New userlevel feature. Sysop only, for testing. NO FORM IS VALIDATED : use at your...
[lhc/web/wiklou.git] / includes / SpecialUserlevels.php
1 <?php
2 /**
3 * Provide an administration interface
4 * DO NOT USE: INSECURE.
5 */
6
7 /** */
8 require_once('HTMLForm.php');
9 require_once('Group.php');
10
11 /** Entry point */
12 function wfSpecialUserlevels($par=null) {
13 global $wgRequest;
14 // print_r($_POST);
15 $form = new UserlevelsForm($wgRequest);
16 $form->execute();
17 }
18
19 /**
20 * A class to manage user levels rights.
21 */
22 class UserlevelsForm extends HTMLForm {
23 var $mPosted, $mRequest, $mSaveprefs;
24 /** Escaped local url name*/
25 var $action;
26
27 /** Constructor*/
28 function UserlevelsForm ( &$request ) {
29 $this->mPosted = $request->wasPosted();
30 $this->mRequest = $request;
31 $this->mName = 'userlevels';
32
33 $titleObj = Title::makeTitle( NS_SPECIAL, 'Userlevels' );
34 $this->action = $titleObj->escapeLocalURL();
35 }
36
37 /**
38 * Manage forms to be shown according to posted datas.
39 * Depending on the submit button used : Call a form or a saving function.
40 */
41 function execute() {
42 // show the general form
43 $this->switchForm();
44 if ( $this->mPosted ) {
45 // show some more forms
46 if($this->mRequest->getCheck('seditgroup')) {
47 $this->editGroupForm( $this->mRequest->getVal($this->mName.'-group-edit') ); }
48 if($this->mRequest->getCheck('saddgroup')) {
49 $this->editGroupForm( ); }
50 if($this->mRequest->getCheck('ssearchuser')) {
51 $this->editUserGroupsForm( $this->mRequest->getVal('user-editname')); }
52
53 // save settings
54 if($this->mRequest->getCheck('savegroup')) {
55 $this->saveGroup($this->mRequest->getVal('editgroup-name'),
56 $this->mRequest->getVal('editgroup-oldname'),
57 $this->mRequest->getVal('editgroup-description'));
58
59 } elseif($this->mRequest->getCheck('saveusergroups')) {
60 $this->saveUserGroups($this->mRequest->getVal('user-editname'),
61 $this->mRequest->getVal($this->mName.'-groupsmember'),
62 $this->mRequest->getVal($this->mName.'-groupsavailable'));
63 }
64 }
65 }
66
67 // save things !!
68 /**
69 * Save a group
70 * @param string $newname Group name.
71 * @param string $oldname Old (current) group name.
72 * @param string $description Group description.
73 * @todo FIXME : doesnt validate anything.
74 */
75 function saveGroup($newname, $oldname, $description) {
76 $newame = trim($newname);
77
78 if($oldname == '') {
79 // We create a new group
80 $g = new group();
81 $g->addToDatabase();
82 } else {
83 $g = Group::newFromName($oldname);
84 }
85
86 // save stuff
87 $g->setName($newname);
88 $g->setDescription($description);
89 $g->save();
90 }
91
92 /**
93 * Save user groups changes in the database.
94 * Datas comes from the editUserGroupsForm() form function
95 *
96 * @param string $username Username to apply changes to.
97 * @param array $removegroup id of groups to be removed.
98 * @param array $addgroup id of groups to be added.
99 */
100 function saveUserGroups($username,$removegroup,$addgroup) {
101 $u = User::NewFromName($username);
102
103 print "ADD:\n";
104 print_r($addgroup);
105 print "DEL:\n";
106 print_r($removegroup);
107
108 if(is_null($u)) {
109 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
110 return;
111 }
112 $id = $u->idForName();
113 if($id == 0) {
114 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
115 return;
116 }
117 $u->setID( $id );
118
119 $groups = $u->getGroups();
120 // remove then add groups
121 $groups = array_diff($groups, $removegroup);
122 $groups = array_merge($groups, $addgroup);
123 // save groups in user object and database
124 $u->setGroups($groups);
125 $u->saveSettings();
126 }
127
128 /**
129 * The entry form
130 * It allow a user to select or eventually add a group as well as looking up
131 * for a username.
132 */
133 function switchForm() {
134 global $wgOut;
135
136 // group selection
137 $wgOut->addHTML( "<form name=\"ulgroup\" action=\"$this->action\" method=\"post\">" );
138 $wgOut->addHTML( $this->fieldset( 'lookup-group',
139 $this->HTMLSelectGroups('group-edit', array(0 => $this->mRequest->getVal($this->mName.'-group-edit')) ) .
140 ' <input type="submit" name="seditgroup" value="'.wfMsg('editgroup').'">' .
