Merge branch 'platal-1.0.0'
[platal.git] / modules / events.php
1 <?php
2 /***************************************************************************
3 * Copyright (C) 2003-2010 Polytechnique.org *
4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22 class EventsModule extends PLModule
23 {
24 function handlers()
25 {
26 return array(
27 'events' => $this->make_hook('ev', AUTH_COOKIE),
28 'rss' => $this->make_hook('rss', AUTH_PUBLIC, 'user', NO_HTTPS),
29 'events/preview' => $this->make_hook('preview', AUTH_PUBLIC, 'user', NO_AUTH),
30 'events/photo' => $this->make_hook('photo', AUTH_PUBLIC),
31 'events/submit' => $this->make_hook('ev_submit', AUTH_MDP),
32 'admin/events' => $this->make_hook('admin_events', AUTH_MDP, 'admin'),
33
34 'ajax/tips' => $this->make_hook('tips', AUTH_COOKIE, 'user', NO_AUTH),
35 'admin/tips' => $this->make_hook('admin_tips', AUTH_MDP, 'admin'),
36 );
37 }
38
39 private function get_tips($exclude = null)
40 {
41 global $globals;
42 // Add a new special tip when changing plat/al version
43 if ($globals->version != S::user()->last_version && is_null($exclude)) {
44 XDB::execute('UPDATE accounts
45 SET last_version = {?}
46 WHERE uid = {?}',
47 $globals->version, S::i('uid'));
48 return array('id' => 0,
49 'titre' => 'Bienvenue sur la nouvelle version du site !',
50 'text' => 'Le site a été mis à jour depuis ta dernière visite vers la version ' . $globals->version
51 . '.<br /> Nous t\'invitons à <a href="review">faire un tour d\'horizon des '
52 . 'nouveautés</a>.<br /><br />'
53 . 'Tu peux également retrouver ces informations sur <a href="banana/xorg.m4x.innovation">'
54 . 'les forums</a>, ou sur <a href="changelog">la liste exhaustive des modifications</a>.',
55 'priorite' => 255,
56 'promo_min' => 0,
57 'promo_max' => 0,
58 'state' => 'active',
59 'special' => true);
60 }
61
62 $exclude = is_null($exclude) ? '' : ' AND id != ' . intval($exclude) . ' ';
63 $priority = rand(0, 510);
64 do {
65 $priority = (int)($priority/2);
66 $res = XDB::query("SELECT *
67 FROM reminder_tips
68 WHERE (expiration = '0000-00-00' OR expiration > CURDATE())
69 AND (promo_min = 0 OR promo_min <= {?})
70 AND (promo_max = 0 OR promo_max >= {?})
71 AND (priority >= {?})
72 AND (state = 'active')
73 $exclude
74 ORDER BY RAND()
75 LIMIT 1",
76 S::i('promo'), S::i('promo'), $priority);
77 } while ($priority && !$res->numRows());
78 if (!$res->numRows()) {
79 return null;
80 }
81 return $res->fetchOneAssoc();
82 }
83
84 private function upload_image(PlPage &$page, PlUpload &$upload)
85 {
86 if (@!$_FILES['image']['tmp_name'] && !Env::v('image_url')) {
87 return true;
88 }
89 if (!$upload->upload($_FILES['image']) && !$upload->download(Env::v('image_url'))) {
90 $page->trigError('Impossible de télécharger l\'image');
91 return false;
92 } elseif (!$upload->isType('image')) {
93 $page->trigError('Le fichier n\'est pas une image valide au format JPEG, GIF ou PNG.');
94 $upload->rm();
95 return false;
96 } elseif (!$upload->resizeImage(200, 300, 100, 100, 32284)) {
97 $page->trigError('Impossible de retraiter l\'image');
98 return false;
99 }
100 return true;
101 }
102
103 function handler_ev(&$page, $action = 'list', $eid = null, $pound = null)
104 {
105 $page->changeTpl('events/index.tpl');
106 $page->addJsLink('ajax.js');
107
108 $user = S::user();
109
110 /** XXX: Tips and reminder only for user with 'email' permission.
