-
Notifications
You must be signed in to change notification settings - Fork 4
/
admin.py
95 lines (78 loc) · 2.75 KB
/
admin.py
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
from flask import (
g,
Module,
redirect,
render_template,
request,
session,
url_for,
)
from flatland.out.markup import Generator
from cockerel.models.schema import db, User
from cockerel.forms import LoginForm, SignupForm
admin = Module(__name__)
@admin.route('/login', methods=['GET', 'POST'])
def login():
# TODO: make this do better auth, it needs to set a cookie for a period of
# time
if request.method == 'POST':
form = LoginForm.from_flat(request.form)
if form.validate():
user = User.query.filter_by(
username=request.form['username']).first()
if user == None:
form['username'].add_error(
'Username %s not found' % form['username'].value)
gen = Generator()
return render_template("admin/login.html", form=form, html=gen)
if user.check_password(request.form['password']):
g.user = user
set_user()
if request.args:
return redirect(request.args.get('next'))
else:
return redirect(url_for('frontend.index'))
else:
gen = Generator()
return render_template("admin/login.html", form=form, html=gen)
form = LoginForm()
gen = Generator()
return render_template("admin/login.html",
form=form,
html=gen,
**request.args)
@admin.route('/logout', methods=['GET'])
def logout():
session.pop('username', None)
return redirect(url_for('frontend.index'))
@admin.route('/signup', methods=['GET', 'POST'])
def signup():
if request.method == 'POST':
form = SignupForm.from_flat(request.form)
if form.validate():
user = User(request.form['username'],
request.form['password'],
request.form['email'],
request.form['firstname'],
request.form['lastname'])
db.session.add(user)
db.session.commit()
g.user = user
set_user()
return redirect(url_for('frontend.index'))
else:
gen = Generator()
return render_template("admin/signup.html",
form=form,
html=gen)
form = SignupForm()
gen = Generator()
return render_template("admin/signup.html",
form=form,
html=gen)
def check_user():
g.user = User.query.filter_by(
username=session.get('username')).first()
def set_user():
session['username'] = g.user.username
admin.before_app_request(check_user)