1 <?php rcs_id('$Id: Request.php,v 1.11 2002-02-01 20:23:38 dairiki Exp $');
3 // FIXME: write log entry.
8 $this->_fix_magic_quotes_gpc();
9 $this->_fix_multipart_form_data();
11 switch($this->get('REQUEST_METHOD')) {
14 $this->args = &$GLOBALS['HTTP_GET_VARS'];
17 $this->args = &$GLOBALS['HTTP_POST_VARS'];
20 $this->args = array();
24 $this->session = new Request_SessionVars;
25 $this->cookies = new Request_CookieVars;
28 $this->_log_entry = & new Request_AccessLogEntry($this,
35 $vars = &$GLOBALS['HTTP_SERVER_VARS'];
37 if (isset($vars[$key]))
42 $addr = $vars['REMOTE_ADDR'];
43 if (defined('ENABLE_REVERSE_DNS') && ENABLE_REVERSE_DNS)
44 return $vars[$key] = gethostbyaddr($addr);
52 function getArg($key) {
53 if (isset($this->args[$key]))
54 return $this->args[$key];
62 function setArg($key, $val) {
64 unset($this->args[$key]);
66 $this->args[$key] = $val;
70 function getURLtoSelf($args = false) {
71 $get_args = $this->args;
73 $get_args = array_merge($get_args, $args);
75 $pagename = $get_args['pagename'];
76 unset ($get_args['pagename']);
77 if ($get_args['action'] == 'browse')
78 unset($get_args['action']);
80 return WikiURL($pagename, $get_args);
85 return $this->get("REQUEST_METHOD") == "POST";
88 function redirect($url) {
89 header("Location: $url");
90 if (isset($this->_log_entry))
91 $this->_log_entry->setStatus(302);
94 function setStatus($status) {
95 if (preg_match('|^HTTP/.*?\s(\d+)|i', $status, $m)) {
100 $status = (integer) $status;
101 $reasons = array('200' => 'OK',
103 '400' => 'Bad Request',
104 '401' => 'Unauthorized',
105 '403' => 'Forbidden',
106 '404' => 'Not Found');
107 header(sprintf("HTTP/1.0 %d %s", $status, $reason[$status]));
110 if (isset($this->_log_entry))
111 $this->_log_entry->setStatus($status);
114 function compress_output() {
115 if (function_exists('ob_gzhandler')) {
116 ob_start('ob_gzhandler');
117 $this->_is_compressing_output = true;
122 if (!empty($this->_is_compressing_output))
127 function getSessionVar($key) {
128 return $this->session->get($key);
130 function setSessionVar($key, $val) {
131 return $this->session->set($key, $val);
133 function deleteSessionVar($key) {
134 return $this->session->delete($key);
137 function getCookieVar($key) {
138 return $this->cookies->get($key);
140 function setCookieVar($key, $val, $lifetime_in_days = false) {
141 return $this->cookies->set($key, $val, $lifetime_in_days);
143 function deleteCookieVar($key) {
144 return $this->cookies->delete($key);
147 function getUploadedFile($key) {
148 return Request_UploadedFile::getUploadedFile($key);
152 function _fix_magic_quotes_gpc() {
153 $needs_fix = array('HTTP_POST_VARS',
160 if (get_magic_quotes_gpc()) {
161 foreach ($needs_fix as $vars)
162 $this->_stripslashes($GLOBALS[$vars]);
167 function _stripslashes(&$var) {
168 if (is_array($var)) {
169 foreach ($var as $key => $val)
170 $this->_stripslashes($var[$key]);
172 elseif (is_string($var))
173 $var = stripslashes($var);
176 function _fix_multipart_form_data () {
177 if (preg_match('|^multipart/form-data|', $this->get('CONTENT_TYPE')))
178 $this->_strip_leading_nl($GLOBALS['HTTP_POST_VARS']);
181 function _strip_leading_nl(&$var) {
182 if (is_array($var)) {
183 foreach ($var as $key => $val)
184 $this->_strip_leading_nl($var[$key]);
186 elseif (is_string($var))
187 $var = preg_replace('|^\r?\n?|', '', $var);
191 class Request_SessionVars {
192 function Request_SessionVars() {
193 // HACK: this allows one to use the back button to get back
194 // to a edit page without losing one's changes.
