You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

views.py 22KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593
  1. import urlparse
  2. from django.shortcuts import get_object_or_404
  3. from django.views.generic import (TemplateView, ListView, DetailView,
  4. CreateView, UpdateView, DeleteView,
  5. FormView, RedirectView)
  6. from django.core.urlresolvers import reverse
  7. from django.core.exceptions import ObjectDoesNotExist
  8. from django.http import HttpResponseRedirect, Http404
  9. from django.contrib import messages
  10. from django.utils.translation import ugettext as _
  11. from django.contrib.auth import (authenticate, login as auth_login,
  12. logout as auth_logout)
  13. from django.contrib.auth.forms import PasswordChangeForm
  14. from django.contrib.sites.models import get_current_site
  15. from django.contrib.auth.models import User
  16. from django.conf import settings
  17. from django.db.models import get_model
  18. from oscar.views.generic import PostActionMixin
  19. from oscar.apps.customer.utils import get_password_reset_url
  20. from oscar.core.loading import get_class, get_profile_class, get_classes
  21. Dispatcher = get_class('customer.utils', 'Dispatcher')
  22. EmailAuthenticationForm, EmailUserCreationForm, SearchByDateRangeForm = get_classes(
  23. 'customer.forms', ['EmailAuthenticationForm', 'EmailUserCreationForm',
  24. 'SearchByDateRangeForm'])
  25. ProfileForm = get_class('customer.forms', 'ProfileForm')
  26. UserAddressForm = get_class('address.forms', 'UserAddressForm')
  27. user_registered = get_class('customer.signals', 'user_registered')
  28. Order = get_model('order', 'Order')
  29. Line = get_model('basket', 'Line')
  30. Basket = get_model('basket', 'Basket')
  31. UserAddress = get_model('address', 'UserAddress')
  32. Email = get_model('customer', 'email')
  33. UserAddress = get_model('address', 'UserAddress')
  34. CommunicationEventType = get_model('customer', 'communicationeventtype')
  35. ProductAlert = get_model('customer', 'ProductAlert')
  36. class LogoutView(RedirectView):
  37. url = '/'
  38. permanent = False
  39. def get(self, request, *args, **kwargs):
  40. auth_logout(request)
  41. response = super(LogoutView, self).get(request, *args, **kwargs)
  42. for cookie in settings.OSCAR_COOKIES_DELETE_ON_LOGOUT:
  43. response.delete_cookie(cookie)
  44. return response
  45. class ProfileUpdateView(FormView):
  46. form_class = ProfileForm
  47. template_name = 'customer/profile_form.html'
  48. communication_type_code = 'EMAIL_CHANGED'
  49. def get_form_kwargs(self):
  50. kwargs = super(ProfileUpdateView, self).get_form_kwargs()
  51. kwargs['user'] = self.request.user
  52. return kwargs
  53. def form_valid(self, form):
  54. # Grab current user instance before we save form. We may need this to
  55. # send a warning email if the email address is changed.
  56. try:
  57. old_user = User.objects.get(id=self.request.user.id)
  58. except User.DoesNotExist:
  59. old_user = None
  60. form.save()
  61. # We have to look up the email address from the form's
  62. # cleaned data because the object created by form.save() can
  63. # either be a user or profile depending on AUTH_PROFILE_MODULE
  64. new_email = form.cleaned_data['email']
  65. if old_user and new_email != old_user.email:
  66. # Email address has changed - send a confirmation email to the old
  67. # address including a password reset link in case this is a
  68. # suspicious change.
  69. ctx = {
  70. 'site': get_current_site(self.request),
  71. 'reset_url': get_password_reset_url(old_user),
  72. 'new_email': new_email,
  73. }
  74. msgs = CommunicationEventType.objects.get_and_render(
  75. code=self.communication_type_code, context=ctx)
  76. Dispatcher().dispatch_user_messages(old_user, msgs)
  77. messages.success(self.request, "Profile updated")
  78. return HttpResponseRedirect(self.get_success_url())
  79. def get_success_url(self):
  80. return reverse('customer:summary')
  81. class AccountSummaryView(TemplateView):
  82. template_name = 'customer/profile.html'
  83. def get_context_data(self, **kwargs):
  84. ctx = super(AccountSummaryView, self).get_context_data(**kwargs)
  85. # Delegate data fetching to separate methods so they are easy to
  86. # override.
