U
    M+|j¼E  ã                   @   s¢  d dl Z d dlZd dlmZ d dlmZmZmZ d dlm	Z	m
Z
 d dlmZ d dlmZ d dlmZ d dlmZ d d	lmZ d d
lmZ d dlmZ d dlmZ d dlmZ d dlmZ d dlmZ  eƒ Z!e  "d¡Z#dd„ Z$G dd„ dej%ƒZ&G dd„ dej'ƒZ(G dd„ dej)ƒZ*G dd„ dej+ƒZ,G dd„ de,ƒZ-G dd„ dej+ƒZ.G dd „ d ej/ƒZ0G d!d"„ d"ej/ƒZ1G d#d$„ d$ej/ƒZ2G d%d&„ d&e2ƒZ3G d'd(„ d(ej/ƒZ4dS ))é    N)Úforms)ÚauthenticateÚget_user_modelÚpassword_validation)ÚUNUSABLE_PASSWORD_PREFIXÚidentify_hasher)ÚUser)Údefault_token_generator)Úget_current_site)ÚValidationError)ÚEmailMultiAlternatives)Úloader)Úforce_bytes)Úurlsafe_base64_encode)Úcapfirst)Úgettext)Úgettext_lazyzdjango.contrib.authc                 C   s    t  d| ¡ ¡ t  d|¡ ¡ kS )z¡
    Perform case-insensitive comparison of two identifiers, using the
    recommended algorithm from Unicode Technical Report 36, section
    2.11.2(B)(2).
    ÚNFKC)ÚunicodedataÚ	normalizeÚcasefold)Ús1Ús2© r   úac:\users\snmko\desktop\web_content\django_cbt\venv\Lib\site-packages\django/contrib/auth/forms.pyÚ_unicode_ci_compare   s    ÿÿr   c                       s,   e Zd ZdZdZ‡ fdd„Zdd„ Z‡  ZS )ÚReadOnlyPasswordHashWidgetz)auth/widgets/read_only_password_hash.htmlTc           	         s¢   t ƒ  |||¡}g }|r"| t¡r6| dtdƒi¡ n`zt|ƒ}W n& tk
rh   | dtdƒi¡ Y n.X | |¡ 	¡ D ]\}}| t|ƒ|dœ¡ qx||d< |S )NÚlabelzNo password set.z5Invalid password format or unknown hashing algorithm.)r   ÚvalueÚsummary)
ÚsuperÚget_contextÚ
startswithr   Úappendr   r   Ú
ValueErrorZsafe_summaryÚitems)	ÚselfÚnamer   ÚattrsÚcontextr   ZhasherÚkeyZvalue_©Ú	__class__r   r   r!   '   s$     ÿÿÿ
z&ReadOnlyPasswordHashWidget.get_contextc                 C   s   d S ©Nr   )r&   Zid_r   r   r   Úid_for_label=   s    z'ReadOnlyPasswordHashWidget.id_for_label)Ú__name__Ú
__module__Ú__qualname__Ztemplate_nameZ	read_onlyr!   r.   Ú__classcell__r   r   r+   r   r   #   s   r   c                       s    e Zd ZeZ‡ fdd„Z‡  ZS )ÚReadOnlyPasswordHashFieldc                    s*   |  dd¡ |  dd¡ tƒ j||Ž d S )NÚrequiredFÚdisabledT)Ú
setdefaultr    Ú__init__©r&   ÚargsÚkwargsr+   r   r   r7   D   s    z"ReadOnlyPasswordHashField.__init__)r/   r0   r1   r   Úwidgetr7   r2   r   r   r+   r   r3   A   s   r3   c                       s(   e Zd Z‡ fdd„Z‡ fdd„Z‡  ZS )ÚUsernameFieldc                    s4   t ƒ  |¡}| jd k	r(t|ƒ| jkr(|S t d|¡S )Nr   )r    Ú	to_pythonÚ
max_lengthÚlenr   r   )r&   r   r+   r   r   r=   K   s    zUsernameField.to_pythonc                    s   t ƒ  |¡dddœ–S )NÚnoneÚusername)ZautocapitalizeÚautocomplete)r    Úwidget_attrs)r&   r;   r+   r   r   rC   V   s    
ýzUsernameField.widget_attrs)r/   r0   r1   r=   rC   r2   r   r   r+   r   r<   J   s   r<   c                       s¨   e Zd ZdZdedƒiZejedƒdejddid�e	 
¡ d	�Zejed
ƒejddid�dedƒd�ZG dd„ dƒZ‡ fdd„Zdd„ Z‡ fdd„Zd‡ fdd„	Z‡  ZS )ÚBaseUserCreationFormzc
    A form that creates a user, with no privileges, from the given username and
    password.
    Úpassword_mismatchõ'   The two password fields didnâ€™t match.ÚPasswordFrB   únew-password©r(   )r   Ústripr;   Ú	help_textzPassword confirmationú4Enter the same password as before, for verification.©r   r;   rJ   rK   c                   @   s   e Zd ZeZdZdeiZdS )zBaseUserCreationForm.Meta)rA   rA   N©r/   r0   r1   r   ÚmodelÚfieldsr<   Zfield_classesr   r   r   r   ÚMetat   s   rQ   c                    s:   t ƒ j||Ž | jjj| jkr6d| j| jjj jjd< d S )NTÚ	autofocus)r    r7   Ú_metarO   ÚUSERNAME_FIELDrP   r;   r(   r8   r+   r   r   r7   y   s    þÿzBaseUserCreationForm.__init__c                 C   s>   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚|S ©NÚ	password1Ú	password2rE   ©Úcode)Úcleaned_dataÚgetr   Úerror_messages©r&   rV   rW   r   r   r   Úclean_password2€   s    þz$BaseUserCreationForm.clean_password2c              
