You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

BasePage.java 13KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401
  1. /*
  2. * Copyright 2011 gitblit.com.
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. package com.gitblit.wicket.pages;
  17. import java.util.ArrayList;
  18. import java.util.Calendar;
  19. import java.util.Collections;
  20. import java.util.Date;
  21. import java.util.HashSet;
  22. import java.util.LinkedHashMap;
  23. import java.util.List;
  24. import java.util.Map;
  25. import java.util.ResourceBundle;
  26. import java.util.Set;
  27. import java.util.TimeZone;
  28. import java.util.regex.Pattern;
  29. import javax.servlet.http.Cookie;
  30. import javax.servlet.http.HttpServletRequest;
  31. import org.apache.wicket.Application;
  32. import org.apache.wicket.MarkupContainer;
  33. import org.apache.wicket.PageParameters;
  34. import org.apache.wicket.RedirectToUrlException;
  35. import org.apache.wicket.RequestCycle;
  36. import org.apache.wicket.RestartResponseException;
  37. import org.apache.wicket.markup.html.CSSPackageResource;
  38. import org.apache.wicket.markup.html.WebPage;
  39. import org.apache.wicket.markup.html.basic.Label;
  40. import org.apache.wicket.markup.html.link.BookmarkablePageLink;
  41. import org.apache.wicket.markup.html.link.ExternalLink;
  42. import org.apache.wicket.markup.html.panel.FeedbackPanel;
  43. import org.apache.wicket.markup.html.panel.Fragment;
  44. import org.apache.wicket.protocol.http.RequestUtils;
  45. import org.apache.wicket.protocol.http.WebRequest;
  46. import org.apache.wicket.protocol.http.WebResponse;
  47. import org.apache.wicket.protocol.http.servlet.ServletWebRequest;
  48. import org.slf4j.Logger;
  49. import org.slf4j.LoggerFactory;
  50. import com.gitblit.Constants;
  51. import com.gitblit.Constants.AccessRestrictionType;
  52. import com.gitblit.Constants.FederationStrategy;
  53. import com.gitblit.GitBlit;
  54. import com.gitblit.Keys;
  55. import com.gitblit.models.ProjectModel;
  56. import com.gitblit.models.RepositoryModel;
  57. import com.gitblit.models.TeamModel;
  58. import com.gitblit.models.UserModel;
  59. import com.gitblit.utils.StringUtils;
  60. import com.gitblit.utils.TimeUtils;
  61. import com.gitblit.wicket.GitBlitWebSession;
  62. import com.gitblit.wicket.WicketUtils;
  63. import com.gitblit.wicket.panels.LinkPanel;
  64. public abstract class BasePage extends WebPage {
  65. private final Logger logger;
  66. private transient TimeUtils timeUtils;
  67. public BasePage() {
  68. super();
  69. logger = LoggerFactory.getLogger(getClass());
  70. customizeHeader();
  71. loginByCookie();
  72. }
  73. public BasePage(PageParameters params) {
  74. super(params);
  75. logger = LoggerFactory.getLogger(getClass());
  76. customizeHeader();
  77. loginByCookie();
  78. }
  79. private void customizeHeader() {
  80. if (GitBlit.getBoolean(Keys.web.useResponsiveLayout, true)) {
  81. add(CSSPackageResource.getHeaderContribution("bootstrap/css/bootstrap-responsive.css"));
  82. }
  83. }
  84. protected String getLanguageCode() {
  85. return GitBlitWebSession.get().getLocale().getLanguage();
  86. }
  87. protected TimeUtils getTimeUtils() {
  88. if (timeUtils == null) {
  89. ResourceBundle bundle;
  90. try {
  91. bundle = ResourceBundle.getBundle("com.gitblit.wicket.GitBlitWebApp", GitBlitWebSession.get().getLocale());
  92. } catch (Throwable t) {
  93. bundle = ResourceBundle.getBundle("com.gitblit.wicket.GitBlitWebApp");
  94. }
  95. timeUtils = new TimeUtils(bundle);
  96. }
  97. return timeUtils;
  98. }
  99. @Override
  100. protected void onBeforeRender() {
  101. if (GitBlit.isDebugMode()) {
  102. // strip Wicket tags in debug mode for jQuery DOM traversal
  103. Application.get().getMarkupSettings().setStripWicketTags(true);
  104. }
  105. super.onBeforeRender();
  106. }
  107. @Override
  108. protected void onAfterRender() {
  109. if (GitBlit.isDebugMode()) {
  110. // restore Wicket debug tags
  111. Application.get().getMarkupSettings().setStripWicketTags(false);
  112. }
  113. super.onAfterRender();
  114. }
  115. private void loginByCookie() {
  116. if (!GitBlit.getBoolean(Keys.web.allowCookieAuthentication, false)) {
  117. return;
  118. }
  119. UserModel user = null;
  120. // Grab cookie from Browser Session
  121. Cookie[] cookies = ((WebRequest) getRequestCycle().getRequest()).getCookies();
  122. if (cookies != null && cookies.length > 0) {
  123. user = GitBlit.self().authenticate(cookies);
  124. }
  125. // Login the user
