login.py 3.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105
  1. import flask_login
  2. from flask import current_app, request
  3. from flask_restful import Resource, reqparse
  4. import services
  5. from controllers.console import api
  6. from controllers.console.setup import setup_required
  7. from libs.helper import email
  8. from libs.password import valid_password
  9. from services.account_service import AccountService, TenantService
  10. class LoginApi(Resource):
  11. """Resource for user login."""
  12. @setup_required
  13. def post(self):
  14. """Authenticate user and login."""
  15. parser = reqparse.RequestParser()
  16. parser.add_argument('email', type=email, required=True, location='json')
  17. parser.add_argument('password', type=valid_password, required=True, location='json')
  18. parser.add_argument('remember_me', type=bool, required=False, default=False, location='json')
  19. args = parser.parse_args()
  20. # todo: Verify the recaptcha
  21. try:
  22. account = AccountService.authenticate(args['email'], args['password'])
  23. except services.errors.account.AccountLoginError as e:
  24. return {'code': 'unauthorized', 'message': str(e)}, 401
  25. # SELF_HOSTED only have one workspace
  26. tenants = TenantService.get_join_tenants(account)
  27. if len(tenants) == 0:
  28. return {'result': 'fail', 'data': 'workspace not found, please contact system admin to invite you to join in a workspace'}
  29. AccountService.update_last_login(account, request)
  30. # todo: return the user info
  31. token = AccountService.get_account_jwt_token(account)
  32. return {'result': 'success', 'data': token}
  33. class LogoutApi(Resource):
  34. @setup_required
  35. def get(self):
  36. flask_login.logout_user()
  37. return {'result': 'success'}
  38. class ResetPasswordApi(Resource):
  39. @setup_required
  40. def get(self):
  41. parser = reqparse.RequestParser()
  42. parser.add_argument('email', type=email, required=True, location='json')
  43. args = parser.parse_args()
  44. # import mailchimp_transactional as MailchimpTransactional
  45. # from mailchimp_transactional.api_client import ApiClientError
  46. account = {'email': args['email']}
  47. # account = AccountService.get_by_email(args['email'])
  48. # if account is None:
  49. # raise ValueError('Email not found')
  50. # new_password = AccountService.generate_password()
  51. # AccountService.update_password(account, new_password)
  52. # todo: Send email
  53. MAILCHIMP_API_KEY = current_app.config['MAILCHIMP_TRANSACTIONAL_API_KEY']
  54. # mailchimp = MailchimpTransactional(MAILCHIMP_API_KEY)
  55. message = {
  56. 'from_email': 'noreply@example.com',
  57. 'to': [{'email': account.email}],
  58. 'subject': 'Reset your Dify password',
  59. 'html': """
  60. <p>Dear User,</p>
  61. <p>The Dify team has generated a new password for you, details as follows:</p>
  62. <p><strong>{new_password}</strong></p>
  63. <p>Please change your password to log in as soon as possible.</p>
  64. <p>Regards,</p>
  65. <p>The Dify Team</p>
  66. """
  67. }
  68. # response = mailchimp.messages.send({
  69. # 'message': message,
  70. # # required for transactional email
  71. # ' settings': {
  72. # 'sandbox_mode': current_app.config['MAILCHIMP_SANDBOX_MODE'],
  73. # },
  74. # })
  75. # Check if MSG was sent
  76. # if response.status_code != 200:
  77. # # handle error
  78. # pass
  79. return {'result': 'success'}
  80. api.add_resource(LoginApi, '/login')
  81. api.add_resource(LogoutApi, '/logout')