Close #595.
[platal.git] / modules / xnetgrp.php
1 <?php
2 /***************************************************************************
3 * Copyright (C) 2003-2007 Polytechnique.org *
4 * http://opensource.polytechnique.org/ *
5 * *
6 * This program is free software; you can redistribute it and/or modify *
7 * it under the terms of the GNU General Public License as published by *
8 * the Free Software Foundation; either version 2 of the License, or *
9 * (at your option) any later version. *
10 * *
11 * This program is distributed in the hope that it will be useful, *
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
14 * GNU General Public License for more details. *
15 * *
16 * You should have received a copy of the GNU General Public License *
17 * along with this program; if not, write to the Free Software *
18 * Foundation, Inc., *
19 * 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
20 ***************************************************************************/
21
22 function get_infos($email)
23 {
24 global $globals;
25 // look for uid instead of email if numeric
26 $field = is_numeric($email) ? 'uid' : 'email';
27
28 if ($field == 'email') {
29 $email = strtolower($email);
30 if (strpos($email, '@') === false) {
31 $email .= '@m4x.org';
32 }
33 list($mbox,$dom) = explode('@', $email);
34 }
35
36 $res = XDB::query(
37 "SELECT uid, nom, prenom, email, email AS email2, perms='admin', origine, sexe
38 FROM groupex.membres
39 WHERE $field = {?} AND asso_id = {?}", $email, $globals->asso('id'));
40
41 if ($res->numRows()) {
42 $user = $res->fetchOneAssoc();
43 if ($user['origine'] == 'X') {
44 $res = XDB::query("SELECT nom, prenom, promo, FIND_IN_SET(flags, 'femme') AS sexe
45 FROM auth_user_md5
46 WHERE user_id = {?}", $user['uid']);
47 $user = array_merge($user, $res->fetchOneAssoc());
48 }
49 return $user;
50 } elseif ($dom == 'polytechnique.org' || $dom == 'm4x.org') {
51 $res = XDB::query(
52 "SELECT user_id AS uid, u.promo,
53 IF(u.nom_usage<>'', u.nom_usage, u.nom) AS nom,
54 u.prenom, b.alias,
55 CONCAT(b.alias, '@m4x.org') AS email,
56 CONCAT(b.alias, '@polytechnique.org') AS email2,
57 m.perms='admin' AS perms, m.origine,
58 FIND_IN_SET(u.flags, 'femme') AS sexe
59 FROM auth_user_md5 AS u
60 INNER JOIN aliases AS a ON ( u.user_id = a.id AND a.type != 'homonyme' )
61 INNER JOIN aliases AS b ON ( u.user_id = b.id AND b.type = 'a_vie' )
62 INNER JOIN groupex.membres AS m ON ( m.uid = u.user_id AND asso_id={?})
63 WHERE a.alias = {?} AND u.user_id < 50000", $globals->asso('id'), $mbox);
64 return $res->fetchOneAssoc();
65 }
66
67 return null;
68 }
69
70
71 class XnetGrpModule extends PLModule
72 {
73 function handlers()
74 {
75 return array(
76 '%grp' => $this->make_hook('index', AUTH_PUBLIC),
77 '%grp/asso.php' => $this->make_hook('index', AUTH_PUBLIC),
78 '%grp/logo' => $this->make_hook('logo', AUTH_PUBLIC),
79 '%grp/edit' => $this->make_hook('edit', AUTH_MDP),
80 '%grp/mail' => $this->make_hook('mail', AUTH_MDP),
81 '%grp/annuaire' => $this->make_hook('annuaire', AUTH_MDP),
82 '%grp/annuaire/vcard' => $this->make_hook('vcard', AUTH_MDP),
83 '%grp/trombi' => $this->make_hook('trombi', AUTH_MDP),
84 '%grp/subscribe' => $this->make_hook('subscribe', AUTH_MDP),
85 '%grp/unsubscribe' => $this->make_hook('unsubscribe', AUTH_MDP),
86
87 '%grp/change_rights' => $this->make_hook('change_rights', AUTH_MDP),
88
89 '%grp/admin/annuaire'
90 => $this->make_hook('admin_annuaire', AUTH_MDP),
91
92 '%grp/member'
93 => $this->make_hook('admin_member', AUTH_MDP),
94 '%grp/member/new'
95 => $this->make_hook('admin_member_new', AUTH_MDP),
96 '%grp/member/new/ajax'
97 => $this->make_hook('admin_member_new_ajax', AUTH_MDP, '', NO_AUTH),
98 '%grp/member/del'
99 => $this->make_hook('admin_member_del', AUTH_MDP),
100
101 '%grp/rss' => $this->make_hook('rss', AUTH_PUBLIC),
102 '%grp/announce/new' => $this->make_hook('edit_announce', AUTH_MDP),
103 '%grp/announce/edit' => $this->make_hook('edit_announce', AUTH_MDP),
104 '%grp/admin/announces' => $this->make_hook('admin_announce', AUTH_MDP),
105 );
106 }
107
108 function handler_index(&$page, $arg = null)
109 {
110 global $globals, $platal;
111
112 if (!is_null($arg)) {
113 return PL_NOT_FOUND;
114 }
115
116 new_group_open_page('xnetgrp/asso.tpl');
117
118 if (S::logged()) {
119 if (Env::has('read')) {
120 XDB::query('DELETE r.*
121 FROM groupex.announces_read AS r
122 INNER JOIN groupex.announces AS a ON a.id = r.announce_id
123 WHERE peremption < CURRENT_DATE()');
124 XDB::query('INSERT INTO groupex.announces_read
125 VALUES ({?}, {?})',
126 Env::i('read'), S::i('uid'));
127 pl_redirect("");
128 }
129 if (Env::has('unread')) {
130 XDB::query('DELETE FROM groupex.announces_read
131 WHERE announce_id={?} AND user_id={?}',
132 Env::i('unread'), S::i('uid'));
133 pl_redirect("#art" . Env::i('unread'));
134 }
135 $arts = XDB::iterator("SELECT a.*, u.nom, u.prenom, u.promo, l.alias AS forlife
136 FROM groupex.announces AS a
137 INNER JOIN auth_user_md5 AS u USING(user_id)
138 INNER JOIN aliases AS l ON (u.user_id = l.id AND l.type = 'a_vie')
139 LEFT JOIN groupex.announces_read AS r ON (r.user_id = {?} AND r.announce_id = a.id)
140 WHERE asso_id = {?} AND peremption >= CURRENT_DATE()
141 AND (promo_min = 0 OR promo_min <= {?})
142 AND (promo_max = 0 OR promo_max >= {?})
143 AND r.announce_id IS NULL
144 ORDER BY a.peremption",
145 S::i('uid'), $globals->asso('id'), S::i('promo'), S::i('promo'));
146 $index = XDB::iterator("SELECT a.id, a.titre, r.user_id IS NULL AS nonlu
147 FROM groupex.announces AS a
148 LEFT JOIN groupex.announces_read AS r ON (a.id = r.announce_id AND r.user_id = {?})
149 WHERE asso_id = {?} AND peremption >= CURRENT_DATE()
150 AND (promo_min = 0 OR promo_min <= {?})
151 AND (promo_max = 0 OR promo_max >= {?})
152 ORDER BY a.peremption",
153 S::i('uid'), $globals->asso('id'), S::i('promo'), S::i('promo'));
154 $page->assign('article_index', $index);
155 } else {
156 $arts = XDB::iterator("SELECT a.*, u.nom, u.prenom, u.promo
157 FROM groupex.announces AS a
158 INNER JOIN auth_user_md5 AS u USING(user_id)
159 WHERE asso_id = {?} AND peremption >= CURRENT_DATE()
160 AND FIND_IN_SET(a.flags, 'public')",
161 $globals->asso('id'));
162 }
163
164 if (!S::has('core_rss_hash')) {
165 $page->setRssLink("Polytechnique.net :: {$globals->asso("nom")} :: News publiques",
166 "rss/rss.xml");
167 } else {
168 $page->setRssLink("Polytechnique.net :: {$globals->asso("nom")} :: News",
169 'rss/'.S::v('forlife') .'/'.S::v('core_rss_hash').'/rss.xml');
170 }
171
172 require_once('url_catcher.inc.php');
173 $page->register_modifier('url_catcher', 'url_catcher');
174 $page->assign('articles', $arts);
175
176 $page->assign('asso', $globals->asso());
177 }
178
179 function handler_logo(&$page)
180 {
181 global $globals;
182
183 $res = XDB::query("SELECT logo, logo_mime
184 FROM groupex.asso WHERE id = {?}",
185 $globals->asso('id'));
186 list($logo, $logo_mime) = $res->fetchOneRow();
187
188 if (!empty($logo)) {
189 header("Content-type: $mime");
190 header('Expires: Mon, 26 Jul 1997 05:00:00 GMT');
191 header('Last-Modified:' . gmdate('D, d M Y H:i:s') . ' GMT');
192 header('Cache-Control: no-cache, must-revalidate');
193 header('Pragma: no-cache');
194 echo $logo;
195 } else {
196 header('Content-type: image/jpeg');
197 header('Expires: Mon, 26 Jul 1997 05:00:00 GMT');
198 header('Last-Modified:' . gmdate('D, d M Y H:i:s') . ' GMT');
199 header('Cache-Control: no-cache, must-revalidate');
200 header('Pragma: no-cache');
201 readfile(dirname(__FILE__).'/../htdocs/images/dflt_carre.jpg');
202 }
203
204 exit;
205 }
206
207 function handler_edit(&$page)
208 {
209 global $globals;
210
211 new_groupadmin_page('xnetgrp/edit.tpl');
212
213 if (Post::has('submit')) {
214 if (S::has_perms()) {
215 if (Post::v('mail_domain') && (strstr(Post::v('mail_domain'), '.') === false)) {
216 $page->trig("le domaine doit être un FQDN (aucune modif effectuée) !!!");
217 return;
218 }
219 XDB::execute(
220 "UPDATE groupex.asso
221 SET nom={?}, diminutif={?}, cat={?}, dom={?},
222 descr={?}, site={?}, mail={?}, resp={?},
223 forum={?}, mail_domain={?}, ax={?}, pub={?},
224 sub_url={?}, inscriptible={?}, unsub_url={?}
225 WHERE id={?}",
226 Post::v('nom'), Post::v('diminutif'),
227 Post::v('cat'), Post::i('dom'),
228 Post::v('descr'), Post::v('site'),
229 Post::v('mail'), Post::v('resp'),
230 Post::v('forum'), Post::v('mail_domain'),
231 Post::has('ax'), Post::has('pub')?'private':'public',
232 Post::v('sub_url'), Post::v('inscriptible'),
233 Post::v('unsub_url'),$globals->asso('id'));
234 if (Post::v('mail_domain')) {
235 XDB::execute('INSERT INTO virtual_domains (domain) VALUES({?})',
236 Post::v('mail_domain'));
237 }
238 } else {
239 XDB::execute(
240 "UPDATE groupex.asso
241 SET descr={?}, site={?}, mail={?}, resp={?},
242 forum={?}, ax={?}, pub= {?}, sub_url={?},
243 unsub_url={?}
244 WHERE id={?}",
245 Post::v('descr'), Post::v('site'),
246 Post::v('mail'), Post::v('resp'),
247 Post::v('forum'), Post::has('ax'),
248 Post::has('pub')?'private':'public',
249 Post::v('sub_url'), Post::v('unsub_url'),
250 $globals->asso('id'));
251 }
252
253 if ($_FILES['logo']['name']) {
254 $logo = file_get_contents($_FILES['logo']['tmp_name']);
255 $mime = $_FILES['logo']['type'];
256 XDB::execute('UPDATE groupex.asso
257 SET logo={?}, logo_mime={?}
258 WHERE id={?}', $logo, $mime,
259 $globals->asso('id'));
260 }
261
262 pl_redirect('../'.Post::v('diminutif', $globals->asso('diminutif')).'/edit');
263 }
264
265 if (S::has_perms()) {
266 $dom = XDB::iterator('SELECT * FROM groupex.dom ORDER BY nom');
