Protect message deletion with security token system. (Secunia Advisory SA34627)
[squirrelmail.git] / functions / addressbook.php
CommitLineData
5100704d 1<?php
35586184 2/**
6ad2bbe2 3 * functions/addressbook.php - Functions and classes for the addressbook system
35586184 4 *
6ad2bbe2 5 * Functions require SM_PATH and support of forms.php functions
35586184 6 *
d4e46166 7 * @copyright &copy; 1999-2009 The SquirrelMail Project Team
4b4abf93 8 * @license http://opensource.org/licenses/gpl-license.php GNU Public License
a9d318b0 9 * @version $Id$
d6c32258 10 * @package squirrelmail
a9d318b0 11 * @subpackage addressbook
35586184 12 */
13
d6c32258 14/**
0d4096aa 15 * Create and initialize an addressbook object.
f8a1ed5a 16 * @param boolean $showerr display any address book init errors. html page header
0d4096aa 17 * must be created before calling addressbook_init() with $showerr enabled.
867fed37 18 * @param boolean $onlylocal enable only local address book backends. Should
19 * be used when code does not need access to remote backends. Backends
20 * that provide read only address books with limited listing options can be
21 * tagged as remote.
0d4096aa 22 * @return object address book object.
23 */
81fa4801 24function addressbook_init($showerr = true, $onlylocal = false) {
1b858d86 25 global $data_dir, $username, $ldap_server, $address_book_global_filename;
81fa4801 26 global $addrbook_dsn, $addrbook_table;
e59a9c41 27 global $abook_global_file, $abook_global_file_writeable, $abook_global_file_listing;
30e9932c 28 global $addrbook_global_dsn, $addrbook_global_table, $addrbook_global_writeable, $addrbook_global_listing;
7311c377 29 global $abook_file_line_length;
81fa4801 30
31 /* Create a new addressbook object */
32 $abook = new AddressBook;
33
04875ae0 34 /* Create empty error message */
35 $abook_init_error='';
36
81fa4801 37 /*
38 Always add a local backend. We use *either* file-based *or* a
39 database addressbook. If $addrbook_dsn is set, the database
40 backend is used. If not, addressbooks are stores in files.
41 */
42 if (isset($addrbook_dsn) && !empty($addrbook_dsn)) {
43 /* Database */
44 if (!isset($addrbook_table) || empty($addrbook_table)) {
45 $addrbook_table = 'address';
46 }
47 $r = $abook->add_backend('database', Array('dsn' => $addrbook_dsn,
48 'owner' => $username,
49 'table' => $addrbook_table));
50 if (!$r && $showerr) {
35235328 51 $abook_init_error.=_("Error initializing address book database.") . "\n" . $abook->error;
81fa4801 52 }
53 } else {
54 /* File */
55 $filename = getHashedFile($username, $data_dir, "$username.abook");
56 $r = $abook->add_backend('local_file', Array('filename' => $filename,
1794d993 57 'umask' => 0077,
7311c377 58 'line_length' => $abook_file_line_length,
59 'create' => true));
81fa4801 60 if(!$r && $showerr) {
0d4096aa 61 // no need to use $abook->error, because message explains error.
62 $abook_init_error.=sprintf( _("Error opening file %s"), $filename );
81fa4801 63 }
81fa4801 64 }
65
e59a9c41 66 /* Global file based addressbook */
f8a1ed5a 67 if (isset($abook_global_file) &&
e59a9c41 68 isset($abook_global_file_writeable) &&
69 isset($abook_global_file_listing) &&
70 trim($abook_global_file)!=''){
71
4272758c 72 // Detect place of address book
73 if (! preg_match("/[\/\\\]/",$abook_global_file)) {
e4a468a7 74 /* no path chars, address book stored in data directory
f8a1ed5a 75 * make sure that there is a slash between data directory
e4a468a7 76 * and address book file name
77 */
78 $abook_global_filename=$data_dir
79 . ((substr($data_dir, -1) != '/') ? '/' : '')
80 . $abook_global_file;
4272758c 81 } elseif (preg_match("/^\/|\w:/",$abook_global_file)) {
82 // full path is set in options (starts with slash or x:)
83 $abook_global_filename=$abook_global_file;
84 } else {
