2015-09-27 03:03:55 +02:00
|
|
|
<?php
|
|
|
|
/**
|
2016-07-11 11:58:15 +02:00
|
|
|
* PrivateBin
|
2015-09-27 03:03:55 +02:00
|
|
|
*
|
|
|
|
* a zero-knowledge paste bin
|
|
|
|
*
|
2016-07-11 11:58:15 +02:00
|
|
|
* @link https://github.com/PrivateBin/PrivateBin
|
2015-09-27 03:03:55 +02:00
|
|
|
* @copyright 2012 Sébastien SAUVAGE (sebsauvage.net)
|
2016-07-19 13:56:52 +02:00
|
|
|
* @license https://www.opensource.org/licenses/zlib-license.php The zlib/libpng License
|
2016-08-25 09:53:31 +02:00
|
|
|
* @version 1.0
|
2015-09-27 03:03:55 +02:00
|
|
|
*/
|
2016-12-12 18:43:23 +01:00
|
|
|
|
2016-12-12 18:49:08 +01:00
|
|
|
namespace PrivateBin\Model;
|
2016-07-21 17:09:48 +02:00
|
|
|
|
2016-10-29 10:24:08 +02:00
|
|
|
use Exception;
|
|
|
|
use Identicon\Identicon;
|
2016-08-09 11:54:42 +02:00
|
|
|
use PrivateBin\Persistence\TrafficLimiter;
|
2016-10-29 10:24:08 +02:00
|
|
|
use PrivateBin\Sjcl;
|
2016-08-09 11:54:42 +02:00
|
|
|
use PrivateBin\Vizhash16x16;
|
2016-07-21 17:09:48 +02:00
|
|
|
|
2015-09-27 03:03:55 +02:00
|
|
|
/**
|
2016-08-09 11:54:42 +02:00
|
|
|
* Comment
|
2015-09-27 03:03:55 +02:00
|
|
|
*
|
2016-07-11 11:58:15 +02:00
|
|
|
* Model of a PrivateBin comment.
|
2015-09-27 03:03:55 +02:00
|
|
|
*/
|
2016-08-09 11:54:42 +02:00
|
|
|
class Comment extends AbstractModel
|
2015-09-27 03:03:55 +02:00
|
|
|
{
|
|
|
|
/**
|
|
|
|
* Instance's parent.
|
|
|
|
*
|
|
|
|
* @access private
|
2016-08-09 11:54:42 +02:00
|
|
|
* @var Paste
|
2015-09-27 03:03:55 +02:00
|
|
|
*/
|
|
|
|
private $_paste;
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Get comment data.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @throws Exception
|
2016-07-06 14:58:06 +02:00
|
|
|
* @return stdClass
|
2015-09-27 03:03:55 +02:00
|
|
|
*/
|
|
|
|
public function get()
|
|
|
|
{
|
|
|
|
// @todo add support to read specific comment
|
|
|
|
$comments = $this->_store->readComments($this->getPaste()->getId());
|
|
|
|
foreach ($comments as $comment) {
|
|
|
|
if (
|
2015-10-18 14:37:58 +02:00
|
|
|
$comment->parentid == $this->getParentId() &&
|
|
|
|
$comment->id == $this->getId()
|
2015-09-27 03:03:55 +02:00
|
|
|
) {
|
|
|
|
$this->_data = $comment;
|
|
|
|
break;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return $this->_data;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Store the comment's data.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @throws Exception
|
|
|
|
* @return void
|
|
|
|
*/
|
|
|
|
public function store()
|
|
|
|
{
|
|
|
|
// Make sure paste exists.
|
|
|
|
$pasteid = $this->getPaste()->getId();
|
2016-07-26 08:19:35 +02:00
|
|
|
if (!$this->getPaste()->exists()) {
|
2015-09-27 03:03:55 +02:00
|
|
|
throw new Exception('Invalid data.', 67);
|
2016-07-26 08:19:35 +02:00
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
|
|
|
|
// Make sure the discussion is opened in this paste and in configuration.
|
2016-07-26 08:19:35 +02:00
|
|
|
if (!$this->getPaste()->isOpendiscussion() || !$this->_conf->getKey('discussion')) {
|
2015-09-27 03:03:55 +02:00
|
|
|
throw new Exception('Invalid data.', 68);
|
2016-07-26 08:19:35 +02:00
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
|
|
|
|
// Check for improbable collision.
|
2016-07-26 08:19:35 +02:00
|
|
|
if ($this->exists()) {
|
2015-09-27 03:03:55 +02:00
|
|
|
throw new Exception('You are unlucky. Try again.', 69);
|
2016-07-26 08:19:35 +02:00
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
|
|
|
|
$this->_data->meta->postdate = time();
|
|
|
|
|
|
|
|
// store comment
|
|
|
|
if (
|
|
|
|
$this->_store->createComment(
|
|
|
|
$pasteid,
|
|
|
|
$this->getParentId(),
|
|
|
|
$this->getId(),
|
|
|
|
json_decode(json_encode($this->_data), true)
|
|
|
|
) === false
|
2016-07-26 08:19:35 +02:00
|
|
|
) {
|
|
|
|
throw new Exception('Error saving comment. Sorry.', 70);
|
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Delete the comment.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @throws Exception
|
|
|
|
* @return void
|
|
|
|
*/
|
|
|
|
public function delete()
|
|
|
|
{
|
|
|
|
throw new Exception('To delete a comment, delete its parent paste', 64);
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Test if comment exists in store.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @return bool
|
|
|
|
*/
|
|
|
|
public function exists()
|
|
|
|
{
|
|
|
|
return $this->_store->existsComment(
|
|
|
|
$this->getPaste()->getId(),
|
|
|
|
$this->getParentId(),
|
|
|
|
$this->getId()
|
|
|
|
);
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Set paste.
