feedController.php 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528
  1. <?php
  2. /**
  3. * Controller to handle every feed actions.
  4. */
  5. class FreshRSS_feed_Controller extends Minz_ActionController {
  6. /**
  7. * This action is called before every other action in that class. It is
  8. * the common boiler plate for every action. It is triggered by the
  9. * underlying framework.
  10. */
  11. public function firstAction() {
  12. if (!FreshRSS_Auth::hasAccess()) {
  13. // Token is useful in the case that anonymous refresh is forbidden
  14. // and CRON task cannot be used with php command so the user can
  15. // set a CRON task to refresh his feeds by using token inside url
  16. $token = FreshRSS_Context::$user_conf->token;
  17. $token_param = Minz_Request::param('token', '');
  18. $token_is_ok = ($token != '' && $token == $token_param);
  19. $action = Minz_Request::actionName();
  20. $allow_anonymous_refresh = FreshRSS_Context::$system_conf->allow_anonymous_refresh;
  21. if ($action !== 'actualize' ||
  22. !($allow_anonymous_refresh || $token_is_ok)) {
  23. Minz_Error::error(403);
  24. }
  25. }
  26. }
  27. /**
  28. * This action subscribes to a feed.
  29. *
  30. * It can be reached by both GET and POST requests.
  31. *
  32. * GET request displays a form to add and configure a feed.
  33. * Request parameter is:
  34. * - url_rss (default: false)
  35. *
  36. * POST request adds a feed in database.
  37. * Parameters are:
  38. * - url_rss (default: false)
  39. * - category (default: false)
  40. * - new_category (required if category == 'nc')
  41. * - http_user (default: false)
  42. * - http_pass (default: false)
  43. * It tries to get website information from RSS feed.
  44. * If no category is given, feed is added to the default one.
  45. *
  46. * If url_rss is false, nothing happened.
  47. */
  48. public function addAction() {
  49. $url = Minz_Request::param('url_rss');
  50. if ($url === false) {
  51. // No url, do nothing
  52. Minz_Request::forward(array(
  53. 'c' => 'subscription',
  54. 'a' => 'index'
  55. ), true);
  56. }
  57. $feedDAO = FreshRSS_Factory::createFeedDao();
  58. $this->catDAO = new FreshRSS_CategoryDAO();
  59. $url_redirect = array(
  60. 'c' => 'subscription',
  61. 'a' => 'index',
  62. 'params' => array(),
  63. );
  64. $limits = FreshRSS_Context::$system_conf->limits;
  65. $this->view->feeds = $feedDAO->listFeeds();
  66. if (count($this->view->feeds) >= $limits['max_feeds']) {
  67. Minz_Request::bad(_t('feedback.sub.feed.over_max', $limits['max_feeds']),
  68. $url_redirect);
  69. }
  70. if (Minz_Request::isPost()) {
  71. @set_time_limit(300);
  72. $cat = Minz_Request::param('category');
  73. if ($cat === 'nc') {
  74. // User want to create a new category, new_category parameter
  75. // must exist
  76. $new_cat = Minz_Request::param('new_category');
  77. if (empty($new_cat['name'])) {
  78. $cat = false;
  79. } else {
  80. $cat = $this->catDAO->addCategory($new_cat);
  81. }
  82. }
  83. if ($cat === false) {
  84. // If category was not given or if creating new category failed,
  85. // get the default category
  86. $this->catDAO->checkDefault();
  87. $def_cat = $this->catDAO->getDefault();
  88. $cat = $def_cat->id();
  89. }
  90. // HTTP information are useful if feed is protected behind a
  91. // HTTP authentication
  92. $user = Minz_Request::param('http_user');
  93. $pass = Minz_Request::param('http_pass');
  94. $http_auth = '';
  95. if ($user != '' || $pass != '') {
  96. $http_auth = $user . ':' . $pass;
  97. }
  98. $transaction_started = false;
  99. try {
  100. $feed = new FreshRSS_Feed($url);
  101. } catch (FreshRSS_BadUrl_Exception $e) {
  102. // Given url was not a valid url!