111 * We can do better in the future by storing the required permission(s)
112 * with teh tip/reminder.
113 */
114 if ($user->checkPerms(User::PERM_MAIL)) {
115 $page->assign('tips', $this->get_tips());
116
117 // Adds a reminder onebox to the page.
118 require_once 'reminder.inc.php';
119 if (($reminder = Reminder::GetCandidateReminder($user))) {
120 $reminder->Prepare($page);
121 }
122
123 // Wishes "Happy birthday" when required
124 $profile = $user->profile();
125 if (!is_null($profile)) {
126 if ($profile->next_birthday == date('Y-m-d')) {
127 $birthyear = (int)date('Y', strtotime($profile->birthdate));
128 $curyear = (int)date('Y');
129 $page->assign('birthday', $curyear - $birthyear);
130 }
131 }
132 }
133
134 // Direct link to the RSS feed, when available.
135 if (S::hasAuthToken()) {
136 $page->setRssLink('Polytechnique.org :: News',
137 '/rss/' . S::v('hruid') . '/' . S::user()->token . '/rss.xml');
138 }
139
140 // Hide the read event, and reload the page to get to the next event.
141 if ($action == 'read' && $eid) {
142 XDB::execute('DELETE ev.*
143 FROM announce_read AS ev
144 INNER JOIN announces AS e ON e.id = ev.evt_id
145 WHERE expiration < NOW()');
146 XDB::execute('REPLACE INTO announce_read VALUES({?},{?})',
147 $eid, S::v('uid'));
148 pl_redirect('events#'.$pound);
149 }
150
151 // Unhide the requested event, and reload the page to display it.
152 if ($action == 'unread' && $eid) {
153 XDB::execute('DELETE FROM announce_read
154 WHERE evt_id = {?} AND uid = {?}',
155 $eid, S::v('uid'));
156 pl_redirect('events#newsid'.$eid);
157 }
158
159 // Fetch the events to display, along with their metadata.
160 $array = array();
161 $it = XDB::iterator("SELECT e.id, e.titre, e.texte, e.post_id, e.uid,
162 p.x, p.y, p.attach IS NOT NULL AS img, FIND_IN_SET('wiki', e.flags) AS wiki,
163 FIND_IN_SET('important', e.flags) AS important,
164 e.creation_date > DATE_SUB(CURDATE(), INTERVAL 2 DAY) AS news,
165 e.expiration < DATE_ADD(CURDATE(), INTERVAL 2 DAY) AS end,
166 ev.uid IS NULL AS nonlu, e.promo_min, e.promo_max
167 FROM announces AS e
168 LEFT JOIN announce_photos AS p ON (e.id = p.eid)
169 LEFT JOIN announce_read AS ev ON (e.id = ev.evt_id AND ev.uid = {?})
170 WHERE FIND_IN_SET('valide', e.flags) AND expiration >= NOW()
171 ORDER BY important DESC, news DESC, end DESC, e.expiration, e.creation_date DESC",
172 S::i('uid'));
173 $cats = array('important', 'news', 'end', 'body');
174
175 $this->load('feed.inc.php');
176 $user = S::user();
177 $body = EventFeed::nextEvent($it, $user);
178 foreach ($cats as $cat) {
179 $data = array();
180 if (!$body) {
181 continue;
182 }
183 do {
184 if ($cat == 'body' || $body[$cat]) {
185 $data[] = $body;
186 } else {
187 break;
188 }
189 $body = EventFeed::nextEvent($it, $user);
190 } while ($body);
191 if (!empty($data)) {
192 $array[$cat] = $data;
193 }
194 }
195
196 $page->assign_by_ref('events', $array);
197 }
198
199 function handler_photo(&$page, $eid = null, $valid = null)
200 {
201 if ($eid && $eid != 'valid') {
202 $res = XDB::query("SELECT * FROM announce_photos WHERE eid = {?}", $eid);
203 if ($res->numRows()) {
204 $photo = $res->fetchOneAssoc();
