[TASK] Move config.beLoginLinkIPList to compat7
[Packages/TYPO3.CMS.git] / typo3 / sysext / frontend / Classes / Http / RequestHandler.php
1 <?php
2 namespace TYPO3\CMS\Frontend\Http;
3
4 /*
5 * This file is part of the TYPO3 CMS project.
6 *
7 * It is free software; you can redistribute it and/or modify it under
8 * the terms of the GNU General Public License, either version 2
9 * of the License, or any later version.
10 *
11 * For the full copyright and license information, please read the
12 * LICENSE.txt file that was distributed with this source code.
13 *
14 * The TYPO3 project - inspiring people to share!
15 */
16
17 use TYPO3\CMS\Backend\FrontendBackendUserAuthentication;
18 use TYPO3\CMS\Core\Core\Bootstrap;
19 use TYPO3\CMS\Core\FrontendEditing\FrontendEditingController;
20 use TYPO3\CMS\Core\Http\RequestHandlerInterface;
21 use TYPO3\CMS\Core\TimeTracker\TimeTracker;
22 use TYPO3\CMS\Core\Utility\GeneralUtility;
23 use TYPO3\CMS\Core\Utility\MathUtility;
24 use TYPO3\CMS\Core\Utility\MonitorUtility;
25 use TYPO3\CMS\Frontend\Controller\TypoScriptFrontendController;
26 use TYPO3\CMS\Frontend\Page\PageGenerator;
27 use TYPO3\CMS\Frontend\Utility\CompressionUtility;
28 use TYPO3\CMS\Frontend\View\AdminPanelView;
29
30 /**
31 * This is the main entry point of the TypoScript driven standard front-end
32 *
33 * Basically put, this is the script which all requests for TYPO3 delivered pages goes to in the
34 * frontend (the website). The script instantiates a $TSFE object, includes libraries and does a little logic here
35 * and there in order to instantiate the right classes to create the webpage.
36 * Previously, this was called index_ts.php and also included the logic for the lightweight "eID" concept,
37 * which is now handled in a separate request handler (EidRequestHandler).
38 */
39 class RequestHandler implements RequestHandlerInterface
40 {
41 /**
42 * Instance of the current TYPO3 bootstrap
43 * @var Bootstrap
44 */
45 protected $bootstrap;
46
47 /**
48 * Instance of the timetracker
49 * @var TimeTracker
50 */
51 protected $timeTracker;
52
53 /**
54 * Instance of the TSFE object
55 * @var TypoScriptFrontendController
56 */
57 protected $controller;
58
59 /**
60 * The request handed over
61 * @var \Psr\Http\Message\ServerRequestInterface
62 */
63 protected $request;
64
65 /**
66 * Constructor handing over the bootstrap and the original request
67 *
68 * @param Bootstrap $bootstrap
69 */
70 public function __construct(Bootstrap $bootstrap)
71 {
72 $this->bootstrap = $bootstrap;
73 }
74
75 /**
76 * Handles a frontend request
77 *
78 * @param \Psr\Http\Message\ServerRequestInterface $request
79 * @return NULL|\Psr\Http\Message\ResponseInterface
80 */
81 public function handleRequest(\Psr\Http\Message\ServerRequestInterface $request)
82 {
83 $response = null;
84 $this->request = $request;
85 $this->initializeTimeTracker();
86
87 // Hook to preprocess the current request:
88 if (is_array($GLOBALS['TYPO3_CONF_VARS']['SC_OPTIONS']['tslib/index_ts.php']['preprocessRequest'])) {
89 foreach ($GLOBALS['TYPO3_CONF_VARS']['SC_OPTIONS']['tslib/index_ts.php']['preprocessRequest'] as $hookFunction) {
90 $hookParameters = [];
91 GeneralUtility::callUserFunction($hookFunction, $hookParameters, $hookParameters);
92 }
93 unset($hookFunction);
94 unset($hookParameters);
95 }
96
97 $this->initializeController();
98
99 if ($GLOBALS['TYPO3_CONF_VARS']['FE']['pageUnavailable_force']
100 && !GeneralUtility::cmpIP(
