friendica/src/Module/Objects.php

84 lines
2.7 KiB
PHP
Raw Normal View History

2018-09-30 14:21:57 +02:00
<?php
/**
* @copyright Copyright (C) 2020, Friendica
*
* @license GNU AGPL version 3 or any later version
*
* This program is free software: you can redistribute it and/or modify
* it under the terms of the GNU Affero General Public License as
* published by the Free Software Foundation, either version 3 of the
* License, or (at your option) any later version.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU Affero General Public License for more details.
*
* You should have received a copy of the GNU Affero General Public License
* along with this program. If not, see <https://www.gnu.org/licenses/>.
*
2018-09-30 14:21:57 +02:00
*/
2018-09-30 14:21:57 +02:00
namespace Friendica\Module;
use Friendica\BaseModule;
use Friendica\Core\System;
2018-09-30 14:21:57 +02:00
use Friendica\Database\DBA;
use Friendica\DI;
2019-05-01 21:29:04 +02:00
use Friendica\Model\Item;
use Friendica\Network\HTTPException;
2019-05-01 21:29:04 +02:00
use Friendica\Protocol\ActivityPub;
use Friendica\Util\Network;
2018-09-30 14:21:57 +02:00
/**
2018-10-02 22:14:28 +02:00
* ActivityPub Objects
2018-09-30 14:21:57 +02:00
*/
2018-10-02 22:14:28 +02:00
class Objects extends BaseModule
2018-09-30 14:21:57 +02:00
{
public static function rawContent(array $parameters = [])
2018-09-30 14:21:57 +02:00
{
if (empty($parameters['guid'])) {
throw new HTTPException\BadRequestException();
2018-09-30 14:21:57 +02:00
}
if (!ActivityPub::isRequest()) {
DI::baseUrl()->redirect(str_replace('objects/', 'display/', DI::args()->getQueryString()));
2018-09-30 14:21:57 +02:00
}
/// @todo Add Authentication to enable fetching of non public content
// $requester = HTTPSignature::getSigner('', $_SERVER);
$item = Item::selectFirst(
['id', 'origin', 'author-link', 'changed'],
[
'guid' => $parameters['guid'],
'private' => [Item::PUBLIC, Item::UNLISTED]
],
['order' => ['origin' => true]]
);
// Valid items are original post or posted from this node (including in the case of a forum)
if (!DBA::isResult($item) || !$item['origin'] && !strstr($item['author-link'], DI::baseUrl()->get())) {
throw new HTTPException\NotFoundException();
2019-01-26 13:03:09 +01:00
}
$etag = md5($parameters['guid'] . '-' . $item['changed']);
$last_modified = $item['changed'];
Network::checkEtagModified($etag, $last_modified);
$activity = ActivityPub\Transmitter::createActivityFromItem($item['id'], true);
$activity['type'] = $activity['type'] == 'Update' ? 'Create' : $activity['type'];
// Only display "Create" activity objects here, no reshares or anything else
2020-03-28 22:37:03 +01:00
if (empty($activity['object']) || ($activity['type'] != 'Create')) {
throw new HTTPException\NotFoundException();
}
$data = ['@context' => ActivityPub::CONTEXT];
$data = array_merge($data, $activity['object']);
2018-09-30 14:21:57 +02:00
// Relaxed CORS header for public items
header('Access-Control-Allow-Origin: *');
System::jsonExit($data, 'application/activity+json');
2018-09-30 14:21:57 +02:00
}
}