Exemple #1
0
 public function run($args = array())
 {
     global $FANNIE_URL;
     $data = array();
     $action = FormLib::get_form_value('action');
     if ($action !== '') {
         $data[] = $action;
         switch ($action) {
             case 'save_or_add_event':
                 $calID = FormLib::get('id', 0);
                 $text = FormLib::get('text');
                 $text = str_replace('<br>', "\n", $text);
                 $text = htmlspecialchars($text);
                 $text = str_replace("\n", '<br>', $text);
                 $db = CalendarPluginDB::get();
                 $event = new MonthviewEventsModel($db);
                 $eventID = FormLib::get('eventID', false);
                 if ($eventID !== false) {
                     $event->eventID($eventID);
                     $event->eventText($text);
                     if (!empty($text)) {
                         $event->save();
                     } else {
                         $event->delete();
                     }
                 } else {
                     $date = FormLib::get('datestr');
                     $uid = FormLib::get('uid');
                     $event->eventDate($date);
                     $event->calendarID($calID);
                     $event->uid($uid);
                     $event->eventText($text);
                     if (!empty($text)) {
                         $eventID = $event->save();
                         $data = array();
                         echo $eventID;
                     }
                 }
                 $calendar = new CalendarsModel($db);
                 $calendar->calendarID($calID);
                 $calendar->modified(1);
                 $calendar->save();
                 break;
             case 'monthview_save':
                 $date = FormLib::get_form_value('date');
                 $id = FormLib::get_form_value('id', 0);
                 $text = FormLib::get_form_value('text');
                 $uid = FormLib::get_form_value('uid', 0);
                 $db = CalendarPluginDB::get();
                 $chkP = $db->prepare_statement("SELECT calendarID FROM monthview_events \n                        WHERE eventDate=? and uid=? and calendarID=?");
                 $rowCheck = $db->exec_statement($chkP, array($date, $uid, $id));
                 if ($db->num_rows($rowCheck) <= 0 && $text != "") {
                     $insP = $db->prepare_statement("INSERT INTO monthview_events \n                                                    (calendarID, eventDate, eventText, uid) VALUES (?,?,?,?)");
                     $db->exec_statement($insP, array($id, $date, $text, $uid));
                 } else {
                     if ($text == "") {
                         $delP = $db->prepare_statement("DELETE FROM monthview_events WHERE\n                            calendarID=? AND eventDate=?\n                            AND uid=?");
                         $db->exec_statement($delP, array($id, $date, $uid));
                     } else {
                         $upP = $db->prepare_statement("UPDATE monthview_events SET\n                            eventText=?\n                            WHERE calendarID=? AND eventDate=?\n                            AND uid=?");
                         $db->exec_statement($upP, array($text, $id, $date, $uid));
                     }
                 }
                 $calendar = new CalendarsModel($db);
                 $calendar->calendarID($id);
                 $calendar->modified(1);
                 $calendar->save();
                 break;
             case 'createCalendar':
                 $name = FormLib::get_form_value('name');
                 $uid = FormLib::get_form_value('uid', 0);
                 $db = CalendarPluginDB::get();
                 $p = $db->prepare_statement("INSERT INTO calendars (name) VALUES (?)");
                 $db->exec_statement($p, array($name));
                 $id = $db->insert_id();
                 $p = $db->prepare_statement("INSERT INTO permissions (calendarID,uid,classID)\n                                VALUES (?,?,4)");
                 $db->exec_statement($p, array($id, $uid));
                 $data[] = "<p class=\"index\"><a href=\"?calID={$id}&view=month\">{$name}</a></p>";
                 break;
             case 'createSubscription':
                 $db = CalendarPluginDB::get();
