| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401 |
- <?php
- Lib::loadClass('RouteBase');
- Lib::loadClass('UserStorageFactory');
- Lib::loadClass('ProcesHelper');
- Lib::loadClass('SyncUsers');
- Lib::loadClass('UsersHelper');
- Lib::loadClass('UsersLdapHelper');
- Lib::loadClass('TypespecialVariable');
- Lib::loadClass('TableAjax');
- Lib::loadClass('UserActivity');
- class Route_Users extends RouteBase {
- public function handleAuth() {
- if (!User::logged()) {
- throw new HttpException('Unauthorized', 401);
- }
- }
- public function defaultAction() {
- SE_Layout::gora();
- SE_Layout::menu();
- $this->menu();
- SE_Layout::dol();
- }
- public function menu() {
- $usrLogin = User::getLogin();
- ?>
- <ul>
- <li><a href="index.php?_route=Users&_task=syncUser&usrLogin=<?php echo $usrLogin; ?>">Sync user <?php echo $usrLogin; ?></a></li>
- <li><a href="index.php?_route=Users&_task=userGroups&usrLogin=<?php echo $usrLogin; ?>">Add group <?php echo $usrLogin; ?></a></li>
- </ul>
- <?php
- }
- public function userGroupsAction() {
- SE_Layout::gora();
- SE_Layout::menu();
- $usrLogin = V::get('usrLogin', '', $_GET);
- echo '<div class="container">';
- try {
- if (empty($usrLogin)) throw new Exception("Empty user login");
- $subTask = V::get('_subTask', '', $_POST);
- if ('removeUserGroup' == $subTask) {
- $idProfileToRemove = V::get('idProfileToRemove', 0, $_POST, 'int');
- $this->removeUserGroup($usrLogin, $idProfileToRemove);
- ?><div class="alert alert-info">Użytkownik został usunięty z danej grupy</div><?php
- } else if ('addUserGroup' == $subTask) {
- $idGroup = V::get('idGroup', 0, $_POST, 'int');
- $idTelboxes = V::get('addTelboxesID', 0, $_POST, 'int');
- $this->addUserGroup($usrLogin, $idGroup, $idTelboxes);
- ?><div class="alert alert-info">Dodano grupę [<?php echo $idGroup; ?>] do użytkownika [<?php echo $usrLogin; ?>]</div><?php
- }
- $this->printFormUserGroup($usrLogin);
- } catch (Exception $e) {
- ?><div class="alert alert-danger"><?php echo $e->getMessage(); ?>
- <br><a href="index.php?_route=Users&_task=userGroups&usrLogin=<?php echo $usrLogin; ?>">wróć</a>
- </div><?php
- echo UserActivity::showListInContainer();
- }
- echo '</div>';// .container
- SE_Layout::dol();
- }
- public function printFormUserGroup($usrLogin) {
- if (empty($usrLogin)) throw new Exception("Empty user login");
- $usrStorageDB = UserStorageFactory::getStorage('DB');
- if (!$usrStorageDB) throw new Exception("Storage DB not exists!");
- $usr = $usrStorageDB->getUser($usrLogin);
- if (!$usr) throw new Exception("Użytkownik '{$usrLogin}' nie istnieje.");
- $stanowiska = array();
- $stanowiska = $usrStorageDB->getUserProfiles($usrLogin, $fetchNested = false);
- uasort($stanowiska, array($this, 'sortStanowiskaByType'));
- $groups = UsersHelper::getGroupByUser($usr->primaryKey);
- DBG::_('DBG_SU', '>1', 'groups', $groups, __CLASS__, __FUNCTION__, __LINE__);
- $groupsNetwork = UsersLdapHelper::getUserGroups($usrLogin, 3);
- DBG::_('DBG_SU', '>1', 'groupsNetwork', $groupsNetwork, __CLASS__, __FUNCTION__, __LINE__);