85 $abook_global_filename=SM_PATH . $abook_global_file;
86 }
e59a9c41 87
4272758c 88 $r = $abook->add_backend('local_file',array('filename'=>$abook_global_filename,
232fb714 89 'name' => _("Global Address Book"),
4272758c 90 'detect_writeable' => false,
7311c377 91 'line_length' => $abook_file_line_length,
e59a9c41 92 'writeable'=> $abook_global_file_writeable,
93 'listing' => $abook_global_file_listing));
04875ae0 94
95 /* global abook init error is not fatal. add error message and continue */
81fa4801 96 if (!$r && $showerr) {
35235328 97 if ($abook_init_error!='') $abook_init_error.="\n";
98 $abook_init_error.=_("Error initializing global address book.") . "\n" . $abook->error;
81fa4801 99 }
100 }
101
30e9932c 102 /* Load global addressbook from SQL if configured */
103 if (isset($addrbook_global_dsn) && !empty($addrbook_global_dsn)) {
104 /* Database configured */
105 if (!isset($addrbook_global_table) || empty($addrbook_global_table)) {
c1ac62d4 106 $addrbook_global_table = 'global_abook';
30e9932c 107 }
108 $r = $abook->add_backend('database',
c1ac62d4 109 Array('dsn' => $addrbook_global_dsn,
110 'owner' => 'global',
232fb714 111 'name' => _("Global Address Book"),
c1ac62d4 112 'writeable' => $addrbook_global_writeable,
113 'listing' => $addrbook_global_listing,
114 'table' => $addrbook_global_table));
0d4096aa 115 /* global abook init error is not fatal. add error message and continue */
116 if (!$r && $showerr) {
35235328 117 if ($abook_init_error!='') $abook_init_error.="\n";
118 $abook_init_error.=_("Error initializing global address book.") . "\n" . $abook->error;
0d4096aa 119 }
30e9932c 120 }
121
df788686 122 /*
123 * hook allows to include different address book backends.
124 * plugins should extract $abook and $r from arguments
125 * and use same add_backend commands as above functions.
867fed37 126 * Since 1.5.2 hook sends third ($onlylocal) argument to address book
127 * plugins in order to allow detection of local address book init.
7390e240 128 * @since 1.5.1 and 1.4.5
d849b570 129 * Since 1.5.2, the plugin arguments are passed inside an array
130 * and by reference, so plugins hooking in here need to accept arguments
131 * in an array and change those values as needed instead of returning
132 * the changed values.
df788686 133 */
626de878 134 $temp = array(&$abook, &$r, &$onlylocal);
135 do_hook('abook_init', $temp);
867fed37 136 if (!$r && $showerr) {
35235328 137 if ($abook_init_error!='') $abook_init_error.="\n";
138 $abook_init_error.=_("Error initializing other address books.") . "\n" . $abook->error;
867fed37 139 }
62f7daa5 140
664fd7a0 141 /* Load configured LDAP servers (if PHP has LDAP support) */
142 if (isset($ldap_server) && is_array($ldap_server)) {
143 reset($ldap_server);
144 while (list($undef,$param) = each($ldap_server)) {
145 if (!is_array($param))
146 continue;
147
148 /* if onlylocal is true, we only add writeable ldap servers */
149 if ($onlylocal && (!isset($param['writeable']) || $param['writeable'] != true))
150 continue;
151
152 $r = $abook->add_backend('ldap_server', $param);
153 if (!$r && $showerr) {
35235328 154 if ($abook_init_error!='') $abook_init_error.="\n";
155 $abook_init_error.=sprintf(_("Error initializing LDAP server %s:"), $param['host'])."\n";
664fd7a0 156 $abook_init_error.= $abook->error;
81fa4801 157 }
664fd7a0 158 }
159 } // end of ldap server init
4935919f 160
04875ae0 161 /**
162 * display address book init errors.
163 */
164 if ($abook_init_error!='' && $showerr) {
35235328 165 error_box(nl2br(htmlspecialchars($abook_init_error)));
04875ae0 166 }
7390e240 167
81fa4801 168 /* Return the initialized object */
169 return $abook;
4935919f 170}
171
c1ac62d4 172/**
caa596b2 173 * Constructs the "new address" form
174 *
175 * NOTE! The form is not closed - the caller
176 * must add the closing form tag itself.
