activation.py 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107
  1. from django.contrib import messages
  2. from django.contrib.auth import get_user_model
  3. from django.http import Http404
  4. from django.shortcuts import get_object_or_404, redirect, render
  5. from django.utils.translation import ugettext as _
  6. from misago.conf import settings
  7. from misago.core.mail import mail_user
  8. from misago.users.decorators import deny_authenticated, deny_banned_ips
  9. from misago.users.forms.auth import ResendActivationForm
  10. from misago.users.models import ACTIVATION_REQUIRED_NONE
  11. from misago.users.tokens import (make_activation_token,
  12. is_activation_token_valid)
  13. @deny_authenticated
  14. @deny_banned_ips
  15. def request_activation(request):
  16. form = ResendActivationForm()
  17. if request.method == 'POST':
  18. form = ResendActivationForm(request.POST)
  19. if form.is_valid():
  20. requesting_user = form.user_cache
  21. request.session['activation_sent_to'] = requesting_user.pk
  22. activation_token = make_activation_token(requesting_user)
  23. activation_by_admin = requesting_user.requires_activation_by_admin
  24. activation_by_user = requesting_user.requires_activation_by_user
  25. mail_subject = _("Account activation on %(forum_title)s forums")
  26. mail_subject = mail_subject % {'forum_title': settings.forum_name}
  27. mail_user(
  28. request, requesting_user, mail_subject,
  29. 'misago/emails/activation/by_user',
  30. {
  31. 'activation_token': activation_token,
  32. })
  33. return redirect('misago:activation_sent')
  34. return render(request, 'misago/activation/request.html',
  35. {'form': form})
  36. @deny_authenticated
  37. @deny_banned_ips
  38. def activation_sent(request):
  39. requesting_user_pk = request.session.get('activation_sent_to')
  40. if not requesting_user_pk:
  41. raise Http404()
  42. User = get_user_model()
  43. requesting_user = get_object_or_404(User.objects, pk=requesting_user_pk)
  44. return render(request, 'misago/activation/sent.html',
  45. {'requesting_user': requesting_user})
  46. class ActivationStopped(Exception):
  47. pass
  48. class ActivationError(Exception):
  49. pass
  50. @deny_authenticated
  51. @deny_banned_ips
  52. def activate_by_token(request, user_id, token):
  53. User = get_user_model()
  54. inactive_user = get_object_or_404(User.objects, pk=user_id)
  55. try:
  56. if not inactive_user.requires_activation:
  57. message = _("%(username)s, your account is already active.")
  58. message = message % {'username': inactive_user.username}
  59. raise ActivationStopped(message)
  60. if inactive_user.requires_activation_by_admin:
  61. message = _("%(username)s, your account can be activated "
  62. "only by one ofthe administrators.")
  63. message = message % {'username': inactive_user.username}
  64. raise ActivationStopped(message)
  65. if not is_activation_token_valid(inactive_user, token):
  66. message = _("%(username)s, your activation link is invalid. "
  67. "Try again or request new activation message.")
  68. message = message % {'username': inactive_user.username}
  69. raise ActivationError(message)
  70. except ActivationStopped as e:
  71. messages.info(request, e.args[0])
  72. return redirect('misago:index')
  73. except ActivationError as e:
  74. messages.error(request, e.args[0])
  75. return redirect('misago:index')
  76. inactive_user.requires_activation = ACTIVATION_REQUIRED_NONE
  77. inactive_user.save(update_fields=['requires_activation'])
  78. message = _("%(username)s, your account has been activated!")
  79. message = message % {'username': inactive_user.username}
  80. messages.success(request, message)
  81. return redirect(settings.LOGIN_URL)