abdfb4d0 |
1 | <?php |
895905c0 |
2 | |
35586184 |
3 | /** |
4 | * addressbook.php |
5 | * |
76911253 |
6 | * Copyright (c) 1999-2003 The SquirrelMail Project Team |
35586184 |
7 | * Licensed under the GNU GPL. For full terms see the file COPYING. |
8 | * |
9 | * Manage personal address book. |
10 | * |
11 | * $Id$ |
12 | */ |
13 | |
86725763 |
14 | /* Path for SquirrelMail required files. */ |
15 | define('SM_PATH','../'); |
16 | |
17 | /* SquirrelMail required files. */ |
08185f2a |
18 | require_once(SM_PATH . 'include/validate.php'); |
1e12d1ff |
19 | require_once(SM_PATH . 'functions/global.php'); |
86725763 |
20 | require_once(SM_PATH . 'functions/display_messages.php'); |
21 | require_once(SM_PATH . 'functions/addressbook.php'); |
22 | require_once(SM_PATH . 'functions/strings.php'); |
23 | require_once(SM_PATH . 'functions/html.php'); |
ffd8224c |
24 | |
0b97a708 |
25 | /* lets get the global vars we may need */ |
1e12d1ff |
26 | sqgetGlobalVar('key', $key, SQ_COOKIE); |
0b97a708 |
27 | |
1e12d1ff |
28 | sqgetGlobalVar('username', $username, SQ_SESSION); |
29 | sqgetGlobalVar('onetimepad',$onetimepad, SQ_SESSION); |
30 | sqgetGlobalVar('base_uri', $base_uri, SQ_SESSION); |
31 | sqgetGlobalVar('delimiter', $delimiter, SQ_SESSION); |
0b97a708 |
32 | |
33 | /* From the address form */ |
1e12d1ff |
34 | sqgetGlobalVar('addaddr', $addaddr, SQ_POST); |
35 | sqgetGlobalVar('editaddr', $editaddr, SQ_POST); |
36 | sqgetGlobalVar('deladdr', $deladdr, SQ_POST); |
37 | sqgetGlobalVar('sel', $sel, SQ_POST); |
38 | sqgetGlobalVar('oldnick', $oldnick, SQ_POST); |
39 | sqgetGlobalVar('backend', $backend, SQ_POST); |
40 | sqgetGlobalVar('doedit', $doedit, SQ_POST); |
0b97a708 |
41 | |
daba719e |
42 | /* Make an input field */ |
43 | function adressbook_inp_field($label, $field, $name, $size, $values, $add) { |
44 | global $color; |
ac987a56 |
45 | $td_str = '<INPUT NAME="' . $name . '[' . $field . ']" SIZE="' . $size . '" VALUE="'; |
daba719e |
46 | if (isset($values[$field])) { |
c6554ec0 |
47 | $td_str .= htmlspecialchars( strip_tags( $values[$field] ) ); |
ffd8224c |
48 | } |
ac987a56 |
49 | $td_str .= '">' . $add . ''; |
50 | return html_tag( 'tr' , |
51 | html_tag( 'td', $label . ':', 'right', $color[4]) . |
52 | html_tag( 'td', $td_str, 'left', $color[4]) |
53 | ) |
54 | . "\n"; |
daba719e |
55 | } |
ffd8224c |
56 | |
daba719e |
57 | /* Output form to add and modify address data */ |
58 | function address_form($name, $submittext, $values = array()) { |
59 | global $color; |
c6554ec0 |
60 | |
ac987a56 |
61 | echo html_tag( 'table', |
62 | adressbook_inp_field(_("Nickname"), 'nickname', $name, 15, $values, |
c6554ec0 |
63 | ' <SMALL>' . _("Must be unique") . '</SMALL>') . |
ac987a56 |
64 | adressbook_inp_field(_("E-mail address"), 'email', $name, 45, $values, '') . |
65 | adressbook_inp_field(_("First name"), 'firstname', $name, 45, $values, '') . |
66 | adressbook_inp_field(_("Last name"), 'lastname', $name, 45, $values, '') . |
67 | adressbook_inp_field(_("Additional info"), 'label', $name, 45, $values, '') . |
68 | html_tag( 'tr', |
69 | html_tag( 'td', |
70 | '<INPUT TYPE=submit NAME="' . $name . '[SUBMIT]" VALUE="' . |
71 | $submittext . '">', |
72 | 'center', $color[4], 'colspan="2"') |
