XssForm.jsx 5.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163
  1. import React from 'react';
  2. import PropTypes from 'prop-types';
  3. import { withTranslation } from 'react-i18next';
  4. import loggerFactory from '@alias/logger';
  5. import { createSubscribedElement } from '../../UnstatedUtils';
  6. import { toastSuccess, toastError } from '../../../util/apiNotification';
  7. import { tags, attrs } from '../../../../../lib/service/xss/recommended-whitelist';
  8. import AppContainer from '../../../services/AppContainer';
  9. import AdminMarkDownContainer from '../../../services/AdminMarkDownContainer';
  10. import WhiteListInput from './WhiteListInput';
  11. const logger = loggerFactory('growi:importer');
  12. class XssForm extends React.Component {
  13. constructor(props) {
  14. super(props);
  15. this.onClickSubmit = this.onClickSubmit.bind(this);
  16. }
  17. async onClickSubmit() {
  18. const { t } = this.props;
  19. try {
  20. await this.props.adminMarkDownContainer.updateXssSetting();
  21. toastSuccess(t('toaster:update_successed', { target: 'XSS' }));
  22. }
  23. catch (err) {
  24. toastError(err);
  25. logger.error(err);
  26. }
  27. }
  28. xssOptions() {
  29. const { t, adminMarkDownContainer } = this.props;
  30. const { xssOption } = adminMarkDownContainer.state;
  31. return (
  32. <fieldset className="row col-xs-12 my-3">
  33. <div className="col-xs-4 radio radio-primary">
  34. <input
  35. type="radio"
  36. id="xssOption1"
  37. name="XssOption"
  38. checked={xssOption === 1}
  39. onChange={() => { adminMarkDownContainer.setState({ xssOption: 1 }) }}
  40. />
  41. <label htmlFor="xssOption1">
  42. <p className="font-weight-bold">{t('markdown_setting:xss_options.ignore_all_tags')}</p>
  43. <div className="m-t-15">
  44. {t('markdown_setting:xss_options.ignore_all_tags_desc')}
  45. </div>
  46. </label>
  47. </div>
  48. <div className="col-xs-4 radio radio-primary">
  49. <input
  50. type="radio"
  51. id="xssOption2"
  52. name="XssOption"
  53. checked={xssOption === 2}
  54. onChange={() => { adminMarkDownContainer.setState({ xssOption: 2 }) }}
  55. />
  56. <label htmlFor="xssOption2">
  57. <p className="font-weight-bold">{t('markdown_setting:xss_options.recommended_setting')}</p>
  58. <div className="m-t-15">
  59. <div className="d-flex justify-content-between">
  60. {t('markdown_setting:xss_options.tag_names')}
  61. </div>
  62. <textarea
  63. className="form-control xss-list"
  64. name="recommendedTags"
  65. rows="6"
  66. cols="40"
  67. readOnly
  68. defaultValue={tags}
  69. />
  70. </div>
  71. <div className="m-t-15">
  72. <div className="d-flex justify-content-between">
  73. {t('markdown_setting:xss_options.tag_attributes')}
  74. </div>
  75. <textarea
  76. className="form-control xss-list"
  77. name="recommendedAttrs"
  78. rows="6"
  79. cols="40"
  80. readOnly
  81. defaultValue={attrs}
  82. />
  83. </div>
  84. </label>
  85. </div>
  86. <div className="col-xs-4 radio radio-primary">
  87. <input
  88. type="radio"
  89. id="xssOption3"
  90. name="XssOption"
  91. checked={xssOption === 3}
  92. onChange={() => { adminMarkDownContainer.setState({ xssOption: 3 }) }}
  93. />
  94. <label htmlFor="xssOption3">
  95. <p className="font-weight-bold">{t('markdown_setting:xss_options.custom_whitelist')}</p>
  96. <WhiteListInput />
  97. </label>
  98. </div>
  99. </fieldset>
  100. );
  101. }
  102. render() {
  103. const { t, adminMarkDownContainer } = this.props;
  104. const { isEnabledXss } = adminMarkDownContainer.state;
  105. return (
  106. <React.Fragment>
  107. <form className="row">
  108. <div className="form-group">
  109. <div className="col-xs-offset-4 col-xs-4 text-left">
  110. <div className="checkbox checkbox-success">
  111. <input
  112. type="checkbox"
  113. id="XssEnable"
  114. className="form-check-input"
  115. name="isEnabledXss"
  116. checked={isEnabledXss}
  117. onChange={adminMarkDownContainer.switchEnableXss}
  118. />
  119. <label htmlFor="XssEnable">
  120. {t('markdown_setting:xss_options.enable_xss_prevention')}
  121. </label>
  122. </div>
  123. </div>
  124. {isEnabledXss && this.xssOptions()}
  125. </div>
  126. <div className="form-group my-3">
  127. <div className="col-xs-offset-4 col-xs-5">
  128. <div className="btn btn-primary" onClick={this.onClickSubmit} disabled={adminMarkDownContainer.state.retrieveError != null}> {t('Update')}</div>
  129. </div>
  130. </div>
  131. </form>
  132. </React.Fragment>
  133. );
  134. }
  135. }
  136. const XssFormWrapper = (props) => {
  137. return createSubscribedElement(XssForm, props, [AppContainer, AdminMarkDownContainer]);
  138. };
  139. XssForm.propTypes = {
  140. t: PropTypes.func.isRequired, // i18next
  141. appContainer: PropTypes.instanceOf(AppContainer).isRequired,
  142. adminMarkDownContainer: PropTypes.instanceOf(AdminMarkDownContainer).isRequired,
  143. };
  144. export default withTranslation()(XssFormWrapper);