      s`   t ƒ  ¡  | j d¡}|r\zt || j¡ W n. tk
rZ } z|  d|¡ W 5 d }~X Y nX d S )NrW   )	r    Ú_post_cleanrZ   r[   r   Úvalidate_passwordÚinstancer   Z	add_error)r&   ÚpasswordÚerrorr+   r   r   r_   Š   s    
z BaseUserCreationForm._post_cleanTc                    s@   t ƒ jdd�}| | jd ¡ |r<| ¡  t| dƒr<|  ¡  |S )NF)ÚcommitrV   Úsave_m2m)r    ÚsaveÚset_passwordrZ   Úhasattrre   )r&   rd   Úuserr+   r   r   rf   •   s    
zBaseUserCreationForm.save)T)r/   r0   r1   Ú__doc__Ú_r\   r   Ú	CharFieldÚPasswordInputr   Ú"password_validators_help_text_htmlrV   rW   rQ   r7   r^   r_   rf   r2   r   r   r+   r   rD   ^   s*    ÿüü
rD   c                   @   s   e Zd Zdd„ ZdS )ÚUserCreationFormc                 C   sR   | j  d¡}|rJ| jjjj|d� ¡ rJ|  td| j	 
| jjdg¡iƒ¡ n|S dS )z*Reject usernames that differ only in case.rA   )Zusername__iexactN)rZ   r[   rS   rO   ZobjectsÚfilterÚexistsZ_update_errorsr   ra   Zunique_error_message)r&   rA   r   r   r   Úclean_username    s     ÿþ  ÿÿÿÿ
zUserCreationForm.clean_usernameN)r/   r0   r1   rr   r   r   r   r   ro   Ÿ   s   ro   c                       s>   e Zd Zeedƒedƒd�ZG dd„ dƒZ‡ fdd„Z‡  ZS )ÚUserChangeFormrG   u‘   Raw passwords are not stored, so there is no way to see this userâ€™s password, but you can change the password using <a href="{}">this form</a>.)r   rK   c                   @   s   e Zd ZeZdZdeiZdS )zUserChangeForm.MetaÚ__all__rA   NrN   r   r   r   r   rQ   ¾   s   rQ   c                    sZ   t ƒ j||Ž | j d¡}|r8|j d| jj› d�¡|_| j d¡}|rV|j 	d¡|_d S )Nrb   z../../z
/password/Úuser_permissionsÚcontent_type)
r    r7   rP   r[   rK   Úformatra   ÚpkZquerysetZselect_related)r&   r9   r:   rb   ru   r+   r   r   r7   Ã   s    ÿÿzUserChangeForm.__init__)	r/   r0   r1   r3   rk   rb   rQ   r7   r2   r   r   r+   r   rs   ´   s   ÿþ	rs   c                       sŠ   e Zd ZdZeejddid�d�Zeje	dƒdej
dd	id�d
�Ze	dƒe	dƒdœZd‡ fdd„	Zdd„ Zdd„ Zdd„ Zdd„ Z‡  ZS )ÚAuthenticationFormzs
    Base class for authenticating users. Extend this to get a form that accepts
    username/password logins.
    rR   TrI   )r;   rG   FrB   úcurrent-password©r   rJ   r;   z^Please enter a correct %(username)s and password. Note that both fields may be case-sensitive.zThis account is inactive.)Úinvalid_loginÚinactiveNc                    s|   || _ d| _tƒ j||Ž tj tj¡| _| jj	p4d}|| j
d _	|| j
d jjd< | j
d jdkrxt| jjƒ| j
d _dS )z‘
        The 'request' parameter is set for custom auth use by subclasses.
        The form data comes in via the standard 'data' kwarg.
        Néþ   rA   Z	maxlength)ÚrequestÚ
user_cacher    r7   Ú	UserModelrS   Ú	get_fieldrT   Úusername_fieldr>   rP   r;   r(   r   r   Úverbose_name)r&   r   r9   r:   Zusername_max_lengthr+   r   r   r7   æ   s    zAuthenticationForm.__init__c                 C   s\   | j  d¡}| j  d¡}|d k	rV|rVt| j||d�| _| jd krJ|  ¡ ‚n|  | j¡ | j S )NrA   rb   )rA   rb   )rZ   r[   r   r   r€   Úget_invalid_login_errorÚconfirm_login_allowed)r&   rA   rb   r   r   r   Úclean÷   s      ÿ

