Create the auth decorator
This commit is contained in:
parent
9d63498def
commit
33741b9d2d
@ -50,6 +50,20 @@ def xhr(func):
|
|||||||
|
|
||||||
return dec
|
return dec
|
||||||
|
|
||||||
|
def auth(func):
|
||||||
|
"""A decorator to check the validity of an auth cookie."""
|
||||||
|
|
||||||
|
def dec(self, env, req, *args, **kwargs):
|
||||||
|
|
||||||
|
if not self.conf.getboolean("auth", "enabled"):
|
||||||
|
return func(self, env, req, *args, **kwargs)
|
||||||
|
try:
|
||||||
|
self.load(req.cookies.get("auth", ""))
|
||||||
|
except (SignatureExpired, BadSignature):
|
||||||
|
raise Forbidden
|
||||||
|
return func(self, env, req, *args, **kwargs)
|
||||||
|
|
||||||
|
return dec
|
||||||
|
|
||||||
class API(object):
|
class API(object):
|
||||||
|
|
||||||
@ -100,6 +114,7 @@ class API(object):
|
|||||||
return obj
|
return obj
|
||||||
|
|
||||||
@xhr
|
@xhr
|
||||||
|
@auth
|
||||||
@requires(str, 'uri')
|
@requires(str, 'uri')
|
||||||
def new(self, environ, request, uri):
|
def new(self, environ, request, uri):
|
||||||
data = request.get_json()
|
data = request.get_json()
|
||||||
|
Loading…
Reference in New Issue
Block a user