'index.php','name' => get_lang('AdministrationTools')); set_time_limit(0); if($_POST['formSent']) { if(isset($_FILES['import_file']['tmp_name'])) { $formSent=$_POST['formSent']; $file_type=$_POST['file_type']; $sendMail=$_POST['sendMail']?1:0; $sessions=array(); /////////////////////// //XML///////////////// ///////////////////// $countSessions = 0; if($file_type == 'xml') { $racine = simplexml_load_file($_FILES['import_file']['tmp_name']); if(is_object($racine)) { foreach($racine->Users->User as $userNode) { $username = mb_convert_encoding($userNode->Username,$charset,'utf-8'); $isCut = 0; // if the username given is too long if(strlen($username)>20) { $user_name_dist = $username; $username = substr($username,0,20); $isCut = 1; } $sql = "SELECT 1 FROM $tbl_user WHERE username='".addslashes($username)."'"; $rs = api_sql_query($sql, __FILE__, __LINE__); if(mysql_affected_rows()==0) { if($isCut) { $errorMsg .= get_lang('UsernameTooLongWasCut').' '.get_lang('From').' '.$user_name_dist.' '.get_lang('To').' '.$username.'
'; } $lastname = mb_convert_encoding($userNode->Lastname,$charset,'utf-8'); $firstname = mb_convert_encoding($userNode->Firstname,$charset,'utf-8'); $password = mb_convert_encoding($userNode->Password,$charset,'utf-8'); if(empty($password)) $password = base64_encode(rand(1000,10000)); $email = mb_convert_encoding($userNode->Email,$charset,'utf-8'); $official_code = mb_convert_encoding($userNode->OfficialCode,$charset,'utf-8'); $phone = mb_convert_encoding($userNode->Phone,$charset,'utf-8'); $status = mb_convert_encoding($userNode->Status,$charset,'utf-8'); switch($status) { case 'student' : $status = 5; break; case 'teacher' : $status = 1; break; default : $status = 5; $errorMsg = get_lang('StudentStatusWasGivenTo').' : '.$username.'
'; } $sql = "INSERT INTO $tbl_user SET username = '".Database::escape_string($username)."', lastname = '".Database::escape_string($lastname)."', firstname = '".Database::escape_string($firstname)."', password = '".($userPasswordCrypted==true ? md5($password) : $password)."', email = '".Database::escape_string($email)."', official_code = '".Database::escape_string($official_code)."', phone = '".Database::escape_string($phone)."', status = '".Database::escape_string($status)."'"; api_sql_query($sql, __FILE__, __LINE__); if(mysql_affected_rows()>0 && $sendMail) { $emailto=$firstname.' '.$lastname.' <'.$email.'>'; $emailsubject='['.get_setting('siteName').'] '.get_lang('YourReg').' '.get_setting('siteName'); $emailbody="[NOTE:] ".get_lang('ThisIsAutomaticEmailNoReply').".\n\n".get_lang('langDear')." $firstname $lastname,\n\n".get_lang('langYouAreReg')." ". get_setting('siteName') ." ".get_lang('langSettings')." $username\n". get_lang('langPass')." : $password\n\n".get_lang('langAddress') ." ". get_lang('langIs') ." ". $serverAddress ."\n\n".get_lang('YouWillSoonReceiveMailFromCoach')."\n\n". get_lang('langProblem'). "\n\n". get_lang('langFormula'); //#287 modifiee par Stephane DEBIEVE - FOREM $emailheaders='From: '.get_setting('administratorName').' '.get_setting('administratorSurname').' <'.get_setting('emailAdministrator').">\n"; $emailheaders.='Reply-To: '.get_setting('emailAdministrator'); @api_send_mail($emailto,$emailsubject,$emailbody,$emailheaders); } } else { $lastname = mb_convert_encoding($userNode->Lastname,$charset,'utf-8'); $firstname = mb_convert_encoding($userNode->Firstname,$charset,'utf-8'); $password = mb_convert_encoding($userNode->Password,$charset,'utf-8'); $email = mb_convert_encoding($userNode->Email,$charset,'utf-8'); $official_code = mb_convert_encoding($userNode->OfficialCode,$charset,'utf-8'); $phone = mb_convert_encoding($userNode->Phone,$charset,'utf-8'); $status = mb_convert_encoding($userNode->Status,$charset,'utf-8'); switch($status) { case 'student' : $status = 5; break; case 'teacher' : $status = 1; break; default : $status = 5; $errorMsg = get_lang('StudentStatusWasGivenTo').' : '.$username.'
'; } $sql = "UPDATE $tbl_user SET lastname = '".Database::escape_string($lastname)."', firstname = '".Database::escape_string($firstname)."', ".(empty($password) ? "" : "password = '".($userPasswordCrypted==true ? md5($password) : $password)."',")." email = '".Database::escape_string($email)."', official_code = '".Database::escape_string($official_code)."', phone = '".Database::escape_string($phone)."', status = '".Database::escape_string($status)."' WHERE username = '".Database::escape_string($username)."'"; api_sql_query($sql, __FILE__, __LINE__); } } foreach($racine->Courses->Course as $courseNode) { $course_code = mb_convert_encoding($courseNode->CourseCode,$charset,'utf-8'); $title = mb_convert_encoding($courseNode->CourseTitle,$charset,'utf-8'); $description = mb_convert_encoding($courseNode->CourseDescription,$charset,'utf-8'); $language = mb_convert_encoding($courseNode->CourseLanguage,$charset,'utf-8'); $username = mb_convert_encoding($courseNode->CourseTeacher,$charset,'utf-8'); $sql = "SELECT user_id, lastname, firstname FROM $tbl_user WHERE username='$username'"; $rs = api_sql_query($sql, __FILE__, __LINE__); list($user_id, $lastname, $firstname) = mysql_fetch_array($rs); $keys = define_course_keys($course_code, "", $dbNamePrefix); if (sizeof($keys)) { $currentCourseCode = $keys['visual_code']; $currentCourseId = $keys["currentCourseId"]; if(empty($currentCourseCode)) $currentCourseCode = $currentCourseId; $currentCourseDbName = $keys["currentCourseDbName"]; $currentCourseRepository = $keys["currentCourseRepository"]; if($currentCourseId == strtoupper($course_code)) { if (empty ($title)) { $title = $keys["currentCourseCode"]; } prepare_course_repository($currentCourseRepository, $currentCourseId); update_Db_course($currentCourseDbName); fill_course_repository($currentCourseRepository); fill_Db_course($currentCourseDbName, $currentCourseRepository, 'french'); //register_course($currentCourseId, $currentCourseCode, $currentCourseRepository, $currentCourseDbName, "$lastname $firstname", $course['unit_code'], addslashes($course['FR']['title']), $language, $user_id); $sql = "INSERT INTO ".$tbl_course." SET code = '".$currentCourseId."', db_name = '".$currentCourseDbName."', directory = '".$currentCourseRepository."', course_language = '".$language."', title = '".$title."', description = '".lang2db($description)."', category_code = '', visibility = '".$defaultVisibilityForANewCourse."', show_score = '', disk_quota = NULL, creation_date = now(), expiration_date = NULL, last_edit = now(), last_visit = NULL, tutor_name = '".$lastname." ".$firstname."', visual_code = '".$currentCourseCode."'"; api_sql_query($sql, __FILE__, __LINE__); $sql = "INSERT INTO ".$tbl_course_user." SET course_code = '".$currentCourseId."', user_id = '".$user_id."', status = '1', role = '".lang2db('Professor')."', tutor_id='1', sort='". ($sort +1)."', user_course_cat='0'"; api_sql_query($sql, __FILE__, __LINE__); } } } foreach ($racine->Session as $sessionNode){ // foreach session $countCourses = 0; $countUsers = 0; $SessionName = mb_convert_encoding($sessionNode->SessionName,$charset,'utf-8'); $Coach = mb_convert_encoding($sessionNode->Coach,$charset,'utf-8'); if(!empty($Coach)){ $sqlCoach = "SELECT user_id FROM $tbl_user WHERE username='$Coach'"; $rsCoach = api_sql_query($sqlCoach); list($CoachId) = (mysql_fetch_array($rsCoach)); if(empty($CoachId)) { $errorMsg .= get_lang('UserDoesNotExist').' : '.$Coach.'
'; } } $DateStart = $sessionNode->DateStart; if(!empty($DateStart)) { list($YearStart,$MonthStart, $DayStart) = explode('-',$DateStart); if(empty($YearStart) || empty($MonthStart) || empty($DayStart)) { $errorMsg .= get_lang('WrongDate').' : '.$DateStart.'
'; break; } else { $timeStart = mktime(0,0,0,$MonthStart,$DayStart,$YearStart); } $DateEnd = $sessionNode->DateEnd; if(!empty($DateStart)) { list($YearEnd,$MonthEnd, $DayEnd) = explode('-',$DateEnd); if(empty($YearEnd) || empty($MonthEnd) || empty($DayEnd)) { $errorMsg .= get_lang('WrongDate').' : '.$DateEnd.'
'; break; } else { $timeEnd = mktime(0,0,0,$MonthEnd,$DayEnd,$YearEnd); } } if($timeEnd - $timeStart < 0) { $errorMsg .= get_lang('StartDateShouldBeBeforeEndDate').' : '.$DateEnd.'
'; } } // verify that session doesn't exist while(!$uniqueName) { if($i>1) $suffix = ' - '.$i; $sql = 'SELECT 1 FROM '.$tbl_session.' WHERE name="'.Database::escape_string($SessionName.$suffix).'"'; $rs = api_sql_query($sql, __FILE__, __LINE__); if(mysql_result($rs,0,0)) { $i++; } else { $uniqueName = true; $SessionName .= $suffix; } } $sqlSession = "INSERT IGNORE INTO $tbl_session SET name = '".Database::escape_string($SessionName)."', id_coach = '$CoachId', date_start = '$DateStart', date_end = '$DateEnd', session_admin_id=".intval($_user['user_id']); $rsSession = api_sql_query($sqlSession, __FILE__, __LINE__); $session_id = mysql_insert_id(); $countSessions++; foreach ($sessionNode->User as $userNode){ $username = mb_convert_encoding(substr($userNode->nodeValue,0,20),$charset,'utf-8'); $sqlUser = "SELECT user_id FROM $tbl_user WHERE username='".Database::escape_string($username)."'"; $rsUser = api_sql_query($sqlUser); list($user_id) = (mysql_fetch_array($rsUser)); if(!empty($user_id)){ $sql = "INSERT INTO $tbl_session_user SET id_user='$user_id', id_session = '$session_id'"; $rsUser = api_sql_query($sql,__FILE__,__LINE__); if(mysql_affected_rows()){ $countUsers++; } } } foreach($sessionNode->Course as $courseNode){ $CourseCode = $courseNode->CourseCode; // verify that the course pointed by the course code node exists $sql = 'SELECT 1 FROM '.$tbl_course.' WHERE code="'.mysql_escape_string($CourseCode).'"'; $rs = api_sql_query($sql, __FILE__, __LINE__); if(mysql_num_rows($rs)>0) { // if the course exists we continue $Coach = substr($courseNode->Coach,0,20); if(!empty($Coach)){ $sqlCoach = "SELECT user_id FROM $tbl_user WHERE username='$Coach'"; $rsCoach = api_sql_query($sqlCoach,__FILE__,__LINE__); list($CoachId) = (mysql_fetch_array($rsCoach)); if(empty($CoachId)) { $errorMsg .= get_lang('UserDoesNotExist').' : '.$Coach.'
