forked from HemendraKhatik/FlackApp
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathapplication.py
More file actions
168 lines (150 loc) · 6.02 KB
/
application.py
File metadata and controls
168 lines (150 loc) · 6.02 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
import os
from flask import Flask, session, render_template, request, url_for, redirect, flash, jsonify
from flask_session import Session
from sqlalchemy import create_engine
from sqlalchemy.orm import scoped_session, sessionmaker
from flask_socketio import SocketIO, emit ,join_room, send
from functools import wraps # for security purpose
app = Flask(__name__)
DATABASE_URL="postgres://vfobhheluegnpw:0704135dad9d809b773c6ad4555bfdc87cd76999ccb90c8c99a0ec982f3267de@ec2-23-21-130-182.compute-1.amazonaws.com:5432/da71gb54aqbou7"
app.config["SECRET_KEY"] = os.getenv("SECRET_KEY")
socketio = SocketIO(app)
# Check for environment variable
if not os.getenv("DATABASE_URL"):
raise RuntimeError("DATABASE_URL is not set")
# Configure session to use filesystem
app.config["SESSION_PERMANENT"] = False
app.config["SESSION_TYPE"] = "filesystem"
Session(app)
# Set up database
engine = create_engine(os.getenv("DATABASE_URL"))
db = scoped_session(sessionmaker(bind=engine))
@app.route("/index")
def index():
if request.method == "GET":
if 'logged_in' in session:
return redirect(url_for('home'))
return render_template("login.html")
@app.route("/")
def welcome():
if request.method == "GET":
if 'logged_in' in session:
return redirect(url_for('home'))
return render_template("login.html")
@app.route("/signup",methods=["POST","GET"])
def signup():
if request.method=="GET":
return render_template('signup.html')
username=request.form.get("username")
email=request.form.get("email")
if request.form.get("password") == request.form.get("c_password"):
password=request.form.get("password")
else:
flash('Password does not match')
return redirect(url_for('index'))
db.execute("INSERT INTO user_signup_data(username,email,password) VALUES(:username,:email,:password)",
{"username":username,"email":email,"password":password})
db.commit()
db.close()
return render_template('login.html')
@app.route("/login",methods=["POST","GET"])
def login():
#This route will only accept the POST request
if request.method == "POST":
username=request.form.get("username")
password=request.form.get("password")
query=db.execute("SELECT * FROM user_signup_data WHERE username=:username AND password=:password",
{"username":username,"password":password}).fetchall()
"""Lists all channels."""
channels = db.execute("SELECT * FROM user_channel").fetchall()
for q in query:
if q.username==username and q.password==password:
"""Using session here to keep all users sessions separate from each other"""
session['logged_in'] = True
session['username'] = q.username
session['user_id'] = q.id
return redirect(url_for('home'))
if request.method == "GET":
if 'logged_in' in session:
redirect(url_for('home'))
return redirect(url_for('index'))
@app.route("/logout")
def logout():
session.pop('logged_in',None)
return redirect(url_for('index'))
@app.route("/home",methods=["POST","GET"])
def home():
if request.method == "POST":
channels = db.execute("SELECT * FROM user_channel").fetchall()
return render_template("chatroom.html",user_id=session['user_id'],user_name=session['username'],channels=channels)
else:
if request.method == "GET":
if 'logged_in' in session:
"""Need to have some variables to pass"""
return redirect(url_for('channels'))
flash('Need to login')
return redirect(url_for('index'))
"""Securing direct get methods"""
def login_required(test):
@wraps(test)
def wrap(*args, **kwargs):
if 'logged_in' in session:
return test(*args, **kwargs)
else:
flash('you need to login first')
return redirect(url_for('index'))
return wrap
@app.route("/channel_creation",methods=["POST"])
@login_required
def channel_creation():
channel=request.form.get("channel")
description=request.form.get("description")
u_id=request.form.get("u_id")
db.execute("INSERT INTO user_channel(channel,description,u_id) VALUES(:channel,:description,:u_id)",
{"channel":channel,"description":description,"u_id":u_id})
db.commit()
db.close()
return redirect(url_for('channels'))
@app.route("/channels")
@login_required
def channels():
"""Lists all channels."""
global channels
channels = db.execute("SELECT * FROM user_channel").fetchall()
flack="Flack"
channel_decription ="This room is flack official public room"
return render_template("chatroom.html",flack=flack,user_id=session['user_id'],user_name=session['username'], channels=channels,channel_decription=channel_decription)
@app.route("/channels/<int:channel_id>")
@login_required
def channel(channel_id):
# Make sure channel exists.
channel = db.execute("SELECT * FROM user_channel WHERE id = :id", {"id": channel_id}).fetchone()
if channel is None:
return "No such channel."
# I'm using ''.join here because query return a tuple
channel_name =''.join(db.execute("SELECT channel FROM user_channel WHERE id = :id", {"id": channel_id}).fetchone())
channel_decription =''.join(db.execute("SELECT description FROM user_channel WHERE id = :id", {"id": channel_id}).fetchone())
channels =channels = db.execute("SELECT * FROM user_channel").fetchall()
return render_template("chatroom.html",user_id=session['user_id'],user_name=session['username'], channel_name=channel_name,channels=channels,channel_decription=channel_decription)
@socketio.on("entry message")
def message(data):
message = data['message']
name = data['name']
room = data['rooma']
from datetime import datetime
now = datetime.now()
time = now.strftime("%I:%M:%S")
join_room(room)
emit("announce message", {"message": message,"name":name,"time":time}, room=room, broadcast=True)
@socketio.on("submit message")
def message(data):
message = data['message']
name = data['name']
room = data['rooma']
from datetime import datetime
now = datetime.now()
time = now.strftime("%I:%M:%S")
join_room(room)
emit("announce message", {"message": message,"name":name,"time":time}, room=room, broadcast=True)
if __name__ == '__main__':
socketio.run(app)