267 $page->assign('dom', $dom);
268 $page->assign('super', true);
269 }
270 }
271
272 function handler_mail(&$page)
273 {
274 global $globals;
275
276 new_groupadmin_page('xnetgrp/mail.tpl');
277 $mmlist = new MMList(S::v('uid'), S::v('password'),
278 $globals->asso('mail_domain'));
279 $page->assign('listes', $mmlist->get_lists());
280
281 if (Post::has('send')) {
282 $from = Post::v('from');
283 $sujet = Post::v('sujet');
284 $body = Post::v('body');
285
286 $mls = array_keys(Env::v('ml', array()));
287 $mbr = array_keys(Env::v('membres', array()));
288
289 require_once dirname(__FILE__) . '/xnetgrp/mail.inc.php';
290 $tos = get_all_redirects($mbr, $mls, $mmlist);
291 send_xnet_mails($from, $sujet, $body, $tos, Post::v('replyto'), $_FILES['uploaded']);
292 $page->kill("Mail envoyé !");
293 $page->assign('sent', true);
294 }
295 }
296
297 function handler_annuaire(&$page)
298 {
299 global $globals;
300 new_annu_page('xnetgrp/annuaire.tpl');
301
302 $sort = Env::v('order');
303 switch (Env::v('order')) {
304 case 'promo' : $group = 'promo'; $tri = 'promo_o DESC, nom, prenom'; break;
305 case 'promo_inv': $group = 'promo'; $tri = 'promo_o, nom, prenom'; break;
306 case 'alpha_inv': $group = 'initiale'; $tri = 'nom DESC, prenom DESC, promo'; break;
307 default : $group = 'initiale'; $tri = 'nom, prenom, promo'; $sort = 'alpha';
308 }
309 $page->assign('sort', $sort);
310
311 if ($group == 'initiale') {
312 $res = XDB::iterRow(
313 'SELECT UPPER(SUBSTRING(
314 IF(m.origine="X", IF(u.nom_usage<>"", u.nom_usage, u.nom),m.nom),
315 1, 1)) as letter, COUNT(*)
316 FROM groupex.membres AS m
317 LEFT JOIN auth_user_md5 AS u ON ( u.user_id = m.uid)
318 WHERE asso_id = {?} and u.perms != \'pending\'
319 GROUP BY letter
320 ORDER BY letter', $globals->asso('id'));
321 } else {
322 $res = XDB::iterRow(
323 'SELECT IF(m.origine="X",u.promo,
324 IF(m.origine="ext", "extérieur", "personne morale")) AS promo,
325 COUNT(*), IF(m.origine="X",u.promo,"") AS promo_o
326 FROM groupex.membres AS m
327 LEFT JOIN auth_user_md5 AS u ON ( u.user_id = m.uid )
328 WHERE asso_id = {?}
329 GROUP BY promo
330 ORDER BY promo_o DESC', $globals->asso('id'));
331 }
332 $alphabet = array();
333 $nb_tot = 0;
334 while (list($char, $nb) = $res->next()) {
335 $alphabet[] = $char;
336 $nb_tot += $nb;
337 if (Env::has($group) && $char == strtoupper(Env::v($group))) {
338 $tot = $nb;
339 }
340 }
341 $page->assign('group', $group);
342 $page->assign('request_group', Env::v($group));
343 $page->assign('only_admin', Env::has('admin'));
344 $page->assign('alphabet', $alphabet);
345 $page->assign('nb_tot', $nb_tot);
346
347 $ofs = Env::i('offset');
348 $tot = Env::v($group) ? $tot : $nb_tot;
349 $nbp = intval(($tot-1)/NB_PER_PAGE);
350 $links = array();
351 if ($ofs) {
352 $links['précédent'] = $ofs-1;
353 }
354 for ($i = 0; $i <= $nbp; $i++) {
355 $links[(string)($i+1)] = $i;
356 }
357 if ($ofs < $nbp) {
358 $links['suivant'] = $ofs+1;
359 }
360 if (count($links)>1) {
361 $page->assign('links', $links);
362 }
363
364 $ini = '';
365 if (Env::has('initiale')) {
366 $ini = 'AND IF(m.origine="X",
367 IF(u.nom_usage<>"", u.nom_usage, u.nom),
368 m.nom) LIKE "'.addslashes(Env::v('initiale')).'%"';
369 } elseif (Env::has('promo')) {
370 $ini = 'AND IF(m.origine="X", u.promo, IF(m.origine="ext", "extérieur", "personne morale")) = "'
371 .addslashes(Env::v('promo')).'"';
372 } elseif (Env::has('admin')) {
373 $ini = 'AND m.perms = "admin"';
374 }
375
376 $ann = XDB::iterator(
377 "SELECT IF(m.origine='X',IF(u.nom_usage<>'', u.nom_usage, u.nom) ,m.nom) AS nom,
378 IF(m.origine='X',u.prenom,m.prenom) AS prenom,
379 IF(m.origine='X', u.promo, IF(m.origine='ext', 'extérieur', 'personne morale')) AS promo,
380 IF(m.origine='X',u.promo,'') AS promo_o,
381 IF(m.origine='X' AND u.perms != 'pending',a.alias,m.email) AS email,
382 IF(m.origine='X',FIND_IN_SET('femme', u.flags), m.sexe) AS femme,
383 m.perms='admin' AS admin,
384 m.origine='X' AS x,
385 u.perms!='pending' AS inscrit,
386 m.uid, e.email AS actif
387 FROM groupex.membres AS m
388 LEFT JOIN auth_user_md5 AS u ON ( u.user_id = m.uid )
389 LEFT JOIN aliases AS a ON ( a.id = m.uid AND a.type='a_vie' )
390 LEFT JOIN emails AS e ON ( e.flags = 'active' AND e.uid = m.uid)
391 WHERE m.asso_id = {?} $ini
392 AND (m.origine != 'X' OR u.perms != 'pending' OR m.email IS NOT NULL)
393 GROUP BY m.uid
394 ORDER BY $tri
395 LIMIT {?},{?}", $globals->asso('id'), $ofs*NB_PER_PAGE, NB_PER_PAGE);
396 $page->assign('ann', $ann);
397 }
398
399 function handler_trombi(&$page, $num = 1)
400 {
401 global $globals;
402 new_annu_page('xnetgrp/trombi.tpl');
403
404 $page->assign('urlmainsite', "https://www.polytechnique.org/");
405 $trombi = new Trombi(array($this, '_trombi_getlist'));