- $typeSpecialUserGroups = TypespecialVariable::getInstance(-1, '__USER_GROUPS');
- $typeSpecialTelboxes = TypespecialVariable::getInstance(-1, '__TELBOXES');
- $idZasobUsersTbl = ProcesHelper::getZasobTableID('ADMIN_USERS');
- ?>
- <style type="text/css">
- .frm-groups .selectize-control { float:left; }
- .conn_groups {}
- .conn_groups .conn_groups-list {}
- .conn_groups .conn_groups-list .conn_groups-list_item { line-height:22px; }
- .conn_groups .conn_groups-list .conn_groups-list_item form { display:inline; margin:0; }
- .conn_groups .conn_groups-list_item-rmBtn { /*display:none;*/ opacity:0.4; margin:0; padding:0 10px; border:none; }
- .conn_groups .conn_groups-list_item:hover .conn_groups-list_item-rmBtn { /*display:inline;*/ opacity:1; }
- </style>
- <div class="conn_groups">
- <h4>Ustalanie stanowiska</h4>
- <blockquote>
- Użytkownik [<?php echo $usr->primaryKey; ?>] <b><?php echo $usr->name; ?></b> <code><?php echo $usr->login; ?></code>
- <?php if ($idZasobUsersTbl > 0) : ?>
- <a href="index.php?MENU_INIT=VIEWTABLE_AJAX&ZASOB_ID=<?php echo $idZasobUsersTbl; ?>#EDIT/<?php echo $usr->primaryKey; ?>"
- class="btn btn-xs btn-link"><span class="glyphicon glyphicon-pencil"></span> edytuj</a>
- <?php endif; ?>
- <a href="index.php?_route=Users&_task=syncUser&usrLogin=<?php echo $usr->login; ?>"
- class="btn btn-xs btn-link"><span class="glyphicon glyphicon-random"></span> synchronizuj do LDAP</a>
- </blockquote>
- <?php if (!empty($taskErrors)) : ?>
- <div class="alert alert-danger">
- <button type="button" class="close" data-dismiss="alert">×</button>
- <?php echo implode('<br>', $taskErrors); ?>
- </div>
- <?php endif; ?>
- <?php if (!empty($taskMsgs)) : ?>
- <div class="alert alert-success">
- <button type="button" class="close" data-dismiss="alert">×</button>
- <?php echo implode('<br>', $taskMsgs); ?>
- </div>
- <?php endif; ?>
- <h4>Przypisane grupy (<?php echo (!empty($stanowiska))? count($stanowiska) : 0; ?>):</h4>
- <?php if (!empty($stanowiska)) : ?>
- <ul class="conn_groups-list">
- <?php foreach ($stanowiska as $vProfile) : ?>
- <li class="conn_groups-list_item">
- <?php echo $vProfile->group->realName; ?>
- <?php if ($vProfile->localisationId > 0) : ?>
- (lokalizacja [<?php echo $vProfile->localisationId; ?>])
- <?php endif; ?>
- <form class="form-inline frm-groups" action="" method="POST">
- <input type="hidden" name="_subTask" value="removeUserGroup">
- <button name="idProfileToRemove" value="<?php echo $vProfile->profileId; ?>" class="btn-link btn-sm conn_groups-list_item-rmBtn" title="usuń grupę" onclick="return confirm('Czy jesteś pewien że chcesz usunąć przypisanie do grupy <?php echo $vProfile->group->realName; ?>?');"><i class="glyphicon glyphicon-remove"></i></button>
- </form>
- </li>
- <?php endforeach; ?>
- </ul>
- <?php endif; ?>
- <?php if ($typeSpecialUserGroups && $typeSpecialTelboxes) : ?>
- <h4>Dodaj grupę:</h4>
- <form class="form-horizontal" action="" method="POST">
- <input type="hidden" name="_subTask" value="addUserGroup">
- <div class="form-group">
- <label class="col-sm-3 control-label" for="idGroup">Grupa</label>
