The internal_view
decorator makes a view accessible only from INTERNAL_IPS
. Handy for exposing internal APIs.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 | import functools
from django.conf import settings
from django.http import HttpResponseForbidden
from django.views.decorators.csrf import csrf_exempt
def internal_view(view):
'''Decorates a view as accessible from INTERNAL_IPS only.
As a convenience, the view is also decorated with ``csrf_exempt``.
'''
@functools.wraps(view)
def wrapper_view(request, *args, **kwds):
remote_addr = request.META.get('HTTP_X_REAL_IP',
request.META.get('REMOTE_ADDR', None))
if not (settings.DEBUG or remote_addr in settings.INTERNAL_IPS):
return HttpResponseForbidden('Internal view')
return view(request, *args, **kwds)
return csrf_exempt(wrapper_view)
|
More like this
- Template tag - list punctuation for a list of items by shapiromatron 11 months, 1 week ago
- JSONRequestMiddleware adds a .json() method to your HttpRequests by cdcarter 11 months, 2 weeks ago
- Serializer factory with Django Rest Framework by julio 1 year, 6 months ago
- Image compression before saving the new model / work with JPG, PNG by Schleidens 1 year, 7 months ago
- Help text hyperlinks by sa2812 1 year, 7 months ago
Comments
Please login first before commenting.