views.py 42 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075
  1. import logging
  2. import sys
  3. from copy import deepcopy
  4. from django.contrib import messages
  5. from django.contrib.auth.decorators import login_required
  6. from django.contrib.contenttypes.models import ContentType
  7. from django.core.exceptions import FieldDoesNotExist, ValidationError
  8. from django.db import transaction, IntegrityError
  9. from django.db.models import ManyToManyField, ProtectedError
  10. from django.forms import Form, ModelMultipleChoiceField, MultipleHiddenInput, Textarea
  11. from django.http import HttpResponse, HttpResponseServerError
  12. from django.shortcuts import get_object_or_404, redirect, render
  13. from django.template import loader
  14. from django.template.exceptions import TemplateDoesNotExist
  15. from django.urls import reverse
  16. from django.utils.decorators import method_decorator
  17. from django.utils.html import escape
  18. from django.utils.http import is_safe_url
  19. from django.utils.safestring import mark_safe
  20. from django.views.decorators.csrf import requires_csrf_token
  21. from django.views.defaults import ERROR_500_TEMPLATE_NAME
  22. from django.views.generic import View
  23. from django_tables2 import RequestConfig
  24. from extras.models import CustomField, CustomFieldValue, ExportTemplate
  25. from extras.querysets import CustomFieldQueryset
  26. from utilities.exceptions import AbortTransaction
  27. from utilities.forms import BootstrapMixin, CSVDataField, TableConfigForm
  28. from utilities.utils import csv_format, prepare_cloned_fields
  29. from .error_handlers import handle_protectederror
  30. from .forms import ConfirmationForm, ImportForm
  31. from .paginator import EnhancedPaginator, get_paginate_count
  32. class GetReturnURLMixin(object):
  33. """
  34. Provides logic for determining where a user should be redirected after processing a form.
  35. """
  36. default_return_url = None
  37. def get_return_url(self, request, obj=None):
  38. # First, see if `return_url` was specified as a query parameter or form data. Use this URL only if it's
  39. # considered safe.
  40. query_param = request.GET.get('return_url') or request.POST.get('return_url')
  41. if query_param and is_safe_url(url=query_param, allowed_hosts=request.get_host()):
  42. return query_param
  43. # Next, check if the object being modified (if any) has an absolute URL.
  44. elif obj is not None and obj.pk and hasattr(obj, 'get_absolute_url'):
  45. return obj.get_absolute_url()
  46. # Fall back to the default URL (if specified) for the view.
  47. elif self.default_return_url is not None:
  48. return reverse(self.default_return_url)
  49. # If all else fails, return home. Ideally this should never happen.
  50. return reverse('home')
  51. class ObjectListView(View):
  52. """
  53. List a series of objects.
  54. queryset: The queryset of objects to display
  55. filter: A django-filter FilterSet that is applied to the queryset
  56. filter_form: The form used to render filter options
  57. table: The django-tables2 Table used to render the objects list
  58. template_name: The name of the template
  59. """
  60. queryset = None
  61. filterset = None
  62. filterset_form = None
  63. table = None
  64. template_name = 'utilities/obj_list.html'
  65. action_buttons = ('add', 'import', 'export')
  66. def queryset_to_yaml(self):
  67. """
  68. Export the queryset of objects as concatenated YAML documents.
  69. """
  70. yaml_data = [obj.to_yaml() for obj in self.queryset]
  71. return '---\n'.join(yaml_data)
  72. def queryset_to_csv(self):
  73. """
