Some extra auth_user fixes.
[platal.git] / include / validations.inc.php
CommitLineData
0337d704 1<?php
2/***************************************************************************
8d84c630 3 * Copyright (C) 2003-2009 Polytechnique.org *
0337d704 4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
0337d704 22define('SIZE_MAX', 32768);
23
ce8ca505
FB
24global $globals;
25require_once $globals->spoolroot . '/core/classes/xdb.php';
2f151d5f 26
0337d704 27/**
28 * Iterator class, that lists objects through the database
29 */
30class ValidateIterator extends XOrgDBIterator
31{
32 // {{{ constuctor
d71befc4 33
612a2d8a 34 public function __construct ()
0337d704 35 {
96b00435 36 parent::__construct('SELECT data, DATE_FORMAT(stamp, "%Y%m%d%H%i%s") FROM requests ORDER BY stamp', MYSQL_NUM);
0337d704 37 }
38
39 // }}}
40 // {{{ function next()
41
612a2d8a 42 public function next ()
0337d704 43 {
44 if (list($result, $stamp) = parent::next()) {
33b47675 45 $result = Validate::unserialize($result);
0337d704 46 $result->stamp = $stamp;
47 return($result);
48 } else {
49 return null;
50 }
51 }
52
53 // }}}
54}
55
a7de4ef7 56/** classe "virtuelle" à dériver pour chaque nouvelle implémentation
0337d704 57 */
612a2d8a 58abstract class Validate
0337d704 59{
60 // {{{ properties
eaf30d86 61
5daf68f6 62 public $user;
612a2d8a 63
64 public $stamp;
65 public $unique;
0337d704 66 // enable the refuse button
612a2d8a 67 public $refuse = true;
eaf30d86 68
612a2d8a 69 public $type;
70 public $comments = Array();
0337d704 71 // the validations rules : comments for admins
612a2d8a 72 public $rules = "Mieux vaut laisser une demande de validation à un autre admin que de valider une requête illégale ou que de refuser une demande légitime";
0337d704 73
74 // }}}
75 // {{{ constructor
eaf30d86 76
0337d704 77 /** constructeur
5daf68f6 78 * @param $_user user object
a7de4ef7 79 * @param $_unique requête pouvant être multiple ou non
80 * @param $_type type de la donnée comme dans le champ type de x4dat.requests
0337d704 81 */
532c06cf 82 public function __construct(User &$_user, $_unique, $_type)
0337d704 83 {
532c06cf 84 $this->user = &$_user;
0337d704 85 $this->stamp = date('YmdHis');
86 $this->unique = $_unique;
87 $this->type = $_type;
8f2104cb 88 $this->promo = $this->user->promo();
0337d704 89 }
eaf30d86 90
0337d704 91 // }}}
92 // {{{ function submit()
93
a7de4ef7 94 /** fonction à utiliser pour envoyer les données à la modération
0337d704 95 * cette fonction supprimme les doublons sur un couple ($user,$type) si $this->unique est vrai
96 */
612a2d8a 97 public function submit()
0337d704 98 {
0337d704 99 if ($this->unique) {
5daf68f6 100 XDB::execute('DELETE FROM requests WHERE user_id={?} AND type={?}', $this->user->id(), $this->type);
0337d704 101 }
eaf30d86 102
0337d704 103 $this->stamp = date('YmdHis');
08cce2ff 104 XDB::execute('INSERT INTO requests (user_id, type, data, stamp) VALUES ({?}, {?}, {?}, {?})',
5daf68f6 105 $this->user->id(), $this->type, $this, $this->stamp);
0337d704 106
84868ee9 107 global $globals;
ebfdf077 108 $globals->updateNbValid();
0337d704 109 return true;
110 }
111
112 // }}}
113 // {{{ function update()
114
612a2d8a 115 protected function update()
0337d704 116 {
08cce2ff 117 XDB::execute('UPDATE requests SET data={?}, stamp=stamp
612a2d8a 118 WHERE user_id={?} AND type={?} AND stamp={?}',
5daf68f6 119 $this, $this->user->id(), $this->type, $this->stamp);
0337d704 120 return true;
121 }
122
123 // }}}
124 // {{{ function clean()
eaf30d86 125
a7de4ef7 126 /** fonction à utiliser pour nettoyer l'entrée de la requête dans la table requests
127 * attention, tout est supprimé si c'est un unique
0337d704 128 */
d17761d8 129 public function clean()
0337d704 130 {
95e36b0f
SJ
131 global $globals;
132
0337d704 133 if ($this->unique) {
84868ee9 134 $success = XDB::execute('DELETE FROM requests WHERE user_id={?} AND type={?}',
5daf68f6 135 $this->user->id(), $this->type);
0337d704 136 } else {
84868ee9 137 $success = XDB::execute('DELETE FROM requests WHERE user_id={?} AND type={?} AND stamp={?}',
5daf68f6 138 $this->user->id(), $this->type, $this->stamp);
0337d704 139 }
ebfdf077 140 $globals->updateNbValid();
84868ee9 141 return $success;
