action.php 17 KB


  1. <?php
  2. global $_,$conf;
  3. switch($_['action']){
  4. /** SKETCH **/
  5. //Récuperation d'une liste de sketch
  6. case 'hackpoint_sketch_search':
  7. Action::write(function(&$response){
  8. global $myUser,$_;
  9. require_once(__DIR__.SLASH.'Sketch.class.php');
  10. // OPTIONS DE RECHERCHE, A ACTIVER POUR UNE RECHERCHE AVANCEE
  11. $query = 'SELECT * FROM '.Sketch::tableName().' WHERE 1';
  12. $data = array();
  13. //Recherche simple
  14. if(!empty($_['filters']['keyword'])){
  15. $query .= ' AND label LIKE ?';
  16. $data[] = '%'.$_['filters']['keyword'].'%';
  17. }
  18. //Recherche avancée
  19. if(isset($_['filters']['advanced'])) filter_secure_query($_['filters']['advanced'],array('label'),$query,$data);
  20. //Tri des colonnes
  21. if(isset($_['sort'])) sort_secure_query($_['sort'],array('label'),$query,$data);
  22. //Pagination
  23. $response['pagination'] = Sketch::paginate(20,(!empty($_['page'])?$_['page']:0),$query,$data);
  24. $sketchs = Sketch::staticQuery($query,$data,true,0);
  25. foreach($sketchs as $sketch){
  26. if(!$sketch->state && $sketch->creator != $myUser->login) continue;
  27. $row = $sketch->toArray();
  28. $row['comment'] = truncate($row['comment'],65);
  29. $row['picture'] = $sketch->picture();
  30. $row['progress-color'] = 'bg-danger';
  31. if($row['progress'] > 30) $row['progress-color'] = 'bg-warning';
  32. if($row['progress'] > 45) $row['progress-color'] = 'bg-info';
  33. if($row['progress'] > 65) $row['progress-color'] = '';
  34. if($row['progress'] > 85) $row['progress-color'] = 'bg-success';
  35. $row['created'] = relative_time($row['created']);
  36. $response['rows'][] = $row;
  37. }
  38. });
  39. break;
  40. //Ajout ou modification d'élément sketch
  41. case 'hackpoint_sketch_save':
  42. Action::write(function(&$response){
  43. global $myUser,$_;
  44. if(!$myUser->can('hackpoint','edit')) throw new Exception("Permissions insuffisantes",403);
  45. require_once(__DIR__.SLASH.'Sketch.class.php');
  46. $item = Sketch::getById($_['id']);
  47. if(isset($_['label'])) $item->label = $_['label'];
  48. $item->progress = 5;
  49. if(isset($_['state'])) $item->state = $_['state'] == 'true';
  50. if(isset($_['comment'])) $item->comment = $_['comment'];
  51. $item->save();
  52. });
  53. break;
  54. case 'hackpoint_sketch_save_cover':
  55. Action::write(function(&$response){
  56. global $myUser,$_;
  57. require_once(__DIR__.SLASH.'Sketch.class.php');
  58. if(!is_numeric($_['sketch'])) throw new Exception("Sketch non spécifié", 400);
  59. $sketch = Sketch::provide('sketch');
  60. if($myUser->login!= $sketch->creator) throw new Exception("Permission insuffisantes", 403);
  61. $folder = $sketch->directory();
  62. if(!file_exists($folder)) mkdir($folder,0755,true);
  63. $name = 'cover.jpg';
  64. $stream = preg_replace('|data\:image\/[^;]*;base64,|is','',$_['stream']);
  65. $filepath = $folder.SLASH.$name;
  66. $row = file_put_contents($filepath, base64_decode($stream));
  67. //Image::resize($filepath,150,150);
  68. $response['stream'] = 'data:image/jpg;base64,'.base64_encode(file_get_contents($filepath));
  69. });
  70. break;
  71. case 'hackpoint_sketch_progress_save':
  72. Action::write(function(&$response){
  73. global $myUser,$_;
  74. require_once(__DIR__.SLASH.'Sketch.class.php');
  75. $item = Sketch::getById($_['id']);
  76. if($myUser->login!=$item->creator) throw new Exception("Permissions insuffisantes",403);
  77. $item->progress = $_['progress'];
  78. $item->save();
  79. });
  80. break;
  81. case 'hackpoint_sketch_add':
  82. global $myUser,$_;
