ban.py 5.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165
  1. import re
  2. from django.conf import settings
  3. from django.db import IntegrityError, models
  4. from django.utils import timezone
  5. from django.utils.translation import gettext_lazy as _
  6. from misago.core import cachebuster
  7. from misago.users.constants import BANS_CACHEBUSTER
  8. class BansManager(models.Manager):
  9. def get_ip_ban(self, ip, registration_only=False):
  10. return self.get_ban(
  11. ip=ip,
  12. registration_only=registration_only,
  13. )
  14. def get_username_ban(self, username, registration_only=False):
  15. return self.get_ban(
  16. username=username,
  17. registration_only=registration_only,
  18. )
  19. def get_email_ban(self, email, registration_only=False):
  20. return self.get_ban(
  21. email=email,
  22. registration_only=registration_only,
  23. )
  24. def invalidate_cache(self):
  25. cachebuster.invalidate(BANS_CACHEBUSTER)
  26. def get_ban(self, username=None, email=None, ip=None, registration_only=False):
  27. checks = []
  28. if username:
  29. username = username.lower()
  30. checks.append(self.model.USERNAME)
  31. if email:
  32. email = email.lower()
  33. checks.append(self.model.EMAIL)
  34. if ip:
  35. checks.append(self.model.IP)
  36. queryset = self.filter(is_checked=True)
  37. if not registration_only:
  38. queryset = self.filter(registration_only=False)
  39. if len(checks) == 1:
  40. queryset = queryset.filter(check_type=checks[0])
  41. elif checks:
  42. queryset = queryset.filter(check_type__in=checks)
  43. for ban in queryset.order_by('-id').iterator():
  44. if ban.is_expired:
  45. continue
  46. elif (ban.check_type == self.model.USERNAME and username and ban.check_value(username)):
  47. return ban
  48. elif (ban.check_type == self.model.EMAIL and email and ban.check_value(email)):
  49. return ban
  50. elif ban.check_type == self.model.IP and ip and ban.check_value(ip):
  51. return ban
  52. else:
  53. raise Ban.DoesNotExist('specified values are not banned')
  54. class Ban(models.Model):
  55. USERNAME = 0
  56. EMAIL = 1
  57. IP = 2
  58. CHOICES = [
  59. (USERNAME, _('Username')),
  60. (EMAIL, _('E-mail address')),
  61. (IP, _('IP address')),
  62. ]
  63. check_type = models.PositiveIntegerField(default=USERNAME, choices=CHOICES, db_index=True)
  64. registration_only = models.BooleanField(default=False, db_index=True)
  65. banned_value = models.CharField(max_length=255, db_index=True)
  66. user_message = models.TextField(null=True, blank=True)
  67. staff_message = models.TextField(null=True, blank=True)
  68. expires_on = models.DateTimeField(null=True, blank=True, db_index=True)
  69. is_checked = models.BooleanField(default=True, db_index=True)
  70. objects = BansManager()
  71. def save(self, *args, **kwargs):
  72. self.banned_value = self.banned_value.lower()
  73. self.is_checked = not self.is_expired
  74. return super().save(*args, **kwargs)
  75. def get_serialized_message(self):
  76. from misago.users.serializers import BanMessageSerializer
  77. return BanMessageSerializer(self).data
  78. @property
  79. def name(self):
  80. return self.banned_value
  81. @property
  82. def is_expired(self):
  83. if self.expires_on:
  84. return self.expires_on < timezone.now()
  85. else:
  86. return False
  87. def check_value(self, value):
  88. if '*' in self.banned_value:
  89. regex = re.escape(self.banned_value).replace('\*', '(.*?)')
  90. return re.search('^%s$' % regex, value) is not None
  91. else:
  92. return self.banned_value == value
  93. def lift(self):
  94. self.expires_on = timezone.now()
  95. class BanCache(models.Model):
  96. user = models.OneToOneField(
  97. settings.AUTH_USER_MODEL,
  98. primary_key=True,
  99. related_name='ban_cache',
  100. on_delete=models.CASCADE,
  101. )
  102. ban = models.ForeignKey(
  103. Ban,
  104. null=True,
  105. blank=True,
  106. on_delete=models.SET_NULL,
  107. )
  108. bans_version = models.PositiveIntegerField(default=0)
  109. user_message = models.TextField(null=True, blank=True)
  110. staff_message = models.TextField(null=True, blank=True)
  111. expires_on = models.DateTimeField(null=True, blank=True)
  112. def save(self, *args, **kwargs):
  113. try:
  114. super().save(*args, **kwargs)
  115. except IntegrityError:
  116. pass # first come is first serve with ban cache
  117. def get_serialized_message(self):
  118. from misago.users.serializers import BanMessageSerializer
  119. temp_ban = Ban(
  120. id=1,
  121. check_type=Ban.USERNAME,
  122. user_message=self.user_message,
  123. staff_message=self.staff_message,
  124. expires_on=self.expires_on,
  125. )
  126. return BanMessageSerializer(temp_ban).data
  127. @property
  128. def is_banned(self):
  129. return bool(self.ban)
  130. @property
  131. def is_valid(self):
  132. version_is_valid = cachebuster.is_valid(BANS_CACHEBUSTER, self.bans_version)
  133. expired = self.expires_on and self.expires_on < timezone.now()
  134. return version_is_valid and not expired