func.py 76 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223222422252226222722282229223022312232223322342235223622372238223922402241224222432244224522462247224822492250225122522253225422552256225722582259226022612262226322642265
  1. # Init
  2. import os
  3. import sys
  4. import platform
  5. import json
  6. import smtplib
  7. import zipfile
  8. import shutil
  9. import logging
  10. import random
  11. import email.mime.text
  12. import email.utils
  13. import email.header
  14. import urllib.request
  15. # Init-Version
  16. version_list = json.loads(open('version.json', encoding = 'utf8').read())
  17. print('Version : ' + version_list['beta']['r_ver'])
  18. print('DB set version : ' + version_list['beta']['c_ver'])
  19. print('Skin set version : ' + version_list['beta']['s_ver'])
  20. print('----')
  21. # Init-PIP_Install
  22. data_up_date = 1
  23. if os.path.exists(os.path.join('data', 'version.json')):
  24. data_load_ver = open(os.path.join('data', 'version.json'), encoding = 'utf8').read()
  25. if data_load_ver == version_list['beta']['r_ver']:
  26. data_up_date = 0
  27. if data_up_date == 1:
  28. with open(os.path.join('data', 'version.json'), 'w', encoding = 'utf8') as f:
  29. f.write(version_list['beta']['r_ver'])
  30. if platform.system() in ('Linux', 'Windows'):
  31. if platform.python_implementation() == 'PyPy':
  32. os.system(
  33. 'pypy' + ('3' if platform.system() != 'Windows' else '') + ' ' + \
  34. '-m pip install --upgrade --user -r requirements.txt'
  35. )
  36. else:
  37. os.system(
  38. 'python' + ('3' if platform.system() != 'Windows' else '') + ' ' + \
  39. '-m pip install --upgrade --user -r requirements.txt'
  40. )
  41. print('----')
  42. try:
  43. os.execl(sys.executable, sys.executable, *sys.argv)
  44. except:
  45. pass
  46. try:
  47. os.execl(sys.executable, '"' + sys.executable + '"', *sys.argv)
  48. except:
  49. print('Error : restart failed')
  50. raise
  51. else:
  52. print('Error : automatic installation is not supported.')
  53. print('Help : try "python3 -m pip install -r requirements.txt"')
  54. else:
  55. print('PIP check pass')
  56. print('----')
  57. # Init-Load
  58. from .func_render import *
  59. from diff_match_patch import diff_match_patch
  60. import netius.servers
  61. import waitress
  62. import werkzeug.routing
  63. import werkzeug.debug
  64. import flask
  65. import requests
  66. import pymysql
  67. if sys.version_info < (3, 6):
  68. import sha3
  69. # Init-Global
  70. global_lang = {}
  71. global_wiki_set = {}
  72. global_db_set = ''
  73. conn = ''
  74. # Func
  75. # Func-main
  76. def load_conn(data):
  77. global conn
  78. conn = data
  79. def do_db_set(db_set):
  80. global global_db_set
  81. global_db_set = db_set
  82. # Func-init
  83. def get_init_set_list(need = 'all'):
  84. init_set_list = {
  85. 'host' : {
  86. 'display' : 'Host',
  87. 'require' : 'conv',
  88. 'default' : '0.0.0.0'
  89. }, 'port' : {
  90. 'display' : 'Port',
  91. 'require' : 'conv',
  92. 'default' : '3000'
  93. }, 'language' : {
  94. 'display' : 'Language',
  95. 'require' : 'select',
  96. 'default' : 'ko-KR',
  97. 'list' : ['ko-KR', 'en-US']
  98. }, 'markup' : {
  99. 'display' : 'Markup',
  100. 'require' : 'select',
  101. 'default' : 'namumark',
  102. 'list' : ['namumark', 'markdown', 'custom', 'raw']
  103. }, 'encode' : {
  104. 'display' : 'Encryption method',
  105. 'require' : 'select',
  106. 'default' : 'sha3',
  107. 'list' : ['sha3', 'sha3-salt', 'sha3-512', 'sha3-512-salt']
  108. }
  109. }
  110. return init_set_list
  111. class get_db_connect:
  112. # 임시 DB 커넥션 동작 구조
  113. # Init 파트
  114. # DB 커넥트(get_db_connect_old) -> func.py로 conn 넘겨줌
  115. # route 파트
  116. # DB 새로 커넥트 -> func.py에서 쓰던 conn은 conn_sub로 보관 ->
  117. # func.py로 conn 넘겨줌 -> 모든 라우터 과정이 끝나면 conn_sub를 다시 func.py에 conn으로 넘겨줌 ->
  118. # DB 커넥트 종료
  119. def __init__(self):
  120. global global_db_set
  121. global conn
  122. self.conn_sub = conn
  123. self.db_set = global_db_set
  124. def __enter__(self):
  125. if self.db_set['type'] == 'sqlite':
  126. self.conn = sqlite3.connect(
  127. self.db_set['name'] + '.db',
  128. check_same_thread = False,
  129. isolation_level = None
  130. )
  131. self.conn.execute('pragma journal_mode = wal')
  132. else:
  133. self.conn = pymysql.connect(
  134. host = self.db_set['mysql_host'],
  135. user = self.db_set['mysql_user'],
  136. password = self.db_set['mysql_pw'],
  137. charset = 'utf8mb4',
  138. port = int(self.db_set['mysql_port']),
  139. )
  140. curs = self.conn.cursor()
  141. self.conn.select_db(self.db_set['name'])
  142. load_conn(self.conn)
  143. return self.conn
  144. def __exit__(self, exc_type, exc_value, traceback):
  145. load_conn(self.conn_sub)
  146. self.conn.close()
  147. class class_check_json:
  148. def do_check_set_json():
  149. if os.getenv('NAMU_DB') or os.getenv('NAMU_DB_TYPE'):
  150. set_data = {}
  151. set_data['db'] = os.getenv('NAMU_DB') if os.getenv('NAMU_DB') else 'data'
  152. set_data['db_type'] = os.getenv('NAMU_DB_TYPE') if os.getenv('NAMU_DB_TYPE') else 'sqlite'
  153. else:
  154. if os.path.exists(os.path.join('data', 'set.json')):
  155. db_set_list = ['db', 'db_type']
  156. set_data = json.loads(open(
  157. os.path.join('data', 'set.json'),
  158. encoding = 'utf8'
  159. ).read())
  160. for i in db_set_list:
  161. if not i in set_data:
  162. os.remove(os.path.join('data', 'set.json'))
  163. break
  164. if not os.path.exists(os.path.join('data', 'set.json')):
  165. set_data = {}
  166. normal_db_type = ['sqlite', 'mysql']
  167. print('DB type (' + normal_db_type[0] + ') [' + ', '.join(normal_db_type) + '] : ', end = '')
  168. data_get = str(input())
  169. if data_get == '' or not data_get in normal_db_type:
  170. set_data['db_type'] = 'sqlite'
  171. else:
  172. set_data['db_type'] = data_get
  173. all_src = []
  174. if set_data['db_type'] == 'sqlite':
  175. for i_data in os.listdir("."):
  176. f_src = re.search(r"(.+)\.db$", i_data)
  177. if f_src:
  178. all_src += [f_src.group(1)]
  179. print('DB name (data) [' + ', '.join(all_src) + '] : ', end = '')
  180. data_get = str(input())
  181. if data_get == '':
  182. set_data['db'] = 'data'
  183. else:
  184. set_data['db'] = data_get
  185. with open(os.path.join('data', 'set.json'), 'w', encoding = 'utf8') as f:
  186. f.write(json.dumps(set_data))
  187. print('DB name : ' + set_data['db'])
  188. print('DB type : ' + set_data['db_type'])
  189. data_db_set = {}
  190. data_db_set['name'] = set_data['db']
  191. data_db_set['type'] = set_data['db_type']
  192. return data_db_set
  193. def do_check_mysql_json(data_db_set):
  194. if os.path.exists(os.path.join('data', 'mysql.json')):
  195. db_set_list = ['user', 'password', 'host', 'port']
  196. set_data = json.loads(
  197. open(
  198. os.path.join('data', 'mysql.json'),
  199. encoding = 'utf8'
  200. ).read()
  201. )
  202. for i in db_set_list:
  203. if not i in set_data:
  204. os.remove(os.path.join('data', 'mysql.json'))
  205. break
  206. set_data_mysql = set_data
  207. if not os.path.exists(os.path.join('data', 'mysql.json')):
  208. set_data_mysql = {}
  209. print('DB user ID : ', end = '')
  210. set_data_mysql['user'] = str(input())
  211. print('DB password : ', end = '')
  212. set_data_mysql['password'] = str(input())
  213. print('DB host (localhost) : ', end = '')
  214. set_data_mysql['host'] = str(input())
  215. if set_data_mysql['host'] == '':
  216. set_data_mysql['host'] = 'localhost'
  217. print('DB port (3306) : ', end = '')
  218. set_data_mysql['port'] = str(input())
  219. if set_data_mysql['port'] == '':
  220. set_data_mysql['port'] = '3306'
  221. with open(
  222. os.path.join('data', 'mysql.json'),
  223. 'w',
  224. encoding = 'utf8'
  225. ) as f:
  226. f.write(json.dumps(set_data_mysql))
  227. data_db_set['mysql_user'] = set_data_mysql['user']
  228. data_db_set['mysql_pw'] = set_data_mysql['password']
  229. if 'host' in set_data_mysql:
  230. data_db_set['mysql_host'] = set_data_mysql['host']
  231. else:
  232. data_db_set['mysql_host'] = 'localhost'
  233. if 'port' in set_data_mysql:
  234. data_db_set['mysql_port'] = set_data_mysql['port']
  235. else:
  236. data_db_set['mysql_port'] = '3306'
  237. return data_db_set
  238. def __init__(self):
  239. self.data_db_set = {}
  240. def __new__(self):
  241. self.data_db_set = self.do_check_set_json()
  242. if self.data_db_set['type'] == 'mysql':
  243. self.data_db_set = self.do_check_mysql_json(self.data_db_set)
  244. return self.data_db_set
  245. def get_db_table_list():
  246. # Init-Create_DB
  247. create_data = {}
  248. # 폐지 예정 (data_set으로 통합)
  249. create_data['data_set'] = ['doc_name', 'doc_rev', 'set_name', 'set_data']
  250. create_data['data'] = ['title', 'data', 'type']
  251. create_data['history'] = ['id', 'title', 'data', 'date', 'ip', 'send', 'leng', 'hide', 'type']
  252. create_data['rc'] = ['id', 'title', 'date', 'type']
  253. create_data['acl'] = ['title', 'data', 'type']
  254. # 개편 예정 (data_link로 변경)
  255. create_data['back'] = ['title', 'link', 'type']
  256. # 폐지 예정 (topic_set으로 통합) [가장 시급]
  257. create_data['topic_set'] = ['thread_code', 'set_name', 'set_id', 'set_data']
  258. create_data['rd'] = ['title', 'sub', 'code', 'date', 'band', 'stop', 'agree', 'acl']
  259. create_data['topic'] = ['id', 'data', 'date', 'ip', 'block', 'top', 'code']
  260. # 폐지 예정 (user_set으로 통합)
  261. create_data['rb'] = ['block', 'end', 'today', 'blocker', 'why', 'band', 'login', 'ongoing']
  262. create_data['scan'] = ['user', 'title', 'type']
  263. # 개편 예정 (wiki_set과 wiki_filter과 wiki_vote으로 변경)
  264. create_data['other'] = ['name', 'data', 'coverage']
  265. create_data['html_filter'] = ['html', 'kind', 'plus', 'plus_t']
  266. create_data['vote'] = ['name', 'id', 'subject', 'data', 'user', 'type', 'acl']
  267. # 개편 예정 (auth_list와 auth_log로 변경)
  268. create_data['alist'] = ['name', 'acl']
  269. create_data['re_admin'] = ['who', 'what', 'time']
  270. # 개편 예정 (user_notice와 user_agent로 변경)
  271. create_data['alarm'] = ['name', 'data', 'date']
  272. create_data['ua_d'] = ['name', 'ip', 'ua', 'today', 'sub']
  273. create_data['user_set'] = ['name', 'id', 'data']
  274. return create_data
  275. def update(ver_num, set_data):
  276. curs = conn.cursor()
  277. print('----')
  278. # 업데이트 하위 호환 유지 함수
  279. if ver_num < 3160027:
  280. print('Add init set')
  281. set_init()
  282. if ver_num < 3170002:
  283. curs.execute(db_change("select html from html_filter where kind = 'extension'"))
  284. if not curs.fetchall():
  285. for i in ['jpg', 'jpeg', 'png', 'gif', 'webp']:
  286. curs.execute(db_change(
  287. "insert into html_filter (html, kind) values (?, 'extension')"
  288. ), [i])
  289. if ver_num < 3170400:
  290. curs.execute(db_change("select title, sub, code from topic where id = '1'"))
  291. for i in curs.fetchall():
  292. curs.execute(db_change(
  293. "update topic set code = ? where title = ? and sub = ?"
