic import View
  44. import base64
  45. import random
  46. from io import BytesIO
  47. from PIL import Image, ImageDraw, ImageFont
  48. from django.shortcuts import HttpResponse
  49. from Ansjer.config import BASE_DIR
  50. # 登录
  51. class LoginView(TemplateView):
  52. @method_decorator(csrf_exempt) # @csrf_exempt
  53. def dispatch(self, *args, **kwargs):
  54. return super(LoginView, self).dispatch(*args, **kwargs)
  55. def post(self, request, *args, **kwargs):
  56. request.encoding = 'utf-8'
  57. request_dict = request.POST
  58. language = request_dict.get('language', 'en')
  59. response = ResponseObject(language,'pc')
  60. return self.validates(request_dict, response)
  61. def validates(self, request_dict, response):
  62. username = request_dict.get('username', None)
  63. password = request_dict.get('password', None)
  64. if not username or not password:
  65. return response.json(111)
  66. username = username.strip()
  67. password = password.strip()
  68. data_valid = DataValid()
  69. if data_valid.email_validate(username):
  70. return self.do_email_login(username, password, response)
  71. elif data_valid.mobile_validate(username):
  72. return self.do_phone_login(username, password, response)
  73. elif data_valid.name_validate(username):
  74. return self.do_name_login(username, password, response)
  75. else:
  76. return response.json(107)
  77. def do_email_login(self, email, password, response):
  78. user_qs = Device_User.objects.filter(Q(username=email) | Q(userEmail=email))
  79. return self.valid_login(user_qs, password, response)
  80. def do_phone_login(self, phone, password, response):
  81. user_qs = Device_User.objects.filter(Q(phone=phone) | Q(username=phone), is_active=True, user_isValid=True)
  82. return self.valid_login(user_qs, password, response)
  83. def do_name_login(self, username, password, response):
  84. user_qs = Device_User.objects.filter(Q(username=username) | Q(phone=username) | Q(userEmail=username),
  85. is_active=True, user_isValid=True)
  86. return self.valid_login(user_qs, password, response)
  87. def valid_login(self, user_qs, password, response):
  88. if not user_qs.exists():
  89. return response.json(104)
  90. # users = user_qs.values('role__rid', 'role__roleName', 'userID', 'role', 'NickName', 'username', 'userEmail',
  91. # 'phone', 'password', 'userIconPath', 'user_isValid', 'is_active')[0]
  92. users = user_qs.values('role__rid', 'role__roleName', 'userID', 'NickName', 'username', 'userEmail',
  93. 'phone', 'password', 'userIconPath')[0]
  94. if not check_password(password, users['password']):
  95. return response.json(111)
  96. userID = users['userID']
  97. tko = TokenObject(returntpye='pc')
  98. res = tko.generate(
  99. data={'userID': userID, 'lang': response.lang, 'user': users['username'], 'm_code': '123413243214'})
  100. if tko.code == 0:
  101. now_time = datetime.datetime.utcnow().replace(tzinfo=utc).astimezone(utc)
  102. user_qs.update(last_login=now_time, language=response.lang)
  103. res['rid'] = users['role__rid']
  104. res['roleName'] = users['role__roleName']
  105. res['permList'] = ModelService.own_permission(userID)
  106. res['userID'] = userID
  107. # 昵称,邮箱,电话,刷新,头像
  108. userIconPath = str(users['userIconPath'])
  109. if userIconPath and userIconPath.find('static/') != -1:
  110. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  111. res['userIconUrl'] = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  112. else:
  113. res['userIconUrl'] = ''
  114. res['NickName'] = users['NickName'] if users['NickName'] is not None else ''
  115. res['username'] = users['username'] if users['username'] is not None else ''
  116. res['userEmail'] = users['userEmail'] if users['userEmail'] is not None else ''