406 $trombi->hidePromo();
407 $trombi->setAdmin();
408 $page->assign_by_ref('trombi', $trombi);
409 }
410
411 function _trombi_getlist($offset, $limit)
412 {
413 global $globals;
414 $where = "WHERE m.asso_id= '".addslashes($globals->asso('id'))."'";
415
416 $res = XDB::query(
417 "SELECT COUNT(*)
418 FROM auth_user_md5 AS u
419 RIGHT JOIN photo AS p ON u.user_id=p.uid
420 INNER JOIN groupex.membres AS m ON (m.uid = u.user_id)
421 $where");
422 $pnb = $res->fetchOneCell();
423
424 $res = XDB::query("SELECT promo, user_id, a.alias AS forlife,
425 IF (nom_usage='', u.nom, nom_usage) AS nom, u.prenom
426 FROM photo AS p
427 INNER JOIN auth_user_md5 AS u ON u.user_id=p.uid
428 INNER JOIN aliases AS a ON ( u.user_id=a.id AND a.type='a_vie' )
429 INNER JOIN groupex.membres AS m ON (m.uid = u.user_id)
430 $where
431 ORDER BY promo, u.nom, u.prenom LIMIT {?}, {?}", $offset*$limit, $limit);
432
433 return array($pnb, $res->fetchAllAssoc());
434 }
435
436 function handler_vcard(&$page, $photos = null)
437 {
438 global $globals;
439
440 if (($globals->asso('pub') == 'public' && is_member()) || may_update()) {
441 $res = XDB::query('SELECT uid
442 FROM groupex.membres
443 WHERE asso_id = {?}', $globals->asso('id'));
444 require_once('vcard.inc.php');
445 $vcard = new VCard($res->fetchColumn(), $photos == 'photos', 'Membre du groupe ' . $globals->asso('nom'));
446 $vcard->do_page($page);
447 } else {
448 return PL_FORBIDDEN;
449 }
450 }
451
452 function handler_subscribe(&$page, $u = null)
453 {
454 global $globals;
455
456 new_group_open_page('xnetgrp/inscrire.tpl');
457
458 if (!$globals->asso('inscriptible'))
459 $page->kill("Il n'est pas possible de s'inscire en ligne à ce "
460 ."groupe. Essaie de joindre le contact indiqué "
461 ."sur la page de présentation.");
462
463 if (!is_null($u) && may_update()) {
464 $page->assign('u', $u);
465 $res = XDB::query("SELECT nom, prenom, promo, user_id
466 FROM auth_user_md5 AS u
467 INNER JOIN aliases AS al ON (al.id = u.user_id
468 AND al.type != 'liste')
469 WHERE al.alias = {?}", $u);
470
471 if (list($nom, $prenom, $promo, $uid) = $res->fetchOneRow()) {
472 $res = XDB::query("SELECT COUNT(*)
473 FROM groupex.membres AS m
474 INNER JOIN aliases AS a ON (m.uid = a.id
475 AND a.type != 'homonyme')
476 WHERE a.alias = {?} AND m.asso_id = {?}",
477 $u, $globals->asso('id'));
478 $n = $res->fetchOneCell();
479 if ($n) {
480 $page->kill("$prenom $nom est déjà membre du groupe !");
481 return;
482 }
483 elseif (Env::has('accept'))
484 {
485 XDB::execute("INSERT INTO groupex.membres
486 VALUES ({?}, {?}, 'membre', 'X', NULL, NULL, NULL, NULL, NULL)",
487 $globals->asso('id'), $uid);
488 $mailer = new PlMailer();
489 $mailer->addTo("$u@polytechnique.org");
490 $mailer->setFrom('"'.S::v('prenom').' '.S::v('nom')
491 .'" <'.S::v('forlife').'@polytechnique.org>');
492 $mailer->setSubject('['.$globals->asso('nom').'] Demande d\'inscription');
493 $message = "Cher Camarade,\n"
494 . "\n"
495 . " Suite à ta demande d'adhésion à ".$globals->asso('nom').",\n"
496 . "j'ai le plaisir de t'annoncer que ton inscription a été validée !\n"
497 . "\n"
498 . "Bien cordialement,\n"
499 . "{$_SESSION["prenom"]} {$_SESSION["nom"]}.";
500 $mailer->setTxtBody($message);
501 $mailer->send();
502 $page->kill("$prenom $nom a bien été inscrit");
503 }
504 elseif (Env::has('refuse'))
505 {
506 $mailer = new PlMailer();
507 $mailer->addTo("$u@polytechnique.org");
508 $mailer->setFrom('"'.S::v('prenom').' '.S::v('nom')
509 .'" <'.S::v('forlife').'@polytechnique.org>');
510 $mailer->setSubject('['.$globals->asso('nom').'] Demande d\'inscription annulée');
511 $mailer->setTxtBody(Env::v('motif'));
512 $mailer->send();
513 $page->kill("la demande $prenom $nom a bien été refusée");
514 } else {
515 $page->assign('show_form', true);
516 $page->assign('prenom', $prenom);
517 $page->assign('nom', $nom);
518 $page->assign('promo', $promo);
519 $page->assign('uid', $uid);
520 }
521 return;
522 }
523 return PL_NOT_FOUND;
524 }
525
526 if (is_member()) {
527 $page->kill("tu es déjà membre !");
528 return;
529 }
530
531 if (Post::has('inscrire')) {
532 $res = XDB::query('SELECT IF(m.email IS NULL,
533 CONCAT(al.alias,"@polytechnique.org"),
534 m.email)
535 FROM groupex.membres AS m
536 INNER JOIN aliases AS al ON (al.type = "a_vie"
537 AND al.id = m.uid)
538 WHERE perms="admin" AND m.asso_id = {?}',
539 $globals->asso('id'));
540 $emails = $res->fetchColumn();
541 $to = implode(',', $emails);
542
543 $append = "\n"
544 . "-- \n"
545 . "Ce message a été envoyé suite à la demande d'inscription de\n"
546 . S::v('prenom').' '.S::v('nom').' (X'.S::v('promo').")\n"
547 . "Via le site www.polytechnique.net. Tu peux choisir de valider ou\n"
548 . "de refuser sa demande d'inscription depuis la page :\n"
549 .
