Commit | Line | Data |
---|---|---|
0337d704 | 1 | <?php |
2 | /*************************************************************************** | |
179afa7f | 3 | * Copyright (C) 2003-2008 Polytechnique.org * |
0337d704 | 4 | * http://opensource.polytechnique.org/ * |
5 | * * | |
6 | * This program is free software; you can redistribute it and/or modify * | |
7 | * it under the terms of the GNU General Public License as published by * | |
8 | * the Free Software Foundation; either version 2 of the License, or * | |
9 | * (at your option) any later version. * | |
10 | * * | |
11 | * This program is distributed in the hope that it will be useful, * | |
12 | * but WITHOUT ANY WARRANTY; without even the implied warranty of * | |
13 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * | |
14 | * GNU General Public License for more details. * | |
15 | * * | |
16 | * You should have received a copy of the GNU General Public License * | |
17 | * along with this program; if not, write to the Free Software * | |
18 | * Foundation, Inc., * | |
19 | * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA * | |
20 | ***************************************************************************/ | |
21 | ||
0337d704 | 22 | // {{{ Global variables used for the search Queries |
23 | ||
35fa92e8 | 24 | @$globals->search->result_fields = ' |
94f6c381 | 25 | u.user_id, u.promo, u.matricule, u.matricule_ax, |
26 | if(u.nom_usage=\'\', u.nom, u.nom_usage) AS NomSortKey, | |
27 | u.nom_usage,u.date, | |
28 | u.deces!=0 AS dcd,u.deces, | |
29 | u.perms IN (\'admin\',\'user\', \'disabled\') AS inscrit, | |
30 | u.perms != \'pending\' AS wasinscrit, | |
31 | FIND_IN_SET(\'femme\', u.flags) AS sexe, | |
32 | a.alias AS forlife, | |
043bbacf SJ |
33 | ede0.name AS eduname0, ede0.url AS eduurl0, edd0.degree AS edudegree0, edu0.grad_year AS edugrad_year0, f0.field AS edufield0, |
34 | ede1.name AS eduname1, ede1.url AS eduurl1, edd1.degree AS edudegree1, edu1.grad_year AS edugrad_year1, f1.field AS edufield1, | |
35 | ede2.name AS eduname2, ede2.url AS eduurl2, edd2.degree AS edudegree2, edu2.grad_year AS edugrad_year2, f2.field AS edufield2, | |
36 | ede3.name AS eduname3, ede3.url AS eduurl3, edd3.degree AS edudegree3, edu3.grad_year AS edugrad_year3, f3.field AS edufield3, | |
94f6c381 | 37 | es.label AS secteur, ef.fonction_fr AS fonction, |
f781871c SJ |
38 | IF(n1.nat=\'\',n1.pays,n1.nat) AS nat1, n1.a2 AS iso3166_1, |
39 | IF(n2.nat=\'\',n2.pays,n2.nat) AS nat2, n2.a2 AS iso3166_2, | |
40 | IF(n3.nat=\'\',n3.pays,n3.nat) AS nat3, n3.a2 AS iso3166_3, | |
0e5ec860 | 41 | (COUNT(em.email) > 0 OR FIND_IN_SET("googleapps", u.mail_storage) > 0) AS actif,'; |
0337d704 | 42 | // hide private information if not logged |
eaf30d86 | 43 | if (S::logged()) |
94f6c381 | 44 | $globals->search->result_fields .=' |
94f6c381 | 45 | q.profile_freetext AS freetext, |
46 | adr.city, gp.pays AS countrytxt, gr.name AS region, | |
14256b08 GB |
47 | e.entreprise, |
48 | nw.address AS networking_address, | |
49 | nwe.name AS networking_name,'; | |
0337d704 | 50 | else |
94f6c381 | 51 | $globals->search->result_fields .=" |
94f6c381 | 52 | IF(q.profile_freetext_pub='public', q.profile_freetext, '') AS freetext, |
53 | IF(adr.pub='public', adr.city, '') AS city, | |
54 | IF(adr.pub='public', gp.pays, '') AS countrytxt, | |
55 | IF(adr.pub='public', gr.name, '') AS region, | |
14256b08 GB |
56 | IF(e.pub='public', e.entreprise, '') AS entreprise, |
57 | IF(nw.pub='public', nw.address, '') AS networking_address, | |
58 | IF(nw.pub='public', nwe.name, '') AS networking_name,"; | |
35fa92e8 | 59 | @$globals->search->result_where_statement = ' |
043bbacf SJ |
60 | LEFT JOIN profile_education AS edu0 ON (u.user_id = edu0.uid AND edu0.id = 0) |
61 | LEFT JOIN profile_education_enum AS ede0 ON (ede0.id = edu0.eduid) | |
62 | LEFT JOIN profile_education_degree_enum AS edd0 ON (edd0.id = edu0.degreeid) | |
63 | LEFT JOIN profile_education_field_enum AS f0 ON (f0.id = edu0.fieldid) | |
64 | LEFT JOIN profile_education AS edu1 ON (u.user_id = edu1.uid AND edu1.id = 1) | |
65 | LEFT JOIN profile_education_enum AS ede1 ON (ede1.id = edu1.eduid) | |
66 | LEFT JOIN profile_education_degree_enum AS edd1 ON (edd1.id = edu1.degreeid) | |
67 | LEFT JOIN profile_education_field_enum AS f1 ON (f1.id = edu1.fieldid) | |
68 | LEFT JOIN profile_education AS edu2 ON (u.user_id = edu2.uid AND edu2.id = 2) | |
69 | LEFT JOIN profile_education_enum AS ede2 ON (ede2.id = edu2.eduid) | |
70 | LEFT JOIN profile_education_degree_enum AS edd2 ON (edd2.id = edu2.degreeid) | |
71 | LEFT JOIN profile_education_field_enum AS f2 ON (f2.id = edu2.fieldid) | |
72 | LEFT JOIN profile_education AS edu3 ON (u.user_id = edu3.uid AND edu3.id = 3) | |
73 | LEFT JOIN profile_education_enum AS ede3 ON (ede3.id = edu3.eduid) | |
74 | LEFT JOIN profile_education_degree_enum AS edd3 ON (edd3.id = edu3.degreeid) | |
75 | LEFT JOIN profile_education_field_enum AS f3 ON (f3.id = edu3.fieldid) | |
14256b08 GB |
76 | LEFT JOIN entreprises AS e ON (e.entrid = 0 AND e.uid = u.user_id) |
77 | LEFT JOIN emploi_secteur AS es ON (e.secteur = es.id) | |
78 | LEFT JOIN fonctions_def AS ef ON (e.fonction = ef.id) | |
f781871c SJ |
79 | LEFT JOIN geoloc_pays AS n1 ON (u.nationalite = n1.a2) |
80 | LEFT JOIN geoloc_pays AS n2 ON (u.nationalite2 = n2.a2) | |
81 | LEFT JOIN geoloc_pays AS n3 ON (u.nationalite3 = n3.a2) | |
14256b08 GB |
82 | LEFT JOIN adresses AS adr ON (u.user_id = adr.uid AND FIND_IN_SET(\'active\',adr.statut)) |
83 | LEFT JOIN geoloc_pays AS gp ON (adr.country = gp.a2) | |
84 | LEFT JOIN geoloc_region AS gr ON (adr.country = gr.a2 AND adr.region = gr.region) | |
85 | LEFT JOIN emails AS em ON (em.uid = u.user_id AND em.flags = \'active\') | |
86 | LEFT JOIN profile_networking AS nw ON (nw.uid = u.user_id) | |
87 | LEFT JOIN profile_networking_enum AS nwe ON (nwe.network_type = nw.network_type)'; | |
0337d704 | 88 | |
89 | // }}} | |
0337d704 | 90 | // {{{ class ThrowError |
91 | ||
92 | /** handle errors for end-users queries | |
93 | * assign the error message and runs the templates | |
94 | * | |
95 | * @author Jean-Sebastien Bedo | |
96 | */ | |
97 | class ThrowError | |
98 | { | |
a2aa8436 | 99 | public static $throwHook = array('ThrowError', 'defaultHandler'); |
100 | ||
0337d704 | 101 | /** constuctor |
102 | * @param $explain string the error (in natural language) | |
103 | */ | |
92432704 | 104 | public function __construct($explain) |
0337d704 | 105 | { |
a2aa8436 | 106 | call_user_func(ThrowError::$throwHook, $explain); |
107 | } | |
108 | ||
109 | /** defaut error handler | |
110 | */ | |
111 | private static function defaultHandler($explain) | |
112 | { | |
d7610c35 FB |
113 | global $globals; |
114 | $page =& Platal::page(); | |
bc67c37c | 115 | $page->changeTpl('search/index.tpl'); |
143ba7c9 | 116 | $page->setTitle('Polytechnique.org - Annuaire'); |
bc67c37c | 117 | $page->assign('baseurl', $globals->baseurl); |
a7d35093 | 118 | $page->trigError($explain); |
c9110c6c | 119 | $page->run(); |
0337d704 | 120 | } |
121 | } | |
122 | ||
123 | // }}} | |
124 | // {{{ class SField [Base class] | |
125 | ||
a7de4ef7 | 126 | /** classe de base représentant un champ de recherche |
127 | * (correspond à un champ du formulaire mais peut être à plusieurs champs de la bdd) | |
128 | * interface étendue pour chaque type de champ particulier | |
0337d704 | 129 | */ |
130 | class SField | |
131 | { | |
132 | // {{{ properties | |
94f6c381 | 133 | |
0337d704 | 134 | /** le nom du champ dans le formulaire HTML */ |
135 | var $fieldFormName; | |
a7de4ef7 | 136 | /** champs de la bdd correspondant à ce champ sous forme d'un tableau */ |
0337d704 | 137 | var $fieldDbName; |
a7de4ef7 | 138 | /** champ résultat dans la requête MySQL correspondant à ce champ |
139 | * (alias utilisé pour la clause ORDER BY) */ | |
0337d704 | 140 | var $fieldResultName; |
a7de4ef7 | 141 | /** valeur du champ instanciée par l'utilisateur */ |
0337d704 | 142 | var $value; |
143 | ||
144 | // }}} | |
145 | // {{{ constructor | |
146 | ||
147 | /** constructeur | |
a7de4ef7 | 148 | * (récupère la requête de l'utilisateur pour ce champ) */ |
0337d704 | 149 | function SField($_fieldFormName, $_fieldDbName='', $_fieldResultName='') |
150 | { | |
151 | $this->fieldFormName = $_fieldFormName; | |
152 | $this->fieldDbName = $_fieldDbName; | |
153 | $this->fieldResultName = $_fieldResultName; | |
154 | $this->get_request(); | |
155 | } | |
156 | ||
157 | // }}} | |
158 | // {{{ function get_request() | |
159 | ||
eaf30d86 | 160 | /** récupérer la requête de l'utilisateur |
a7de4ef7 | 161 | * on met une chaîne vide si le champ n'a pas été complété */ |
0337d704 | 162 | function get_request() |
163 | { | |
5e2307dc | 164 | $this->value = trim(Env::v($this->fieldFormName)); |
0337d704 | 165 | } |
166 | ||
167 | // }}} | |
168 | // {{{ function get_where_statement() | |
94f6c381 | 169 | |
a7de4ef7 | 170 | /** récupérer la clause correspondant au champ dans la clause WHERE de la requête |
eaf30d86 | 171 | * on parcourt l'ensemble des champs de la bdd de $fieldDbName et on associe |
a7de4ef7 | 172 | * à chacun d'entre eux une clause spécifique |
173 | * la clause totale et la disjonction de ces clauses spécifiques */ | |
0337d704 | 174 | function get_where_statement() |
175 | { | |
176 | if ($this->value=='') { | |
177 | return false; | |
178 | } | |
179 | $res = implode(' OR ', array_filter(array_map(array($this, 'get_single_where_statement'), $this->fieldDbName))); | |
180 | return empty($res) ? '' : "($res)"; | |
181 | } | |
182 | ||
183 | // }}} | |
184 | // {{{ function get_order_statement() | |
94f6c381 | 185 | |
a7de4ef7 | 186 | /** récupérer la clause correspondant au champ dans la clause ORDER BY de la requête |
187 | * utilisé par exemple pour placer d'abord le nom égal à la requête avant les approximations */ | |
0337d704 | 188 | function get_order_statement() |
189 | { | |
190 | return false; | |
191 | } | |
192 | ||
193 | // }}} | |
194 | // {{{ function get_select_statement() | |
195 | ||
196 | function get_select_statement() | |
197 | { | |
198 | return false; | |
199 | } | |
200 | ||
201 | // }}} | |
202 | // {{{ function get_url() | |
203 | ||
a7de4ef7 | 204 | /** récupérer le bout d'URL correspondant aux paramètres permettant d'imiter une requête d'un |
205 | * utilisateur assignant la valeur $this->value à ce champ */ | |
0337d704 | 206 | function get_url() |
207 | { | |
208 | if (empty($this->value)) { | |
209 | return false; | |
210 | } else { | |
211 | return $this->fieldFormName.'='.urlencode($this->value); | |
212 | } | |
213 | } | |
214 | ||
215 | // }}} | |
216 | } | |
217 | ||
218 | // }}} | |
219 | // {{{ class QuickSearch [Google Like] | |
220 | ||
221 | class QuickSearch extends SField | |
222 | { | |
223 | // {{{ properties | |
94f6c381 | 224 | |
0337d704 | 225 | /** stores tokens */ |
226 | var $strings; | |
227 | /** stores numerical ranges */ | |
228 | var $ranges; | |
bbf610b8 | 229 | /** stores admin searches */ |
230 | var $email; | |
231 | var $ip; | |
9e7e21fc GB |
232 | /** stores phone number */ |
233 | var $phone; | |
0337d704 | 234 | |
235 | // }}} | |
236 | // {{{ constructor | |
94f6c381 | 237 | |
0337d704 | 238 | function QuickSearch($_fieldFormName) |
239 | { | |
240 | $this->fieldFormName = $_fieldFormName; | |
241 | $this->get_request(); | |
a14159bf | 242 | if (preg_match(":[\]\[{}~/§_`|%$^=+]|\*\*:u", $this->value)) { |
a7de4ef7 | 243 | new ThrowError('Un champ contient un caractère interdit rendant la recherche impossible.'); |
0337d704 | 244 | } |
245 | } | |
246 | ||
247 | // }}} | |
248 | // {{{ function isempty() | |
249 | ||
250 | function isempty() | |
251 | { | |
9e7e21fc | 252 | return empty($this->strings) && empty($this->ranges) && empty($this->email) && empty($this->ip) && empty($this->phone); |
0337d704 | 253 | } |
254 | ||
255 | // }}} | |
256 | // {{{ function get_request() | |
94f6c381 | 257 | |
0337d704 | 258 | function get_request() |
259 | { | |
94f6c381 | 260 | parent::get_request(); |
261 | $s = replace_accent(trim($this->value)); | |
bbf610b8 | 262 | $r = $s = str_replace('*','%',$s); |
263 | ||
264 | if (S::has_perms() && strpos($s, '@') !== false) { | |
265 | $this->email = $s; | |
266 | } else if (S::has_perms() && preg_match('/[0-9]+\.([0-9]+|%)\.([0-9]+|%)\.([0-9]+|%)/', $s)) { | |
267 | $this->ip = $s; | |
268 | } | |
269 | if ($this->email || $this->ip) { | |
270 | $this->strings = $this->ranges = array(); | |
271 | return; | |
272 | } | |
273 | ||
94f6c381 | 274 | $s = preg_replace('!\d+!', ' ', $s); |
94f6c381 | 275 | $this->strings = preg_split("![^a-zA-Z%]+!",$s, -1, PREG_SPLIT_NO_EMPTY); |
8b035281 | 276 | if (count($this->strings) > 5) { |
d7610c35 | 277 | Platal::page()->trigWarning("Tu as indiqué trop d'éléments dans ta recherche, seuls les 5 premiers seront pris en compte"); |
8b035281 FB |
278 | $this->strings = array_slice($this->strings, 0, 5); |
279 | } | |
94f6c381 | 280 | |
bbf610b8 | 281 | $s = preg_replace('! *- *!', '-', $r); |
94f6c381 | 282 | $s = preg_replace('!([<>]) *!', ' \1', $s); |
283 | $s = preg_replace('![^0-9\-><]!', ' ', $s); | |
284 | $s = preg_replace('![<>\-] !', '', $s); | |
285 | $ranges = preg_split('! +!', $s, -1, PREG_SPLIT_NO_EMPTY); | |
286 | $this->ranges=Array(); | |
287 | foreach ($ranges as $r) { | |
288 | if (preg_match('!^([<>]\d{4}|\d{4}(-\d{4})?)$!', $r)) $this->ranges[] = $r; | |
289 | } | |
9e7e21fc GB |
290 | |
291 | $t = preg_replace('!(\d{4}-\d{4}|>\d{4}|<\d{4})!', '', $s); | |
292 | $t = preg_replace('![<>\- ]!', '', $t); | |
293 | if (strlen($t) > 4) { | |
294 | $this->phone = $t; | |
295 | } | |
0337d704 | 296 | } |
297 | ||
298 | // }}} | |
299 | // {{{ function get_where_statement() | |
94f6c381 | 300 | |
0337d704 | 301 | function get_where_statement() |
302 | { | |
94f6c381 | 303 | $where = Array(); |
304 | foreach ($this->strings as $i => $s) { | |
c16b5562 | 305 | if (Env::i('with_soundex') && strlen($s) > 1) { |
94f6c381 | 306 | $t = soundex_fr($s); |
307 | $where[] = "sn$i.soundex = '$t'"; | |
b8c2ada6 SJ |
308 | } elseif (Env::i('exact')) { |
309 | $where[] = "sn$i.token = '$s'"; | |
94f6c381 | 310 | } else { |
311 | $t = str_replace('*', '%', $s).'%'; | |
312 | $t = str_replace('%%', '%', $t); | |
313 | $where[] = "sn$i.token LIKE '$t'"; | |
314 | } | |
315 | } | |
316 | ||
317 | $wherep = Array(); | |
318 | foreach ($this->ranges as $r) { | |
319 | if (preg_match('!^\d{4}$!', $r)) { | |
320 | $wherep[] = "u.promo=$r"; | |
321 | } elseif (preg_match('!^(\d{4})-(\d{4})$!', $r, $matches)) { | |
322 | $p1=min(intval($matches[1]), intval($matches[2])); | |
323 | $p2=max(intval($matches[1]), intval($matches[2])); | |
324 | $wherep[] = "(u.promo>=$p1 AND u.promo<=$p2)"; | |
325 | } elseif (preg_match('!^<(\d{4})!', $r, $matches)) { | |
326 | $wherep[] = "u.promo<={$matches[1]}"; | |
327 | } elseif (preg_match('!^>(\d{4})!', $r, $matches)) { | |
328 | $wherep[] = "u.promo>={$matches[1]}"; | |
329 | } | |
330 | } | |
331 | if (!empty($wherep)) { | |
0337d704 | 332 | $where[] = '('.join(' OR ',$wherep).')'; |
333 | } | |
bbf610b8 | 334 | if (!empty($this->email)) { |
335 | $where[] = 'ems.email = ' . XDB::escape($this->email); | |
336 | } | |
337 | if (!empty($this->ip)) { | |
9797734d | 338 | $ip = ip_to_uint($this->ip); |
2dc1c17f | 339 | $where[] = "( ls.ip = $ip OR ls.forward_ip = $ip ) AND ls.suid = 0"; |
bbf610b8 | 340 | } |
9e7e21fc GB |
341 | if (!empty($this->phone)){ |
342 | require_once("profil.func.inc.php"); | |
343 | $phone = format_phone_number($this->phone) . "%"; | |
344 | $where[] = 't.search_tel LIKE ' . XDB::escape($phone); | |
345 | } | |
3b2f9d11 | 346 | |
94f6c381 | 347 | return join(" AND ", $where); |
0337d704 | 348 | } |
349 | ||
350 | // }}} | |
351 | // {{{ get_select_statement | |
352 | function get_select_statement() | |
353 | { | |
354 | $join = ""; | |
c0c9f772 | 355 | $and = ''; |
c16b5562 | 356 | $uniq = ''; |
94f6c381 | 357 | foreach ($this->strings as $i => $s) { |
c0c9f772 | 358 | if (!S::logged()) { |
359 | $and = "AND FIND_IN_SET('public', sn$i.flags)"; | |
c16b5562 | 360 | } |
361 | $myu = str_replace('snv', "sn$i", $uniq); | |
362 | $join .= "INNER JOIN search_name AS sn$i ON (u.user_id = sn$i.uid $and$myu)\n"; | |
363 | $uniq .= " AND sn$i.token != snv.token"; | |
0337d704 | 364 | } |
bbf610b8 | 365 | if (!empty($this->email)) { |
366 | $join .= "LEFT JOIN emails AS ems ON (ems.uid = u.user_id)"; | |
367 | } | |
368 | if (!empty($this->ip)) { | |
369 | $join .= "INNER JOIN logger.sessions AS ls ON (ls.uid = u.user_id)\n"; | |
370 | } | |
9e7e21fc GB |
371 | if (!empty($this->phone)) { |
372 | if (!S::logged()) { | |
b235d980 | 373 | $join .= "INNER JOIN profile_phones AS t ON (t.uid = u.user_id AND t.pub = 'public')"; |
9e7e21fc | 374 | } else { |
b235d980 | 375 | $join .= "INNER JOIN profile_phones AS t ON (t.uid = u.user_id)"; |
9e7e21fc GB |
376 | } |
377 | } | |
0337d704 | 378 | return $join; |
379 | } | |
380 | // }}} | |
381 | // {{{ function get_order_statement() | |
94f6c381 | 382 | |
0337d704 | 383 | function get_order_statement() |
384 | { | |
385 | return false; | |
386 | } | |
387 | ||
388 | // }}} | |
389 | // {{{ function get_score_statement | |
94f6c381 | 390 | |
0337d704 | 391 | function get_score_statement() |
392 | { | |
393 | $sum = array('0'); | |
94f6c381 | 394 | foreach ($this->strings as $i => $s) { |
0337d704 | 395 | $sum[] .= "SUM(sn$i.score + IF('$s'=sn$i.token,5,0))"; |
396 | } | |
397 | return join('+', $sum).' AS score'; | |
398 | } | |
399 | ||
400 | // }}} | |
401 | } | |
402 | ||
403 | // }}} | |
404 | // {{{ class NumericSField [Integer fields] | |
405 | ||
a7de4ef7 | 406 | /** classe de champ numérique entier (offset par exemple) |
0337d704 | 407 | */ |
408 | class NumericSField extends SField | |
409 | { | |
410 | // {{{ constructor | |
94f6c381 | 411 | |
0337d704 | 412 | /** constructeur |
a7de4ef7 | 413 | * (récupère la requête de l'utilisateur pour ce champ) */ |
0337d704 | 414 | function NumericSField($_fieldFormName) |
415 | { | |
416 | $this->fieldFormName = $_fieldFormName; | |
417 | $this->get_request(); | |
418 | } | |
419 | ||
420 | // }}} | |
421 | // {{{ function get_request() | |
94f6c381 | 422 | |
a7de4ef7 | 423 | /** récupère la requête de l'utilisateur et échoue s'il ne s'agit pas d'un entier */ |
0337d704 | 424 | function get_request() |
425 | { | |
426 | parent::get_request(); | |
427 | if (empty($this->value)) { | |
428 | $this->value = 0; | |
429 | } | |
430 | if (!preg_match("/^[0-9]+$/", $this->value)) { | |
a7de4ef7 | 431 | new ThrowError('Un champ numérique contient des caractères alphanumériques.'); |
0337d704 | 432 | } |
433 | } | |
94f6c381 | 434 | |
0337d704 | 435 | // }}} |
436 | } | |
437 | ||
438 | // }}} | |
439 | // {{{ class RefSField [ ??? ] | |
440 | ||
441 | class RefSField extends SField | |
442 | { | |
443 | // {{{ properties | |
94f6c381 | 444 | |
0337d704 | 445 | var $refTable; |
446 | var $refAlias; | |
447 | var $refCondition; | |
448 | var $exact = true; | |
449 | ||
450 | // }}} | |
451 | // {{{ constructor | |
452 | ||
453 | function RefSField($_fieldFormName, $_fieldDbName='', $_refTable, $_refAlias, $_refCondition, $_exact=true) | |
454 | { | |
455 | $this->fieldFormName = $_fieldFormName; | |
456 | $this->fieldDbName = $_fieldDbName; | |
457 | $this->refTable = $_refTable; | |
458 | $this->refAlias = $_refAlias; | |
459 | $this->refCondition = $_refCondition; | |
460 | $this->exact = $_exact; | |
461 | $this->get_request(); | |
462 | } | |
463 | ||
464 | // }}} | |
465 | // {{{ function get_request() | |
94f6c381 | 466 | |
0337d704 | 467 | function get_request() { |
468 | parent::get_request(); | |
469 | if ($this->value=='00' || $this->value=='0') { | |
470 | $this->value=''; | |
471 | } | |
472 | } | |
473 | ||
474 | // }}} | |
475 | // {{{ function too_large() | |
476 | ||
477 | function too_large() | |
478 | { | |
479 | return ($this->value==''); | |
480 | } | |
481 | ||
482 | // }}} | |
483 | // {{{ function compare() | |
484 | ||
485 | function compare() | |
486 | { | |
487 | $val = addslashes($this->value); | |
b8c2ada6 | 488 | if (Env::i('exact')) return "='$val'"; |
0337d704 | 489 | return $this->exact ? "='$val'" : " LIKE '%$val%'"; |
490 | } | |
491 | ||
492 | // }}} | |
493 | // {{{ function get_single_match_statement() | |
494 | ||
495 | function get_single_match_statement($field) | |
496 | { | |
497 | return $field.$this->compare(); | |
498 | } | |
499 | ||
500 | // }}} | |
501 | // {{{ function get_single_where_statement() | |
502 | ||
503 | function get_single_where_statement($field) | |
504 | { | |
505 | return $this->refTable=='' ? $this->get_single_match_statement($field) : false; | |
506 | } | |
507 | ||
508 | // }}} | |
509 | // {{{ function get_select_statement() | |
510 | ||
511 | function get_select_statement() | |
512 | { | |
513 | if ($this->value=='' || $this->refTable=='') { | |
514 | return false; | |
515 | } | |
516 | $res = implode(' OR ', array_filter(array_map(array($this, 'get_single_match_statement'), $this->fieldDbName))); | |
137e819f FB |
517 | if (is_array($this->refTable)) { |
518 | foreach ($this->refTable as $i => $refT) | |
519 | $last = $i; | |
520 | $inner = ""; | |
521 | foreach ($this->refTable as $i => $refT) | |
522 | $inner .= " INNER JOIN {$refT} AS {$this->refAlias[$i]} ON ({$this->refCondition[$i]} ".(($i == $last)?"AND ($res) ":"").")\n"; | |
523 | return $inner; | |
524 | } else { | |
525 | return "INNER JOIN {$this->refTable} AS {$this->refAlias} ON ({$this->refCondition} AND ($res) )"; | |
526 | } | |
0337d704 | 527 | } |
528 | ||
529 | // }}} | |
530 | } | |
531 | ||
532 | // }}} | |
56670b6a | 533 | |
534 | // {{{ class RefSFieldMultipleTable | |
93f3f260 GB |
535 | class PhoneSField extends RefSField |
536 | { | |
537 | function PhoneSField($_fieldFormName, $_fieldDbName='', $_refTable, $_refAlias, $_refCondition) | |
538 | { | |
539 | $this->RefSField($_fieldFormName, $_fieldDbName, $_refTable, $_refAlias, $_refCondition, true); | |
540 | } | |
541 | ||
542 | function get_request() | |
543 | { | |
544 | require_once("profil.func.inc.php"); | |
545 | $this->value = trim(Env::v($this->fieldFormName)); | |
546 | $this->value = format_phone_number($this->value); | |
547 | } | |
548 | ||
549 | function compare() | |
550 | { | |
551 | return " LIKE '" . addslashes($this->value) . "%'"; | |
552 | } | |
553 | } | |
554 | ||
92c3f9e5 GB |
555 | class IndexSField extends RefSField |
556 | { | |
557 | function IndexSField($_fieldFormName, $_fieldDbName='', $_refTable, $_refAlias, $_refCondition) | |
558 | { | |
559 | $this->RefSField($_fieldFormName, $_fieldDbName, $_refTable, $_refAlias, $_refCondition, true); | |
560 | } | |
561 | ||
562 | function get_request() | |
563 | { | |
564 | $this->value = trim(Env::v($this->fieldFormName)); | |
565 | } | |
566 | } | |
567 | ||
56670b6a | 568 | class MapSField extends RefSField |
569 | { | |
94f6c381 | 570 | var $mapId; |
571 | ||
56670b6a | 572 | function MapSField($_fieldFormName, $_fieldDbName='', $_refTable, $_refAlias, $_refCondition, $_mapId=false) |
573 | { | |
350e6926 | 574 | if ($_mapId === false) |
5e2307dc | 575 | $this->mapId = Env::v($_fieldFormName, ''); |
350e6926 | 576 | else |
577 | $this->mapId = $_mapId; | |
a2aa8436 | 578 | $this->value = $this->mapId; |
350e6926 | 579 | $this->RefSField($_fieldFormName, $_fieldDbName, $_refTable, $_refAlias, $_refCondition, true, false); |
56670b6a | 580 | } |
eaf30d86 | 581 | |
56670b6a | 582 | function get_select_statement() |
583 | { | |
350e6926 | 584 | if ($this->mapId === '') return false; |
56670b6a | 585 | $res = implode(' OR ', array_filter(array_map(array($this, 'get_single_match_statement'), $this->fieldDbName))); |
586 | foreach ($this->refTable as $i => $refT) | |
587 | $last = $i; | |
588 | $inner = ""; | |
589 | foreach ($this->refTable as $i => $refT) | |
590 | $inner .= " INNER JOIN {$refT} AS {$this->refAlias[$i]} ON ({$this->refCondition[$i]} ".(($i == $last)?"AND ($res) ":"").")"; | |
591 | return $inner; | |
592 | } | |
593 | function get_request() | |
594 | { | |
350e6926 | 595 | $this->value = $this->mapId; |
56670b6a | 596 | } |
597 | } | |
598 | ||
0337d704 | 599 | // {{{ class RefWithSoundexSField [ ??? ] |
600 | ||
601 | class RefWithSoundexSField extends RefSField | |
602 | { | |
603 | // {{{ function compare() | |
94f6c381 | 604 | |
0337d704 | 605 | function compare() |
606 | { | |
94f6c381 | 607 | return "='".soundex_fr($this->value)."'"; |
0337d704 | 608 | } |
609 | ||
610 | // }}} | |
611 | } | |
612 | ||
613 | // }}} | |
614 | // {{{ class StringSField [String fields] | |
615 | ||
616 | /** classe de champ texte (nom par exemple) | |
617 | */ | |
618 | class StringSField extends SField | |
619 | { | |
620 | // {{{ function get_request() | |
94f6c381 | 621 | |
a7de4ef7 | 622 | /** récupère la requête de l'utilisateur et échoue si la chaîne contient des caractères |
0337d704 | 623 | * interdits */ |
624 | function get_request() | |
625 | { | |
626 | parent::get_request(); | |
a14159bf | 627 | if (preg_match(":[\]\[<>{}~/§_`|%$^=+]|\*\*:u", $this->value)) { |
a7de4ef7 | 628 | new ThrowError('Un champ contient un caractère interdit rendant la recherche impossible.'); |
0337d704 | 629 | } |
630 | } | |
631 | ||
632 | // }}} | |
633 | // {{{ function length() | |
634 | ||
a7de4ef7 | 635 | /** donne la longueur de la requête de l'utilisateur |
636 | * (au sens strict i.e. pas d'* ni d'espace ou de trait d'union -> les contraintes réellement | |
637 | * imposées par l'utilisateur) */ | |
0337d704 | 638 | function length() |
639 | { | |
a14159bf | 640 | $cleaned = replace_accent(strtolower($this->value)); |
641 | $length = strlen(ereg_replace('[a-z0-9]', '', $cleaned)); | |
642 | return strlen($this->value) - $length; | |
0337d704 | 643 | } |
644 | ||
645 | // }}} | |
646 | // {{{ function too_large() | |
647 | ||
648 | function too_large() | |
649 | { | |
650 | return ($this->length()<2); | |
651 | } | |
652 | ||
653 | // }}} | |
654 | // {{{ function get_single_where_statement() | |
655 | ||
a7de4ef7 | 656 | /** clause WHERE correspondant à un champ de la bdd et à ce champ de formulaire |
657 | * @param field nom de champ de la bdd concerné par la clause */ | |
0337d704 | 658 | function get_single_where_statement($field) |
659 | { | |
b8c2ada6 SJ |
660 | $val = addslashes($this->value); |
661 | if (Env::i('exact')) return "$field = '$val'"; | |
662 | $regexp = strtr($val, '-*', '_%'); | |
0337d704 | 663 | return "$field LIKE '$regexp%'"; |
664 | } | |
665 | ||
666 | // }}} | |
667 | // {{{ function get_order_statement() | |
668 | ||
a7de4ef7 | 669 | /** clause ORDER BY correspondant à ce champ de formulaire */ |
0337d704 | 670 | function get_order_statement() |
671 | { | |
672 | if ($this->value!='' && $this->fieldResultName!='') { | |
673 | return "{$this->fieldResultName}!='".addslashes($this->value)."'"; | |
674 | } else { | |
675 | return false; | |
676 | } | |
677 | } | |
678 | ||
679 | // }}} | |
680 | } | |
681 | ||
682 | // }}} | |
683 | // {{{ class NameSField [Names : serach 'n%' + '% b'] | |
684 | ||
685 | /** classe pour les noms : on cherche en plus du like 'foo%' le like '% foo' (particules) | |
686 | +*/ | |
687 | class NameSField extends StringSField | |
688 | { | |
689 | // {{{ function get_single_where_statement() | |
94f6c381 | 690 | |
0337d704 | 691 | function get_single_where_statement($field) |
692 | { | |
b8c2ada6 SJ |
693 | $val = addslashes($this->value); |
694 | if (Env::i('exact')) return "$field = '$val'"; | |
695 | $regexp = strtr($val, '-*', '_%'); | |
0337d704 | 696 | return "$field LIKE '$regexp%' OR $field LIKE '% $regexp%' OR $field LIKE '%-$regexp%'"; |
697 | } | |
698 | ||
699 | // }}} | |
700 | // {{{ function get_order_statement() | |
94f6c381 | 701 | |
0337d704 | 702 | function get_order_statement() |
703 | { | |
704 | if ($this->value!='' && $this->fieldResultName!='') { | |
705 | return "{$this->fieldResultName} NOT LIKE '".addslashes($this->value)."'"; | |
706 | } else { | |
707 | return false; | |
708 | } | |
709 | } | |
710 | ||
711 | // }}} | |
712 | } | |
713 | ||
714 | // }}} | |
715 | // {{{ class StringWithSoundexSField [Strings + soundex] | |
716 | ||
717 | /** classe de champ texte avec soundex (nom par exemple) | |
718 | */ | |
719 | class StringWithSoundexSField extends StringSField | |
720 | { | |
721 | // {{{ function get_single_where_statement() | |
722 | ||
a7de4ef7 | 723 | /** clause WHERE correspondant à un champ de la bdd et à ce champ de formulaire |
724 | * @param field nom de champ de la bdd concerné par la clause */ | |
0337d704 | 725 | function get_single_where_statement($field) { |
726 | return $field.'="'.soundex_fr($this->value).'"'; | |
727 | } | |
728 | ||
729 | // }}} | |
730 | } | |
731 | ||
732 | // }}} | |
733 | // {{{ class PromoSField [Prom field] | |
734 | ||
735 | /** classe de champ de promotion */ | |
736 | class PromoSField extends SField | |
737 | { | |
738 | // {{{ properties | |
94f6c381 | 739 | |
a7de4ef7 | 740 | /** opérateur de comparaison (<,>,=) de la promo utilisé pour ce champ de formulaire */ |
0337d704 | 741 | var $compareField; |
742 | ||
743 | // }}} | |
744 | // {{{ constructor | |
745 | ||
eaf30d86 | 746 | /** constructeur |
a7de4ef7 | 747 | * compareField est un champ de formulaire très simple qui ne sert qu'à la construction de la |
0337d704 | 748 | * clause WHERE de la promo */ |
749 | function PromoSField($_fieldFormName, $_compareFieldFormName, $_fieldDbName, $_fieldResultName) | |
750 | { | |
751 | parent::SField($_fieldFormName, $_fieldDbName, $_fieldResultName); | |
752 | $this->compareField = new SField($_compareFieldFormName); | |
753 | } | |
754 | ||
755 | // }}} | |
756 | // {{{ function get_request() | |
757 | ||
a7de4ef7 | 758 | /** récupère la requête utilisateur et échoue si le champ du formulaire ne représente pas une |
759 | * promotion (nombre à 4 chiffres) */ | |
0337d704 | 760 | function get_request() |
761 | { | |
762 | parent::get_request(); | |
763 | if (preg_match('/^[0-9]{2}$/', $this->value)){ | |
764 | $this->value = intval($this->value) + 1900; | |
765 | } | |
766 | if (!(empty($this->value) or preg_match('/^[0-9]{4}$/', $this->value))) { | |
a7de4ef7 | 767 | new ThrowError('La promotion est une année à quatre chiffres.'); |
0337d704 | 768 | } |
769 | } | |
770 | ||
771 | // }}} | |
772 | // {{{ function is_a_single_promo() | |
773 | ||
a7de4ef7 | 774 | /** teste si la requête est de la forme =promotion -> contrainte forte imposée -> elle suffit |
775 | * pour autoriser un affichage des résultats alors que <promotion est insuffisant */ | |
0337d704 | 776 | function is_a_single_promo() |
777 | { | |
778 | return ($this->compareField->value=='=' && $this->value!=''); | |
779 | } | |
780 | ||
781 | // }}} | |
782 | // {{{ function too_large() | |
783 | ||
784 | function too_large() | |
785 | { | |
786 | return !$this->is_a_single_promo(); | |
787 | } | |
788 | ||
789 | // }}} | |
790 | // {{{ function get_single_where_statement() | |
791 | ||
a7de4ef7 | 792 | /** clause WHERE correspondant à ce champ */ |
0337d704 | 793 | function get_single_where_statement($field) |
794 | { | |
795 | return $field.$this->compareField->value.$this->value; | |
796 | } | |
797 | ||
798 | // }}} | |
799 | // {{{ function get_url() | |
800 | ||
a7de4ef7 | 801 | /** récupérer le bout d'URL correspondant aux paramètres permettant d'imiter une requête |
802 | * d'un utilisateur assignant la valeur $this->value à ce champ et assignant l'opérateur de | |
803 | * comparaison adéquat */ | |
0337d704 | 804 | function get_url() |
805 | { | |
806 | if (!($u=parent::get_url())) { | |
807 | return false; | |
808 | } | |
809 | return $u.'&'.$this->compareField->get_url(); | |
810 | } | |
811 | ||
812 | // }}} | |
813 | } | |
814 | ||
815 | // }}} | |
816 | // {{{ class SFieldGroup [Group fields] | |
817 | ||
818 | /** classe groupant des champs de formulaire de recherche */ | |
819 | class SFieldGroup | |
820 | { | |
821 | // {{{ properties | |
94f6c381 | 822 | |
a7de4ef7 | 823 | /** tableau des classes correspondant aux champs groupés */ |
0337d704 | 824 | var $fields; |
825 | /** type de groupe : ET ou OU */ | |
826 | var $and; | |
827 | ||
828 | // }}} | |
829 | // {{{ constuctor | |
830 | ||
831 | /** constructeur */ | |
832 | function SFieldGroup($_and, $_fields) | |
833 | { | |
834 | $this->fields = $_fields; | |
835 | $this->and = $_and; | |
63fac48e FB |
836 | foreach ($this->fields as $key=>&$field) { |
837 | if (is_null($field)) { | |
838 | unset($this->fields[$key]); | |
839 | } | |
840 | } | |
0337d704 | 841 | } |
842 | ||
843 | // }}} | |
844 | // {{{ function too_large() | |
845 | ||
846 | function too_large() | |
847 | { | |
848 | $b = true; | |
a2aa8436 | 849 | for ($i=0 ; $b && $i<count($this->fields) ; $i++) { |
63fac48e FB |
850 | if (!is_null($this->fields[$i])) { |
851 | $b = $b && $this->fields[$i]->too_large(); | |
852 | } | |
0337d704 | 853 | } |
854 | return $b; | |
855 | } | |
856 | ||
857 | // }}} | |
858 | // {{{ function field_get_select() | |
859 | ||
860 | function field_get_select($f) | |
861 | { | |
862 | return $f->get_select_statement(); | |
863 | } | |
864 | ||
865 | // }}} | |
866 | // {{{ function field_get_where() | |
867 | ||
a7de4ef7 | 868 | /** récupérer la clause WHERE d'un objet champ de recherche */ |
0337d704 | 869 | function field_get_where($f) |
870 | { | |
871 | return $f->get_where_statement(); | |
872 | } | |
873 | ||
874 | // }}} | |
875 | // {{{ function field_get_order() | |
876 | ||
a7de4ef7 | 877 | /** récupérer la clause ORDER BY d'un objet champ de recherche */ |
0337d704 | 878 | function field_get_order($f) |
879 | { | |
880 | return $f->get_order_statement(); | |
881 | } | |
882 | ||
883 | // }}} | |
884 | // {{{ function field_get_url() | |
885 | ||
a7de4ef7 | 886 | /** récupérer le bout d'URL correspondant à un objet champ de recherche */ |
0337d704 | 887 | function field_get_url($f) |
888 | { | |
889 | return $f->get_url(); | |
890 | } | |
94f6c381 | 891 | |
0337d704 | 892 | // }}} |
893 | // {{{ function get_select_statement() | |
894 | ||
895 | function get_select_statement() | |
896 | { | |
897 | return implode(' ', array_filter(array_map(array($this, 'field_get_select'), $this->fields))); | |
898 | } | |
899 | ||
900 | // }}} | |
901 | // {{{ function get_where_statement() | |
902 | ||
a7de4ef7 | 903 | /** récupérer la clause WHERE du groupe de champs = conjonction (ET) ou disjonction (OU) de |
904 | * clauses des champs élémentaires */ | |
0337d704 | 905 | function get_where_statement() |
906 | { | |
907 | $joinText = $this->and ? ' AND ' : ' OR '; | |
908 | $res = implode($joinText, array_filter(array_map(array($this, 'field_get_where'), $this->fields))); | |
909 | return $res == '' ? '' : "($res)"; | |
910 | } | |
911 | ||
912 | // }}} | |
913 | // {{{ function get_order_statement() | |
914 | ||
a7de4ef7 | 915 | /** récupérer la clause ORDER BY du groupe de champs = conjonction (ET) ou disjonction (OU) de |
916 | * clauses des champs élémentaires */ | |
0337d704 | 917 | function get_order_statement() |
918 | { | |
919 | $order = array_filter(array_map(array($this, 'field_get_order'), $this->fields)); | |
920 | return count($order)>0 ? implode(',', $order) : false; | |
921 | } | |
922 | ||
923 | // }}} | |
924 | // {{{ function get_url() | |
925 | ||
a7de4ef7 | 926 | /** récupérer le bout d'URL correspondant à ce groupe de champs = concaténation des bouts d'URL |
927 | * des champs élémentaires */ | |
0337d704 | 928 | function get_url($others=Array()) |
929 | { | |
930 | $url = array_filter(array_map(array($this, 'field_get_url'), $this->fields)); | |
931 | foreach ($url as $key=>$val) { | |
932 | if (empty($val)) { | |
933 | unset($url[$key]); | |
934 | } | |
935 | } | |
936 | foreach ($others as $key=>$val) { | |
937 | if (!empty($val)) { | |
938 | $url[] = "$key=$val"; | |
939 | } | |
940 | } | |
941 | return count($url)>0 ? implode('&', $url) : false; | |
942 | } | |
943 | ||
944 | // }}} | |
945 | } | |
946 | ||
947 | // }}} | |
948 | ||
a7de4ef7 | 949 | // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8: |
0337d704 | 950 | ?> |