  74. Export the queryset of objects as comma-separated value (CSV), using the model's to_csv() method.
  75. """
  76. csv_data = []
  77. custom_fields = []
  78. # Start with the column headers
  79. headers = self.queryset.model.csv_headers.copy()
  80. # Add custom field headers, if any
  81. if hasattr(self.queryset.model, 'get_custom_fields'):
  82. for custom_field in self.queryset.model().get_custom_fields():
  83. headers.append(custom_field.name)
  84. custom_fields.append(custom_field.name)
  85. csv_data.append(','.join(headers))
  86. # Iterate through the queryset appending each object
  87. for obj in self.queryset:
  88. data = obj.to_csv()
  89. for custom_field in custom_fields:
  90. data += (obj.cf.get(custom_field, ''),)
  91. csv_data.append(csv_format(data))
  92. return '\n'.join(csv_data)
  93. def get(self, request):
  94. model = self.queryset.model
  95. content_type = ContentType.objects.get_for_model(model)
  96. if self.filterset:
  97. self.queryset = self.filterset(request.GET, self.queryset).qs
  98. # If this type of object has one or more custom fields, prefetch any relevant custom field values
  99. custom_fields = CustomField.objects.filter(
  100. obj_type=ContentType.objects.get_for_model(model)
  101. ).prefetch_related('choices')
  102. if custom_fields:
  103. self.queryset = self.queryset.prefetch_related('custom_field_values')
  104. # Check for export template rendering
  105. if request.GET.get('export'):
  106. et = get_object_or_404(ExportTemplate, content_type=content_type, name=request.GET.get('export'))
  107. queryset = CustomFieldQueryset(self.queryset, custom_fields) if custom_fields else self.queryset
  108. try:
  109. return et.render_to_response(queryset)
  110. except Exception as e:
  111. messages.error(
  112. request,
  113. "There was an error rendering the selected export template ({}): {}".format(
  114. et.name, e
  115. )
  116. )
  117. # Check for YAML export support
  118. elif 'export' in request.GET and hasattr(model, 'to_yaml'):
  119. response = HttpResponse(self.queryset_to_yaml(), content_type='text/yaml')
  120. filename = 'netbox_{}.yaml'.format(self.queryset.model._meta.verbose_name_plural)
  121. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  122. return response
  123. # Fall back to built-in CSV formatting if export requested but no template specified
  124. elif 'export' in request.GET and hasattr(model, 'to_csv'):
  125. response = HttpResponse(self.queryset_to_csv(), content_type='text/csv')
  126. filename = 'netbox_{}.csv'.format(self.queryset.model._meta.verbose_name_plural)
  127. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  128. return response
  129. # Provide a hook to tweak the queryset based on the request immediately prior to rendering the object list
  130. self.queryset = self.alter_queryset(request)
  131. # Compile a dictionary indicating which permissions are available to the current user for this model
  132. permissions = {}
  133. for action in ('add', 'change', 'delete', 'view'):
  134. perm_name = '{}.{}_{}'.format(model._meta.app_label, action, model._meta.model_name)
  135. permissions[action] = request.user.has_perm(perm_name)
  136. # Construct the table based on the user's permissions
  137. if request.user.is_authenticated:
  138. columns = request.user.config.get(f"tables.{self.table.__name__}.columns")
  139. else:
  140. columns = None
  141. table = self.table(self.queryset, columns=columns)
  142. if 'pk' in table.base_columns and (permissions['change'] or permissions['delete']):
  143. table.columns.show('pk')
  144. # Apply the request context
  145. paginate = {
  146. 'paginator_class': EnhancedPaginator,
  147. 'per_page': get_paginate_count(request)
  148. }
  149. RequestConfig(request, paginate).configure(table)
  150. context = {
  151. 'content_type': content_type,
  152. 'table': table,
  153. 'permissions': permissions,
  154. 'action_buttons': self.action_buttons,
  155. 'table_config_form': TableConfigForm(table=table),
  156. 'filter_form': self.filterset_form(request.GET, label_suffix='') if self.filterset_form else None,
  157. }
  158. context.update(self.extra_context())
  159. return render(request, self.template_name, context)
  160. @method_decorator(login_required)
  161. def post(self, request):
  162. # Update the user's table configuration
  163. table = self.table(self.queryset)
  164. form = TableConfigForm(table=table, data=request.POST)
  165. preference_name = f"tables.{self.table.__name__}.columns"
  166. if form.is_valid():
  167. if 'set' in request.POST:
  168. request.user.config.set(preference_name, form.cleaned_data['columns'], commit=True)
  169. elif 'clear' in request.POST:
  170. request.user.config.clear(preference_name, commit=True)
  171. messages.success(request, "Your preferences have been updated.")
  172. return redirect(request.get_full_path())
  173. def alter_queryset(self, request):
  174. # .all() is necessary to avoid caching queries
  175. return self.queryset.all()
  176. def extra_context(self):
  177. return {}
  178. class ObjectEditView(GetReturnURLMixin, View):
  179. """
  180. Create or edit a single object.
  181. model: The model of the object being edited
  182. model_form: The form used to create or edit the object
  183. template_name: The name of the template
  184. """
  185. model = None
  186. model_form = None
  187. template_name = 'utilities/obj_edit.html'
  188. def get_object(self, kwargs):
  189. # Look up object by slug or PK. Return None if neither was provided.
  190. if 'slug' in kwargs:
  191. return get_object_or_404(self.model, slug=kwargs['slug'])
  192. elif 'pk' in kwargs:
  193. return get_object_or_404(self.model, pk=kwargs['pk'])
  194. return self.model()
  195. def alter_obj(self, obj, request, url_args, url_kwargs):
  196. # Allow views to add extra info to an object before it is processed. For example, a parent object can be defined
  197. # given some parameter from the request URL.
