Merge commit 'origin/master' into fusionax
[platal.git] / modules / axletter.php
1 <?php
2 /***************************************************************************
3 * Copyright (C) 2003-2009 Polytechnique.org *
4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22 class AXLetterModule extends PLModule
23 {
24 function handlers()
25 {
26 return array(
27 'ax' => $this->make_hook('index', AUTH_COOKIE),
28 'ax/out' => $this->make_hook('out', AUTH_PUBLIC),
29 'ax/show' => $this->make_hook('show', AUTH_COOKIE),
30 'ax/edit' => $this->make_hook('submit', AUTH_MDP),
31 'ax/edit/cancel' => $this->make_hook('cancel', AUTH_MDP),
32 'ax/edit/valid' => $this->make_hook('valid', AUTH_MDP),
33 'admin/axletter' => $this->make_hook('admin', AUTH_MDP, 'admin'),
34 );
35 }
36
37 function handler_out(&$page, $hash = null)
38 {
39 if (!$hash) {
40 if (!S::logged()) {
41 return PL_DO_AUTH;
42 } else {
43 return $this->handler_index($page, 'out');
44 }
45 }
46 $this->load('axletter.inc.php');
47 $page->changeTpl('axletter/unsubscribe.tpl');
48 $page->assign('success', AXLetter::unsubscribe($hash, true));
49 }
50
51 function handler_index(&$page, $action = null)
52 {
53 $this->load('axletter.inc.php');
54
55 $page->changeTpl('axletter/index.tpl');
56 $page->setTitle('Envois de l\'AX');
57
58 switch ($action) {
59 case 'in': AXLetter::subscribe(); break;
60 case 'out': AXLetter::unsubscribe(); break;
61 }
62
63 $perm = AXLetter::hasPerms();
64 if ($perm) {
65 $res = XDB::query("SELECT * FROM axletter_ins");
66 $page->assign('count', $res->numRows());
67 $page->assign('new', AXLetter::awaiting());
68 }
69 $page->assign('axs', AXLetter::subscriptionState());
70 $page->assign('ax_list', AXLetter::listSent());
71 $page->assign('ax_rights', $perm);
72 }
73
74 function handler_submit(&$page, $action = null)
75 {
76 $this->load('axletter.inc.php');
77 if (!AXLetter::hasPerms()) {
78 return PL_FORBIDDEN;
79 }
80
81 $page->changeTpl('axletter/edit.tpl');
82
83 $saved = Post::i('saved');
84 $new = false;
85 $id = Post::i('id');
86 $short_name = trim(Post::v('short_name'));
87 $subject = trim(Post::v('subject'));
88 $title = trim(Post::v('title'));
89 $body = rtrim(Post::v('body'));
90 $signature = trim(Post::v('signature'));
91 $promo_min = Post::i('promo_min');
92 $promo_max = Post::i('promo_max');
93 $subset_to = preg_split("/[ ,;\:\n\r]+/", Post::v('subset_to'), -1, PREG_SPLIT_NO_EMPTY);
94 $subset = (count($subset_to) > 0);
95 $echeance = Post::has('echeance_date') ?
96 preg_replace('/^(\d\d\d\d)(\d\d)(\d\d)$/', '\1-\2-\3', Post::v('echeance_date')) . ' ' . Post::v('echeance_time')
97 : Post::v('echeance');
98 $echeance_date = Post::v('echeance_date');
99 $echeance_time = Post::v('echeance_time');
100
101 if (!$id) {
102 $res = XDB::query("SELECT * FROM axletter WHERE FIND_IN_SET('new', bits)");
103 if ($res->numRows()) {
104 extract($res->fetchOneAssoc(), EXTR_OVERWRITE);
105 $subset_to = ($subset ? explode("\n", $subset) : null);
106 $subset = (count($subset_to) > 0);
107 $saved = true;
108 } else {
109 XDB::execute("INSERT INTO axletter SET id = NULL");
110 $id = XDB::insertId();
111 }
112 if (!$echeance || $echeance == '0000-00-00 00:00:00') {
113 $saved = false;
114 $new = true;
115 }
116 } elseif (Post::has('valid')) {
117 S::assert_xsrf_token();
118
119 if (!$subject && $title) {
120 $subject = $title;
121 }
122 if (!$title && $subject) {
123 $title = $subject;
124 }
125 if (!$subject || !$title || !$body) {
126 $page->trigError("L'article doit avoir un sujet et un contenu");
127 Post::kill('valid');
128 }
129 if (($promo_min > $promo_max && $promo_max != 0)||
130 ($promo_min != 0 && ($promo_min <= 1900 || $promo_min >= 2020)) ||
131 ($promo_max != 0 && ($promo_max <= 1900 || $promo_max >= 2020)))
132 {
133 $page->trigError("L'intervalle de promotions n'est pas valide");
134 Post::kill('valid');
135 }
136 if (empty($short_name)) {
137 $page->trigError("L'annonce doit avoir un nom raccourci pour simplifier la navigation dans les archives");
138 Post::kill('valid');
139 } elseif (!preg_match('/^[a-z][-a-z0-9]*[a-z0-9]$/', $short_name)) {
140 $page->trigError("Le nom raccourci n'est pas valide, il doit comporter au moins 2 caractères et n'être composé "
141 . "que de chiffres, lettres et tirets");
142 Post::kill('valid');
143 } elseif ($short_name != Post::v('old_short_name')) {
144 $res = XDB::query("SELECT id FROM axletter WHERE short_name = {?}", $short_name);
145 if ($res->numRows() && $res->fetchOneCell() != $id) {
146 $page->trigError("Le nom $short_name est déjà utilisé, merci d'en choisir un autre");
147 $short_name = Post::v('old_short_name');
148 if (empty($short_name)) {
149 Post::kill('valid');
150 }
151 }
152 }
153
154 switch (@Post::v('valid')) {
155 case 'Aperçu':
156 $this->load('axletter.inc.php');
157 $al = new AXLetter(array($id, $short_name, $subject, $title, $body, $signature,
158 $promo_min, $promo_max, $subset, $echeance, 0, 'new'));
159 $al->toHtml($page, S::v('prenom'), S::v('nom'), S::v('femme'));
160 break;
161
162 case 'Confirmer':
163 XDB::execute("REPLACE INTO axletter
164 SET id = {?}, short_name = {?}, subject = {?}, title = {?}, body = {?},
165 signature = {?}, promo_min = {?}, promo_max = {?}, echeance = {?}, subset = {?}",
166 $id, $short_name, $subject, $title, $body, $signature, $promo_min, $promo_max, $echeance, $subset ? implode("\n", $subset_to) : null);
167 if (!$saved) {
168 global $globals;
169 $mailer = new PlMailer();
170 $mailer->setFrom("support@" . $globals->mail->domain);
171 $mailer->setSubject("Un nouveau projet d'email de l'AX vient d'être proposé");
172 $mailer->setTxtBody("Un nouvel email vient d'être rédigé en prévision d'un envoi prochain. Vous pouvez "
173 . "le modifier jusqu'à ce qu'il soit verrouillé pour l'envoi\n\n"
174 . "Le sujet de l'email : $subject\n"
175 . "L'échéance d'envoi est fixée à $echeance.\n"
176 . "L'email pourra néanmoins partir avant cette échéance si un administrateur de "
177 . "Polytechnique.org le valide.\n\n"
178 . "Pour modifier, valider ou annuler l'email :\n"
179 . "https://www.polytechnique.org/ax/edit\n"
180 . "-- \n"
181 . "Association Polytechnique.org\n");
182 $res = XDB::iterRow("SELECT IF(u.nom_usage != '', u.nom_usage, u.nom) AS nom,
183 u.prenom, a.alias AS bestalias
184 FROM axletter_rights AS ar
185 INNER JOIN auth_user_md5 AS u USING(user_id)
186 INNER JOIN aliases AS a ON (u.user_id = a.id
187 AND FIND_IN_SET('bestalias', a.flags))");
188 while (list($nom, $prenom, $alias) = $res->next()) {
189 $mailer->addTo("$nom $prenom <$alias@{$globals->mail->domain}>");
190 }
191 $mailer->send();
192 }
193 $saved = true;
194 $echeance_date = null;
195 $echeance_time = null;
196 pl_redirect('ax');
197 break;
198 }
199 }
200 $page->assign('id', $id);
201 $page->assign('short_name', $short_name);
202 $page->assign('subject', $subject);
203 $page->assign('title', $title);
204 $page->assign('body', $body);
205 $page->assign('signature', $signature);
206 $page->assign('promo_min', $promo_min);
207 $page->assign('promo_max', $promo_max);
208 $page->assign('subset_to', implode("\n", $subset_to));
209 $page->assign('subset', $subset);
210 $page->assign('echeance', $echeance);
211 $page->assign('echeance_date', $echeance_date);
212 $page->assign('echeance_time', $echeance_time);
213 $page->assign('saved', $saved);
214 $page->assign('new', $new);
215 $page->assign('is_xorg', S::admin());
216
217 if (!$saved) {
218 $select = '';
219 for ($i = 0 ; $i < 24 ; $i++) {
220 $stamp = sprintf('%02d:00:00', $i);
221 if ($stamp == $echeance_time) {
222 $sel = ' selected="selected"';
223 } else {
224 $sel = '';
225 }
226 $select .= "<option value=\"$stamp\"$sel>{$i}h</option>\n";
227 }
228 $page->assign('echeance_time', $select);
229 }
230 }
231
232 function handler_cancel(&$page, $force = null)
233 {
234 $this->load('axletter.inc.php');
235 if (!AXLetter::hasPerms() || !S::has_xsrf_token()) {
236 return PL_FORBIDDEN;
237 }
238
239 $al = AXLetter::awaiting();
240 if (!$al) {
241 $page->kill("Aucune lettre en attente");
242 return;
243 }
244 if (!$al->invalid()) {
245 $page->kill("Une erreur est survenue lors de l'annulation de l'envoi");
246 return;
247 }
248
249 $page->killSuccess("L'envoi de l'annonce {$al->title()} est annulé.");