|
|
|
|
*
|
|
|
|
* @access public
|
2016-08-09 11:54:42 +02:00
|
|
|
* @param Paste $paste
|
2015-09-27 03:03:55 +02:00
|
|
|
* @throws Exception
|
|
|
|
* @return void
|
|
|
|
*/
|
2016-08-09 11:54:42 +02:00
|
|
|
public function setPaste(Paste $paste)
|
2015-09-27 03:03:55 +02:00
|
|
|
{
|
2016-08-15 16:45:47 +02:00
|
|
|
$this->_paste = $paste;
|
2015-09-27 03:03:55 +02:00
|
|
|
$this->_data->meta->pasteid = $paste->getId();
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Get paste.
|
|
|
|
*
|
|
|
|
* @access public
|
2016-08-09 11:54:42 +02:00
|
|
|
* @return Paste
|
2015-09-27 03:03:55 +02:00
|
|
|
*/
|
|
|
|
public function getPaste()
|
|
|
|
{
|
|
|
|
return $this->_paste;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Set parent ID.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @param string $id
|
|
|
|
* @throws Exception
|
|
|
|
* @return void
|
|
|
|
*/
|
|
|
|
public function setParentId($id)
|
|
|
|
{
|
2016-07-26 08:19:35 +02:00
|
|
|
if (!self::isValidId($id)) {
|
|
|
|
throw new Exception('Invalid paste ID.', 65);
|
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
$this->_data->meta->parentid = $id;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Get parent ID.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @return string
|
|
|
|
*/
|
|
|
|
public function getParentId()
|
|
|
|
{
|
2016-07-26 08:19:35 +02:00
|
|
|
if (!property_exists($this->_data->meta, 'parentid')) {
|
|
|
|
$this->_data->meta->parentid = '';
|
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
return $this->_data->meta->parentid;
|
|
|
|
}
|
|
|
|
|
2015-11-09 21:39:42 +01:00
|
|
|
/**
|
|
|
|
* Set nickname.
|
|
|
|
*
|
|
|
|
* @access public
|
|
|
|
* @param string $nickname
|
|
|
|
* @throws Exception
|
|
|
|
* @return void
|
|
|
|
*/
|
2015-09-27 03:03:55 +02:00
|
|
|
public function setNickname($nickname)
|
|
|
|
{
|
2016-08-09 11:54:42 +02:00
|
|
|
if (!Sjcl::isValid($nickname)) {
|
2016-07-26 08:19:35 +02:00
|
|
|
throw new Exception('Invalid data.', 66);
|
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
$this->_data->meta->nickname = $nickname;
|
|
|
|
|
2016-08-10 17:41:46 +02:00
|
|
|
// If a nickname is provided, we generate an icon based on a SHA512 HMAC
|
|
|
|
// of the users IP. (We assume that if the user did not enter a nickname,
|
|
|
|
// the user wants to be anonymous and we will not generate an icon.)
|
|
|
|
$icon = $this->_conf->getKey('icon');
|
|
|
|
if ($icon != 'none') {
|
|
|
|
$pngdata = '';
|
2016-08-15 16:45:47 +02:00
|
|
|
$hmac = TrafficLimiter::getHash();
|
2016-08-10 17:41:46 +02:00
|
|
|
if ($icon == 'identicon') {
|
|
|
|
$identicon = new Identicon();
|
2016-08-15 16:45:47 +02:00
|
|
|
$pngdata = $identicon->getImageDataUri($hmac, 16);
|
2016-08-10 17:41:46 +02:00
|
|
|
} elseif ($icon == 'vizhash') {
|
2016-08-15 16:45:47 +02:00
|
|
|
$vh = new Vizhash16x16();
|
2016-08-10 17:41:46 +02:00
|
|
|
$pngdata = 'data:image/png;base64,' . base64_encode(
|
|
|
|
$vh->generate($hmac)
|
|
|
|
);
|
|
|
|
}
|
2016-07-26 08:19:35 +02:00
|
|
|
if ($pngdata != '') {
|
2016-08-10 17:41:46 +02:00
|
|
|
$this->_data->meta->vizhash = $pngdata;
|
2016-07-18 10:14:38 +02:00
|
|
|
}
|
2015-09-27 03:03:55 +02:00
|
|
|
}
|
2016-08-10 17:41:46 +02:00
|
|
|
// Once the icon is generated, we do not keep the IP address hash.
|
2015-09-27 03:03:55 +02:00
|
|
|
}
|
|
|
|
}
|