views.py 40 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034
  1. import logging
  2. import sys
  3. from copy import deepcopy
  4. from django.conf import settings
  5. from django.contrib import messages
  6. from django.contrib.contenttypes.models import ContentType
  7. from django.core.exceptions import FieldDoesNotExist, ValidationError
  8. from django.db import transaction, IntegrityError
  9. from django.db.models import ManyToManyField, ProtectedError
  10. from django.forms import Form, ModelMultipleChoiceField, MultipleHiddenInput, Textarea
  11. from django.http import HttpResponse, HttpResponseServerError
  12. from django.shortcuts import get_object_or_404, redirect, render
  13. from django.template import loader
  14. from django.template.exceptions import TemplateDoesNotExist
  15. from django.urls import reverse
  16. from django.utils.html import escape
  17. from django.utils.http import is_safe_url
  18. from django.utils.safestring import mark_safe
  19. from django.views.decorators.csrf import requires_csrf_token
  20. from django.views.defaults import ERROR_500_TEMPLATE_NAME
  21. from django.views.generic import View
  22. from django_tables2 import RequestConfig
  23. from extras.models import CustomField, CustomFieldValue, ExportTemplate
  24. from extras.querysets import CustomFieldQueryset
  25. from utilities.exceptions import AbortTransaction
  26. from utilities.forms import BootstrapMixin, CSVDataField
  27. from utilities.utils import csv_format, prepare_cloned_fields
  28. from .error_handlers import handle_protectederror
  29. from .forms import ConfirmationForm, ImportForm
  30. from .paginator import EnhancedPaginator
  31. class GetReturnURLMixin(object):
  32. """
  33. Provides logic for determining where a user should be redirected after processing a form.
  34. """
  35. default_return_url = None
  36. def get_return_url(self, request, obj=None):
  37. # First, see if `return_url` was specified as a query parameter or form data. Use this URL only if it's
  38. # considered safe.
  39. query_param = request.GET.get('return_url') or request.POST.get('return_url')
  40. if query_param and is_safe_url(url=query_param, allowed_hosts=request.get_host()):
  41. return query_param
  42. # Next, check if the object being modified (if any) has an absolute URL.
  43. elif obj is not None and obj.pk and hasattr(obj, 'get_absolute_url'):
  44. return obj.get_absolute_url()
  45. # Fall back to the default URL (if specified) for the view.
  46. elif self.default_return_url is not None:
  47. return reverse(self.default_return_url)
  48. # If all else fails, return home. Ideally this should never happen.
  49. return reverse('home')
  50. class ObjectListView(View):
  51. """
  52. List a series of objects.
  53. queryset: The queryset of objects to display
  54. filter: A django-filter FilterSet that is applied to the queryset
  55. filter_form: The form used to render filter options
  56. table: The django-tables2 Table used to render the objects list
  57. template_name: The name of the template
  58. """
  59. queryset = None
  60. filterset = None
  61. filterset_form = None
  62. table = None
  63. template_name = 'utilities/obj_list.html'
  64. action_buttons = ('add', 'import', 'export')
  65. def queryset_to_yaml(self):
  66. """
  67. Export the queryset of objects as concatenated YAML documents.
  68. """
  69. yaml_data = [obj.to_yaml() for obj in self.queryset]
  70. return '---\n'.join(yaml_data)
  71. def queryset_to_csv(self):
  72. """
  73. Export the queryset of objects as comma-separated value (CSV), using the model's to_csv() method.
  74. """
  75. csv_data = []
  76. custom_fields = []
  77. # Start with the column headers
  78. headers = self.queryset.model.csv_headers.copy()
  79. # Add custom field headers, if any
  80. if hasattr(self.queryset.model, 'get_custom_fields'):
  81. for custom_field in self.queryset.model().get_custom_fields():
  82. headers.append(custom_field.name)
  83. custom_fields.append(custom_field.name)
  84. csv_data.append(','.join(headers))
  85. # Iterate through the queryset appending each object
  86. for obj in self.queryset:
  87. data = obj.to_csv()
  88. for custom_field in custom_fields:
  89. data += (obj.cf.get(custom_field, ''),)
  90. csv_data.append(csv_format(data))
  91. return '\n'.join(csv_data)
  92. def get(self, request):
  93. model = self.queryset.model
  94. content_type = ContentType.objects.get_for_model(model)
  95. if self.filterset:
  96. self.queryset = self.filterset(request.GET, self.queryset).qs
  97. # If this type of object has one or more custom fields, prefetch any relevant custom field values
  98. custom_fields = CustomField.objects.filter(
  99. obj_type=ContentType.objects.get_for_model(model)
  100. ).prefetch_related('choices')
  101. if custom_fields:
  102. self.queryset = self.queryset.prefetch_related('custom_field_values')
  103. # Check for export template rendering
  104. if request.GET.get('export'):
  105. et = get_object_or_404(ExportTemplate, content_type=content_type, name=request.GET.get('export'))
  106. queryset = CustomFieldQueryset(self.queryset, custom_fields) if custom_fields else self.queryset
  107. try:
  108. return et.render_to_response(queryset)
  109. except Exception as e:
  110. messages.error(
  111. request,
  112. "There was an error rendering the selected export template ({}): {}".format(
  113. et.name, e
  114. )
  115. )
  116. # Check for YAML export support
  117. elif 'export' in request.GET and hasattr(model, 'to_yaml'):
  118. response = HttpResponse(self.queryset_to_yaml(), content_type='text/yaml')
  119. filename = 'netbox_{}.yaml'.format(self.queryset.model._meta.verbose_name_plural)
  120. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  121. return response
  122. # Fall back to built-in CSV formatting if export requested but no template specified
  123. elif 'export' in request.GET and hasattr(model, 'to_csv'):
  124. response = HttpResponse(self.queryset_to_csv(), content_type='text/csv')
  125. filename = 'netbox_{}.csv'.format(self.queryset.model._meta.verbose_name_plural)
  126. response['Content-Disposition'] = 'attachment; filename="{}"'.format(filename)
  127. return response
  128. # Provide a hook to tweak the queryset based on the request immediately prior to rendering the object list
  129. self.queryset = self.alter_queryset(request)
  130. # Compile a dictionary indicating which permissions are available to the current user for this model
  131. permissions = {}
  132. for action in ('add', 'change', 'delete', 'view'):
  133. perm_name = '{}.{}_{}'.format(model._meta.app_label, action, model._meta.model_name)
  134. permissions[action] = request.user.has_perm(perm_name)
  135. # Construct the table based on the user's permissions
  136. table = self.table(self.queryset)
  137. if 'pk' in table.base_columns and (permissions['change'] or permissions['delete']):
  138. table.columns.show('pk')
  139. # Apply the request context
  140. paginate = {
  141. 'paginator_class': EnhancedPaginator,
  142. 'per_page': request.GET.get('per_page', settings.PAGINATE_COUNT)
  143. }
  144. RequestConfig(request, paginate).configure(table)
  145. context = {
  146. 'content_type': content_type,
  147. 'table': table,
  148. 'permissions': permissions,
  149. 'action_buttons': self.action_buttons,
  150. 'filter_form': self.filterset_form(request.GET, label_suffix='') if self.filterset_form else None,
  151. }
  152. context.update(self.extra_context())
  153. return render(request, self.template_name, context)
  154. def alter_queryset(self, request):
  155. # .all() is necessary to avoid caching queries
  156. return self.queryset.all()
  157. def extra_context(self):
  158. return {}
  159. class ObjectEditView(GetReturnURLMixin, View):
  160. """
  161. Create or edit a single object.
  162. model: The model of the object being edited
  163. model_form: The form used to create or edit the object
  164. template_name: The name of the template
  165. """
  166. model = None
  167. model_form = None
  168. template_name = 'utilities/obj_edit.html'
  169. def get_object(self, kwargs):
  170. # Look up object by slug or PK. Return None if neither was provided.
  171. if 'slug' in kwargs:
  172. return get_object_or_404(self.model, slug=kwargs['slug'])
  173. elif 'pk' in kwargs:
  174. return get_object_or_404(self.model, pk=kwargs['pk'])
  175. return self.model()
  176. def alter_obj(self, obj, request, url_args, url_kwargs):
  177. # Allow views to add extra info to an object before it is processed. For example, a parent object can be defined
  178. # given some parameter from the request URL.
