Files
fastapi/app/core/security.py
Beyhan Oğur 361dbef019 first commit
2026-04-26 22:25:19 +03:00

39 lines
1.1 KiB
Python

from datetime import datetime, timedelta, timezone
from typing import Tuple
import jwt
from argon2 import PasswordHasher
from app.core.config import settings
ph = PasswordHasher()
def hash_password(password: str) -> str:
return ph.hash(password)
def verify_password(hash: str, password: str) -> bool:
try:
return ph.verify(hash, password)
except Exception:
return False
def create_access_token(sub: str) -> Tuple[str, datetime]:
expire = datetime.now(timezone.utc) + timedelta(minutes=settings.ACCESS_TOKEN_EXPIRE_MINUTES)
payload = {"sub": sub, "exp": expire}
token = jwt.encode(payload, settings.JWT_SECRET, algorithm=settings.ALGORITHM)
return token, expire
def create_refresh_token(sub: str) -> Tuple[str, datetime]:
expire = datetime.now(timezone.utc) + timedelta(days=settings.REFRESH_TOKEN_EXPIRE_DAYS)
payload = {"sub": sub, "exp": expire}
token = jwt.encode(payload, settings.JWT_SECRET, algorithm=settings.ALGORITHM)
return token, expire
def decode_token(token: str) -> dict:
return jwt.decode(token, settings.JWT_SECRET, algorithms=[settings.ALGORITHM])