  198. return obj
  199. def dispatch(self, request, *args, **kwargs):
  200. self.obj = self.alter_obj(self.get_object(kwargs), request, args, kwargs)
  201. return super().dispatch(request, *args, **kwargs)
  202. def get(self, request, *args, **kwargs):
  203. # Parse initial data manually to avoid setting field values as lists
  204. initial_data = {k: request.GET[k] for k in request.GET}
  205. form = self.model_form(instance=self.obj, initial=initial_data)
  206. return render(request, self.template_name, {
  207. 'obj': self.obj,
  208. 'obj_type': self.model._meta.verbose_name,
  209. 'form': form,
  210. 'return_url': self.get_return_url(request, self.obj),
  211. })
  212. def post(self, request, *args, **kwargs):
  213. logger = logging.getLogger('netbox.views.ObjectEditView')
  214. form = self.model_form(request.POST, request.FILES, instance=self.obj)
  215. if form.is_valid():
  216. logger.debug("Form validation was successful")
  217. obj = form.save()
  218. msg = '{} {}'.format(
  219. 'Created' if not form.instance.pk else 'Modified',
  220. self.model._meta.verbose_name
  221. )
  222. logger.info(f"{msg} {obj} (PK: {obj.pk})")
  223. if hasattr(obj, 'get_absolute_url'):
  224. msg = '{} <a href="{}">{}</a>'.format(msg, obj.get_absolute_url(), escape(obj))
  225. else:
  226. msg = '{} {}'.format(msg, escape(obj))
  227. messages.success(request, mark_safe(msg))
  228. if '_addanother' in request.POST:
  229. # If the object has clone_fields, pre-populate a new instance of the form
  230. if hasattr(obj, 'clone_fields'):
  231. url = '{}?{}'.format(request.path, prepare_cloned_fields(obj))
  232. return redirect(url)
  233. return redirect(request.get_full_path())
  234. return_url = form.cleaned_data.get('return_url')
  235. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  236. return redirect(return_url)
  237. else:
  238. return redirect(self.get_return_url(request, obj))
  239. else:
  240. logger.debug("Form validation failed")
  241. return render(request, self.template_name, {
  242. 'obj': self.obj,
  243. 'obj_type': self.model._meta.verbose_name,
  244. 'form': form,
  245. 'return_url': self.get_return_url(request, self.obj),
  246. })
  247. class ObjectDeleteView(GetReturnURLMixin, View):
  248. """
  249. Delete a single object.
  250. model: The model of the object being deleted
  251. template_name: The name of the template
  252. """
  253. model = None
  254. template_name = 'utilities/obj_delete.html'
  255. def get_object(self, kwargs):
  256. # Look up object by slug if one has been provided. Otherwise, use PK.
  257. if 'slug' in kwargs:
  258. return get_object_or_404(self.model, slug=kwargs['slug'])
  259. else:
  260. return get_object_or_404(self.model, pk=kwargs['pk'])
  261. def get(self, request, **kwargs):
  262. obj = self.get_object(kwargs)
  263. form = ConfirmationForm(initial=request.GET)
  264. return render(request, self.template_name, {
  265. 'obj': obj,
  266. 'form': form,
  267. 'obj_type': self.model._meta.verbose_name,
  268. 'return_url': self.get_return_url(request, obj),
  269. })
  270. def post(self, request, **kwargs):
  271. logger = logging.getLogger('netbox.views.ObjectDeleteView')
  272. obj = self.get_object(kwargs)
  273. form = ConfirmationForm(request.POST)
  274. if form.is_valid():
  275. logger.debug("Form validation was successful")
  276. try:
  277. obj.delete()
  278. except ProtectedError as e:
  279. logger.info("Caught ProtectedError while attempting to delete object")
  280. handle_protectederror(obj, request, e)
  281. return redirect(obj.get_absolute_url())
  282. msg = 'Deleted {} {}'.format(self.model._meta.verbose_name, obj)
  283. logger.info(msg)
  284. messages.success(request, msg)
  285. return_url = form.cleaned_data.get('return_url')
  286. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  287. return redirect(return_url)
  288. else:
  289. return redirect(self.get_return_url(request, obj))
  290. else:
  291. logger.debug("Form validation failed")
  292. return render(request, self.template_name, {
  293. 'obj': obj,
  294. 'form': form,
  295. 'obj_type': self.model._meta.verbose_name,
  296. 'return_url': self.get_return_url(request, obj),
  297. })
  298. class BulkCreateView(GetReturnURLMixin, View):
  299. """
