-
Notifications
You must be signed in to change notification settings - Fork 445
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[CE-71] Add user authentication for react theme #close
Support user login for react theme Remove auth in nginx conf Add login page for react theme Change-Id: I17ad143766ccf37a70df1d1f76905b998c0d6021 Signed-off-by: Haitao Yue <[email protected]>
- Loading branch information
Showing
29 changed files
with
957 additions
and
14 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,80 @@ | ||
# Copyright IBM Corp, All Rights Reserved. | ||
# | ||
# SPDX-License-Identifier: Apache-2.0 | ||
# | ||
import logging | ||
import os | ||
import sys | ||
import bcrypt | ||
|
||
from flask import Blueprint, redirect, url_for | ||
from flask import request as r | ||
from flask import current_app as app | ||
from flask_login import login_user, logout_user | ||
|
||
sys.path.append(os.path.join(os.path.dirname(__file__), '..', '..')) | ||
from common import log_handler, LOG_LEVEL, \ | ||
request_get, make_ok_resp, make_fail_resp, \ | ||
request_debug, request_json_body, \ | ||
CODE_CREATED, CODE_NOT_FOUND | ||
from .user import User | ||
|
||
logger = logging.getLogger(__name__) | ||
logger.setLevel(LOG_LEVEL) | ||
logger.addHandler(log_handler) | ||
|
||
bp_auth_api = Blueprint('bp_auth_api', __name__, | ||
url_prefix='/{}/{}'.format("api", "auth")) | ||
|
||
|
||
@bp_auth_api.route('/register', methods=['POST']) | ||
def register(): | ||
request_debug(r, logger) | ||
if not r.form["username"] or not r.form["password"]: | ||
error_msg = "register without enough data" | ||
logger.warning(error_msg) | ||
return make_fail_resp(error=error_msg, data=r.form) | ||
|
||
username, password = r.form["username"], r.form["password"] | ||
salt = app.config.get("SALT", b"") | ||
password = bcrypt.hashpw(password.encode('utf8'), bytes(salt.encode())) | ||
|
||
try: | ||
user = User(username, password) | ||
user.save() | ||
return make_ok_resp(code=CODE_CREATED) | ||
except Exception as exc: | ||
logger.info("exc %s", exc) | ||
return make_fail_resp(error="register failed") | ||
|
||
|
||
@bp_auth_api.route('/login', methods=['POST']) | ||
def login(): | ||
if not r.form["username"] or not r.form["password"]: | ||
error_msg = "login without enough data" | ||
logger.warning(error_msg) | ||
return make_fail_resp(error=error_msg, data={'success': False}) | ||
|
||
username, password = r.form["username"], r.form["password"] | ||
user_obj = User() | ||
try: | ||
user = user_obj.get_by_username_w_password(username) | ||
if user.is_admin() and \ | ||
bcrypt.checkpw(password.encode('utf8'), | ||
bytes(user.password.encode())): | ||
login_user(user) | ||
return make_ok_resp(data={'success': True, | ||
'next': url_for('bp_index.show')}, | ||
code=CODE_CREATED) | ||
else: | ||
return make_fail_resp(error="login failed", | ||
data={'success': False}) | ||
except Exception: | ||
return make_fail_resp(error="login failed", data={'success': False}) | ||
|
||
|
||
@bp_auth_api.route('/logout', methods=['GET']) | ||
def logout(): | ||
logout_user() | ||
return make_ok_resp(data={'success': True, | ||
'next': url_for('bp_login.login')}) |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,28 @@ | ||
|
||
# Copyright IBM Corp, All Rights Reserved. | ||
# | ||
# SPDX-License-Identifier: Apache-2.0 | ||
# | ||
import logging | ||
import os | ||
import sys | ||
from flask import Blueprint, render_template | ||
from flask import request as r | ||
|
||
sys.path.append(os.path.join(os.path.dirname(__file__), '..', '..')) | ||
from common import log_handler, LOG_LEVEL, NETWORK_TYPES, CONSENSUS_PLUGINS, \ | ||
CONSENSUS_MODES, WORKER_TYPES, NETWORK_SIZE_FABRIC_PRE_V1, request_debug, \ | ||
CLUSTER_LOG_TYPES, CLUSTER_LOG_LEVEL | ||
|
||
logger = logging.getLogger(__name__) | ||
logger.setLevel(LOG_LEVEL) | ||
logger.addHandler(log_handler) | ||
|
||
bp_login = Blueprint('bp_login', __name__) | ||
|
||
|
||
@bp_login.route('/login', methods=['GET']) | ||
def login(): | ||
request_debug(r, logger) | ||
|
||
return render_template("login.html") |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,15 @@ | ||
import sys | ||
import os | ||
import datetime | ||
from mongoengine import Document, StringField,\ | ||
BooleanField, DateTimeField | ||
|
||
sys.path.append(os.path.join(os.path.dirname(__file__), '..', '..')) | ||
|
||
|
||
class User(Document): | ||
username = StringField(unique=True) | ||
password = StringField(default=True) | ||
active = BooleanField(default=True) | ||
isAdmin = BooleanField(default=False) | ||
timestamp = DateTimeField(default=datetime.datetime.now()) |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,81 @@ | ||
import sys | ||
import os | ||
import logging | ||
sys.path.append(os.path.join(os.path.dirname(__file__), '..', '..')) | ||
from flask_login import UserMixin, AnonymousUserMixin | ||
from resources import models | ||
from common import log_handler, LOG_LEVEL | ||
|
||
logger = logging.getLogger(__name__) | ||
logger.setLevel(LOG_LEVEL) | ||
logger.addHandler(log_handler) | ||
|
||
|
||
class User(UserMixin): | ||
def __init__(self, username=None, password=None, active=True, | ||
is_admin=False, id=None): | ||
self.username = username | ||
self.password = password | ||
self.active = active | ||
self.isAdmin = is_admin | ||
self.id = None | ||
|
||
def is_active(self): | ||
return self.active | ||
|
||
def is_admin(self): | ||
return self.isAdmin | ||
|
||
def save(self): | ||
new_user = models.User(username=self.username, | ||
password=self.password, | ||
active=self.active, | ||
isAdmin=self.isAdmin) | ||
new_user.save() | ||
self.id = new_user.id | ||
return self.id | ||
|
||
def get_by_username(self, username): | ||
|
||
dbUser = models.User.objects.get(username=username) | ||
if dbUser: | ||
self.username = dbUser.username | ||
self.active = dbUser.active | ||
self.id = dbUser.id | ||
return self | ||
else: | ||
return None | ||
|
||
def get_by_username_w_password(self, username): | ||
try: | ||
dbUser = models.User.objects.get(username=username) | ||
|
||
if dbUser: | ||
logger.info("get user") | ||
self.username = dbUser.username | ||
self.active = dbUser.active | ||
self.password = dbUser.password | ||
self.id = dbUser.id | ||
self.isAdmin = dbUser.isAdmin | ||
return self | ||
else: | ||
logger.info("not get user") | ||
return None | ||
except Exception as exc: | ||
logger.info("get user exc %s", exc) | ||
return None | ||
|
||
def get_by_id(self, id): | ||
dbUser = models.User.objects.with_id(id) | ||
if dbUser: | ||
self.username = dbUser.username | ||
self.active = dbUser.active | ||
self.id = dbUser.id | ||
|
||
return self | ||
else: | ||
return None | ||
|
||
|
||
class Anonymous(AnonymousUserMixin): | ||
name = u"Anonymous" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.