sys_czrz_data.py 2.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475
  1. #!/usr/bin/env python3
  2. # -*- coding: utf-8 -*-
  3. from . import mpfun
  4. from models import *
  5. from utils import *
  6. from sqlalchemy.orm import Session
  7. from database import get_local_db
  8. # 操作日志表
  9. # 加密和HMAC签名
  10. def sign_row(db: Session, row: CzrzEntity) -> None:
  11. if row.sign != '':
  12. return
  13. user_id = str(row.user_id) # 用户ID
  14. user_name = mpfun.enc_data(row.user_name) # 用户账号
  15. nick_name = mpfun.base64_data(row.nick_name) # 用户昵称
  16. czrz = mpfun.base64_data(row.czrz) # 操作日志
  17. gxsj = get_datetime_str(row.gxsj) # 更新时间
  18. ip = str(row.ip) # IP地址
  19. action = mpfun.base64_data(row.action) # 动作
  20. sign_data = ",".join([user_id, user_name, nick_name, czrz, gxsj, ip, action])
  21. sign_hmac = mpfun.sign_data(sign_data)
  22. # print('sign_tbl_czrz sign_data:', sign_data)
  23. # print('sign_tbl_czrz sign_hmac:', sign_hmac)
  24. row.user_name = user_name
  25. row.sign = sign_hmac
  26. db.commit()
  27. # 比较字段合并字符串是否和MAC值匹配上,调用密码服务器[验证HMAC]接口
  28. def sign_valid_row(row: CzrzEntity) -> bool:
  29. if row.sign == '':
  30. return True
  31. # 关键字段合并字符串
  32. sign_data = get_sign_str(row)
  33. # print('sys_user sign_data:', sign_data)
  34. # 原HMACSM3数值
  35. sign_hmac = row.sign
  36. # print('sign_hmac:', sign_hmac)
  37. return mpfun.hmac_verify(sign_data, sign_hmac)
  38. # 生成待签名的字符串
  39. def get_sign_str(row: CzrzEntity) -> str:
  40. user_id = str(row.user_id) # 用户ID
  41. user_name = row.user_name # 用户账号
  42. nick_name = mpfun.base64_data(row.nick_name) # 用户昵称
  43. czrz = mpfun.base64_data(row.czrz) # 操作日志
  44. gxsj = get_datetime_str(row.gxsj) # 更新时间
  45. ip = str(row.ip) # IP地址
  46. action = mpfun.base64_data(row.action) # 动作
  47. # 关键字段合并字符串
  48. sign_data = ",".join([user_id, user_name, nick_name, czrz, gxsj, ip, action])
  49. return sign_data
  50. # 生成HAMC签名值
  51. def get_sign_hmac(row: CzrzEntity) -> str:
  52. sign_data = get_sign_str(row)
  53. return mpfun.sign_data(sign_data)
  54. # 对所有数据进行签名
  55. def sign_table():
  56. print('sign_tp_czrztp_czrz table =====>>>')
  57. with get_local_db() as db:
  58. rows = db.query(CzrzEntity).filter(CzrzEntity.sign == '').all()
  59. for row in rows:
  60. sign_row(db, row)