Annotation of loncom/lonnet/perl/lonnet.pm, revision 1.64
1.1 albertel 1: # The LearningOnline Network
2: # TCP networking package
1.12 www 3: #
4: # Functions for use by content handlers:
5: #
6: # plaintext(short) : plain text explanation of short term
1.25 www 7: # fileembstyle(ext) : embed style in page for file extension
8: # filedescription(ext) : descriptor text for file extension
1.29 www 9: # allowed(short,url) : returns codes for allowed actions
10: # F: full access
11: # U,I,K: authentication modes (cxx only)
12: # '': forbidden
13: # 1: user needs to choose course
14: # 2: browse allowed
1.21 www 15: # definerole(rolename,sys,dom,cou) : define a custom role rolename
16: # set priviledges in format of lonTabs/roles.tab for
17: # system, domain and course level,
18: # assignrole(udom,uname,url,role,end,start) : give a role to a user for the
19: # level given by url. Optional start and end dates
20: # (leave empty string or zero for "no date")
21: # assigncustomrole (udom,uname,url,rdom,rnam,rolename,end,start) : give a
22: # custom role to a user for the level given by url.
23: # Specify name and domain of role author, and role name
24: # revokerole (udom,uname,url,role) : Revoke a role for url
25: # revokecustomrole (udom,uname,url,rdom,rnam,rolename) : Revoke a custom role
1.24 www 26: # appenv(hash) : adds hash to session environment
1.56 www 27: # delenv(varname) : deletes all environment entries starting with varname
1.12 www 28: # store(hash) : stores hash permanently for this url
1.47 www 29: # cstore(hash) : critical store
1.12 www 30: # restore : returns hash for this url
31: # eget(namesp,array) : returns hash with keys from array filled in from namesp
32: # get(namesp,array) : returns hash with keys from array filled in from namesp
1.38 www 33: # del(namesp,array) : deletes keys out of array from namesp
1.12 www 34: # put(namesp,hash) : stores hash in namesp
1.47 www 35: # cput(namesp,hash) : critical put
1.15 www 36: # dump(namesp) : dumps the complete namespace into a hash
1.23 www 37: # ssi(url,hash) : does a complete request cycle on url to localhost, posts
38: # hash
1.34 www 39: # coursedescription(id) : returns and caches course description for id
1.17 www 40: # repcopy(filename) : replicate file
41: # dirlist(url) : gets a directory listing
1.40 www 42: # directcondval(index) : reading condition value of single condition from
43: # state string
1.28 www 44: # condval(index) : value of condition index based on state
1.58 www 45: # EXT(name) : value of a variable
1.31 www 46: # symblist(map,hash) : Updates symbolic storage links
1.44 www 47: # symbread([filename]) : returns the data handle (filename optional)
1.31 www 48: # rndseed() : returns a random seed
1.36 albertel 49: # getfile(filename) : returns the contents of filename, or a -1 if it can't
50: # be found, replicates and subscribes to the file
51: # filelocation(dir,file) : returns a farily clean absolute reference to file
52: # from the directory dir
1.46 www 53: # hreflocation(dir,file) : same as filelocation, but for hrefs
1.47 www 54: # log(domain,user,home,msg) : write to permanent log for user
1.12 www 55: #
1.1 albertel 56: # 6/1/99,6/2,6/10,6/11,6/12,6/14,6/26,6/28,6/29,6/30,
1.5 www 57: # 7/1,7/2,7/9,7/10,7/12,7/14,7/15,7/19,
1.8 www 58: # 11/8,11/16,11/18,11/22,11/23,12/22,
1.12 www 59: # 01/06,01/13,02/24,02/28,02/29,
60: # 03/01,03/02,03/06,03/07,03/13,
1.15 www 61: # 04/05,05/29,05/31,06/01,
62: # 06/05,06/26 Gerd Kortemeyer
63: # 06/26 Ben Tyszka
1.22 www 64: # 06/30,07/15,07/17,07/18,07/20,07/21,07/22,07/25 Gerd Kortemeyer
1.23 www 65: # 08/14 Ben Tyszka
1.36 albertel 66: # 08/22,08/28,08/31,09/01,09/02,09/04,09/05,09/25,09/28,09/30 Gerd Kortemeyer
1.35 www 67: # 10/04 Gerd Kortemeyer
1.36 albertel 68: # 10/04 Guy Albertelli
1.54 www 69: # 10/06,10/09,10/10,10/11,10/14,10/20,10/23,10/25,10/26,10/27,10/28,10/29,
1.64 ! www 70: # 10/30,10/31,11/2,11/14,11/15 Gerd Kortemeyer
1.1 albertel 71:
72: package Apache::lonnet;
73:
74: use strict;
75: use Apache::File;
1.8 www 76: use LWP::UserAgent();
1.15 www 77: use HTTP::Headers;
1.11 www 78: use vars
1.25 www 79: qw(%perlvar %hostname %homecache %spareid %hostdom %libserv %pr %prp %fe %fd $readit);
1.1 albertel 80: use IO::Socket;
1.31 www 81: use GDBM_File;
1.8 www 82: use Apache::Constants qw(:common :http);
1.1 albertel 83:
84: # --------------------------------------------------------------------- Logging
85:
86: sub logthis {
87: my $message=shift;
88: my $execdir=$perlvar{'lonDaemons'};
89: my $now=time;
90: my $local=localtime($now);
91: my $fh=Apache::File->new(">>$execdir/logs/lonnet.log");
92: print $fh "$local ($$): $message\n";
93: return 1;
94: }
95:
96: sub logperm {
97: my $message=shift;
98: my $execdir=$perlvar{'lonDaemons'};
99: my $now=time;
100: my $local=localtime($now);
101: my $fh=Apache::File->new(">>$execdir/logs/lonnet.perm.log");
102: print $fh "$now:$message:$local\n";
103: return 1;
104: }
105:
106: # -------------------------------------------------- Non-critical communication
107: sub subreply {
108: my ($cmd,$server)=@_;
109: my $peerfile="$perlvar{'lonSockDir'}/$server";
110: my $client=IO::Socket::UNIX->new(Peer =>"$peerfile",
111: Type => SOCK_STREAM,
112: Timeout => 10)
113: or return "con_lost";
114: print $client "$cmd\n";
115: my $answer=<$client>;
1.9 www 116: if (!$answer) { $answer="con_lost"; }
1.1 albertel 117: chomp($answer);
118: return $answer;
119: }
120:
121: sub reply {
122: my ($cmd,$server)=@_;
123: my $answer=subreply($cmd,$server);
124: if ($answer eq 'con_lost') { $answer=subreply($cmd,$server); }
1.12 www 125: if (($answer=~/^error:/) || ($answer=~/^refused/) ||
126: ($answer=~/^rejected/)) {
127: &logthis("<font color=blue>WARNING:".
128: " $cmd to $server returned $answer</font>");
129: }
1.1 albertel 130: return $answer;
131: }
132:
133: # ----------------------------------------------------------- Send USR1 to lonc
134:
135: sub reconlonc {
136: my $peerfile=shift;
137: &logthis("Trying to reconnect for $peerfile");
138: my $loncfile="$perlvar{'lonDaemons'}/logs/lonc.pid";
139: if (my $fh=Apache::File->new("$loncfile")) {
140: my $loncpid=<$fh>;
141: chomp($loncpid);
142: if (kill 0 => $loncpid) {
143: &logthis("lonc at pid $loncpid responding, sending USR1");
144: kill USR1 => $loncpid;
145: sleep 1;
146: if (-e "$peerfile") { return; }
147: &logthis("$peerfile still not there, give it another try");
148: sleep 5;
149: if (-e "$peerfile") { return; }
1.12 www 150: &logthis(
151: "<font color=blue>WARNING: $peerfile still not there, giving up</font>");
1.1 albertel 152: } else {
1.12 www 153: &logthis(
154: "<font color=blue>WARNING:".
155: " lonc at pid $loncpid not responding, giving up</font>");
1.1 albertel 156: }
157: } else {
1.12 www 158: &logthis('<font color=blue>WARNING: lonc not running, giving up</font>');
1.1 albertel 159: }
160: }
161:
162: # ------------------------------------------------------ Critical communication
1.12 www 163:
1.1 albertel 164: sub critical {
165: my ($cmd,$server)=@_;
166: my $answer=reply($cmd,$server);
167: if ($answer eq 'con_lost') {
168: my $pingreply=reply('ping',$server);
169: &reconlonc("$perlvar{'lonSockDir'}/$server");
170: my $pongreply=reply('pong',$server);
171: &logthis("Ping/Pong for $server: $pingreply/$pongreply");
172: $answer=reply($cmd,$server);
173: if ($answer eq 'con_lost') {
174: my $now=time;
175: my $middlename=$cmd;
1.5 www 176: $middlename=substr($middlename,0,16);
1.1 albertel 177: $middlename=~s/\W//g;
178: my $dfilename=
179: "$perlvar{'lonSockDir'}/delayed/$now.$middlename.$server";
180: {
181: my $dfh;
182: if ($dfh=Apache::File->new(">$dfilename")) {
1.7 www 183: print $dfh "$cmd\n";
1.1 albertel 184: }
185: }
186: sleep 2;
187: my $wcmd='';
188: {
189: my $dfh;
190: if ($dfh=Apache::File->new("$dfilename")) {
191: $wcmd=<$dfh>;
192: }
193: }
194: chomp($wcmd);
1.7 www 195: if ($wcmd eq $cmd) {
1.12 www 196: &logthis("<font color=blue>WARNING: ".
197: "Connection buffer $dfilename: $cmd</font>");
1.1 albertel 198: &logperm("D:$server:$cmd");
199: return 'con_delayed';
200: } else {
1.12 www 201: &logthis("<font color=red>CRITICAL:"
202: ." Critical connection failed: $server $cmd</font>");
1.1 albertel 203: &logperm("F:$server:$cmd");
204: return 'con_failed';
205: }
206: }
207: }
208: return $answer;
209: }
210:
1.5 www 211: # ---------------------------------------------------------- Append Environment
212:
213: sub appenv {
1.6 www 214: my %newenv=@_;
1.35 www 215: map {
216: if (($newenv{$_}=~/^user\.role/) || ($newenv{$_}=~/^user\.priv/)) {
217: &logthis("<font color=blue>WARNING: ".
218: "Attempt to modify environment ".$_." to ".$newenv{$_});
219: delete($newenv{$_});
220: } else {
221: $ENV{$_}=$newenv{$_};
222: }
223: } keys %newenv;
1.6 www 224: my @oldenv;
225: {
226: my $fh;
227: unless ($fh=Apache::File->new("$ENV{'user.environment'}")) {
1.5 www 228: return 'error';
1.6 www 229: }
230: @oldenv=<$fh>;
231: }
232: for (my $i=0; $i<=$#oldenv; $i++) {
233: chomp($oldenv[$i]);
1.9 www 234: if ($oldenv[$i] ne '') {
235: my ($name,$value)=split(/=/,$oldenv[$i]);
1.24 www 236: unless (defined($newenv{$name})) {
237: $newenv{$name}=$value;
238: }
1.9 www 239: }
1.6 www 240: }
241: {
242: my $fh;
243: unless ($fh=Apache::File->new(">$ENV{'user.environment'}")) {
244: return 'error';
245: }
246: my $newname;
247: foreach $newname (keys %newenv) {
248: print $fh "$newname=$newenv{$newname}\n";
249: }
1.56 www 250: }
251: return 'ok';
252: }
253: # ----------------------------------------------------- Delete from Environment
254:
255: sub delenv {
256: my $delthis=shift;
257: my %newenv=();
258: if (($delthis=~/user\.role/) || ($delthis=~/user\.priv/)) {
259: &logthis("<font color=blue>WARNING: ".
260: "Attempt to delete from environment ".$delthis);
261: return 'error';
262: }
263: my @oldenv;
264: {
265: my $fh;
266: unless ($fh=Apache::File->new("$ENV{'user.environment'}")) {
267: return 'error';
268: }
269: @oldenv=<$fh>;
270: }
271: {
272: my $fh;
273: unless ($fh=Apache::File->new(">$ENV{'user.environment'}")) {
274: return 'error';
275: }
276: map {
277: unless ($_=~/^$delthis/) { print $fh $_; }
278: } @oldenv;
1.5 www 279: }
280: return 'ok';
281: }
1.1 albertel 282:
283: # ------------------------------ Find server with least workload from spare.tab
1.11 www 284:
1.1 albertel 285: sub spareserver {
286: my $tryserver;
287: my $spareserver='';
288: my $lowestserver=100;
289: foreach $tryserver (keys %spareid) {
290: my $answer=reply('load',$tryserver);
291: if (($answer =~ /\d/) && ($answer<$lowestserver)) {
292: $spareserver="http://$hostname{$tryserver}";
293: $lowestserver=$answer;
294: }
295: }
296: return $spareserver;
297: }
298:
299: # --------- Try to authenticate user from domain's lib servers (first this one)
1.11 www 300:
1.1 albertel 301: sub authenticate {
302: my ($uname,$upass,$udom)=@_;
1.12 www 303: $upass=escape($upass);
1.1 albertel 304: if (($perlvar{'lonRole'} eq 'library') &&
305: ($udom eq $perlvar{'lonDefDomain'})) {
1.3 www 306: my $answer=reply("encrypt:auth:$udom:$uname:$upass",$perlvar{'lonHostID'});
1.2 www 307: if ($answer =~ /authorized/) {
1.9 www 308: if ($answer eq 'authorized') {
309: &logthis("User $uname at $udom authorized by local server");
310: return $perlvar{'lonHostID'};
311: }
312: if ($answer eq 'non_authorized') {
313: &logthis("User $uname at $udom rejected by local server");
314: return 'no_host';
315: }
1.2 www 316: }
1.1 albertel 317: }
318:
319: my $tryserver;
320: foreach $tryserver (keys %libserv) {
321: if ($hostdom{$tryserver} eq $udom) {
1.10 www 322: my $answer=reply("encrypt:auth:$udom:$uname:$upass",$tryserver);
1.1 albertel 323: if ($answer =~ /authorized/) {
1.9 www 324: if ($answer eq 'authorized') {
325: &logthis("User $uname at $udom authorized by $tryserver");
326: return $tryserver;
327: }
328: if ($answer eq 'non_authorized') {
329: &logthis("User $uname at $udom rejected by $tryserver");
330: return 'no_host';
331: }
1.1 albertel 332: }
333: }
1.9 www 334: }
335: &logthis("User $uname at $udom could not be authenticated");
1.1 albertel 336: return 'no_host';
337: }
338:
339: # ---------------------- Find the homebase for a user from domain's lib servers
1.11 www 340:
1.1 albertel 341: sub homeserver {
342: my ($uname,$udom)=@_;
343:
344: my $index="$uname:$udom";
345: if ($homecache{$index}) { return "$homecache{$index}"; }
346:
347: my $tryserver;
348: foreach $tryserver (keys %libserv) {
349: if ($hostdom{$tryserver} eq $udom) {
350: my $answer=reply("home:$udom:$uname",$tryserver);
351: if ($answer eq 'found') {
352: $homecache{$index}=$tryserver;
353: return $tryserver;
354: }
355: }
356: }
357: return 'no_host';
358: }
359:
360: # ----------------------------- Subscribe to a resource, return URL if possible
1.11 www 361:
1.1 albertel 362: sub subscribe {
363: my $fname=shift;
364: my $author=$fname;
365: $author=~s/\/home\/httpd\/html\/res\/([^\/]*)\/([^\/]*).*/$1\/$2/;
366: my ($udom,$uname)=split(/\//,$author);
367: my $home=homeserver($uname,$udom);
368: if (($home eq 'no_host') || ($home eq $perlvar{'lonHostID'})) {
369: return 'not_found';
370: }
371: my $answer=reply("sub:$fname",$home);
1.64 ! www 372: if (($answer eq 'con_lost') || ($answer eq 'rejected')) {
! 373: $answer.=' by '.$home;
! 374: }
1.1 albertel 375: return $answer;
376: }
377:
1.8 www 378: # -------------------------------------------------------------- Replicate file
379:
380: sub repcopy {
381: my $filename=shift;
1.23 www 382: $filename=~s/\/+/\//g;
1.8 www 383: my $transname="$filename.in.transfer";
1.17 www 384: if ((-e $filename) || (-e $transname)) { return OK; }
1.8 www 385: my $remoteurl=subscribe($filename);
1.64 ! www 386: if ($remoteurl =~ /^con_lost by/) {
! 387: &logthis("Subscribe returned $remoteurl: $filename");
1.8 www 388: return HTTP_SERVICE_UNAVAILABLE;
389: } elsif ($remoteurl eq 'not_found') {
390: &logthis("Subscribe returned not_found: $filename");
391: return HTTP_NOT_FOUND;
1.64 ! www 392: } elsif ($remoteurl =~ /^rejected by/) {
! 393: &logthis("Subscribe returned $remoteurl: $filename");
1.8 www 394: return FORBIDDEN;
1.20 www 395: } elsif ($remoteurl eq 'directory') {
396: return OK;
1.8 www 397: } else {
398: my @parts=split(/\//,$filename);
399: my $path="/$parts[1]/$parts[2]/$parts[3]/$parts[4]";
400: if ($path ne "$perlvar{'lonDocRoot'}/res") {
401: &logthis("Malconfiguration for replication: $filename");
402: return HTTP_BAD_REQUEST;
403: }
404: my $count;
405: for ($count=5;$count<$#parts;$count++) {
406: $path.="/$parts[$count]";
407: if ((-e $path)!=1) {
408: mkdir($path,0777);
409: }
410: }
411: my $ua=new LWP::UserAgent;
412: my $request=new HTTP::Request('GET',"$remoteurl");
413: my $response=$ua->request($request,$transname);
414: if ($response->is_error()) {
415: unlink($transname);
416: my $message=$response->status_line;
1.12 www 417: &logthis("<font color=blue>WARNING:"
418: ." LWP get: $message: $filename</font>");
1.8 www 419: return HTTP_SERVICE_UNAVAILABLE;
420: } else {
1.16 www 421: if ($remoteurl!~/\.meta$/) {
422: my $mrequest=new HTTP::Request('GET',$remoteurl.'.meta');
423: my $mresponse=$ua->request($mrequest,$filename.'.meta');
424: if ($mresponse->is_error()) {
425: unlink($filename.'.meta');
426: &logthis(
427: "<font color=yellow>INFO: No metadata: $filename</font>");
428: }
429: }
1.8 www 430: rename($transname,$filename);
431: return OK;
432: }
433: }
434: }
435:
1.15 www 436: # --------------------------------------------------------- Server Side Include
437:
438: sub ssi {
439:
1.23 www 440: my ($fn,%form)=@_;
1.15 www 441:
442: my $ua=new LWP::UserAgent;
1.23 www 443:
444: my $request;
445:
446: if (%form) {
447: $request=new HTTP::Request('POST',"http://".$ENV{'HTTP_HOST'}.$fn);
448: $request->content(join '&', map { "$_=$form{$_}" } keys %form);
449: } else {
450: $request=new HTTP::Request('GET',"http://".$ENV{'HTTP_HOST'}.$fn);
451: }
452:
1.15 www 453: $request->header(Cookie => $ENV{'HTTP_COOKIE'});
454: my $response=$ua->request($request);
455:
456: return $response->content;
457: }
458:
1.14 www 459: # ------------------------------------------------------------------------- Log
460:
461: sub log {
462: my ($dom,$nam,$hom,$what)=@_;
1.47 www 463: return critical("log:$dom:$nam:$what",$hom);
1.14 www 464: }
465:
1.9 www 466: # ----------------------------------------------------------------------- Store
467:
468: sub store {
1.31 www 469: my %storehash=@_;
470: my $symb;
1.44 www 471: unless ($symb=escape(&symbread())) { return ''; }
1.31 www 472: my $namespace;
1.33 www 473: unless ($namespace=$ENV{'request.course.id'}) { return ''; }
1.12 www 474: my $namevalue='';
475: map {
476: $namevalue.=escape($_).'='.escape($storehash{$_}).'&';
477: } keys %storehash;
478: $namevalue=~s/\&$//;
1.31 www 479: return reply(
480: "store:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$symb:$namevalue",
1.12 www 481: "$ENV{'user.home'}");
1.9 www 482: }
483:
1.47 www 484: # -------------------------------------------------------------- Critical Store
485:
486: sub cstore {
487: my %storehash=@_;
488: my $symb;
489: unless ($symb=escape(&symbread())) { return ''; }
490: my $namespace;
491: unless ($namespace=$ENV{'request.course.id'}) { return ''; }
492: my $namevalue='';
493: map {
494: $namevalue.=escape($_).'='.escape($storehash{$_}).'&';
495: } keys %storehash;
496: $namevalue=~s/\&$//;
497: return critical(
498: "store:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$symb:$namevalue",
499: "$ENV{'user.home'}");
500: }
501:
1.9 www 502: # --------------------------------------------------------------------- Restore
503:
504: sub restore {
1.31 www 505: my $symb;
1.44 www 506: unless ($symb=escape(&symbread())) { return ''; }
1.31 www 507: my $namespace;
1.33 www 508: unless ($namespace=$ENV{'request.course.id'}) { return ''; }
1.31 www 509: my $answer=reply(
510: "restore:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$symb",
511: "$ENV{'user.home'}");
1.12 www 512: my %returnhash=();
513: map {
514: my ($name,$value)=split(/\=/,$_);
515: $returnhash{&unescape($name)}=&unescape($value);
516: } split(/\&/,$answer);
1.31 www 517: map {
518: $returnhash{$_}=$returnhash{$returnhash{'version'}.':'.$_};
519: } split(/\:/,$returnhash{$returnhash{'version'}.':keys'});
1.13 www 520: return %returnhash;
1.34 www 521: }
522:
523: # ---------------------------------------------------------- Course Description
524:
525: sub coursedescription {
526: my $courseid=shift;
527: $courseid=~s/^\///;
1.49 www 528: $courseid=~s/\_/\//g;
1.34 www 529: my ($cdomain,$cnum)=split(/\//,$courseid);
530: my $chome=homeserver($cnum,$cdomain);
531: if ($chome ne 'no_host') {
532: my $rep=reply("dump:$cdomain:$cnum:environment",$chome);
533: if ($rep ne 'con_lost') {
1.54 www 534: my $normalid=$courseid;
535: $normalid=~s/\//\_/g;
1.53 www 536: my %envhash=();
1.34 www 537: my %returnhash=('home' => $chome,
538: 'domain' => $cdomain,
539: 'num' => $cnum);
540: map {
541: my ($name,$value)=split(/\=/,$_);
542: $name=&unescape($name);
543: $value=&unescape($value);
544: $returnhash{$name}=$value;
1.53 www 545: $envhash{'course.'.$normalid.'.'.$name}=$value;
1.34 www 546: } split(/\&/,$rep);
547: $returnhash{'url'}='/res/'.declutter($returnhash{'url'});
548: $returnhash{'fn'}=$perlvar{'lonDaemons'}.'/tmp/'.
1.38 www 549: $ENV{'user.name'}.'_'.$cdomain.'_'.$cnum;
1.54 www 550: $envhash{'course.'.$normalid.'.last_cache'}=time;
1.60 www 551: $envhash{'course.'.$normalid.'.home'}=$chome;
552: $envhash{'course.'.$normalid.'.domain'}=$cdomain;
553: $envhash{'course.'.$normalid.'.num'}=$cnum;
1.53 www 554: &appenv(%envhash);
1.34 www 555: return %returnhash;
556: }
557: }
558: return ();
1.9 www 559: }
1.1 albertel 560:
1.11 www 561: # -------------------------------------------------------- Get user priviledges
562:
563: sub rolesinit {
564: my ($domain,$username,$authhost)=@_;
565: my $rolesdump=reply("dump:$domain:$username:roles",$authhost);
1.12 www 566: if (($rolesdump eq 'con_lost') || ($rolesdump eq '')) { return ''; }
1.11 www 567: my %allroles=();
568: my %thesepriv=();
569: my $now=time;
1.21 www 570: my $userroles="user.login.time=$now\n";
1.11 www 571: my $thesestr;
572:
573: if ($rolesdump ne '') {
574: map {
1.21 www 575: if ($_!~/^rolesdef\&/) {
1.11 www 576: my ($area,$role)=split(/=/,$_);
1.21 www 577: $area=~s/\_\w\w$//;
1.11 www 578: my ($trole,$tend,$tstart)=split(/_/,$role);
1.21 www 579: $userroles.='user.role.'.$trole.'.'.$area.'='.
580: $tstart.'.'.$tend."\n";
1.11 www 581: if ($tend!=0) {
582: if ($tend<$now) {
583: $trole='';
584: }
585: }
586: if ($tstart!=0) {
587: if ($tstart>$now) {
588: $trole='';
589: }
590: }
591: if (($area ne '') && ($trole ne '')) {
1.50 www 592: my $spec=$trole.'.'.$area;
1.12 www 593: my ($tdummy,$tdomain,$trest)=split(/\//,$area);
594: if ($trole =~ /^cr\//) {
595: my ($rdummy,$rdomain,$rauthor,$rrole)=split(/\//,$trole);
596: my $homsvr=homeserver($rauthor,$rdomain);
597: if ($hostname{$homsvr} ne '') {
598: my $roledef=
1.21 www 599: reply("get:$rdomain:$rauthor:roles:rolesdef_$rrole",
1.12 www 600: $homsvr);
601: if (($roledef ne 'con_lost') && ($roledef ne '')) {
602: my ($syspriv,$dompriv,$coursepriv)=
1.21 www 603: split(/\_/,unescape($roledef));
1.50 www 604: $allroles{'cm./'}.=':'.$syspriv;
605: $allroles{$spec.'./'}.=':'.$syspriv;
1.12 www 606: if ($tdomain ne '') {
1.50 www 607: $allroles{'cm./'.$tdomain.'/'}.=':'.$dompriv;
608: $allroles{$spec.'./'.$tdomain.'/'}.=':'.$dompriv;
1.12 www 609: if ($trest ne '') {
1.50 www 610: $allroles{'cm.'.$area}.=':'.$coursepriv;
611: $allroles{$spec.'.'.$area}.=':'.$coursepriv;
1.12 www 612: }
613: }
614: }
1.11 www 615: }
1.12 www 616: } else {
1.50 www 617: $allroles{'cm./'}.=':'.$pr{$trole.':s'};
618: $allroles{$spec.'./'}.=':'.$pr{$trole.':s'};
1.12 www 619: if ($tdomain ne '') {
1.50 www 620: $allroles{'cm./'.$tdomain.'/'}.=':'.$pr{$trole.':d'};
621: $allroles{$spec.'./'.$tdomain.'/'}.=':'.$pr{$trole.':d'};
1.12 www 622: if ($trest ne '') {
1.50 www 623: $allroles{'cm.'.$area}.=':'.$pr{$trole.':c'};
624: $allroles{$spec.'.'.$area}.=':'.$pr{$trole.':c'};
1.12 www 625: }
626: }
1.11 www 627: }
1.12 www 628: }
629: }
1.11 www 630: } split(/&/,$rolesdump);
631: map {
632: %thesepriv=();
633: map {
634: if ($_ ne '') {
635: my ($priviledge,$restrictions)=split(/&/,$_);
636: if ($restrictions eq '') {
637: $thesepriv{$priviledge}='F';
638: } else {
639: if ($thesepriv{$priviledge} ne 'F') {
640: $thesepriv{$priviledge}.=$restrictions;
641: }
642: }
643: }
644: } split(/:/,$allroles{$_});
645: $thesestr='';
646: map { $thesestr.=':'.$_.'&'.$thesepriv{$_}; } keys %thesepriv;
647: $userroles.='user.priv.'.$_.'='.$thesestr."\n";
648: } keys %allroles;
649: }
650: return $userroles;
651: }
652:
1.12 www 653: # --------------------------------------------------------------- get interface
654:
655: sub get {
656: my ($namespace,@storearr)=@_;
657: my $items='';
658: map {
659: $items.=escape($_).'&';
660: } @storearr;
661: $items=~s/\&$//;
662: my $rep=reply("get:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
663: $ENV{'user.home'});
1.15 www 664: my @pairs=split(/\&/,$rep);
665: my %returnhash=();
1.42 www 666: my $i=0;
1.15 www 667: map {
1.42 www 668: $returnhash{$_}=unescape($pairs[$i]);
669: $i++;
670: } @storearr;
1.15 www 671: return %returnhash;
1.27 www 672: }
673:
674: # --------------------------------------------------------------- del interface
675:
676: sub del {
677: my ($namespace,@storearr)=@_;
678: my $items='';
679: map {
680: $items.=escape($_).'&';
681: } @storearr;
682: $items=~s/\&$//;
683: return reply("del:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
684: $ENV{'user.home'});
1.15 www 685: }
686:
687: # -------------------------------------------------------------- dump interface
688:
689: sub dump {
690: my $namespace=shift;
691: my $rep=reply("dump:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace",
692: $ENV{'user.home'});
1.12 www 693: my @pairs=split(/\&/,$rep);
694: my %returnhash=();
695: map {
696: my ($key,$value)=split(/=/,$_);
1.29 www 697: $returnhash{unescape($key)}=unescape($value);
1.12 www 698: } @pairs;
699: return %returnhash;
700: }
701:
702: # --------------------------------------------------------------- put interface
703:
704: sub put {
705: my ($namespace,%storehash)=@_;
706: my $items='';
707: map {
708: $items.=escape($_).'='.escape($storehash{$_}).'&';
709: } keys %storehash;
710: $items=~s/\&$//;
711: return reply("put:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
1.47 www 712: $ENV{'user.home'});
713: }
714:
715: # ------------------------------------------------------ critical put interface
716:
717: sub cput {
718: my ($namespace,%storehash)=@_;
719: my $items='';
720: map {
721: $items.=escape($_).'='.escape($storehash{$_}).'&';
722: } keys %storehash;
723: $items=~s/\&$//;
724: return critical
725: ("put:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
1.12 www 726: $ENV{'user.home'});
727: }
728:
729: # -------------------------------------------------------------- eget interface
730:
731: sub eget {
732: my ($namespace,@storearr)=@_;
733: my $items='';
734: map {
735: $items.=escape($_).'&';
736: } @storearr;
737: $items=~s/\&$//;
738: my $rep=reply("eget:$ENV{'user.domain'}:$ENV{'user.name'}:$namespace:$items",
739: $ENV{'user.home'});
740: my @pairs=split(/\&/,$rep);
741: my %returnhash=();
1.42 www 742: my $i=0;
1.12 www 743: map {
1.42 www 744: $returnhash{$_}=unescape($pairs[$i]);
745: $i++;
746: } @storearr;
1.12 www 747: return %returnhash;
748: }
749:
750: # ------------------------------------------------- Check for a user priviledge
751:
752: sub allowed {
753: my ($priv,$uri)=@_;
1.52 www 754: $uri=&declutter($uri);
1.29 www 755:
1.54 www 756: # Free bre access to adm and meta resources
1.29 www 757:
1.54 www 758: if ((($uri=~/^adm\//) || ($uri=~/\.meta$/)) && ($priv eq 'bre')) {
1.14 www 759: return 'F';
760: }
1.29 www 761:
1.52 www 762: my $thisallowed='';
763: my $statecond=0;
764: my $courseprivid='';
765:
766: # Course
767:
768: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'}=~/$priv\&([^\:]*)/) {
769: $thisallowed.=$1;
770: }
1.29 www 771:
1.52 www 772: # Domain
773:
774: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.(split(/\//,$uri))[0].'/'}
775: =~/$priv\&([^\:]*)/) {
1.12 www 776: $thisallowed.=$1;
777: }
1.52 www 778:
779: # Course: uri itself is a course
780:
781: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.$uri}
782: =~/$priv\&([^\:]*)/) {
1.12 www 783: $thisallowed.=$1;
784: }
1.29 www 785:
1.52 www 786: # Full access at system, domain or course-wide level? Exit.
1.29 www 787:
788: if ($thisallowed=~/F/) {
789: return 'F';
790: }
791:
1.52 www 792: # If this is generating or modifying users, exit with special codes
1.29 www 793:
1.52 www 794: if (':csu:cdc:ccc:cin:cta:cep:ccr:cst:cad:cli:cau:cdg:'=~/\:$priv\:/) {
795: return $thisallowed;
796: }
797: #
798: # Gathered so far: system, domain and course wide priviledges
799: #
800: # Course: See if uri or referer is an individual resource that is part of
801: # the course
802:
803: if ($ENV{'request.course.id'}) {
804: $courseprivid=$ENV{'request.course.id'};
805: if ($ENV{'request.course.sec'}) {
806: $courseprivid.='/'.$ENV{'request.course.sec'};
807: }
808: $courseprivid=~s/\_/\//;
809: my $checkreferer=1;
810: my @uriparts=split(/\//,$uri);
811: my $filename=$uriparts[$#uriparts];
812: my $pathname=$uri;
813: $pathname=~s/\/$filename$//;
814: if ($ENV{'acc.res.'.$ENV{'request.course.id'}.'.'.$pathname}=~
1.54 www 815: /\&$filename\:([\d\|]+)\&/) {
1.52 www 816: $statecond=$1;
817: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.$courseprivid}
818: =~/$priv\&([^\:]*)/) {
819: $thisallowed.=$1;
820: $checkreferer=0;
821: }
1.29 www 822: }
1.55 www 823:
1.52 www 824: if (($ENV{'HTTP_REFERER'}) && ($checkreferer)) {
1.55 www 825: my $refuri=$ENV{'HTTP_REFERER'};
826: $refuri=~s/^http\:\/\/$ENV{'request.host'}//i;
827: $refuri=&declutter($refuri);
1.53 www 828: my @uriparts=split(/\//,$refuri);
1.52 www 829: my $filename=$uriparts[$#uriparts];
1.53 www 830: my $pathname=$refuri;
1.52 www 831: $pathname=~s/\/$filename$//;
1.55 www 832: my @filenameparts=split(/\./,$uri);
1.53 www 833: if (&fileembstyle($filenameparts[$#filenameparts]) ne 'ssi') {
834: if ($ENV{'acc.res.'.$ENV{'request.course.id'}.'.'.$pathname}=~
1.54 www 835: /\&$filename\:([\d\|]+)\&/) {
1.53 www 836: my $refstatecond=$1;
1.52 www 837: if ($ENV{'user.priv.'.$ENV{'request.role'}.'./'.$courseprivid}
838: =~/$priv\&([^\:]*)/) {
839: $thisallowed.=$1;
1.53 www 840: $uri=$refuri;
841: $statecond=$refstatecond;
1.52 www 842: }
1.53 www 843: }
1.52 www 844: }
1.29 www 845: }
1.52 www 846: }
1.29 www 847:
1.52 www 848: #
849: # Gathered now: all priviledges that could apply, and condition number
850: #
851: #
852: # Full or no access?
853: #
1.29 www 854:
1.52 www 855: if ($thisallowed=~/F/) {
856: return 'F';
857: }
1.29 www 858:
1.52 www 859: unless ($thisallowed) {
860: return '';
861: }
1.29 www 862:
1.52 www 863: # Restrictions exist, deal with them
864: #
865: # C:according to course preferences
866: # R:according to resource settings
867: # L:unless locked
868: # X:according to user session state
869: #
870:
871: # Possibly locked functionality, check all courses
1.54 www 872: # Locks might take effect only after 10 minutes cache expiration for other
873: # courses, and 2 minutes for current course
1.52 www 874:
875: my $envkey;
876: if ($thisallowed=~/L/) {
877: foreach $envkey (keys %ENV) {
1.54 www 878: if ($envkey=~/^user\.role\.(st|ta)\.([^\.]*)/) {
879: my $courseid=$2;
880: my $roleid=$1.'.'.$2;
881: my $expiretime=600;
882: if ($ENV{'request.role'} eq $roleid) {
883: $expiretime=120;
884: }
885: my ($cdom,$cnum,$csec)=split(/\//,$courseid);
886: my $prefix='course.'.$cdom.'_'.$cnum.'.';
887: if ((time-$ENV{$prefix.'last_cache'})>$expiretime) {
888: &coursedescription($courseid);
889: }
890: if (($ENV{$prefix.'res.'.$uri.'.lock.sections'}=~/\,$csec\,/)
891: || ($ENV{$prefix.'res.'.$uri.'.lock.sections'} eq 'all')) {
892: if ($ENV{$prefix.'res.'.$uri.'.lock.expire'}>time) {
1.57 www 893: &log($ENV{'user.domain'},$ENV{'user.name'},
894: $ENV{'user.host'},
895: 'Locked by res: '.$priv.' for '.$uri.' due to '.
1.52 www 896: $cdom.'/'.$cnum.'/'.$csec.' expire '.
1.54 www 897: $ENV{$prefix.'priv.'.$priv.'.lock.expire'});
1.52 www 898: return '';
899: }
900: }
1.54 www 901: if (($ENV{$prefix.'priv.'.$priv.'.lock.sections'}=~/\,$csec\,/)
902: || ($ENV{$prefix.'priv.'.$priv.'.lock.sections'} eq 'all')) {
903: if ($ENV{'priv.'.$priv.'.lock.expire'}>time) {
1.57 www 904: &log($ENV{'user.domain'},$ENV{'user.name'},
905: $ENV{'user.host'},
906: 'Locked by priv: '.$priv.' for '.$uri.' due to '.
1.52 www 907: $cdom.'/'.$cnum.'/'.$csec.' expire '.
1.54 www 908: $ENV{$prefix.'priv.'.$priv.'.lock.expire'});
1.52 www 909: return '';
910: }
911: }
912: }
1.29 www 913: }
1.52 www 914: }
915:
916: #
917: # Rest of the restrictions depend on selected course
918: #
919:
920: unless ($ENV{'request.course.id'}) {
921: return '1';
922: }
1.29 www 923:
1.52 www 924: #
925: # Now user is definitely in a course
926: #
1.53 www 927:
928:
929: # Course preferences
930:
931: if ($thisallowed=~/C/) {
1.54 www 932: my $rolecode=(split(/\./,$ENV{'request.role'}))[0];
933: if ($ENV{'course.'.$ENV{'request.course.id'}.'.'.$priv.'.roles.denied'}
934: =~/\,$rolecode\,/) {
1.57 www 935: &log($ENV{'user.domain'},$ENV{'user.name'},$ENV{'user.host'},
936: 'Denied by role: '.$priv.' for '.$uri.' as '.$rolecode.' in '.
1.54 www 937: $ENV{'request.course.id'});
938: return '';
939: }
1.53 www 940: }
941:
942: # Resource preferences
943:
944: if ($thisallowed=~/R/) {
1.54 www 945: my $rolecode=(split(/\./,$ENV{'request.role'}))[0];
946: my $filename=$perlvar{'lonDocRoot'}.'/res/'.$uri.'.meta';
947: if (-e $filename) {
948: my @content;
949: {
950: my $fh=Apache::File->new($filename);
951: @content=<$fh>;
952: }
953: if (join('',@content)=~
954: /\<roledeny[^\>]*\>[^\<]*$rolecode[^\<]*\<\/roledeny\>/) {
1.57 www 955: &log($ENV{'user.domain'},$ENV{'user.name'},$ENV{'user.host'},
956: 'Denied by role: '.$priv.' for '.$uri.' as '.$rolecode);
1.54 www 957: return '';
958:
959: }
960: }
1.53 www 961: }
1.30 www 962:
1.52 www 963: # Restricted by state?
1.30 www 964:
1.52 www 965: if ($thisallowed=~/X/) {
966: if (&condval($statecond)) {
967: return '2';
968: } else {
969: return '';
970: }
971: }
1.30 www 972:
1.52 www 973: return 'F';
1.12 www 974: }
975:
976: # ----------------------------------------------------------------- Define Role
977:
978: sub definerole {
979: if (allowed('mcr','/')) {
980: my ($rolename,$sysrole,$domrole,$courole)=@_;
1.21 www 981: map {
982: my ($crole,$cqual)=split(/\&/,$_);
983: if ($pr{'cr:s'}!~/$crole/) { return "refused:s:$crole"; }
984: if ($pr{'cr:s'}=~/$crole\&/) {
985: if ($pr{'cr:s'}!~/$crole\&\w*$cqual/) {
986: return "refused:s:$crole&$cqual";
987: }
988: }
989: } split('/',$sysrole);
990: map {
991: my ($crole,$cqual)=split(/\&/,$_);
992: if ($pr{'cr:d'}!~/$crole/) { return "refused:d:$crole"; }
993: if ($pr{'cr:d'}=~/$crole\&/) {
994: if ($pr{'cr:d'}!~/$crole\&\w*$cqual/) {
995: return "refused:d:$crole&$cqual";
996: }
997: }
998: } split('/',$domrole);
999: map {
1000: my ($crole,$cqual)=split(/\&/,$_);
1001: if ($pr{'cr:c'}!~/$crole/) { return "refused:c:$crole"; }
1002: if ($pr{'cr:c'}=~/$crole\&/) {
1003: if ($pr{'cr:c'}!~/$crole\&\w*$cqual/) {
1004: return "refused:c:$crole&$cqual";
1005: }
1006: }
1007: } split('/',$courole);
1.12 www 1008: my $command="encrypt:rolesput:$ENV{'user.domain'}:$ENV{'user.name'}:".
1009: "$ENV{'user.domain'}:$ENV{'user.name'}:".
1.21 www 1010: "rolesdef_$rolename=".
1011: escape($sysrole.'_'.$domrole.'_'.$courole);
1.12 www 1012: return reply($command,$ENV{'user.home'});
1013: } else {
1014: return 'refused';
1015: }
1016: }
1017:
1018: # ------------------------------------------------------------------ Plain Text
1019:
1020: sub plaintext {
1.22 www 1021: my $short=shift;
1022: return $prp{$short};
1.12 www 1023: }
1024:
1.25 www 1025: # ------------------------------------------------------------------ Plain Text
1026:
1027: sub fileembstyle {
1028: my $ending=shift;
1029: return $fe{$ending};
1030: }
1031:
1032: # ------------------------------------------------------------ Description Text
1033:
1034: sub filedecription {
1035: my $ending=shift;
1036: return $fd{$ending};
1037: }
1038:
1.12 www 1039: # ----------------------------------------------------------------- Assign Role
1040:
1041: sub assignrole {
1.21 www 1042: my ($udom,$uname,$url,$role,$end,$start)=@_;
1043: my $mrole;
1.31 www 1044: $url=declutter($url);
1.21 www 1045: if ($role =~ /^cr\//) {
1046: unless ($url=~/\.course$/) { return 'invalid'; }
1047: unless (allowed('ccr',$url)) { return 'refused'; }
1048: $mrole='cr';
1049: } else {
1050: unless (($url=~/\.course$/) || ($url=~/\/$/)) { return 'invalid'; }
1051: unless (allowed('c'+$role)) { return 'refused'; }
1052: $mrole=$role;
1053: }
1054: my $command="encrypt:rolesput:$ENV{'user.domain'}:$ENV{'user.name'}:".
1055: "$udom:$uname:$url".'_'."$mrole=$role";
1056: if ($end) { $command.='_$end'; }
1057: if ($start) {
1058: if ($end) {
1059: $command.='_$start';
1060: } else {
1061: $command.='_0_$start';
1062: }
1063: }
1064: return &reply($command,&homeserver($uname,$udom));
1065: }
1066:
1067: # ---------------------------------------------------------- Assign Custom Role
1068:
1069: sub assigncustomrole {
1070: my ($udom,$uname,$url,$rdom,$rnam,$rolename,$end,$start)=@_;
1071: return &assignrole($udom,$uname,$url,'cr/'.$rdom.'/'.$rnam.'/'.$rolename,
1072: $end,$start);
1073: }
1074:
1075: # ----------------------------------------------------------------- Revoke Role
1076:
1077: sub revokerole {
1078: my ($udom,$uname,$url,$role)=@_;
1079: my $now=time;
1080: return &assignrole($udom,$uname,$url,$role,$now);
1081: }
1082:
1083: # ---------------------------------------------------------- Revoke Custom Role
1084:
1085: sub revokecustomrole {
1086: my ($udom,$uname,$url,$rdom,$rnam,$rolename)=@_;
1087: my $now=time;
1088: return &assigncustomrole($udom,$uname,$url,$rdom,$rnam,$rolename,$now);
1.17 www 1089: }
1090:
1091: # ------------------------------------------------------------ Directory lister
1092:
1093: sub dirlist {
1094: my $uri=shift;
1.18 www 1095: $uri=~s/^\///;
1096: $uri=~s/\/$//;
1.19 www 1097: my ($res,$udom,$uname,@rest)=split(/\//,$uri);
1098: if ($udom) {
1099: if ($uname) {
1100: my $listing=reply('ls:'.$perlvar{'lonDocRoot'}.'/'.$uri,
1101: homeserver($uname,$udom));
1102: return split(/:/,$listing);
1103: } else {
1104: my $tryserver;
1105: my %allusers=();
1106: foreach $tryserver (keys %libserv) {
1107: if ($hostdom{$tryserver} eq $udom) {
1108: my $listing=reply('ls:'.$perlvar{'lonDocRoot'}.'/res/'.$udom,
1109: $tryserver);
1110: if (($listing ne 'no_such_dir') && ($listing ne 'empty')
1111: && ($listing ne 'con_lost')) {
1112: map {
1113: my ($entry,@stat)=split(/&/,$_);
1114: $allusers{$entry}=1;
1115: } split(/:/,$listing);
1116: }
1117: }
1118: }
1119: my $alluserstr='';
1120: map {
1121: $alluserstr.=$_.'&user:';
1122: } sort keys %allusers;
1123: $alluserstr=~s/:$//;
1124: return split(/:/,$alluserstr);
1125: }
1126: } else {
1127: my $tryserver;
1128: my %alldom=();
1129: foreach $tryserver (keys %libserv) {
1130: $alldom{$hostdom{$tryserver}}=1;
1131: }
1132: my $alldomstr='';
1133: map {
1134: $alldomstr.=$perlvar{'lonDocRoot'}.'/res/'.$_.'&domain:';
1135: } sort keys %alldom;
1136: $alldomstr=~s/:$//;
1137: return split(/:/,$alldomstr);
1138: }
1.26 www 1139: }
1140:
1141: # -------------------------------------------------------- Value of a Condition
1142:
1.40 www 1143: sub directcondval {
1144: my $number=shift;
1145: if ($ENV{'user.state.'.$ENV{'request.course.id'}}) {
1146: return substr($ENV{'user.state.'.$ENV{'request.course.id'}},$number,1);
1147: } else {
1148: return 2;
1149: }
1150: }
1151:
1.26 www 1152: sub condval {
1153: my $condidx=shift;
1154: my $result=0;
1.54 www 1155: my $allpathcond='';
1156: map {
1157: if (defined($ENV{'acc.cond.'.$ENV{'request.course.id'}.'.'.$_})) {
1158: $allpathcond.=
1159: '('.$ENV{'acc.cond.'.$ENV{'request.course.id'}.'.'.$_}.')|';
1160: }
1161: } split(/\|/,$condidx);
1162: $allpathcond=~s/\|$//;
1.33 www 1163: if ($ENV{'request.course.id'}) {
1.54 www 1164: if ($allpathcond) {
1.26 www 1165: my $operand='|';
1166: my @stack;
1167: map {
1168: if ($_ eq '(') {
1169: push @stack,($operand,$result)
1170: } elsif ($_ eq ')') {
1171: my $before=pop @stack;
1172: if (pop @stack eq '&') {
1173: $result=$result>$before?$before:$result;
1174: } else {
1175: $result=$result>$before?$result:$before;
1176: }
1177: } elsif (($_ eq '&') || ($_ eq '|')) {
1178: $operand=$_;
1179: } else {
1.40 www 1180: my $new=directcondval($_);
1.26 www 1181: if ($operand eq '&') {
1182: $result=$result>$new?$new:$result;
1183: } else {
1184: $result=$result>$new?$result:$new;
1185: }
1186: }
1.54 www 1187: } ($allpathcond=~/(\d+|\(|\)|\&|\|)/g);
1.26 www 1188: }
1189: }
1190: return $result;
1.28 www 1191: }
1192:
1193: # --------------------------------------------------------- Value of a Variable
1194:
1.58 www 1195: sub EXT {
1.48 www 1196: my $varname=shift;
1197: my ($realm,$space,$qualifier,@therest)=split(/\./,$varname);
1198: my $rest;
1199: if ($therest[0]) {
1200: $rest=join('.',@therest);
1201: } else {
1202: $rest='';
1203: }
1.57 www 1204: my $qualifierrest=$qualifier;
1205: if ($rest) { $qualifierrest.='.'.$rest; }
1206: my $spacequalifierrest=$space;
1207: if ($qualifierrest) { $spacequalifierrest.='.'.$qualifierrest; }
1.28 www 1208: if ($realm eq 'user') {
1.48 www 1209: # --------------------------------------------------------------- user.resource
1210: if ($space eq 'resource') {
1.57 www 1211: my %restored=&restore;
1212: return $restored{$qualifierrest};
1.48 www 1213: # ----------------------------------------------------------------- user.access
1214: } elsif ($space eq 'access') {
1215: return &allowed($qualifier,$rest);
1216: # ------------------------------------------ user.preferences, user.environment
1217: } elsif (($space eq 'preferences') || ($space eq 'environment')) {
1.57 www 1218: return $ENV{join('.',('environment',$qualifierrest))};
1.48 www 1219: # ----------------------------------------------------------------- user.course
1220: } elsif ($space eq 'course') {
1221: return $ENV{join('.',('request.course',$qualifier))};
1222: # ------------------------------------------------------------------- user.role
1223: } elsif ($space eq 'role') {
1224: my ($role,$where)=split(/\./,$ENV{'request.role'});
1225: if ($qualifier eq 'value') {
1226: return $role;
1227: } elsif ($qualifier eq 'extent') {
1228: return $where;
1229: }
1230: # ----------------------------------------------------------------- user.domain
1231: } elsif ($space eq 'domain') {
1232: return $ENV{'user.domain'};
1233: # ------------------------------------------------------------------- user.name
1234: } elsif ($space eq 'name') {
1235: return $ENV{'user.name'};
1236: # ---------------------------------------------------- Any other user namespace
1.29 www 1237: } else {
1.48 www 1238: my $item=($rest)?$qualifier.'.'.$rest:$qualifier;
1239: my %reply=&get($space,$item);
1240: return $reply{$item};
1241: }
1242: } elsif ($realm eq 'request') {
1243: # ------------------------------------------------------------- request.browser
1244: if ($space eq 'browser') {
1245: return $ENV{'browser.'.$qualifier};
1.57 www 1246: # ------------------------------------------------------------ request.filename
1247: } else {
1248: return $ENV{'request.'.$spacequalifierrest};
1.29 www 1249: }
1.28 www 1250: } elsif ($realm eq 'course') {
1.48 www 1251: # ---------------------------------------------------------- course.description
1.57 www 1252: my $section='';
1253: if ($ENV{'request.course.sec'}) {
1254: $section='_'.$ENV{'request.course.sec'};
1.48 www 1255: }
1.57 www 1256: return $ENV{'course.'.$ENV{'request.course.id'}.$section.'.'.
1257: $spacequalifierrest};
1258: } elsif ($realm eq 'resource') {
1.60 www 1259: if ($ENV{'request.course.id'}) {
1260: # ----------------------------------------------------- Cascading lookup scheme
1261: my $reslevel=
1262: $ENV{'request.course.id'}.'.'.&symbread().'.'.$spacequalifierrest;
1263: my $seclevel=
1264: $ENV{'request.course.id'}.'.'.
1265: $ENV{'request.course.sec'}.'.'.$spacequalifierrest;
1266: my $courselevel=
1267: $ENV{'request.course.id'}.'.'.$spacequalifierrest;
1268:
1269: # ----------------------------------------------------------- first, check user
1.63 www 1270: my %resourcedata=get('resourcedata',($reslevel,$seclevel,$courselevel));
1271: if ($resourcedata{$reslevel}!~/^error\:/) {
1.60 www 1272: if ($resourcedata{$reslevel}) { return $resourcedata{$reslevel}; }
1273: if ($resourcedata{$seclevel}) { return $resourcedata{$seclevel}; }
1274: if ($resourcedata{$courselevel}) { return $resourcedata{$courselevel}; }
1.63 www 1275: }
1.60 www 1276: # -------------------------------------------------------- second, check course
1277: my $section='';
1278: if ($ENV{'request.course.sec'}) {
1279: $section='_'.$ENV{'request.course.sec'};
1280: }
1281: my $reply=&reply('get:'.
1282: $ENV{'course.'.$ENV{'request.course.id'}.$section.'.domain'}.':'.
1283: $ENV{'course.'.$ENV{'request.course.id'}.$section.'.num'}.
1284: ':resourcedata:'.
1285: escape($reslevel).':'.escape($seclevel).':'.escape($courselevel),
1286: $ENV{'course.'.$ENV{'request.course.id'}.$section.'.home'});
1.63 www 1287: if ($reply!~/^error\:/) {
1.60 www 1288: map {
1289: my ($name,$value)=split(/\=/,$_);
1290: $resourcedata{unescape($name)}=unescape($value);
1291: } split(/\&/,$reply);
1292: if ($resourcedata{$reslevel}) { return $resourcedata{$reslevel}; }
1.63 www 1293: if ($resourcedata{$seclevel}) { return $resourcedata{$seclevel}; }
1.60 www 1294: if ($resourcedata{$courselevel}) { return $resourcedata{$courselevel}; }
1.63 www 1295: }
1.60 www 1296:
1297: # ------------------------------------------------------ third, check map parms
1298:
1299: if ($ENV{'resource.parms.'.$reslevel}) {
1300: return $ENV{'resource.parms.'.$reslevel};
1301: }
1302: }
1303:
1304: # --------------------------------------------- last, look in resource metadata
1.57 www 1305: my $uri=&declutter($ENV{'request.filename'});
1306: my $filename=$perlvar{'lonDocRoot'}.'/res/'.$ENV.'.meta';
1307: if (-e $filename) {
1308: my @content;
1309: {
1310: my $fh=Apache::File->new($filename);
1311: @content=<$fh>;
1312: }
1313: if (join('',@content)=~
1314: /\<$space[^\>]*\>([^\<]*)\<\/$space\>/) {
1315: return $1;
1.60 www 1316: }
1317: }
1.48 www 1318: # ---------------------------------------------------- Any other user namespace
1319: } elsif ($realm eq 'environment') {
1320: # ----------------------------------------------------------------- environment
1.57 www 1321: return $ENV{$spacequalifierrest};
1.28 www 1322: } elsif ($realm eq 'system') {
1.48 www 1323: # ----------------------------------------------------------------- system.time
1324: if ($space eq 'time') {
1325: return time;
1326: }
1.28 www 1327: }
1.48 www 1328: return '';
1.61 www 1329: }
1330:
1331: # ---------------------------------------- Append resource parms to environment
1332:
1333: sub appendparms {
1334: my ($symb,$parms)=@_;
1335: my %storehash=();
1336: my $prefix='resource.parms.'.$ENV{'request.course.id'}.'.'.$symb;
1337: map {
1338: my ($typename,$value)=split(/\=/,$_);
1339: my ($type,$name)=split(/\:/,$typename);
1340: $storehash{$prefix.'.'.unescape($name)}=unescape($value);
1341: $storehash{$prefix.'.'.unescape($name).'.type'}=unescape($type);
1342: } split(/\&/,$parms);
1343: &appenv(%storehash);
1.31 www 1344: }
1345:
1346: # ------------------------------------------------- Update symbolic store links
1347:
1348: sub symblist {
1349: my ($mapname,%newhash)=@_;
1350: $mapname=declutter($mapname);
1351: my %hash;
1352: if (($ENV{'request.course.fn'}) && (%newhash)) {
1353: if (tie(%hash,'GDBM_File',$ENV{'request.course.fn'}.'_symb.db',
1354: &GDBM_WRCREAT,0640)) {
1355: map {
1356: $hash{declutter($_)}=$mapname.'___'.$newhash{$_};
1357: } keys %newhash;
1358: if (untie(%hash)) {
1359: return 'ok';
1360: }
1361: }
1362: }
1363: return 'error';
1364: }
1365:
1366: # ------------------------------------------------------ Return symb list entry
1367:
1368: sub symbread {
1.44 www 1369: my $thisfn=shift;
1370: unless ($thisfn) {
1371: $thisfn=$ENV{'request.filename'};
1372: }
1373: $thisfn=declutter($thisfn);
1.31 www 1374: my %hash;
1.37 www 1375: my %bighash;
1376: my $syval='';
1.62 www 1377: my $parms='';
1.45 www 1378: if (($ENV{'request.course.fn'}) && ($thisfn)) {
1.31 www 1379: if (tie(%hash,'GDBM_File',$ENV{'request.course.fn'}.'_symb.db',
1380: &GDBM_READER,0640)) {
1381: $syval=$hash{$thisfn};
1.37 www 1382: untie(%hash);
1383: }
1384: # ---------------------------------------------------------- There was an entry
1385: if ($syval) {
1386: unless ($syval=~/\_\d+$/) {
1387: unless ($ENV{'form.request.prefix'}=~/\.(\d+)\_$/) {
1.44 www 1388: &appenv('request.ambiguous' => $thisfn);
1.37 www 1389: return '';
1390: }
1391: $syval.=$1;
1392: }
1393: } else {
1394: # ------------------------------------------------------- Was not in symb table
1395: if (tie(%bighash,'GDBM_File',$ENV{'request.course.fn'}.'.db',
1396: &GDBM_READER,0640)) {
1397: # ---------------------------------------------- Get ID(s) for current resource
1398: my $ids=$bighash{'ids_/res/'.$thisfn};
1399: if ($ids) {
1400: # ------------------------------------------------------------------- Has ID(s)
1401: my @possibilities=split(/\,/,$ids);
1.39 www 1402: if ($#possibilities==0) {
1403: # ----------------------------------------------- There is only one possibility
1.37 www 1404: my ($mapid,$resid)=split(/\./,$ids);
1.62 www 1405: $parms=$bighash{'param_'.$ids};
1.37 www 1406: $syval=declutter($bighash{'map_id_'.$mapid}).'___'.$resid;
1407: } else {
1.39 www 1408: # ------------------------------------------ There is more than one possibility
1409: my $realpossible=0;
1410: map {
1411: my $file=$bighash{'src_'.$_};
1412: if (&allowed('bre',$file)) {
1413: my ($mapid,$resid)=split(/\./,$_);
1414: if ($bighash{'map_type_'.$mapid} ne 'page') {
1415: $realpossible++;
1.62 www 1416: $parms=$bighash{'param_'.$_};
1.39 www 1417: $syval=declutter($bighash{'map_id_'.$mapid}).
1418: '___'.$resid;
1419: }
1420: }
1421: } @possibilities;
1422: if ($realpossible!=1) { $syval=''; }
1.37 www 1423: }
1424: }
1425: untie(%bighash)
1426: }
1.31 www 1427: }
1.62 www 1428: if ($syval) {
1429: if ($parms) {
1430: &appendparms($syval.'___'.$thisfn,$parms);
1431: }
1432: return $syval.'___'.$thisfn;
1433: }
1.31 www 1434: }
1.44 www 1435: &appenv('request.ambiguous' => $thisfn);
1.31 www 1436: return '';
1437: }
1438:
1439: # ---------------------------------------------------------- Return random seed
1440:
1.32 www 1441: sub numval {
1442: my $txt=shift;
1443: $txt=~tr/A-J/0-9/;
1444: $txt=~tr/a-j/0-9/;
1445: $txt=~tr/K-T/0-9/;
1446: $txt=~tr/k-t/0-9/;
1447: $txt=~tr/U-Z/0-5/;
1448: $txt=~tr/u-z/0-5/;
1449: $txt=~s/\D//g;
1450: return int($txt);
1451: }
1452:
1.31 www 1453: sub rndseed {
1454: my $symb;
1.44 www 1455: unless ($symb=&symbread()) { return time; }
1.32 www 1456: my $symbchck=unpack("%32C*",$symb);
1457: my $symbseed=numval($symb)%$symbchck;
1458: my $namechck=unpack("%32C*",$ENV{'user.name'});
1459: my $nameseed=numval($ENV{'user.name'})%$namechck;
1460: return int( $symbseed
1461: .$nameseed
1462: .unpack("%32C*",$ENV{'user.domain'})
1.33 www 1463: .unpack("%32C*",$ENV{'request.course.id'})
1.32 www 1464: .$namechck
1465: .$symbchck);
1.36 albertel 1466: }
1467:
1468: # ------------------------------------------------------------ Serves up a file
1469: # returns either the contents of the file or a -1
1470: sub getfile {
1471: my $file=shift;
1.37 www 1472: &repcopy($file);
1.36 albertel 1473: if (! -e $file ) { return -1; };
1474: my $fh=Apache::File->new($file);
1475: my $a='';
1476: while (<$fh>) { $a .=$_; }
1477: return $a
1478: }
1479:
1480: sub filelocation {
1481: my ($dir,$file) = @_;
1482: my $location;
1483: $file=~ s/^\s*(\S+)\s*$/$1/; ## strip off leading and trailing spaces
1.59 albertel 1484: if ($file=~m:^/~:) { # is a contruction space reference
1485: $location = $file;
1486: $location =~ s:/~(.*?)/(.*):/home/$1/public_html/$2:;
1.36 albertel 1487: } else {
1.59 albertel 1488: $file=~s/^$perlvar{'lonDocRoot'}//;
1489: $file=~s:^/*res::;
1490: if ( !( $file =~ m:^/:) ) {
1491: $location = $dir. '/'.$file;
1492: } else {
1493: $location = '/home/httpd/html/res'.$file;
1494: }
1.36 albertel 1495: }
1496: $location=~s://+:/:g; # remove duplicate /
1.46 www 1497: while ($location=~m:/\.\./:) {$location=~ s:/[^/]+/\.\./:/:g;} #remove dir/..
1498: return $location;
1499: }
1.36 albertel 1500:
1.46 www 1501: sub hreflocation {
1502: my ($dir,$file)=@_;
1503: unless (($_=~/^http:\/\//i) || ($_=~/^\//)) {
1504: my $finalpath=filelocation($dir,$file);
1505: $finalpath=~s/^\/home\/httpd\/html//;
1506: return $finalpath;
1507: } else {
1508: return $file;
1509: }
1.31 www 1510: }
1511:
1512: # ------------------------------------------------------------- Declutters URLs
1513:
1514: sub declutter {
1515: my $thisfn=shift;
1516: $thisfn=~s/^$perlvar{'lonDocRoot'}//;
1517: $thisfn=~s/^\///;
1518: $thisfn=~s/^res\///;
1519: return $thisfn;
1.12 www 1520: }
1521:
1522: # -------------------------------------------------------- Escape Special Chars
1523:
1524: sub escape {
1525: my $str=shift;
1526: $str =~ s/(\W)/"%".unpack('H2',$1)/eg;
1527: return $str;
1528: }
1529:
1530: # ----------------------------------------------------- Un-Escape Special Chars
1531:
1532: sub unescape {
1533: my $str=shift;
1534: $str =~ s/%([a-fA-F0-9][a-fA-F0-9])/pack("C",hex($1))/eg;
1535: return $str;
1536: }
1.11 www 1537:
1.1 albertel 1538: # ================================================================ Main Program
1539:
1540: sub BEGIN {
1541: if ($readit ne 'done') {
1542: # ------------------------------------------------------------ Read access.conf
1543: {
1544: my $config=Apache::File->new("/etc/httpd/conf/access.conf");
1545:
1546: while (my $configline=<$config>) {
1547: if ($configline =~ /PerlSetVar/) {
1548: my ($dummy,$varname,$varvalue)=split(/\s+/,$configline);
1.8 www 1549: chomp($varvalue);
1.1 albertel 1550: $perlvar{$varname}=$varvalue;
1551: }
1552: }
1553: }
1554:
1555: # ------------------------------------------------------------- Read hosts file
1556: {
1557: my $config=Apache::File->new("$perlvar{'lonTabDir'}/hosts.tab");
1558:
1559: while (my $configline=<$config>) {
1560: my ($id,$domain,$role,$name,$ip)=split(/:/,$configline);
1561: $hostname{$id}=$name;
1562: $hostdom{$id}=$domain;
1563: if ($role eq 'library') { $libserv{$id}=$name; }
1564: }
1565: }
1566:
1567: # ------------------------------------------------------ Read spare server file
1568: {
1569: my $config=Apache::File->new("$perlvar{'lonTabDir'}/spare.tab");
1570:
1571: while (my $configline=<$config>) {
1572: chomp($configline);
1573: if (($configline) && ($configline ne $perlvar{'lonHostID'})) {
1574: $spareid{$configline}=1;
1575: }
1576: }
1577: }
1.11 www 1578: # ------------------------------------------------------------ Read permissions
1579: {
1580: my $config=Apache::File->new("$perlvar{'lonTabDir'}/roles.tab");
1581:
1582: while (my $configline=<$config>) {
1583: chomp($configline);
1584: my ($role,$perm)=split(/ /,$configline);
1585: if ($perm ne '') { $pr{$role}=$perm; }
1586: }
1587: }
1588:
1589: # -------------------------------------------- Read plain texts for permissions
1590: {
1591: my $config=Apache::File->new("$perlvar{'lonTabDir'}/rolesplain.tab");
1592:
1593: while (my $configline=<$config>) {
1594: chomp($configline);
1595: my ($short,$plain)=split(/:/,$configline);
1596: if ($plain ne '') { $prp{$short}=$plain; }
1.25 www 1597: }
1598: }
1599:
1600: # ------------------------------------------------------------- Read file types
1601: {
1602: my $config=Apache::File->new("$perlvar{'lonTabDir'}/filetypes.tab");
1603:
1604: while (my $configline=<$config>) {
1605: chomp($configline);
1606: my ($ending,$emb,@descr)=split(/\s+/,$configline);
1607: if ($descr[0] ne '') {
1608: $fe{$ending}=$emb;
1609: $fd{$ending}=join(' ',@descr);
1610: }
1.11 www 1611: }
1612: }
1613:
1.22 www 1614:
1.1 albertel 1615: $readit='done';
1.12 www 1616: &logthis('<font color=yellow>INFO: Read configuration</font>');
1.1 albertel 1617: }
1618: }
1619: 1;
FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>