123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211 |
- <?php
- // This file is part of GNU social - https://www.gnu.org/software/social
- //
- // GNU social is free software: you can redistribute it and/or modify
- // it under the terms of the GNU Affero General Public License as published by
- // the Free Software Foundation, either version 3 of the License, or
- // (at your option) any later version.
- //
- // GNU social is distributed in the hope that it will be useful,
- // but WITHOUT ANY WARRANTY; without even the implied warranty of
- // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
- // GNU Affero General Public License for more details.
- //
- // You should have received a copy of the GNU Affero General Public License
- // along with GNU social. If not, see <http://www.gnu.org/licenses/>.
- /**
- * Register a new OAuth Application
- *
- * @category Applications
- * @package GNUsocial
- * @author Zach Copley <zach@status.net>
- * @copyright 2008-2011 StatusNet, Inc.
- * @copyright 2013 Free Software Foundation, Inc http://www.fsf.org
- * @license https://www.gnu.org/licenses/agpl.html GNU AGPL v3 or later
- */
- defined('GNUSOCIAL') || die();
- /**
- * Add a new application
- *
- * This is the form for adding a new application
- *
- * @category Application
- * @package GNUsocial
- * @author Zach Copley <zach@status.net>
- * @license https://www.gnu.org/licenses/agpl.html GNU AGPL v3 or later
- */
- class NewApplicationAction extends SettingsAction
- {
- public function title()
- {
- // TRANS: This is the title of the form for adding a new application.
- return _('New application');
- }
- protected function doPost()
- {
- if ($this->arg('cancel')) {
- common_redirect(common_local_url('oauthappssettings'), 303);
- } elseif ($this->arg('save')) {
- //trySave will never return, just throw exception or redirect
- $this->trySave();
- }
- // TRANS: Client error displayed when encountering an unexpected action on form submission.
- $this->clientError(_('Unexpected form submission.'));
- }
- protected function getForm()
- {
- return new ApplicationEditForm($this);
- }
- protected function getInstructions()
- {
- // TRANS: Form instructions for registering a new application.
- return _('Use this form to register a new application.');
- }
- protected function trySave()
- {
- $name = $this->trimmed('name');
- $description = $this->trimmed('description');
- $source_url = $this->trimmed('source_url');
- $organization = $this->trimmed('organization');
- $homepage = $this->trimmed('homepage');
- $callback_url = $this->trimmed('callback_url');
- $type = $this->arg('app_type');
- $access_type = $this->arg('default_access_type');
- if (empty($name)) {
- // TRANS: Validation error shown when not providing a name in the "New application" form.
- $this->clientError(_('Name is required.'));
- } elseif ($this->nameExists($name)) {
- // TRANS: Validation error shown when providing a name for an application that already exists in the "New application" form.
- $this->clientError(_('Name already in use. Try another one.'));
- } elseif (mb_strlen($name) > 255) {
- // TRANS: Validation error shown when providing too long a name in the "New application" form.
- $this->clientError(_('Name is too long (maximum 255 characters).'));
- } elseif (empty($description)) {
- // TRANS: Validation error shown when not providing a description in the "New application" form.
- $this->clientError(_('Description is required.'));
- } elseif (Oauth_application::descriptionTooLong($description)) {
- $this->clientError(sprintf(
- // TRANS: Form validation error in New application form.
- // TRANS: %d is the maximum number of characters for the description.
- _m('Description is too long (maximum %d character).',
- 'Description is too long (maximum %d characters).',
- Oauth_application::maxDesc()),
- Oauth_application::maxDesc()
- ));
- } elseif (empty($source_url)) {
- // TRANS: Validation error shown when not providing a source URL in the "New application" form.
- $this->clientError(_('Source URL is required.'));
- } elseif ((strlen($source_url) > 0) && !common_valid_http_url($source_url)) {
- // TRANS: Validation error shown when providing an invalid source URL in the "New application" form.
- $this->clientError(_('Source URL is not valid.'));
- } elseif (empty($organization)) {
- // TRANS: Validation error shown when not providing an organisation in the "New application" form.
- $this->clientError(_('Organization is required.'));
- } elseif (mb_strlen($organization) > 255) {
- // TRANS: Validation error shown when providing too long an arganisation name in the "Edit application" form.
- $this->clientError(_('Organization is too long (maximum 255 characters).'));
- } elseif (empty($homepage)) {
- // TRANS: Form validation error show when an organisation name has not been provided in the new application form.
- $this->clientError(_('Organization homepage is required.'));
- } elseif ((strlen($homepage) > 0) && !common_valid_http_url($homepage)) {
- // TRANS: Validation error shown when providing an invalid homepage URL in the "New application" form.
- $this->clientError(_('Homepage is not a valid URL.'));
- } elseif (mb_strlen($callback_url) > 255) {
- // TRANS: Validation error shown when providing too long a callback URL in the "New application" form.
- $this->clientError(_('Callback is too long.'));
- } elseif (strlen($callback_url) > 0 && !common_valid_http_url($callback_url)) {
- // TRANS: Validation error shown when providing an invalid callback URL in the "New application" form.
- $this->clientError(_('Callback URL is not valid.'));
- }
- // Login is checked in parent::prepare()
- assert(!is_null($this->scoped));
- $app = new Oauth_application();
- $app->query('START TRANSACTION');
- $app->name = $name;
- $app->owner = $this->scoped->getID();
- $app->description = $description;
- $app->source_url = $source_url;
- $app->organization = $organization;
- $app->homepage = $homepage;
- $app->callback_url = $callback_url;
- $app->type = $type;
- // Yeah, I dunno why I chose bit flags. I guess so I could
- // copy this value directly to Oauth_application_user
- // access_type which I think does need bit flags -- Z
- if ($access_type == 'r') {
- $app->setAccessFlags(true, false);
- } else {
- $app->setAccessFlags(true, true);
- }
- $app->created = common_sql_now();
- // generate consumer key and secret
- $consumer = Consumer::generateNew();
- $result = $consumer->insert();
- if (!$result) {
- common_log_db_error($consumer, 'INSERT', __FILE__);
- $app->query('ROLLBACK');
- // TRANS: Server error displayed when an application could not be registered in the database through the "New application" form.
- $this->serverError(_('Could not create application.'));
- }
- $app->consumer_key = $consumer->consumer_key;
- $this->app_id = $app->insert();
- if (!$this->app_id) {
- common_log_db_error($app, 'INSERT', __FILE__);
- $app->query('ROLLBACK');
- // TRANS: Server error displayed when an application could not be registered in the database through the "New application" form.
- $this->serverError(_('Could not create application.'));
- }
- try {
- $app->uploadLogo();
- } catch (Exception $e) {
- $app->query('ROLLBACK');
- // TRANS: Form validation error messages displayed when uploading an invalid application logo.
- $this->clientError(_('Invalid image.'));
- }
- $app->query('COMMIT');
- common_redirect(common_local_url('oauthappssettings'), 303);
- }
- /**
- * Does the app name already exist?
- *
- * Checks the DB to see someone has already registered an app
- * with the same name.
- *
- * @param string $name app name to check
- *
- * @return boolean true if the name already exists
- */
- public function nameExists($name)
- {
- $app = Oauth_application::getKV('name', $name);
- return !empty($app);
- }
- }
|