Properly handles the case where an admin search for a good looking IP-address that...
[platal.git] / modules / lists.php
CommitLineData
bc4ad6aa 1<?php
2/***************************************************************************
179afa7f 3 * Copyright (C) 2003-2008 Polytechnique.org *
bc4ad6aa 4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22class ListsModule extends PLModule
23{
0baf0741 24 protected $client;
bc4ad6aa 25
26 function handlers()
27 {
28 return array(
29 'lists' => $this->make_hook('lists', AUTH_MDP),
9ed396c0 30 'lists/ajax' => $this->make_hook('ajax', AUTH_MDP, 'user', NO_AUTH),
bc4ad6aa 31 'lists/create' => $this->make_hook('create', AUTH_MDP),
32
33 'lists/members' => $this->make_hook('members', AUTH_COOKIE),
b73bc04b 34 'lists/csv' => $this->make_hook('csv', AUTH_COOKIE),
1cc0afe7 35 'lists/annu' => $this->make_hook('annu', AUTH_COOKIE),
bc4ad6aa 36 'lists/archives' => $this->make_hook('archives', AUTH_COOKIE),
8fc4efa3 37 'lists/archives/rss' => $this->make_hook('rss', AUTH_PUBLIC, 'user', NO_HTTPS),
bc4ad6aa 38
39 'lists/moderate' => $this->make_hook('moderate', AUTH_MDP),
40 'lists/admin' => $this->make_hook('admin', AUTH_MDP),
41 'lists/options' => $this->make_hook('options', AUTH_MDP),
42 'lists/delete' => $this->make_hook('delete', AUTH_MDP),
43
44 'lists/soptions' => $this->make_hook('soptions', AUTH_MDP),
45 'lists/check' => $this->make_hook('check', AUTH_MDP),
9ed396c0 46 'admin/lists' => $this->make_hook('admin_all', AUTH_MDP, 'admin'),
bc4ad6aa 47 );
48 }
49
7b9d64a8 50 function prepare_client(&$page)
bc4ad6aa 51 {
0ec52d96 52 global $globals;
53
460d8f55 54 $this->load('lists.inc.php');
bc4ad6aa 55
9bb8bf21 56 $this->client = new MMList(S::v('uid'), S::v('password'));
092945b4 57 return $globals->mail->domain;
bc4ad6aa 58 }
59
834fd0f6 60 function get_pending_ops($domain, $list)
61 {
62 list($subs,$mails) = $this->client->get_pending_ops($list);
63 $res = XDB::query("SELECT mid
64 FROM ml_moderate
65 WHERE ml = {?} AND domain = {?}",
66 $list, $domain);
67 $mids = $res->fetchColumn();
68 foreach ($mails as $key=>$mail) {
69 if (in_array($mail['id'], $mids)) {
70 unset($mails[$key]);
71 }
72 }
73 return array($subs, $mails);
74 }
75
bc4ad6aa 76 function handler_lists(&$page)
77 {
50c655ee 78 function filter_owner($list)
79 {
80 return $list['own'];
81 }
82
83 function filter_member($list)
84 {
da398501 85 return $list['sub'];
50c655ee 86 }
87
834fd0f6 88 $domain = $this->prepare_client($page);
bc4ad6aa 89
edc4367b 90 $page->changeTpl('lists/index.tpl');
50c655ee 91 $page->addJsLink('ajax.js');
46f272fe 92 $page->setTitle('Listes de diffusion');
bc4ad6aa 93
94
95 if (Get::has('del')) {
2669eb7d 96 S::assert_xsrf_token();
5e2307dc 97 $this->client->unsubscribe(Get::v('del'));
8b00e0e0 98 pl_redirect('lists');
bc4ad6aa 99 }
100 if (Get::has('add')) {
2669eb7d 101 S::assert_xsrf_token();
5e2307dc 102 $this->client->subscribe(Get::v('add'));
8b00e0e0 103 pl_redirect('lists');
bc4ad6aa 104 }
105 if (Post::has('promo_add')) {
2669eb7d
VZ
106 S::assert_xsrf_token();
107
5e2307dc 108 $promo = Post::i('promo_add');
bc4ad6aa 109 if ($promo >= 1900 and $promo < 2100) {
110 $this->client->subscribe("promo$promo");
111 } else {
a7d35093 112 $page->trigSuccess("promo incorrecte, il faut une promo sur 4 chiffres.");
bc4ad6aa 113 }
114 }
2669eb7d 115
bc4ad6aa 116 $listes = $this->client->get_lists();
50c655ee 117 $owner = array_filter($listes, 'filter_owner');
118 $listes = array_diff_key($listes, $owner);
119 $member = array_filter($listes, 'filter_member');
120 $listes = array_diff_key($listes, $member);
121 foreach ($owner as $key=>$liste) {
834fd0f6 122 list($subs,$mails) = $this->get_pending_ops($domain, $liste['list']);
50c655ee 123 $owner[$key]['subscriptions'] = $subs;
124 $owner[$key]['mails'] = $mails;
125 }
126 $page->register_modifier('hdc', 'list_header_decode');
127 $page->assign_by_ref('owner', $owner);