  294. ), [
  295. i[2],
  296. i[0],
  297. i[1]
  298. ])
  299. curs.execute(db_change(
  300. "update rd set code = ? where title = ? and sub = ?"
  301. ), [
  302. i[2],
  303. i[0],
  304. i[1]
  305. ])
  306. if ver_num < 3171800:
  307. curs.execute(db_change("select data from other where name = 'recaptcha'"))
  308. change_rec = curs.fetchall()
  309. if change_rec and change_rec[0][0] != '':
  310. new_rec = re.search(r'data-sitekey="([^"]+)"', change_rec[0][0])
  311. if new_rec:
  312. curs.execute(db_change(
  313. "update other set data = ? where name = 'recaptcha'"
  314. ), [new_rec.group(1)])
  315. else:
  316. curs.execute(db_change("update other set data = '' where name = 'recaptcha'"))
  317. curs.execute(db_change("update other set data = '' where name = 'sec_re'"))
  318. if ver_num < 3172800 and \
  319. set_data['db_type'] == 'mysql':
  320. get_data_mysql = json.loads(open('data/mysql.json', encoding = 'utf8').read())
  321. with open('data/mysql.json', 'w') as f:
  322. f.write('{ "user" : "' + get_data_mysql['user'] + '", "password" : "' + get_data_mysql['password'] + '", "host" : "localhost" }')
  323. if ver_num < 3183603:
  324. curs.execute(db_change("select block from ban where band = 'O'"))
  325. for i in curs.fetchall():
  326. curs.execute(db_change(
  327. "update ban set block = ?, band = 'regex' where block = ? and band = 'O'"
  328. ), [
  329. '^' + i[0].replace('.', '\\.'),
  330. i[0]
  331. ])
  332. curs.execute(db_change("select block from rb where band = 'O'"))
  333. for i in curs.fetchall():
  334. curs.execute(db_change(
  335. "update rb set block = ?, band = 'regex' where block = ? and band = 'O'"
  336. ), [
  337. '^' + i[0].replace('.', '\\.'),
  338. i[0]
  339. ])
  340. if ver_num < 3190201:
  341. today_time = get_time()
  342. curs.execute(db_change("select block, end, why, band, login from ban"))
  343. for i in curs.fetchall():
  344. curs.execute(db_change(
  345. "insert into rb (block, end, today, why, band, login, ongoing) " + \
  346. "values (?, ?, ?, ?, ?, ?, ?)"
  347. ), [
  348. i[0],
  349. i[1],
  350. today_time,
  351. i[2],
  352. i[3],
  353. i[4],
  354. '1'
  355. ])
  356. if ver_num < 3191301:
  357. curs.execute(db_change('' + \
  358. 'select id, title, date from history ' + \
  359. 'where not title like "user:%" ' + \
  360. 'order by date desc ' + \
  361. 'limit 50' + \
  362. ''))
  363. data_list = curs.fetchall()
  364. for get_data in data_list:
  365. curs.execute(db_change(
  366. "insert into rc (id, title, date, type) values (?, ?, ?, 'normal')"
  367. ), [
  368. get_data[0],
  369. get_data[1],
  370. get_data[2]
  371. ])
  372. if ver_num < 3202400:
  373. curs.execute(db_change("select data from other where name = 'update'"))
  374. get_data = curs.fetchall()
  375. if get_data and get_data[0][0] == 'master':
  376. curs.execute(db_change("update other set data = 'beta' where name = 'update'"), [])
  377. if ver_num < 3202600:
  378. curs.execute(db_change("select name, regex, sub from filter"))
  379. for i in curs.fetchall():
  380. curs.execute(db_change(
  381. "insert into html_filter (html, kind, plus, plus_t) " + \
  382. "values (?, 'regex_filter', ?, ?)"
  383. ), [
  384. i[0],
  385. i[1],
  386. i[2]
  387. ])
  388. curs.execute(db_change("select title, link, icon from inter"))
  389. for i in curs.fetchall():
  390. curs.execute(db_change(
  391. "insert into html_filter (html, kind, plus, plus_t) " + \
  392. "values (?, 'inter_wiki', ?, ?)"), [
  393. i[0],
  394. i[1],
  395. i[2]
  396. ])
  397. if ver_num < 3203400:
  398. curs.execute(db_change("select user, css from custom"))
  399. for i in curs.fetchall():
  400. curs.execute(db_change(
  401. "insert into user_set (name, id, data) values ('custom_css', ?, ?)"
  402. ), [
  403. re.sub(r' \(head\)$', '', i[0]),
  404. i[1]
  405. ])
  406. if ver_num < 3205500:
  407. curs.execute(db_change("select title, decu, dis, view, why from acl"))
  408. for i in curs.fetchall():
  409. curs.execute(db_change(
  410. "insert into acl (title, data, type) values (?, ?, ?)"
  411. ), [i[0], i[1], 'decu'])
  412. curs.execute(db_change(
  413. "insert into acl (title, data, type) values (?, ?, ?)"
  414. ), [i[0], i[2], 'dis'])
  415. curs.execute(db_change(
  416. "insert into acl (title, data, type) values (?, ?, ?)"
  417. ), [i[0], i[3], 'view'])
  418. curs.execute(db_change(
  419. "insert into acl (title, data, type) values (?, ?, ?)"
  420. ), [i[0], i[4], 'why'])
  421. if ver_num < 3300101:
  422. # 캐시 초기화
  423. curs.execute(db_change('delete from cache_data'))
  424. if ver_num < 3300301:
  425. # regex_filter 오류 해결
  426. curs.execute(db_change(
  427. 'delete from html_filter where kind = "regex_filter" and html is null'
  428. ))
  429. if ver_num < 3302302:
  430. # user이랑 user_set 테이블의 통합
  431. curs.execute(db_change('select id, pw, acl, date, encode from user'))
  432. for i in curs.fetchall():
  433. curs.execute(db_change(
  434. "insert into user_set (name, id, data) values (?, ?, ?)"
  435. ), ['pw', i[0], i[1]])
  436. curs.execute(db_change(
  437. "insert into user_set (name, id, data) values (?, ?, ?)"
  438. ), ['acl', i[0], i[2]])
  439. curs.execute(db_change(
  440. "insert into user_set (name, id, data) values (?, ?, ?)"
  441. ), ['date', i[0], i[3]])
  442. curs.execute(db_change(
  443. "insert into user_set (name, id, data) values (?, ?, ?)"
  444. ), ['encode', i[0], i[4]])
  445. if ver_num < 3400101:
  446. # user_set이랑 user_application 테이블의 통합
  447. curs.execute(db_change('' + \
  448. 'select id, pw, date, encode, question, answer, ip, ua, email ' + \
  449. 'from user_application' + \
  450. ''))
  451. for i in curs.fetchall():
  452. sql_data = {}
  453. sql_data['id'] = i[0]
  454. sql_data['pw'] = i[1]
  455. sql_data['date'] = i[2]
  456. sql_data['encode'] = i[3]
  457. sql_data['question'] = i[4]
  458. sql_data['answer'] = i[5]
  459. sql_data['ip'] = i[6]
  460. sql_data['ua'] = i[7]
  461. sql_data['email'] = i[8]
  462. curs.execute(db_change(
  463. "insert into user_set (name, id, data) values (?, ?, ?)"