  87. ctx['addressbook_size'] = self.request.user.addresses.all().count()
  88. ctx['default_shipping_address'] = self.get_default_shipping_address(self.request.user)
  89. ctx['default_billing_address'] = self.get_default_billing_address(self.request.user)
  90. ctx['orders'] = self.get_orders(self.request.user)
  91. ctx['emails'] = self.get_emails(self.request.user)
  92. ctx['alerts'] = self.get_product_alerts(self.request.user)
  93. self.add_profile_fields(ctx)
  94. ctx['active_tab'] = self.request.GET.get('tab', 'profile')
  95. return ctx
  96. def get_orders(self, user):
  97. return Order._default_manager.filter(user=user)[0:5]
  98. def add_profile_fields(self, ctx):
  99. if not hasattr(settings, 'AUTH_PROFILE_MODULE'):
  100. return
  101. try:
  102. profile = self.request.user.get_profile()
  103. except ObjectDoesNotExist:
  104. profile = get_profile_class()()
  105. field_data = []
  106. for field_name in profile._meta.get_all_field_names():
  107. if field_name in ('user', 'id'):
  108. continue
  109. field = profile._meta.get_field(field_name)
  110. if field.choices:
  111. value = getattr(profile, 'get_%s_display' % field_name)()
  112. else:
  113. value = getattr(profile, field_name)
  114. field_data.append({
  115. 'name': getattr(field, 'verbose_name'),
  116. 'value': value,
  117. })
  118. ctx['profile_fields'] = field_data
  119. ctx['profile'] = profile
  120. def post(self, request, *args, **kwargs):
  121. # A POST means an attempt to change the status of an alert
  122. if 'cancel_alert' in request.POST:
  123. return self.cancel_alert(request.POST.get('cancel_alert'))
  124. return super(AccountSummaryView, self).post(request, *args, **kwargs)
  125. def cancel_alert(self, alert_id):
  126. try:
  127. alert = ProductAlert.objects.get(user=self.request.user, pk=alert_id)
  128. except ProductAlert.DoesNotExist:
  129. messages.error(self.request, _("No alert found"))
  130. else:
  131. alert.cancel()
  132. messages.success(self.request, _("Alert cancelled"))
  133. return HttpResponseRedirect(
  134. reverse('customer:summary')+'?tab=alerts'
  135. )
  136. def get_emails(self, user):
  137. return Email.objects.filter(user=user)
  138. def get_product_alerts(self, user):
  139. return ProductAlert.objects.select_related().filter(
  140. user=self.request.user,
  141. date_closed=None,
  142. )
  143. def get_default_billing_address(self, user):
  144. return self.get_user_address(user, is_default_for_billing=True)
  145. def get_default_shipping_address(self, user):
  146. return self.get_user_address(user, is_default_for_shipping=True)
  147. def get_user_address(self, user, **filters):
  148. try:
  149. return user.addresses.get(**filters)
  150. except UserAddress.DoesNotExist:
  151. return None
  152. class AccountRegistrationView(TemplateView):
  153. template_name = 'customer/registration.html'
  154. redirect_field_name = 'next'
  155. registration_prefix = 'registration'
  156. communication_type_code = 'REGISTRATION'
  157. def get_logged_in_redirect(self):
  158. return reverse('customer:summary')
  159. def check_redirect(self, context):
  160. redirect_to = context.get(self.redirect_field_name)
  161. if not redirect_to:
  162. return settings.LOGIN_REDIRECT_URL
  163. netloc = urlparse.urlparse(redirect_to)[1]
  164. if netloc and netloc != self.request.get_host():
  165. return settings.LOGIN_REDIRECT_URL
  166. return redirect_to
  167. def get_context_data(self, *args, **kwargs):
  168. context = super(AccountRegistrationView, self).get_context_data(*args, **kwargs)
  169. redirect_to = self.request.REQUEST.get(self.redirect_field_name, '')
  170. context[self.redirect_field_name] = redirect_to
  171. context['registration_form'] = EmailUserCreationForm(
  172. prefix=self.registration_prefix
  173. )
  174. return context
  175. def send_registration_email(self, user):
  176. code = self.communication_type_code
  177. ctx = {'user': user,
  178. 'site': get_current_site(self.request)}
  179. messages = CommunicationEventType.objects.get_and_render(
  180. code, ctx)
  181. if messages and messages['body']:
  182. Dispatcher().dispatch_user_messages(user, messages)
  183. def get(self, request, *args, **kwargs):
  184. context = self.get_context_data(*args, **kwargs)
  185. if request.user.is_authenticated():
  186. return HttpResponseRedirect(self.get_logged_in_redirect())
  187. self.request.session.set_test_cookie()
  188. return self.render_to_response(context)
  189. def post(self, request, *args, **kwargs):
  190. context = self.get_context_data(*args, **kwargs)
  191. redirect_to = self.check_redirect(context)
  192. registration_form = EmailUserCreationForm(
  193. prefix=self.registration_prefix,
  194. data=request.POST
  195. )
  196. context['registration_form'] = registration_form
  197. if registration_form.is_valid():
  198. self._register_user(registration_form)
  199. return HttpResponseRedirect(redirect_to)
  200. self.request.session.set_test_cookie()
  201. return self.render_to_response(context)
  202. def _register_user(self, form):
  203. """
  204. Register and return a new user from the data in *form*. If
  205. ``OSCAR_SEND_REGISTRATION_EMAIL`` is set to ``True`` a
  206. registration email will be send to the provided email address.
  207. A new user account is created and the user is then logged in.
  208. """
  209. user = form.save()
  210. if getattr(settings, 'OSCAR_SEND_REGISTRATION_EMAIL', True):
  211. self.send_registration_email(user)
  212. user_registered.send_robust(sender=self, user=user)
  213. try:
  214. user = authenticate(
  215. username=user.email,
  216. password=form.cleaned_data['password1'])
  217. except User.MultipleObjectsReturned:
  218. # Handle race condition where the registration request is made
  219. # multiple times in quick succession. This leads to both requests
  220. # passing the uniqueness check and creating users (as the first one
  221. # hasn't committed when the second one runs the check). We retain
  222. # the first one and delete the dupes.
  223. users = User.objects.filter(email=user.email)
  224. user = users[0]
  225. for u in users[1:]:
  226. u.delete()
  227. auth_login(self.request, user)
  228. if self.request.session.test_cookie_worked():
  229. self.request.session.delete_test_cookie()
  230. return user
  231. class AccountAuthView(AccountRegistrationView):
  232. template_name = 'customer/login_registration.html'
  233. login_prefix = 'login'
  234. def get_context_data(self, *args, **kwargs):
  235. context = super(AccountAuthView, self).get_context_data(*args, **kwargs)
  236. redirect_to = self.request.REQUEST.get(self.redirect_field_name, '')
  237. context[self.redirect_field_name] = redirect_to
  238. context['login_form'] = EmailAuthenticationForm(prefix=self.login_prefix)
  239. context['registration_form'] = EmailUserCreationForm(prefix=self.registration_prefix)
  240. return context
  241. def post(self, request, *args, **kwargs):
  242. context = self.get_context_data(*args, **kwargs)
  243. redirect_to = self.check_redirect(context)
  244. if u'login_submit' in self.request.POST:
  245. login_form = EmailAuthenticationForm(
  246. prefix=self.login_prefix,
  247. data=request.POST
  248. )
  249. if login_form.is_valid():
  250. auth_login(request, login_form.get_user())
  251. if request.session.test_cookie_worked():
  252. request.session.delete_test_cookie()
  253. return HttpResponseRedirect(redirect_to)
  254. context['login_form'] = login_form
  255. if u'registration_submit' in self.request.POST:
  256. registration_form = EmailUserCreationForm(
  257. prefix=self.registration_prefix,
  258. data=request.POST
  259. )
  260. context['registration_form'] = registration_form
  261. if registration_form.is_valid():
  262. self._register_user(registration_form)
  263. return HttpResponseRedirect(redirect_to)
  264. self.request.session.set_test_cookie()
  265. return self.render_to_response(context)
  266. class EmailHistoryView(ListView):
  267. """Customer email history"""
  268. context_object_name = "emails"
  269. template_name = 'customer/email_list.html'
  270. paginate_by = 20
  271. def get_queryset(self):
  272. """Return a customer's orders"""
  273. return Email._default_manager.filter(user=self.request.user)
  274. class EmailDetailView(DetailView):
  275. """Customer order details"""
  276. template_name = "customer/email.html"