0337d704 142 }
143
144 // }}}
145 // {{{ function handle_formu()
eaf30d86 146
cb04af2c 147 /** fonction à réaliser en cas de validation du formulaire
0337d704 148 */
612a2d8a 149 public function handle_formu()
0337d704 150 {
151 if (Env::has('delete')) {
152 $this->clean();
a7d35093 153 $this->trigSuccess('Requête supprimée');
0337d704 154 return true;
155 }
156
a7de4ef7 157 // mise à jour des informations
6aa01fed 158 if (Env::has('edit')) {
159 if ($this->handle_editor()) {
160 $this->update();
a7d35093 161 $this->trigSuccess('Requête mise à jour');
6aa01fed 162 return true;
163 }
164 return false;
165 }
166
0337d704 167 // ajout d'un commentaire
168 if (Env::has('hold') && Env::has('comm')) {
4791ff77 169 $formid = Env::i('formid');
170 foreach ($this->comments as $comment) {
171 if ($comment[2] === $formid) {
172 return true;
173 }
174 }
90608d68 175 if (!strlen(trim(Env::v('comm')))) {
176 return true;
177 }
5daf68f6 178 $this->comments[] = Array(S::user()->login(), Env::v('comm'), $formid);
0337d704 179
a7de4ef7 180 // envoi d'un mail à hotliners
0337d704 181 global $globals;
b9c53090 182 $mailer = new PlMailer();
0337d704 183 $mailer->setSubject("Commentaires de validation {$this->type}");
184 $mailer->setFrom("validation+{$this->type}@{$globals->mail->domain}");
b9c53090 185 $mailer->addTo($globals->core->admin_email);
0337d704 186
53092def 187 $body = "Validation {$this->type} pour {$this->user->login()}\n\n"
5daf68f6
VZ
188 . S::user()->login() . " a ajouté le commentaire :\n\n"
189 . Env::v('comm') . "\n\n"
190 . "cf la discussion sur : " . $globals->baseurl . "/admin/validate";
0337d704 191
192 $mailer->setTxtBody(wordwrap($body));
193 $mailer->send();
194
195 $this->update();
a7d35093 196 $this->trigSuccess('Commentaire ajouté');
0337d704 197 return true;
198 }
199
200 if (Env::has('accept')) {
201 if ($this->commit()) {
202 $this->sendmail(true);
203 $this->clean();
faefdbb7 204 $this->trigSuccess('Email de validation envoyé');
0337d704 205 return true;
206 } else {
a7d35093 207 $this->trigError('Erreur lors de la validation');
0337d704 208 return false;
209 }
210 }
211
212 if (Env::has('refuse')) {
5e2307dc 213 if (Env::v('comm')) {
0337d704 214 $this->sendmail(false);
215 $this->clean();
faefdbb7 216 $this->trigSuccess('Email de refus envoyé');
0337d704 217 return true;
218 } else {
a7d35093 219 $this->trigError('pas de motivation pour le refus !!!');
0337d704 220 }
221 }
222
223 return false;
224 }
225
226 // }}}
227 // {{{ function sendmail
228
612a2d8a 229 protected function sendmail($isok)
0337d704 230 {
231 global $globals;
1e33266a 232 $mailer = new PlMailer();
0337d704 233 $mailer->setSubject($this->_mail_subj());
234 $mailer->setFrom("validation+{$this->type}@{$globals->mail->domain}");
5daf68f6 235 $mailer->addTo("\"{$this->user->fullName()}\" <{$this->user->bestEmail()}>");
0337d704 236 $mailer->addCc("validation+{$this->type}@{$globals->mail->domain}");
237
5daf68f6 238 $body = ($this->user->isFemale() ? "Chère camarade,\n\n" : "Cher camarade,\n\n")
0337d704 239 . $this->_mail_body($isok)
5e2307dc 240 . (Env::has('comm') ? "\n\n".Env::v('comm') : '')
780bc68d 241 . "\n\nCordialement,\n\n-- \nL'équipe de Polytechnique.org\n";
0337d704 242
243 $mailer->setTxtBody(wordwrap($body));
244 $mailer->send();
245 }
246
247 // }}}
248 // {{{ function trig()
eaf30d86 249
a7d35093 250 protected function trigError($msg)
612a2d8a 251 {
d7610c35 252 Platal::page()->trigError($msg);
a7d35093
FB
253 }
254
255 protected function trigWarning($msg)
256 {
d7610c35 257 Platal::page()->trigWarning($msg);
a7d35093
FB
258 }
259
260 protected function trigSuccess($msg)
261 {
d7610c35 262 Platal::page()->trigSuccess($msg);
0337d704 263 }
eaf30d86 264
0337d704 265 // }}}
20d7932b 266 // {{{ function get_typed_request()
0337d704 267
a7de4ef7 268 /** fonction statique qui renvoie la requête de l'utilisateur d'id $uidau timestamp $t
269 * @param $uid l'id de l'utilisateur concerné
270 * @param $type le type de la requête
271 * @param $stamp le timestamp de la requête
0337d704 272 *
273 * XXX fonction "statique" XXX
a7de4ef7 274 * à utiliser uniquement pour récupérer un objet dans la BD avec Validate::get_typed_request(...)
