Files
digiserver/app.py

411 lines
14 KiB
Python

import os
from flask import Flask, render_template, request, redirect, url_for, session
from flask_sqlalchemy import SQLAlchemy
from flask_login import LoginManager, UserMixin, login_user, logout_user, login_required, current_user
from flask_bcrypt import Bcrypt
from werkzeug.utils import secure_filename
from functools import wraps
from flask_migrate import Migrate
app = Flask(__name__)
# Set the secret key from environment variable or use a default value
app.config['SECRET_KEY'] = os.getenv('SECRET_KEY', 'Ana_Are_Multe_Mere-Si_Nu_Are_Pere')
# Configurare baza de date SQLite
app.config['SQLALCHEMY_DATABASE_URI'] = 'sqlite:///dashboard.db'
app.config['SQLALCHEMY_TRACK_MODIFICATIONS'] = False
db = SQLAlchemy(app)
bcrypt = Bcrypt(app)
UPLOAD_FOLDER = 'static/uploads'
app.config['UPLOAD_FOLDER'] = UPLOAD_FOLDER
# Ensure the upload folder exists
if not os.path.exists(UPLOAD_FOLDER):
os.makedirs(UPLOAD_FOLDER)
login_manager = LoginManager(app)
login_manager.login_view = 'login'
migrate = Migrate(app, db)
@login_manager.user_loader
def load_user(user_id):
return db.session.get(User, int(user_id))
# Modele pentru baza de date
class User(db.Model, UserMixin):
id = db.Column(db.Integer, primary_key=True)
username = db.Column(db.String(80), unique=True, nullable=False)
password = db.Column(db.String(120), nullable=False)
role = db.Column(db.String(20), nullable=False, default='user')
theme = db.Column(db.String(10), nullable=False, default='light')
class Player(db.Model):
id = db.Column(db.Integer, primary_key=True)
username = db.Column(db.String(80), unique=True, nullable=False)
hostname = db.Column(db.String(120), unique=True, nullable=False)
password = db.Column(db.String(120), nullable=False)
class Group(db.Model):
id = db.Column(db.Integer, primary_key=True)
name = db.Column(db.String(80), unique=True, nullable=False)
players = db.relationship('Player', secondary='group_player', backref='groups')
group_player = db.Table('group_player',
db.Column('group_id', db.Integer, db.ForeignKey('group.id'), primary_key=True),
db.Column('player_id', db.Integer, db.ForeignKey('player.id'), primary_key=True)
)
class Content(db.Model):
id = db.Column(db.Integer, primary_key=True)
file_name = db.Column(db.String(120), nullable=False)
duration = db.Column(db.Integer, nullable=False)
player_id = db.Column(db.Integer, db.ForeignKey('player.id'), nullable=True)
group_id = db.Column(db.Integer, db.ForeignKey('group.id'), nullable=True)
def admin_required(f):
@wraps(f)
def decorated_function(*args, **kwargs):
if current_user.role != 'admin':
return redirect(url_for('dashboard'))
return f(*args, **kwargs)
return decorated_function
@app.route('/')
@login_required
def dashboard():
players = Player.query.all()
groups = Group.query.all()
return render_template('dashboard.html', players=players, groups=groups)
@app.route('/register', methods=['GET', 'POST'])
def register():
if request.method == 'POST':
username = request.form['username']
password = request.form['password']
hashed_password = bcrypt.generate_password_hash(password).decode('utf-8')
new_user = User(username=username, password=hashed_password, role='user')
db.session.add(new_user)
db.session.commit()
return redirect(url_for('login'))
return render_template('register.html')
@app.route('/login', methods=['GET', 'POST'])
def login():
if request.method == 'POST':
username = request.form['username']
password = request.form['password']
user = User.query.filter_by(username=username).first()
if user and bcrypt.check_password_hash(user.password, password):
login_user(user)
return redirect(url_for('dashboard'))
return render_template('login.html')
@app.route('/logout')
@login_required
def logout():
logout_user()
return redirect(url_for('login'))
@app.route('/upload_content', methods=['GET', 'POST'])
@login_required
@admin_required
def upload_content():
if request.method == 'POST':
target_type = request.form['target_type']
target_id = int(request.form['target_id'])
files = request.files.getlist('files')
duration = int(request.form['duration'])
return_url = request.form['return_url']
for file in files:
filename = secure_filename(file.filename)
file_path = os.path.join(app.config['UPLOAD_FOLDER'], filename)
file.save(file_path)
if target_type == 'player':
new_content = Content(file_name=filename, duration=duration, player_id=target_id)
elif target_type == 'group':
new_content = Content(file_name=filename, duration=duration, group_id=target_id)
db.session.add(new_content)