  464. ), ['application', i[0], json.dumps(sql_data)])
  465. if ver_num < 3500105:
  466. curs.execute(db_change(
  467. 'delete from acl where title like "file:%" and data = "admin" and type like "decu%"'
  468. ))
  469. if ver_num < 3500106:
  470. curs.execute(db_change("select data from other where name = 'domain'"))
  471. db_data = curs.fetchall()
  472. if db_data and db_data[0][0] != '':
  473. db_data = db_data[0][0]
  474. db_data = re.match(r'[^/]+\/\/([^/]+)', db_data)
  475. if db_data:
  476. db_data = db_data.group(1)
  477. curs.execute(db_change(
  478. "update other set data = ? where name = 'domain'"
  479. ), [
  480. db_data
  481. ])
  482. else:
  483. curs.execute(db_change(
  484. "update other set data = '' where name = 'domain'"
  485. ))
  486. if ver_num < 3500107:
  487. db_table_list = get_db_table_list()
  488. for for_a in db_table_list:
  489. for for_b in db_table_list[for_a]:
  490. curs.execute(db_change("update " + for_a + " set " + for_b + " = '' where " + for_b + " is null"))
  491. if ver_num < 3500112:
  492. # curs.execute(db_change('select id from user_set where name = "email" and data = ?'), [user_email])
  493. curs.execute(db_change('select id from user_set where name = "email"'))
  494. for db_data in curs.fetchall():
  495. if ip_or_user(db_data[0]) == 1:
  496. curs.execute(db_change(
  497. 'delete from user_set where id = ? and name = "email"'
  498. ), [db_data[0]])
  499. if ver_num < 3500113:
  500. db_table_list = get_db_table_list()
  501. for for_a in db_table_list:
  502. for for_b in db_table_list[for_a]:
  503. curs.execute(db_change("update " + for_a + " set " + for_b + " = '' where " + for_b + " is null"))
  504. conn.commit()
  505. # 아이피 상태인 이메일 제거 예정
  506. print('Update completed')
  507. def set_init_always(ver_num):
  508. global global_wiki_set
  509. curs = conn.cursor()
  510. curs.execute(db_change('delete from other where name = "ver"'))
  511. curs.execute(db_change('insert into other (name, data) values ("ver", ?)'), [ver_num])
  512. curs.execute(db_change('delete from alist where name = "owner"'))
  513. curs.execute(db_change('insert into alist (name, acl) values ("owner", "owner")'))
  514. if not os.path.exists(load_image_url()):
  515. os.makedirs(load_image_url())
  516. curs.execute(db_change('select data from other where name = "key"'))
  517. if not curs.fetchall():
  518. curs.execute(db_change('insert into other (name, data) values ("key", ?)'), [load_random_key()])
  519. curs.execute(db_change('select data from other where name = "salt_key"'))
  520. if not curs.fetchall():
  521. curs.execute(db_change('insert into other (name, data) values ("salt_key", ?)'), [load_random_key(4)])
  522. curs.execute(db_change('select data from other where name = "count_all_title"'))
  523. if not curs.fetchall():
  524. curs.execute(db_change('insert into other (name, data) values ("count_all_title", "0")'))
  525. curs.execute(db_change('select data from other where name = "wiki_access_password_need"'))
  526. db_data = curs.fetchall()
  527. if db_data and db_data[0][0] != '':
  528. curs.execute(db_change('select data from other where name = "wiki_access_password"'))
  529. db_data = curs.fetchall()
  530. if db_data:
  531. global_wiki_set['wiki_access_password'] = db_data[0][0]
  532. conn.commit()
  533. def set_init():
  534. curs = conn.cursor()
  535. # 초기값 설정 함수
  536. curs.execute(db_change("select html from html_filter where kind = 'email'"))
  537. if not curs.fetchall():
  538. for i in ['naver.com', 'gmail.com', 'daum.net', 'kakao.com']:
  539. curs.execute(db_change(
  540. "insert into html_filter (html, kind, plus, plus_t) values (?, 'email', '', '')"
  541. ), [i])
  542. curs.execute(db_change("select html from html_filter where kind = 'extension'"))
  543. if not curs.fetchall():
  544. for i in ['jpg', 'jpeg', 'png', 'gif', 'webp']:
  545. curs.execute(db_change(
  546. "insert into html_filter (html, kind, plus, plus_t) values (?, 'extension', '', '')"
  547. ), [i])
  548. curs.execute(db_change(
  549. 'select data from other ' + \
  550. 'where name = "smtp_server" or name = "smtp_port" or name = "smtp_security"'
  551. ))
  552. if not curs.fetchall():
  553. for i in [
  554. ['smtp_server', 'smtp.gmail.com'],
  555. ['smtp_port', '587'],
  556. ['smtp_security', 'starttls']
  557. ]:
  558. curs.execute(db_change(
  559. "insert into other (name, data) values (?, ?)"
  560. ), [i[0], i[1]])
  561. conn.commit()
  562. # Func-simple
  563. ## Func-simple-without_DB
  564. def get_default_admin_group():
  565. return ['owner', 'ban']
  566. def get_user_title_list():
  567. # default
  568. user_title = {
  569. '' : load_lang('default'),
  570. '🌳' : '🌳 namu',
  571. }
  572. # admin
  573. if admin_check('all') == 1:
  574. user_title['✅'] = '✅ admin'
  575. return user_title
  576. def load_random_key(long = 128):
  577. return ''.join(
  578. random.choice(
  579. "0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ"
  580. ) for i in range(long)
  581. )
  582. def http_warning():
  583. return '''
  584. <div id="opennamu_http_warning_text"></div>
  585. <span style="display: none;" id="opennamu_http_warning_text_lang">''' + load_lang('http_warning') + '''</span>
  586. '''
  587. def next_fix(link, num, page, end = 50):
  588. list_data = ''
  589. if num == 1:
  590. if len(page) == end:
  591. list_data += '' + \
  592. '<hr class="main_hr">' + \
  593. '<a href="' + link + str(num + 1) + '">(' + load_lang('next') + ')</a>' + \
  594. ''
  595. elif len(page) != end:
  596. list_data += '' + \
  597. '<hr class="main_hr">' + \
  598. '<a href="' + link + str(num - 1) + '">(' + load_lang('previous') + ')</a>' + \
  599. ''
  600. else:
  601. list_data += '' + \
  602. '<hr class="main_hr">' + \
  603. '<a href="' + link + str(num - 1) + '">(' + load_lang('previous') + ')</a> <a href="' + link + str(num + 1) + '">(' + load_lang('next') + ')</a>' + \
  604. ''
  605. return list_data
  606. def leng_check(A, B):
  607. # B -> new
  608. # A -> old
  609. return '0' if A == B else (('-' + str(A - B)) if A > B else ('+' + str(B - A)))
  610. def number_check(data):
  611. try:
  612. int(data)
  613. return data
  614. except:
  615. return '1'
  616. def check_int(data):
  617. try:
  618. int(data)
  619. return data
  620. except:
  621. return ''
  622. def redirect(data = '/'):
  623. return flask.redirect(load_domain('full') + data)
  624. def get_acl_list(type_d = 'normal'):
  625. if type_d == 'user':
  626. return ['', 'user', 'all']
  627. else:
  628. return ['', 'all', 'user', 'admin', 'owner', '50_edit', 'email', 'ban', 'before', '30_day', 'ban_admin', 'not_all']
  629. ## Func-simple-with_DB
  630. def load_image_url():
  631. curs = conn.cursor()
  632. curs.execute(db_change('select data from other where name = "image_where"'))
  633. image_where = curs.fetchall()
  634. image_where = image_where[0][0] if image_where else os.path.join('data', 'images')
  635. return image_where
  636. def load_domain(data_type = 'normal'):
  637. curs = conn.cursor()
  638. domain = ''
  639. if data_type == 'full':
  640. curs.execute(db_change("select data from other where name = 'http_select'"))
  641. db_data = curs.fetchall()
  642. domain += db_data[0][0] if db_data and db_data[0][0] != '' else 'http'
  643. domain += '://'
  644. curs.execute(db_change("select data from other where name = 'domain'"))
  645. db_data = curs.fetchall()
  646. domain += db_data[0][0] if db_data and db_data[0][0] != '' else flask.request.host
  647. else:
  648. curs.execute(db_change("select data from other where name = 'domain'"))
  649. db_data = curs.fetchall()
  650. domain += db_data[0][0] if db_data and db_data[0][0] != '' else flask.request.host
  651. return domain
  652. def edit_button(editor_display = '0'):
  653. curs = conn.cursor()
  654. insert_list = []
  655. curs.execute(db_change("select html, plus from html_filter where kind = 'edit_top'"))
  656. db_data = curs.fetchall()
  657. for get_data in db_data:
  658. insert_list += [[get_data[1], get_data[0]]]
  659. data = ''
  660. for insert_data in insert_list:
  661. data += '' + \
  662. '<a href="' + \
  663. 'javascript:do_insert_data(\'textarea_edit_view\', \'' + insert_data[0] + '\', ' + editor_display + ')' + \
  664. '">(' + insert_data[1] + ')</a> ' + \
  665. ''
  666. data += (' ' if data != '' else '') + '<a href="/edit_top">(' + load_lang('add') + ')</a>'
  667. data += '<hr class="main_hr">'
  668. return data
  669. def ip_warning():
  670. curs = conn.cursor()
  671. if ip_or_user() != 0:
  672. curs.execute(db_change('select data from other where name = "no_login_warning"'))
  673. data = curs.fetchall()
  674. if data and data[0][0] != '':
  675. text_data = '' + \
  676. '<span>' + data[0][0] + '</span>' + \
  677. '<hr class="main_hr">' + \
  678. ''
  679. else:
  680. text_data = '' + \
  681. '<span>' + load_lang('no_login_warning') + '</span>' + \
  682. '<hr class="main_hr">' + \
  683. ''
  684. else:
  685. text_data = ''
  686. return text_data
  687. # Func-login
  688. def pw_encode(data, db_data_encode = ''):
  689. curs = conn.cursor()
  690. if db_data_encode == '':
  691. curs.execute(db_change('select data from other where name = "encode"'))
  692. db_data = curs.fetchall()
  693. db_data_encode = db_data[0][0] if db_data else 'sha3'
  694. if db_data_encode == 'sha256':