c1ac62d4 177 *
c1ac62d4 178 * @since 1.5.1
caa596b2 179 *
180 * @param string $form_url Form action url
181 * @param string $name Form name
182 * @param string $title Form title
183 * @param string $button Form button name
184 * @param int $backend The current backend being displayed
185 * @param array $defdata Values of form fields
186 *
187 * @return string The desired address form display code
188 *
c1ac62d4 189 */
caa596b2 190function abook_create_form($form_url, $name, $title, $button,
191 $backend, $defdata=array()) {
192
268e2afd 193 global $oTemplate;
194
199a9ab8 195 $output = addForm($form_url, 'post', 'f_add', '', '', array(), TRUE);
268e2afd 196
197 if ($button == _("Update address")) {
198 $edit = true;
199 $backends = NULL;
200 } else {
201 $edit = false;
202 $backends = getWritableBackends();
203 }
204
205 $fields = array (
206 'nickname' => 'NickName',
207 'firstname' => 'FirstName',
208 'lastname' => 'LastName',
209 'email' => 'Email',
210 'label' => 'Info',
211 );
212 $values = array();
213 foreach ($fields as $sqm=>$template) {
214 $values[$template] = isset($defdata[$sqm]) ? $defdata[$sqm] : '';
215 }
216
217 $oTemplate->assign('writable_backends', $backends);
218 $oTemplate->assign('values', $values);
219 $oTemplate->assign('edit', $edit);
caa596b2 220 $oTemplate->assign('current_backend', $backend);
268e2afd 221
caa596b2 222 $output .= $oTemplate->fetch('addrbook_addedit.tpl');
223
224 return $output;
c1ac62d4 225}
226
4935919f 227
327e2d96 228/**
81fa4801 229 * Had to move this function outside of the Addressbook Class
230 * PHP 4.0.4 Seemed to be having problems with inline functions.
abd74f7d 231 * Note: this can return now since we don't support 4.0.4 anymore.
62f7daa5 232 */
81fa4801 233function addressbook_cmp($a,$b) {
4935919f 234
81fa4801 235 if($a['backend'] > $b['backend']) {
236 return 1;
237 } else if($a['backend'] < $b['backend']) {
238 return -1;
239 }
62f7daa5 240
81fa4801 241 return (strtolower($a['name']) > strtolower($b['name'])) ? 1 : -1;
4935919f 242
81fa4801 243}
4935919f 244
c1ac62d4 245/**
268e2afd 246 * Retrieve a list of writable backends
268e2afd 247 * @since 1.5.2
c1ac62d4 248 */
268e2afd 249function getWritableBackends () {
250 global $abook;
251
252 $write = array();
253 $backends = $abook->get_backend_list();
254 while (list($undef,$v) = each($backends)) {
255 if ($v->writeable) {
256 $write[$v->bnum]=$v->sname;
6ad2bbe2 257 }
c1ac62d4 258 }
268e2afd 259
260 return $write;
c1ac62d4 261}
262
263/**
264 * Sort array by the key "name"
265 */
266function alistcmp($a,$b) {
267 $abook_sort_order=get_abook_sort();
268
269 switch ($abook_sort_order) {
270 case 0:
271 case 1:
272 $abook_sort='nickname';
273 break;
274 case 4:
275 case 5:
276 $abook_sort='email';
277 break;
278 case 6:
279 case 7:
280 $abook_sort='label';
281 break;
282 case 2:
283 case 3:
284 case 8:
285 default:
286 $abook_sort='name';
287 }
288
289 if ($a['backend'] > $b['backend']) {
290 return 1;
291 } else {
292 if ($a['backend'] < $b['backend']) {
293 return -1;
294 }
295 }
296
297 if( (($abook_sort_order+2) % 2) == 1) {
298 return (strtolower($a[$abook_sort]) < strtolower($b[$abook_sort])) ? 1 : -1;
299 } else {
300 return (strtolower($a[$abook_sort]) > strtolower($b[$abook_sort])) ? 1 : -1;
301 }
302}
303
304/**
305 * Address book sorting options
306 *
307 * returns address book sorting order
308 * @return integer book sorting options order
309 */
310function get_abook_sort() {
311 global $data_dir, $username;
312
313 /* get sorting order */
314 if(sqgetGlobalVar('abook_sort_order', $temp, SQ_GET)) {
315 $abook_sort_order = (int) $temp;
316
317 if ($abook_sort_order < 0 or $abook_sort_order > 8)
318 $abook_sort_order=8;
319
320 setPref($data_dir, $username, 'abook_sort_order', $abook_sort_order);
321 } else {
322 /* get previous sorting options. default to unsorted */
323 $abook_sort_order = getPref($data_dir, $username, 'abook_sort_order', 8);
324 }
325
326 return $abook_sort_order;
327}
328
329/**
330 * This function shows the address book sort button.
