views.py 42 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073
  1. import logging
  2. import sys
  3. from copy import deepcopy
  4. from django.contrib import messages
  5. from django.contrib.auth.decorators import login_required
  6. from django.contrib.contenttypes.models import ContentType
  7. from django.core.exceptions import FieldDoesNotExist, ValidationError
  8. from django.db import transaction, IntegrityError
  9. from django.db.models import ManyToManyField, ProtectedError
  10. from django.forms import Form, ModelMultipleChoiceField, MultipleHiddenInput, Textarea
  11. from django.http import HttpResponse, HttpResponseServerError
  12. from django.shortcuts import get_object_or_404, redirect, render
  13. from django.template import loader
  14. from django.template.exceptions import TemplateDoesNotExist
  15. from django.urls import reverse
  16. from django.utils.decorators import method_decorator
  17. from django.utils.html import escape
  18. from django.utils.http import is_safe_url
  19. from django.utils.safestring import mark_safe
  20. from django.views.decorators.csrf import requires_csrf_token
  21. from django.views.defaults import ERROR_500_TEMPLATE_NAME
  22. from django.views.generic import View
  23. from django_tables2 import RequestConfig
  24. from extras.models import CustomField, CustomFieldValue, ExportTemplate
  25. from extras.querysets import CustomFieldQueryset
  26. from utilities.exceptions import AbortTransaction
  27. from utilities.forms import BootstrapMixin, CSVDataField, TableConfigForm
  28. from utilities.utils import csv_format, normalize_querydict, prepare_cloned_fields
  29. from .error_handlers import handle_protectederror
  30. from .forms import ConfirmationForm, ImportForm
  31. from .paginator import EnhancedPaginator, get_paginate_count
  32. class GetReturnURLMixin(object):
  33. """
  34. Provides logic for determining where a user should be redirected after processing a form.
  35. """
  36. default_return_url = None
  37. def get_return_url(self, request, obj=None):
  38. # First, see if `return_url` was specified as a query parameter or form data. Use this URL only if it's
  39. # considered safe.
  40. query_param = request.GET.get('return_url') or request.POST.get('return_url')
  41. if query_param and is_safe_url(url=query_param, allowed_hosts=request.get_host()):
  42. return query_param
  43. # Next, check if the object being modified (if any) has an absolute URL.
  44. elif obj is not None and obj.pk and hasattr(obj, 'get_absolute_url'):
  45. return obj.get_absolute_url()
  46. # Fall back to the default URL (if specified) for the view.
  47. elif self.default_return_url is not None:
  48. return reverse(self.default_return_url)
  49. # If all else fails, return home. Ideally this should never happen.
  50. return reverse('home')
  51. class ObjectListView(View):
  52. """
  53. List a series of objects.
  54. queryset: The queryset of objects to display
  55. filter: A django-filter FilterSet that is applied to the queryset
  56. filter_form: The form used to render filter options
  57. table: The django-tables2 Table used to render the objects list
  58. template_name: The name of the template
  59. """
  60. queryset = None
  61. filterset = None
  62. filterset_form = None
  63. table = None
  64. template_name = 'utilities/obj_list.html'
  65. action_buttons = ('add', 'import', 'export')
  66. def queryset_to_yaml(self):
  67. """
  68. Export the queryset of objects as concatenated YAML documents.
  69. """
  70. yaml_data = [obj.to_yaml() for obj in self.queryset]
  71. return '---\n'.join(yaml_data)
  72. def queryset_to_csv(self):
  73. """
