ae762243 by 周伟奇

cancel code review

1 parent baf48dff
......@@ -13,15 +13,15 @@ class LoginView(ObtainJSONWebToken, GenericView):
def post(self, request, *args, **kwargs):
# 登录次数限制
user_name = request.data.get('username', '')
times = rh.get_login_times(user_name)
if isinstance(times, int) and times >= LOGIN_TIMES_LIMIT:
raise self.invalid_params(msg="重试次数限制")
# times = rh.get_login_times(user_name)
# if isinstance(times, int) and times >= LOGIN_TIMES_LIMIT:
# raise self.invalid_params(msg="重试次数限制")
res = super(LoginView, self).post(request, *args, **kwargs)
self.running_log.info('[users.login] username: {0}'.format(user_name))
if res.status_code == status.HTTP_400_BAD_REQUEST:
rh.set_login_times(user_name, LOGIN_TIMES_LIMIT_EXPIRES)
# rh.set_login_times(user_name, LOGIN_TIMES_LIMIT_EXPIRES)
raise self.invalid_params(msg="用户名或密码错误")
serializer = self.get_serializer(data=request.data)
# serializer.is_valid()
......
......@@ -898,9 +898,9 @@ class DocView(GenericView, DocHandler):
file.close()
os.remove(tmp_save_path)
raise self.invalid_params(msg='invalid params: not a PDF file')
elif not self.xss_pass(file):
os.remove(tmp_save_path)
raise self.invalid_params(msg='invalid params: PDF file XSS')
# elif not self.xss_pass(file):
# os.remove(tmp_save_path)
# raise self.invalid_params(msg='invalid params: PDF file XSS')
file.close()
......
Styling with Markdown is supported
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!