  695. return hashlib.sha256(bytes(data, 'utf-8')).hexdigest()
  696. elif db_data_encode == 'sha3':
  697. return hashlib.sha3_256(bytes(data, 'utf-8')).hexdigest()
  698. elif db_data_encode == 'sha3-512':
  699. return hashlib.sha3_512(bytes(data, 'utf-8')).hexdigest()
  700. else:
  701. curs.execute(db_change('select data from other where name = "salt_key"'))
  702. db_data = curs.fetchall()
  703. db_data_salt = db_data[0][0] if db_data else ''
  704. if db_data_encode == 'sha3-salt':
  705. return hashlib.sha3_256(bytes(data + db_data_salt, 'utf-8')).hexdigest()
  706. else:
  707. return hashlib.sha3_512(bytes(data + db_data_salt, 'utf-8')).hexdigest()
  708. def pw_check(data, data2, type_d = 'no', id_d = ''):
  709. curs = conn.cursor()
  710. curs.execute(db_change('select data from other where name = "encode"'))
  711. db_data = curs.fetchall()
  712. if type_d != 'no':
  713. if type_d == '':
  714. set_data = 'sha3'
  715. else:
  716. set_data = type_d
  717. else:
  718. set_data = db_data[0][0]
  719. re_data = 1 if pw_encode(data, set_data) == data2 else 0
  720. if db_data[0][0] != set_data and re_data == 1 and id_d != '':
  721. curs.execute(db_change("update user_set set data = ? where id = ? and name = 'pw'"), [
  722. pw_encode(data),
  723. id_d
  724. ])
  725. curs.execute(db_change("update user_set set data = ? where id = ? and name = 'encode'"), [
  726. db_data[0][0],
  727. id_d
  728. ])
  729. return re_data
  730. # Func-skin
  731. def easy_minify(data, tool = None):
  732. # without_DB
  733. if 'wiki_access_password' in global_wiki_set:
  734. access_password = global_wiki_set['wiki_access_password']
  735. input_password = flask.request.cookies.get('opennamu_wiki_access', ' ')
  736. if url_pas(access_password) == input_password:
  737. return data
  738. return '''
  739. <script src="/views/main_css/js/route/wiki_access_password.js"></script>
  740. <h2>''' + load_lang('error_password_require_for_wiki_access') + '''</h2>
  741. <input type="password" id="wiki_access">
  742. <input type="submit" onclick="opennamu_do_wiki_access();">
  743. '''
  744. else:
  745. return data
  746. def load_lang(data, safe = 0):
  747. curs = conn.cursor()
  748. global global_lang
  749. ip = ip_check()
  750. if ip_or_user(ip) == 0:
  751. curs.execute(db_change('select data from user_set where name = "lang" and id = ?'), [ip])
  752. rep_data = curs.fetchall()
  753. elif 'lang' in flask.session:
  754. rep_data = [[flask.session['lang']]]
  755. else:
  756. curs.execute(db_change("select data from other where name = 'language'"))
  757. rep_data = curs.fetchall()
  758. if not rep_data or rep_data[0][0] in ('', 'default'):
  759. curs.execute(db_change("select data from other where name = 'language'"))
  760. rep_data = curs.fetchall()
  761. if rep_data:
  762. lang_name = rep_data[0][0]
  763. else:
  764. lang_name = 'en-US'
  765. if lang_name in global_lang:
  766. lang = global_lang[lang_name]
  767. else:
  768. lang_list = os.listdir('lang')
  769. if (lang_name + '.json') in lang_list:
  770. lang = json.loads(open(
  771. os.path.join('lang', lang_name + '.json'),
  772. encoding = 'utf8'
  773. ).read())
  774. global_lang[lang_name] = lang
  775. else:
  776. lang = {}
  777. if data in lang:
  778. if safe == 1:
  779. return lang[data]
  780. else:
  781. return html.escape(lang[data])
  782. return html.escape(data + ' (' + lang_name + ')')
  783. def skin_check(set_n = 0):
  784. curs = conn.cursor()
  785. # 개편 필요?
  786. skin_list = load_skin('tenshi', 1)
  787. skin = skin_list[0]
  788. ip = ip_check()
  789. user_need_skin = ''
  790. if ip_or_user(ip) == 0:
  791. curs.execute(db_change('select data from user_set where name = "skin" and id = ?'), [ip])
  792. skin_exist = curs.fetchall()
  793. if skin_exist:
  794. user_need_skin = skin_exist[0][0]
  795. else:
  796. if 'skin' in flask.session:
  797. user_need_skin = flask.session['skin']
  798. if user_need_skin == '':
  799. curs.execute(db_change('select data from other where name = "skin"'))
  800. skin_exist = curs.fetchall()
  801. if skin_exist:
  802. user_need_skin = skin_exist[0][0]
  803. if user_need_skin != '' and user_need_skin in skin_list:
  804. skin = user_need_skin
  805. if set_n == 0:
  806. return './views/' + skin + '/index.html'
  807. else:
  808. return skin
  809. def wiki_css(data):
  810. # without_DB
  811. data += ['' for _ in range(0, 3 - len(data))]
  812. data_css = ''
  813. data_css_ver = '148'
  814. # Func JS + Defer
  815. data_css += '<script defer src="/views/main_css/js/func/func.js?ver=' + data_css_ver + '"></script>'
  816. data_css += '<script defer src="/views/main_css/js/func/insert_version.js?ver=' + data_css_ver + '"></script>'
  817. data_css += '<script defer src="/views/main_css/js/func/insert_user_info.js?ver=' + data_css_ver + '"></script>'
  818. data_css += '<script defer src="/views/main_css/js/func/insert_version_skin.js?ver=' + data_css_ver + '"></script>'
  819. data_css += '<script defer src="/views/main_css/js/func/insert_http_warning_text.js?ver=' + data_css_ver + '"></script>'
  820. data_css += '<script defer src="/views/main_css/js/func/ie_end_of_life.js?ver=' + data_css_ver + '"></script>'
  821. data_css += '<script defer src="/views/main_css/js/func/shortcut.js?ver=' + data_css_ver + '"></script>'
  822. data_css += '<script defer src="/views/main_css/js/func/render_user_name.js?ver=' + data_css_ver + '"></script>'
  823. data_css += '<script defer src="/views/main_css/js/func/render_simple.js?ver=' + data_css_ver + '"></script>'
  824. data_css += '<script defer src="/views/main_css/js/func/render_send.js?ver=' + data_css_ver + '"></script>'
  825. # Render JS
  826. data_css += '<script src="/views/main_css/js/render/markdown.js?ver=' + data_css_ver + '"></script>'
  827. data_css += '<script src="/views/main_css/js/render/wiki.js?ver=' + data_css_ver + '"></script>'
  828. # Route JS + Defer
  829. data_css += '<script defer src="/views/main_css/js/route/edit.js?ver=' + data_css_ver + '"></script>'
  830. # Route JS
  831. data_css += '<script src="/views/main_css/js/route/thread.js?ver=' + data_css_ver + '"></script>'
  832. # 레거시 일반 JS
  833. data_css += '<script src="/views/main_css/js/load_editor.js?ver=' + data_css_ver + '"></script>'
  834. data_css += '<script src="/views/main_css/js/load_skin_set.js?ver=' + data_css_ver + '"></script>'
  835. # 레거시 렌더러 JS
  836. data_css += '<script src="/views/main_css/js/render_html.js?ver=' + data_css_ver + '"></script>'
  837. data_css += '<script src="/views/main_css/js/render_onmark.js?ver=' + data_css_ver + '"></script>'
  838. data_css += '<script src="/views/main_css/js/render_wiki.js?ver=' + data_css_ver + '"></script>'
  839. # Main CSS
  840. data_css += '<link rel="stylesheet" href="/views/main_css/css/main.css?ver=' + data_css_ver + '">'
  841. # External
  842. data_css += '<link rel="stylesheet" href="https://cdn.jsdelivr.net/gh/highlightjs/cdn-release@11.5.0/build/styles/default.min.css">'
  843. data_css += '<script src="https://cdn.jsdelivr.net/gh/highlightjs/cdn-release@11.5.0/build/highlight.min.js"></script>'
  844. data_css += '<link rel="stylesheet" href="https://cdn.jsdelivr.net/npm/katex@0.15.3/dist/katex.min.css" integrity="sha384-KiWOvVjnN8qwAZbuQyWDIbfCLFhLXNETzBQjA/92pIowpC0d2O3nppDGQVgwd2nB" crossorigin="anonymous">'
  845. data_css += '<script src="https://cdn.jsdelivr.net/npm/katex@0.15.3/dist/katex.min.js" integrity="sha384-0fdwu/T/EQMsQlrHCCHoH10pkPLlKA1jL5dFyUOvB3lfeT2540/2g6YgSi2BL14p" crossorigin="anonymous"></script>'
  846. data = data[0:2] + ['', data_css] + data[2:]
  847. return data
  848. def cut_100(data):
  849. # without_DB
  850. data = data.replace('<pre class="render_content_load" id="render_content_load">', '')
  851. data = data.replace('</pre>', ' ' * 100)
  852. return data[0 : 100]
  853. def wiki_set(num = 1):
  854. curs = conn.cursor()
  855. skin_name = skin_check(1)
  856. data_list = []
  857. curs.execute(db_change('select data from other where name = ?'), ['name'])
  858. db_data = curs.fetchall()
  859. data_list += [db_data[0][0]] if db_data and db_data[0][0] != '' else ['Wiki']
  860. curs.execute(db_change('select data from other where name = "license"'))
  861. db_data = curs.fetchall()
  862. data_list += [db_data[0][0]] if db_data and db_data[0][0] != '' else ['ARR']
  863. data_list += ['', '']
  864. curs.execute(db_change('select data from other where name = "logo" and coverage = ?'), [skin_name])
  865. db_data = curs.fetchall()
  866. if db_data and db_data[0][0] != '':
  867. data_list += [db_data[0][0]]
  868. else:
  869. curs.execute(db_change('select data from other where name = "logo" and coverage = ""'))
  870. db_data = curs.fetchall()
  871. data_list += [db_data[0][0]] if db_data and db_data[0][0] != '' else [data_list[0]]
  872. head_data = ''
  873. curs.execute(db_change("select data from other where name = 'head' and coverage = ''"))
  874. db_data = curs.fetchall()
  875. head_data += db_data[0][0] if db_data and db_data[0][0] != '' else ''
  876. curs.execute(db_change("select data from other where name = 'head' and coverage = ?"), [skin_name])
  877. db_data = curs.fetchall()
  878. head_data += db_data[0][0] if db_data and db_data[0][0] != '' else ''
  879. data_list += [head_data]
  880. return data_list
  881. def wiki_custom():
  882. curs = conn.cursor()
  883. ip = ip_check()