550 "http://www.polytechnique.net/".$globals->asso("diminutif")."/subscribe/"
551 .S::v('forlife')."\n"
552 . "\n"
553 . "En cas de problème, contacter l'équipe de Polytechnique.org\n"
554 . "à l'adresse : support@polytechnique.org\n";
555
556 if (!$to) {
557 $to = $globals->asso("mail").", support@polytechnique.org";
558 $append = "\n-- \nLe groupe ".$globals->asso("nom")
559 ." n'a pas d'administrateur, l'équipe de"
560 ." Polytechnique.org a été prévenue et va rapidement"
561 ." résoudre ce problème.\n";
562 }
563
564 $mailer = new PlMailer();
565 $mailer->addTo($to);
566 $mailer->setFrom('"'.S::v('prenom').' '.S::v('nom')
567 .'" <'.S::v('forlife').'@polytechnique.org>');
568 $mailer->setSubject('['.$globals->asso('nom').'] Demande d\'inscription');
569 $mailer->setTxtBody(Post::v('message').$append);
570 $mailer->send();
571 }
572 }
573
574 function handler_change_rights(&$page)
575 {
576 if (Env::has('right') && (may_update() || S::has('suid'))) {
577 switch (Env::v('right')) {
578 case 'admin':
579 XnetSession::killSuid();
580 break;
581 case 'anim':
582 XnetSession::doSelfSuid();
583 may_update(true);
584 is_member(true);
585 break;
586 case 'member':
587 XnetSession::doSelfSuid();
588 may_update(false, true);
589 is_member(true);
590 break;
591 case 'logged':
592 XnetSession::doSelfSuid();
593 may_update(false, true);
594 is_member(false, true);
595 break;
596 }
597 }
598 pl_redirect("");
599 }
600
601 function handler_admin_annuaire(&$page)
602 {
603 global $globals;
604
605 require_once dirname(__FILE__) . '/xnetgrp/mail.inc.php';
606
607 new_groupadmin_page('xnetgrp/annuaire-admin.tpl');
608 $mmlist = new MMList(S::v('uid'), S::v('password'),
609 $globals->asso('mail_domain'));
610 $lists = $mmlist->get_lists();
611 if (!$lists) $lists = array();
612 $listes = array_map(create_function('$arr', 'return $arr["list"];'), $lists);
613
614 $subscribers = array();
615
616 foreach ($listes as $list) {
617 list(,$members) = $mmlist->get_members($list);
618 $mails = array_map(create_function('$arr', 'return $arr[1];'), $members);
619 $subscribers = array_unique(array_merge($subscribers, $mails));
620 }
621
622 $not_in_group_x = array();
623 $not_in_group_ext = array();
624
625 foreach ($subscribers as $mail) {
626 $res = XDB::query(
627 'SELECT COUNT(*)
628 FROM groupex.membres AS m
629 LEFT JOIN auth_user_md5 AS u ON (m.uid=u.user_id AND m.uid<50000)
630 LEFT JOIN aliases AS a ON (a.id=u.user_id and a.type="a_vie")
631 WHERE asso_id = {?} AND
632 (m.email = {?} OR CONCAT(a.alias, "@polytechnique.org") = {?})',
633 $globals->asso('id'), $mail, $mail);
634 if ($res->fetchOneCell() == 0) {
635 if (strstr($mail, '@polytechnique.org') === false) {
636 $not_in_group_ext[] = $mail;
637 } else {
638 $not_in_group_x[] = $mail;
639 }
640 }
641 }
642
643 $page->assign('not_in_group_ext', $not_in_group_ext);
644 $page->assign('not_in_group_x', $not_in_group_x);
645 $page->assign('lists', $lists);
646 }
647
648 function handler_admin_member_new(&$page, $email = null)
649 {
650 global $globals;
651
652 new_groupadmin_page('xnetgrp/membres-add.tpl');
653 $page->addJsLink('ajax.js');
654
655 if (is_null($email)) {
656 return;
657 }
658
659 if (strpos($email, '@') === false) {
660 $x = true;
661 } else {
662 list(,$fqdn) = explode('@', $email, 2);
663 $fqdn = strtolower($fqdn);
664 $x = ($fqdn == 'polytechnique.org' || $fqdn == 'melix.org' ||
665 $fqdn == 'm4x.org' || $fqdn == 'melix.net');
666 }
667 if ($x) {
668 require_once 'user.func.inc.php';
669 if ($forlife = get_user_forlife($email)) {
670 XDB::execute(
671 'INSERT INTO groupex.membres (uid,asso_id,origine)
672 SELECT user_id,{?},"X"
673 FROM auth_user_md5 AS u
674 INNER JOIN aliases AS a ON (u.user_id = a.id)
675 WHERE a.alias={?}', $globals->asso('id'), $forlife);
676 pl_redirect("member/$email");
677 } else {
678 $page->trig($email." n'est pas un alias polytechnique.org valide");
679 }
680 } else {
681 require_once 'xorg.misc.inc.php';
682 if (isvalid_email($email)) {
683 if (Env::v('x') && Env::has('userid') && Env::i('userid')) {
684 $uid = Env::i('userid');
685 $res = XDB::query("SELECT *
686 FROM auth_user_md5
687 WHERE user_id = {?} AND perms = 'pending'", $uid);
688 if ($res->numRows() == 1) {
689 XDB::execute('INSERT INTO groupex.membres (uid, asso_id, origine, email)
690 VALUES ({?}, {?}, "X", {?})',
691 $uid, $globals->asso('id'), $email);
692 if (Env::v('market')) {
693 $res = XDB::query('SELECT COUNT(*)
694 FROM register_marketing
695 WHERE uid={?} AND email={?}', $uid, $email);
696 if (!$res->fetchOneCell()) {
697 XDB::execute("INSERT INTO register_marketing (uid,sender,email,date,last,nb,type,hash)
698 VALUES ({?}, {?}, {?}, NOW(), 0, 0, {?}, '')",
699 $uid, S::v('uid'), $email, Env::v('market_from'));