  117. res['phone'] = users['phone'] if users['phone'] is not None else ''
  118. return response.json(0, res)
  119. else:
  120. return response.json(tko.code)
  121. # 获取登录权限
  122. class GetPermissions(TemplateView):
  123. @method_decorator(csrf_exempt) # @csrf_exempt
  124. def dispatch(self, *args, **kwargs):
  125. return super(GetPermissions, self).dispatch(*args, **kwargs)
  126. def get(self, request, *args, **kwargs):
  127. token = request.META.get('HTTP_AUTHORIZATION')
  128. request.encoding = 'utf-8'
  129. request_dict = request.GET
  130. language = request_dict.get('language', 'en')
  131. response = ResponseObject(language, 'pc')
  132. return self.validates(request_dict,token, response)
  133. def validates(self, request_dict,token, response):
  134. tko = TokenObject(token,returntpye='pc')
  135. response.lang = tko.lang
  136. if tko.code != 0:
  137. return response.json(tko.code)
  138. userID = tko.userID
  139. user_qs = Device_User.objects.filter(userID=userID)
  140. if not user_qs.exists():
  141. return response.json(104)
  142. #待补充逻辑
  143. username = user_qs[0].username
  144. userIconPath = user_qs[0].userIconPath.url
  145. if userIconPath:
  146. if userIconPath.find('static/') != -1:
  147. userIconPath = userIconPath.replace('static/', '').replace('\\', '/')
  148. userIconUrl = SERVER_DOMAIN + 'account/getAvatar/' + userIconPath
  149. role_qs = Role.objects.filter(device_user=userID)
  150. menu_qs = MenuModel.objects.filter(role__in=role_qs,menutype=2);
  151. perms = []
  152. for menu in menu_qs:
  153. perms.append(menu.menu_code)
  154. res={
  155. "code": 200,
  156. "msg": "success",
  157. "data": {
  158. "roles": ["admin"], # 一个用户可包含多个角色如["admin","editor","XXXX"],必须返回,如小项目用不到角色权限请返回 ["admin"]
  159. "ability": ["READ", "WRITE", "DELETE"], # 如果用不到rabc精细化权限可以不返回,建议返回
  160. "username": username, # 用户名,必须返回
  161. "avatar": userIconUrl,# 头像,必须返回
  162. "perms": perms
  163. }
  164. }
  165. return response.json(0, res)
  166. # 获取菜单
  167. class GetList(TemplateView):
  168. @method_decorator(csrf_exempt) # @csrf_exempt
  169. def dispatch(self, *args, **kwargs):
  170. return super(GetList, self).dispatch(*args, **kwargs)
  171. def get(self, request, *args, **kwargs):
  172. token = request.META.get('HTTP_AUTHORIZATION')
  173. request.encoding = 'utf-8'
  174. request_dict = request.GET
  175. language = request_dict.get('language', 'en')
  176. response = ResponseObject(language, 'pc')
  177. return self.validates(request_dict,token, response)
  178. def validates(self, request_dict,token, response):
  179. tko = TokenObject(token,returntpye='pc')
  180. response.lang = tko.lang
  181. if tko.code != 0:
  182. return response.json(tko.code)
  183. userID = tko.userID
  184. role_qs =Role.objects.filter(device_user=userID)
  185. menu_qs = MenuModel.objects.filter(parentId=0,role__in=role_qs,menutype=1);
  186. list = []
  187. for menu in menu_qs:
  188. list.append(
  189. {
  190. 'id': menu.id,
  191. 'parentId': menu.parentId,
  192. 'path': menu.path,
  193. 'name': menu.name,
  194. 'component': menu.component,
  195. 'meta': {
  196. 'hidden': menu.hidden,
  197. 'levelHidden': menu.levelHidden,
  198. 'title': menu.title,
  199. 'icon': menu.icon,
  200. 'isCustomSvg':menu.isCustomSvg,
  201. 'noKeepAlive': menu.noKeepAlive,
  202. 'noClosable':menu.noClosable,
  203. 'badge': menu.badge,
  204. 'tabHidden': menu.tabHidden,
  205. 'activeMenu': menu.activeMenu,
  206. 'dot':menu.dot,
  207. 'dynamicNewTab': menu.dynamicNewTab,
  208. 'sort': menu.sort
  209. }
  210. }
  211. )
  212. menu_qs = MenuModel.objects.filter(role__in=role_qs,menutype=1)
  213. menulist = []
  214. for objlist in list:
  215. menulist.append(self.menulist(menu_qs, objlist))
