AclQueryFeatures.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331
  1. <?php
  2. Lib::loadClass('ACL');
  3. Lib::loadClass('SqlQueryWhereBuilder');
  4. // usage: (Acl class)::buildQuery($params): return new AclQueryFeatures($this, $params);
  5. // (view): $queryFeatures = $acl->buildQuery($params);
  6. // (view): $total = $queryFeatures->getTotal();
  7. // (view): $items = $queryFeatures->getItems();
  8. // example: @see TableAcl, TableAjax
  9. // Special Filter Access - btns visible only if user don't have super access perms. If has, then will always see all rows.
  10. class AclQueryFeatures {
  11. public $_params;
  12. public $_acl;
  13. public $_query;
  14. public $_total;
  15. public $_legacyMode;
  16. public function __construct($acl, $params, $legacyMode = false) {
  17. $this->_acl = $acl;
  18. $this->_params = $params;
  19. $this->_query = null;
  20. $this->_total = null;
  21. $this->_legacyMode = $legacyMode;
  22. // TODO: _legacyMode = ($from instanceof simple schema or another programmed objects)
  23. }
  24. public function parseQueryValue($fieldName, $searchQuery, $fieldType = 'xsd:string') {
  25. if ('!NULL' === $searchQuery) return ['is not null', null];
  26. if ('IS NOT NULL' === $searchQuery) return ['is not null', null];
  27. if ('NULL' === $searchQuery) return ['is null', null];
  28. if ('IS NULL' === $searchQuery) return ['is null', null];
  29. switch ($fieldType) {
  30. case 'gml:PolygonPropertyType':
  31. case 'gml:PointPropertyType':
  32. case 'gml:LineStringPropertyType':
  33. case 'gml:GeometryPropertyType': return $this->_parseGeomQuery($searchQuery);
  34. // $sqlFilter = $this->_sqlValueForGeomField($fldName, $v, 't');
  35. // if ('_CSV_NUM' == substr($fldName, -8)) { // if ($this->isCsvNumericField($fldName)) { // TODO: xsd type - p5:csv_num
  36. // $sqlFilter = $this->_sqlValueForCsvNumericField($fldName, $v, 't');
  37. // if ($sqlFilter) $sql_where_and[] = $sqlFilter;
  38. // continue;
  39. // }
  40. }
  41. switch (substr($searchQuery, 0, 1)) {
  42. case '=': return ['=', substr($searchQuery, 1)];
  43. case '>':
  44. switch (substr($searchQuery, 1, 1)) {
  45. case '=': return ['>=', substr($searchQuery, 2)];
  46. default: return ['>', substr($searchQuery, 1)];
  47. }
  48. case '<':
  49. switch (substr($searchQuery, 1, 1)) {
  50. case '=': return ['<=', substr($searchQuery, 2)];
  51. case '>': return ['!=', substr($searchQuery, 2)];
  52. default: return ['<', substr($searchQuery, 1)];
  53. }
  54. case '!':
  55. switch (substr($searchQuery, 1, 1)) {
  56. case '=': return ['!=', substr($searchQuery, 2)];
  57. default: return ['not like', substr($searchQuery, 1)];
  58. }
  59. default: {
  60. switch ($fieldType) {
  61. case 'xsd:number':
  62. case 'xsd:integer': {
  63. if (false !== strpos($searchQuery, '%')) return ['like', $searchQuery];
  64. return ['=', $searchQuery];
  65. }
  66. default: {
  67. if (false !== strpos($searchQuery, '%')) return ['like', $searchQuery];
  68. $queryWhereBuilder = new SqlQueryWhereBuilder();
  69. return ['and'
  70. , array_map(function ($word) use ($fieldName) {
  71. return [$fieldName, 'like', "%{$word}%"];
  72. }, $queryWhereBuilder->splitQueryToWords($searchQuery)
  73. )
  74. ];
  75. }
  76. }
  77. return ['=', $searchQuery];
  78. }
  79. }
  80. }