73 | ) |
ac50138c |
74 | , 'center', '', 'border="0" cellpadding="1" width="90%"') ."\n"; |
daba719e |
75 | } |
ffd8224c |
76 | |
f6c945b9 |
77 | /* Open addressbook, with error messages on but without LDAP (the * |
78 | * second "true"). Don't need LDAP here anyway */ |
daba719e |
79 | $abook = addressbook_init(true, true); |
80 | if($abook->localbackend == 0) { |
81 | plain_error_message( |
82 | _("No personal address book is defined. Contact administrator."), |
83 | $color); |
84 | exit(); |
85 | } |
ffd8224c |
86 | |
daba719e |
87 | displayPageHeader($color, 'None'); |
ffd8224c |
88 | |
daba719e |
89 | $defdata = array(); |
90 | $formerror = ''; |
91 | $abortform = false; |
92 | $showaddrlist = true; |
93 | $defselected = array(); |
07dcee9f |
94 | $form_url = 'addressbook.php'; |
daba719e |
95 | |
96 | |
f6c945b9 |
97 | /* Handle user's actions */ |
1e12d1ff |
98 | if(sqgetGlobalVar('REQUEST_METHOD', $req_method, SQ_SERVER) && $req_method == 'POST') { |
daba719e |
99 | |
f6c945b9 |
100 | /************************************************** |
101 | * Add new address * |
102 | **************************************************/ |
103 | if (!empty($addaddr['nickname'])) { |
c6554ec0 |
104 | foreach( $addaddr as $k => $adr ) { |
105 | $addaddr[$k] = strip_tags( $adr ); |
106 | } |
ffd8224c |
107 | $r = $abook->add($addaddr, $abook->localbackend); |
108 | |
f6c945b9 |
109 | /* Handle error messages */ |
110 | if (!$r) { |
111 | /* Remove backend name from error string */ |
ffd8224c |
112 | $errstr = $abook->error; |
113 | $errstr = ereg_replace('^\[.*\] *', '', $errstr); |
114 | |
115 | $formerror = $errstr; |
116 | $showaddrlist = false; |
117 | $defdata = $addaddr; |
118 | } |
daba719e |
119 | } else { |
ffd8224c |
120 | |
f6c945b9 |
121 | /************************************************ |
122 | * Delete address(es) * |
123 | ************************************************/ |
124 | if ((!empty($deladdr)) && sizeof($sel) > 0) { |
daba719e |
125 | $orig_sel = $sel; |
126 | sort($sel); |
127 | |
f6c945b9 |
128 | /* The selected addresses are identidied by "backend:nickname". * |
129 | * Sort the list and process one backend at the time */ |
daba719e |
130 | $prevback = -1; |
131 | $subsel = array(); |
132 | $delfailed = false; |
133 | |
f6c945b9 |
134 | for ($i = 0 ; (($i < sizeof($sel)) && !$delfailed) ; $i++) { |
daba719e |
135 | list($sbackend, $snick) = explode(':', $sel[$i]); |
136 | |
f6c945b9 |
137 | /* When we get to a new backend, process addresses in * |
138 | * previous one. */ |
139 | if ($prevback != $sbackend && $prevback != -1) { |
daba719e |
140 | |
141 | $r = $abook->remove($subsel, $prevback); |
f6c945b9 |
142 | if (!$r) { |
daba719e |
143 | $formerror = $abook->error; |
144 | $i = sizeof($sel); |
145 | $delfailed = true; |
146 | break; |
147 | } |
148 | $subsel = array(); |
149 | } |
150 | |
f6c945b9 |
151 | /* Queue for processing */ |
daba719e |
152 | array_push($subsel, $snick); |
153 | $prevback = $sbackend; |
ffd8224c |
154 | } |
ffd8224c |
155 | |
f6c945b9 |
156 | if (!$delfailed) { |
daba719e |
157 | $r = $abook->remove($subsel, $prevback); |
f6c945b9 |
158 | if (!$r) { /* Handle errors */ |
daba719e |
159 | $formerror = $abook->error; |
160 | $delfailed = true; |
161 | } |
ffd8224c |
162 | } |
ffd8224c |
163 | |
f6c945b9 |
164 | if ($delfailed) { |
daba719e |
165 | $showaddrlist = true; |
166 | $defselected = $orig_sel; |
ffd8224c |
167 | } |
ffd8224c |
168 | |
daba719e |
169 | } else { |
170 | |
f6c945b9 |
171 | /*********************************************** |
172 | * Update/modify address * |
173 | ***********************************************/ |
174 | if (!empty($editaddr)) { |
daba719e |
175 | |
f6c945b9 |
176 | /* Stage one: Copy data into form */ |
daba719e |
177 | if (isset($sel) && sizeof($sel) > 0) { |
178 | if(sizeof($sel) > 1) { |
179 | $formerror = _("You can only edit one address at the time"); |
180 | $showaddrlist = true; |
181 | $defselected = $sel; |
182 | } else { |
183 | $abortform = true; |
184 | list($ebackend, $enick) = explode(':', $sel[0]); |
185 | $olddata = $abook->lookup($enick, $ebackend); |
186 | |
f6c945b9 |
187 | /* Display the "new address" form */ |
07dcee9f |
188 | echo '<FORM ACTION="' . $form_url . '" METHOD="POST">' . |
f6c945b9 |
189 | "\n" . |
ac987a56 |
190 | html_tag( 'table', |
191 | html_tag( 'tr', |
192 | html_tag( 'td', |
193 | "\n". '<strong>' . _("Update address") . '</strong>' ."\n", |
194 | 'center', $color[0] ) |
195 | ), |
bd9c880b |
196 | 'center', '', 'width="100%" ' ); |
daba719e |
197 | address_form("editaddr", _("Update address"), $olddata); |
f6c945b9 |
198 | echo '<INPUT TYPE=hidden NAME=oldnick VALUE="' . |
199 | htmlspecialchars($olddata["nickname"]) . "\">\n" . |
200 | '<INPUT TYPE=hidden NAME=backend VALUE="' . |
201 | htmlspecialchars($olddata["backend"]) . "\">\n" . |
202 | '<INPUT TYPE=hidden NAME=doedit VALUE=1>' . "\n" . |
203 | '</FORM>'; |
daba719e |
204 | } |
205 | } else { |
206 | |
f6c945b9 |
207 | /* Stage two: Write new data */ |
208 | if ($doedit = 1) { |
daba719e |
209 | $newdata = $editaddr; |
210 | $r = $abook->modify($oldnick, $newdata, $backend); |
211 | |
f6c945b9 |
212 | /* Handle error messages */ |
213 | if (!$r) { |
214 | /* Display error */ |
ac987a56 |
215 | echo html_tag( 'table', |
216 | html_tag( 'tr', |
217 | html_tag( 'td', |
218 | "\n". '<br><strong><font color="' . $color[2] . |
219 | '">' . _("ERROR") . ': ' . $abook->error . '</font></strong>' ."\n", |
220 | 'center' ) |
221 | ), |
ac50138c |
222 | 'center', '', 'width="100%"' ); |
f6c945b9 |
223 | |
224 | /* Display the "new address" form again */ |
07dcee9f |
225 | echo '<FORM ACTION="' . $form_url . |
f6c945b9 |
226 | '" METHOD="POST">' . "\n" . |
ac987a56 |
227 | html_tag( 'table', |
228 | html_tag( 'tr', |
229 | html_tag( 'td', |
230 | "\n". '<br><strong>' . _("Update address") . '</strong>' ."\n", |
231 | 'center', $color[0] ) |
232 | ), |
ac50138c |
233 | 'center', '', 'width="100%"' ) . |
daba719e |
234 | address_form("editaddr", _("Update address"), $newdata); |
f6c945b9 |
235 | echo '<INPUT TYPE=hidden NAME=oldnick VALUE="' . |
236 | htmlspecialchars($oldnick) . "\">\n" . |
237 | '<INPUT TYPE=hidden NAME=backend VALUE="' . |
238 | htmlspecialchars($backend) . "\">\n" . |
239 | '<INPUT TYPE=hidden NAME=doedit VALUE=1>' . |
240 | "\n" . '</FORM>'; |
daba719e |
241 | $abortform = true; |
242 | } |
243 | } else { |
244 | |
f6c945b9 |
245 | /* Should not get here... */ |
daba719e |