  216. return response.json(0, {'list': menulist})
  217. def menulist(self, menu_qs, objlist):
  218. if objlist is None:
  219. return
  220. for menu in menu_qs:
  221. if objlist['id'] == menu.parentId:
  222. if 'children' not in objlist:
  223. objlist['children'] = []
  224. obj = {
  225. 'id': menu.id,
  226. 'parentId': menu.parentId,
  227. 'path': menu.path,
  228. 'name': menu.name,
  229. 'component': menu.component,
  230. 'menutype': menu.menutype,
  231. 'menu_code': menu.menu_code,
  232. 'meta': {
  233. 'hidden': menu.hidden,
  234. 'levelHidden': menu.levelHidden,
  235. 'title': menu.title,
  236. 'icon': menu.icon,
  237. 'isCustomSvg': menu.isCustomSvg,
  238. 'noKeepAlive': menu.noKeepAlive,
  239. 'noClosable': menu.noClosable,
  240. 'badge': menu.badge,
  241. 'tabHidden': menu.tabHidden,
  242. 'activeMenu': menu.activeMenu,
  243. 'dot': menu.dot,
  244. 'dynamicNewTab': menu.dynamicNewTab,
  245. 'sort': menu.sort
  246. }
  247. }
  248. objlist['children'].append(
  249. obj
  250. )
  251. self.menulist(menu_qs, obj)
  252. return objlist
  253. class UserManagement(View):
  254. def get(self, request, *args, **kwargs):
  255. request.encoding = 'utf-8'
  256. operation = kwargs.get('operation')
  257. return self.validation(request.GET, request, operation)
  258. def post(self, request, *args, **kwargs):
  259. request.encoding = 'utf-8'
  260. operation = kwargs.get('operation')
  261. return self.validation(request.POST, request, operation)
  262. def validation(self, request_dict, request, operation):
  263. language = request_dict.get('language', 'en')
  264. response = ResponseObject(language, 'pc')
  265. if operation == '??':
  266. return 0
  267. else:
  268. tko = TokenObject(request.META.get('HTTP_AUTHORIZATION'), returntpye='pc')
  269. if tko.code != 0:
  270. return response.json(tko.code)
  271. response.lang = tko.lang
  272. userID = tko.userID
  273. if operation == 'getUserInfo':
  274. return self.getUserInfo(userID, request_dict, response)
  275. elif operation == 'AddOrEditAccount':
  276. return self.AddOrEditAccount(userID, request_dict, response)
  277. elif operation == 'doDelete':
  278. return self.doDelete(userID, request_dict, response)
  279. elif operation == 'resetPassword':
  280. return self.resetPassword(request_dict, response)
  281. else:
  282. return response.json(404)
  283. def getUserInfo(self, userID, request_dict, response):
  284. print('request_dict: ', request_dict)
  285. username = request_dict.get('username', '').strip() # 移除字符串头尾的空格
  286. NickName = request_dict.get('NickName', '').strip()
  287. phone = request_dict.get('phone', '').strip()
  288. userEmail = request_dict.get('userEmail', '').strip()
  289. pageNo = request_dict.get('pageNo', None)
  290. pageSize = request_dict.get('pageSize', None)
  291. if not all([pageNo, pageSize]):
  292. return response.json(444)
  293. page = int(pageNo)
  294. line = int(pageSize)
  295. try:
  296. if username or NickName or phone or userEmail:
  297. # 条件查询
  298. if username:
  299. device_user_qs = Device_User.objects.filter(username__contains=username)
  300. if NickName:
  301. device_user_qs = Device_User.objects.filter(NickName__contains=NickName)
  302. if phone:
  303. device_user_qs = Device_User.objects.filter(phone__contains=phone)
  304. if userEmail:
  305. device_user_qs = Device_User.objects.filter(userEmail__contains=userEmail)
  306. if not device_user_qs.exists():
  307. return response.json(0)
  308. total = len(device_user_qs)
  309. device_users = device_user_qs[(page - 1) * line:page * line]
  310. else:
  311. total = Device_User.objects.filter().count()
  312. device_users = Device_User.objects.filter()[(page - 1) * line:page * line]