  74. Export the queryset of objects as comma-separated value (CSV), using the model's to_csv() method.
  75. """
  76. csv_data = []
  77. custom_fields = []
  78. # Start with the column headers
  79. headers = self.queryset.model.csv_headers.copy()
  80. # Add custom field headers, if any
  81. if hasattr(self.queryset.model, 'get_custom_fields'):
  82. for custom_field in self.queryset.model().get_custom_fields():
  83. headers.append(custom_field.name)
  84. custom_fields.append(custom_field.name)
  85. csv_data.append(','.join(headers))
  86. # Iterate through the queryset appending each object
  87. for obj in self.queryset:
  88. data = obj.to_csv()
  89. for custom_field in custom_fields:
  90. data += (obj.cf.get(custom_field, ''),)
  91. csv_data.append(csv_format(data))
  92. return '\n'.join(csv_data)
  93. def get(self, request):
  94. model = self.queryset.model
  95. content_type = ContentType.objects.get_for_model(model)
  96. if self.filterset:
  97. self.queryset = self.filterset(request.GET, self.queryset).qs
  98. # If this type of object has one or more custom fields, prefetch any relevant custom field values
  99. custom_fields = CustomField.objects.filter(
  100. obj_type=ContentType.objects.get_for_model(model)
  101. ).prefetch_related('choices')
  102. if custom_fields:
  103. self.queryset = self.queryset.prefetch_related('custom_field_values')
  104. # Check for export template rendering
  105. if request.GET.get('export'):
  106. et = get_object_or_404(ExportTemplate, content_type=content_type, name=request.GET.get('export'))
  107. queryset = CustomFieldQueryset(self.queryset, custom_fields) if custom_fields else self.queryset
  108. try:
  109. return et.render_to_response(queryset)
  110. except Exception as e:
  111. messages.error(
  112. request,
  113. "There was an error rendering the selected export template ({}): {}".format(
  114. et.name, e
  115. )
  116. )
  117. # Check for YAML export support
  118. elif 'export' in request.GET and hasattr(model, 'to_yaml'):
  119. response = HttpResponse(self.queryset_to_yaml(), content_type='text/yaml')
  120. filename = 'netbox_{}.yaml'.format(self.queryset.model._meta.verbose_name_plural)
  121. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  122. return response
  123. # Fall back to built-in CSV formatting if export requested but no template specified
  124. elif 'export' in request.GET and hasattr(model, 'to_csv'):
  125. response = HttpResponse(self.queryset_to_csv(), content_type='text/csv')
  126. filename = 'netbox_{}.csv'.format(self.queryset.model._meta.verbose_name_plural)
  127. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  128. return response
  129. # Provide a hook to tweak the queryset based on the request immediately prior to rendering the object list
  130. self.queryset = self.alter_queryset(request)
  131. # Compile a dictionary indicating which permissions are available to the current user for this model
  132. permissions = {}
  133. for action in ('add', 'change', 'delete', 'view'):
  134. perm_name = '{}.{}_{}'.format(model._meta.app_label, action, model._meta.model_name)
  135. permissions[action] = request.user.has_perm(perm_name)
  136. # Construct the table based on the user's permissions
  137. if request.user.is_authenticated:
  138. columns = request.user.config.get(f"tables.{self.table.__name__}.columns")
  139. else:
  140. columns = None
  141. table = self.table(self.queryset, columns=columns)
  142. if 'pk' in table.base_columns and (permissions['change'] or permissions['delete']):
  143. table.columns.show('pk')
  144. # Apply the request context
  145. paginate = {
  146. 'paginator_class': EnhancedPaginator,
  147. 'per_page': get_paginate_count(request)
  148. }
  149. RequestConfig(request, paginate).configure(table)
  150. context = {
  151. 'content_type': content_type,
  152. 'table': table,
  153. 'permissions': permissions,
  154. 'action_buttons': self.action_buttons,
  155. 'table_config_form': TableConfigForm(table=table),
  156. 'filter_form': self.filterset_form(request.GET, label_suffix='') if self.filterset_form else None,
  157. }
  158. context.update(self.extra_context())
  159. return render(request, self.template_name, context)
  160. @method_decorator(login_required)
  161. def post(self, request):
  162. # Update the user's table configuration
  163. table = self.table(self.queryset)
  164. form = TableConfigForm(table=table, data=request.POST)
  165. preference_name = f"tables.{self.table.__name__}.columns"
  166. if form.is_valid():
  167. if 'set' in request.POST:
  168. request.user.config.set(preference_name, form.cleaned_data['columns'], commit=True)
  169. elif 'clear' in request.POST:
  170. request.user.config.clear(preference_name, commit=True)
  171. messages.success(request, "Your preferences have been updated.")
  172. return redirect(request.get_full_path())
  173. def alter_queryset(self, request):
  174. # .all() is necessary to avoid caching queries
  175. return self.queryset.all()
  176. def extra_context(self):
  177. return {}
  178. class ObjectEditView(GetReturnURLMixin, View):
  179. """
  180. Create or edit a single object.
  181. model: The model of the object being edited
  182. model_form: The form used to create or edit the object
  183. template_name: The name of the template
  184. """
  185. model = None
  186. model_form = None
  187. template_name = 'utilities/obj_edit.html'
  188. def get_object(self, kwargs):
  189. # Look up object by slug or PK. Return None if neither was provided.
  190. if 'slug' in kwargs:
  191. return get_object_or_404(self.model, slug=kwargs['slug'])
  192. elif 'pk' in kwargs:
  193. return get_object_or_404(self.model, pk=kwargs['pk'])
  194. return self.model()
  195. def alter_obj(self, obj, request, url_args, url_kwargs):
  196. # Allow views to add extra info to an object before it is processed. For example, a parent object can be defined
  197. # given some parameter from the request URL.