205 pl_cached_dynamic_content_headers("image/" . $photo['attachmime']);
206 echo $photo['attach'];
207 exit;
208 }
209 } elseif ($eid == 'valid') {
210 require_once 'validations.inc.php';
211 $valid = Validate::get_request_by_id($valid);
212 if ($valid && $valid->img) {
213 pl_cached_dynamic_content_headers("image/" . $valid->imgtype);
214 echo $valid->img;
215 exit;
216 }
217 } else {
218 $upload = new PlUpload(S::user()->login(), 'event');
219 if ($upload->exists() && $upload->isType('image')) {
220 pl_cached_dynamic_content_headers($upload->contentType());
221 echo $upload->getContents();
222 exit;
223 }
224 }
225 global $globals;
226 pl_cached_dynamic_content_headers("image/png");
227 echo file_get_contents($globals->spoolroot . '/htdocs/images/logo.png');
228 exit;
229 }
230
231 function handler_rss(&$page, $user = null, $hash = null)
232 {
233 $this->load('feed.inc.php');
234 $feed = new EventFeed();
235 return $feed->run($page, $user, $hash);
236 }
237
238 function handler_preview(&$page)
239 {
240 $page->changeTpl('events/preview.tpl', NO_SKIN);
241 $texte = Get::v('texte');
242 if (!is_utf8($texte)) {
243 $texte = utf8_encode($texte);
244 }
245 $titre = Get::v('titre');
246 if (!is_utf8($titre)) {
247 $titre = utf8_encode($titre);
248 }
249 $page->assign('texte', $texte);
250 $page->assign('titre', $titre);
251 pl_content_headers("text/html");
252 }
253
254 function handler_ev_submit(&$page)
255 {
256 $page->changeTpl('events/submit.tpl');
257 $page->addJsLink('ajax.js');
258
259 $wp = new PlWikiPage('Xorg.Annonce');
260 $wp->buildCache();
261
262 $titre = Post::v('titre');
263 $texte = Post::v('texte');
264 $promo_min = Post::i('promo_min');
265 $promo_max = Post::i('promo_max');
266 $expiration = Post::i('expiration');
267 $valid_mesg = Post::v('valid_mesg');
268 $action = Post::v('action');
269 $upload = new PlUpload(S::user()->login(), 'event');
270 $this->upload_image($page, $upload);
271
272 if (($promo_min > $promo_max && $promo_max != 0)||
273 ($promo_min != 0 && ($promo_min <= 1900 || $promo_min >= 2020)) ||
274 ($promo_max != 0 && ($promo_max <= 1900 || $promo_max >= 2020)))
275 {
276 $page->trigError("L'intervalle de promotions n'est pas valide");
277 $action = null;
278 }
279
280 $page->assign('titre', $titre);
281 $page->assign('texte', $texte);
282 $page->assign('promo_min', $promo_min);
283 $page->assign('promo_max', $promo_max);
284 $page->assign('expiration', $expiration);
285 $page->assign('valid_mesg', $valid_mesg);
286 $page->assign('action', strtolower($action));
287 $page->assign_by_ref('upload', $upload);
288
289 if ($action == 'Supprimer l\'image') {
290 $upload->rm();
291 $page->assign('action', false);
292 } elseif ($action && (!trim($texte) || !trim($titre))) {
293 $page->trigError("L'article doit avoir un titre et un contenu");
294 } elseif ($action) {
295 S::assert_xsrf_token();
296
297 require_once 'validations.inc.php';
298 $evtreq = new EvtReq($titre, $texte, $promo_min, $promo_max,
299 $expiration, $valid_mesg, S::user(), $upload);
300 $evtreq->submit();
301 $page->assign('ok', true);
302 } elseif (!Env::v('preview')) {
303 $upload->rm();
