1 # This file is part of FNP-Redakcja, licensed under GNU Affero GPLv3 or later.
 
   2 # Copyright © Fundacja Nowoczesna Polska. See NOTICE for more information.
 
   4 from collections import defaultdict
 
   5 from datetime import datetime, date, timedelta
 
   8 from urllib.parse import unquote, urlsplit, urlunsplit
 
  10 from django.conf import settings
 
  11 from django.contrib import auth
 
  12 from django.contrib.auth.models import User
 
  13 from django.contrib.auth.decorators import login_required, permission_required
 
  14 from django.urls import reverse
 
  15 from django.db.models import Count, Q
 
  16 from django.db import transaction
 
  17 from django import http
 
  18 from django.http import Http404, HttpResponse, HttpResponseForbidden
 
  19 from django.http.response import HttpResponseRedirect
 
  20 from django.shortcuts import get_object_or_404, render
 
  21 from django.utils.encoding import iri_to_uri
 
  22 from django.utils.http import urlquote_plus
 
  23 from django.utils.translation import ugettext_lazy as _
 
  24 from django.views.decorators.http import require_POST
 
  25 from django_cas_ng.decorators import user_passes_test
 
  27 from apiclient import NotAuthorizedError
 
  28 from catalogue import forms
 
  29 from catalogue import helpers
 
  30 from catalogue.helpers import active_tab
 
  31 from catalogue.models import (Book, Chunk, Image, BookPublishRecord, 
 
  32         ChunkPublishRecord, ImagePublishRecord, Project)
 
  33 from fileupload.views import UploadView
 
  36 # Quick hack around caching problems, TODO: use ETags
 
  38 from django.views.decorators.cache import never_cache
 
  40 logger = logging.getLogger("fnp.catalogue")
 
  45 def document_list(request):
 
  46     return render(request, 'catalogue/document_list.html')
 
  51 def image_list(request, user=None):
 
  52     return render(request, 'catalogue/image_list.html')
 
  56 def user(request, username):
 
  57     user = get_object_or_404(User, username=username)
 
  58     return render(request, 'catalogue/user_page.html', {"viewed_user": user})
 
  65     last_books = sorted(request.session.get("wiki_last_books", {}).items(),
 
  66         key=lambda x: x[1]['time'], reverse=True)
 
  67     for k, v in last_books:
 
  68         v['time'] = datetime.fromtimestamp(v['time'])
 
  69     return render(request, 'catalogue/my_page.html', {
 
  70         'last_books': last_books,
 
  77     return render(request, 'catalogue/user_list.html', {
 
  78         'users': User.objects.all().annotate(count=Count('chunk')).order_by(
 
  79             '-count', 'last_name', 'first_name'),
 
  83 @active_tab('activity')
 
  84 def activity(request, isodate=None):
 
  87         day = helpers.parse_isodate(isodate)
 
  94         next_day = day + timedelta(1)
 
  95     prev_day = day - timedelta(1)
 
  97     return render(request, 'catalogue/activity.html', locals())
 
 101 def logout_then_redirect(request):
 
 103     return http.HttpResponseRedirect(urlquote_plus(request.GET.get('next', '/'), safe='/?='))
 
 106 @permission_required('catalogue.add_book')
 
 107 @active_tab('create')
 
 108 def create_missing(request, slug=None):
 
 111     slug = slug.replace(' ', '-')
 
 113     if request.method == "POST":
 
 114         form = forms.DocumentCreateForm(request.POST, request.FILES)
 
 117             if request.user.is_authenticated:
 
 118                 creator = request.user
 
 122                 text=form.cleaned_data['text'],
 
 124                 slug=form.cleaned_data['slug'],
 
 125                 title=form.cleaned_data['title'],
 
 126                 gallery=form.cleaned_data['gallery'],
 
 129             return http.HttpResponseRedirect(reverse("catalogue_book", args=[book.slug]))
 
 131         form = forms.DocumentCreateForm(initial={
 
 133                 "title": slug.replace('-', ' ').title(),
 
 137     return render(request, "catalogue/document_create_missing.html", {
 
 145 @permission_required('catalogue.add_book')
 