  81. public function _parseGeomQuery($searchQuery) { // _sqlValueForGeomField($fldName, $fltrValue, $tblPrefix = 't')
  82. // example: BBOX:54.40993961633866,18.583889010112824,54.337945760687454,18.397121431987586
  83. DBG::log($searchQuery, 'string', "\$searchQuery");
  84. if ('BBOX:' == substr($searchQuery, 0, 5)) {
  85. $valParts = explode(',', substr($searchQuery, 5));
  86. if (4 !== count($valParts)) throw new Exception("Wrong BBOX query");
  87. $valParts = array_filter($valParts, 'is_numeric');
  88. if (4 !== count($valParts)) throw new Exception("Wrong BBOX query - expected 4 numeric values");
  89. $bounds = "POLYGON((
  90. {$valParts[3]} {$valParts[2]},
  91. {$valParts[3]} {$valParts[0]},
  92. {$valParts[1]} {$valParts[0]},
  93. {$valParts[1]} {$valParts[2]},
  94. {$valParts[3]} {$valParts[2]}
  95. ))";
  96. // for mysql 5.6 use ST_Contains() @see http://dev.mysql.com/doc/refman/5.6/en/spatial-relation-functions.html
  97. return [ 'Intersects', $bounds ];
  98. }
  99. else if ('GeometryType=' == substr($fltrValue, 0, 13)) {
  100. return [ 'GeometryType', substr($fltrValue, 13) ];
  101. }
  102. throw new Exception("Not implemented geometry query string"); // TODO:? return null;
  103. }
  104. public function _sqlValueForCsvNumericField($fldName, $fltrValue, $tblPrefix = 't') {
  105. $sqlFilter = false;
  106. if (is_numeric($fltrValue)) {
  107. $sqlFilter = "FIND_IN_SET('{$fltrValue}', `{$fldName}`)>0";
  108. } else if (false !== strpos($fltrValue, ' ')) {
  109. $sqlGlue = " or ";
  110. $fltrValues = $fltrValue;
  111. if ('&' == substr($fltrValues, 0, 1)) {
  112. $fltrValues = substr($fltrValues, 1);
  113. $sqlGlue = " and ";
  114. }
  115. $fltrValues = explode(' ', $fltrValues);
  116. $sqlNumericValues = array();
  117. foreach ($fltrValues as $fltrVal) {
  118. if (is_numeric($fltrVal)) {
  119. $sqlNumericValues[] = "FIND_IN_SET('{$fltrVal}', `{$fldName}`)>0";
  120. }
  121. }
  122. if (!empty($sqlNumericValues)) {
  123. $sqlFilter = "(" . implode($sqlGlue, $sqlNumericValues) . ")";
  124. }
  125. }
  126. return $sqlFilter;
  127. }
  128. public function parseSpecialFilterMsgs($type) {
  129. $rootTableName = $this->_acl->getRootTableName();
  130. DBG::log($rootTableName, 'string', "parse SpecialFilter Msgs({$type}), \$rootTableName");
  131. $sqlHasFltrMsgs = "
  132. select 1
  133. from `CRM_UI_MSGS` m
  134. where m.`uiTargetName`=CONCAT('{$rootTableName}.', t.`ID`)
  135. and m.`uiTargetType`='default_db_table_record'
  136. and m.`A_STATUS` not in('DELETED')
  137. limit 1
  138. ";
  139. switch ($type) {
  140. case 'HAS_MSGS': return " ({$sqlHasFltrMsgs})=1 ";
  141. case 'NO_MSGS': return " ({$sqlHasFltrMsgs}) is null ";
  142. case 'NEW_MSGS': {
  143. $sqlNewFltrMsgs = "
  144. select 1
  145. from `CRM_UI_MSGS` m
  146. where m.`uiTargetName`=CONCAT('{$rootTableName}.', t.`ID`)
  147. and m.`uiTargetType`='default_db_table_record'
  148. and m.`A_STATUS` in('WAITING')
  149. limit 1
  150. ";
  151. return " ({$sqlNewFltrMsgs})=1 ";
  152. }
  153. }
  154. return null;
  155. }
  156. public function parseSpecialFilterProblemy($type) {
  157. DBG::log($type, 'string', "parse SpecialFilter Problemy");
  158. switch ($type) {
  159. case 'PROBLEM': return ['A_PROBLEM', '!=', ''];
  160. case 'WARNING': return ['A_PROBLEM', '=', 'WARNING'];
