X-Git-Url: https://git.mdrn.pl/wolnelektury.git/blobdiff_plain/062c5ec3437a944e39b486d36a54a6a11fa332d1..44eab50197af905e0099802c50e37eb8481481c1:/apps/catalogue/views.py diff --git a/apps/catalogue/views.py b/apps/catalogue/views.py index 052537491..2a826d95a 100644 --- a/apps/catalogue/views.py +++ b/apps/catalogue/views.py @@ -12,6 +12,7 @@ from django.contrib.auth.forms import UserCreationForm, AuthenticationForm from django.utils import simplejson from django.utils.functional import Promise from django.utils.encoding import force_unicode +from django.views.decorators.cache import cache_page from catalogue import models from catalogue import forms @@ -97,6 +98,10 @@ def book_list(request): def tagged_object_list(request, tags=''): + # Prevent DoS attacks on our database + if len(tags.split('/')) > 6: + raise Http404 + try: tags = models.Tag.get_tag_list(tags) except models.Tag.DoesNotExist: @@ -112,6 +117,9 @@ def tagged_object_list(request, tags=''): related_tags = models.Tag.objects.related_for_model(tags, model, counts=True, extra={'where': [extra_where]}) categories = split_tags(related_tags) + if not theme_is_set: + model=models.Book.objects.filter(parent=None) + return newtagging_views.tagged_object_list( request, tag_model=models.Tag, @@ -126,12 +134,27 @@ def book_detail(request, slug): book = get_object_or_404(models.Book, slug=slug) tags = list(book.tags.filter(~Q(category='set'))) categories = split_tags(tags) + book_children = book.children.all().order_by('parent_number') form = forms.SearchForm() return render_to_response('catalogue/book_detail.html', locals(), context_instance=RequestContext(request)) +@cache_page(60 * 60) +def book_text(request, slug): + book = get_object_or_404(models.Book, slug=slug) + book_themes = {} + for fragment in book.fragments.all(): + for theme in fragment.tags.filter(category='theme'): + book_themes.setdefault(theme, []).append(fragment) + + book_themes = book_themes.items() + book_themes.sort(key=lambda s: s[0].sort_key) + return render_to_response('catalogue/book_text.html', locals(), + context_instance=RequestContext(request)) + + def logout_then_redirect(request): auth.logout(request) return HttpResponseRedirect(request.GET.get('next', '/'))