128 $page->assign_by_ref('member', $member);
129 $page->assign_by_ref('public', $listes);
130 }
131
132 function handler_ajax(&$page, $list = null)
133 {
493b6abe 134 header('Content-Type: text/html; charset="UTF-8"');
5cbb1fad 135 $domain = $this->prepare_client($page);
edc4367b 136 $page->changeTpl('lists/liste.inc.tpl', NO_SKIN);
2669eb7d
VZ
137 S::assert_xsrf_token();
138
50c655ee 139 if (Get::has('unsubscribe')) {
140 $this->client->unsubscribe($list);
141 }
142 if (Get::has('subscribe')) {
143 $this->client->subscribe($list);
144 }
145 if (Get::has('sadd')) { /* 4 = SUBSCRIBE */
146 $this->client->handle_request($list, Get::v('sadd'), 4, '');
147 }
148 if (Get::has('mid')) {
5cbb1fad 149 $this->moderate_mail($domain, $list, Get::i('mid'));
50c655ee 150 }
151
152 list($liste, $members, $owners) = $this->client->get_members($list);
153 if ($liste['own']) {
834fd0f6 154 list($subs,$mails) = $this->get_pending_ops($domain, $list);
50c655ee 155 $liste['subscriptions'] = $subs;
156 $liste['mails'] = $mails;
157 }
158 $page->register_modifier('hdc', 'list_header_decode');
159 $page->assign_by_ref('liste', $liste);
bc4ad6aa 160 }
161
162 function handler_create(&$page)
163 {
032b244e
SJ
164 global $globals;
165
edc4367b 166 $page->changeTpl('lists/create.tpl');
bc4ad6aa 167
8ac67bda
SJ
168 $user_promo = S::i('promo');
169 $year = date('Y');
170 $month = date('m');
171 $young_promo = $very_young_promo = 0;
172 if ((($year > $user_promo) && ($month > 3)) && ($year < $user_promo + 5)) {
173 $young_promo = 1;
174 }
175 if ((($year > $user_promo) && ($month > 7)) && (($year < $user_promo + 1) && ($month < 8))) {
176 $very_young_promo = 1;
177 }
178 $page->assign('young_promo', $young_promo);
179 $page->assign('very_young_promo', $very_young_promo);
180
5e2307dc 181 $owners = preg_split("/[\s]+/", Post::v('owners'), -1, PREG_SPLIT_NO_EMPTY);
182 $members = preg_split("/[\s]+/", Post::v('members'), -1, PREG_SPLIT_NO_EMPTY);
bc4ad6aa 183
184 // click on validate button 'add_owner_sub' or type <enter>
185 if (Post::has('add_owner_sub') && Post::has('add_owner')) {
bc4ad6aa 186 // if we want to add an owner and then type <enter>, then both
187 // add_owner_sub and add_owner are filled.
7586ae0b
VZ
188 $oforlifes = User::getBulkForlifeEmails(Post::v('add_owner'), true);
189 $mforlifes = User::getBulkForlifeEmails(Post::v('add_member'), true);
e7545178 190 if (!is_null($oforlifes)) {
191 $owners = array_merge($owners, $oforlifes);
192 }
193 // if we want to add a member and then type <enter>, then
194 // add_owner_sub is filled, whereas add_owner is empty.
195 if (!is_null($mforlifes)) {
196 $members = array_merge($members, $mforlifes);
bc4ad6aa 197 }
198 }
199
200 // click on validate button 'add_member_sub'
201 if (Post::has('add_member_sub') && Post::has('add_member')) {
7586ae0b 202 $forlifes = User::getBulkForlifeEmails(Post::v('add_member'), true);
e7545178 203 if (!is_null($forlifes)) {
204 $members = array_merge($members, $forlifes);
bc4ad6aa 205 }
206 }
45070158 207 if (Post::has('add_member_sub') && isset($_FILES['add_member_file']) && $_FILES['add_member_file']['tmp_name']) {
f3df6d38 208 $upload =& PlUpload::get($_FILES['add_member_file'], S::user()->login(), 'list.addmember', true);
45070158
FB
209 if (!$upload) {
210 $page->trigError('Une erreur s\'est produite lors du téléchargement du fichier');
211 } else {
7586ae0b 212 $forlifes = User::getBulkForlifeEmails($upload->getContents(), true);
45070158
FB
213 if (!is_null($forlifes)) {
214 $members = array_merge($members, $forlifes);
215 }
216 }
217 }
bc4ad6aa 218
e7545178 219 ksort($owners);
220 $owners = array_unique($owners);
221 ksort($members);
222 $members = array_unique($members);
bc4ad6aa 223
45070158
FB
224 $page->assign('owners', join("\n", $owners));
225 $page->assign('members', join("\n", $members));
bc4ad6aa 226
227 if (!Post::has('submit')) {
228 return;
2669eb7d
VZ
229 } else {
