Fixes last connexion on user admin page.
[platal.git] / modules / lists.php
CommitLineData
bc4ad6aa 1<?php
2/***************************************************************************
12262f13 3 * Copyright (C) 2003-2011 Polytechnique.org *
bc4ad6aa 4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22class ListsModule extends PLModule
23{
0baf0741 24 protected $client;
bc4ad6aa 25
26 function handlers()
27 {
28 return array(
bfe9f4c7
SJ
29 'lists' => $this->make_hook('lists', AUTH_PASSWD, 'user'),
30 'lists/ajax' => $this->make_hook('ajax', AUTH_PASSWD, 'user', NO_AUTH),
31 'lists/create' => $this->make_hook('create', AUTH_PASSWD, 'lists'),
bc4ad6aa 32
e5ceaa8c
RB
33 'lists/members' => $this->make_hook('members', AUTH_COOKIE, 'user'),
34 'lists/csv' => $this->make_hook('csv', AUTH_COOKIE, 'user'),
35 'lists/annu' => $this->make_hook('annu', AUTH_COOKIE, 'user'),
36 'lists/archives' => $this->make_hook('archives', AUTH_COOKIE, 'user'),
5ae3e9a9 37 'lists/archives/rss' => $this->make_hook('rss', AUTH_PUBLIC, 'user', NO_HTTPS),
bc4ad6aa 38
bfe9f4c7
SJ
39 'lists/moderate' => $this->make_hook('moderate', AUTH_PASSWD, 'user'),
40 'lists/admin' => $this->make_hook('admin', AUTH_PASSWD, 'user'),
41 'lists/options' => $this->make_hook('options', AUTH_PASSWD, 'user'),
42 'lists/delete' => $this->make_hook('delete', AUTH_PASSWD, 'user'),
bc4ad6aa 43
bfe9f4c7
SJ
44 'lists/soptions' => $this->make_hook('soptions', AUTH_PASSWD, 'user'),
45 'lists/check' => $this->make_hook('check', AUTH_PASSWD, 'user'),
46 'admin/lists' => $this->make_hook('admin_all', AUTH_PASSWD, 'admin'),
47 'admin/aliases' => $this->make_hook('aaliases', AUTH_PASSWD, 'admin')
bc4ad6aa 48 );
49 }
50
26ba053e 51 function prepare_client($page, $user = null)
bc4ad6aa 52 {
0ec52d96 53 global $globals;
54
460d8f55 55 $this->load('lists.inc.php');
8c12f931
FB
56 if (is_null($user)) {
57 $user = S::user();
58 }
bc4ad6aa 59
7f1ff426 60 $this->client = new MMList($user);
092945b4 61 return $globals->mail->domain;
bc4ad6aa 62 }
63
a471e374
SJ
64 function verify_list_owner($page, $liste)
65 {
66 if (list(, , $owners) = $this->client->get_members($liste)) {
67 if (!(in_array(S::user()->forlifeEmail(), $owners) || S::admin())) {
68 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer.");
69 }
70 } else {
71 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer.<br />"
72 . " Si tu penses qu'il s'agit d'une erreur, "
73 . "<a href='mailto:support@polytechnique.org'>contact le support</a>.");
74 }
75 }
76
834fd0f6 77 function get_pending_ops($domain, $list)
78 {
79 list($subs,$mails) = $this->client->get_pending_ops($list);
80 $res = XDB::query("SELECT mid
2235cd7f 81 FROM email_list_moderate
834fd0f6 82 WHERE ml = {?} AND domain = {?}",
83 $list, $domain);
84 $mids = $res->fetchColumn();
85 foreach ($mails as $key=>$mail) {
86 if (in_array($mail['id'], $mids)) {
87 unset($mails[$key]);
88 }
89 }
90 return array($subs, $mails);
91 }
92
26ba053e 93 function handler_lists($page)
bc4ad6aa 94 {
50c655ee 95 function filter_owner($list)
96 {
97 return $list['own'];
98 }
99
100 function filter_member($list)
101 {
da398501 102 return $list['sub'];
50c655ee 103 }
104
834fd0f6 105 $domain = $this->prepare_client($page);
bc4ad6aa 106
edc4367b 107 $page->changeTpl('lists/index.tpl');
46f272fe 108 $page->setTitle('Listes de diffusion');
bc4ad6aa 109
110
111 if (Get::has('del')) {
2669eb7d 112 S::assert_xsrf_token();
5e2307dc 113 $this->client->unsubscribe(Get::v('del'));
8b00e0e0 114 pl_redirect('lists');
bc4ad6aa 115 }
116 if (Get::has('add')) {
2669eb7d 117 S::assert_xsrf_token();
5e2307dc 118 $this->client->subscribe(Get::v('add'));
8b00e0e0 119 pl_redirect('lists');
bc4ad6aa 120 }
121 if (Post::has('promo_add')) {
2669eb7d
VZ
122 S::assert_xsrf_token();
123