'; } } else { $Coach = ''; } $sqlCourse = "INSERT INTO $tbl_session_course SET course_code = '$CourseCode', id_coach='$CoachId', id_session='$session_id'"; $rsCourse = api_sql_query($sqlCourse,__FILE__,__LINE__); if(mysql_affected_rows()){ $countCourses++; $countUsersCourses = 0; foreach ($courseNode->User as $userNode){ $username = substr($userNode,0,20); $sqlUser = "SELECT user_id FROM $tbl_user WHERE username='".$username."'"; $rsUser = api_sql_query($sqlUser); list($user_id) = (mysql_fetch_array($rsUser)); if(!empty($user_id)) { $sql = "INSERT IGNORE INTO $tbl_session_user SET id_user='$user_id', id_session = '$session_id'"; if(mysql_affected_rows()) $countUsers++; $rsUser = api_sql_query($sql,__FILE__,__LINE__); $sql = "INSERT IGNORE INTO $tbl_session_course_user SET id_user='$user_id', course_code='$CourseCode', id_session = '$session_id'"; $rsUsers = api_sql_query($sql,__FILE__,__LINE__); if(mysql_affected_rows()) $countUsersCourses++; } else { $errorMsg .= get_lang('UserDoesNotExist').' : '.$username.'
'; } } api_sql_query("UPDATE $tbl_session_course SET nbr_users='$countUsersCourses' WHERE course_code='$CourseCode'",__FILE__,__LINE__); } } else { // if the course does not exists $errorMsg .= get_lang('CourseDoesNotExist').' : '.$CourseCode.'
'; } } api_sql_query("UPDATE $tbl_session SET nbr_users='$countUsers', nbr_courses='$countCourses' WHERE id='$session_id'",__FILE__,__LINE__); } } else { $errorMsg .= get_lang('XMLNotValid'); } } ///////////////////// // CSV ///////////// /////////////////// else { $content=file($_FILES['import_file']['tmp_name']); if(!strstr($content[0],';')) { $errorMsg=get_lang('NotCSV'); } else { $tag_names=array(); foreach($content as $key=>$enreg) { $enreg=explode(';',trim($enreg)); if($key) { foreach($tag_names as $tag_key=>$tag_name) { $sessions[$key-1][$tag_name]=$enreg[$tag_key]; } } else { foreach($enreg as $tag_name) { $tag_names[]=eregi_replace('[^a-z0-9_-]','',$tag_name); } if(!in_array('SessionName',$tag_names) || !in_array('DateStart',$tag_names) || !in_array('DateEnd',$tag_names)) { $errorMsg=get_lang('NoNeededData'); break; } } } foreach($sessions as $enreg) { $SessionName = $enreg['SessionName']; $DateStart = $enreg['DateStart']; $DateEnd = $enreg['DateEnd']; if(!empty($enreg['Coach'])){ $sqlCoach = "SELECT user_id FROM $tbl_user WHERE username='".$enreg['Coach']."'"; $rsCoach = api_sql_query($sqlCoach); list($Coach) = (mysql_fetch_array($rsCoach)); } else { $Coach = ''; } $sqlSession = "INSERT IGNORE INTO $tbl_session SET name = '$SessionName', id_coach = '$Coach', date_start = '$DateStart', date_end = '$DateEnd'"; $rsSession = api_sql_query($sqlSession, __FILE__, __LINE__); $update = false; if(!mysql_affected_rows($rsSession)){ $update = true; $sqlSession = "UPDATE $tbl_session SET id_coach = '$Coach', date_start = '$DateStart', date_end = '$DateEnd' WHERE name = '$SessionName'"; $rsSession = api_sql_query($sqlSession, __FILE__, __LINE__); $session_id = api_sql_query("SELECT id FROM $tbl_session WHERE name='$SessionName'",__FILE__,__LINE__); list($session_id) = mysql_fetch_array($session_id); api_sql_query("DELETE FROM $tbl_session_user WHERE id_session='$session_id'",__FILE__,__LINE__); api_sql_query("DELETE FROM $tbl_session_course WHERE id_session='$session_id'",__FILE__,__LINE__); api_sql_query("DELETE FROM $tbl_session_course_user WHERE id_session='$session_id'",__FILE__,__LINE__); } else { $session_id = mysql_insert_id($rsSession); } $countSessions++; $users = explode('|',$enreg['Users']); foreach ($users as $user){ $sqlUser = "SELECT user_id FROM $tbl_user WHERE username='".