331 *
caa596b2 332 * @param integer $abook_sort_order Current sort value
333 * @param string $alt_tag The alt tag value (string
334 * visible to text only browsers)
335 * @param integer $Down Sort value when list is sorted
336 * ascending
337 * @param integer $Up Sort value when list is sorted
338 * descending
339 * @param array $uri_extra Any additional parameters to add
340 * to the button's link, as an
341 * associative array of key/value pairs
342 * (OPTIONAL; default none)
343 *
c1ac62d4 344 * @return string html code with sorting images and urls
caa596b2 345 *
c1ac62d4 346 */
caa596b2 347function show_abook_sort_button($abook_sort_order, $alt_tag,
348 $Down, $Up, $uri_extra=array() ) {
349
635f7200 350 global $form_url, $icon_theme_path;
c1ac62d4 351
352 /* Figure out which image we want to use. */
353 if ($abook_sort_order != $Up && $abook_sort_order != $Down) {
354 $img = 'sort_none.png';
de783fdf 355 $text_icon = '&#9723;'; // U+25FB WHITE MEDIUM SQUARE
c1ac62d4 356 $which = $Up;
357 } elseif ($abook_sort_order == $Up) {
358 $img = 'up_pointer.png';
de783fdf 359 $text_icon = '&#8679;'; // U+21E7 UPWARDS WHITE ARROW
c1ac62d4 360 $which = $Down;
361 } else {
362 $img = 'down_pointer.png';
de783fdf 363 $text_icon = '&#8681;'; // U+21E9 DOWNWARDS WHITE ARROW
c1ac62d4 364 $which = 8;
365 }
366
4fe67ca6 367 $uri_extra['abook_sort_order'] = $which;
368 $uri = set_uri_vars($form_url, $uri_extra, FALSE);
caa596b2 369
635f7200 370 /* Now that we have everything figured out, show the actual button. */
caa596b2 371 return create_hyperlink($uri,
372 getIcon($icon_theme_path, $img, $text_icon, $alt_tag),
373 '', '', '', '', '',
374 array('style' => 'text-decoration:none',
375 'title' => $alt_tag),
376 FALSE);
c1ac62d4 377}
378
4935919f 379
8f6f9ba5 380/**
81fa4801 381 * This is the main address book class that connect all the
382 * backends and provide services to the functions above.
8f6f9ba5 383 * @package squirrelmail
c1ac62d4 384 * @subpackage addressbook
81fa4801 385 */
81fa4801 386class AddressBook {
4272758c 387 /**
388 * Enabled address book backends
389 * @var array
390 */
81fa4801 391 var $backends = array();
4272758c 392 /**
393 * Number of enabled backends
394 * @var integer
395 */
81fa4801 396 var $numbackends = 0;
4272758c 397 /**
398 * Error messages
399 * @var string
400 */
81fa4801 401 var $error = '';
4272758c 402 /**
403 * id of backend with personal address book
404 * @var integer
405 */
81fa4801 406 var $localbackend = 0;
4272758c 407 /**
408 * Name of backend with personal address book
409 * @var string
410 */
81fa4801 411 var $localbackendname = '';
7b0ea860 412 /**
413 * Controls use of 'extra' field
202bcbcc 414 *
415 * Extra field can be used to add link to form, which allows
416 * to modify all fields supported by backend. This is the only field
7b0ea860 417 * that is not sanitized with htmlspecialchars. Backends MUST make
418 * sure that field data is sanitized and displayed correctly inside
419 * table cell. Use of html formating in other address book fields is
202bcbcc 420 * not allowed. Backends that don't return 'extra' row in address book
7b0ea860 421 * data should not modify this object property.
422 * @var boolean
423 * @since 1.5.1
424 */
425 var $add_extra_field = false;
62f7daa5 426
4272758c 427 /**
428 * Constructor function.
429 */
81fa4801 430 function AddressBook() {
232fb714 431 $this->localbackendname = _("Personal Address Book");
81fa4801 432 }
4935919f 433
4272758c 434 /**
81fa4801 435 * Return an array of backends of a given type,
436 * or all backends if no type is specified.
4272758c 437 * @param string $type backend type
438 * @return array list of backends
81fa4801 439 */
440 function get_backend_list($type = '') {
441 $ret = array();
442 for ($i = 1 ; $i <= $this->numbackends ; $i++) {
443 if (empty($type) || $type == $this->backends[$i]->btype) {
444 $ret[] = &$this->backends[$i];
445 }
4935919f 446 }
81fa4801 447 return $ret;
448 }
4935919f 449
450
4272758c 451 /* ========================== Public ======================== */
81fa4801 452
4272758c 453 /**
454 * Add a new backend.
455 *
456 * @param string $backend backend name (without the abook_ prefix)
457 * @param mixed optional variable that is passed to the backend constructor.
458 * See each of the backend classes for valid parameters
459 * @return integer number of backends
81fa4801 460 */
461 function add_backend($backend, $param = '') {
202bcbcc 462 static $backend_classes;
463 if (!isset($backend_classes)) {
464 $backend_classes = array();
465 }
466 if (!isset($backend_classes[$backend])) {
467 /**
468 * Support backend provided by plugins. Plugin function must
469 * return an associative array with as key the backend name ($backend)
470 * and as value the file including the path containing the backend class.
471 * i.e.: $aBackend = array('backend_template' => SM_PATH . 'plugins/abook_backend_template/functions.php')
472 *
473 * NB: Because the backend files are included from within this function they DO NOT have access to
474 * vars in the global scope. This function is the global scope for the included backend !!!