  179. return obj
  180. def dispatch(self, request, *args, **kwargs):
  181. self.obj = self.alter_obj(self.get_object(kwargs), request, args, kwargs)
  182. return super().dispatch(request, *args, **kwargs)
  183. def get(self, request, *args, **kwargs):
  184. # Parse initial data manually to avoid setting field values as lists
  185. initial_data = {k: request.GET[k] for k in request.GET}
  186. form = self.model_form(instance=self.obj, initial=initial_data)
  187. return render(request, self.template_name, {
  188. 'obj': self.obj,
  189. 'obj_type': self.model._meta.verbose_name,
  190. 'form': form,
  191. 'return_url': self.get_return_url(request, self.obj),
  192. })
  193. def post(self, request, *args, **kwargs):
  194. logger = logging.getLogger('netbox.views.ObjectEditView')
  195. form = self.model_form(request.POST, request.FILES, instance=self.obj)
  196. if form.is_valid():
  197. logger.debug("Form validation was successful")
  198. obj = form.save()
  199. msg = '{} {}'.format(
  200. 'Created' if not form.instance.pk else 'Modified',
  201. self.model._meta.verbose_name
  202. )
  203. logger.info(f"{msg} {obj} (PK: {obj.pk})")
  204. if hasattr(obj, 'get_absolute_url'):
  205. msg = '{} <a href="{}">{}</a>'.format(msg, obj.get_absolute_url(), escape(obj))
  206. else:
  207. msg = '{} {}'.format(msg, escape(obj))
  208. messages.success(request, mark_safe(msg))
  209. if '_addanother' in request.POST:
  210. # If the object has clone_fields, pre-populate a new instance of the form
  211. if hasattr(obj, 'clone_fields'):
  212. url = '{}?{}'.format(request.path, prepare_cloned_fields(obj))
  213. return redirect(url)
  214. return redirect(request.get_full_path())
  215. return_url = form.cleaned_data.get('return_url')
  216. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  217. return redirect(return_url)
  218. else:
  219. return redirect(self.get_return_url(request, obj))
  220. else:
  221. logger.debug("Form validation failed")
  222. return render(request, self.template_name, {
  223. 'obj': self.obj,
  224. 'obj_type': self.model._meta.verbose_name,
  225. 'form': form,
  226. 'return_url': self.get_return_url(request, self.obj),
  227. })
  228. class ObjectDeleteView(GetReturnURLMixin, View):
  229. """
  230. Delete a single object.
  231. model: The model of the object being deleted
  232. template_name: The name of the template
  233. """
  234. model = None
  235. template_name = 'utilities/obj_delete.html'
  236. def get_object(self, kwargs):
  237. # Look up object by slug if one has been provided. Otherwise, use PK.
  238. if 'slug' in kwargs:
  239. return get_object_or_404(self.model, slug=kwargs['slug'])
  240. else:
  241. return get_object_or_404(self.model, pk=kwargs['pk'])
  242. def get(self, request, **kwargs):
  243. obj = self.get_object(kwargs)
  244. form = ConfirmationForm(initial=request.GET)
  245. return render(request, self.template_name, {
  246. 'obj': obj,
  247. 'form': form,
  248. 'obj_type': self.model._meta.verbose_name,
  249. 'return_url': self.get_return_url(request, obj),
  250. })
  251. def post(self, request, **kwargs):
  252. logger = logging.getLogger('netbox.views.ObjectDeleteView')
  253. obj = self.get_object(kwargs)
  254. form = ConfirmationForm(request.POST)
  255. if form.is_valid():
  256. logger.debug("Form validation was successful")
  257. try:
  258. obj.delete()
  259. except ProtectedError as e:
  260. logger.info("Caught ProtectedError while attempting to delete object")
  261. handle_protectederror(obj, request, e)
  262. return redirect(obj.get_absolute_url())
  263. msg = 'Deleted {} {}'.format(self.model._meta.verbose_name, obj)
  264. logger.info(msg)
  265. messages.success(request, msg)
  266. return_url = form.cleaned_data.get('return_url')
  267. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  268. return redirect(return_url)
  269. else:
  270. return redirect(self.get_return_url(request, obj))
  271. else:
  272. logger.debug("Form validation failed")
  273. return render(request, self.template_name, {
  274. 'obj': obj,
  275. 'form': form,
  276. 'obj_type': self.model._meta.verbose_name,
  277. 'return_url': self.get_return_url(request, obj),
  278. })
  279. class BulkCreateView(GetReturnURLMixin, View):
  280. """
  281. Create new objects in bulk.
  282. form: Form class which provides the `pattern` field
  283. model_form: The ModelForm used to create individual objects
  284. pattern_target: Name of the field to be evaluated as a pattern (if any)
  285. template_name: The name of the template
  286. """
  287. form = None
  288. model_form = None
  289. pattern_target = ''
  290. template_name = None
  291. def get(self, request):
  292. # Set initial values for visible form fields from query args
  293. initial = {}
  294. for field in getattr(self.model_form._meta, 'fields', []):
  295. if request.GET.get(field):
  296. initial[field] = request.GET[field]
  297. form = self.form()
  298. model_form = self.model_form(initial=initial)
  299. return render(request, self.template_name, {
  300. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  301. 'form': form,
  302. 'model_form': model_form,
  303. 'return_url': self.get_return_url(request),
  304. })
  305. def post(self, request):
  306. logger = logging.getLogger('netbox.views.BulkCreateView')
  307. model = self.model_form._meta.model
  308. form = self.form(request.POST)
  309. model_form = self.model_form(request.POST)
  310. if form.is_valid():
  311. logger.debug("Form validation was successful")
  312. pattern = form.cleaned_data['pattern']
  313. new_objs = []
  314. try:
  315. with transaction.atomic():
  316. # Create objects from the expanded. Abort the transaction on the first validation error.
  317. for value in pattern:
  318. # Reinstantiate the model form each time to avoid overwriting the same instance. Use a mutable
  319. # copy of the POST QueryDict so that we can update the target field value.
  320. model_form = self.model_form(request.POST.copy())
  321. model_form.data[self.pattern_target] = value
  322. # Validate each new object independently.
  323. if model_form.is_valid():
  324. obj = model_form.save()
  325. logger.debug(f"Created {obj} (PK: {obj.pk})")
  326. new_objs.append(obj)
  327. else:
  328. # Copy any errors on the pattern target field to the pattern form.
  329. errors = model_form.errors.as_data()
  330. if errors.get(self.pattern_target):
  331. form.add_error('pattern', errors[self.pattern_target])
  332. # Raise an IntegrityError to break the for loop and abort the transaction.
  333. raise IntegrityError()
  334. # If we make it to this point, validation has succeeded on all new objects.
  335. msg = "Added {} {}".format(len(new_objs), model._meta.verbose_name_plural)
  336. logger.info(msg)
  337. messages.success(request, msg)
  338. if '_addanother' in request.POST:
  339. return redirect(request.path)
  340. return redirect(self.get_return_url(request))
  341. except IntegrityError:
  342. pass
  343. else:
  344. logger.debug("Form validation failed")
  345. return render(request, self.template_name, {
  346. 'form': form,
  347. 'model_form': model_form,
  348. 'obj_type': model._meta.verbose_name,
  349. 'return_url': self.get_return_url(request),
  350. })
  351. class ObjectImportView(GetReturnURLMixin, View):
  352. """
  353. Import a single object (YAML or JSON format).
  354. """
  355. model = None
  356. model_form = None
  357. related_object_forms = dict()
  358. template_name = 'utilities/obj_import.html'
  359. def get(self, request):
  360. form = ImportForm()
  361. return render(request, self.template_name, {
  362. 'form': form,
  363. 'obj_type': self.model._meta.verbose_name,
  364. 'return_url': self.get_return_url(request),
  365. })
  366. def post(self, request):
  367. logger = logging.getLogger('netbox.views.ObjectImportView')
  368. form = ImportForm(request.POST)
  369. if form.is_valid():
  370. logger.debug("Import form validation was successful")
  371. # Initialize model form
  372. data = form.cleaned_data['data']
  373. model_form = self.model_form(data)
  374. # Assign default values for any fields which were not specified. We have to do this manually because passing
  375. # 'initial=' to the form on initialization merely sets default values for the widgets. Since widgets are not
  376. # used for YAML/JSON import, we first bind the imported data normally, then update the form's data with the
  377. # applicable field defaults as needed prior to form validation.
  378. for field_name, field in model_form.fields.items():
  379. if field_name not in data and hasattr(field, 'initial'):
  380. model_form.data[field_name] = field.initial
  381. if model_form.is_valid():
  382. try:
  383. with transaction.atomic():
  384. # Save the primary object
  385. obj = model_form.save()
  386. logger.debug(f"Created {obj} (PK: {obj.pk})")
  387. # Iterate through the related object forms (if any), validating and saving each instance.
  388. for field_name, related_object_form in self.related_object_forms.items():
  389. logger.debug("Processing form for related objects: {related_object_form}")
  390. for i, rel_obj_data in enumerate(data.get(field_name, list())):
  391. f = related_object_form(obj, rel_obj_data)
  392. for subfield_name, field in f.fields.items():
  393. if subfield_name not in rel_obj_data and hasattr(field, 'initial'):
  394. f.data[subfield_name] = field.initial
  395. if f.is_valid():
  396. f.save()
  397. else:
  398. # Replicate errors on the related object form to the primary form for display
  399. for subfield_name, errors in f.errors.items():
  400. for err in errors:
  401. err_msg = "{}[{}] {}: {}".format(field_name, i, subfield_name, err)
  402. model_form.add_error(None, err_msg)
  403. raise AbortTransaction()
  404. except AbortTransaction:
  405. pass
  406. if not model_form.errors:
  407. logger.info(f"Import object {obj} (PK: {obj.pk})")
  408. messages.success(request, mark_safe('Imported object: <a href="{}">{}</a>'.format(
  409. obj.get_absolute_url(), obj
  410. )))
  411. if '_addanother' in request.POST:
  412. return redirect(request.get_full_path())
  413. return_url = form.cleaned_data.get('return_url')
  414. if return_url is not None and is_safe_url(url=return_url, allowed_hosts=request.get_host()):
  415. return redirect(return_url)
  416. else:
  417. return redirect(self.get_return_url(request, obj))
  418. else:
  419. logger.debug("Model form validation failed")
  420. # Replicate model form errors for display
  421. for field, errors in model_form.errors.items():
  422. for err in errors:
  423. if field == '__all__':
  424. form.add_error(None, err)
  425. else:
  426. form.add_error(None, "{}: {}".format(field, err))
  427. else:
  428. logger.debug("Import form validation failed")
  429. return render(request, self.template_name, {
  430. 'form': form,
  431. 'obj_type': self.model._meta.verbose_name,
  432. 'return_url': self.get_return_url(request),
  433. })
  434. class BulkImportView(GetReturnURLMixin, View):
  435. """
  436. Import objects in bulk (CSV format).
  437. model_form: The form used to create each imported object
  438. table: The django-tables2 Table used to render the list of imported objects
  439. template_name: The name of the template
  440. widget_attrs: A dict of attributes to apply to the import widget (e.g. to require a session key)
  441. """
  442. model_form = None
  443. table = None
  444. template_name = 'utilities/obj_bulk_import.html'
  445. widget_attrs = {}
  446. def _import_form(self, *args, **kwargs):
  447. fields = self.model_form().fields.keys()
  448. required_fields = [name for name, field in self.model_form().fields.items() if field.required]
  449. class ImportForm(BootstrapMixin, Form):
  450. csv = CSVDataField(fields=fields, required_fields=required_fields, widget=Textarea(attrs=self.widget_attrs))
  451. return ImportForm(*args, **kwargs)
  452. def _save_obj(self, obj_form):
  453. """
  454. Provide a hook to modify the object immediately before saving it (e.g. to encrypt secret data).
  455. """
  456. return obj_form.save()
  457. def get(self, request):
  458. return render(request, self.template_name, {
  459. 'form': self._import_form(),
  460. 'fields': self.model_form().fields,
  461. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  462. 'return_url': self.get_return_url(request),
  463. })
  464. def post(self, request):
  465. logger = logging.getLogger('netbox.views.BulkImportView')
  466. new_objs = []
  467. form = self._import_form(request.POST)
  468. if form.is_valid():
  469. logger.debug("Form validation was successful")
  470. try:
  471. # Iterate through CSV data and bind each row to a new model form instance.
  472. with transaction.atomic():
  473. for row, data in enumerate(form.cleaned_data['csv'], start=1):
  474. obj_form = self.model_form(data)
  475. if obj_form.is_valid():
  476. obj = self._save_obj(obj_form)
  477. new_objs.append(obj)
  478. else:
  479. for field, err in obj_form.errors.items():
  480. form.add_error('csv', "Row {} {}: {}".format(row, field, err[0]))
  481. raise ValidationError("")
  482. # Compile a table containing the imported objects
  483. obj_table = self.table(new_objs)
  484. if new_objs:
  485. msg = 'Imported {} {}'.format(len(new_objs), new_objs[0]._meta.verbose_name_plural)
  486. logger.info(msg)
  487. messages.success(request, msg)
  488. return render(request, "import_success.html", {
  489. 'table': obj_table,
  490. 'return_url': self.get_return_url(request),
  491. })
  492. except ValidationError:
  493. pass
  494. else:
  495. logger.debug("Form validation failed")
  496. return render(request, self.template_name, {
  497. 'form': form,
  498. 'fields': self.model_form().fields,
  499. 'obj_type': self.model_form._meta.model._meta.verbose_name,
  500. 'return_url': self.get_return_url(request),
  501. })
  502. class BulkEditView(GetReturnURLMixin, View):
  503. """
  504. Edit objects in bulk.
  505. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  506. filter: FilterSet to apply when deleting by QuerySet
  507. table: The table used to display devices being edited
  508. form: The form class used to edit objects in bulk
  509. template_name: The name of the template
  510. """
  511. queryset = None
  512. filterset = None
  513. table = None
  514. form = None
  515. template_name = 'utilities/obj_bulk_edit.html'
  516. def get(self, request):
  517. return redirect(self.get_return_url(request))
  518. def post(self, request, **kwargs):
  519. logger = logging.getLogger('netbox.views.BulkEditView')
  520. model = self.queryset.model
  521. # If we are editing *all* objects in the queryset, replace the PK list with all matched objects.
  522. if request.POST.get('_all') and self.filterset is not None:
  523. pk_list = [
  524. obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs
  525. ]
  526. else:
  527. pk_list = request.POST.getlist('pk')
  528. if '_apply' in request.POST:
  529. form = self.form(model, request.POST)
  530. if form.is_valid():
  531. logger.debug("Form validation was successful")
  532. custom_fields = form.custom_fields if hasattr(form, 'custom_fields') else []
  533. standard_fields = [
  534. field for field in form.fields if field not in custom_fields + ['pk']
  535. ]
  536. nullified_fields = request.POST.getlist('_nullify')
  537. try:
  538. with transaction.atomic():
  539. updated_count = 0
  540. for obj in model.objects.filter(pk__in=form.cleaned_data['pk']):
  541. # Update standard fields. If a field is listed in _nullify, delete its value.
  542. for name in standard_fields:
  543. try:
  544. model_field = model._meta.get_field(name)
  545. except FieldDoesNotExist:
  546. # This form field is used to modify a field rather than set its value directly
  547. model_field = None
  548. # Handle nullification
  549. if name in form.nullable_fields and name in nullified_fields:
  550. if isinstance(model_field, ManyToManyField):
  551. getattr(obj, name).set([])
  552. else:
  553. setattr(obj, name, None if model_field.null else '')
  554. # ManyToManyFields
  555. elif isinstance(model_field, ManyToManyField):
  556. getattr(obj, name).set(form.cleaned_data[name])
  557. # Normal fields
  558. elif form.cleaned_data[name] not in (None, ''):
  559. setattr(obj, name, form.cleaned_data[name])
  560. obj.full_clean()
  561. obj.save()
  562. logger.debug(f"Saved {obj} (PK: {obj.pk})")
  563. # Update custom fields
  564. obj_type = ContentType.objects.get_for_model(model)
  565. for name in custom_fields:
  566. field = form.fields[name].model
  567. if name in form.nullable_fields and name in nullified_fields:
  568. CustomFieldValue.objects.filter(
  569. field=field, obj_type=obj_type, obj_id=obj.pk
  570. ).delete()
  571. elif form.cleaned_data[name] not in [None, '']:
  572. try:
  573. cfv = CustomFieldValue.objects.get(
  574. field=field, obj_type=obj_type, obj_id=obj.pk
  575. )
  576. except CustomFieldValue.DoesNotExist:
  577. cfv = CustomFieldValue(
  578. field=field, obj_type=obj_type, obj_id=obj.pk
  579. )
  580. cfv.value = form.cleaned_data[name]
  581. cfv.save()
  582. logger.debug(f"Saved custom fields for {obj} (PK: {obj.pk})")
  583. # Add/remove tags
  584. if form.cleaned_data.get('add_tags', None):
  585. obj.tags.add(*form.cleaned_data['add_tags'])
  586. if form.cleaned_data.get('remove_tags', None):
  587. obj.tags.remove(*form.cleaned_data['remove_tags'])
  588. updated_count += 1
  589. if updated_count:
  590. msg = 'Updated {} {}'.format(updated_count, model._meta.verbose_name_plural)
  591. logger.info(msg)
  592. messages.success(self.request, msg)
  593. return redirect(self.get_return_url(request))
  594. except ValidationError as e:
  595. messages.error(self.request, "{} failed validation: {}".format(obj, e))
  596. else:
  597. logger.debug("Form validation failed")
  598. else:
  599. # Include the PK list as initial data for the form
  600. initial_data = {'pk': pk_list}
  601. # Check for other contextual data needed for the form. We avoid passing all of request.GET because the
  602. # filter values will conflict with the bulk edit form fields.