700 require_once('validations.inc.php');
701 $req = new MarkReq(S::v('uid'), $uid, $email, Env::v('market_from') == 'user');
702 $req->submit();
703 }
704 }
705 pl_redirect("member/$email");
706 }
707 $page->trig("Utilisateur invalide");
708 } else {
709 $res = XDB::query('SELECT MAX(uid)+1 FROM groupex.membres');
710 $uid = max(intval($res->fetchOneCell()), 50001);
711 XDB::execute('INSERT INTO groupex.membres (uid,asso_id,origine,email)
712 VALUES({?},{?},"ext",{?})', $uid,
713 $globals->asso('id'), $email);
714 pl_redirect("member/$email");
715 }
716 } else {
717 $page->trig("« <strong>$email</strong> » n'est pas une adresse mail valide");
718 }
719 }
720 }
721
722 function handler_admin_member_new_ajax(&$page)
723 {
724 header('Content-Type: text/html; charset="UTF-8"');
725 $page->changeTpl('xnetgrp/membres-new-search.tpl', NO_SKIN);
726 list($nom, $prenom) = str_replace(array('-', ' ', "'"), '%', array(Env::v('nom'), Env::v('prenom')));
727 $where = "perms = 'pending'";
728 if (!empty($nom)) {
729 $where .= " AND nom LIKE '%$nom%'";
730 }
731 if (!empty($prenom)) {
732 $where .= " AND prenom LIKE '%$prenom%'";
733 }
734 if (preg_match('/^[0-9]{4}$/', Env::v('promo'))) {
735 $where .= " AND promo = " . Env::i('promo');
736 } elseif (Env::has('promo')) {
737 return;
738 }
739 $res = XDB::iterator("SELECT user_id, nom, prenom, promo
740 FROM auth_user_md5
741 WHERE $where");
742 if ($res->total() < 30) {
743 $page->assign("choix", $res);
744 }
745 }
746
747 function unsubscribe(&$user)
748 {
749 global $globals, $page;
750 XDB::execute(
751 "DELETE FROM groupex.membres WHERE uid={?} AND asso_id={?}",
752 $user['uid'], $globals->asso('id'));
753
754 $user_same_email = get_infos($user['email']);
755 $domain = $globals->asso('mail_domain');
756
757 if (!$domain || !empty($user_same_email)) {
758 return true;
759 }
760
761 $mmlist = new MMList(S::v('uid'), S::v('password'), $domain);
762 $listes = $mmlist->get_lists($user['email2']);
763
764 $may_update = may_update();
765 $warning = false;
766 foreach ($listes as $liste) {
767 if ($liste['sub'] == 2) {
768 if ($may_update) {
769 $mmlist->mass_unsubscribe($liste['list'], Array($user['email2']));
770 } else {
771 $mmlist->unsubscribe($liste['list']);
772 }
773 } elseif ($liste['sub']) {
774 $page->trig("{$user['prenom']} {$user['nom']} a une"
775 ." demande d'inscription en cours sur la"
776 ." liste {$liste['list']}@ !");
777 $warning = true;
778 }
779 }
780
781 XDB::execute(
782 "DELETE FROM virtual_redirect
783 USING virtual_redirect
784 INNER JOIN virtual USING(vid)
785 WHERE redirect={?} AND alias LIKE {?}", $user['email'], '%@'.$domain);
786 return !$warning;
787 }
788
789 function handler_unsubscribe(&$page)
790 {
791 new_group_page('xnetgrp/membres-del.tpl');
792 $user = get_infos(S::v('forlife'));
793 if (empty($user)) {
794 return PL_NOT_FOUND;
795 }
796 $page->assign('self', true);
797 $page->assign('user', $user);
798
799 if (!Post::has('confirm')) {
800 return;
801 }
802
803 if ($this->unsubscribe($user)) {
804 $page->trig('Vous avez été désinscrit du groupe avec succès');
805 } else {
806 $page->trig('Vous avez été désinscrit du groupe, mais des erreurs se sont produites lors des désinscriptions des alias et des mailing-lists.');
807 }
808 $page->assign('is_member', is_member(true));
809 }
810
811 function handler_admin_member_del(&$page, $user = null)
812 {
813 new_groupadmin_page('xnetgrp/membres-del.tpl');
814 $user = get_infos($user);
815 if (empty($user)) {
816 return PL_NOT_FOUND;
817 }
818 $page->assign('user', $user);
819
820 if (!Post::has('confirm')) {
821 return;
822 }
823
824 if ($this->unsubscribe($user)) {
825 $page->trig("{$user['prenom']} {$user['nom']} a été désabonné du groupe !");
826 } else {
827 $page->trig("{$user['prenom']} {$user['nom']} a été désabonné du groupe, mais des erreurs subsistent !");
828 }
829 }
830
831 function handler_admin_member(&$page, $user)
832 {
833 global $globals;
834
835 new_groupadmin_page('xnetgrp/membres-edit.tpl');
836
837 $user = get_infos($user);
838 if (empty($user)) {
839 return PL_NOT_FOUND;
840 }
841
842 $mmlist = new MMList(S::v('uid'), S::v('password'),
843 $globals->asso('mail_domain'));
844
845 if (Post::has('change')) {
846 $email_changed = ($user['origine'] != 'X' && strtolower($user['email']) != strtolower(Post::v('email')));
847 $from_email = $user['email'];
848 if ($user['origine'] != 'X') {
849 $user['nom'] = Post::v('nom');
850 $user['prenom'] = (Post::v('origine') == 'ext') ? Post::v('prenom') : '';
851 $user['sexe'] = (Post::v('origine') == 'ext') ? Post::v('sexe') : 0;
852 $user['origine'] = Post::v('origine');
853 XDB::query('UPDATE groupex.membres
854 SET prenom={?}, nom={?}, email={?}, sexe={?}, origine={?}
855 WHERE uid={?} AND asso_id={?}',
856 $user['prenom'], $user['nom'], Post::v('email'),
857 $user['sexe'], $user['origine'], $user['uid'],
858 $globals->asso('id'));
859 $user['email'] = Post::v('email');
860 $user['email2'] = Post::v('email');
861 }
862
863 $perms = Post::i('is_admin');
864 if ($user['perms'] != $perms) {
865 XDB::query('UPDATE groupex.membres SET perms={?}
866 WHERE uid={?} AND asso_id={?}',
867 $perms ? 'admin' : 'membre',
868 $user['uid'], $globals->asso('id'));
869 $user['perms'] = $perms;
870 $page->trig('permissions modifiées');
871 }
872
873 foreach (Env::v('ml1', array()) as $ml => $state) {
874 $ask = empty($_REQUEST['ml2'][$ml]) ? 0 : 2;
875 if ($ask == $state) {
876 if ($state && $email_changed) {
877 $mmlist->replace_email($ml, $from_email, $user['email2']);
878 $page->trig("L'abonnement de {$user['prenom']} {$user['nom']} à $ml@ a été mis à jour");
879 }
880 continue;
881 }
882 if ($state == '1') {
883 $page->trig("{$user['prenom']} {$user['nom']} a "
884 ."actuellement une demande d'inscription en "
885 ."cours sur <strong>$ml@</strong> !!!");
886 } elseif ($ask) {
887 $mmlist->mass_subscribe($ml, Array($user['email2']));
888 $page->trig("{$user['prenom']} {$user['nom']} a été abonné à $ml@");
889 } else {
890 if ($email_changed) {
891 $mmlist->mass_unsubscribe($ml, Array($from_email));
892 } else {
893 $mmlist->mass_unsubscribe($ml, Array($user['email2']));
894 }
895 $page->trig("{$user['prenom']} {$user['nom']} a été désabonné de $ml@");
896 }
897 }
898
899 foreach (Env::v('ml3', array()) as $ml => $state) {
900 $ask = !empty($_REQUEST['ml4'][$ml]);
901 if($state == $ask) continue;
902 if($ask) {
903 XDB::query("INSERT INTO virtual_redirect (vid,redirect)
904 SELECT vid,{?} FROM virtual WHERE alias={?}",
905 $user['email'], $ml);
906 $page->trig("{$user['prenom']} {$user['nom']} a été abonné à $ml");
907 } else {
908 XDB::query("DELETE FROM virtual_redirect
909 USING virtual_redirect
910 INNER JOIN virtual USING(vid)
911 WHERE redirect={?} AND alias={?}",
912 $user['email'], $ml);
913 $page->trig("{$user['prenom']} {$user['nom']} a été désabonné de $ml");
914 }
915 }
916 }
917
918 $page->assign('user', $user);
919 $listes = $mmlist->get_lists($user['email2']);
920 $page->assign('listes', $listes);
921
922 $res = XDB::query(
923 'SELECT alias, redirect IS NOT NULL as sub
924 FROM virtual AS v
925 LEFT JOIN virtual_redirect AS vr ON(v.vid=vr.vid AND redirect={?})
926 WHERE alias LIKE {?} AND type="user"',
927 $user['email'], '%@'.$globals->asso('mail_domain'));
928 $page->assign('alias', $res->fetchAllAssoc());
929 }
930
931 function handler_rss(&$page, $user = null, $hash = null)
932 {
933 global $globals;
934 require_once('rss.inc.php');
935 require_once('url_catcher.inc.php');
936 $uid = init_rss('xnetgrp/announce-rss.tpl', $user, $hash, false);
937 $page->register_modifier('url_catcher', 'url_catcher');
938
939 if ($uid) {
940 $rss = XDB::iterator("SELECT a.id, a.titre, a.texte, a.contacts, a.create_date,
941 IF(u2.nom_usage != '', u2.nom_usage, u2.nom) AS nom, u2.prenom, u2.promo
942 FROM auth_user_md5 AS u
943 INNER JOIN groupex.announces AS a ON ( (a.promo_min = 0 OR a.promo_min <= u.promo)
944 AND (a.promo_max = 0 OR a.promo_max <= u.promo))
945 INNER JOIN auth_user_md5 AS u2 ON (u2.user_id = a.user_id)
946 WHERE u.user_id = {?} AND peremption >= NOW() AND a.asso_id = {?}",
947 $uid, $globals->asso('id'));
948 } else {
949 $rss = XDB::iterator("SELECT a.id, a.titre, a.texte, a.create_date,
950 IF(u.nom_usage != '', u.nom_usage, u.nom) AS nom, u.prenom, u.promo
951 FROM groupex.announces AS a
952 INNER JOIN auth_user_md5 AS u USING(user_id)
953 WHERE FIND_IN_SET(a.flags, 'public') AND peremption >= NOW() AND a.asso_id = {?}",
954 $globals->asso('id'));
955 }
956 $page->assign('asso', $globals->asso());
957 $page->assign('rss', $rss);
958 }
959
960 function handler_edit_announce(&$page, $aid = null)
961 {
962 global $globals, $platal;
963 new_groupadmin_page('xnetgrp/announce-edit.tpl');
964 $page->assign('new', is_null($aid));
965 $art = array();
966
967 if (Post::v('valid') == 'Visualiser' || Post::v('valid') == 'Enregistrer') {
968 if (!is_null($aid)) {
969 $art['id'] = $aid;
970 }
971 $art['titre'] = Post::v('titre');
972 $art['texte'] = Post::v('texte');
973 $art['contacts'] = Post::v('contacts');
974 $art['promo_min'] = Post::i('promo_min');
975 $art['promo_max'] = Post::i('promo_max');
976 $art['nom'] = S::v('nom');
977 $art['prenom'] = S::v('prenom');
978 $art['promo'] = S::v('promo');
979 $art['forlife'] = S::v('forlife');
980 $art['peremption'] = Post::v('peremption');
981 $art['public'] = Post::has('public');
982 $art['xorg'] = Post::has('xorg');
983 $art['nl'] = Post::has('nl');
984 $art['event'] = Post::v('event');
985
986 $art['contact_html'] = $art['contacts'];
987 if ($art['event']) {