- <div class="col-sm-9">
- <?php
- $fName = 'idGroup';
- $fldParams = array();
- $fldParams['allowCreate'] = false;
- $fldParams['ajaxDataUrlBase'] = "index.php?_route=Users&_task=typeSpecialIdGroup";
- //$fldParams['ajaxDataUrlBase'] .= "&DBG_TS=3";
- echo $typeSpecialUserGroups->showFormItem($tblID = -1, $fName, $selValue = '', $fldParams);
- ?>
- </div>
- </div>
- <div class="form-group">
- <label class="col-sm-3 control-label" for="addTelboxesID">Lokalizacja</label>
- <div class="col-sm-9">
- <?php
- $fName = 'addTelboxesID';
- $fldParams = array();
- $fldParams['allowCreate'] = false;
- $fldParams['ajaxDataUrlBase'] = "index.php?_route=Users&_task=typeSpecialIdTelboxes";
- //$fldParams['ajaxDataUrlBase'] .= "&DBG_TS=3";
- echo $typeSpecialTelboxes->showFormItem($tblID = -1, $fName, $selValue = '', $fldParams);
- ?>
- </div>
- </div>
- <div class="form-group">
- <div class="col-sm-9 col-sm-offset-3">
- <button type="submit" class="btn btn-xs btn-primary">dodaj grupę</button>
- </div>
- </div>
- </form>
- <?php endif; ?>
- </div>
- <?php
- {// show table crm_auth_profile
- $idZasobCrmAuthProfile = ProcesHelper::getZasobTableID('CRM_AUTH_PROFILE');
- if ($idZasobCrmAuthProfile <= 0) throw new Exception("Can not find id zasob 'CRM_AUTH_PROFILE'");
- $zasobObj = ProcesHelper::getZasobTableInfo($idZasobCrmAuthProfile);
- if (!$zasobObj) throw new Exception("Zasob TABELA ID={$idZasobCrmAuthProfile} nie istnieje");
- UserActivity::add($idZasobCrmAuthProfile);
- $userAcl = User::getAcl();
- if (!$userAcl->hasTableAcl($zasobObj->ID)) throw new Exception("Brak uprawnień do tabeli ID={$zasobObj->ID}");
- $tblAcl = $userAcl->getTableAcl($zasobObj->ID);
- $forceTblAclInit = ('1' == V::get('_force', '', $_GET));
- $tblAcl->init($forceTblAclInit);
- $forceFilterInit = array();
- $filterInit = new stdClass();
- $filterInit->currSortCol = 'ID';
- $filterInit->currSortFlip = 'desc';
- foreach ($_GET as $k => $v) {
- if (strlen($k) > 3 && substr($k, 0, 2) == 'f_' && !empty($v)) {// filter prefix
- $filterInit->$k = $v;
- }
- else if (strlen($k) > 4 && substr($k, 0, 3) == 'sf_' && !empty($v)) {// special filter prefix
- $filterInit->$k = $v;
- }
- else if (strlen($k) > 4 && substr($k, 0, 3) == 'ff_' && !empty($v)) {// force filter prefix
- $fldName = substr($k, 3);
- $forceFilterInit[$fldName] = $v;
- }
- }
- $forceFilterInit['REMOTE_ID'] = $usr->primaryKey;
- $forceFilterInit['REMOTE_TABLE'] = 'ADMIN_USERS';
- $tbl = new TableAjax($tblAcl);
- $tbl->setLabel($zasobObj->OPIS);
- $tbl->setFilterInit($filterInit);
- if (!empty($forceFilterInit)) $tbl->setForceFilterInit($forceFilterInit);
- $tbl->addRowFunction('edit');
- $tbl->addRowFunction('hist');
- $tbl->addRowFunction('files');
- $tbl->addRowFunction('cp');
- $tbl->showProcesInit(false);// hide Proces filter field
- echo $tbl->render();
- }
- }
- public function sortStanowiskaByType($a, $b) {
- if ($a->group->type != $a->group->type) {
- if ($a->group->type == 'network') {
- return 1;
- }
- else if ($a->group->type == 'local') {
- return -1;
- }
- }