  198. return obj
  199. def dispatch(self, request, *args, **kwargs):
  200. self.obj = self.alter_obj(self.get_object(kwargs), request, args, kwargs)
  201. return super().dispatch(request, *args, **kwargs)
  202. def get(self, request, *args, **kwargs):
  203. # Parse initial data manually to avoid setting field values as lists
  204. initial_data = normalize_querydict(request.GET)
  205. form = self.model_form(instance=self.obj, initial=initial_data)
  206. return render(request, self.template_name, {
  207. 'obj': self.obj,
  208. 'obj_type': self.model._meta.verbose_name,
  209. 'form': form,
  210. 'return_url': self.get_return_url(request, self.obj),
  211. })
  212. def post(self, request, *args, **kwargs):
  213. logger = logging.getLogger('netbox.views.ObjectEditView')
  214. form = self.model_form(request.POST, request.FILES, instance=self.obj)
  215. if form.is_valid():
  216. logger.debug("Form validation was successful")
  217. object_created = form.instance.pk is None
  218. obj = form.save()
  219. msg = '{} {}'.format(
  220. 'Created' if object_created else 'Modified',
  221. self.model._meta.verbose_name
  222. )
  223. logger.info(f"{msg} {obj} (PK: {obj.pk})")
  224. if hasattr(obj, 'get_absolute_url'):
  225. msg = '{} <a href="{}">{}</a>'.format(msg, obj.get_absolute_url(), escape(obj))
  226. else:
  227. msg = '{} {}'.format(msg, escape(obj))
  228. messages.success(request, mark_safe(msg))
  229. if '_addanother' in request.POST:
  230. # If the object has clone_fields, pre-populate a new instance of the form
  231. if hasattr(obj, 'clone_fields'):
  232. url = '{}?{}'.format(request.path, prepare_cloned_fields(obj))
  233. return redirect(url)
  234. return redirect(request.get_full_path())
  235. return_url = form.cleaned_data.get('return_url')
  236. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  237. return redirect(return_url)
  238. else:
  239. return redirect(self.get_return_url(request, obj))
  240. else:
  241. logger.debug("Form validation failed")
  242. return render(request, self.template_name, {
  243. 'obj': self.obj,
  244. 'obj_type': self.model._meta.verbose_name,
  245. 'form': form,
  246. 'return_url': self.get_return_url(request, self.obj),
  247. })
  248. class ObjectDeleteView(GetReturnURLMixin, View):
  249. """
  250. Delete a single object.
  251. model: The model of the object being deleted
  252. template_name: The name of the template
  253. """
  254. model = None
  255. template_name = 'utilities/obj_delete.html'
  256. def get_object(self, kwargs):
  257. # Look up object by slug if one has been provided. Otherwise, use PK.
  258. if 'slug' in kwargs:
  259. return get_object_or_404(self.model, slug=kwargs['slug'])
  260. else:
  261. return get_object_or_404(self.model, pk=kwargs['pk'])
  262. def get(self, request, **kwargs):
  263. obj = self.get_object(kwargs)
  264. form = ConfirmationForm(initial=request.GET)
  265. return render(request, self.template_name, {
  266. 'obj': obj,
  267. 'form': form,
  268. 'obj_type': self.model._meta.verbose_name,
  269. 'return_url': self.get_return_url(request, obj),
  270. })
  271. def post(self, request, **kwargs):
  272. logger = logging.getLogger('netbox.views.ObjectDeleteView')
  273. obj = self.get_object(kwargs)
  274. form = ConfirmationForm(request.POST)
  275. if form.is_valid():
  276. logger.debug("Form validation was successful")
  277. try:
  278. obj.delete()
  279. except ProtectedError as e:
  280. logger.info("Caught ProtectedError while attempting to delete object")
  281. handle_protectederror(obj, request, e)
  282. return redirect(obj.get_absolute_url())
  283. msg = 'Deleted {} {}'.format(self.model._meta.verbose_name, obj)
  284. logger.info(msg)
  285. messages.success(request, msg)
  286. return_url = form.cleaned_data.get('return_url')
  287. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  288. return redirect(return_url)
  289. else:
  290. return redirect(self.get_return_url(request, obj))
  291. else:
  292. logger.debug("Form validation failed")
  293. return render(request, self.template_name, {
  294. 'obj': obj,
  295. 'form': form,
  296. 'obj_type': self.model._meta.verbose_name,
  297. 'return_url': self.get_return_url(request, obj),
  298. })
  299. class BulkCreateView(GetReturnURLMixin, View):
  300. """