304 }
305 }
306
307 function handler_tips(&$page, $tips = null)
308 {
309 pl_content_headers("text/html");
310 $page->changeTpl('include/tips.tpl', NO_SKIN);
311 $page->assign('tips', $this->get_tips($tips));
312 }
313
314 function handler_admin_tips(&$page, $action = 'list', $id = null)
315 {
316 $page->setTitle('Administration - Astuces');
317 $page->assign('title', 'Gestion des Astuces');
318 $table_editor = new PLTableEditor('admin/tips', 'reminder_tips', 'id');
319 $table_editor->describe('expiration', 'date de péremption', true);
320 $table_editor->describe('promo_min', 'promo. min (0 aucune)', false);
321 $table_editor->describe('promo_max', 'promo. max (0 aucune)', false);
322 $table_editor->describe('title', 'titre', true);
323 $table_editor->describe('state', 'actif', true);
324 $table_editor->describe('text', 'texte (html) de l\'astuce', false);
325 $table_editor->describe('priority', '0<=priorité<=255', true);
326 $table_editor->list_on_edit(false);
327 $table_editor->apply($page, $action, $id);
328 if (($action == 'edit' && !is_null($id)) || $action == 'update') {
329 $page->changeTpl('events/admin_tips.tpl');
330 }
331 }
332
333 function handler_admin_events(&$page, $action = 'list', $eid = null)
334 {
335 $page->changeTpl('events/admin.tpl');
336 $page->addJsLink('ajax.js');
337 $page->setTitle('Administration - Evenements');
338 $page->register_modifier('hde', 'html_entity_decode');
339
340 $arch = $action == 'archives';
341 $page->assign('action', $action);
342
343 $upload = new PlUpload(S::user()->login(), 'event');
344 if ((Env::has('preview') || Post::v('action') == "Proposer") && $eid) {
345 $action = 'edit';
346 $this->upload_image($page, $upload);
347 }
348
349 if (Post::v('action') == 'Pas d\'image' && $eid) {
350 S::assert_xsrf_token();
351 $upload->rm();
352 XDB::execute("DELETE FROM announce_photos WHERE eid = {?}", $eid);
353 $action = 'edit';
354 } elseif (Post::v('action') == 'Supprimer l\'image' && $eid) {
355 S::assert_xsrf_token();
356 $upload->rm();
357 $action = 'edit';
358 } elseif (Post::v('action') == "Proposer" && $eid) {
359 S::assert_xsrf_token();
360 $promo_min = Post::i('promo_min');
361 $promo_max = Post::i('promo_max');
362 if (($promo_min != 0 && ($promo_min <= 1900 || $promo_min >= 2020)) ||
363 ($promo_max != 0 && ($promo_max <= 1900 || $promo_max >= 2020 || $promo_max < $promo_min)))
364 {
365 $page->trigError("L'intervalle de promotions $promo_min -> $promo_max n'est pas valide");
366 $action = 'edit';
367 } else {
368 $res = XDB::query('SELECT flags FROM announces WHERE id = {?}', $eid);
369 $flags = new PlFlagSet($res->fetchOneCell());
370 $flags->addFlag('wiki');
371 if (Post::v('important')) {
372 $flags->addFlag('important');
373 } else {
374 $flags->rmFlag('important');
375 }
376
377 XDB::execute('UPDATE announces
378 SET creation_date = creation_date,
379 titre={?}, texte={?}, expiration={?}, promo_min={?}, promo_max={?},
380 flags = {?}
381 WHERE id = {?}',
382 Post::v('titre'), Post::v('texte'), Post::v('expiration'),
383 Post::v('promo_min'), Post::v('promo_max'),
384 $flags, $eid);
385 if ($upload->exists() && list($x, $y, $type) = $upload->imageInfo()) {
