1 # This file is part of FNP-Redakcja, licensed under GNU Affero GPLv3 or later.
2 # Copyright © Fundacja Nowoczesna Polska. See NOTICE for more information.
4 from collections import defaultdict
5 from datetime import datetime, date, timedelta
8 from urllib.parse import quote_plus, unquote, urlsplit, urlunsplit
10 from django.conf import settings
11 from django.contrib import auth
12 from django.contrib.auth.models import User
13 from django.contrib.auth.decorators import login_required, permission_required
14 from django.urls import reverse
15 from django.db.models import Count, Q
16 from django.db import transaction
17 from django import http
18 from django.http import Http404, HttpResponse, HttpResponseForbidden
19 from django.http.response import HttpResponseRedirect
20 from django.shortcuts import get_object_or_404, render
21 from django.utils.encoding import iri_to_uri
22 from django.utils.translation import gettext_lazy as _
23 from django.views.decorators.http import require_POST
24 from django_cas_ng.decorators import user_passes_test
26 from apiclient import api_call, NotAuthorizedError
29 from .helpers import active_tab
30 from .models import (Book, Chunk, Image, BookPublishRecord,
31 ChunkPublishRecord, ImagePublishRecord, Project)
32 from fileupload.views import UploadView
35 # Quick hack around caching problems, TODO: use ETags
37 from django.views.decorators.cache import never_cache
39 logger = logging.getLogger("fnp.documents")
44 def document_list(request):
45 return render(request, 'documents/document_list.html')
50 def image_list(request, user=None):
51 return render(request, 'documents/image_list.html')
55 def user(request, username):
56 user = get_object_or_404(User, username=username)
57 return render(request, 'documents/user_page.html', {"viewed_user": user})
64 last_books = sorted(request.session.get("wiki_last_books", {}).items(),
65 key=lambda x: x[1]['time'], reverse=True)
66 for k, v in last_books:
67 v['time'] = datetime.fromtimestamp(v['time'])
69 resp = api_call(request.user, 'username/')
70 except NotAuthorizedError:
73 wllogin = resp['username']
75 return render(request, 'documents/my_page.html', {
76 'last_books': last_books,
84 return render(request, 'documents/user_list.html', {
85 'users': User.objects.all().annotate(count=Count('chunk')).order_by(
86 '-count', 'last_name', 'first_name'),
90 @active_tab('activity')
91 def activity(request, isodate=None):
94 day = helpers.parse_isodate(isodate)
101 next_day = day + timedelta(1)
102 prev_day = day - timedelta(1)
104 return render(request, 'documents/activity.html', locals())
108 def logout_then_redirect(request):
110 return http.HttpResponseRedirect(quote_plus(request.GET.get('next', '/'), safe='/?='))
113 @permission_required('documents.add_book')
114 @active_tab('create')
115 def create_missing(request, slug=None):
118 slug = slug.replace(' ', '-')
120 if request.method == "POST":
121 form = forms.DocumentCreateForm(request.POST, request.FILES)
124 if request.user.is_authenticated:
125 creator = request.user
129 text=form.cleaned_data['text'],
131 slug=form.cleaned_data['slug'],
132 title=form.cleaned_data['title'],
133 gallery=form.cleaned_data['gallery'],
136 return http.HttpResponseRedirect(reverse("documents_book", args=[book.slug]))
138 form = forms.DocumentCreateForm(initial={
140 "title": slug.replace('-', ' ').title(),
144 return render(request, "documents/document_create_missing.html", {
152 @permission_required('documents.add_book')
153 @active_tab('upload')
155 if request.method == "POST":
156 form = forms.DocumentsUploadForm(request.POST, request.FILES)
158 from slugify import slugify
160 if request.user.is_authenticated:
161 creator = request.user
165 zip = form.cleaned_data['zip']
170 existing = [book.slug for book in Book.objects.all()]
171 for filename in zip.namelist():
172 if filename[-1] == '/':
174 title = os.path.basename(filename)[:-4]
175 slug = slugify(title)
176 if not (slug and filename.endswith('.xml')):
177 skipped_list.append(filename)
179 error_list.append((filename, slug, _('Slug already used for %s' % slugs[slug])))
180 elif slug in existing:
181 error_list.append((filename, slug, _('Slug already used in repository.')))
184 zip.read(filename).decode('utf-8') # test read
185 ok_list.append((filename, slug, title))
186 except UnicodeDecodeError:
187 error_list.append((filename, title, _('File should be UTF-8 encoded.')))
