security.py 938 B

12345678910111213141516171819202122232425262728293031323334
  1. from datetime import datetime, timedelta
  2. from typing import Any, Union
  3. from jose import jwt
  4. from passlib.context import CryptContext
  5. from app.core.config import settings
  6. pwd_context = CryptContext(schemes=["bcrypt"], deprecated="auto")
  7. ALGORITHM = "HS256"
  8. def create_access_token(
  9. subject: Union[str, Any], expires_delta: timedelta = None
  10. ) -> str:
  11. if expires_delta:
  12. expire = datetime.utcnow() + expires_delta
  13. else:
  14. expire = datetime.utcnow() + timedelta(
  15. minutes=settings.ACCESS_TOKEN_EXPIRE_MINUTES
  16. )
  17. to_encode = {"exp": expire, "sub": str(subject)}
  18. encoded_jwt = jwt.encode(to_encode, settings.SECRET_KEY, algorithm=ALGORITHM)
  19. return encoded_jwt
  20. def verify_password(plain_password: str, hashed_password: str) -> bool:
  21. return pwd_context.verify(plain_password, hashed_password)
  22. def get_password_hash(password: str) -> str:
  23. return pwd_context.hash(password)