XssForm.jsx 5.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147
  1. /* eslint-disable max-len */
  2. import React from 'react';
  3. import PropTypes from 'prop-types';
  4. import { withTranslation } from 'react-i18next';
  5. import { createSubscribedElement } from '../../UnstatedUtils';
  6. import AppContainer from '../../../services/AppContainer';
  7. class XssForm extends React.Component {
  8. constructor(props) {
  9. super(props);
  10. const { appContainer } = this.props;
  11. this.state = {
  12. // TODO GW-304 fetch correct value
  13. isEnabledXss: false,
  14. // eslint-disable-next-line react/no-unused-state
  15. XssOption: 1,
  16. tagWhiteList: appContainer.config.tagWhiteList,
  17. attrWhiteList: '',
  18. };
  19. this.handleInputChange = this.handleInputChange.bind(this);
  20. this.onClickSubmit = this.onClickSubmit.bind(this);
  21. }
  22. handleInputChange(e) {
  23. const target = e.target;
  24. const value = target.type === 'checkbox' ? target.checked : target.value;
  25. const name = target.name;
  26. this.setState({ [name]: value });
  27. }
  28. async componentDidMount() {
  29. await this.syncXssSettings();
  30. }
  31. async onClickSubmit() {
  32. // TODO GW-303 create apiV3 of update setting
  33. }
  34. async syncXssSettings() {
  35. // TODO GW-304 createApiV3
  36. }
  37. xssOptions() {
  38. const { t } = this.props;
  39. return (
  40. <fieldset className="form-group col-xs-12 my-3" id="xss-hide-when-disabled">
  41. <div className="col-xs-4 radio radio-primary">
  42. <input type="radio" id="xssOption1" name="XssOption" value="1" onChange={this.handleInputChange} />
  43. <label htmlFor="xssOption1">
  44. <p className="font-weight-bold">{ t('markdown_setting.Ignore all tags') }</p>
  45. <div className="m-t-15">
  46. { t('markdown_setting.Ignore all tags desc') }
  47. </div>
  48. </label>
  49. </div>
  50. <div className="col-xs-4 radio radio-primary">
  51. <input type="radio" id="xssOption2" name="XssOption" value="2" onChange={this.handleInputChange} />
  52. <label htmlFor="xssOption2">
  53. <p className="font-weight-bold">{ t('markdown_setting.Recommended setting') }</p>
  54. <div className="m-t-15">
  55. { t('markdown_setting.Tag names') }
  56. {/* TODO GW-304 fetch correct defaultValue */}
  57. <textarea className="form-control xss-list" name="recommendedTags" rows="6" cols="40" readOnly defaultValue="recommendedWhitelist.tags" />
  58. </div>
  59. <div className="m-t-15">
  60. { t('markdown_setting.Tag attributes') }
  61. {/* TODO GW-304 fetch correct defaultValue */}
  62. <textarea className="form-control xss-list" name="recommendedAttrs" rows="6" cols="40" readOnly defaultValue="recommendedWhitelist.attrs" />
  63. </div>
  64. </label>
  65. </div>
  66. <div className="col-xs-4 radio radio-primary">
  67. <input type="radio" id="xssOption3" name="XssOption" value="3" onChange={this.handleInputChange} />
  68. <label htmlFor="xssOption3">
  69. <p className="font-weight-bold">{ t('markdown_setting.Custom Whitelist') }</p>
  70. <div className="m-t-15">
  71. <div className="d-flex justify-content-between">
  72. { t('markdown_setting.Tag names') }
  73. <p id="btn-import-tags" className="btn btn-xs btn-primary">
  74. { t('markdown_setting.import_recommended', 'tags') }
  75. </p>
  76. </div>
  77. <textarea className="form-control xss-list" type="text" name="tagWhiteList" rows="6" cols="40" placeholder="e.g. iframe, script, video..." defaultValue={this.state.tagWhiteList} onChange={this.handleInputChange} />
  78. </div>
  79. <div className="m-t-15">
  80. <div className="d-flex justify-content-between">
  81. { t('markdown_setting.Tag attributes') }
  82. <p id="btn-import-attrs" className="btn btn-xs btn-primary">
  83. { t('markdown_setting.import_recommended', 'attributes') }
  84. </p>
  85. </div>
  86. <textarea className="form-control xss-list" name="attrWhiteList" rows="6" cols="40" placeholder="e.g. src, id, name..." defaultValue={this.state.attrWhiteList} onChange={this.handleInputChange} />
  87. </div>
  88. </label>
  89. </div>
  90. </fieldset>
  91. );
  92. }
  93. render() {
  94. const { t } = this.props;
  95. return (
  96. <React.Fragment>
  97. <form className="row">
  98. <div className="form-group">
  99. <label className="col-xs-4 control-label text-right">
  100. { t('markdown_setting.Enable XSS prevention') }
  101. </label>
  102. <div className="col-xs-5">
  103. <input type="checkbox" name="isEnabledXss" checked={this.state.isEnabledXss} onChange={this.handleInputChange} />
  104. </div>
  105. {this.state.isEnabledXss && this.xssOptions()}
  106. </div>
  107. <div className="form-group my-3">
  108. <div className="col-xs-offset-4 col-xs-5">
  109. <div className="btn btn-primary" onClick={this.onClickSubmit}>{ t('Update') }</div>
  110. </div>
  111. </div>
  112. </form>
  113. </React.Fragment>
  114. );
  115. }
  116. }
  117. const XssFormWrapper = (props) => {
  118. return createSubscribedElement(XssForm, props, [AppContainer]);
  119. };
  120. XssForm.propTypes = {
  121. t: PropTypes.func.isRequired, // i18next
  122. appContainer: PropTypes.instanceOf(AppContainer).isRequired,
  123. };
  124. export default withTranslation()(XssFormWrapper);