We are no longer offering accounts on this server. Consider https://gitlab.freedesktop.org/ as a place to host projects.

newnotice.php 9.86 KB
Newer Older
Evan Prodromou's avatar
Evan Prodromou committed
1
<?php
Evan Prodromou's avatar
Evan Prodromou committed
2
/**
3
 * StatusNet, the distributed open-source microblogging tool
Evan Prodromou's avatar
Evan Prodromou committed
4
 *
Evan Prodromou's avatar
Evan Prodromou committed
5 6 7 8 9
 * Handler for posting new notices
 *
 * PHP version 5
 *
 * LICENCE: This program is free software: you can redistribute it and/or modify
Evan Prodromou's avatar
Evan Prodromou committed
10 11 12
 * it under the terms of the GNU Affero General Public License as published by
 * the Free Software Foundation, either version 3 of the License, or
 * (at your option) any later version.
Evan Prodromou's avatar
Evan Prodromou committed
13
 *
Evan Prodromou's avatar
Evan Prodromou committed
14 15
 * This program is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
Evan Prodromou's avatar
Evan Prodromou committed
16
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
Evan Prodromou's avatar
Evan Prodromou committed
17
 * GNU Affero General Public License for more details.
Evan Prodromou's avatar
Evan Prodromou committed
18
 *
Evan Prodromou's avatar
Evan Prodromou committed
19
 * You should have received a copy of the GNU Affero General Public License
Evan Prodromou's avatar
Evan Prodromou committed
20 21 22
 * along with this program.  If not, see <http://www.gnu.org/licenses/>.
 *
 * @category  Personal
23
 * @package   StatusNet
24 25 26
 * @author    Evan Prodromou <evan@status.net>
 * @author    Zach Copley <zach@status.net>
 * @author    Sarven Capadisli <csarven@status.net>
27
 * @copyright 2008-2009 StatusNet, Inc.
Evan Prodromou's avatar
Evan Prodromou committed
28
 * @license   http://www.fsf.org/licensing/licenses/agpl-3.0.html GNU Affero General Public License version 3.0
29
 * @link      http://status.net/
Evan Prodromou's avatar
Evan Prodromou committed
30 31
 */

32
if (!defined('STATUSNET') && !defined('LACONICA')) {
Evan Prodromou's avatar
Evan Prodromou committed
33 34 35
    exit(1);
}

36 37
require_once INSTALLDIR . '/lib/noticelist.php';
require_once INSTALLDIR . '/lib/mediafile.php';
Evan Prodromou's avatar
Evan Prodromou committed
38

Evan Prodromou's avatar
Evan Prodromou committed
39 40 41 42
/**
 * Action for posting new notices
 *
 * @category Personal
43
 * @package  StatusNet
44 45 46
 * @author   Evan Prodromou <evan@status.net>
 * @author   Zach Copley <zach@status.net>
 * @author   Sarven Capadisli <csarven@status.net>
Evan Prodromou's avatar
Evan Prodromou committed
47
 * @license  http://www.fsf.org/licensing/licenses/agpl-3.0.html GNU Affero General Public License version 3.0
48
 * @link     http://status.net/
Evan Prodromou's avatar
Evan Prodromou committed
49
 */
50

51 52
class NewnoticeAction extends Action
{
Evan Prodromou's avatar
Evan Prodromou committed
53 54 55 56 57 58 59 60 61
    /**
     * Error message, if any
     */

    var $msg = null;

    /**
     * Title of the page
     *
62
     * Note that this usually doesn't get called unless something went wrong
Evan Prodromou's avatar
Evan Prodromou committed
63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84
     *
     * @return string page title
     */

    function title()
    {
        return _('New notice');
    }

    /**
     * Handle input, produce output
     *
     * Switches based on GET or POST method. On GET, shows a form
     * for posting a notice. On POST, saves the results of that form.
     *
     * Results may be a full page, or just a single notice list item,
     * depending on whether AJAX was requested.
     *
     * @param array $args $_REQUEST contents
     *
     * @return void
     */
85