246 | plain_error_message(_("Unknown error"), $color); |
247 | $abortform = true; |
248 | } |
249 | } |
250 | } /* !empty($editaddr) - Update/modify address */ |
251 | } /* (!empty($deladdr)) && sizeof($sel) > 0 - Delete address(es) */ |
252 | } /* !empty($addaddr['nickname']) - Add new address */ |
253 | |
254 | // Some times we end output before forms are printed |
255 | if($abortform) { |
f6c945b9 |
256 | echo "</BODY></HTML>\n"; |
daba719e |
257 | exit(); |
ffd8224c |
258 | } |
daba719e |
259 | } |
ffd8224c |
260 | |
261 | |
f6c945b9 |
262 | /* =================================================================== * |
263 | * The following is only executed on a GET request, or on a POST when * |
264 | * a user is added, or when "delete" or "modify" was successful. * |
265 | * =================================================================== */ |
ffd8224c |
266 | |
f6c945b9 |
267 | /* Display error messages */ |
268 | if (!empty($formerror)) { |
ac987a56 |
269 | echo html_tag( 'table', |
270 | html_tag( 'tr', |
271 | html_tag( 'td', |
272 | "\n". '<br><strong><font color="' . $color[2] . |
273 | '">' . _("ERROR") . ': ' . $formerror . '</font></strong>' ."\n", |
274 | 'center' ) |
275 | ), |
ac50138c |
276 | 'center', '', 'width="100%"' ); |
daba719e |
277 | } |
ffd8224c |
278 | |
279 | |
f6c945b9 |
280 | /* Display the address management part */ |
281 | if ($showaddrlist) { |
282 | /* Get and sort address list */ |
daba719e |
283 | $alist = $abook->list_addr(); |
284 | if(!is_array($alist)) { |
ffd8224c |
285 | plain_error_message($abook->error, $color); |
286 | exit; |
daba719e |
287 | } |
ffd8224c |
288 | |
daba719e |
289 | usort($alist,'alistcmp'); |
290 | $prevbackend = -1; |
291 | $headerprinted = false; |
ffd8224c |
292 | |
ac987a56 |
293 | echo html_tag( 'p', '<a href="#AddAddress">' . _("Add address") . '</a>', 'center' ) . "\n"; |
ffd8224c |
294 | |
f6c945b9 |
295 | /* List addresses */ |
91821fc0 |
296 | if (count($alist) > 0) { |
07dcee9f |
297 | echo '<FORM ACTION="' . $form_url . '" METHOD="POST">' . "\n"; |
91821fc0 |
298 | while(list($undef,$row) = each($alist)) { |
299 | |
300 | /* New table header for each backend */ |
301 | if($prevbackend != $row['backend']) { |
92cd1e8e |
302 | if($prevbackend < 0) { |
ac987a56 |
303 | echo html_tag( 'table', |
304 | html_tag( 'tr', |
305 | html_tag( 'td', |
306 | '<INPUT TYPE=submit NAME=editaddr VALUE="' . |
307 | _("Edit selected") . "\">\n" . |
308 | '<INPUT TYPE=submit NAME=deladdr VALUE="' . |
309 | _("Delete selected") . "\">\n", |
310 | 'center', '', 'colspan="5"' ) |
311 | ) . |
312 | html_tag( 'tr', |
313 | html_tag( 'td', ' <br>', 'center', '', 'colspan="5"' ) |
314 | ) , |
315 | 'center' ); |
91821fc0 |
316 | } |
317 | |
ac987a56 |
318 | echo html_tag( 'table', |
319 | html_tag( 'tr', |
320 | html_tag( 'td', "\n" . '<strong>' . $row['source'] . '</strong>' . "\n", 'center', $color[0] ) |
321 | ) , |
ac50138c |
322 | 'center', '', 'width="95%"' ) ."\n" |
323 | . html_tag( 'table', '', 'center', '', 'border="0" cellpadding="1" cellspacing="0" width="90%"' ) . |
ac987a56 |
324 | html_tag( 'tr', "\n" . |
325 | html_tag( 'th', ' ', 'left', '', 'width="1%"' ) . |
326 | html_tag( 'th', _("Nickname"), 'left', '', 'width="1%"' ) . |