475 */
d849b570 476 global $null;
477 $aBackend = do_hook('abook_add_class', $null);
202bcbcc 478 if (isset($aBackend) && is_array($aBackend) && isset($aBackend[$backend])) {
479 require_once($aBackend[$backend]);
480 } else {
481 require_once(SM_PATH . 'functions/abook_'.$backend.'.php');
482 }
483 $backend_classes[$backend] = true;
484 }
81fa4801 485 $backend_name = 'abook_' . $backend;
202bcbcc 486 $newback = new $backend_name($param);
487 //eval('$newback = new ' . $backend_name . '($param);');
81fa4801 488 if(!empty($newback->error)) {
489 $this->error = $newback->error;
490 return false;
491 }
492
493 $this->numbackends++;
494
495 $newback->bnum = $this->numbackends;
496 $this->backends[$this->numbackends] = $newback;
62f7daa5 497
81fa4801 498 /* Store ID of first local backend added */
499 if ($this->localbackend == 0 && $newback->btype == 'local') {
500 $this->localbackend = $this->numbackends;
501 $this->localbackendname = $newback->sname;
502 }
503
504 return $this->numbackends;
505 }
4935919f 506
4935919f 507
4272758c 508 /**
509 * create string with name and email address
510 *
62f7daa5 511 * This function takes a $row array as returned by the addressbook
2e542990 512 * search and returns an e-mail address with the full name or
513 * nickname optionally prepended.
4272758c 514 * @param array $row address book entry
515 * @return string email address with real name prepended
2e542990 516 */
2e542990 517 function full_address($row) {
56196737 518 global $data_dir, $username;
519 $addrsrch_fullname = getPref($data_dir, $username, 'addrsrch_fullname');
1aecba70 520
521 // allow multiple addresses in one row (poor person's grouping - bah)
522 // (separate with commas)
523 //
524 $return = '';
525 $addresses = explode(',', $row['email']);
526 foreach ($addresses as $address) {
527
528 if (!empty($return)) $return .= ', ';
529
530 if ($addrsrch_fullname == 'fullname')
531 $return .= '"' . $row['name'] . '" <' . trim($address) . '>';
532 else if ($addrsrch_fullname == 'nickname')
533 $return .= '"' . $row['nickname'] . '" <' . trim($address) . '>';
534 else // "noprefix"
535 $return .= trim($address);
536
537 }
538
539 return $return;
2e542990 540 }
541
4272758c 542 /**
543 * Search for entries in address books
544 *
545 * Return a list of addresses matching expression in
546 * all backends of a given type.
547 * @param string $expression search expression
548 * @param integer $bnum backend number. default to search in all backends
549 * @return array search results
550 */
81fa4801 551 function search($expression, $bnum = -1) {
552 $ret = array();
553 $this->error = '';
554
555 /* Search all backends */
556 if ($bnum == -1) {
557 $sel = $this->get_backend_list('');
558 $failed = 0;
559 for ($i = 0 ; $i < sizeof($sel) ; $i++) {
560 $backend = &$sel[$i];
561 $backend->error = '';
562 $res = $backend->search($expression);
563 if (is_array($res)) {
564 $ret = array_merge($ret, $res);
565 } else {
35235328 566 $this->error .= "\n" . $backend->error;
81fa4801 567 $failed++;
75e19c7f 568 }
569 }
4935919f 570
81fa4801 571 /* Only fail if all backends failed */
572 if( $failed >= sizeof( $sel ) ) {
573 $ret = FALSE;
4935919f 574 }
4935919f 575
01066e58 576 } elseif (! isset($this->backends[$bnum])) {
577 /* make sure that backend exists */
578 $this->error = _("Unknown address book backend");
579 $ret = false;
580 } else {
4935919f 581
81fa4801 582 /* Search only one backend */
4935919f 583
81fa4801 584 $ret = $this->backends[$bnum]->search($expression);
585 if (!is_array($ret)) {
35235328 586 $this->error .= "\n" . $this->backends[$bnum]->error;
81fa4801 587 $ret = FALSE;
588 }
589 }
590
591 return( $ret );
4935919f 592 }
593
594
4272758c 595 /**
596 * Sorted search
597 * @param string $expression search expression
598 * @param integer $bnum backend number. default to search in all backends
599 * @return array search results
600 */
81fa4801 601 function s_search($expression, $bnum = -1) {
62f7daa5 602
81fa4801 603 $ret = $this->search($expression, $bnum);
604 if ( is_array( $ret ) ) {
605 usort($ret, 'addressbook_cmp');
62f7daa5 606 }
81fa4801 607 return $ret;
608 }
4935919f 609
610
4272758c 611 /**
503c7650 612 * Lookup an address by the indicated field.
