utils.py 4.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160
  1. from datetime import datetime, timedelta
  2. from django.conf import settings
  3. from django.core.exceptions import PermissionDenied
  4. from django.http import Http404
  5. from django.urls import resolve, reverse
  6. from django.utils import html, timezone
  7. from django.utils.encoding import force_text
  8. from django.utils.module_loading import import_string
  9. ANONYMOUS_IP = '0.0.0.0'
  10. MISAGO_SLUGIFY = getattr(settings, 'MISAGO_SLUGIFY', 'misago.core.slugify.default')
  11. slugify = import_string(MISAGO_SLUGIFY)
  12. def format_plaintext_for_html(string):
  13. return html.linebreaks(html.urlize(html.escape(string)))
  14. def encode_json_html(string):
  15. return string.replace('<', r'\u003C')
  16. ISO8601_FORMATS = ("%Y-%m-%dT%H:%M:%S", "%Y-%m-%dT%H:%M:%S.%f", )
  17. def parse_iso8601_string(value):
  18. """turns ISO 8601 string into datetime object"""
  19. value = force_text(value, strings_only=True).rstrip('Z')
  20. for format in ISO8601_FORMATS:
  21. try:
  22. parsed_value = datetime.strptime(value, format)
  23. break
  24. except ValueError:
  25. try:
  26. parsed_value = datetime.strptime(value[:-6], format)
  27. break
  28. except ValueError:
  29. pass
  30. else:
  31. raise ValueError('failed to hydrate the %s timestamp' % value)
  32. offset_str = value[-6:]
  33. if offset_str and offset_str[0] in ('-', '+'):
  34. tz_offset = timedelta(hours=int(offset_str[1:3]), minutes=int(offset_str[4:6]))
  35. tz_offset = tz_offset.seconds // 60
  36. if offset_str[0] == '-':
  37. tz_offset *= -1
  38. else:
  39. tz_offset = 0
  40. tz_correction = timezone.get_fixed_timezone(tz_offset)
  41. return timezone.make_aware(parsed_value, tz_correction)
  42. def serialize_datetime(value):
  43. if value is None:
  44. return None
  45. value = value.isoformat()
  46. if value.endswith('+00:00'):
  47. value = value[:-6] + 'Z'
  48. return value
  49. def hide_post_parameters(request):
  50. """
  51. Mark request as having sensitive parameters
  52. We can't use decorator because of DRF uses custom HttpRequest
  53. that is incompatibile with Django's decorator
  54. """
  55. request.sensitive_post_parameters = '__ALL__'
  56. def clean_return_path(request):
  57. """return path utility that returns return path from referer or POST"""
  58. if request.method == 'POST' and 'return_path' in request.POST:
  59. return _get_return_path_from_post(request)
  60. else:
  61. return _get_return_path_from_referer(request)
  62. def _get_return_path_from_post(request):
  63. return_path = request.POST.get('return_path')
  64. try:
  65. if not return_path:
  66. raise ValueError()
  67. if not return_path.startswith('/'):
  68. raise ValueError()
  69. resolve(return_path)
  70. return return_path
  71. except (Http404, ValueError):
  72. return None
  73. def _get_return_path_from_referer(request):
  74. referer = request.META.get('HTTP_REFERER')
  75. try:
  76. if not referer:
  77. raise ValueError()
  78. if not referer.startswith(request.scheme):
  79. raise ValueError()
  80. referer = referer[len(request.scheme) + 3:]
  81. if not referer.startswith(request.META['HTTP_HOST']):
  82. raise ValueError()
  83. referer = referer[len(request.META['HTTP_HOST'].rstrip('/')):]
  84. if not referer.startswith('/'):
  85. raise ValueError()
  86. resolve(referer)
  87. return referer
  88. except (Http404, KeyError, ValueError):
  89. return None
  90. def is_request_to_misago(request):
  91. try:
  92. return request._request_to_misago
  93. except AttributeError:
  94. request._request_to_misago = _is_request_path_under_misago(request)
  95. return request._request_to_misago
  96. def _is_request_path_under_misago(request):
  97. # We are assuming that forum_index link is root of all Misago links
  98. forum_index = reverse('misago:index')
  99. path = request.path
  100. if len(forum_index) > len(path):
  101. return False
  102. return path[:len(forum_index)] == forum_index
  103. def is_referer_local(request):
  104. referer = request.META.get('HTTP_REFERER')
  105. if not referer:
  106. return False
  107. if not referer.startswith(request.scheme):
  108. return False
  109. referer = referer[len(request.scheme) + 3:]
  110. if not referer.startswith(request.META['HTTP_HOST']):
  111. return False
  112. referer = referer[len(request.META['HTTP_HOST'].rstrip('/')):]
  113. if not referer.startswith('/'):
  114. return False
  115. return True
  116. def get_exception_message(exception=None, default_message=None):
  117. if not exception:
  118. return default_message
  119. try:
  120. return exception.args[0]
  121. except IndexError:
  122. return default_message