sys_dept_data.py 3.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889
  1. #!/usr/bin/env python3
  2. # -*- coding: utf-8 -*-
  3. from . import mpfun
  4. from models import *
  5. from sqlalchemy.orm import Session
  6. from database import get_local_db
  7. # 系统部门表
  8. # 加密和HMAC签名
  9. def sign_row(db: Session, row: SysDept) -> None:
  10. if row.sign != '':
  11. return
  12. dept_id = str(row.dept_id) # 部门id
  13. parent_id = str(row.parent_id) # 父部门id
  14. parent_name = mpfun.base64_data(row.parent_name) # 父部门名称
  15. ancestors = mpfun.base64_data(row.ancestors) # 祖级列表
  16. dept_name = mpfun.base64_data(row.dept_name) # 部门名称
  17. dept_category = mpfun.base64_data(row.dept_category) # 部门类别编码
  18. order_num = str(row.order_num) # 显示顺序
  19. leader_name = mpfun.base64_data(row.leader_name) # 负责人姓名
  20. leader = str(row.leader) # 负责人
  21. phone = mpfun.enc_data(row.phone) # 联系电话
  22. email = mpfun.enc_data(row.email) # 邮箱
  23. status = str(row.status) # 部门状态
  24. del_flag = row.del_flag # 是否已删除
  25. sign_data = ",".join([dept_id, parent_id, parent_name, ancestors, dept_name, dept_category, order_num, leader_name, leader, phone, email, status, del_flag])
  26. sign_hmac = mpfun.sign_data(sign_data)
  27. # print('sign_tbl_user sign_data:', sign_data)
  28. # print('sign_tbl_user sign_hmac:', sign_hmac)
  29. row.phone = phone
  30. row.email = email
  31. row.sign = sign_hmac
  32. db.commit()
  33. # 比较字段合并字符串是否和MAC值匹配上,调用密码服务器[验证HMAC]接口
  34. def sign_valid_row(row: SysDept) -> bool:
  35. return True
  36. if row.sign == '':
  37. return True
  38. # 关键字段合并字符串
  39. sign_data = get_sign_str(row)
  40. # print('sys_user sign_data:', sign_data)
  41. # 原HMACSM3数值
  42. sign_hmac = row.sign
  43. # print('sign_hmac:', sign_hmac)
  44. return mpfun.hmac_verify(sign_data, sign_hmac)
  45. # 生成待签名的字符串
  46. def get_sign_str(row: SysDept) -> str:
  47. dept_id = str(row.dept_id) # 部门id
  48. parent_id = str(row.parent_id) # 父部门id
  49. parent_name = mpfun.base64_data(row.parent_name) # 父部门名称
  50. ancestors = mpfun.base64_data(row.ancestors) # 祖级列表
  51. dept_name = mpfun.base64_data(row.dept_name) # 部门名称
  52. dept_category = mpfun.base64_data(row.dept_category) # 部门类别编码
  53. order_num = str(row.order_num) # 显示顺序
  54. leader_name = mpfun.base64_data(row.leader_name) # 负责人姓名
  55. leader = str(row.leader) # 负责人
  56. phone = mpfun.enc_data(row.phone) # 联系电话
  57. email = mpfun.enc_data(row.email) # 邮箱
  58. status = str(row.status) # 部门状态
  59. del_flag = row.del_flag # 是否已删除
  60. # 关键字段合并字符串
  61. sign_data = ",".join([dept_id, parent_id, parent_name, ancestors, dept_name, dept_category, order_num, leader_name, leader, phone, email, status, del_flag])
  62. return sign_data
  63. # 生成HAMC签名值
  64. def get_sign_hmac(row: SysDept) -> str:
  65. sign_data = get_sign_str(row)
  66. return mpfun.sign_data(sign_data)
  67. # 对所有数据进行签名
  68. def sign_table():
  69. print('sign_sys_dept table =====>>>')
  70. with get_local_db() as db:
  71. rows = db.query(SysDept).filter(SysDept.sign == '').all()
  72. for row in rows:
  73. sign_row(db, row)