forked from silverstripe/silverstripe-admin
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
1 parent
db4002f
commit 7671353
Showing
10 changed files
with
274 additions
and
3 deletions.
There are no files selected for viewing
Large diffs are not rendered by default.
Oops, something went wrong.
Large diffs are not rendered by default.
Oops, something went wrong.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
150 changes: 150 additions & 0 deletions
150
client/src/components/SudoModePasswordField/SudoModePasswordField.js
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,150 @@ | ||
import Button from 'components/Button/Button'; | ||
import i18n from 'i18n'; | ||
import Config from 'lib/Config'; | ||
import backend from 'lib/Backend'; | ||
import qs from 'qs'; | ||
import React, { createRef, useState } from 'react'; | ||
import { InputGroup, InputGroupAddon, Input, FormGroup, Label, FormFeedback } from 'reactstrap'; | ||
|
||
/** | ||
* A password field that allows the user to enter their password to activate sudo mode. | ||
* This will make an XHR request to the server to activate sudo mode. | ||
* The page will be reloaded if the request is successful. | ||
*/ | ||
function SudoModePasswordField() { | ||
const passwordFieldRef = createRef(); | ||
const [responseMessage, setResponseMessage] = useState(''); | ||
const [showVerify, setShowVerify] = useState(false); | ||
|
||
const clientConfig = Config.getSection('SilverStripe\\Admin\\SudoModeController'); | ||
|
||
function reloadPage() { | ||
// Add a ?reload=1 query parameter to the URL to force the browser to reload the page | ||
// window.location.reload() does not work as expected | ||
const query = qs.parse(window.location.search, { ignoreQueryPrefix: true }); | ||
const reload = query.reload ? parseInt(query.reload, 10) + 1 : 1; | ||
const hrefNoQuery = window.location.href.split('?')[0]; | ||
window.location.href = hrefNoQuery + qs.stringify({ ...query, reload }, { addQueryPrefix: true }); | ||
} | ||
|
||
/** | ||
* Handle clicking the button to confirm the sudo mode notice | ||
* and trigger the verify form to be rendered. | ||
*/ | ||
function handleConfirmClick() { | ||
setShowVerify(true); | ||
} | ||
|
||
/** | ||
* Handle clicking the button to verify the sudo mode password | ||
*/ | ||
async function handleVerifyClick() { | ||
const fetcher = backend.createEndpointFetcher({ | ||
url: clientConfig.endpoints.activate, | ||
method: 'post', | ||
payloadFormat: 'urlencoded', | ||
responseFormat: 'json', | ||
}); | ||
const data = { | ||
Password: passwordFieldRef.current.value, | ||
}; | ||
const headers = { | ||
'X-SecurityID': Config.get('SecurityID'), | ||
}; | ||
const responseJson = await fetcher(data, headers); | ||
if (responseJson.result) { | ||
reloadPage(); | ||
} else { | ||
setResponseMessage(responseJson.message); | ||
} | ||
} | ||
|
||
/** | ||
* Treat pressing enter on the password field the same as clicking the | ||
* verify button. | ||
*/ | ||
function handleVerifyKeyDown(evt) { | ||
if (evt.key === 'Enter') { | ||
// Prevent the form from submitting | ||
evt.stopPropagation(); | ||
evt.preventDefault(); | ||
// Trigger the button click | ||
handleVerifyClick(); | ||
} | ||
} | ||
|
||
/** | ||
* Renders a confirmation notice to the user that they will need to verify themselves | ||
* to enter sudo mode. | ||
*/ | ||
function renderConfirm() { | ||
const helpLink = clientConfig.helpLink; | ||
return <div className="sudo-mode__notice sudo-mode-password-field__notice--required"> | ||
<p className="sudo-mode-password-field__notice-message"> | ||
{ i18n._t( | ||
'Admin.SUDO_MODE_PASSWORD_FIELD_VERIFY', | ||
'This section is protected and is in read-only mode. Before editing please verify that it\'s you first.' | ||
) } | ||
{ helpLink && ( | ||
<a href={helpLink} className="sudo-mode-password-field__notice-help" target="_blank" rel="noopener noreferrer"> | ||
{ i18n._t('Admin.WHATS_THIS', 'What is this?') } | ||
</a> | ||
) } | ||
</p> | ||
{ !showVerify && ( | ||
<Button | ||
className="sudo-mode-password-field__notice-button font-icon-lock" | ||
color="info" | ||
onClick={() => handleConfirmClick()} | ||
> | ||
{ i18n._t('Admin.VERIFY_TO_CONTINUE', 'Verify to continue') } | ||
</Button> | ||
) } | ||
</div>; | ||
} | ||
|
||
/** | ||
* Renders the password verification form to enter sudo mode | ||
