markdown.html 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243
  1. {% extends '../layout/admin.html' %}
  2. {% block html_title %}{{ customTitle(t('Markdown settings')) }}
  3. · {{ path }}{% endblock %}
  4. {% block content_header %}
  5. <div class="header-wrap">
  6. <header id="page-header">
  7. <h1 class="title" id="">{{ t('Markdown settings') }}</h1>
  8. </header>
  9. </div>
  10. {% endblock %}
  11. {% block content_main %}
  12. <div class="content-main">
  13. <div class="row">
  14. <div class="col-md-3">
  15. {% include './widget/menu.html' with {current: 'markdown'} %}
  16. </div>
  17. <div class="col-md-9">
  18. {% set smessage = req.flash('successMessage') %}
  19. {% if smessage.length %}
  20. <div class="alert alert-success">
  21. {% for e in smessage %}
  22. {{ e }}<br>
  23. {% endfor %}
  24. </div>
  25. {% endif %}
  26. {% set emessage = req.flash('errorMessage') %}
  27. {% if emessage.length %}
  28. <div class="alert alert-danger">
  29. {% for e in emessage %}
  30. {{ e }}<br>
  31. {% endfor %}
  32. </div>
  33. {% endif %}
  34. <form action="/admin/markdown/lineBreaksSetting" method="post" class="form-horizontal" id="markdownSettingForm" role="form">
  35. <fieldset>
  36. <legend>{{ t('Markdown settings') }}</legend>
  37. <p class="well">{{ t("markdown_setting.markdown_rendering") }}</p>
  38. <div class="form-group">
  39. <label for="markdownSetting[markdown:isEnabledLinebreaks]" class="col-xs-4 control-label">
  40. {{ t('markdown_setting.Enable Line Break') }}
  41. </label>
  42. <div class="col-xs-5">
  43. <div class="btn-group btn-toggle" data-toggle="buttons">
  44. <label class="btn btn-default btn-rounded btn-outline {% if markdownSetting['markdown:isEnabledLinebreaks'] %}active{% endif %}" data-active-class="primary">
  45. <input name="markdownSetting[markdown:isEnabledLinebreaks]" value="true" type="radio"
  46. {% if true === markdownSetting['markdown:isEnabledLinebreaks'] %}checked{% endif %}> ON
  47. </label>
  48. <label class="btn btn-default btn-rounded btn-outline {% if !markdownSetting['markdown:isEnabledLinebreaks'] %}active{% endif %}" data-active-class="default">
  49. <input name="markdownSetting[markdown:isEnabledLinebreaks]" value="false" type="radio"
  50. {% if !markdownSetting['markdown:isEnabledLinebreaks'] %}checked{% endif %}> OFF
  51. </label>
  52. </div>
  53. <p class="help-block">{{ t("markdown_setting.Enable Line Break desc") }}
  54. </p>
  55. </div>
  56. </div>
  57. <div class="form-group">
  58. <label for="markdownSetting[markdown:isEnabledLinebreaksInComments]" class="col-xs-4 control-label">
  59. (TBD)<br>{{ t("markdown_setting.Enable Line Break for comment") }}
  60. </label>
  61. <div class="col-xs-5">
  62. <div class="btn-group btn-toggle" data-toggle="buttons">
  63. <label class="btn btn-default btn-rounded btn-outline {% if markdownSetting['markdown:isEnabledLinebreaksInComments'] %}active{% endif %}" data-active-class="primary">
  64. <input name="markdownSetting[markdown:isEnabledLinebreaksInComments]" value="true" type="radio"
  65. {% if true === markdownSetting['markdown:isEnabledLinebreaksInComments'] %}checked{% endif %}> ON
  66. </label>
  67. <label class="btn btn-default btn-rounded btn-outline {% if !markdownSetting['markdown:isEnabledLinebreaksInComments'] %}active{% endif %}" data-active-class="default">
  68. <input name="markdownSetting[markdown:isEnabledLinebreaksInComments]" value="false" type="radio"
  69. {% if !markdownSetting['markdown:isEnabledLinebreaksInComments'] %}checked{% endif %}> OFF
  70. </label>
  71. </div>
  72. <p class="help-block">{{ t("markdown_setting.Enable Line Break for comment desc") }}<br>{{ t("markdown_setting.TBD") }}</p>
  73. </div>
  74. </div>
  75. {% set nameForIsXssEnabled = "settingForm[security:xss-prevent:isEnabled]" %}
  76. <label for="markdownSetting[markdown:isPreventXss]" class="col-xs-4 control-label">
  77. {{ t('markdown_setting.Prevent XSS(Cross Site Scripting)') }}
  78. </label>
  79. <div class="col-xs-5">
  80. <div class="form-group">
  81. <div class="col-xs-6">
  82. <div class="btn-group btn-toggle" data-toggle="buttons">
  83. <label class="btn btn-default btn-rounded btn-outline" data-active-class="primary">
  84. <input name="{{nameForIsXssEnabled}}" value="true" type="radio"