101 GeneralUtility::getIndpEnv('REMOTE_ADDR'),
102 $GLOBALS['TYPO3_CONF_VARS']['SYS']['devIPmask'])
103 ) {
104 $this->controller->pageUnavailableAndExit('This page is temporarily unavailable.');
105 }
106
107 $this->controller->connectToDB();
108 $this->controller->sendRedirect();
109
110 // Output compression
111 // Remove any output produced until now
112 $this->bootstrap->endOutputBufferingAndCleanPreviousOutput();
113 $this->initializeOutputCompression();
114
115 $this->bootstrap->loadBaseTca();
116
117 // Initializing the Frontend User
118 $this->timeTracker->push('Front End user initialized', '');
119 $this->controller->initFEuser();
120 $this->timeTracker->pull();
121
122 // Initializing a possible logged-in Backend User
123 /** @var $GLOBALS['BE_USER'] \TYPO3\CMS\Backend\FrontendBackendUserAuthentication */
124 $GLOBALS['BE_USER'] = $this->controller->initializeBackendUser();
125
126 // Process the ID, type and other parameters.
127 // After this point we have an array, $page in TSFE, which is the page-record
128 // of the current page, $id.
129 $this->timeTracker->push('Process ID', '');
130 // Initialize admin panel since simulation settings are required here:
131 if ($this->controller->isBackendUserLoggedIn()) {
132 $GLOBALS['BE_USER']->initializeAdminPanel();
133 $this->bootstrap
134 ->initializeBackendRouter()
135 ->loadExtTables();
136 }
137 $this->controller->checkAlternativeIdMethods();
138 $this->controller->clear_preview();
139 $this->controller->determineId();
140
141 // Now, if there is a backend user logged in and he has NO access to this page,
142 // then re-evaluate the id shown! _GP('ADMCMD_noBeUser') is placed here because
143 // \TYPO3\CMS\Version\Hook\PreviewHook might need to know if a backend user is logged in.
144 if (
145 $this->controller->isBackendUserLoggedIn()
146 && (!$GLOBALS['BE_USER']->extPageReadAccess($this->controller->page) || GeneralUtility::_GP('ADMCMD_noBeUser'))
147 ) {
148 // Remove user
149 unset($GLOBALS['BE_USER']);
150 $this->controller->beUserLogin = false;
151 // Re-evaluate the page-id.
152 $this->controller->checkAlternativeIdMethods();
153 $this->controller->clear_preview();
154 $this->controller->determineId();
155 }
156
157 $this->controller->makeCacheHash();
158 $this->timeTracker->pull();
159
160 // Admin Panel & Frontend editing
161 if ($this->controller->isBackendUserLoggedIn()) {
162 $GLOBALS['BE_USER']->initializeFrontendEdit();
163 if ($GLOBALS['BE_USER']->adminPanel instanceof AdminPanelView) {
164 $this->bootstrap->initializeLanguageObject();
165 }
166 if ($GLOBALS['BE_USER']->frontendEdit instanceof FrontendEditingController) {
167 $GLOBALS['BE_USER']->frontendEdit->initConfigOptions();
168 }
169 }
170
171 // Starts the template
172 $this->timeTracker->push('Start Template', '');
173 $this->controller->initTemplate();
174 $this->timeTracker->pull();
175 // Get from cache
176 $this->timeTracker->push('Get Page from cache', '');
177 $this->controller->getFromCache();
178 $this->timeTracker->pull();
179 // Get config if not already gotten
180 // After this, we should have a valid config-array ready
181 $this->controller->getConfigArray();
182 // Setting language and locale
183 $this->timeTracker->push('Setting language and locale', '');
184 $this->controller->settingLanguage();
185 $this->controller->settingLocale();
186 $this->timeTracker->pull();
187
188 // Convert POST data to utf-8 for internal processing if metaCharset is different
