WMGZON/controllers/web/endpoints.py

81 lines
2.4 KiB
Python
Raw Normal View History

from . import blueprint
from flask import render_template, redirect, request, session, flash
from controllers.database.user import UserController
from models.users.customer import Customer
from hashlib import sha512
2023-12-31 19:03:29 +00:00
# Function responsible for displaying the main landing page of the site
@blueprint.route('/')
def welcome_page():
2024-01-02 22:22:14 +00:00
return render_template('index.html', content="content.html", user = session.get('user'))
2023-12-31 19:03:29 +00:00
### LOGIN FUNCTIONALITY
# Function responsible for delivering the Login page for the site
@blueprint.route('/login')
def display_login():
return render_template('index.html', content="login.html", user = session.get('user'))
2023-12-31 19:03:29 +00:00
# Function responsible for handling logins to the site
@blueprint.post('/login')
def login():
2024-01-02 22:22:14 +00:00
database = UserController()
user = database.read(request.form['username'])
2024-01-05 13:56:46 +00:00
error = None
2024-01-02 22:22:14 +00:00
# No user found
if user == None:
2024-01-05 13:56:46 +00:00
error = "No user found with the username " + request.form['username']
flash(error)
return redirect("/login")
2024-01-02 22:22:14 +00:00
# Incorrect Password
if sha512(request.form['password'].encode()).hexdigest() != user.password:
2024-01-05 13:56:46 +00:00
error = "Incorrect Password"
flash(error)
return redirect("/login")
2024-01-02 22:22:14 +00:00
session['user'] = user.username
2023-12-31 19:03:29 +00:00
return redirect("/")
### SIGNUP FUNCTIONALITY
# Function responsible for delivering the Signup page for the site
@blueprint.route('/signup')
def display_signup():
return render_template('index.html', content="signup.html", user = session.get('user'))
2023-12-31 19:03:29 +00:00
# Function responsible for handling signups to the site
@blueprint.post('/signup')
def signup():
database = UserController()
# User already exists
if database.read(request.form['username']) != None:
error = "User, " + request.form['username'] + " already exists"
flash(error)
return redirect("/signup")
database.create(Customer(
0,
request.form['username'],
2024-01-02 22:22:14 +00:00
sha512(request.form['password'].encode()).hexdigest(), # Hashed as soon as it is recieved on the backend
request.form['firstname'],
request.form['lastname'],
2024-01-02 22:22:14 +00:00
request.form['email'],
"123",
"Customer"
))
2024-01-02 22:22:14 +00:00
# Code 307 Preserves the original request (POST)
return redirect("/login", code=307)
### SIGN OUT FUNCTIONALITY
2024-01-02 22:22:14 +00:00
# Function responsible for handling logouts from the site
@blueprint.route('/logout')
def logout():
session.pop('user')
return redirect("/")