views.py 4.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126
  1. from django.shortcuts import render
  2. from .form import UserLoginForm, UserRegisterForm
  3. from django.contrib.auth import authenticate, login, logout
  4. from django.http import HttpResponse
  5. from .models import Devices
  6. import random
  7. import datetime
  8. import json
  9. """
  10. 在此处修改token过期时间,30代表30天过期
  11. """
  12. expiration_date = 30
  13. DEBUG = True
  14. def user_login(request):
  15. if request.method == 'POST':
  16. data = request.POST
  17. # 检测是否有登录凭证
  18. if data['token'] != 'token':
  19. try:
  20. device = Devices.objects.filter(token__exact=data['token']).get()
  21. sub_time = (device.last_login_time - datetime.date.today()).total_seconds() / (3600 * 24)
  22. # 检查token是否过期
  23. if sub_time < expiration_date:
  24. # 更新此user此设备的token
  25. # token由设备uid、用户名、当前时间hash得来
  26. device.gen_token()
  27. device.save()
  28. # 登录
  29. user = device.user
  30. login(request, user)
  31. response = {'token': device.token}
  32. return HttpResponse(json.dumps(response), status=200)
  33. # return redirect("chat:index")
  34. else:
  35. return HttpResponse(status=420)
  36. # 已过期的token并且已经被删除
  37. except Devices.DoesNotExist:
  38. return HttpResponse(status=420)
  39. else:
  40. # 检测账号密码是否匹配数据库中的一个用户
  41. # 如果均匹配,则返回此User对象
  42. user = authenticate(username=data['username'], password=data['password'])
  43. if user:
  44. if data['token'] == 'token':
  45. # 新建一个该user的设备
  46. device = create_new_device(user)
  47. else:
  48. # 此时,客户端带来了过期的旧token,现在需要更新旧的token
  49. try:
  50. device = Devices.objects.filter(token__exact=data['token']).get()
  51. device.gen_token()
  52. device.save()
  53. except Devices.DoesNotExist:
  54. # 新建一个该user的设备
  55. device = create_new_device(user)
  56. login(request, user)
  57. response = {'token': device.token}
  58. return HttpResponse(json.dumps(response), status=200)
  59. else:
  60. return HttpResponse(status=401)
  61. # 用于测试,登录界面
  62. elif request.method == 'GET':
  63. if DEBUG:
  64. user_login_form = UserLoginForm()
  65. context = {'form': user_login_form}
  66. return render(request, 'login.html', context)
  67. else:
  68. # 请求方法错误,请使用POST
  69. return HttpResponse(status=400)
  70. # 新建一个该user的设备
  71. def create_new_device(user):
  72. device = Devices()
  73. device.user = user
  74. device.device_uid = generate_random_str(100)
  75. device.gen_token()
  76. device.save()
  77. return device
  78. def generate_random_str(random_length=16):
  79. """
  80. 生成一个指定长度的随机字符串
  81. """
  82. random_str = ''
  83. base_str = 'ABCDEFGHIGKLMNOPQRSTUVWXYZabcdefghigklmnopqrstuvwxyz0123456789'
  84. length = len(base_str) - 1
  85. for i in range(random_length):
  86. random_str += base_str[random.randint(0, length)]
  87. return random_str
  88. def user_logout(request):
  89. logout(request)
  90. return HttpResponse(status=200)
  91. def user_register(request):
  92. if request.method == 'POST':
  93. user_register_form = UserRegisterForm(data=request.POST)
  94. if user_register_form.is_valid():
  95. # 新建一个user,但是不提交
  96. new_user = user_register_form.save(commit=False)
  97. # 设置密码
  98. new_user.set_password(user_register_form.cleaned_data['password'])
  99. # 保存
  100. new_user.save()
  101. return HttpResponse(status=200)
  102. else:
  103. return HttpResponse(status=400)
  104. # 用于测试
  105. elif request.method == 'GET':
  106. if DEBUG:
  107. user_register_form = UserRegisterForm()
  108. context = {'form': user_register_form}
  109. return render(request, 'register.html', context)
  110. else:
  111. return HttpResponse(status=400)