141 '<br /><input type="submit" name="saddgroup" value="'.wfMsg('addgroup').'">'
142 ));
143 $wgOut->addHTML( "</form>" );
144
145 // user selection
146 $wgOut->addHTML( "<form name=\"uluser\" action=\"$this->action\" method=\"post\">" );
147 $wgOut->addHTML( $this->fieldset( 'lookup-user',
148 $this->textbox( 'user-editname' ) .
149 '<input type="submit" name="ssearchuser" value="'.wfMsg('editusergroup').'">'
150 ));
151 $wgOut->addHTML( "</form>" );
152 }
153
154 /**
155 * Edit a group properties and rights.
156 * @param string $groupname Name of a group to be edited.
157 */
158 function editGroupForm($groupID = 0) {
159 global $wgOut;
160
161 if($this->mRequest->getVal('seditgroup')) {
162 // fetch data if we edit a group
163 $g = Group::newFromID($groupID);
164 $gName = $g->getName();
165 $gDescription = $g->getDescription();
166 $fieldname = 'editgroup';
167 } else {
168 // default datas when we add a group
169 $gName = '';
170 $gDescription = '';
171 $fieldname = 'addgroup';
172 }
173
174 $wgOut->addHTML( "<form name=\"editGroup\" action=\"$this->action\" method=\"post\">".
175 '<input type="hidden" name="editgroup-oldname" value="'.$gName.'">');
176 $wgOut->addHTML( $this->fieldset( $fieldname,
177 $this->textbox( 'editgroup-name', $gName ) .
178 $this->textareabox( 'editgroup-description', $gDescription ) .
179 '<input type="submit" name="savegroup" value="'.wfMsg('savegroup').'">'
180 ));
181 $wgOut->addHTML( "</form>" );
182 }
183
184 /**
185 * Edit user groups membership
186 * @param string $username Name of the user.
187 */
188 function editUserGroupsForm($username) {
189 global $wgOut;
190
191 $user = User::newFromName($username);
192 if(is_null($user)) {
193 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
194 return;
195 }
196 $id = $user->idForName();
197 if($id == 0) {
198 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
199 return;
200 }
201 $user->setID( $id );
202
203 $groups = $user->getGroups();
204
205 $wgOut->addHTML( "<form name=\"editGroup\" action=\"$this->action\" method=\"post\">".
206 '<input type="hidden" name="user-editname" value="'.$username.'">');
207 $wgOut->addHTML( $this->fieldset( 'editusergroup',
208 wfMsg('editing', $this->mRequest->getVal('user-editname')).'.<br />' .
209 '<table border="0"><tr><td>'.
210 $this->HTMLSelectGroups('groupsmember', $groups,true,6).
211 '</td><td>'.
212 $this->HTMLSelectGroups('groupsavailable', $groups,true,6,true).
213 '</td></tr></table>'.
214 '<p>'.wfMsg('userlevels-groupshelp').'</p>'.
215 '<input type="submit" name="saveusergroups" value="'.wfMsg('saveusergroups').'">'
216 ));
217 $wgOut->addHTML( "</form>" );
218 }
219
220
221 /** Build a select with all existent groups
222 * @param string $selectname Name of this element. Name of form is automaticly prefixed.
223 * @param array $selected Array of element selected when posted. Multiples will only show them.
224 * @param boolean $multiple A multiple elements select.
225 * @param integer $size Number of element to be shown ignored for non multiple (default 6).
226 * @param boolean $reverse If true, multiple select will hide selected elements (default false).
227 */
228 function HTMLSelectGroups($selectname, $selected=array(), $multiple=false, $size=6, $reverse=false) {
229 $selectname = $this->mName.'-'.$selectname;
230 $dbr =& wfGetDB( DB_SLAVE );
231 $sql = 'SELECT group_id, group_name FROM `group`';
232 $res = $dbr->query($sql,'wfSpecialAdmin');
233
234 $out = wfMsg($selectname);
235 $out .= '<select name="'.$selectname;
236 if($multiple) { $out.='[]" multiple size="'.$size; }
237 $out.='">';
238
239 while($g = $dbr->fetchObject( $res ) ) {
240 if($multiple) {
241 // for multiple will only show the things we want
242 if(in_array($g->group_id, $selected) xor $reverse) {
243 $out .= '<option value="'.$g->group_id.'">'.$g->group_name.'</option>';
244 }
245 } else {
246 $out .= '<option ';
247 if(in_array($g->group_id, $selected)) { $out .= 'selected '; }
248 $out .= 'value="'.$g->group_id.'">'.$g->group_name.'</option>';
249 }
250 }
251
252 $out .= '</select>';
253 return $out;
254 }
255
256 }
257 ?>