zAuthenticationForm.cleanc                 C   s   |j st| jd dd�‚dS )a•  
        Controls whether the given User may log in. This is a policy setting,
        independent of end-user authentication. This default behavior is to
        allow login by active users, and reject login by inactive users.

        If the given user cannot log in, this method should raise a
        ``ValidationError``.

        If the given user may log in, this method should return None.
        r}   rX   N)Ú	is_activer   r\   )r&   ri   r   r   r   r†     s
    þz(AuthenticationForm.confirm_login_allowedc                 C   s   | j S r-   )r€   ©r&   r   r   r   Úget_user  s    zAuthenticationForm.get_userc                 C   s   t | jd dd| jjid�S )Nr|   rA   )rY   Úparams)r   r\   rƒ   r„   r‰   r   r   r   r…     s
    
ýz*AuthenticationForm.get_invalid_login_error)N)r/   r0   r1   rj   r<   r   Z	TextInputrA   rl   rk   rm   rb   r\   r7   r‡   r†   rŠ   r…   r2   r   r   r+   r   ry   Ñ   s"   ýÿûry   c                	   @   sZ   e Zd Zejedƒdejddid�d�Zddd	„Zd
d„ Z	dddde
ddddf	dd„ZdS )ÚPasswordResetFormZEmailr~   rB   ÚemailrI   )r   r>   r;   Nc                 C   sŽ   t  ||¡}d | ¡ ¡}t  ||¡}t||||gƒ}	|dk	rVt  ||¡}
|	 |
d¡ z|	 ¡  W n& tk
rˆ   t 	d|d j
¡ Y nX dS )zO
        Send a django.core.mail.EmailMultiAlternatives to `to_email`.
        Ú Nz	text/htmlz)Failed to send password reset email to %sri   )r   Zrender_to_stringÚjoinÚ
splitlinesr   Zattach_alternativeÚsendÚ	ExceptionÚloggerÚ	exceptionrx   )r&   Úsubject_template_nameÚemail_template_namer)   Ú
from_emailZto_emailÚhtml_email_template_nameÚsubjectÚbodyZemail_messageZ
html_emailr   r   r   Ú	send_mail)  s     ÿzPasswordResetForm.send_mailc                    s6   t  ¡ ‰t jjf dˆ ˆ ddiŽ}‡ ‡fdd„|D ƒS )a  Given an email, return matching user(s) who should receive a reset.

        This allows subclasses to more easily customize the default policies
        that prevent inactive users and users with unusable passwords from
        resetting their password.
        z
%s__iexactrˆ   Tc                 3   s*   | ]"}|  ¡ rtˆ t|ˆƒƒr|V  qd S r-   )Zhas_usable_passwordr   Úgetattr)Ú.0Úu©r�   Úemail_field_namer   r   Ú	<genexpr>T  s   ýz.PasswordResetForm.get_users.<locals>.<genexpr>)r�   Úget_email_field_nameZ_default_managerrp   )r&   r�   Zactive_usersr   rŸ   r   Ú	get_usersF  s      þÿþzPasswordResetForm.get_usersz'registration/password_reset_subject.txtz&registration/password_reset_email.htmlFc
              	   C   sœ   | j d }
|s$t|ƒ}|j}|j}n| }}t ¡ }|  |
¡D ]X}t||ƒ}|||tt	|j
ƒƒ|| |¡|rpdnddœ|	p|i –}| j||||||d� q>dS )zf
        Generate a one-use only link for resetting password and send it to the
        user.
        r�   ÚhttpsÚhttp)r�   ÚdomainÚ	site_nameÚuidri   ÚtokenÚprotocol)r˜   N)rZ   r
   r'   r¦   r�   r¢   r£   rœ   r   r   rx   Z
make_tokenr›   )r&   Zdomain_overrider•   r–   Z	use_httpsZtoken_generatorr—   r   r˜   Zextra_email_contextr�   Zcurrent_siter§   r¦   r    ri   Z
user_emailr)   r   r   r   rf   [  s6    


