Statistics
| Branch: | Tag: | Revision:

root / snf-astakos-app / astakos / im / auth_backends.py @ 789a5951

History | View | Annotate | Download (3.7 kB)

1
# Copyright 2011 GRNET S.A. All rights reserved.
2
#
3
# Redistribution and use in source and binary forms, with or
4
# without modification, are permitted provided that the following
5
# conditions are met:
6
#
7
#   1. Redistributions of source code must retain the above
8
#      copyright notice, this list of conditions and the following
9
#      disclaimer.
10
#
11
#   2. Redistributions in binary form must reproduce the above
12
#      copyright notice, this list of conditions and the following
13
#      disclaimer in the documentation and/or other materials
14
#      provided with the distribution.
15
#
16
# THIS SOFTWARE IS PROVIDED BY GRNET S.A. ``AS IS'' AND ANY EXPRESS
17
# OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
18
# WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
19
# PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL GRNET S.A OR
20
# CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
21
# SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
22
# LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
23
# USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
24
# AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
25
# LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN
26
# ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
27
# POSSIBILITY OF SUCH DAMAGE.
28
#
29
# The views and conclusions contained in the software and
30
# documentation are those of the authors and should not be
31
# interpreted as representing official policies, either expressed
32
# or implied, of GRNET S.A.
33

    
34
from django.contrib.auth.backends import ModelBackend
35
from django.core.validators import email_re
36

    
37
from astakos.im.models import AstakosUser
38
from astakos.im.settings import LOGGING_LEVEL
39

    
40
import logging
41

    
42
logger = logging.getLogger(__name__)
43

    
44

    
45
class TokenBackend(ModelBackend):
46
    """
47
    AuthenticationBackend used to authenticate using token instead
48
    """
49
    def authenticate(self, email=None, auth_token=None):
50
        try:
51
            user = AstakosUser.objects.get(email__iexact=email, is_active=True)
52
            if user.auth_token == auth_token:
53
                return user
54
        except AstakosUser.DoesNotExist:
55
            return None
56
        else:
57
            msg = 'Invalid token during authentication for %s' % email
58
            logger._log(LOGGING_LEVEL, msg, [])
59

    
60
    def get_user(self, user_id):
61
        try:
62
            return AstakosUser.objects.get(pk=user_id)
63
        except AstakosUser.DoesNotExist:
64
            return None
65

    
66

    
67
class EmailBackend(ModelBackend):
68
    """
69
    If the ``username`` parameter is actually an email uses email to authenticate
70
    the user else tries the username.
71

72
    Used from ``astakos.im.forms.LoginForm`` to authenticate.
73
    """
74
    def authenticate(self, username=None, password=None):
75
        #If username is an email address, then try to pull it up
76
        if email_re.search(username):
77
            users = AstakosUser.objects.filter(email__iexact=username)
78
            if not users:
79
                return None
80
            for user in users:
81
                if  user.check_password(password):
82
                    return user
83
        else:
84
            #We have a non-email address username we
85
            #should try username
86
            try:
87
                user = AstakosUser.objects.get(username=username)
88
            except AstakosUser.DoesNotExist:
89
                return None
90
        if user.check_password(password):
91
            return user
92
        else:
93
            msg = 'Invalid password during authentication for %s' % username
94
            logger._log(LOGGING_LEVEL, msg, [])
95

    
96

    
97
    def get_user(self, user_id):
98
        try:
99
            return AstakosUser.objects.get(pk=user_id)
100
        except AstakosUser.DoesNotExist:
101
            return None