Skip to main content

A smart Django security package to auto-block suspicious traffic

Project description

django-secux

django-secux ( All for in one )

PyPI version Python Versions Django Versions License Stars Issues Last Commit

django-secux is a simple yet powerful Django security package that protects heavy-load pages by rate-limiting access based on real usage patterns stored in the database.


Features

  • Automatically blocks overused views for a customizable time window
  • Super easy to use with just a decorator!
  • Mininfing and Cache Your HTML / CSS / JS / Images / Fonts
  • Image compressor with size argument ( e.g www.example.com/cdn/images/example.png?size=250 )

Installation

pip install django-secux

Then add it to your Django project:

# settings.py
INSTALLED_APPS = [
    ...
    'django_secux',
]

# if you want Minify
MIDDLEWARE = [
    ...
    'django_secux.middleware.Minify',
]

and if you using Fake CDN, add this to urls.py main:

from django_secux.views import cdn_serve

urlpatterns = [
    ...
    path('cdn/<path:file_path>', cdn_serve, name='cdn'),
]

Apply migrations:

python manage.py makemigrations django_secux
python manage.py migrate

Usage

Just decorate your heavy or sensitive views with @ai_ratelimit():

from django_secux.decorator import ai_ratelimit

@ai_ratelimit()
def my_view(request):
    return HttpResponse("Hello, world!")

This view will now be monitored. If accessed too frequently within a day, it will be blocked for 5 minutes.

And for Fake CDN use /cdn before static url. e.g:

<img src="/cdn{% static 'example.png' %}">

and for manage image resoulation, add size argument after static url. e.g:

<img src="/cdn{% static 'example.png' %}?size=128">

[!NOTE] you can use Fake CDN for images - fonts - css - js as static file.

[!Warning] size in Fake CDN only for images!


Customization & Configuration

for block messages:

SECUX_MESSAGES = {
    "blocked": "This page is temporarily blocked. Please try again later.",
    "rate_exceeded": "Rate limit exceeded. This page is blocked temporarily.",
}

and for static/media files:

SECUX_STATIC = [
    STATIC_ROOT,
    *STATICFILES_DIRS,
    ...
    os.path.join(BASE_DIR, "media/uploads"),
    os.path.join(BASE_DIR, "protected/images"),
]

Ideas or Issues?

Feel free to contribute, fork or submit issues on GitHub.

Let's keep Django apps safe and clean!

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

django_secux-0.1.99.tar.gz (7.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

django_secux-0.1.99-py3-none-any.whl (7.9 kB view details)

Uploaded Python 3

File details

Details for the file django_secux-0.1.99.tar.gz.

File metadata

  • Download URL: django_secux-0.1.99.tar.gz
  • Upload date:
  • Size: 7.2 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.12.9

File hashes

Hashes for django_secux-0.1.99.tar.gz
Algorithm Hash digest
SHA256 c2a63244d25a91cf8585acd600b9c2a3cb64642e93305b0c07b1fae828c3158c
MD5 8891ed55d5f716daa34c728b9f4d1097
BLAKE2b-256 5face7288fee880ced641d1f992aeec9ddc2b639623b5cd404d2aedc1d00b597

See more details on using hashes here.

File details

Details for the file django_secux-0.1.99-py3-none-any.whl.

File metadata

  • Download URL: django_secux-0.1.99-py3-none-any.whl
  • Upload date:
  • Size: 7.9 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.12.9

File hashes

Hashes for django_secux-0.1.99-py3-none-any.whl
Algorithm Hash digest
SHA256 3c58e36bd5fb43ce4a364bd3ca850e503f32c4c18953037821fdabb8ec9b0645
MD5 07dc3105d88c59fa6a8feff1bf8a33cc
BLAKE2b-256 8db02795873f709f8204dc15da9a75c850003a5b773bcf34eaccb7943ebbafd3

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page