flaskr.py 4.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176
  1. """
  2. Simple flask thing
  3. """
  4. import random
  5. import string
  6. from datetime import datetime
  7. from flask import render_template, request, redirect, \
  8. flash, url_for, abort, json
  9. from flask_breadcrumbs import Breadcrumbs, register_breadcrumb
  10. from flask_menu import Menu, register_menu
  11. from flask_login import login_required, login_user, logout_user
  12. from app import app, login_manager, db
  13. from app.models import User, Request, Log, Key
  14. Menu(app=app)
  15. Breadcrumbs(app=app)
  16. @register_breadcrumb(app, '.login', 'Login')
  17. @app.route("/login", methods=["GET", "POST"])
  18. def login():
  19. """Handle login page and data"""
  20. if request.method == 'POST':
  21. email = request.form['email']
  22. password = request.form['password']
  23. user = User.query.filter(User.email == email).first()
  24. if user is not None:
  25. if user.password == password:
  26. login_user(user)
  27. flash('You were successfully logged in', 'success')
  28. if request.args.get("next") is not None:
  29. return redirect(request.args.get("next"))
  30. else:
  31. return redirect(url_for('index'))
  32. else:
  33. flash('Incorrect password', 'danger')
  34. else:
  35. flash('User not found', 'danger')
  36. return redirect(url_for('login'))
  37. else:
  38. return render_template('site/login.html')
  39. @app.route("/register", methods=["POST"])
  40. def register():
  41. """Register a new user"""
  42. user = User()
  43. user.name = request.form['name']
  44. user.email = request.form['email']
  45. user.password = request.form['password']
  46. db.session.add(user)
  47. db.session.commit()
  48. login_user(user)
  49. flash('Succesfully registered account', 'success')
  50. if request.args.get("next") is not None:
  51. return redirect(request.args.get("next"))
  52. else:
  53. return redirect(url_for('index'))
  54. @app.route("/logout")
  55. @login_required
  56. def logout():
  57. """Logout function for users"""
  58. logout_user()
  59. flash('succesfully logged out', 'success')
  60. return redirect(url_for('login'))
  61. @app.route('/')
  62. @register_menu(app, '.', 'Home')
  63. @register_breadcrumb(app, '.', 'Home')
  64. def index():
  65. """Show homepage"""
  66. # users = User.query.count()
  67. return render_template('site/index.html')
  68. # return render_template('site/index.html', users=users)
  69. @app.route('/users')
  70. @register_menu(app, 'users', 'Users')
  71. @register_breadcrumb(app, '.users', 'Users')
  72. @login_required
  73. def user_index():
  74. """Show users"""
  75. users = User.query.all()
  76. return render_template('user/index.html', users=users)
  77. def user_overview_dlc(*args, **kwargs):
  78. """Generate dynamic_list for user"""
  79. id = request.view_args['id']
  80. user = User.query.get(id)
  81. return [{'text': user.email, 'url': user.url}]
  82. @app.route('/user/<int:id>')
  83. @register_breadcrumb(app, '.users.id', '',
  84. dynamic_list_constructor=user_overview_dlc)
  85. @login_required
  86. def user_overview(id):
  87. """Show user overview"""
  88. id = int(id)
  89. user = User.query.get(id)
  90. return render_template('user/overview.html', user=user)
  91. @app.route('/user/<int:id>/generate_key')
  92. @login_required
  93. def user_generate_key(id):
  94. """Generate new key for user"""
  95. user = User.query.get(id)
  96. key = Key()
  97. key.key = ''.join(random.choices(
  98. string.ascii_letters + string.digits, k=64
  99. ))
  100. key.user_id = user.id
  101. db.session.add(key)
  102. db.session.commit()
  103. flash('Succesfully generated key', 'success')
  104. return redirect(url_for('user_overview', id=user.id))
  105. @app.route('/user/<int:user_id>/key/<int:key_id>/activate')
  106. @login_required
  107. def user_toogle_key(user_id, key_id):
  108. """Activate key"""
  109. user = User.query.get(user_id)
  110. key = Key.query.get(key_id)
  111. key.active = not key.active
  112. db.session.add(key)
  113. db.session.commit()
  114. if key.active:
  115. flash('Activated key', 'success')
  116. else:
  117. flash('Deactivated key', 'success')
  118. return redirect(url_for('user_overview', id=user.id))
  119. @app.route('/api/authenticated', methods=["POST"])
  120. def api_authenticated():
  121. """Check key"""
  122. if 'Authorization' not in request.headers:
  123. return abort(403)
  124. authorization = request.headers['authorization']
  125. key = Key.query.filter(Key.key == authorization).count()
  126. if key:
  127. return json.dumps(True)
  128. return json.dumps(False)
  129. @app.route('/api/request', methods=["GET"])
  130. def api_log():
  131. """Check key"""
  132. if 'Authorization' not in request.headers:
  133. return abort(403)
  134. authorization = request.headers['authorization']
  135. key = Key.query.filter(Key.key == authorization).first()
  136. if not key or not key.active:
  137. return abort(403)
  138. log = Log()
  139. db.session.add(log)
  140. db.session.commit()
  141. return json.dumps(True)