ùø
úzPasswordResetForm.save)N)r/   r0   r1   r   Z
EmailFieldrk   Z
EmailInputr�   r›   r£   r	   rf   r   r   r   r   rŒ   "  s$   ý ù
örŒ   c                       s„   e Zd ZdZdedƒiZejedƒejddid�de	 
¡ d	�Zejed
ƒdejddid�d�Z‡ fdd„Zdd„ Zddd„Z‡  ZS )ÚSetPasswordFormzZ
    A form that lets a user set their password without entering the old
    password
    rE   rF   zNew passwordrB   rH   rI   FrM   zNew password confirmationr{   c                    s   || _ tƒ j||Ž d S r-   ©ri   r    r7   ©r&   ri   r9   r:   r+   r   r   r7   ž  s    zSetPasswordForm.__init__c                 C   sL   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚t || j¡ |S )NÚnew_password1Únew_password2rE   rX   ©rZ   r[   r   r\   r   r`   ri   r]   r   r   r   Úclean_new_password2¢  s    þz#SetPasswordForm.clean_new_password2Tc                 C   s*   | j d }| j |¡ |r$| j ¡  | jS )Nr®   ©rZ   ri   rg   rf   ©r&   rd   rb   r   r   r   rf   ­  s
    

zSetPasswordForm.save)T)r/   r0   r1   rj   rk   r\   r   rl   rm   r   rn   r®   r¯   r7   r±   rf   r2   r   r   r+   r   r«   ‰  s$    ÿüýr«   c                   @   sV   e Zd ZdZejdedƒi–Zejedƒdej	dddœd	�d
�Z
dddgZdd„ ZdS )ÚPasswordChangeFormz[
    A form that lets a user change their password by entering their old
    password.
    Úpassword_incorrectzAYour old password was entered incorrectly. Please enter it again.zOld passwordFrz   T©rB   rR   rI   r{   Úold_passwordr®   r¯   c                 C   s,   | j d }| j |¡s(t| jd dd�‚|S )zB
        Validate that the old_password field is correct.
        r·   rµ   rX   )rZ   ri   Zcheck_passwordr   r\   )r&   r·   r   r   r   Úclean_old_passwordË  s    
þz%PasswordChangeForm.clean_old_passwordN)r/   r0   r1   rj   r«   r\   rk   r   rl   rm   r·   Zfield_orderr¸   r   r   r   r   r´   µ  s     ÿþÿý
r´   c                       s    e Zd ZdZdedƒiZdZejedƒej	dddœd	�d
e
 ¡ d�Zejedƒej	ddid	�d
edƒd�Z‡ fdd„Zdd„ Zddd„Ze‡ fdd„ƒZ‡  ZS )ÚAdminPasswordChangeFormzN
    A form used to change the password of a user in the admin interface.
    rE   rF   r4   rG   rH   Tr¶   rI   FrM   zPassword (again)rB   rL   c                    s   || _ tƒ j||Ž d S r-   r¬   r­   r+   r   r   r7   ð  s    z AdminPasswordChangeForm.__init__c                 C   sL   | j  d¡}| j  d¡}|r:|r:||kr:t| jd dd�‚t || j¡ |S rU   r°   r]   r   r   r   r^   ô  s    þz'AdminPasswordChangeForm.clean_password2c                 C   s*   | j d }| j |¡ |r$| j ¡  | jS )zSave the new password.rV   r²   r³   r   r   r   rf   ÿ  s
    

zAdminPasswordChangeForm.savec                    s*   t ƒ j}| jD ]}||krg   S qdgS )Nrb   )r    Úchanged_datarP   )r&   Údatar'   r+   r   r   rº     s
    

z$AdminPasswordChangeForm.changed_data)T)r/   r0   r1   rj   rk   r\   Zrequired_css_classr   rl   rm   r   rn   rV   rW   r7   r^   rf   Úpropertyrº   r2   r   r   r+   r   r¹   Ø  s0    ÿÿúü
r¹   )5Úloggingr   Zdjangor   Zdjango.contrib.authr   r   r   Zdjango.contrib.auth.hashersr   r   Zdjango.contrib.auth.modelsr   Zdjango.contrib.auth.tokensr	   Zdjango.contrib.sites.shortcutsr
   Zdjango.core.exceptionsr   Zdjango.core.mailr   Zdjango.templater   Zdjango.utils.encodingr   Zdjango.utils.httpr   Zdjango.utils.textr   Zdjango.utils.translationr   r   rk   r�   Ú	getLoggerr“   r   ZWidgetr   ZFieldr3   rl   r<   Z	ModelFormrD   ro   rs   ZFormry   rŒ   r«   r´   r¹   r   r   r   r   Ú<module>   s:   
	AQg,#