 146 @active_tab('upload')
 
 148     if request.method == "POST":
 
 149         form = forms.DocumentsUploadForm(request.POST, request.FILES)
 
 151             from slugify import slugify
 
 153             if request.user.is_authenticated:
 
 154                 creator = request.user
 
 158             zip = form.cleaned_data['zip']
 
 163             existing = [book.slug for book in Book.objects.all()]
 
 164             for filename in zip.namelist():
 
 165                 if filename[-1] == '/':
 
 167                 title = os.path.basename(filename)[:-4]
 
 168                 slug = slugify(title)
 
 169                 if not (slug and filename.endswith('.xml')):
 
 170                     skipped_list.append(filename)
 
 172                     error_list.append((filename, slug, _('Slug already used for %s' % slugs[slug])))
 
 173                 elif slug in existing:
 
 174                     error_list.append((filename, slug, _('Slug already used in repository.')))
 
 177                         zip.read(filename).decode('utf-8') # test read
 
 178                         ok_list.append((filename, slug, title))
 
 179                     except UnicodeDecodeError:
 
 180                         error_list.append((filename, title, _('File should be UTF-8 encoded.')))
 
 181                     slugs[slug] = filename
 
 184                 for filename, slug, title in ok_list:
 
 186                         text=zip.read(filename).decode('utf-8'),
 
 192             return render(request, "catalogue/document_upload.html", {
 
 195                 "skipped_list": skipped_list,
 
 196                 "error_list": error_list,
 
 201         form = forms.DocumentsUploadForm()
 
 203     return render(request, "catalogue/document_upload.html", {
 
 210 def serve_xml(request, book, slug):
 
 211     if not book.accessible(request):
 
 212         return HttpResponseForbidden("Not authorized.")
 
 213     xml = book.materialize(publishable=True)
 
 214     response = http.HttpResponse(xml, content_type='application/xml')
 
 215     response['Content-Disposition'] = 'attachment; filename=%s.xml' % slug
 
 220 def book_xml(request, slug):
 
 221     book = get_object_or_404(Book, slug=slug)
 
 222     return serve_xml(request, book, slug)
 
 226 def book_xml_dc(request, slug):
 
 227     book = get_object_or_404(Book, dc_slug=slug)
 
 228     return serve_xml(request, book, slug)
 
 232 def book_txt(request, slug):
 
 233     book = get_object_or_404(Book, slug=slug)
 
 234     if not book.accessible(request):
 
 235         return HttpResponseForbidden("Not authorized.")
 
 237     doc = book.wldocument()
 
 238     text = doc.as_text().get_bytes()
 
 239     response = http.HttpResponse(text, content_type='text/plain')
 
 240     response['Content-Disposition'] = 'attachment; filename=%s.txt' % slug
 
 245 def book_html(request, slug):
 
 246     book = get_object_or_404(Book, slug=slug)
 
 247     if not book.accessible(request):
 
 248         return HttpResponseForbidden("Not authorized.")
 
 250     doc = book.wldocument(parse_dublincore=False)
 
 251     html = doc.as_html(options={'gallery': "'%s'" % book.gallery_url()})
 
 253     html = html.get_bytes() if html is not None else ''
 
 254     # response = http.HttpResponse(html, content_type='text/html')
 
 257     # for fragment in book.fragments.all().iterator():
 
 258     #     for theme in fragment.tags.filter(category='theme').iterator():
 
 259     #         book_themes.setdefault(theme, []).append(fragment)
 
 261     # book_themes = book_themes.items()
 
 262     # book_themes.sort(key=lambda s: s[0].sort_key)
 
 263     return render(request, 'catalogue/book_text.html', locals())
 
 267 def book_pdf(request, slug, mobile=False):
 
 268     book = get_object_or_404(Book, slug=slug)
 
 269     if not book.accessible(request):
 
 270         return HttpResponseForbidden("Not authorized.")
 
