unusable passwords - support for all djangos
[myslice.git] / portal / forms.py
1 # -*- coding: utf-8 -*-
2 #
3 # portal/forms.py: forms for the portal application
4 # This file is part of the Manifold project.
5 #
6 # Authors:
7 #   Jordan AugĂ© <jordan.auge@lip6.fr>
8 #   Mohammed-Yasin Rahman <mohammed-yasin.rahman@lip6.fr>
9 # Copyright 2013, UPMC Sorbonne UniversitĂ©s / LIP6
10 #
11 # This program is free software; you can redistribute it and/or modify it under
12 # the terms of the GNU General Public License as published by the Free Software
13 # Foundation; either version 3, or (at your option) any later version.
14
15 # This program is distributed in the hope that it will be useful, but WITHOUT
16 # ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS
17 # FOR A PARTICULAR PURPOSE.  See the GNU General Public License for more
18 # details.
19
20 # You should have received a copy of the GNU General Public License along with
21 # this program; see the file COPYING.  If not, write to the Free Software
22 # Foundation, 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
23
24 from django import forms
25 from portal.models import PendingUser, PendingSlice
26 #from crispy_forms.helper import FormHelper
27 #from crispy_forms.layout import Submit
28 from django.utils.translation import ugettext_lazy as _
29 from django.contrib.auth.tokens import default_token_generator
30 from django.contrib.auth import authenticate, get_user_model
31 from django.contrib.sites.models import get_current_site
32 from django.utils.http import int_to_base36
33 from django.template import loader
34
35 # TODO: Remove these automated forms and use html templates and views like any other page !
36 from django.contrib.auth.hashers import identify_hasher
37 # adapted from https://sourcegraph.com/github.com/fusionbox/django-authtools/symbols/python/authtools/forms
38
39 def is_password_unusable(pw):
40     # like Django's is_password_usable, but only checks for unusable
41     # passwords, not invalidly encoded passwords too.
42     try:
43         # 1.5
44         from django.contrib.auth.hashers import UNUSABLE_PASSWORD
45         return pw == UNUSABLE_PASSWORD
46     except ImportError:
47         # 1.6
48         from django.contrib.auth.hashers import UNUSABLE_PASSWORD_PREFIX
49         return pw.startswith(UNUSABLE_PASSWORD_PREFIX)
50
51
52
53
54 # xxx painful, but... 
55 # bootstrap3 requires the <input> fields to be tagged class='form-control'
56 # my first idea was to add this in the view template of course, BUT
57 # I can't find a way to access the 'type=' value for a given field
58 # I've looked rather deeply out there but to no avail so far
59 # so as we have a demo coming up soon, and until we can come with a less intrusive way to handle this...
60
61 # initial version was
62 #class ContactForm(forms.Form):
63 #    first_name = forms.CharField()
64 #    last_name = forms.CharField()
65 #    affiliation = forms.CharField()
66 #    subject = forms.CharField(max_length=100)
67 #    message = forms.CharField(widget=forms.Textarea)
68 #    email = forms.EmailField()
69 #    cc_myself = forms.BooleanField(required=False)
70
71 class ContactForm(forms.Form):
72     first_name = forms.CharField(widget=forms.TextInput(attrs={'class':'form-control'}))
73     last_name = forms.CharField(widget=forms.TextInput(attrs={'class':'form-control'}))
74     authority = forms.CharField(widget=forms.TextInput(attrs={'class':'form-control'}))
75     email = forms.EmailField(widget=forms.TextInput(attrs={'class':'form-control'}))
76     subject = forms.CharField(max_length=100,widget=forms.TextInput(attrs={'class':'form-control'}))
77     description = forms.CharField(widget=forms.Textarea(attrs={'class':'form-control'}))
78     cc_myself = forms.BooleanField(required=False,widget=forms.CheckboxInput(attrs={'class':'form-control'}))
79
80 class PassResetForm(forms.Form):
81     email = forms.EmailField(widget=forms.TextInput(attrs={'class':'form-control'}))
82
83 class SliceRequestForm(forms.Form):
84 #    slice_name = forms.CharField()
85 #    authority_hrn = forms.ChoiceField(choices=[(1, 'un')])
86 #    number_of_nodes  = forms.DecimalField()
87 #    type_of_nodes = forms.CharField()
88 #    purpose = forms.CharField(widget=forms.Textarea)
89 #    email = forms.EmailField()
90 #    cc_myself = forms.BooleanField(required=False)
91
92     slice_name = forms.CharField(
93         widget=forms.TextInput(attrs={'class':'form-control'}), 
94         help_text="The name for the slice you wish to create")
95     authority_hrn = forms.ChoiceField(
96         widget    = forms.Select(attrs={'class':'form-control'}),
97         choices   = [],
98         help_text = "An authority responsible for vetting your slice")
99     number_of_nodes = forms.DecimalField(
100         widget    = forms.TextInput(attrs={'class':'form-control'}),
101         help_text = "The number of nodes you expect to request (informative)")
102     type_of_nodes = forms.CharField(
103         widget    = forms.TextInput(attrs={'class':'form-control'}),
104         help_text = "The type of nodes you expect to request (informative)")
105     purpose = forms.CharField(
106         widget    = forms.Textarea(attrs={'class':'form-control'}),
107         help_text = "The purpose of your experiment (informative)")
108     email = forms.EmailField(
109         widget    = forms.TextInput(attrs={'class':'form-control'}),
110         help_text = "Your email address")
111     cc_myself = forms.BooleanField(
112         widget    = forms.CheckboxInput(attrs={'class':'form-control'}),
113         required  = False,
114         help_text = "If you'd like to be cc'ed on the request email")
115
116     def __init__(self, *args, **kwargs):
117         initial =  kwargs.get('initial', {})
118         authority_hrn = initial.get('authority_hrn', None)
119
120         # set just the initial value
121         # in the real form needs something like this {'authority_hrn':'a'}
122         # but in this case you want {'authority_hrn':('a', 'letter_a')}
123         if authority_hrn:
124             kwargs['initial']['authority_hrn'] = authority_hrn[0]
125
126         # create the form
127         super(SliceRequestForm, self).__init__(*args, **kwargs)
128
129         # self.fields only exist after, so a double validation is needed
130         if authority_hrn:# and authority_hrn[0] not in (c[0] for c in authority_hrn):
131             # XXX This does not work, the choicefield is not updated...