  85. {% if true === isXssEnabled %}checked{% endif %}> ON
  86. </label>
  87. <label class="btn btn-default btn-rounded btn-outline {% if !isGoogleEnabled %}active{% endif %}" data-active-class="default">
  88. <input name="{{nameForIsXssEnabled}}" value="false" type="radio"
  89. {% if !isXssEnabled %}checked{% endif %}> OFF
  90. </label>
  91. </div>
  92. </div>
  93. </div>
  94. <fieldset id="xss-hide-when-disabled" {%if !isGoogleEnabled %}style="display: none;"{% endif %}>
  95. <p class="help-block">{{ t("markdown_setting.Prevent XSS(Cross Site Scripting)desc") }}<br>
  96. {{ t("markdown_setting.Prevent XSS(Cross Site Scripting)desc2") }}</p>
  97. {% set nameForIsXss2Enabled = "settingForm[security:xss2-prevent:isEnabled]" %}
  98. <div>
  99. <div class="form-group">
  100. <div class="col-xs-6">
  101. <div class="btn-group btn-toggle" data-toggle="buttons">
  102. <div>
  103. <label data-active-class="primary">
  104. <input name="{{nameForIsXss2Enabled}}" value="1" type="radio"
  105. {% if !isXssEnabled %}checked{% endif %}>
  106. {{ t('markdown_setting.Ignore all') }}
  107. </label>
  108. </div>
  109. <div>
  110. <label data-active-class="primary">
  111. <input name="{{nameForIsXss2Enabled}}" value="2" type="radio"
  112. {% if true === isXssEnabled %}checked{% endif %}>
  113. {{ t('markdown_setting.Recommended setting') }}<br>
  114. </label>
  115. </div>
  116. <div>
  117. <label data-active-class="primary">
  118. <input name="{{nameForIsXss2Enabled}}" value="3" type="radio"
  119. {% if true === isXssEnabled %}checked{% endif %}>
  120. {{ t('markdown_setting.Whitelist setting') }}
  121. </label>
  122. </div>
  123. </div>
  124. </div>
  125. </div>
  126. <fieldset id="xss2-hide-when-disabled" {%if !isGoogleEnabled %}style="display: none;"{% endif %}>
  127. <form>
  128. <div>
  129. {{ t('markdown_setting.tag') }}
  130. <div>
  131. <textarea type="text" name="tag" rows="5" cols="40" value="" readonly></textarea>
  132. </div>
  133. </div>
  134. <div>
  135. {{ t('markdown_setting.tag attribute') }}
  136. <div>
  137. <textarea name="tagattribute" rows="5" cols="40" value="" readonly></textarea>
  138. </div>
  139. </div>
  140. </form>
  141. </fieldset>
  142. <fieldset id="xss3-hide-when-disabled" {%if !isGoogleEnabled %}style="display: none;"{% endif %}>
  143. <form>
  144. <div>
  145. {{ t('markdown_setting.tag') }}
  146. <div>
  147. <textarea type="text" name="tag" rows="5" cols="40" value="" placeholder="span, iframe, input"></textarea>
  148. <input type="button" value="おすすめ設定をインポート" />
  149. </div>
  150. </div>
  151. <div>
  152. {{ t('markdown_setting.tag attribute') }}
  153. <div>
  154. <textarea name="tagattribute" rows="5" cols="40" value="" placeholder="class, type, placeholder, name, required"></textarea>
  155. <input type="button" value="おすすめ設定をインポート" />
  156. </div>
  157. </div>
  158. </form>
  159. </fieldset>
  160. </div>
  161. </div>
  162. </fieldset>
  163. </form>
  164. <script>
  165. $('input[name="settingForm[security:xss-prevent:isEnabled]"]').change(function() {
  166. const isEnabled = ($(this).val() === "true");
  167. if (isEnabled) {
  168. $('#xss-hide-when-disabled').show(400);
  169. }
  170. else {
  171. $('#xss-hide-when-disabled').hide(400);
  172. }
  173. });
  174. $('input[name="settingForm[security:xss2-prevent:isEnabled]"]').change(function() {
  175. const isEnabled = ($(this).val() === "1");
  176. const isEnabled2 = ($(this).val() === "2");
  177. if (isEnabled) {
  178. $('#xss2-hide-when-disabled').hide(400);
  179. $('#xss3-hide-when-disabled').hide(400);
  180. }
  181. else if (isEnabled2) {
  182. $('#xss2-hide-when-disabled').show(400);
  183. $('#xss3-hide-when-disabled').hide(400);
  184. }
  185. else {
  186. $('#xss3-hide-when-disabled').show(400);
  187. $('#xss2-hide-when-disabled').hide(400);
  188. }
  189. });
  190. </script>
  191. <div class="form-group">
  192. <div class="col-xs-offset-4 col-xs-5">
  193. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  194. <button type="submit" class="btn btn-primary">{{ t("Update") }}</button>
  195. </div>
  196. </div>
  197. </fieldset>
  198. </form>
  199. </div>
  200. </div>
  201. </div>
  202. {% endblock content_main %}
  203. {% block content_footer %}
  204. {% endblock content_footer %}