Python+django实现邮箱验证登录

用户注册:

类似于用户登陆,同样在users.views.py中添加RegisterView(View)类,其中对表单的get和post作出处理。
如果是get方法,重新返回register页面让用户进行填写。

    def get(self, request):
        register_form = RegisterForm()
        return render(request, "register.html", {'register_form':register_form})
 
 
  • 1
  • 2
  • 3

method = POST时,用户注册逻辑:

    def post(self, request):
        # 实例化form,验证每个字段是否合法
        register_form = RegisterForm(request.POST)
        pre_check = register_form.is_valid()
        if pre_check:
            # 取出email和password
            user_name = request.POST.get("email", "")
            pass_word = request.POST.get("password", "")
            # 实例化用户,然后赋值
            user_profile = UserProfile()
            user_profile.username = user_name
            user_profile.email = user_name
            # 新建用户为非活跃用户,可通过验证变为活跃用户
            user_profile.is_active = False
            # 将明文转换为密文赋给password
            user_profile.password = make_password(pass_word)
            user_profile.save()  # 保存到数据库
            # 此处加入了邮箱验证的手段
            send_register_email(user_name, "register")
            return render(request, "login.html")
        else:
            # form表单验证失败,将错误信息传给前端
            return render(request, "register.html", {"register_form": register_form})
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23

在form.py中添加RegisterForm类对给出表单处理类:

class RegisterForm(forms.Form):
    # 不能为空
    email = forms.EmailField(required=True)
    password = forms.CharField(required=True, min_length=6, max_length=20)
    # 出错信息
    captcha = CaptchaField(error_messages={"invalid":u"验证码错误"})
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6

以下为对应的前端代码,其中添加了了django的模版用法,均以{% %}的形式在html中加入逻辑, 避免了python代码的直接插入,方便维护和修改。

<form id="email_register_form" method="post" action="{% url 'register' %}" autocomplete="off">
                        <div class="form-group marb20 {% if register_form.errors.email %}errorput{% endif %}">
                            <label>邮&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;箱</label>
                            <input  type="text" id="id_email" name="email" value="{{ register_form.email.value }}" placeholder="请输入您的邮箱地址" />
                        </div>
                        <div class="form-group marb8 {% if register_form.errors.password %}errorput{% endif %}">
                            <label>密&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;码</label>
                            <input type="password" id="id_password" name="password"  value="{{ register_form.password.value }}" placeholder="请输入6-20位非中文字符密码" />
                        </div>
                        <div class="form-group marb8 captcha1 {% if register_form.errors.captcha %}errorput{% endif %}">
                            <label>验&nbsp;证&nbsp;码</label>
                            {{ register_form.captcha }}
                        </div>
                        <div class="error btns" id="jsEmailTips">{% for key,error in register_form.errors.items %}{{ error }}{% endfor %} {{ msg }}</div>
                        <div class="auto-box marb8">
                        </div>
                        <input class="btn btn-green" id="jsEmailRegBtn" type="submit" value="注册并登录" />
                        {% csrf_token %}
                    </form>
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19

{% csrf_token %}是django为了在用户提交表单时防止跨站攻击所做的保护,在表单最后没有加入的话,不能正常提交
表单中有一项为验证码,在django中可以使用django-simple-captcha模块实现:

  • url(r’^captcha/’, include(‘captcha.urls’)) 配置url
  • {{ register_form.captcha }} 配置前端

邮箱验证:

在users.py中添加了邮箱验证的model:

class EmailVerifyRecord(models.Model):
    # 验证码
    code = models.CharField(max_length=20, verbose_name=u"验证码")
    email = models.EmailField(max_length=50, verbose_name=u"邮箱")
    # 包含注册验证和找回验证
    send_type = models.CharField(verbose_name=u"验证码类型", max_length=10, choices=(("register",u"注册"), ("forget",u"找回密码")))
    send_time = models.DateTimeField(verbose_name=u"发送时间", default=datetime.now)
    class Meta:
        verbose_name = u"邮箱验证码"
        verbose_name_plural = verbose_name
    def __unicode__(self):
        return '{0}({1})'.format(self.code, self.email)
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12

在setting.py中添加配置邮箱信息:

EMAIL_HOST = "smtp.163.com"   # 服务器
EMAIL_PORT = 25               # 一般情况下都为25
EMAIL_HOST_USER = "abc@163.com"   # 账号
EMAIL_HOST_PASSWORD = "password"  # 密码
EMAIL_USE_TLS = False             # 一般都为False
EMAIL_FROM = "abc@163.com"        # 邮箱来自

 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7

创建utils包,新建email_send .py

from random import Random # 用于生成随机码 
from django.core.mail import send_mail # 发送邮件模块
from users.models import EmailVerifyRecord # 邮箱验证model
from MxOnline.settings import EMAIL_FROM  # setting.py添加的的配置信息

# 生成随机字符串
def random_str(randomlength=8):
    str = ''
    chars = 'AaBbCcDdEeFfGgHhIiJjKkLlMmNnOoPpQqRrSsTtUuVvWwXxYyZz0123456789'
    length = len(chars) - 1
    random = Random()
    for i in range(randomlength):
        str+=chars[random.randint(0, length)]
    return str


def send_register_email(email, send_type="register"):
    email_record = EmailVerifyRecord()
    # 将给用户发的信息保存在数据库中
    code = random_str(16)
    email_record.code = code
    email_record.email = email
    email_record.send_type = send_type
    email_record.save()
    # 初始化为空
    email_title = ""
    email_body = ""
    # 如果为注册类型
    if send_type == "register":
        email_title = "注册激活链接"
        email_body = "请点击下面的链接激活你的账号:http://127.0.0.1:8000/active/{0}".format(code)
        # 发送邮件
        send_status = send_mail(email_title, email_body, EMAIL_FROM, [email])
        if send_status:
            pass
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35