  83. if(!$myUser->can('hackpoint','edit')) throw new Exception("Permissions insuffisantes",403);
  84. require_once(__DIR__.SLASH.'Sketch.class.php');
  85. $sketch = new Sketch();
  86. $sketch->label = 'Sketch Sans titre';
  87. $sketch->state = false;
  88. $sketch->progress = 10;
  89. $sketch->comment = 'Nouveau sketch sans commentaires';
  90. $sketch->save();
  91. require_once(__DIR__.SLASH.'Resource.class.php');
  92. $item = new Resource();
  93. $item->label = 'Documentation';
  94. $item->sort = 0;
  95. $item->type = 'readme';
  96. $item->content = '# Documentation'.PHP_EOL.'Pour le moment, pas grand chose à dire...';
  97. $item->sketch = $sketch->id;
  98. $item->save();
  99. header('location: index.php?module=hackpoint&page=sheet.sketch&id='.$sketch->id);
  100. break;
  101. //Suppression d'élement sketch
  102. case 'hackpoint_sketch_delete':
  103. Action::write(function(&$response){
  104. global $myUser,$_;
  105. if(!$myUser->can('hackpoint','delete')) throw new Exception("Permissions insuffisantes",403);
  106. require_once(__DIR__.SLASH.'Sketch.class.php');
  107. Sketch::removeById($_['id']);
  108. });
  109. break;
  110. //Sauvegarde des configurations de hackpoint
  111. case 'hackpoint_setting_save':
  112. Action::write(function(&$response){
  113. global $myUser,$_,$conf;
  114. if(!$myUser->can('hackpoint','configure')) throw new Exception("Permissions insuffisantes",403);
  115. foreach(Configuration::setting('hackpoint') as $key=>$value){
  116. if(!is_array($value)) continue;
  117. $allowed[] = $key;
  118. }
  119. foreach ($_['fields'] as $key => $value) {
  120. if(in_array($key, $allowed))
  121. $conf->put($key,$value);
  122. }
  123. });
  124. break;
  125. /** RESOURCE **/
  126. //Récuperation d'une liste de resource
  127. case 'hackpoint_resource_search':
  128. Action::write(function(&$response){
  129. global $myUser,$_;
  130. require_once(__DIR__.SLASH.'Sketch.class.php');
  131. require_once(__DIR__.SLASH.'Resource.class.php');
  132. $sketch = Sketch::provide('sketch');
  133. if(!$sketch->state && $sketch->creator != $myUser->login) throw new Exception("Sketch privé", 403);
  134. foreach(Resource::loadAll(array('sketch'=>$_['sketch']),array('sort')) as $resource){
  135. $row = $resource->toArray();
  136. $type = $resource->type();
  137. $row['type'] = $type;
  138. $response['rows'][] = $row;
  139. }
  140. });
  141. break;
  142. case 'hackpoint_resource_edit':
  143. Action::write(function(&$response){
  144. global $myUser,$_;
  145. require_once(__DIR__.SLASH.'Sketch.class.php');
  146. require_once(__DIR__.SLASH.'Resource.class.php');
  147. require_once(__DIR__.SLASH.'Resource.class.php');
  148. $item = Resource::provide('id',1);
  149. $sketch = $item->join('sketch');
  150. if(!$sketch->state && $sketch->creator != $myUser->login) throw new Exception("Sketch privé", 403);
  151. $response = $item->toHtml();
  152. $response['resourceType'] = $item->type;
  153. });
  154. break;
  155. //Sauveagrde du contenu d'une resource
  156. case 'hackpoint_resource_save_content':
  157. Action::write(function(&$response){
  158. global $myUser,$_;
  159. require_once(__DIR__.SLASH.'Sketch.class.php');
  160. require_once(__DIR__.SLASH.'Resource.class.php');
  161. $item = Resource::provide('id',1);
  162. $sketch = $item->join('sketch');
  163. if($sketch->creator != $myUser->login) throw new Exception("Permissions insuffisantes",403);
  164. $item->content = $_['content'];
  165. $item->save();
  166. });
  167. break;
  168. //Ajout ou modification d'élément resource
  169. case 'hackpoint_resource_save':
  170. Action::write(function(&$response){
  171. global $myUser,$_;