                 $name = FormLib::get('name');
                 $url = FormLib::get('url');
                 $uid = FormLib::get_form_value('uid', 0);
                 $subscription = new CalendarSubscriptionsModel($db);
                 $subscription->url($url);
                 $subscriptionID = $subscription->save();
                 $calendar = new CalendarsModel($db);
                 $calendar->name($name);
                 $calendar->calendarSubscriptionID($subscriptionID);
                 $calendarID = $calendar->save();
                 $permissions = new PermissionsModel($db);
                 $permissions->calendarID($calendarID);
                 $permissions->uid($uid);
                 $permissions->classID(4);
                 $permissions->save();
                 $data[] = 'Subscribed';
                 break;
             case 'savePrefs':
                 $calID = FormLib::get_form_value('calID');
                 $name = str_replace("'", "''", $_GET['name']);
                 $name = FormLib::get_form_value('name');
                 $viewers = FormLib::get_form_value('viewers', array());
                 $writers = FormLib::get_form_value('writers', array());
                 $db = CalendarPluginDB::get();
                 $calendar = new CalendarsModel($db);
                 $calendar->calendarID($calID);
                 $calendar->load();
                 $calendar->name($name);
                 $calendar->save();
                 $p = $db->prepare_statement("DELETE FROM permissions WHERE calendarID=? and classID < 4");
                 $db->exec_statement($p, array($calID));
                 $insP = $db->prepare_statement("INSERT INTO permissions (calendarID,uid,classID) VALUES (?,?,?)");
                 if ($viewers != "") {
                     foreach (explode(",", $viewers) as $v) {
                         $db->exec_statement($insP, array($calID, $v, 1));
                     }
                 }
                 if ($writers != "") {
                     foreach (explode(",", $writers) as $w) {
                         $db->exec_statement($insP, array($calID, $w, 2));
                     }
                 }
                 if (FormLib::get('url')) {
                     $url = FormLib::get('url');
                     $sub = new CalendarSubscriptionsModel($db);
                     $sub->calendarSubscriptionID($calendar->calendarSubscriptionID());
                     $sub->url($url);
                     $sub->save();
                 }
                 break;
             case 'weekview_save':
                 $timestamp = FormLib::get_form_value('ts');
                 $date = date('Y-m-d H:i:00', $timestamp);
                 $calID = FormLib::get_form_value('id', 0);
                 $text = trim(FormLib::get_form_value('text'));
                 $eID = FormLib::get('eventID', false);
                 $uid = FannieAuth::getUID(FannieAuth::checkLogin());
                 $pat = '/#(\\d+)/';
                 $rep = '<a href="' . $FANNIE_URL . 'modules/plugins2.0/PIKiller/PIMemberPage.php?id=${1}" onclick="noBubble(event);">#${1}</a>';
                 $text = preg_replace($pat, $rep, $text);
                 $db = CalendarPluginDB::get();
                 $model = new MonthviewEventsModel($db);
                 if ($eID) {
                     $model->eventID($eID);
                 }
                 if (empty($text) && $eID) {
                     // delete empty event
                     // no eID implies event doesn't exist
                     // just opened/closed w/o content
                     $model->delete();
                 } else {
                     if (!empty($text)) {
                         $model->uid($uid);
                         $model->eventDate($date);
                         $model->eventText($text);
                         $model->calendarID($calID);
                         $newID = $model->save();
                         if (!$eID) {
                             $data[] = $newID;
                         }
                     }
                 }
                 break;
         }
     }
     return $data;
 }
 public static function prefsView($calID, $uid)
 {
     global $FANNIE_OP_DB;
     if (!CalendarPluginPermissions::is_owner($uid, $calID)) {
         return "<h2>Either something goofed up or you aren't allowed to change\n                settings for this calendar</h2>";
     }
     $db = CalendarPluginDB::get();
     $calendar = new CalendarsModel($db);
     $calendar->calendarID($calID);
     $calendar->load();
     $name = $calendar->name();
     $ret = "<body>";
     $ret .= "<p>Name: <input type=text size=15 id=prefName value=\"{$name}\" />";
     if ($calendar->calendarSubscriptionID()) {
         $sub = new CalendarSubscriptionsModel($db);
         $sub->calendarSubscriptionID($calendar->calendarSubscriptionID());
         $sub->load();
         $ret .= '</p><p>URL: <input type="text" size="50" id="sub-url" value="' . $sub->url() . '" />';
     }
     $ret .= "</p><hr />";
     $userP = $db->prepare_statement("SELECT uid,real_name,name FROM " . $FANNIE_OP_DB . $db->sep() . "Users \n                    WHERE uid<>? order by name,real_name");
     $userR = $db->exec_statement($userP, array($uid));
     $userOpts = array();
     while ($userW = $db->fetch_row($userR)) {
         $name = $userW['real_name'];
         if ($name == '') {
             $name = $userW['name'];
         } else {
             if ($name == 'Array') {
                 $name = $userW['name'];
             }
         }
         $userOpts[$userW['uid']] = "<option value=\"{$userW['uid']}\">{$name}</option>";
     }
     $ret .= "<p>Users who can view this calendar (<i>left</i>):";
     $ret .= "<table><tr>";
     $viewP = $db->prepare_statement("SELECT p.uid,u.real_name,u.name FROM permissions as p\n              LEFT JOIN " . $FANNIE_OP_DB . $db->sep() . "Users as u on p.uid=u.uid\n              WHERE p.calendarID=?\n              AND p.classID = 1");
     $viewR = $db->exec_statement($viewP, array($calID));
     $ret .= "<td><select id=prefViewers multiple size=10 style=\"min-width:50px\">";
     while ($viewW = $db->fetch_row($viewR)) {
         $name = $userW['real_name'];
         if ($viewW[0] == -1) {
             $name = "Everyone";
         } elseif ($name == '') {
             $name = $userW['name'];
         } else {
             if ($name == 'Array') {
                 $name = $userW['name'];
             }
         }
         $ret .= "<option value={$viewW['0']}>{$name}</option>";
     }
     $ret .= "</select></td>";
     $ret .= "<td><input type=submit value=\"<<\" onclick=\"select_add('prefViewers2','prefViewers');\" /><p />";
     $ret .= "<input type=submit value=\">>\" onclick=\"select_remove('prefViewers');\" /></td>";
     $ret .= "<td><select id=prefViewers2 multiple size=10>";
     $ret .= "<option value=-1>Everyone</option>";
     foreach ($userOpts as $k => $v) {
         $ret .= $v;
     }
     $ret .= "</select></td>";
     $ret .= "</tr></table>";
     $ret .= "</p><hr />";
     $ret .= "<p>Users who can write on this calendar (<i>left</i>):";
     $ret .= "<table><tr>";
     $viewP = $db->prepare_statement("SELECT p.uid,u.real_name,u.name FROM permissions as p\n              LEFT JOIN " . $FANNIE_OP_DB . $db->sep() . "Users as u on p.uid=u.uid\n              WHERE p.calendarID=?\n              AND p.classID = 2");
     $viewR = $db->exec_statement($viewP, array($calID));
     $ret .= "<td><select id=prefWriters multiple size=10 style=\"min-width:50px\">";
     while ($viewW = $db->fetch_row($viewR)) {
         $name = $userW['real_name'];
         if ($viewW[0] == -1) {
             $name = "Everyone";
         } elseif ($name == '') {
             $name = $userW['name'];
         } else {
             if ($name == 'Array') {
                 $name = $userW['name'];
             }
         }
         $ret .= "<option value={$viewW['0']}>{$name}</option>";
     }
     $ret .= "</select></td>";
     $ret .= "<td><input type=submit value=\"<<\" onclick=\"select_add('prefWriters2','prefWriters');\" /><p />";
     $ret .= "<input type=submit value=\">>\" onclick=\"select_remove('prefWriters');\" /></td>";
     $ret .= "<td><select id=prefWriters2 multiple size=10>";
     $ret .= "<option value=-1>Everyone</option>";
     foreach ($userOpts as $k => $v) {
         $ret .= $v;
     }
     $ret .= "</select></td>";
     $ret .= "</tr></table>";
     $ret .= "</p><hr />";
     $ret .= "<input type=submit value=\"Save Settings\" onclick=\"savePrefs({$calID});return false;\" /> ";
     $ret .= "<input type=submit value=\"Back to Calendar\" onclick=\"top.location='?view=month&calID={$calID}';\" /> ";
     return $ret;
 }