195 session_cache_limiter('private');
201 $vars = &$GLOBALS['HTTP_SESSION_VARS'];
202 if (isset($vars[$key]))
207 function set($key, $val) {
208 $vars = &$GLOBALS['HTTP_SESSION_VARS'];
209 if (ini_get('register_globals')) {
210 // This is funky but necessary, at least in some PHP's
211 $GLOBALS[$key] = $val;
214 session_register($key);
217 function delete($key) {
218 $vars = &$GLOBALS['HTTP_SESSION_VARS'];
219 if (ini_get('register_globals'))
220 unset($GLOBALS[$key]);
222 session_unregister($key);
226 class Request_CookieVars {
229 $vars = &$GLOBALS['HTTP_COOKIE_VARS'];
230 if (isset($vars[$key])) {
231 @$val = unserialize($vars[$key]);
238 function set($key, $val, $persist_days = false) {
239 $vars = &$GLOBALS['HTTP_COOKIE_VARS'];
241 if (is_numeric($persist_days)) {
242 $expires = time() + (24 * 3600) * $persist_days;
248 $packedval = serialize($val);
249 $vars[$key] = $packedval;
250 setcookie($key, $packedval, $expires, '/');
253 function delete($key) {
254 $vars = &$GLOBALS['HTTP_COOKIE_VARS'];
260 class Request_UploadedFile {
261 function getUploadedFile($postname) {
262 global $HTTP_POST_FILES;
264 if (!isset($HTTP_POST_FILES[$postname]))
267 $fileinfo = &$HTTP_POST_FILES[$postname];
268 if (!is_uploaded_file($fileinfo['tmp_name']))
269 return false; // possible malicious attack.
271 return new Request_UploadedFile($fileinfo);
274 function Request_UploadedFile($fileinfo) {
275 $this->_info = $fileinfo;
279 return $this->_info['size'];
283 return $this->_info['name'];
287 return $this->_info['type'];
291 if ( ($fd = fopen($this->_info['tmp_name'], "rb")) ) {
292 if ($this->getSize() < filesize($this->_info['tmp_name'])) {
293 // FIXME: Some PHP's (or is it some browsers?) put
294 // HTTP/MIME headers in the file body, some don't.
296 // At least, I think that's the case. I know I used
297 // to need this code, now I don't.
299 // This code is more-or-less untested currently.
301 // Dump HTTP headers.
302 while ( ($header = fgets($fd, 4096)) ) {
303 if (trim($header) == '') {
306 else if (!preg_match('/^content-(length|type):/i', $header)) {
316 function getContents() {
318 $data = fread($fd, $this->getSize());
325 * Create NCSA "combined" log entry for current request.
327 class Request_AccessLogEntry
332 * The log entry will be automatically appended to the log file
333 * when the current request terminates.
335 * If you want to modify a Request_AccessLogEntry before it gets
336 * written (e.g. via the setStatus and setSize methods) you should
337 * use an '&' on the constructor, so that you're working with the
338 * original (rather than a copy) object.
341 * $log_entry = & new Request_AccessLogEntry($req, "/tmp/wiki_access_log");
342 * $log_entry->setStatus(401);
346 * @param $request object Request object for current request.
347 * @param $logfile string Log file name.
349 function Request_AccessLogEntry (&$request, $logfile) {
350 $this->logfile = $logfile;
352 $this->host = $request->get('REMOTE_HOST');
353 $this->ident = $request->get('REMOTE_IDENT');
356 $this->user = '-'; // FIXME: get logged-in user name
357 $this->time = time();
358 $this->request = join(' ', array($request->get('REQUEST_METHOD'),
359 $request->get('REQUEST_URI'),
360 $request->get('SERVER_PROTOCOL')));
363 $this->referer = (string) $request->get('HTTP_REFERER');
364 $this->user_agent = (string) $request->get('HTTP_USER_AGENT');
366 global $Request_AccessLogEntry_entries;
367 if (!isset($Request_AccessLogEntry_entries)) {
368 register_shutdown_function("Request_AccessLogEntry_shutdown_function");
370 $Request_AccessLogEntry_entries[] = &$this;
374 * Set result status code.
376 * @param $status integer HTTP status code.
378 function setStatus ($status) {
379 $this->status = $status;
385 * @param $size integer
387 function setSize ($size) {
392 * Get time zone offset.
394 * This is a static member function.
396 * @param $time integer Unix timestamp (defaults to current time).
397 * @return string Zone offset, e.g. "-0800" for PST.
399 function _zone_offset ($time = false) {
402 $offset = date("Z", $time);
407 $offhours = floor($offset / 3600);
408 $offmins = $offset / 60 - $offhours * 60;
409 return sprintf("%s%02d%02d", $negoffset, $offhours, $offmins);
413 * Format time in NCSA format.
415 * This is a static member function.
417 * @param $time integer Unix timestamp (defaults to current time).
418 * @return string Formatted date & time.
420 function _ncsa_time($time = false) {
424 return date("d/M/Y:H:i:s", $time) .
425 " " . $this->_zone_offset();
429 * Write entry to log file.
432 $entry = sprintf('%s %s %s [%s] "%s" %d %d "%s" "%s"',
433 $this->host, $this->ident, $this->user,
434 $this->_ncsa_time($this->time),
435 $this->request, $this->status, $this->size,
436 $this->referer, $this->user_agent);
438 //Error log doesn't provide locking.
439 //error_log("$entry\n", 3, $this->logfile);
442 if (($fp = fopen($this->logfile, "a"))) {
444 fputs($fp, "$entry\n");
454 * @see Request_AccessLogEntry
456 function Request_AccessLogEntry_shutdown_function ()
458 global $Request_AccessLogEntry_entries;
460 foreach ($Request_AccessLogEntry_entries as $entry) {
463 unset($Request_AccessLogEntry_entries);
470 // c-hanging-comment-ender-p: nil
471 // indent-tabs-mode: nil