42 lines
1.1 KiB
Python
42 lines
1.1 KiB
Python
|
from flask import request, session
|
||
|
from requests_oauthlib import OAuth2Session
|
||
|
|
||
|
from config import *
|
||
|
from helpers import HydraError
|
||
|
|
||
|
|
||
|
class HydraOauth:
|
||
|
SESSION_KEY = "oauth_state"
|
||
|
|
||
|
@staticmethod
|
||
|
def authorize():
|
||
|
try:
|
||
|
hydra = OAuth2Session(HYDRA_CLIENT_ID)
|
||
|
authorization_url, state = hydra.authorization_url(
|
||
|
HYDRA_AUTHORIZATION_BASE_URL
|
||
|
)
|
||
|
|
||
|
# State is used to prevent CSRF, keep this for later.
|
||
|
session[HydraOauth.SESSION_KEY] = state
|
||
|
|
||
|
return authorization_url
|
||
|
except Exception as err:
|
||
|
raise HydraError(str(err), 500)
|
||
|
|
||
|
@staticmethod
|
||
|
def get_token():
|
||
|
try:
|
||
|
hydra = OAuth2Session(
|
||
|
HYDRA_CLIENT_ID, state=session[HydraOauth.SESSION_KEY]
|
||
|
)
|
||
|
token = hydra.fetch_token(
|
||
|
TOKEN_URL,
|
||
|
client_secret=HYDRA_CLIENT_SECRET,
|
||
|
authorization_response=request.url,
|
||
|
)
|
||
|
|
||
|
session["hydra_token"] = token
|
||
|
return token
|
||
|
except Exception as err:
|
||
|
raise HydraError(str(err), 500)
|