  103. Minz_Log::warning($e->getMessage());
  104. Minz_Request::bad(_t('feedback.sub.feed.invalid_url', $url), $url_redirect);
  105. }
  106. try {
  107. $feed->load(true);
  108. } catch (FreshRSS_Feed_Exception $e) {
  109. // Something went bad (timeout, server not found, etc.)
  110. Minz_Log::warning($e->getMessage());
  111. Minz_Request::bad(
  112. _t('feedback.sub.feed.internal_problem', _url('index', 'logs')),
  113. $url_redirect
  114. );
  115. } catch (Minz_FileNotExistException $e) {
  116. // Cache directory doesn't exist!
  117. Minz_Log::error($e->getMessage());
  118. Minz_Request::bad(
  119. _t('feedback.sub.feed.internal_problem', _url('index', 'logs')),
  120. $url_redirect
  121. );
  122. }
  123. if ($feedDAO->searchByUrl($feed->url())) {
  124. Minz_Request::bad(
  125. _t('feedback.sub.feed.already_subscribed', $feed->name()),
  126. $url_redirect
  127. );
  128. }
  129. $feed->_category($cat);
  130. $feed->_httpAuth($http_auth);
  131. // Call the extension hook
  132. $name = $feed->name();
  133. $feed = Minz_ExtensionManager::callHook('feed_before_insert', $feed);
  134. if ($feed === null) {
  135. Minz_Request::bad(_t('feed_not_added', $name), $url_redirect);
  136. }
  137. $values = array(
  138. 'url' => $feed->url(),
  139. 'category' => $feed->category(),
  140. 'name' => $feed->name(),
  141. 'website' => $feed->website(),
  142. 'description' => $feed->description(),
  143. 'lastUpdate' => time(),
  144. 'httpAuth' => $feed->httpAuth(),
  145. );
  146. $id = $feedDAO->addFeed($values);
  147. if (!$id) {
  148. // There was an error in database... we cannot say what here.
  149. Minz_Request::bad(_t('feedback.sub.feed.not_added', $feed->name()), $url_redirect);
  150. }
  151. // Ok, feed has been added in database. Now we have to refresh entries.
  152. $feed->_id($id);
  153. $feed->faviconPrepare();
  154. $is_read = FreshRSS_Context::$user_conf->mark_when['reception'] ? 1 : 0;
  155. $entryDAO = FreshRSS_Factory::createEntryDao();
  156. // We want chronological order and SimplePie uses reverse order.
  157. $entries = array_reverse($feed->entries());
  158. // Calculate date of oldest entries we accept in DB.
  159. $nb_month_old = FreshRSS_Context::$user_conf->old_entries;
  160. $date_min = time() - (3600 * 24 * 30 * $nb_month_old);
  161. // Use a shared statement and a transaction to improve a LOT the
  162. // performances.
  163. $feedDAO->beginTransaction();
  164. foreach ($entries as $entry) {
  165. // Entries are added without any verification.
  166. $entry->_feed($feed->id());
  167. $entry->_id(min(time(), $entry->date(true)) . uSecString());
  168. $entry->_isRead($is_read);
  169. $entry = Minz_ExtensionManager::callHook('entry_before_insert', $entry);
  170. if ($entry === null) {
  171. // An extension has returned a null value, there is nothing to insert.
  172. continue;
  173. }
  174. $values = $entry->toArray();
  175. $entryDAO->addEntry($values);
  176. }
  177. $feedDAO->updateLastUpdate($feed->id());
  178. $feedDAO->commit();
  179. // Entries are in DB, we redirect to feed configuration page.
  180. $url_redirect['params']['id'] = $feed->id();
  181. Minz_Request::good(_t('feedback.sub.feed.added', $feed->name()), $url_redirect);
  182. } else {
  183. // GET request: we must ask confirmation to user before adding feed.
  184. Minz_View::prependTitle(_t('sub.feed.title_add') . ' · ');
  185. $this->view->categories = $this->catDAO->listCategories(false);
  186. $this->view->feed = new FreshRSS_Feed($url);
  187. try {
  188. // We try to get more information about the feed.
  189. $this->view->feed->load(true);
  190. $this->view->load_ok = true;
  191. } catch (Exception $e) {
  192. $this->view->load_ok = false;
  193. }
  194. $feed = $feedDAO->searchByUrl($this->view->feed->url());
  195. if ($feed) {
  196. // Already subscribe so we redirect to the feed configuration page.
  197. $url_redirect['params']['id'] = $feed->id();
  198. Minz_Request::good(_t('feedback.sub.feed.already_subscribed', $feed->name()), $url_redirect);
  199. }
  200. }
  201. }
  202. /**
  203. * This action remove entries from a given feed.
  204. *
  205. * It should be reached by a POST action.
  206. *
  207. * Parameter is:
  208. * - id (default: false)
  209. */
  210. public function truncateAction() {
  211. $id = Minz_Request::param('id');
  212. $url_redirect = array(
  213. 'c' => 'subscription',
  214. 'a' => 'index',
  215. 'params' => array('id' => $id)
  216. );
  217. if (!Minz_Request::isPost()) {
  218. Minz_Request::forward($url_redirect, true);
  219. }
  220. $feedDAO = FreshRSS_Factory::createFeedDao();
  221. $n = $feedDAO->truncate($id);
  222. invalidateHttpCache();
  223. if ($n === false) {
  224. Minz_Request::bad(_t('feedback.sub.feed.error'), $url_redirect);
  225. } else {
  226. Minz_Request::good(_t('feedback.sub.feed.n_entries_deleted', $n), $url_redirect);
  227. }
  228. }
  229. /**
  230. * This action actualizes entries from one or several feeds.
  231. *
  232. * Parameters are:
  233. * - id (default: false)
  234. * - force (default: false)
  235. * If id is not specified, all the feeds are actualized. But if force is
  236. * false, process stops at 10 feeds to avoid time execution problem.
  237. */
  238. public function actualizeAction() {
  239. @set_time_limit(300);
  240. $feedDAO = FreshRSS_Factory::createFeedDao();
  241. $entryDAO = FreshRSS_Factory::createEntryDao();
  242. Minz_Session::_param('actualize_feeds', false);
  243. $id = Minz_Request::param('id');
  244. $force = Minz_Request::param('force');
  245. // Create a list of feeds to actualize.
  246. // If id is set and valid, corresponding feed is added to the list but
  247. // alone in order to automatize further process.
  248. $feeds = array();
  249. if ($id) {
  250. $feed = $feedDAO->searchById($id);
  251. if ($feed) {
  252. $feeds[] = $feed;
  253. }
  254. } else {
  255. $feeds = $feedDAO->listFeedsOrderUpdate(FreshRSS_Context::$user_conf->ttl_default);
  256. }
  257. // Calculate date of oldest entries we accept in DB.
  258. $nb_month_old = max(FreshRSS_Context::$user_conf->old_entries, 1);
  259. $date_min = time() - (3600 * 24 * 30 * $nb_month_old);
  260. $updated_feeds = 0;
  261. $is_read = FreshRSS_Context::$user_conf->mark_when['reception'] ? 1 : 0;
  262. foreach ($feeds as $feed) {
  263. if (!$feed->lock()) {
  264. Minz_Log::notice('Feed already being actualized: ' . $feed->url());
  265. continue;
  266. }
  267. try {
  268. // Load entries
  269. $feed->load(false);
  270. } catch (FreshRSS_Feed_Exception $e) {
  271. Minz_Log::notice($e->getMessage());
  272. $feedDAO->updateLastUpdate($feed->id(), true);
  273. $feed->unlock();
  274. continue;
  275. }
  276. $url = $feed->url();
  277. $feed_history = $feed->keepHistory();
  278. if ($feed_history == -2) {
  279. // TODO: -2 must be a constant!
  280. // -2 means we take the default value from configuration
  281. $feed_history = FreshRSS_Context::$user_conf->keep_history_default;
  282. }
  283. // We want chronological order and SimplePie uses reverse order.
