Using Piston auth in DRF views. Replacing API views.
[wolnelektury.git] / src / api / urls.py
1 # -*- coding: utf-8 -*-
2 # This file is part of Wolnelektury, licensed under GNU Affero GPLv3 or later.
3 # Copyright © Fundacja Nowoczesna Polska. See NOTICE for more information.
4 #
5 from django.conf.urls import url, include
6 from django.views.decorators.csrf import csrf_exempt
7 from django.views.generic import TemplateView
8 from piston.authentication import OAuthAuthentication, oauth_access_token, oauth_request_token
9 from piston.resource import Resource
10 import catalogue.views
11 from api import handlers
12 from api.helpers import CsrfExemptResource
13 from api.piston_patch import oauth_user_auth
14 from . import views
15
16 auth = OAuthAuthentication(realm="Wolne Lektury")
17
18
19 class DjangoAuthentication(object):
20     """
21     Authentication handler that always returns
22     True, so no authentication is needed, nor
23     initiated (`challenge` is missing.)
24     """
25     def is_authenticated(self, request):
26         return request.user.is_authenticated()
27
28     def challenge(self):
29         from django.http import HttpResponse
30         resp = HttpResponse("Authorization Required")
31         resp.status_code = 401
32         return resp
33
34
35 def auth_resource(handler):
36     from django.conf import settings
37     if settings.DEBUG:
38         django_auth = DjangoAuthentication()
39         return CsrfExemptResource(handler=handler, authentication=django_auth)
40     return CsrfExemptResource(handler=handler, authentication=auth)
41
42
43 book_list_resource = auth_resource(handler=handlers.BooksHandler)
44 ebook_list_resource = Resource(handler=handlers.EBooksHandler)
45 # book_list_resource = Resource(handler=handlers.BooksHandler)
46 filter_book_resource = auth_resource(handler=handlers.FilterBooksHandler)
47
48 preview_resource = Resource(handler=handlers.BookPreviewHandler)
49
50 shelf_resource = auth_resource(handler=handlers.UserShelfHandler)
51
52 like_resource = auth_resource(handler=handlers.UserLikeHandler)
53
54 tag_list_resource = Resource(handler=handlers.TagsHandler)
55 tag_resource = Resource(handler=handlers.TagDetailHandler)
56
57 fragment_resource = Resource(handler=handlers.FragmentDetailHandler)
58 fragment_list_resource = Resource(handler=handlers.FragmentsHandler)
59
60 picture_resource = auth_resource(handler=handlers.PictureHandler)
61
62 blog_resource = Resource(handler=handlers.BlogEntryHandler)
63
64
65 tags_re = r'^(?P<tags>(?:(?:[a-z0-9-]+/){2}){0,6})'
66 paginate_re = r'(?:after/(?P<after>[a-z0-9-]+)/)?(?:count/(?P<count>[0-9]+)/)?$'
67
68
69 urlpatterns = [
70     url(r'^oauth/request_token/$', oauth_request_token),
71     url(r'^oauth/authorize/$', oauth_user_auth, name='oauth_user_auth'),
72     url(r'^oauth/access_token/$', csrf_exempt(oauth_access_token)),
73
74     url(r'^$', TemplateView.as_view(template_name='api/main.html'), name='api'),
75
76     # These are the new ones.
77     url(r'^', include('catalogue.api.urls')),
78
79     # info boxes (used by mobile app)
80     url(r'book/(?P<book_id>\d*?)/info\.html$', catalogue.views.book_info),
81     url(r'tag/(?P<tag_id>\d*?)/info\.html$', catalogue.views.tag_info),
82
83     # reading data
84     url(r'^reading/(?P<slug>[a-z0-9-]+)/$', views.BookUserDataView.as_view(), name='api_reading'),
85     url(r'^reading/(?P<slug>[a-z0-9-]+)/(?P<state>[a-z]+)/$', views.BookUserDataView.as_view(), name='api_reading'),
86     url(r'^shelf/(?P<state>[a-z]+)/$', shelf_resource, name='api_shelf'),
87     url(r'^username/$', views.UserView.as_view(), name='api_username'),
88
89     url(r'^like/(?P<slug>[a-z0-9-]+)/$', like_resource, name='api_like'),
90
91     # objects details
92     url(r'^(?P<category>[a-z0-9-]+)/(?P<slug>[a-z0-9-]+)/$',
93         tag_resource, name="api_tag"),
94     url(r'^books/(?P<book>[a-z0-9-]+)/fragments/(?P<anchor>[a-z0-9-]+)/$',
95         fragment_resource, name="api_fragment"),
96
97     # books by tags
98     url(tags_re + r'books/' + paginate_re,
99         book_list_resource, name='api_book_list'),
100     url(tags_re + r'ebooks/' + paginate_re,
101         ebook_list_resource, name='api_ebook_list'),
102     url(tags_re + r'parent_books/' + paginate_re,
103         book_list_resource, {"top_level": True}, name='api_parent_book_list'),
104     url(tags_re + r'parent_ebooks/' + paginate_re,
105         ebook_list_resource, {"top_level": True}, name='api_parent_ebook_list'),
106     url(tags_re + r'audiobooks/' + paginate_re,
107         book_list_resource, {"audiobooks": True}, name='api_audiobook_list'),
108     url(tags_re + r'daisy/' + paginate_re,
109         book_list_resource, {"daisy": True}, name='api_daisy_list'),
110
111     url(r'^recommended/' + paginate_re, book_list_resource, {"recommended": True}, name='api_recommended_list'),
112     url(r'^newest/$', book_list_resource, {"newest": True, "top_level": True, "count": 20}, name='api_newest_list'),
113     url(r'^filter-books/$', filter_book_resource, name='api_filter_books'),
114
115     url(r'^preview/$', preview_resource, name='api_preview'),
116
117     url(r'^pictures/$', picture_resource),
118
119     url(r'^blog/$', blog_resource),
120
121     # fragments by book, tags, themes
122     # this should be paged
123     url(r'^(?P<tags>(?:(?:[a-z0-9-]+/){2}){1,6})fragments/$', fragment_list_resource),
124
125     # tags by category
126     url(r'^(?P<category>[a-z0-9-]+)/$', tag_list_resource, name='api_tag_list'),
127 ]