SearchJspBean.java

  1. /*
  2.  * Copyright (c) 2002-2022, City of Paris
  3.  * All rights reserved.
  4.  *
  5.  * Redistribution and use in source and binary forms, with or without
  6.  * modification, are permitted provided that the following conditions
  7.  * are met:
  8.  *
  9.  *  1. Redistributions of source code must retain the above copyright notice
  10.  *     and the following disclaimer.
  11.  *
  12.  *  2. Redistributions in binary form must reproduce the above copyright notice
  13.  *     and the following disclaimer in the documentation and/or other materials
  14.  *     provided with the distribution.
  15.  *
  16.  *  3. Neither the name of 'Mairie de Paris' nor 'Lutece' nor the names of its
  17.  *     contributors may be used to endorse or promote products derived from
  18.  *     this software without specific prior written permission.
  19.  *
  20.  * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
  21.  * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  22.  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  23.  * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDERS OR CONTRIBUTORS BE
  24.  * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
  25.  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
  26.  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
  27.  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
  28.  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  29.  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
  30.  * POSSIBILITY OF SUCH DAMAGE.
  31.  *
  32.  * License 1.0
  33.  */
  34. package fr.paris.lutece.portal.web.search;

  35. import fr.paris.lutece.portal.business.rbac.RBAC;
  36. import fr.paris.lutece.portal.business.search.SearchParameterHome;
  37. import fr.paris.lutece.portal.service.admin.AccessDeniedException;
  38. import fr.paris.lutece.portal.service.message.AdminMessage;
  39. import fr.paris.lutece.portal.service.message.AdminMessageService;
  40. import fr.paris.lutece.portal.service.rbac.RBACService;
  41. import fr.paris.lutece.portal.service.search.SearchResourceIdService;
  42. import fr.paris.lutece.portal.service.search.SearchService;
  43. import fr.paris.lutece.portal.service.security.SecurityTokenService;
  44. import fr.paris.lutece.portal.web.admin.AdminFeaturesPageJspBean;
  45. import fr.paris.lutece.portal.web.constants.Messages;
  46. import fr.paris.lutece.portal.web.dashboard.AdminDashboardJspBean;
  47. import fr.paris.lutece.util.ReferenceItem;

  48. import org.apache.commons.lang3.StringUtils;

  49. import javax.servlet.http.HttpServletRequest;

  50. /**
  51.  * This class provides the user interface to manage app search features ( manage filters )
  52.  */
  53. public class SearchJspBean extends AdminFeaturesPageJspBean
  54. {
  55.     /** Unique name for the right to manage search parameters */
  56.     public static final String RIGHT_SEARCH_MANAGEMENT = "CORE_SEARCH_MANAGEMENT";

  57.     /**
  58.      * Serial version UID
  59.      */
  60.     private static final long serialVersionUID = -2095709285081142039L;

  61.     // //////////////////////////////////////////////////////////////////////////
  62.     // Constants
  63.     private static final String EMPTY_STRING = "";

  64.     // Jsp url
  65.     private static final String ANCHOR_ADMIN_DASHBOARDS = "search";

  66.     // Parameters
  67.     private static final String PARAMETER_CANCEL = "cancel";
  68.     private static final String PARAMETER_DATE_FILTER = "date_filter";
  69.     private static final String PARAMETER_DEFAULT_OPERATOR = "default_operator";
  70.     private static final String PARAMETER_HELP_MESSAGE = "help_message";
  71.     private static final String PARAMETER_TAG_FILTER = "tag_filter";
  72.     private static final String PARAMETER_TYPE_FILTER = "type_filter";

  73.     /**
  74.      * Processes the data capture form of advanced parameters
  75.      *
  76.      * @param request
  77.      *            the HTTP request
  78.      * @return the jsp URL of the process result
  79.      * @throws AccessDeniedException
  80.      *             if permission to manage advanced parameters on search has not been granted to the user
  81.      */
  82.     public String doModifyAdvancedParameters( HttpServletRequest request ) throws AccessDeniedException
  83.     {
  84.         if ( !RBACService.isAuthorized( SearchService.RESOURCE_TYPE, RBAC.WILDCARD_RESOURCES_ID, SearchResourceIdService.PERMISSION_MANAGE_ADVANCED_PARAMETERS,
  85.                 getUser( ) ) )
  86.         {
  87.             throw new AccessDeniedException(
  88.                     "User " + getUser( ) + " is not authorized to permission " + SearchResourceIdService.PERMISSION_MANAGE_ADVANCED_PARAMETERS );
  89.         }
  90.         if ( !SecurityTokenService.getInstance( ).validate( request, AdminDashboardJspBean.TEMPLATE_MANAGE_DASHBOARDS ) )
  91.         {
  92.             throw new AccessDeniedException( ERROR_INVALID_TOKEN );
  93.         }

  94.         if ( request.getParameter( PARAMETER_CANCEL ) == null )
  95.         {
  96.             String strTypeFilter = request.getParameter( PARAMETER_TYPE_FILTER );
  97.             String strDefaultOperator = request.getParameter( PARAMETER_DEFAULT_OPERATOR );
  98.             String strHelpMessage = request.getParameter( PARAMETER_HELP_MESSAGE );
  99.             String strDateFilter = request.getParameter( PARAMETER_DATE_FILTER );
  100.             String strTagFilter = request.getParameter( PARAMETER_TAG_FILTER );

  101.             // mandatory field
  102.             if ( StringUtils.isBlank( strTypeFilter ) || StringUtils.isBlank( strDefaultOperator ) || StringUtils.isBlank( strDateFilter )
  103.                     || StringUtils.isBlank( strTagFilter ) )
  104.             {
  105.                 return AdminMessageService.getMessageUrl( request, Messages.MANDATORY_FIELDS, AdminMessage.TYPE_STOP );
  106.             }

  107.             ReferenceItem param = new ReferenceItem( );
  108.             param.setCode( PARAMETER_TYPE_FILTER );
  109.             param.setName( strTypeFilter );
  110.             SearchParameterHome.update( param );

  111.             param = new ReferenceItem( );
  112.             param.setCode( PARAMETER_DEFAULT_OPERATOR );
  113.             param.setName( strDefaultOperator );
  114.             SearchParameterHome.update( param );

  115.             param = new ReferenceItem( );
  116.             param.setCode( PARAMETER_HELP_MESSAGE );
  117.             param.setName( StringUtils.isNotBlank( strHelpMessage ) ? strHelpMessage : EMPTY_STRING );
  118.             SearchParameterHome.update( param );

  119.             param = new ReferenceItem( );
  120.             param.setCode( PARAMETER_DATE_FILTER );
  121.             param.setName( strDateFilter );
  122.             SearchParameterHome.update( param );

  123.             param = new ReferenceItem( );
  124.             param.setCode( PARAMETER_TAG_FILTER );
  125.             param.setName( strTagFilter );
  126.             SearchParameterHome.update( param );
  127.         }

  128.         return getAdminDashboardsUrl( request, ANCHOR_ADMIN_DASHBOARDS );
  129.     }
  130. }