Annotation of loncom/lonnet/perl/lonnet.pm, revision 1.133
1.1 albertel 1: # The LearningOnline Network
2: # TCP networking package
1.12 www 3: #
4: # Functions for use by content handlers:
5: #
1.112 harris41 6: # metadata_query(sql-query-string,custom-metadata-regex) :
7: # returns file handle of where sql and
8: # regex results will be stored for query
1.12 www 9: # plaintext(short) : plain text explanation of short term
1.25 www 10: # fileembstyle(ext) : embed style in page for file extension
11: # filedescription(ext) : descriptor text for file extension
1.29 www 12: # allowed(short,url) : returns codes for allowed actions
13: # F: full access
14: # U,I,K: authentication modes (cxx only)
15: # '': forbidden
16: # 1: user needs to choose course
17: # 2: browse allowed
1.21 www 18: # definerole(rolename,sys,dom,cou) : define a custom role rolename
1.103 harris41 19: # set privileges in format of lonTabs/roles.tab for
1.21 www 20: # system, domain and course level,
21: # assignrole(udom,uname,url,role,end,start) : give a role to a user for the
22: # level given by url. Optional start and end dates
23: # (leave empty string or zero for "no date")
24: # assigncustomrole (udom,uname,url,rdom,rnam,rolename,end,start) : give a
25: # custom role to a user for the level given by url.
26: # Specify name and domain of role author, and role name
27: # revokerole (udom,uname,url,role) : Revoke a role for url
28: # revokecustomrole (udom,uname,url,rdom,rnam,rolename) : Revoke a custom role
1.24 www 29: # appenv(hash) : adds hash to session environment
1.56 www 30: # delenv(varname) : deletes all environment entries starting with varname
1.124 www 31: # store(hashref,symb,courseid,udom,uname)
1.122 albertel 32: # : stores hash permanently for this url
33: # hashref needs to be given, and should be a \%hashname
34: # the remaining args aren't required and if they aren't
35: # passed or are '' they will be derived from the ENV
1.124 www 36: # cstore(hashref,symb,courseid,udom,uname)
1.122 albertel 37: # : same as store but uses the critical interface to
38: # guarentee a store
1.124 www 39: # restore(symb,courseid,udom,uname)
1.122 albertel 40: # : returns hash for this symb, all args are optional
1.124 www 41: # if they aren't given they will be derived from the
42: # current enviroment
1.133 ! albertel 43: #
! 44: #
! 45: # for the next 4 functions udom and uname are optional
! 46: # if supplied they use udom as the domain and uname
! 47: # as the username for the function (supply a courseid
! 48: # for the uname if you want a course database)
! 49: # if not supplied it uses %ENV and looks at
! 50: # user. attribute for the values
! 51: #
! 52: # eget(namesp,arrayref,udom,uname)
! 53: # : returns hash with keys from array reference filled
! 54: # in from namesp (encrypts the return communication)
1.131 albertel 55: # get(namesp,arrayref,udom,uname)
56: # : returns hash with keys from array reference filled
57: # in from namesp
1.133 ! albertel 58: # dump(namesp,udom,uname) : dumps the complete namespace into a hash
! 59: # del(namesp,array,udom,uname) : deletes keys out of array from namesp
! 60: #
! 61: #
1.12 www 62: # put(namesp,hash) : stores hash in namesp
1.47 www 63: # cput(namesp,hash) : critical put
1.23 www 64: # ssi(url,hash) : does a complete request cycle on url to localhost, posts
65: # hash
1.34 www 66: # coursedescription(id) : returns and caches course description for id
1.17 www 67: # repcopy(filename) : replicate file
68: # dirlist(url) : gets a directory listing
1.40 www 69: # directcondval(index) : reading condition value of single condition from
70: # state string
1.28 www 71: # condval(index) : value of condition index based on state
1.58 www 72: # EXT(name) : value of a variable
1.31 www 73: # symblist(map,hash) : Updates symbolic storage links
1.44 www 74: # symbread([filename]) : returns the data handle (filename optional)
1.76 www 75: # rndseed() : returns a random seed
76: # receipt() : returns a receipt to be given out to users
1.36 albertel 77: # getfile(filename) : returns the contents of filename, or a -1 if it can't
78: # be found, replicates and subscribes to the file
1.121 harris41 79: # filelocation(dir,file) : returns a fairly clean absolute reference to file
1.36 albertel 80: # from the directory dir
1.46 www 81: # hreflocation(dir,file) : same as filelocation, but for hrefs
1.47 www 82: # log(domain,user,home,msg) : write to permanent log for user
1.70 www 83: # usection(domain,user,courseid) : output of section name/number or '' for
84: # "not in course" and '-1' for "no section"
85: # userenvironment(domain,user,what) : puts out any environment parameter
86: # for a user
87: # idput(domain,hash) : writes IDs for users from hash (name=>id,name=>id)
88: # idget(domain,array): returns hash with usernames (id=>name,id=>name) for
89: # an array of IDs
90: # idrget(domain,array): returns hash with IDs for usernames (name=>id,...) for
91: # an array of names
1.73 www 92: # metadata(file,entry): returns the metadata entry for a file. entry='keys'
93: # returns a comma separated list of keys
1.12 www 94: #
1.1 albertel 95: # 6/1/99,6/2,6/10,6/11,6/12,6/14,6/26,6/28,6/29,6/30,
1.5 www 96: # 7/1,7/2,7/9,7/10,7/12,7/14,7/15,7/19,
1.8 www 97: # 11/8,11/16,11/18,11/22,11/23,12/22,
1.12 www 98: # 01/06,01/13,02/24,02/28,02/29,
99: # 03/01,03/02,03/06,03/07,03/13,
1.15 www 100: # 04/05,05/29,05/31,06/01,
101: # 06/05,06/26 Gerd Kortemeyer
102: # 06/26 Ben Tyszka
1.22 www 103: # 06/30,07/15,07/17,07/18,07/20,07/21,07/22,07/25 Gerd Kortemeyer
1.23 www 104: # 08/14 Ben Tyszka
1.36 albertel 105: # 08/22,08/28,08/31,09/01,09/02,09/04,09/05,09/25,09/28,09/30 Gerd Kortemeyer
1.35 www 106: # 10/04 Gerd Kortemeyer
1.36 albertel 107: # 10/04 Guy Albertelli
1.54 www 108: # 10/06,10/09,10/10,10/11,10/14,10/20,10/23,10/25,10/26,10/27,10/28,10/29,
1.71 www 109: # 10/30,10/31,
1.75 www 110: # 11/2,11/14,11/15,11/16,11/20,11/21,11/22,11/25,11/27,
1.83 www 111: # 12/02,12/12,12/13,12/14,12/28,12/29 Gerd Kortemeyer
1.87 www 112: # 05/01/01 Guy Albertelli
1.89 www 113: # 05/01,06/01,09/01 Gerd Kortemeyer
1.92 www 114: # 09/01 Guy Albertelli
1.102 www 115: # 09/01,10/01,11/01 Gerd Kortemeyer
1.103 harris41 116: # 02/27/01 Scott Harrison
1.104 www 117: # 3/2 Gerd Kortemeyer
1.119 harris41 118: # 3/15,3/19 Scott Harrison
1.110 www 119: # 3/19,3/20 Gerd Kortemeyer
1.123 harris41 120: # 3/22,3/27,4/2,4/16,4/17 Scott Harrison
1.125 www 121: # 5/26,5/28 Gerd Kortemeyer
1.127 ng 122: # 5/30 H. K. Ng
1.128 www 123: # 6/1 Gerd Kortemeyer
1.124 www 124: #
1.128 www 125:
1.1 albertel 126: package Apache::lonnet;
127:
128: use strict;
129: use Apache::File;
1.8 www 130: use LWP::UserAgent();
1.15 www 131: use HTTP::Headers;
1.11 www 132: use vars
1.77 www 133: qw(%perlvar %hostname %homecache %spareid %hostdom %libserv %pr %prp %fe %fd $readit %metacache);
1.1 albertel 134: use IO::Socket;
1.31 www 135: use GDBM_File;
1.8 www 136: use Apache::Constants qw(:common :http);
1.71 www 137: use HTML::TokeParser;
1.88 www 138: use Fcntl qw(:flock);
1.1 albertel 139:
140: # --------------------------------------------------------------------- Logging
141:
142: sub logthis {
143: my $message=shift;
144: my $execdir=$perlvar{'lonDaemons'};
145: my $now=time;
146: my $local=localtime($now);
147: my $fh=Apache::File->new(">>$execdir/logs/lonnet.log");
148: print $fh "$local ($$): $message\n";
149: return 1;
150: }
151:
152: sub logperm {
153: my $message=shift;
154: my $execdir=$perlvar{'lonDaemons'};
155: my $now=time;
156: my $local=localtime($now);
157: my $fh=Apache::File->new(">>$execdir/logs/lonnet.perm.log");
158: print $fh "$now:$message:$local\n";
159: return 1;
160: }
161:
162: # -------------------------------------------------- Non-critical communication
163: sub subreply {
164: my ($cmd,$server)=@_;
165: my $peerfile="$perlvar{'lonSockDir'}/$server";
166: my $client=IO::Socket::UNIX->new(Peer =>"$peerfile",
167: Type => SOCK_STREAM,
168: Timeout => 10)
169: or return "con_lost";
170: print $client "$cmd\n";
171: my $answer=<$client>;
1.9 www 172: if (!$answer) { $answer="con_lost"; }
1.1 albertel 173: chomp($answer);
174: return $answer;
175: }
176:
177: sub reply {
178: my ($cmd,$server)=@_;
179: my $answer=subreply($cmd,$server);
180: if ($answer eq 'con_lost') { $answer=subreply($cmd,$server); }
1.65 www 181: if (($answer=~/^refused/) || ($answer=~/^rejected/)) {
1.12 www 182: &logthis("<font color=blue>WARNING:".
183: " $cmd to $server returned $answer</font>");
184: }
1.1 albertel 185: return $answer;
186: }
187:
188: # ----------------------------------------------------------- Send USR1 to lonc
189:
190: sub reconlonc {
191: my $peerfile=shift;
192: &logthis("Trying to reconnect for $peerfile");
193: my $loncfile="$perlvar{'lonDaemons'}/logs/lonc.pid";
194: if (my $fh=Apache::File->new("$loncfile")) {
195: my $loncpid=<$fh>;
196: chomp($loncpid);
197: if (kill 0 => $loncpid) {
198: &logthis("lonc at pid $loncpid responding, sending USR1");
199: kill USR1 => $loncpid;
200: sleep 1;
201: if (-e "$peerfile") { return; }
202: &logthis("$peerfile still not there, give it another try");
203: sleep 5;
204: if (-e "$peerfile") { return; }
1.12 www 205: &logthis(
206: "<font color=blue>WARNING: $peerfile still not there, giving up</font>");
1.1 albertel 207: } else {
1.12 www 208: &logthis(
209: "<font color=blue>WARNING:".
210: " lonc at pid $loncpid not responding, giving up</font>");
1.1 albertel 211: }
212: } else {
1.12 www 213: &logthis('<font color=blue>WARNING: lonc not running, giving up</font>');
1.1 albertel 214: }
215: }
216:
217: # ------------------------------------------------------ Critical communication
1.12 www 218:
1.1 albertel 219: sub critical {
220: my ($cmd,$server)=@_;
1.89 www 221: unless ($hostname{$server}) {
222: &logthis("<font color=blue>WARNING:".
223: " Critical message to unknown server ($server)</font>");
224: return 'no_such_host';
225: }
1.1 albertel 226: my $answer=reply($cmd,$server);
227: if ($answer eq 'con_lost') {
228: my $pingreply=reply('ping',$server);
229: &reconlonc("$perlvar{'lonSockDir'}/$server");
230: my $pongreply=reply('pong',$server);
231: &logthis("Ping/Pong for $server: $pingreply/$pongreply");
232: $answer=reply($cmd,$server);
233: if ($answer eq 'con_lost') {
234: my $now=time;
235: my $middlename=$cmd;
1.5 www 236: $middlename=substr($middlename,0,16);
1.1 albertel 237: $middlename=~s/\W//g;
238: my $dfilename=
239: "$perlvar{'lonSockDir'}/delayed/$now.$middlename.$server";
240: {
241: my $dfh;
242: if ($dfh=Apache::File->new(">$dfilename")) {
1.7 www 243: print $dfh "$cmd\n";
1.1 albertel 244: }
245: }
246: sleep 2;
247: my $wcmd='';
248: {
249: my $dfh;
250: if ($dfh=Apache::File->new("$dfilename")) {
251: $wcmd=<$dfh>;
252: }
253: }
254: chomp($wcmd);
1.7 www 255: if ($wcmd eq $cmd) {
1.12 www 256: &logthis("<font color=blue>WARNING: ".
257: "Connection buffer $dfilename: $cmd</font>");
1.1 albertel 258: &logperm("D:$server:$cmd");
259: return 'con_delayed';
260: } else {
1.12 www 261: &logthis("<font color=red>CRITICAL:"
262: ." Critical connection failed: $server $cmd</font>");
1.1 albertel 263: &logperm("F:$server:$cmd");
264: return 'con_failed';
265: }
266: }
267: }
268: return $answer;
269: }
270:
1.5 www 271: # ---------------------------------------------------------- Append Environment
272:
273: sub appenv {
1.6 www 274: my %newenv=@_;
1.35 www 275: map {
276: if (($newenv{$_}=~/^user\.role/) || ($newenv{$_}=~/^user\.priv/)) {
277: &logthis("<font color=blue>WARNING: ".
278: "Attempt to modify environment ".$_." to ".$newenv{$_});
279: delete($newenv{$_});
280: } else {
281: $ENV{$_}=$newenv{$_};
282: }
283: } keys %newenv;
1.95 www 284:
285: my $lockfh;
286: unless ($lockfh=Apache::File->new("$ENV{'user.environment'}")) {
1.97 www 287: return 'error: '.$!;
1.95 www 288: }
289: unless (flock($lockfh,LOCK_EX)) {
290: &logthis("<font color=blue>WARNING: ".
291: 'Could not obtain exclusive lock in appenv: '.$!);
292: $lockfh->close();
293: return 'error: '.$!;
294: }
295:
1.6 www 296: my @oldenv;
297: {
298: my $fh;
299: unless ($fh=Apache::File->new("$ENV{'user.environment'}")) {
1.97 www 300: return 'error: '.$!;
1.6 www 301: }
302: @oldenv=<$fh>;
1.89 www 303: $fh->close();
1.6 www 304: }
305: for (my $i=0; $i<=$#oldenv; $i++) {
306: chomp($oldenv[$i]);
1.9 www 307: if ($oldenv[$i] ne '') {
308: my ($name,$value)=split(/=/,$oldenv[$i]);
1.24 www 309: unless (defined($newenv{$name})) {
310: $newenv{$name}=$value;
311: }
1.9 www 312: }
1.6 www 313: }
314: {
315: my $fh;
316: unless ($fh=Apache::File->new(">$ENV{'user.environment'}")) {
317: return 'error';
318: }
319: my $newname;
1.93 www 320: foreach $newname (keys %newenv) {
1.6 www 321: print $fh "$newname=$newenv{$newname}\n";
322: }
1.86 albertel 323: $fh->close();
1.56 www 324: }
1.95 www 325:
326: $lockfh->close();
1.56 www 327: return 'ok';
328: }
329: # ----------------------------------------------------- Delete from Environment
330:
331: sub delenv {
332: my $delthis=shift;
333: my %newenv=();
334: if (($delthis=~/user\.role/) || ($delthis=~/user\.priv/)) {
335: &logthis("<font color=blue>WARNING: ".
336: "Attempt to delete from environment ".$delthis);
337: return 'error';
338: }
339: my @oldenv;
340: {
341: my $fh;
342: unless ($fh=Apache::File->new("$ENV{'user.environment'}")) {
343: return 'error';
344: }
1.89 www 345: unless (flock($fh,LOCK_SH)) {
346: &logthis("<font color=blue>WARNING: ".
347: 'Could not obtain shared lock in delenv: '.$!);
348: $fh->close();
349: return 'error: '.$!;
350: }
1.56 www 351: @oldenv=<$fh>;
1.89 www 352: $fh->close();
1.56 www 353: }
354: {
355: my $fh;
356: unless ($fh=Apache::File->new(">$ENV{'user.environment'}")) {
357: return 'error';
358: }
1.89 www 359: unless (flock($fh,LOCK_EX)) {
360: &logthis("<font color=blue>WARNING: ".
361: 'Could not obtain exclusive lock in delenv: '.$!);
362: $fh->close();
363: return 'error: '.$!;
364: }
1.56 www 365: map {
366: unless ($_=~/^$delthis/) { print $fh $_; }
367: } @oldenv;
1.87 www 368: $fh->close();
1.5 www 369: }
370: return 'ok';
371: }
1.1 albertel 372:
373: # ------------------------------ Find server with least workload from spare.tab
1.11 www 374:
1.1 albertel 375: sub spareserver {
376: my $tryserver;
377: my $spareserver='';
378: my $lowestserver=100;
379: foreach $tryserver (keys %spareid) {
380: my $answer=reply('load',$tryserver);
381: if (($answer =~ /\d/) && ($answer<$lowestserver)) {
382: $spareserver="http://$hostname{$tryserver}";
383: $lowestserver=$answer;
384: }
385: }
386: return $spareserver;
387: }
388:
389: # --------- Try to authenticate user from domain's lib servers (first this one)
1.11 www 390:
1.1 albertel 391: sub authenticate {
392: my ($uname,$upass,$udom)=@_;
1.12 www 393: $upass=escape($upass);
1.1 albertel 394: if (($perlvar{'lonRole'} eq 'library') &&
395: ($udom eq $perlvar{'lonDefDomain'})) {
1.3 www 396: my $answer=reply("encrypt:auth:$udom:$uname:$upass",$perlvar{'lonHostID'});
1.2 www 397: if ($answer =~ /authorized/) {
1.9 www 398: if ($answer eq 'authorized') {
399: &logthis("User $uname at $udom authorized by local server");
400: return $perlvar{'lonHostID'};
401: }
402: if ($answer eq 'non_authorized') {
403: &logthis("User $uname at $udom rejected by local server");
404: return 'no_host';
405: }
1.2 www 406: }
1.1 albertel 407: }
408:
409: my $tryserver;
410: foreach $tryserver (keys %libserv) {
411: if ($hostdom{$tryserver} eq $udom) {
1.10 www 412: my $answer=reply("encrypt:auth:$udom:$uname:$upass",$tryserver);
1.1 albertel 413: if ($answer =~ /authorized/) {
1.9 www 414: if ($answer eq 'authorized') {
415: &logthis("User $uname at $udom authorized by $tryserver");
416: return $tryserver;
417: }
418: if ($answer eq 'non_authorized') {
419: &logthis("User $uname at $udom rejected by $tryserver");
420: return 'no_host';
421: }
1.1 albertel 422: }
423: }
1.9 www 424: }
425: &logthis("User $uname at $udom could not be authenticated");
1.1 albertel 426: return 'no_host';
427: }
428:
429: # ---------------------- Find the homebase for a user from domain's lib servers
1.11 www 430:
1.1 albertel 431: sub homeserver {
432: my ($uname,$udom)=@_;
433:
434: my $index="$uname:$udom";
435: if ($homecache{$index}) { return "$homecache{$index}"; }
436:
437: my $tryserver;
438: foreach $tryserver (keys %libserv) {
439: if ($hostdom{$tryserver} eq $udom) {
440: my $answer=reply("home:$udom:$uname",$tryserver);
441: if ($answer eq 'found') {
442: $homecache{$index}=$tryserver;
443: return $tryserver;
444: }
445: }
446: }
447: return 'no_host';
1.70 www 448: }
449:
450: # ------------------------------------- Find the usernames behind a list of IDs
451:
452: sub idget {
453: my ($udom,@ids)=@_;
454: my %returnhash=();
455:
456: my $tryserver;
457: foreach $tryserver (keys %libserv) {
458: if ($hostdom{$tryserver} eq $udom) {
459: my $idlist=join('&',@ids);
460: $idlist=~tr/A-Z/a-z/;
461: my $reply=&reply("idget:$udom:".$idlist,$tryserver);
462: my @answer=();
1.76 www 463: if (($reply ne 'con_lost') && ($reply!~/^error\:/)) {
1.70 www 464: @answer=split(/\&/,$reply);
465: } ;
466: my $i;
467: for ($i=0;$i<=$#ids;$i++) {
468: if ($answer[$i]) {
469: $returnhash{$ids[$i]}=$answer[$i];
470: }
471: }
472: }
473: }
474: return %returnhash;
475: }
476:
477: # ------------------------------------- Find the IDs behind a list of usernames
478:
479: sub idrget {
480: my ($udom,@unames)=@_;
481: my %returnhash=();
482: map {
483: $returnhash{$_}=(&userenvironment($udom,$_,'id'))[1];
484: } @unames;
485: return %returnhash;
486: }
487:
488: # ------------------------------- Store away a list of names and associated IDs
489:
490: sub idput {
491: my ($udom,%ids)=@_;
492: my %servers=();
493: map {
494: my $uhom=&homeserver($_,$udom);
495: if ($uhom ne 'no_host') {
496: my $id=&escape($ids{$_});
497: $id=~tr/A-Z/a-z/;
498: my $unam=&escape($_);
499: if ($servers{$uhom}) {
500: $servers{$uhom}.='&'.$id.'='.$unam;
501: } else {
502: $servers{$uhom}=$id.'='.$unam;
503: }
504: &critical('put:'.$udom.':'.$unam.':environment:id='.$id,$uhom);
505: }
506: } keys %ids;
507: map {
508: &critical('idput:'.$udom.':'.$servers{$_},$_);
509: } keys %servers;
510: }
511:
512: # ------------------------------------- Find the section of student in a course
513:
514: sub usection {
515: my ($udom,$unam,$courseid)=@_;
516: $courseid=~s/\_/\//g;
517: $courseid=~s/^(\w)/\/$1/;
518: map {
519: my ($key,$value)=split(/\=/,$_);
520: $key=&unescape($key);
521: if ($key=~/^$courseid(?:\/)*(\w+)*\_st$/) {
522: my $section=$1;
523: if ($key eq $courseid.'_st') { $section=''; }
524: my ($dummy,$end,$start)=split(/\_/,&unescape($value));
525: my $now=time;
526: my $notactive=0;
527: if ($start) {
528: if ($now<$start) { $notactive=1; }
529: }
530: if ($end) {
531: if ($now>$end) { $notactive=1; }
532: }
533: unless ($notactive) { return $section; }
534: }
535: } split(/\&/,&reply('dump:'.$udom.':'.$unam.':roles',
536: &homeserver($unam,$udom)));
537: return '-1';
538: }
539:
540: # ------------------------------------- Read an entry from a user's environment
541:
542: sub userenvironment {
543: my ($udom,$unam,@what)=@_;
544: my %returnhash=();
545: my @answer=split(/\&/,
546: &reply('get:'.$udom.':'.$unam.':environment:'.join('&',@what),
547: &homeserver($unam,$udom)));
548: my $i;
549: for ($i=0;$i<=$#what;$i++) {
550: $returnhash{$what[$i]}=&unescape($answer[$i]);
551: }
552: return %returnhash;
1.1 albertel 553: }
554:
555: # ----------------------------- Subscribe to a resource, return URL if possible
1.11 www 556:
1.1 albertel 557: sub subscribe {
558: my $fname=shift;
559: my $author=$fname;
560: $author=~s/\/home\/httpd\/html\/res\/([^\/]*)\/([^\/]*).*/$1\/$2/;
561: my ($udom,$uname)=split(/\//,$author);
562: my $home=homeserver($uname,$udom);
563: if (($home eq 'no_host') || ($home eq $perlvar{'lonHostID'})) {
564: return 'not_found';
565: }
566: my $answer=reply("sub:$fname",$home);
1.64 www 567: if (($answer eq 'con_lost') || ($answer eq 'rejected')) {
568: $answer.=' by '.$home;
569: }
1.1 albertel 570: return $answer;
571: }
572:
1.8 www 573: # -------------------------------------------------------------- Replicate file
574:
575: sub repcopy {
576: my $filename=shift;
1.23 www 577: $filename=~s/\/+/\//g;
1.8 www 578: my $transname="$filename.in.transfer";
1.17 www 579: if ((-e $filename) || (-e $transname)) { return OK; }
1.8 www 580: my $remoteurl=subscribe($filename);
1.64 www 581: if ($remoteurl =~ /^con_lost by/) {
582: &logthis("Subscribe returned $remoteurl: $filename");
1.8 www 583: return HTTP_SERVICE_UNAVAILABLE;
584: } elsif ($remoteurl eq 'not_found') {
585: &logthis("Subscribe returned not_found: $filename");
586: return HTTP_NOT_FOUND;
1.64 www 587: } elsif ($remoteurl =~ /^rejected by/) {
588: &logthis("Subscribe returned $remoteurl: $filename");
1.8 www 589: return FORBIDDEN;
1.20 www 590: } elsif ($remoteurl eq 'directory') {
591: return OK;
1.8 www 592: } else {
593: my @parts=split(/\//,$filename);
594: my $path="/$parts[1]/$parts[2]/$parts[3]/$parts[4]";
595: if ($path ne "$perlvar{'lonDocRoot'}/res") {
596: &logthis("Malconfiguration for replication: $filename");
597: return HTTP_BAD_REQUEST;
598: }
599: my $count;
600: for ($count=5;$count<$#parts;$count++) {
601: $path.="/$parts[$count]";
602: if ((-e $path)!=1) {
603: mkdir($path,0777);
604: }
605: }
606: my $ua=new LWP::UserAgent;
607: my $request=new HTTP::Request('GET',"$remoteurl");
608: my $response=$ua->request($request,$transname);
609: if ($response->is_error()) {
610: unlink($transname);
611: my $message=$response->status_line;
1.12 www 612: &logthis("<font color=blue>WARNING:"
613: ." LWP get: $message: $filename</font>");
1.8 www 614: return HTTP_SERVICE_UNAVAILABLE;
615: } else {
1.16 www 616: if ($remoteurl!~/\.meta$/) {
617: my $mrequest=new HTTP::Request('GET',$remoteurl.'.meta');
618: my $mresponse=$ua->request($mrequest,$filename.'.meta');
619: if ($mresponse->is_error()) {
620: unlink($filename.'.meta');
621: &logthis(
622: "<font color=yellow>INFO: No metadata: $filename</font>");
623: }
624: }
1.8 www 625: rename($transname,$filename);
626: return OK;
627: }
628: }
629: }
630:
1.15 www 631: # --------------------------------------------------------- Server Side Include
632:
633: sub ssi {
634:
1.23 www 635: my ($fn,%form)=@_;
1.15 www 636:
637: my $ua=new LWP::UserAgent;
1.23 www 638:
639: my $request;
640:
641: if (%form) {
642: $request=new HTTP::Request('POST',"http://".$ENV{'HTTP_HOST'}.$fn);
643: $request->content(join '&', map { "$_=$form{$_}" } keys %form);
644: } else {
645: $request=new HTTP::Request('GET',"http://".$ENV{'HTTP_HOST'}.$fn);
646: }
647:
1.15 www 648: $request->header(Cookie => $ENV{'HTTP_COOKIE'});
649: my $response=$ua->request($request);
650:
651: return $response->content;
652: }
653:
1.14 www 654: # ------------------------------------------------------------------------- Log
655:
656: sub log {
657: my ($dom,$nam,$hom,$what)=@_;
1.47 www 658: return critical("log:$dom:$nam:$what",$hom);
1.110 www 659: }
660:
661: # --------------------------------------------- Set Expire Date for Spreadsheet
662:
663: sub expirespread {
664: my ($uname,$udom,$stype,$usymb)=@_;
665: my $cid=$ENV{'request.course.id'};
666: if ($cid) {
667: my $now=time;
668: my $key=$uname.':'.$udom.':'.$stype.':'.$usymb;
669: return &reply('put:'.$ENV{'course.'.$cid.'.domain'}.':'.
670: $ENV{'course.'.$cid.'.num'}.
671: ':nohist_expirationdates:'.
672: &escape($key).'='.$now,
673: $ENV{'course.'.$cid.'.home'})
674: }
675: return 'ok';
1.14 www 676: }
677:
1.109 www 678: # ----------------------------------------------------- Devalidate Spreadsheets
679:
680: sub devalidate {
681: my $symb=shift;
682: my $cid=$ENV{'request.course.id'};
683: if ($cid) {
684: my $key=$ENV{'user.name'}.':'.$ENV{'user.domain'}.':';
685: my $status=
1.133 ! albertel 686: &del('nohist_calculatedsheet',
! 687: [$key.'studentcalc'],
! 688: $ENV{'course.'.$cid.'.domain'},
! 689: $ENV{'course.'.$cid.'.num'})
! 690: .' '.
! 691: &del('nohist_calculatedsheets_'.$cid,
! 692: [$key.'assesscalc:'.$symb]);
1.109 www 693: unless ($status eq 'ok ok') {
694: &logthis('Could not devalidate spreadsheet '.
695: $ENV{'user.name'}.' at '.$ENV{'user.domain'}.' for '.
696: $symb.': '.$status);
1.133 ! albertel 697: }
1.109 www 698: }
699: }
700:
1.9 www 701: # ----------------------------------------------------------------------- Store
702:
703: sub store {
1.124 www 704: my ($storehash,$symb,$namespace,$domain,$stuname) = @_;
705: my $home='';
706:
707: if ($stuname) {
708: $home=&homeserver($stuname,$domain);
709: }
710:
1.122 albertel 711: if (!$symb) { unless ($symb=&symbread()) { return ''; } }
1.109 www 712:
713: &devalidate($symb);
714:
715: $symb=escape($symb);
1.122 albertel 716: if (!$namespace) { unless ($namespace=$ENV{'request.course.id'}) { return ''; } }
717: if (!$domain) { $domain=$ENV{'user.domain'}; }
718: if (!$stuname) { $stuname=$ENV{'user.name'}; }
719: if (!$home) { $home=$ENV{'user.home'}; }
1.12 www 720: my $namevalue='';
721: map {
1.122 albertel 722: $namevalue.=escape($_).'='.escape($$storehash{$_}).'&';
723: } keys %$storehash;
1.12 www 724: $namevalue=~s/\&$//;
1.124 www 725: return reply("store:$domain:$stuname:$namespace:$symb:$namevalue","$home");
1.9 www 726: }
727:
1.47 www 728: # -------------------------------------------------------------- Critical Store
729:
730: sub cstore {
1.124 www 731: my ($storehash,$symb,$namespace,$domain,$stuname) = @_;
732: my $home='';
733:
734: if ($stuname) {
735: $home=&homeserver($stuname,$domain);
736: }
737:
1.122 albertel 738: if (!$symb) { unless ($symb=&symbread()) { return ''; } }
1.109 www 739:
740: &devalidate($symb);
741:
742: $symb=escape($symb);
1.122 albertel 743: if (!$namespace) { unless ($namespace=$ENV{'request.course.id'}) { return ''; } }
744: if (!$domain) { $domain=$ENV{'user.domain'}; }
745: if (!$stuname) { $stuname=$ENV{'user.name'}; }
746: if (!$home) { $home=$ENV{'user.home'}; }
747:
1.47 www 748: my $namevalue='';
749: map {
1.122 albertel 750: $namevalue.=escape($_).'='.escape($$storehash{$_}).'&';
751: } keys %$storehash;
1.47 www 752: $namevalue=~s/\&$//;
1.122 albertel 753: return critical("store:$domain:$stuname:$namespace:$symb:$namevalue","$home");
1.47 www 754: }
755:
1.9 www 756: # --------------------------------------------------------------------- Restore
757:
758: sub restore {
1.124 www 759: my ($symb,$namespace,$domain,$stuname) = @_;
760: my $home='';
761:
762: if ($stuname) {
763: $home=&homeserver($stuname,$domain);
764: }
765:
1.122 albertel 766: if (!$symb) {
767: unless ($symb=escape(&symbread())) { return ''; }
768: } else {
769: $symb=&escape($symb);
770: }
771: if (!$namespace) { unless ($namespace=$ENV{'request.course.id'}) { return ''; } }
772: if (!$domain) { $domain=$ENV{'user.domain'}; }
773: if (!$stuname) { $stuname=$ENV{'user.name'}; }
774: if (!$home) { $home=$ENV{'user.home'}; }
775: my $answer=&reply("restore:$domain:$stuname:$namespace:$symb","$home");
776:
1.12 www 777: my %returnhash=();
778: map {
779: my ($name,$value)=split(/\=/,$_);
780: $returnhash{&unescape($name)}=&unescape($value);
781: } split(/\&/,$answer);
1.75 www 782: my $version;
783: for ($version=1;$version<=$returnhash{'version'};$version++) {
784: map {
785: $returnhash{$_}=$returnhash{$version.':'.$_};
786: } split(/\:/,$returnhash{$version.':keys'});
787: }
1.13 www 788: return %returnhash;
1.34 www 789: }
790:
791: # ---------------------------------------------------------- Course Description
792:
793: sub coursedescription {
794: my $courseid=shift;
795: $courseid=~s/^\///;
1.49 www 796: $courseid=~s/\_/\//g;
1.34 www 797: my ($cdomain,$cnum)=split(/\//,$courseid);
1.129 albertel 798: my $chome=&homeserver($cnum,$cdomain);
1.34 www 799: if ($chome ne 'no_host') {
1.129 albertel 800: my %returnhash=&dump('environment',$cdomain,$cnum);
801: if (!exists($returnhash{'con_lost'})) {
1.96 www 802: my $normalid=$cdomain.'_'.$cnum;
1.53 www 803: my %envhash=();
1.129 albertel 804: $returnhash{'home'}= $chome;
805: $returnhash{'domain'} = $cdomain;
806: $returnhash{'num'} = $cnum;
1.130 albertel 807: while (my ($name,$value) = each %returnhash) {
1.53 www 808: $envhash{'course.'.$normalid.'.'.$name}=$value;
1.129 albertel 809: }
1.34 www 810: $returnhash{'url'}='/res/'.declutter($returnhash{'url'});
811: $returnhash{'fn'}=$perlvar{'lonDaemons'}.'/tmp/'.
1.38 www 812: $ENV{'user.name'}.'_'.$cdomain.'_'.$cnum;
1.54 www 813: $envhash{'course.'.$normalid.'.last_cache'}=time;
1.60 www 814: $envhash{'course.'.$normalid.'.home'}=$chome;
815: $envhash{'course.'.$normalid.'.domain'}=$cdomain;
816: $envhash{'course.'.$normalid.'.num'}=$cnum;
1.53 www 817: &appenv(%envhash);
1.34 www 818: return %returnhash;
819: }
820: }
821: return ();
1.9 www 822: }
1.1 albertel 823:
1.103 harris41 824: # -------------------------------------------------------- Get user privileges
1.11 www 825:
826: sub rolesinit {
827: my ($domain,$username,$authhost)=@_;
828: my $rolesdump=reply("dump:$domain:$username:roles",$authhost);
1.12 www 829: if (($rolesdump eq 'con_lost') || ($rolesdump eq '')) { return ''; }
1.11 www 830: my %allroles=();
831: my %thesepriv=();
832: my $now=time;
1.21 www 833: my $userroles="user.login.time=$now\n";
1.11 www 834: my $thesestr;
835:
836: if ($rolesdump ne '') {
837: map {
1.21 www 838: if ($_!~/^rolesdef\&/) {
1.11 www 839: my ($area,$role)=split(/=/,$_);
1.21 www 840: $area=~s/\_\w\w$//;
1.11 www 841: my ($trole,$tend,$tstart)=split(/_/,$role);
1.21 www 842: $userroles.='user.role.'.$trole.'.'.$area.'='.
843: $tstart.'.'.$tend."\n";
1.11 www 844: if ($tend!=0) {
845: if ($tend<$now) {
846: $trole='';
847: }
848: }
849: if ($tstart!=0) {
850: if ($tstart>$now) {
851: $trole='';
852: }
853: }
854: if (($area ne '') && ($trole ne '')) {
1.50 www 855: my $spec=$trole.'.'.$area;
1.12 www 856: my ($tdummy,$tdomain,$trest)=split(/\//,$area);
857: if ($trole =~ /^cr\//) {
858: my ($rdummy,$rdomain,$rauthor,$rrole)=split(/\//,$trole);
859: my $homsvr=homeserver($rauthor,$rdomain);
860: if ($hostname{$homsvr} ne '') {
861: my $roledef=
1.21 www 862: reply("get:$rdomain:$rauthor:roles:rolesdef_$rrole",
1.12 www 863: $homsvr);
864: if (($roledef ne 'con_lost') && ($roledef ne '')) {
865: my ($syspriv,$dompriv,$coursepriv)=
1.21 www 866: split(/\_/,unescape($roledef));
1.50 www 867: $allroles{'cm./'}.=':'.$syspriv;
868: $allroles{$spec.'./'}.=':'.$syspriv;
1.12 www 869: if ($tdomain ne '') {
1.50 www 870: $allroles{'cm./'.$tdomain.'/'}.=':'.$dompriv;
871: $allroles{$spec.'./'.$tdomain.'/'}.=':'.$dompriv;
1.12 www 872: if ($trest ne '') {
1.50 www 873: $allroles{'cm.'.$area}.=':'.$coursepriv;
874: $allroles{$spec.'.'.$area}.=':'.$coursepriv;
1.12 www 875: }
876: }
877: }
1.11 www 878: }
1.12 www 879: } else {
1.50 www 880: $allroles{'cm./'}.=':'.$pr{$trole.':s'};
881: $allroles{$spec.'./'}.=':'.$pr{$trole.':s'};
1.12 www 882: if ($tdomain ne '') {
1.50 www 883: $allroles{'cm./'.$tdomain.'/'}.=':'.$pr{$trole.':d'};
884: $allroles{$spec.'./'.$tdomain.'/'}.=':'.$pr{$trole.':d'};
1.12 www 885: if ($trest ne '') {
1.50 www 886: $allroles{'cm.'.$area}.=':'.$pr{$trole.':c'};
887: $allroles{$spec.'.'.$area}.=':'.$pr{$trole.':c'};
1.12 www 888: }
889: }
1.11 www 890: }
1.12 www 891: }
892: }
1.11 www 893: } split(/&/,$rolesdump);
1.125 www 894: my $adv=0;
1.128 www 895: my $author=0;
1.11 www 896: map {
897: %thesepriv=();
1.128 www 898: if ($_!~/^st/) { $adv=1; }
899: if (($_=~/^au/) || ($_=~/^ca/)) { $author=1; }
1.11 www 900: map {
901: if ($_ ne '') {
1.103 harris41 902: my ($privilege,$restrictions)=split(/&/,$_);
1.11 www 903: if ($restrictions eq '') {
1.103 harris41 904: $thesepriv{$privilege}='F';
1.11 www 905: } else {
1.103 harris41 906: if ($thesepriv{$privilege} ne 'F') {
907: $thesepriv{$privilege}.=$restrictions;
1.11 www 908: }
909: }
910: }
911: } split(/:/,$allroles{$_});
912: $thesestr='';
913: map { $thesestr.=':'.$_.'&'.$thesepriv{$_}; } keys %thesepriv;
914: $userroles.='user.priv.'.$_.'='.$thesestr."\n";
915: } keys %allroles;
1.128 www 916: $userroles.='user.adv='.$adv."\n".
917: 'user.author='.$author."\n";
1.126 www 918: $ENV{'user.adv'}=$adv;
1.11 www 919: }
920: return $userroles;
921: }
922:
1.12 www 923: # --------------------------------------------------------------- get interface
924:
925: sub get {
1.131 albertel 926: my ($namespace,$storearr,$udomain,$uname)=@_;
1.12 www 927: my $items='';
928: map {
929: $items.=escape($_).'&';
1.131 albertel 930: } @$storearr;
1.12 www 931: $items=~s/\&$//;
1.131 albertel 932: if (!$udomain) { $udomain=$ENV{'user.domain'}; }
933: if (!$uname) { $uname=$ENV{'user.name'}; }
934: my $uhome=&homeserver($uname,$udomain);
935:
1.133 ! albertel 936: my $rep=&reply("get:$udomain:$uname:$namespace:$items",$uhome);
1.15 www 937: my @pairs=split(/\&/,$rep);
938: my %returnhash=();
1.42 www 939: my $i=0;
1.15 www 940: map {
1.42 www 941: $returnhash{$_}=unescape($pairs[$i]);
942: $i++;
1.131 albertel 943: } @$storearr;
1.15 www 944: return %returnhash;
1.27 www 945: }
946:
947: # --------------------------------------------------------------- del interface
948:
949: sub del {
1.133 ! albertel 950: my ($namespace,$storearr,$udomain,$uname)=@_;
1.27 www 951: my $items='';
952: map {
953: $items.=escape($_).'&';
1.133 ! albertel 954: } @$storearr;
1.27 www 955: $items=~s/\&$//;
1.133 ! albertel 956: if (!$udomain) { $udomain=$ENV{'user.domain'}; }
! 957: if (!$uname) { $uname=$ENV{'user.name'}; }
! 958: my $uhome=&homeserver($uname,$udomain);
! 959:
! 960: return &reply("del:$udomain:$uname:$namespace:$items",$uhome);
1.15 www 961: }
962:
963: # -------------------------------------------------------------- dump interface
964:
965: sub dump {
1.129 albertel 966: my ($namespace,$udomain,$uname)=@_;
967: if (!$udomain) { $udomain=$ENV{'user.domain'}; }
968: if (!$uname) { $uname=$ENV{'user.name'}; }
969: my $uhome=&homeserver($uname,$udomain);
970: my $rep=reply("dump:$udomain:$uname:$namespace",$uhome);
1.12 www 971: my @pairs=split(/\&/,$rep);
972: my %returnhash=();
973: map {
974: my ($key,$value)=split(/=/,$_);
1.29 www 975: $returnhash{unescape($key)}=unescape($value);
1.12 www 976: } @pairs;
977: return %returnhash;
978: }
979:
980: # --------------------------------------------------------------- put interface
981:
982: sub put {
983: my ($namespace,%storehash)=@_;
984: my $items='';
985: map {
986: $items.=escape($_).'='.escape($storehash{$_}).'&';
987: } keys %storehash;
988: $items=~s/\&$//;
989: return reply("put:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
1.47 www 990: $ENV{'user.home'});
991: }
992:
993: # ------------------------------------------------------ critical put interface
994:
995: sub cput {
996: my ($namespace,%storehash)=@_;
997: my $items='';
998: map {
999: $items.=escape($_).'='.escape($storehash{$_}).'&';
1000: } keys %storehash;
1001: $items=~s/\&$//;
1002: return critical
1003: ("put:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
1.12 www 1004: $ENV{'user.home'});
1005: }
1006:
1007: # -------------------------------------------------------------- eget interface
1008:
1009: sub eget {
1.133 ! albertel 1010: my ($namespace,$storearr,$udomain,$uname)=@_;
1.12 www 1011: my $items='';
1012: map {
1013: $items.=escape($_).'&';
1.133 ! albertel 1014: } @$storearr;
1.12 www 1015: $items=~s/\&$//;
1.133 ! albertel 1016: if (!$udomain) { $udomain=$ENV{'user.domain'}; }
! 1017: if (!$uname) { $uname=$ENV{'user.name'}; }
! 1018: my $uhome=&homeserver($uname,$udomain);
! 1019: my $rep=&reply("eget:$udomain:$uname:$namespace:$items",$uhome);
1.12 www 1020: my @pairs=split(/\&/,$rep);
1021: my %returnhash=();
1.42 www 1022: my $i=0;
1.12 www 1023: map {
1.42 www 1024: $returnhash{$_}=unescape($pairs[$i]);
1025: $i++;
1.133 ! albertel 1026: } @$storearr;
1.12 www 1027: return %returnhash;
1028: }
1029:
1.103 harris41 1030: # ------------------------------------------------- Check for a user privilege
1.12 www 1031:
1032: sub allowed {
1033: my ($priv,$uri)=@_;
1.52 www 1034: $uri=&declutter($uri);
1.29 www 1035:
1.54 www 1036: # Free bre access to adm and meta resources
1.29 www 1037:
1.54 www 1038: if ((($uri=~/^adm\//) || ($uri=~/\.meta$/)) && ($priv eq 'bre')) {
1.14 www 1039: return 'F';
1040: }
1.29 www 1041:
1.52 www 1042: my $thisallowed='';
1043: my $statecond=0;
1044: my $courseprivid='';
1045:
1046: # Course
1047:
1048: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'}=~/$priv\&([^\:]*)/) {
1049: $thisallowed.=$1;
1050: }
1.29 www 1051:
1.52 www 1052: # Domain
1053:
1054: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.(split(/\//,$uri))[0].'/'}
1055: =~/$priv\&([^\:]*)/) {
1.12 www 1056: $thisallowed.=$1;
1057: }
1.52 www 1058:
1059: # Course: uri itself is a course
1.66 www 1060: my $courseuri=$uri;
1061: $courseuri=~s/\_(\d)/\/$1/;
1.83 www 1062: $courseuri=~s/^([^\/])/\/$1/;
1.81 www 1063:
1.83 www 1064: if ($ENV{'user.priv.'.$ENV{'request.role'}.'.'.$courseuri}
1.52 www 1065: =~/$priv\&([^\:]*)/) {
1.12 www 1066: $thisallowed.=$1;
1067: }
1.29 www 1068:
1.52 www 1069: # Full access at system, domain or course-wide level? Exit.
1.29 www 1070:
1071: if ($thisallowed=~/F/) {
1072: return 'F';
1073: }
1074:
1.52 www 1075: # If this is generating or modifying users, exit with special codes
1.29 www 1076:
1.52 www 1077: if (':csu:cdc:ccc:cin:cta:cep:ccr:cst:cad:cli:cau:cdg:'=~/\:$priv\:/) {
1078: return $thisallowed;
1079: }
1080: #
1.103 harris41 1081: # Gathered so far: system, domain and course wide privileges
1.52 www 1082: #
1083: # Course: See if uri or referer is an individual resource that is part of
1084: # the course
1085:
1086: if ($ENV{'request.course.id'}) {
1087: $courseprivid=$ENV{'request.course.id'};
1088: if ($ENV{'request.course.sec'}) {
1089: $courseprivid.='/'.$ENV{'request.course.sec'};
1090: }
1091: $courseprivid=~s/\_/\//;
1092: my $checkreferer=1;
1093: my @uriparts=split(/\//,$uri);
1094: my $filename=$uriparts[$#uriparts];
1095: my $pathname=$uri;
1096: $pathname=~s/\/$filename$//;
1097: if ($ENV{'acc.res.'.$ENV{'request.course.id'}.'.'.$pathname}=~
1.54 www 1098: /\&$filename\:([\d\|]+)\&/) {
1.52 www 1099: $statecond=$1;
1100: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.$courseprivid}
1101: =~/$priv\&([^\:]*)/) {
1102: $thisallowed.=$1;
1103: $checkreferer=0;
1104: }
1.29 www 1105: }
1.83 www 1106:
1.52 www 1107: if (($ENV{'HTTP_REFERER'}) && ($checkreferer)) {
1.55 www 1108: my $refuri=$ENV{'HTTP_REFERER'};
1109: $refuri=~s/^http\:\/\/$ENV{'request.host'}//i;
1110: $refuri=&declutter($refuri);
1.53 www 1111: my @uriparts=split(/\//,$refuri);
1.52 www 1112: my $filename=$uriparts[$#uriparts];
1.53 www 1113: my $pathname=$refuri;
1.52 www 1114: $pathname=~s/\/$filename$//;
1.55 www 1115: my @filenameparts=split(/\./,$uri);
1.53 www 1116: if (&fileembstyle($filenameparts[$#filenameparts]) ne 'ssi') {
1117: if ($ENV{'acc.res.'.$ENV{'request.course.id'}.'.'.$pathname}=~
1.54 www 1118: /\&$filename\:([\d\|]+)\&/) {
1.53 www 1119: my $refstatecond=$1;
1.52 www 1120: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.$courseprivid}
1121: =~/$priv\&([^\:]*)/) {
1122: $thisallowed.=$1;
1.53 www 1123: $uri=$refuri;
1124: $statecond=$refstatecond;
1.52 www 1125: }
1.53 www 1126: }
1.52 www 1127: }
1.29 www 1128: }
1.52 www 1129: }
1.29 www 1130:
1.52 www 1131: #
1.103 harris41 1132: # Gathered now: all privileges that could apply, and condition number
1.52 www 1133: #
1134: #
1135: # Full or no access?
1136: #
1.29 www 1137:
1.52 www 1138: if ($thisallowed=~/F/) {
1139: return 'F';
1140: }
1.29 www 1141:
1.52 www 1142: unless ($thisallowed) {
1143: return '';
1144: }
1.29 www 1145:
1.52 www 1146: # Restrictions exist, deal with them
1147: #
1148: # C:according to course preferences
1149: # R:according to resource settings
1150: # L:unless locked
1151: # X:according to user session state
1152: #
1153:
1154: # Possibly locked functionality, check all courses
1.54 www 1155: # Locks might take effect only after 10 minutes cache expiration for other
1156: # courses, and 2 minutes for current course
1.52 www 1157:
1158: my $envkey;
1159: if ($thisallowed=~/L/) {
1160: foreach $envkey (keys %ENV) {
1.54 www 1161: if ($envkey=~/^user\.role\.(st|ta)\.([^\.]*)/) {
1162: my $courseid=$2;
1163: my $roleid=$1.'.'.$2;
1.92 www 1164: $courseid=~s/^\///;
1.54 www 1165: my $expiretime=600;
1166: if ($ENV{'request.role'} eq $roleid) {
1167: $expiretime=120;
1168: }
1169: my ($cdom,$cnum,$csec)=split(/\//,$courseid);
1170: my $prefix='course.'.$cdom.'_'.$cnum.'.';
1171: if ((time-$ENV{$prefix.'last_cache'})>$expiretime) {
1172: &coursedescription($courseid);
1173: }
1174: if (($ENV{$prefix.'res.'.$uri.'.lock.sections'}=~/\,$csec\,/)
1175: || ($ENV{$prefix.'res.'.$uri.'.lock.sections'} eq 'all')) {
1176: if ($ENV{$prefix.'res.'.$uri.'.lock.expire'}>time) {
1.57 www 1177: &log($ENV{'user.domain'},$ENV{'user.name'},
1178: $ENV{'user.host'},
1179: 'Locked by res: '.$priv.' for '.$uri.' due to '.
1.52 www 1180: $cdom.'/'.$cnum.'/'.$csec.' expire '.
1.54 www 1181: $ENV{$prefix.'priv.'.$priv.'.lock.expire'});
1.52 www 1182: return '';
1183: }
1184: }
1.54 www 1185: if (($ENV{$prefix.'priv.'.$priv.'.lock.sections'}=~/\,$csec\,/)
1186: || ($ENV{$prefix.'priv.'.$priv.'.lock.sections'} eq 'all')) {
1187: if ($ENV{'priv.'.$priv.'.lock.expire'}>time) {
1.57 www 1188: &log($ENV{'user.domain'},$ENV{'user.name'},
1189: $ENV{'user.host'},
1190: 'Locked by priv: '.$priv.' for '.$uri.' due to '.
1.52 www 1191: $cdom.'/'.$cnum.'/'.$csec.' expire '.
1.54 www 1192: $ENV{$prefix.'priv.'.$priv.'.lock.expire'});
1.52 www 1193: return '';
1194: }
1195: }
1196: }
1.29 www 1197: }
1.52 www 1198: }
1199:
1200: #
1201: # Rest of the restrictions depend on selected course
1202: #
1203:
1204: unless ($ENV{'request.course.id'}) {
1205: return '1';
1206: }
1.29 www 1207:
1.52 www 1208: #
1209: # Now user is definitely in a course
1210: #
1.53 www 1211:
1212:
1213: # Course preferences
1214:
1215: if ($thisallowed=~/C/) {
1.54 www 1216: my $rolecode=(split(/\./,$ENV{'request.role'}))[0];
1217: if ($ENV{'course.'.$ENV{'request.course.id'}.'.'.$priv.'.roles.denied'}
1218: =~/\,$rolecode\,/) {
1.57 www 1219: &log($ENV{'user.domain'},$ENV{'user.name'},$ENV{'user.host'},
1220: 'Denied by role: '.$priv.' for '.$uri.' as '.$rolecode.' in '.
1.54 www 1221: $ENV{'request.course.id'});
1222: return '';
1223: }
1.53 www 1224: }
1225:
1226: # Resource preferences
1227:
1228: if ($thisallowed=~/R/) {
1.54 www 1229: my $rolecode=(split(/\./,$ENV{'request.role'}))[0];
1230: my $filename=$perlvar{'lonDocRoot'}.'/res/'.$uri.'.meta';
1231: if (-e $filename) {
1232: my @content;
1233: {
1234: my $fh=Apache::File->new($filename);
1235: @content=<$fh>;
1236: }
1237: if (join('',@content)=~
1238: /\<roledeny[^\>]*\>[^\<]*$rolecode[^\<]*\<\/roledeny\>/) {
1.57 www 1239: &log($ENV{'user.domain'},$ENV{'user.name'},$ENV{'user.host'},
1240: 'Denied by role: '.$priv.' for '.$uri.' as '.$rolecode);
1.54 www 1241: return '';
1242:
1243: }
1244: }
1.53 www 1245: }
1.30 www 1246:
1.52 www 1247: # Restricted by state?
1.30 www 1248:
1.52 www 1249: if ($thisallowed=~/X/) {
1250: if (&condval($statecond)) {
1251: return '2';
1252: } else {
1253: return '';
1254: }
1255: }
1.30 www 1256:
1.52 www 1257: return 'F';
1.12 www 1258: }
1259:
1260: # ----------------------------------------------------------------- Define Role
1261:
1262: sub definerole {
1263: if (allowed('mcr','/')) {
1264: my ($rolename,$sysrole,$domrole,$courole)=@_;
1.21 www 1265: map {
1266: my ($crole,$cqual)=split(/\&/,$_);
1267: if ($pr{'cr:s'}!~/$crole/) { return "refused:s:$crole"; }
1268: if ($pr{'cr:s'}=~/$crole\&/) {
1269: if ($pr{'cr:s'}!~/$crole\&\w*$cqual/) {
1270: return "refused:s:$crole&$cqual";
1271: }
1272: }
1273: } split('/',$sysrole);
1274: map {
1275: my ($crole,$cqual)=split(/\&/,$_);
1276: if ($pr{'cr:d'}!~/$crole/) { return "refused:d:$crole"; }
1277: if ($pr{'cr:d'}=~/$crole\&/) {
1278: if ($pr{'cr:d'}!~/$crole\&\w*$cqual/) {
1279: return "refused:d:$crole&$cqual";
1280: }
1281: }
1282: } split('/',$domrole);
1283: map {
1284: my ($crole,$cqual)=split(/\&/,$_);
1285: if ($pr{'cr:c'}!~/$crole/) { return "refused:c:$crole"; }
1286: if ($pr{'cr:c'}=~/$crole\&/) {
1287: if ($pr{'cr:c'}!~/$crole\&\w*$cqual/) {
1288: return "refused:c:$crole&$cqual";
1289: }
1290: }
1291: } split('/',$courole);
1.12 www 1292: my $command="encrypt:rolesput:$ENV{'user.domain'}:$ENV{'user.name'}:".
1293: "$ENV{'user.domain'}:$ENV{'user.name'}:".
1.21 www 1294: "rolesdef_$rolename=".
1295: escape($sysrole.'_'.$domrole.'_'.$courole);
1.12 www 1296: return reply($command,$ENV{'user.home'});
1297: } else {
1298: return 'refused';
1299: }
1.105 harris41 1300: }
1301:
1302: # ---------------- Make a metadata query against the network of library servers
1303:
1304: sub metadata_query {
1.116 harris41 1305: my ($query,$custom,$customshow)=@_;
1.118 harris41 1306: # need to put in a library server loop here and return a hash
1.120 harris41 1307: my %rhash;
1.123 harris41 1308: for my $server (keys %libserv) {
1.118 harris41 1309: unless ($custom or $customshow) {
1310: my $reply=&reply("querysend:".&escape($query),$server);
1311: $rhash{$server}=$reply;
1312: }
1313: else {
1314: my $reply=&reply("querysend:".&escape($query).':'.
1315: &escape($custom).':'.&escape($customshow),
1316: $server);
1317: $rhash{$server}=$reply;
1318: }
1.112 harris41 1319: }
1.118 harris41 1320: return \%rhash;
1.12 www 1321: }
1322:
1323: # ------------------------------------------------------------------ Plain Text
1324:
1325: sub plaintext {
1.22 www 1326: my $short=shift;
1327: return $prp{$short};
1.12 www 1328: }
1329:
1.25 www 1330: # ------------------------------------------------------------------ Plain Text
1331:
1332: sub fileembstyle {
1333: my $ending=shift;
1334: return $fe{$ending};
1335: }
1336:
1337: # ------------------------------------------------------------ Description Text
1338:
1.74 www 1339: sub filedescription {
1.25 www 1340: my $ending=shift;
1341: return $fd{$ending};
1342: }
1343:
1.12 www 1344: # ----------------------------------------------------------------- Assign Role
1345:
1346: sub assignrole {
1.21 www 1347: my ($udom,$uname,$url,$role,$end,$start)=@_;
1348: my $mrole;
1349: if ($role =~ /^cr\//) {
1.104 www 1350: unless (&allowed('ccr',$url)) {
1351: &logthis('Refused custom assignrole: '.
1352: $udom.' '.$uname.' '.$url.' '.$role.' '.$end.' '.$start.' by '.
1353: $ENV{'user.name'}.' at '.$ENV{'user.domain'});
1354: return 'refused';
1355: }
1.21 www 1356: $mrole='cr';
1357: } else {
1.82 www 1358: my $cwosec=$url;
1.83 www 1359: $cwosec=~s/^\/(\w+)\/(\w+)\/.*/$1\/$2/;
1.104 www 1360: unless (&allowed('c'.$role,$cwosec)) {
1361: &logthis('Refused assignrole: '.
1362: $udom.' '.$uname.' '.$url.' '.$role.' '.$end.' '.$start.' by '.
1363: $ENV{'user.name'}.' at '.$ENV{'user.domain'});
1364: return 'refused';
1365: }
1.21 www 1366: $mrole=$role;
1367: }
1368: my $command="encrypt:rolesput:$ENV{'user.domain'}:$ENV{'user.name'}:".
1369: "$udom:$uname:$url".'_'."$mrole=$role";
1.81 www 1370: if ($end) { $command.='_'.$end; }
1.21 www 1371: if ($start) {
1372: if ($end) {
1.81 www 1373: $command.='_'.$start;
1.21 www 1374: } else {
1.81 www 1375: $command.='_0_'.$start;
1.21 www 1376: }
1377: }
1378: return &reply($command,&homeserver($uname,$udom));
1.80 www 1379: }
1380:
1.81 www 1381: # --------------------------------------------------------------- Modify a user
1.80 www 1382:
1383:
1.81 www 1384: sub modifyuser {
1.80 www 1385: my ($udom,$uname,$uid,$umode,$upass,$first,$middle,$last,$gene)=@_;
1.81 www 1386: &logthis('Call to modify user '.$udom.', '.$uname.', '.$uid.', '.
1.80 www 1387: $umode.', '.$first.', '.$middle.', '.
1388: $last.', '.$gene.' by '.
1389: $ENV{'user.name'}.' at '.$ENV{'user.domain'});
1390: my $uhome=&homeserver($uname,$udom);
1391: # ----------------------------------------------------------------- Create User
1.81 www 1392: if (($uhome eq 'no_host') && ($umode) && ($upass)) {
1.80 www 1393: my $unhome='';
1394: if ($ENV{'course.'.$ENV{'request.course.id'}.'.domain'} eq $udom) {
1395: $unhome=$ENV{'course.'.$ENV{'request.course.id'}.'.home'};
1396: } else {
1397: my $tryserver;
1.81 www 1398: my $loadm=10000000;
1.80 www 1399: foreach $tryserver (keys %libserv) {
1400: if ($hostdom{$tryserver} eq $udom) {
1401: my $answer=reply('load',$tryserver);
1402: if (($answer=~/\d+/) && ($answer<$loadm)) {
1403: $loadm=$answer;
1404: $unhome=$tryserver;
1405: }
1406: }
1407: }
1408: }
1409: if (($unhome eq '') || ($unhome eq 'no_host')) {
1410: return 'error: find home';
1411: }
1412: my $reply=&reply('encrypt:makeuser:'.$udom.':'.$uname.':'.$umode.':'.
1413: &escape($upass),$unhome);
1414: unless ($reply eq 'ok') {
1415: return 'error: '.$reply;
1416: }
1417: $uhome=&homeserver($uname,$udom);
1418: if (($uhome eq '') || ($uhome eq 'no_host') || ($uhome ne $unhome)) {
1419: return 'error: verify home';
1420: }
1421: }
1422: # ---------------------------------------------------------------------- Add ID
1423: if ($uid) {
1424: $uid=~tr/A-Z/a-z/;
1425: my %uidhash=&idrget($udom,$uname);
1426: if (($uidhash{$uname}) && ($uidhash{$uname}!~/error\:/)) {
1427: unless ($uid eq $uidhash{$uname}) {
1428: return 'error: mismatch '.$uidhash{$uname}.' versus '.$uid;
1429: }
1430: } else {
1431: &idput($udom,($uname => $uid));
1432: }
1433: }
1434: # -------------------------------------------------------------- Add names, etc
1435: my $names=&reply('get:'.$udom.':'.$uname.
1436: ':environment:firstname&middlename&lastname&generation',
1437: $uhome);
1438: my ($efirst,$emiddle,$elast,$egene)=split(/\&/,$names);
1.81 www 1439: if ($first) { $efirst = &escape($first); }
1440: if ($middle) { $emiddle = &escape($middle); }
1441: if ($last) { $elast = &escape($last); }
1442: if ($gene) { $egene = &escape($gene); }
1.80 www 1443: my $reply=&reply('put:'.$udom.':'.$uname.
1444: ':environment:firstname='.$efirst.
1445: '&middlename='.$emiddle.
1446: '&lastname='.$elast.
1447: '&generation='.$egene,$uhome);
1448: if ($reply ne 'ok') {
1449: return 'error: '.$reply;
1450: }
1.81 www 1451: &logthis('Success modifying user '.$udom.', '.$uname.', '.$uid.', '.
1.80 www 1452: $umode.', '.$first.', '.$middle.', '.
1453: $last.', '.$gene.' by '.
1454: $ENV{'user.name'}.' at '.$ENV{'user.domain'});
1455: return 'ok';
1456: }
1457:
1.81 www 1458: # -------------------------------------------------------------- Modify student
1.80 www 1459:
1.81 www 1460: sub modifystudent {
1461: my ($udom,$uname,$uid,$umode,$upass,$first,$middle,$last,$gene,$usec,
1462: $end,$start)=@_;
1463: my $cid='';
1464: unless ($cid=$ENV{'request.course.id'}) {
1.80 www 1465: return 'not_in_class';
1466: }
1467: # --------------------------------------------------------------- Make the user
1.81 www 1468: my $reply=&modifyuser
1.80 www 1469: ($udom,$uname,$uid,$umode,$upass,$first,$middle,$last,$gene);
1470: unless ($reply eq 'ok') { return $reply; }
1.81 www 1471: my $uhome=&homeserver($uname,$udom);
1472: if (($uhome eq '') || ($uhome eq 'no_host')) {
1473: return 'error: no such user';
1474: }
1.80 www 1475: # -------------------------------------------------- Add student to course list
1.81 www 1476: my $reply=critical('put:'.$ENV{'course.'.$cid.'.domain'}.':'.
1477: $ENV{'course.'.$cid.'.num'}.':classlist:'.
1478: &escape($uname.':'.$udom).'='.
1479: &escape($end.':'.$start),
1480: $ENV{'course.'.$cid.'.home'});
1481: unless (($reply eq 'ok') || ($reply eq 'delayed')) {
1482: return 'error: '.$reply;
1483: }
1.80 www 1484: # ---------------------------------------------------- Add student role to user
1.83 www 1485: my $uurl='/'.$cid;
1.81 www 1486: $uurl=~s/\_/\//g;
1487: if ($usec) {
1488: $uurl.='/'.$usec;
1489: }
1490: return &assignrole($udom,$uname,$uurl,'st',$end,$start);
1.21 www 1491: }
1492:
1.84 www 1493: # ------------------------------------------------- Write to course preferences
1494:
1495: sub writecoursepref {
1496: my ($courseid,%prefs)=@_;
1497: $courseid=~s/^\///;
1498: $courseid=~s/\_/\//g;
1499: my ($cdomain,$cnum)=split(/\//,$courseid);
1500: my $chome=homeserver($cnum,$cdomain);
1501: if (($chome eq '') || ($chome eq 'no_host')) {
1502: return 'error: no such course';
1503: }
1504: my $cstring='';
1505: map {
1506: $cstring.=escape($_).'='.escape($prefs{$_}).'&';
1507: } keys %prefs;
1508: $cstring=~s/\&$//;
1509: return reply('put:'.$cdomain.':'.$cnum.':environment:'.$cstring,$chome);
1510: }
1511:
1512: # ---------------------------------------------------------- Make/modify course
1513:
1514: sub createcourse {
1515: my ($udom,$description,$url)=@_;
1516: $url=&declutter($url);
1517: my $cid='';
1518: unless (&allowed('ccc',$ENV{'user.domain'})) {
1519: return 'refused';
1520: }
1521: unless ($udom eq $ENV{'user.domain'}) {
1522: return 'refused';
1523: }
1524: # ------------------------------------------------------------------- Create ID
1525: my $uname=substr($$.time,0,5).unpack("H8",pack("I32",time)).
1526: unpack("H2",pack("I32",int(rand(255)))).$perlvar{'lonHostID'};
1527: # ----------------------------------------------- Make sure that does not exist
1528: my $uhome=&homeserver($uname,$udom);
1529: unless (($uhome eq '') || ($uhome eq 'no_host')) {
1530: $uname=substr($$.time,0,5).unpack("H8",pack("I32",time)).
1531: unpack("H2",pack("I32",int(rand(255)))).$perlvar{'lonHostID'};
1532: $uhome=&homeserver($uname,$udom);
1533: unless (($uhome eq '') || ($uhome eq 'no_host')) {
1534: return 'error: unable to generate unique course-ID';
1535: }
1536: }
1537: # ------------------------------------------------------------- Make the course
1538: my $reply=&reply('encrypt:makeuser:'.$udom.':'.$uname.':none::',
1539: $ENV{'user.home'});
1540: unless ($reply eq 'ok') { return 'error: '.$reply; }
1541: my $uhome=&homeserver($uname,$udom);
1542: if (($uhome eq '') || ($uhome eq 'no_host')) {
1543: return 'error: no such course';
1544: }
1545: &writecoursepref($udom.'_'.$uname,
1546: ('description' => $description,
1547: 'url' => $url));
1548: return '/'.$udom.'/'.$uname;
1549: }
1550:
1.21 www 1551: # ---------------------------------------------------------- Assign Custom Role
1552:
1553: sub assigncustomrole {
1554: my ($udom,$uname,$url,$rdom,$rnam,$rolename,$end,$start)=@_;
1555: return &assignrole($udom,$uname,$url,'cr/'.$rdom.'/'.$rnam.'/'.$rolename,
1556: $end,$start);
1557: }
1558:
1559: # ----------------------------------------------------------------- Revoke Role
1560:
1561: sub revokerole {
1562: my ($udom,$uname,$url,$role)=@_;
1563: my $now=time;
1564: return &assignrole($udom,$uname,$url,$role,$now);
1565: }
1566:
1567: # ---------------------------------------------------------- Revoke Custom Role
1568:
1569: sub revokecustomrole {
1570: my ($udom,$uname,$url,$rdom,$rnam,$rolename)=@_;
1571: my $now=time;
1572: return &assigncustomrole($udom,$uname,$url,$rdom,$rnam,$rolename,$now);
1.17 www 1573: }
1574:
1575: # ------------------------------------------------------------ Directory lister
1576:
1577: sub dirlist {
1578: my $uri=shift;
1.18 www 1579: $uri=~s/^\///;
1580: $uri=~s/\/$//;
1.19 www 1581: my ($res,$udom,$uname,@rest)=split(/\//,$uri);
1582: if ($udom) {
1583: if ($uname) {
1584: my $listing=reply('ls:'.$perlvar{'lonDocRoot'}.'/'.$uri,
1585: homeserver($uname,$udom));
1586: return split(/:/,$listing);
1587: } else {
1588: my $tryserver;
1589: my %allusers=();
1590: foreach $tryserver (keys %libserv) {
1591: if ($hostdom{$tryserver} eq $udom) {
1592: my $listing=reply('ls:'.$perlvar{'lonDocRoot'}.'/res/'.$udom,
1593: $tryserver);
1594: if (($listing ne 'no_such_dir') && ($listing ne 'empty')
1595: && ($listing ne 'con_lost')) {
1596: map {
1597: my ($entry,@stat)=split(/&/,$_);
1598: $allusers{$entry}=1;
1599: } split(/:/,$listing);
1600: }
1601: }
1602: }
1603: my $alluserstr='';
1604: map {
1605: $alluserstr.=$_.'&user:';
1606: } sort keys %allusers;
1607: $alluserstr=~s/:$//;
1608: return split(/:/,$alluserstr);
1609: }
1610: } else {
1611: my $tryserver;
1612: my %alldom=();
1613: foreach $tryserver (keys %libserv) {
1614: $alldom{$hostdom{$tryserver}}=1;
1615: }
1616: my $alldomstr='';
1617: map {
1618: $alldomstr.=$perlvar{'lonDocRoot'}.'/res/'.$_.'&domain:';
1619: } sort keys %alldom;
1620: $alldomstr=~s/:$//;
1621: return split(/:/,$alldomstr);
1622: }
1.26 www 1623: }
1624:
1625: # -------------------------------------------------------- Value of a Condition
1626:
1.40 www 1627: sub directcondval {
1628: my $number=shift;
1629: if ($ENV{'user.state.'.$ENV{'request.course.id'}}) {
1630: return substr($ENV{'user.state.'.$ENV{'request.course.id'}},$number,1);
1631: } else {
1632: return 2;
1633: }
1634: }
1635:
1.26 www 1636: sub condval {
1637: my $condidx=shift;
1638: my $result=0;
1.54 www 1639: my $allpathcond='';
1640: map {
1641: if (defined($ENV{'acc.cond.'.$ENV{'request.course.id'}.'.'.$_})) {
1642: $allpathcond.=
1643: '('.$ENV{'acc.cond.'.$ENV{'request.course.id'}.'.'.$_}.')|';
1644: }
1645: } split(/\|/,$condidx);
1646: $allpathcond=~s/\|$//;
1.33 www 1647: if ($ENV{'request.course.id'}) {
1.54 www 1648: if ($allpathcond) {
1.26 www 1649: my $operand='|';
1650: my @stack;
1651: map {
1652: if ($_ eq '(') {
1653: push @stack,($operand,$result)
1654: } elsif ($_ eq ')') {
1655: my $before=pop @stack;
1656: if (pop @stack eq '&') {
1657: $result=$result>$before?$before:$result;
1658: } else {
1659: $result=$result>$before?$result:$before;
1660: }
1661: } elsif (($_ eq '&') || ($_ eq '|')) {
1662: $operand=$_;
1663: } else {
1.40 www 1664: my $new=directcondval($_);
1.26 www 1665: if ($operand eq '&') {
1666: $result=$result>$new?$new:$result;
1667: } else {
1668: $result=$result>$new?$result:$new;
1669: }
1670: }
1.54 www 1671: } ($allpathcond=~/(\d+|\(|\)|\&|\|)/g);
1.26 www 1672: }
1673: }
1674: return $result;
1.28 www 1675: }
1676:
1677: # --------------------------------------------------------- Value of a Variable
1678:
1.58 www 1679: sub EXT {
1.102 www 1680: my $varname=shift;
1.68 www 1681: unless ($varname) { return ''; }
1.48 www 1682: my ($realm,$space,$qualifier,@therest)=split(/\./,$varname);
1683: my $rest;
1684: if ($therest[0]) {
1685: $rest=join('.',@therest);
1686: } else {
1687: $rest='';
1688: }
1.57 www 1689: my $qualifierrest=$qualifier;
1690: if ($rest) { $qualifierrest.='.'.$rest; }
1691: my $spacequalifierrest=$space;
1692: if ($qualifierrest) { $spacequalifierrest.='.'.$qualifierrest; }
1.28 www 1693: if ($realm eq 'user') {
1.48 www 1694: # --------------------------------------------------------------- user.resource
1695: if ($space eq 'resource') {
1.122 albertel 1696: my %restored=&restore();
1.57 www 1697: return $restored{$qualifierrest};
1.48 www 1698: # ----------------------------------------------------------------- user.access
1699: } elsif ($space eq 'access') {
1700: return &allowed($qualifier,$rest);
1701: # ------------------------------------------ user.preferences, user.environment
1702: } elsif (($space eq 'preferences') || ($space eq 'environment')) {
1.57 www 1703: return $ENV{join('.',('environment',$qualifierrest))};
1.48 www 1704: # ----------------------------------------------------------------- user.course
1705: } elsif ($space eq 'course') {
1706: return $ENV{join('.',('request.course',$qualifier))};
1707: # ------------------------------------------------------------------- user.role
1708: } elsif ($space eq 'role') {
1709: my ($role,$where)=split(/\./,$ENV{'request.role'});
1710: if ($qualifier eq 'value') {
1711: return $role;
1712: } elsif ($qualifier eq 'extent') {
1713: return $where;
1714: }
1715: # ----------------------------------------------------------------- user.domain
1716: } elsif ($space eq 'domain') {
1717: return $ENV{'user.domain'};
1718: # ------------------------------------------------------------------- user.name
1719: } elsif ($space eq 'name') {
1720: return $ENV{'user.name'};
1721: # ---------------------------------------------------- Any other user namespace
1.29 www 1722: } else {
1.48 www 1723: my $item=($rest)?$qualifier.'.'.$rest:$qualifier;
1.131 albertel 1724: my %reply=&get($space,[$item]);
1.48 www 1725: return $reply{$item};
1726: }
1727: } elsif ($realm eq 'request') {
1728: # ------------------------------------------------------------- request.browser
1729: if ($space eq 'browser') {
1730: return $ENV{'browser.'.$qualifier};
1.57 www 1731: # ------------------------------------------------------------ request.filename
1732: } else {
1733: return $ENV{'request.'.$spacequalifierrest};
1.29 www 1734: }
1.28 www 1735: } elsif ($realm eq 'course') {
1.48 www 1736: # ---------------------------------------------------------- course.description
1.127 ng 1737: return $ENV{'course.'.$ENV{'request.course.id'}.'.'.
1.57 www 1738: $spacequalifierrest};
1739: } elsif ($realm eq 'resource') {
1.127 ng 1740: if ($ENV{'request.course.id'}) {
1.60 www 1741: # ----------------------------------------------------- Cascading lookup scheme
1.127 ng 1742: my $symbp=&symbread();
1743: my $mapp=(split(/\_\_\_/,$symbp))[0];
1.69 www 1744:
1.127 ng 1745: my $symbparm=$symbp.'.'.$spacequalifierrest;
1746: my $mapparm=$mapp.'___(all).'.$spacequalifierrest;
1.69 www 1747:
1.127 ng 1748: my $seclevel=
1.69 www 1749: $ENV{'request.course.id'}.'.['.
1750: $ENV{'request.course.sec'}.'].'.$spacequalifierrest;
1.127 ng 1751: my $seclevelr=
1.69 www 1752: $ENV{'request.course.id'}.'.['.
1753: $ENV{'request.course.sec'}.'].'.$symbparm;
1.127 ng 1754: my $seclevelm=
1.69 www 1755: $ENV{'request.course.id'}.'.['.
1756: $ENV{'request.course.sec'}.'].'.$mapparm;
1757:
1.127 ng 1758: my $courselevel=
1.60 www 1759: $ENV{'request.course.id'}.'.'.$spacequalifierrest;
1.127 ng 1760: my $courselevelr=
1.69 www 1761: $ENV{'request.course.id'}.'.'.$symbparm;
1.127 ng 1762: my $courselevelm=
1.69 www 1763: $ENV{'request.course.id'}.'.'.$mapparm;
1764:
1.60 www 1765: # ----------------------------------------------------------- first, check user
1.127 ng 1766: my %resourcedata=get('resourcedata',
1.131 albertel 1767: [$courselevelr,$courselevelm,$courselevel]);
1.127 ng 1768: if (($resourcedata{$courselevelr}!~/^error\:/) &&
1769: ($resourcedata{$courselevelr}!~/^con_lost/)) {
1.69 www 1770:
1.127 ng 1771: if ($resourcedata{$courselevelr}) {
1772: return $resourcedata{$courselevelr}; }
1773: if ($resourcedata{$courselevelm}) {
1774: return $resourcedata{$courselevelm}; }
1775: if ($resourcedata{$courselevel}) { return $resourcedata{$courselevel}; }
1.69 www 1776:
1.94 www 1777: } else {
1778: if ($resourcedata{$courselevelr}!~/No such file/) {
1779: &logthis("<font color=blue>WARNING:".
1780: " Trying to get resource data for ".$ENV{'user.name'}." at "
1781: .$ENV{'user.domain'}.": ".$resourcedata{$courselevelr}.
1782: "</font>");
1783: }
1.63 www 1784: }
1.95 www 1785:
1.60 www 1786: # -------------------------------------------------------- second, check course
1.96 www 1787:
1.60 www 1788: my $reply=&reply('get:'.
1.96 www 1789: $ENV{'course.'.$ENV{'request.course.id'}.'.domain'}.':'.
1790: $ENV{'course.'.$ENV{'request.course.id'}.'.num'}.
1.79 www 1791: ':resourcedata:'.
1792: &escape($seclevelr).'&'.&escape($seclevelm).'&'.&escape($seclevel).'&'.
1793: &escape($courselevelr).'&'.&escape($courselevelm).'&'.&escape($courselevel),
1.96 www 1794: $ENV{'course.'.$ENV{'request.course.id'}.'.home'});
1.63 www 1795: if ($reply!~/^error\:/) {
1.79 www 1796: map {
1797: if ($_) { return &unescape($_); }
1798: } split(/\&/,$reply);
1.63 www 1799: }
1.94 www 1800: if (($reply=~/^con_lost/) || ($reply=~/^error\:/)) {
1801: &logthis("<font color=blue>WARNING:".
1.95 www 1802: " Getting ".$reply." asking for ".$varname." for ".
1.96 www 1803: $ENV{'course.'.$ENV{'request.course.id'}.'.num'}.
1.95 www 1804: ' at '.
1.96 www 1805: $ENV{'course.'.$ENV{'request.course.id'}.'.domain'}.
1.95 www 1806: ' from '.
1.96 www 1807: $ENV{'course.'.$ENV{'request.course.id'}.'.home'}.
1.94 www 1808: "</font>");
1809: }
1.60 www 1810: # ------------------------------------------------------ third, check map parms
1.65 www 1811: my %parmhash=();
1812: my $thisparm='';
1813: if (tie(%parmhash,'GDBM_File',
1814: $ENV{'request.course.fn'}.'_parms.db',&GDBM_READER,0640)) {
1815: $thisparm=$parmhash{$symbparm};
1816: untie(%parmhash);
1.60 www 1817: }
1.65 www 1818: if ($thisparm) { return $thisparm; }
1.60 www 1819: }
1820:
1821: # --------------------------------------------- last, look in resource metadata
1.71 www 1822:
1.78 www 1823: $spacequalifierrest=~s/\./\_/;
1.71 www 1824: my $metadata=&metadata($ENV{'request.filename'},$spacequalifierrest);
1825: if ($metadata) { return $metadata; }
1.78 www 1826: $metadata=&metadata($ENV{'request.filename'},
1827: 'parameter_'.$spacequalifierrest);
1828: if ($metadata) { return $metadata; }
1.71 www 1829:
1.48 www 1830: # ---------------------------------------------------- Any other user namespace
1831: } elsif ($realm eq 'environment') {
1832: # ----------------------------------------------------------------- environment
1.127 ng 1833: return $ENV{'environment.'.$spacequalifierrest};
1.28 www 1834: } elsif ($realm eq 'system') {
1.48 www 1835: # ----------------------------------------------------------------- system.time
1836: if ($space eq 'time') {
1837: return time;
1838: }
1.28 www 1839: }
1.48 www 1840: return '';
1.61 www 1841: }
1842:
1.71 www 1843: # ---------------------------------------------------------------- Get metadata
1844:
1845: sub metadata {
1846: my ($uri,$what)=@_;
1.78 www 1847:
1.71 www 1848: $uri=&declutter($uri);
1.73 www 1849: my $filename=$uri;
1850: $uri=~s/\.meta$//;
1.71 www 1851: unless ($metacache{$uri.':keys'}) {
1.73 www 1852: unless ($filename=~/\.meta$/) { $filename.='.meta'; }
1853: my $metastring=&getfile($perlvar{'lonDocRoot'}.'/res/'.$filename);
1.71 www 1854: my $parser=HTML::TokeParser->new(\$metastring);
1855: my $token;
1856: while ($token=$parser->get_token) {
1857: if ($token->[0] eq 'S') {
1858: my $entry=$token->[1];
1859: my $unikey=$entry;
1.72 www 1860: if (defined($token->[2]->{'part'})) {
1.71 www 1861: $unikey.='_'.$token->[2]->{'part'};
1862: }
1.72 www 1863: if (defined($token->[2]->{'name'})) {
1.71 www 1864: $unikey.='_'.$token->[2]->{'name'};
1865: }
1866: if ($metacache{$uri.':keys'}) {
1867: $metacache{$uri.':keys'}.=','.$unikey;
1868: } else {
1869: $metacache{$uri.':keys'}=$unikey;
1870: }
1871: map {
1872: $metacache{$uri.':'.$unikey.'.'.$_}=$token->[2]->{$_};
1.72 www 1873: } @{$token->[3]};
1.78 www 1874: unless (
1875: $metacache{$uri.':'.$unikey}=$parser->get_text('/'.$entry)
1876: ) { $metacache{$uri.':'.$unikey}=
1877: $metacache{$uri.':'.$unikey.'.default'};
1878: }
1.71 www 1879: }
1880: }
1881: }
1882: return $metacache{$uri.':'.$what};
1883: }
1884:
1.31 www 1885: # ------------------------------------------------- Update symbolic store links
1886:
1887: sub symblist {
1888: my ($mapname,%newhash)=@_;
1889: $mapname=declutter($mapname);
1890: my %hash;
1891: if (($ENV{'request.course.fn'}) && (%newhash)) {
1892: if (tie(%hash,'GDBM_File',$ENV{'request.course.fn'}.'_symb.db',
1893: &GDBM_WRCREAT,0640)) {
1894: map {
1895: $hash{declutter($_)}=$mapname.'___'.$newhash{$_};
1896: } keys %newhash;
1897: if (untie(%hash)) {
1898: return 'ok';
1899: }
1900: }
1901: }
1902: return 'error';
1903: }
1904:
1905: # ------------------------------------------------------ Return symb list entry
1906:
1907: sub symbread {
1.44 www 1908: my $thisfn=shift;
1909: unless ($thisfn) {
1910: $thisfn=$ENV{'request.filename'};
1911: }
1912: $thisfn=declutter($thisfn);
1.31 www 1913: my %hash;
1.37 www 1914: my %bighash;
1915: my $syval='';
1.45 www 1916: if (($ENV{'request.course.fn'}) && ($thisfn)) {
1.31 www 1917: if (tie(%hash,'GDBM_File',$ENV{'request.course.fn'}.'_symb.db',
1918: &GDBM_READER,0640)) {
1919: $syval=$hash{$thisfn};
1.37 www 1920: untie(%hash);
1921: }
1922: # ---------------------------------------------------------- There was an entry
1923: if ($syval) {
1924: unless ($syval=~/\_\d+$/) {
1925: unless ($ENV{'form.request.prefix'}=~/\.(\d+)\_$/) {
1.44 www 1926: &appenv('request.ambiguous' => $thisfn);
1.37 www 1927: return '';
1928: }
1929: $syval.=$1;
1930: }
1931: } else {
1932: # ------------------------------------------------------- Was not in symb table
1933: if (tie(%bighash,'GDBM_File',$ENV{'request.course.fn'}.'.db',
1934: &GDBM_READER,0640)) {
1935: # ---------------------------------------------- Get ID(s) for current resource
1936: my $ids=$bighash{'ids_/res/'.$thisfn};
1.65 www 1937: unless ($ids) {
1938: $ids=$bighash{'ids_/'.$thisfn};
1939: }
1.37 www 1940: if ($ids) {
1941: # ------------------------------------------------------------------- Has ID(s)
1942: my @possibilities=split(/\,/,$ids);
1.39 www 1943: if ($#possibilities==0) {
1944: # ----------------------------------------------- There is only one possibility
1.37 www 1945: my ($mapid,$resid)=split(/\./,$ids);
1946: $syval=declutter($bighash{'map_id_'.$mapid}).'___'.$resid;
1947: } else {
1.39 www 1948: # ------------------------------------------ There is more than one possibility
1949: my $realpossible=0;
1950: map {
1951: my $file=$bighash{'src_'.$_};
1952: if (&allowed('bre',$file)) {
1953: my ($mapid,$resid)=split(/\./,$_);
1954: if ($bighash{'map_type_'.$mapid} ne 'page') {
1955: $realpossible++;
1956: $syval=declutter($bighash{'map_id_'.$mapid}).