  284. $entries = array_reverse($feed->entries());
  285. if (count($entries) > 0) {
  286. $newGuids = array();
  287. foreach ($entries as $entry) {
  288. $newGuids[] = $entry->guid();
  289. }
  290. // For this feed, check existing GUIDs already in database.
  291. $existingHashForGuids = $entryDAO->listHashForFeedGuids($feed->id(), $newGuids);
  292. unset($newGuids);
  293. $use_declared_date = empty($existingHashForGuids);
  294. $oldGuids = array();
  295. // Add entries in database if possible.
  296. foreach ($entries as $entry) {
  297. $entry_date = $entry->date(true);
  298. if (isset($existingHashForGuids[$entry->guid()])) {
  299. $existingHash = $existingHashForGuids[$entry->guid()];
  300. if (strcasecmp($existingHash, $entry->hash()) === 0 || $existingHash === '00000000000000000000000000000000') {
  301. //This entry already exists and is unchanged. TODO: Remove the test with the zero'ed hash in FreshRSS v1.3
  302. $oldGuids[] = $entry->guid();
  303. } else { //This entry already exists but has been updated
  304. Minz_Log::debug('Entry with GUID `' . $entry->guid() . '` updated in feed ' . $feed->id() .
  305. ', old hash ' . $existingHash . ', new hash ' . $entry->hash());
  306. $entry->_isRead($is_read); //Reset is_read
  307. if (!$entryDAO->hasTransaction()) {
  308. $entryDAO->beginTransaction();
  309. }
  310. $entryDAO->updateEntry($entry->toArray());
  311. }
  312. } elseif ($feed_history == 0 && $entry_date < $date_min) {
  313. // This entry should not be added considering configuration and date.
  314. $oldGuids[] = $entry->guid();
  315. } else {
  316. $id = uTimeString();
  317. if ($use_declared_date || $entry_date < $date_min) {
  318. // Use declared date at first import.
  319. $id = min(time(), $entry_date) . uSecString();
  320. }
  321. $entry->_id($id);
  322. $entry->_isRead($is_read);
  323. $entry = Minz_ExtensionManager::callHook('entry_before_insert', $entry);
  324. if ($entry === null) {
  325. // An extension has returned a null value, there is nothing to insert.
  326. continue;
  327. }
  328. if (!$entryDAO->hasTransaction()) {
  329. $entryDAO->beginTransaction();
  330. }
  331. $entryDAO->addEntry($entry->toArray());
  332. }
  333. }
  334. $entryDAO->updateLastSeen($feed->id(), $oldGuids);
  335. }
  336. //TODO: updateLastSeen old GUIDS once in a while, in the case of caching (i.e. the whole feed content has not changed)
  337. if ($feed_history >= 0 && rand(0, 30) === 1) {
  338. // TODO: move this function in web cron when available (see entry::purge)
  339. // Remove old entries once in 30.
  340. if (!$entryDAO->hasTransaction()) {
  341. $entryDAO->beginTransaction();
  342. }
  343. //TODO: more robust system based on entry.lastSeen to avoid cleaning entries that are still published in the RSS feed.
  344. $nb = $feedDAO->cleanOldEntries($feed->id(),
  345. $date_min,
  346. max($feed_history, count($entries) + 10));
  347. if ($nb > 0) {
  348. Minz_Log::debug($nb . ' old entries cleaned in feed [' .
  349. $feed->url() . ']');
  350. }
  351. }
  352. $feedDAO->updateLastUpdate($feed->id(), 0, $entryDAO->hasTransaction());
  353. if ($entryDAO->hasTransaction()) {
  354. $entryDAO->commit();
  355. }
  356. if ($feed->url() !== $url) {
  357. // HTTP 301 Moved Permanently
  358. Minz_Log::notice('Feed ' . $url . ' moved permanently to ' . $feed->url());
  359. $feedDAO->updateFeed($feed->id(), array('url' => $feed->url()));
  360. }
  361. $feed->faviconPrepare();
  362. $feed->unlock();
  363. $updated_feeds++;
  364. unset($feed);
  365. // No more than 10 feeds unless $force is true to avoid overloading
  366. // the server.