613 *
4272758c 614 * Only possible in local backends.
503c7650 615 *
616 * @param string $value The value to look up
617 * @param integer $bnum The number of the backend to
618 * look within (OPTIONAL; defaults
619 * to look in all local backends)
620 * @param integer $field The field to look in, should be one
621 * of the SM_ABOOK_FIELD_* constants
622 * defined in include/constants.php
623 * (OPTIONAL; defaults to nickname field)
bf55ebab 624 * NOTE: uniqueness is only guaranteed
625 * when the nickname field is used here;
626 * otherwise, the first matching address
627 * is returned.
503c7650 628 *
629 * @return mixed Array with lookup results when the value
630 * was found, an empty array if the value was
631 * not found, or false if an error occured.
632 *
81fa4801 633 */
503c7650 634 function lookup($value, $bnum = -1, $field = SM_ABOOK_FIELD_NICKNAME) {
62f7daa5 635
81fa4801 636 $ret = array();
62f7daa5 637
81fa4801 638 if ($bnum > -1) {
01066e58 639 if (!isset($this->backends[$bnum])) {
640 $this->error = _("Unknown address book backend");
641 return false;
642 }
503c7650 643 $res = $this->backends[$bnum]->lookup($value, $field);
81fa4801 644 if (is_array($res)) {
645 return $res;
646 } else {
35235328 647 $this->error = $this->backends[$bnum]->error;
81fa4801 648 return false;
649 }
650 }
62f7daa5 651
81fa4801 652 $sel = $this->get_backend_list('local');
653 for ($i = 0 ; $i < sizeof($sel) ; $i++) {
654 $backend = &$sel[$i];
655 $backend->error = '';
503c7650 656 $res = $backend->lookup($value, $field);
657
658 // return an address if one is found
659 // (empty array means lookup concluded
660 // but no result found - in this case,
661 // proceed to next backend)
662 //
81fa4801 663 if (is_array($res)) {
503c7650 664 if (!empty($res)) return $res;
81fa4801 665 } else {
503c7650 666 $this->error = $backend->error;
667 return false;
81fa4801 668 }
669 }
62f7daa5 670
81fa4801 671 return $ret;
4935919f 672 }
673
4935919f 674
4272758c 675 /**
676 * Return all addresses
677 * @param integer $bnum backend number
5b1c13d3 678 * @return mixed array with search results or boolean false on error.
4272758c 679 */
81fa4801 680 function list_addr($bnum = -1) {
681 $ret = array();
62f7daa5 682
81fa4801 683 if ($bnum == -1) {
4272758c 684 $sel = $this->get_backend_list('');
01066e58 685 } elseif (! isset($this->backends[$bnum])) {
686 /* make sure that backend exists */
687 $this->error = _("Unknown address book backend");
688 $ret = false;
81fa4801 689 } else {
690 $sel = array(0 => &$this->backends[$bnum]);
691 }
62f7daa5 692
81fa4801 693 for ($i = 0 ; $i < sizeof($sel) ; $i++) {
694 $backend = &$sel[$i];
695 $backend->error = '';
696 $res = $backend->list_addr();
697 if (is_array($res)) {
698 $ret = array_merge($ret, $res);
699 } else {
35235328 700 $this->error = $backend->error;
81fa4801 701 return false;
702 }
703 }
62f7daa5 704
81fa4801 705 return $ret;
706 }
4935919f 707
4272758c 708 /**
91e0dccc 709 * Create a new address
4272758c 710 * @param array $userdata added address record
711 * @param integer $bnum backend number
712 * @return integer the backend number that the/ address was added
81fa4801 713 * to, or false if it failed.