  301. Create new objects in bulk.
  302. form: Form class which provides the `pattern` field
  303. model_form: The ModelForm used to create individual objects
  304. pattern_target: Name of the field to be evaluated as a pattern (if any)
  305. template_name: The name of the template
  306. """
  307. form = None
  308. model_form = None
  309. pattern_target = ''
  310. template_name = None
  311. def get(self, request):
  312. # Set initial values for visible form fields from query args
  313. initial = {}
  314. for field in getattr(self.model_form._meta, 'fields', []):
  315. if request.GET.get(field):
  316. initial[field] = request.GET[field]
  317. form = self.form()
  318. model_form = self.model_form(initial=initial)
  319. return render(request, self.template_name, {
  320. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  321. 'form': form,
  322. 'model_form': model_form,
  323. 'return_url': self.get_return_url(request),
  324. })
  325. def post(self, request):
  326. logger = logging.getLogger('netbox.views.BulkCreateView')
  327. model = self.model_form._meta.model
  328. form = self.form(request.POST)
  329. model_form = self.model_form(request.POST)
  330. if form.is_valid():
  331. logger.debug("Form validation was successful")
  332. pattern = form.cleaned_data['pattern']
  333. new_objs = []
  334. try:
  335. with transaction.atomic():
  336. # Create objects from the expanded. Abort the transaction on the first validation error.
  337. for value in pattern:
  338. # Reinstantiate the model form each time to avoid overwriting the same instance. Use a mutable
  339. # copy of the POST QueryDict so that we can update the target field value.
  340. model_form = self.model_form(request.POST.copy())
  341. model_form.data[self.pattern_target] = value
  342. # Validate each new object independently.
  343. if model_form.is_valid():
  344. obj = model_form.save()
  345. logger.debug(f"Created {obj} (PK: {obj.pk})")
  346. new_objs.append(obj)
  347. else:
  348. # Copy any errors on the pattern target field to the pattern form.
  349. errors = model_form.errors.as_data()
  350. if errors.get(self.pattern_target):
  351. form.add_error('pattern', errors[self.pattern_target])
  352. # Raise an IntegrityError to break the for loop and abort the transaction.
  353. raise IntegrityError()
  354. # If we make it to this point, validation has succeeded on all new objects.
  355. msg = "Added {} {}".format(len(new_objs), model._meta.verbose_name_plural)
  356. logger.info(msg)
  357. messages.success(request, msg)
  358. if '_addanother' in request.POST:
  359. return redirect(request.path)
  360. return redirect(self.get_return_url(request))
  361. except IntegrityError:
  362. pass
  363. else:
  364. logger.debug("Form validation failed")
  365. return render(request, self.template_name, {
  366. 'form': form,
  367. 'model_form': model_form,
  368. 'obj_type': model._meta.verbose_name,
  369. 'return_url': self.get_return_url(request),
  370. })
  371. class ObjectImportView(GetReturnURLMixin, View):
  372. """
  373. Import a single object (YAML or JSON format).
  374. """
  375. model = None
  376. model_form = None
  377. related_object_forms = dict()
  378. template_name = 'utilities/obj_import.html'
  379. def get(self, request):
  380. form = ImportForm()
  381. return render(request, self.template_name, {
  382. 'form': form,
  383. 'obj_type': self.model._meta.verbose_name,
  384. 'return_url': self.get_return_url(request),
  385. })
  386. def post(self, request):
  387. logger = logging.getLogger('netbox.views.ObjectImportView')
  388. form = ImportForm(request.POST)
  389. if form.is_valid():
  390. logger.debug("Import form validation was successful")
  391. # Initialize model form
  392. data = form.cleaned_data['data']
  393. model_form = self.model_form(data)
  394. # Assign default values for any fields which were not specified. We have to do this manually because passing
  395. # 'initial=' to the form on initialization merely sets default values for the widgets. Since widgets are not
  396. # used for YAML/JSON import, we first bind the imported data normally, then update the form's data with the
  397. # applicable field defaults as needed prior to form validation.
  398. for field_name, field in model_form.fields.items():
  399. if field_name not in data and hasattr(field, 'initial'):
  400. model_form.data[field_name] = field.initial
  401. if model_form.is_valid():
  402. try:
  403. with transaction.atomic():
  404. # Save the primary object
  405. obj = model_form.save()
  406. logger.debug(f"Created {obj} (PK: {obj.pk})")
  407. # Iterate through the related object forms (if any), validating and saving each instance.
