3 * Provide an administration interface
4 * DO NOT USE: INSECURE.
8 require_once('HTMLForm.php');
9 require_once('Group.php');
12 function wfSpecialUserlevels($par=null) {
15 $form = new UserlevelsForm($wgRequest);
20 * A class to manage user levels rights.
22 class UserlevelsForm
extends HTMLForm
{
23 var $mPosted, $mRequest, $mSaveprefs;
24 /** Escaped local url name*/
28 function UserlevelsForm ( &$request ) {
29 $this->mPosted
= $request->wasPosted();
30 $this->mRequest
= $request;
31 $this->mName
= 'userlevels';
33 $titleObj = Title
::makeTitle( NS_SPECIAL
, 'Userlevels' );
34 $this->action
= $titleObj->escapeLocalURL();
38 * Manage forms to be shown according to posted datas.
39 * Depending on the submit button used : Call a form or a saving function.
42 // show the general form
44 if ( $this->mPosted
) {
45 // show some more forms
46 if($this->mRequest
->getCheck('seditgroup')) {
47 $this->editGroupForm( $this->mRequest
->getVal($this->mName
.'-group-edit') ); }
48 if($this->mRequest
->getCheck('saddgroup')) {
49 $this->editGroupForm( ); }
50 if($this->mRequest
->getCheck('ssearchuser')) {
51 $this->editUserGroupsForm( $this->mRequest
->getVal('user-editname')); }
54 if($this->mRequest
->getCheck('savegroup')) {
55 $this->saveGroup($this->mRequest
->getVal('editgroup-name'),
56 $this->mRequest
->getVal('editgroup-oldname'),
57 $this->mRequest
->getVal('editgroup-description'));
59 } elseif($this->mRequest
->getCheck('saveusergroups')) {
60 $this->saveUserGroups($this->mRequest
->getVal('user-editname'),
61 $this->mRequest
->getVal($this->mName
.'-groupsmember'),
62 $this->mRequest
->getVal($this->mName
.'-groupsavailable'));
70 * @param string $newname Group name.
71 * @param string $oldname Old (current) group name.
72 * @param string $description Group description.
73 * @todo FIXME : doesnt validate anything.
75 function saveGroup($newname, $oldname, $description) {
76 $newame = trim($newname);
79 // We create a new group
83 $g = Group
::newFromName($oldname);
87 $g->setName($newname);
88 $g->setDescription($description);
93 * Save user groups changes in the database.
94 * Datas comes from the editUserGroupsForm() form function
96 * @param string $username Username to apply changes to.
97 * @param array $removegroup id of groups to be removed.
98 * @param array $addgroup id of groups to be added.
100 function saveUserGroups($username,$removegroup,$addgroup) {
101 $u = User
::NewFromName($username);
104 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
107 $id = $u->idForName();
109 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
114 $groups = $u->getGroups();
115 // remove then add groups
116 if(isset($removegroup)) { $groups = array_diff($groups, $removegroup); }
117 if(isset($addgroup)) { $groups = array_merge($groups, $addgroup); }
118 // save groups in user object and database
119 $u->setGroups($groups);
125 * It allow a user to select or eventually add a group as well as looking up
128 function switchForm() {
132 $wgOut->addHTML( "<form name=\"ulgroup\" action=\"$this->action\" method=\"post\">" );
133 $wgOut->addHTML( $this->fieldset( 'lookup-group',
134 $this->HTMLSelectGroups('group-edit', array(0 => $this->mRequest
->getVal($this->mName
.'-group-edit')) ) .
135 ' <input type="submit" name="seditgroup" value="'.wfMsg('editgroup').'">' .
136 '<br /><input type="submit" name="saddgroup" value="'.wfMsg('addgroup').'">'
138 $wgOut->addHTML( "</form>" );
141 $wgOut->addHTML( "<form name=\"uluser\" action=\"$this->action\" method=\"post\">" );
142 $wgOut->addHTML( $this->fieldset( 'lookup-user',
143 $this->textbox( 'user-editname' ) .
144 '<input type="submit" name="ssearchuser" value="'.wfMsg('editusergroup').'">'
146 $wgOut->addHTML( "</form>" );
150 * Edit a group properties and rights.
151 * @param string $groupname Name of a group to be edited.
153 function editGroupForm($groupID = 0) {
156 if($this->mRequest
->getVal('seditgroup')) {
157 // fetch data if we edit a group
158 $g = Group
::newFromID($groupID);
159 $gName = $g->getName();
160 $gDescription = $g->getDescription();
161 $fieldname = 'editgroup';
163 // default datas when we add a group
166 $fieldname = 'addgroup';
169 $wgOut->addHTML( "<form name=\"editGroup\" action=\"$this->action\" method=\"post\">".
170 '<input type="hidden" name="editgroup-oldname" value="'.$gName.'">');
171 $wgOut->addHTML( $this->fieldset( $fieldname,
172 $this->textbox( 'editgroup-name', $gName ) .
173 $this->textareabox( 'editgroup-description', $gDescription ) .
174 '<input type="submit" name="savegroup" value="'.wfMsg('savegroup').'">'
176 $wgOut->addHTML( "</form>" );
180 * Edit user groups membership
181 * @param string $username Name of the user.
183 function editUserGroupsForm($username) {
186 $user = User
::newFromName($username);
188 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
191 $id = $user->idForName();
193 $wgOut->addHTML('<p>'.wfMsg('nosuchusershort',$username).'</p>');
198 $groups = $user->getGroups();
200 $wgOut->addHTML( "<form name=\"editGroup\" action=\"$this->action\" method=\"post\">".
201 '<input type="hidden" name="user-editname" value="'.$username.'">');
202 $wgOut->addHTML( $this->fieldset( 'editusergroup',
203 wfMsg('editing', $this->mRequest
->getVal('user-editname')).'.<br />' .
204 '<table border="0"><tr><td>'.
205 $this->HTMLSelectGroups('groupsmember', $groups,true,6).
207 $this->HTMLSelectGroups('groupsavailable', $groups,true,6,true).
208 '</td></tr></table>'.
209 '<p>'.wfMsg('userlevels-groupshelp').'</p>'.
210 '<input type="submit" name="saveusergroups" value="'.wfMsg('saveusergroups').'">'
212 $wgOut->addHTML( "</form>" );
216 /** Build a select with all existent groups
217 * @param string $selectname Name of this element. Name of form is automaticly prefixed.
218 * @param array $selected Array of element selected when posted. Multiples will only show them.
219 * @param boolean $multiple A multiple elements select.
220 * @param integer $size Number of element to be shown ignored for non multiple (default 6).
221 * @param boolean $reverse If true, multiple select will hide selected elements (default false).
223 function HTMLSelectGroups($selectname, $selected=array(), $multiple=false, $size=6, $reverse=false) {
224 $selectname = $this->mName
.'-'.$selectname;
225 $dbr =& wfGetDB( DB_SLAVE
);
226 $sql = 'SELECT group_id, group_name FROM `group`';
227 $res = $dbr->query($sql,'wfSpecialAdmin');
229 $out = wfMsg($selectname);
230 $out .= '<select name="'.$selectname;
231 if($multiple) { $out.='[]" multiple size="'.$size; }
234 while($g = $dbr->fetchObject( $res ) ) {
236 // for multiple will only show the things we want
237 if(in_array($g->group_id
, $selected) xor $reverse) {
238 $out .= '<option value="'.$g->group_id
.'">'.$g->group_name
.'</option>';
242 if(in_array($g->group_id
, $selected)) { $out .= 'selected '; }
243 $out .= 'value="'.$g->group_id
.'">'.$g->group_name
.'</option>';