Fixes profile edition errors due to null visibility.
[platal.git] / classes / user.php
CommitLineData
9f8ebb9f
VZ
1<?php
2/***************************************************************************
5e1513f6 3 * Copyright (C) 2003-2011 Polytechnique.org *
9f8ebb9f
VZ
4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
2d96cf7b 22class User extends PlUser
9f8ebb9f 23{
16d2c883 24 const PERM_API_USER_READONLY = 'api_user_readonly';
30962fae
FB
25 const PERM_DIRECTORY_AX = 'directory_ax';
26 const PERM_DIRECTORY_PRIVATE = 'directory_private';
27 const PERM_EDIT_DIRECTORY = 'edit_directory';
28 const PERM_FORUMS = 'forums';
16d2c883 29 const PERM_GROUPS = 'groups';
30962fae 30 const PERM_LISTS = 'lists';
16d2c883 31 const PERM_MAIL = 'mail';
30962fae
FB
32 const PERM_PAYMENT = 'payment';
33
f036c896
SJ
34 public static $sub_mail_domains = array(
35 'x' => '',
36 'master' => 'master.',
37 'phd' => 'doc.',
38 'all' => 'alumni.'
39 );
40
3e53a496
FB
41 private $_profile_fetched = false;
42 private $_profile = null;
43
956608bc
RB
44 // Additional fields (non core)
45 protected $promo = null;
46
70232020 47 // Implementation of the login to uid method.
b1719b13
VZ
48 protected function getLogin($login)
49 {
50 global $globals;
51
f6c58d14
VZ
52 if (!$login) {
53 throw new UserNotFoundException();
54 }
55
455ea0c9 56 if ($login instanceof User) {
14da7ef4 57 return $login->id();
455ea0c9
FB
58 }
59
e7b93962 60 if ($login instanceof Profile) {
3e53a496
FB
61 $this->_profile = $login;
62 $this->_profile_fetched = true;
e7b93962
FB
63 $res = XDB::query('SELECT ap.uid
64 FROM account_profiles AS ap
65 WHERE ap.pid = {?} AND FIND_IN_SET(\'owner\', perms)',
66 $login->id());
67 if ($res->numRows()) {
68 return $res->fetchOneCell();
69 }
70 throw new UserNotFoundException();
71 }
72
b1719b13
VZ
73 // If $data is an integer, fetches directly the result.
74 if (is_numeric($login)) {
06a548e5
SJ
75 $res = XDB::query('SELECT uid
76 FROM accounts
77 WHERE uid = {?}', $login);
b1719b13 78 if ($res->numRows()) {
70232020 79 return $res->fetchOneCell();
b1719b13
VZ
80 }
81
82 throw new UserNotFoundException();
83 }
84
85 // Checks whether $login is a valid hruid or not.
06a548e5
SJ
86 $res = XDB::query('SELECT uid
87 FROM accounts
88 WHERE hruid = {?}', $login);
b1719b13 89 if ($res->numRows()) {
70232020 90 return $res->fetchOneCell();
b1719b13
VZ
91 }
92
93 // From now, $login can only by an email alias, or an email redirection.
b1719b13
VZ
94 $login = trim(strtolower($login));
95 if (strstr($login, '@') === false) {
ac57076f
SJ
96 $res = XDB::fetchOneCell('SELECT uid
97 FROM email_source_account
98 WHERE email = {?}',
99 $login);
06a548e5
SJ
100 } else {
101 list($email, $domain) = explode('@', $login);
ac57076f
SJ
102 $res = XDB::fetchOneCell('SELECT s.uid
103 FROM email_source_account AS s
104 INNER JOIN email_virtual_domains AS m ON (s.domain = m.id)
105 INNER JOIN email_virtual_domains AS d ON (d.aliasing = m.id)
106 WHERE s.email = {?} AND d.name = {?}',
107 $email, $domain);
b1719b13
VZ
108 }
109
06a548e5
SJ
110 if ($res) {
111 return $res;
b1719b13
VZ
112 }
113
cb8a8977 114 // Looks for an account with the given email.
06a548e5
SJ
115 $res = XDB::query('SELECT uid
116 FROM accounts
117 WHERE email = {?}', $login);
cb8a8977
FB
118 if ($res->numRows() == 1) {
119 return $res->fetchOneCell();
120 }
121
b1719b13 122 // Otherwise, we do suppose $login is an email redirection.