250 }
251
252 function handler_valid(&$page, $force = null)
253 {
254 $this->load('axletter.inc.php');
255 if (!AXLetter::hasPerms() || !S::has_xsrf_token()) {
256 return PL_FORBIDDEN;
257 }
258
259 $al = AXLetter::awaiting();
260 if (!$al) {
261 $page->kill("Aucune lettre en attente");
262 return;
263 }
264 if (!$al->valid()) {
265 $page->kill("Une erreur est survenue lors de la validation de l'envoi");
266 return;
267 }
268
269 $page->killSuccess("L'envoi de l'annonce aura lieu dans l'heure qui vient.");
270 }
271
272 function handler_show(&$page, $nid = 'last')
273 {
274 $this->load('axletter.inc.php');
275 $page->changeTpl('axletter/show.tpl');
276
277 try {
278 $nl = new AXLetter($nid);
279 if (Get::has('text')) {
280 $nl->toText($page, S::v('prenom'), S::v('nom'), S::v('femme'));
281 } else {
282 $nl->toHtml($page, S::v('prenom'), S::v('nom'), S::v('femme'));
283 }
284 if (Post::has('send')) {
285 $nl->sendTo(S::user()->login(), S::user()->bestEmail(),
286 S::v('prenom'), S::v('nom'),
287 S::v('femme'), S::v('mail_fmt') != 'texte');
288 }
289 } catch (MailNotFound $e) {
290 return PL_NOT_FOUND;
291 }
292 }
293
294 function handler_admin(&$page, $action = null, $uid = null)
295 {
296 $this->load('axletter.inc.php');
297 if (Post::has('action')) {
298 $action = Post::v('action');
299 $uid = Post::v('uid');
300 }
301 if ($uid) {
302 S::assert_xsrf_token();
303
304 $uids = preg_split('/ *[,;\: ] */', $uid);
305 foreach ($uids as $uid) {
306 switch ($action) {
307 case 'add':
308 $res = AXLetter::grantPerms($uid);
309 break;
310 case 'del';
311 $res = AXLetter::revokePerms($uid);
312 break;
313 }
314 if (!$res) {
315 $page->trigError("Personne ne correspond à l'identifiant '$uid'");
316 }
317 }
318 }
319
320 $page->changeTpl('axletter/admin.tpl');
321 $res = XDB::iterator("SELECT IF(u.nom_usage != '', u.nom_usage, u.nom) AS nom,
322 u.prenom, u.promo, u.hruid
323 FROM axletter_rights AS ar
324 INNER JOIN auth_user_md5 AS u USING(user_id)");
325 $page->assign('admins', $res);
326
327 $importer = new CSVImporter('axletter_ins');
328 $importer->registerFunction('user_id', 'email vers Id X.org', array($this, 'idFromMail'));
329 $importer->forceValue('hash', array($this, 'createHash'));
330 $importer->apply($page, "admin/axletter", array('user_id', 'email', 'prenom', 'nom', 'promo', 'flag', 'hash'));
331 }
332
333 function idFromMail($line, $key, $relation = null)
334 {
335 static $field;
336 global $globals;
337 if (!isset($field)) {
338 $field = array('email', 'mail', 'login', 'bestalias', 'forlife', 'flag');
339 foreach ($field as $fld) {
340 if (isset($line[$fld])) {
341 $field = $fld;
342 break;
343 }
344 }
345 }
346 $email = $line[$field];
347 if (strpos($email, '@') === false) {
348 $user = $email;
349 $domain = $globals->mail->domain2;
350 } else {
351 list($user, $domain) = explode('@', $email);
352 }
353 if ($domain != $globals->mail->domain && $domain != $globals->mail->domain2
354 && $domain != $globals->mail->alias_dom && $domain != $globals->mail->alias_dom2) {
355 $res = XDB::query("SELECT uid FROM emails WHERE email = {?}", $email);
356 if ($res->numRows() == 1) {
357 return $res->fetchOneCell();
358 }
359 return '0';
360 }
361 list($user) = explode('+', $user);
362 list($user) = explode('_', $user);
363 if ($domain == $globals->mail->alias_dom || $domain == $globals->mail->alias_dom2) {
364 $res = XDB::query("SELECT a.id
365 FROM virtual AS v
366 INNER JOIN virtual_redirect AS r USING(vid)
367 INNER JOIN aliases AS a ON (a.type = 'a_vie'
368 AND r.redirect = CONCAT(a.alias, '@{$globals->mail->domain2}'))
369 WHERE v.alias = CONCAT({?}, '@{$globals->mail->alias_dom}')", $user);
370 $id = $res->fetchOneCell();
371 return $id ? $id : '0';
372 }
373 $res = XDB::query("SELECT id FROM aliases WHERE alias = {?}", $user);
374 $id = $res->fetchOneCell();
375 return $id ? $id : '0';
376 }
377
378 function createHash($line, $key, $relation)
379 {
380 $hash = implode(time(), $line) . rand();
381 $hash = md5($hash);
382 return $hash;
383 }
384 }
385
386 // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
387 ?>