'; require_once(api_get_path(LIBRARY_PATH).'fileManage.lib.php'); require_once(api_get_path(LIBRARY_PATH).'fileUpload.lib.php'); require_once(api_get_path(LIBRARY_PATH).'usermanager.lib.php'); require_once (api_get_path(LIBRARY_PATH).'formvalidator/FormValidator.class.php'); require_once (api_get_path(LIBRARY_PATH).'image.lib.php'); require_once(api_get_path(INCLUDE_PATH).'lib/mail.lib.inc.php'); $user_id=isset($_GET['user_id']) ? intval($_GET['user_id']) : intval($_POST['user_id']); $noPHP_SELF=true; $tool_name=get_lang('ModifyUserInfo'); $interbreadcrumb[]=array('url' => 'index.php',"name" => get_lang('PlatformAdmin')); $interbreadcrumb[]=array('url' => "user_list.php","name" => get_lang('UserList')); $table_user = Database::get_main_table(TABLE_MAIN_USER); $table_admin = Database::get_main_table(TABLE_MAIN_ADMIN); $sql = "SELECT u.*, a.user_id AS is_admin FROM $table_user u LEFT JOIN $table_admin a ON a.user_id = u.user_id WHERE u.user_id = '".$user_id."'"; $res = api_sql_query($sql,__FILE__,__LINE__); if(mysql_num_rows($res) != 1) { header('Location: user_list.php'); exit; } $user_data = mysql_fetch_array($res,MYSQL_ASSOC); $user_data['platform_admin'] = is_null($user_data['is_admin']) ? 0 : 1; $user_data['send_mail'] = 0; $user_data['old_password'] = $user_data['password']; unset($user_data['password']); $user_data = array_merge($user_data, Usermanager :: get_extra_user_data($user_id,true)); // Create the form $form = new FormValidator('user_add','post','','',array('style' => 'width: 60%; float: '.($text_dir=='rtl'?'right;':'left;'))); $form->addElement('hidden','user_id',$user_id); // Lastname $form->addElement('text','lastname',get_lang('LastName')); $form->applyFilter('lastname','html_filter'); $form->applyFilter('lastname','trim'); $form->addRule('lastname', get_lang('ThisFieldIsRequired'), 'required'); // Firstname $form->addElement('text','firstname',get_lang('FirstName')); $form->applyFilter('firstname','html_filter'); $form->applyFilter('firstname','trim'); $form->addRule('firstname', get_lang('ThisFieldIsRequired'), 'required'); // Official code $form->addElement('text', 'official_code', get_lang('OfficialCode'),array('size' => '40')); $form->applyFilter('official_code','html_filter'); $form->applyFilter('official_code','trim'); // Email $form->addElement('text', 'email', get_lang('Email'),array('size' => '40')); $form->addRule('email', get_lang('EmailWrong'), 'email'); $form->addRule('email', get_lang('EmailWrong'), 'required'); // OpenID if(api_get_setting('openid_authentication')=='true') { $form->addElement('text', 'openid', get_lang('OpenIDURL'),array('size' => '40')); } // Phone $form->addElement('text','phone',get_lang('PhoneNumber')); // Picture $form->addElement('file', 'picture', get_lang('AddPicture')); $allowed_picture_types = array ('jpg', 'jpeg', 'png', 'gif'); $form->addRule('picture', get_lang('OnlyImagesAllowed').' ('.implode(',', $allowed_picture_types).')', 'filetype', $allowed_picture_types); if (strlen($user_data['picture_uri']) > 0 ) { $form->addElement('checkbox', 'delete_picture', '', get_lang('DelImage')); } // Username $form->addElement('text', 'username', get_lang('LoginName'),array('maxlength'=>20)); $form->addRule('username', get_lang('ThisFieldIsRequired'), 'required'); $form->addRule('username', get_lang('OnlyLettersAndNumbersAllowed'), 'username'); $form->addRule('username', '', 'maxlength',20); $form->addRule('username', get_lang('UserTaken'), 'username_available', $user_data['username']); // Password $form->addElement('radio','reset_password',get_lang('Password'),get_lang('DontResetPassword'),0); if(count($extAuthSource) > 0) { $group[] =& HTML_QuickForm::createElement('radio','reset_password',null,get_lang('ExternalAuthentication').' ',3); $auth_sources = array(); foreach($extAuthSource as $key => $info) { $auth_sources[$key] = $key; } $group[] =& HTML_QuickForm::createElement('select','auth_source',null,$auth_sources); $group[] =& HTML_QuickForm::createElement('static','','','
