1
0
mirror of https://github.com/Tygs/0bin.git synced 2023-08-10 21:13:00 +03:00
0bin/zerobin/routes.py

178 lines
4.9 KiB
Python
Raw Normal View History

2012-05-14 19:17:49 +04:00
#!/usr/bin/env python
2015-05-10 20:19:02 +03:00
# coding: utf-8
2017-05-18 07:41:34 +03:00
2012-05-14 19:17:49 +04:00
"""
Script including controller, rooting, and dependency management.
2012-05-14 19:17:49 +04:00
"""
import os
import sys
2015-05-10 20:19:02 +03:00
try:
2017-05-18 07:41:34 +03:00
import _thread
2015-05-10 20:19:02 +03:00
except ImportError:
import _thread as thread
try:
2017-05-18 07:41:34 +03:00
import urllib.parse
2015-05-10 20:19:02 +03:00
except ImportError:
import urllib.parse as urlparse
2012-05-14 19:17:49 +04:00
from datetime import datetime, timedelta
# add project dir and libs dir to the PYTHON PATH to ensure they are
# importable
2015-05-10 20:19:02 +03:00
from zerobin.utils import (settings, SettingsValidationError,
drop_privileges, dmerge)
2012-05-14 19:17:49 +04:00
import bottle
from bottle import (Bottle, run, static_file, view, request)
2015-05-10 20:19:02 +03:00
from zerobin.paste import Paste
2012-05-14 19:17:49 +04:00
app = Bottle()
GLOBAL_CONTEXT = {
2012-05-21 19:14:01 +04:00
'settings': settings,
'pastes_count': Paste.get_pastes_count(),
2012-05-21 20:21:06 +04:00
'refresh_counter': datetime.now()
2012-05-14 19:17:49 +04:00
}
2012-05-14 19:17:49 +04:00
@app.route('/')
@view('home')
def index():
return GLOBAL_CONTEXT
2012-05-21 14:25:24 +04:00
@app.route('/faq/')
@view('faq')
2012-05-21 19:14:01 +04:00
def faq():
2012-05-21 14:25:24 +04:00
return GLOBAL_CONTEXT
2012-05-14 19:17:49 +04:00
@app.route('/paste/create', method='POST')
def create_paste():
try:
2017-05-18 07:41:34 +03:00
body = urllib.parse.parse_qs(request.body.read(int(settings.MAX_SIZE * 1.1)))
except ValueError:
2015-05-10 20:19:02 +03:00
return {'status': 'error', 'message': "Wrong data payload."}
2012-05-14 19:17:49 +04:00
try:
2015-05-10 20:19:02 +03:00
content = "".join(x.decode('utf8') for x in body[b'content'])
except (UnicodeDecodeError, KeyError):
2012-05-14 19:17:49 +04:00
return {'status': 'error',
2015-05-10 20:19:02 +03:00
'message': "Encoding error: the paste couldn't be saved."}
2012-05-14 19:17:49 +04:00
if '{"iv":' not in content: # reject silently non encrypted content
2015-05-10 20:19:02 +03:00
return {'status': 'error', 'message': "Wrong data payload."}
# check size of the paste. if more than settings return error
# without saving paste. prevent from unusual use of the
# system. need to be improved
if 0 < len(content) < settings.MAX_SIZE:
expiration = body.get(b'expiration', ['burn_after_reading'])[0]
paste = Paste(expiration=expiration.decode('utf8'), content=content,
uuid_length=settings.PASTE_ID_LENGTH)
paste.save()
# display counter
if settings.DISPLAY_COUNTER:
#increment paste counter
paste.increment_counter()
# if refresh time elapsed pick up new counter value
now = datetime.now()
timeout = (GLOBAL_CONTEXT['refresh_counter']
+ timedelta(seconds=settings.REFRESH_COUNTER))
if timeout < now:
GLOBAL_CONTEXT['pastes_count'] = Paste.get_pastes_count()
GLOBAL_CONTEXT['refresh_counter'] = now
return {'status': 'ok', 'paste': paste.uuid}
2012-05-14 19:17:49 +04:00
return {'status': 'error',
2015-05-10 20:19:02 +03:00
'message': "Serveur error: the paste couldn't be saved. "
"Please try later."}
2012-05-14 19:17:49 +04:00
@app.route('/paste/:paste_id')
@view('paste')
def display_paste(paste_id):
now = datetime.now()
keep_alive = False
try:
paste = Paste.load(paste_id)
# Delete the paste if it expired:
2015-05-10 20:19:02 +03:00
if not isinstance(paste.expiration, datetime):
2012-05-14 19:17:49 +04:00
# burn_after_reading contains the paste creation date
# if this read appends 10 seconds after the creation date
# we don't delete the paste because it means it's the redirection
# to the paste that happens during the paste creation
try:
keep_alive = paste.expiration.split('#')[1]
keep_alive = datetime.strptime(keep_alive,
'%Y-%m-%d %H:%M:%S.%f')
2012-05-14 19:17:49 +04:00
keep_alive = now < keep_alive + timedelta(seconds=10)
except IndexError:
keep_alive = False
if not keep_alive:
paste.delete()
elif paste.expiration < now:
paste.delete()
raise ValueError()
except (TypeError, ValueError):
return error404(ValueError)
context = {'paste': paste, 'keep_alive': keep_alive}
return dmerge(context, GLOBAL_CONTEXT)
@app.error(404)
@view('404')
def error404(code):
return GLOBAL_CONTEXT
@app.route('/static/<filename:path>')
def server_static(filename):
return static_file(filename, root=settings.STATIC_FILES_ROOT)
def get_app(debug=None, settings_file='',
compressed_static=None, settings=settings):
"""
Return a tuple (settings, app) configured using passed
parameters and/or a setting file.
"""
settings_file = settings_file or os.environ.get('ZEROBIN_SETTINGS_FILE')
2012-05-14 19:17:49 +04:00
if settings_file:
settings.update_with_file(os.path.realpath(settings_file))
2012-05-14 19:17:49 +04:00
if settings.PASTE_ID_LENGTH < 4:
raise SettingsValidationError('PASTE_ID_LENGTH cannot be lower than 4')
2012-05-17 13:13:40 +04:00
if compressed_static is not None:
settings.COMPRESSED_STATIC_FILES = compressed_static
if debug is not None:
settings.DEBUG = debug
2012-05-14 19:17:49 +04:00
# make sure the templates can be loaded
for d in reversed(settings.TEMPLATE_DIRS):
bottle.TEMPLATE_PATH.insert(0, d)
if settings.DEBUG:
bottle.debug(True)
return settings, app