230 S::assert_xsrf_token();
bc4ad6aa 231 }
232
59887c4a 233 $asso = Post::v('asso');
5e2307dc 234 $liste = Post::v('liste');
bc4ad6aa 235
236 if (empty($liste)) {
59887c4a 237 $page->trigError('Le champ «adresse souhaitée» est vide.');
bc4ad6aa 238 }
239 if (!preg_match("/^[a-zA-Z0-9\-]*$/", $liste)) {
59887c4a 240 $page->trigError('Le nom de la liste ne doit contenir que des lettres non accentuées, chiffres et tirets.');
bc4ad6aa 241 }
242
59887c4a
SJ
243 if (($asso == "binet") || ($asso == "alias")) {
244 $promo = Post::i('promo');
032b244e 245 $domain = $promo . '.' . $globals->mail->domain;
59887c4a
SJ
246
247 if (($promo < 1921) || ($promo > date('Y'))) {
248 $page->trigError('La promotion est mal renseignée, elle doit être du type : 2004.');
249 }
250
251 $new = $liste . '@' . $domain;
252 $res = XDB::query('SELECT COUNT(*) FROM x4dat.virtual WHERE alias={?}', $new);
253
254 } else {
255 if ($asso == "groupex") {
256 $groupex_name = Post::v('groupex_name');
257
258 $res_groupe = XDB::query('SELECT mail_domain FROM groupex.asso WHERE nom={?}', $groupex_name);
259 $domain = $res_groupe->fetchOneCell();
260
261 if (!$domain) {
262 $page->trigError('Il n\'y a aucun groupe de ce nom sur Polytechnique.net.');
263 }
264
265 $new = $liste . '@' . $domain;
266 $res = XDB::query('SELECT COUNT(*) FROM x4dat.virtual WHERE alias={?}', $new);
267 } else {
268 $res = XDB::query("SELECT COUNT(*) FROM aliases WHERE alias={?}", $liste);
032b244e 269 $domain = $globals->mail->domain;
59887c4a 270 }
bc4ad6aa 271 }
272
59887c4a 273 $n = $res->fetchOneCell();
bc4ad6aa 274
275 if ($n) {
032b244e 276 $page->trigError('L\'«adresse souhaitée» est déjà prise.');
bc4ad6aa 277 }
278
92144f3e 279 if (!Post::v('desc')) {
59887c4a 280 $page->trigError('Le sujet est vide.');
bc4ad6aa 281 }
282
283 if (!count($owners)) {
59887c4a 284 $page->trigError('Il n\'y a pas de gestionnaire.');
bc4ad6aa 285 }
286
287 if (count($members)<4) {
59887c4a 288 $page->trigError('Il n\'y a pas assez de membres.');
bc4ad6aa 289 }
290
291 if (!$page->nb_errs()) {
292 $page->assign('created', true);
293 require_once 'validations.inc.php';
5daf68f6 294 $req = new ListeReq(S::user(), $asso, $liste, $domain,
5e2307dc 295 Post::v('desc'), Post::i('advertise'),
296 Post::i('modlevel'), Post::i('inslevel'),
bc4ad6aa 297 $owners, $members);
298 $req->submit();
299 }
300 }
301
302 function handler_members(&$page, $liste = null)
303 {
bc4ad6aa 304 if (is_null($liste)) {
305 return PL_NOT_FOUND;
306 }
307
7b9d64a8 308 $this->prepare_client($page);
bc4ad6aa 309
1490093c 310 $page->changeTpl('lists/members.tpl');
bc4ad6aa 311
312 if (Get::has('del')) {
2669eb7d 313 S::assert_xsrf_token();
bc4ad6aa 314 $this->client->unsubscribe($liste);
8b00e0e0 315 pl_redirect('lists/members/'.$liste);
bc4ad6aa 316 }
317
318 if (Get::has('add')) {
2669eb7d 319 S::assert_xsrf_token();
bc4ad6aa 320 $this->client->subscribe($liste);
8b00e0e0 321 pl_redirect('lists/members/'.$liste);
bc4ad6aa 322 }
323
324 $members = $this->client->get_members($liste);
325
5e2307dc 326 $tri_promo = !Env::b('alpha');
bc4ad6aa 327
328 if (list($det,$mem,$own) = $members) {
329 $membres = list_sort_members($mem, $tri_promo);
330 $moderos = list_sort_owners($own, $tri_promo);
331
332 $page->assign_by_ref('details', $det);
333 $page->assign_by_ref('members', $membres);
334 $page->assign_by_ref('owners', $moderos);
335 $page->assign('nb_m', count($mem));
336 } else {
a7de4ef7 337 $page->kill("La liste n'existe pas ou tu n'as pas le droit d'en voir les détails");
bc4ad6aa 338 }
339 }
340
b73bc04b
FB
341 function handler_csv(PlPage &$page, $liste = null)
342 {
343 if (is_null($liste)) {
344 return PL_NOT_FOUND;
345 }
346 $this->prepare_client($page);
347 $members = $this->client->get_members($liste);
348 $list = list_fetch_names(list_extract_members($members[1]));
349 header('Content-Type: text/x-csv; charset=utf-8;');
350 header('Pragma: ');
