Merge remote-tracking branch 'origin/master' into 0.10.0

This commit is contained in:
Michael Kaufmann
2018-06-21 08:12:00 +02:00
6 changed files with 352 additions and 316 deletions

View File

@@ -415,7 +415,7 @@ if ($page == 'domains' || $page == 'overview') {
Domains::getLocal($userinfo, $_POST)->update(); Domains::getLocal($userinfo, $_POST)->update();
} catch (Exception $e) { } catch (Exception $e) {
dynamic_error($e->getMessage()); dynamic_error($e->getMessage());
} }
redirectTo($filename, array( redirectTo($filename, array(
'page' => $page, 'page' => $page,
's' => $s 's' => $s

View File

@@ -47,7 +47,7 @@ if ($page == 'overview') {
WHERE `d`.`customerid`= :customerid WHERE `d`.`customerid`= :customerid
AND `d`.`email_only`='0' AND `d`.`email_only`='0'
AND `d`.`id` <> :standardsubdomain " . $paging->getSqlWhere(true) . " " . $paging->getSqlOrderBy() . " " . $paging->getSqlLimit() AND `d`.`id` <> :standardsubdomain " . $paging->getSqlWhere(true) . " " . $paging->getSqlOrderBy() . " " . $paging->getSqlLimit()
); );
Database::pexecute($domains_stmt, array("customerid" => $userinfo['customerid'], "standardsubdomain" => $userinfo['standardsubdomain'])); Database::pexecute($domains_stmt, array("customerid" => $userinfo['customerid'], "standardsubdomain" => $userinfo['standardsubdomain']));
$paging->setEntries(Database::num_rows()); $paging->setEntries(Database::num_rows());
$sortcode = $paging->getHtmlSortCode($lng); $sortcode = $paging->getHtmlSortCode($lng);
@@ -58,16 +58,16 @@ if ($page == 'overview') {
$parentdomains_count = 0; $parentdomains_count = 0;
$domains_count = 0; $domains_count = 0;
$domain_array = array(); $domain_array = array();
while ($row = $domains_stmt->fetch(PDO::FETCH_ASSOC)) { while ($row = $domains_stmt->fetch(PDO::FETCH_ASSOC)) {
$row['domain'] = $idna_convert->decode($row['domain']); $row['domain'] = $idna_convert->decode($row['domain']);
$row['aliasdomain'] = $idna_convert->decode($row['aliasdomain']); $row['aliasdomain'] = $idna_convert->decode($row['aliasdomain']);
$row['domainalias'] = $idna_convert->decode($row['domainalias']); $row['domainalias'] = $idna_convert->decode($row['domainalias']);
if ($row['parentdomainid'] == '0' && $row['caneditdomain'] == '1') { if ($row['parentdomainid'] == '0' && $row['caneditdomain'] == '1') {
$parentdomains_count++; $parentdomains_count++;
} }
/** /**
* check for set ssl-certs to show different state-icons * check for set ssl-certs to show different state-icons
*/ */
@@ -91,29 +91,29 @@ if ($page == 'overview') {
} }
} }
} }
$row['termination_date'] = str_replace("0000-00-00", "", $row['termination_date']); $row['termination_date'] = str_replace("0000-00-00", "", $row['termination_date']);
if($row['termination_date'] != "") { if($row['termination_date'] != "") {
$cdate = strtotime($row['termination_date'] . " 23:59:59"); $cdate = strtotime($row['termination_date'] . " 23:59:59");
$today = time(); $today = time();
if($cdate < $today) { if($cdate < $today) {
$row['termination_css'] = 'domain-expired'; $row['termination_css'] = 'domain-expired';
} else { } else {
$row['termination_css'] = 'domain-canceled'; $row['termination_css'] = 'domain-canceled';
} }
} }
$domains_count++; $domains_count++;
$domain_array[$row['domain']] = $row; $domain_array[$row['domain']] = $row;
} }
ksort($domain_array); ksort($domain_array);
$domain_id_array = array(); $domain_id_array = array();
foreach ($domain_array as $sortkey => $row) { foreach ($domain_array as $sortkey => $row) {
$domain_id_array[$row['id']] = $sortkey; $domain_id_array[$row['id']] = $sortkey;
} }
$domain_sort_array = array(); $domain_sort_array = array();
foreach ($domain_array as $sortkey => $row) { foreach ($domain_array as $sortkey => $row) {
if ($row['parentdomainid'] == 0) { if ($row['parentdomainid'] == 0) {
@@ -122,45 +122,45 @@ if ($page == 'overview') {
// when searching and the results are subdomains only, we need to get // when searching and the results are subdomains only, we need to get
// the parent domain to this subdomain // the parent domain to this subdomain
if (!isset($domain_id_array[$row['parentdomainid']])) { if (!isset($domain_id_array[$row['parentdomainid']])) {
$domain_id_array[$row['parentdomainid']] = "[parent-domain]"; $domain_id_array[$row['parentdomainid']] = "[parent-domain]";
} }
$domain_sort_array[$domain_id_array[$row['parentdomainid']]][$sortkey] = $row; $domain_sort_array[$domain_id_array[$row['parentdomainid']]][$sortkey] = $row;
} }
} }
$domain_array = array(); $domain_array = array();
if ($paging->sortfield == 'd.domain' && $paging->sortorder == 'asc') { if ($paging->sortfield == 'd.domain' && $paging->sortorder == 'asc') {
ksort($domain_sort_array); ksort($domain_sort_array);
} elseif ($paging->sortfield == 'd.domain' && $paging->sortorder == 'desc') { } elseif ($paging->sortfield == 'd.domain' && $paging->sortorder == 'desc') {
krsort($domain_sort_array); krsort($domain_sort_array);
} }
$i = 0; $i = 0;
foreach ($domain_sort_array as $sortkey => $domain_array) { foreach ($domain_sort_array as $sortkey => $domain_array) {
if ($paging->checkDisplay($i)) { if ($paging->checkDisplay($i)) {
if (isset($domain_array[$sortkey])) { if (isset($domain_array[$sortkey])) {
$row = htmlentities_array($domain_array[$sortkey]); $row = htmlentities_array($domain_array[$sortkey]);
if (Settings::Get('system.awstats_enabled') == '1') { if (Settings::Get('system.awstats_enabled') == '1') {
$statsapp = 'awstats'; $statsapp = 'awstats';
} else { } else {
$statsapp = 'webalizer'; $statsapp = 'webalizer';
} }
eval("\$domains.=\"" . getTemplate("domains/domains_delimiter") . "\";"); eval("\$domains.=\"" . getTemplate("domains/domains_delimiter") . "\";");
} }
if ($paging->sortfield == 'd.domain' && $paging->sortorder == 'asc') { if ($paging->sortfield == 'd.domain' && $paging->sortorder == 'asc') {
ksort($domain_array); ksort($domain_array);
} elseif ($paging->sortfield == 'd.domain' && $paging->sortorder == 'desc') { } elseif ($paging->sortfield == 'd.domain' && $paging->sortorder == 'desc') {
krsort($domain_array); krsort($domain_array);
} }
foreach ($domain_array as $row) { foreach ($domain_array as $row) {
if (strpos($row['documentroot'], $userinfo['documentroot']) === 0) { if (strpos($row['documentroot'], $userinfo['documentroot']) === 0) {
$row['documentroot'] = makeCorrectDir(str_replace($userinfo['documentroot'], "/", $row['documentroot'])); $row['documentroot'] = makeCorrectDir(str_replace($userinfo['documentroot'], "/", $row['documentroot']));
} }
// get ssl-ips if activated // get ssl-ips if activated
$show_ssledit = false; $show_ssledit = false;
if (Settings::Get('system.use_ssl') == '1' && domainHasSslIpPort($row['id']) && $row['caneditdomain'] == '1' && $row['letsencrypt'] == 0) { if (Settings::Get('system.use_ssl') == '1' && domainHasSslIpPort($row['id']) && $row['caneditdomain'] == '1' && $row['letsencrypt'] == 0) {
@@ -170,10 +170,10 @@ if ($page == 'overview') {
eval("\$domains.=\"" . getTemplate("domains/domains_domain") . "\";"); eval("\$domains.=\"" . getTemplate("domains/domains_domain") . "\";");
} }
} }
$i+= count($domain_array); $i+= count($domain_array);
} }
eval("echo \"" . getTemplate("domains/domainlist") . "\";"); eval("echo \"" . getTemplate("domains/domainlist") . "\";");
} elseif ($action == 'delete' && $id != 0) { } elseif ($action == 'delete' && $id != 0) {
try { try {
@@ -184,10 +184,10 @@ if ($page == 'overview') {
dynamic_error($e->getMessage()); dynamic_error($e->getMessage());
} }
$result = json_decode($json_result, true)['data']; $result = json_decode($json_result, true)['data'];
$alias_stmt = Database::prepare("SELECT COUNT(`id`) AS `count` FROM `" . TABLE_PANEL_DOMAINS . "` WHERE `aliasdomain` = :aliasdomain"); $alias_stmt = Database::prepare("SELECT COUNT(`id`) AS `count` FROM `" . TABLE_PANEL_DOMAINS . "` WHERE `aliasdomain` = :aliasdomain");
$alias_check = Database::pexecute_first($alias_stmt, array("aliasdomain" => $id)); $alias_check = Database::pexecute_first($alias_stmt, array("aliasdomain" => $id));
if (isset($result['parentdomainid']) && $result['parentdomainid'] != '0' && $alias_check['count'] == 0) { if (isset($result['parentdomainid']) && $result['parentdomainid'] != '0' && $alias_check['count'] == 0) {
if (isset($_POST['send']) && $_POST['send'] == 'send') { if (isset($_POST['send']) && $_POST['send'] == 'send') {
try { try {
@@ -218,14 +218,14 @@ if ($page == 'overview') {
AND `email_only` = '0' AND `email_only` = '0'
AND `caneditdomain` = '1' AND `caneditdomain` = '1'
ORDER BY `domain` ASC" ORDER BY `domain` ASC"
); );
Database::pexecute($stmt, array("customerid" => $userinfo['customerid'])); Database::pexecute($stmt, array("customerid" => $userinfo['customerid']));
$domains = ''; $domains = '';
while ($row = $stmt->fetch(PDO::FETCH_ASSOC)) { while ($row = $stmt->fetch(PDO::FETCH_ASSOC)) {
$domains .= makeoption($idna_convert->decode($row['domain']), $row['domain']); $domains .= makeoption($idna_convert->decode($row['domain']), $row['domain']);
} }
$aliasdomains = makeoption($lng['domains']['noaliasdomain'], 0, NULL, true); $aliasdomains = makeoption($lng['domains']['noaliasdomain'], 0, NULL, true);
$domains_stmt = Database::prepare("SELECT `d`.`id`, `d`.`domain` FROM `" . TABLE_PANEL_DOMAINS . "` `d`, `" . TABLE_PANEL_CUSTOMERS . "` `c` $domains_stmt = Database::prepare("SELECT `d`.`id`, `d`.`domain` FROM `" . TABLE_PANEL_DOMAINS . "` `d`, `" . TABLE_PANEL_CUSTOMERS . "` `c`
WHERE `d`.`aliasdomain` IS NULL WHERE `d`.`aliasdomain` IS NULL
@@ -235,13 +235,13 @@ if ($page == 'overview') {
AND `d`.`email_only`='0' AND `d`.`email_only`='0'
AND `d`.`customerid`= :customerid AND `d`.`customerid`= :customerid
ORDER BY `d`.`domain` ASC" ORDER BY `d`.`domain` ASC"
); );
Database::pexecute($domains_stmt, array("customerid" => $userinfo['customerid'])); Database::pexecute($domains_stmt, array("customerid" => $userinfo['customerid']));
while ($row_domain = $domains_stmt->fetch(PDO::FETCH_ASSOC)) { while ($row_domain = $domains_stmt->fetch(PDO::FETCH_ASSOC)) {
$aliasdomains .= makeoption($idna_convert->decode($row_domain['domain']), $row_domain['id']); $aliasdomains .= makeoption($idna_convert->decode($row_domain['domain']), $row_domain['id']);
} }
$redirectcode = ''; $redirectcode = '';
if (Settings::Get('customredirect.enabled') == '1') { if (Settings::Get('customredirect.enabled') == '1') {
$codes = getRedirectCodesArray(); $codes = getRedirectCodesArray();
@@ -249,7 +249,7 @@ if ($page == 'overview') {
$redirectcode .= makeoption($rc['code']. ' ('.$lng['redirect_desc'][$rc['desc']].')', $rc['id']); $redirectcode .= makeoption($rc['code']. ' ('.$lng['redirect_desc'][$rc['desc']].')', $rc['id']);
} }
} }
// check if we at least have one ssl-ip/port, #1179 // check if we at least have one ssl-ip/port, #1179
$ssl_ipsandports = ''; $ssl_ipsandports = '';
$ssl_ip_stmt = Database::prepare(" $ssl_ip_stmt = Database::prepare("
@@ -263,10 +263,10 @@ if ($page == 'overview') {
if (isset($resultX['countSSL']) && (int)$resultX['countSSL'] > 0) { if (isset($resultX['countSSL']) && (int)$resultX['countSSL'] > 0) {
$ssl_ipsandports = 'notempty'; $ssl_ipsandports = 'notempty';
} }
$openbasedir = makeoption($lng['domain']['docroot'], 0, NULL, true) . makeoption($lng['domain']['homedir'], 1, NULL, true); $openbasedir = makeoption($lng['domain']['docroot'], 0, NULL, true) . makeoption($lng['domain']['homedir'], 1, NULL, true);
$pathSelect = makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid']); $pathSelect = makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid']);
$phpconfigs = ''; $phpconfigs = '';
$has_phpconfigs = false; $has_phpconfigs = false;
if (isset($userinfo['allowed_phpconfigs']) && !empty($userinfo['allowed_phpconfigs'])) if (isset($userinfo['allowed_phpconfigs']) && !empty($userinfo['allowed_phpconfigs']))
@@ -287,18 +287,18 @@ if ($page == 'overview') {
} }
} }
} }
$subdomain_add_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domains_add.php'; $subdomain_add_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domains_add.php';
$subdomain_add_form = htmlform::genHTMLForm($subdomain_add_data); $subdomain_add_form = htmlform::genHTMLForm($subdomain_add_data);
$title = $subdomain_add_data['domain_add']['title']; $title = $subdomain_add_data['domain_add']['title'];
$image = $subdomain_add_data['domain_add']['image']; $image = $subdomain_add_data['domain_add']['image'];
eval("echo \"" . getTemplate("domains/domains_add") . "\";"); eval("echo \"" . getTemplate("domains/domains_add") . "\";");
} }
} }
} elseif ($action == 'edit' && $id != 0) { } elseif ($action == 'edit' && $id != 0) {
try { try {
$json_result = SubDomains::getLocal($userinfo, array( $json_result = SubDomains::getLocal($userinfo, array(
'id' => $id 'id' => $id
@@ -307,7 +307,7 @@ if ($page == 'overview') {
dynamic_error($e->getMessage()); dynamic_error($e->getMessage());
} }
$result = json_decode($json_result, true)['data']; $result = json_decode($json_result, true)['data'];
if (isset($result['customerid']) && $result['customerid'] == $userinfo['customerid']) { if (isset($result['customerid']) && $result['customerid'] == $userinfo['customerid']) {
if (isset($_POST['send']) && $_POST['send'] == 'send') { if (isset($_POST['send']) && $_POST['send'] == 'send') {
try { try {
@@ -318,7 +318,7 @@ if ($page == 'overview') {
redirectTo($filename, array('page' => $page, 's' => $s)); redirectTo($filename, array('page' => $page, 's' => $s));
} else { } else {
$result['domain'] = $idna_convert->decode($result['domain']); $result['domain'] = $idna_convert->decode($result['domain']);
$domains = makeoption($lng['domains']['noaliasdomain'], 0, $result['aliasdomain'], true); $domains = makeoption($lng['domains']['noaliasdomain'], 0, $result['aliasdomain'], true);
// also check ip/port combination to be the same, #176 // also check ip/port combination to be the same, #176
$domains_stmt = Database::prepare("SELECT `d`.`id`, `d`.`domain` FROM `" . TABLE_PANEL_DOMAINS . "` `d` , `" . TABLE_PANEL_CUSTOMERS . "` `c` , `".TABLE_DOMAINTOIP."` `dip` $domains_stmt = Database::prepare("SELECT `d`.`id`, `d`.`domain` FROM `" . TABLE_PANEL_DOMAINS . "` `d` , `" . TABLE_PANEL_CUSTOMERS . "` `c` , `".TABLE_DOMAINTOIP."` `dip`
@@ -334,13 +334,13 @@ if ($page == 'overview') {
WHERE `id_domain` = :id) WHERE `id_domain` = :id)
GROUP BY `d`.`id`, `d`.`domain` GROUP BY `d`.`id`, `d`.`domain`
ORDER BY `d`.`domain` ASC" ORDER BY `d`.`domain` ASC"
); );
Database::pexecute($domains_stmt, array("id" => $result['id'], "customerid" => $userinfo['customerid'])); Database::pexecute($domains_stmt, array("id" => $result['id'], "customerid" => $userinfo['customerid']));
while ($row_domain = $domains_stmt->fetch(PDO::FETCH_ASSOC)) { while ($row_domain = $domains_stmt->fetch(PDO::FETCH_ASSOC)) {
$domains .= makeoption($idna_convert->decode($row_domain['domain']), $row_domain['id'], $result['aliasdomain']); $domains .= makeoption($idna_convert->decode($row_domain['domain']), $row_domain['id'], $result['aliasdomain']);
} }
if (preg_match('/^https?\:\/\//', $result['documentroot']) && validateUrl($result['documentroot'])) { if (preg_match('/^https?\:\/\//', $result['documentroot']) && validateUrl($result['documentroot'])) {
if (Settings::Get('panel.pathedit') == 'Dropdown') { if (Settings::Get('panel.pathedit') == 'Dropdown') {
$urlvalue = $result['documentroot']; $urlvalue = $result['documentroot'];
@@ -353,7 +353,7 @@ if ($page == 'overview') {
$urlvalue = ''; $urlvalue = '';
$pathSelect = makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid'], $result['documentroot']); $pathSelect = makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid'], $result['documentroot']);
} }
$redirectcode = ''; $redirectcode = '';
if (Settings::Get('customredirect.enabled') == '1') { if (Settings::Get('customredirect.enabled') == '1') {
$def_code = getDomainRedirectId($id); $def_code = getDomainRedirectId($id);
@@ -362,7 +362,7 @@ if ($page == 'overview') {
$redirectcode .= makeoption($rc['code']. ' ('.$lng['redirect_desc'][$rc['desc']].')', $rc['id'], $def_code); $redirectcode .= makeoption($rc['code']. ' ('.$lng['redirect_desc'][$rc['desc']].')', $rc['id'], $def_code);
} }
} }
// check if we at least have one ssl-ip/port, #1179 // check if we at least have one ssl-ip/port, #1179
$ssl_ipsandports = ''; $ssl_ipsandports = '';
$ssl_ip_stmt = Database::prepare(" $ssl_ip_stmt = Database::prepare("
@@ -376,13 +376,13 @@ if ($page == 'overview') {
if (isset($resultX['countSSL']) && (int)$resultX['countSSL'] > 0) { if (isset($resultX['countSSL']) && (int)$resultX['countSSL'] > 0) {
$ssl_ipsandports = 'notempty'; $ssl_ipsandports = 'notempty';
} }
// Fudge the result for ssl_redirect to hide the Let's Encrypt steps // Fudge the result for ssl_redirect to hide the Let's Encrypt steps
$result['temporary_ssl_redirect'] = $result['ssl_redirect']; $result['temporary_ssl_redirect'] = $result['ssl_redirect'];
$result['ssl_redirect'] = ($result['ssl_redirect'] == 0 ? 0 : 1); $result['ssl_redirect'] = ($result['ssl_redirect'] == 0 ? 0 : 1);
$openbasedir = makeoption($lng['domain']['docroot'], 0, $result['openbasedir_path'], true) . makeoption($lng['domain']['homedir'], 1, $result['openbasedir_path'], true); $openbasedir = makeoption($lng['domain']['docroot'], 0, $result['openbasedir_path'], true) . makeoption($lng['domain']['homedir'], 1, $result['openbasedir_path'], true);
// create serveralias options // create serveralias options
$serveraliasoptions = ""; $serveraliasoptions = "";
$_value = '2'; $_value = '2';
@@ -394,19 +394,19 @@ if ($page == 'overview') {
$serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_wildcard'], '0', $_value, true, true); $serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_wildcard'], '0', $_value, true, true);
$serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_www'], '1', $_value, true, true); $serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_www'], '1', $_value, true, true);
$serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_none'], '2', $_value, true, true); $serveraliasoptions .= makeoption($lng['domains']['serveraliasoption_none'], '2', $_value, true, true);
$ips_stmt = Database::prepare("SELECT `p`.`ip` AS `ip` FROM `".TABLE_PANEL_IPSANDPORTS."` `p` $ips_stmt = Database::prepare("SELECT `p`.`ip` AS `ip` FROM `".TABLE_PANEL_IPSANDPORTS."` `p`
LEFT JOIN `".TABLE_DOMAINTOIP."` `dip` LEFT JOIN `".TABLE_DOMAINTOIP."` `dip`
ON ( `dip`.`id_ipandports` = `p`.`id` ) ON ( `dip`.`id_ipandports` = `p`.`id` )
WHERE `dip`.`id_domain` = :id_domain WHERE `dip`.`id_domain` = :id_domain
GROUP BY `p`.`ip`" GROUP BY `p`.`ip`"
); );
Database::pexecute($ips_stmt, array("id_domain" => $result['id'])); Database::pexecute($ips_stmt, array("id_domain" => $result['id']));
$result_ipandport['ip'] = ''; $result_ipandport['ip'] = '';
while ($rowip = $ips_stmt->fetch(PDO::FETCH_ASSOC)) { while ($rowip = $ips_stmt->fetch(PDO::FETCH_ASSOC)) {
$result_ipandport['ip'] .= $rowip['ip'] . "<br />"; $result_ipandport['ip'] .= $rowip['ip'] . "<br />";
} }
$phpconfigs = ''; $phpconfigs = '';
$has_phpconfigs = false; $has_phpconfigs = false;
if (isset($userinfo['allowed_phpconfigs']) && !empty($userinfo['allowed_phpconfigs'])) if (isset($userinfo['allowed_phpconfigs']) && !empty($userinfo['allowed_phpconfigs']))
@@ -427,16 +427,16 @@ if ($page == 'overview') {
} }
} }
} }
$domainip = $result_ipandport['ip']; $domainip = $result_ipandport['ip'];
$result = htmlentities_array($result); $result = htmlentities_array($result);
$subdomain_edit_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domains_edit.php'; $subdomain_edit_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domains_edit.php';
$subdomain_edit_form = htmlform::genHTMLForm($subdomain_edit_data); $subdomain_edit_form = htmlform::genHTMLForm($subdomain_edit_data);
$title = $subdomain_edit_data['domain_edit']['title']; $title = $subdomain_edit_data['domain_edit']['title'];
$image = $subdomain_edit_data['domain_edit']['image']; $image = $subdomain_edit_data['domain_edit']['image'];
eval("echo \"" . getTemplate("domains/domains_edit") . "\";"); eval("echo \"" . getTemplate("domains/domains_edit") . "\";");
} }
} else { } else {
@@ -444,7 +444,7 @@ if ($page == 'overview') {
} }
} }
} elseif ($page == 'domainssleditor') { } elseif ($page == 'domainssleditor') {
if ($action == '' || $action == 'view') { if ($action == '' || $action == 'view') {
if (isset($_POST['send']) && $_POST['send'] == 'send') { if (isset($_POST['send']) && $_POST['send'] == 'send') {
$do_insert = isset($_POST['do_insert']) ? (($_POST['do_insert'] == 1) ? true : false) : false; $do_insert = isset($_POST['do_insert']) ? (($_POST['do_insert'] == 1) ? true : false) : false;
@@ -460,12 +460,12 @@ if ($page == 'overview') {
// back to domain overview // back to domain overview
redirectTo($filename, array('page' => 'domains', 's' => $s)); redirectTo($filename, array('page' => 'domains', 's' => $s));
} }
$stmt = Database::prepare("SELECT * FROM `".TABLE_PANEL_DOMAIN_SSL_SETTINGS."` $stmt = Database::prepare("SELECT * FROM `".TABLE_PANEL_DOMAIN_SSL_SETTINGS."`
WHERE `domainid`= :domainid" WHERE `domainid`= :domainid"
); );
$result = Database::pexecute_first($stmt, array("domainid" => $id)); $result = Database::pexecute_first($stmt, array("domainid" => $id));
$do_insert = false; $do_insert = false;
// if no entry can be found, behave like we have empty values // if no entry can be found, behave like we have empty values
if (!is_array($result) || !isset($result['ssl_cert_file'])) { if (!is_array($result) || !isset($result['ssl_cert_file'])) {
@@ -477,23 +477,23 @@ if ($page == 'overview') {
); );
$do_insert = true; $do_insert = true;
} }
$result = htmlentities_array($result); $result = htmlentities_array($result);
$ssleditor_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domain_ssleditor.php'; $ssleditor_data = include_once dirname(__FILE__).'/lib/formfields/customer/domains/formfield.domain_ssleditor.php';
$ssleditor_form = htmlform::genHTMLForm($ssleditor_data); $ssleditor_form = htmlform::genHTMLForm($ssleditor_data);
$title = $ssleditor_data['domain_ssleditor']['title']; $title = $ssleditor_data['domain_ssleditor']['title'];
$image = $ssleditor_data['domain_ssleditor']['image']; $image = $ssleditor_data['domain_ssleditor']['image'];
eval("echo \"" . getTemplate("domains/domain_ssleditor") . "\";"); eval("echo \"" . getTemplate("domains/domain_ssleditor") . "\";");
} }
} elseif ($page == 'domaindnseditor' && $userinfo['dnsenabled'] == '1' && Settings::Get('system.dnsenabled') == '1') { } elseif ($page == 'domaindnseditor' && $userinfo['dnsenabled'] == '1' && Settings::Get('system.dnsenabled') == '1') {
require_once __DIR__.'/dns_editor.php'; require_once __DIR__.'/dns_editor.php';
} elseif ($page == 'sslcertificates') { } elseif ($page == 'sslcertificates') {
require_once __DIR__.'/ssl_certificates.php'; require_once __DIR__.'/ssl_certificates.php';
} }

View File

@@ -238,7 +238,11 @@ if ($page == 'overview') {
} }
} elseif ($action == 'answer' && $id != 0) { } elseif ($action == 'answer' && $id != 0) {
if (isset($_POST['send']) && $_POST['send'] == 'send') { if (isset($_POST['send']) && $_POST['send'] == 'send') {
$replyticket = ticket::getInstanceOf($userinfo, -1); try {
$replyticket = ticket::getInstanceOf($userinfo, -1);
} catch(Exception $e) {
standard_error($e->getMessage());
}
$replyticket->Set('subject', validate($_POST['subject'], 'subject'), true, false); $replyticket->Set('subject', validate($_POST['subject'], 'subject'), true, false);
$replyticket->Set('priority', validate($_POST['priority'], 'priority'), true, false); $replyticket->Set('priority', validate($_POST['priority'], 'priority'), true, false);
$replyticket->Set('message', validate(str_replace("\r\n", "\n", $_POST['message']), 'message', '/^[^\0]*$/'), true, false); $replyticket->Set('message', validate(str_replace("\r\n", "\n", $_POST['message']), 'message', '/^[^\0]*$/'), true, false);
@@ -246,6 +250,11 @@ if ($page == 'overview') {
if ($replyticket->Get('message') == null) { if ($replyticket->Get('message') == null) {
standard_error(array('stringisempty', 'mymessage')); standard_error(array('stringisempty', 'mymessage'));
} else { } else {
try {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
} catch(Exception $e) {
standard_error($e->getMessage());
}
$now = time(); $now = time();
$replyticket->Set('customer', (int)$userinfo['customerid'], true, true); $replyticket->Set('customer', (int)$userinfo['customerid'], true, true);
$replyticket->Set('lastchange', $now, true, true); $replyticket->Set('lastchange', $now, true, true);
@@ -256,8 +265,6 @@ if ($page == 'overview') {
$replyticket->Insert(); $replyticket->Insert();
// Update priority if changed // Update priority if changed
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
if ($replyticket->Get('priority') != $mainticket->Get('priority')) { if ($replyticket->Get('priority') != $mainticket->Get('priority')) {
$mainticket->Set('priority', $replyticket->Get('priority'), true); $mainticket->Set('priority', $replyticket->Get('priority'), true);
} }
@@ -272,7 +279,11 @@ if ($page == 'overview') {
} }
} else { } else {
$ticket_replies = ''; $ticket_replies = '';
$mainticket = ticket::getInstanceOf($userinfo, (int)$id); try {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
} catch(Exception $e) {
standard_error($e->getMessage());
}
$dt = date("d.m.Y H:i\h", $mainticket->Get('dt')); $dt = date("d.m.Y H:i\h", $mainticket->Get('dt'));
$status = ticket::getStatusText($lng, $mainticket->Get('status')); $status = ticket::getStatusText($lng, $mainticket->Get('status'));
@@ -351,7 +362,11 @@ if ($page == 'overview') {
} elseif ($action == 'close' && $id != 0) { } elseif ($action == 'close' && $id != 0) {
if (isset($_POST['send']) && $_POST['send'] == 'send') { if (isset($_POST['send']) && $_POST['send'] == 'send') {
$now = time(); $now = time();
$mainticket = ticket::getInstanceOf($userinfo, (int)$id); try {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
} catch(Exception $e) {
standard_error($e->getMessage());
}
$mainticket->Set('lastchange', $now, true, true); $mainticket->Set('lastchange', $now, true, true);
$mainticket->Set('lastreplier', '0', true, true); $mainticket->Set('lastreplier', '0', true, true);
$mainticket->Set('status', '3', true, true); $mainticket->Set('status', '3', true, true);
@@ -359,7 +374,11 @@ if ($page == 'overview') {
$log->logAction(USR_ACTION, LOG_NOTICE, "closed support-ticket '" . $mainticket->Get('subject') . "'"); $log->logAction(USR_ACTION, LOG_NOTICE, "closed support-ticket '" . $mainticket->Get('subject') . "'");
redirectTo($filename, array('page' => $page, 's' => $s)); redirectTo($filename, array('page' => $page, 's' => $s));
} else { } else {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id); try {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
} catch(Exception $e) {
standard_error($e->getMessage());
}
ask_yesno('ticket_reallyclose', $filename, array('id' => $id, 'page' => $page, 'action' => $action), $mainticket->Get('subject')); ask_yesno('ticket_reallyclose', $filename, array('id' => $id, 'page' => $page, 'action' => $action), $mainticket->Get('subject'));
} }
} elseif ($action == 'reopen' && $id != 0) { } elseif ($action == 'reopen' && $id != 0) {
@@ -377,7 +396,11 @@ if ($page == 'overview') {
} }
$now = time(); $now = time();
$mainticket = ticket::getInstanceOf($userinfo, (int)$id); try {
$mainticket = ticket::getInstanceOf($userinfo, (int)$id);
} catch(Exception $e) {
standard_error($e->getMessage());
}
$mainticket->Set('lastchange', $now, true, true); $mainticket->Set('lastchange', $now, true, true);
$mainticket->Set('lastreplier', '0', true, true); $mainticket->Set('lastreplier', '0', true, true);
$mainticket->Set('status', '0', true, true); $mainticket->Set('status', '0', true, true);

View File

@@ -1340,6 +1340,12 @@ class Domains extends ApiCommand implements ResourceEntity
} elseif ($result['wwwserveralias'] != $wwwserveralias || $result['letsencrypt'] != $letsencrypt) { } elseif ($result['wwwserveralias'] != $wwwserveralias || $result['letsencrypt'] != $letsencrypt) {
// or when wwwserveralias or letsencrypt was changed // or when wwwserveralias or letsencrypt was changed
triggerLetsEncryptCSRForAliasDestinationDomain($aliasdomain, $this->logger()); triggerLetsEncryptCSRForAliasDestinationDomain($aliasdomain, $this->logger());
if ($aliasdomain === 0) {
// in case the wwwserveralias is set on a main domain, $aliasdomain is 0
// --> the call just above to triggerLetsEncryptCSRForAliasDestinationDomain
// is a noop...let's repeat it with the domain id of the main domain
triggerLetsEncryptCSRForAliasDestinationDomain($id, $this->logger());
}
} }
$this->logger()->logAction(ADM_ACTION, LOG_WARNING, "[API] updated domain '" . $result['domain'] . "'"); $this->logger()->logAction(ADM_ACTION, LOG_WARNING, "[API] updated domain '" . $result['domain'] . "'");

View File

@@ -19,46 +19,53 @@
* *
* Support Tickets - Tickets-Class * Support Tickets - Tickets-Class
*/ */
class ticket
class ticket { {
/** /**
* Userinfo * Userinfo
*
* @var array * @var array
*/ */
private $userinfo = array(); private $userinfo = array();
/** /**
* Ticket ID * Ticket ID
* @var tid *
* @var int
*/ */
private $tid = - 1; private $tid = - 1;
/** /**
* Ticket Data Array * Ticket Data Array
* @var t_data *
* @var array
*/ */
private $t_data = array(); private $t_data = array();
/** /**
* Ticket-Object-Array * Ticket-Object-Array
* @var tickets *
* @var ticket[]
*/ */
static private $tickets = array(); private static $tickets = array();
/** /**
* Class constructor. * Class constructor.
* *
* @param array userinfo * @param
* @param int ticket id * array userinfo
* @param
* int ticket id
*/ */
private function __construct($userinfo, $tid = - 1) { private function __construct($userinfo, $tid = - 1)
{
$this->userinfo = $userinfo; $this->userinfo = $userinfo;
$this->tid = $tid; $this->tid = $tid;
// initialize data array // initialize data array
$this->initData(); $this->initData();
// read data from database // read data from database
$this->readData(); $this->readData();
} }
@@ -66,21 +73,24 @@ class ticket {
/** /**
* Singleton ftw ;-) * Singleton ftw ;-)
* *
* @param array userinfo * @param
* @param int ticket id * array userinfo
* @param
* int ticket id
*/ */
static public function getInstanceOf($_usernfo, $_tid) { static public function getInstanceOf($_usernfo, $_tid)
if (!isset(self::$tickets[$_tid])) { {
self::$tickets[$_tid] = new ticket($_usernfo, $_tid); if (! isset(self::$tickets[$_tid . '-' . $_usernfo['userid']])) {
self::$tickets[$_tid . '-' . $_usernfo['userid']] = new ticket($_usernfo, $_tid);
} }
return self::$tickets[$_tid]; return self::$tickets[$_tid . '-' . $_usernfo['userid']];
} }
/** /**
* Initialize data-array * Initialize data-array
*/ */
private function initData() { private function initData()
{
$this->Set('customer', 0, true, true); $this->Set('customer', 0, true, true);
$this->Set('admin', 1, true, true); $this->Set('admin', 1, true, true);
$this->Set('subject', '', true, true); $this->Set('subject', '', true, true);
@@ -100,16 +110,33 @@ class ticket {
/** /**
* Read ticket data from database. * Read ticket data from database.
*/ */
private function readData() { private function readData()
{
if (isset($this->tid) if (isset($this->tid) && $this->tid != - 1) {
&& $this->tid != - 1
) { if ($this->userinfo['customerid'] > 0) {
$_ticket_stmt = Database::prepare(' $_ticket_stmt = Database::prepare('
SELECT * FROM `' . TABLE_PANEL_TICKETS . '` WHERE `id` = :tid' SELECT * FROM `' . TABLE_PANEL_TICKETS . '` WHERE `id` = :tid AND `customerid` = :cid');
); $tdata = array(
$_ticket = Database::pexecute_first($_ticket_stmt, array('tid' => $this->tid)); 'tid' => $this->tid,
'cid' => $this->userinfo['customerid']
);
} else {
$_ticket_stmt = Database::prepare('
SELECT * FROM `' . TABLE_PANEL_TICKETS . '` WHERE `id` = :tid' . ($this->userinfo['customers_see_all'] ? '' : ' AND `adminid` = :adminid'));
$tdata = array(
'tid' => $this->tid
);
if ($this->userinfo['customers_see_all'] != '1') {
$tdata['adminid'] = $this->userinfo['adminid'];
}
}
$_ticket = Database::pexecute_first($_ticket_stmt, $tdata);
if ($_ticket == false) {
throw new Exception("Invalid ticket id");
}
$this->Set('customer', $_ticket['customerid'], true, false); $this->Set('customer', $_ticket['customerid'], true, false);
$this->Set('admin', $_ticket['adminid'], true, false); $this->Set('admin', $_ticket['adminid'], true, false);
$this->Set('subject', $_ticket['subject'], true, false); $this->Set('subject', $_ticket['subject'], true, false);
@@ -130,8 +157,8 @@ class ticket {
/** /**
* Insert data to database * Insert data to database
*/ */
public function Insert() { public function Insert()
{
$ins_stmt = Database::prepare(" $ins_stmt = Database::prepare("
INSERT INTO `" . TABLE_PANEL_TICKETS . "` SET INSERT INTO `" . TABLE_PANEL_TICKETS . "` SET
`customerid` = :customerid, `customerid` = :customerid,
@@ -146,8 +173,7 @@ class ticket {
`status` = :status, `status` = :status,
`lastreplier` = :lastreplier, `lastreplier` = :lastreplier,
`by` = :by, `by` = :by,
`answerto` = :answerto" `answerto` = :answerto");
);
$ins_data = array( $ins_data = array(
'customerid' => $this->Get('customer'), 'customerid' => $this->Get('customer'),
'adminid' => $this->Get('admin'), 'adminid' => $this->Get('admin'),
@@ -171,8 +197,9 @@ class ticket {
/** /**
* Update data in database * Update data in database
*/ */
public function Update() { public function Update()
{
// Update "main" ticket // Update "main" ticket
$upd_stmt = Database::prepare(' $upd_stmt = Database::prepare('
UPDATE `' . TABLE_PANEL_TICKETS . '` SET UPDATE `' . TABLE_PANEL_TICKETS . '` SET
@@ -180,8 +207,7 @@ class ticket {
`lastchange` = :lastchange, `lastchange` = :lastchange,
`status` = :status, `status` = :status,
`lastreplier` = :lastreplier `lastreplier` = :lastreplier
WHERE `id` = :tid' WHERE `id` = :tid');
);
$upd_data = array( $upd_data = array(
'priority' => $this->Get('priority'), 'priority' => $this->Get('priority'),
'lastchange' => $this->Get('lastchange'), 'lastchange' => $this->Get('lastchange'),
@@ -196,38 +222,44 @@ class ticket {
/** /**
* Moves a ticket to the archive * Moves a ticket to the archive
*/ */
public function Archive() { public function Archive()
{
// Update "main" ticket // Update "main" ticket
$upd_stmt = Database::prepare(' $upd_stmt = Database::prepare('
UPDATE `' . TABLE_PANEL_TICKETS . '` SET `archived` = "1" WHERE `id` = :tid' UPDATE `' . TABLE_PANEL_TICKETS . '` SET `archived` = "1" WHERE `id` = :tid');
); Database::pexecute($upd_stmt, array(