5e2307dc 124 $promo = Post::i('promo_add');
bc4ad6aa 125 if ($promo >= 1900 and $promo < 2100) {
126 $this->client->subscribe("promo$promo");
127 } else {
7be6ecba 128 $page->trigError("promo incorrecte, il faut une promo sur 4 chiffres.");
bc4ad6aa 129 }
130 }
2669eb7d 131
81a9ae96
SJ
132 if (!is_null($listes = $this->client->get_lists())) {
133 $owner = array_filter($listes, 'filter_owner');
134 $listes = array_diff_key($listes, $owner);
135 $member = array_filter($listes, 'filter_member');
136 $listes = array_diff_key($listes, $member);
137 foreach ($owner as $key => $liste) {
138 list($subs, $mails) = $this->get_pending_ops($domain, $liste['list']);
139 $owner[$key]['subscriptions'] = $subs;
140 $owner[$key]['mails'] = $mails;
141 }
142 $page->register_modifier('hdc', 'list_header_decode');
143 $page->assign_by_ref('owner', $owner);
144 $page->assign_by_ref('member', $member);
145 $page->assign_by_ref('public', $listes);
50c655ee 146 }
50c655ee 147 }
148
26ba053e 149 function handler_ajax($page, $list = null)
50c655ee 150 {
3cb500d5 151 pl_content_headers("text/html");
5cbb1fad 152 $domain = $this->prepare_client($page);
edc4367b 153 $page->changeTpl('lists/liste.inc.tpl', NO_SKIN);
2669eb7d
VZ
154 S::assert_xsrf_token();
155
50c655ee 156 if (Get::has('unsubscribe')) {
157 $this->client->unsubscribe($list);
158 }
159 if (Get::has('subscribe')) {
160 $this->client->subscribe($list);
161 }
162 if (Get::has('sadd')) { /* 4 = SUBSCRIBE */
163 $this->client->handle_request($list, Get::v('sadd'), 4, '');
164 }
165 if (Get::has('mid')) {
5cbb1fad 166 $this->moderate_mail($domain, $list, Get::i('mid'));
50c655ee 167 }
168
169 list($liste, $members, $owners) = $this->client->get_members($list);
170 if ($liste['own']) {
834fd0f6 171 list($subs,$mails) = $this->get_pending_ops($domain, $list);
50c655ee 172 $liste['subscriptions'] = $subs;
173 $liste['mails'] = $mails;
174 }
175 $page->register_modifier('hdc', 'list_header_decode');
176 $page->assign_by_ref('liste', $liste);
bc4ad6aa 177 }
178
26ba053e 179 function handler_create($page)
bc4ad6aa 180 {
032b244e
SJ
181 global $globals;
182
edc4367b 183 $page->changeTpl('lists/create.tpl');
bc4ad6aa 184
18fb3c63 185 $user_promo = S::user()->profile()->yearPromo();
8ac67bda
SJ
186 $year = date('Y');
187 $month = date('m');
18fb3c63
PC
188 // scolar year starts in september
189 $scolarmonth = ($year - $user_promo) * 12 + ($month - 8);
8ac67bda 190 $young_promo = $very_young_promo = 0;
18fb3c63
PC
191 // binet are accessible only in april in the first year and until
192 // march of the 5th year
193 if ($scolarmonth >= 8 && $scolarmonth < 56) {
8ac67bda
SJ
194 $young_promo = 1;
195 }
18fb3c63
PC
196 // PSC aliases are accesible only between september and june of the second
197 // year of scolarity
198 if ($scolarmonth >= 12 && $scolarmonth < 22) {
8ac67bda
SJ
199 $very_young_promo = 1;
200 }
201 $page->assign('young_promo', $young_promo);
202 $page->assign('very_young_promo', $very_young_promo);
203
5e2307dc 204 $owners = preg_split("/[\s]+/", Post::v('owners'), -1, PREG_SPLIT_NO_EMPTY);
205 $members = preg_split("/[\s]+/", Post::v('members'), -1, PREG_SPLIT_NO_EMPTY);
bc4ad6aa 206
207 // click on validate button 'add_owner_sub' or type <enter>
208 if (Post::has('add_owner_sub') && Post::has('add_owner')) {
bc4ad6aa 209 // if we want to add an owner and then type <enter>, then both
210 // add_owner_sub and add_owner are filled.
7586ae0b
VZ
211 $oforlifes = User::getBulkForlifeEmails(Post::v('add_owner'), true);
212 $mforlifes = User::getBulkForlifeEmails(Post::v('add_member'), true);
e7545178 213 if (!is_null($oforlifes)) {
214 $owners = array_merge($owners, $oforlifes);
215 }
216 // if we want to add a member and then type <enter>, then
217 // add_owner_sub is filled, whereas add_owner is empty.
218 if (!is_null($mforlifes)) {
219 $members = array_merge($members, $mforlifes);
bc4ad6aa 220 }
221 }
222
223 // click on validate button 'add_member_sub'
224 if (Post::has('add_member_sub') && Post::has('add_member')) {
7586ae0b 225 $forlifes = User::getBulkForlifeEmails(Post::v('add_member'), true);
e7545178 226 if (!is_null($forlifes)) {
227 $members = array_merge($members, $forlifes);
bc4ad6aa 228 }
229 }
45070158 230 if (Post::has('add_member_sub') && isset($_FILES['add_member_file']) && $_FILES['add_member_file']['tmp_name']) {
f3df6d38 231 $upload =& PlUpload::get($_FILES['add_member_file'], S::user()->login(), 'list.addmember', true);
45070158
FB
232 if (!$upload) {
233 $page->trigError('Une erreur s\'est produite lors du téléchargement du fichier');
234 } else {
7586ae0b 235 $forlifes = User::getBulkForlifeEmails($upload->getContents(), true);
45070158
FB
236 if (!is_null($forlifes)) {
237 $members = array_merge($members, $forlifes);
238 }
239 }
240 }
bc4ad6aa 241
e7545178 242 ksort($owners);
243 $owners = array_unique($owners);
244 ksort($members);
245 $members = array_unique($members);
bc4ad6aa 246
45070158
FB
247 $page->assign('owners', join("\n", $owners));
248 $page->assign('members', join("\n", $members));
bc4ad6aa 249
250 if (!Post::has('submit')) {
251 return;
2669eb7d
VZ
252 } else {
253 S::assert_xsrf_token();
bc4ad6aa 254 }
255
85ddf64f
SJ
256 $asso = Post::t('asso');
257 $list = strtolower(Post::t('liste'));
bc4ad6aa 258
85ddf64f 259 if (empty($list)) {
6bb2f79a 260 $page->trigError('Le champ «&nbsp;adresse souhaitée&nbsp;» est vide.');
bc4ad6aa 261 }
85ddf64f 262 if (!preg_match("/^[a-zA-Z0-9\-]*$/", $list)) {
59887c4a 263 $page->trigError('Le nom de la liste ne doit contenir que des lettres non accentuées, chiffres et tirets.');
bc4ad6aa 264 }
265
85ddf64f 266 if (($asso == 'binet') || ($asso == 'alias')) {
59887c4a 267 $promo = Post::i('promo');
032b244e 268 $domain = $promo . '.' . $globals->mail->domain;
59887c4a
SJ
269
270 if (($promo < 1921) || ($promo > date('Y'))) {
6bb2f79a 271 $page->trigError('La promotion est mal renseignée, elle doit être du type&nbsp;: 2004.');
59887c4a
SJ
272 }
273
85ddf64f
SJ
274 } elseif ($asso == 'groupex') {
275 $domain = XDB::fetchOneCell('SELECT mail_domain
276 FROM groups
277 WHERE nom = {?}',
278 Post::t('groupex_name'));
59887c4a
SJ
279
280 if (!$domain) {
281 $page->trigError('Il n\'y a aucun groupe de ce nom sur Polytechnique.net.');
282 }
85ddf64f
SJ
283 } else {
284 $domain = $globals->mail->domain;
bc4ad6aa 285 }
286
85ddf64f
SJ
287 require_once 'emails.inc.php';
288 if (list_exist($list, $domain)) {
6bb2f79a 289 $page->trigError("L'«&nbsp;adresse souhaitée&nbsp;» est déjà prise.");
bc4ad6aa 290 }
291
85ddf64f 292 if (!Post::t('desc')) {
59887c4a 293 $page->trigError('Le sujet est vide.');
bc4ad6aa 294 }
295
296 if (!count($owners)) {
59887c4a 297 $page->trigError('Il n\'y a pas de gestionnaire.');
bc4ad6aa 298 }
299
85ddf64f 300 if (count($members) < 4) {
59887c4a 301 $page->trigError('Il n\'y a pas assez de membres.');
bc4ad6aa 302 }
303
304 if (!$page->nb_errs()) {
562064b5 305 $page->trigSuccess('Demande de création envoyée&nbsp;!');
bc4ad6aa 306 $page->assign('created', true);
85ddf64f
SJ
307 $req = new ListeReq(S::user(), $asso, $list, $domain,
308 Post::t('desc'), Post::i('advertise'),
5e2307dc 309 Post::i('modlevel'), Post::i('inslevel'),
bc4ad6aa 310 $owners, $members);
311 $req->submit();
312 }
313 }
314
26ba053e 315 function handler_members($page, $liste = null)
bc4ad6aa 316 {
bc4ad6aa 317 if (is_null($liste)) {
318 return PL_NOT_FOUND;
319 }
320
7b9d64a8 321 $this->prepare_client($page);
bc4ad6aa 322
1490093c 323 $page->changeTpl('lists/members.tpl');
bc4ad6aa 324
325 if (Get::has('del')) {
2669eb7d 326 S::assert_xsrf_token();
bc4ad6aa 327 $this->client->unsubscribe($liste);
8b00e0e0 328 pl_redirect('lists/members/'.$liste);
bc4ad6aa 329 }
330
331 if (Get::has('add')) {
2669eb7d 332 S::assert_xsrf_token();
bc4ad6aa 333 $this->client->subscribe($liste);
8b00e0e0 334 pl_redirect('lists/members/'.$liste);
bc4ad6aa 335 }
336
337 $members = $this->client->get_members($liste);
338
5e2307dc 339 $tri_promo = !Env::b('alpha');
bc4ad6aa 340
341 if (list($det,$mem,$own) = $members) {
342 $membres = list_sort_members($mem, $tri_promo);
343 $moderos = list_sort_owners($own, $tri_promo);
344
345 $page->assign_by_ref('details', $det);
346 $page->assign_by_ref('members', $membres);
347 $page->assign_by_ref('owners', $moderos);
348 $page->assign('nb_m', count($mem));
349 } else {
6e828e47 350 $page->kill("La liste n'existe pas ou tu n'as pas le droit d'en voir les détails.");
bc4ad6aa 351 }
352 }
353
26ba053e 354 function handler_csv(PlPage $page, $liste = null)
b73bc04b
FB
355 {
356 if (is_null($liste)) {
357 return PL_NOT_FOUND;
358 }
359 $this->prepare_client($page);
360 $members = $this->client->get_members($liste);
b97ecb9d 361 $list = list_fetch_basic_info(list_extract_members($members[1]));
e8ecbab4 362 pl_cached_content_headers('text/x-csv', 'iso-8859-1', 1);
b73bc04b 363
e8ecbab4
SJ
364 echo utf8_decode("Nom;Prénom;Promotion\n");
365 echo utf8_decode(implode("\n", $list));
366 exit();
b73bc04b
FB
367 }
368
26ba053e 369 function handler_annu($page, $liste = null, $action = null, $subaction = null)
bc4ad6aa 370 {
bc4ad6aa 371 if (is_null($liste)) {
372 return PL_NOT_FOUND;
373 }
374
7b9d64a8 375 $this->prepare_client($page);
bc4ad6aa 376
bc4ad6aa 377 if (Get::has('del')) {
2669eb7d 378 S::assert_xsrf_token();
bc4ad6aa 379 $this->client->unsubscribe($liste);
1cc0afe7 380 pl_redirect('lists/annu/'.$liste);
bc4ad6aa 381 }
382 if (Get::has('add')) {
2669eb7d 383 S::assert_xsrf_token();
bc4ad6aa 384 $this->client->subscribe($liste);
1cc0afe7 385 pl_redirect('lists/annu/'.$liste);
bc4ad6aa 386 }
387
388 $owners = $this->client->get_owners($liste);
1cc0afe7 389 if (!is_array($owners)) {
6e828e47 390 $page->kill("La liste n'existe pas ou tu n'as pas le droit d'en voir les détails.");
bc4ad6aa 391 }
1cc0afe7 392
1cc0afe7 393 list(,$members) = $this->client->get_members($liste);
ad3c767b
RB
394
395 if ($action == 'moderators') {
027b16e3 396 $users = $owners;
ad3c767b
RB
397 $show_moderators = true;
398 $action = $subaction;
399 $subaction = '';
400 } else {
401 $show_moderators = false;
027b16e3
RB
402 $users = array();
403 foreach ($members as $m) {
404 $users[] = $m[1];
405 }
1cc0afe7 406 }
ad3c767b 407
1cc0afe7 408 require_once 'userset.inc.php';
027b16e3 409 $view = new UserArraySet($users);
ad3c767b 410 $view->addMod('trombi', 'Trombinoscope', false, array('with_promo' => true));
ad3c767b 411 $view->addMod('listmember', 'Annuaire', true);
14f4068d
RB
412 if (empty($GLOBALS['IS_XNET_SITE'])) {
413 $view->addMod('minifiche', 'Mini-fiches', false);
414 }
0a928a2f 415 $view->addMod('map', 'Planisphère');
1cc0afe7 416 $view->apply("lists/annu/$liste", $page, $action, $subaction);
1cc0afe7 417
418 $page->changeTpl('lists/annu.tpl');
1cc0afe7 419 $page->assign_by_ref('details', $owners[0]);
ad3c767b 420 $page->assign('show_moderators', $show_moderators);
bc4ad6aa 421 }
422
26ba053e 423 function handler_archives($page, $liste = null, $action = null, $artid = null)
bc4ad6aa 424 {
425 global $globals;
426
427 if (is_null($liste)) {
428 return PL_NOT_FOUND;
429 }
430
092945b4 431 $domain = $this->prepare_client($page);
bc4ad6aa 432
1490093c 433 $page->changeTpl('lists/archives.tpl');
bc4ad6aa 434
bc4ad6aa 435 if (list($det) = $this->client->get_members($liste)) {
436 if (substr($liste,0,5) != 'promo' && ($det['ins'] || $det['priv'])
fa7d6c7b 437 && !$det['own'] && ($det['sub'] < 2)) {
38421eaa 438 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la consulter.");
fa7d6c7b 439 }
440 $get = Array('listname' => $liste, 'domain' => $domain);
441 if (Post::has('updateall')) {
442 $get['updateall'] = Post::v('updateall');
443 }
4f355064 444 require_once 'banana/ml.inc.php';
445 get_banana_params($get, null, $action, $artid);
446 run_banana($page, 'MLBanana', $get);
bc4ad6aa 447 } else {
38421eaa 448 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la consulter.");
bc4ad6aa 449 }
450 }
451
26ba053e 452 function handler_rss($page, $liste = null, $alias = null, $hash = null)
6544d0e1 453 {
8c12f931
FB
454 if (!$liste) {
455 return PL_NOT_FOUND;
456 }
457 $user = Platal::session()->tokenAuth($alias, $hash);
458 if (is_null($user)) {
459 return PL_FORBIDDEN;
6544d0e1 460 }
461
8c12f931 462 $domain = $this->prepare_client($page, $user);
6544d0e1 463 if (list($det) = $this->client->get_members($liste)) {
464 if (substr($liste,0,5) != 'promo' && ($det['ins'] || $det['priv'])
465 && !$det['own'] && ($det['sub'] < 2)) {
eaf30d86 466 exit;
6544d0e1 467 }
468 require_once('banana/ml.inc.php');
8c12f931 469 $banana = new MLBanana($user, Array('listname' => $liste, 'domain' => $domain, 'action' => 'rss2'));
4f355064 470 $banana->run();
6544d0e1 471 }
472 exit;
473 }
474
5cbb1fad 475 function moderate_mail($domain, $liste, $mid)
50c655ee 476 {
50c655ee 477 if (Env::has('mok')) {
834fd0f6 478 $action = 'accept';
50c655ee 479 } elseif (Env::has('mno')) {
834fd0f6 480 $action = 'refuse';
50c655ee 481 } elseif (Env::has('mdel')) {
834fd0f6 482 $action = 'delete';
483 } else {
484 return false;
485 }
486 Get::kill('mid');
2235cd7f 487 return XDB::execute("INSERT IGNORE INTO email_list_moderate
834fd0f6 488 VALUES ({?}, {?}, {?}, {?}, {?}, NOW(), {?}, NULL)",
489 $liste, $domain, $mid, S::i('uid'), $action, Post::v('reason'));
50c655ee 490 }
491
26ba053e 492 function handler_moderate($page, $liste = null)
bc4ad6aa 493 {
bc4ad6aa 494 if (is_null($liste)) {
4b0d9ef3 495 return PL_NOT_FOUND;
bc4ad6aa 496 }
497
092945b4 498 $domain = $this->prepare_client($page);
a471e374 499 $this->verify_list_owner($page, $liste);
bc4ad6aa 500
1490093c 501 $page->changeTpl('lists/moderate.tpl');
bc4ad6aa 502
c8529706 503 $page->register_modifier('hdc', 'list_header_decode');
bc4ad6aa 504
4b0d9ef3 505 if (Env::has('sadd') || Env::has('sdel')) {
2669eb7d
VZ
506 S::assert_xsrf_token();
507
4b0d9ef3 508 if (Env::has('sadd')) { /* 4 = SUBSCRIBE */
509 $sub = $this->client->get_pending_sub($liste, Env::v('sadd'));
510 $this->client->handle_request($liste,Env::v('sadd'),4,'');
511 $info = "validée";
512 }
513 if (Post::has('sdel')) { /* 2 = REJECT */
514 $sub = $this->client->get_pending_sub($liste, Env::v('sdel'));
a5878ac1 515 $this->client->handle_request($liste, Post::v('sdel'), 2, utf8_decode(Post::v('reason')));
4b0d9ef3 516 $info = "refusée";
517 }
518 if ($sub) {
519 $mailer = new PlMailer();
520 $mailer->setFrom("$liste-bounces@{$domain}");
521 $mailer->addTo("$liste-owner@{$domain}");
522 $mailer->addHeader('Reply-To', "$liste-owner@{$domain}");
523 $mailer->setSubject("L'inscription de {$sub['name']} a été $info");
4595d3e2 524 $text = "L'inscription de {$sub['name']} à la liste $liste@{$domain} a été $info par " . S::user()->fullName(true) . ".\n";
4b0d9ef3 525 if (trim(Post::v('reason'))) {
526 $text .= "\nLa raison invoquée est :\n" . Post::v('reason');
527 }
528 $mailer->setTxtBody(wordwrap($text, 72));
529 $mailer->send();
530 }
531 if (Env::has('sadd')) {
532 pl_redirect('lists/moderate/'.$liste);
eaf30d86 533 }
bc4ad6aa 534 }
535
e940f534 536 if (Post::has('moderate_mails') && Post::has('select_mails')) {
2669eb7d
VZ
537 S::assert_xsrf_token();
538
e940f534 539 $mails = array_keys(Post::v('select_mails'));
540 foreach($mails as $mail) {
541 $this->moderate_mail($domain, $liste, $mail);
542 }
543 } elseif (Env::has('mid')) {
d96379f6 544 if (Get::has('mid') && !Env::has('mok') && !Env::has('mdel')) {
ecc72a6d 545 require_once 'banana/moderate.inc.php';
bc4ad6aa 546
52d032a7 547 $page->changeTpl('lists/moderate_mail.tpl');
52d032a7
SJ
548 $params = array('listname' => $liste, 'domain' => $domain,
549 'artid' => Get::i('mid'), 'part' => Get::v('part'), 'action' => Get::v('action'));
550 $params['client'] = $this->client;
551 run_banana($page, 'ModerationBanana', $params);
552
ecc72a6d 553 $msg = file_get_contents('/etc/mailman/fr/refuse.txt');
52d032a7
SJ
554 $msg = str_replace("%(adminaddr)s", "$liste-owner@{$domain}", $msg);
555 $msg = str_replace("%(request)s", "<< SUJET DU MAIL >>", $msg);
556 $msg = str_replace("%(reason)s", "<< TON EXPLICATION >>", $msg);
557 $msg = str_replace("%(listname)s", $liste, $msg);
558 $page->assign('msg', $msg);
559 return;
ed03d07f 560 }
561
ecc72a6d 562 $this->moderate_mail($domain, $liste, Env::i('mid'));
bc4ad6aa 563 } elseif (Env::has('sid')) {
834fd0f6 564 if (list($subs,$mails) = $this->get_pending_ops($domain, $liste)) {
bc4ad6aa 565 foreach($subs as $user) {
5e2307dc 566 if ($user['id'] == Env::v('sid')) {
1490093c 567 $page->changeTpl('lists/moderate_sub.tpl');
6a20c6a3 568 $page->assign('del_user', $user);
569 return;
bc4ad6aa 570 }
571 }
572 }
573
574 }
575
834fd0f6 576 if (list($subs,$mails) = $this->get_pending_ops($domain, $liste)) {
46ab179a 577 foreach ($mails as $key=>$mail) {
578 $mails[$key]['stamp'] = strftime("%Y%m%d%H%M%S", $mail['stamp']);
717b9fa7
FB
579 if ($mail['fromx']) {
580 $page->assign('with_fromx', true);
581 } else {
582 $page->assign('with_nonfromx', true);
583 }
46ab179a 584 }
bc4ad6aa 585 $page->assign_by_ref('subs', $subs);
586 $page->assign_by_ref('mails', $mails);
587 } else {
6e828e47 588 $page->kill("La liste n'existe pas ou tu n'as pas le droit de la modérer.");
bc4ad6aa 589 }
590 }
591
0baf0741 592 static public function no_login_callback($login)
593 {
f036c896 594 global $list_unregistered;
0baf0741 595
61a7d279 596 $users = User::getPendingAccounts($login, true);
a58d8539 597 if ($users && $users->total()) {
0baf0741 598 if (!isset($list_unregistered)) {