  884. if ip_or_user(ip) == 0:
  885. user_icon = 1
  886. user_name = ip
  887. curs.execute(db_change("select data from user_set where id = ? and name = 'custom_css'"), [ip])
  888. user_head = curs.fetchall()
  889. user_head = user_head[0][0] if user_head else ''
  890. curs.execute(db_change('select data from user_set where name = "email" and id = ?'), [ip])
  891. email = curs.fetchall()
  892. email = email[0][0] if email else ''
  893. if admin_check('all') == 1:
  894. user_admin = '1'
  895. user_acl_list = []
  896. curs.execute(db_change("select data from user_set where id = ? and name = 'acl'"), [ip])
  897. curs.execute(db_change('select acl from alist where name = ?'), [curs.fetchall()[0][0]])
  898. user_acl = curs.fetchall()
  899. for i in user_acl:
  900. user_acl_list += [i[0]]
  901. user_acl_list = user_acl_list if user_acl != [] else '0'
  902. else:
  903. user_admin = '0'
  904. user_acl_list = '0'
  905. curs.execute(db_change("select count(*) from alarm where name = ?"), [ip])
  906. count = curs.fetchall()
  907. user_notice = str(count[0][0]) if count else '0'
  908. else:
  909. user_icon = 0
  910. user_name = load_lang('user')
  911. email = ''
  912. user_admin = '0'
  913. user_acl_list = '0'
  914. user_notice = '0'
  915. user_head = flask.session['head'] if 'head' in flask.session else ''
  916. curs.execute(db_change("select title from rd where title = ? and stop = ''"), ['user:' + ip])
  917. user_topic = '1' if curs.fetchall() else '0'
  918. split_path = flask.request.path.split('/')
  919. if len(split_path) > 1:
  920. split_path = split_path[1]
  921. else:
  922. split_path = 0
  923. return [
  924. '',
  925. '',
  926. user_icon,
  927. user_head,
  928. email,
  929. user_name,
  930. user_admin,
  931. str(ban_check()),
  932. user_notice,
  933. user_acl_list,
  934. ip,
  935. user_topic,
  936. split_path
  937. ]
  938. def load_skin(data = '', set_n = 0, default = 0):
  939. # without_DB
  940. # data -> 가장 앞에 있을 스킨 이름
  941. # set_n == 0 -> 스트링으로 반환
  942. # set_n == 1 -> 리스트로 반환
  943. # default == 0 -> 디폴트 미포함
  944. # default == 1 -> 디폴트 포함
  945. if set_n == 0:
  946. skin_return_data = ''
  947. else:
  948. skin_return_data = []
  949. skin_list_get = os.listdir('views')
  950. if default == 1:
  951. skin_list_get = ['default'] + skin_list_get
  952. for skin_data in skin_list_get:
  953. if skin_data != 'default':
  954. see_data = skin_data
  955. else:
  956. see_data = load_lang('default')
  957. if skin_data != 'main_css':
  958. if set_n == 0:
  959. if skin_data == data:
  960. skin_return_data = '' + \
  961. '<option value="' + skin_data + '">' + \
  962. see_data + \
  963. '</option>' + \
  964. '' + skin_return_data
  965. else:
  966. skin_return_data += '' + \
  967. '<option value="' + skin_data + '">' + \
  968. see_data + \
  969. '</option>' + \
  970. ''
  971. else:
  972. if skin_data == data:
  973. skin_return_data = [skin_data] + skin_return_data
  974. else:
  975. skin_return_data += [skin_data]
  976. return skin_return_data
  977. # Func-markup
  978. def render_set(doc_name = '', doc_data = '', data_type = 'view', data_in = '', doc_acl = ''):
  979. # without_DB
  980. # data_type in ['view', 'raw', 'api_view', 'backlink']
  981. doc_acl = acl_check(doc_name, 'render') if doc_acl == '' else doc_acl
  982. doc_data = 0 if doc_data == None else doc_data
  983. if doc_acl == 1:
  984. return 'HTTP Request 401.3'
  985. else:
  986. if data_type == 'raw':
  987. return doc_data
  988. else:
  989. if doc_data != 0:
  990. get_class_render = class_do_render(conn)
  991. return get_class_render.do_render(doc_name, doc_data, data_type, data_in)
  992. else:
  993. return 'HTTP Request 404'
  994. # Func-request
  995. def send_email(who, title, data):
  996. curs = conn.cursor()
  997. try:
  998. curs.execute(db_change('' + \
  999. 'select name, data from other ' + \
  1000. 'where name = "smtp_email" or name = "smtp_pass" or name = "smtp_server" or name = "smtp_port" or name = "smtp_security"' + \
  1001. ''))
  1002. rep_data = curs.fetchall()
  1003. smtp_email = ''
  1004. smtp_pass = ''
  1005. smtp_server = ''
  1006. smtp_security = ''
  1007. smtp_port = ''
  1008. smtp = ''
  1009. for i in rep_data:
  1010. if i[0] == 'smtp_email':
  1011. smtp_email = i[1]
  1012. elif i[0] == 'smtp_pass':
  1013. smtp_pass = i[1]
  1014. elif i[0] == 'smtp_server':
  1015. smtp_server = i[1]
  1016. elif i[0] == 'smtp_security':
  1017. smtp_security = i[1]
  1018. elif i[0] == 'smtp_port':
  1019. smtp_port = i[1]
  1020. smtp_port = int(smtp_port)
  1021. if smtp_security == 'plain':
  1022. smtp = smtplib.SMTP(smtp_server, smtp_port)
  1023. elif smtp_security == 'starttls':
  1024. smtp = smtplib.SMTP(smtp_server, smtp_port)
  1025. smtp.starttls()
  1026. else:
  1027. # if smtp_security == 'tls':
  1028. smtp = smtplib.SMTP_SSL(smtp_server, smtp_port)
  1029. smtp.login(smtp_email, smtp_pass)
  1030. domain = load_domain()
  1031. wiki_name = wiki_set()[0]
  1032. msg = email.mime.text.MIMEText(data)
  1033. msg['Subject'] = title
  1034. msg['From'] = 'openNAMU <noreply@' + domain + '>'
  1035. msg['To'] = who
  1036. smtp.sendmail('openNAMU@' + domain, who, msg.as_string())
  1037. smtp.quit()
  1038. return 1
  1039. except Exception as e:
  1040. print('----')
  1041. print('Error : email send error')
  1042. print(e)
  1043. return 0
  1044. def captcha_get():
  1045. curs = conn.cursor()
  1046. data = ''
  1047. if ip_or_user() != 0:
  1048. curs.execute(db_change('select data from other where name = "recaptcha"'))
  1049. recaptcha = curs.fetchall()
  1050. curs.execute(db_change('select data from other where name = "sec_re"'))
  1051. sec_re = curs.fetchall()
  1052. curs.execute(db_change('select data from other where name = "recaptcha_ver"'))
  1053. rec_ver = curs.fetchall()
  1054. if recaptcha and recaptcha[0][0] != '' and sec_re and sec_re[0][0] != '':
  1055. if not rec_ver or rec_ver[0][0] == '':
  1056. data += '' + \
  1057. '<script src="https://www.google.com/recaptcha/api.js" async defer></script>' + \
  1058. '<div class="g-recaptcha" data-sitekey="' + recaptcha[0][0] + '"></div>' + \
  1059. '<hr class="main_hr">' + \
  1060. ''
  1061. elif rec_ver[0][0] == 'v3':
  1062. data += '' + \
  1063. '<script src="https://www.google.com/recaptcha/api.js?render=' + recaptcha[0][0] + '"></script>' + \
  1064. '<input type="hidden" id="g-recaptcha" name="g-recaptcha">' + \
  1065. '<script type="text/javascript">' + \
  1066. 'grecaptcha.ready(function() {' + \
  1067. 'grecaptcha.execute(\'' + recaptcha[0][0] + '\', {action: \'homepage\'}).then(function(token) {' + \
  1068. 'document.getElementById(\'g-recaptcha\').value = token;' + \
  1069. '});' + \
  1070. '});' + \
  1071. '</script>' + \
  1072. ''
  1073. else:
  1074. data += '''
  1075. <script src="https://js.hcaptcha.com/1/api.js" async defer></script>
  1076. <div class="h-captcha" data-sitekey="''' + recaptcha[0][0] + '''"></div>
  1077. <hr class="main_hr">
  1078. '''
  1079. return data
  1080. def captcha_post(re_data, num = 1):
  1081. curs = conn.cursor()
  1082. if num == 1 and ip_or_user() != 0:
  1083. curs.execute(db_change('select data from other where name = "sec_re"'))
  1084. sec_re = curs.fetchall()
  1085. curs.execute(db_change('select data from other where name = "recaptcha_ver"'))
  1086. rec_ver = curs.fetchall()
  1087. if captcha_get() != '':
  1088. if not rec_ver or rec_ver[0][0] in ('', 'v3'):
  1089. data = requests.get(
  1090. 'https://www.google.com/recaptcha/api/siteverify' + \
  1091. '?secret=' + sec_re[0][0] + '&response=' + re_data
  1092. )
  1093. if data.status_code == 200:
  1094. json_data = json.loads(data.text)
  1095. if json_data['success'] != True:
  1096. return 1
  1097. else:
  1098. data = requests.get(
  1099. 'https://hcaptcha.com/siteverify' + \
  1100. '?secret=' + sec_re[0][0] + '&response=' + re_data
  1101. )
  1102. if data.status_code == 200:
  1103. json_data = json.loads(data.text)
  1104. if json_data['success'] != True:
  1105. return 1
  1106. return 0
  1107. # Func-user
  1108. def ip_or_user(data = ''):
  1109. # without_DB
  1110. # 1 == ip
  1111. # 0 == reg
  1112. if data == '':
  1113. data = ip_check()
  1114. if re.search(r'(\.|:)', data):
  1115. return 1
  1116. else:
  1117. return 0
  1118. def admin_check(num = None, what = None, name = ''):
  1119. curs = conn.cursor()
  1120. ip = ip_check() if name == '' else name
  1121. time_data = get_time()
  1122. pass_ok = 0
  1123. if ip_or_user(ip) == 0:
  1124. curs.execute(db_change(
  1125. "select data from user_set where id = ? and name = 'acl'"
  1126. ), [ip])
  1127. user_auth = curs.fetchall()
  1128. if user_auth:
  1129. user_auth = user_auth[0][0]
  1130. check = {
  1131. 0 : 'owner',
  1132. 1 : 'ban',
  1133. 2 : 'nothing',
  1134. 3 : 'toron',
  1135. 4 : 'check',
  1136. 5 : 'acl',
  1137. 6 : 'hidel',
  1138. 7 : 'give'
  1139. }
  1140. if not num:
  1141. check = check[0]
  1142. elif num == 'all':
  1143. check = [check[i] for i in check]
  1144. else:
  1145. check = check[num]
  1146. curs.execute(db_change(
  1147. 'select name from alist where name = ? and acl = "owner"'
  1148. ), [user_auth])
  1149. if curs.fetchall():
  1150. pass_ok = 1
  1151. else:
  1152. if num == 'all':
  1153. curs.execute(db_change(
  1154. 'select name from alist where name = ?'