  603. # TODO: Find a better way to accomplish this
  604. if 'device' in request.GET:
  605. initial_data['device'] = request.GET.get('device')
  606. form = self.form(model, initial=initial_data)
  607. # Retrieve objects being edited
  608. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  609. if not table.rows:
  610. messages.warning(request, "No {} were selected.".format(model._meta.verbose_name_plural))
  611. return redirect(self.get_return_url(request))
  612. return render(request, self.template_name, {
  613. 'form': form,
  614. 'table': table,
  615. 'obj_type_plural': model._meta.verbose_name_plural,
  616. 'return_url': self.get_return_url(request),
  617. })
  618. class BulkDeleteView(GetReturnURLMixin, View):
  619. """
  620. Delete objects in bulk.
  621. queryset: Custom queryset to use when retrieving objects (e.g. to select related objects)
  622. filter: FilterSet to apply when deleting by QuerySet
  623. table: The table used to display devices being deleted
  624. form: The form class used to delete objects in bulk
  625. template_name: The name of the template
  626. """
  627. queryset = None
  628. filterset = None
  629. table = None
  630. form = None
  631. template_name = 'utilities/obj_bulk_delete.html'
  632. def get(self, request):
  633. return redirect(self.get_return_url(request))
  634. def post(self, request, **kwargs):
  635. logger = logging.getLogger('netbox.views.BulkDeleteView')
  636. model = self.queryset.model
  637. # Are we deleting *all* objects in the queryset or just a selected subset?
  638. if request.POST.get('_all'):
  639. if self.filterset is not None:
  640. pk_list = [obj.pk for obj in self.filterset(request.GET, model.objects.only('pk')).qs]
  641. else:
  642. pk_list = model.objects.values_list('pk', flat=True)
  643. else:
  644. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  645. form_cls = self.get_form()
  646. if '_confirm' in request.POST:
  647. form = form_cls(request.POST)
  648. if form.is_valid():
  649. logger.debug("Form validation was successful")
  650. # Delete objects
  651. queryset = model.objects.filter(pk__in=pk_list)
  652. try:
  653. deleted_count = queryset.delete()[1][model._meta.label]
  654. except ProtectedError as e:
  655. logger.info("Caught ProtectedError while attempting to delete objects")
  656. handle_protectederror(list(queryset), request, e)
  657. return redirect(self.get_return_url(request))
  658. msg = 'Deleted {} {}'.format(deleted_count, model._meta.verbose_name_plural)
  659. logger.info(msg)
  660. messages.success(request, msg)
  661. return redirect(self.get_return_url(request))
  662. else:
  663. logger.debug("Form validation failed")
  664. else:
  665. form = form_cls(initial={
  666. 'pk': pk_list,
  667. 'return_url': self.get_return_url(request),
  668. })
  669. # Retrieve objects being deleted
  670. table = self.table(self.queryset.filter(pk__in=pk_list), orderable=False)
  671. if not table.rows:
  672. messages.warning(request, "No {} were selected for deletion.".format(model._meta.verbose_name_plural))
  673. return redirect(self.get_return_url(request))
  674. return render(request, self.template_name, {
  675. 'form': form,
  676. 'obj_type_plural': model._meta.verbose_name_plural,
  677. 'table': table,
  678. 'return_url': self.get_return_url(request),
  679. })
  680. def get_form(self):
  681. """
  682. Provide a standard bulk delete form if none has been specified for the view
  683. """
  684. class BulkDeleteForm(ConfirmationForm):
  685. pk = ModelMultipleChoiceField(queryset=self.queryset, widget=MultipleHiddenInput)
  686. if self.form:
  687. return self.form
  688. return BulkDeleteForm
  689. #
  690. # Device/VirtualMachine components
  691. #
  692. # TODO: Replace with BulkCreateView
  693. class ComponentCreateView(GetReturnURLMixin, View):
  694. """
  695. Add one or more components (e.g. interfaces, console ports, etc.) to a Device or VirtualMachine.
  696. """
  697. model = None
  698. form = None
  699. model_form = None
  700. template_name = None
  701. def get(self, request):
  702. form = self.form(initial=request.GET)
  703. return render(request, self.template_name, {
  704. 'component_type': self.model._meta.verbose_name,
  705. 'form': form,
  706. 'return_url': self.get_return_url(request),
  707. })
  708. def post(self, request):
  709. form = self.form(request.POST, initial=request.GET)
  710. if form.is_valid():
  711. new_components = []
  712. data = deepcopy(request.POST)
  713. for i, name in enumerate(form.cleaned_data['name_pattern']):
  714. # Initialize the individual component form
  715. data['name'] = name
  716. if hasattr(form, 'get_iterative_data'):
  717. data.update(form.get_iterative_data(i))
  718. component_form = self.model_form(data)
  719. if component_form.is_valid():
  720. new_components.append(component_form)
  721. else:
  722. for field, errors in component_form.errors.as_data().items():
  723. # Assign errors on the child form's name field to name_pattern on the parent form
  724. if field == 'name':
  725. field = 'name_pattern'
  726. for e in errors:
  727. form.add_error(field, '{}: {}'.format(name, ', '.join(e)))
  728. if not form.errors:
  729. # Create the new components
  730. for component_form in new_components:
  731. component_form.save()
  732. messages.success(request, "Added {} {}".format(
  733. len(new_components), self.model._meta.verbose_name_plural
  734. ))
  735. if '_addanother' in request.POST:
  736. return redirect(request.get_full_path())
  737. else:
  738. return redirect(self.get_return_url(request))
  739. return render(request, self.template_name, {
  740. 'component_type': self.model._meta.verbose_name,
  741. 'form': form,
  742. 'return_url': self.get_return_url(request),
  743. })
  744. class BulkComponentCreateView(GetReturnURLMixin, View):
  745. """
  746. Add one or more components (e.g. interfaces, console ports, etc.) to a set of Devices or VirtualMachines.
  747. """
  748. parent_model = None
  749. parent_field = None
  750. form = None
  751. model = None
  752. model_form = None
  753. filterset = None
  754. table = None
  755. template_name = 'utilities/obj_bulk_add_component.html'
  756. def post(self, request):
  757. logger = logging.getLogger('netbox.views.BulkComponentCreateView')
  758. parent_model_name = self.parent_model._meta.verbose_name_plural
  759. model_name = self.model._meta.verbose_name_plural
  760. # Are we editing *all* objects in the queryset or just a selected subset?
  761. if request.POST.get('_all') and self.filterset is not None:
  762. pk_list = [obj.pk for obj in self.filterset(request.GET, self.parent_model.objects.only('pk')).qs]
  763. else:
  764. pk_list = [int(pk) for pk in request.POST.getlist('pk')]
  765. selected_objects = self.parent_model.objects.filter(pk__in=pk_list)
  766. if not selected_objects:
  767. messages.warning(request, "No {} were selected.".format(self.parent_model._meta.verbose_name_plural))
  768. return redirect(self.get_return_url(request))
  769. table = self.table(selected_objects)
  770. if '_create' in request.POST:
  771. form = self.form(request.POST)
  772. if form.is_valid():
  773. logger.debug("Form validation was successful")
  774. new_components = []
  775. data = deepcopy(form.cleaned_data)
  776. for obj in data['pk']:
  777. names = data['name_pattern']
  778. for name in names:
  779. component_data = {
  780. self.parent_field: obj.pk,
  781. 'name': name,
  782. }
  783. component_data.update(data)
  784. component_form = self.model_form(component_data)
  785. if component_form.is_valid():
  786. new_components.append(component_form.save(commit=False))
  787. else:
  788. for field, errors in component_form.errors.as_data().items():
  789. for e in errors:
  790. form.add_error(field, '{} {}: {}'.format(obj, name, ', '.join(e)))
  791. if not form.errors:
  792. self.model.objects.bulk_create(new_components)
  793. msg = "Added {} {} to {} {}.".format(
  794. len(new_components),
  795. model_name,
  796. len(form.cleaned_data['pk']),
  797. parent_model_name
  798. )
  799. logger.info(msg)
  800. messages.success(request, msg)
  801. return redirect(self.get_return_url(request))
  802. else:
  803. logger.debug("Form validation failed")
  804. else:
  805. form = self.form(initial={'pk': pk_list})
  806. return render(request, self.template_name, {
  807. 'form': form,
  808. 'parent_model_name': parent_model_name,
  809. 'model_name': model_name,
  810. 'table': table,
  811. 'return_url': self.get_return_url(request),
  812. })
  813. @requires_csrf_token
  814. def server_error(request, template_name=ERROR_500_TEMPLATE_NAME):
  815. """
  816. Custom 500 handler to provide additional context when rendering 500.html.
  817. """
  818. try:
  819. template = loader.get_template(template_name)
  820. except TemplateDoesNotExist:
  821. return HttpResponseServerError('<h1>Server Error (500)</h1>', content_type='text/html')
  822. type_, error, traceback = sys.exc_info()
  823. return HttpResponseServerError(template.render({
  824. 'exception': str(type_),
  825. 'error': error,
  826. }))