599 $list_unregistered = array();
600 }
601 $list_unregistered[$login] = $users;
602 } else {
f036c896
SJ
603 list($name, $domain) = @explode('@', $login);
604 if (User::isMainMailDomain($domain)) {
750f63db 605 User::_default_user_callback($login);
be792642 606 }
0baf0741 607 }
608 }
609
26ba053e 610 function handler_admin($page, $liste = null)
bc4ad6aa 611 {
612 global $globals;
613
614 if (is_null($liste)) {
615 return PL_NOT_FOUND;
616 }
617
0baf0741 618 $domain = $this->prepare_client($page);
a471e374 619 $this->verify_list_owner($page, $liste);
bc4ad6aa 620
1490093c 621 $page->changeTpl('lists/admin.tpl');
bc4ad6aa 622
0baf0741 623 if (Env::has('send_mark')) {
2669eb7d
VZ
624 S::assert_xsrf_token();
625
0baf0741 626 $actions = Env::v('mk_action');
627 $uids = Env::v('mk_uid');
628 $mails = Env::v('mk_email');
629 foreach ($actions as $key=>$action) {
630 switch ($action) {
631 case 'none':
632 break;
633
634 case 'marketu': case 'markets':
635 require_once 'emails.inc.php';
f4dda5fb 636 $user = User::get($uids[$key]);
0baf0741 637 $mail = valide_email($mails[$key]);
f4dda5fb 638 if (isvalid_email_redirection($mail, $user)) {
0baf0741 639 $from = ($action == 'marketu') ? 'user' : 'staff';
640 $market = Marketing::get($uids[$key], $mail);
641 if (!$market) {
642 $market = new Marketing($uids[$key], $mail, 'list', "$liste@$domain", $from, S::v('uid'));
643 $market->add();
644 break;
645 }
646 }
647
648 default:
649 XDB::execute('INSERT IGNORE INTO register_subs (uid, type, sub, domain)
650 VALUES ({?}, \'list\', {?}, {?})',
651 $uids[$key], $liste, $domain);
652 }
653 }
654 }
655
656d01ce
SJ
656 if (Env::has('add_member') ||
657 isset($_FILES['add_member_file']) && $_FILES['add_member_file']['tmp_name']) {
2669eb7d
VZ
658 S::assert_xsrf_token();
659
656d01ce
SJ
660 if (isset($_FILES['add_member_file']) && $_FILES['add_member_file']['tmp_name']) {
661 $upload =& PlUpload::get($_FILES['add_member_file'], S::user()->login(), 'list.addmember', true);
662 if (!$upload) {
663 $page->trigError("Une erreur s'est produite lors du téléchargement du fichier.");
664 } else {
665 $logins = $upload->getContents();
666 }
667 } else {
668 $logins = Env::v('add_member');
669 }
670
671 $logins = preg_split("/[; ,\r\n\|]+/", $logins);
c0ced718 672 $members = User::getBulkForlifeEmails($logins,
7129ea95 673 true,
7586ae0b 674 array('ListsModule', 'no_login_callback'));
c0ced718
SJ
675 $unfound = array_diff_key($logins, $members);
676
03558f19
RB
677 // Make sure we send a list (array_values) of unique (array_unique)
678 // emails.
679 $members = array_values(array_unique($members));
680
bc4ad6aa 681 $arr = $this->client->mass_subscribe($liste, $members);
c0ced718
SJ
682
683 $successes = array();
bc4ad6aa 684 if (is_array($arr)) {
685 foreach($arr as $addr) {
c0ced718 686 $successes[] = $addr[1];
a7d35093 687 $page->trigSuccess("{$addr[0]} inscrit.");
bc4ad6aa 688 }
689 }
c0ced718
SJ
690
691 $already = array_diff($members, $successes);
692 if (is_array($already)) {
693 foreach ($already as $item) {
694 $page->trigWarning($item . ' est déjà inscrit.');
695 }
696 }
697
698 if (is_array($unfound)) {
699 foreach ($unfound as $item) {
656d01ce
SJ
700 if (trim($item) != '') {
701 $page->trigError($item . " ne correspond pas à un compte existant et n'est pas une adresse email.");
108d1d90
FB
702 }
703 }
704 }
705 }
706
bc4ad6aa 707 if (Env::has('del_member')) {
2669eb7d
VZ
708 S::assert_xsrf_token();
709
5e2307dc 710 if (strpos(Env::v('del_member'), '@') === false) {
f036c896
SJ
711 if ($del_member = User::getSilent(Env::t('del_member'))) {
712 $this->client->mass_unsubscribe($liste, array($del_member->forlifeEmail()));
713 }
bc4ad6aa 714 } else {
5e2307dc 715 $this->client->mass_unsubscribe($liste, array(Env::v('del_member')));
bc4ad6aa 716 }
8b00e0e0 717 pl_redirect('lists/admin/'.$liste);
bc4ad6aa 718 }
719
720 if (Env::has('add_owner')) {
2669eb7d
VZ
721 S::assert_xsrf_token();
722
7586ae0b 723 $owners = User::getBulkForlifeEmails(Env::v('add_owner'), false, array('ListsModule', 'no_login_callback'));
e7545178 724 if ($owners) {
725 foreach ($owners as $login) {
726 if ($this->client->add_owner($liste, $login)) {
7586ae0b 727 $page->trigSuccess($login ." ajouté aux modérateurs.");
e7545178 728 }
bc4ad6aa 729 }
730 }
731 }
732
733 if (Env::has('del_owner')) {
2669eb7d
VZ
734 S::assert_xsrf_token();
735
5e2307dc 736 if (strpos(Env::v('del_owner'), '@') === false) {
f036c896
SJ
737 if ($del_owner = User::getSilent(Env::t('del_owner'))) {
738 $this->client->mass_unsubscribe($liste, array($del_owner->forlifeEmail()));
739 }
bc4ad6aa 740 } else {
5e2307dc 741 $this->client->del_owner($liste, Env::v('del_owner'));
bc4ad6aa 742 }
8b00e0e0 743 pl_redirect('lists/admin/'.$liste);
bc4ad6aa 744 }
745
746 if (list($det,$mem,$own) = $this->client->get_members($liste)) {
0baf0741 747 global $list_unregistered;
748 if ($list_unregistered) {
749 $page->assign_by_ref('unregistered', $list_unregistered);
750 }
30fc8ee7 751 $membres = list_sort_members($mem, @$tri_promo);
752 $moderos = list_sort_owners($own, @$tri_promo);
bc4ad6aa 753
754 $page->assign_by_ref('details', $det);
755 $page->assign_by_ref('members', $membres);
756 $page->assign_by_ref('owners', $moderos);
757 $page->assign('np_m', count($mem));
bc4ad6aa 758 } else {
383eaddd 759 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer.<br />"
6e828e47
SJ
760 . " Si tu penses qu'il s'agit d'une erreur, "
761 . "<a href='mailto:support@polytechnique.org'>contact le support</a>.");
bc4ad6aa 762 }
763 }
764
26ba053e 765 function handler_options($page, $liste = null)
bc4ad6aa 766 {
bc4ad6aa 767 if (is_null($liste)) {
768 return PL_NOT_FOUND;
769 }
770
7b9d64a8 771 $this->prepare_client($page);
a471e374 772 $this->verify_list_owner($page, $liste);
bc4ad6aa 773
1490093c 774 $page->changeTpl('lists/options.tpl');
bc4ad6aa 775
776 if (Post::has('submit')) {
2669eb7d
VZ
777 S::assert_xsrf_token();
778
bc4ad6aa 779 $values = $_POST;
5fb22b39 780 $values = array_map('utf8_decode', $values);
c638d8c8
FB
781 $spamlevel = intval($values['bogo_level']);
782 $unsurelevel = intval($values['unsure_level']);
783 if ($spamlevel == 0) {
784 $unsurelevel = 0;
785 }
786 if ($spamlevel > 3 || $spamlevel < 0 || $unsurelevel < 0 || $unsurelevel > 1) {
787 $page->trigError("Réglage de l'antispam non valide");
788 } else {
789 $this->client->set_bogo_level($liste, ($spamlevel << 1) + $unsurelevel);
790 }
bc4ad6aa 791 switch($values['moderate']) {
792 case '0':
793 $values['generic_nonmember_action'] = 0;
794 $values['default_member_moderation'] = 0;
795 break;
796 case '1':
797 $values['generic_nonmember_action'] = 1;
798 $values['default_member_moderation'] = 0;
799 break;
800 case '2':
801 $values['generic_nonmember_action'] = 1;
802 $values['default_member_moderation'] = 1;
803 break;
804 }
805 unset($values['submit'], $values['bogo_level'], $values['moderate']);
806 $values['send_goodbye_msg'] = !empty($values['send_goodbye_msg']);
807 $values['admin_notify_mchanges'] = !empty($values['admin_notify_mchanges']);
808 $values['subscribe_policy'] = empty($values['subscribe_policy']) ? 0 : 2;
809 if (isset($values['subject_prefix'])) {
810 $values['subject_prefix'] = trim($values['subject_prefix']).' ';
811 }
812 $this->client->set_owner_options($liste, $values);
5e2307dc 813 } elseif (isvalid_email(Post::v('atn_add'))) {
2669eb7d 814 S::assert_xsrf_token();
5e2307dc 815 $this->client->add_to_wl($liste, Post::v('atn_add'));
bc4ad6aa 816 } elseif (Get::has('atn_del')) {
2669eb7d 817 S::assert_xsrf_token();
5e2307dc 818 $this->client->del_from_wl($liste, Get::v('atn_del'));
8b00e0e0 819 pl_redirect('lists/options/'.$liste);
bc4ad6aa 820 }
821
822 if (list($details,$options) = $this->client->get_owner_options($liste)) {
823 $page->assign_by_ref('details', $details);
824 $page->assign_by_ref('options', $options);
c638d8c8
FB
825 $bogo_level = intval($this->client->get_bogo_level($liste));
826 $page->assign('unsure_level', $bogo_level & 1);
827 $page->assign('bogo_level', $bogo_level >> 1);
bc4ad6aa 828 } else {
829 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer");
830 }
831 }
832
26ba053e 833 function handler_delete($page, $liste = null)
bc4ad6aa 834 {
7c5842f3 835 global $globals;
bc4ad6aa 836 if (is_null($liste)) {
837 return PL_NOT_FOUND;
838 }
839
7c5842f3 840 $domain = $this->prepare_client($page);
a471e374 841 $this->verify_list_owner($page, $liste);
1490093c 842 $page->changeTpl('lists/delete.tpl');
7c5842f3 843 if (Post::v('valid') == 'OUI') {
2669eb7d
VZ
844 S::assert_xsrf_token();
845
7c5842f3 846 if ($this->client->delete_list($liste, Post::b('del_archive'))) {
85ddf64f
SJ
847 require_once 'emails.inc.php';
848
849 delete_list($liste, $domain);
7c5842f3 850 $page->assign('deleted', true);
6bb2f79a 851 $page->trigSuccess('La liste a été détruite&nbsp;!');
7c5842f3 852 } else {
853 $page->kill('Une erreur est survenue lors de la suppression de la liste.<br />'
a7de4ef7 854 . 'Contact les administrateurs du site pour régler le problème : '
6e828e47 855 . '<a href="mailto:support@polytechnique.org">support@polytechnique.org</a>.');