86 87
    function handle($args)
    {
88
        if (!common_logged_in()) {
89
            $this->clientError(_('Not logged in.'));
90
        } else if ($_SERVER['REQUEST_METHOD'] == 'POST') {
91 92 93 94
            // check for this before token since all POST and FILES data
            // is losts when size is exceeded
            if (empty($_POST) && $_SERVER['CONTENT_LENGTH']) {
                $this->clientError(sprintf(_('The server was unable to handle ' .
Evan Prodromou's avatar
Evan Prodromou committed
95 96
                                             'that much POST data (%s bytes) due to its current configuration.'),
                                           $_SERVER['CONTENT_LENGTH']));
97 98
            }
            parent::handle($args);
99

100
            // CSRF protection
101 102
            $token = $this->trimmed('token');
            if (!$token || $token != common_session_token()) {
Evan Prodromou's avatar
Evan Prodromou committed
103 104
                $this->clientError(_('There was a problem with your session token. '.
                                     'Try again, please.'));
105
            }
106 107 108 109 110 111
            try {
                $this->saveNewNotice();
            } catch (Exception $e) {
                $this->showForm($e->getMessage());
                return;
            }
112
        } else {
Evan Prodromou's avatar
Evan Prodromou committed
113
            $this->showForm();
114 115 116
        }
    }

Evan Prodromou's avatar
Evan Prodromou committed
117 118 119 120 121 122 123 124 125 126 127
    /**
     * Save a new notice, based on arguments
     *
     * If successful, will show the notice, or return an Ajax-y result.
     * If not, it will show an error message -- possibly Ajax-y.
     *
     * Also, if the notice input looks like a command, it will run the
     * command and show the results -- again, possibly ajaxy.
     *
     * @return void
     */
128

Evan Prodromou's avatar
Evan Prodromou committed
129 130
    function saveNewNotice()
    {
131
        $user = common_current_user();
Evan Prodromou's avatar
Evan Prodromou committed
132
        assert($user); // XXX: maybe an error instead...
133 134 135
        $content = $this->trimmed('status_textarea');

        if (!$content) {
136
            $this->clientError(_('No content!'));
137
            return;
138 139 140 141
        }

        $inter = new CommandInterpreter();

142
        $cmd = $inter->handle_command($user, $content);
143 144 145

        if ($cmd) {
            if ($this->boolean('ajax')) {
146
                $cmd->execute(new AjaxWebChannel($this));
147
            } else {
148
                $cmd->execute(new WebChannel($this));
149 150 151 152
            }
            return;
        }

153 154 155 156 157 158 159
        $content_shortened = common_shorten_links($content);
        if (Notice::contentTooLong($content_shortened)) {
            $this->clientError(sprintf(_('That\'s too long. '.
                                         'Max notice size is %d chars.'),
                                       Notice::maxContent()));
        }

160
        $replyto = $this->trimmed('inreplyto');
161 162 163 164 165
        #If an ID of 0 is wrongly passed here, it will cause a database error,
        #so override it...
        if ($replyto == 0) {
            $replyto = 'false';
        }
166

167 168
        $upload = null;
        $upload = MediaFile::fromUpload('attach');
169

170
        if (isset($upload)) {
171

172
            $content_shortened .= ' ' . $upload->shortUrl();
173

174
            if (Notice::contentTooLong($content_shortened)) {
175 176 177 178 179 180 181
                $upload->delete();
                $this->clientError(
                    sprintf(
                        _('Max notice size is %d chars, including attachment URL.'),
                          Notice::maxContent()
                    )
                );
182 183 184
            }
        }

185 186
        $options = array('reply_to' => ($replyto == 'false') ? null : $replyto);

187
        if ($user->shareLocation() && $this->arg('notice_data-geo')) {
188

189 190 191 192 193
            $locOptions = Notice::locationOptions($this->trimmed('lat'),
                                                  $this->trimmed('lon'),
                                                  $this->trimmed('location_id'),
                                                  $this->trimmed('location_ns'),
                                                  $user->getProfile());
194

195
            $options = array_merge($options, $locOptions);
196 197 198
        }

        $notice = Notice::saveNew($user->id, $content_shortened, 'web', $options);
199

200 201
        if (isset($upload)) {
            $upload->attachToNotice($notice);
202
        }
203