'); $form->addGroup($group, 'password', null, '',false); } $form->addElement('radio','reset_password',null,get_lang('AutoGeneratePassword'),1); $group = array(); $group[] =& HTML_QuickForm::createElement('radio', 'reset_password',null,null,2); $group[] =& HTML_QuickForm::createElement('password', 'password',null,null); $form->addGroup($group, 'password', null, '',false); // Status $status = api_get_status_langvars(); $form->addElement('select','status',get_lang('Status'),$status,'id="status_select" onchange="display_drh_list()"'); $display = $user_data['status'] == STUDENT || $_POST['status'] == STUDENT ? 'block' : 'none'; $form->addElement('html','
'); $drh_select = $form->addElement('select','hr_dept_id',get_lang('Drh'),array(),'id="drh_select"'); $drh_list = UserManager :: get_user_list(array('status'=>DRH),array('lastname','firstname')); $drh_select->addOption('---',0); foreach($drh_list as $drh) { $drh_select->addOption($drh['lastname'].' '.$drh['firstname'],$drh['user_id']); } $form->addElement('html', '
'); // Platform admin // Only when changing another user! if($user_id != $_SESSION['_uid']) { $group = array(); $group[] =& HTML_QuickForm::createElement('radio', 'platform_admin',null,get_lang('Yes'),1); $group[] =& HTML_QuickForm::createElement('radio', 'platform_admin',null,get_lang('No'),0); $form->addGroup($group, 'admin', get_lang('PlatformAdmin'), ' ',false); } // Send email $group = array(); $group[] =& HTML_QuickForm::createElement('radio', 'send_mail',null,get_lang('Yes'),1); $group[] =& HTML_QuickForm::createElement('radio', 'send_mail',null,get_lang('No'),0); $form->addGroup($group, 'mail', get_lang('SendMailToNewUser'), ' ',false); // Registration Date $form->addElement('static','registration_date', get_lang('RegistrationDate'), $user_data['registration_date']); if(! $user_data['platform_admin'] ) { // Expiration Date $form->addElement('radio', 'radio_expiration_date', get_lang('ExpirationDate'), get_lang('NeverExpires'), 0); $group = array (); $group[] = & $form->createElement('radio', 'radio_expiration_date', null, get_lang('On'), 1); $group[] = & $form->createElement('datepicker', 'expiration_date',null, array ('form_name' => $form->getAttribute('name'), 'onChange'=>'enable_expiration_date()')); $form->addGroup($group, 'max_member_group', null, '', false); // Active account or inactive account $form->addElement('radio','active',get_lang('ActiveAccount'),get_lang('Active'),1); $form->addElement('radio','active','',get_lang('Inactive'),0); } // EXTRA FIELDS $extra = UserManager::get_extra_fields(0,50,5,'ASC'); foreach($extra as $id => $field_details) { if($field_details[6] == 0) { continue; } switch($field_details[2]) { case USER_FIELD_TYPE_TEXT: $form->addElement('text', 'extra_'.$field_details[1], $field_details[3], array('size' => 40)); $form->applyFilter('extra_'.$field_details[1], 'stripslashes'); $form->applyFilter('extra_'.$field_details[1], 'trim'); break; case USER_FIELD_TYPE_TEXTAREA: $form->add_html_editor('extra_'.$field_details[1], $field_details[3], false); //$form->addElement('textarea', 'extra_'.$field_details[1], $field_details[3], array('size' => 80)); $form->applyFilter('extra_'.$field_details[1], 'stripslashes'); $form->applyFilter('extra_'.$field_details[1], 'trim'); break; case USER_FIELD_TYPE_RADIO: $group = array(); foreach($field_details[8] as $option_id => $option_details) { $options[$option_details[1]] = $option_details[2]; $group[] =& HTML_QuickForm::createElement('radio', 'extra_'.$field_details[1], $option_details[1],$option_details[2].'
',$option_details[1]); } $form->addGroup($group, 'extra_'.$field_details[1], $field_details[3], ''); break; case USER_FIELD_TYPE_SELECT: $options = array(); foreach($field_details[8] as $option_id => $option_details) { $options[$option_details[1]] = $option_details[2]; } $form->addElement('select','extra_'.$field_details[1],$field_details[3],$options,''); break; case USER_FIELD_TYPE_SELECT_MULTIPLE: $options = array(); foreach($field_details[8] as $option_id => $option_details) { $options[$option_details[1]] = $option_details[2]; } $form->addElement('select','extra_'.$field_details[1],$field_details[3],$options,array('multiple' => 'multiple')); break; case USER_FIELD_TYPE_DATE: $form->addElement('datepickerdate', 'extra_'.$field_details[1], $field_details[3],array('form_name'=>'user_add')); $form->_elements[$form->_elementIndex['extra_'.$field_details[1]]]->setLocalOption('minYear',1900); $form->applyFilter('theme', 'trim'); break; case USER_FIELD_TYPE_DATETIME: $form->addElement('datepicker', 'extra_'.$field_details[1], $field_details[3],array('form_name'=>'user_add')); $form->applyFilter('theme', 'trim'); break; } } // Submit button $form->addElement('submit', 'submit', 'OK'); // Set default values $expiration_date=$user_data['expiration_date']; if ($expiration_date=='0000-00-00 00:00:00') { $user_data['radio_expiration_date']=0; $user_data['expiration_date']=array(); $user_data['expiration_date']['d']=date('d'); $user_data['expiration_date']['F']=date('m'); $user_data['expiration_date']['Y']=date('Y'); } else { $user_data['radio_expiration_date']=1; $user_data['expiration_date']=array(); $user_data['expiration_date']['d']=substr($expiration_date,8,2); $user_data['expiration_date']['F']=substr($expiration_date,5,2); $user_data['expiration_date']['Y']=substr($expiration_date,0,4); } $form->setDefaults($user_data); // Validate form if( $form->validate()) { $user = $form->exportValues(); $picture_element = & $form->getElement('picture'); $picture = $picture_element->getValue(); $picture_uri = ''; //get the picture directory $picture_paths = UserManager::get_user_picture_path_by_id($user_id,'system',true); $picture_location = $picture_paths['dir']; $big_picture_location = $picture_paths['dir']; if (strlen($picture['name']) > 0) { $picture_uri = uniqid('').'_'.replace_dangerous_char($picture['name']); if(!file_exists($picture_location)) { mkpath($picture_location); } $picture_location .= $picture_uri; $big_picture_location .= 'big_'.$picture_uri; // get the picture and resize it 100x150 $temp = new image($_FILES['picture']['tmp_name']); $picture_infos=getimagesize($_FILES['picture']['tmp_name']); $thumbwidth = IMAGE_THUMBNAIL_WIDTH; if (empty($thumbwidth) or $thumbwidth==0) { $thumbwidth=150; } $new_height = round(($thumbwidth/$picture_infos[0])*$picture_infos[1]); $temp->resize($thumbwidth,$new_height,0); $type=$picture_infos[2]; // original picture $big_temp = new image($_FILES['picture']['tmp_name']); switch (!empty($type)) { case 2 : $temp->send_image('JPG',$picture_location); $big_temp->send_image('JPG',$big_picture_location); break; case 3 : $temp->send_image('PNG',$picture_location); $big_temp->send_image('JPG',$big_picture_location); break; case 1 : $temp->send_image('GIF',$picture_location); $big_temp->send_image('JPG',$big_picture_location); break; } } elseif(isset($user['delete_picture'])) { @unlink($picture_location.$user_data['picture_uri']); } if (strlen($picture['name']) == 0){ $picture_uri = $user_data['picture_uri']; } $lastname = $user['lastname']; $firstname = $user['firstname']; $official_code = $user['official_code']; $email = $user['email']; $phone = $user['phone']; $username = $user['username']; $status = intval($user['status']); $picture = $_FILES['picture']; $platform_admin = intval($user['platform_admin']); $send_mail = intval($user['send_mail']); $reset_password = intval($user['reset_password']); $hr_dept_id = intval($user['hr_dept_id']); if ($user['radio_expiration_date']=='1' && ! $user_data['platform_admin'] ) { $expiration_date=$user['expiration_date']; } else { $expiration_date='0000-00-00 00:00:00'; } $active = $user_data['platform_admin'] ? 