U
    }®cô=  ã                   @   sx  d dl Z d dlmZ d dlmZmZmZ d dlmZm	Z	 d dl
mZ d dlmZ d dlmZ d dlmZ d d	lmZ d d
lmZ d dlmZ d dlmZ d dlmZ d dlmZmZ eƒ Z dd„ Z!G dd„ dej"ƒZ#G dd„ dej$ƒZ%G dd„ dej&ƒZ'G dd„ dej(ƒZ)G dd„ dej(ƒZ*G dd„ dej+ƒZ,G dd„ dej+ƒZ-G dd „ d ej+ƒZ.G d!d"„ d"e.ƒZ/G d#d$„ d$ej+ƒZ0dS )%é    N)Úforms)ÚauthenticateÚget_user_modelÚpassword_validation)ÚUNUSABLE_PASSWORD_PREFIXÚidentify_hasher)ÚUser)Údefault_token_generator)Úget_current_site)ÚValidationError)ÚEmailMultiAlternatives)Úloader)Úforce_bytes)Úurlsafe_base64_encode)Úcapfirst)ÚgettextÚgettext_lazyc                 C   s    t  d| ¡ ¡ t  d|¡ ¡ kS )z¡
    Perform case-insensitive comparison of two identifiers, using the
    recommended algorithm from Unicode Technical Report 36, section
    2.11.2(B)(2).
    ÚNFKC)ÚunicodedataÚ	normalizeÚcasefold)Ús1Ús2© r   ú=/tmp/pip-unpacked-wheel-7m9rsep5/django/contrib/auth/forms.pyÚ_unicode_ci_compare   s    r   c                       s$   e Zd ZdZdZ‡ fdd„Z‡  ZS )ÚReadOnlyPasswordHashWidgetz)auth/widgets/read_only_password_hash.htmlTc           	         s¢   t ƒ  |||¡}g }|r"| t¡r6| dtdƒi¡ n`zt|ƒ}W n& tk
rh   | dtdƒi¡ Y n.X | |¡ 	¡ D ]\}}| t|ƒ|dœ¡ qx||d< |S )NÚlabelzNo password set.z5Invalid password format or unknown hashing algorithm.)r   ÚvalueÚsummary)
ÚsuperÚget_contextÚ
startswithr   Úappendr   r   Ú
ValueErrorZsafe_summaryÚitems)	ÚselfÚnamer   ÚattrsÚcontextr   ZhasherÚkeyZvalue_©Ú	__class__r   r   r!   %   s    z&ReadOnlyPasswordHashWidget.get_context)Ú__name__Ú
__module__Ú__qualname__Ztemplate_nameZ	read_onlyr!   Ú__classcell__r   r   r+   r   r   !   s   r   c                       s    e Zd ZeZ‡ fdd„Z‡  ZS )ÚReadOnlyPasswordHashFieldc                    s*   |  dd¡ |  dd¡ tƒ j||Ž d S )NÚrequiredFÚdisabledT)Ú
setdefaultr    Ú__init__©r&   ÚargsÚkwargsr+   r   r   r5   9   s    z"ReadOnlyPasswordHashField.__init__)r-   r.   r/   r   Úwidgetr5   r0   r   r   r+   r   r1   6   s   r1   c                       s(   e Zd Z‡ fdd„Z‡ fdd„Z‡  ZS )ÚUsernameFieldc                    s   t  dtƒ  |¡¡S )Nr   )r   r   r    Ú	to_python)r&   r   r+   r   r   r;   @   s    zUsernameField.to_pythonc                    s   t ƒ  |¡dddœ–S )NÚnoneÚusername)ZautocapitalizeÚautocomplete)r    Úwidget_attrs)r&   r9   r+   r   r   r?   C   s    
ýzUsernameField.widget_attrs)r-   r.   r/   r;   r?   r0   r   r   r+   r   r:   ?   s   r:   c                       s¨   e Zd ZdZdedƒiZejedƒdejddid�e	 
¡ d	�Zejed
ƒejddid�dedƒd�ZG dd„ dƒZ‡ fdd„Zdd„ Z‡ fdd„Zd‡ fdd„	Z‡  ZS )ÚUserCreationFormzc
    A form that creates a user, with no privileges, from the given username and
    password.