db.session.commit()
return redirect(return_url)
target_type = request.args.get('target_type')
target_id = request.args.get('target_id')
return_url = request.args.get('return_url', url_for('dashboard'))
players = Player.query.all()
groups = Group.query.all()
return render_template('upload_content.html', target_type=target_type, target_id=target_id, players=players, groups=groups, return_url=return_url)
@app.route('/admin')
@login_required
@admin_required
def admin():
users = User.query.all()
return render_template('admin.html', users=users)
@app.route('/admin/change_role/<int:user_id>', methods=['POST'])
@login_required
@admin_required
def change_role(user_id):
user = User.query.get_or_404(user_id)
new_role = request.form['role']
user.role = new_role
db.session.commit()
return redirect(url_for('admin'))
@app.route('/admin/delete_user/<int:user_id>', methods=['POST'])
@login_required
@admin_required
def delete_user(user_id):
user = User.query.get_or_404(user_id)
db.session.delete(user)
db.session.commit()
return redirect(url_for('admin'))
@app.route('/admin/create_user', methods=['POST'])
@login_required
@admin_required
def create_user():
username = request.form['username']
password = request.form['password']
role = request.form['role']
hashed_password = bcrypt.generate_password_hash(password).decode('utf-8')
new_user = User(username=username, password=hashed_password, role=role)
db.session.add(new_user)
db.session.commit()
return redirect(url_for('admin'))
@app.route('/group/<int:group_id>/manage')
@login_required
@admin_required
def manage_group(group_id):
group = Group.query.get_or_404(group_id)
available_players = Player.query.filter(~Player.groups.any(Group.id == group_id)).all()
return render_template('manage_group.html', group=group, available_players=available_players)
@app.route('/group/<int:group_id>/add_player', methods=['POST'])
@login_required
@admin_required
def add_player_to_group(group_id):
group = Group.query.get_or_404(group_id)
player_id = request.form['player_id']
player = Player.query.get_or_404(player_id)
group.players.append(player)
db.session.commit()
return redirect(url_for('manage_group', group_id=group_id))
@app.route('/group/<int:group_id>/remove_player/<int:player_id>', methods=['POST'])
@login_required
@admin_required
def remove_player_from_group(group_id, player_id):
group = Group.query.get_or_404(group_id)
player = Player.query.get_or_404(player_id)
group.players.remove(player)
db.session.commit()
return redirect(url_for('manage_group', group_id=group_id))
@app.route('/group/<int:group_id>/upload', methods=['POST'])
@login_required
@admin_required
def upload_content_to_group(group_id):
group = Group.query.get_or_404(group_id)
files = request.files.getlist('files')
duration = int(request.form['duration'])
for file in files:
filename = secure_filename(file.filename)
file_path = os.path.join(app.config['UPLOAD_FOLDER'], filename)
file.save(file_path)
new_content = Content(file_name=filename, duration=duration, group_id=group_id)
db.session.add(new_content)
db.session.commit()
return redirect(url_for('manage_group', group_id=group_id))
@app.route('/group/content/<int:content_id>/edit', methods=['POST'])
@login_required
@admin_required
def edit_group_content(content_id):
content = Content.query.get_or_404(content_id)
new_duration = int(request.form['duration'])
content.duration = new_duration
db.session.commit()
return redirect(url_for('manage_group', group_id=content.group_id))
@app.route('/group/content/<int:content_id>/delete', methods=['POST'])
@login_required
@admin_required
def delete_group_content(content_id):
content = Content.query.get_or_404(content_id)
group_id = content.group_id
db.session.delete(content)
db.session.commit()
return redirect(url_for('manage_group', group_id=group_id))
@app.route('/group/<int:group_id>/delete', methods=['POST'])
@login_required
@admin_required
def delete_group(group_id):
group = db.session.get(Group, group_id)
db.session.delete(group)
db.session.commit()
return redirect(url_for('dashboard'))
@app.route('/player/<int:player_id>')
@login_required
def player_page(player_id):
player = db.session.get(Player, player_id)
content = Content.query.filter_by(player_id=player_id).all()
return render_template('player_page.html', player=player, content=content)
@app.route('/player/<int:player_id>/upload', methods=['POST'])
@login_required
def upload_content_to_player(player_id):
player = Player.query.get_or_404(player_id)
files = request.files.getlist('files')
