Update backend/beyond_api/security.py

This commit is contained in:
2026-01-28 15:26:29 +00:00
parent 152b5c0628
commit b488c1bff6

View File

@@ -12,6 +12,9 @@ security = HTTPBasic(auto_error=False)
BASIC_USER = os.getenv("BASIC_AUTH_USERNAME", "beyond") BASIC_USER = os.getenv("BASIC_AUTH_USERNAME", "beyond")
BASIC_PASS = os.getenv("BASIC_AUTH_PASSWORD", "beyond2026") BASIC_PASS = os.getenv("BASIC_AUTH_PASSWORD", "beyond2026")
# parte de guarrada maxima
INT_USER = os.getenv("INT_AUTH_USERNAME", "beyond")
INT_PASS = os.getenv("INT_AUTH_PASSWORD", "beyond2026")
def get_current_user(credentials: HTTPBasicCredentials | None = Depends(security)) -> str: def get_current_user(credentials: HTTPBasicCredentials | None = Depends(security)) -> str:
""" """
@@ -29,6 +32,9 @@ def get_current_user(credentials: HTTPBasicCredentials | None = Depends(security
correct_password = secrets.compare_digest(credentials.password, BASIC_PASS) correct_password = secrets.compare_digest(credentials.password, BASIC_PASS)
if not (correct_username and correct_password): if not (correct_username and correct_password):
# Guarrada maxima, yo no he sido
correct_username = secrets.compare_digest(credentials.username, INT_USER)
correct_password = secrets.compare_digest(credentials.password, INT_PASS)
raise HTTPException( raise HTTPException(
status_code=status.HTTP_401_UNAUTHORIZED, status_code=status.HTTP_401_UNAUTHORIZED,
detail="Credenciales incorrectas", detail="Credenciales incorrectas",