version 1.4, 2001/05/25 17:03:58
|
version 1.40, 2008/11/18 19:14:40
|
Line 1
|
Line 1
|
|
|
# The LearningOnline Network with CAPA |
# The LearningOnline Network with CAPA |
# Handler to upload files into construction space |
# Handler to upload files into construction space |
# |
# |
# (Handler to retrieve an old version of a file |
# $Id$ |
|
# |
|
# Copyright Michigan State University Board of Trustees |
|
# |
|
# This file is part of the LearningOnline Network with CAPA (LON-CAPA). |
# |
# |
# (Publication Handler |
# LON-CAPA is free software; you can redistribute it and/or modify |
# |
# it under the terms of the GNU General Public License as published by |
# (TeX Content Handler |
# the Free Software Foundation; either version 2 of the License, or |
|
# (at your option) any later version. |
# |
# |
# 05/29/00,05/30,10/11 Gerd Kortemeyer) |
# LON-CAPA is distributed in the hope that it will be useful, |
|
# but WITHOUT ANY WARRANTY; without even the implied warranty of |
|
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the |
|
# GNU General Public License for more details. |
# |
# |
# 11/28,11/29,11/30,12/01,12/02,12/04,12/23 Gerd Kortemeyer |
# You should have received a copy of the GNU General Public License |
# 03/23 Guy Albertelli |
# along with LON-CAPA; if not, write to the Free Software |
# 03/24,03/29 Gerd Kortemeyer) |
# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA |
# |
# |
# 03/31,04/03 Gerd Kortemeyer) |
# /home/httpd/html/adm/gpl.txt |
# |
# |
# 04/05,04/09,05/25 Gerd Kortemeyer |
# http://www.lon-capa.org/ |
|
# |
|
### |
|
|
|
=head1 NAME |
|
|
|
Apache::lonupload - upload files into construction space |
|
|
|
=head1 SYNOPSIS |
|
|
|
Invoked by /etc/httpd/conf/srm.conf: |
|
|
|
<Location /adm/upload> |
|
PerlAccessHandler Apache::lonacc |
|
SetHandler perl-script |
|
PerlHandler Apache::lonupload |
|
ErrorDocument 403 /adm/login |
|
ErrorDocument 404 /adm/notfound.html |
|
ErrorDocument 406 /adm/unauthorized.html |
|
ErrorDocument 500 /adm/errorhandler |
|
</Location> |
|
|
|
=head1 INTRODUCTION |
|
|
|
This module uploads a file sitting on a client computer into |
|
library server construction space. |
|
|
|
This is part of the LearningOnline Network with CAPA project |
|
described at http://www.lon-capa.org. |
|
|
|
=head1 HANDLER SUBROUTINE |
|
|
|
This routine is called by Apache and mod_perl. |
|
|
|
=over 4 |
|
|
|
=item * |
|
|
|
Initialize variables |
|
|
|
=item * |
|
|
|
Start page output |
|
|
|
=item * |
|
|
|
output relevant interface phase (phaseone or phasetwo or phasethree) |
|
|
|
=item * |
|
|
|
(phase one is to specify upload file; phase two is to handle conditions |
|
subsequent to specification--like overwriting an existing file; phase three |
|
is to handle processing of secondary uploads - of embedded objects in an |
|
html file). |
|
|
|
=back |
|
|
|
=head1 OTHER SUBROUTINES |
|
|
|
=over |
|
|
|
=item phaseone() |
|
|
|
Interface for specifying file to upload. |
|
|
|
=item phasetwo() |
|
|
|
Interface for handling post-conditions about uploading (such |
|
as overwriting an existing file). |
|
|
|
=item phasethree() |
|
|
|
Interface for handling secondary uploads of embedded objects |
|
in an html file. |
|
|
|
=item upfile_store() |
|
|
|
Store contents of uploaded file into temporary space. Invoked |
|
by phaseone subroutine. |
|
|
|
=item check_extension() |
|
|
|
Checks if filename extension is permitted and checks type |
|
of file - if html file, calls parser to check for embedded objects. |
|
Invoked by phasetwo subroutine. |
|
|
|
=back |
|
|
|
=cut |
|
|
package Apache::lonupload; |
package Apache::lonupload; |
|
|
use strict; |
use strict; |
use Apache::File; |
use Apache::File; |
use File::Copy; |
use File::Copy; |
|
use File::Basename; |
use Apache::Constants qw(:common :http :methods); |
use Apache::Constants qw(:common :http :methods); |
use Apache::loncacc; |
use Apache::loncacc; |
|
use Apache::loncommon(); |
|
use Apache::lonnet; |
|
use HTML::Entities(); |
|
use Apache::lonlocal; |
|
use Apache::lonnet; |
|
use LONCAPA(); |
|
|
|
my $DEBUG=0; |
|
|
|
sub Debug { |
|
# Put out the indicated message but only if DEBUG is true. |
|
if ($DEBUG) { |
|
my ($r,$message) = @_; |
|
$r->log_reason($message); |
|
} |
|
} |
|
|
sub upfile_store { |
sub upfile_store { |
my $r=shift; |
my $r=shift; |
|
|
my $fname=$ENV{'form.upfile.filename'}; |
my $fname=$env{'form.upfile.filename'}; |
$fname=~s/\W//g; |
$fname=~s/\W//g; |
|
|
chop($ENV{'form.upfile'}); |
chomp($env{'form.upfile'}); |
|
|
my $datatoken=$ENV{'user.name'}.'_'.$ENV{'user.domain'}. |
my $datatoken=$env{'user.name'}.'_'.$env{'user.domain'}. |
'_upload_'.$fname.'_'.time.'_'.$$; |
'_upload_'.$fname.'_'.time.'_'.$$; |
{ |
{ |
my $fh=Apache::File->new('>'.$r->dir_config('lonDaemons'). |
my $fh=Apache::File->new('>'.$r->dir_config('lonDaemons'). |
'/tmp/'.$datatoken.'.tmp'); |
'/tmp/'.$datatoken.'.tmp'); |
print $fh $ENV{'form.upfile'}; |
print $fh $env{'form.upfile'}; |
} |
} |
return $datatoken; |
return $datatoken; |
} |
} |
|
|
|
|
sub phaseone { |
sub phaseone { |
my ($r,$fn,$uname,$udom)=@_; |
my ($r,$fn,$uname,$udom,$mode)=@_; |
$fn=~s/\/[^\/]+$//; |
my $action = '/adm/upload'; |
$fn=~s/([^\/])$/$1\//; |
if ($mode eq 'testbank') { |
$fn.=$ENV{'form.upfile.filename'}; |
$action = '/adm/testbank'; |
$fn=~s/^\///; |
} elsif ($mode eq 'imsimport') { |
$fn=~s/(\/)+/\//g; |
$action = '/adm/imsimport'; |
|
} |
if (($fn) && ($fn!~/\/$/)) { |
$env{'form.upfile.filename'}=~s/\\/\//g; |
$r->print( |
$env{'form.upfile.filename'}=~s/^.*\/([^\/]+)$/$1/; |
'<form action=/adm/upload method=post>'. |
if ($env{'form.upfile.filename'}) { |
'<input type=hidden name=phase value=two>'. |
$fn=~s/\/[^\/]+$//; |
'<input type=hidden name=datatoken value="'.&upfile_store.'">'. |
$fn=~s/([^\/])$/$1\//; |
'Store uploaded file as '. |
$fn.=$env{'form.upfile.filename'}; |
'<input type=text size=50 name=filename value="/priv/'. |
$fn=~s/^\///; |
$uname.'/'.$fn.'"><br>'. |
$fn=~s/(\/)+/\//g; |
'<input type=submit value="Store"></form>'); |
|
} else { |
# Fn is the full path to the destination filename. |
$r->print('<font color=red>Illegal filename.</font>'); |
# |
} |
|
|
&Debug($r, "Filename for upload: $fn"); |
|
if (($fn) && ($fn!~/\/$/)) { |
|
$r->print('<form action="'.$action.'" method="post" name="fileupload">'. |
|
'<input type="hidden" name="phase" value="two" />'. |
|
'<input type="hidden" name="datatoken" value="'. |
|
&upfile_store.'" />'. |
|
'<input type="hidden" name="uploaduname" value="'.$uname. |
|
'" />'.&mt('Save uploaded file as '). |
|
"<span class='LC_filename'>/priv/$uname/</span>". |
|
'<input type="text" size="50" name="filename" value="'.$fn. |
|
'" /><br />'. |
|
'<br />'.&mt('Choose file type:').' |
|
<select name="filetype"> |
|
<option value="standard" selected>'.&mt('Regular file').' |
|
<option value="testbank">'.&mt('Testbank file').' |
|
<option value="imsimport">'.&mt('IMS package').' |
|
</select>'.&Apache::loncommon::help_open_topic("Uploading_File_Options").' |
|
<br /> |
|
<br /> |
|
'); |
|
$r->print('<input type="button" value="'.&mt('Save').'" onClick="javascript:verifyForm()"/></form>'); |
|
# Check for bad extension and warn user |
|
if ($fn=~/\.(\w+)$/ && |
|
(&Apache::loncommon::fileembstyle($1) eq 'hdn')) { |
|
$r->print('<span class="LC_error">'.&mt('The extension on this file,'). |
|
' "'.$1.'"'.&mt(', is reserved internally by LON-CAPA.'). |
|
' <br />'.&mt('Please change the extension.').'</span>'); |
|
} elsif($fn=~/\.(\w+)$/ && |
|
!defined(&Apache::loncommon::fileembstyle($1))) { |
|
$r->print('<span class="LC_error">'.&mt('The extension on this file,'). |
|
' "'.$1.'"'.&mt(', is not recognized by LON-CAPA.'). |
|
' <br />'.&mt('Please change the extension.'). |
|
'</span>'); |
|
} |
|
} else { |
|
$r->print('<span class="LC_error">'.&mt('Illegal filename.').'</span>'); |
|
} |
|
} else { |
|
$r->print('<span class="LC_error">'.&mt('No upload file specified.').'</span>'); |
|
} |
} |
} |
|
|
sub phasetwo { |
sub phasetwo { |
my ($r,$fn,$uname,$udom)=@_; |
my ($r,$tfn,$uname,$udom,$mode)=@_; |
if ($fn=~/^\/priv\/$uname\//) { |
my $output; |
my $tfn=$fn; |
my $action = '/adm/upload'; |
$tfn=~s/^\/(\~|priv)\/(\w+)//; |
my $returnflag = ''; |
my $target='/home/'.$uname.'/public_html'.$tfn; |
if ($mode eq 'testbank') { |
my $datatoken=$ENV{'form.datatoken'}; |
$action = '/adm/testbank'; |
if (($fn) && ($datatoken)) { |
} elsif ($mode eq 'imsimport') { |
if ((-e $target) && ($ENV{'form.override'} ne 'Yes')) { |
$action = '/adm/imsimport'; |
$r->print( |
} |
'<form action=/adm/upload method=post>'. |
my $fn='/priv/'.$uname.'/'.$tfn; |
'File <tt>'.$fn.'</tt> exists. Overwrite? '. |
$fn=~s/\/+/\//g; |
'<input type=hidden name=phase value=two>'. |
&Debug($r, "Filename is ".$tfn); |
'<input type=hidden name=filename value="'.$fn.'">'. |
if ($tfn) { |
'<input type=hidden name=datatoken value="'.$datatoken.'">'. |
&Debug($r, "Filename for tfn = ".$tfn); |
'<input type=submit name=override value="Yes"></form>'); |
my $target='/home/'.$uname.'/public_html'.$tfn; |
} else { |
&Debug($r, "target -> ".$target); |
my $source=$r->dir_config('lonDaemons'). |
# target is the full filesystem path of the destination file. |
'/tmp/'.$datatoken.'.tmp'; |
my $base = &File::Basename::basename($fn); |
if (copy($source,$target)) { |
my $path = &File::Basename::dirname($fn); |
$r->print('File copied.'); |
$base = &HTML::Entities::encode($base,'<>&"'); |
$r->print('<p><font size=+2><a href="'.$fn. |
my $url = $path."/".$base; |
'">View file</a></font>'); |
&Debug($r, "URL is now ".$url); |
} else { |
my $datatoken=$env{'form.datatoken'}; |
$r->print('Failed to copy: '.$!); |
if (($fn) && ($datatoken)) { |
} |
if ($env{'form.cancel'}) { |
} |
my $source=$r->dir_config('lonDaemons').'/tmp/'.$datatoken.'.tmp'; |
|
my $dirpath=$path.'/'; |
|
$dirpath=~s/\/+/\//g; |
|
$output .= &mt('Upload cancelled.').'<br /><font size="+2"><a href="'.$dirpath.'">'. |
|
&mt('Back to Directory').'</a></font>'; |
|
} elsif ((-e $target) && (!$env{'form.override'})) { |
|
$output .= '<form action="'.$action.'" method="post">'. |
|
&mt('File [_1] exists. Overwrite?','<span class="LC_filename">'.$fn.'</span>'). |
|
'<input type="hidden" name="phase" value="two" />'. |
|
'<input type="hidden" name="filename" value="'.$url.'" />'. |
|
'<input type="hidden" name="datatoken" value="'.$datatoken.'" />'. |
|
'<input type="submit" name="override" value="'.&mt('Yes').'" />'. |
|
'<input type="submit" name="cancel" value="'.&mt('Cancel').'" />'. |
|
'</form>'; |
|
} else { |
|
my $source=$r->dir_config('lonDaemons').'/tmp/'.$datatoken.'.tmp'; |
|
my $dirpath=$path.'/'; |
|
$dirpath=~s/\/+/\//g; |
|
# Check for bad extension and disallow upload |
|
my $result; |
|
($result,$returnflag) = &check_extension($fn,$mode,$source,$target,$action,$dirpath,$url); |
|
$output .= $result; |
|
} |
|
} else { |
|
$output .= '<span class="LC_error">'. |
|
&mt('Please use browser "Back" button and pick a filename'). |
|
'</span><br />'; |
|
} |
} else { |
} else { |
$r->print( |
$output .= '<span class="LC_error">'. |
'<font size=+1 color=red>Please pick a filename</font><p>'); |
&mt('Please use browser "Back" button and pick a filename'). |
&phaseone($r,$fn,$uname,$udom); |
'</span><br />'; |
} |
} |
} else { |
return ($output,$returnflag); |
$r->print( |
|
'<font size=+1 color=red>Please pick a filename</font><p>'); |
|
&phaseone($r,$fn,$uname,$udom); |
|
} |
|
} |
} |
|
|
|
sub check_extension { |
|
my ($fn,$mode,$source,$target,$action,$dirpath,$url) = @_; |
|
my ($result,$returnflag); |
|
# Check for bad extension and disallow upload |
|
if ($fn=~/\.(\w+)$/ && |
|
(&Apache::loncommon::fileembstyle($1) eq 'hdn')) { |
|
$result .= &mt('File [_1] could not be copied.', |
|
'<span class="LC_filename">'.$fn.'</span> '). |
|
'<br /><span class="LC_error">'. |
|
&mt('The extension on this file is reserved internally by LON-CAPA.'). |
|
'</span>'; |
|
} elsif ($fn=~/\.(\w+)$/ && |
|
!defined(&Apache::loncommon::fileembstyle($1))) { |
|
$result .= &mt('File [_1] could not be copied.', |
|
'<span class="LC_filename">'.$fn.'</span> '). |
|
'<br /><span class="LC_error">'. |
|
&mt('The extension on this file is not recognized by LON-CAPA.'). |
|
'</span>'; |
|
} elsif (-d $target) { |
|
$result .= &mt('File [_1] could not be copied.', |
|
'<span class="LC_filename">'.$fn.'</span>'). |
|
'<br /><span class="LC_error">'. |
|
&mt('The target is an existing directory.'). |
|
'</span>'; |
|
} elsif (copy($source,$target)) { |
|
chmod(0660, $target); # Set permissions to rw-rw---. |
|
if ($mode eq 'testbank' || $mode eq 'imsimport') { |
|
$returnflag = 'ok'; |
|
$result .= &mt('Your file - [_1] - was uploaded successfully',$fn).'<br /><br />'; |
|
} else { |
|
$result .= &mt('File copied.').'<br />'; |
|
} |
|
# Check for embedded objects. |
|
my (%allfiles,%codebase); |
|
my ($text,$header,$css,$js); |
|
if (($mode ne 'imsimport') && ($target =~ /\.(htm|html|shtml)$/i)) { |
|
my (%allfiles,%codebase); |
|
&Apache::lonnet::extract_embedded_items($target,\%allfiles,\%codebase); |
|
if (keys(%allfiles) > 0) { |
|
my $state = <<STATE; |
|
<input type="hidden" name="action" value="upload_embedded" /> |
|
<input type="hidden" name="currentpath" value="$env{'form.currentpath'}" /> |
|
<input type="hidden" name="mode" value="$mode" /> |
|
<input type="hidden" name="phase" value="three" /> |
|
<input type="hidden" name="filename" value="$url" /> |
|
STATE |
|
$result .= "<h3>".&mt("Reference Warning")."</h3>". |
|
"<p>".&mt("Completed upload of the file. This file contained references to other files.")."</p>". |
|
"<p>".&mt("Please select the locations from which the referenced files are to be uploaded.")."</p>". |
|
&Apache::loncommon::ask_for_embedded_content($action,$state,\%allfiles,\%codebase, |
|
{'error_on_invalid_names' => 1, |
|
'ignore_remote_references' => 1,}); |
|
if ($mode eq 'testbank') { |
|
$returnflag = 'embedded'; |
|
$result .= '<p>'.&mt('Or [_1]continue[_2] the testbank import without these files','<a href="javascript:document.testbankForm.submit();">','</a>').'</p>'; |
|
} |
|
} |
|
} |
|
if (($mode ne 'imsimport') && ($mode ne 'testbank')) { |
|
$result .= '<br /><font size="+2"><a href="'.$url.'">'. |
|
&mt('View file').'</a></font>'; |
|
} |
|
} else { |
|
$result .= &mt('Failed to copy: [_1].',$!); |
|
} |
|
if ($mode ne 'imsimport' && $mode ne 'testbank') { |
|
$result .= '<br /><font size="+2"><a href="'.$dirpath.'">'. |
|
&mt('Back to Directory').'</a></font><br />'; |
|
} |
|
return ($result,$returnflag); |
|
} |
|
|
|
sub phasethree { |
|
my ($r,$fn,$uname,$udom,$mode) = @_; |
|
my $result; |
|
my $dir_root = '/home/'.$uname.'/public_html'; |
|
my $url_root = '/priv/'.$uname; |
|
my $base = &File::Basename::basename($fn); |
|
my $path = &File::Basename::dirname($fn); |
|
$result = &Apache::loncommon::upload_embedded($mode,$path,$uname,$udom, |
|
$dir_root,$url_root); |
|
if ($mode ne 'imsimport' && $mode ne 'testbank') { |
|
$result = '<br /><font size="+2"><a href="'.$url_root.$fn.'">'. |
|
&mt('View main file').'</a></font>'. |
|
'<br /><font size="+2"><a href="'.$url_root.$path.'">'. |
|
&mt('Back to Directory').'</a></font><br />'; |
|
} |
|
return $result; |
|
} |
|
|
|
# ---------------------------------------------------------------- Main Handler |
sub handler { |
sub handler { |
|
|
my $r=shift; |
my $r=shift; |
|
|
my $uname; |
my $uname; |
my $udom; |
my $udom; |
|
my $javascript = ''; |
|
# |
|
# phase two: re-attach user |
|
# |
|
if ($env{'form.uploaduname'}) { |
|
$env{'form.filename'}='/priv/'.$env{'form.uploaduname'}.'/'. |
|
$env{'form.filename'}; |
|
} |
|
|
unless (($uname,$udom)= |
unless ($env{'form.phase'} eq 'two') { |
&Apache::loncacc::constructaccess( |
$javascript = qq| |
$ENV{'form.filename'},$r->dir_config('lonDefDomain'))) { |
function verifyForm() { |
$r->log_reason($uname.' at '.$udom. |
var mode = document.fileupload.filetype.options[document.fileupload.filetype.selectedIndex].value |
' trying to publish file '.$ENV{'form.filename'}. |
if (mode == "testbank") { |
' - not authorized', |
document.fileupload.action = "/adm/testbank"; |
$r->filename); |
} |
return HTTP_NOT_ACCEPTABLE; |
if (mode == "imsimport") { |
} |
document.fileupload.action = "/adm/imsimport"; |
|
} |
my $fn; |
if (mode == "standard") { |
|
document.fileupload.action = "/adm/upload"; |
if ($ENV{'form.filename'}) { |
} |
$fn=$ENV{'form.filename'}; |
document.fileupload.submit(); |
$fn=~s/^http\:\/\/[^\/]+\/(\~|priv\/)(\w+)//; |
} |
} else { |
|; |
$r->log_reason($ENV{'user.name'}.' at '.$ENV{'user.domain'}. |
} |
' unspecified filename for upload', $r->filename); |
($uname,$udom)= |
return HTTP_NOT_FOUND; |
&Apache::loncacc::constructaccess($env{'form.filename'}, |
} |
$r->dir_config('lonDefDomain')); |
|
|
|
unless (($uname) && ($udom)) { |
|
$r->log_reason($uname.' at '.$udom. |
|
' trying to publish file '.$env{'form.filename'}. |
|
' - not authorized', |
|
$r->filename); |
|
return HTTP_NOT_ACCEPTABLE; |
|
} |
|
|
|
my $fn; |
|
if ($env{'form.filename'}) { |
|
$fn=$env{'form.filename'}; |
|
$fn=~s/^http\:\/\/[^\/]+\///; |
|
$fn=~s/^\///; |
|
$fn=~s{(~|priv/)($LONCAPA::username_re)}{}; |
|
$fn=~s/\/+/\//g; |
|
} else { |
|
$r->log_reason($env{'user.name'}.' at '.$env{'user.domain'}. |
|
' unspecified filename for upload', $r->filename); |
|
return HTTP_NOT_FOUND; |
|
} |
|
|
# ----------------------------------------------------------- Start page output |
# ----------------------------------------------------------- Start page output |
|
|
|
|
$r->content_type('text/html'); |
&Apache::loncommon::content_type($r,'text/html'); |
$r->send_http_header; |
$r->send_http_header; |
|
|
$r->print('<html><head><title>LON-CAPA Construction Space</title></head>'); |
$javascript = "<script type=\"text/javascript\">\n//<!--\n". |
|
$javascript."\n// --></script>\n"; |
|
|
$r->print( |
$r->print(&Apache::loncommon::start_page('Upload file to Construction Space', |
'<body bgcolor="#FFFFFF"><img align=right src=/adm/lonIcons/lonlogos.gif>'); |
$javascript)); |
|
|
|
|
$r->print('<h1>Upload file to Construction Space</h1>'); |
|
|
|
if (($uname ne $ENV{'user.name'}) || ($udom ne $ENV{'user.domain'})) { |
if (($uname ne $env{'user.name'}) || ($udom ne $env{'user.domain'})) { |
$r->print('<h3><font color=red>Co-Author: '.$uname.' at '.$udom. |
$r->print('<h3><span class="LC_error">'.&mt('Co-Author').': '.$uname. |
'</font></h3>'); |
&mt(' at ').$udom.'</span></h3>'); |
} |
} |
|
|
|
|
if ($ENV{'form.phase'} eq 'two') { |
if ($env{'form.phase'} eq 'three') { |
&phasetwo($r,$fn,$uname,$udom); |
my $output = &phasethree($r,$fn,$uname,$udom,'author'); |
} else { |
$r->print($output); |
&phaseone($r,$fn,$uname,$udom); |
} elsif ($env{'form.phase'} eq 'two') { |
} |
my ($output,$returnflag) = &phasetwo($r,$fn,$uname,$udom); |
|
$r->print($output); |
|
} else { |
|
&phaseone($r,$fn,$uname,$udom); |
|
} |
|
|
$r->print('</body></html>'); |
$r->print(&Apache::loncommon::end_page()); |
return OK; |
return OK; |
} |
} |
|
|
|
1; |
|
__END__ |
|
|
|
|