models.py 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557
  1. import hashlib
  2. import math
  3. from random import choice
  4. from path import path
  5. from django.conf import settings
  6. from django.contrib.auth.hashers import (
  7. check_password, make_password, is_password_usable, UNUSABLE_PASSWORD)
  8. from django.core.exceptions import ValidationError
  9. from django.core.mail import EmailMultiAlternatives
  10. from django.db import models, connection, transaction
  11. from django.template import RequestContext
  12. from django.utils import timezone as tz_util
  13. from django.utils.translation import ugettext_lazy as _
  14. from misago.acl.models import Role
  15. from misago.monitor.monitor import Monitor
  16. from misago.security import get_random_string
  17. from misago.settings.settings import Settings as DBSettings
  18. from misago.users.validators import validate_username, validate_password, validate_email
  19. from misago.utils import slugify
  20. class UserManager(models.Manager):
  21. """
  22. User Manager provides us with some additional methods for users
  23. """
  24. def get_blank_user(self):
  25. blank_user = User(
  26. join_date=tz_util.now(),
  27. join_ip='127.0.0.1'
  28. )
  29. return blank_user
  30. def resync_monitor(self, monitor):
  31. monitor['users'] = self.count()
  32. monitor['users_inactive'] = self.filter(activation__gt=0).count()
  33. last_user = self.latest('id')
  34. monitor['last_user'] = last_user.pk
  35. monitor['last_user_name'] = last_user.username
  36. monitor['last_user_slug'] = last_user.username_slug
  37. def create_user(self, username, email, password, timezone=False, ip='127.0.0.1', no_roles=False, activation=0, request=False):
  38. token = ''
  39. if activation > 0:
  40. token = get_random_string(12)
  41. try:
  42. db_settings = request.settings
  43. except AttributeError:
  44. db_settings = DBSettings()
  45. if timezone == False:
  46. timezone = db_settings['default_timezone']
  47. # Get first rank
  48. try:
  49. default_rank = Rank.objects.filter(special=0).order_by('order')[0]
  50. except Rank.DoesNotExist:
  51. default_rank = None
  52. # Store user in database
  53. new_user = User(
  54. last_sync=tz_util.now(),
  55. join_date=tz_util.now(),
  56. join_ip=ip,
  57. activation=activation,
  58. token=token,
  59. timezone=timezone,
  60. rank=default_rank,
  61. )
  62. new_user.set_username(username)
  63. new_user.set_email(email)
  64. new_user.set_password(password)
  65. new_user.full_clean()
  66. new_user.default_avatar(db_settings)
  67. new_user.save(force_insert=True)
  68. # Set user roles?
  69. if not no_roles:
  70. new_user.roles.add(Role.objects.get(token='registered'))
  71. new_user.save(force_update=True)
  72. # Load monitor
  73. try:
  74. monitor = request.monitor
  75. except AttributeError:
  76. monitor = Monitor()
  77. # Update forum stats
  78. if activation == 0:
  79. monitor['users'] = int(monitor['users']) + 1
  80. monitor['last_user'] = new_user.pk
  81. monitor['last_user_name'] = new_user.username
  82. monitor['last_user_slug'] = new_user.username_slug
  83. else:
  84. monitor['users_inactive'] = int(monitor['users_inactive']) + 1
  85. # Return new user
  86. return new_user
  87. def get_by_email(self, email):
  88. return self.get(email_hash=hashlib.md5(email).hexdigest())
  89. def filter_overview(self, start, end):
  90. return self.filter(join_date__gte=start).filter(join_date__lte=end)
  91. class User(models.Model):
  92. """
  93. Misago User model
  94. """
  95. username = models.CharField(max_length=255,validators=[validate_username])
  96. username_slug = models.SlugField(max_length=255,unique=True,
