views.py 2.2 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758
  1. # coding=utf-8
  2. from django.db import transaction
  3. from django.contrib.auth import get_user_model
  4. from rest_framework.views import APIView
  5. from utils import response_ok
  6. from utils.permission import IsAdministratorUser
  7. from utils.custom_modelviewset import CustomModelViewSet
  8. from apps.log.models import BizLog
  9. from apps.admin import admin_log
  10. from apps.account.filters import UserFilter
  11. from .serializers import UserSerializer
  12. User = get_user_model()
  13. class UserViewSet(CustomModelViewSet):
  14. permission_classes = [IsAdministratorUser, ]
  15. queryset = User.objects.filter(is_active=True, type=User.ADMINSTRATOR)
  16. serializer_class = UserSerializer
  17. def filter_queryset(self, queryset):
  18. f = UserFilter(self.request.GET, queryset=queryset)
  19. return f.qs
  20. def perform_create(self, serializer):
  21. super(UserViewSet, self).perform_create(serializer)
  22. instance = serializer.instance
  23. validated_data = serializer.validated_data
  24. admin_log(self.request.user, BizLog.INSERT, u'添加用户[%s],id=%d' % (instance.username, instance.id),validated_data)
  25. def perform_update(self, serializer):
  26. super(UserViewSet, self).perform_update(serializer)
  27. instance = serializer.instance
  28. validated_data = serializer.validated_data
  29. admin_log(self.request.user, BizLog.UPDATE, u'修改用户[%s],id=%d' % (instance.username, instance.id), validated_data)
  30. def destroy(self, request, *args, **kwargs):
  31. with transaction.atomic():
  32. instance = self.get_object()
  33. instance.is_active = False
  34. instance.save()
  35. admin_log(self.request.user, BizLog.DELETE, u'禁用用户[%s],id=%d' % (instance.username, instance.id))
  36. return response_ok()
  37. class ChangePasswrodView(APIView):
  38. permission_classes = [IsAdministratorUser, ]
  39. def post(self, request):
  40. new_password = request.POST.get('new_password')
  41. confirm_password = request.POST.get('confirm_password')
  42. old_password = request.POST.get('old_password')
  43. with transaction.atomic():
  44. request.user.change_password(new_password, confirm_password, old_password)
  45. request.user.save()
  46. return response_ok()