132             #self.fields['authority_hrn'].choices.extend(authority_hrn)
133             self.fields['authority_hrn'] = forms.ChoiceField(
134                 widget    = forms.Select(attrs={'class':'form-control'}),
135                 choices   = authority_hrn,
136                 help_text = "An authority responsible for vetting your slice")
137
138
139 class PasswordResetForm(forms.Form):
140     error_messages = {
141         'unknown': _("That email address doesn't have an associated "
142                      "user account. Are you sure you've registered?"),
143         'unusable': _("The user account associated with this email "
144                       "address cannot reset the password."),
145     }
146     email = forms.EmailField(label=_("Email"), max_length=254)
147
148     def clean_email(self):
149         """
150         Validates that an active user exists with the given email address.
151         """
152         UserModel = get_user_model()
153         email = self.cleaned_data["email"]
154         self.users_cache = UserModel._default_manager.filter(email__iexact=email)
155         if not len(self.users_cache):
156             raise forms.ValidationError(self.error_messages['unknown'])
157         if not any(user.is_active for user in self.users_cache):
158             # none of the filtered users are active
159             raise forms.ValidationError(self.error_messages['unknown'])
160         if any(is_password_unusable(user.password) for user in self.users_cache):
161             raise forms.ValidationError(self.error_messages['unusable'])
162         return email
163
164     def save(self, domain_override=None,
165              subject_template_name='registration/password_reset_subject.txt',
166              email_template_name='registration/password_reset_email.html',
167              use_https=False, token_generator=default_token_generator,
168              from_email=None, request=None):
169         """
170         Generates a one-use only link for resetting password and sends to the
171         user.
172         """
173         from django.core.mail import send_mail
174         for user in self.users_cache:
175             if not domain_override:
176                 current_site = get_current_site(request)
177                 site_name = current_site.name
178                 domain = current_site.domain
179             else:
180                 site_name = domain = domain_override
181             c = {
182                 'email': user.email,
183                 'domain': domain,
184                 'site_name': site_name,
185                 'uid': int_to_base36(user.pk),
186                 'user': user,
187                 'token': token_generator.make_token(user),
188                 'protocol': use_https and 'https' or 'http',
189             }
190             subject = loader.render_to_string(subject_template_name, c)
191             # Email subject *must not* contain newlines
192             subject = ''.join(subject.splitlines())
193             email = loader.render_to_string(email_template_name, c)
194             send_mail(subject, email, from_email, [user.email])
195
196
197 class SetPasswordForm(forms.Form):
198     """
199     A form that lets a user change set his/her password without entering the
200     old password
201     """
202     error_messages = {
203         'password_mismatch': _("The two password fields didn't match."),
204     }
205     new_password1 = forms.CharField(label=_("New password"),
206                                     widget=forms.PasswordInput)
207     new_password2 = forms.CharField(label=_("New password confirmation"),
208                                     widget=forms.PasswordInput)
209
210     def __init__(self, user, *args, **kwargs):
211         self.user = user
212         super(SetPasswordForm, self).__init__(*args, **kwargs)
213
214     def clean_new_password2(self):
215         password1 = self.cleaned_data.get('new_password1')
216         password2 = self.cleaned_data.get('new_password2')
217         if password1 and password2:
218             if password1 != password2:
219                 raise forms.ValidationError(
220                     self.error_messages['password_mismatch'])
221         return password2
222
223     def save(self, commit=True):
224         self.user.set_password(self.cleaned_data['new_password1'])
225         if commit:
226             self.user.save()
227         return self.user
228