duration = int(request.form['duration'])
for file in files:
filename = secure_filename(file.filename)
file_path = os.path.join(app.config['UPLOAD_FOLDER'], filename)
file.save(file_path)
new_content = Content(file_name=filename, duration=duration, player_id=player_id)
db.session.add(new_content)
db.session.commit()
return redirect(url_for('player_page', player_id=player_id))
@app.route('/content/<int:content_id>/edit', methods=['POST'])
@login_required
def edit_content(content_id):
content = Content.query.get_or_404(content_id)
new_duration = int(request.form['duration'])
content.duration = new_duration
db.session.commit()
return redirect(url_for('player_page', player_id=content.player_id))
@app.route('/content/<int:content_id>/delete', methods=['POST'])
@login_required
def delete_content(content_id):
content = Content.query.get_or_404(content_id)
player_id = content.player_id
db.session.delete(content)
db.session.commit()
return redirect(url_for('player_page', player_id=player_id))
@app.route('/player/<int:player_id>/fullscreen', methods=['GET', 'POST'])
def player_fullscreen(player_id):
player = Player.query.get_or_404(player_id)
if request.method == 'POST':
hostname = request.form['hostname']
password = request.form['password']
if player.hostname == hostname and bcrypt.check_password_hash(player.password, password):
authenticated = True
else:
authenticated = False
else:
authenticated = False
if authenticated or current_user.is_authenticated:
if player.groups:
# If the player is part of a group, get the group's content
group = player.groups[0] # Assuming a player can only be in one group
content = Content.query.filter_by(group_id=group.id).all()
else:
# If the player is not part of a group, get the player's content
content = Content.query.filter_by(player_id=player_id).all()
return render_template('player_fullscreen.html', player=player, content=content)
else:
return render_template('player_auth.html', player_id=player_id)
@app.route('/group/<int:group_id>/fullscreen')
@login_required
def group_fullscreen(group_id):
group = Group.query.get_or_404(group_id)
content = Content.query.filter_by(group_id=group.id).all()
return render_template('group_fullscreen.html', group=group, content=content)
@app.route('/player/<int:player_id>/delete', methods=['POST'])
@login_required
@admin_required
def delete_player(player_id):
player = Player.query.get_or_404(player_id)
db.session.delete(player)
db.session.commit()
return redirect(url_for('dashboard'))
@app.route('/player/add', methods=['GET', 'POST'])
@login_required
@admin_required
def add_player():
if request.method == 'POST':
username = request.form['username']
hostname = request.form['hostname']
password = bcrypt.generate_password_hash(request.form['password']).decode('utf-8')
new_player = Player(username=username, hostname=hostname, password=password)
db.session.add(new_player)
db.session.commit()
return redirect(url_for('dashboard'))
return render_template('add_player.html')
@app.route('/group/add', methods=['GET', 'POST'])
@login_required
@admin_required
def add_group():
if request.method == 'POST':
name = request.form['name']
new_group = Group(name=name)
db.session.add(new_group)
db.session.commit()
return redirect(url_for('dashboard'))
return render_template('add_group.html')
@app.route('/integrate_player')
@login_required
@admin_required
def integrate_player():
players = Player.query.all()
groups = Group.query.all()
return render_template('integrate_player.html', players=players, groups=groups)
@app.route('/player/<int:player_id>/edit', methods=['GET', 'POST'])
@login_required
@admin_required
def edit_player(player_id):
player = Player.query.get_or_404(player_id)
if request.method == 'POST':
player.username = request.form['username']
player.hostname = request.form['hostname']
if request.form['password']:
player.password = bcrypt.generate_password_hash(request.form['password']).decode('utf-8')
db.session.commit()
return redirect(url_for('player_page', player_id=player.id))
return render_template('edit_player.html', player=player)
@app.route('/change_theme', methods=['POST'])
@login_required
@admin_required
def change_theme():
theme = request.form['theme']
current_user.theme = theme
db.session.commit()
return redirect(url_for('admin'))
@app.context_processor
def inject_theme():
if current_user.is_authenticated:
theme = current_user.theme
else:
theme = 'light'
return dict(theme=theme)
if __name__ == '__main__':
with app.app_context():
db.create_all() # Creează toate tabelele
app.run(debug=True)