然后将用户变为活跃用户,加入相关的view:

class ActiveUserView(View):
    def get(self, request, active_code):
    # 用code在数据库中过滤处信息
        all_records = EmailVerifyRecord.objects.filter(code=active_code)
        if all_records:
            for record in all_records:
                email = record.email
                # 通过邮箱查找到对应的用户
                user = UserProfile.objects.get(email=email)
                # 激活用户
                user.is_active = True
                user.save()
                        else:
            return render(request, "active_fail.html")
        return render(request, "login.html")
 
 
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15

配置生成页面的url:

url(r'^active/(?P<active_code>.*)/$', ActiveUserView.as_view(), name="user_active"),  # 提取出active后的所有字符赋给active_code
 
 
  • 1

至此,便可将is_active加入到登陆的限制当中:

                if user.is_active:
                    login(request, user)  # 调用login方法登陆账号
                    return render(request, "index.html")
                else:
                    return render(request, "login.html", {"msg": u"用户未激活"})
  • 2
    点赞
  • 7
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
可以使用PythonDjango框架和Django-allauth库来实现邮箱验证登录功能。 首先,安装Django-allauth库: ```python pip install django-allauth ``` 然后,在Django项目的settings.py文件中添加以下配置: ```python AUTHENTICATION_BACKENDS = [ 'django.contrib.auth.backends.ModelBackend', 'allauth.account.auth_backends.AuthenticationBackend', ] EMAIL_BACKEND = 'django.core.mail.backends.console.EmailBackend' ACCOUNT_AUTHENTICATION_METHOD = 'email' ACCOUNT_EMAIL_REQUIRED = True ACCOUNT_UNIQUE_EMAIL = True ACCOUNT_USERNAME_REQUIRED = False ACCOUNT_EMAIL_VERIFICATION = 'mandatory' ACCOUNT_SIGNUP_EMAIL_ENTER_TWICE = True ``` 这些配置将启用使用邮箱进行验证登录,并将邮件发送到终端而不是发送到实际的邮箱。 接下来,在Django项目的urls.py文件中添加以下配置: ```python from allauth.account.views import ConfirmEmailView urlpatterns = [ path('accounts/', include('allauth.urls')), path('accounts/confirm-email/<str:key>/', ConfirmEmailView.as_view(), name='account_confirm_email'), ] ``` 这些配置将设置路由和视图,以便用户确认其邮箱。 接着,编写一个视图来实现发送验证码和验证验证码功能: ```python from django.conf import settings from django.contrib.auth.views import LoginView from django.core.mail import send_mail from django.utils.decorators import method_decorator from django.views.decorators.csrf import csrf_protect from django.views.generic.edit import FormView from django.contrib.messages.views import SuccessMessageMixin from django.urls import reverse_lazy from django.utils.translation import ugettext_lazy as _ from allauth.account.models import EmailConfirmationHMAC, EmailConfirmation from allauth.account.views import RedirectAuthenticatedUserMixin from .forms import EmailLoginForm @method_decorator(csrf_protect, name='dispatch') class EmailLoginView(SuccessMessageMixin, FormView): form_class = EmailLoginForm template_name = 'account/email_login.html' success_url = reverse_lazy('home') success_message = _("Email login link has been sent to your email.") def form_valid(self, form): email = form.cleaned_data['email'] try: user = User.objects.get(email=email) except User.DoesNotExist: user = User(email=email) user.set_unusable_password() user.save() emailconfirmation = EmailConfirmation.create(user=user) emailconfirmation.sent = timezone.now() emailconfirmation.save() subject = _("Email Login Link") message = _("Please use the following link to login:\n\n" "{}/accounts/login/?key={}".format( self.request.build_absolute_uri('/'), EmailConfirmationHMAC(emailconfirmation).hexdigest())) send_mail(subject, message, settings.DEFAULT_FROM_EMAIL, [email]) return super().form_valid(form) class EmailLoginKeyView(RedirectAuthenticatedUserMixin, LoginView): template_name = 'account/login.html' redirect_authenticated_user = True def dispatch(self, request, *args, **kwargs): key = kwargs.get('key') emailconfirmation = EmailConfirmationHMAC.from_key(key) if not emailconfirmation: return self.handle_no_permission() if emailconfirmation.email_address.verified: return super().dispatch(request, *args, **kwargs) emailconfirmation.email_address.set_as_primary(conditional=True) emailconfirmation.email_address.user.email = emailconfirmation.email_address.email emailconfirmation.email_address.user.save() emailconfirmation.confirm(self.request) return super().dispatch(request, *args, **kwargs) ``` 在此视图中,用户输入其邮箱地址,系统将向其发送验证码邮件。用户在邮箱中收到邮件后,可以访问包含验证码的链接以登录系统。如果验证码有效,则系统将使用户登录。如果用户首次使用该邮箱登录系统,则系统将创建一个新用户记录。 最后,在Django项目的forms.py文件中,编写EmailLoginForm表单: ```python from django import forms from django.utils.translation import ugettext_lazy as _ class EmailLoginForm(forms.Form): email = forms.EmailField( label=_("Email"), widget=forms.EmailInput(attrs={'autocomplete': 'email'}) ) ``` 这是一个简单的表单,提示用户输入其邮箱地址。 这就是在Python实现邮箱验证登录功能的示例代码。

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值