import java.io.PrintWriter;
import java.util.Map;
-import javax.servlet.ServletRequest;
import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpSession;
import org.cacert.gigi.GigiApiException;
import org.cacert.gigi.localisation.Language;
-import org.cacert.gigi.pages.Page;
import org.cacert.gigi.util.RandomToken;
/**
* @param hsr
* the request to register the form against.
* @param action
- * the target path where the form should be submitted
+ * the target path where the form should be submitted.
*/
public Form(HttpServletRequest hsr, String action) {
csrf = RandomToken.generateToken(32);
* @param out
* the stream to the user.
* @param req
- * the request to take the initial data from
- * @return true, iff the form succeeded an the user should be redirected.
+ * the request to take the initial data from.
+ * @return true, iff the form succeeded and the user should be redirected.
* @throws GigiApiException
* if internal operations went wrong.
*/
} else {
out.println("<form method='POST' action='" + action + "'>");
}
- failed = false;
outputContent(out, l, vars);
out.print("<input type='hidden' name='" + CSRF_FIELD + "' value='");
out.print(getCSRFToken());
* Outputs the forms contents.
*
* @param out
- * Stream to the user
+ * Stream to the user.
* @param l
- * {@link Language} to translate text to
+ * {@link Language} to translate text to.
* @param vars
* Variables supplied from the outside.
*/
protected abstract void outputContent(PrintWriter out, Language l, Map<String, Object> vars);
- private boolean failed;
-
- protected void outputError(PrintWriter out, ServletRequest req, String text, Object... contents) {
- if ( !failed) {
- failed = true;
- out.println("<div class='formError'>");
- }
- out.print("<div>");
- if (contents.length == 0) {
- out.print(Page.translate(req, text));
- } else {
- out.print(String.format(Page.translate(req, text), contents));
- }
- out.println("</div>");
- }
-
- protected void outputErrorPlain(PrintWriter out, String text) {
- if ( !failed) {
- failed = true;
- out.println("<div class='formError'>");
- }
- out.print("<div>");
- out.print(text);
- out.println("</div>");
- }
-
- public boolean isFailed(PrintWriter out) {
- if (failed) {
- out.println("</div>");
- }
- return failed;
- }
-
protected String getCSRFToken() {
return csrf;
}
* @param req
* the request that is directed to the form.
* @param target
- * the {@link Class} of the expected form
+ * the {@link Class} of the expected form.
* @return the form where this request is directed to.
* @throws CSRFException
* if no CSRF-token is found or the token is wrong.