351 header('Cache-Control: ');
352
353 echo "email,nom,prenom,promo\n";
354 foreach ($list as $member) {
355 echo @$member['email'] . ',' . @$member['nom'] . ',' . @$member['prenom'] . ',' . @$member['promo'] . "\n";
356 }
357 exit;
358 }
359
1cc0afe7 360 function handler_annu(&$page, $liste = null, $action = null, $subaction = null)
bc4ad6aa 361 {
bc4ad6aa 362 if (is_null($liste)) {
363 return PL_NOT_FOUND;
364 }
365
7b9d64a8 366 $this->prepare_client($page);
bc4ad6aa 367
bc4ad6aa 368 if (Get::has('del')) {
2669eb7d 369 S::assert_xsrf_token();
bc4ad6aa 370 $this->client->unsubscribe($liste);
1cc0afe7 371 pl_redirect('lists/annu/'.$liste);
bc4ad6aa 372 }
373 if (Get::has('add')) {
2669eb7d 374 S::assert_xsrf_token();
bc4ad6aa 375 $this->client->subscribe($liste);
1cc0afe7 376 pl_redirect('lists/annu/'.$liste);
bc4ad6aa 377 }
378
379 $owners = $this->client->get_owners($liste);
1cc0afe7 380 if (!is_array($owners)) {
a7de4ef7 381 $page->kill("La liste n'existe pas ou tu n'as pas le droit d'en voir les détails");
bc4ad6aa 382 }
1cc0afe7 383
384 global $platal;
385 list(,$members) = $this->client->get_members($liste);
386 $users = array();
387 foreach ($members as $m) {
388 $users[] = $m[1];
389 }
390 require_once 'userset.inc.php';
391 $view = new ArraySet($users);
392 $view->addMod('trombi', 'Trombinoscope', true, array('with_promo' => true));
393 if (empty($GLOBALS['IS_XNET_SITE'])) {
1fae7605 394 $view->addMod('minifiche', 'Mini-fiches', false);
1cc0afe7 395 }
396 $view->addMod('geoloc', 'Planisphère');
397 $view->apply("lists/annu/$liste", $page, $action, $subaction);
398 if ($action == 'geoloc' && $subaction) {
399 return;
400 }
401
402 $page->changeTpl('lists/annu.tpl');
403 $moderos = list_sort_owners($owners[1]);
404 $page->assign_by_ref('details', $owners[0]);
405 $page->assign_by_ref('owners', $moderos);
bc4ad6aa 406 }
407
fa7d6c7b 408 function handler_archives(&$page, $liste = null, $action = null, $artid = null)
bc4ad6aa 409 {
410 global $globals;
411
412 if (is_null($liste)) {
413 return PL_NOT_FOUND;
414 }
415
092945b4 416 $domain = $this->prepare_client($page);
bc4ad6aa 417
1490093c 418 $page->changeTpl('lists/archives.tpl');
bc4ad6aa 419
bc4ad6aa 420 if (list($det) = $this->client->get_members($liste)) {
421 if (substr($liste,0,5) != 'promo' && ($det['ins'] || $det['priv'])
fa7d6c7b 422 && !$det['own'] && ($det['sub'] < 2)) {
38421eaa 423 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la consulter.");
fa7d6c7b 424 }
425 $get = Array('listname' => $liste, 'domain' => $domain);
426 if (Post::has('updateall')) {
427 $get['updateall'] = Post::v('updateall');
428 }
4f355064 429 require_once 'banana/ml.inc.php';
430 get_banana_params($get, null, $action, $artid);
431 run_banana($page, 'MLBanana', $get);
bc4ad6aa 432 } else {
38421eaa 433 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la consulter.");
bc4ad6aa 434 }
435 }
436
6544d0e1 437 function handler_rss(&$page, $liste = null, $alias = null, $hash = null)
438 {
439 require_once('rss.inc.php');
440 $uid = init_rss(null, $alias, $hash);
441 if (!$uid || !$liste) {
442 exit;
443 }
444
445 $res = XDB::query("SELECT user_id AS uid, password, alias AS forlife
446 FROM auth_user_md5 AS u
447 INNER JOIN aliases AS a ON (a.id = u.user_id AND a.type = 'a_vie')
448 WHERE u.user_id = {?}", $uid);
449 $row = $res->fetchOneAssoc();
450 $_SESSION = array_merge($row, $_SESSION);
451
452 $domain = $this->prepare_client($page);
453 if (list($det) = $this->client->get_members($liste)) {
454 if (substr($liste,0,5) != 'promo' && ($det['ins'] || $det['priv'])
455 && !$det['own'] && ($det['sub'] < 2)) {
eaf30d86 456 exit;
6544d0e1 457 }
458 require_once('banana/ml.inc.php');
e3a55098 459 $banana = new MLBanana(S::user(), Array('listname' => $liste, 'domain' => $domain, 'action' => 'rss2'));
4f355064 460 $banana->run();
6544d0e1 461 }
462 exit;
463 }
464
5cbb1fad 465 function moderate_mail($domain, $liste, $mid)
50c655ee 466 {
50c655ee 467 if (Env::has('mok')) {
834fd0f6 468 $action = 'accept';
50c655ee 469 } elseif (Env::has('mno')) {
834fd0f6 470 $action = 'refuse';
50c655ee 471 } elseif (Env::has('mdel')) {
834fd0f6 472 $action = 'delete';
473 } else {
474 return false;
475 }
476 Get::kill('mid');
477 return XDB::execute("INSERT IGNORE INTO ml_moderate
478 VALUES ({?}, {?}, {?}, {?}, {?}, NOW(), {?}, NULL)",
479 $liste, $domain, $mid, S::i('uid'), $action, Post::v('reason'));
50c655ee 480 }
481
bc4ad6aa 482 function handler_moderate(&$page, $liste = null)
483 {
bc4ad6aa 484 if (is_null($liste)) {
4b0d9ef3 485 return PL_NOT_FOUND;
bc4ad6aa 486 }
487
092945b4 488 $domain = $this->prepare_client($page);
bc4ad6aa 489
1490093c 490 $page->changeTpl('lists/moderate.tpl');
bc4ad6aa 491
c8529706 492 $page->register_modifier('hdc', 'list_header_decode');
bc4ad6aa 493
4b0d9ef3 494 if (Env::has('sadd') || Env::has('sdel')) {
2669eb7d
VZ
495 S::assert_xsrf_token();
496
4b0d9ef3 497 if (Env::has('sadd')) { /* 4 = SUBSCRIBE */
498 $sub = $this->client->get_pending_sub($liste, Env::v('sadd'));
499 $this->client->handle_request($liste,Env::v('sadd'),4,'');
500 $info = "validée";
501 }
502 if (Post::has('sdel')) { /* 2 = REJECT */
503 $sub = $this->client->get_pending_sub($liste, Env::v('sdel'));
a5878ac1 504 $this->client->handle_request($liste, Post::v('sdel'), 2, utf8_decode(Post::v('reason')));
4b0d9ef3 505 $info = "refusée";
506 }
507 if ($sub) {
508 $mailer = new PlMailer();
509 $mailer->setFrom("$liste-bounces@{$domain}");
510 $mailer->addTo("$liste-owner@{$domain}");
511 $mailer->addHeader('Reply-To', "$liste-owner@{$domain}");
512 $mailer->setSubject("L'inscription de {$sub['name']} a été $info");
513 $text = "L'inscription de {$sub['name']} à la liste $liste@{$domain} a été $info par " . S::v('prenom') . ' '
514 . S::v('nom') . '(' . S::v('promo') . ")\n";
515 if (trim(Post::v('reason'))) {
516 $text .= "\nLa raison invoquée est :\n" . Post::v('reason');
517 }
518 $mailer->setTxtBody(wordwrap($text, 72));
519 $mailer->send();
520 }
521 if (Env::has('sadd')) {
522 pl_redirect('lists/moderate/'.$liste);
eaf30d86 523 }
bc4ad6aa 524 }
525
e940f534 526 if (Post::has('moderate_mails') && Post::has('select_mails')) {
2669eb7d
VZ
527 S::assert_xsrf_token();
528
e940f534 529 $mails = array_keys(Post::v('select_mails'));
530 foreach($mails as $mail) {
531 $this->moderate_mail($domain, $liste, $mail);
532 }
533 } elseif (Env::has('mid')) {
d96379f6 534 if (Get::has('mid') && !Env::has('mok') && !Env::has('mdel')) {
4f355064 535 $page->changeTpl('lists/moderate_mail.tpl');
ed03d07f 536 require_once('banana/moderate.inc.php');
d96379f6 537 $params = array('listname' => $liste, 'domain' => $domain,
538 'artid' => Get::i('mid'), 'part' => Get::v('part'), 'action' => Get::v('action'));
4f355064 539 $params['client'] = $this->client;
540 run_banana($page, 'ModerationBanana', $params);
bc4ad6aa 541
bc4ad6aa 542 $msg = file_get_contents('/etc/mailman/fr/refuse.txt');
543 $msg = str_replace("%(adminaddr)s", "$liste-owner@{$domain}", $msg);
544 $msg = str_replace("%(request)s", "<< SUJET DU MAIL >>", $msg);
545 $msg = str_replace("%(reason)s", "<< TON EXPLICATION >>", $msg);
546 $msg = str_replace("%(listname)s", $liste, $msg);
50c655ee 547 $page->assign('msg', $msg);
6a20c6a3 548 return;
ed03d07f 549 }
550
551 $mail = $this->moderate_mail($domain, $liste, Env::i('mid'));
bc4ad6aa 552 } elseif (Env::has('sid')) {
834fd0f6 553 if (list($subs,$mails) = $this->get_pending_ops($domain, $liste)) {
bc4ad6aa 554 foreach($subs as $user) {
5e2307dc 555 if ($user['id'] == Env::v('sid')) {
1490093c 556 $page->changeTpl('lists/moderate_sub.tpl');
6a20c6a3 557 $page->assign('del_user', $user);
558 return;
bc4ad6aa 559 }
560 }
561 }
562
563 }
564
834fd0f6 565 if (list($subs,$mails) = $this->get_pending_ops($domain, $liste)) {
46ab179a 566 foreach ($mails as $key=>$mail) {
