mirror of
https://github.com/infiniflow/ragflow.git
synced 2025-12-08 20:42:30 +08:00
### What problem does this PR solve? ### Type of change - [x] Bug Fix (non-breaking change which fixes an issue) --------- Signed-off-by: dependabot[bot] <support@github.com> Signed-off-by: jinhai <haijin.chn@gmail.com> Signed-off-by: Jin Hai <haijin.chn@gmail.com> Co-authored-by: Lynn <lynn_inf@hotmail.com> Co-authored-by: chanx <1243304602@qq.com> Co-authored-by: balibabu <cike8899@users.noreply.github.com> Co-authored-by: 纷繁下的无奈 <zhileihuang@126.com> Co-authored-by: huangzl <huangzl@shinemo.com> Co-authored-by: writinwaters <93570324+writinwaters@users.noreply.github.com> Co-authored-by: Wilmer <33392318@qq.com> Co-authored-by: Adrian Weidig <adrianweidig@gmx.net> Co-authored-by: Zhichang Yu <yuzhichang@gmail.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Co-authored-by: Yongteng Lei <yongtengrey@outlook.com> Co-authored-by: Liu An <asiro@qq.com> Co-authored-by: buua436 <66937541+buua436@users.noreply.github.com> Co-authored-by: BadwomanCraZY <511528396@qq.com> Co-authored-by: cucusenok <31804608+cucusenok@users.noreply.github.com> Co-authored-by: Russell Valentine <russ@coldstonelabs.org> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Billy Bao <newyorkupperbay@gmail.com> Co-authored-by: Zhedong Cen <cenzhedong2@126.com> Co-authored-by: TensorNull <129579691+TensorNull@users.noreply.github.com> Co-authored-by: TensorNull <tensor.null@gmail.com> Co-authored-by: Ajay <160579663+aybanda@users.noreply.github.com> Co-authored-by: AB <aj@Ajays-MacBook-Air.local> Co-authored-by: 天海蒼灆 <huangaoqin@tecpie.com> Co-authored-by: He Wang <wanghechn@qq.com> Co-authored-by: Atsushi Hatakeyama <atu729@icloud.com> Co-authored-by: Jin Hai <haijin.chn@gmail.com> Co-authored-by: Mohamed Mathari <155896313+melmathari@users.noreply.github.com> Co-authored-by: Mohamed Mathari <nocodeventure@Mac-mini-van-Mohamed.fritz.box> Co-authored-by: Stephen Hu <stephenhu@seismic.com> Co-authored-by: Shaun Zhang <zhangwfjh@users.noreply.github.com> Co-authored-by: zhimeng123 <60221886+zhimeng123@users.noreply.github.com> Co-authored-by: mxc <mxc@example.com> Co-authored-by: Dominik Novotný <50611433+SgtMarmite@users.noreply.github.com> Co-authored-by: EVGENY M <168018528+rjohny55@users.noreply.github.com> Co-authored-by: mcoder6425 <mcoder64@gmail.com> Co-authored-by: TeslaZY <TeslaZY@outlook.com> Co-authored-by: lemsn <lemsn@msn.com> Co-authored-by: lemsn <lemsn@126.com> Co-authored-by: Adrian Gora <47756404+adagora@users.noreply.github.com> Co-authored-by: Womsxd <45663319+Womsxd@users.noreply.github.com> Co-authored-by: FatMii <39074672+FatMii@users.noreply.github.com>
58 lines
1.6 KiB
Python
58 lines
1.6 KiB
Python
import logging
|
|
import uuid
|
|
from functools import wraps
|
|
from flask import request, jsonify
|
|
|
|
from exceptions import AdminException
|
|
from api.db.init_data import encode_to_base64
|
|
from api.db.services import UserService
|
|
|
|
|
|
def check_admin(username: str, password: str):
|
|
users = UserService.query(email=username)
|
|
if not users:
|
|
logging.info(f"Username: {username} is not registered!")
|
|
user_info = {
|
|
"id": uuid.uuid1().hex,
|
|
"password": encode_to_base64("admin"),
|
|
"nickname": "admin",
|
|
"is_superuser": True,
|
|
"email": "admin@ragflow.io",
|
|
"creator": "system",
|
|
"status": "1",
|
|
}
|
|
if not UserService.save(**user_info):
|
|
raise AdminException("Can't init admin.", 500)
|
|
|
|
user = UserService.query_user(username, password)
|
|
if user:
|
|
return True
|
|
else:
|
|
return False
|
|
|
|
|
|
def login_verify(f):
|
|
@wraps(f)
|
|
def decorated(*args, **kwargs):
|
|
auth = request.authorization
|
|
if not auth or 'username' not in auth.parameters or 'password' not in auth.parameters:
|
|
return jsonify({
|
|
"code": 401,
|
|
"message": "Authentication required",
|
|
"data": None
|
|
}), 200
|
|
|
|
username = auth.parameters['username']
|
|
password = auth.parameters['password']
|
|
# TODO: to check the username and password from DB
|
|
if check_admin(username, password) is False:
|
|
return jsonify({
|
|
"code": 403,
|
|
"message": "Access denied",
|
|
"data": None
|
|
}), 200
|
|
|
|
return f(*args, **kwargs)
|
|
|
|
return decorated
|