188 slugs[slug] = filename
191 for filename, slug, title in ok_list:
193 text=zip.read(filename).decode('utf-8'),
199 return render(request, "documents/document_upload.html", {
202 "skipped_list": skipped_list,
203 "error_list": error_list,
208 form = forms.DocumentsUploadForm()
210 return render(request, "documents/document_upload.html", {
217 def serve_xml(request, book, slug):
218 if not book.accessible(request):
219 return HttpResponseForbidden("Not authorized.")
220 xml = book.materialize(publishable=True)
221 response = http.HttpResponse(xml, content_type='application/xml')
222 response['Content-Disposition'] = 'attachment; filename=%s.xml' % slug
227 def book_xml(request, slug):
228 book = get_object_or_404(Book, slug=slug)
229 return serve_xml(request, book, slug)
233 def book_xml_dc(request, slug):
234 book = get_object_or_404(Book, catalogue_book_id=slug)
235 return serve_xml(request, book, slug)
239 def book_txt(request, slug):
240 book = get_object_or_404(Book, slug=slug)
241 if not book.accessible(request):
242 return HttpResponseForbidden("Not authorized.")
244 doc = book.wldocument()
245 text = doc.as_text().get_bytes()
246 response = http.HttpResponse(text, content_type='text/plain')
247 response['Content-Disposition'] = 'attachment; filename=%s.txt' % slug
252 def book_html(request, slug):
253 book = get_object_or_404(Book, slug=slug)
254 if not book.accessible(request):
255 return HttpResponseForbidden("Not authorized.")
257 doc = book.wldocument(parse_dublincore=False)
258 html = doc.as_html(options={'gallery': "'%s'" % book.gallery_url()})
260 html = html.get_bytes().decode('utf-8') if html is not None else ''
261 # response = http.HttpResponse(html, content_type='text/html')
264 # for fragment in book.fragments.all().iterator():
265 # for theme in fragment.tags.filter(category='theme').iterator():
266 # book_themes.setdefault(theme, []).append(fragment)
268 # book_themes = book_themes.items()
269 # book_themes.sort(key=lambda s: s[0].sort_key)
270 return render(request, 'documents/book_text.html', locals())
275 def book_pdf(request, slug, mobile=False):
276 book = get_object_or_404(Book, slug=slug)
277 if not book.accessible(request):
278 return HttpResponseForbidden("Not authorized.")
280 # TODO: move to celery
281 doc = book.wldocument()
282 # TODO: error handling
283 customizations = ['26pt', 'nothemes', 'nomargins', 'notoc'] if mobile else None
284 pdf_file = doc.as_pdf(cover=True, base_url=request.build_absolute_uri(book.gallery_path()), customizations=customizations)
285 from .ebook_utils import serve_file
286 return serve_file(pdf_file.get_filename(),
287 book.slug + '.pdf', 'application/pdf')
292 def book_epub(request, slug):
293 book = get_object_or_404(Book, slug=slug)
294 if not book.accessible(request):
295 return HttpResponseForbidden("Not authorized.")
297 # TODO: move to celery
298 doc = book.wldocument(librarian2=True)
299 # TODO: error handling
301 from librarian.builders import EpubBuilder
303 base_url='file://' + book.gallery_path() + '/'
304 ).build(doc).get_bytes()
305 response = HttpResponse(content_type='application/epub+zip')
306 response['Content-Disposition'] = 'attachment; filename=%s' % book.slug + '.epub'
313 def book_mobi(request, slug):
314 book = get_object_or_404(Book, slug=slug)
315 if not book.accessible(request):
316 return HttpResponseForbidden("Not authorized.")
318 # TODO: move to celery
319 doc = book.wldocument(librarian2=True)
320 # TODO: error handling
321 from librarian.builders import MobiBuilder
323 base_url='file://' + book.gallery_path() + '/'
324 ).build(doc).get_bytes()
325 response = HttpResponse(content_type='application/x-mobipocket-ebook')
326 response['Content-Disposition'] = 'attachment; filename=%s' % book.slug + '.mobi'
332 def revision(request, slug, chunk=None):
334 doc = Chunk.get(slug, chunk)
335 except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
337 if not doc.book.accessible(request):
338 return HttpResponseForbidden("Not authorized.")
339 return http.HttpResponse(str(doc.revision()))
342 def book(request, slug):
343 book = get_object_or_404(Book, slug=slug)
344 if not book.accessible(request):
345 return HttpResponseForbidden("Not authorized.")