  313. user_list = []
  314. for device_user in device_users:
  315. role = device_user.role.first()
  316. rid = role.rid if role else 1 # 不存在角色默认分配为'Users'
  317. user_list.append({
  318. 'userID': device_user.userID,
  319. 'username': device_user.username,
  320. 'NickName': device_user.NickName,
  321. 'role': Role.objects.get(rid=rid).roleName,
  322. 'phone': device_user.phone,
  323. 'userEmail': device_user.userEmail,
  324. 'data_joined': device_user.data_joined.strftime("%Y-%m-%d %H:%M:%S"),
  325. 'last_login': device_user.last_login.strftime("%Y-%m-%d %H:%M:%S"),
  326. 'online': device_user.online,
  327. })
  328. print('user_list: ', user_list)
  329. return response.json(0, {'list': user_list, 'total': total})
  330. except Exception as e:
  331. print(e)
  332. return response.json(500, repr(e))
  333. def AddOrEditAccount(self, userID, request_dict, response):
  334. # 添加/编辑用户
  335. print('request_dict: ', request_dict)
  336. username = request_dict.get('username', '').strip() # 移除字符串头尾的空格
  337. userEmail = request_dict.get('userEmail', '').strip()
  338. roleName = request_dict.get('role', None)
  339. password = request_dict.get('password', None)
  340. isEdit = request_dict.get('isEdit', None)
  341. # 校验用户名,邮箱,密码是否符合规则
  342. dataValid = DataValid()
  343. if not username or not dataValid.name_validate(username):
  344. return response.json(444, {'Parameter error': 'username'})
  345. if userEmail and not dataValid.email_validate(userEmail):
  346. return response.json(444, {'Parameter error': 'userEmail'})
  347. if not isEdit: # 添加用户需要输入密码
  348. if not password or not dataValid.password_validate(password):
  349. return response.json(444, {'Parameter error': 'password'})
  350. try:
  351. if isEdit: # 编辑用户信息
  352. userID = request_dict.get('userID')
  353. user_data = {
  354. "username": username,
  355. "NickName": username,
  356. "userEmail": userEmail,
  357. "password": make_password(password),
  358. }
  359. device_user_qs = Device_User.objects.filter(userID=userID)
  360. device_user_qs.update(**user_data)
  361. # 如果角色改变,修改用户角色
  362. device_user_role = device_user_qs[0].role
  363. user_role = device_user_role.first()
  364. if not user_role or roleName != user_role.roleName:
  365. device_user_role.clear()
  366. role_qs = Role.objects.filter(roleName=roleName) # 账号角色
  367. device_user_qs[0].role.set(role_qs)
  368. else: # 添加用户
  369. # 查询邮箱是否已注册
  370. if Device_User.objects.filter(userEmail=userEmail).exists():
  371. return response.json(103)
  372. role_qs = Role.objects.filter(roleName=roleName) # 账号角色
  373. # 创建用户
  374. user_data = {
  375. "username": username,
  376. "NickName": username,
  377. "userEmail": userEmail,
  378. "password": make_password(password),
  379. "userID": CommonService.getUserID(μs=False, setOTAID=True),
  380. "is_active": True,
  381. "user_isValid": True,
  382. }
  383. Device_User.objects.create(**user_data).role.set(role_qs)
  384. return response.json(0)
  385. except Exception as e:
  386. print(e)
  387. return response.json(500, repr(e))
  388. def doDelete(self, userID, request_dict, response):
  389. userID = request_dict.get('userID', '')
  390. Device_User.objects.filter(userID=userID).delete()
  391. return response.json(0)
  392. def resetPassword(self, request_dict, response):
  393. userID = request_dict.get('userID', None)
  394. if not userID:
  395. return response.json(444)
  396. try:
  397. password = '123456'
  398. is_update = Device_User.objects.filter(userID=userID).update(password=make_password(password))
  399. if is_update:
  400. return response.json(0)
  401. else:
  402. return response.json(177)
  403. except Exception as e:
  404. print(e)
  405. return response.json(500, repr(e))