 272     # TODO: move to celery
 
 273     doc = book.wldocument()
 
 274     # TODO: error handling
 
 275     customizations = ['26pt', 'nothemes', 'nomargins', 'notoc'] if mobile else None
 
 276     pdf_file = doc.as_pdf(cover=True, ilustr_path=book.gallery_path(), customizations=customizations)
 
 277     from catalogue.ebook_utils import serve_file
 
 278     return serve_file(pdf_file.get_filename(),
 
 279                 book.slug + '.pdf', 'application/pdf')
 
 283 def book_epub(request, slug):
 
 284     book = get_object_or_404(Book, slug=slug)
 
 285     if not book.accessible(request):
 
 286         return HttpResponseForbidden("Not authorized.")
 
 288     # TODO: move to celery
 
 289     doc = book.wldocument()
 
 290     # TODO: error handling
 
 291     epub = doc.as_epub(ilustr_path=book.gallery_path()).get_bytes()
 
 292     response = HttpResponse(content_type='application/epub+zip')
 
 293     response['Content-Disposition'] = 'attachment; filename=%s' % book.slug + '.epub'
 
 299 def book_mobi(request, slug):
 
 300     book = get_object_or_404(Book, slug=slug)
 
 301     if not book.accessible(request):
 
 302         return HttpResponseForbidden("Not authorized.")
 
 304     # TODO: move to celery
 
 305     doc = book.wldocument()
 
 306     # TODO: error handling
 
 307     mobi = doc.as_mobi(ilustr_path=book.gallery_path()).get_bytes()
 
 308     response = HttpResponse(content_type='application/x-mobipocket-ebook')
 
 309     response['Content-Disposition'] = 'attachment; filename=%s' % book.slug + '.mobi'
 
 315 def revision(request, slug, chunk=None):
 
 317         doc = Chunk.get(slug, chunk)
 
 318     except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
 
 320     if not doc.book.accessible(request):
 
 321         return HttpResponseForbidden("Not authorized.")
 
 322     return http.HttpResponse(str(doc.revision()))
 
 325 def book(request, slug):
 
 326     book = get_object_or_404(Book, slug=slug)
 
 327     if not book.accessible(request):
 
 328         return HttpResponseForbidden("Not authorized.")
 
 330     if request.user.has_perm('catalogue.change_book'):
 
 331         if request.method == "POST":
 
 332             form = forms.BookForm(request.POST, instance=book)
 
 335                 return http.HttpResponseRedirect(book.get_absolute_url())
 
 337             form = forms.BookForm(instance=book)
 
 338         publish_options_form = forms.PublishOptionsForm()
 
 341         form = forms.ReadonlyBookForm(instance=book)
 
 342         publish_options_form = forms.PublishOptionsForm()
 
 345     publish_error = book.publishable_error()
 
 346     publishable = publish_error is None
 
 348     return render(request, "catalogue/book_detail.html", {
 
 350         "publishable": publishable,
 
 351         "publishable_error": publish_error,
 
 353         "publish_options_form": publish_options_form,
 
 354         "editable": editable,
 
 358 def image(request, slug):
 
 359     image = get_object_or_404(Image, slug=slug)
 
 360     if not image.accessible(request):
 
 361         return HttpResponseForbidden("Not authorized.")
 
 363     if request.user.has_perm('catalogue.change_image'):
 
 364         if request.method == "POST":
 
 365             form = forms.ImageForm(request.POST, instance=image)
 
 368                 return http.HttpResponseRedirect(image.get_absolute_url())
 
 370             form = forms.ImageForm(instance=image)
 
 373         form = forms.ReadonlyImageForm(instance=image)
 
 376     publish_error = image.publishable_error()
 
 377     publishable = publish_error is None
 
 379     return render(request, "catalogue/image_detail.html", {
 
 381         "publishable": publishable,
 
 382         "publishable_error": publish_error,
 
 384         "editable": editable,
 
 388 @permission_required('catalogue.add_chunk')
 
 389 def chunk_add(request, slug, chunk):
 
 391         doc = Chunk.get(slug, chunk)
 
 392     except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
 
 394     if not doc.book.accessible(request):
 
 395         return HttpResponseForbidden("Not authorized.")
 