  408. for field_name, related_object_form in self.related_object_forms.items():
  409. logger.debug("Processing form for related objects: {related_object_form}")
  410. for i, rel_obj_data in enumerate(data.get(field_name, list())):
  411. f = related_object_form(obj, rel_obj_data)
  412. for subfield_name, field in f.fields.items():
  413. if subfield_name not in rel_obj_data and hasattr(field, 'initial'):
  414. f.data[subfield_name] = field.initial
  415. if f.is_valid():
  416. f.save()
  417. else:
  418. # Replicate errors on the related object form to the primary form for display
  419. for subfield_name, errors in f.errors.items():
  420. for err in errors:
  421. err_msg = "{}[{}] {}: {}".format(field_name, i, subfield_name, err)
  422. model_form.add_error(None, err_msg)
  423. raise AbortTransaction()
  424. except AbortTransaction:
  425. pass
  426. if not model_form.errors:
  427. logger.info(f"Import object {obj} (PK: {obj.pk})")
  428. messages.success(request, mark_safe('Imported object: <a href="{}">{}</a>'.format(
  429. obj.get_absolute_url(), obj
  430. )))
  431. if '_addanother' in request.POST:
  432. return redirect(request.get_full_path())
  433. return_url = form.cleaned_data.get('return_url')
  434. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  435. return redirect(return_url)
  436. else:
  437. return redirect(self.get_return_url(request, obj))
  438. else:
  439. logger.debug("Model form validation failed")
  440. # Replicate model form errors for display
  441. for field, errors in model_form.errors.items():
  442. for err in errors:
  443. if field == '__all__':
  444. form.add_error(None, err)
  445. else:
  446. form.add_error(None, "{}: {}".format(field, err))
  447. else:
  448. logger.debug("Import form validation failed")
  449. return render(request, self.template_name, {
  450. 'form': form,
  451. 'obj_type': self.model._meta.verbose_name,
  452. 'return_url': self.get_return_url(request),
  453. })
  454. class BulkImportView(GetReturnURLMixin, View):
  455. """
  456. Import objects in bulk (CSV format).
  457. model_form: The form used to create each imported object
  458. table: The django-tables2 Table used to render the list of imported objects
  459. template_name: The name of the template
  460. widget_attrs: A dict of attributes to apply to the import widget (e.g. to require a session key)
  461. """
  462. model_form = None
  463. table = None
  464. template_name = 'utilities/obj_bulk_import.html'
  465. widget_attrs = {}
  466. def _import_form(self, *args, **kwargs):
  467. class ImportForm(BootstrapMixin, Form):
  468. csv = CSVDataField(
  469. from_form=self.model_form,
  470. widget=Textarea(attrs=self.widget_attrs)
  471. )
  472. return ImportForm(*args, **kwargs)
  473. def _save_obj(self, obj_form, request):
  474. """
  475. Provide a hook to modify the object immediately before saving it (e.g. to encrypt secret data).
  476. """
  477. return obj_form.save()
  478. def get(self, request):
  479. return render(request, self.template_name, {
  480. 'form': self._import_form(),
  481. 'fields': self.model_form().fields,
  482. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  483. 'return_url': self.get_return_url(request),
  484. })
  485. def post(self, request):
  486. logger = logging.getLogger('netbox.views.BulkImportView')
  487. new_objs = []
  488. form = self._import_form(request.POST)
  489. if form.is_valid():
  490. logger.debug("Form validation was successful")
  491. try:
  492. # Iterate through CSV data and bind each row to a new model form instance.
  493. with transaction.atomic():
  494. headers, records = form.cleaned_data['csv']
  495. for row, data in enumerate(records, start=1):
  496. obj_form = self.model_form(data, headers=headers)
  497. if obj_form.is_valid():
  498. obj = self._save_obj(obj_form, request)
  499. new_objs.append(obj)
  500. else:
  501. for field, err in obj_form.errors.items():
  502. form.add_error('csv', "Row {} {}: {}".format(row, field, err[0]))
  503. raise ValidationError("")
  504. # Compile a table containing the imported objects
  505. obj_table = self.table(new_objs)
  506. if new_objs:
  507. msg = 'Imported {} {}'.format(len(new_objs), new_objs[0]._meta.verbose_name_plural)
  508. logger.info(msg)
  509. messages.success(request, msg)
  510. return render(request, "import_success.html", {
  511. 'table': obj_table,
  512. 'return_url': self.get_return_url(request),
  513. })
  514. except ValidationError:
  515. pass
  516. else:
  517. logger.debug("Form validation failed")
  518. return render(request, self.template_name, {
  519. 'form': form,
  520. 'fields': self.model_form().fields,
  521. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  522. 'return_url': self.get_return_url(request),
  523. })
  524. class BulkEditView(GetReturnURLMixin, View):
  525. """
  526. Edit objects in bulk.
  527. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  528. filter: FilterSet to apply when deleting by QuerySet
  529. table: The table used to display devices being edited
  530. form: The form class used to edit objects in bulk
  531. template_name: The name of the template
  532. """
  533. queryset = None
  534. filterset = None
  535. table = None
  536. form = None
  537. template_name = 'utilities/obj_bulk_edit.html'
  538. def get(self, request):
  539. return redirect(self.get_return_url(request))
  540. def post(self, request, **kwargs):
  541. logger = logging.getLogger('netbox.views.BulkEditView')
  542. model = self.queryset.model
  543. # If we are editing *all* objects in the queryset, replace the PK list with all matched objects.
  544. if request.POST.get('_all') and self.filterset is not None:
  545. pk_list = [
  546. obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs
  547. ]
  548. else:
  549. pk_list = request.POST.getlist('pk')
  550. if '_apply' in request.POST:
  551. form = self.form(model, request.POST)
  552. if form.is_valid():
  553. logger.debug("Form validation was successful")
  554. custom_fields = form.custom_fields if hasattr(form, 'custom_fields') else []
  555. standard_fields = [
  556. field for field in form.fields if field not in custom_fields + ['pk']
  557. ]
  558. nullified_fields = request.POST.getlist('_nullify')
  559. try:
  560. with transaction.atomic():
  561. updated_count = 0
  562. for obj in model.objects.filter(pk__in=form.cleaned_data['pk']):
  563. # Update standard fields. If a field is listed in _nullify, delete its value.
  564. for name in standard_fields:
  565. try:
  566. model_field = model._meta.get_field(name)
  567. except FieldDoesNotExist:
  568. # This form field is used to modify a field rather than set its value directly
  569. model_field = None
  570. # Handle nullification
  571. if name in form.nullable_fields and name in nullified_fields:
  572. if isinstance(model_field, ManyToManyField):
  573. getattr(obj, name).set([])
  574. else:
  575. setattr(obj, name, None if model_field.null else '')
  576. # ManyToManyFields
  577. elif isinstance(model_field, ManyToManyField):
  578. if form.cleaned_data[name].count() > 0:
  579. getattr(obj, name).set(form.cleaned_data[name])
  580. # Normal fields
  581. elif form.cleaned_data[name] not in (None, ''):
  582. setattr(obj, name, form.cleaned_data[name])
  583. obj.full_clean()
  584. obj.save()
  585. logger.debug(f"Saved {obj} (PK: {obj.pk})")
  586. # Update custom fields
  587. obj_type = ContentType.objects.get_for_model(model)
  588. for name in custom_fields:
  589. field = form.fields[name].model
  590. if name in form.nullable_fields and name in nullified_fields:
  591. CustomFieldValue.objects.filter(
  592. field=field, obj_type=obj_type, obj_id=obj.pk
  593. ).delete()
  594. elif form.cleaned_data[name] not in [None, '']:
  595. try:
  596. cfv = CustomFieldValue.objects.get(
  597. field=field, obj_type=obj_type, obj_id=obj.pk
  598. )
  599. except CustomFieldValue.DoesNotExist:
  600. cfv = CustomFieldValue(
  601. field=field, obj_type=obj_type, obj_id=obj.pk
  602. )
  603. cfv.value = form.cleaned_data[name]
  604. cfv.save()
  605. logger.debug(f"Saved custom fields for {obj} (PK: {obj.pk})")
  606. # Add/remove tags
  607. if form.cleaned_data.get('add_tags', None):
  608. obj.tags.add(*form.cleaned_data['add_tags'])
  609. if form.cleaned_data.get('remove_tags', None):
  610. obj.tags.remove(*form.cleaned_data['remove_tags'])
  611. updated_count += 1
  612. if updated_count:
  613. msg = 'Updated {} {}'.format(updated_count, model._meta.verbose_name_plural)
  614. logger.info(msg)
  615. messages.success(self.request, msg)
  616. return redirect(self.get_return_url(request))
  617. except ValidationError as e:
  618. messages.error(self.request, "{} failed validation: {}".format(obj, e))
  619. else:
  620. logger.debug("Form validation failed")
  621. else:
  622. # Include the PK list as initial data for the form
  623. initial_data = {'pk': pk_list}
  624. # Check for other contextual data needed for the form. We avoid passing all of request.GET because the
  625. # filter values will conflict with the bulk edit form fields.
  626. # TODO: Find a better way to accomplish this
  627. if 'device' in request.GET:
  628. initial_data['device'] = request.GET.get('device')
  629. elif 'device_type' in request.GET:
  630. initial_data['device_type'] = request.GET.get('device_type')
  631. form = self.form(model, initial=initial_data)
  632. # Retrieve objects being edited
  633. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  634. if not table.rows:
  635. messages.warning(request, "No {} were selected.".format(model._meta.verbose_name_plural))
  636. return redirect(self.get_return_url(request))
  637. return render(request, self.template_name, {
  638. 'form': form,
  639. 'table': table,
  640. 'obj_type_plural': model._meta.verbose_name_plural,
  641. 'return_url': self.get_return_url(request),
  642. })
  643. class BulkDeleteView(GetReturnURLMixin, View):
  644. """
  645. Delete objects in bulk.
  646. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  647. filter: FilterSet to apply when deleting by QuerySet
  648. table: The table used to display devices being deleted
  649. form: The form class used to delete objects in bulk
  650. template_name: The name of the template
  651. """
  652. queryset = None
  653. filterset = None
  654. table = None
  655. form = None
  656. template_name = 'utilities/obj_bulk_delete.html'
  657. def get(self, request):
  658. return redirect(self.get_return_url(request))
  659. def post(self, request, **kwargs):
  660. logger = logging.getLogger('netbox.views.BulkDeleteView')
  661. model = self.queryset.model
  662. # Are we deleting *all* objects in the queryset or just a selected subset?
  663. if request.POST.get('_all'):
  664. if self.filterset is not None:
  665. pk_list = [obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs]
  666. else:
  667. pk_list = model.objects.values_list('pk', flat=True)
  668. else:
  669. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  670. form_cls = self.get_form()
  671. if '_confirm' in request.POST:
  672. form = form_cls(request.POST)
  673. if form.is_valid():
  674. logger.debug("Form validation was successful")
  675. # Delete objects
  676. queryset = model.objects.filter(pk__in=pk_list)
  677. try:
  678. deleted_count = queryset.delete()[1][model._meta.label]
  679. except ProtectedError as e:
  680. logger.info("Caught ProtectedError while attempting to delete objects")
  681. handle_protectederror(list(queryset), request, e)
  682. return redirect(self.get_return_url(request))
  683. msg = 'Deleted {} {}'.format(deleted_count, model._meta.verbose_name_plural)
  684. logger.info(msg)
  685. messages.success(request, msg)
  686. return redirect(self.get_return_url(request))
  687. else:
  688. logger.debug("Form validation failed")
  689. else:
  690. form = form_cls(initial={
  691. 'pk': pk_list,
  692. 'return_url': self.get_return_url(request),
  693. })
  694. # Retrieve objects being deleted
  695. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  696. if not table.rows:
  697. messages.warning(request, "No {} were selected for deletion.".format(model._meta.verbose_name_plural))
  698. return redirect(self.get_return_url(request))
  699. return render(request, self.template_name, {
  700. 'form': form,
  701. 'obj_type_plural': model._meta.verbose_name_plural,
  702. 'table': table,
  703. 'return_url': self.get_return_url(request),
  704. })
  705. def get_form(self):
  706. """
  707. Provide a standard bulk delete form if none has been specified for the view
  708. """
  709. class BulkDeleteForm(ConfirmationForm):
  710. pk = ModelMultipleChoiceField(queryset=self.queryset, widget=MultipleHiddenInput)
  711. if self.form:
  712. return self.form
  713. return BulkDeleteForm
  714. #
  715. # Device/VirtualMachine components
  716. #
  717. # TODO: Replace with BulkCreateView
  718. class ComponentCreateView(GetReturnURLMixin, View):
  719. """
  720. Add one or more components (e.g. interfaces, console ports, etc.) to a Device or VirtualMachine.
  721. """
  722. model = None
  723. form = None
  724. model_form = None
  725. template_name = None
  726. def get(self, request):
  727. form = self.form(initial=request.GET)
  728. return render(request, self.template_name, {
  729. 'component_type': self.model._meta.verbose_name,
  730. 'form': form,
  731. 'return_url': self.get_return_url(request),
  732. })
  733. def post(self, request):
  734. form = self.form(request.POST, initial=request.GET)
  735. if form.is_valid():
  736. new_components = []
  737. data = deepcopy(request.POST)
  738. for i, name in enumerate(form.cleaned_data['name_pattern']):
  739. # Initialize the individual component form
  740. data['name'] = name
  741. if hasattr(form, 'get_iterative_data'):
  742. data.update(form.get_iterative_data(i))
  743. component_form = self.model_form(data)
  744. if component_form.is_valid():
  745. new_components.append(component_form)
  746. else:
  747. for field, errors in component_form.errors.as_data().items():
  748. # Assign errors on the child form's name field to name_pattern on the parent form
  749. if field == 'name':
  750. field = 'name_pattern'
  751. for e in errors:
  752. form.add_error(field, '{}: {}'.format(name, ', '.join(e)))
  753. if not form.errors:
  754. # Create the new components
  755. for component_form in new_components:
  756. component_form.save()
  757. messages.success(request, "Added {} {}".format(
  758. len(new_components), self.model._meta.verbose_name_plural
  759. ))
  760. if '_addanother' in request.POST:
  761. return redirect(request.get_full_path())
  762. elif 'device_type' in form.cleaned_data:
  763. return redirect(form.cleaned_data['device_type'].get_absolute_url())
  764. elif 'device' in form.cleaned_data:
  765. return redirect(form.cleaned_data['device'].get_absolute_url())
  766. else:
  767. return redirect(self.get_return_url(request))
  768. return render(request, self.template_name, {
  769. 'component_type': self.model._meta.verbose_name,
  770. 'form': form,
  771. 'return_url': self.get_return_url(request),
  772. })
  773. class BulkComponentCreateView(GetReturnURLMixin, View):
  774. """
  775. Add one or more components (e.g. interfaces, console ports, etc.) to a set of Devices or VirtualMachines.
  776. """
  777. parent_model = None
  778. parent_field = None
  779. form = None
  780. model = None
  781. model_form = None
  782. filterset = None
  783. table = None
  784. template_name = 'utilities/obj_bulk_add_component.html'
  785. def post(self, request):
  786. logger = logging.getLogger('netbox.views.BulkComponentCreateView')
  787. parent_model_name = self.parent_model._meta.verbose_name_plural
  788. model_name = self.model._meta.verbose_name_plural
  789. # Are we editing *all* objects in the queryset or just a selected subset?
  790. if request.POST.get('_all') and self.filterset is not None:
  791. pk_list = [obj.pk for obj in self.filterset(request.GET, self.parent_model.objects.only('pk')).qs]
  792. else:
  793. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  794. selected_objects = self.parent_model.objects.filter(pk__in=pk_list)
  795. if not selected_objects:
  796. messages.warning(request, "No {} were selected.".format(self.parent_model._meta.verbose_name_plural))
  797. return redirect(self.get_return_url(request))
  798. table = self.table(selected_objects)
  799. if '_create' in request.POST:
  800. form = self.form(request.POST)
  801. if form.is_valid():
  802. logger.debug("Form validation was successful")
  803. new_components = []
  804. data = deepcopy(form.cleaned_data)
  805. try:
  806. with transaction.atomic():
  807. for obj in data['pk']:
  808. names = data['name_pattern']
  809. for name in names:
  810. component_data = {
  811. self.parent_field: obj.pk,
  812. 'name': name,
  813. }
  814. component_data.update(data)
  815. component_form = self.model_form(component_data)
  816. if component_form.is_valid():
  817. instance = component_form.save()
  818. logger.debug(f"Created {instance} on {instance.parent}")
  819. new_components.append(instance)
  820. else:
  821. for field, errors in component_form.errors.as_data().items():
  822. for e in errors:
  823. form.add_error(field, '{} {}: {}'.format(obj, name, ', '.join(e)))
  824. except IntegrityError:
  825. pass
  826. if not form.errors:
  827. msg = "Added {} {} to {} {}.".format(
  828. len(new_components),
  829. model_name,
  830. len(form.cleaned_data['pk']),
  831. parent_model_name
  832. )
  833. logger.info(msg)
  834. messages.success(request, msg)
  835. return redirect(self.get_return_url(request))
  836. else:
  837. logger.debug("Form validation failed")
  838. else:
  839. form = self.form(initial={'pk': pk_list})
  840. return render(request, self.template_name, {
  841. 'form': form,
  842. 'parent_model_name': parent_model_name,
  843. 'model_name': model_name,
  844. 'table': table,
  845. 'return_url': self.get_return_url(request),
  846. })
  847. @requires_csrf_token
  848. def server_error(request, template_name=ERROR_500_TEMPLATE_NAME):
  849. """
  850. Custom 500 handler to provide additional context when rendering 500.html.
  851. """
  852. try:
  853. template = loader.get_template(template_name)
  854. except TemplateDoesNotExist:
  855. return HttpResponseServerError('<h1>Server Error (500)</h1>', content_type='text/html')
  856. type_, error, traceback = sys.exc_info()
  857. return HttpResponseServerError(template.render({
  858. 'exception': str(type_),
  859. 'error': error,
  860. }))