    Úpassword_mismatchõ'   The two password fields didnâ€™t match.ÚPasswordFr>   únew-password©r(   )r   Ústripr9   Ú	help_textzPassword confirmationú4Enter the same password as before, for verification.©r   r9   rF   rG   c                   @   s   e Zd ZeZdZdeiZdS )zUserCreationForm.Meta)r=   r=   N©r-   r.   r/   r   ÚmodelÚfieldsr:   Zfield_classesr   r   r   r   ÚMeta`   s   rM   c                    s:   t ƒ j||Ž | jjj| jkr6d| j| jjj jjd< d S )NTÚ	autofocus)r    r5   Ú_metarK   ÚUSERNAME_FIELDrL   r9   r(   r6   r+   r   r   r5   e   s    zUserCreationForm.__init__c                 C   s>   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚|S ©NÚ	password1Ú	password2rA   ©Úcode)Úcleaned_dataÚgetr   Úerror_messages©r&   rR   rS   r   r   r   Úclean_password2j   s    þz UserCreationForm.clean_password2c              
      s`   t ƒ  ¡  | j d¡}|r\zt || j¡ W n. tk
rZ } z|  d|¡ W 5 d }~X Y nX d S )NrS   )	r    Ú_post_cleanrV   rW   r   Úvalidate_passwordÚinstancer   Z	add_error)r&   ÚpasswordÚerrorr+   r   r   r[   t   s    
zUserCreationForm._post_cleanTc                    s.   t ƒ jdd�}| | jd ¡ |r*| ¡  |S )NF)ÚcommitrR   )r    ÚsaveÚset_passwordrV   )r&   r`   Úuserr+   r   r   ra      s
    zUserCreationForm.save)T)r-   r.   r/   Ú__doc__Ú_rX   r   Ú	CharFieldÚPasswordInputr   Ú"password_validators_help_text_htmlrR   rS   rM   r5   rZ   r[   ra   r0   r   r   r+   r   r@   K   s*    ÿüü
r@   c                       s>   e Zd Zeedƒedƒd�ZG dd„ dƒZ‡ fdd„Z‡  ZS )ÚUserChangeFormrC   u‘   Raw passwords are not stored, so there is no way to see this userâ€™s password, but you can change the password using <a href="{}">this form</a>.)r   rG   c                   @   s   e Zd ZeZdZdeiZdS )zUserChangeForm.MetaÚ__all__r=   NrJ   r   r   r   r   rM   ‘   s   rM   c                    sN   t ƒ j||Ž | j d¡}|r,|j d¡|_| j d¡}|rJ|j d¡|_d S )Nr^   z../password/Úuser_permissionsÚcontent_type)r    r5   rL   rW   rG   ÚformatZquerysetZselect_related)r&   r7   r8   r^   rk   r+   r   r   r5   –   s    zUserChangeForm.__init__)	r-   r.   r/   r1   re   r^   rM   r5   r0   r   r   r+   r   ri   ‡   s   ÿþ	ri   c                       sŠ   e Zd ZdZeejddid�d�Zeje	dƒdej
dd	id�d
�Ze	dƒe	dƒdœZd‡ fdd„	Zdd„ Zdd„ Zdd„ Zdd„ Z‡  ZS )ÚAuthenticationFormzs
    Base class for authenticating users. Extend this to get a form that accepts
    username/password logins.
    rN   TrE   )r9   rC   Fr>   úcurrent-password©r   rF   r9   z^Please enter a correct %(username)s and password. Note that both fields may be case-sensitive.zThis account is inactive.)Úinvalid_loginÚinactiveNc                    s|   || _ d| _tƒ j||Ž tj tj¡| _| jj	p4d}|| j
d _	|| j
d jjd< | j
d jdkrxt| jjƒ| j
d _dS )z‘
        The 'request' parameter is set for custom auth use by subclasses.
        The form data comes in via the standard 'data' kwarg.
        Néþ   r=   Z	maxlength)ÚrequestÚ
user_cacher    r5   Ú	UserModelrO   Ú	get_fieldrP   Úusername_fieldÚ
max_lengthrL   r9   r(   r   r   Úverbose_name)r&   rt   r7   r8   Zusername_max_lengthr+   r   r   r5   ´   s    zAuthenticationForm.__init__c                 C   s\   | j  d¡}| j  d¡}|d k	rV|rVt| j||d�| _| jd krJ|  ¡ ‚n|  | j¡ | j S )Nr=   r^   )r=   r^   )rV   rW   r   rt   ru   Úget_invalid_login_errorÚconfirm_login_allowed)r&   r=   r^   r   r   r   ÚcleanÅ   s    