  172. if(!$myUser->can('hackpoint','edit')) throw new Exception("Permissions insuffisantes",403);
  173. require_once(__DIR__.SLASH.'Sketch.class.php');
  174. require_once(__DIR__.SLASH.'Resource.class.php');
  175. require_once(__DIR__.SLASH.'ResourceType.class.php');
  176. $item = Resource::provide('id',1);
  177. $sketch = $item->join('sketch');
  178. if( !is_object($sketch) || $sketch->id==0){
  179. $sketch = Sketch::getById($_['sketch']);
  180. }
  181. if($sketch->creator != $myUser->login) throw new Exception("Permissions insuffisantes",403);
  182. if(!isset($_['type']) && $item->id!=0) $_['type'] = $item->type;
  183. $type = ResourceType::types($_['type']);
  184. if(isset($_['label'])) $item->label = $_['label'];
  185. if($item->id==0){
  186. $item->label = $type['label'];
  187. $item->sort = 100;
  188. $item->type = $_['type'];
  189. if(isset($type['default'])) $item->content = $type['default'] ;
  190. $item->sketch = $_['sketch'];
  191. }
  192. $item->save();
  193. $response = $item->toArray();
  194. $response['type'] = $item->type();
  195. });
  196. break;
  197. case 'hackpoint_resource_sort':
  198. Action::write(function(&$response){
  199. global $myUser,$_;
  200. if(!$myUser->can('hackpoint','edit')) throw new Exception("Permissions insuffisantes",403);
  201. require_once(__DIR__.SLASH.'Sketch.class.php');
  202. require_once(__DIR__.SLASH.'Resource.class.php');
  203. require_once(__DIR__.SLASH.'ResourceType.class.php');
  204. foreach($_['sort'] as $sort=>$id){
  205. $resource = Resource::getById($id,1);
  206. $sketch = $resource->join('sketch');
  207. if($sketch->creator != $myUser->login) continue;
  208. $resource->sort = $sort;
  209. $resource->save();
  210. }
  211. });
  212. break;
  213. //Suppression d'élement resource
  214. case 'hackpoint_resource_delete':
  215. Action::write(function(&$response){
  216. global $myUser,$_;
  217. require_once(__DIR__.SLASH.'Sketch.class.php');
  218. require_once(__DIR__.SLASH.'Resource.class.php');
  219. $item = Resource::getById($_['id'],1);
  220. $sketch = $item->join('sketch');
  221. if($sketch->creator != $myUser->login) throw new Exception("Permissions insuffisantes",403);
  222. Resource::deleteById($_['id']);
  223. });
  224. break;
  225. //Sauvegarde des configurations de hackpoint
  226. case 'hackpoint_setting_save':
  227. Action::write(function(&$response){
  228. global $myUser,$_,$conf;
  229. if(!$myUser->can('hackpoint','configure')) throw new Exception("Permissions insuffisantes",403);
  230. foreach(Configuration::setting('hackpoint') as $key=>$value){
  231. if(!is_array($value)) continue;
  232. $allowed[] = $key;
  233. }
  234. foreach ($_['fields'] as $key => $value) {
  235. if(in_array($key, $allowed))
  236. $conf->put($key,$value);
  237. }
  238. });
  239. break;
  240. //Suppression document
  241. case 'resource_delete_document':
  242. Action::write(function(&$response){
  243. global $myUser,$_;
  244. if(!$myUser->can('hackpoint','delete')) throw new Exception("Permissions insuffisantes",403);
  245. require_once(__DIR__.SLASH.'Resource.class.php');
  246. if(!isset($_['path']) ) throw new Exception("Chemin non spécifié ou non numerique");
  247. //Le premier argument est un namspace de sécurité
  248. //et assure que le fichier sera toujours cloisoné dans un contexte file/hackpoint/sketch
  249. $path = (strtoupper(substr(PHP_OS, 0, 3)) === 'WIN') ? utf8_decode($_['path']) : $_['path'];
  250. File::delete('hackpoint'.SLASH.'sketch',$path);
  251. });
  252. break;
  253. case 'resource_add_document':
  254. Action::write(function(&$response){
  255. global $myUser,$_;
