Skip to content

Commit

Permalink
feat: APIGW接入 (closed #370)
Browse files Browse the repository at this point in the history
  • Loading branch information
wyyalt committed Aug 20, 2024
1 parent b8415fd commit 90057b8
Show file tree
Hide file tree
Showing 2 changed files with 41 additions and 7 deletions.
38 changes: 38 additions & 0 deletions apps/authentication.py
Original file line number Diff line number Diff line change
@@ -0,0 +1,38 @@
# -*- coding: utf-8 -*-
"""
Tencent is pleased to support the open source community by making 蓝鲸 (Blueking) available.
Copyright (C) 2017-2021 THL A29 Limited, a Tencent company. All rights reserved.
Licensed under the MIT License (the "License"); you may not use this file except in compliance with the License.
You may obtain a copy of the License at https://opensource.org/licenses/MIT
Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on
an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and limitations under the License.
"""
from django.contrib.auth import get_user_model
from common.log import logger
from django.contrib.auth.backends import ModelBackend
from django.contrib.auth.models import AnonymousUser


class ApiGatewayJWTUserModelBackend(ModelBackend):
"""Get users by username"""

def user_maker(self, bk_username):
user_model = get_user_model()
try:
user, _ = user_model.objects.get_or_create(defaults={"nickname": bk_username}, username=bk_username)
except Exception:
logger.exception(f"[{self.__class__.__name__}] Failed to get_or_create user -> {bk_username}.")
return None
else:
return user

def make_anonymous_user(self, bk_username=None):
user = AnonymousUser()
user.username = bk_username # type: ignore
return user

def authenticate(self, request, gateway_name, bk_username, verified, **credentials):
if not verified:
return self.make_anonymous_user(bk_username=bk_username)
return self.user_maker(bk_username)
10 changes: 3 additions & 7 deletions config/default.py
Original file line number Diff line number Diff line change
Expand Up @@ -51,12 +51,11 @@

# 自定义中间件
MIDDLEWARE += (
# "blueapps.account.middlewares.BkJwtLoginRequiredMiddleware",
"apps.middlewares.CommonMid",
"apps.middlewares.UserLocalMiddleware",
"apigw_manager.apigw.authentication.ApiGatewayJWTGenericMiddleware",
"apigw_manager.apigw.authentication.ApiGatewayJWTAppMiddleware",
"apigw_manager.apigw.authentication.ApiGatewayJWTUserMiddleware",
"apps.middlewares.CommonMid",
"apps.middlewares.UserLocalMiddleware",
)

# 添加django_prometheus中间件
Expand All @@ -75,10 +74,7 @@
# ===============================================================================
# Authentication
# ===============================================================================
AUTHENTICATION_BACKENDS += (
# "blueapps.account.backends.BkJwtBackend",
"apigw_manager.apigw.authentication.UserModelBackend",
)
AUTHENTICATION_BACKENDS += ("apps.authentication.ApiGatewayJWTUserModelBackend",)

# 所有环境的日志级别可以在这里配置
# LOG_LEVEL = 'INFO'
Expand Down

0 comments on commit 90057b8

Please sign in to comment.