Opt-in for email rewriting.
[platal.git] / modules / carnet.php
1 <?php
2 /***************************************************************************
3 * Copyright (C) 2003-2008 Polytechnique.org *
4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22 class CarnetModule extends PLModule
23 {
24 function handlers()
25 {
26 return array(
27 'carnet' => $this->make_hook('index', AUTH_COOKIE),
28 'carnet/panel' => $this->make_hook('panel', AUTH_COOKIE),
29 'carnet/notifs' => $this->make_hook('notifs', AUTH_COOKIE),
30
31 'carnet/contacts' => $this->make_hook('contacts', AUTH_COOKIE),
32 'carnet/contacts/pdf' => $this->make_hook('pdf', AUTH_COOKIE, 'user', NO_HTTPS),
33 'carnet/contacts/ical' => $this->make_hook('ical', AUTH_PUBLIC, 'user', NO_HTTPS),
34 'carnet/contacts/vcard' => $this->make_hook('vcard', AUTH_COOKIE, 'user', NO_HTTPS),
35
36 'carnet/rss' => $this->make_hook('rss', AUTH_PUBLIC, 'user', NO_HTTPS),
37 );
38 }
39
40 function _add_rss_link(&$page)
41 {
42 if (!S::has('core_rss_hash')) {
43 return;
44 }
45 $page->setRssLink('Polytechnique.org :: Carnet',
46 '/carnet/rss/'.S::v('forlife') .'/'.S::v('core_rss_hash').'/rss.xml');
47 }
48
49 function handler_index(&$page)
50 {
51 $page->changeTpl('carnet/index.tpl');
52 $page->setTitle('Mon carnet');
53 $this->_add_rss_link($page);
54 }
55
56 function handler_panel(&$page)
57 {
58 $page->changeTpl('carnet/panel.tpl');
59
60 if (Get::has('read')) {
61 S::set('watch_last', Get::v('read'));
62 Platal::session()->updateNbNotifs();
63 pl_redirect('carnet/panel');
64 }
65
66 require_once 'notifs.inc.php';
67
68 $page->assign('now',date('YmdHis'));
69 $notifs = new Notifs(S::v('uid'), true);
70
71 $page->assign('notifs', $notifs);
72 $page->assign('today', date('Y-m-d'));
73 $this->_add_rss_link($page);
74 }
75
76 function _handler_notifs_promos(&$page, &$watch, $action, $arg)
77 {
78 if(preg_match('!^ *(\d{4}) *$!', $arg, $matches)) {
79 $p = intval($matches[1]);
80 if($p<1900 || $p>2100) {
81 $page->trigError("la promo entrée est invalide");
82 } else {
83 if ($action == 'add_promo') {
84 $watch->_promos->add($p);
85 } else {
86 $watch->_promos->del($p);
87 }
88 }
89 } elseif (preg_match('!^ *(\d{4}) *- *(\d{4}) *$!', $arg, $matches)) {
90 $p1 = intval($matches[1]);
91 $p2 = intval($matches[2]);
92 if($p1<1900 || $p1>2100) {
93 $page->trigError('la première promo de la plage entrée est invalide');
94 } elseif($p2<1900 || $p2>2100) {
95 $page->trigError('la seconde promo de la plage entrée est invalide');
96 } else {
97 if ($action == 'add_promo') {
98 $watch->_promos->addRange($p1, $p2);
99 } else {
100 $watch->_promos->delRange($p1, $p2);
101 }
102 }
103 } else {
104 $page->trigError("La promo (ou la plage de promo) entrée est dans un format incorrect.");
105 }
106 }
107
108 function handler_notifs(&$page, $action = null, $arg = null)
109 {
110 $page->changeTpl('carnet/notifs.tpl');
111
112 require_once 'notifs.inc.php';
113
114 $watch = new Watch(S::v('uid'));
115
116 $res = XDB::query("SELECT promo_sortie
117 FROM auth_user_md5
118 WHERE user_id = {?}",
119 S::v('uid', -1));
120 $promo_sortie = $res->fetchOneCell();
121 $page->assign('promo_sortie', $promo_sortie);
122
123 if ($action) {
124 S::assert_xsrf_token();
125 }
126 switch ($action) {
127 case 'add_promo':
128 case 'del_promo':
129 $this->_handler_notifs_promos($page, $watch, $action, $arg);
130 break;
131
132 case 'del_nonins':
133 $watch->_nonins->del($arg);
134 break;
135
136 case 'add_nonins':
137 $watch->_nonins->add($arg);
138 break;
139 }
140
141 if (Env::has('subs')) {
142 S::assert_xsrf_token();
143 $watch->_subs->update('sub');
144 }
145
146 if (Env::has('flags_contacts')) {
147 S::assert_xsrf_token();
148 $watch->watch_contacts = Env::b('contacts');
149 $watch->saveFlags();
150 }
151
152 if (Env::has('flags_mail')) {
153 S::assert_xsrf_token();
154 $watch->watch_mail = Env::b('mail');
155 $watch->saveFlags();
156 }
157
158 $page->assign_by_ref('watch', $watch);
159 }
160
161 function _get_list($offset, $limit) {
162 $uid = S::v('uid');
163 $res = XDB::query("SELECT COUNT(*) FROM contacts WHERE uid = {?}", $uid);
164 $total = $res->fetchOneCell();
165
166 $order = Get::v('order');
167 $orders = Array(
168 'nom' => 'nom DESC, u.prenom, u.promo',
169 'promo' => 'promo DESC, nom, u.prenom',
170 'last' => 'u.date DESC, nom, u.prenom, promo');
171 if ($order != 'promo' && $order != 'last')
172 $order = 'nom';
173 $order = $orders[$order];
174 if (Get::v('inv') == '')
175 $order = str_replace(" DESC,", ",", $order);
176
177 $res = XDB::query("
178 SELECT u.prenom, IF(u.nom_usage='',u.nom,u.nom_usage) AS nom, a.alias AS forlife, u.promo
179 FROM contacts AS c
180 INNER JOIN auth_user_md5 AS u ON (u.user_id = c.contact)
181 INNER JOIN aliases AS a ON (u.user_id = a.id AND a.type='a_vie')
182 WHERE c.uid = {?}
183 ORDER BY $order
184 LIMIT {?}, {?}", $uid, $offset*$limit, $limit);
185 $list = $res->fetchAllAssoc();
186
187 return Array($total, $list);
188 }
189
190 function searchErrorHandler($explain) {
191 $page =& Platal::page();
192 $page->trigError($explain);
193 $this->handler_contacts($page);
194 }
195
196 function handler_contacts(&$page, $action = null, $subaction = null, $ssaction = null)
197 {
198 $page->setTitle('Mes contacts');
199 $this->_add_rss_link($page);
200
201 $uid = S::v('uid');
202 $user = Env::v('user');
203
204 // For XSRF protection, checks both the normal xsrf token, and the special RSS token.
205 // It allows direct linking to contact adding in the RSS feed.
206 if (Env::v('action') && Env::v('token') !== S::v('core_rss_hash')) {
207 S::assert_xsrf_token();
208 }
209 switch (Env::v('action')) {
210 case 'retirer':
211 if (is_numeric($user)) {
212 if (XDB::execute('DELETE FROM contacts
213 WHERE uid = {?} AND contact = {?}',
214 $uid, $user))
215 {
216 $page->trigSuccess("Contact retiré !");
217 }
218 } else {
219 if (XDB::execute(
220 'DELETE FROM c
221 USING contacts AS c
222 INNER JOIN aliases AS a ON (c.contact=a.id and a.type!="homonyme")
223 WHERE c.uid = {?} AND a.alias={?}', $uid, $user))
224 {
225 $page->trigSuccess("Contact retiré !");
226 }
227 }
228 break;
229
230 case 'ajouter':
231 require_once('user.func.inc.php');
232 if (($login = get_user_login($user)) !== false) {
233 if (XDB::execute(
234 'REPLACE INTO contacts (uid, contact)
235 SELECT {?}, id
236 FROM aliases
237 WHERE alias = {?}', $uid, $login))
238 {
239 $page->trigSuccess('Contact ajouté !');
240 } else {
241 $page->trigWarning('Contact déjà dans la liste !');
242 }
243 }
244 }
245
246 $search = false;
247 if ($action == 'search') {
248 $action = $subaction;
249 $subaction = $ssaction;
250 $search = true;
251 }
252 if ($search && trim(Env::v('quick'))) {
253 require_once 'userset.inc.php';
254 $base = 'carnet/contacts/search';
255
256 Platal::load('search', 'classes.inc.php');
257 ThrowError::$throwHook = array($this, 'searchErrorHandler');
258 $view = new SearchSet(true, false, "INNER JOIN contacts AS c2 ON (u.user_id = c2.contact)", "c2.uid = $uid");
259 } else {
260 $base = 'carnet/contacts';
261 $view = new UserSet("INNER JOIN contacts AS c2 ON (u.user_id = c2.contact)", " c2.uid = $uid ");
262 }
263 $view->addMod('minifiche', 'Mini-fiches', true);
264 $view->addMod('trombi', 'Trombinoscope', false, array('with_admin' => false, 'with_promo' => true));
265 $view->addMod('geoloc', 'Planisphère', false, array('with_annu' => 'carnet/contacts/search'));
266 $view->apply($base, $page, $action, $subaction);
267 if ($action != 'geoloc' || ($search && !$ssaction) || (!$search && !$subaction)) {
268 $page->changeTpl('carnet/mescontacts.tpl');
269 }
270 }
271
272 function handler_pdf(&$page, $arg0 = null, $arg1 = null)
273 {
274 $this->load('contacts.pdf.inc.php');
275 require_once 'user.func.inc.php';
276
277 Platal::session()->close();
278
279 $sql = "SELECT a.alias
280 FROM aliases AS a
281 INNER JOIN auth_user_md5 AS u ON ( a.id = u.user_id )
282 INNER JOIN contacts AS c ON ( a.id = c.contact )
283 WHERE c.uid = {?} AND a.type='a_vie'";
284 if ($arg0 == 'promo') {
285 $sql .= ' ORDER BY u.promo, u.nom, u.prenom';
286 } else {
287 $sql .= ' ORDER BY u.nom, u.prenom, u.promo';
288 }
289
290 $citer = XDB::iterRow($sql, S::v('uid'));
291 $pdf = new ContactsPDF();
292
293 while (list($alias) = $citer->next()) {
294 $user = get_user_details($alias);
295 foreach ($user as &$value) {
296 if (is_utf8($value)) {
297 $value = utf8_decode($value);
298 }
299 }
300 $pdf = ContactsPDF::addContact($pdf, $user, $arg0 == 'photos' || $arg1 == 'photos');
301 }
302 $pdf->Output();
303
304 exit;
305 }
306
307 function handler_rss(&$page, $user = null, $hash = null)
308 {
309 $this->load('feed.inc.php');
310 $feed = new CarnetFeed();
311 return $feed->run($page, $user, $hash);
312 }
313
314 function handler_ical(&$page, $alias = null, $hash = null)
315 {
316 require_once 'rss.inc.php';
317 $uid = init_rss(null, $alias, $hash, false);
318 if (S::logged()) {
319 if (!$uid) {
320 $uid = S::i('uid');
321 } else if ($uid != S::i('uid')) {
322 send_warning_email("Récupération d\'un autre utilisateur ($uid)");
323 }
324 } else if (!$uid) {
325 exit;
326 }
327 require_once 'ical.inc.php';
328 $page->changeTpl('carnet/calendar.tpl', NO_SKIN);
329 $page->register_function('display_ical', 'display_ical');
330
331 $res = XDB::iterRow(
332 'SELECT u.prenom,
333 IF(u.nom_usage = \'\',u.nom,u.nom_usage) AS nom,
334 u.promo,
335 u.naissance,
336 DATE_ADD(u.naissance, INTERVAL 1 DAY) AS end,
337 u.date_ins,
338 a.alias AS forlife
339 FROM contacts AS c
340 INNER JOIN auth_user_md5 AS u ON (u.user_id = c.contact)
341 INNER JOIN aliases AS a ON (u.user_id = a.id AND a.type = \'a_vie\')
342 WHERE c.uid = {?}', $uid);
343
344 $annivs = Array();
345 while (list($prenom, $nom, $promo, $naissance, $end, $ts, $forlife) = $res->next()) {
346 $naissance = str_replace('-', '', $naissance);
347 $end = str_replace('-', '', $end);
348 $annivs[] = array(
349 'timestamp' => strtotime($ts),
350 'date' => $naissance,
351 'tomorrow' => $end,
352 'forlife' => $forlife,
353 'summary' => 'Anniversaire de '.$prenom
354 .' '.$nom.' - x '.$promo,
355 );
356 }
357 $page->assign('events', $annivs);
358
359 header('Content-Type: text/calendar; charset=utf-8');
360 }
361
362 function handler_vcard(&$page, $photos = null)
363 {
364 $res = XDB::query('SELECT contact
365 FROM contacts
366 WHERE uid = {?}', S::v('uid'));
367 $vcard = new VCard($photos == 'photos');
368 $vcard->addUsers($res->fetchColumn());
369 $vcard->show();
370 }
371 }
372
373 // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
374 ?>