You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

forms.py 12KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355
  1. import string
  2. import random
  3. from django.contrib.auth.forms import AuthenticationForm
  4. from django.utils.translation import ugettext_lazy as _
  5. from django.core.exceptions import ObjectDoesNotExist
  6. from django import forms
  7. from django.db.models import get_model
  8. from django.contrib.auth.models import User
  9. from django.contrib.auth import forms as auth_forms
  10. from django.conf import settings
  11. from django.core import validators
  12. from django.core.exceptions import ValidationError
  13. from django.contrib.sites.models import get_current_site
  14. from django.contrib.auth.tokens import default_token_generator
  15. from oscar.core.loading import get_profile_class, get_class
  16. from oscar.apps.customer.utils import get_password_reset_url
  17. Dispatcher = get_class('customer.utils', 'Dispatcher')
  18. CommunicationEventType = get_model('customer', 'communicationeventtype')
  19. ProductAlert = get_model('customer', 'ProductAlert')
  20. def generate_username():
  21. uname = ''.join([random.choice(string.letters + string.digits + '_') for i in range(30)])
  22. try:
  23. User.objects.get(username=uname)
  24. return generate_username()
  25. except User.DoesNotExist:
  26. return uname
  27. class PasswordResetForm(auth_forms.PasswordResetForm):
  28. communication_type_code = "PASSWORD_RESET"
  29. def save(self, domain_override=None,
  30. subject_template_name='registration/password_reset_subject.txt',
  31. email_template_name='registration/password_reset_email.html',
  32. use_https=False, token_generator=default_token_generator,
  33. from_email=None, request=None, **kwargs):
  34. """
  35. Generates a one-use only link for resetting password and sends to the
  36. user.
  37. """
  38. site = get_current_site(request)
  39. if domain_override is not None:
  40. site.domain = site.name = domain_override
  41. for user in self.users_cache:
  42. # Build reset url
  43. reset_url = "%s://%s%s" % (
  44. 'https' if use_https else 'http',
  45. site.domain,
  46. get_password_reset_url(user))
  47. ctx = {
  48. 'user': user,
  49. 'site': site,
  50. 'reset_url': reset_url}
  51. messages = CommunicationEventType.objects.get_and_render(
  52. code=self.communication_type_code, context=ctx)
  53. Dispatcher().dispatch_user_messages(user, messages)
  54. class EmailAuthenticationForm(AuthenticationForm):
  55. """
  56. Extends the standard django AuthenticationForm, to support 75 character
  57. usernames. 75 character usernames are needed to support the EmailOrUsername
  58. auth backend.
  59. """
  60. username = forms.EmailField(label=_('Email Address'))
  61. class CommonPasswordValidator(validators.BaseValidator):
  62. # See http://www.smartplanet.com/blog/business-brains/top-20-most-common-passwords-of-all-time-revealed-8216123456-8216princess-8216qwerty/4519
  63. forbidden_passwords = [
  64. 'password',
  65. '1234',
  66. '12345'
  67. '123456',
  68. '123456y',
  69. '123456789',
  70. 'iloveyou',
  71. 'princess',
  72. 'monkey',
  73. 'rockyou',
  74. 'babygirl',
  75. 'monkey',
  76. 'qwerty',
  77. '654321',
  78. 'dragon',
  79. 'pussy',
  80. 'baseball',
  81. 'football',
  82. 'letmein',
  83. 'monkey',
  84. '696969',
  85. 'abc123',
  86. 'qwe123',
  87. 'qweasd',
  88. 'mustang',
  89. 'michael',
  90. 'shadow',
  91. 'master',
  92. 'jennifer',
  93. '111111',
  94. '2000',
  95. 'jordan',
  96. 'superman'
  97. 'harley'
  98. ]
  99. message = _("Please choose a less common password")
  100. code = 'password'
  101. def __init__(self, password_file=None):
  102. self.limit_value = password_file
  103. def clean(self, value):
  104. return value.strip()
  105. def compare(self, value, limit):
  106. return value in self.forbidden_passwords
  107. def get_forbidden_passwords(self):
  108. if self.limit_value is None:
  109. return self.forbidden_passwords
  110. class EmailUserCreationForm(forms.ModelForm):
  111. email = forms.EmailField(label=_('Email Address'))
  112. password1 = forms.CharField(
  113. label=_('Password'), widget=forms.PasswordInput,
  114. validators=[validators.MinLengthValidator(6),
  115. CommonPasswordValidator()])
  116. password2 = forms.CharField(
  117. label=_('Confirm Password'), widget=forms.PasswordInput)
  118. class Meta:
  119. model = User
  120. fields = ('email',)
  121. def clean_email(self):
  122. email = self.cleaned_data['email'].lower()
  123. local, host = email.split('@')
  124. clean_email = local + '@' + host.lower()
  125. users = User.objects.filter(email=clean_email)
  126. if len(users) > 0:
  127. raise forms.ValidationError(
  128. _("A user with that email address already exists."))
  129. return clean_email
  130. def clean_password2(self):
  131. password1 = self.cleaned_data.get('password1', '')
  132. password2 = self.cleaned_data.get('password2', '')
  133. if password1 != password2:
  134. raise forms.ValidationError(_("The two password fields didn't match."))
  135. return password2
  136. def save(self, commit=True):
  137. user = super(EmailUserCreationForm, self).save(commit=False)
  138. user.set_password(self.cleaned_data['password1'])
  139. user.username = generate_username()
  140. if commit:
  141. user.save()
  142. return user
  143. class SearchByDateRangeForm(forms.Form):
  144. date_from = forms.DateField(required=False, label=_("From"))
  145. date_to = forms.DateField(required=False, label=_("To"))
  146. def clean(self):
  147. if self.is_valid() and not self.cleaned_data['date_from'] and not self.cleaned_data['date_to']:
  148. raise forms.ValidationError(_("At least one date field is required."))
  149. return super(SearchByDateRangeForm, self).clean()
  150. def description(self):
  151. if not self.is_bound or not self.is_valid():
  152. return _('All orders')
  153. date_from = self.cleaned_data['date_from']
  154. date_to = self.cleaned_data['date_to']
  155. if date_from and date_to:
  156. return _('Orders placed between %(date_from)s and %(date_to)s') % {
  157. 'date_from': date_from,
  158. 'date_to': date_to}
  159. elif date_from:
  160. return _('Orders placed since %s') % date_from
  161. elif date_to:
  162. return _('Orders placed until %s') % date_to
  163. def get_filters(self):
  164. date_from = self.cleaned_data['date_from']
  165. date_to = self.cleaned_data['date_to']
  166. if date_from and date_to:
  167. return {'date_placed__range': [date_from, date_to]}
  168. elif date_from and not date_to:
  169. return {'date_placed__gt': date_from}
  170. elif not date_from and date_to:
  171. return {'date_placed__lt': date_to}
  172. return {}
  173. class UserForm(forms.ModelForm):
  174. def __init__(self, user, *args, **kwargs):
  175. self.user = user
  176. kwargs['instance'] = user
  177. super(UserForm, self).__init__(*args, **kwargs)
  178. def clean_email(self):
  179. """
  180. Make sure that the email address is aways unique as it is
  181. used instead of the username. This is necessary because the
  182. unique-ness of email addresses is *not* enforced on the model
  183. level in ``django.contrib.auth.models.User``.
  184. """
  185. email = self.cleaned_data['email']
  186. try:
  187. User.objects.exclude(
  188. id=self.user.id).get(email=email)
  189. except User.DoesNotExist:
  190. return email
  191. else:
  192. raise ValidationError(
  193. _("A user with this email address already exists")
  194. )
  195. class Meta:
  196. model = User
  197. exclude = ('username', 'password', 'is_staff', 'is_superuser',
  198. 'is_active', 'last_login', 'date_joined',
  199. 'user_permissions', 'groups')
  200. if hasattr(settings, 'AUTH_PROFILE_MODULE'):
  201. Profile = get_profile_class()
  202. class UserAndProfileForm(forms.ModelForm):
  203. first_name = forms.CharField(
  204. label=_('First name'), max_length=128, required=False)
  205. last_name = forms.CharField(
  206. label=_('Last name'), max_length=128, required=False)
  207. email = forms.EmailField(label=_('Email address'))
  208. # Fields from user model
  209. user_fields = ('first_name', 'last_name', 'email')
  210. def __init__(self, user, *args, **kwargs):
  211. self.user = user
  212. try:
  213. instance = user.get_profile()
  214. except ObjectDoesNotExist:
  215. # User has no profile, try a blank one
  216. instance = Profile(user=user)
  217. kwargs['instance'] = instance
  218. super(UserAndProfileForm, self).__init__(*args, **kwargs)
  219. # Add user fields
  220. self.fields['first_name'].initial = self.instance.user.first_name
  221. self.fields['last_name'].initial = self.instance.user.last_name
  222. self.fields['email'].initial = self.instance.user.email
  223. # Ensure user fields are above profile
  224. order = list(self.user_fields)
  225. for field_name in self.fields.keys():
  226. if field_name not in self.user_fields:
  227. order.append(field_name)
  228. self.fields.keyOrder = order
  229. class Meta:
  230. model = Profile
  231. exclude = ('user',)
  232. def clean_email(self):
  233. email = self.cleaned_data['email']
  234. try:
  235. User.objects.exclude(
  236. id=self.user.id).get(email=email)
  237. except User.DoesNotExist:
  238. return email
  239. else:
  240. raise ValidationError(
  241. _("A user with this email address already exists")
  242. )
  243. def save(self, *args, **kwargs):
  244. user = self.instance.user
  245. user.first_name = self.cleaned_data['first_name']
  246. user.last_name = self.cleaned_data['last_name']
  247. user.email = self.cleaned_data['email']
  248. user.save()
  249. return super(ProfileForm, self).save(*args, **kwargs)
  250. ProfileForm = UserAndProfileForm
  251. else:
  252. ProfileForm = UserForm
  253. class ProductAlertForm(forms.ModelForm):
  254. email = forms.EmailField(required=True, label=_(u'Send notification to'),
  255. widget=forms.TextInput(attrs={
  256. 'placeholder': _('Enter your email')
  257. }))
  258. def __init__(self, user, product, *args, **kwargs):
  259. self.user = user
  260. self.product = product
  261. super(ProductAlertForm, self).__init__(*args, **kwargs)
  262. # Only show email field to unauthenticated users
  263. if user and user.is_authenticated():
  264. self.fields['email'].widget = forms.HiddenInput()
  265. self.fields['email'].required = False
  266. def save(self, commit=True):
  267. alert = super(ProductAlertForm, self).save(commit=False)
  268. if self.user.is_authenticated():
  269. alert.user = self.user
  270. alert.product = self.product
  271. if commit:
  272. alert.save()
  273. return alert
  274. def clean(self):
  275. cleaned_data = self.cleaned_data
  276. email = cleaned_data.get('email')
  277. if email:
  278. try:
  279. ProductAlert.objects.get(
  280. product=self.product, email=email,
  281. status=ProductAlert.ACTIVE)
  282. except ProductAlert.DoesNotExist:
  283. pass
  284. else:
  285. raise forms.ValidationError(_(
  286. "There is already an active stock alert for %s") % email)
  287. elif self.user.is_authenticated():
  288. try:
  289. ProductAlert.objects.get(product=self.product,
  290. user=self.user,
  291. status=ProductAlert.ACTIVE)
  292. except ProductAlert.DoesNotExist:
  293. pass
  294. else:
  295. raise forms.ValidationError(_(
  296. "You already have an active alert for this product"))
  297. return cleaned_data
  298. class Meta:
  299. model = ProductAlert
  300. exclude = ('user', 'key',
  301. 'status', 'date_confirmed', 'date_cancelled', 'date_closed',
  302. 'product')