1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
|
from django.conf import settings
from time import time
from datetime import datetime
from urllib import urlopen, urlencode
from json import load as load_json
import md5
import logging
REST_SERVER = 'http://api.facebook.com/restserver.php'
def generate_sig(values):
keys = []
for key in sorted(values.keys()):
keys.append(key)
signature = ''.join(['%s=%s' % (key, values[key]) for key in keys]) + settings.FB_SECRET
return md5.new(signature).hexdigest()
def check_cookies_signature(cookies):
API_KEY = settings.FB_API_KEY
values = {}
for key in cookies.keys():
if (key.startswith(API_KEY + '_')):
values[key.replace(API_KEY + '_', '')] = cookies[key]
return generate_sig(values) == cookies[API_KEY]
def get_user_data(cookies):
request_data = {
'method': 'Users.getInfo',
'api_key': settings.FB_API_KEY,
'call_id': time(),
'v': '1.0',
'uids': cookies[settings.FB_API_KEY + '_user'],
'fields': 'name,first_name,last_name',
'format': 'json',
}
request_data['sig'] = generate_sig(request_data)
fb_response = load_json(urlopen(REST_SERVER, urlencode(request_data)))
return fb_response[0]
def delete_cookies():
API_KEY = settings.FB_API_KEY
response.delete_cookie(API_KEY + '_user')
response.delete_cookie(API_KEY + '_session_key')
response.delete_cookie(API_KEY + '_expires')
response.delete_cookie(API_KEY + '_ss')
response.delete_cookie(API_KEY)
response.delete_cookie('fbsetting_' + API_KEY)
def check_session_expiry(cookies):
return datetime.fromtimestamp(float(cookies[settings.FB_API_KEY+'_expires'])) > datetime.now()
STATES = {
'FIRSTTIMER': 1,
'SESSIONEXPIRED': 2,
}
def get_user_state(request):
if settings.FB_API_KEY in request.COOKIES:
if check_cookies_signature(request.COOKIES):
if check_session_expiry(request.COOKIES):
return STATES['FIRSTTIMER']
|