06a548e5
SJ
123 $res = XDB::query('SELECT uid
124 FROM email_redirect_account
125 WHERE redirect = {?}', $login);
b1719b13 126 if ($res->numRows() == 1) {
70232020 127 return $res->fetchOneCell();
b1719b13
VZ
128 }
129
130 throw new UserNotFoundException($res->fetchColumn(1));
131 }
132
0d906109 133 protected static function loadMainFieldsFromUIDs(array $uids, $respect_order = true)
832e6fcb 134 {
6d33f1d3
FB
135 if (empty($uids)) {
136 return PlIteratorUtils::emptyIterator();
137 }
138
45dcd6dd 139 global $globals;
832e6fcb 140 $joins = '';
45dcd6dd 141 $fields = array();
45dcd6dd 142 if ($globals->asso('id')) {
eb41eda9 143 $joins .= XDB::format("LEFT JOIN group_members AS gpm ON (gpm.uid = a.uid AND gpm.asso_id = {?})\n", $globals->asso('id'));
45dcd6dd 144 $fields[] = 'gpm.perms AS group_perms';
a6761ca9 145 $fields[] = 'gpm.comm AS group_comm';
33fcb12c 146 $fields[] = 'gpm.position AS group_position';
45dcd6dd
FB
147 }
148 if (count($fields) > 0) {
149 $fields = ', ' . implode(', ', $fields);
a3118782
FB
150 } else {
151 $fields = '';
45dcd6dd 152 }
0d906109
RB
153
154 if ($respect_order) {
155 $order = 'ORDER BY ' . XDB::formatCustomOrder('a.uid', $uids);
156 } else {
157 $order = '';
158 }
159
45dcd6dd 160 $uids = array_map(array('XDB', 'escape'), $uids);
0d906109 161
b7753795 162 return XDB::iterator('SELECT a.uid, a.hruid, a.registration_date, h.uid IS NOT NULL AS homonym, a.firstname, a.lastname,
f036c896
SJ
163 IF(ef.email IS NULL, NULL, CONCAT(ef.email, \'@\', mf.name)) AS forlife,
164 IF(ef.email IS NULL, NULL, CONCAT(ef.email, \'@\', df.name)) AS forlife_alternate,
165 IF(eb.email IS NULL, NULL, CONCAT(eb.email, \'@\', mb.name)) AS bestalias,
dac6e2c6 166 (er.redirect IS NULL AND a.state = \'active\' AND FIND_IN_SET(\'mail\', at.perms)) AS lost,
33a4f3f9 167 a.email, a.full_name, a.directory_name, a.display_name, a.sex = \'female\' AS gender,
7fd6dbb3 168 IF(a.state = \'active\', CONCAT(at.perms, \',\', IF(a.user_perms IS NULL, \'\', a.user_perms)), \'\') AS perms,
f60c3d1f 169 a.user_perms, a.email_format, a.is_admin, a.state, a.type, at.description AS type_description, a.skin,
832e6fcb 170 FIND_IN_SET(\'watch\', a.flags) AS watch, a.comment,
2ab3486b
SJ
171 a.weak_password IS NOT NULL AS weak_access, g.g_account_name IS NOT NULL AS googleapps,
172 a.token IS NOT NULL AS token_access, a.token, a.last_version,
2ab3486b 173 UNIX_TIMESTAMP(s.start) AS lastlogin, s.host, UNIX_TIMESTAMP(fp.last_seen) AS banana_last
2c411733 174 ' . $fields . '
06a548e5
SJ
175 FROM accounts AS a
176 INNER JOIN account_types AS at ON (at.type = a.type)
177 LEFT JOIN email_source_account AS ef ON (ef.uid = a.uid AND ef.type = \'forlife\')
178 LEFT JOIN email_virtual_domains AS mf ON (ef.domain = mf.id)
f036c896
SJ
179 LEFT JOIN email_virtual_domains AS df ON (df.aliasing = mf.id AND
180 df.name LIKE CONCAT(\'%\', {?}) AND df.name NOT LIKE \'alumni.%\')
f67c8d9a 181 LEFT JOIN email_source_account AS eb ON (eb.uid = a.uid AND FIND_IN_SET(\'bestalias\',eb.flags))
9f3f87bc 182 LEFT JOIN email_virtual_domains AS mb ON (a.best_domain = mb.id)
06a548e5
SJ
183 LEFT JOIN email_redirect_account AS er ON (er.uid = a.uid AND er.flags = \'active\' AND er.broken_level < 3
184 AND er.type != \'imap\' AND er.type != \'homonym\')
185 LEFT JOIN homonyms_list AS h ON (h.uid = a.uid)
186 LEFT JOIN gapps_accounts AS g ON (a.uid = g.l_userid AND g.g_status = \'active\')
187 LEFT JOIN log_last_sessions AS ls ON (ls.uid = a.uid)
188 LEFT JOIN log_sessions AS s ON (s.id = ls.id)
189 LEFT JOIN forum_profiles AS fp ON (fp.uid = a.uid)
d865c296 190 ' . $joins . '
832e6fcb 191 WHERE a.uid IN (' . implode(', ', $uids) . ')
0d906109 192 GROUP BY a.uid
f036c896 193 ' . $order, $globals->mail->domain2, $globals->mail->domain2);
832e6fcb
FB
194 }
195
70232020
VZ
196 // Implementation of the data loader.
197 protected function loadMainFields()
198 {
c4012d9b
VZ
199 if ($this->hruid !== null && $this->forlife !== null
200 && $this->bestalias !== null && $this->display_name !== null
8f2104cb 201 && $this->full_name !== null && $this->perms !== null
c4012d9b 202 && $this->gender !== null && $this->email_format !== null) {
70232020
VZ
203 return;
204 }
1bf36cd1 205 $this->fillFromArray(self::loadMainFieldsFromUIDs(array($this->uid))->next());
70232020
VZ
206 }
207
50d5ec0b
FB
208 // Specialization of the buildPerms method
209 // This function build 'generic' permissions for the user. It does not take
210 // into account page specific permissions (e.g X.net group permissions)
211 protected function buildPerms()
212 {
213 if (!is_null($this->perm_flags)) {
214 return;
215 }
216 if ($this->perms === null) {
217 $this->loadMainFields();
218 }
365ba8c3 219 $this->perm_flags = self::makePerms($this->perms, $this->is_admin);
50d5ec0b
FB
220 }
221
20b087ff
FB
222 public function setPerms($perms)
223 {
224 $this->perms = $perms;
225 $this->perm_flags = null;
226 }
227
38a86f60
RB
228 /** Retrieve the 'general' read visibility.
229 * This is the maximum level of fields that may be viewed by the current user on other profiles.
