[FIX] website's slug() should check if slugified string is empty
[odoo/odoo.git] / addons / website / models / ir_http.py
1 # -*- coding: utf-8 -*-
2 import logging
3 import re
4 import traceback
5
6 import werkzeug
7 import werkzeug.routing
8
9 import openerp
10 from openerp.addons.base import ir
11 from openerp.addons.base.ir import ir_qweb
12 from openerp.addons.website.models.website import slug
13 from openerp.http import request
14 from openerp.osv import orm
15
16 logger = logging.getLogger(__name__)
17
18 class RequestUID(object):
19     def __init__(self, **kw):
20         self.__dict__.update(kw)
21
22 class ir_http(orm.AbstractModel):
23     _inherit = 'ir.http'
24
25     rerouting_limit = 10
26
27     def _get_converters(self):
28         return dict(
29             super(ir_http, self)._get_converters(),
30             model=ModelConverter,
31             page=PageConverter,
32         )
33
34     def _dispatch(self):
35         first_pass = not hasattr(request, 'website')
36         request.website = None
37         func = None
38         try:
39             func, arguments = self._find_handler()
40             request.website_enabled = func.routing.get('website', False)
41         except werkzeug.exceptions.NotFound:
42             # either we have a language prefixed route, either a real 404
43             # in all cases, website processes them
44             request.website_enabled = True
45
46         if request.website_enabled:
47             if func:
48                 self._authenticate(func.routing['auth'])
49             else:
50                 self._auth_method_public()
51             request.website = request.registry['website'].get_current_website(request.cr, request.uid, context=request.context)
52             if first_pass:
53                 request.lang = request.website.default_lang_code
54             request.context['lang'] = request.lang
55             request.website.preprocess_request(request)
56             if not func:
57                 path = request.httprequest.path.split('/')
58                 langs = [lg[0] for lg in request.website.get_languages()]
59                 if path[1] in langs:
60                     request.lang = request.context['lang'] = path.pop(1)
61                     path = '/'.join(path) or '/'
62                     return self.reroute(path)
63                 return self._handle_exception(code=404)
64         return super(ir_http, self)._dispatch()
65
66     def reroute(self, path):
67         if not hasattr(request, 'rerouting'):
68             request.rerouting = []
69         if path in request.rerouting:
70             raise Exception("Rerouting loop is forbidden")
71         request.rerouting.append(path)
72         if len(request.rerouting) > self.rerouting_limit:
73             raise Exception("Rerouting limit exceeded")
74         request.httprequest.environ['PATH_INFO'] = path
75         # void werkzeug cached_property. TODO: find a proper way to do this
76         for key in ('path', 'full_path', 'url', 'base_url'):
77             request.httprequest.__dict__.pop(key, None)
78
79         return self._dispatch()
80
81     def _postprocess_args(self, arguments):
82         url = request.httprequest.url
83         for arg in arguments.itervalues():
84             if isinstance(arg, orm.browse_record) and isinstance(arg._uid, RequestUID):
85                 placeholder = arg._uid
86                 arg._uid = request.uid
87                 try:
88                     good_slug = slug(arg)
89                     if str(arg.id) != placeholder.value and placeholder.value != good_slug:
90                         # TODO: properly recompose the url instead of using replace()
91                         url = url.replace(placeholder.value, good_slug)
92                 except KeyError:
93                     return self._handle_exception(werkzeug.exceptions.NotFound())
94         if url != request.httprequest.url:
95             werkzeug.exceptions.abort(werkzeug.utils.redirect(url))
96
97     def _handle_exception(self, exception=None, code=500):
98         if isinstance(exception, werkzeug.exceptions.HTTPException) and hasattr(exception, 'response') and exception.response:
99             return exception.response
100         if getattr(request, 'website_enabled', False) and request.website:
101             values = dict(
102                 exception=exception,
103                 traceback=traceback.format_exc(exception),
104             )
105             if exception:
106                 code = getattr(exception, 'code', code)
107                 if isinstance(exception, ir_qweb.QWebException):
108                     values.update(qweb_exception=exception)
109                     if isinstance(exception.qweb.get('cause'), openerp.exceptions.AccessError):
110                         code = 403
111             if code == 500:
112                 logger.error("500 Internal Server Error:\n\n%s", values['traceback'])
113                 if 'qweb_exception' in values:
114                     view = request.registry.get("ir.ui.view")
115                     views = view._views_get(request.cr, request.uid, exception.qweb['template'], request.context)
116                     to_reset = [v for v in views if v.model_data_id.noupdate is True]
117                     values['views'] = to_reset
118             elif code == 403:
119                 logger.warn("403 Forbidden:\n\n%s", values['traceback'])
120
121             values.update(
122                 status_message=werkzeug.http.HTTP_STATUS_CODES[code],
123                 status_code=code,
124             )
125
126             if not request.uid:
127                 self._auth_method_public()
128
129             try:
130                 html = request.website._render('website.%s' % code, values)
131             except Exception:
132                 html = request.website._render('website.http_error', values)
133             return werkzeug.wrappers.Response(html, status=code, content_type='text/html;charset=utf-8')
134
135         return super(ir_http, self)._handle_exception(exception)
136
137 class ModelConverter(ir.ir_http.ModelConverter):
138     def __init__(self, url_map, model=False):
139         super(ModelConverter, self).__init__(url_map, model)
140         self.regex = r'(?:[A-Za-z0-9-_]+?-)?(\d+)(?=$|/)'
141
142     def to_url(self, value):
143         return slug(value)
144
145     def to_python(self, value):
146         m = re.match(self.regex, value)
147         _uid = RequestUID(value=value, match=m, converter=self)
148         return request.registry[self.model].browse(
149             request.cr, _uid, int(m.group(1)), context=request.context)
150
151     def generate(self, cr, uid, query=None, context=None):
152         return request.registry[self.model].name_search(
153             cr, uid, name=query or '', context=context)
154
155 class PageConverter(werkzeug.routing.PathConverter):
156     """ Only point of this converter is to bundle pages enumeration logic
157
158     Sads got: no way to get the view's human-readable name even if one exists
159     """
160     def generate(self, cr, uid, query=None, context=None):
161         View = request.registry['ir.ui.view']
162         views = View.search_read(
163             cr, uid, [['page', '=', True]],
164             fields=[], order='name', context=context)
165         xids = View.get_external_id(
166             cr, uid, [view['id'] for view in views], context=context)
167
168         for view in views:
169             xid = xids[view['id']]
170             if xid and (not query or query.lower() in xid.lower()):
171                 yield xid