1 (* COCANWIKI - a wiki written in Objective CAML.
2 * Written by Richard W.M. Jones <rich@merjis.com>.
3 * Copyright (C) 2004 Merjis Ltd.
4 * $Id: image.ml,v 1.16 2006/03/27 19:10:29 rich Exp $
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 2 of the License, or
9 * (at your option) any later version.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; see the file COPYING. If not, write to
18 * the Free Software Foundation, Inc., 59 Temple Place - Suite 330,
19 * Boston, MA 02111-1307, USA.
31 let run r (q : cgi) dbh hostid {hostname = hostname} _ =
32 let image = q#param "image" in
33 let is_thumbnail = q#param_true "thumbnail" in
35 try Some (Int32.of_string (q#param "version")) with Not_found -> None in
37 (* Get the image and its MIME type. *)
38 let data, mime_type, deleted =
40 if not is_thumbnail then
44 PGSQL(dbh) "select image, mime_type, name is null
46 where hostid = $hostid and name = $image"
48 PGSQL(dbh) "select image, mime_type, name is null
50 where hostid = $hostid
51 and (name = $image or name_deleted = $image)
55 let data, mime_type, deleted =
59 PGSQL(dbh) "select thumbnail, tn_mime_type, name is null
61 where hostid = $hostid and name = $image"
63 PGSQL(dbh) "select thumbnail, tn_mime_type, name is null
65 where hostid = $hostid
66 and (name = $image or name_deleted = $image)
69 Option.get data, Option.get mime_type, deleted
72 Not_found | ExtList.List.Empty_list ->
73 raise (HttpError cHTTP_NOT_FOUND) in
75 let deleted = Option.get deleted in
77 (* If deleted, refuse to serve this image except if shown on the site. *)
80 try Table.get (Request.headers_in r) "Referer" with Not_found -> "" in
82 try ignore (String.find referer hostname); true
83 with Invalid_string -> false in
86 prerr_endline "image.ml: bandwidth theft avoided";
87 raise (HttpError cHTTP_NOT_FOUND)
91 (* Set a medium-length expiry time on this resource. *)
92 Table.set (Request.headers_out r) "Expires" (Expires.medium ());
94 (* Content-length header. *)
95 Table.set (Request.headers_out r) "Content-Length"
96 (string_of_int (String.length data));
98 q#header ~content_type:mime_type ();
99 ignore (print_string r data)
102 register_script ~restrict:[CanView] run