189 $this->controller->convPOSTCharset();
190
191 $this->controller->initializeRedirectUrlHandlers();
192
193 $this->controller->handleDataSubmission();
194
195 // Check for shortcut page and redirect
196 $this->controller->checkPageForShortcutRedirect();
197 $this->controller->checkPageForMountpointRedirect();
198
199 // Generate page
200 $this->controller->setUrlIdToken();
201 $this->timeTracker->push('Page generation', '');
202 if ($this->controller->isGeneratePage()) {
203 $this->controller->generatePage_preProcessing();
204 $temp_theScript = $this->controller->generatePage_whichScript();
205 if ($temp_theScript) {
206 include $temp_theScript;
207 } else {
208 $this->controller->preparePageContentGeneration();
209 // Content generation
210 if (!$this->controller->isINTincScript()) {
211 PageGenerator::renderContent();
212 $this->controller->setAbsRefPrefix();
213 }
214 }
215 $this->controller->generatePage_postProcessing();
216 } elseif ($this->controller->isINTincScript()) {
217 $this->controller->preparePageContentGeneration();
218 }
219 $this->controller->releaseLocks();
220 $this->timeTracker->pull();
221
222 // Render non-cached parts
223 if ($this->controller->isINTincScript()) {
224 $this->timeTracker->push('Non-cached objects', '');
225 $this->controller->INTincScript();
226 $this->timeTracker->pull();
227 }
228
229 // Output content
230 $sendTSFEContent = false;
231 if ($this->controller->isOutputting()) {
232 $this->timeTracker->push('Print Content', '');
233 $this->controller->processOutput();
234 $sendTSFEContent = true;
235 $this->timeTracker->pull();
236 }
237 // Store session data for fe_users
238 $this->controller->storeSessionData();
239 // Statistics
240 $GLOBALS['TYPO3_MISC']['microtime_end'] = microtime(true);
241 if ($this->controller->isOutputting()) {
242 if (isset($this->controller->config['config']['debug'])) {
243 $debugParseTime = (bool)$this->controller->config['config']['debug'];
244 } else {
245 $debugParseTime = !empty($GLOBALS['TYPO3_CONF_VARS']['FE']['debug']);
246 }
247 if ($debugParseTime) {
248 $this->controller->content .= LF . '<!-- Parsetime: ' . $this->getParseTime() . 'ms -->';
249 }
250 }
251 $this->controller->redirectToExternalUrl();
252 // Preview info
253 $this->controller->previewInfo();
254 // Hook for end-of-frontend
255 $this->controller->hook_eofe();
256 // Finish timetracking
257 $this->timeTracker->pull();
258 // Check memory usage
259 MonitorUtility::peakMemoryUsage();
260
261 // Admin panel
262 if ($this->controller->isBackendUserLoggedIn() && $GLOBALS['BE_USER'] instanceof FrontendBackendUserAuthentication) {
263 if ($GLOBALS['BE_USER']->isAdminPanelVisible()) {
264 $this->controller->content = str_ireplace('</body>', $GLOBALS['BE_USER']->displayAdminPanel() . '</body>', $this->controller->content);
265 }
266 }
267
268 if ($sendTSFEContent) {
269 /** @var \TYPO3\CMS\Core\Http\Response $response */
270 $response = GeneralUtility::makeInstance(\TYPO3\CMS\Core\Http\Response::class);
271 $response->getBody()->write($this->controller->content);
272 }
273 // Debugging Output
274 if (isset($GLOBALS['error']) && is_object($GLOBALS['error']) && @is_callable([$GLOBALS['error'], 'debugOutput'])) {
275 $GLOBALS['error']->debugOutput();
276 }
277 if (TYPO3_DLOG) {
278 GeneralUtility::devLog('END of FRONTEND session', 'cms', 0, ['_FLUSH' => true]);
279 }
280 return $response;
281 }
282
283 /**
284 * This request handler can handle any frontend request.