- return 0;
- }
- public function removeUserGroup($usrLogin, $idProfileToRemove) {
- if (!$usrLogin) throw new Exception("Wrong param user login!");
- if (!$idProfileToRemove) throw new Exception("Wrong param id profile to remove!");
- $usrStorageDB = UserStorageFactory::getStorage('DB');
- if (!$usrStorageDB) throw new Exception("Error storage not exists!");
- $profile = $usrStorageDB->getProfileById($idProfileToRemove);
- if (!$profile) throw new Exception("Error profile not exists!");
- $usrStorageDB->removeUserGroupByProfileId($usrLogin, $profile->group, $idProfileToRemove);
- }
- public function addUserGroup($usrLogin, $idGroup, $idTelboxes) {
- DBG::_('DBG_NG', '>0', 'post', $_POST, __CLASS__, __FUNCTION__, __LINE__);
- if (!$usrLogin) throw new Exception("Wrong param user login!");
- $usrStorageDB = UserStorageFactory::getStorage('DB');
- if (!$usrStorageDB) throw new Exception("Error storage not exists!");
- $usr = $usrStorageDB->getUser($usrLogin);
- if (!$usr) throw new Exception("Użytkownik {$usrLogin} nie istnieje.");
- if ($idGroup > 0) {
- $groupToAdd = $usrStorageDB->getGroupWithoutNested($idGroup);
- if (!$groupToAdd) throw new Exception("Grupa [{$idGroup}] nie istnieje");
- $added = $usrStorageDB->addUserGroup($usrLogin, $groupToAdd, $idTelboxes);
- }
- }
- public function typeSpecialIdGroupAction() {
- header("Content-type: application/json");
- Lib::loadClass('TypespecialVariable');
- $typeSpecialUserGroups = TypespecialVariable::getInstance(-1, '__USER_GROUPS');
- $query = V::get('q', '', $_REQUEST);
- $rawRows = null;
- $rows = $typeSpecialUserGroups->getValuesWithExports($query);
- DBG::_('DBG', '>0', "rows(q={$query})", $rows, __CLASS__, __FUNCTION__, __LINE__);
- foreach ($rows as $kID => $vItem) {
- $itemJson = new stdClass();
- $itemJson->id = $vItem->id;
- $itemJson->name = $vItem->param_out;
- if (!empty($vItem->exports)) {
- $itemJson->exports = $vItem->exports;
- }
- $jsonData[] = $itemJson;
- }
- echo json_encode($jsonData);
- }
- public function typeSpecialIdTelboxesAction() {
- header("Content-type: application/json");
- Lib::loadClass('TypespecialVariable');
- $typeSpecialTelboxes = TypespecialVariable::getInstance(-1, '__TELBOXES');
- $query = V::get('q', '', $_REQUEST);
- $rawRows = null;
- $rows = $typeSpecialTelboxes->getValuesWithExports($query);
- DBG::_('DBG', '>0', "rows(q={$query})", $rows, __CLASS__, __FUNCTION__, __LINE__);
- foreach ($rows as $kID => $vItem) {
- $itemJson = new stdClass();
- $itemJson->id = $vItem->id;
- $itemJson->name = $vItem->param_out;
- if (!empty($vItem->exports)) {
- $itemJson->exports = $vItem->exports;
- }
- $jsonData[] = $itemJson;
- }
- echo json_encode($jsonData);
- }
- public function syncUserAction() {
- SE_Layout::gora();
- SE_Layout::menu();
- $usrLogin = V::get('usrLogin', '', $_GET);
- echo '<div class="container">';
- try {
- if (empty($usrLogin)) throw new Exception("Empty user login");
- $usrStorageDB = UserStorageFactory::getStorage('DB');
- $usrStorageLdap = UserStorageFactory::getStorage('MacOSX');
