]> git.sur5r.net Git - contagged/blob - index.php
7fcf106a9d1dc464785e6d972cfd26ae3e8d0f0c
[contagged] / index.php
1 <?php
2
3   require_once('inc/init.php');
4   ldap_login();
5
6   // select entry template
7   if(!empty($_REQUEST['export']) && $_REQUEST['export'] == 'csv'){
8     $entrytpl = 'list_csv_entry.tpl';
9   }elseif(!empty($_REQUEST['export']) && $_REQUEST['export'] == 'map'){
10     $entrytpl = 'list_map_entry.tpl';
11   }else{
12     $entrytpl = 'list_entry.tpl';
13   }
14
15   // check which fields are needed
16   $fields = get_fields_from_template($entrytpl);
17
18
19   //prepare filter
20   $ldapfilter = _makeldapfilter();
21
22   // fetch results
23   $result = ldap_queryabooks($ldapfilter,$fields);
24
25   $list = '';
26   if(count($result)==1 && $_REQUEST['search']){
27     //only one result on a search -> display page
28     header("Location: entry.php?dn=".rawurlencode($result[0]['dn']));
29     exit;
30   }elseif(count($result)){
31     $keys = array_keys($result);
32     uksort($keys,"_namesort");
33     foreach($keys as $key){
34       tpl_entry($result[$key]);
35       $list .= $smarty->fetch($entrytpl);
36     }
37   }
38
39   //prepare templates
40   tpl_std();
41   if (empty($_REQUEST['filter'])) $_REQUEST['filter']='';
42   if (empty($_REQUEST['marker'])) $_REQUEST['marker']='';
43   if (empty($_REQUEST['search'])) $_REQUEST['search']='';
44   $smarty->assign('list',$list);
45   $smarty->assign('filter',$_REQUEST['filter']);
46   $smarty->assign('marker',$_REQUEST['marker']);
47   $smarty->assign('search',$_REQUEST['search']);
48   $smarty->assign('org',$_REQUEST['org']);
49   //display templates
50   if(!empty($_REQUEST['export'])){
51     if ($conf['userlogreq'] && $user == ''){
52       header("HTTP/1.1 401 Access Denied");
53       echo '<h1>Access Denied</h1>';
54       exit();
55     }
56
57     if($_REQUEST['export'] == 'csv'){
58       header("Content-Type: text/csv");
59       header('Content-Disposition: Attachement; filename="contagged_export.csv"');
60       $smarty->display('list_csv.tpl');
61       exit;
62     }elseif($_REQUEST['export'] == 'map'){
63       header('Content-Type: text/html; charset=utf-8');
64       $smarty->display('list_map.tpl');
65       exit;
66     }
67   }else{
68     //save location in session
69     $_SESSION['ldapab']['lastlocation']=$_SERVER["REQUEST_URI"];
70
71     header('Content-Type: text/html; charset=utf-8');
72     $smarty->display('list.tpl');
73   }
74
75   //------- functions -----------//
76
77   /**
78    * callback function to sort entries by name
79    * uses global $result
80    */
81   function _namesort($a,$b){
82     global $result;
83     global $FIELDS;
84     if (empty($result[$a][$FIELDS['givenname']])) { $result[$a][$FIELDS['givenname']]=''; }
85     if (empty($result[$b][$FIELDS['givenname']])) { $result[$b][$FIELDS['givenname']]=''; }
86     $x = $result[$a][$FIELDS['name']][0].$result[$a][$FIELDS['givenname']][0];
87     $y = $result[$b][$FIELDS['name']][0].$result[$b][$FIELDS['givenname']][0];
88     return(strcasecmp($x,$y));
89   }
90
91
92   /**
93    * Creates an LDAP filter from given request variables search or filter
94    */
95   function _makeldapfilter(){
96     global $FIELDS;
97
98     //handle given filter
99
100     if (empty($_REQUEST['filter'])) { $_REQUEST['filter']=''; }
101     if (empty($_REQUEST['search'])) { $_REQUEST['search']=''; }
102     if (empty($_REQUEST['org'])) { $_REQUEST['org']=''; }
103     if (empty($_REQUEST['marker'])) { $_REQUEST['marker']=''; }
104     if(is_numeric($_REQUEST['search'])) $number = $_REQUEST['search'];
105     $filter = ldap_filterescape($_REQUEST['filter']);
106     $search = ldap_filterescape($_REQUEST['search']);
107     $org    = ldap_filterescape($_REQUEST['org']);
108     $marker = ldap_filterescape($_REQUEST['marker']);
109     $_SESSION['ldapab']['filter'] = $_REQUEST['filter'];
110     if(empty($filter)) $filter='a';
111
112     if(!empty($marker)){
113       // Search by tag
114       $ldapfilter = '(&(objectClass=contactPerson)';
115       $marker = explode(',',$marker);
116       foreach($marker as $m){
117         $m = trim($m);
118         $ldapfilter .= '('.$FIELDS['_marker'].'='.$m.')';
119       }
120       $ldapfilter .= ')';
121     }elseif($number){
122       // Search by telephone number
123       $filter = '';
124       // add wildcards between digits to compensate for any formatting
125       $length = strlen($number);
126       for($i=0; $i <$length; $i++){
127         $filter .= '*'.$number{$i};
128       }
129       $filter .= '*';
130       $ldapfilter = '(&'.
131                         '(objectClass=inetOrgPerson)'.
132                         '(|'.
133                             '(|'.
134                                 '('.$FIELDS['phone'].'='.$filter.')'.
135                                 '('.$FIELDS['homephone'].'='.$filter.')'.
136                             ')'.
137                             '('.$FIELDS['mobile'].'='.$filter.')'.
138                         ')'.
139                     ')';
140     }elseif(!empty($search)){
141       // Search name and organization
142       $search = trim($search);
143       $words=preg_split('/\s+/',$search);
144       $filter='';
145       foreach($words as $word){
146         $filter .= '(|(|('.$FIELDS['name'].'=*'.$word.'*)('.
147                    $FIELDS['givenname'].'=*'.$word.'*))('.
148                    $FIELDS['organization'].'=*'.$word.'*))';
149       }
150       $ldapfilter = "(&(objectClass=inetOrgPerson)$filter)";
151     }elseif(!empty($org)){
152       // List organization members
153       $ldapfilter = '(&(objectClass=inetOrgPerson)('.$FIELDS['organization']."=$org))";
154     }elseif($filter=='other'){
155       // Alphabetic listing of last names
156       $other='';
157       for ($i=ord('a');$i<=ord('z');$i++){
158         $other .= '(!('.$FIELDS['name'].'='.chr($i).'*))';
159       }
160       $ldapfilter = "(&(objectClass=inetOrgPerson)$other)";
161     }elseif($filter=='\2a'){ //escaped asterisk
162       // List all
163       $ldapfilter = "(objectClass=inetOrgPerson)";
164     }else{
165       // Search by last name start
166       $ldapfilter = '(&(objectClass=inetOrgPerson)('.$FIELDS['name']."=$filter*))";
167     }
168     return $ldapfilter;
169   }
170 ?>