  1155. ), [user_auth])
  1156. else:
  1157. curs.execute(db_change(
  1158. 'select name from alist where name = ? and acl = ?'
  1159. ), [user_auth, check])
  1160. if curs.fetchall():
  1161. pass_ok = 1
  1162. if pass_ok == 1:
  1163. if what:
  1164. curs.execute(db_change(
  1165. "insert into re_admin (who, what, time) values (?, ?, ?)"
  1166. ), [ip, what, time_data])
  1167. conn.commit()
  1168. return 1
  1169. return 0
  1170. def acl_check(name = 'test', tool = '', topic_num = '1'):
  1171. curs = conn.cursor()
  1172. ip = ip_check()
  1173. get_ban = ban_check()
  1174. if tool == '' and name:
  1175. if tool == '' and acl_check(name, 'render') == 1:
  1176. return 1
  1177. user_page = re.search(r"^user:((?:(?!\/).)*)", name)
  1178. if user_page:
  1179. user_page = user_page.group(1)
  1180. if admin_check(5) == 1:
  1181. return 0
  1182. if get_ban == 1:
  1183. return 1
  1184. curs.execute(db_change(
  1185. "select data from acl where title = ? and type = 'decu'"
  1186. ), [name])
  1187. acl_data = curs.fetchall()
  1188. if acl_data:
  1189. if acl_data[0][0] == 'all':
  1190. return 0
  1191. elif acl_data[0][0] == 'user' and not ip_or_user(ip) == 1:
  1192. return 0
  1193. if ip == user_page and not ip_or_user(ip) == 1:
  1194. return 0
  1195. return 1
  1196. elif tool == 'topic':
  1197. curs.execute(db_change("select title from rd where code = ?"), [topic_num])
  1198. name = curs.fetchall()
  1199. name = name[0][0] if name else 'test'
  1200. if tool in ['topic']:
  1201. end = 3
  1202. elif tool in ['render', 'vote', '']:
  1203. end = 2
  1204. else:
  1205. end = 1
  1206. for i in range(0, end):
  1207. if tool == '':
  1208. if i == 0:
  1209. curs.execute(db_change(
  1210. "select data from acl where title = ? and type = 'decu'"
  1211. ), [name])
  1212. '''
  1213. elif i == 1:
  1214. curs.execute(db_change(
  1215. "select plus from html_filter where kind = 'document'"
  1216. ))
  1217. '''
  1218. else:
  1219. curs.execute(db_change(
  1220. 'select data from other where name = "edit"'
  1221. ))
  1222. num = 5
  1223. elif tool == 'topic':
  1224. if i == 0:
  1225. curs.execute(db_change(
  1226. "select acl from rd where code = ?"
  1227. ), [topic_num])
  1228. elif i == 1:
  1229. curs.execute(db_change(
  1230. "select data from acl where title = ? and type = 'dis'"
  1231. ), [name])
  1232. else:
  1233. curs.execute(db_change(
  1234. 'select data from other where name = "discussion"'
  1235. ))
  1236. num = 3
  1237. elif tool == 'topic_view':
  1238. curs.execute(db_change("select set_data from topic_set where thread_code = ? and set_name = 'thread_view_acl'"), [
  1239. topic_num
  1240. ])
  1241. num = 3
  1242. elif tool == 'upload':
  1243. curs.execute(db_change(
  1244. "select data from other where name = 'upload_acl'"
  1245. ))
  1246. num = 5
  1247. elif tool == 'many_upload':
  1248. curs.execute(db_change(
  1249. "select data from other where name = 'many_upload_acl'"
  1250. ))
  1251. num = 5
  1252. elif tool == 'vote':
  1253. if i == 0:
  1254. curs.execute(db_change(
  1255. 'select acl from vote where id = ? and user = ""'
  1256. ), [topic_num])
  1257. else:
  1258. curs.execute(db_change(
  1259. 'select data from other where name = "vote_acl"'
  1260. ))
  1261. num = None
  1262. else:
  1263. # tool == 'render'
  1264. if i == 0:
  1265. curs.execute(db_change(
  1266. "select data from acl where title = ? and type = 'view'"
  1267. ), [name])
  1268. else:
  1269. curs.execute(db_change("select data from other where name = 'all_view_acl'"))
  1270. num = 5
  1271. acl_data = curs.fetchall()
  1272. if not acl_data:
  1273. acl_data = [['normal']]
  1274. elif acl_data and acl_data[0][0] == '':
  1275. acl_data = [['normal']]
  1276. if acl_data[0][0] != 'normal':
  1277. if not acl_data[0][0] in ['ban', 'ban_admin'] and get_ban == 1 and tool != 'render':
  1278. return 1
  1279. if acl_data[0][0] in ['all', 'ban']:
  1280. return 0
  1281. elif acl_data[0][0] == 'user':
  1282. if ip_or_user(ip) != 1:
  1283. return 0
  1284. elif acl_data[0][0] == 'admin':
  1285. if ip_or_user(ip) != 1:
  1286. if admin_check(num) == 1:
  1287. return 0
  1288. elif acl_data[0][0] == '50_edit':
  1289. if ip_or_user(ip) != 1:
  1290. if admin_check(num) == 1:
  1291. return 0
  1292. else:
  1293. curs.execute(db_change(
  1294. "select count(*) from history where ip = ?"
  1295. ), [ip])
  1296. count = curs.fetchall()
  1297. count = count[0][0] if count else 0
  1298. if count >= 50:
  1299. return 0
  1300. elif acl_data[0][0] == 'before':
  1301. if ip_or_user(ip) != 1:
  1302. if admin_check(num) == 1:
  1303. return 0
  1304. curs.execute(db_change(
  1305. "select ip from history where title = ? and ip = ?"
  1306. ), [name, ip])
  1307. if curs.fetchall():
  1308. return 0
  1309. elif acl_data[0][0] == '30_day':
  1310. if ip_or_user(ip) != 1:
  1311. if admin_check(num) == 1:
  1312. return 0
  1313. else:
  1314. curs.execute(db_change(
  1315. "select data from user_set where id = ? and name = 'date'"
  1316. ), [ip])
  1317. user_date = curs.fetchall()[0][0]
  1318. time_1 = datetime.datetime.strptime(
  1319. user_date,
  1320. '%Y-%m-%d %H:%M:%S'
  1321. ) + datetime.timedelta(days = 30)
  1322. time_2 = datetime.datetime.strptime(
  1323. get_time(),
  1324. '%Y-%m-%d %H:%M:%S'
  1325. )
  1326. if time_2 > time_1:
  1327. return 0
  1328. elif acl_data[0][0] == 'email':
  1329. if ip_or_user(ip) != 1:
  1330. if admin_check(num) == 1:
  1331. return 0
  1332. else:
  1333. curs.execute(db_change(
  1334. "select data from user_set where id = ? and name = 'email'"
  1335. ), [ip])
  1336. if curs.fetchall():
  1337. return 0
  1338. elif acl_data[0][0] == 'owner':
  1339. if admin_check() == 1:
  1340. return 0
  1341. elif acl_data[0][0] == 'ban_admin':
  1342. if admin_check(1) == 1 or get_ban == 1:
  1343. return 0
  1344. elif acl_data[0][0] == 'not_all':
  1345. return 1
  1346. return 1
  1347. elif i == (end - 1):
  1348. if get_ban == 1 and tool != 'render':
  1349. return 1
  1350. if tool == 'topic':
  1351. curs.execute(db_change(
  1352. "select title from rd where code = ? and stop != ''"
  1353. ), [topic_num])
  1354. if curs.fetchall():
  1355. if admin_check(3, 'topic (code ' + topic_num + ')') == 1:
  1356. return 0
  1357. else:
  1358. return 1
  1359. else:
  1360. return 0
  1361. else:
  1362. return 0
  1363. return 1
  1364. def ban_check(ip = None, tool = ''):
  1365. curs = conn.cursor()
  1366. ip = ip_check() if not ip else ip
  1367. tool = '' if not tool else tool
  1368. if admin_check(None, None, ip) == 1:
  1369. return 0
  1370. curs.execute(db_change(
  1371. "update rb set ongoing = '' " + \
  1372. "where end < ? and end != '' and ongoing = '1'"
  1373. ), [get_time()])
  1374. conn.commit()
  1375. curs.execute(db_change("" + \
  1376. "select login, block from rb " + \
  1377. "where band = 'regex' and ongoing = '1'" + \
  1378. ""))
  1379. regex_d = curs.fetchall()
  1380. for test_r in regex_d:
  1381. g_regex = re.compile(test_r[1])
  1382. if g_regex.search(ip):
  1383. if tool == 'login':
  1384. if test_r[0] != 'O':
  1385. return 1
  1386. else:
  1387. return 1
  1388. curs.execute(db_change("" + \
  1389. "select login from rb " + \
  1390. "where block = ? and band = '' and ongoing = '1'" + \
  1391. "" + \
  1392. ""), [ip])
  1393. ban_d = curs.fetchall()
  1394. if ban_d:
  1395. if tool == 'login':
  1396. if ban_d[0][0] != 'O':
  1397. return 1
  1398. else:
  1399. return 1
  1400. return 0
  1401. def ip_pas(raw_ip, type_data = 0):
  1402. curs = conn.cursor()
  1403. hide = 0
  1404. end_ip = {}
  1405. return_data = 0
  1406. if type(raw_ip) != type([]):
  1407. get_ip = [raw_ip]
  1408. return_data = 1
  1409. else:
  1410. get_ip = raw_ip
  1411. curs.execute(db_change("select data from other where name = 'ip_view'"))
  1412. ip_view = curs.fetchall()
  1413. ip_view = ip_view[0][0] if ip_view else ''
  1414. ip_view = '' if admin_check(1) == 1 else ip_view
  1415. get_ip = list(set(get_ip))
  1416. for raw_ip in get_ip:
  1417. change_ip = 0
  1418. is_this_ip = ip_or_user(raw_ip)
  1419. if is_this_ip != 0 and ip_view != '':
  1420. ip = re.sub(r'\.([^.]*)\.([^.]*)$', '.*.*', raw_ip)
  1421. ip = re.sub(r':([^:]*):([^:]*)$', ':*:*', ip)
  1422. change_ip = 1
  1423. else:
  1424. ip = raw_ip
  1425. if type_data == 0 and change_ip == 0:
  1426. ip = '<span class="opennamu_ip_render">' + raw_ip + '</span>'
  1427. end_ip[raw_ip] = ip
  1428. if return_data == 1:
  1429. return end_ip[raw_ip]
  1430. else:
  1431. return end_ip
  1432. # Func-edit
  1433. def get_edit_text_bottom():
  1434. curs = conn.cursor()
  1435. b_text = ''
  1436. curs.execute(db_change('select data from other where name = "edit_bottom_text"'))
  1437. db_data= curs.fetchall()
  1438. if db_data and db_data[0][0] != '':
  1439. b_text = '' + \
  1440. '<hr class="main_hr">' + \
  1441. db_data[0][0] + \
  1442. '<hr class="main_hr">' + \
  1443. ''
  1444. return b_text
  1445. def get_edit_text_bottom_check_box():
  1446. curs = conn.cursor()
  1447. cccb_text = ''
  1448. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  1449. sql_d = curs.fetchall()
  1450. if sql_d and sql_d[0][0] != '':
  1451. cccb_text = '' + \
  1452. '<hr class="main_hr">' + \
  1453. '<input type="checkbox" name="copyright_agreement" value="yes"> ' + sql_d[0][0] + \
  1454. '<hr class="main_hr">' + \
  1455. ''
  1456. return cccb_text
  1457. def do_edit_text_bottom_check_box_check(data):
  1458. curs = conn.cursor()
  1459. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  1460. db_data = curs.fetchall()
  1461. if db_data and db_data[0][0] != '':
  1462. if data != 'yes':
  1463. return 1
  1464. return 0
  1465. def do_edit_send_check(data):
  1466. curs = conn.cursor()
  1467. curs.execute(db_change('select data from other where name = "edit_bottom_compulsion"'))
  1468. db_data = curs.fetchall()
  1469. if db_data and db_data[0][0] != '' and data == '':
  1470. return 1
  1471. return 0
  1472. def do_edit_slow_check():
  1473. curs = conn.cursor()
  1474. curs.execute(db_change("select data from other where name = 'slow_edit'"))
  1475. slow_edit = curs.fetchall()
  1476. if slow_edit and slow_edit != '' and admin_check(5) != 1:
  1477. slow_edit = int(number_check(slow_edit[0][0]))
  1478. curs.execute(db_change(
  1479. "select date from history where ip = ? order by date desc limit 1"
  1480. ), [ip_check()])
  1481. last_edit_data = curs.fetchall()
  1482. if last_edit_data:
  1483. last_edit_data = int(re.sub(' |:|-', '', last_edit_data[0][0]))
  1484. now_edit_data = int((
  1485. datetime.datetime.now() - datetime.timedelta(seconds = slow_edit)
  1486. ).strftime("%Y%m%d%H%M%S"))
  1487. if last_edit_data > now_edit_data:
  1488. return 1
  1489. return 0
  1490. def do_edit_filter(data):
  1491. curs = conn.cursor()
  1492. if admin_check(1) != 1:
  1493. curs.execute(db_change(
  1494. "select plus, plus_t from html_filter where kind = 'regex_filter' and plus != ''"
  1495. ))
  1496. for data_list in curs.fetchall():
  1497. match = re.compile(data_list[0], re.I)
  1498. if match.search(data):
  1499. ban_insert(
  1500. ip_check(),
  1501. '0' if data_list[1] == 'X' else data_list[1],
  1502. 'edit filter',
  1503. None,
  1504. 'tool:edit filter'
  1505. )
  1506. return 1
  1507. return 0
  1508. def do_title_length_check(name, check_type = 'document'):
  1509. curs = conn.cursor()
  1510. if check_type == 'topic':
  1511. curs.execute(db_change('select data from other where name = "title_topic_max_length"'))
  1512. db_data = curs.fetchall()
  1513. if db_data and db_data[0][0] != '':
  1514. db_data = int(number_check(db_data[0][0]))
  1515. if len(name) > db_data:
  1516. return 1
  1517. else:
  1518. curs.execute(db_change('select data from other where name = "title_max_length"'))
  1519. db_data = curs.fetchall()
  1520. if db_data and db_data[0][0] != '':
  1521. db_data = int(number_check(db_data[0][0]))
  1522. if len(name) > db_data:
  1523. return 1
  1524. return 0
  1525. # Func-insert
  1526. def do_add_thread(thread_code, thread_data, thread_top = '', thread_id = ''):
  1527. curs = conn.cursor()
  1528. if thread_id == '':
  1529. curs.execute(db_change("select id from topic where code = ? order by id + 0 desc limit 1"), [thread_code])
  1530. db_data = curs.fetchall()
  1531. if db_data:
  1532. thread_id = str(int(db_data[0][0]) + 1)
  1533. else:
  1534. thread_id = '1'
  1535. curs.execute(db_change("insert into topic (id, data, date, ip, block, top, code) values (?, ?, ?, ?, ?, '', ?)"), [
  1536. thread_id,
  1537. thread_data,
  1538. get_time(),
  1539. ip_check(),
  1540. thread_top,
  1541. thread_code
  1542. ])
  1543. conn.commit()
  1544. def do_reload_recent_thread(topic_num, date, name = None, sub = None):
  1545. curs = conn.cursor()
  1546. curs.execute(db_change("select code from rd where code = ?"), [topic_num])
  1547. if curs.fetchall():
  1548. curs.execute(db_change("update rd set date = ? where code = ?"), [
  1549. date,
  1550. topic_num
  1551. ])
  1552. else:
  1553. curs.execute(db_change(
  1554. "insert into rd (title, sub, code, date, band, stop, agree, acl) values (?, ?, ?, ?, '', '', '', '')"
  1555. ), [
  1556. name,
  1557. sub,
  1558. topic_num,
  1559. date
  1560. ])
  1561. conn.commit()
  1562. def add_alarm(who, context):
  1563. curs = conn.cursor()
  1564. curs.execute(db_change(
  1565. 'insert into alarm (name, data, date) values (?, ?, ?)'
  1566. ), [who, context, get_time()])
  1567. conn.commit()
  1568. def add_user(user_name, user_pw, user_email = '', user_encode = ''):
  1569. curs = conn.cursor()
  1570. if user_encode == '':
  1571. user_pw_hash = pw_encode(user_pw)
  1572. curs.execute(db_change('select data from other where name = "encode"'))
  1573. data_encode = curs.fetchall()
  1574. data_encode = data_encode[0][0]
  1575. else:
  1576. user_pw_hash = user_pw
  1577. data_encode = user_encode
  1578. curs.execute(db_change("select id from user_set limit 1"))
  1579. if not curs.fetchall():
  1580. user_auth = 'owner'
  1581. else:
  1582. user_auth = 'user'
  1583. curs.execute(db_change("insert into user_set (id, name, data) values (?, 'pw', ?)"), [
  1584. user_name,
  1585. user_pw_hash
  1586. ])
  1587. curs.execute(db_change("insert into user_set (id, name, data) values (?, 'acl', ?)"), [
  1588. user_name,
  1589. user_auth
  1590. ])
  1591. curs.execute(db_change("insert into user_set (id, name, data) values (?, 'date', ?)"), [
  1592. user_name,
  1593. get_time()
  1594. ])
  1595. curs.execute(db_change("insert into user_set (id, name, data) values (?, 'encode', ?)"), [
  1596. user_name,
  1597. data_encode
  1598. ])
  1599. if user_email != '':
  1600. curs.execute(db_change("insert into user_set (name, id, data) values ('email', ?, ?)"), [
  1601. user_name,
  1602. user_email
  1603. ])
  1604. conn.commit()
  1605. def ua_plus(u_id, u_ip, u_agent, time):
  1606. curs = conn.cursor()
  1607. curs.execute(db_change("select data from other where name = 'ua_get'"))
  1608. rep_data = curs.fetchall()
  1609. if rep_data and rep_data[0][0] != '':
  1610. pass
  1611. else:
  1612. curs.execute(db_change(
  1613. "insert into ua_d (name, ip, ua, today, sub) values (?, ?, ?, ?, '')"
  1614. ), [
  1615. u_id,
  1616. u_ip,
  1617. u_agent,
  1618. time
  1619. ])
  1620. conn.commit()
  1621. def ban_insert(name, end, why, login, blocker, type_d = None):
  1622. curs = conn.cursor()
  1623. now_time = get_time()
  1624. band = type_d if type_d else ''
  1625. curs.execute(db_change(
  1626. "update rb set ongoing = '' where end < ? and end != '' and ongoing = '1'"
  1627. ), [now_time])
  1628. curs.execute(db_change("" + \
  1629. "select block from rb " + \
  1630. "where ((end > ? and end != '') or end = '') and block = ? and " + \
  1631. "band = ? and ongoing = '1'" + \
  1632. ""), [now_time, name, band])
  1633. if curs.fetchall():
  1634. curs.execute(db_change(
  1635. "insert into rb (block, end, today, blocker, why, band) values (?, ?, ?, ?, ?, ?)"
  1636. ), [
  1637. name,
  1638. 'release',
  1639. now_time,
  1640. blocker,
  1641. '',
  1642. band
  1643. ])
  1644. curs.execute(db_change(
  1645. "update rb set ongoing = '' where block = ? and band = ? and ongoing = '1'"
  1646. ), [name, band])
  1647. else:
  1648. login = 'O' if login != '' else ''
  1649. if end != '0':
  1650. end = int(number_check(end))
  1651. time = datetime.datetime.now()
  1652. plus = datetime.timedelta(seconds = end)
  1653. r_time = (time + plus).strftime("%Y-%m-%d %H:%M:%S")
  1654. else:
  1655. r_time = ''
  1656. curs.execute(db_change(
  1657. "insert into rb (block, end, today, blocker, why, band, ongoing, login) " + \
  1658. "values (?, ?, ?, ?, ?, ?, '1', ?)"