285 *
286 * @param \Psr\Http\Message\ServerRequestInterface $request
287 * @return bool If the request is not an eID request, TRUE otherwise FALSE
288 */
289 public function canHandleRequest(\Psr\Http\Message\ServerRequestInterface $request)
290 {
291 return $request->getQueryParams()['eID'] || $request->getParsedBody()['eID'] ? false : true;
292 }
293
294 /**
295 * Returns the priority - how eager the handler is to actually handle the
296 * request.
297 *
298 * @return int The priority of the request handler.
299 */
300 public function getPriority()
301 {
302 return 50;
303 }
304
305 /**
306 * Initializes output compression when enabled, could be split up and put into Bootstrap
307 * at a later point
308 */
309 protected function initializeOutputCompression()
310 {
311 if ($GLOBALS['TYPO3_CONF_VARS']['FE']['compressionLevel'] && extension_loaded('zlib')) {
312 if (MathUtility::canBeInterpretedAsInteger($GLOBALS['TYPO3_CONF_VARS']['FE']['compressionLevel'])) {
313 @ini_set('zlib.output_compression_level', $GLOBALS['TYPO3_CONF_VARS']['FE']['compressionLevel']);
314 }
315 ob_start([GeneralUtility::makeInstance(CompressionUtility::class), 'compressionOutputHandler']);
316 }
317 }
318
319 /**
320 * Timetracking started depending if a Backend User is logged in
321 *
322 * @return void
323 */
324 protected function initializeTimeTracker()
325 {
326 $configuredCookieName = trim($GLOBALS['TYPO3_CONF_VARS']['BE']['cookieName']) ?: 'be_typo_user';
327
328 /** @var TimeTracker timeTracker */
329 $this->timeTracker = GeneralUtility::makeInstance(TimeTracker::class, ($this->request->getCookieParams()[$configuredCookieName] ? true : false));
330 $this->timeTracker->start();
331 }
332
333 /**
334 * Creates an instance of TSFE and sets it as a global variable
335 *
336 * @return void
337 */
338 protected function initializeController()
339 {
340 $this->controller = GeneralUtility::makeInstance(
341 TypoScriptFrontendController::class,
342 null,
343 GeneralUtility::_GP('id'),
344 GeneralUtility::_GP('type'),
345 GeneralUtility::_GP('no_cache'),
346 GeneralUtility::_GP('cHash'),
347 null,
348 GeneralUtility::_GP('MP'),
349 GeneralUtility::_GP('RDCT')
350 );
351 // setting the global variable for the controller
352 // We have to define this as reference here, because there is code around
353 // which exchanges the TSFE object in the global variable. The reference ensures
354 // that the $controller member always works on the same object as the global variable.
355 // This is a dirty workaround and bypasses the protected access modifier of the controller member.
356 $GLOBALS['TSFE'] = &$this->controller;
357 }
358
359 /**
360 * Calculates the parsetime of the page and returns it.
361 *
362 * @return int the parse time of the page
363 */
364 protected function getParseTime()
365 {
366 // Compensates for the time consumed with Back end user initialization.
367 $processStart = isset($GLOBALS['TYPO3_MISC']['microtime_start']) ? $GLOBALS['TYPO3_MISC']['microtime_start'] : null;
368 $processEnd = isset($GLOBALS['TYPO3_MISC']['microtime_end']) ? $GLOBALS['TYPO3_MISC']['microtime_end'] : null;
369 $beUserInitializationStart = isset($GLOBALS['TYPO3_MISC']['microtime_BE_USER_start']) ? $GLOBALS['TYPO3_MISC']['microtime_BE_USER_start'] : null;
370 $beUserInitializationEnd = isset($GLOBALS['TYPO3_MISC']['microtime_BE_USER_end']) ? $GLOBALS['TYPO3_MISC']['microtime_BE_USER_end'] : null;
371 return $this->timeTracker->getMilliseconds($processStart)
372 - $this->timeTracker->getMilliseconds($processEnd)
373 - ($this->timeTracker->getMilliseconds($beUserInitializationStart)
374 - $this->timeTracker->getMilliseconds($beUserInitializationEnd));
375 }
376 }