001: /* ====================================================================
002: * The Jcorporate Apache Style Software License, Version 1.2 05-07-2002
003: *
004: * Copyright (c) 1995-2002 Jcorporate Ltd. All rights reserved.
005: *
006: * Redistribution and use in source and binary forms, with or without
007: * modification, are permitted provided that the following conditions
008: * are met:
009: *
010: * 1. Redistributions of source code must retain the above copyright
011: * notice, this list of conditions and the following disclaimer.
012: *
013: * 2. Redistributions in binary form must reproduce the above copyright
014: * notice, this list of conditions and the following disclaimer in
015: * the documentation and/or other materials provided with the
016: * distribution.
017: *
018: * 3. The end-user documentation included with the redistribution,
019: * if any, must include the following acknowledgment:
020: * "This product includes software developed by Jcorporate Ltd.
021: * (http://www.jcorporate.com/)."
022: * Alternately, this acknowledgment may appear in the software itself,
023: * if and wherever such third-party acknowledgments normally appear.
024: *
025: * 4. "Jcorporate" and product names such as "Expresso" must
026: * not be used to endorse or promote products derived from this
027: * software without prior written permission. For written permission,
028: * please contact info@jcorporate.com.
029: *
030: * 5. Products derived from this software may not be called "Expresso",
031: * or other Jcorporate product names; nor may "Expresso" or other
032: * Jcorporate product names appear in their name, without prior
033: * written permission of Jcorporate Ltd.
034: *
035: * 6. No product derived from this software may compete in the same
036: * market space, i.e. framework, without prior written permission
037: * of Jcorporate Ltd. For written permission, please contact
038: * partners@jcorporate.com.
039: *
040: * THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESSED OR IMPLIED
041: * WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
042: * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
043: * DISCLAIMED. IN NO EVENT SHALL JCORPORATE LTD OR ITS CONTRIBUTORS
044: * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL,
045: * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED
046: * TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
047: * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
048: * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
049: * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
050: * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
051: * SUCH DAMAGE.
052: * ====================================================================
053: *
054: * This software consists of voluntary contributions made by many
055: * individuals on behalf of the Jcorporate Ltd. Contributions back
056: * to the project(s) are encouraged when you make modifications.
057: * Please send them to support@jcorporate.com. For more information
058: * on Jcorporate Ltd. and its products, please see
059: * <http://www.jcorporate.com/>.
060: *
061: * Portions of this software are based upon other open source
062: * products and are subject to their respective licenses.
063: */
064:
065: package com.jcorporate.expresso.services.controller.dbmaint;
066:
067: /*
068: * UpdateUpdate.java
069: *
070: * Copyright 1999, 2000, 2001 Jcorporate Ltd.
071: */
072:
073: import com.jcorporate.expresso.core.controller.ControllerException;
074: import com.jcorporate.expresso.core.controller.ControllerRequest;
075: import com.jcorporate.expresso.core.controller.ControllerResponse;
076: import com.jcorporate.expresso.core.controller.ErrorCollection;
077: import com.jcorporate.expresso.core.controller.NonHandleableException;
078: import com.jcorporate.expresso.core.controller.Output;
079: import com.jcorporate.expresso.core.dataobjects.DataObject;
080: import com.jcorporate.expresso.core.dataobjects.Securable;
081: import com.jcorporate.expresso.core.db.DBException;
082: import com.jcorporate.expresso.core.dbobj.SecuredDBObject;
083: import com.jcorporate.expresso.core.misc.StringUtil;
084: import com.jcorporate.expresso.core.security.User;
085: import com.jcorporate.expresso.services.controller.ui.DefaultAutoElement;
086: import com.jcorporate.expresso.services.dbobj.Setup;
087: import org.apache.log4j.Logger;
088:
089: /**
090: * Lets user update a record. Processes the data passed
091: * via standard form by UPDATE after the user has pressed
092: * the save button
093: *
094: * @author Michael Nash, contributions by Kevin King
095: * @version $Revision: 1.21 $ $Date: 2004/11/17 20:48:18 $
096: */
097: public class UpdateUpdate extends UpdateBase {
098: private Logger log = Logger.getLogger(UpdateUpdate.class);
099:
100: public UpdateUpdate() {
101:
102: }
103:
104: /**
105: * Constructor
106: *
107: * @param code The name of the state.
108: * @param descrip The friendly name of the state
109: */
110: public UpdateUpdate(String code, String descrip) {
111: super (code, descrip);
112: } /* UpdateUpdate(String, String) */
113:
114: /**
115: * Perform the actions of this state.
116: *
117: * @param req The <code>ControllerRequest</code> object
118: * @param res The <code>ControllerResponse</code> object
119: */
120: public void run(ControllerRequest req, ControllerResponse res)
121: throws NonHandleableException, ControllerException {
122: super .run(req, res);
123:
124: DataObject myDBObj = this .getDataObject();
125: ErrorCollection ee = new ErrorCollection();
126:
127: try {
128: setFormCache();
129: myDBObj = this .retrieveMyDBObject();
130:
131: myDBObj = DefaultAutoElement.getAutoControllerElement()
132: .parseDBObject(req, myDBObj, ee);
133:
134: /* populate the rest of the fields from the parameters normally */
135: if (ee.getErrorCount() > 0) {
136: res.saveErrors(ee);
137: transition("Update", req, res);
138: return;
139: }
140:
141: if (myDBObj instanceof Securable) {
142: ((Securable) myDBObj).isAllowed(SecuredDBObject.UPDATE);
143:
144: } else {
145: if (getUid() == SecuredDBObject.SYSTEM_ACCOUNT
146: || User.getUserFromId(
147: getUid(),
148: this .getControllerRequest()
149: .getDataContext()).isAdmin()) {
150: // all access ok
151: } else {
152: String allowInsecure = Setup
153: .getValue(
154: req.getDataContext(),
155: com.jcorporate.expresso.core.ExpressoSchema.class
156: .getName(),
157: "insecureDBMaint");
158: if (!(StringUtil.toBoolean(allowInsecure))) {
159: throw new SecurityException(
160: "Access to unsecured Objects not allowed");
161: }
162: }
163: }
164:
165: myDBObj.update();
166:
167: //Save any updated BLOB fields.
168: super .saveBlobFields(myDBObj);
169:
170: addOutput(new Output("title", "Data Saved"));
171: showUserName("");
172: showNext = false;
173: showPrev = false;
174: addOutput(new Output("message", "Data Updated"));
175: showKey(true);
176: showOptions();
177: clearFormCache();
178: } catch (DBException de) {
179: log.warn(de);
180: ee.addError(de);
181: res.saveErrors(ee);
182: transition("Update", req, res);
183: return;
184: }
185: if (ee.getErrorCount() > 0) {
186: res.saveErrors(ee);
187: setResponse(getController().newState("Update", req));
188:
189: //getController().getState("Add").run(req, res);
190: }
191: } /* execute() */
192:
193: }
194:
195: /* UpdateUpdate */
|