  300. Create new objects in bulk.
  301. form: Form class which provides the `pattern` field
  302. model_form: The ModelForm used to create individual objects
  303. pattern_target: Name of the field to be evaluated as a pattern (if any)
  304. template_name: The name of the template
  305. """
  306. form = None
  307. model_form = None
  308. pattern_target = ''
  309. template_name = None
  310. def get(self, request):
  311. # Set initial values for visible form fields from query args
  312. initial = {}
  313. for field in getattr(self.model_form._meta, 'fields', []):
  314. if request.GET.get(field):
  315. initial[field] = request.GET[field]
  316. form = self.form()
  317. model_form = self.model_form(initial=initial)
  318. return render(request, self.template_name, {
  319. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  320. 'form': form,
  321. 'model_form': model_form,
  322. 'return_url': self.get_return_url(request),
  323. })
  324. def post(self, request):
  325. logger = logging.getLogger('netbox.views.BulkCreateView')
  326. model = self.model_form._meta.model
  327. form = self.form(request.POST)
  328. model_form = self.model_form(request.POST)
  329. if form.is_valid():
  330. logger.debug("Form validation was successful")
  331. pattern = form.cleaned_data['pattern']
  332. new_objs = []
  333. try:
  334. with transaction.atomic():
  335. # Create objects from the expanded. Abort the transaction on the first validation error.
  336. for value in pattern:
  337. # Reinstantiate the model form each time to avoid overwriting the same instance. Use a mutable
  338. # copy of the POST QueryDict so that we can update the target field value.
  339. model_form = self.model_form(request.POST.copy())
  340. model_form.data[self.pattern_target] = value
  341. # Validate each new object independently.
  342. if model_form.is_valid():
  343. obj = model_form.save()
  344. logger.debug(f"Created {obj} (PK: {obj.pk})")
  345. new_objs.append(obj)
  346. else:
  347. # Copy any errors on the pattern target field to the pattern form.
  348. errors = model_form.errors.as_data()
  349. if errors.get(self.pattern_target):
  350. form.add_error('pattern', errors[self.pattern_target])
  351. # Raise an IntegrityError to break the for loop and abort the transaction.
  352. raise IntegrityError()
  353. # If we make it to this point, validation has succeeded on all new objects.
  354. msg = "Added {} {}".format(len(new_objs), model._meta.verbose_name_plural)
  355. logger.info(msg)
  356. messages.success(request, msg)
  357. if '_addanother' in request.POST:
  358. return redirect(request.path)
  359. return redirect(self.get_return_url(request))
  360. except IntegrityError:
  361. pass
  362. else:
  363. logger.debug("Form validation failed")
  364. return render(request, self.template_name, {
  365. 'form': form,
  366. 'model_form': model_form,
  367. 'obj_type': model._meta.verbose_name,
  368. 'return_url': self.get_return_url(request),
  369. })
  370. class ObjectImportView(GetReturnURLMixin, View):
  371. """
  372. Import a single object (YAML or JSON format).
  373. """
  374. model = None
  375. model_form = None
  376. related_object_forms = dict()
  377. template_name = 'utilities/obj_import.html'
  378. def get(self, request):
  379. form = ImportForm()
  380. return render(request, self.template_name, {
  381. 'form': form,
  382. 'obj_type': self.model._meta.verbose_name,
  383. 'return_url': self.get_return_url(request),
  384. })
  385. def post(self, request):
  386. logger = logging.getLogger('netbox.views.ObjectImportView')
  387. form = ImportForm(request.POST)
  388. if form.is_valid():
  389. logger.debug("Import form validation was successful")
  390. # Initialize model form
  391. data = form.cleaned_data['data']
  392. model_form = self.model_form(data)
  393. # Assign default values for any fields which were not specified. We have to do this manually because passing
  394. # 'initial=' to the form on initialization merely sets default values for the widgets. Since widgets are not
  395. # used for YAML/JSON import, we first bind the imported data normally, then update the form's data with the
  396. # applicable field defaults as needed prior to form validation.
  397. for field_name, field in model_form.fields.items():
  398. if field_name not in data and hasattr(field, 'initial'):
  399. model_form.data[field_name] = field.initial
  400. if model_form.is_valid():
  401. try:
  402. with transaction.atomic():
  403. # Save the primary object
  404. obj = model_form.save()
  405. logger.debug(f"Created {obj} (PK: {obj.pk})")
  406. # Iterate through the related object forms (if any), validating and saving each instance.