1 : intval($user['active']); if( $reset_password == 0) { $password = null; $auth_source = $user_data['auth_source']; } elseif($reset_password == 1) { $password = api_generate_password(); $auth_source = PLATFORM_AUTH_SOURCE; } elseif($reset_password == 2) { $password = $user['password']; $auth_source = PLATFORM_AUTH_SOURCE; } elseif($reset_password == 3) { $password = $user['password']; $auth_source = $user['auth_source']; } UserManager::update_user($user_id,$firstname,$lastname,$username,$password,$auth_source,$email,$status,$official_code,$phone,$picture_uri,$expiration_date, $active, null, $hr_dept_id); if(api_get_setting('openid_authentication')=='true' && !empty($user['openid'])) { $up = UserManager::update_openid($user_id,$user['openid']); } if($user_id != $_SESSION['_uid']) { if($platform_admin == 1) { $sql = "INSERT IGNORE INTO $table_admin SET user_id = '".$user_id."'"; api_sql_query($sql,__FILE__,__LINE__); } else { $sql = "DELETE FROM $table_admin WHERE user_id = '".$user_id."'"; api_sql_query($sql,__FILE__,__LINE__); } } $extras = array(); foreach($user as $key => $value) { if(substr($key,0,6)=='extra_') //an extra field { $myres = UserManager::update_extra_field_value($user_id,substr($key,6),$value); } } if (!empty ($email) && $send_mail) { $recipient_name = $firstname.' '.$lastname; $emailsubject = '['.get_setting('siteName').'] '.get_lang('YourReg').' '.get_setting('siteName'); $sender_name = get_setting('administratorName').' '.get_setting('administratorSurname'); $email_admin = get_setting('emailAdministrator'); $emailbody = get_lang('Dear')." ".stripslashes("$firstname $lastname").",\n\n".get_lang('YouAreReg')." ". get_setting('siteName') ." ".get_lang('Settings')." ". $username; // Send password by e-mail if it has been modified, even if encrypted in DB (it doesn't make sense to send an e-mail with login info without the password, even if the password is encrypted) if($reset_password > 0) { $emailbody .= "\n".get_lang('Pass')." : ".stripslashes($password); } @api_mail($recipient_name, $email, $emailsubject, $emailbody, $sender_name,$email_admin); } $tok = Security::get_token(); header('Location: user_list.php?action=show_message&message='.urlencode(get_lang('UserUpdated')).'&sec_token='.$tok); exit(); } Display::display_header($tool_name); // USER PICTURE $image_path = UserManager::get_user_picture_path_by_id($user_id,'web'); $image_dir = $image_path['dir']; $image = $image_path['file']; $image_file = ($image != '' ? $image_dir.$image : api_get_path(WEB_CODE_PATH).'img/unknown.jpg'); $image_size = @getimagesize($image_file); $img_attributes = 'src="'.$image_file.'?rand='.time().'" ' .'alt="'.$user_data['lastname'].' '.$user_data['firstname'].'" ' .'style="float:'.($text_dir == 'rtl' ? 'left' : 'right').'; padding:5px;" '; if ($image_size[0] > 300) //limit display width to 300px $img_attributes .= 'width="300" '; // get the path,width and height from original picture $big_image = $image_dir.'big_'.$image; $big_image_size = @getimagesize($big_image); $big_image_width= $big_image_size[0]; $big_image_height= $big_image_size[1]; $url_big_image = $big_image.'?rnd='.time(); if ($image=='') { echo ''; } else { echo ''; } // Display form $form->display(); /* ============================================================================== FOOTER ============================================================================== */ Display::display_footer(); ?>