714 */
715 function add($userdata, $bnum) {
62f7daa5 716
81fa4801 717 /* Validate data */
718 if (!is_array($userdata)) {
719 $this->error = _("Invalid input data");
720 return false;
721 }
722 if (empty($userdata['firstname']) && empty($userdata['lastname'])) {
723 $this->error = _("Name is missing");
724 return false;
725 }
726 if (empty($userdata['email'])) {
727 $this->error = _("E-mail address is missing");
728 return false;
729 }
730 if (empty($userdata['nickname'])) {
731 $userdata['nickname'] = $userdata['email'];
732 }
62f7daa5 733
35235328 734 /* Blocks use of space, :, |, #, " and ! in nickname */
b7910e12 735 if (preg_match('/[ :|#"!]/', $userdata['nickname'])) {
81fa4801 736 $this->error = _("Nickname contains illegal characters");
737 return false;
738 }
62f7daa5 739
01066e58 740 /* make sure that backend exists */
741 if (! isset($this->backends[$bnum])) {
742 $this->error = _("Unknown address book backend");
743 return false;
744 }
745
81fa4801 746 /* Check that specified backend accept new entries */
747 if (!$this->backends[$bnum]->writeable) {
35235328 748 $this->error = _("Address book is read-only");
81fa4801 749 return false;
750 }
62f7daa5 751
81fa4801 752 /* Add address to backend */
753 $res = $this->backends[$bnum]->add($userdata);
754 if ($res) {
755 return $bnum;
756 } else {
35235328 757 $this->error = $this->backends[$bnum]->error;
81fa4801 758 return false;
759 }
62f7daa5 760
81fa4801 761 return false; // Not reached
762 } /* end of add() */
763
764
4272758c 765 /**
766 * Remove the entries from address book
91e0dccc 767 * @param mixed $alias entries that have to be removed. Can be string with nickname or array with list of nicknames
4272758c 768 * @param integer $bnum backend number
769 * @return bool true if removed successfully. false if there s an error. $this->error contains error message
81fa4801 770 */
771 function remove($alias, $bnum) {
62f7daa5 772
81fa4801 773 /* Check input */
774 if (empty($alias)) {
775 return true;
776 }
62f7daa5 777
81fa4801 778 /* Convert string to single element array */
779 if (!is_array($alias)) {
780 $alias = array(0 => $alias);
781 }
62f7daa5 782
01066e58 783 /* make sure that backend exists */
784 if (! isset($this->backends[$bnum])) {
785 $this->error = _("Unknown address book backend");
786 return false;
787 }
788
62f7daa5 789 /* Check that specified backend is writable */
81fa4801 790 if (!$this->backends[$bnum]->writeable) {
35235328 791 $this->error = _("Address book is read-only");
81fa4801 792 return false;
793 }
62f7daa5 794
81fa4801 795 /* Remove user from backend */
796 $res = $this->backends[$bnum]->remove($alias);
797 if ($res) {
798 return $bnum;
799 } else {
35235328 800 $this->error = $this->backends[$bnum]->error;
81fa4801 801 return false;
802 }
62f7daa5 803
81fa4801 804 return FALSE; /* Not reached */
805 } /* end of remove() */
806
807
4272758c 808 /**
809 * Modify entry in address book
810 * @param string $alias nickname
811 * @param array $userdata newdata
812 * @param integer $bnum backend number
81fa4801 813 */
814 function modify($alias, $userdata, $bnum) {
62f7daa5 815
81fa4801 816 /* Check input */
817 if (empty($alias) || !is_string($alias)) {
818 return true;
819 }
62f7daa5 820
81fa4801 821 /* Validate data */
822 if(!is_array($userdata)) {
823 $this->error = _("Invalid input data");
824 return false;
825 }
826 if (empty($userdata['firstname']) && empty($userdata['lastname'])) {
827 $this->error = _("Name is missing");
828 return false;
829 }
830 if (empty($userdata['email'])) {
831 $this->error = _("E-mail address is missing");
832 return false;
833 }
62f7daa5 834
b7910e12 835 if (preg_match('/[: |#"!]/', $userdata['nickname'])) {
81fa4801 836 $this->error = _("Nickname contains illegal characters");
837 return false;
838 }
62f7daa5 839
81fa4801 840 if (empty($userdata['nickname'])) {
841 $userdata['nickname'] = $userdata['email'];
842 }
62f7daa5 843
01066e58 844 /* make sure that backend exists */
845 if (! isset($this->backends[$bnum])) {
846 $this->error = _("Unknown address book backend");
847 return false;
848 }
849
62f7daa5 850 /* Check that specified backend is writable */
81fa4801 851 if (!$this->backends[$bnum]->writeable) {
35235328 852 $this->error = _("Address book is read-only");;
81fa4801 853 return false;
854 }
62f7daa5 855
81fa4801 856 /* Modify user in backend */
857 $res = $this->backends[$bnum]->modify($alias, $userdata);
858 if ($res) {
859 return $bnum;
860 } else {
35235328 861 $this->error = $this->backends[$bnum]->error;
81fa4801 862 return false;
863 }
62f7daa5 864
81fa4801 865 return FALSE; /* Not reached */
866 } /* end of modify() */
62f7daa5 867
868
81fa4801 869} /* End of class Addressbook */
870
8f6f9ba5 871/**
81fa4801 872 * Generic backend that all other backends extend
8f6f9ba5 873 * @package squirrelmail
c1ac62d4 874 * @subpackage addressbook
81fa4801 875 */
876class addressbook_backend {
877
878 /* Variables that all backends must provide. */
4272758c 879 /**
880 * Backend type
881 *
882 * Can be 'local' or 'remote'
883 * @var string backend type
884 */
81fa4801 885 var $btype = 'dummy';
4272758c 886 /**
887 * Internal backend name
888 * @var string
889 */
81fa4801 890 var $bname = 'dummy';
4272758c 891 /**
892 * Displayed backend name
893 * @var string
894 */
81fa4801 895 var $sname = 'Dummy backend';
62f7daa5 896
81fa4801 897 /*
898 * Variables common for all backends, but that
899 * should not be changed by the backends.