- if (!$usrStorageDB) throw new Exception("Error storage DB not exists");
- if (!$usrStorageLdap) throw new Exception("Error storage Ldap not exists");
- echo '<h4>' . "Synchronizacja do LDAP" . '</h4>';
- $usrFrom = $usrStorageDB->getUser($usrLogin);
- DBG::_('DBG_SU', '>1', 'User from:', $usrFrom, __CLASS__, __FUNCTION__, __LINE__);
- if ($usrFrom) {
- $idZasobUsersTbl = ProcesHelper::getZasobTableID('ADMIN_USERS');
- $idZasobPermsTbl = ProcesHelper::getZasobTableID('CRM_AUTH_PROFILE');
- ?>
- <blockquote>
- Użytkownik [<?php echo $usrFrom->primaryKey; ?>] <b><?php echo $usrFrom->name; ?></b> <code><?php echo $usrFrom->login; ?></code>
- <?php if ($idZasobUsersTbl > 0) : ?>
- <a href="index.php?MENU_INIT=VIEWTABLE_AJAX&ZASOB_ID=<?php echo $idZasobUsersTbl; ?>#EDIT/<?php echo $usrFrom->primaryKey; ?>"
- class="btn btn-xs btn-link"><span class="glyphicon glyphicon-pencil"></span> edytuj</a>
- <?php endif; ?>
- <?php if ($idZasobPermsTbl > 0) : ?>
- <a href="index.php?_route=Users&_task=userGroups&usrLogin=<?php echo $usrFrom->login; ?>"
- class="btn btn-xs btn-link"><span class="glyphicon glyphicon-user"></span> ustal stanowisko</a>
- <?php endif; ?>
- </blockquote>
- <?php
- }
- $this->syncUser($usrLogin, $usrStorageDB, $usrStorageLdap);
- } catch (Exception $e) {
- ?><div class="alert alert-danger"><?php echo $e->getMessage(); ?></div><?php
- }
- echo '</div>';// .container
- SE_Layout::dol();
- }
- public function syncUser($userName, $usrStorageDB, $usrStorageLdap) {
- if (empty($userName)) throw new Exception("Empty user login");
- if (!$usrStorageDB) throw new Exception("Error storage DB not exists");
- if (!$usrStorageLdap) throw new Exception("Error storage Ldap not exists");
- $synUsers = new SyncUsers($usrStorageDB, $usrStorageLdap);
- $syncTodoList = $synUsers->getSyncUserTodoList($userName);
- ?>
- <?php if (empty($syncTodoList)) : ?>
- <div class="alert alert-info">Brak zadań do wykonania - użytkownik zsynchronizowany</div>
- <?php else : ?>
- <div class="well">
- <p>Lista zadań do wykonania:</p>
- <ul>
- <?php foreach ($syncTodoList as $vTask) : ?>
- <li><?php echo $vTask; ?></li>
- <?php endforeach; ?>
- </ul>
- </div>
- <?php endif; ?>
- <?php
- if ('1' == V::get('_runSync', '', $_POST)) {
- $synced = $synUsers->syncUser($userName, $syncGroups = true, $syncDisabled = true);
- if (!$synced) {
- ?>
- <div class="alert alert-danger">
- Nie udało się zsynchronizować uprawnień użytkownika <?php echo $userName; ?>.
- </div>
- <?php
- $errorsList = $synUsers->getErrorsMsgListWithDbg();
- if (!empty($errorsList)) {
- echo'<pre style="max-height:200px;overflow:auto;border:1px solid red;text-align:left;">';
- echo "Błędy:\n" . implode("\n", $errorsList);
- echo '</pre>';
- }
- }
- else {
- ?>
- <div class="alert alert-success">
- Synchronizacja uprawnień użytkownika <?php echo $userName; ?> zakończona powodzeniem.
- </div>
- <?php
- }
- }
- else {
- ?>
- <form action="" method="POST">
- <input type="hidden" name="_runSync" value="1">
- <input type="submit" value="Synchronizuj" class="btn btn-primary btn-big">
- </form>
- <?php
- }
- }
- }
|