]> WPIA git - gigi.git/blob - src/org/cacert/gigi/pages/account/MailAddForm.java
Enforce POST requests to only contain POST data.
[gigi.git] / src / org / cacert / gigi / pages / account / MailAddForm.java
1 package org.cacert.gigi.pages.account;
2
3 import java.io.PrintWriter;
4 import java.util.Map;
5
6 import javax.servlet.http.HttpServletRequest;
7
8 import org.cacert.gigi.EmailAddress;
9 import org.cacert.gigi.Language;
10 import org.cacert.gigi.User;
11 import org.cacert.gigi.email.EmailProvider;
12 import org.cacert.gigi.output.Form;
13 import org.cacert.gigi.output.template.Template;
14 import org.cacert.gigi.pages.Page;
15
16 public class MailAddForm extends Form {
17         private static Template t;
18         private String mail;
19         static {
20                 t = new Template(ChangePasswordPage.class.getResource("MailAddForm.templ"));
21         }
22         User target;
23
24         public MailAddForm(HttpServletRequest hsr, User target) {
25                 super(hsr);
26                 this.target = target;
27         }
28
29         @Override
30         public boolean submit(PrintWriter out, HttpServletRequest req) {
31                 String formMail = req.getParameter("newemail");
32                 if (!EmailProvider.MAIL.matcher(formMail).matches()) {
33                         // TODO Proper error output (css, maybe abstract)
34                         out.println("<b>Error: Invalid address!</b>");
35                         return false;
36                 }
37                 mail = formMail;
38                 EmailAddress addr = new EmailAddress(mail, target);
39                 addr.insert(Page.getLanguage(req));
40                 return true;
41         }
42
43         @Override
44         protected void outputContent(PrintWriter out, Language l, Map<String, Object> vars) {
45                 t.output(out, l, vars);
46         }
47
48 }