  97. error_messages={'unique': _("This user name is already in use by another user.")})
  98. email = models.EmailField(max_length=255,validators=[validate_email])
  99. email_hash = models.CharField(max_length=32,unique=True,
  100. error_messages={'unique': _("This email address is already in use by another user.")})
  101. password = models.CharField(max_length=255)
  102. password_date = models.DateTimeField()
  103. avatar_type = models.CharField(max_length=10,null=True,blank=True)
  104. avatar_image = models.CharField(max_length=255,null=True,blank=True)
  105. signature = models.TextField(null=True,blank=True)
  106. signature_preparsed = models.TextField(null=True,blank=True)
  107. join_date = models.DateTimeField()
  108. join_ip = models.GenericIPAddressField()
  109. join_agent = models.TextField(null=True,blank=True)
  110. last_date = models.DateTimeField(null=True,blank=True)
  111. last_ip = models.GenericIPAddressField(null=True,blank=True)
  112. last_agent = models.TextField(null=True,blank=True)
  113. hide_activity = models.PositiveIntegerField(default=0)
  114. alert_ats = models.PositiveIntegerField(default=0)
  115. allow_pms = models.PositiveIntegerField(default=0)
  116. receive_newsletters = models.BooleanField(default=True)
  117. topics = models.PositiveIntegerField(default=0)
  118. topics_delta = models.IntegerField(default=0)
  119. posts = models.PositiveIntegerField(default=0)
  120. posts_delta = models.IntegerField(default=0)
  121. votes = models.PositiveIntegerField(default=0)
  122. votes_delta = models.IntegerField(default=0)
  123. karma_given_p = models.PositiveIntegerField(default=0)
  124. karma_given_n = models.PositiveIntegerField(default=0)
  125. karma_p = models.PositiveIntegerField(default=0)
  126. karma_n = models.PositiveIntegerField(default=0)
  127. karma_delta = models.IntegerField(default=0)
  128. following = models.PositiveIntegerField(default=0)
  129. followers = models.PositiveIntegerField(default=0)
  130. followers_delta = models.IntegerField(default=0)
  131. score = models.IntegerField(default=0,db_index=True)
  132. rank = models.ForeignKey('Rank',null=True,blank=True,db_index=True,on_delete=models.SET_NULL)
  133. last_sync = models.DateTimeField(null=True,blank=True)
  134. follows = models.ManyToManyField('self',related_name='follows_set',symmetrical=False)
  135. ignores = models.ManyToManyField('self',related_name='ignores_set',symmetrical=False)
  136. title = models.CharField(max_length=255,null=True,blank=True)
  137. last_post = models.DateTimeField(null=True,blank=True)
  138. last_search = models.DateTimeField(null=True,blank=True)
  139. alerts = models.PositiveIntegerField(default=0)
  140. alerts_new = models.PositiveIntegerField(default=0)
  141. activation = models.IntegerField(default=0)
  142. token = models.CharField(max_length=12,null=True,blank=True)
  143. avatar_ban = models.BooleanField(default=False)
  144. avatar_ban_reason_user = models.TextField(null=True,blank=True)
  145. avatar_ban_reason_admin = models.TextField(null=True,blank=True)
  146. signature_ban = models.BooleanField(default=False)
  147. signature_ban_reason_user = models.TextField(null=True,blank=True)
  148. signature_ban_reason_admin = models.TextField(null=True,blank=True)
  149. timezone = models.CharField(max_length=255,default='utc')
  150. roles = models.ManyToManyField(Role)
  151. acl_cache = models.TextField(null=True,blank=True)
  152. objects = UserManager()
  153. ACTIVATION_NONE = 0
  154. ACTIVATION_USER = 1
  155. ACTIVATION_ADMIN = 2
  156. ACTIVATION_CREDENTIALS = 3
  157. statistics_name = _('Users Registrations')
  158. def acl(self):
  159. pass
  160. def is_admin(self):
  161. if self.is_god():
  162. return True
  163. return False #TODO!
  164. def is_god(self):
  165. try:
  166. return self.is_god_cache
  167. except AttributeError:
  168. for user in settings.ADMINS:
  169. if user[1].lower() == self.email:
  170. self.is_god_cache = True
  171. return True
  172. self.is_god_cache = False
  173. return False
  174. def is_anonymous(self):
  175. return False
  176. def is_authenticated(self):
  177. return True
  178. def is_crawler(self):
  179. return False
  180. def is_protected(self):
  181. for role in self.roles.all():
  182. if role.protected:
  183. return True
  184. return False
  185. def lock_avatar(self):
  186. # Kill existing avatar and lock our ability to change it
  187. self.delete_avatar()
  188. self.avatar_ban = True
  189. # Pick new one from _locked gallery
  190. galleries = path(settings.STATICFILES_DIRS[0]).joinpath('avatars').joinpath('_locked')
  191. avatars_list = galleries.files('*.gif')
  192. avatars_list += galleries.files('*.jpg')
  193. avatars_list += galleries.files('*.jpeg')
  194. avatars_list += galleries.files('*.png')
  195. self.avatar_type = 'gallery'
  196. self.avatar_image = '/'.join(path(choice(avatars_list)).splitall()[-2:])
  197. def default_avatar(self, db_settings):
  198. if db_settings['default_avatar'] == 'gallery':
  199. try:
  200. avatars_list = []
  201. try:
  202. # First try, _default path
  203. galleries = path(settings.STATICFILES_DIRS[0]).joinpath('avatars').joinpath('_default')
  204. avatars_list += galleries.files('*.gif')
  205. avatars_list += galleries.files('*.jpg')
  206. avatars_list += galleries.files('*.jpeg')
  207. avatars_list += galleries.files('*.png')
  208. except Exception as e:
  209. pass
  210. # Second try, all paths
  211. if not avatars_list:
  212. avatars_list = []
  213. for directory in path(settings.STATICFILES_DIRS[0]).joinpath('avatars').dirs():
  214. if not directory[-7:] == '_locked':
  215. avatars_list += directory.files('*.gif')
  216. avatars_list += directory.files('*.jpg')
  217. avatars_list += directory.files('*.jpeg')
  218. avatars_list += directory.files('*.png')
  219. if avatars_list:
  220. # Pick random avatar from list
  221. self.avatar_type = 'gallery'
  222. self.avatar_image = '/'.join(path(choice(avatars_list)).splitall()[-2:])
  223. return True
  224. except Exception as e:
  225. pass
  226. self.avatar_type = 'gravatar'
  227. self.avatar_image = None
  228. return True
  229. def delete_avatar(self):
  230. if self.avatar_type == 'upload':
  231. # DELETE OUR AVATAR!!!
  232. pass
  233. def delete(self, *args, **kwargs):
  234. self.delete_avatar()
  235. super(User, self).delete(*args, **kwargs)
  236. def set_username(self, username):
  237. self.username = username.strip()
  238. self.username_slug = slugify(username)
  239. def set_signature(self, signature):
  240. self.signature = signature.strip()
  241. self.signature_preparsed = ''
  242. if self.signature:
  243. import markdown
  244. self.signature_preparsed = markdown.markdown(value, safe_mode='escape', output_format=format)
  245. def is_username_valid(self, e):
  246. try:
  247. raise ValidationError(e.message_dict['username'])
  248. except KeyError:
  249. pass
  250. try:
  251. raise ValidationError(e.message_dict['username_slug'])
  252. except KeyError:
  253. pass
  254. def is_email_valid(self, e):
  255. try:
  256. raise ValidationError(e.message_dict['email'])
  257. except KeyError:
  258. pass
  259. try:
  260. raise ValidationError(e.message_dict['email_hash'])
  261. except KeyError:
  262. pass
  263. def is_password_valid(self, e):
  264. try:
  265. raise ValidationError(e.message_dict['password'])
  266. except KeyError:
  267. pass
  268. def set_email(self, email):
  269. self.email = email.strip().lower()
  270. self.email_hash = hashlib.md5(self.email).hexdigest()
  271. def set_password(self, raw_password):
  272. self.password_date = tz_util.now()
  273. self.password = make_password(raw_password.strip())
  274. def set_last_visit(self, ip, agent, hidden=False):
  275. self.last_date = tz_util.now()
  276. self.last_ip = ip
  277. self.last_agent = agent
  278. self.last_hide = hidden
  279. def check_password(self, raw_password, mobile=False):
  280. """
  281. Returns a boolean of whether the raw_password was correct. Handles
  282. hashing formats behind the scenes.
  283. """
  284. def setter(raw_password):
  285. self.set_password(raw_password)
  286. self.save()
  287. # Is standard password allright?
  288. if check_password(raw_password, self.password, setter):
  289. return True
  290. # Check mobile password?
  291. if mobile:
  292. raw_password = raw_password[:1].lower() + raw_password[1:]
  293. else:
  294. password_reversed = u''
  295. for c in raw_password:
  296. r = c.upper()
  297. if r == c:
  298. r = c.lower()
  299. password_reversed += r
  300. raw_password = password_reversed
  301. return check_password(raw_password, self.password, setter)
  302. def get_avatar(self, size='normal'):
  303. # Get uploaded avatar
  304. if self.avatar_type == 'upload':
  305. return settings.MEDIA_URL + 'avatars/' + self.avatar_image
  306. # Get gallery avatar
  307. if self.avatar_type == 'gallery':
  308. return settings.STATIC_URL + 'avatars/' + self.avatar_image
  309. # No avatar found, get gravatar
  310. if size == 'big':
  311. size = 150;
  312. elif size == 'small':
  313. size = 64;
  314. elif size == 'tiny':
  315. size = 46;
  316. else:
  317. size = 100
  318. return 'http://www.gravatar.com/avatar/%s?s=%s' % (hashlib.md5(self.email).hexdigest(), size)
  319. def get_title(self):
  320. if self.title:
  321. return self.title
  322. if self.rank:
  323. return self.rank.title
  324. return None
  325. def email_user(self, request, template, subject, context={}):
  326. templates = request.theme.get_email_templates(template)
  327. context = RequestContext(request, context)
  328. context['author'] = context['user']
  329. context['user'] = self
  330. # Set message recipient
  331. if settings.DEBUG and settings.CATCH_ALL_EMAIL_ADDRESS:
  332. recipient = settings.CATCH_ALL_EMAIL_ADDRESS
  333. else:
  334. recipient = self.email
  335. # Build and send message
  336. email = EmailMultiAlternatives(subject, templates[0].render(context), settings.EMAIL_HOST_USER, [recipient])
  337. email.attach_alternative(templates[1].render(context), "text/html")
  338. email.send()
  339. def get_activation(self):
  340. activations = ['none', 'user', 'admin', 'credentials']
  341. return activations[self.activation]
  342. def get_date(self):
  343. return self.join_date
  344. def sync_user(self):
  345. print 'SYNCING USER!'
  346. class Guest(object):
  347. """
  348. Misago Guest dummy
  349. """
  350. def is_admin(self):
  351. return False
  352. def is_anonymous(self):
  353. return True
  354. def is_authenticated(self):
  355. return False
  356. def is_crawler(self):
  357. return False
  358. class Crawler(object):
  359. """
  360. Misago Crawler dummy
  361. """
  362. def __init__(self, username):
  363. self.username = username
  364. def is_admin(self):
  365. return False
  366. def is_anonymous(self):
  367. return True
  368. def is_authenticated(self):
  369. return False
  370. def is_crawler(self):
  371. return True
  372. class Rank(models.Model):
  373. """
  374. Misago User Rank
  375. Ranks are ready style/title pairs that are assigned to users either by admin (special ranks) or as result of user activity.
  376. """
  377. name = models.CharField(max_length=255)
  378. name_slug = models.CharField(max_length=255,null=True,blank=True)
  379. description = models.TextField(null=True,blank=True)
  380. style = models.CharField(max_length=255,null=True,blank=True)
  381. title = models.CharField(max_length=255,null=True,blank=True)
  382. special = models.BooleanField(default=False)
  383. as_tab = models.BooleanField(default=False)
  384. order = models.IntegerField(default=0)
  385. criteria = models.CharField(max_length=255,null=True,blank=True)
  386. def __unicode__(self):
  387. return unicode(_(self.name))
  388. def assign_rank(self, users=0, special_ranks=None):
  389. if not self.criteria or self.special or users == 0:
  390. # Rank cant be rolled in
  391. return False
  392. if self.criteria == "0":
  393. # Just update all fellows
  394. User.objects.exclude(rank__in=special_ranks).update(rank=self)
  395. else:
  396. # Count number of users to update
  397. if self.criteria[-1] == '%':
  398. criteria = int(self.criteria[0:-1])
  399. criteria = int(math.ceil(float(users / 100.0)* criteria))
  400. else:
  401. criteria = int(self.criteria)
  402. # Join special ranks
  403. if special_ranks:
  404. special_ranks = ','.join(special_ranks)
  405. # Run raw query
  406. cursor = connection.cursor()
  407. try:
  408. # Postgresql
  409. if (settings.DATABASES['default']['ENGINE'] == 'django.db.backends.postgresql_psycopg2'
  410. or settings.DATABASES['default']['ENGINE'] == 'django.db.backends.postgresql'):
  411. if special_ranks:
  412. cursor.execute('''UPDATE users_user
  413. FROM (
  414. SELECT id
  415. FROM users_user
  416. WHERE rank_id NOT IN (%s)
  417. ORDER BY score DESC LIMIT %s
  418. ) AS updateable
  419. SET rank_id=%s
  420. WHERE id = updateable.id
  421. RETURNING *''' % (self.id, special_ranks, criteria))
  422. else:
  423. cursor.execute('''UPDATE users_user
  424. FROM (
  425. SELECT id
  426. FROM users_user
  427. ORDER BY score DESC LIMIT %s
  428. ) AS updateable
  429. SET rank_id=%s
  430. WHERE id = updateable.id
  431. RETURNING *''', [self.id, criteria])
  432. # MySQL, SQLite and Oracle
  433. if (settings.DATABASES['default']['ENGINE'] == 'django.db.backends.mysql'
  434. or settings.DATABASES['default']['ENGINE'] == 'django.db.backends.sqlite3'
  435. or settings.DATABASES['default']['ENGINE'] == 'django.db.backends.oracle'):
  436. if special_ranks:
  437. cursor.execute('''UPDATE users_user
  438. SET rank_id=%s
  439. WHERE rank_id NOT IN (%s)
  440. ORDER BY score DESC
  441. LIMIT %s''' % (self.id, special_ranks, criteria))
  442. else:
  443. cursor.execute('''UPDATE users_user
  444. SET rank_id=%s
  445. ORDER BY score DESC
  446. LIMIT %s''', [self.id, criteria])
  447. except Exception as e:
  448. print 'Error updating users ranking: %s' % e
  449. transaction.commit_unless_managed()
  450. return True
  451. class Newsletter(models.Model):
  452. """
  453. Newsletter
  454. """
  455. name = models.CharField(max_length=255)
  456. token = models.CharField(max_length=32)
  457. step_size = models.PositiveIntegerField(default=0)
  458. progress = models.PositiveIntegerField(default=0)
  459. content_html = models.TextField(null=True,blank=True)
  460. content_plain = models.TextField(null=True,blank=True)
  461. ignore_subscriptions = models.BooleanField(default=False)
  462. ranks = models.ManyToManyField(Rank)
  463. def generate_token(self):
  464. self.token = get_random_string(32)
  465. def parse_name(self, tokens):
  466. name = self.name
  467. for key in tokens:
  468. name = name.replace(key, tokens[key])
  469. return name
  470. def parse_html(self, tokens):
  471. content_html = self.content_html
  472. for key in tokens:
  473. content_html = content_html.replace(key, tokens[key])
  474. return content_html
  475. def parse_plain(self, tokens):
  476. content_plain = self.content_plain
  477. for key in tokens:
  478. content_plain = content_plain.replace(key, tokens[key])
  479. return content_plain