386 XDB::execute('REPLACE INTO announce_photos
387 SET eid = {?}, attachmime = {?}, x = {?}, y = {?}, attach = {?}',
388 $eid, $type, $x, $y, $upload->getContents());
389 $upload->rm();
390 }
391 }
392 }
393
394 if ($action == 'edit') {
395 $res = XDB::query('SELECT titre, texte, expiration, promo_min, promo_max, FIND_IN_SET(\'important\', flags),
396 attach IS NOT NULL
397 FROM announces AS e
398 LEFT JOIN announce_photos AS p ON(e.id = p.eid)
399 WHERE id={?}', $eid);
400 list($titre, $texte, $expiration, $promo_min, $promo_max, $important, $img) = $res->fetchOneRow();
401 $page->assign('titre',$titre);
402 $page->assign('texte',$texte);
403 $page->assign('promo_min',$promo_min);
404 $page->assign('promo_max',$promo_max);
405 $page->assign('expiration',$expiration);
406 $page->assign('important', $important);
407 $page->assign('eid', $eid);
408 $page->assign('img', $img);
409 $page->assign_by_ref('upload', $upload);
410
411 $select = "";
412 for ($i = 1 ; $i < 30 ; $i++) {
413 $p_stamp=date("Ymd",time()+3600*24*$i);
414 $year=substr($p_stamp,0,4);
415 $month=substr($p_stamp,4,2);
416 $day=substr($p_stamp,6,2);
417
418 $select .= "<option value=\"$p_stamp\""
419 . (($p_stamp == strtr($expiration, array("-" => ""))) ? " selected" : "")
420 . "> $day / $month / $year</option>\n";
421 }
422 $page->assign('select',$select);
423 } else {
424 switch ($action) {
425 case 'delete':
426 S::assert_xsrf_token();
427 XDB::execute('DELETE from announces
428 WHERE id = {?}', $eid);
429 break;
430
431 case "archive":
432 S::assert_xsrf_token();
433 XDB::execute('UPDATE announces
434 SET creation_date = creation_date, flags = CONCAT(flags,",archive")
435 WHERE id = {?}', $eid);
436 break;
437
438 case "unarchive":
439 S::assert_xsrf_token();
440 XDB::execute('UPDATE announces
441 SET creation_date = creation_date, flags = REPLACE(flags,"archive","")
442 WHERE id = {?}', $eid);
443 $action = 'archives';
444 $arch = true;
445 break;
446
447 case "valid":
448 S::assert_xsrf_token();
449 XDB::execute('UPDATE announces
450 SET creation_date = creation_date, flags = CONCAT(flags,",valide")
451 WHERE id = {?}', $eid);
452 break;
453
454 case "unvalid":
455 S::assert_xsrf_token();
456 XDB::execute('UPDATE announces
457 SET creation_date = creation_date, flags = REPLACE(flags,"valide", "")
458 WHERE id = {?}', $eid);
459 break;
460 }
461
462 $pid = ($eid && $action == 'preview') ? $eid : -1;
463 $sql = "SELECT e.id, e.titre, e.texte,e.id = $pid AS preview, e.uid,
464 DATE_FORMAT(e.creation_date,'%d/%m/%Y %T') AS creation_date,
465 DATE_FORMAT(e.expiration,'%d/%m/%Y') AS expiration,
466 e.promo_min, e.promo_max,
467 FIND_IN_SET('valide', e.flags) AS fvalide,
468 FIND_IN_SET('archive', e.flags) AS farch,
469 FIND_IN_SET('wiki', e.flags) AS wiki
470 FROM announces AS e
471 WHERE ".($arch ? "" : "!")."FIND_IN_SET('archive',e.flags)
472 ORDER BY FIND_IN_SET('valide',e.flags), e.expiration DESC";
473 $page->assign('evs', XDB::iterator($sql));
474 }
475 $page->assign('arch', $arch);
476 $page->assign('admin_evts', true);
477 }
478 }
479
480 // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
481 ?>