230 *
231 * Rules are:
232 * - Everyone can view 'public'
233 * - directory_ax gives access to 'AX' level
234 * - directory_private gives access to 'private' level
235 * - admin gives access to 'hidden' level
236 */
237 public function readVisibility()
238 {
22771578 239 $level = Visibility::VIEW_NONE;
38a86f60 240 if ($this->is_admin) {
22771578 241 $level = Visibility::VIEW_ADMIN;
38a86f60 242 } elseif ($this->checkPerms('directory_private')) {
22771578 243 $level = Visibility::VIEW_PRIVATE;
38a86f60 244 } elseif ($this->checkPerms('directory_ax')) {
22771578 245 $level = Visibility::VIEW_AX;
38a86f60 246 } else {
22771578 247 $level = Visibility::VIEW_PUBLIC;
38a86f60 248 }
22771578 249 return Visibility::get($level);
38a86f60
RB
250 }
251
252 /** Retrieve the 'general' edit visibility.
253 * This is the maximum level of fields that may be edited by the current user on other profiles.
254 *
255 * Rules are:
256 * - Only admins can edit the 'hidden' fields
22771578 257 * - If someone has 'directory_edit' (which is actually directory_ax_edit): AX level
38a86f60
RB
258 * - Otherwise, nothing.
259 */
260 public function editVisibility()
261 {
22771578 262 $level = Visibility::VIEW_NONE;
38a86f60 263 if ($this->is_admin) {
22771578 264 $level = Visibility::VIEW_ADMIN;
38a86f60 265 } elseif ($this->checkPerms('directory_edit')) {
22771578 266 $level = Visibility::VIEW_AX;
38a86f60 267 }
22771578 268 return Visibility::get($level);
38a86f60
RB
269 }
270
7f1ff426
FB
271 // We do not want to store the password in the object.
272 // So, fetch it 'on demand'
273 public function password()
274 {
275 return XDB::fetchOneCell('SELECT a.password
276 FROM accounts AS a
277 WHERE a.uid = {?}', $this->id());
278 }
279
280806d9
SJ
280 public function isActive()
281 {
282 return $this->state == 'active';
283 }
284
8f2104cb
FB
285 /** Overload PlUser::promo(): there no promo defined for a user in the current
286 * schema. The promo is a field from the profile.
287 */
288 public function promo()
289 {
290 if (!$this->hasProfile()) {
291 return '';
292 }
293 return $this->profile()->promo();
294 }
295
f60c3d1f
FB
296 public function category()
297 {
298 $promo = $this->promo();
299 if (!empty($promo)) {
300 return $promo;
301 } else {
302 return $this->type_description;
303 }
304 }
305
a6761ca9
FB
306 public function firstName()
307 {
308 if (!$this->hasProfile()) {
309 return $this->displayName();
310 }
311 return $this->profile()->firstName();
312 }
313
314 public function lastName()
315 {
316 if (!$this->hasProfile()) {
317 return '';
318 }
319 return $this->profile()->lastName();
320 }
321
2ab3486b
SJ
322 public function displayName()
323 {
324 if (!$this->hasProfile()) {
325 return $this->display_name;
326 }
327 return $this->profile()->yourself;
328 }
329
09e54905
SJ
330 public function fullName($with_promo = false)
331 {
332 if (!$this->hasProfile()) {
333 return $this->full_name;
334 }
335 return $this->profile()->fullName($with_promo);
336 }
337
fc1227ef
SJ
338 public function shortName($with_promo = false)
339 {
340 if (!$this->hasProfile()) {
341 return $this->full_name;
342 }
343 return $this->profile()->shortName($with_promo);
344 }
345
09e54905
SJ
346 public function directoryName()
347 {
348 if (!$this->hasProfile()) {
d081acb2 349 return $this->directory_name;
09e54905
SJ
350 }
351 return $this->profile()->directory_name;
352 }
353
52366335
SJ
354 static public function compareDirectoryName($a, $b)
355 {
356 return strcasecmp(replace_accent($a->directoryName()), replace_accent($b->directoryName()));
357 }
358
e7b93962
FB
359 /** Return the main profile attached with this account if any.
360 */
4ac2e2ba 361 public function profile($forceFetch = false, $fields = 0x0000, $visibility = null)
e7b93962 362 {
4e698dc9 363 if (!$this->_profile_fetched || $forceFetch) {
3e53a496 364 $this->_profile_fetched = true;
4ac2e2ba 365 $this->_profile = Profile::get($this, $fields, $visibility);
7ea51160 366 } else if ($this->_profile !== null && !$this->_profile->visibility->equals($visibility)) {
22771578 367 return Profile::get($this, $fields, $visibility);
3e53a496
FB
368 }
369 return $this->_profile;
370 }
371
372 /** Return true if the user has an associated profile.
373 */
374 public function hasProfile()
375 {
376 return !is_null($this->profile());
377 }
378
fceed6ea
FB
379 /** Return true if given a reference to the profile of this user.
380 */
381 public function isMyProfile($other)
382 {
383 if (!$other) {
384 return false;
385 } else if ($other instanceof Profile) {
386 $profile = $this->profile();
387 return $profile && $profile->id() == $other->id();
388 }
389 return false;
390 }
391
3af21f99
FB
392 /** Check if the user can edit to given profile.
393 */
394 public function canEdit(Profile $profile)
395 {
a81ee987
FB
396 if ($this->checkPerms(User::PERM_EDIT_DIRECTORY)) {
397 return true;
398 }
3af21f99
FB
399 return XDB::fetchOneCell('SELECT pid
400 FROM account_profiles
401 WHERE uid = {?} AND pid = {?}',
402 $this->id(), $profile->id());
403 }
404
f036c896 405 /** Determines main email domain for this user.
3e53a496 406 */
f036c896 407 public function mainEmailDomain()
3e53a496 408 {
f036c896
SJ
409 if (array_key_exists($this->type, self::$sub_mail_domains)) {
410 return self::$sub_mail_domains[$this->type] . Platal::globals()->mail->domain;
8f2104cb 411 }
8f2104cb
FB
412 }
413
f036c896 414 /** Determines alternate email domain for this user.
8f2104cb 415 */
f036c896
SJ
416 public function alternateEmailDomain()
417 {
418 if (array_key_exists($this->type, self::$sub_mail_domains)) {
419 return self::$sub_mail_domains[$this->type] . Platal::globals()->mail->domain2;
a6761ca9 420 }
f036c896
SJ
421 }
422
72e12532
SJ
423 public function forlifeEmailAlternate()
424 {
425 if (!empty($this->forlife_alternate)) {
426 return $this->forlife_alternate;
8f2104cb 427 }
72e12532 428 return $this->email;
3e53a496
FB
429 }
430
08d33afc 431 /** Fetch existing auxiliary alias.
3e53a496 432 */
3e53a496 433 public function emailAlias()
3e53a496 434 {
06a548e5
SJ
435 $aliases = $this->emailAliases();
436 if (count($aliases)) {
437 return $aliases[0];
8f2104cb
FB
438 }
439 return null;
e7b93962
FB
440 }
441
08d33afc 442 /** Fetch existing auxiliary aliases.
8f2104cb 443 */
06a548e5
SJ
444 public function emailAliases()
445 {
446 return XDB::fetchColumn('SELECT CONCAT(s.email, \'@\', d.name)
447 FROM email_source_account AS s
448 INNER JOIN email_virtual_domains AS m ON (s.domain = m.id)
449 INNER JOIN email_virtual_domains AS d ON (d.aliasing = m.id)
08d33afc 450 WHERE s.uid = {?} AND s.type = \'alias_aux\'
06a548e5 451 ORDER BY d.name',
08d33afc 452 $this->id());
3e53a496
FB
453 }
454
06a548e5 455 /** Get all group aliases the user belongs to.
3e53a496 456 */
06a548e5
SJ
457 public function emailGroupAliases($domain = null)
458 {
459 if (is_null($domain)) {
460 return XDB::fetchColumn('SELECT CONCAT(v.email, \'@\', dv.name) AS alias
461 FROM email_virtual AS v
462 INNER JOIN email_virtual_domains AS dv ON (v.domain = dv.id)
463 INNER JOIN email_source_account AS s ON (s.uid = {?})
464 INNER JOIN email_virtual_domains AS ms ON (s.domain = ms.id)
465 INNER JOIN email_virtual_domains AS ds ON (ds.aliasing = ms.id)
51c2c63a 466 WHERE v.redirect = CONCAT(s.email, \'@\', ds.name) AND v.type = \'alias\'',
06a548e5
SJ
467 $this->id());
468 } else {
a94fdc4e
SJ
469 return XDB::fetchAllAssoc('alias',
470 'SELECT CONCAT(v.email, \'@\', dv.name) AS alias, MAX(v.redirect = CONCAT(s.email, \'@\', ds.name)) AS sub
06a548e5
SJ
471 FROM email_virtual AS v
472 INNER JOIN email_virtual_domains AS dv ON (v.domain = dv.id AND dv.name = {?})
473 INNER JOIN email_source_account AS s ON (s.uid = {?})
474 INNER JOIN email_virtual_domains AS ms ON (s.domain = ms.id)
475 INNER JOIN email_virtual_domains AS ds ON (ds.aliasing = ms.id)
51c2c63a 476 WHERE v.type = \'alias\'
a94fdc4e
SJ
477 GROUP BY v.email
478 ORDER BY v.email',
06a548e5
SJ
479 $domain, $this->id());
480 }
e7b93962 481 }
38c6fe96
FB
482
483 /** Get marketing informations
484 */
485 private function fetchMarketingData()
486 {
db8432d5 487 if (isset($this->pending_registration_date)) {
38c6fe96
FB
488 return;
489 }
db8432d5
SJ
490 $infos = XDB::fetchOneAssoc('SELECT rp.date AS pending_registration_date, rp.email AS pending_registration_email,
491 rm.last AS last_marketing_date, rm.email AS last_marketing_email
492 FROM accounts AS a
493 LEFT JOIN register_pending AS rp ON (rp.uid = a.uid)
494 LEFT JOIN register_marketing AS rm ON (rm.uid = a.uid AND rm.last != \'0000-00-00\')
495 WHERE a.uid = {?}
496 ORDER BY rm.last DESC', $this->id());
497 if (is_null($infos)) {
498 $infos = array(
499 'pending_registration_date' => null,
500 'pending_registration_email' => null,
501 'last_marketing_date' => null,
502 'last_marketing_email' => null
503 );
38c6fe96
FB
504 }
505 $this->fillFromArray($infos);
506 }
507
db8432d5 508 public function pendingRegistrationDate()
38c6fe96
FB
509 {
510 $this->fetchMarketingData();
db8432d5
SJ
511 return $this->pending_registration_date;
512 }
513
514 public function pendingRegistrationEmail()
515 {
516 $this->fetchMarketingData();
517 return $this->pending_registration_email;
518 }
519
520 public function lastMarketingDate()
521 {
522 $this->fetchMarketingData();
523 return $this->last_marketing_date;
524 }
525
526 public function lastMarketingEmail()
527 {
528 $this->fetchMarketingData();
529 return $this->last_marketing_email;
38c6fe96
FB
530 }
531
532 public function lastKnownEmail()
533 {
534 $this->fetchMarketingData();
db8432d5
SJ
535 if ($this->pending_registration_email > $this->last_marketing_date) {
536 return $this->pending_registration_email;
537 }