zAuthenticationForm.cleanc                 C   s   |j st| jd dd�‚dS )a•  
        Controls whether the given User may log in. This is a policy setting,
        independent of end-user authentication. This default behavior is to
        allow login by active users, and reject login by inactive users.

        If the given user cannot log in, this method should raise a
        ``ValidationError``.

        If the given user may log in, this method should return None.
        rr   rT   N)Ú	is_activer   rX   )r&   rc   r   r   r   r|   Ò   s
    þz(AuthenticationForm.confirm_login_allowedc                 C   s   | j S ©N)ru   ©r&   r   r   r   Úget_userã   s    zAuthenticationForm.get_userc                 C   s   t | jd dd| jjid�S )Nrq   r=   )rU   Úparams)r   rX   rx   rz   r€   r   r   r   r{   æ   s
    
ýz*AuthenticationForm.get_invalid_login_error)N)r-   r.   r/   rd   r:   r   Z	TextInputr=   rf   re   rg   r^   rX   r5   r}   r|   r�   r{   r0   r   r   r+   r   rn       s"   ýÿûrn   c                	   @   sZ   e Zd Zejedƒdejddid�d�Zddd	„Zd
d„ Z	dddde
ddddf	dd„ZdS )ÚPasswordResetFormZEmailrs   r>   ÚemailrE   )r   ry   r9   Nc                 C   sb   t  ||¡}d | ¡ ¡}t  ||¡}t||||gƒ}	|dk	rVt  ||¡}
|	 |
d¡ |	 ¡  dS )zO
        Send a django.core.mail.EmailMultiAlternatives to `to_email`.
        Ú Nz	text/html)r   Zrender_to_stringÚjoinÚ
splitlinesr   Zattach_alternativeÚsend)r&   Úsubject_template_nameÚemail_template_namer)   Ú
from_emailZto_emailÚhtml_email_template_nameÚsubjectÚbodyZemail_messageZ
html_emailr   r   r   Ú	send_mailõ   s    zPasswordResetForm.send_mailc                    s6   t  ¡ ‰t jjf dˆ ˆ ddiŽ}‡ ‡fdd„|D ƒS )a  Given an email, return matching user(s) who should receive a reset.

        This allows subclasses to more easily customize the default policies
        that prevent inactive users and users with unusable passwords from
        resetting their password.
        z
%s__iexactr~   Tc                 3   s*   | ]"}|  ¡ rtˆ t|ˆƒƒr|V  qd S r   )Zhas_usable_passwordr   Úgetattr)Ú.0Úu©r„   Úemail_field_namer   r   Ú	<genexpr>  s   þz.PasswordResetForm.get_users.<locals>.<genexpr>)rv   Úget_email_field_nameZ_default_managerÚfilter)r&   r„   Zactive_usersr   r“   r   Ú	get_users  s      þÿzPasswordResetForm.get_usersz'registration/password_reset_subject.txtz&registration/password_reset_email.htmlFc
              	   C   sœ   | j d }
|s$t|ƒ}|j}|j}n| }}t ¡ }|  |
¡D ]X}t||ƒ}|||tt	|j
ƒƒ|| |¡|rpdnddœ|	p|i –}| j||||||d� q>dS )zf
        Generate a one-use only link for resetting password and send it to the
        user.
        r„   ÚhttpsÚhttp)r„   ÚdomainÚ	site_nameÚuidrc   ÚtokenÚprotocol)rŒ   N)rV   r
   r'   r›   rv   r–   r˜   r�   r   r   ÚpkZ
make_tokenr�   )r&   Zdomain_overrider‰   rŠ   Z	use_httpsZtoken_generatorr‹   rt   rŒ   Zextra_email_contextr„   Zcurrent_siterœ   r›   r”   rc   Z
user_emailr)   r   r   r   ra     s6    