$user."'"; $rsUser = api_sql_query($sqlUser); list($user_id) = (mysql_fetch_array($rsUser)); $sql = "INSERT INTO $tbl_session_user SET id_user='$user_id', id_session = '$session_id'"; $rsUser = api_sql_query($sql,__FILE__,__LINE__); if(mysql_affected_rows()){ $countUsers++; } } $courses = explode('|',$enreg['Courses']); foreach($courses as $course){ $CourseCode = substr($course,0,strpos($course,'[')); $Coach = strstr($course,'['); $Coach = substr($Coach,1,strpos($Coach,']')-1); if(!empty($Coach)){ $sqlCoach = "SELECT user_id FROM $tbl_user WHERE username='$Coach'"; $rsCoach = api_sql_query($sqlCoach,__FILE__,__LINE__); list($Coach) = (mysql_fetch_array($rsCoach)); } else { $Coach = ''; } $sqlCourse = "INSERT INTO $tbl_session_course SET course_code = '$CourseCode', id_coach='$Coach', id_session='$session_id'"; $rsCourse = api_sql_query($sqlCourse,__FILE__,__LINE__); if(mysql_affected_rows()){ $countCourses++; $users = substr($course , strpos($course,'[',1)+1 , strpos($course,']',1)); $users = explode('|',$enreg['Users']); $countUsersCourses = 0; foreach ($users as $user){ $sqlUser = "SELECT user_id FROM $tbl_user WHERE username='".$user."'"; $rsUser = api_sql_query($sqlUser); list($user_id) = (mysql_fetch_array($rsUser)); $sql = "INSERT INTO $tbl_session_course_user SET id_user='$user_id', course_code='$CourseCode', id_session = '$session_id'"; $rsUsers = api_sql_query($sql,__FILE__,__LINE__); if(mysql_affected_rows()) $countUsersCourses++; } api_sql_query("UPDATE $tbl_session_course SET nbr_users='$countUsersCourses' WHERE course_code='$CourseCode'",__FILE__,__LINE__); } } api_sql_query("UPDATE $tbl_session SET nbr_users='$countUsers', nbr_courses='$countCourses' WHERE id='$session_id'",__FILE__,__LINE__); } } } if(!empty($errorMsg)) { $errorMsg = get_lang('ButProblemsOccured').' :
'.$errorMsg; } if($countSessions == 1){ header('Location: resume_session.php?id_session='.$session_id); exit; } else{ header('Location: session_list.php?action=show_message&message='.urlencode(get_lang('FileImported').' '.$errorMsg)); exit; } } else { $errorMsg = get_lang('NoInputFile'); } } Display::display_header($tool_name); api_display_tool_title($tool_name); ?>
:
: ()
> ()
:
 

:

SessionName;Coach;DateStart;DateEnd;Users;Courses
xxx;xxx;xxx;xxx;username1|username2;course1[coach1][username1,username2,...]|course2[coach1][username1,username2,...]

:

<?xml version="1.0" encoding="ISO-8859-1"?>
<Sessions>
    <Users>
        <User>
            <Username>username1</Username>
            <Lastname>xxx</Lastname>
            <Firstname>xxx</Firstname>
            <Password>xxx</Password>
            <Email>xxx@xx.xx</Email>
            <OfficialCode>xxx</OfficialCode>
            <Phone>xxx</Phone>
            <Status>student|teacher</Status>
        </User>
    </Users>
    <Courses>
        <Course>
            <CourseCode>xxx</CourseCode>
            <CourseTeacher>xxx</CourseTeacher>
            <CourseLanguage>xxx</CourseLanguage>
            <CourseTitle>xxx</CourseTitle>
            <CourseDescription>xxx</CourseDescription>
        </Course>
    </Courses>
    <Session>
        <SessionName>xxx</SessionName>
        <Coach>xxx</Coach>
        <DateStart>xxx</DateStart>
        <DateEnd>xxx</DateEnd>
        <User>xxx</User>
        <User>xxx</User>
    	<Course>
    		<CourseCode>coursecode1</CourseCode>
    		<Coach>coach1</Coach>
		<User>username1</User>
		<User>username2</User>
    	</Course>
    </Session>
</Sessions>