900 */
4272758c 901 /**
902 * Backend number
903 * @var integer
904 */
81fa4801 905 var $bnum = -1;
4272758c 906 /**
907 * Error messages
908 * @var string
909 */
81fa4801 910 var $error = '';
4272758c 911 /**
912 * Writeable flag
913 * @var bool
914 */
81fa4801 915 var $writeable = false;
62f7daa5 916
4272758c 917 /**
918 * Set error message
919 * @param string $string error message
920 * @return bool
921 */
81fa4801 922 function set_error($string) {
923 $this->error = '[' . $this->sname . '] ' . $string;
924 return false;
925 }
62f7daa5 926
927
81fa4801 928 /* ========================== Public ======================== */
62f7daa5 929
4272758c 930 /**
931 * Search for entries in backend
327e2d96 932 *
202bcbcc 933 * Working backend should support use of wildcards. * symbol
327e2d96 934 * should match one or more symbols. ? symbol should match any
202bcbcc 935 * single symbol.
4272758c 936 * @param string $expression
937 * @return bool
938 */
81fa4801 939 function search($expression) {
35235328 940 $this->set_error('search is not implemented');
81fa4801 941 return false;
942 }
62f7daa5 943
4272758c 944 /**
503c7650 945 * Find entry in backend by the indicated field
946 *
947 * @param string $value The value to look up
948 * @param integer $field The field to look in, should be one
949 * of the SM_ABOOK_FIELD_* constants
950 * defined in include/constants.php
bf55ebab 951 * NOTE: uniqueness is only guaranteed
952 * when the nickname field is used here;
953 * otherwise, the first matching address
954 * is returned.
503c7650 955 *
956 * @return mixed Array with lookup results when the value
957 * was found, an empty array if the value was
958 * not found, or false if an error occured.
959 *
4272758c 960 */
503c7650 961 function lookup($value, $field) {
35235328 962 $this->set_error('lookup is not implemented');
81fa4801 963 return false;
a10110a5 964 }
62f7daa5 965
4272758c 966 /**
967 * List all entries in backend
327e2d96 968 *
969 * Working backend should provide this function or at least
970 * dummy function that returns empty array.
4272758c 971 * @return bool
972 */
81fa4801 973 function list_addr() {
35235328 974 $this->set_error('list_addr is not implemented');
81fa4801 975 return false;
976 }
62f7daa5 977
4272758c 978 /**
979 * Add entry to backend
980 * @param array userdata
981 * @return bool
982 */
81fa4801 983 function add($userdata) {
35235328 984 $this->set_error('add is not implemented');
81fa4801 985 return false;
986 }
62f7daa5 987
4272758c 988 /**
989 * Remove entry from backend
990 * @param string $alias name used for id
991 * @return bool
992 */
81fa4801 993 function remove($alias) {
35235328 994 $this->set_error('delete is not implemented');
81fa4801 995 return false;
996 }
62f7daa5 997
4272758c 998 /**
999 * Modify entry in backend
1000 * @param string $alias name used for id
1001 * @param array $newuserdata new data
1002 * @return bool
1003 */
81fa4801 1004 function modify($alias, $newuserdata) {
35235328 1005 $this->set_error('modify is not implemented');
81fa4801 1006 return false;
1007 }
35235328 1008
1009 /**
1010 * Creates full name from given name and surname
1011 *
5b1c13d3 1012 * Handles name order differences. Function always runs in SquirrelMail gettext domain.
1013 * Plugins don't have to switch domains before calling this function.
35235328 1014 * @param string $firstname given name
1015 * @param string $lastname surname
1016 * @return string full name
1017 * @since 1.5.2
1018 */
1019 function fullname($firstname,$lastname) {
b986936a 1020 // i18n: allows to control fullname layout in address book listing
1021 // first %s is for first name, second %s is for last name.
1022 // Translate it to '%2$s %1$s', if surname must be displayed first in your language.
1023 // Please note that variables can be set to empty string and extra formating
1024 // (for example '%2$s, %1$s' as in 'Smith, John') might break. Use it only for
1025 // setting name and surname order. scripts will remove all prepended and appended
1026 // whitespace.
5b1c13d3 1027 return trim(sprintf(dgettext('squirrelmail',"%s %s"),$firstname,$lastname));
35235328 1028 }
81fa4801 1029}