xref: /webtrees/app/Http/RequestHandlers/MediaFileDownload.php (revision 4ff0652c9f716485ce1866f88c40897142051b8b)
1<?php
2
3/**
4 * webtrees: online genealogy
5 * Copyright (C) 2021 webtrees development team
6 * This program is free software: you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation, either version 3 of the License, or
9 * (at your option) any later version.
10 * This program is distributed in the hope that it will be useful,
11 * but WITHOUT ANY WARRANTY; without even the implied warranty of
12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13 * GNU General Public License for more details.
14 * You should have received a copy of the GNU General Public License
15 * along with this program. If not, see <https://www.gnu.org/licenses/>.
16 */
17
18declare(strict_types=1);
19
20namespace Fisharebest\Webtrees\Http\RequestHandlers;
21
22use Fig\Http\Message\StatusCodeInterface;
23use Fisharebest\Webtrees\Auth;
24use Fisharebest\Webtrees\Registry;
25use Fisharebest\Webtrees\Validator;
26use Psr\Http\Message\ResponseInterface;
27use Psr\Http\Message\ServerRequestInterface;
28use Psr\Http\Server\RequestHandlerInterface;
29
30use function assert;
31use function redirect;
32
33/**
34 * Download a media file.
35 */
36class MediaFileDownload implements RequestHandlerInterface
37{
38    /**
39     * Download a non-image media file.
40     *
41     * @param ServerRequestInterface $request
42     *
43     * @return ResponseInterface
44     */
45    public function handle(ServerRequestInterface $request): ResponseInterface
46    {
47        $tree = Validator::attributes($request)->tree();
48        $user = Validator::attributes($request)->user();
49
50        $image_factory = Registry::imageFactory();
51
52        $disposition = $request->getQueryParams()['disposition'] ?? 'inline';
53        assert($disposition === 'inline' || $disposition === 'attachment');
54
55        $params  = $request->getQueryParams();
56        $xref    = $params['xref'] ?? '';
57        $fact_id = $params['fact_id'] ?? '';
58        $media   = Registry::mediaFactory()->make($xref, $tree);
59        $media   = Auth::checkMediaAccess($media);
60
61        foreach ($media->mediaFiles() as $media_file) {
62            if ($media_file->factId() === $fact_id) {
63                if ($media_file->isExternal()) {
64                    return redirect($media_file->filename());
65                }
66
67                $watermark = $media_file->isImage() && $image_factory->fileNeedsWatermark($media_file, $user);
68                $download  = $disposition === 'attachment';
69
70                $response = $image_factory->mediaFileResponse($media_file, $watermark, $download);
71
72                return $response->withHeader('Cache-Control', 'public,max-age=31536000');
73            }
74        }
75
76        return $image_factory->replacementImageResponse((string) StatusCodeInterface::STATUS_NOT_FOUND);
77    }
78}
79