  1659. ), [
  1660. name,
  1661. r_time,
  1662. now_time,
  1663. blocker,
  1664. why,
  1665. band,
  1666. login
  1667. ])
  1668. conn.commit()
  1669. def history_plus(title, data, date, ip, send, leng, t_check = '', mode = ''):
  1670. curs = conn.cursor()
  1671. curs.execute(db_change('select data from other where name = "history_recording_off"'))
  1672. db_data = curs.fetchall()
  1673. if db_data and db_data[0][0] != '':
  1674. return 0
  1675. if mode == 'add':
  1676. curs.execute(db_change(
  1677. "select id from history where title = ? order by id + 0 asc limit 1"
  1678. ), [title])
  1679. id_data = curs.fetchall()
  1680. id_data = str(int(id_data[0][0]) - 1) if id_data else '0'
  1681. else:
  1682. curs.execute(db_change(
  1683. "select id from history where title = ? order by id + 0 desc limit 1"
  1684. ), [title])
  1685. id_data = curs.fetchall()
  1686. id_data = str(int(id_data[0][0]) + 1) if id_data else '1'
  1687. mode = mode if not re.search('^user:', title) else 'user'
  1688. send = re.sub(r'\(|\)|<|>', '', send)
  1689. send = send[:128] if len(send) > 128 else send
  1690. send = send + ' (' + t_check + ')' if t_check != '' else send
  1691. if mode != 'add' and mode != 'user':
  1692. curs.execute(db_change("select count(*) from rc where type = 'normal'"))
  1693. if curs.fetchall()[0][0] >= 200:
  1694. curs.execute(db_change(
  1695. "select id, title from rc where type = 'normal' order by date asc limit 1"
  1696. ))
  1697. rc_data = curs.fetchall()
  1698. if rc_data:
  1699. curs.execute(db_change(
  1700. 'delete from rc where id = ? and title = ? and type = "normal"'
  1701. ), [
  1702. rc_data[0][0],
  1703. rc_data[0][1]
  1704. ])
  1705. curs.execute(db_change(
  1706. "insert into rc (id, title, date, type) values (?, ?, ?, 'normal')"
  1707. ), [
  1708. id_data,
  1709. title,
  1710. date
  1711. ])
  1712. if mode != 'add':
  1713. curs.execute(db_change("select count(*) from rc where type = ?"), [mode])
  1714. if curs.fetchall()[0][0] >= 200:
  1715. curs.execute(db_change(
  1716. "select id, title from rc where type = ? order by date asc limit 1"
  1717. ), [mode])
  1718. rc_data = curs.fetchall()
  1719. if rc_data:
  1720. curs.execute(db_change(
  1721. 'delete from rc where id = ? and title = ? and type = ?'
  1722. ), [
  1723. rc_data[0][0],
  1724. rc_data[0][1],
  1725. mode
  1726. ])
  1727. curs.execute(db_change(
  1728. "insert into rc (id, title, date, type) values (?, ?, ?, ?)"
  1729. ), [
  1730. id_data,
  1731. title,
  1732. date,
  1733. mode
  1734. ])
  1735. curs.execute(db_change(
  1736. "insert into history (id, title, data, date, ip, send, leng, hide, type) " + \
  1737. "values (?, ?, ?, ?, ?, ?, ?, '', ?)"
  1738. ), [
  1739. id_data,
  1740. title,
  1741. data,
  1742. date,
  1743. ip,
  1744. send,
  1745. leng,
  1746. mode
  1747. ])
  1748. # Func-error
  1749. def re_error(data):
  1750. curs = conn.cursor()
  1751. conn.commit()
  1752. if data == '/ban':
  1753. if ban_check() == 1:
  1754. end = '<div id="opennamu_get_user_info">' + html.escape(ip_check()) + '</div>'
  1755. else:
  1756. end = '<ul class="inside_ul"><li>' + load_lang('authority_error') + '</li></ul>'
  1757. return easy_minify(flask.render_template(skin_check(),
  1758. imp = [load_lang('error'), wiki_set(), wiki_custom(), wiki_css([0, 0])],
  1759. data = '<h2>' + load_lang('error') + '</h2>' + end,
  1760. menu = 0
  1761. )), 401
  1762. else:
  1763. num = int(number_check(data.replace('/error/', '')))
  1764. if num == 1:
  1765. data = load_lang('no_login_error')
  1766. elif num == 2:
  1767. data = load_lang('no_exist_user_error')
  1768. elif num == 3:
  1769. data = load_lang('authority_error')
  1770. elif num == 4:
  1771. data = load_lang('no_admin_block_error')
  1772. elif num == 5:
  1773. data = load_lang('error_skin_set')
  1774. elif num == 6:
  1775. data = load_lang('same_id_exist_error')
  1776. elif num == 7:
  1777. data = load_lang('long_id_error')
  1778. elif num == 8:
  1779. data = load_lang('id_char_error') + ' <a href="/name_filter">(' + load_lang('id_filter_list') + ')</a>'
  1780. elif num == 9:
  1781. data = load_lang('file_exist_error')
  1782. elif num == 10:
  1783. data = load_lang('password_error')
  1784. elif num == 11:
  1785. data = load_lang('topic_long_error')
  1786. elif num == 12:
  1787. data = load_lang('email_error')
  1788. elif num == 13:
  1789. data = load_lang('recaptcha_error')
  1790. elif num == 14:
  1791. data = load_lang('file_extension_error') + ' <a href="/extension_filter">(' + load_lang('extension_filter_list') + ')</a>'
  1792. elif num == 15:
  1793. data = load_lang('edit_record_error')
  1794. elif num == 16:
  1795. data = load_lang('same_file_error')
  1796. elif num == 17:
  1797. curs.execute(db_change('select data from other where name = "upload"'))
  1798. db_data = curs.fetchall()
  1799. file_max = int(number_check(db_data[0][0])) if db_data and db_data[0][0] != '' else '2'
  1800. data = load_lang('file_capacity_error') + file_max
  1801. elif num == 18:
  1802. data = load_lang('email_send_error')
  1803. elif num == 19:
  1804. data = load_lang('move_error')
  1805. elif num == 20:
  1806. data = load_lang('password_diffrent_error')
  1807. elif num == 21:
  1808. data = load_lang('edit_filter_error')
  1809. elif num == 22:
  1810. data = load_lang('file_name_error')
  1811. elif num == 23:
  1812. data = load_lang('regex_error')
  1813. elif num == 24:
  1814. curs.execute(db_change("select data from other where name = 'slow_edit'"))
  1815. db_data = curs.fetchall()
  1816. db_data = '' if not db_data else db_data[0][0]
  1817. data = load_lang('fast_edit_error') + db_data
  1818. elif num == 25:
  1819. data = load_lang('too_many_dec_error')
  1820. elif num == 26:
  1821. data = load_lang('application_not_found')
  1822. elif num == 27:
  1823. data = load_lang("invalid_password_error")
  1824. elif num == 28:
  1825. data = load_lang('watchlist_overflow_error')
  1826. elif num == 29:
  1827. data = load_lang('copyright_disagreed')
  1828. elif num == 30:
  1829. data = load_lang('ie_wrong_callback')
  1830. elif num == 33:
  1831. data = load_lang('restart_fail_error')
  1832. elif num == 34:
  1833. data = load_lang("update_error") + ' <a href="https://github.com/opennamu/opennamu">(Github)</a>'
  1834. elif num == 35:
  1835. data = load_lang('same_email_error')
  1836. elif num == 36:
  1837. data = load_lang('input_email_error')
  1838. elif num == 37:
  1839. data = load_lang('error_edit_send_request')
  1840. elif num == 38:
  1841. curs.execute(db_change("select data from other where name = 'title_max_length'"))
  1842. db_data = curs.fetchall()
  1843. db_data = '' if not db_data else db_data[0][0]
  1844. data = load_lang('error_title_length_too_long') + db_data
  1845. elif num == 39:
  1846. curs.execute(db_change("select data from other where name = 'title_topic_max_length'"))
  1847. db_data = curs.fetchall()
  1848. db_data = '' if not db_data else db_data[0][0]
  1849. data = load_lang('error_title_length_too_long') + db_data
  1850. elif num == 40:
  1851. curs.execute(db_change("select data from other where name = 'password_min_length'"))
  1852. db_data = curs.fetchall()
  1853. if db_data and db_data[0][0] != '':
  1854. password_min_length = db_data[0][0]
  1855. else:
  1856. password_min_length = ''
  1857. data = load_lang('error_password_length_too_short') + password_min_length
  1858. else:
  1859. data = '???'
  1860. if num == 5:
  1861. if not flask.request.path in ('/main_skin_set', '/change/skin_set/main'):
  1862. if flask.request.path != '/skin_set':
  1863. data += '<br>' + load_lang('error_skin_set_old') + ' <a href="/skin_set">(' + load_lang('go') + ')</a>'
  1864. title = load_lang('skin_set')
  1865. tool = [['change', load_lang('user_setting')]]
  1866. load_skin_set = ''
  1867. else:
  1868. title = load_lang('main_skin_set')
  1869. tool = [['change', load_lang('user_setting')]]
  1870. load_skin_set = '<script>main_css_skin_set();</script>'
  1871. return easy_minify(flask.render_template(skin_check(),
  1872. imp = [title, wiki_set(), wiki_custom(), wiki_css([0, 0])],
  1873. data = '' + \
  1874. '<div id="main_skin_set">' + \
  1875. '<h2>' + load_lang('error') + '</h2>' + \
  1876. '<ul class="inside_ul">' + \
  1877. '<li>' + data + '</a></li>' + \
  1878. '</ul>' + \
  1879. '</div>' + \
  1880. load_skin_set,
  1881. menu = tool
  1882. ))
  1883. else:
  1884. return easy_minify(flask.render_template(skin_check(),
  1885. imp = [load_lang('error'), wiki_set(), wiki_custom(), wiki_css([0, 0])],
  1886. data = '' + \
  1887. '<h2>' + load_lang('error') + '</h2>' + \
  1888. '<ul class="inside_ul">' + \
  1889. '<li>' + data + '</li>' + \
  1890. '</ul>' + \
  1891. '',
  1892. menu = 0
  1893. )), 400