0337d704 275 */
612a2d8a 276 static public function get_typed_request($uid, $type, $stamp = -1)
0337d704 277 {
0337d704 278 if ($stamp == -1) {
08cce2ff 279 $res = XDB::query('SELECT data FROM requests WHERE user_id={?} and type={?}', $uid, $type);
0337d704 280 } else {
96b00435 281 $res = XDB::query('SELECT data, DATE_FORMAT(stamp, "%Y%m%d%H%i%s") FROM requests WHERE user_id={?} AND type={?} and stamp={?}', $uid, $type, $stamp);
0337d704 282 }
283 if ($result = $res->fetchOneCell()) {
33b47675 284 $result = Validate::unserialize($result);
0337d704 285 } else {
286 $result = false;
287 }
288 return($result);
289 }
290
291 // }}}
02838718 292 // {{{ function get_request_by_id()
293
294 static public function get_request_by_id($id)
295 {
296 list($uid, $type, $stamp) = explode('_', $id, 3);
297 return Validate::get_typed_request($uid, $type, $stamp);
298 }
299
300 // }}}
5b0dc389 301 // {{{ function get_typed_requests()
302
303 /** same as get_typed_request() but return an array of objects
304 */
612a2d8a 305 static public function get_typed_requests($uid, $type)
5b0dc389 306 {
307 $res = XDB::iterRow('SELECT data FROM requests WHERE user_id={?} and type={?}', $uid, $type);
308 $array = array();
309 while (list($data) = $res->next()) {
33b47675 310 $array[] = Validate::unserialize($data);
5b0dc389 311 }
312 return $array;
313 }
314
315 // }}}
bb0727ea
VZ
316 // {{{ function get_typed_requests_count()
317
318 /** same as get_typed_requests() but return the count of available requests.
319 */
320 static public function get_typed_requests_count($uid, $type)
321 {
322 $res = XDB::query('SELECT COUNT(data) FROM requests WHERE user_id={?} and type={?}', $uid, $type);
323 return $res->fetchOneCell();
324 }
325
326 // }}}
0337d704 327 // {{{ function _mail_body
328
612a2d8a 329 abstract protected function _mail_body($isok);
eaf30d86 330
0337d704 331 // }}}
332 // {{{ function _mail_subj
333
612a2d8a 334 abstract protected function _mail_subj();
eaf30d86 335
0337d704 336 // }}}
337 // {{{ function commit()
eaf30d86 338
a7de4ef7 339 /** fonction à utiliser pour insérer les données dans x4dat
0337d704 340 */
612a2d8a 341 abstract public function commit();
0337d704 342
343 // }}}
344 // {{{ function formu()
eaf30d86 345
0337d704 346 /** nom du template qui contient le formulaire */
612a2d8a 347 abstract public function formu();
0337d704 348
349 // }}}
6aa01fed 350 // {{{ function editor()
351
a7de4ef7 352 /** nom du formulaire d'édition */
612a2d8a 353 public function editor()
354 {
355 return null;
356 }
6aa01fed 357
358 // }}}
e18888f4 359 // {{{ function answers()
360
361 /** automatic answers table for this type of validation */
612a2d8a 362 public function answers()
363 {
e18888f4 364 static $answers_table;
365 if (!isset($answers_table[$this->type])) {
366 $r = XDB::query("SELECT id, title, answer FROM requests_answers WHERE category = {?}", $this->type);
367 $answers_table[$this->type] = $r->fetchAllAssoc($r);
368 }
369 return $answers_table[$this->type];
370 }
371
372 // }}}
a7de4ef7 373 // {{{ function id()
ed5b9703 374
612a2d8a 375 public function id()
ed5b9703 376 {
5daf68f6 377 return $this->user->id() . '_' . $this->type . '_' . $this->stamp;
ed5b9703 378 }
379
380 // }}}
fba760d2 381 // {{{ function ruleText()
382
383 public function ruleText()
384 {
385 return str_replace('\'', '\\\'', $this->rules);
386 }
387
388 // }}}
33b47675
FB
389 // {{{ function unserialize()
390 public static function unserialize($data)
391 {
392 $obj = unserialize($data);
393 /* XXX: Temporary for hruid migration */
394 if (!isset($obj->user) || !is_object($obj)) {
395 $obj->user =& User::get($obj->forlife);
396 }
397 /* XXX: End temporary block */
398 return $obj;
399 }
0337d704 400}
401
0337d704 402foreach (glob(dirname(__FILE__).'/validations/*.inc.php') as $file) {
403 require_once($file);
404}
405
a7de4ef7 406/* vim: set expandtab shiftwidth=4 tabstop=4 softtabstop=4 foldmethod=marker enc=utf-8: */
0337d704 407?>