  161. case 'NORMAL': return ['A_PROBLEM', '=', 'NORMAL'];
  162. }
  163. return null;
  164. }
  165. public function parseSpecialFilterStatus($type) {
  166. DBG::log($type, 'string', "parse SpecialFilter Status");
  167. switch ($type) {
  168. case 'WAITING': return ['A_STATUS', '=', 'WAITING'];
  169. case 'AKTYWNI': return ['A_STATUS', 'or', [ // `A_STATUS` in('NORMAL', 'WARNING') ";
  170. ['A_STATUS', '=', 'NORMAL'],
  171. ['A_STATUS', '=', 'WARNING'],
  172. ] ];
  173. }
  174. return null;
  175. }
  176. public function parseSpecialFilterSpotkania($type) {
  177. DBG::log($type, 'string', "parse SpecialFilter Spotkania");
  178. switch ($type) {
  179. case 'OLD': return ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_LESS_THAN_NOW'];
  180. // COALESCE(UNIX_TIMESTAMP(t.`L_APPOITMENT_DATE`), 0) < UNIX_TIMESTAMP()
  181. // and t.`L_APPOITMENT_DATE` != ''
  182. // and t.`L_APPOITMENT_DATE` != '0000-00-00 00:00:00'
  183. case 'NOW': return ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_NOW_3600'];
  184. // COALESCE(UNIX_TIMESTAMP(t.`L_APPOITMENT_DATE`), 0) < UNIX_TIMESTAMP()+3600
  185. // and COALESCE(UNIX_TIMESTAMP(t.`L_APPOITMENT_DATE`), 0) > UNIX_TIMESTAMP()-3600
  186. case 'TODAY': return ['L_APPOITMENT_DATE', 'and', [
  187. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_GREATER_THAN', mktime(0,0,0, date("m"), date("d"), date("Y"))],
  188. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_LESS_THAN', mktime(0,0,0, date("m"), date("d") + 1, date("Y"))],
  189. ] ];
  190. // $start = mktime(0,0,0, date("m"), date("d"), date("Y"));
  191. // $end = mktime(0,0,0, date("m"), date("d") + 1, date("Y"));
  192. // $sqlFltr = "
  193. // COALESCE(UNIX_TIMESTAMP(t.`L_APPOITMENT_DATE`), 0) > '{$start}'
  194. // and COALESCE(UNIX_TIMESTAMP(t.`L_APPOITMENT_DATE`), 0) < '{$end}'
  195. // ";
  196. case 'TOMORROW': return ['L_APPOITMENT_DATE', 'and', [
  197. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_GREATER_THAN', mktime(0,0,0, date("m"), date("d") + 1, date("Y"))],
  198. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_LESS_THAN', mktime(0,0,0, date("m"), date("d") + 2, date("Y"))],
  199. ] ];
  200. case 'YESTERDAY': return ['L_APPOITMENT_DATE', 'and', [
  201. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_GREATER_THAN', mktime(0,0,0, date("m"), date("d") - 2, date("Y"))],
  202. ['L_APPOITMENT_DATE', 'UNIX_TIMESTAMP_LESS_THAN', mktime(0,0,0, date("m"), date("d") - 1, date("Y"))],
  203. ] ];
  204. case 'BRAK': return ['L_APPOITMENT_DATE', 'or', [
  205. ['L_APPOITMENT_DATE', '=', ''],
  206. ['L_APPOITMENT_DATE', '=', '0000-00-00 00:00:00'],
  207. ] ];
  208. }
  209. return null;
  210. }
  211. public function parseSpecialFilterAccess() {
  212. $userLogin = User::getLogin();
  213. $usrAclGroups = User::getLdapGroupsNames();
  214. DBG::log(['login'=>$userLogin, 'groups'=>$usrAclGroups, 'acl'=>$this->_acl], 'array', "parse SpecialFilter Access");
  215. $orWhere = [];
  216. if ($this->_acl->hasField('A_ADM_COMPANY')) {
  217. $orWhere[] = ['A_ADM_COMPANY', '=', ''];// TODO: allow empty for everyone?
  218. foreach ($usrAclGroups as $group) $orWhere[] = ['A_ADM_COMPANY', '=', $group];
  219. }
  220. if ($this->_acl->hasField('A_CLASSIFIED')) {
  221. $orWhere[] = ['A_CLASSIFIED', '=', ''];// TODO: allow empty for everyone?
