AccessOwnerStorageAcl.php 7.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169
  1. <?php
  2. Lib::loadClass('Core_AclBase');
  3. Lib::loadClass('ParseOgcFilter');
  4. class Schema_AccessOwnerStorageAcl extends Core_AclBase {
  5. public function getNamespace() { return 'default_objects/' . $this->getName(); }
  6. public function getSourceName() { return 'default_objects'; }
  7. public function init($force = false) {}
  8. public function isInitialized() { return true; }
  9. public function getName() { return 'AccessOwner'; }
  10. public function getRootTableName() { return 'ADMIN_USERS'; }// TODO: turn off - use getName for generating ref's
  11. public function getFieldListByIdZasob() { return $this->getRealFieldListByIdZasob(); }
  12. public function getVisibleFieldListByIdZasob() { return $this->getRealFieldListByIdZasob(); }
  13. public function getVirtualFieldListByIdZasob() { return array(); }
  14. public function getXsdTypes() { // @returns [ fieldName => xsdType, ... ]
  15. return array_map(function ($field) {
  16. return $field['xsdType'];
  17. }, $this->getFieldsWithXsdTypes());
  18. }
  19. public function getFieldsWithXsdTypes() {
  20. $xsdTypes = array();
  21. foreach ($this->getFields() as $idZasob => $field) {
  22. $xsdTypes[ $field['name'] ] = $field;
  23. $xsdTypes[ $field['name'] ][ 'xsdType' ] = $this->getXsdFieldType($field['name']);
  24. }
  25. return $xsdTypes;
  26. }
  27. public function getRealFieldListByIdZasob($force = false) {
  28. $cols = array();
  29. $cols[100000] = 'id';// ADMIN_USERS.ID
  30. $cols[100001] = 'login';// ADMIN_USERS.ADM_ACCOUNT
  31. $cols[100002] = 'name';// ADMIN_USERS.ADM_NAME
  32. return $cols;
  33. }
  34. public function getFields() {
  35. $fields = array();
  36. $fields[100000] = ['name'=>'id', 'perms'=>'R', 'opis'=>'', 'label'=>'', 'sort_prio'=>100];
  37. $fields[100001] = ['name'=>'login', 'perms'=>'R', 'opis'=>'', 'label'=>'', 'sort_prio'=>101];
  38. $fields[100002] = ['name'=>'name', 'perms'=>'R', 'opis'=>'', 'label'=>'', 'sort_prio'=>102];
  39. return $fields;
  40. }
  41. public function getSqlFieldName($fieldName) {
  42. switch ($fieldName) {
  43. case 'id': return 'ID';
  44. case 'login': return 'ADM_ACCOUNT';
  45. case 'name': return 'ADM_NAME';
  46. }
  47. throw new Exception("Unknown field '{$fieldName}' in AccessOwner");
  48. }
  49. public function getFieldType($fieldName) { return null; }
  50. // TODO: replace legacy functions: isAllowed, hasFieldPerm, getFieldIdByName
  51. public function canCreateField($fieldName) { return false; }
  52. public function canReadField($fieldName) { return true; }
  53. public function canReadObjectField($fieldName, $record) {return true; }
  54. public function canWriteField($fieldName) { return false; }
  55. public function canWriteObjectField($fieldName, $record) { return false; }
  56. public function getTotal($params = array()) {
  57. return count($this->getItems($params));
  58. }
  59. public function getItem($primaryKey, $params = []) {
  60. $items = $this->getItems(['primaryKey'=>$primaryKey]);
  61. return (!empty($items[$primaryKey])) ? $items[$primaryKey] : null;
  62. }
  63. public function getItems($params = array()) {
  64. $DBG = V::get('DBG_DS', 0, $_GET, 'int');
  65. if($DBG>2){echo 'C.'.get_class($this).' L.' . __LINE__ . " getItems \$params:";print_r($params);echo "\n";}
  66. $sqlWhereAndPk = "";
  67. if ($pk = V::get('@primaryKey', null, $params)) {// [@primaryKey] => TODO: int or array of int
  68. if (!is_array($pk)) $sqlPk = array($pk);
  69. else $sqlPk = $pk;
  70. $sqlWhereAndPk = "and u.ID in (" . implode(", ", $sqlPk) . ")";
  71. }
  72. $items = DB::getPDO()->fetchAllByKey("
  73. select u.ID as id, u.ADM_ACCOUNT as login, u.ADM_NAME as name
  74. from ADMIN_USERS u
  75. where u.A_STATUS = 'NORMAL'
  76. and u.ADM_TECH_WORKER != 'NO'
  77. {$sqlWhereAndPk}
  78. ", $key = 'id');
  79. if ($pk = V::get('primaryKey', 0, $params, 'int')) {// [primaryKey] => 2948
  80. if (!array_key_exists($pk, $items)) return array();
  81. $items = array($pk => $items[$pk]);
  82. }
  83. if (!empty($params['ogc:Filter'])) {
  84. $parser = new ParseOgcFilter();
  85. $parser->loadOgcFilter($params['ogc:Filter']);
  86. $queryWhereBuilder = $parser->convertToSqlQueryWhereBuilder();
