const validator = require("../public/javascripts/utils/validation");
const ObjectId = require("bson-objectid");
const sanitizeHtml = require('sanitize-html');
+const sanitizeOpts = {
+ allowedTags: sanitizeHtml.defaults.allowedTags.concat([ 'img', 'u' ]),
+ allowedAttributes: {
+ img: [ 'src','style' ],
+ code: [ 'class' ],
+ table: [ 'class' ],
+ div: [ 'style' ],
+ },
+};
router.get("/add/assessment", access.ajax, access.logged, (req,res) => {
const name = req.query["name"];
let error = validator(assessment, "Assessment");
if (error.length > 0)
return res.json({errmsg:error});
- const sanitizeOpts = {allowedTags: sanitizeHtml.defaults.allowedTags.concat([ 'img' ]) };
assessment.introduction = sanitizeHtml(assessment.introduction, sanitizeOpts);
- assessment.conclusion = sanitizeHtml(assessment.conclusion, sanitizeOpts);
assessment.questions.forEach( q => {
q.wording = sanitizeHtml(q.wording, sanitizeOpts);
//q.answer = sanitizeHtml(q.answer); //if text (TODO: it's an array in this case?!)
router.get("/start/assessment", access.ajax, (req,res) => {
let number = req.query["number"];
let aid = req.query["aid"];
- let error = validator({ _id:aid, papers:[{number:number}] }, "Assessment");
+ let password = req.cookies["password"]; //potentially from cookies, resuming
+ let error = validator({ _id:aid, papers:[{number:number,password:password || "samplePwd"}] }, "Assessment");
if (error.length > 0)
return res.json({errmsg:error});
- AssessmentModel.startSession(ObjectId(aid), number, (err,ret) => {
+ AssessmentModel.startSession(ObjectId(aid), number, password, (err,ret) => {
access.checkRequest(res,err,ret,"Failed session initialization", () => {
- // Set password
- res.cookie("password", ret.password, {
- httpOnly: true,
- maxAge: params.cookieExpire,
+ if (!password)
+ {
+ // Set password
+ res.cookie("password", ret.password, {
+ httpOnly: true,
+ maxAge: params.cookieExpire,
+ });
+ }
+ res.json(ret); //contains questions+password(or paper if resuming)
+ });
+ });
+});
+
+router.get("/start/monitoring", access.ajax, (req,res) => {
+ const password = req.query["password"];
+ const examName = req.query["aname"];
+ const courseCode = req.query["ccode"];
+ const initials = req.query["initials"];
+ // TODO: sanity checks
+ CourseModel.getByRefs(initials, courseCode, (err,course) => {
+ access.checkRequest(res,err,course,"Course not found", () => {
+ if (password != course.password)
+ return res.json({errmsg: "Wrong password"});
+ AssessmentModel.getByRefs(initials, courseCode, examName, (err2,assessment) => {
+ access.checkRequest(res,err2,assessment,"Assessment not found", () => {
+ res.json({
+ students: course.students,
+ assessment: assessment,
+ secret: params.secret,
+ });
+ });
});
- res.json(ret); //contains questions+password
});
});
});
let error = validator({ _id:aid, papers:[{number:number,password:password,inputs:[input]}] }, "Assessment");
if (error.length > 0)
return res.json({errmsg:error});
- AssessmentEntity.setInput(ObjectId(aid), number, password, input, (err,ret) => {
+ AssessmentModel.newAnswer(ObjectId(aid), number, password, input, (err,ret) => {
access.checkRequest(res,err,ret,"Cannot send answer", () => {
res.json({});
});
let error = validator({ _id:aid, papers:[{number:number,password:password}] }, "Assessment");
if (error.length > 0)
return res.json({errmsg:error});
- // Destroy pwd, set endTime, return conclusion
- AssessmentModel.endSession(ObjectId(aid), number, password, (err,conclusion) => {
- access.checkRequest(res,err,conclusion,"Cannot end assessment", () => {
+ // Destroy pwd, set endTime
+ AssessmentModel.endSession(ObjectId(aid), number, password, (err,ret) => {
+ access.checkRequest(res,err,ret,"Cannot end assessment", () => {
res.clearCookie('password');
- res.json(conclusion);
+ res.json({});
});
});
});