  277. context_object_name = 'email'
  278. def get_object(self, queryset=None):
  279. """Return an order object or 404"""
  280. return get_object_or_404(Email, user=self.request.user,
  281. id=self.kwargs['email_id'])
  282. class OrderHistoryView(ListView):
  283. """
  284. Customer order history
  285. """
  286. context_object_name = "orders"
  287. template_name = 'customer/order_list.html'
  288. paginate_by = 20
  289. model = Order
  290. form_class = SearchByDateRangeForm
  291. def get(self, request, *args, **kwargs):
  292. if 'date_from' in request.GET:
  293. self.form = SearchByDateRangeForm(self.request.GET)
  294. if not self.form.is_valid():
  295. self.object_list = self.get_queryset()
  296. ctx = self.get_context_data(object_list=self.object_list)
  297. return self.render_to_response(ctx)
  298. else:
  299. self.form = SearchByDateRangeForm()
  300. return super(OrderHistoryView, self).get(request, *args, **kwargs)
  301. def get_queryset(self):
  302. qs = self.model._default_manager.filter(user=self.request.user)
  303. if self.form.is_bound and self.form.is_valid():
  304. qs = qs.filter(**self.form.get_filters())
  305. return qs
  306. def get_context_data(self, *args, **kwargs):
  307. ctx = super(OrderHistoryView, self).get_context_data(*args, **kwargs)
  308. ctx['form'] = self.form
  309. return ctx
  310. class OrderDetailView(DetailView, PostActionMixin):
  311. """Customer order details"""
  312. model = Order
  313. def get_template_names(self):
  314. return ["customer/order.html"]
  315. def get_object(self, queryset=None):
  316. return get_object_or_404(self.model, user=self.request.user,
  317. number=self.kwargs['order_number'])
  318. def do_reorder(self, order):
  319. """
  320. 'Re-order' a previous order.
  321. This puts the contents of the previous order into your basket
  322. """
  323. # Collect lines to be added to the basket and any warnings for lines
  324. # that are no longer available.
  325. basket = self.request.basket
  326. lines_to_add = []
  327. warnings = []
  328. for line in order.lines.all():
  329. is_available, reason = line.is_available_to_reorder(basket,
  330. self.request.user)
  331. if is_available:
  332. lines_to_add.append(line)
  333. else:
  334. warnings.append(reason)
  335. # Check whether the number of items in the basket won't exceed the
  336. # maximum.
  337. total_quantity = sum([line.quantity for line in lines_to_add])
  338. is_quantity_allowed, reason = basket.is_quantity_allowed(
  339. total_quantity)
  340. if not is_quantity_allowed:
  341. messages.warning(self.request, reason)
  342. self.response = HttpResponseRedirect(
  343. reverse('customer:order-list'))
  344. return
  345. # Add any warnings
  346. for warning in warnings:
  347. messages.warning(self.request, warning)
  348. for line in lines_to_add:
  349. options = []
  350. for attribute in line.attributes.all():
  351. if attribute.option:
  352. options.append({
  353. 'option': attribute.option,
  354. 'value': attribute.value})
  355. basket.add_product(line.product, line.quantity, options)
  356. if len(lines_to_add) > 0:
  357. self.response = HttpResponseRedirect(reverse('basket:summary'))
  358. messages.info(
  359. self.request,
  360. _("All available lines from order %(number)s "
  361. "have been added to your basket") % {'number': order.number})
  362. else:
  363. self.response = HttpResponseRedirect(
  364. reverse('customer:order-list'))
  365. messages.warning(
  366. self.request,
  367. _("It is not possible to re-order order %(number)s "
  368. "as none of its lines are available to purchase") %
  369. {'number': order.number})
  370. class OrderLineView(DetailView, PostActionMixin):
  371. """Customer order line"""
  372. def get_object(self, queryset=None):
  373. """Return an order object or 404"""
  374. order = get_object_or_404(Order, user=self.request.user,
  375. number=self.kwargs['order_number'])
  376. return order.lines.get(id=self.kwargs['line_id'])
  377. def do_reorder(self, line):
  378. self.response = HttpResponseRedirect(reverse('customer:order',
  379. args=(int(self.kwargs['order_number']),)))
  380. basket = self.request.basket
  381. line_available_to_reorder, reason = line.is_available_to_reorder(basket,
