File:  [LON-CAPA] / loncom / auth / lonuploadedacc.pm
Revision 1.8: download - view: text, annotated - select for diffs
Mon May 12 21:22:57 2003 UTC (21 years, 1 month ago) by www
Branches: MAIN
CVS tags: HEAD
Toward DOCS-problems ... still a long ways to go, but hopefully this does not
damage anything.

    1: # The LearningOnline Network
    2: # Access Handler for User Files
    3: #
    4: # $Id: lonuploadedacc.pm,v 1.8 2003/05/12 21:22:57 www Exp $
    5: #
    6: # Copyright Michigan State University Board of Trustees
    7: #
    8: # This file is part of the LearningOnline Network with CAPA (LON-CAPA).
    9: #
   10: # LON-CAPA is free software; you can redistribute it and/or modify
   11: # it under the terms of the GNU General Public License as published by
   12: # the Free Software Foundation; either version 2 of the License, or
   13: # (at your option) any later version.
   14: #
   15: # LON-CAPA is distributed in the hope that it will be useful,
   16: # but WITHOUT ANY WARRANTY; without even the implied warranty of
   17: # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
   18: # GNU General Public License for more details.
   19: #
   20: # You should have received a copy of the GNU General Public License
   21: # along with LON-CAPA; if not, write to the Free Software
   22: # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307  USA
   23: #
   24: # /home/httpd/html/adm/gpl.txt
   25: #
   26: # http://www.lon-capa.org/
   27: #
   28: 
   29: package Apache::lonuploadedacc;
   30: 
   31: #
   32: # The way this is supposed to work:
   33: #
   34: # User A has client machine C
   35: # User A is logged into LON-CAPA server S
   36: # needs file from user B
   37: # homeserver for user B is H
   38: # 
   39: # This handler runs on H
   40: # To access a userfile:
   41: # Server S generates a token and puts it into the query string of URL for H
   42: # Client box C asks H for file with token issued by C
   43: # H now must ask S if token is valid, uses S's lond-command tokenauthuserfile
   44: 
   45: use strict;
   46: use Apache::Constants qw(:common);
   47: use Apache::lonnet();
   48: 
   49: sub handler {
   50:     my $r = shift;
   51:     my $args=$r->args;
   52:     &Apache::loncommon::get_unprocessed_cgi($args,['token','tokenissued']); 
   53:     my (undef,undef,$udom,$uname,$ufile)=split(/\//,$r->uri);
   54:     $ufile=~s/^[\~\.]+//;
   55:     my $remoteserver=$ENV{'form.tokenissued'};
   56:     my $reply=&Apache::lonnet::reply('tokenauthuserfile:'.
   57:                  $udom.'/'.$uname.'/'.$ufile.':'.$ENV{'form.token'},
   58: 				     $remoteserver);
   59:     if ($reply eq 'ok') {
   60:        $ENV{'request.state'}='uploaded';
   61:        return OK;
   62:    } else {
   63:        &Apache::lonnet::logthis(
   64: "Refused userfile access $uname at $udom for $ufile with $remoteserver token $ENV{'form.token'}: $reply");
   65:        return FORBIDDEN;
   66:    }
   67: }
   68: 
   69: 1;
   70: __END__
   71: 
   72: 
   73: 
   74: 
   75: 
   76: 
   77: 

FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>