538 return $this->last_marketing_email;
38c6fe96
FB
539 }
540
009b8ab7 541
8d308ee4
FB
542 /** Format of the emails sent by the site
543 */
544 public function setEmailFormat($format)
545 {
546 Platal::assert($format == self::FORMAT_HTML || $format == self::FORMAT_TEXT,
547 "Invalid email format \"$format\"");
548 XDB::execute("UPDATE accounts
549 SET email_format = {?}
550 WHERE uid = {?}",
551 $format, $this->uid);
552 $this->email_format = $format;
553 }
554
009b8ab7
FB
555 /** Get watch informations
556 */
557 private function fetchWatchData()
558 {
559 if (isset($this->watch_actions)) {
560 return;
561 }
562 $watch = XDB::fetchOneAssoc('SELECT flags AS watch_flags, actions AS watch_actions,
563 UNIX_TIMESTAMP(last) AS watch_last
564 FROM watch
565 WHERE uid = {?}', $this->id());
566 $watch['watch_flags'] = new PlFlagSet($watch['watch_flags']);
567 $watch['watch_actions'] = new PlFlagSet($watch['watch_actions']);
568 $watch['watch_promos'] = XDB::fetchColumn('SELECT promo
569 FROM watch_promo
570 WHERE uid = {?}', $this->id());
571 $watch['watch_users'] = XDB::fetchColumn('SELECT ni_id
572 FROM watch_nonins
573 WHERE uid = {?}', $this->id());
574 $this->fillFromArray($watch);
575 }
576
a87530ea 577 public function watchType($type)
009b8ab7
FB
578 {
579 $this->fetchWatchData();
580 return $this->watch_actions->hasFlag($type);
581 }
582
583 public function watchContacts()
584 {
585 $this->fetchWatchData();
586 return $this->watch_flags->hasFlag('contacts');
587 }
588
589 public function watchEmail()
590 {
591 $this->fetchWatchData();
592 return $this->watch_flags->hasFlag('mail');
593 }
594
595 public function watchPromos()
596 {
597 $this->fetchWatchData();
598 return $this->watch_promos;
599 }
600
601 public function watchUsers()
602 {
603 $this->fetchWatchData();
604 return $this->watch_users;
605 }
606
607 public function watchLast()
608 {
609 $this->fetchWatchData();
610 return $this->watch_last;
611 }
612
069ddda8
FB
613 public function invalidWatchCache()
614 {
615 unset($this->watch_actions);
616 unset($this->watch_users);
617 unset($this->watch_last);
618 unset($this->watch_promos);
619 }
620
c350577b
FB
621
622 // Contacts
623 private $contacts = null;
48e683dd 624 private function fetchContacts()
c350577b 625 {
76cbe885 626 if (is_null($this->contacts)) {
c350577b
FB
627 $this->contacts = XDB::fetchAllAssoc('contact', 'SELECT *
628 FROM contacts
629 WHERE uid = {?}',
630 $this->id());
631 }
48e683dd
FB
632 }
633
634 public function iterContacts()
635 {
636 $this->fetchContacts();
a289e967 637 return Profile::iterOverPIDs(array_keys($this->contacts));
48e683dd
FB
638 }
639
640 public function getContacts()
641 {
642 $this->fetchContacts();
a289e967 643 return Profile::getBulkProfilesWithPIDs(array_keys($this->contacts));
48e683dd
FB
644 }
645
26ba053e 646 public function isContact(Profile $profile)
48e683dd
FB
647 {
648 $this->fetchContacts();
a289e967 649 return isset($this->contacts[$profile->id()]);
c350577b
FB
650 }
651
26ba053e 652 public function isWatchedUser(Profile $profile)
958def08
PC
653 {
654 return in_array($profile->id(), $this->watchUsers());
655 }
656
f5ef8b57
RB
657 // Groupes X
658 private $groups = null;
56cd7aee 659 public function groups($institutions = false, $onlyPublic = false)
f5ef8b57
RB
660 {
661 if (is_null($this->groups)) {
56cd7aee
FB
662 $this->groups = XDB::fetchAllAssoc('asso_id', 'SELECT gm.asso_id, gm.perms, gm.comm,
663 g.diminutif, g.nom, g.site, g.cat,
664 g.pub
665 FROM group_members AS gm
666 INNER JOIN groups AS g ON (g.id = gm.asso_id)
f5ef8b57
RB
667 WHERE uid = {?}',
668 $this->id());
669 }
56cd7aee
FB
670 if (!$institutions && !$onlyPublic) {
671 return $this->groups;
fa589f90 672 } else {
56cd7aee
FB
673 $result = array();
674 foreach ($this->groups as $id=>$data) {
675 if ($institutions) {
1d889ac4 676 if ($data['cat'] != Group::CAT_GROUPESX && $data['cat'] != Group::CAT_INSTITUTIONS) {
56cd7aee
FB
677 continue;
678 }
679 }
680 if ($onlyPublic) {
681 if ($data['pub'] != 'public') {
682 continue;
683 }
684 }
685 $result[$id] = $data;
686 }
687 return $result;
fa589f90 688 }
fa589f90
RB
689 }
690
9a7f3d8e 691 public function groupCount()
4257b11a 692 {
9a7f3d8e
SJ
693 return XDB::fetchOneCell('SELECT COUNT(DISTINCT(asso_id))
694 FROM group_members
695 WHERE uid = {?}',
696 $this->id());
4257b11a
SJ
697 }
698
7ae5c545
SJ
699 public function inGroup($asso_id)
700 {
701 $res = XDB::fetchOneCell('SELECT COUNT(*)
702 FROM group_members
703 WHERE uid = {?} AND asso_id = {?}',
704 $this->id(), $asso_id);
705 return ($res > 0);
706 }
707
6150f591
SJ
708 /**
709 * Clears a user.