1957: '___'.$resid;
1958: }
1959: }
1960: } @possibilities;
1961: if ($realpossible!=1) { $syval=''; }
1.37 www 1962: }
1963: }
1964: untie(%bighash)
1965: }
1.31 www 1966: }
1.62 www 1967: if ($syval) {
1968: return $syval.'___'.$thisfn;
1969: }
1.31 www 1970: }
1.44 www 1971: &appenv('request.ambiguous' => $thisfn);
1.31 www 1972: return '';
1973: }
1974:
1975: # ---------------------------------------------------------- Return random seed
1976:
1.32 www 1977: sub numval {
1978: my $txt=shift;
1979: $txt=~tr/A-J/0-9/;
1980: $txt=~tr/a-j/0-9/;
1981: $txt=~tr/K-T/0-9/;
1982: $txt=~tr/k-t/0-9/;
1983: $txt=~tr/U-Z/0-5/;
1984: $txt=~tr/u-z/0-5/;
1985: $txt=~s/\D//g;
1986: return int($txt);
1987: }
1988:
1.31 www 1989: sub rndseed {
1990: my $symb;
1.44 www 1991: unless ($symb=&symbread()) { return time; }
1.98 albertel 1992: {
1993: use integer;
1994: my $symbchck=unpack("%32C*",$symb) << 27;
1.100 albertel 1995: my $symbseed=numval($symb) << 22;
1.98 albertel 1996: my $namechck=unpack("%32C*",$ENV{'user.name'}) << 17;
1.100 albertel 1997: my $nameseed=numval($ENV{'user.name'}) << 12;
1.98 albertel 1998: my $domainseed=unpack("%32C*",$ENV{'user.domain'}) << 7;
1999: my $courseseed=unpack("%32C*",$ENV{'request.course.id'});
2000: my $num=$symbseed+$nameseed+$domainseed+$courseseed+$namechck+$symbchck;
1.99 albertel 2001: #uncommenting these lines can break things!
2002: #&Apache::lonxml::debug("$symbseed:$nameseed;$domainseed|$courseseed;$namechck:$symbchck");
2003: #&Apache::lonxml::debug("rndseed :$num:$symb");
1.98 albertel 2004: return $num;
2005: }
1.36 albertel 2006: }
2007:
1.76 www 2008: sub ireceipt {
2009: my ($funame,$fudom,$fucourseid,$fusymb)=@_;
2010: my $cuname=unpack("%32C*",$funame);
2011: my $cudom=unpack("%32C*",$fudom);
2012: my $cucourseid=unpack("%32C*",$fucourseid);
2013: my $cusymb=unpack("%32C*",$fusymb);
1.77 www 2014: my $cunique=unpack("%32C*",$perlvar{'lonReceipt'});
1.76 www 2015: return unpack("%32C*",$perlvar{'lonHostID'}).'-'.
2016: ($cunique%$cuname+
2017: $cunique%$cudom+
2018: $cusymb%$cuname+
2019: $cusymb%$cudom+
2020: $cucourseid%$cuname+
2021: $cucourseid%$cudom);
2022: }
2023:
2024: sub receipt {
2025: return &ireceipt($ENV{'user.name'},$ENV{'user.domain'},
2026: $ENV{'request.course.id'},&symbread());
2027: }
2028:
1.36 albertel 2029: # ------------------------------------------------------------ Serves up a file
2030: # returns either the contents of the file or a -1
2031: sub getfile {
2032: my $file=shift;
1.37 www 2033: &repcopy($file);
1.36 albertel 2034: if (! -e $file ) { return -1; };
2035: my $fh=Apache::File->new($file);
2036: my $a='';
2037: while (<$fh>) { $a .=$_; }
2038: return $a
2039: }
2040:
2041: sub filelocation {
2042: my ($dir,$file) = @_;
2043: my $location;
2044: $file=~ s/^\s*(\S+)\s*$/$1/; ## strip off leading and trailing spaces
1.59 albertel 2045: if ($file=~m:^/~:) { # is a contruction space reference
2046: $location = $file;
2047: $location =~ s:/~(.*?)/(.*):/home/$1/public_html/$2:;
1.36 albertel 2048: } else {
1.59 albertel 2049: $file=~s/^$perlvar{'lonDocRoot'}//;
2050: $file=~s:^/*res::;
2051: if ( !( $file =~ m:^/:) ) {
2052: $location = $dir. '/'.$file;
2053: } else {
2054: $location = '/home/httpd/html/res'.$file;
2055: }
1.36 albertel 2056: }
2057: $location=~s://+:/:g; # remove duplicate /
1.46 www 2058: while ($location=~m:/\.\./:) {$location=~ s:/[^/]+/\.\./:/:g;} #remove dir/..
2059: return $location;
2060: }
1.36 albertel 2061:
1.46 www 2062: sub hreflocation {
2063: my ($dir,$file)=@_;
2064: unless (($_=~/^http:\/\//i) || ($_=~/^\//)) {
2065: my $finalpath=filelocation($dir,$file);
2066: $finalpath=~s/^\/home\/httpd\/html//;
2067: return $finalpath;
2068: } else {
2069: return $file;
2070: }
1.31 www 2071: }
2072:
2073: # ------------------------------------------------------------- Declutters URLs
2074:
2075: sub declutter {
2076: my $thisfn=shift;
2077: $thisfn=~s/^$perlvar{'lonDocRoot'}//;
2078: $thisfn=~s/^\///;
2079: $thisfn=~s/^res\///;
2080: return $thisfn;
1.12 www 2081: }
2082:
2083: # -------------------------------------------------------- Escape Special Chars
2084:
2085: sub escape {
2086: my $str=shift;
2087: $str =~ s/(\W)/"%".unpack('H2',$1)/eg;
2088: return $str;
2089: }
2090:
2091: # ----------------------------------------------------- Un-Escape Special Chars
2092:
2093: sub unescape {
2094: my $str=shift;
2095: $str =~ s/%([a-fA-F0-9][a-fA-F0-9])/pack("C",hex($1))/eg;
2096: return $str;
2097: }
1.11 www 2098:
1.1 albertel 2099: # ================================================================ Main Program
2100:
2101: sub BEGIN {
2102: if ($readit ne 'done') {
2103: # ------------------------------------------------------------ Read access.conf
2104: {
2105: my $config=Apache::File->new("/etc/httpd/conf/access.conf");
2106:
2107: while (my $configline=<$config>) {
2108: if ($configline =~ /PerlSetVar/) {
2109: my ($dummy,$varname,$varvalue)=split(/\s+/,$configline);
1.8 www 2110: chomp($varvalue);
1.1 albertel 2111: $perlvar{$varname}=$varvalue;
2112: }
2113: }
2114: }
2115:
2116: # ------------------------------------------------------------- Read hosts file
2117: {
2118: my $config=Apache::File->new("$perlvar{'lonTabDir'}/hosts.tab");
2119:
2120: while (my $configline=<$config>) {
2121: my ($id,$domain,$role,$name,$ip)=split(/:/,$configline);
2122: $hostname{$id}=$name;
2123: $hostdom{$id}=$domain;
2124: if ($role eq 'library') { $libserv{$id}=$name; }
2125: }
2126: }
2127:
2128: # ------------------------------------------------------ Read spare server file
2129: {
2130: my $config=Apache::File->new("$perlvar{'lonTabDir'}/spare.tab");
2131:
2132: while (my $configline=<$config>) {
2133: chomp($configline);
2134: if (($configline) && ($configline ne $perlvar{'lonHostID'})) {
2135: $spareid{$configline}=1;
2136: }
2137: }
2138: }
1.11 www 2139: # ------------------------------------------------------------ Read permissions
2140: {
2141: my $config=Apache::File->new("$perlvar{'lonTabDir'}/roles.tab");
2142:
2143: while (my $configline=<$config>) {
2144: chomp($configline);
2145: my ($role,$perm)=split(/ /,$configline);
2146: if ($perm ne '') { $pr{$role}=$perm; }
2147: }
2148: }
2149:
2150: # -------------------------------------------- Read plain texts for permissions
2151: {
2152: my $config=Apache::File->new("$perlvar{'lonTabDir'}/rolesplain.tab");
2153:
2154: while (my $configline=<$config>) {
2155: chomp($configline);
2156: my ($short,$plain)=split(/:/,$configline);
2157: if ($plain ne '') { $prp{$short}=$plain; }
1.25 www 2158: }
2159: }
2160:
2161: # ------------------------------------------------------------- Read file types
2162: {
2163: my $config=Apache::File->new("$perlvar{'lonTabDir'}/filetypes.tab");
2164:
2165: while (my $configline=<$config>) {
2166: chomp($configline);
2167: my ($ending,$emb,@descr)=split(/\s+/,$configline);
2168: if ($descr[0] ne '') {
2169: $fe{$ending}=$emb;
2170: $fd{$ending}=join(' ',@descr);
2171: }
1.11 www 2172: }
2173: }
2174:
1.71 www 2175: %metacache=();
1.22 www 2176:
1.1 albertel 2177: $readit='done';
1.12 www 2178: &logthis('<font color=yellow>INFO: Read configuration</font>');
1.1 albertel 2179: }
2180: }
2181: 1;
FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>