*/ | ||
function renderVerify() { | ||
const inputProps = { | ||
type: 'password', | ||
name: 'SudoModePassword', | ||
id: 'SudoModePassword', | ||
className: 'no-change-track', | ||
onKeyDown: (evt) => handleVerifyKeyDown(evt), | ||
innerRef: passwordFieldRef, | ||
}; | ||
const validationProps = responseMessage ? { valid: false, invalid: true } : {}; | ||
return <div className="sudo-mode-password-field__verify"> | ||
<FormGroup className="sudo-mode-password-field__verify-form-group"> | ||
<Label for="SudoModePassword"> | ||
{ i18n._t('Admin.ENTER_PASSWORD', 'Enter your password') } | ||
</Label> | ||
<InputGroup> | ||
<Input {...inputProps} {...validationProps} /> | ||
<InputGroupAddon addonType="append"> | ||
<Button | ||
className="sudo-mode-password-field__verify-button" | ||
color="info" | ||
onClick={() => handleVerifyClick()} | ||
> | ||
{ i18n._t('Admin.VERIFY', 'Verify') } | ||
</Button> | ||
</InputGroupAddon> | ||
<FormFeedback>{ responseMessage }</FormFeedback> | ||
</InputGroup> | ||
</FormGroup> | ||
</div>; | ||
} | ||
|
||
// Render the component | ||
return <div className="sudo-mode-password-field"> | ||
<div className="sudo-mode-password-field-inner alert alert-info panel panel--padded"> | ||
{ renderConfirm() } | ||
{ showVerify && renderVerify() } | ||
</div> | ||
</div>; | ||
} | ||
|
||
export default SudoModePasswordField; |
55 changes: 55 additions & 0 deletions
55
client/src/components/SudoModePasswordField/SudoModePasswordField.scss
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,55 @@ | ||
// entwine component before the react component has loaded | ||
// styles are set to prevent a FOUT | ||
.SudoModePasswordField { | ||
min-height: 108px; | ||
|
||
@include media-breakpoint-up(lg) { | ||
min-height: 140px; | ||
} | ||
|
||
.form__field-holder input { | ||
display: none; | ||
} | ||
} | ||
|
||
// React component | ||
.sudo-mode-password-field { | ||
@include media-breakpoint-up(lg) { | ||
width: 100%; | ||
max-width: 700px; | ||
margin-left: $form-check-input-gutter; | ||
} | ||
|
||
&__inner { | ||
margin-bottom: 0; | ||
padding-bottom: 1rem; | ||
} | ||
|
||
&__notice { | ||
margin-bottom: 0; | ||
} | ||
|
||
&__notice-button { | ||
margin-right: 1rem; | ||
} | ||
|
||
&__notice-help { | ||
margin-left: 3px; | ||
} | ||
|
||
&__verify { | ||
margin-top: 1rem; | ||
} | ||
|
||
&__verify-form-group.form-group { | ||
margin: 0; | ||
} | ||
|
||
// Reactstrap requires form feedback to be places in the same input group as the field | ||
// that is marked as invalid, which causes Bootstrap to remove these properties from the | ||
// attached button. This restores the properties to what they were. | ||
.input-group-append:not(:last-child) .sudo-mode__verify-button { | ||
border-top-right-radius: 0.23rem; | ||
border-bottom-right-radius: 0.23rem; | ||
} | ||
} |
47 changes: 47 additions & 0 deletions
47
client/src/legacy/SudoModePasswordField/SudoModePasswordFieldEntwine.js
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,47 @@ | ||
/* global window */ | ||
import jQuery from 'jquery'; | ||
import React from 'react'; | ||
import { createRoot } from 'react-dom/client'; | ||
import { loadComponent } from 'lib/Injector'; | ||
|
||
jQuery.entwine('ss', ($) => { | ||
$('.js-injector-boot .SudoModePasswordField').entwine({ | ||
Component: null, | ||
ReactRoot: null, | ||
|
||
onmatch() { | ||
// onmatch will match both the field holder and the field | ||
// we only want to run this on the field holder | ||
if (this.is('input')) { | ||
return; | ||
} | ||
this._super(); | ||
const cmsContent = this.closest('.cms-content').attr('id'); | ||
const context = (cmsContent) | ||
? { context: cmsContent } | ||
: {}; | ||
const SudoModePasswordField = loadComponent('SudoModePasswordField', context); | ||
this.setComponent(SudoModePasswordField); | ||
this.refresh(); | ||
}, | ||
|
||
onunmatch() { | ||
this._super(); | ||
const root = this.getReactRoot(); | ||
if (root) { | ||
root.unmount(); | ||
this.setReactRoot(null); | ||
} | ||
}, | ||
|
||
refresh() { | ||
const SudoModePasswordField = this.getComponent(); | ||
let root = this.getReactRoot(); | ||
if (!root) { | ||
root = createRoot(this[0]); | ||
} | ||
root.render(<SudoModePasswordField/>); | ||
this.setReactRoot(root); | ||
}, | ||
}); | ||
}); |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters