2 /***************************************************************************
3 * Copyright (C) 2003-2008 Polytechnique.org *
4 * http://opensource.polytechnique.org/ *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
22 class User
extends PlUser
24 private $_profile_fetched = false
;
25 private $_profile = null
;
27 // Implementation of the login to uid method.
28 protected function getLogin($login)
32 if ($login instanceof Profile
) {
33 $this->_profile
= $login;
34 $this->_profile_fetched
= true
;
35 $res = XDB
::query('SELECT ap.uid
36 FROM account_profiles AS ap
37 WHERE ap.pid = {?} AND FIND_IN_SET(\'owner\', perms)',
39 if ($res->numRows()) {
40 return $res->fetchOneCell();
42 throw new UserNotFoundException();
45 // If $data is an integer, fetches directly the result.
46 if (is_numeric($login)) {
47 $res = XDB
::query('SELECT a.uid
49 WHERE a.uid = {?}', $login);
50 if ($res->numRows()) {
51 return $res->fetchOneCell();
54 throw new UserNotFoundException();
57 // Checks whether $login is a valid hruid or not.
58 $res = XDB
::query('SELECT a.uid
60 WHERE a.hruid = {?}', $login);
61 if ($res->numRows()) {
62 return $res->fetchOneCell();
65 // From now, $login can only by an email alias, or an email redirection.
66 // If it doesn't look like a valid address, appends the plat/al's main domain.
67 $login = trim(strtolower($login));
68 if (strstr($login, '@') === false
) {
69 $login = $login . '@' . $globals->mail
->domain
;
72 // Checks if $login is a valid alias on the main domains.
73 list($mbox, $fqdn) = explode('@', $login);
74 if ($fqdn == $globals->mail
->domain ||
$fqdn == $globals->mail
->domain2
) {
75 $res = XDB
::query('SELECT a.uid
77 INNER JOIN aliases AS al ON (al.id = a.uid AND al.type IN (\'alias\', \'a_vie\'))
78 WHERE al.alias = {?}', $mbox);
79 if ($res->numRows()) {
80 return $res->fetchOneCell();
83 /** TODO: implements this by inspecting the profile.
84 if (preg_match('/^(.*)\.([0-9]{4})$/u', $mbox, $matches)) {
85 $res = XDB::query('SELECT a.uid
87 INNER JOIN aliases AS al ON (al.id = a.uid AND al.type IN ('alias', 'a_vie'))
88 WHERE al.alias = {?} AND a.promo = {?}', $matches[1], $matches[2]);
89 if ($res->numRows() == 1) {
90 return $res->fetchOneCell();
94 throw new UserNotFoundException();
97 // Looks for $login as an email alias from the dedicated alias domain.
98 if ($fqdn == $globals->mail
->alias_dom ||
$fqdn == $globals->mail
->alias_dom2
) {
99 $res = XDB
::query("SELECT redirect
100 FROM virtual_redirect
101 INNER JOIN virtual USING(vid)
102 WHERE alias = {?}", $mbox . '@' . $globals->mail
->alias_dom
);
103 if ($redir = $res->fetchOneCell()) {
104 // We now have a valid alias, which has to be translated to an hruid.
105 list($alias, $alias_fqdn) = explode('@', $redir);
106 $res = XDB
::query("SELECT a.uid
108 LEFT JOIN aliases AS al ON (al.id = a.uid AND al.type IN ('alias', 'a_vie'))
109 WHERE al.alias = {?}", $alias);
110 if ($res->numRows()) {
111 return $res->fetchOneCell();
115 throw new UserNotFoundException();
118 // Otherwise, we do suppose $login is an email redirection.
119 $res = XDB
::query("SELECT a.uid
121 LEFT JOIN emails AS e ON (e.uid = a.uid)
122 WHERE e.email = {?}", $login);
123 if ($res->numRows() == 1) {
124 return $res->fetchOneCell();
127 throw new UserNotFoundException($res->fetchColumn(1));
130 // Implementation of the data loader.
131 protected function loadMainFields()
133 if ($this->hruid
!== null
&& $this->forlife
!== null
134 && $this->bestalias
!== null
&& $this->display_name
!== null
135 && $this->full_name
!== null
&& $this->perms
!== null
136 && $this->gender
!== null
&& $this->email_format
!== null
) {
141 /** TODO: promo stuff again */
142 /** TODO: fix perms field to fit new perms system */
143 $res = XDB
::query("SELECT a.hruid, a.registration_date,
144 CONCAT(af.alias, '@{$globals->mail->domain}') AS forlife,
145 CONCAT(ab.alias, '@{$globals->mail->domain}') AS bestalias,
146 a.full_name, a.display_name, a.sex = 'female' AS gender,
147 IF(a.state = 'active', at.perms, '') AS perms,
148 a.email_format, a.is_admin, a.state, a.type, a.skin,
149 FIND_IN_SET('watch', a.flags) AS watch, a.comment,
150 a.weak_password IS NOT NULL AS weak_access,
151 a.token IS NOT NULL AS token_access
153 INNER JOIN account_types AS at ON (at.type = a.type)
154 LEFT JOIN aliases AS af ON (af.id = a.uid AND af.type = 'a_vie')
155 LEFT JOIN aliases AS ab ON (ab.id = a.uid AND FIND_IN_SET('bestalias', ab.flags))
156 WHERE a.uid = {?}", $this->user_id
);
157 $this->fillFromArray($res->fetchOneAssoc());
160 // Specialization of the fillFromArray method, to implement hacks to enable
161 // lazy loading of user's main properties from the session.
162 // TODO(vzanotti): remove the conversion hacks once the old codebase will
163 // stop being used actively.
164 protected function fillFromArray(array $values)
166 // It might happen that the 'user_id' field is called uid in some places
167 // (eg. in sessions), so we hard link uid to user_id to prevent useless
169 if (!isset($values['user_id']) && isset($values['uid'])) {
170 $values['user_id'] = $values['uid'];
173 // Also, if display_name and full_name are not known, but the user's
174 // surname and last name are, we can construct the former two.
175 if (isset($values['prenom']) && isset($values['nom'])) {
176 if (!isset($values['display_name'])) {
177 $values['display_name'] = ($values['prenom'] ?
$values['prenom'] : $values['nom']);
179 if (!isset($values['full_name'])) {
180 $values['full_name'] = $values['prenom'] . ' ' . $values['nom'];
184 // We also need to convert the gender (usually named "femme"), and the
185 // email format parameter (valued "texte" instead of "text").
186 if (isset($values['femme'])) {
187 $values['gender'] = (bool
) $values['femme'];
189 if (isset($values['mail_fmt'])) {
190 $values['email_format'] = $values['mail_fmt'];
193 parent
::fillFromArray($values);
196 // Specialization of the buildPerms method
197 // This function build 'generic' permissions for the user. It does not take
198 // into account page specific permissions (e.g X.net group permissions)
199 protected function buildPerms()
201 if (!is_null($this->perm_flags
)) {
204 if ($this->perms
=== null
) {
205 $this->loadMainFields();
207 $this->perm_flags
= self
::makePerms($this->perms
, $this->is_admin
);
210 // We do not want to store the password in the object.
211 // So, fetch it 'on demand'
212 public function password()
214 return XDB
::fetchOneCell('SELECT a.password
216 WHERE a.uid = {?}', $this->id());
219 /** Overload PlUser::promo(): there no promo defined for a user in the current
220 * schema. The promo is a field from the profile.
222 public function promo()
224 if (!$this->hasProfile()) {
227 return $this->profile()->promo();
230 /** Return the main profile attached with this account if any.
232 public function profile()
234 if (!$this->_profile_fetched
) {
235 $this->_profile_fetched
= true
;
236 $this->_profile
= Profile
::get($this);
238 return $this->_profile
;
241 /** Return true if the user has an associated profile.
243 public function hasProfile()
245 return !is_null($this->profile());
248 /** Get the email alias of the user.
250 public function emailAlias()
253 $data = $this->emailAliases($globals->mail
->alias_dom
);
254 if (count($data) > 0) {
255 return array_pop($data);
260 /** Get all the aliases the user belongs to.
262 public function emailAliases($domain = null
)
265 if (!is_null($domain)) {
266 $where = XDB
::format(' AND alias LIKE CONCAT("%@", {?})', $domain);
268 return XDB
::fetchColumn('SELECT v.alias
270 INNER JOIN virtual_redirect AS vr ON (v.vid = vr.vid)
271 WHERE (vr.redirect = {?} OR vr.redirect = {?})
273 $this->forlifeEmail(), $this->m4xForlifeEmail());
276 /** Get the alternative forlife email
277 * TODO: remove this uber-ugly hack. The issue is that you need to remove
278 * all @m4x.org addresses in virtual_redirect first.
279 * XXX: This is juste to make code more readable, to be remove as soon as possible
281 public function m4xForlifeEmail()
284 trigger_error('USING M4X FORLIFE', E_USER_NOTICE
);
285 return $this->login() . '@' . $globals->mail
->domain2
;
288 // Return permission flags for a given permission level.
289 public static function makePerms($perms, $is_admin)
291 $flags = new PlFlagSet($perms);
292 $flags->addFlag(PERMS_USER
);
294 $flags->addFlag(PERMS_ADMIN
);
299 // Implementation of the default user callback.
300 public static function _default_user_callback($login, $results)
302 $result_count = count($results);
303 if ($result_count == 0 ||
!S
::has_perms()) {
304 Platal
::page()->trigError("Il n'y a pas d'utilisateur avec l'identifiant : $login");
306 Platal
::page()->trigError("Il y a $result_count utilisateurs avec cet identifiant : " . join(', ', $results));
310 // Implementation of the static email locality checker.
311 public static function isForeignEmailAddress($email)
314 if (strpos($email, '@') === false
) {
318 list($user, $dom) = explode('@', $email);
319 return $dom != $globals->mail
->domain
&&
320 $dom != $globals->mail
->domain2
&&
321 $dom != $globals->mail
->alias_dom
&&
322 $dom != $globals->mail
->alias_dom2
;
326 // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8: