SyncUsers.php 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633
  1. <?php
  2. class SyncUsers {
  3. private $_fromStorage;
  4. private $_toStorage;
  5. private $_errors = array();
  6. public function __construct($fromStorage, $toStorage) {
  7. $this->_fromStorage = $fromStorage;
  8. $this->_toStorage = $toStorage;
  9. }
  10. /**
  11. * Sync user.
  12. *
  13. * @return bool or -int if error @see getSyncUserErrorMsg($errCode);
  14. */
  15. public function syncUser($usrLogin) {
  16. $syncGroups = true;
  17. $syncDisabled = true;
  18. $usrFrom = $this->_fromStorage->getUser($usrLogin);
  19. $usrTo = $this->_toStorage->getUser($usrLogin);
  20. $usrFromDisabled = null;
  21. $usrToDisabeld = null;
  22. if (!$usrFrom) throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie danych");
  23. DBG::_('DBG_SU', true, 'usrFrom', $usrFrom, __CLASS__, __FUNCTION__, __LINE__);
  24. DBG::_('DBG_SU', true, 'usrTo', $usrTo, __CLASS__, __FUNCTION__, __LINE__);
  25. $usrFromDisabled = $this->_fromStorage->isDisabled($usrFrom);
  26. if (!$usrTo && true === $usrFromDisabled) {
  27. throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie LDAP. Jest zablokowany bazie danych, więc nie ma potrzeby tworzenia go w bazie LDAP.");
  28. }
  29. if (!$usrTo) {
  30. $this->_toStorage->createUser($usrFrom);
  31. $usrTo = $this->_toStorage->getUser($usrLogin);
  32. if (!$usrTo) throw new Exception("Nie udało się utworzyć użytkownika '{$usrLogin}' w bazie LDAP");
  33. $this->syncExistingUser($usrLogin, $usrFrom, $usrTo);
  34. }
  35. else if (true !== $usrFromDisabled) {
  36. $this->syncExistingUser($usrLogin, $usrFrom, $usrTo);
  37. }
  38. {// $syncDisabled
  39. $usrTo = $this->_toStorage->getUser($usrLogin);
  40. if (!$usrTo) throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie LDAP");
  41. $usrToDisabeld = $this->_toStorage->isDisabled($usrTo);
  42. if (null === $usrFromDisabled) throw new Exception("Nieznany status blokady dla użytkownika '{$usrLogin}' w bazie danych");
  43. if (null === $usrToDisabeld) throw new Exception("Nieznany status blokady dla użytkownika '{$usrLogin}' w bazie LDAP");
  44. if ($usrFromDisabled !== $usrToDisabeld) {
  45. if (!$this->_toStorage->setDisabled($usrLogin, $usrFromDisabled)) {
  46. throw new Exception("Nie udało się ustawić statusu blokady dla użytkownika '{$usrLogin}'");
  47. }
  48. }
  49. }
  50. {// $syncGroups
  51. $groupsFrom = $this->_fromStorage->getUserGroups($usrLogin);
  52. $groupsTo = $this->_toStorage->getUserGroups($usrLogin);
  53. $groupsTodo = $this->getSyncUserGroupsTodoList($usrLogin);
  54. DBG::_('DBG_SU', '>0', 'groupsTodo', $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  55. DBG::_('DBG_SU', '>0', 'groupsFrom', $groupsFrom, __CLASS__, __FUNCTION__, __LINE__);
  56. DBG::_('DBG_SU', '>0', 'groupsTo', $groupsTo, __CLASS__, __FUNCTION__, __LINE__);
  57. if (!empty($groupsTodo)) {
  58. foreach ($groupsTodo as $kGroupID => $vBool) {
  59. if ($vBool) {
  60. $this->_toStorage->addUserGroup($usrLogin, $groupsFrom[$kGroupID]);
  61. }
  62. else {
  63. $this->_toStorage->removeUserGroup($usrLogin, $groupsTo[$kGroupID]);
  64. }
  65. }
  66. }
  67. }
  68. {// clean up members by apple-generateduid
  69. $groupsTo = $this->_toStorage->getGroupsByUserUid($usrLogin);
  70. $groupsTodo = $this->getCleanupSyncUserGroupsByUidTodoList($usrLogin);
  71. DBG::_('DBG_SU', '>0', "groupsTodo Cleanup member uid's usrFromDisabeld(" . (($usrFromDisabled)? 'true' : 'false') . ")", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  72. if (!empty($groupsTodo)) {
  73. foreach ($groupsTodo as $kGroupID => $vBool) {
  74. if ($vBool) {
  75. //$syncTodoList[] = "Dodaj '{$usrLogin}' do grupy {$kGroupID}";
  76. }
  77. else {
  78. $this->_toStorage->removeUserUidFromGroup($usrLogin, $groupsTo[$kGroupID]);
  79. }
  80. }
  81. }
  82. }
  83. $this->_fromStorage->setSyncUserDate($usrLogin);
  84. $this->_toStorage->setSyncUserDate($usrLogin);
  85. if ($this->hasErrors()) {
  86. return false;
  87. }
  88. return true;
  89. }
  90. public function forceSyncUserAliasList($usrLogin) {
  91. $usrFrom = $this->_fromStorage->getUser($usrLogin);
  92. $usrTo = $this->_toStorage->getUser($usrLogin);
  93. if (!$usrFrom) throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie danych");
  94. if (!$usrTo) throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie LDAP");
  95. DBG::_('DBG_SU', true, 'usrFrom', $usrFrom, __CLASS__, __FUNCTION__, __LINE__);
  96. DBG::_('DBG_SU', true, 'usrTo', $usrTo, __CLASS__, __FUNCTION__, __LINE__);
  97. $this->_toStorage->forceReplaceAliasList($usrLogin, $usrFrom->aliasesList);
  98. return true;
  99. }
  100. public function syncExistingUser($usrLogin, ObjectUser $usrFrom, ObjectUser $usrTo) {
  101. if (!$usrFrom) return false;
  102. if (!$usrTo) return false;
  103. $updateData = array();
  104. if ($usrFrom->name != $usrTo->name) $updateData['name'] = $usrFrom->name;
  105. {// check aliasesList
  106. $diffFromTo = array_diff($usrFrom->aliasesList, $usrTo->aliasesList);
  107. $diffToFrom = array_diff($usrTo->aliasesList, $usrFrom->aliasesList);
  108. if (!empty($diffFromTo) || !empty($diffToFrom)) {
  109. $updateData['aliasesList'] = array();
  110. $updateData['aliasesList']['add'] = $diffFromTo;
  111. $updateData['aliasesList']['remove'] = $diffToFrom;
  112. }
  113. }
  114. if ($usrFrom->phone != $usrTo->phone) $updateData['phone'] = $usrFrom->phone;
  115. if ($usrFrom->homeEmail != $usrTo->homeEmail) $updateData['homeEmail'] = $usrFrom->homeEmail;
  116. if ($usrFrom->homePhone != $usrTo->homePhone) $updateData['homePhone'] = $usrFrom->homePhone;
  117. if ($usrFrom->employeeType != $usrTo->employeeType) $updateData['employeeType'] = $usrFrom->employeeType;
  118. if ($this->_fromStorage->isPasswordChanged($usrLogin)) $updateData['password'] = $usrFrom->password;
  119. $updated = $this->_toStorage->updateUser($usrLogin, $updateData);
  120. if (!$updated) {
  121. $errors = $this->_toStorage->getRawErrorsList();
  122. foreach ($errors as $vErr) {
  123. $this->setError($vErr->code, $vErr->msg, $vErr->dbgMsg);
  124. }
  125. throw new Exception("TODO: update user {$usrLogin} from Database to Ldap");
  126. }
  127. }
  128. public function getSyncUserTodoList($usrLogin) {
  129. $syncGroups = true;
  130. $syncDisabled = true;
  131. $syncTodoList = array();
  132. $usrFrom = $this->_fromStorage->getUser($usrLogin);
  133. $usrTo = $this->_toStorage->getUser($usrLogin);
  134. DBG::_('DBG_SU', true, 'usrFrom', ($usrFrom)? $usrFrom->exportData() : null, __CLASS__, __FUNCTION__, __LINE__);
  135. DBG::_('DBG_SU', true, 'usrTo', ($usrTo)? $usrTo->exportData() : null, __CLASS__, __FUNCTION__, __LINE__);
  136. if (!$usrFrom) {
  137. $syncTodoList[] = "Użytkownik {$usrLogin} nie istnieje w bazie danych";
  138. return $syncTodoList;
  139. }
  140. $usrFromDisabled = $this->_fromStorage->isDisabled($usrFrom);
  141. if (!$usrTo && true === $usrFromDisabled) {
  142. throw new Exception("Użytkownik '{$usrLogin}' nie istnieje w bazie LDAP. Jest zablokowany bazie danych, więc nie ma potrzeby tworzenia go w bazie LDAP.");
  143. }
  144. if (!$usrTo) {
  145. $syncDisabled = false;
  146. $syncTodoList[] = "Utwórz użytkownika '{$usrLogin}' w bazie LDAP";
  147. }
  148. else if (true !== $usrFromDisabled) {
  149. //throw new Exception("Użytkownik '{$usrLogin}' jest zablokowany bazie danych, więc nie ma potrzeby aktualizacji jego danych w bazie LDAP.");
  150. $updateData = array();
  151. if ($usrFrom->name != $usrTo->name) $updateData['name'] = $usrFrom->name;
  152. //if ($usrFrom->email != $usrTo->email) $updateData['email'] = $usrFrom->email;
  153. {// check aliasesList
  154. $diffFromTo = array_diff($usrFrom->aliasesList, $usrTo->aliasesList);
  155. $diffToFrom = array_diff($usrTo->aliasesList, $usrFrom->aliasesList);
  156. DBG::_('DBG_SU', '>2', "aliasesList: from:", $usrFrom->aliasesList, __CLASS__, __FUNCTION__, __LINE__);
  157. DBG::_('DBG_SU', '>2', "aliasesList: to:", $usrTo->aliasesList, __CLASS__, __FUNCTION__, __LINE__);
  158. DBG::_('DBG_SU', '>2', "aliasesList: diff from,to:", $diffFromTo, __CLASS__, __FUNCTION__, __LINE__);
  159. DBG::_('DBG_SU', '>2', "aliasesList: diff to,from:", $diffToFrom, __CLASS__, __FUNCTION__, __LINE__);
  160. if (!empty($diffFromTo) || !empty($diffToFrom)) {
  161. $updateData['aliasy'] = array();
  162. if (!empty($diffFromTo)) $updateData['aliasy'][] = "dodaj (" . implode(", ", $diffFromTo) . ")";
  163. if (!empty($diffToFrom)) $updateData['aliasy'][] = "usuń (" . implode(", ", $diffToFrom) . ")";
  164. $updateData['aliasy'] = implode(" / ", $updateData['aliasy']);
  165. }
  166. DBG::_('DBG_SU', '>2', "aliasesList: updateData:", $updateData['aliasesList'], __CLASS__, __FUNCTION__, __LINE__);
  167. }
  168. if ($usrFrom->phone != $usrTo->phone) $updateData['phone'] = $usrFrom->phone;
  169. if ($usrFrom->homeEmail != $usrTo->homeEmail) $updateData['homeEmail'] = $usrFrom->homeEmail;
  170. if ($usrFrom->homePhone != $usrTo->homePhone) $updateData['homePhone'] = $usrFrom->homePhone;
  171. if ($usrFrom->employeeType != $usrTo->employeeType) $updateData['employeeType'] = $usrFrom->employeeType;
  172. if ($this->_fromStorage->isPasswordChanged($usrLogin)) $updateData['password'] = '*****';
  173. foreach ($updateData as $key => $val) {
  174. $syncTodoList[] = "Aktualizuj {$key}: {$val}";
  175. }
  176. }
  177. if ($syncDisabled && $usrTo && $usrFrom) {
  178. $usrToDisabeld = $this->_toStorage->isDisabled($usrTo);
  179. if ($usrFromDisabled === null || $usrToDisabeld === null) {
  180. $syncTodoList[] = "Status blokady '{$usrLogin}' nieznany w bazie danych lub LDAP";
  181. return $syncTodoList;
  182. }
  183. if ($usrFromDisabled !== $usrToDisabeld) {
  184. $syncTodoList[] = "Ustawienie statusu blokady '{$usrLogin}' na '" . (($usrFromDisabled)? 'true' : 'false') . "'";
  185. }
  186. }
  187. {// $syncGroups
  188. $groupsTodo = $this->getSyncUserGroupsTodoList($usrLogin);
  189. DBG::_('DBG_SU', '>0', "groupsTodo usrFromDisabeld(" . (($usrFromDisabled)? 'true' : 'false') . ")", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  190. if (!empty($groupsTodo)) {
  191. foreach ($groupsTodo as $kGroupID => $vBool) {
  192. if ($vBool) {
  193. $syncTodoList[] = "Dodaj '{$usrLogin}' do grupy {$kGroupID}";
  194. }
  195. else {
  196. $syncTodoList[] = "Usuń '{$usrLogin}' z grupy {$kGroupID}";
  197. }
  198. }
  199. }
  200. }
  201. {// clean up members by apple-generateduid
  202. $groupsTodo = $this->getCleanupSyncUserGroupsByUidTodoList($usrLogin);
  203. DBG::_('DBG_SU', '>0', "groupsTodo Cleanup member uid's usrFromDisabeld(" . (($usrFromDisabled)? 'true' : 'false') . ")", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  204. if (!empty($groupsTodo)) {
  205. foreach ($groupsTodo as $kGroupID => $vBool) {
  206. if ($vBool) {
  207. //$syncTodoList[] = "Dodaj '{$usrLogin}' do grupy {$kGroupID}";
  208. }
  209. else {
  210. $syncTodoList[] = "Usuń `uid` usera '{$usrLogin}' z grupy {$kGroupID}";
  211. }
  212. }
  213. }
  214. }
  215. return $syncTodoList;
  216. }
  217. /**
  218. * @returns array $groupsTodo - groups todo list:
  219. * 'com.apple.access_mail' => true - add to this group
  220. * 'com.apple.access_mail' => false - remove from this group
  221. */
  222. public function getSyncUserGroupsTodoList($usrLogin) {
  223. $groupsTodo = array();// `guid` => true (add), false (remove)
  224. $usrFrom = $this->_fromStorage->getUser($usrLogin);
  225. $usrFromDisabled = $this->_fromStorage->isDisabled($usrFrom);
  226. $groupsFrom = $this->_fromStorage->getUserGroups($usrLogin);
  227. $groupsTo = $this->_toStorage->getUserGroups($usrLogin);
  228. foreach ($groupsTo as $kUid => $vName) {
  229. $groupsTodo[$kUid] = false;
  230. }
  231. if (true === $usrFromDisabled) {
  232. // remove all groups
  233. } else {
  234. foreach ($groupsFrom as $kUid => $vGroup) {
  235. if (isset($groupsTodo[$kUid])) {
  236. unset($groupsTodo[$kUid]);
  237. } else {
  238. $groupsTodo[$kUid] = true;
  239. }
  240. }
  241. }
  242. return $groupsTodo;
  243. }
  244. public function getCleanupSyncUserGroupsByUidTodoList($usrLogin) {
  245. $groupsTodo = array();// `guid` => true (add), false (remove)
  246. $groupsTo = $this->_toStorage->getGroupsByUserUid($usrLogin);
  247. DBG::_('DBG_SU', '>0', "CleanupAppleMemberUidTodoList user groups by apple-generateduid({$usrAppleUid})", $userGroupsLdap, __CLASS__, __FUNCTION__, __LINE__);
  248. $usrFrom = $this->_fromStorage->getUser($usrLogin);
  249. $usrFromDisabled = $this->_fromStorage->isDisabled($usrFrom);
  250. $groupsFrom = $this->_fromStorage->getUserGroups($usrLogin);
  251. foreach ($groupsTo as $kUid => $vName) {
  252. $groupsTodo[$kUid] = false;
  253. }
  254. if (true === $usrFromDisabled) {
  255. // remove all groups
  256. } else {
  257. foreach ($groupsFrom as $kUid => $vGroup) {
  258. if (isset($groupsTodo[$kUid])) {
  259. unset($groupsTodo[$kUid]);
  260. } else {
  261. $groupsTodo[$kUid] = true;
  262. }
  263. }
  264. }
  265. DBG::_('DBG_SU', '>0', "CleanupAppleMemberUidTodoList groupsTodo apple-generateduid({$usrAppleUid})", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  266. return $groupsTodo;
  267. }
  268. public function getSyncGroupTodoList($idGroup, $syncNestedGroups = false) {
  269. $syncTodoList = array();
  270. $groupFrom = $this->_fromStorage->getGroup($idGroup);
  271. $groupTo = $this->_toStorage->getGroup($idGroup);
  272. if (!$groupFrom) {
  273. $syncTodoList[] = "Grupa {$idGroup} nie istnieje w bazie danych";
  274. return $syncTodoList;
  275. }
  276. if (!$groupTo) {
  277. $syncTodoList[] = "Utwórz grupę {$idGroup} w bazie LDAP";
  278. return $syncTodoList;
  279. }
  280. $updateData = array();
  281. if (empty($groupTo->realName) && $groupFrom->realName != $groupTo->realName) {
  282. $updateData['realName'] = $groupFrom->realName;
  283. }
  284. foreach ($updateData as $key => $val) {
  285. $syncTodoList[] = "Aktualizuj {$key}: {$val}";
  286. }
  287. if ($syncNestedGroups) {
  288. if (!empty($groupTo->nestedGroups) || !empty($groupFrom->nestedGroups)) {
  289. $groupsTodo = array();
  290. if (!empty($groupTo->nestedGroups)) {
  291. foreach ($groupTo->nestedGroups as $kUid => $vGroup) {
  292. $groupsTodo[$kUid] = false;
  293. }
  294. }
  295. if (!empty($groupFrom->nestedGroups)) {
  296. foreach ($groupFrom->nestedGroups as $kUid => $vGroup) {
  297. if (isset($groupsTodo[$kUid])) {
  298. unset($groupsTodo[$kUid]);
  299. } else {
  300. $groupsTodo[$kUid] = true;
  301. }
  302. }
  303. }
  304. if (!empty($groupsTodo)) {
  305. foreach ($groupsTodo as $kIdGroup => $vBool) {
  306. if ($vBool) {
  307. $syncTodoList[] = "Dodaj grupę '{$kIdGroup}' do grupy '{$idGroup}' w bazie LDAP";
  308. }
  309. else {
  310. $syncTodoList[] = "Usuń grupę '{$kIdGroup}' z grupy '{$idGroup}' w bazie LDAP";
  311. }
  312. }
  313. }
  314. }
  315. $fromParentGroups = $groupFrom->getParentGroups();
  316. $toParentGroups = $groupTo->getParentGroups();
  317. {
  318. $groupsTodo = array();
  319. if (!empty($toParentGroups)) {
  320. foreach ($toParentGroups as $kUid => $vGroup) {
  321. $groupsTodo[$kUid] = false;
  322. }
  323. }
  324. if (!empty($fromParentGroups)) {
  325. foreach ($fromParentGroups as $kUid => $vGroup) {
  326. if (isset($groupsTodo[$kUid])) {
  327. unset($groupsTodo[$kUid]);
  328. } else {
  329. $groupsTodo[$kUid] = true;
  330. }
  331. }
  332. }
  333. if (!empty($groupsTodo)) {
  334. foreach ($groupsTodo as $kIdGroup => $vBool) {
  335. if ($vBool) {
  336. $syncTodoList[] = "Dodaj grupę nadrzędną '{$kIdGroup}' do grupy '{$idGroup}' w bazie LDAP";// == add $idGroup to $kIdGroup
  337. }
  338. else {
  339. $groupTest = $this->_fromStorage->getGroup($kIdGroup);
  340. if ($groupTest) {
  341. $syncTodoList[] = "Usuń grupę nadrzędną '{$kIdGroup}' z grupy '{$idGroup}' w bazie LDAP";// == remove $idGroup from $kIdGroup
  342. } else {
  343. //$syncTodoList[] = "Keep parent group '{$kIdGroup}' in group '{$idGroup}' in toStorage, because that group dont exists in fromStorage";
  344. }
  345. }
  346. }
  347. }
  348. }
  349. }
  350. return $syncTodoList;
  351. }
  352. /**
  353. * Sync user.
  354. *
  355. * @return bool or -int if error @see getSyncUserErrorMsg($errCode);
  356. */
  357. public function syncGroup($idGroup, $syncNestedGroups = false) {
  358. $groupFrom = $this->_fromStorage->getGroup($idGroup);
  359. $groupTo = $this->_toStorage->getGroup($idGroup);
  360. DBG::_('DBG_SU', '>0', 'groupFrom', $groupFrom, __CLASS__, __FUNCTION__, __LINE__);
  361. DBG::_('DBG_SU', '>0', 'groupTo', $groupTo, __CLASS__, __FUNCTION__, __LINE__);
  362. if (!$groupFrom) throw new Exception("Grupa [{$idGroup}] nie istnieje w bazie danych");
  363. if (!$groupTo) {
  364. $this->_toStorage->createGroup($groupFrom);
  365. $groupTo = $this->_toStorage->getGroup($idGroup);
  366. if (!$groupTo) throw new Exception("Nie udało się utworzyć grupy [{$idGroup}] w bazie LDAP");
  367. $this->syncExistingGroup($idGroup, $groupFrom, $groupTo, $syncNestedGroups);
  368. }
  369. else {// $groupFrom && $groupTo
  370. $this->syncExistingGroup($idGroup, $groupFrom, $groupTo, $syncNestedGroups);
  371. }
  372. $this->_fromStorage->setSyncGroupDate($idGroup);
  373. $this->_toStorage->setSyncGroupDate($idGroup);
  374. return true;
  375. }
  376. public function syncExistingGroup($groupID, ObjectGroup $groupFrom, ObjectGroup $groupTo, $syncNestedGroups = false) {
  377. if (!$groupFrom) throw new Exception("Nie podano grupy z bazy danych!");
  378. if (!$groupTo) throw new Exception("Nie podano grupy z bazy LDAP!");
  379. $updateData = array();
  380. if (empty($groupTo->realName) && $groupFrom->realName != $groupTo->realName) {
  381. $updateData['realName'] = $groupFrom->realName;
  382. }
  383. //if ($groupFrom->employeeType != $groupTo->employeeType) $updateData['employeeType'] = $groupFrom->employeeType;
  384. $updated = $this->_toStorage->updateGroup($groupTo, $updateData);
  385. if (!$updated) {
  386. $errors = $this->_toStorage->getRawErrorsList();
  387. foreach ($errors as $vErr) {
  388. $this->setError($vErr->code, $vErr->msg, $vErr->dbgMsg);
  389. }
  390. throw new Exception("TODO: update group [{$groupID}] from fromStorage to toStorage");
  391. }
  392. if ($syncNestedGroups) {
  393. $synced = $this->syncNestedGroups($groupID, $groupFrom, $groupTo);
  394. if (!$synced) {
  395. $this->setError(1, "Error: sync nested groups for group '{$groupID}' from fromStorage to toStorage", '(' . __CLASS__ . '::' . __FUNCTION__ . ':' . __LINE__ . ')');
  396. return false;
  397. }
  398. $synced = $this->syncParentGroups($groupID, $groupFrom, $groupTo);
  399. if (!$synced) {
  400. $this->setError(1, "Error: sync parent groups for group '{$groupID}' from fromStorage to toStorage", '(' . __CLASS__ . '::' . __FUNCTION__ . ':' . __LINE__ . ')');
  401. return false;
  402. }
  403. }
  404. return true;
  405. }
  406. public function syncNestedGroups($groupID, $groupFrom = null, $groupTo = null) {
  407. if (!$groupFrom) $groupFrom = $this->_fromStorage->getGroup($groupID);
  408. if (!$groupTo) $groupTo = $this->_toStorage->getGroup($groupID);
  409. DBG::_('DBG_SU', '>0', "groupFrom (hasNestedGroups:" . (!empty($groupFrom->nestedGroups)) . ")", $groupFrom, __CLASS__, __FUNCTION__, __LINE__);
  410. DBG::_('DBG_SU', '>0', "groupTo (hasNestedGroups:" . (!empty($groupTo->nestedGroups)) . ")", $groupTo, __CLASS__, __FUNCTION__, __LINE__);
  411. if (empty($groupFrom->nestedGroups) && empty($groupTo->nestedGroups)) {
  412. // nothing to do
  413. return true;
  414. }
  415. else {
  416. /*
  417. [nestedGroups] => Array(
  418. [2981] => stdClass Object(
  419. [primaryKey] => 2981
  420. [type] => STANOWISKO
  421. [realName] => [2981] Kierownik ds. Rozwoju Biznesu
  422. [zasobID] => 2981
  423. [zasobDESC] => Kierownik ds. Rozwoju Biznesu
  424. */
  425. /**
  426. * $groupsTodo - groups todo list:
  427. * 'com.apple.access_mail' => true - add to this group
  428. * 'com.apple.access_mail' => false - remove from this group
  429. */
  430. $groupsTodo = array();
  431. if (!empty($groupTo->nestedGroups)) {
  432. foreach ($groupTo->nestedGroups as $kUid => $vGroup) {
  433. $groupsTodo[$kUid] = false;
  434. }
  435. }
  436. if (!empty($groupFrom->nestedGroups)) {
  437. foreach ($groupFrom->nestedGroups as $kUid => $vGroup) {
  438. if (isset($groupsTodo[$kUid])) {
  439. unset($groupsTodo[$kUid]);
  440. } else {
  441. $groupsTodo[$kUid] = true;
  442. }
  443. }
  444. }
  445. DBG::_('DBG_SU', '>0', "groupsTodo", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  446. if (!empty($groupsTodo)) {
  447. foreach ($groupsTodo as $kGroupID => $vBool) {
  448. if ($vBool) {
  449. $this->_toStorage->addNestedGroup($groupID, $kGroupID);
  450. }
  451. else {
  452. $this->_toStorage->removeNestedGroup($groupID, $kGroupID);
  453. }
  454. }
  455. }
  456. }
  457. if ($this->hasErrors()) {
  458. return false;
  459. }
  460. return true;
  461. }
  462. public function syncParentGroups($groupID, $groupFrom = null, $groupTo = null) {
  463. if (!$groupFrom) $groupFrom = $this->_fromStorage->getGroup($groupID);
  464. if (!$groupTo) $groupTo = $this->_toStorage->getGroup($groupID);
  465. DBG::_('DBG_SU', '>0', "groupFrom (hasNestedGroups:" . (!empty($groupFrom->nestedGroups)) . ")", $groupFrom, __CLASS__, __FUNCTION__, __LINE__);
  466. DBG::_('DBG_SU', '>0', "groupTo (hasNestedGroups:" . (!empty($groupTo->nestedGroups)) . ")", $groupTo, __CLASS__, __FUNCTION__, __LINE__);
  467. $fromParentGroups = $groupFrom->getParentGroups();
  468. $toParentGroups = $groupTo->getParentGroups();
  469. if (empty($fromParentGroups) && empty($toParentGroups)) {
  470. return true;
  471. }
  472. else {
  473. /*
  474. [nestedGroups] => Array(
  475. [2981] => stdClass Object(
  476. [primaryKey] => 2981
  477. [type] => STANOWISKO
  478. [realName] => [2981] Kierownik ds. Rozwoju Biznesu
  479. [zasobID] => 2981
  480. [zasobDESC] => Kierownik ds. Rozwoju Biznesu
  481. */
  482. /**
  483. * $groupsTodo - groups todo list:
  484. * 'com.apple.access_mail' => true - add to this group
  485. * 'com.apple.access_mail' => false - remove from this group
  486. */
  487. $groupsTodo = array();
  488. if (!empty($toParentGroups)) {
  489. foreach ($toParentGroups as $kUid => $vGroup) {
  490. $groupsTodo[$kUid] = false;
  491. }
  492. }
  493. if (!empty($fromParentGroups)) {
  494. foreach ($fromParentGroups as $kUid => $vGroup) {
  495. if (isset($groupsTodo[$kUid])) {
  496. unset($groupsTodo[$kUid]);
  497. } else {
  498. $groupsTodo[$kUid] = true;
  499. }
  500. }
  501. }
  502. DBG::_('DBG_SU', '>0', "groupsTodo", $groupsTodo, __CLASS__, __FUNCTION__, __LINE__);
  503. if (!empty($groupsTodo)) {
  504. foreach ($groupsTodo as $kGroupID => $vBool) {
  505. if ($vBool) {
  506. //$syncTodoList[] = "Add parent group '{$kGroupID}' to group '{$groupID}' in toStorage";// == add $groupID to $kGroupID
  507. $this->_toStorage->addNestedGroup($kGroupID, $groupID);
  508. // TODO: add try catch to prevent resend exception
  509. if (0) {
  510. $this->setError(1, "Error: group '{$kGroupID}' add to group '{$groupID}' in toStorage", '(' . __CLASS__ . '::' . __FUNCTION__ . ':' . __LINE__ . ')');
  511. }
  512. }
  513. else {
  514. $groupTest = $this->_fromStorage->getGroup($kGroupID);
  515. if ($groupTest) {
  516. //$syncTodoList[] = "Remove parent group '{$kGroupID}' from group '{$groupID}' in toStorage";// == remove $groupID from $kGroupID
  517. $this->_toStorage->removeNestedGroup($kGroupID, $groupID);
  518. // TODO: add try catch to prevent resend exception
  519. if (0) {
  520. $this->setError(1, "Error: group '{$kGroupID}' remove from group '{$groupID}' in toStorage", '(' . __CLASS__ . '::' . __FUNCTION__ . ':' . __LINE__ . ')');
  521. }
  522. } else {
  523. //$syncTodoList[] = "Keep parent group '{$kGroupID}' in group '{$groupID}' in toStorage, because that group dont exists in fromStorage";
  524. }
  525. }
  526. }
  527. }
  528. }
  529. if ($this->hasErrors()) {
  530. return false;
  531. }
  532. return true;
  533. }
  534. private function setError($code, $msg, $dbgMsg) {
  535. $this->_errors[] = (object)array('code'=>$code, 'msg'=>$msg, 'dbgMsg'=>$dbgMsg);
  536. }
  537. public function hasErrors() {
  538. return !empty($this->_errors);
  539. }
  540. public function getErrorsMsgList() {
  541. $msgList = array();
  542. foreach ($this->_errors as $vErr) {
  543. $msgList[] = "Error {$vErr->code}: {$vErr->msg}";
  544. }
  545. return $msgList;
  546. }
  547. public function getErrorsMsgListWithDbg() {
  548. $msgList = array();
  549. foreach ($this->_errors as $vErr) {
  550. $msgList[] = "Error {$vErr->code}: {$vErr->msg} (DBG:{$vErr->dbgMsg})";
  551. }
  552. return $msgList;
  553. }
  554. }