710 * *always deletes in: account_lost_passwords, register_marketing,
711 * register_pending, register_subs, watch_nonins, watch, watch_promo
06a548e5
SJ
712 * *always keeps in: account_types, accounts, email_virtual, carvas,
713 * group_members, homonyms_list, newsletter_ins, register_mstats, email_source_account
6150f591 714 * *deletes if $clearAll: account_auth_openid, announce_read, contacts,
06a548e5 715 * email_redirect_account, email_redirect_account, email_send_save, forum_innd, forum_profiles,
6150f591
SJ
716 * forum_subs, gapps_accounts, gapps_nicknames, group_announces_read,
717 * group_member_sub_requests, reminder, requests, requests_hidden,
06a548e5 718 * email_virtual, ML
6150f591
SJ
719 * *modifies if $clearAll: accounts
720 *
721 * Use cases:
722 * *$clearAll == false: when a user dies, her family still needs to keep in
723 * touch with the community.
724 * *$clearAll == true: in every other case we want the account to be fully
725 * deleted so that it can not be used anymore.
726 */
727 public function clear($clearAll = true)
728 {
405d70cc
RB
729 $tables = array('account_lost_passwords', 'register_marketing',
730 'register_pending', 'register_subs', 'watch_nonins',
731 'watch', 'watch_promo');
732
733 foreach ($tables as $t) {
734 XDB::execute('DELETE FROM ' . $t . '
735 WHERE uid = {?}',
736 $this->id());
737 }
6150f591
SJ
738
739 if ($clearAll) {
c79e28fc
SJ
740 global $globals;
741
0e5b3438
SJ
742 $groupIds = XDB::iterator('SELECT asso_id
743 FROM group_members
744 WHERE uid = {?}',
745 $this->id());
746 while ($groupId = $groupIds->next()) {
747 $group = Group::get($groupId);
c79e28fc 748 if (!empty($group) && $group->notif_unsub) {
0e5b3438
SJ
749 $mailer = new PlMailer('xnetgrp/unsubscription-notif.mail.tpl');
750 $admins = $group->iterAdmins();
751 while ($admin = $admins->next()) {
752 $mailer->addTo($admin);
753 }
754 $mailer->assign('group', $group->shortname);
755 $mailer->assign('user', $this);
756 $mailer->assign('selfdone', false);
757 $mailer->send();
758 }
759 }
760
c79e28fc 761 $tables = array('account_auth_openid', 'announce_read', 'contacts',
13b45814 762 'email_send_save',
c79e28fc
SJ
763 'forum_innd', 'forum_profiles', 'forum_subs',
764 'group_announces_read', 'group_members',
765 'group_member_sub_requests', 'reminder', 'requests',
06a548e5 766 'requests_hidden');
405d70cc
RB
767 foreach ($tables as $t) {
768 XDB::execute('DELETE FROM ' . $t . '
769 WHERE uid = {?}',
c79e28fc
SJ
770 $this->id());
771 }
06a548e5
SJ
772 XDB::execute('DELETE FROM email_redirect_account
773 WHERE uid = {?} AND type != \'homonym\'',
774 $this->id());
13b45814
SJ
775 XDB::execute('DELETE FROM email_virtual
776 WHERE redirect = {?}',
777 $this->forlifeEmail());
c79e28fc
SJ
778
779 foreach (array('gapps_accounts', 'gapps_nicknames') as $t) {
780 XDB::execute('DELETE FROM ' . $t . '
781 WHERE l_userid = {?}',
782 $this->id());
405d70cc
RB
783 }
784
6150f591
SJ
785 XDB::execute("UPDATE accounts
786 SET registration_date = 0, state = 'pending', password = NULL,
787 weak_password = NULL, token = NULL, is_admin = 0
788 WHERE uid = {?}",
789 $this->id());
790
6150f591
SJ
791 if ($globals->mailstorage->googleapps_domain) {
792 require_once 'googleapps.inc.php';
793
c79e28fc
SJ
794 if (GoogleAppsAccount::account_status($this->id())) {
795 $account = new GoogleAppsAccount($this);
6150f591
SJ
796 $account->suspend();
797 }
798 }
799 }
800
dec84555 801 $mmlist = new MMList(S::user());
a85562a0 802 $mmlist->kill($this->hruid, $clearAll);
6150f591
SJ
803 }
804
ab06182d 805 // Merge all infos in other user and then clean this one
26ba053e 806 public function mergeIn(User $newuser) {
33a4f3f9
SJ
807 if ($this->profile()) {
808 // Don't disable user with profile in this way.
809 global $globals;
810 Platal::page()->trigError('Impossible de fusionner les comptes ' . $this->hruid . ' et ' . $newuser->hruid .
811 '. Contacte support@' . $globals->mail->domain . '.');
ab06182d
PC
812 return false;
813 }
ab06182d 814
33a4f3f9
SJ
815 if ($this->forlifeEmail()) {
816 // If the new user is not registered and does not have already an email address,
817 // we need to give him the old user's email address if he has any.
