You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

views.py 22KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591
  1. import urlparse
  2. from django.shortcuts import get_object_or_404
  3. from django.views.generic import (TemplateView, ListView, DetailView,
  4. CreateView, UpdateView, DeleteView,
  5. FormView, RedirectView)
  6. from django.core.urlresolvers import reverse
  7. from django.core.exceptions import ObjectDoesNotExist
  8. from django.http import HttpResponseRedirect, Http404
  9. from django.contrib import messages
  10. from django.utils.translation import ugettext as _
  11. from django.contrib.auth import (authenticate, login as auth_login,
  12. logout as auth_logout)
  13. from django.contrib.auth.forms import PasswordChangeForm
  14. from django.contrib.sites.models import get_current_site
  15. from django.contrib.auth.models import User
  16. from django.conf import settings
  17. from django.db.models import get_model
  18. from oscar.views.generic import PostActionMixin
  19. from oscar.apps.customer.utils import get_password_reset_url
  20. from oscar.core.loading import get_class, get_profile_class, get_classes
  21. Dispatcher = get_class('customer.utils', 'Dispatcher')
  22. EmailAuthenticationForm, EmailUserCreationForm, SearchByDateRangeForm = get_classes(
  23. 'customer.forms', ['EmailAuthenticationForm', 'EmailUserCreationForm',
  24. 'SearchByDateRangeForm'])
  25. ProfileForm = get_class('customer.forms', 'ProfileForm')
  26. UserAddressForm = get_class('address.forms', 'UserAddressForm')
  27. user_registered = get_class('customer.signals', 'user_registered')
  28. Order = get_model('order', 'Order')
  29. Line = get_model('basket', 'Line')
  30. Basket = get_model('basket', 'Basket')
  31. UserAddress = get_model('address', 'UserAddress')
  32. Email = get_model('customer', 'email')
  33. UserAddress = get_model('address', 'UserAddress')
  34. CommunicationEventType = get_model('customer', 'communicationeventtype')
  35. ProductAlert = get_model('customer', 'ProductAlert')
  36. class LogoutView(RedirectView):
  37. url = '/'
  38. permanent = False
  39. def get(self, request, *args, **kwargs):
  40. auth_logout(request)
  41. response = super(LogoutView, self).get(request, *args, **kwargs)
  42. for cookie in settings.OSCAR_COOKIES_DELETE_ON_LOGOUT:
  43. response.delete_cookie(cookie)
  44. return response
  45. class ProfileUpdateView(FormView):
  46. form_class = ProfileForm
  47. template_name = 'customer/profile_form.html'
  48. communication_type_code = 'EMAIL_CHANGED'
  49. def get_form_kwargs(self):
  50. kwargs = super(ProfileUpdateView, self).get_form_kwargs()
  51. kwargs['user'] = self.request.user
  52. return kwargs
  53. def form_valid(self, form):
  54. # Grab current user instance before we save form. We may need this to
  55. # send a warning email if the email address is changed.
  56. try:
  57. old_user = User.objects.get(id=self.request.user.id)
  58. except User.DoesNotExist:
  59. old_user = None
  60. form.save()
  61. # We have to look up the email address from the form's
  62. # cleaned data because the object created by form.save() can
  63. # either be a user or profile depending on AUTH_PROFILE_MODULE
  64. new_email = form.cleaned_data['email']
  65. if old_user and new_email != old_user.email:
  66. # Email address has changed - send a confirmation email to the old
  67. # address including a password reset link in case this is a
  68. # suspicious change.
  69. ctx = {
  70. 'site': get_current_site(self.request),
  71. 'reset_url': get_password_reset_url(old_user),
  72. 'new_email': new_email,
  73. }
  74. msgs = CommunicationEventType.objects.get_and_render(
  75. code=self.communication_type_code, context=ctx)
  76. Dispatcher().dispatch_user_messages(old_user, msgs)
  77. messages.success(self.request, "Profile updated")
  78. return HttpResponseRedirect(self.get_success_url())
  79. def get_success_url(self):
  80. return reverse('customer:summary')
  81. class AccountSummaryView(TemplateView):
  82. template_name = 'customer/profile.html'
  83. def get_context_data(self, **kwargs):
  84. ctx = super(AccountSummaryView, self).get_context_data(**kwargs)
  85. # Delegate data fetching to separate methods so they are easy to
  86. # override.
  87. ctx['addressbook_size'] = self.request.user.addresses.all().count()
  88. ctx['default_shipping_address'] = self.get_default_shipping_address(self.request.user)
  89. ctx['default_billing_address'] = self.get_default_billing_address(self.request.user)
  90. ctx['orders'] = self.get_orders(self.request.user)
  91. ctx['emails'] = self.get_emails(self.request.user)
  92. ctx['alerts'] = self.get_product_alerts(self.request.user)
  93. self.add_profile_fields(ctx)
  94. ctx['active_tab'] = self.request.GET.get('tab', 'profile')
  95. return ctx
  96. def get_orders(self, user):
  97. return Order._default_manager.filter(user=user)[0:5]
  98. def add_profile_fields(self, ctx):
  99. if not hasattr(settings, 'AUTH_PROFILE_MODULE'):
  100. return
  101. try:
  102. profile = self.request.user.get_profile()
  103. except ObjectDoesNotExist:
  104. profile = get_profile_class()()
  105. field_data = []
  106. for field_name in profile._meta.get_all_field_names():
  107. if field_name in ('user', 'id'):
  108. continue
  109. field = profile._meta.get_field(field_name)
  110. if field.choices:
  111. value = getattr(profile, 'get_%s_display' % field_name)()
  112. else:
  113. value = getattr(profile, field_name)
  114. field_data.append({
  115. 'name': getattr(field, 'verbose_name'),
  116. 'value': value,
  117. })
  118. ctx['profile_fields'] = field_data
  119. ctx['profile'] = profile
  120. def post(self, request, *args, **kwargs):
  121. # A POST means an attempt to change the status of an alert
  122. if 'cancel_alert' in request.POST:
  123. return self.cancel_alert(request.POST.get('cancel_alert'))
  124. return super(AccountSummaryView, self).post(request, *args, **kwargs)
  125. def cancel_alert(self, alert_id):
  126. try:
  127. alert = ProductAlert.objects.get(user=self.request.user, pk=alert_id)
  128. except ProductAlert.DoesNotExist:
  129. messages.error(self.request, _("No alert found"))
  130. else:
  131. alert.cancel()
  132. messages.success(self.request, _("Alert cancelled"))
  133. return HttpResponseRedirect(
  134. reverse('customer:summary')+'?tab=alerts'
  135. )
  136. def get_emails(self, user):
  137. return Email.objects.filter(user=user)
  138. def get_product_alerts(self, user):
  139. return ProductAlert.objects.select_related().filter(
  140. user=self.request.user,
  141. date_closed=None,
  142. )
  143. def get_default_billing_address(self, user):
  144. return self.get_user_address(user, is_default_for_billing=True)
  145. def get_default_shipping_address(self, user):
  146. return self.get_user_address(user, is_default_for_shipping=True)
  147. def get_user_address(self, user, **filters):
  148. try:
  149. return user.addresses.get(**filters)
  150. except UserAddress.DoesNotExist:
  151. return None
  152. class AccountRegistrationView(TemplateView):
  153. template_name = 'customer/registration.html'
  154. redirect_field_name = 'next'
  155. registration_prefix = 'registration'
  156. communication_type_code = 'REGISTRATION'
  157. def get_logged_in_redirect(self):
  158. return reverse('customer:summary')
  159. def check_redirect(self, context):
  160. redirect_to = context.get(self.redirect_field_name)
  161. if not redirect_to:
  162. return settings.LOGIN_REDIRECT_URL
  163. netloc = urlparse.urlparse(redirect_to)[1]
  164. if netloc and netloc != self.request.get_host():
  165. return settings.LOGIN_REDIRECT_URL
  166. return redirect_to
  167. def get_context_data(self, *args, **kwargs):
  168. context = super(AccountRegistrationView, self).get_context_data(*args, **kwargs)
  169. redirect_to = self.request.REQUEST.get(self.redirect_field_name, '')
  170. context[self.redirect_field_name] = redirect_to
  171. context['registration_form'] = EmailUserCreationForm(
  172. prefix=self.registration_prefix
  173. )
  174. return context
  175. def send_registration_email(self, user):
  176. code = self.communication_type_code
  177. ctx = {'user': user,
  178. 'site': get_current_site(self.request)}
  179. messages = CommunicationEventType.objects.get_and_render(
  180. code, ctx)
  181. if messages and messages['body']:
  182. Dispatcher().dispatch_user_messages(user, messages)
  183. def get(self, request, *args, **kwargs):