327 | html_tag( 'th', _("Name"), 'left', '', 'width="1%"' ) . |
328 | html_tag( 'th', _("E-mail"), 'left', '', 'width="1%"' ) . |
329 | html_tag( 'th', _("Info"), 'left', '', 'width="1%"' ) , |
330 | '', $color[9] ) . "\n"; |
91821fc0 |
331 | |
332 | $line = 0; |
333 | $headerprinted = true; |
334 | } /* End of header */ |
335 | |
336 | $prevbackend = $row['backend']; |
337 | |
338 | /* Check if this user is selected */ |
339 | if(in_array($row['backend'] . ':' . $row['nickname'], $defselected)) { |
340 | $selected = 'CHECKED'; |
341 | } else { |
342 | $selected = ''; |
ffd8224c |
343 | } |
91821fc0 |
344 | |
345 | /* Print one row */ |
ac987a56 |
346 | $tr_bgcolor = ''; |
347 | if ($line % 2) { $tr_bgcolor = $color[0]; } |
348 | echo html_tag( 'tr', '') . |
349 | html_tag( 'td', |
350 | '<SMALL>' . |
351 | '<INPUT TYPE=checkbox ' . $selected . ' NAME="sel[]" VALUE="' . |
352 | $row['backend'] . ':' . $row['nickname'] . '"></SMALL>' , |
353 | 'center', '', 'valign="top" width="1%"' ) . |
354 | html_tag( 'td', ' ' . $row['nickname'] . ' ', 'left', '', 'valign="top" width="1%" nowrap' ) . |
355 | html_tag( 'td', ' ' . $row['name'] . ' ', 'left', '', 'valign="top" width="1%" nowrap' ) . |
356 | html_tag( 'td', '', 'left', '', 'valign="top" width="1%" nowrap' ) . ' '; |
3d0cada3 |
357 | $email = $abook->full_address($row); |
ac987a56 |
358 | if ($compose_new_win == '1') { |
3d0cada3 |
359 | echo '<a href="javascript:void(0)" onclick=comp_in_new(false,"compose.php?send_to='.rawurlencode($email).'")>'; |
ac987a56 |
360 | } |
361 | else { |
3d0cada3 |
362 | echo '<A HREF="compose.php?send_to=' . rawurlencode($email).'">'; |
ac987a56 |
363 | } |
4e160237 |
364 | echo htmlspecialchars($row['email']) . '</A> </td>'."\n". |
365 | html_tag( 'td', ' ' . htmlspecialchars($row['label']) . ' ', 'left', '', 'valign="top" width="1%"' ) . |
ac987a56 |
366 | "</tr>\n"; |
91821fc0 |
367 | $line++; |
daba719e |
368 | } |
91821fc0 |
369 | |
370 | /* End of list. Close table. */ |
371 | if ($headerprinted) { |
ac987a56 |
372 | echo html_tag( 'tr', |
373 | html_tag( 'td', |
374 | '<INPUT TYPE="submit" NAME="editaddr" VALUE="' . _("Edit selected") . |
375 | "\">\n" . |
376 | '<INPUT TYPE="submit" NAME="deladdr" VALUE="' . _("Delete selected") . |
377 | "\">\n", |
378 | 'center', '', 'colspan="5"' ) |
379 | ); |
91821fc0 |
380 | } |
ac987a56 |
381 | echo '</table></FORM>'; |
daba719e |
382 | } |
f6c945b9 |
383 | } /* end of addresslist */ |
daba719e |
384 | |
385 | |
f6c945b9 |
386 | /* Display the "new address" form */ |
387 | echo '<a name="AddAddress"></a>' . "\n" . |
07dcee9f |
388 | '<FORM ACTION="' . $form_url . '" NAME=f_add METHOD="POST">' . "\n" . |
c6554ec0 |
389 | html_tag( 'table', |
ac987a56 |
390 | html_tag( 'tr', |
391 | html_tag( 'td', "\n". '<strong>' . sprintf(_("Add to %s"), $abook->localbackendname) . '</strong>' . "\n", |
392 | 'center', $color[0] |
393 | ) |
394 | ) |
ac50138c |
395 | , 'center', '', 'width="100%"' ) ."\n"; |
daba719e |
396 | address_form('addaddr', _("Add address"), $defdata); |
397 | echo '</FORM>'; |
398 | |
f6c945b9 |
399 | /* Add hook for anything that wants on the bottom */ |
daba719e |
400 | do_hook('addressbook_bottom'); |
abdfb4d0 |
401 | ?> |
402 | |
0b97a708 |
403 | </BODY></HTML> |