204 205 206
        common_broadcast_notice($notice);

        if ($this->boolean('ajax')) {
207 208 209
            header('Content-Type: text/xml;charset=utf-8');
            $this->xw->startDocument('1.0', 'UTF-8');
            $this->elementStart('html');
210 211 212 213
            $this->elementStart('head');
            $this->element('title', null, _('Notice posted'));
            $this->elementEnd('head');
            $this->elementStart('body');
Evan Prodromou's avatar
Evan Prodromou committed
214
            $this->showNotice($notice);
215 216
            $this->elementEnd('body');
            $this->elementEnd('html');
217 218 219 220 221 222 223 224 225 226 227 228 229 230
        } else {
            $returnto = $this->trimmed('returnto');

            if ($returnto) {
                $url = common_local_url($returnto,
                                        array('nickname' => $user->nickname));
            } else {
                $url = common_local_url('shownotice',
                                        array('notice' => $notice->id));
            }
            common_redirect($url, 303);
        }
    }

Evan Prodromou's avatar
Evan Prodromou committed
231 232 233 234 235 236 237 238 239 240 241
    /**
     * Show an Ajax-y error message
     *
     * Goes back to the browser, where it's shown in a popup.
     *
     * @param string $msg Message to show
     *
     * @return void
     */

    function ajaxErrorMsg($msg)
242
    {
243
        $this->startHTML('text/xml;charset=utf-8', true);
244 245 246 247 248 249 250
        $this->elementStart('head');
        $this->element('title', null, _('Ajax Error'));
        $this->elementEnd('head');
        $this->elementStart('body');
        $this->element('p', array('id' => 'error'), $msg);
        $this->elementEnd('body');
        $this->elementEnd('html');
251 252
    }

Evan Prodromou's avatar
Evan Prodromou committed
253 254 255 256 257 258 259 260 261 262 263 264 265 266
    /**
     * Formerly page output
     *
     * This used to be the whole page output; now that's been largely
     * subsumed by showPage. So this just stores an error message, if
     * it was passed, and calls showPage.
     *
     * Note that since we started doing Ajax output, this page is rarely
     * seen.
     *
     * @param string $msg An error message, if any
     *
     * @return void
     */
267

Evan Prodromou's avatar
Evan Prodromou committed
268
    function showForm($msg=null)
269
    {
270
        if ($msg && $this->boolean('ajax')) {
Evan Prodromou's avatar
Evan Prodromou committed
271
            $this->ajaxErrorMsg($msg);
272 273
            return;
        }
Evan Prodromou's avatar
Evan Prodromou committed
274 275 276 277 278 279 280 281 282 283 284 285 286 287 288

        $this->msg = $msg;
        $this->showPage();
    }

    /**
     * Overload for replies or bad results
     *
     * We show content in the notice form if there were replies or results.
     *
     * @return void
     */

    function showNoticeForm()
    {
289 290 291
        $content = $this->trimmed('status_textarea');
        if (!$content) {
            $replyto = $this->trimmed('replyto');
292
            $inreplyto = $this->trimmed('inreplyto');
293 294 295 296 297
            $profile = Profile::staticGet('nickname', $replyto);
            if ($profile) {
                $content = '@' . $profile->nickname . ' ';
            }
        }
Evan Prodromou's avatar
Evan Prodromou committed
298

299
        $notice_form = new NoticeForm($this, '', $content, null, $inreplyto);
Evan Prodromou's avatar
Evan Prodromou committed
300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316
        $notice_form->show();
    }

    /**
     * Show an error message
     *
     * Shows an error message if there is one.
     *
     * @return void
     *
     * @todo maybe show some instructions?
     */

    function showPageNotice()
    {
        if ($this->msg) {
            $this->element('p', array('id' => 'error'), $this->msg);
317 318 319
        }
    }

Evan Prodromou's avatar
Evan Prodromou committed
320 321 322 323 324 325 326 327 328 329 330
    /**
     * Output a notice
     *
     * Used to generate the notice code for Ajax results.
     *
     * @param Notice $notice Notice that was saved
     *
     * @return void
     */

    function showNotice($notice)
331
    {
Evan Prodromou's avatar
Evan Prodromou committed
332
        $nli = new NoticeListItem($notice, $this);
333
        $nli->show();
334
    }
335
}
336