  256. if(!$myUser->can('hackpoint','edit')) throw new Exception("Permissions insuffisantes",403);
  257. require_once(__DIR__.SLASH.'Resource.class.php');
  258. $resource = Resource::provide();
  259. $folder = $resource->directory();
  260. if(!file_exists($folder)) mkdir($folder,0755,true);
  261. foreach ($_['files'] as $file) {
  262. $name = (strtoupper(substr(PHP_OS, 0, 3)) === 'WIN') ? utf8_decode($file['name']) : $file['name'];
  263. $row = File::move(File::temp().$file['path'],str_replace(File::dir(),'',$folder).SLASH.$name);
  264. $row['url'] = 'action.php?action=hackpoint_download_file&file='.base64_encode('sketch'.SLASH.$resource->sketch.SLASH.$resource->id.SLASH.rawurlencode($file['name']));
  265. $row['oldPath'] = $file['path'];
  266. if(!in_array( getExt($file['name']), array('jpg','jpeg','png','bmp','svg'))){
  267. $row['icon'] = $file['icon'];//getExtIcon( getExt($file));
  268. }
  269. $response['files'][] = $row;
  270. }
  271. });
  272. break;
  273. /** PART **/
  274. //Récuperation d'une liste de part
  275. case 'hackpoint_part_search':
  276. Action::write(function(&$response){
  277. global $myUser,$_;
  278. require_once(__DIR__.SLASH.'Sketch.class.php');
  279. require_once(__DIR__.SLASH.'Part.class.php');
  280. require_once(__DIR__.SLASH.'Resource.class.php');
  281. require_once(__DIR__.SLASH.'ResourcePart.class.php');
  282. $item = Resource::provide('resource',1);
  283. $sketch = $item->join('sketch');
  284. if(!$sketch->state && $sketch->creator != $myUser->login) throw new Exception("Permissions insuffisantes",403);
  285. foreach(ResourcePart::loadAll(array('resource'=>$_['resource']), null, null, array('*'),1) as $resourcepart){
  286. $part = $resourcepart->join('part');
  287. $row = $part->toArray();
  288. $row['picture'] = $part->picture(true);
  289. $row['id'] = $resourcepart->id;
  290. $row['part'] = $part->id;
  291. $response['rows'][] = $row;
  292. }
  293. });
  294. break;
  295. //Ajout ou modification d'élément part
  296. case 'hackpoint_part_save':
  297. Action::write(function(&$response){
  298. global $myUser,$_;
  299. require_once(__DIR__.SLASH.'Sketch.class.php');
  300. require_once(__DIR__.SLASH.'Part.class.php');
  301. require_once(__DIR__.SLASH.'Resource.class.php');
  302. require_once(__DIR__.SLASH.'ResourcePart.class.php');
  303. $item = Resource::provide('resource',1);
  304. $sketch = $item->join('sketch');
  305. if($sketch->creator != $myUser->login) throw new Exception("Permissions insuffisantes",403);
  306. $part = Part::provide('part');
  307. $part->label = $_['label'];
  308. if(isset($_['price'])) $part->price = $_['price'];
  309. if(isset($_['link'])) $part->link = $_['link'];
  310. if(isset($_['brand'])) $part->brand = $_['brand'];
  311. $part->state = Part::ACTIVE;
  312. $part->save();
  313. if(isset($_['picture'])){
  314. $stream = base64_decode(preg_replace('|.*image/[^;]*;base64,|i','',$_['picture']));
  315. $dir = File::dir().'hackpoint'.SLASH.'part'.SLASH.$part->id;
  316. if(!file_exists($dir)) mkdir($dir,0755,true);
  317. file_put_contents($dir.SLASH.'cover.jpg', $stream);
  318. }
  319. $item = ResourcePart::provide();
  320. $item->part = $part->id;
  321. $item->resource = $_['resource'];
  322. $item->save();
  323. $response = $item->toArray();
  324. });
  325. break;
  326. //Suppression d'élement part
  327. case 'hackpoint_resource_part_delete':
  328. Action::write(function(&$response){
  329. global $myUser,$_;
  330. //if(!$myUser->can('hackpoint','delete')) throw new Exception("Permissions insuffisantes",403);
  331. require_once(__DIR__.SLASH.'Sketch.class.php');
  332. require_once(__DIR__.SLASH.'Resource.class.php');