 397     if request.method == "POST":
 
 398         form = forms.ChunkAddForm(request.POST, instance=doc)
 
 400             if request.user.is_authenticated:
 
 401                 creator = request.user
 
 404             doc.split(creator=creator,
 
 405                 slug=form.cleaned_data['slug'],
 
 406                 title=form.cleaned_data['title'],
 
 407                 gallery_start=form.cleaned_data['gallery_start'],
 
 408                 user=form.cleaned_data['user'],
 
 409                 stage=form.cleaned_data['stage']
 
 412             return http.HttpResponseRedirect(doc.book.get_absolute_url())
 
 414         form = forms.ChunkAddForm(initial={
 
 415                 "slug": str(doc.number + 1),
 
 416                 "title": "cz. %d" % (doc.number + 1, ),
 
 419     return render(request, "catalogue/chunk_add.html", {
 
 426 def chunk_edit(request, slug, chunk):
 
 428         doc = Chunk.get(slug, chunk)
 
 429     except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
 
 431     if not doc.book.accessible(request):
 
 432         return HttpResponseForbidden("Not authorized.")
 
 434     if request.method == "POST":
 
 435         form = forms.ChunkForm(request.POST, instance=doc)
 
 438             go_next = request.GET.get('next', None)
 
 440                 go_next = urlquote_plus(unquote(iri_to_uri(go_next)), safe='/?=&')
 
 442                 go_next = doc.book.get_absolute_url()
 
 443             return http.HttpResponseRedirect(go_next)
 
 445         form = forms.ChunkForm(instance=doc)
 
 447     referer = request.META.get('HTTP_REFERER')
 
 449         parts = urlsplit(referer)
 
 450         parts = ['', ''] + list(parts[2:])
 
 451         go_next = urlquote_plus(urlunsplit(parts))
 
 455     return render(request, "catalogue/chunk_edit.html", {
 
 465 def chunk_mass_edit(request):
 
 466     ids = [int(i) for i in request.POST.get('ids').split(',') if i.strip()]
 
 467     chunks = list(Chunk.objects.filter(id__in=ids))
 
 469     stage = request.POST.get('stage')
 
 472             stage = Chunk.tag_model.objects.get(slug=stage)
 
 473         except Chunk.DoesNotExist as e:
 
 476         for c in chunks: c.stage = stage
 
 478     username = request.POST.get('user')
 
 479     logger.info("username: %s" % username)
 
 480     logger.info(request.POST)
 
 483             user = User.objects.get(username=username)
 
 484         except User.DoesNotExist as e:
 
 487         for c in chunks: c.user = user
 
 489     project_id = request.POST.get('project')
 
 492             project = Project.objects.get(pk=int(project_id))
 
 493         except (Project.DoesNotExist, ValueError) as e:
 
 497             book.project = project
 
 500     for c in chunks: c.save()
 
 502     return HttpResponse("", content_type="text/plain")
 
 508 def image_mass_edit(request):
 
 509     ids = map(int, filter(lambda i: i.strip()!='', request.POST.get('ids').split(',')))
 
 510     images = map(lambda i: Image.objects.get(id=i), ids)
 
 512     stage = request.POST.get('stage')
 
 515             stage = Image.tag_model.objects.get(slug=stage)
 
 516         except Image.DoesNotExist as e:
 
 519         for c in images: c.stage = stage
 
 521     username = request.POST.get('user')
 
 522     logger.info("username: %s" % username)
 
 523     logger.info(request.POST)
 
 526             user = User.objects.get(username=username)
 
 527         except User.DoesNotExist as e:
 
 530         for c in images: c.user = user
 
 532     project_id = request.POST.get('project')
 
 535             project = Project.objects.get(pk=int(project_id))
 
 536         except (Project.DoesNotExist, ValueError) as e:
 
 541     for c in images: c.save()
 
 543     return HttpResponse("", content_type="text/plain")
 
 546 @permission_required('catalogue.change_book')
 
 547 def book_append(request, slug):
 
 548     book = get_object_or_404(Book, slug=slug)
 
 549     if not book.accessible(request):
 
 550         return HttpResponseForbidden("Not authorized.")
 
 552     if request.method == "POST":
 
 553         form = forms.BookAppendForm(book, request.POST)
 
 555             append_to = form.cleaned_data['append_to']
 
 556             append_to.append(book)
 
 557             return http.HttpResponseRedirect(append_to.get_absolute_url())
 
 559         form = forms.BookAppendForm(book)
 
 560     return render(request, "catalogue/book_append_to.html", {
 
 570 def publish(request, slug):
 
 571     form = forms.PublishOptionsForm(request.POST)
 
 573         days = form.cleaned_data['days']
 
 574         beta = form.cleaned_data['beta']
 
 578     book = get_object_or_404(Book, slug=slug)
 
 579     if not book.accessible(request):
 
 580         return HttpResponseForbidden("Not authorized.")
 
 583         protocol = 'https://' if request.is_secure() else 'http://'
 
 584         book.publish(request.user, host=protocol + request.get_host(), days=days, beta=beta)
 
 585     except NotAuthorizedError:
 
 586         return http.HttpResponseRedirect(reverse('apiclient_oauth' if not beta else 'apiclient_beta_oauth'))
 
 587     except BaseException as e:
 
 588         return http.HttpResponse(repr(e))
 
 590         return http.HttpResponseRedirect(book.get_absolute_url())
 
 595 def publish_image(request, slug):
 
 596     image = get_object_or_404(Image, slug=slug)
 
 597     if not image.accessible(request):
 
 598         return HttpResponseForbidden("Not authorized.")
 
 601         image.publish(request.user)
 
 602     except NotAuthorizedError:
 
 603         return http.HttpResponseRedirect(reverse('apiclient_oauth'))
 
 604     except BaseException as e:
 
 605         return http.HttpResponse(e)
 
 607         return http.HttpResponseRedirect(image.get_absolute_url())
 
 610 class GalleryView(UploadView):
 
 611     def get_object(self, request, slug):
 
 612         book = get_object_or_404(Book, slug=slug)
 
 617     def breadcrumbs(self):
 
 619             (_('books'), reverse('catalogue_document_list')),
 
 620             (self.object.title, self.object.get_absolute_url()),
 
 621             (_('scan gallery'),),
 
 624     def get_directory(self):
 
 625         return "%s%s/" % (settings.IMAGE_DIR, self.object.gallery)
 
 628 def active_users_list(request):
 
 629     year = int(request.GET.get('y', date.today().year))
 
 630     by_user = defaultdict(lambda: 0)
 
 631     by_email = defaultdict(lambda: 0)
 
 632     names_by_email = defaultdict(set)
 
 633     for change_model in (Chunk.change_model, Image.change_model):
 
 634         for c in change_model.objects.filter(
 
 635                 created_at__year=year).order_by(
 
 636                 'author', 'author_email', 'author_name').values(
 
 637                 'author', 'author_name', 'author_email').annotate(
 
 638                 c=Count('author'), ce=Count('author_email')).distinct():
 
 640                 by_user[c['author']] += c['c']
 
 642                 by_email[c['author_email']] += c['ce']
 
 643                 if (c['author_name'] or '').strip():
 
 644                     names_by_email[c['author_email']].add(c['author_name'])
 
 645     for user in User.objects.filter(pk__in=by_user):
 
 646         by_email[user.email] += by_user[user.pk]
 
 647         names_by_email[user.email].add("%s %s" % (user.first_name, user.last_name))
 
 650     for email, count in by_email.items():
 
 651         active_users.append((email, names_by_email[email], count))
 
 652     active_users.sort(key=lambda x: -x[2])
 
 653     return render(request, 'catalogue/active_users_list.html', {
 
 654         'users': active_users,
 
 659 @user_passes_test(lambda u: u.is_superuser)
 
 660 def mark_final(request):
 
 661     if request.method == 'POST':
 
 662         form = forms.MarkFinalForm(data=request.POST)
 
 665             return HttpResponseRedirect(reverse('mark_final_completed'))
 
 667         form = forms.MarkFinalForm()
 
 668     return render(request, 'catalogue/mark_final.html', {'form': form})
 
 671 def mark_final_completed(request):
 
 672     return render(request, 'catalogue/mark_final_completed.html')