ùø
    þzPasswordResetForm.save)N)r-   r.   r/   r   Z
EmailFieldre   Z
EmailInputr„   r�   r˜   r	   ra   r   r   r   r   rƒ   î   s$   ý ÿ
   ûrƒ   c                       s„   e Zd ZdZdedƒiZejedƒejddid�de	 
¡ d	�Zejed
ƒdejddid�d�Z‡ fdd„Zdd„ Zddd„Z‡  ZS )ÚSetPasswordFormza
    A form that lets a user change set their password without entering the old
    password
    rA   rB   zNew passwordr>   rD   rE   FrI   zNew password confirmationrp   c                    s   || _ tƒ j||Ž d S r   ©rc   r    r5   ©r&   rc   r7   r8   r+   r   r   r5   P  s    zSetPasswordForm.__init__c                 C   sL   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚t || j¡ |S )NÚnew_password1Únew_password2rA   rT   ©rV   rW   r   rX   r   r\   rc   rY   r   r   r   Úclean_new_password2T  s    þz#SetPasswordForm.clean_new_password2Tc                 C   s*   | j d }| j |¡ |r$| j ¡  | jS )Nr¤   ©rV   rc   rb   ra   ©r&   r`   r^   r   r   r   ra   `  s
    

zSetPasswordForm.save)T)r-   r.   r/   rd   re   rX   r   rf   rg   r   rh   r¤   r¥   r5   r§   ra   r0   r   r   r+   r   r¡   <  s$    ÿüýr¡   c                   @   sV   e Zd ZdZejdedƒi–Zejedƒdej	dddœd	�d
�Z
dddgZdd„ ZdS )ÚPasswordChangeFormz[
    A form that lets a user change their password by entering their old
    password.
    Úpassword_incorrectzAYour old password was entered incorrectly. Please enter it again.zOld passwordFro   T©r>   rN   rE   rp   Úold_passwordr¤   r¥   c                 C   s,   | j d }| j |¡s(t| jd dd�‚|S )zB
        Validate that the old_password field is correct.
        r­   r«   rT   )rV   rc   Zcheck_passwordr   rX   )r&   r­   r   r   r   Úclean_old_passwordy  s    
þz%PasswordChangeForm.clean_old_passwordN)r-   r.   r/   rd   r¡   rX   re   r   rf   rg   r­   Zfield_orderr®   r   r   r   r   rª   h  s    þý
rª   c                       s    e Zd ZdZdedƒiZdZejedƒej	dddœd	�d
e
 ¡ d�Zejedƒej	ddid	�d
edƒd�Z‡ fdd„Zdd„ Zddd„Ze‡ fdd„ƒZ‡  ZS )ÚAdminPasswordChangeFormzN
    A form used to change the password of a user in the admin interface.
    rA   rB   r2   rC   rD   Tr¬   rE   FrI   zPassword (again)r>   rH   c                    s   || _ tƒ j||Ž d S r   r¢   r£   r+   r   r   r5   ›  s    z AdminPasswordChangeForm.__init__c                 C   sL   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚t || j¡ |S rQ   r¦   rY   r   r   r   rZ   Ÿ  s    þz'AdminPasswordChangeForm.clean_password2c                 C   s*   | j d }| j |¡ |r$| j ¡  | jS )zSave the new password.rR   r¨   r©   r   r   r   ra   ª  s
    

zAdminPasswordChangeForm.savec                    s*   t ƒ j}| jD ]}||krg   S qdgS )Nr^   )r    Úchanged_datarL   )r&   Údatar'   r+   r   r   r°   ²  s
    

z$AdminPasswordChangeForm.changed_data)T)r-   r.   r/   rd   re   rX   Zrequired_css_classr   rf   rg   r   rh   rR   rS   r5   rZ   ra   Úpropertyr°   r0   r   r   r+   r   r¯   †  s,    ÿüü
r¯   )1r   Zdjangor   Zdjango.contrib.authr   r   r   Zdjango.contrib.auth.hashersr   r   Zdjango.contrib.auth.modelsr   Zdjango.contrib.auth.tokensr	   Zdjango.contrib.sites.shortcutsr
   Zdjango.core.exceptionsr   Zdjango.core.mailr   Zdjango.templater   Zdjango.utils.encodingr   Zdjango.utils.httpr   Zdjango.utils.textr   Zdjango.utils.translationr   r   re   rv   r   ZWidgetr   ZFieldr1   rf   r:   Z	ModelFormr@   ri   ZFormrn   rƒ   r¡   rª   r¯   r   r   r   r   Ú<module>   s2   		<NN,