  184. context = self.get_context_data(*args, **kwargs)
  185. if request.user.is_authenticated():
  186. return HttpResponseRedirect(self.get_logged_in_redirect())
  187. self.request.session.set_test_cookie()
  188. return self.render_to_response(context)
  189. def post(self, request, *args, **kwargs):
  190. context = self.get_context_data(*args, **kwargs)
  191. redirect_to = self.check_redirect(context)
  192. registration_form = EmailUserCreationForm(
  193. prefix=self.registration_prefix,
  194. data=request.POST
  195. )
  196. context['registration_form'] = registration_form
  197. if registration_form.is_valid():
  198. self._register_user(registration_form)
  199. return HttpResponseRedirect(redirect_to)
  200. self.request.session.set_test_cookie()
  201. return self.render_to_response(context)
  202. def _register_user(self, form):
  203. """
  204. Register a new user from the data in *form*. If
  205. ``OSCAR_SEND_REGISTRATION_EMAIL`` is set to ``True`` a
  206. registration email will be send to the provided email address.
  207. A new user account is created and the user is then logged in.
  208. """
  209. user = form.save()
  210. if getattr(settings, 'OSCAR_SEND_REGISTRATION_EMAIL', True):
  211. self.send_registration_email(user)
  212. user_registered.send_robust(sender=self, user=user)
  213. try:
  214. user = authenticate(
  215. username=user.email,
  216. password=form.cleaned_data['password1'])
  217. except User.MultipleObjectsReturned:
  218. # Handle race condition where the registration request is made
  219. # multiple times in quick succession. This leads to both requests
  220. # passing the uniqueness check and creating users (as the first one
  221. # hasn't committed when the second one runs the check). We retain
  222. # the first one and delete the dupes.
  223. users = User.objects.filter(email=user.email)
  224. user = users[0]
  225. for u in users[1:]:
  226. u.delete()
  227. auth_login(self.request, user)
  228. if self.request.session.test_cookie_worked():
  229. self.request.session.delete_test_cookie()
  230. class AccountAuthView(AccountRegistrationView):
  231. template_name = 'customer/login_registration.html'
  232. login_prefix = 'login'
  233. def get_context_data(self, *args, **kwargs):
  234. context = super(AccountAuthView, self).get_context_data(*args, **kwargs)
  235. redirect_to = self.request.REQUEST.get(self.redirect_field_name, '')
  236. context[self.redirect_field_name] = redirect_to
  237. context['login_form'] = EmailAuthenticationForm(prefix=self.login_prefix)
  238. context['registration_form'] = EmailUserCreationForm(prefix=self.registration_prefix)
  239. return context
  240. def post(self, request, *args, **kwargs):
  241. context = self.get_context_data(*args, **kwargs)
  242. redirect_to = self.check_redirect(context)
  243. if u'login_submit' in self.request.POST:
  244. login_form = EmailAuthenticationForm(
  245. prefix=self.login_prefix,
  246. data=request.POST
  247. )
  248. if login_form.is_valid():
  249. auth_login(request, login_form.get_user())
  250. if request.session.test_cookie_worked():
  251. request.session.delete_test_cookie()
  252. return HttpResponseRedirect(redirect_to)
  253. context['login_form'] = login_form
  254. if u'registration_submit' in self.request.POST:
  255. registration_form = EmailUserCreationForm(
  256. prefix=self.registration_prefix,
  257. data=request.POST
  258. )
  259. context['registration_form'] = registration_form
  260. if registration_form.is_valid():
  261. self._register_user(registration_form)
  262. return HttpResponseRedirect(redirect_to)
  263. self.request.session.set_test_cookie()
  264. return self.render_to_response(context)
  265. class EmailHistoryView(ListView):
  266. """Customer email history"""
  267. context_object_name = "emails"
  268. template_name = 'customer/email_list.html'
  269. paginate_by = 20
  270. def get_queryset(self):
  271. """Return a customer's orders"""
  272. return Email._default_manager.filter(user=self.request.user)
  273. class EmailDetailView(DetailView):
  274. """Customer order details"""
  275. template_name = "customer/email.html"
  276. context_object_name = 'email'
  277. def get_object(self, queryset=None):
  278. """Return an order object or 404"""
  279. return get_object_or_404(Email, user=self.request.user,
  280. id=self.kwargs['email_id'])
  281. class OrderHistoryView(ListView):
  282. """
  283. Customer order history
  284. """
  285. context_object_name = "orders"
  286. template_name = 'customer/order_list.html'
  287. paginate_by = 20
  288. model = Order
  289. form_class = SearchByDateRangeForm
  290. def get(self, request, *args, **kwargs):
  291. if 'date_from' in request.GET:
  292. self.form = SearchByDateRangeForm(self.request.GET)
  293. if not self.form.is_valid():
  294. self.object_list = self.get_queryset()
  295. ctx = self.get_context_data(object_list=self.object_list)
  296. return self.render_to_response(ctx)
  297. else:
  298. self.form = SearchByDateRangeForm()
  299. return super(OrderHistoryView, self).get(request, *args, **kwargs)
  300. def get_queryset(self):
  301. qs = self.model._default_manager.filter(user=self.request.user)
  302. if self.form.is_bound and self.form.is_valid():
  303. qs = qs.filter(**self.form.get_filters())
  304. return qs
  305. def get_context_data(self, *args, **kwargs):
  306. ctx = super(OrderHistoryView, self).get_context_data(*args, **kwargs)
  307. ctx['form'] = self.form
  308. return ctx
  309. class OrderDetailView(DetailView, PostActionMixin):
  310. """Customer order details"""
  311. model = Order
  312. def get_template_names(self):
  313. return ["customer/order.html"]
  314. def get_object(self, queryset=None):
  315. return get_object_or_404(self.model, user=self.request.user,
  316. number=self.kwargs['order_number'])
  317. def do_reorder(self, order):
  318. """
  319. 'Re-order' a previous order.
  320. This puts the contents of the previous order into your basket
  321. """
  322. # Collect lines to be added to the basket and any warnings for lines
  323. # that are no longer available.
  324. basket = self.request.basket
  325. lines_to_add = []
  326. warnings = []
  327. for line in order.lines.all():
  328. is_available, reason = line.is_available_to_reorder(basket,
  329. self.request.user)
  330. if is_available:
  331. lines_to_add.append(line)
  332. else:
  333. warnings.append(reason)
  334. # Check whether the number of items in the basket won't exceed the
  335. # maximum.
  336. total_quantity = sum([line.quantity for line in lines_to_add])
  337. is_quantity_allowed, reason = basket.is_quantity_allowed(
  338. total_quantity)
  339. if not is_quantity_allowed:
  340. messages.warning(self.request, reason)
  341. self.response = HttpResponseRedirect(
  342. reverse('customer:order-list'))
  343. return
  344. # Add any warnings
  345. for warning in warnings:
  346. messages.warning(self.request, warning)
  347. for line in lines_to_add:
  348. options = []
  349. for attribute in line.attributes.all():
  350. if attribute.option:
  351. options.append({
  352. 'option': attribute.option,
  353. 'value': attribute.value})
  354. basket.add_product(line.product, line.quantity, options)
  355. if len(lines_to_add) > 0:
  356. self.response = HttpResponseRedirect(reverse('basket:summary'))
  357. messages.info(
  358. self.request,
  359. _("All available lines from order %(number)s "
  360. "have been added to your basket") % {'number': order.number})
  361. else:
  362. self.response = HttpResponseRedirect(
  363. reverse('customer:order-list'))
  364. messages.warning(
  365. self.request,
  366. _("It is not possible to re-order order %(number)s "
  367. "as none of its lines are available to purchase") %
  368. {'number': order.number})
  369. class OrderLineView(DetailView, PostActionMixin):
  370. """Customer order line"""
  371. def get_object(self, queryset=None):
  372. """Return an order object or 404"""
  373. order = get_object_or_404(Order, user=self.request.user,
  374. number=self.kwargs['order_number'])
  375. return order.lines.get(id=self.kwargs['line_id'])
  376. def do_reorder(self, line):
  377. self.response = HttpResponseRedirect(reverse('customer:order',
  378. args=(int(self.kwargs['order_number']),)))
  379. basket = self.request.basket
  380. line_available_to_reorder, reason = line.is_available_to_reorder(basket,
  381. self.request.user)
  382. if not line_available_to_reorder:
  383. messages.warning(self.request, reason)
  384. return
  385. # We need to pass response to the get_or_create... method
  386. # as a new basket might need to be created
  387. self.response = HttpResponseRedirect(reverse('basket:summary'))
  388. # Convert line attributes into basket options
  389. options = []
  390. for attribute in line.attributes.all():
  391. if attribute.option:
  392. options.append({'option': attribute.option, 'value': attribute.value})
  393. basket.add_product(line.product, line.quantity, options)
  394. if line.quantity > 1:
  395. msg = _("%(qty)d copies of '%(product)s' have been added to your basket") % {
  396. 'qty': line.quantity, 'product': line.product}
  397. else:
  398. msg = _("'%s' has been added to your basket") % line.product
  399. messages.info(self.request, msg)
  400. class AddressListView(ListView):
  401. """Customer address book"""
  402. context_object_name = "addresses"
  403. template_name = 'customer/address_list.html'
  404. paginate_by = 40
  405. def get_queryset(self):
  406. """Return a customer's addresses"""
  407. return UserAddress._default_manager.filter(user=self.request.user)
  408. class AddressCreateView(CreateView):
  409. form_class = UserAddressForm
  410. mode = UserAddress
  411. template_name = 'customer/address_form.html'
  412. def get_context_data(self, **kwargs):
  413. ctx = super(AddressCreateView, self).get_context_data(**kwargs)
  414. ctx['title'] = _('Add a new address')
  415. return ctx
  416. def form_valid(self, form):
  417. self.object = form.save(commit=False)
  418. self.object.user = self.request.user
  419. self.object.save()
  420. return HttpResponseRedirect(self.get_success_url())
  421. def get_success_url(self):
  422. messages.success(self.request, _("Address saved"))
  423. return reverse('customer:address-list')
  424. class AddressUpdateView(UpdateView):
  425. form_class = UserAddressForm
  426. model = UserAddress
  427. template_name = 'customer/address_form.html'
  428. def get_context_data(self, **kwargs):
  429. ctx = super(AddressUpdateView, self).get_context_data(**kwargs)
  430. ctx['title'] = _('Edit address')
  431. return ctx
  432. def get_queryset(self):
  433. return UserAddress._default_manager.filter(user=self.request.user)
  434. def get_success_url(self):
  435. messages.success(self.request, _("Address saved"))
  436. return reverse('customer:address-detail', kwargs={'pk': self.get_object().pk })
  437. class AddressDeleteView(DeleteView):
  438. model = UserAddress
  439. template_name = "customer/address_delete.html"
  440. def get_queryset(self):
  441. return UserAddress._default_manager.filter(user=self.request.user)
  442. def get_success_url(self):
  443. return reverse('customer:address-list')
  444. class AnonymousOrderDetailView(DetailView):
  445. model = Order
  446. template_name = "customer/anon_order.html"
  447. def get_object(self, queryset=None):
  448. # Check URL hash matches that for order to prevent spoof attacks
  449. order = get_object_or_404(self.model, user=None,
  450. number=self.kwargs['order_number'])
  451. if self.kwargs['hash'] != order.verification_hash():
  452. raise Http404()
  453. return order
  454. class ChangePasswordView(FormView):
  455. form_class = PasswordChangeForm
  456. template_name = 'customer/change_password_form.html'
  457. communication_type_code = 'PASSWORD_CHANGED'
  458. def get_form_kwargs(self):
  459. kwargs = super(ChangePasswordView, self).get_form_kwargs()
  460. kwargs['user'] = self.request.user
  461. return kwargs
  462. def form_valid(self, form):
  463. form.save()
  464. messages.success(self.request, _("Password updated"))
  465. ctx = {
  466. 'site': get_current_site(self.request),
  467. 'reset_url': get_password_reset_url(self.request.user),
  468. }
  469. msgs = CommunicationEventType.objects.get_and_render(
  470. code=self.communication_type_code, context=ctx)
  471. Dispatcher().dispatch_user_messages(self.request.user, msgs)
  472. return HttpResponseRedirect(self.get_success_url())
  473. def get_success_url(self):
  474. return reverse('customer:summary')