  367. if ($updated_feeds >= 10 && !$force) {
  368. break;
  369. }
  370. }
  371. if (Minz_Request::param('ajax')) {
  372. // Most of the time, ajax request is for only one feed. But since
  373. // there are several parallel requests, we should return that there
  374. // are several updated feeds.
  375. $notif = array(
  376. 'type' => 'good',
  377. 'content' => _t('feedback.sub.feed.actualizeds')
  378. );
  379. Minz_Session::_param('notification', $notif);
  380. // No layout in ajax request.
  381. $this->view->_useLayout(false);
  382. return;
  383. }
  384. // Redirect to the main page with correct notification.
  385. if ($updated_feeds === 1) {
  386. $feed = reset($feeds);
  387. Minz_Request::good(_t('feedback.sub.feed.actualized', $feed->name()), array(
  388. 'params' => array('get' => 'f_' . $feed->id())
  389. ));
  390. } elseif ($updated_feeds > 1) {
  391. Minz_Request::good(_t('feedback.sub.feed.n_actualized', $updated_feeds), array());
  392. } else {
  393. Minz_Request::good(_t('feedback.sub.feed.no_refresh'), array());
  394. }
  395. }
  396. /**
  397. * This action changes the category of a feed.
  398. *
  399. * This page must be reached by a POST request.
  400. *
  401. * Parameters are:
  402. * - f_id (default: false)
  403. * - c_id (default: false)
  404. * If c_id is false, default category is used.
  405. *
  406. * @todo should handle order of the feed inside the category.
  407. */
  408. public function moveAction() {
  409. if (!Minz_Request::isPost()) {
  410. Minz_Request::forward(array('c' => 'subscription'), true);
  411. }
  412. $feed_id = Minz_Request::param('f_id');
  413. $cat_id = Minz_Request::param('c_id');
  414. if ($cat_id === false) {
  415. // If category was not given get the default one.
  416. $catDAO = new FreshRSS_CategoryDAO();
  417. $catDAO->checkDefault();
  418. $def_cat = $catDAO->getDefault();
  419. $cat_id = $def_cat->id();
  420. }
  421. $feedDAO = FreshRSS_Factory::createFeedDao();
  422. $values = array('category' => $cat_id);
  423. $feed = $feedDAO->searchById($feed_id);
  424. if ($feed && ($feed->category() == $cat_id ||
  425. $feedDAO->updateFeed($feed_id, $values))) {
  426. // TODO: return something useful
  427. } else {
  428. Minz_Log::warning('Cannot move feed `' . $feed_id . '` ' .
  429. 'in the category `' . $cat_id . '`');
  430. Minz_Error::error(404);
  431. }
  432. }
  433. /**
  434. * This action deletes a feed.
  435. *
  436. * This page must be reached by a POST request.
  437. * If there are related queries, they are deleted too.
  438. *
  439. * Parameters are:
  440. * - id (default: false)
  441. * - r (default: false)
  442. * r permits to redirect to a given page at the end of this action.
  443. *
  444. * @todo handle "r" redirection in Minz_Request::forward()?
  445. */
  446. public function deleteAction() {
  447. $redirect_url = Minz_Request::param('r', false, true);
  448. if (!$redirect_url) {
  449. $redirect_url = array('c' => 'subscription', 'a' => 'index');
  450. }
  451. if (!Minz_Request::isPost()) {
  452. Minz_Request::forward($redirect_url, true);
  453. }
  454. $id = Minz_Request::param('id');
  455. $feedDAO = FreshRSS_Factory::createFeedDao();
  456. if ($feedDAO->deleteFeed($id)) {
  457. // TODO: Delete old favicon
  458. // Remove related queries
  459. FreshRSS_Context::$user_conf->queries = remove_query_by_get(
  460. 'f_' . $id, FreshRSS_Context::$user_conf->queries);
  461. FreshRSS_Context::$user_conf->save();
  462. Minz_Request::good(_t('feedback.sub.feed.deleted'), $redirect_url);
  463. } else {
  464. Minz_Request::bad(_t('feedback.sub.feed.error'), $redirect_url);
  465. }
  466. }
  467. }