347 if request.user.has_perm('documents.change_book'):
348 if request.method == "POST":
349 form = forms.BookForm(request.POST, instance=book)
352 return http.HttpResponseRedirect(book.get_absolute_url())
354 form = forms.BookForm(instance=book)
355 publish_options_form = forms.PublishOptionsForm()
358 form = forms.ReadonlyBookForm(instance=book)
359 publish_options_form = forms.PublishOptionsForm()
362 publish_error = book.publishable_error()
363 publishable = publish_error is None
366 doc = book.wldocument(librarian2=True)
370 return render(request, "documents/book_detail.html", {
373 "publishable": publishable,
374 "publishable_error": publish_error,
376 "publish_options_form": publish_options_form,
377 "editable": editable,
381 def image(request, slug):
382 image = get_object_or_404(Image, slug=slug)
383 if not image.accessible(request):
384 return HttpResponseForbidden("Not authorized.")
386 if request.user.has_perm('documents.change_image'):
387 if request.method == "POST":
388 form = forms.ImageForm(request.POST, instance=image)
391 return http.HttpResponseRedirect(image.get_absolute_url())
393 form = forms.ImageForm(instance=image)
396 form = forms.ReadonlyImageForm(instance=image)
399 publish_error = image.publishable_error()
400 publishable = publish_error is None
402 return render(request, "documents/image_detail.html", {
404 "publishable": publishable,
405 "publishable_error": publish_error,
407 "editable": editable,
411 @permission_required('documents.add_chunk')
412 def chunk_add(request, slug, chunk):
414 doc = Chunk.get(slug, chunk)
415 except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
417 if not doc.book.accessible(request):
418 return HttpResponseForbidden("Not authorized.")
420 if request.method == "POST":
421 form = forms.ChunkAddForm(request.POST, instance=doc)
423 if request.user.is_authenticated:
424 creator = request.user
427 doc.split(creator=creator,
428 slug=form.cleaned_data['slug'],
429 title=form.cleaned_data['title'],
430 gallery_start=form.cleaned_data['gallery_start'],
431 user=form.cleaned_data['user'],
432 stage=form.cleaned_data['stage']
435 return http.HttpResponseRedirect(doc.book.get_absolute_url())
437 form = forms.ChunkAddForm(initial={
438 "slug": str(doc.number + 1),
439 "title": "cz. %d" % (doc.number + 1, ),
442 return render(request, "documents/chunk_add.html", {
449 def chunk_edit(request, slug, chunk):
451 doc = Chunk.get(slug, chunk)
452 except (Chunk.MultipleObjectsReturned, Chunk.DoesNotExist):
454 if not doc.book.accessible(request):
455 return HttpResponseForbidden("Not authorized.")
457 if request.method == "POST":
458 form = forms.ChunkForm(request.POST, instance=doc)
461 go_next = request.GET.get('next', None)
463 go_next = quote_plus(unquote(iri_to_uri(go_next)), safe='/?=&')
465 go_next = doc.book.get_absolute_url()
466 return http.HttpResponseRedirect(go_next)
468 form = forms.ChunkForm(instance=doc)
470 referer = request.META.get('HTTP_REFERER')
472 parts = urlsplit(referer)
473 parts = ['', ''] + list(parts[2:])
474 go_next = quote_plus(urlunsplit(parts))
478 return render(request, "documents/chunk_edit.html", {
488 def chunk_mass_edit(request):
489 ids = [int(i) for i in request.POST.get('ids').split(',') if i.strip()]
490 chunks = list(Chunk.objects.filter(id__in=ids))
492 stage = request.POST.get('stage')
495 stage = Chunk.tag_model.objects.get(slug=stage)
496 except Chunk.DoesNotExist as e:
499 for c in chunks: c.stage = stage
501 username = request.POST.get('user')
502 logger.info("username: %s" % username)
503 logger.info(request.POST)
506 user = User.objects.get(username=username)
507 except User.DoesNotExist as e:
510 for c in chunks: c.user = user
512 project_id = request.POST.get('project')
515 project = Project.objects.get(pk=int(project_id))
516 except (Project.DoesNotExist, ValueError) as e:
520 book.project = project
523 for c in chunks: c.save()
525 return HttpResponse("", content_type="text/plain")
531 def image_mass_edit(request):
532 ids = map(int, filter(lambda i: i.strip()!='', request.POST.get('ids').split(',')))
533 images = map(lambda i: Image.objects.get(id=i), ids)
535 stage = request.POST.get('stage')
538 stage = Image.tag_model.objects.get(slug=stage)
539 except Image.DoesNotExist as e:
542 for c in images: c.stage = stage
544 username = request.POST.get('user')
545 logger.info("username: %s" % username)
546 logger.info(request.POST)
549 user = User.objects.get(username=username)
550 except User.DoesNotExist as e:
553 for c in images: c.user = user
555 project_id = request.POST.get('project')
558 project = Project.objects.get(pk=int(project_id))
559 except (Project.DoesNotExist, ValueError) as e:
564 for c in images: c.save()
566 return HttpResponse("", content_type="text/plain")
569 @permission_required('documents.change_book')
570 def book_append(request, slug):
571 book = get_object_or_404(Book, slug=slug)
572 if not book.accessible(request):
573 return HttpResponseForbidden("Not authorized.")
