# -*- coding: utf-8 -*- import sqlite3 #all the imports from flask import Flask, request, session, g, redirect, url_for, \ abort, render_template, flash, _app_ctx_stack from functools import wraps import hashlib # configuration app = Flask(__name__) app.config.from_envvar('CONF') def connect_db(): conn = sqlite3.connect(app.config['DATABASE']) conn.row_factory = sqlite3.Row return conn def query_db(query, args=(), one=False): cur = g.db.execute(query, args) rv = cur.fetchone() if one else cur.fetchall() cur.close() return rv @app.before_request def before_request(): g.db = connect_db() @app.teardown_appcontext def close_db_connection(exception): """Closes the database again at the end of the request.""" g.db.close() def login_required(f): @wraps(f) def decorated_function(*args, **kwargs): if 'username' not in session: return redirect(url_for('login', next=request.url)) return f(*args, **kwargs) return decorated_function @app.route('/') @login_required def main(): return redirect(url_for('show_news')) @app.route('/nouvelles') def show_news(): return render_template("toto.html") @app.route('/login', methods=['GET', 'POST']) def login(): error = None if request.method == 'POST': username = request.form['username'] password = hashlib.md5(request.form['password']).hexdigest(); user = query_db('select * from users where name = ?', (username,), True) if user: if user['password'] == password: session['name'] = user['name'] return redirect(url_for('show_news')) else: error = u'Mot de passe incorrect' else: error = u'Utilisateur non enregistré' return render_template('login.html', error=error) if __name__=="__main__": app.run()