  87. DBG::_('DBG_DS', '>2', "ogc:Filter \$queryWhereBuilder", $queryWhereBuilder, __CLASS__, __FUNCTION__, __LINE__);
  88. if($DBG>2){echo 'C.'.get_class($this).' L.' . __LINE__ . " getItems \$items:";print_r($items);echo "\n";}
  89. $items = array_filter($items, array($queryWhereBuilder, 'filterRawArray'));
  90. }
  91. $filterId = trim(V::get('f_id', '', $params));
  92. if (strlen($filterId)) {// allow '0'
  93. $queryWhereBuilder = new SqlQueryWhereBuilder();
  94. if (is_numeric($filterId)) {
  95. $queryWhereBuilder->addComparisonFieldToValue('id', '=', $filterId);
  96. } else if (false !== strpos($filterId, '%') && is_numeric(trim($filterId, '%'))) {
  97. $queryWhereBuilder->addComparisonFieldToValue('id', 'like', $filterId);
  98. } else if ('>=' == substr($filterId, 0, 2) && is_numeric(substr($filterId, 2))) {
  99. $queryWhereBuilder->addComparisonFieldToValue('id', 'GreaterThenOrEqualTo', substr($filterId, 2));
  100. } else if ('<=' == substr($filterId, 0, 2) && is_numeric(substr($filterId, 2))) {
  101. $queryWhereBuilder->addComparisonFieldToValue('id', 'LessThenOrEqualTo', substr($filterId, 2));
  102. } else if ('>' == substr($filterId, 0, 1) && is_numeric(substr($filterId, 1))) {
  103. $queryWhereBuilder->addComparisonFieldToValue('id', 'GreaterThen', substr($filterId, 1));
  104. } else if ('<' == substr($filterId, 0, 1) && is_numeric(substr($filterId, 1))) {
  105. $queryWhereBuilder->addComparisonFieldToValue('id', 'LessThen', substr($filterId, 1));
  106. } else if ('=' == substr($filterId, 0, 1) && is_numeric(substr($filterId, 1))) {
  107. $queryWhereBuilder->addComparisonFieldToValue('id', '=', substr($filterId, 1));
  108. } else {
  109. $filterId = null;// TODO: BUG uniimplemented comparison sign
  110. }
  111. if ($filterId) $items = array_filter($items, array($queryWhereBuilder, 'filterRawArray'));
  112. }
  113. foreach (['login', 'name'] as $fieldName) {
  114. $filterValue = trim(V::get("f_{$fieldName}", '', $params));
  115. if (strlen($filterValue)) {// allow '0'
  116. $queryWhereBuilder = new SqlQueryWhereBuilder();
  117. if (!is_scalar($filterValue)) {
  118. } else if ('=' == substr($filterValue, 0, 1)) {
  119. $queryWhereBuilder->addComparisonFieldToValue($fieldName, '=', substr($filterValue, 1));
  120. } else {
  121. if ('%' != substr($filterValue, 0, 1)) $filterValue = "%{$filterValue}";
  122. if ('%' != substr($filterValue, -1)) $filterValue = "{$filterValue}%";
  123. $queryWhereBuilder->addComparisonFieldToValue($fieldName, 'like', $filterValue);
  124. }
  125. $items = array_filter($items, array($queryWhereBuilder, 'filterRawArray'));
  126. }
  127. }
  128. $orderBy = strtolower(V::get('order_by', 'id', $params));
  129. $orderDir = strtolower(V::get('order_dir', 'desc', $params));
  130. if (!in_array($orderBy, ['id', 'login', 'name'])) throw new HttpException("Bad Request - wrong or missing order by", 400);
  131. if (!in_array($orderDir, ['desc', 'asc'])) throw new HttpException("Bad Request - wrong or missing order dir", 400);
  132. uasort($items, function ($a, $b) use ($orderBy, $orderDir) {
  133. if ('desc' == $orderDir) {
  134. return (V::geti($orderBy, '', $a) > V::geti($orderBy, '', $b)) ? -1 : 1;
  135. } else if ('asc' == $orderDir) {
  136. return (V::geti($orderBy, '', $a) > V::geti($orderBy, '', $b)) ? 1 : -1;
  137. }
  138. return 0;
  139. });
  140. if($DBG>2){echo 'C.'.get_class($this).' L.' . __LINE__ . " getItems \$items:";print_r($items);echo "\n";}
  141. return $items;
  142. }
  143. public function addItem($itemTodo) { throw new Exception("Insert not allowed"); }
  144. public function updateItem($itemPatch) { throw new Exception("Update not allowed"); }
  145. public function getGeomFieldType($fieldName) { return null; }
  146. public function getPrimaryKeyField() { return 'id'; }
  147. public function getAttributesFromZasoby() { return array(); }
  148. public function isEnumerationField($fieldName) { return false; }
  149. public function getEnumerations($fieldName) { return null; }
  150. public function getXsdFieldType($fieldName) {
  151. if ('id' == $fieldName) return 'xsd:string';
  152. if ('login' == $fieldName) return 'xsd:string';
  153. if ('name' == $fieldName) return 'xsd:string';
  154. }
  155. public function isGeomField($fldName) { return false; }
  156. }