988 $art['contact_html'] .= "\n{$globals->baseurl}/{$platal->ns}events/sub/{$art['event']}";
989 }
990
991 if (!$art['public'] &&
992 (($art['promo_min'] > $art['promo_max'] && $art['promo_max'] != 0) ||
993 ($art['promo_min'] != 0 && ($art['promo_min'] <= 1900 || $art['promo_min'] >= 2020)) ||
994 ($art['promo_max'] != 0 && ($art['promo_max'] <= 1900 || $art['promo_max'] >= 2020))))
995 {
996 $page->trig("L'intervalle de promotions est invalide");
997 Post::kill('valid');
998 }
999
1000 if (!trim($art['titre']) || !trim($art['texte'])) {
1001 $page->trig("L'article doit avoir un titre et un contenu");
1002 Post::kill('valid');
1003 }
1004 }
1005
1006 if (Post::v('valid') == 'Enregistrer') {
1007 $promo_min = ($art['public'] ? 0 : $art['promo_min']);
1008 $promo_max = ($art['public'] ? 0 : $art['promo_max']);
1009 if (is_null($aid)) {
1010 XDB::query("INSERT INTO groupex.announces
1011 (user_id, asso_id, create_date, titre, texte, contacts,
1012 peremption, promo_min, promo_max, flags)
1013 VALUES ({?}, {?}, NOW(), {?}, {?}, {?}, {?}, {?}, {?}, {?})",
1014 S::i('uid'), $globals->asso('id'), $art['titre'], $art['texte'], $art['contact_html'],
1015 $art['peremption'], $promo_min, $promo_max, $art['public'] ? 'public' : '');
1016 $aid = XDB::insertId();
1017 if ($art['xorg']) {
1018 require_once('validations.inc.php');
1019 require_once('url_catcher.inc.php');
1020 $article = new EvtReq("[{$globals->asso('nom')}] " . $art['titre'],
1021 url_catcher($art['texte'] . (!empty($art['contact_html']) ? "\n\nContacts :\n" . $art['contact_html'] : "")),
1022 $art['promo_min'], $art['promo_max'], $art['peremption'], "", S::v('uid'));
1023 $article->submit();
1024 $page->trig("L'affichage sur la page d'accueil de Polytechnique.org est en attente de validation");
1025 }
1026 if ($art['nl']) {
1027 require_once('validations.inc.php');
1028 $article = new NLReq(S::v('uid'), $globals->asso('nom') . " : " .$art['titre'],
1029 $art['texte'], $art['contact_html']);
1030 $article->submit();
1031 $page->trig("La parution dans la Lettre Mensuelle est en attente de validation");
1032 }
1033 } else {
1034 XDB::query("UPDATE groupex.announces
1035 SET titre={?}, texte={?}, contacts={?}, peremption={?},
1036 promo_min={?}, promo_max={?}, flags={?}
1037 WHERE id={?} AND asso_id={?}",
1038 $art['titre'], $art['texte'], $art['contacts'], $art['peremption'],
1039 $promo_min, $promo_max, $art['public'] ? 'public' : '',
1040 $art['id'], $globals->asso('id'));
1041 }
1042 }
1043 if (Post::v('valid') == 'Enregistrer' || Post::v('valid') == 'Annuler') {
1044 pl_redirect("");
1045 }
1046
1047 if (empty($art) && !is_null($aid)) {
1048 $res = XDB::query("SELECT a.*, u.nom, u.prenom, u.promo, l.alias AS forlife,
1049 FIND_IN_SET(a.flags, 'public') AS public
1050 FROM groupex.announces AS a
1051 INNER JOIN auth_user_md5 AS u USING(user_id)
1052 INNER JOIN aliases AS l ON (l.id = u.user_id AND l.type = 'a_vie')
1053 WHERE asso_id = {?} AND a.id = {?}",
1054 $globals->asso('id'), $aid);
1055 if ($res->numRows()) {
1056 $art = $res->fetchOneAssoc();
1057 $art['contact_html'] = $art['contacts'];
1058 } else {
1059 $page->kill("Aucun article correspond à l'identifiant indiqué");
1060 }
1061 }
1062
1063 $select = '';
1064 for ($i = 1 ; $i < 30 ; $i++) {
1065 $time = time() + 3600 * 24 * $i;
1066 $p_stamp = date('Ymd', $time);
1067 $year = date('Y', $time);
1068 $month = date('m', $time);
1069 $day = date('d', $time);
1070
1071 $select .= "<option value=\"$p_stamp\"";
1072 if ($p_stamp == strtr(@$art['peremption'], array("-" => ""))) {
1073 $select .= " selected='selected'";
1074 }
1075 $select .= "> $day / $month / $year</option>\n";
1076 }
1077 $page->assign('select', $select);
1078
1079 if (is_null($aid)) {
1080 $events = XDB::iterator("SELECT *
1081 FROM groupex.evenements
1082 WHERE asso_id = {?} AND archive = 0",
1083 $globals->asso('id'));
1084 if ($events->total()) {
1085 $page->assign('events', $events);
1086 }
1087 }
1088
1089 require_once('url_catcher.inc.php');
1090 $art['contact_html'] = url_catcher($art['contact_html']);
1091 $page->assign('art', $art);
1092 }
1093
1094 function handler_admin_announce(&$page)
1095 {
1096 global $globals;
1097 new_groupadmin_page('xnetgrp/announce-admin.tpl');
1098
1099 if (Env::has('del')) {
1100 XDB::execute("DELETE FROM groupex.announces
1101 WHERE id = {?} AND asso_id = {?}",
1102 Env::i('del'), $globals->asso('id'));
1103 }
1104 $res = XDB::iterator("SELECT a.id, a.titre, a.peremption, a.peremption < CURRENT_DATE() AS perime
1105 FROM groupex.announces AS a
1106 WHERE a.asso_id = {?}
1107 ORDER BY a.peremption DESC",
1108 $globals->asso('id'));
1109 $page->assign('articles', $res);
1110 }
1111 }
1112
1113 // vim:set et sw=4 sts=4 sws=4 foldmethod=marker enc=utf-8:
1114 ?>