  407. for field_name, related_object_form in self.related_object_forms.items():
  408. logger.debug("Processing form for related objects: {related_object_form}")
  409. for i, rel_obj_data in enumerate(data.get(field_name, list())):
  410. f = related_object_form(obj, rel_obj_data)
  411. for subfield_name, field in f.fields.items():
  412. if subfield_name not in rel_obj_data and hasattr(field, 'initial'):
  413. f.data[subfield_name] = field.initial
  414. if f.is_valid():
  415. f.save()
  416. else:
  417. # Replicate errors on the related object form to the primary form for display
  418. for subfield_name, errors in f.errors.items():
  419. for err in errors:
  420. err_msg = "{}[{}] {}: {}".format(field_name, i, subfield_name, err)
  421. model_form.add_error(None, err_msg)
  422. raise AbortTransaction()
  423. except AbortTransaction:
  424. pass
  425. if not model_form.errors:
  426. logger.info(f"Import object {obj} (PK: {obj.pk})")
  427. messages.success(request, mark_safe('Imported object: <a href="{}">{}</a>'.format(
  428. obj.get_absolute_url(), obj
  429. )))
  430. if '_addanother' in request.POST:
  431. return redirect(request.get_full_path())
  432. return_url = form.cleaned_data.get('return_url')
  433. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  434. return redirect(return_url)
  435. else:
  436. return redirect(self.get_return_url(request, obj))
  437. else:
  438. logger.debug("Model form validation failed")
  439. # Replicate model form errors for display
  440. for field, errors in model_form.errors.items():
  441. for err in errors:
  442. if field == '__all__':
  443. form.add_error(None, err)
  444. else:
  445. form.add_error(None, "{}: {}".format(field, err))
  446. else:
  447. logger.debug("Import form validation failed")
  448. return render(request, self.template_name, {
  449. 'form': form,
  450. 'obj_type': self.model._meta.verbose_name,
  451. 'return_url': self.get_return_url(request),
  452. })
  453. class BulkImportView(GetReturnURLMixin, View):
  454. """
  455. Import objects in bulk (CSV format).
  456. model_form: The form used to create each imported object
  457. table: The django-tables2 Table used to render the list of imported objects
  458. template_name: The name of the template
  459. widget_attrs: A dict of attributes to apply to the import widget (e.g. to require a session key)
  460. """
  461. model_form = None
  462. table = None
  463. template_name = 'utilities/obj_bulk_import.html'
  464. widget_attrs = {}
  465. def _import_form(self, *args, **kwargs):
  466. class ImportForm(BootstrapMixin, Form):
  467. csv = CSVDataField(
  468. from_form=self.model_form,
  469. widget=Textarea(attrs=self.widget_attrs)
  470. )
  471. return ImportForm(*args, **kwargs)
  472. def _save_obj(self, obj_form, request):
  473. """
  474. Provide a hook to modify the object immediately before saving it (e.g. to encrypt secret data).
  475. """
  476. return obj_form.save()
  477. def get(self, request):
  478. return render(request, self.template_name, {
  479. 'form': self._import_form(),
  480. 'fields': self.model_form().fields,
  481. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  482. 'return_url': self.get_return_url(request),
  483. })
  484. def post(self, request):
  485. logger = logging.getLogger('netbox.views.BulkImportView')
  486. new_objs = []
  487. form = self._import_form(request.POST)
  488. if form.is_valid():
  489. logger.debug("Form validation was successful")
  490. try:
  491. # Iterate through CSV data and bind each row to a new model form instance.
  492. with transaction.atomic():
  493. headers, records = form.cleaned_data['csv']
  494. for row, data in enumerate(records, start=1):
  495. obj_form = self.model_form(data, headers=headers)
  496. if obj_form.is_valid():
  497. obj = self._save_obj(obj_form, request)
  498. new_objs.append(obj)
  499. else:
  500. for field, err in obj_form.errors.items():
  501. form.add_error('csv', "Row {} {}: {}".format(row, field, err[0]))
  502. raise ValidationError("")
  503. # Compile a table containing the imported objects
  504. obj_table = self.table(new_objs)
  505. if new_objs:
  506. msg = 'Imported {} {}'.format(len(new_objs), new_objs[0]._meta.verbose_name_plural)
  507. logger.info(msg)
  508. messages.success(request, msg)
  509. return render(request, "import_success.html", {
  510. 'table': obj_table,
  511. 'return_url': self.get_return_url(request),
  512. })
  513. except ValidationError:
  514. pass
  515. else:
  516. logger.debug("Form validation failed")
  517. return render(request, self.template_name, {
  518. 'form': form,
  519. 'fields': self.model_form().fields,
  520. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  521. 'return_url': self.get_return_url(request),
  522. })
  523. class BulkEditView(GetReturnURLMixin, View):
  524. """
  525. Edit objects in bulk.
  526. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  527. filter: FilterSet to apply when deleting by QuerySet
  528. table: The table used to display devices being edited
  529. form: The form class used to edit objects in bulk
  530. template_name: The name of the template
  531. """
  532. queryset = None
  533. filterset = None
  534. table = None
  535. form = None
  536. template_name = 'utilities/obj_bulk_edit.html'
  537. def get(self, request):
  538. return redirect(self.get_return_url(request))
  539. def post(self, request, **kwargs):
  540. logger = logging.getLogger('netbox.views.BulkEditView')
  541. model = self.queryset.model
  542. # If we are editing *all* objects in the queryset, replace the PK list with all matched objects.
  543. if request.POST.get('_all') and self.filterset is not None:
  544. pk_list = [
  545. obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs
  546. ]
  547. else:
  548. pk_list = request.POST.getlist('pk')
  549. if '_apply' in request.POST:
  550. form = self.form(model, request.POST)
  551. if form.is_valid():
  552. logger.debug("Form validation was successful")
  553. custom_fields = form.custom_fields if hasattr(form, 'custom_fields') else []
  554. standard_fields = [
  555. field for field in form.fields if field not in custom_fields + ['pk']
  556. ]
  557. nullified_fields = request.POST.getlist('_nullify')
  558. try:
  559. with transaction.atomic():
  560. updated_count = 0
  561. for obj in model.objects.filter(pk__in=form.cleaned_data['pk']):
  562. # Update standard fields. If a field is listed in _nullify, delete its value.
  563. for name in standard_fields:
  564. try:
  565. model_field = model._meta.get_field(name)
  566. except FieldDoesNotExist:
  567. # This form field is used to modify a field rather than set its value directly
  568. model_field = None
  569. # Handle nullification
  570. if name in form.nullable_fields and name in nullified_fields:
  571. if isinstance(model_field, ManyToManyField):
  572. getattr(obj, name).set([])
  573. else:
  574. setattr(obj, name, None if model_field.null else '')
  575. # ManyToManyFields
  576. elif isinstance(model_field, ManyToManyField):
  577. getattr(obj, name).set(form.cleaned_data[name])
  578. # Normal fields
  579. elif form.cleaned_data[name] not in (None, ''):
  580. setattr(obj, name, form.cleaned_data[name])
  581. obj.full_clean()
  582. obj.save()
  583. logger.debug(f"Saved {obj} (PK: {obj.pk})")
  584. # Update custom fields
  585. obj_type = ContentType.objects.get_for_model(model)
  586. for name in custom_fields:
  587. field = form.fields[name].model
  588. if name in form.nullable_fields and name in nullified_fields:
  589. CustomFieldValue.objects.filter(
  590. field=field, obj_type=obj_type, obj_id=obj.pk
  591. ).delete()
  592. elif form.cleaned_data[name] not in [None, '']:
  593. try:
  594. cfv = CustomFieldValue.objects.get(
  595. field=field, obj_type=obj_type, obj_id=obj.pk
  596. )
  597. except CustomFieldValue.DoesNotExist:
  598. cfv = CustomFieldValue(
  599. field=field, obj_type=obj_type, obj_id=obj.pk
  600. )
  601. cfv.value = form.cleaned_data[name]
  602. cfv.save()
  603. logger.debug(f"Saved custom fields for {obj} (PK: {obj.pk})")
  604. # Add/remove tags
  605. if form.cleaned_data.get('add_tags', None):
  606. obj.tags.add(*form.cleaned_data['add_tags'])
  607. if form.cleaned_data.get('remove_tags', None):
  608. obj.tags.remove(*form.cleaned_data['remove_tags'])
  609. updated_count += 1
  610. if updated_count:
  611. msg = 'Updated {} {}'.format(updated_count, model._meta.verbose_name_plural)
  612. logger.info(msg)
  613. messages.success(self.request, msg)
  614. return redirect(self.get_return_url(request))
  615. except ValidationError as e:
  616. messages.error(self.request, "{} failed validation: {}".format(obj, e))
  617. else:
  618. logger.debug("Form validation failed")
  619. else:
  620. # Include the PK list as initial data for the form
  621. initial_data = {'pk': pk_list}
  622. # Check for other contextual data needed for the form. We avoid passing all of request.GET because the
  623. # filter values will conflict with the bulk edit form fields.
  624. # TODO: Find a better way to accomplish this
  625. if 'device' in request.GET:
  626. initial_data['device'] = request.GET.get('device')
  627. form = self.form(model, initial=initial_data)
  628. # Retrieve objects being edited
  629. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  630. if not table.rows:
  631. messages.warning(request, "No {} were selected.".format(model._meta.verbose_name_plural))
  632. return redirect(self.get_return_url(request))
  633. return render(request, self.template_name, {
  634. 'form': form,
  635. 'table': table,
  636. 'obj_type_plural': model._meta.verbose_name_plural,
  637. 'return_url': self.get_return_url(request),
  638. })
  639. class BulkDeleteView(GetReturnURLMixin, View):
  640. """
  641. Delete objects in bulk.
  642. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  643. filter: FilterSet to apply when deleting by QuerySet
  644. table: The table used to display devices being deleted
  645. form: The form class used to delete objects in bulk
  646. template_name: The name of the template
  647. """
  648. queryset = None
  649. filterset = None
  650. table = None
  651. form = None
  652. template_name = 'utilities/obj_bulk_delete.html'
  653. def get(self, request):
  654. return redirect(self.get_return_url(request))
  655. def post(self, request, **kwargs):
  656. logger = logging.getLogger('netbox.views.BulkDeleteView')
  657. model = self.queryset.model
  658. # Are we deleting *all* objects in the queryset or just a selected subset?
  659. if request.POST.get('_all'):
  660. if self.filterset is not None:
  661. pk_list = [obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs]
  662. else:
  663. pk_list = model.objects.values_list('pk', flat=True)
  664. else:
  665. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  666. form_cls = self.get_form()
  667. if '_confirm' in request.POST:
  668. form = form_cls(request.POST)
  669. if form.is_valid():
  670. logger.debug("Form validation was successful")
  671. # Delete objects
  672. queryset = model.objects.filter(pk__in=pk_list)
  673. try:
  674. deleted_count = queryset.delete()[1][model._meta.label]
  675. except ProtectedError as e:
  676. logger.info("Caught ProtectedError while attempting to delete objects")
  677. handle_protectederror(list(queryset), request, e)
  678. return redirect(self.get_return_url(request))
  679. msg = 'Deleted {} {}'.format(deleted_count, model._meta.verbose_name_plural)
  680. logger.info(msg)
  681. messages.success(request, msg)
  682. return redirect(self.get_return_url(request))
  683. else:
  684. logger.debug("Form validation failed")
  685. else:
  686. form = form_cls(initial={
  687. 'pk': pk_list,
  688. 'return_url': self.get_return_url(request),
  689. })
  690. # Retrieve objects being deleted
  691. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  692. if not table.rows:
  693. messages.warning(request, "No {} were selected for deletion.".format(model._meta.verbose_name_plural))
  694. return redirect(self.get_return_url(request))
  695. return render(request, self.template_name, {
  696. 'form': form,
  697. 'obj_type_plural': model._meta.verbose_name_plural,
  698. 'table': table,
  699. 'return_url': self.get_return_url(request),
  700. })
  701. def get_form(self):
  702. """
  703. Provide a standard bulk delete form if none has been specified for the view
  704. """
  705. class BulkDeleteForm(ConfirmationForm):
  706. pk = ModelMultipleChoiceField(queryset=self.queryset, widget=MultipleHiddenInput)
  707. if self.form:
  708. return self.form
  709. return BulkDeleteForm
  710. #
  711. # Device/VirtualMachine components
  712. #
  713. # TODO: Replace with BulkCreateView
  714. class ComponentCreateView(GetReturnURLMixin, View):
  715. """
  716. Add one or more components (e.g. interfaces, console ports, etc.) to a Device or VirtualMachine.
  717. """
  718. model = None
  719. form = None
  720. model_form = None
  721. template_name = None
  722. def get(self, request):
  723. form = self.form(initial=request.GET)
  724. return render(request, self.template_name, {
  725. 'component_type': self.model._meta.verbose_name,
  726. 'form': form,
  727. 'return_url': self.get_return_url(request),
  728. })
  729. def post(self, request):
  730. form = self.form(request.POST, initial=request.GET)
  731. if form.is_valid():
  732. new_components = []
  733. data = deepcopy(request.POST)
  734. names = form.cleaned_data['name_pattern']
  735. labels = form.cleaned_data.get('label_pattern')
  736. for pos, name in enumerate(names):
  737. label = labels[pos] if labels else None
  738. # Initialize the individual component form
  739. data['name'] = name
  740. data['label'] = label
  741. if hasattr(form, 'get_iterative_data'):
  742. data.update(form.get_iterative_data(pos))
  743. component_form = self.model_form(data)
  744. if component_form.is_valid():
  745. new_components.append(component_form)
  746. else:
  747. for field, errors in component_form.errors.as_data().items():
  748. # Assign errors on the child form's name/label field to name_pattern/label_pattern on the parent form
  749. if field == 'name':
  750. field = 'name_pattern'
  751. if field == 'label':
  752. field = 'label_pattern'
  753. for e in errors:
  754. form.add_error(field, '{}: {}'.format(name, ', '.join(e)))
  755. if not form.errors:
  756. # Create the new components
  757. for component_form in new_components:
  758. component_form.save()
  759. messages.success(request, "Added {} {}".format(
  760. len(new_components), self.model._meta.verbose_name_plural
  761. ))
  762. if '_addanother' in request.POST:
  763. return redirect(request.get_full_path())
  764. else:
  765. return redirect(self.get_return_url(request))
  766. return render(request, self.template_name, {
  767. 'component_type': self.model._meta.verbose_name,
  768. 'form': form,
  769. 'return_url': self.get_return_url(request),
  770. })
  771. class BulkComponentCreateView(GetReturnURLMixin, View):
  772. """
  773. Add one or more components (e.g. interfaces, console ports, etc.) to a set of Devices or VirtualMachines.
  774. """
  775. parent_model = None
  776. parent_field = None
  777. form = None
  778. model = None
  779. model_form = None
  780. filterset = None
  781. table = None
  782. template_name = 'utilities/obj_bulk_add_component.html'
  783. def post(self, request):
  784. logger = logging.getLogger('netbox.views.BulkComponentCreateView')
  785. parent_model_name = self.parent_model._meta.verbose_name_plural
  786. model_name = self.model._meta.verbose_name_plural
  787. # Are we editing *all* objects in the queryset or just a selected subset?
  788. if request.POST.get('_all') and self.filterset is not None:
  789. pk_list = [obj.pk for obj in self.filterset(request.GET, self.parent_model.objects.only('pk')).qs]
  790. else:
  791. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  792. selected_objects = self.parent_model.objects.filter(pk__in=pk_list)
  793. if not selected_objects:
  794. messages.warning(request, "No {} were selected.".format(self.parent_model._meta.verbose_name_plural))
  795. return redirect(self.get_return_url(request))
  796. table = self.table(selected_objects)
  797. if '_create' in request.POST:
  798. form = self.form(request.POST)
  799. if form.is_valid():
  800. logger.debug("Form validation was successful")
  801. new_components = []
  802. data = deepcopy(form.cleaned_data)
  803. try:
  804. with transaction.atomic():
  805. for obj in data['pk']:
  806. names = data['name_pattern']
  807. labels = data['label_pattern']
  808. for pos, name in enumerate(names):
  809. label = labels[pos] if labels else None
  810. component_data = {
  811. self.parent_field: obj.pk,
  812. 'name': name,
  813. 'label': label
  814. }
  815. component_data.update(data)
  816. component_form = self.model_form(component_data)
  817. if component_form.is_valid():
  818. instance = component_form.save()
  819. logger.debug(f"Created {instance} on {instance.parent}")
  820. new_components.append(instance)
  821. else:
  822. for field, errors in component_form.errors.as_data().items():
  823. for e in errors:
  824. form.add_error(field, '{} {}: {}'.format(obj, name, ', '.join(e)))
  825. except IntegrityError:
  826. pass
  827. if not form.errors:
  828. msg = "Added {} {} to {} {}.".format(
  829. len(new_components),
  830. model_name,
  831. len(form.cleaned_data['pk']),
  832. parent_model_name
  833. )
  834. logger.info(msg)
  835. messages.success(request, msg)
  836. return redirect(self.get_return_url(request))
  837. else:
  838. logger.debug("Form validation failed")
  839. else:
  840. form = self.form(initial={'pk': pk_list})
  841. return render(request, self.template_name, {
  842. 'form': form,
  843. 'parent_model_name': parent_model_name,
  844. 'model_name': model_name,
  845. 'table': table,
  846. 'return_url': self.get_return_url(request),
  847. })
  848. @requires_csrf_token
  849. def server_error(request, template_name=ERROR_500_TEMPLATE_NAME):
  850. """
  851. Custom 500 handler to provide additional context when rendering 500.html.
  852. """
  853. try:
  854. template = loader.get_template(template_name)
  855. except TemplateDoesNotExist:
  856. return HttpResponseServerError('<h1>Server Error (500)</h1>', content_type='text/html')
  857. type_, error, traceback = sys.exc_info()
  858. return HttpResponseServerError(template.render({
  859. 'exception': str(type_),
  860. 'error': error,
  861. }))