818 if (!$newuser->perms) {
819 XDB::execute('UPDATE accounts
820 SET email = {?}
821 WHERE uid = {?} AND email IS NULL',
822 $this->forlifeEmail(), $newuser->id());
06a548e5
SJ
823
824 // Reftech new user so its forlifeEmail will be correct.
cb8b7945 825 $newuser = self::getSilentWithUID($newuser->id());
ab06182d 826 }
33a4f3f9 827
06a548e5
SJ
828 // Change email used in mailing lists.
829 if ($this->forlifeEmail() != $newuser->forlifeEmail()) {
f7d43ed5
SJ
830 // The super user is the user who has the right to do the modification.
831 $super_user = S::user();
33a4f3f9
SJ
832 // group mailing lists
833 $group_domains = XDB::fetchColumn('SELECT g.mail_domain
834 FROM groups AS g
835 INNER JOIN group_members AS gm ON(g.id = gm.asso_id)
836 WHERE g.mail_domain != \'\' AND gm.uid = {?}',
837 $this->id());
838 foreach ($group_domains as $mail_domain) {
f7d43ed5 839 $mmlist = new MMList($super_user, $mail_domain);
06a548e5 840 $mmlist->replace_email_in_all($this->forlifeEmail(), $newuser->forlifeEmail());
33a4f3f9
SJ
841 }
842 // main domain lists
f7d43ed5 843 $mmlist = new MMList($super_user);
06a548e5 844 $mmlist->replace_email_in_all($this->forlifeEmail(), $newuser->forlifeEmail());
33a4f3f9
SJ
845 }
846 }
847
848 // Updates user in following tables.
7f376ae0 849 foreach (array('group_announces', 'payment_transactions', 'log_sessions', 'group_events') as $table) {
33a4f3f9
SJ
850 XDB::execute('UPDATE ' . $table . '
851 SET uid = {?}
852 WHERE uid = {?}',
853 $newuser->id(), $this->id());
854 }
33a4f3f9
SJ
855
856 // Merges user in following tables, ie updates when possible, then deletes remaining occurences of the old user.
06a548e5 857 foreach (array('group_announces_read', 'group_event_participants', 'group_member_sub_requests', 'group_members', 'email_redirect_account') as $table) {
33a4f3f9
SJ
858 XDB::execute('UPDATE IGNORE ' . $table . '
859 SET uid = {?}
860 WHERE uid = {?}',
861 $newuser->id(), $this->id());
862 XDB::execute('DELETE FROM ' . $table . '
863 WHERE uid = {?}',
864 $this->id());
865 }
ab06182d 866
33a4f3f9
SJ
867 // Eventually updates last session id and deletes old user's accounts entry.
868 $lastSession = XDB::fetchOneCell('SELECT id
869 FROM log_sessions
870 WHERE uid = {?}
871 ORDER BY start DESC
872 LIMIT 1',
873 $newuser->id());
874 XDB::execute('UPDATE log_last_sessions
875 SET id = {?}
876 WHERE uid = {?}',
be281b31 877 $lastSession, $newuser->id());
33a4f3f9
SJ
878 XDB::execute('DELETE FROM accounts
879 WHERE uid = {?}',
880 $this->id());
ab06182d
PC
881
882 return true;
883 }
884
50d5ec0b 885 // Return permission flags for a given permission level.
365ba8c3 886 public static function makePerms($perms, $is_admin)
50d5ec0b 887 {
365ba8c3 888 $flags = new PlFlagSet($perms);
365ba8c3 889 if ($is_admin) {
50d5ec0b
FB
890 $flags->addFlag(PERMS_ADMIN);
891 }
7fd6dbb3
FB
892
893 // Access to private directory implies access to 'less'-private version.
894 if ($flags->hasFlag('directory_private')) {
895 $flags->addFlag('directory_ax');
896 }
50d5ec0b
FB
897 return $flags;
898 }
899
b1719b13
VZ
900 // Implementation of the default user callback.
901 public static function _default_user_callback($login, $results)
902 {
b1719b13 903 $result_count = count($results);
dd70cd28 904 if ($result_count == 0 || !S::admin()) {
70232020 905 Platal::page()->trigError("Il n'y a pas d'utilisateur avec l'identifiant : $login");
b1719b13 906 } else {
70232020 907 Platal::page()->trigError("Il y a $result_count utilisateurs avec cet identifiant : " . join(', ', $results));
b1719b13
VZ
908 }
909 }
70232020 910
f88d9154
SJ
911 public static function makeHomonymHrmid($alias)
912 {
913 return 'h.' . $alias . '.' . Platal::globals()->mail->domain;
914 }
915
f036c896 916 public static function isMainMailDomain($domain)
70232020
VZ
917 {
918 global $globals;
70232020 919
f036c896
SJ
920 $is_main_domain = false;
921 foreach (self::$sub_mail_domains as $sub_domain) {
ca2f19b8 922 $is_main_domain = $is_main_domain || $domain == ($sub_domain . $globals->mail->domain) || $domain == ($sub_domain . $globals->mail->domain2);
f036c896
SJ
923 }
924 return $is_main_domain;
70232020 925 }
832e6fcb 926
f036c896 927 public static function isAliasMailDomain($domain)
aa21c568
FB
928 {
929 global $globals;
f036c896
SJ
930
931 return $domain == $globals->mail->alias_dom || $domain == $globals->mail->alias_dom2;
932 }
933
934 // Implementation of the static email locality checker.