  333. require_once(__DIR__.SLASH.'ResourcePart.class.php');
  334. require_once(__DIR__.SLASH.'Part.class.php');
  335. $resourcePart = ResourcePart::getById($_['id'],2);
  336. $resource = $resourcePart->join('resource');
  337. $sketch = $resource->join('sketch');
  338. if($sketch->creator!=$myUser->login) throw new Exception("Permissions insuffisantes",403);
  339. ResourcePart::deleteById($_['id']);
  340. });
  341. break;
  342. //Suppression d'élement part
  343. case 'hackpoint_part_delete':
  344. Action::write(function(&$response){
  345. global $myUser,$_;
  346. if(!$myUser->can('hackpoint','delete')) throw new Exception("Permissions insuffisantes",403);
  347. require_once(__DIR__.SLASH.'Part.class.php');
  348. Part::deleteById($_['id']);
  349. });
  350. break;
  351. //Download d'un fichier
  352. case 'hackpoint_download_file':
  353. Action::write(function(&$response){
  354. global $myUser,$_;
  355. $file = str_replace(array('..'),array(''),urldecode(base64_decode($_['file'])));
  356. $file = File::dir().'hackpoint'.SLASH.$file;
  357. File::downloadFile($file);
  358. });
  359. break;
  360. //Sauvegarde des configurations de hackpoint
  361. case 'hackpoint_setting_save':
  362. Action::write(function(&$response){
  363. global $myUser,$_,$conf;
  364. if(!$myUser->can('hackpoint','configure')) throw new Exception("Permissions insuffisantes",403);
  365. foreach(Configuration::setting('hackpoint') as $key=>$value){
  366. if(!is_array($value)) continue;
  367. $allowed[] = $key;
  368. }
  369. foreach ($_['fields'] as $key => $value) {
  370. if(in_array($key, $allowed))
  371. $conf->put($key,$value);
  372. }
  373. });
  374. break;
  375. case 'autocomplete_part':
  376. Action::write(function(&$response){
  377. require_once(__DIR__.SLASH.'Part.class.php');
  378. global $myUser,$_;
  379. if (!$myUser->connected()) throw new Exception("Error Processing Request", 1);
  380. new Exception("Vous devez être connecté!");
  381. $response['rows'] = array();
  382. $data = array("%".$_['keyword']."%",0);
  383. $parts = Part::staticQuery('SELECT * FROM {{table}} WHERE label LIKE ? AND state=? LIMIT 10',array("%".$_['keyword']."%",Part::ACTIVE),true);
  384. foreach($parts as $part){
  385. $response['rows'][] = array(
  386. 'name'=>html_entity_decode($part->label, ENT_QUOTES),
  387. 'id'=>$part->id,
  388. 'picture' => $part->picture()
  389. );
  390. }
  391. if(isset($_['data']) && isset($_['data']['before']) && isset($_['data']['before'])!=''){
  392. $list = json_decode(html_entity_decode($_['data']['before']),true);
  393. if(is_array($list)){
  394. foreach ($list as $key=>$value) {
  395. if(preg_match('/'.$_['keyword'].'/i', $value))
  396. array_unshift($response['rows'],array('name'=>$value,'id'=>$key));
  397. }
  398. }
  399. }
  400. });
  401. break;
  402. case 'get_part_by_id':
  403. Action::write(function(&$response){
  404. global $myUser,$_;
  405. require_once(__DIR__.SLASH.'Sketch.class.php');
  406. require_once(__DIR__.SLASH.'Resource.class.php');
  407. require_once(__DIR__.SLASH.'Part.class.php');
  408. $part = Part::getById($_['id'],1);
  409. $part = !$part ? new Part() : Part::getById($_['id']);
  410. $row = $part->toArray();
  411. $row['label'] = html_entity_decode($row['label'], ENT_QUOTES);
  412. if(isset($_['before']) && isset($_['before'])!=''){
  413. $list = json_decode(html_entity_decode($_['before']),true);
  414. if(is_array($list)){
  415. if(isset($list[$_['id']])) $row = array('label' => $list[$_['id']], 'id'=>$_['id']);
  416. }
  417. }
  418. $response['part'] = $row;
  419. });
  420. break;
  421. }
  422. ?>