567 $mails[$key]['stamp'] = strftime("%Y%m%d%H%M%S", $mail['stamp']);
717b9fa7
FB
568 if ($mail['fromx']) {
569 $page->assign('with_fromx', true);
570 } else {
571 $page->assign('with_nonfromx', true);
572 }
46ab179a 573 }
bc4ad6aa 574 $page->assign_by_ref('subs', $subs);
575 $page->assign_by_ref('mails', $mails);
576 } else {
a7de4ef7 577 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la modérer");
bc4ad6aa 578 }
579 }
580
0baf0741 581 static public function no_login_callback($login)
582 {
583 require_once 'user.func.inc.php';
be792642 584 global $list_unregistered, $globals;
0baf0741 585
586 $users = get_not_registered_user($login, true);
a58d8539 587 if ($users && $users->total()) {
0baf0741 588 if (!isset($list_unregistered)) {
589 $list_unregistered = array();
590 }
591 $list_unregistered[$login] = $users;
592 } else {
be792642
FB
593 list($name, $dom) = @explode('@', $login);
594 if ($dom == $globals->mail->domain || $dom == $globals->mail->domain2) {
750f63db 595 User::_default_user_callback($login);
be792642 596 }
0baf0741 597 }
598 }
599
bc4ad6aa 600 function handler_admin(&$page, $liste = null)
601 {
602 global $globals;
603
604 if (is_null($liste)) {
605 return PL_NOT_FOUND;
606 }
607
0baf0741 608 $domain = $this->prepare_client($page);
bc4ad6aa 609
1490093c 610 $page->changeTpl('lists/admin.tpl');
bc4ad6aa 611
0baf0741 612 if (Env::has('send_mark')) {
2669eb7d
VZ
613 S::assert_xsrf_token();
614
0baf0741 615 $actions = Env::v('mk_action');
616 $uids = Env::v('mk_uid');
617 $mails = Env::v('mk_email');
618 foreach ($actions as $key=>$action) {
619 switch ($action) {
620 case 'none':
621 break;
622
623 case 'marketu': case 'markets':
624 require_once 'emails.inc.php';
625 $mail = valide_email($mails[$key]);
626 if (isvalid_email_redirection($mail)) {
627 $from = ($action == 'marketu') ? 'user' : 'staff';
628 $market = Marketing::get($uids[$key], $mail);
629 if (!$market) {
630 $market = new Marketing($uids[$key], $mail, 'list', "$liste@$domain", $from, S::v('uid'));
631 $market->add();
632 break;
633 }
634 }
635
636 default:
637 XDB::execute('INSERT IGNORE INTO register_subs (uid, type, sub, domain)
638 VALUES ({?}, \'list\', {?}, {?})',
639 $uids[$key], $liste, $domain);
640 }
641 }
642 }
643
bc4ad6aa 644 if (Env::has('add_member')) {
2669eb7d
VZ
645 S::assert_xsrf_token();
646
7586ae0b
VZ
647 $members = User::getBulkForlifeEmails(Env::v('add_member'),
648 false,
649 array('ListsModule', 'no_login_callback'));
bc4ad6aa 650 $arr = $this->client->mass_subscribe($liste, $members);
651 if (is_array($arr)) {
652 foreach($arr as $addr) {
a7d35093 653 $page->trigSuccess("{$addr[0]} inscrit.");
bc4ad6aa 654 }
655 }
656 }
657
108d1d90 658 if (isset($_FILES['add_member_file']) && $_FILES['add_member_file']['tmp_name']) {
2669eb7d
VZ
659 S::assert_xsrf_token();
660
f3df6d38 661 $upload =& PlUpload::get($_FILES['add_member_file'], S::user()->login(), 'list.addmember', true);
108d1d90
FB
662 if (!$upload) {
663 $page->trigError('Une erreur s\'est produite lors du téléchargement du fichier');
664 } else {
7586ae0b
VZ
665 $members = User::getBulkForlifeEmails($upload->getContents(),
666 false,
667 array('ListsModule', 'no_login_callback'));
108d1d90
FB
668 $arr = $this->client->mass_subscribe($liste, $members);
669 if (is_array($arr)) {
670 foreach($arr as $addr) {
671 $page->trigSuccess("{$addr[0]} inscrit.");
672 }
673 }
674 }
675 }
676
bc4ad6aa 677 if (Env::has('del_member')) {
2669eb7d
VZ
678 S::assert_xsrf_token();
679
5e2307dc 680 if (strpos(Env::v('del_member'), '@') === false) {
bc4ad6aa 681 $this->client->mass_unsubscribe(
5e2307dc 682 $liste, array(Env::v('del_member').'@'.$globals->mail->domain));
bc4ad6aa 683 } else {
5e2307dc 684 $this->client->mass_unsubscribe($liste, array(Env::v('del_member')));
bc4ad6aa 685 }
8b00e0e0 686 pl_redirect('lists/admin/'.$liste);
bc4ad6aa 687 }
688
689 if (Env::has('add_owner')) {
2669eb7d
VZ
690 S::assert_xsrf_token();
691
7586ae0b 692 $owners = User::getBulkForlifeEmails(Env::v('add_owner'), false, array('ListsModule', 'no_login_callback'));
e7545178 693 if ($owners) {
694 foreach ($owners as $login) {
695 if ($this->client->add_owner($liste, $login)) {
7586ae0b 696 $page->trigSuccess($login ." ajouté aux modérateurs.");
e7545178 697 }
bc4ad6aa 698 }
699 }
700 }
701
702 if (Env::has('del_owner')) {
2669eb7d
VZ
703 S::assert_xsrf_token();
704
5e2307dc 705 if (strpos(Env::v('del_owner'), '@') === false) {
706 $this->client->del_owner($liste, Env::v('del_owner').'@'.$globals->mail->domain);
bc4ad6aa 707 } else {
5e2307dc 708 $this->client->del_owner($liste, Env::v('del_owner'));
bc4ad6aa 709 }
8b00e0e0 710 pl_redirect('lists/admin/'.$liste);
bc4ad6aa 711 }
712
713 if (list($det,$mem,$own) = $this->client->get_members($liste)) {
0baf0741 714 global $list_unregistered;
715 if ($list_unregistered) {
716 $page->assign_by_ref('unregistered', $list_unregistered);
717 }
30fc8ee7 718 $membres = list_sort_members($mem, @$tri_promo);
719 $moderos = list_sort_owners($own, @$tri_promo);
bc4ad6aa 720
721 $page->assign_by_ref('details', $det);
722 $page->assign_by_ref('members', $membres);
723 $page->assign_by_ref('owners', $moderos);
724 $page->assign('np_m', count($mem));
725
726 } else {
383eaddd 727 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer.<br />"
728 ." Si tu penses qu'il s'agit d'une erreur, "
729 ."<a href='mailto:support@polytechnique.org'>contact le support</a>");
bc4ad6aa 730 }
731 }
732
733 function handler_options(&$page, $liste = null)
734 {
bc4ad6aa 735 if (is_null($liste)) {
736 return PL_NOT_FOUND;
737 }
738
7b9d64a8 739 $this->prepare_client($page);
bc4ad6aa 740
1490093c 741 $page->changeTpl('lists/options.tpl');
bc4ad6aa 742
743 if (Post::has('submit')) {
2669eb7d
VZ
744 S::assert_xsrf_token();
745
bc4ad6aa 746 $values = $_POST;
5fb22b39 747 $values = array_map('utf8_decode', $values);
c638d8c8
FB
748 $spamlevel = intval($values['bogo_level']);
749 $unsurelevel = intval($values['unsure_level']);
750 if ($spamlevel == 0) {
751 $unsurelevel = 0;
752 }
753 if ($spamlevel > 3 || $spamlevel < 0 || $unsurelevel < 0 || $unsurelevel > 1) {
754 $page->trigError("Réglage de l'antispam non valide");
755 } else {
756 $this->client->set_bogo_level($liste, ($spamlevel << 1) + $unsurelevel);
757 }
bc4ad6aa 758 switch($values['moderate']) {
759 case '0':
760 $values['generic_nonmember_action'] = 0;
761 $values['default_member_moderation'] = 0;
762 break;
763 case '1':
764 $values['generic_nonmember_action'] = 1;
765 $values['default_member_moderation'] = 0;
766 break;
767 case '2':
768 $values['generic_nonmember_action'] = 1;
769 $values['default_member_moderation'] = 1;
770 break;
771 }
772 unset($values['submit'], $values['bogo_level'], $values['moderate']);
773 $values['send_goodbye_msg'] = !empty($values['send_goodbye_msg']);
774 $values['admin_notify_mchanges'] = !empty($values['admin_notify_mchanges']);
775 $values['subscribe_policy'] = empty($values['subscribe_policy']) ? 0 : 2;
776 if (isset($values['subject_prefix'])) {
777 $values['subject_prefix'] = trim($values['subject_prefix']).' ';
778 }
779 $this->client->set_owner_options($liste, $values);
5e2307dc 780 } elseif (isvalid_email(Post::v('atn_add'))) {
2669eb7d 781 S::assert_xsrf_token();
5e2307dc 782 $this->client->add_to_wl($liste, Post::v('atn_add'));
bc4ad6aa 783 } elseif (Get::has('atn_del')) {
2669eb7d 784 S::assert_xsrf_token();
5e2307dc 785 $this->client->del_from_wl($liste, Get::v('atn_del'));
8b00e0e0 786 pl_redirect('lists/options/'.$liste);
bc4ad6aa 787 }
788
789 if (list($details,$options) = $this->client->get_owner_options($liste)) {
790 $page->assign_by_ref('details', $details);
791 $page->assign_by_ref('options', $options);
c638d8c8
FB
792 $bogo_level = intval($this->client->get_bogo_level($liste));
793 $page->assign('unsure_level', $bogo_level & 1);