935 public static function isForeignEmailAddress($email)
936 {
aa21c568
FB
937 if (strpos($email, '@') === false) {
938 return false;
939 }
940
f036c896
SJ
941 list(, $domain) = explode('@', $email);
942 return !(self::isMainMailDomain($domain) || self::isAliasMailDomain($domain));
aa21c568
FB
943 }
944
61a7d279
SJ
945 /* Tries to find pending accounts with an hruid close to $login. */
946 public static function getPendingAccounts($login, $iterator = false)
947 {
61a7d279
SJ
948 if (strpos($login, '@') === false) {
949 return null;
950 }
951
952 list($login, $domain) = explode('@', $login);
953
f036c896 954 if ($domain && !self::isMainMailDomain($domain)) {
61a7d279
SJ
955 return null;
956 }
957
958 $sql = "SELECT uid, full_name
959 FROM accounts
960 WHERE state = 'pending' AND REPLACE(hruid, '-', '') LIKE
961 CONCAT('%', REPLACE(REPLACE(REPLACE({?}, ' ', ''), '-', ''), '\'', ''), '%')
962 ORDER BY full_name";
963 if ($iterator) {
964 return XDB::iterator($sql, $login);
965 } else {
966 $res = XDB::query($sql, $login);
967 return $res->fetchAllAssoc();
968 }
969 }
970
971
0d906109
RB
972 public static function iterOverUIDs($uids, $respect_order = true)
973 {
974 return new UserIterator(self::loadMainFieldsFromUIDs($uids, $respect_order));
975 }
976
977 /** Fetch a set of users from a list of UIDs
978 * @param $data The list of uids to fetch, or an array of arrays
979 * @param $orig If $data is an array of arrays, the subfield where uids are stored
980 * @param $dest If $data is an array of arrays, the subfield to fill with Users
981 * @param $fetchProfile Whether to fetch Profiles as well
982 * @return either an array of $uid => User, or $data with $data[$i][$dest] = User
983 */
b774ddab 984 public static function getBulkUsersWithUIDs(array $data, $orig = null, $dest = null, $fetchProfile = true)
832e6fcb 985 {
07eb5b0e
FB
986 // Fetch the list of uids
987 if (is_null($orig)) {
988 $uids = $data;
989 } else {
990 if (is_null($dest)) {
991 $dest = $orig;
992 }
993 $uids = array();
994 foreach ($data as $key=>$entry) {
995 if (isset($entry[$orig])) {
996 $uids[] = $entry[$orig];
997 }
998 }
999 }
1000
1001 // Fetch users
38c6fe96 1002 if (count($uids) == 0) {
07eb5b0e 1003 return $data;
38c6fe96 1004 }
0d906109
RB
1005 $users = self::iterOverUIDs($uids, true);
1006
d865c296 1007 $table = array();
b774ddab 1008 if ($fetchProfile) {
0d906109 1009 $profiles = Profile::iterOverUIDS($uids, true);
7a8da8e8
PC
1010 if ($profiles != null) {
1011 $profile = $profiles->next();
1012 } else {
1013 $profile = null;
1014 }
b774ddab 1015 }
0d906109
RB
1016
1017 /** We iterate through the users, moving in
1018 * profiles when they match the user ID :
1019 * there can be users without a profile, but not
1020 * the other way around.
1021 */
1022 while (($user = $users->next())) {
b774ddab 1023 if ($fetchProfile) {
7a8da8e8 1024 if ($profile != null && $profile->owner_id == $user->id()) {
0d906109
RB
1025 $user->_profile = $profile;
1026 $profile = $profiles->next();
b774ddab
FB
1027 }
1028 $user->_profile_fetched = true;
1029 }
0d906109 1030 $table[$user->id()] = $user;
d865c296 1031 }
07eb5b0e
FB
1032
1033 // Build the result with respect to input order.
1034 if (is_null($orig)) {
0d906109 1035 return $table;
07eb5b0e
FB
1036 } else {
1037 foreach ($data as $key=>$entry) {
1038 if (isset($entry[$orig])) {
1039 $entry[$dest] = $table[$entry[$orig]];
1040 $data[$key] = $entry;
1041 }
1042 }
1043 return $data;
832e6fcb 1044 }
07eb5b0e
FB
1045 }
1046
b774ddab 1047 public static function getBulkUsersFromDB($fetchProfile = true)
07eb5b0e
FB
1048 {
1049 $args = func_get_args();
1050 $uids = call_user_func_array(array('XDB', 'fetchColumn'), $args);
b774ddab 1051 return self::getBulkUsersWithUIDs($uids, null, null, $fetchProfile);
832e6fcb 1052 }
9f8ebb9f
VZ
1053}
1054
0d906109
RB
1055/** Iterator over a set of Users
1056 * @param an XDB::Iterator obtained from a User::loadMainFieldsFromUIDs
1057 */
1058class UserIterator implements PlIterator
1059{
1060 private $dbiter;
1061
1062 public function __construct($dbiter)
1063 {
1064 $this->dbiter = $dbiter;
1065 }
1066
1067 public function next()
1068 {
1069 $data = $this->dbiter->next();
1070 if ($data == null) {
1071 return null;
1072 } else {
1073 return User::getSilentWithValues(null, $data);
1074 }
1075 }
1076
1077 public function total()
1078 {
1079 return $this->dbiter->total();
1080 }
1081
1082 public function first()
1083 {
1084 return $this->dbiter->first();
1085 }
1086
1087 public function last()
1088 {
1089 return $this->dbiter->last();
1090 }
1091}
1092
9f8ebb9f
VZ
1093// vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
1094?>