  222. foreach ($usrAclGroups as $group) $orWhere[] = ['A_CLASSIFIED', '=', $group];
  223. }
  224. if ($this->_acl->hasField('L_APPOITMENT_USER')) {
  225. $orWhere[] = ['L_APPOITMENT_USER', '=', $userLogin];
  226. }
  227. return (!empty($orWhere)) ? [null, 'or', $orWhere] : null;
  228. }
  229. public function getQuery() {
  230. if ($this->_query) return $this->_query;
  231. // $ds = $this->_acl->getDataSource(); // TODO: only for TableAcl // TODO: move _parseSqlWhere to this class
  232. $filtrIsInstance = [];
  233. $filtrIsNotInstance = [];
  234. $this->_query = ACL::query($this->_acl)
  235. ->isInstance($filtrIsInstance)
  236. ->isNotInstance($filtrIsNotInstance);
  237. // ->join($instanceTable, 'i', [ 'rawJoin' => "i.pk = t.{$sqlPrimaryKey} and i.idInstance = {$idInstance}" ])
  238. // $this->_query->where($ds->_parseSqlWhere($params))
  239. DBG::log($this->_params, 'array', "\$this->_params");
  240. foreach ($this->_params as $k => $v) {
  241. if ('f_' === substr($k, 0, 2) && strlen($k) > 3) {
  242. $fieldName = substr($k, 2);
  243. $fieldType = $this->_acl->getXsdFieldType($fieldName);
  244. list($comparisonSign, $value) = $this->parseQueryValue($fieldName, $v, $fieldType);
  245. DBG::log([ $fieldName, $comparisonSign, $value, $fieldType ], 'array', "parseQueryValue");
  246. $this->_query->where([$fieldName, $comparisonSign, $value]);
  247. } else if ('sf_' === substr($k, 0, 3) && strlen($k) > 4) {
  248. switch (substr($k, 3)) {
  249. case 'Msgs': $this->_query->where($this->parseSpecialFilterMsgs($v)); break;
  250. case 'Problemy': $this->_query->where($this->parseSpecialFilterProblemy($v)); break;
  251. case 'Status': $this->_query->where($this->parseSpecialFilterStatus($v)); break;
  252. case 'Spotkania': $this->_query->where($this->parseSpecialFilterSpotkania($v)); break;
  253. case 'Access': break; // SKIP - used below
  254. default: throw new Exception("Not Implemented special filter '".substr($k, 3)."'");
  255. }
  256. } else if ('ogc:Filter' == $k) {
  257. throw new Exception("Not Implemented ogc:Filter");
  258. } else if ('primaryKey' == $k) {
  259. $fieldName = $this->_acl->getPrimaryKeyField();
  260. $fieldType = $this->_acl->getXsdFieldType($fieldName);
  261. list($comparisonSign, $value) = $this->parseQueryValue($fieldName, $v, $fieldType);
  262. DBG::log([ $fieldName, $comparisonSign, $value, $fieldType ], 'array', "parseQueryValue");
  263. $this->_query->where([$fieldName, $comparisonSign, $value]);
  264. }
  265. }
  266. // sf_Access: if 'SHOW' then show all rows, but data with ***
  267. if ('SHOW' !== V::get('sf_Access', '', $this->_params)) $this->_query->where($this->parseSpecialFilterAccess());
  268. return $this->_query;
  269. }
  270. public function getTotal() {
  271. if ($this->_legacyMode) return $this->_acl->getTotal($this->_params);
  272. if (null !== $this->_total) return $this->_total;
  273. $this->_total = $this->getQuery()
  274. ->select([ 'rawSelect' => "count(1) as cnt" ])
  275. ->fetchValue();
  276. return $this->_total;
  277. }
  278. public function hasParam($key) { return !empty($this->_params[$key]); }
  279. public function getParam($key) { return V::get($key, '', $this->_params); }
  280. public function getItems() {
  281. if ($this->_legacyMode) return $this->_acl->getItems($this->_params);
  282. // 'limit' => 10,
  283. // 'limitstart' => 0,
  284. // 'order_by' => 'ID',
  285. // 'order_dir' => 'desc',
  286. // TODO: sortBy from wfs query
  287. $sortBy = $this->hasParam('order_by')
  288. ? ( $this->hasParam('order_dir')
  289. ? $this->getParam('order_by') . " " . $this->getParam('order_dir')
  290. : $this->getParam('order_by')
  291. )
  292. : '';
  293. $limit = V::get('limit', 10, $this->_params, 'int');
  294. $offset = V::get('limitstart', 0, $this->_params, 'int');
  295. $ds = $this->_acl->getDataSource(); // TODO: only for TableAcl // TODO: move _parseSqlWhere to this class
  296. DBG::log(['params' => $this->_params, 'sortBy' => $sortBy, 'limit' => $limit, 'offset' => $offset], 'array', '$this->_params');
  297. return $this->getQuery()
  298. ->select([
  299. 'rawSelect' => $ds->_getSqlCols()
  300. ]) // TODO: fields
  301. ->select(!empty($this->_params['@instances']) ? '@instances' : null)
  302. ->limit($limit)
  303. ->offset($offset)
  304. ->orderBy($sortBy)
  305. ->fetchAll();
  306. }
  307. public function getItem($primaryKey) { throw new HttpException("Acl function " . __FUNCTION__ . " Not implemented", 501); }
  308. }