bc4ad6aa 856 }
bc4ad6aa 857 } elseif (list($details,$options) = $this->client->get_owner_options($liste)) {
44b071c2
SJ
858 if (!$details['own']) {
859 $page->trigWarning('Tu n\'es pas administrateur de la liste, mais du site.');
860 }
bc4ad6aa 861 $page->assign_by_ref('details', $details);
862 $page->assign_by_ref('options', $options);
863 $page->assign('bogo_level', $this->client->get_bogo_level($liste));
864 } else {
6e828e47 865 $page->kill("La liste n'existe pas ou tu n'as pas le droit de l'administrer.");
bc4ad6aa 866 }
867 }
868
26ba053e 869 function handler_soptions($page, $liste = null)
bc4ad6aa 870 {
bc4ad6aa 871 if (is_null($liste)) {
872 return PL_NOT_FOUND;
873 }
874
7b9d64a8 875 $this->prepare_client($page);
a471e374 876 $this->verify_list_owner($page, $liste);
bc4ad6aa 877
1490093c 878 $page->changeTpl('lists/soptions.tpl');
bc4ad6aa 879
880 if (Post::has('submit')) {
2669eb7d
VZ
881 S::assert_xsrf_token();
882
bc4ad6aa 883 $values = $_POST;
5fb22b39 884 $values = array_map('utf8_decode', $values);
bc4ad6aa 885 unset($values['submit']);
886 $values['advertised'] = empty($values['advertised']) ? false : true;
887 $values['archive'] = empty($values['archive']) ? false : true;
888 $this->client->set_admin_options($liste, $values);
889 }
890
891 if (list($details,$options) = $this->client->get_admin_options($liste)) {
892 $page->assign_by_ref('details', $details);
893 $page->assign_by_ref('options', $options);
894 } else {
6e828e47 895 $page->kill("La liste n'existe pas.");
bc4ad6aa 896 }
897 }
898
26ba053e 899 function handler_check($page, $liste = null)
bc4ad6aa 900 {
bc4ad6aa 901 if (is_null($liste)) {
902 return PL_NOT_FOUND;
903 }
904
7b9d64a8 905 $this->prepare_client($page);
a471e374 906 $this->verify_list_owner($page, $liste);
bc4ad6aa 907
1490093c 908 $page->changeTpl('lists/check.tpl');
bc4ad6aa 909
910 if (Post::has('correct')) {
2669eb7d 911 S::assert_xsrf_token();
bc4ad6aa 912 $this->client->check_options($liste, true);
913 }
914
915 if (list($details,$options) = $this->client->check_options($liste)) {
916 $page->assign_by_ref('details', $details);
917 $page->assign_by_ref('options', $options);
918 } else {
6e828e47 919 $page->kill("La liste n'existe pas.");
bc4ad6aa 920 }
921 }
92423144 922
26ba053e 923 function handler_admin_all($page)
7f1ff426 924 {
1490093c 925 $page->changeTpl('lists/admin_all.tpl');
46f272fe 926 $page->setTitle('Administration - Mailing lists');
9bb8bf21 927
7f1ff426
FB
928 $this->prepare_client($page);
929 $listes = $this->client->get_all_lists();
9bb8bf21 930 $page->assign_by_ref('listes', $listes);
92423144 931 }
2ed80014
SJ
932
933 function handler_aaliases($page, $alias = null)
934 {
935 global $globals;
936 require_once 'emails.inc.php';
937 $page->setTitle('Administration - Aliases');
938
939 if (Post::has('new_alias')) {
940 pl_redirect('admin/aliases/' . Post::t('new_alias') . '@' . $globals->mail->domain);
941 }
942
943 // If no alias, list them all.
944 if (is_null($alias)) {
945 $page->changeTpl('lists/admin_aliases.tpl');
946 $page->assign('aliases', array_merge(iterate_list_alias($globals->mail->domain), iterate_list_alias($globals->mail->domain2)));
947 return;
948 }
949
950 list($local_part, $domain) = explode('@', $alias);
951 if (!($globals->mail->domain == $domain || $globals->mail->domain2 == $domain)
952 || !preg_match("/^[a-zA-Z0-9\-\.]*$/", $local_part)) {
953 $page->trigErrorRedirect('Le nom de l\'alias est erroné.', $globals->asso('diminutif') . 'admin/aliases');
954 }
955
956 // Now we can perform the action.
957 if (Post::has('del_alias')) {
958 S::assert_xsrf_token();
959
960 delete_list_alias($local_part, $domain);
961 $page->trigSuccessRedirect($alias . ' supprimé.', 'admin/aliases');
962 }
963
964 if (Post::has('add_member')) {
965 S::assert_xsrf_token();
966
967 if (add_to_list_alias(Post::t('add_member'), $local_part, $domain)) {
968 $page->trigSuccess('Ajout réussit.');
969 } else {
970 $page->trigError('Ajout infructueux.');
971 }
972 }
973
974 if (Get::has('del_member')) {
975 S::assert_xsrf_token();
976
977 if (delete_from_list_alias(Get::t('del_member'), $local_part, $domain)) {
978 $page->trigSuccess('Suppression réussie.');
979 } else {
980 $page->trigError('Suppression infructueuse.');
981 }
982 }
983
984 $page->changeTpl('lists/admin_edit_alias.tpl');
985 $page->assign('members', list_alias_members($local_part, $domain));
986 $page->assign('alias', $alias);
987 }
bc4ad6aa 988}
989
a7de4ef7 990// vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
bc4ad6aa 991?>