  126. if (user != null) {
  127. // Set the user into the session
  128. GitBlitWebSession session = GitBlitWebSession.get();
  129. // issue 62: fix session fixation vulnerability
  130. session.replaceSession();
  131. session.setUser(user);
  132. // Set Cookie
  133. WebResponse response = (WebResponse) getRequestCycle().getResponse();
  134. GitBlit.self().setCookie(response, user);
  135. session.continueRequest();
  136. }
  137. }
  138. protected void setupPage(String repositoryName, String pageName) {
  139. if (repositoryName != null && repositoryName.trim().length() > 0) {
  140. add(new Label("title", getServerName() + " - " + repositoryName));
  141. } else {
  142. add(new Label("title", getServerName()));
  143. }
  144. ExternalLink rootLink = new ExternalLink("rootLink", urlFor(RepositoriesPage.class, null).toString());
  145. WicketUtils.setHtmlTooltip(rootLink, GitBlit.getString(Keys.web.siteName, Constants.NAME));
  146. add(rootLink);
  147. // Feedback panel for info, warning, and non-fatal error messages
  148. add(new FeedbackPanel("feedback"));
  149. // footer
  150. if (GitBlit.getBoolean(Keys.web.authenticateViewPages, true)
  151. || GitBlit.getBoolean(Keys.web.authenticateAdminPages, true)) {
  152. UserFragment userFragment = new UserFragment("userPanel", "userFragment", BasePage.this);
  153. add(userFragment);
  154. } else {
  155. add(new Label("userPanel", ""));
  156. }
  157. add(new Label("gbVersion", "v" + Constants.VERSION));
  158. if (GitBlit.getBoolean(Keys.web.aggressiveHeapManagement, false)) {
  159. System.gc();
  160. }
  161. }
  162. protected Map<AccessRestrictionType, String> getAccessRestrictions() {
  163. Map<AccessRestrictionType, String> map = new LinkedHashMap<AccessRestrictionType, String>();
  164. for (AccessRestrictionType type : AccessRestrictionType.values()) {
  165. switch (type) {
  166. case NONE:
  167. map.put(type, getString("gb.notRestricted"));
  168. break;
  169. case PUSH:
  170. map.put(type, getString("gb.pushRestricted"));
  171. break;
  172. case CLONE:
  173. map.put(type, getString("gb.cloneRestricted"));
  174. break;
  175. case VIEW:
  176. map.put(type, getString("gb.viewRestricted"));
  177. break;
  178. }
  179. }
  180. return map;
  181. }
  182. protected Map<FederationStrategy, String> getFederationTypes() {
  183. Map<FederationStrategy, String> map = new LinkedHashMap<FederationStrategy, String>();
  184. for (FederationStrategy type : FederationStrategy.values()) {
  185. switch (type) {
  186. case EXCLUDE:
  187. map.put(type, getString("gb.excludeFromFederation"));
  188. break;
  189. case FEDERATE_THIS:
  190. map.put(type, getString("gb.federateThis"));
  191. break;
  192. case FEDERATE_ORIGIN:
  193. map.put(type, getString("gb.federateOrigin"));
  194. break;
  195. }
  196. }
  197. return map;
  198. }
  199. protected TimeZone getTimeZone() {
  200. return GitBlit.getBoolean(Keys.web.useClientTimezone, false) ? GitBlitWebSession.get()
  201. .getTimezone() : GitBlit.getTimezone();
  202. }
  203. protected String getServerName() {
  204. ServletWebRequest servletWebRequest = (ServletWebRequest) getRequest();
  205. HttpServletRequest req = servletWebRequest.getHttpServletRequest();
  206. return req.getServerName();
  207. }
  208. public static String getRepositoryUrl(RepositoryModel repository) {
  209. StringBuilder sb = new StringBuilder();
  210. sb.append(WicketUtils.getGitblitURL(RequestCycle.get().getRequest()));
  211. sb.append(Constants.GIT_PATH);
  212. sb.append(repository.name);
  213. // inject username into repository url if authentication is required
  214. if (repository.accessRestriction.exceeds(AccessRestrictionType.NONE)
  215. && GitBlitWebSession.get().isLoggedIn()) {
  216. String username = GitBlitWebSession.get().getUsername();
  217. sb.insert(sb.indexOf("://") + 3, username + "@");
  218. }
  219. return sb.toString();
  220. }
  221. protected List<ProjectModel> getProjectModels() {
  222. final UserModel user = GitBlitWebSession.get().getUser();
  223. List<ProjectModel> projects = GitBlit.self().getProjectModels(user, true);
  224. return projects;
  225. }
  226. protected List<ProjectModel> getProjects(PageParameters params) {
  227. if (params == null) {
  228. return getProjectModels();
  229. }
  230. boolean hasParameter = false;
  231. String regex = WicketUtils.getRegEx(params);
  232. String team = WicketUtils.getTeam(params);
  233. int daysBack = params.getInt("db", 0);
  234. List<ProjectModel> availableModels = getProjectModels();