794 $page->assign('bogo_level', $bogo_level >> 1);
bc4ad6aa 795 } else {
796 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer");
797 }
798 }
799
800 function handler_delete(&$page, $liste = null)
801 {
7c5842f3 802 global $globals;
bc4ad6aa 803 if (is_null($liste)) {
804 return PL_NOT_FOUND;
805 }
806
7c5842f3 807 $domain = $this->prepare_client($page);
808 if ($domain == $globals->mail->domain || $domain == $globals->mail->domain2) {
809 $domain = '';
810 $table = 'aliases';
811 $type = 'liste';
812 } else {
813 $domain = '@' . $domain;
814 $table = 'virtual';
815 $type = 'list';
816 }
bc4ad6aa 817
1490093c 818 $page->changeTpl('lists/delete.tpl');
7c5842f3 819 if (Post::v('valid') == 'OUI') {
2669eb7d
VZ
820 S::assert_xsrf_token();
821
7c5842f3 822 if ($this->client->delete_list($liste, Post::b('del_archive'))) {
7d427b10 823 foreach (array('', '-owner', '-admin', '-bounces', '-unsubscribe') as $app) {
7c5842f3 824 XDB::execute("DELETE FROM $table
825 WHERE type={?} AND alias={?}",
826 $type, $liste.$app.$domain);
827 }
828 $page->assign('deleted', true);
44b071c2 829 $page->trigSuccess('La liste a été détruite !');
7c5842f3 830 } else {
831 $page->kill('Une erreur est survenue lors de la suppression de la liste.<br />'
a7de4ef7 832 . 'Contact les administrateurs du site pour régler le problème : '
7c5842f3 833 . '<a href="mailto:support@polytechnique.org">support@polytechnique.org</a>');
bc4ad6aa 834 }
bc4ad6aa 835 } elseif (list($details,$options) = $this->client->get_owner_options($liste)) {
44b071c2
SJ
836 if (!$details['own']) {
837 $page->trigWarning('Tu n\'es pas administrateur de la liste, mais du site.');
838 }
bc4ad6aa 839 $page->assign_by_ref('details', $details);
840 $page->assign_by_ref('options', $options);
841 $page->assign('bogo_level', $this->client->get_bogo_level($liste));
842 } else {
843 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer");
844 }
845 }
846
847 function handler_soptions(&$page, $liste = null)
848 {
bc4ad6aa 849 if (is_null($liste)) {
850 return PL_NOT_FOUND;
851 }
852
7b9d64a8 853 $this->prepare_client($page);
bc4ad6aa 854
1490093c 855 $page->changeTpl('lists/soptions.tpl');
bc4ad6aa 856
857 if (Post::has('submit')) {
2669eb7d
VZ
858 S::assert_xsrf_token();
859
bc4ad6aa 860 $values = $_POST;
5fb22b39 861 $values = array_map('utf8_decode', $values);
bc4ad6aa 862 unset($values['submit']);
863 $values['advertised'] = empty($values['advertised']) ? false : true;
864 $values['archive'] = empty($values['archive']) ? false : true;
865 $this->client->set_admin_options($liste, $values);
866 }
867
868 if (list($details,$options) = $this->client->get_admin_options($liste)) {
869 $page->assign_by_ref('details', $details);
870 $page->assign_by_ref('options', $options);
871 } else {
872 $page->kill("La liste n'existe pas");
873 }
874 }
875
876 function handler_check(&$page, $liste = null)
877 {
bc4ad6aa 878 if (is_null($liste)) {
879 return PL_NOT_FOUND;
880 }
881
7b9d64a8 882 $this->prepare_client($page);
bc4ad6aa 883
1490093c 884 $page->changeTpl('lists/check.tpl');
bc4ad6aa 885
886 if (Post::has('correct')) {
2669eb7d 887 S::assert_xsrf_token();
bc4ad6aa 888 $this->client->check_options($liste, true);
889 }
890
891 if (list($details,$options) = $this->client->check_options($liste)) {
892 $page->assign_by_ref('details', $details);
893 $page->assign_by_ref('options', $options);
894 } else {
895 $page->kill("La liste n'existe pas");
896 }
897 }
92423144 898
899 function handler_admin_all(&$page) {
1490093c 900 $page->changeTpl('lists/admin_all.tpl');
46f272fe 901 $page->setTitle('Administration - Mailing lists');
9bb8bf21 902
903 $client = new MMList(S::v('uid'), S::v('password'));
92423144 904 $listes = $client->get_all_lists();
9bb8bf21 905 $page->assign_by_ref('listes', $listes);
92423144 906 }
bc4ad6aa 907}
908
a7de4ef7 909// vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
bc4ad6aa 910?>