Update secMiddleware.py with option to enable/disable sessionIPvalidation for those with Dynamic IPs

This commit is contained in:
Michael Ramsey
2019-11-10 10:13:43 -05:00
parent b92b64bf25
commit c335952b2a

View File

@@ -3,12 +3,16 @@ import json
from django.shortcuts import HttpResponse from django.shortcuts import HttpResponse
import re import re
# Create option to enable/disable sessionIPValidation for Dynamic IP's
sessionIPValidation = 'true'
class secMiddleware: class secMiddleware:
def __init__(self, get_response): def __init__(self, get_response):
self.get_response = get_response self.get_response = get_response
def __call__(self, request): def __call__(self, request):
if sessionIPValidation == 'true':
try: try:
uID = request.session['userID'] uID = request.session['userID']
ipAddr = request.META.get('REMOTE_ADDR') ipAddr = request.META.get('REMOTE_ADDR')
@@ -20,8 +24,8 @@ class secMiddleware:
del request.session['userID'] del request.session['userID']
del request.session['ipAddr'] del request.session['ipAddr']
logging.writeToFile(request.META.get('REMOTE_ADDR')) logging.writeToFile(request.META.get('REMOTE_ADDR'))
final_dic = {'error_message': "Session reuse detected, IPAddress logged.", final_dic = {'error_message': "Session reuse detected, IPAddress logged. Toggle off sessionIPValidation in secMiddleware.py if seeing this frequently with Dynamic IP",
"errorMessage": "Session reuse detected, IPAddress logged."} "errorMessage": "Session reuse detected, IPAddress logged. Toggle off sessionIPValidation in secMiddleware.py if seeing this frequently with Dynamic IP"}
final_json = json.dumps(final_dic) final_json = json.dumps(final_dic)
return HttpResponse(final_json) return HttpResponse(final_json)
else: else:
@@ -33,8 +37,8 @@ class secMiddleware:
del request.session['userID'] del request.session['userID']
del request.session['ipAddr'] del request.session['ipAddr']
logging.writeToFile(request.META.get('REMOTE_ADDR')) logging.writeToFile(request.META.get('REMOTE_ADDR'))
final_dic = {'error_message': "Session reuse detected, IPAddress logged.", final_dic = {'error_message': "Session reuse detected, IPAddress logged. Toggle off sessionIPValidation in secMiddleware.py if seeing this frequently with Dynamic IP",
"errorMessage": "Session reuse detected, IPAddress logged."} "errorMessage": "Session reuse detected, IPAddress logged. Toggle off sessionIPValidation in secMiddleware.py if seeing this frequently with Dynamic IP"}
final_json = json.dumps(final_dic) final_json = json.dumps(final_dic)
return HttpResponse(final_json) return HttpResponse(final_json)
except: except: