2
# Copyright (C) 2007-2008 The University of Melbourne
4
# This program is free software; you can redistribute it and/or modify
5
# it under the terms of the GNU General Public License as published by
6
# the Free Software Foundation; either version 2 of the License, or
7
# (at your option) any later version.
9
# This program is distributed in the hope that it will be useful,
10
# but WITHOUT ANY WARRANTY; without even the implied warranty of
11
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12
# GNU General Public License for more details.
14
# You should have received a copy of the GNU General Public License
15
# along with this program; if not, write to the Free Software
16
# Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
18
# App: File Service (AJAX server)
22
# This application is an AJAX service. Receives file handling instructions as
23
# requests. Performs actions on the student's workspace, and returns directory
26
# This rather large documentation explains the request and response to the
27
# file service app (it should probably be taken to a separate document).
29
# This is not intended to be accessed directly by the user. It is targeted by
30
# AJAX calls in applications such as browser and editor.
32
# Application usage: The input to the application is determined by the fields
33
# passed in as HTTP variables (either in the URL or message body). Also, in
34
# keeping with REST, actions only take effect if this is a POST request as
35
# opposed to a GET request (although a GET request is still allowed to just
36
# get a listing or file dump). Also, the "path" (the part of the URL
37
# after "fileservice" and before the GET variables) is taken into account.
39
# Aside from the side-effects to the server (note: side-effects are only
40
# possible for POST requests), the response takes two parts. The response
41
# header contains information about success or failure of the operation. The
42
# response body may contain the requested file.
44
# Fileservice has two separate roles: First, an action is performed. This may
45
# be a copy, write, or svn up operation. Then, a file or directory listing is
46
# returned. This directory listing may be completely separate from the action,
47
# but they are performed together because the client will usually want to
48
# perform some action, then update its display as a result of the action.
50
# GET requests will have all variables ignored, and the only behaviour will be
51
# to generate the directory or file listing. POST requests will result in an
52
# action if one is specified. If the action is UNSUCCESSFUL, returns the
53
# header "X-IVLE-Action-Error: <errormessage>". Successful actions succeed
54
# silently. Note that the action does not affect the HTTP response code (it
55
# may be 200 even upon failure).
57
# The path (req.path) controls which file or directory will be
58
# returned. If it is a file, returns the header "X-IVLE-Return: File" and
59
# status 200 OK. The response body is a verbatim dump of the file specified.
60
# The Content-Type will probably be text/plain but should not be relied upon.
61
# If it is a directory, returns the header "X-IVLE-Return: Dir" and status
62
# 200 OK. The response body is a JSON directory listing (see below). The
63
# Content-Type cannot be relied upon. If the file is not found or there is
64
# some other read error, returns no X-IVLE-Return header, a 400-level
65
# response status. (404 File Not Found, 403 Forbidden, etc), and a header
66
# "X-IVLE-Return-Error: <errormessage>".
68
# See action.py for a full description of the actions.
69
# See listing.py for a full description of the output format of the directory
81
from common import (util, studpath)
84
import action, listing
87
# application/json is the "best" content type but is not good for
88
# debugging because Firefox just tries to download it
89
mime_dirlisting = "text/html"
90
#mime_dirlisting = "application/json"
93
"""Handler for the File Services application."""
94
# Make sure the logged in user has permission to see this file
95
# FIXME: Still need to authorize subpaths in actions
96
studpath.authorize(req)
98
# Set request attributes
99
req.write_html_head_foot = False # No HTML
101
# Get all the arguments, if POST.
102
# Ignore arguments if not POST, since we aren't allowed to cause
103
# side-effects on the server.
106
if req.method == 'POST':
107
fields = req.get_fieldstorage()
108
act = fields.getfirst('action')
112
action.handle_action(req, act, fields)
113
except action.ActionError, message:
114
req.headers_out['X-IVLE-Action-Error'] = str(message)
116
listing.handle_return(req)