575 if request.method == "POST":
576 form = forms.BookAppendForm(book, request.POST)
578 append_to = form.cleaned_data['append_to']
579 append_to.append(book)
580 return http.HttpResponseRedirect(append_to.get_absolute_url())
582 form = forms.BookAppendForm(book)
583 return render(request, "documents/book_append_to.html", {
593 def publish(request, slug):
594 form = forms.PublishOptionsForm(request.POST)
596 days = form.cleaned_data['days']
597 beta = form.cleaned_data['beta']
598 hidden = form.cleaned_data['hidden']
603 book = get_object_or_404(Book, slug=slug)
604 if not book.accessible(request):
605 return HttpResponseForbidden("Not authorized.")
608 protocol = 'https://' if request.is_secure() else 'http://'
609 book.publish(request.user, host=protocol + request.get_host(), days=days, beta=beta, hidden=hidden)
610 except NotAuthorizedError:
611 return http.HttpResponseRedirect(reverse('apiclient_oauth' if not beta else 'apiclient_beta_oauth'))
612 except BaseException as e:
613 return http.HttpResponse(repr(e))
615 return http.HttpResponseRedirect(book.get_absolute_url())
620 def publish_image(request, slug):
621 image = get_object_or_404(Image, slug=slug)
622 if not image.accessible(request):
623 return HttpResponseForbidden("Not authorized.")
626 image.publish(request.user)
627 except NotAuthorizedError:
628 return http.HttpResponseRedirect(reverse('apiclient_oauth'))
629 except BaseException as e:
630 return http.HttpResponse(e)
632 return http.HttpResponseRedirect(image.get_absolute_url())
635 class GalleryView(UploadView):
636 def get_object(self, request, slug):
637 book = get_object_or_404(Book, slug=slug)
642 def breadcrumbs(self):
644 (_('books'), reverse('documents_document_list')),
645 (self.object.title, self.object.get_absolute_url()),
646 (_('scan gallery'),),
649 def get_directory(self):
650 return "%s%s/" % (settings.IMAGE_DIR, self.object.gallery)
653 def active_users_list(request, csv=False):
654 year = int(request.GET.get('y', date.today().year))
655 by_user = defaultdict(lambda: 0)
656 by_email = defaultdict(lambda: 0)
657 names_by_email = defaultdict(set)
658 for change_model in (Chunk.change_model, Image.change_model):
659 for c in change_model.objects.filter(
660 created_at__year=year).order_by(
661 'author', 'author_email', 'author_name').values(
662 'author', 'author_name', 'author_email').annotate(
663 c=Count('author'), ce=Count('author_email')).distinct():
665 by_user[c['author']] += c['c']
667 by_email[c['author_email']] += c['ce']
668 if (c['author_name'] or '').strip():
669 names_by_email[c['author_email']].add(c['author_name'])
670 for user in User.objects.filter(pk__in=by_user):
671 by_email[user.email] += by_user[user.pk]
672 names_by_email[user.email].add("%s %s" % (user.first_name, user.last_name))
675 for email, count in by_email.items():
676 active_users.append((email, names_by_email[email], count))
677 active_users.sort(key=lambda x: -x[2])
679 return http.HttpResponse(
682 (str(x[2]), x[0], ','.join(x[1]))
684 for x in active_users
686 content_type='text/csv',
688 'Content-Disposition': f'attachment; filename=redakcja-{year}.csv',
692 return render(request, 'documents/active_users_list.html', {
693 'users': active_users,
698 @user_passes_test(lambda u: u.is_superuser)
699 def mark_final(request):
700 if request.method == 'POST':
701 form = forms.MarkFinalForm(data=request.POST)
704 return HttpResponseRedirect(reverse('mark_final_completed'))
706 form = forms.MarkFinalForm()
707 return render(request, 'documents/mark_final.html', {'form': form})
710 def mark_final_completed(request):
711 return render(request, 'documents/mark_final_completed.html')