usermod/Utils/AuthUtils.py

46 lines
1.5 KiB
Python

from jose import jwt
from datetime import datetime, timedelta
from fastapi import Header, Request, HTTPException
from Schemas.UserSchemas import TokenData
class Token:
SECRET_KEY = "MADASDZXC255f"
ALGORITHM = "HS256"
@classmethod
def create_token(cls, data: dict, expires_delta: timedelta = timedelta(days=3)):
# 设置加密数据
to_encode_body = dict()
to_encode_body.update(data.copy())
# 设置过期时间
expire = datetime.utcnow() + expires_delta
to_encode_body.update({"exp": expire})
# Token编码
encoded_jwt = jwt.encode(to_encode_body, cls.SECRET_KEY, algorithm=cls.ALGORITHM)
return encoded_jwt
@classmethod
def decode_token(cls, token: str):
payload = jwt.decode(token, cls.SECRET_KEY, algorithms=[cls.ALGORITHM])
return payload
def token_data_depend(request: Request, Authorization: str = Header(None)) -> TokenData:
print("token_data_depend", request.url)
jwt_token = Authorization
try:
payload = Token.decode_token(jwt_token)
token_data = TokenData(**payload)
return token_data
except Exception as e:
print(e)
raise HTTPException(status_code=403, detail="无权限的操作")
# 管理员token验证
def auth_token_depend(request: Request, Authorization: str = Header(None)) -> TokenData:
token_data = token_data_depend(request, Authorization)
if token_data.role != 'admin':
raise HTTPException(status_code=403, detail="非管理员,无权限的操作")