  235. Set<ProjectModel> models = new HashSet<ProjectModel>();
  236. if (!StringUtils.isEmpty(regex)) {
  237. // filter the projects by the regex
  238. hasParameter = true;
  239. Pattern pattern = Pattern.compile(regex);
  240. for (ProjectModel model : availableModels) {
  241. if (pattern.matcher(model.name).find()) {
  242. models.add(model);
  243. }
  244. }
  245. }
  246. if (!StringUtils.isEmpty(team)) {
  247. // filter the projects by the specified teams
  248. hasParameter = true;
  249. List<String> teams = StringUtils.getStringsFromValue(team, ",");
  250. // need TeamModels first
  251. List<TeamModel> teamModels = new ArrayList<TeamModel>();
  252. for (String name : teams) {
  253. TeamModel teamModel = GitBlit.self().getTeamModel(name);
  254. if (teamModel != null) {
  255. teamModels.add(teamModel);
  256. }
  257. }
  258. // brute-force our way through finding the matching models
  259. for (ProjectModel projectModel : availableModels) {
  260. for (String repositoryName : projectModel.repositories) {
  261. for (TeamModel teamModel : teamModels) {
  262. if (teamModel.hasRepository(repositoryName)) {
  263. models.add(projectModel);
  264. }
  265. }
  266. }
  267. }
  268. }
  269. if (!hasParameter) {
  270. models.addAll(availableModels);
  271. }
  272. // time-filter the list
  273. if (daysBack > 0) {
  274. Calendar cal = Calendar.getInstance();
  275. cal.set(Calendar.HOUR_OF_DAY, 0);
  276. cal.set(Calendar.MINUTE, 0);
  277. cal.set(Calendar.SECOND, 0);
  278. cal.set(Calendar.MILLISECOND, 0);
  279. cal.add(Calendar.DATE, -1 * daysBack);
  280. Date threshold = cal.getTime();
  281. Set<ProjectModel> timeFiltered = new HashSet<ProjectModel>();
  282. for (ProjectModel model : models) {
  283. if (model.lastChange.after(threshold)) {
  284. timeFiltered.add(model);
  285. }
  286. }
  287. models = timeFiltered;
  288. }
  289. List<ProjectModel> list = new ArrayList<ProjectModel>(models);
  290. Collections.sort(list);
  291. return list;
  292. }
  293. public void warn(String message, Throwable t) {
  294. logger.warn(message, t);
  295. }
  296. public void error(String message, boolean redirect) {
  297. logger.error(message + " for " + GitBlitWebSession.get().getUsername());
  298. if (redirect) {
  299. GitBlitWebSession.get().cacheErrorMessage(message);
  300. String relativeUrl = urlFor(RepositoriesPage.class, null).toString();
  301. String absoluteUrl = RequestUtils.toAbsolutePath(relativeUrl);
  302. throw new RedirectToUrlException(absoluteUrl);
  303. } else {
  304. super.error(message);
  305. }
  306. }
  307. public void error(String message, Throwable t, boolean redirect) {
  308. logger.error(message, t);
  309. if (redirect) {
  310. GitBlitWebSession.get().cacheErrorMessage(message);
  311. throw new RestartResponseException(getApplication().getHomePage());
  312. } else {
  313. super.error(message);
  314. }
  315. }
  316. public void authenticationError(String message) {
  317. logger.error(getRequest().getURL() + " for " + GitBlitWebSession.get().getUsername());
  318. if (!GitBlitWebSession.get().isLoggedIn()) {
  319. // cache the request if we have not authenticated.
  320. // the request will continue after authentication.
  321. GitBlitWebSession.get().cacheRequest(getClass());
  322. }
  323. error(message, true);
  324. }
  325. /**
  326. * Panel fragment for displaying login or logout/change_password links.
  327. *
  328. */
  329. static class UserFragment extends Fragment {
  330. private static final long serialVersionUID = 1L;
  331. public UserFragment(String id, String markupId, MarkupContainer markupProvider) {
  332. super(id, markupId, markupProvider);
  333. if (GitBlitWebSession.get().isLoggedIn()) {
  334. // username, logout, and change password
  335. add(new Label("username", GitBlitWebSession.get().getUser().getDisplayName() + ":"));
  336. add(new LinkPanel("loginLink", null, markupProvider.getString("gb.logout"),
  337. LogoutPage.class));
  338. boolean editCredentials = GitBlit.self().supportsCredentialChanges();
  339. // quick and dirty hack for showing a separator
  340. add(new Label("separator", "|").setVisible(editCredentials));
  341. add(new BookmarkablePageLink<Void>("changePasswordLink",
  342. ChangePasswordPage.class).setVisible(editCredentials));
  343. } else {
  344. // login
  345. add(new Label("username").setVisible(false));
  346. add(new Label("loginLink").setVisible(false));
  347. add(new Label("separator").setVisible(false));
  348. add(new Label("changePasswordLink").setVisible(false));
  349. }
  350. }
  351. }
  352. }