  382. self.request.user)
  383. if not line_available_to_reorder:
  384. messages.warning(self.request, reason)
  385. return
  386. # We need to pass response to the get_or_create... method
  387. # as a new basket might need to be created
  388. self.response = HttpResponseRedirect(reverse('basket:summary'))
  389. # Convert line attributes into basket options
  390. options = []
  391. for attribute in line.attributes.all():
  392. if attribute.option:
  393. options.append({'option': attribute.option, 'value': attribute.value})
  394. basket.add_product(line.product, line.quantity, options)
  395. if line.quantity > 1:
  396. msg = _("%(qty)d copies of '%(product)s' have been added to your basket") % {
  397. 'qty': line.quantity, 'product': line.product}
  398. else:
  399. msg = _("'%s' has been added to your basket") % line.product
  400. messages.info(self.request, msg)
  401. class AddressListView(ListView):
  402. """Customer address book"""
  403. context_object_name = "addresses"
  404. template_name = 'customer/address_list.html'
  405. paginate_by = 40
  406. def get_queryset(self):
  407. """Return a customer's addresses"""
  408. return UserAddress._default_manager.filter(user=self.request.user)
  409. class AddressCreateView(CreateView):
  410. form_class = UserAddressForm
  411. mode = UserAddress
  412. template_name = 'customer/address_form.html'
  413. def get_context_data(self, **kwargs):
  414. ctx = super(AddressCreateView, self).get_context_data(**kwargs)
  415. ctx['title'] = _('Add a new address')
  416. return ctx
  417. def form_valid(self, form):
  418. self.object = form.save(commit=False)
  419. self.object.user = self.request.user
  420. self.object.save()
  421. return HttpResponseRedirect(self.get_success_url())
  422. def get_success_url(self):
  423. messages.success(self.request, _("Address saved"))
  424. return reverse('customer:address-list')
  425. class AddressUpdateView(UpdateView):
  426. form_class = UserAddressForm
  427. model = UserAddress
  428. template_name = 'customer/address_form.html'
  429. def get_context_data(self, **kwargs):
  430. ctx = super(AddressUpdateView, self).get_context_data(**kwargs)
  431. ctx['title'] = _('Edit address')
  432. return ctx
  433. def get_queryset(self):
  434. return UserAddress._default_manager.filter(user=self.request.user)
  435. def get_success_url(self):
  436. messages.success(self.request, _("Address saved"))
  437. return reverse('customer:address-detail', kwargs={'pk': self.get_object().pk })
  438. class AddressDeleteView(DeleteView):
  439. model = UserAddress
  440. template_name = "customer/address_delete.html"
  441. def get_queryset(self):
  442. return UserAddress._default_manager.filter(user=self.request.user)
  443. def get_success_url(self):
  444. return reverse('customer:address-list')
  445. class AnonymousOrderDetailView(DetailView):
  446. model = Order
  447. template_name = "customer/anon_order.html"
  448. def get_object(self, queryset=None):
  449. # Check URL hash matches that for order to prevent spoof attacks
  450. order = get_object_or_404(self.model, user=None,
  451. number=self.kwargs['order_number'])
  452. if self.kwargs['hash'] != order.verification_hash():
  453. raise Http404()
  454. return order
  455. class ChangePasswordView(FormView):
  456. form_class = PasswordChangeForm
  457. template_name = 'customer/change_password_form.html'
  458. communication_type_code = 'PASSWORD_CHANGED'
  459. def get_form_kwargs(self):
  460. kwargs = super(ChangePasswordView, self).get_form_kwargs()
  461. kwargs['user'] = self.request.user
  462. return kwargs
  463. def form_valid(self, form):
  464. form.save()
  465. messages.success(self.request, _("Password updated"))
  466. ctx = {
  467. 'site': get_current_site(self.request),
  468. 'reset_url': get_password_reset_url(self.request.user),
  469. }
  470. msgs = CommunicationEventType.objects.get_and_render(
  471. code=self.communication_type_code, context=ctx)
  472. Dispatcher().dispatch_user_messages(self.request.user, msgs)
  473. return HttpResponseRedirect(self.get_success_url())
  474. def get_success_url(self):
  475. return reverse('customer:summary')