示例#1
0
文件: user.py 项目: wangjun/todolist
def login(request):
    """
    POST /api/login
    :param request:
    :return:
    """
    form = LoginForm(**request.json)
    if not form.validate():
        raise HTTPBadRequest()

    user = User.query().filter(User.email == form.email.data).first()
    if not user or user.password != utils.hash_password(form.password.data):
        raise HTTPBadRequest()

    remember(request, user.id)
    return user.dict()
示例#2
0
文件: auth.py 项目: wangjun/todolist
def authentication(request):
    user_id = unauthenticated_userid(request)
    user = User.query().get(user_id)
    return user