passlib 1.7.4 runs an internal bcrypt wrap-bug test on startup that fails with bcrypt 4.x because it uses a >72 byte test password. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
30 lines
937 B
Python
30 lines
937 B
Python
from datetime import datetime, timedelta
|
|
from typing import Optional
|
|
import bcrypt
|
|
from jose import JWTError, jwt
|
|
from ..config import get_settings
|
|
|
|
|
|
def hash_password(password: str) -> str:
|
|
return bcrypt.hashpw(password.encode(), bcrypt.gensalt()).decode()
|
|
|
|
|
|
def verify_password(plain: str, hashed: str) -> bool:
|
|
return bcrypt.checkpw(plain.encode(), hashed.encode())
|
|
|
|
|
|
def create_token(user_id: str) -> str:
|
|
settings = get_settings()
|
|
expire = datetime.utcnow() + timedelta(days=settings.jwt_expire_days)
|
|
payload = {"sub": user_id, "exp": expire, "iat": datetime.utcnow()}
|
|
return jwt.encode(payload, settings.jwt_secret, algorithm=settings.jwt_algorithm)
|
|
|
|
|
|
def decode_token(token: str) -> Optional[str]:
|
|
settings = get_settings()
|
|
try:
|
|
payload = jwt.decode(token, settings.jwt_secret, algorithms=[settings.jwt_algorithm])
|
|
return payload.get("sub")
|
|
except JWTError:
|
|
return None
|