Database::pexecute($upd_stmt, array('tid' => $this->tid)); 'tid' => $this->tid
));
// Update "answers" to ticket // Update "answers" to ticket
$upd_stmt = Database::prepare(' $upd_stmt = Database::prepare('
UPDATE `' . TABLE_PANEL_TICKETS . '` SET `archived` = "1" WHERE `answerto` = :tid' UPDATE `' . TABLE_PANEL_TICKETS . '` SET `archived` = "1" WHERE `answerto` = :tid');
); Database::pexecute($upd_stmt, array(
Database::pexecute($upd_stmt, array('tid' => $this->tid)); 'tid' => $this->tid
));
return true; return true;
} }
/** /**
* Remove ticket from database * Remove ticket from database
*/ */
public function Delete() { public function Delete()
{
// Delete "main" ticket // Delete "main" ticket
$del_stmt = Database::prepare(' $del_stmt = Database::prepare('
DELETE FROM `' . TABLE_PANEL_TICKETS . '` WHERE `id` = :tid' DELETE FROM `' . TABLE_PANEL_TICKETS . '` WHERE `id` = :tid');
); Database::pexecute($del_stmt, array(
Database::pexecute($del_stmt, array('tid' => $this->tid)); 'tid' => $this->tid
));
// Delete "answers" to ticket" // Delete "answers" to ticket"
$del_stmt = Database::prepare(' $del_stmt = Database::prepare('
DELETE FROM `' . TABLE_PANEL_TICKETS . '` WHERE `answerto` = :tid' DELETE FROM `' . TABLE_PANEL_TICKETS . '` WHERE `answerto` = :tid');
); Database::pexecute($del_stmt, array(
Database::pexecute($del_stmt, array('tid' => $this->tid)); 'tid' => $this->tid
));
return true; return true;
} }
@@ -237,16 +269,17 @@ class ticket {
public function sendMail($customerid = - 1, $template_subject = null, $default_subject = null, $template_body = null, $default_body = null) public function sendMail($customerid = - 1, $template_subject = null, $default_subject = null, $template_body = null, $default_body = null)
{ {
global $mail, $theme; global $mail, $theme;
// Some checks are to be made here in the future // Some checks are to be made here in the future
if ($customerid != - 1) { if ($customerid != - 1) {
// Get e-mail message for customer // Get e-mail message for customer
$usr_stmt = Database::prepare(' $usr_stmt = Database::prepare('
SELECT `name`, `firstname`, `company`, `email` SELECT `name`, `firstname`, `company`, `email`
FROM `' . TABLE_PANEL_CUSTOMERS . '` WHERE `customerid` = :customerid' FROM `' . TABLE_PANEL_CUSTOMERS . '` WHERE `customerid` = :customerid');
); $usr = Database::pexecute_first($usr_stmt, array(
$usr = Database::pexecute_first($usr_stmt, array('customerid' => $customerid)); 'customerid' => $customerid
));
$replace_arr = array( $replace_arr = array(
'FIRSTNAME' => $usr['firstname'], 'FIRSTNAME' => $usr['firstname'],
'NAME' => $usr['name'], 'NAME' => $usr['name'],
@@ -268,23 +301,21 @@ class ticket {
SELECT `value` FROM `" . TABLE_PANEL_TEMPLATES . "` SELECT `value` FROM `" . TABLE_PANEL_TEMPLATES . "`
WHERE `adminid`= :adminid WHERE `adminid`= :adminid
AND `language`= :lang AND `language`= :lang
AND `templategroup`= 'mails' AND `varname`= :tplsubject" AND `templategroup`= 'mails' AND `varname`= :tplsubject");
);
$result = Database::pexecute_first($result_stmt, $tpl_seldata); $result = Database::pexecute_first($result_stmt, $tpl_seldata);
$mail_subject = html_entity_decode(replace_variables((($result['value'] != '') ? $result['value'] : $default_subject), $replace_arr)); $mail_subject = html_entity_decode(replace_variables((($result['value'] != '') ? $result['value'] : $default_subject), $replace_arr));
unset($tpl_seldata['tplsubject']); unset($tpl_seldata['tplsubject']);
$tpl_seldata['tplmailbody'] = $template_body; $tpl_seldata['tplmailbody'] = $template_body;
$result_stmt = Database::prepare(" $result_stmt = Database::prepare("
SELECT `value` FROM `" . TABLE_PANEL_TEMPLATES . "` SELECT `value` FROM `" . TABLE_PANEL_TEMPLATES . "`
WHERE `adminid`= :adminid WHERE `adminid`= :adminid
AND `language`= :lang AND `language`= :lang
AND `templategroup`= 'mails' AND `varname`= :tplmailbody" AND `templategroup`= 'mails' AND `varname`= :tplmailbody");
);
$result = Database::pexecute_first($result_stmt, $tpl_seldata); $result = Database::pexecute_first($result_stmt, $tpl_seldata);
$mail_body = html_entity_decode(replace_variables((($result['value'] != '') ? $result['value'] : $default_body), $replace_arr)); $mail_body = html_entity_decode(replace_variables((($result['value'] != '') ? $result['value'] : $default_body), $replace_arr));
if ($customerid != - 1) { if ($customerid != - 1) {
$_mailerror = false; $_mailerror = false;
try { try {
@@ -294,28 +325,30 @@ class ticket {
$mail->MsgHTML(str_replace("\n", "<br />", $mail_body)); $mail->MsgHTML(str_replace("\n", "<br />", $mail_body));
$mail->AddAddress($usr['email'], $usr['firstname'] . ' ' . $usr['name']); $mail->AddAddress($usr['email'], $usr['firstname'] . ' ' . $usr['name']);
$mail->Send(); $mail->Send();
} catch(phpmailerException $e) { } catch (phpmailerException $e) {
$mailerr_msg = $e->errorMessage(); $mailerr_msg = $e->errorMessage();
$_mailerror = true; $_mailerror = true;
} catch (Exception $e) { } catch (Exception $e) {
$mailerr_msg = $e->getMessage(); $mailerr_msg = $e->getMessage();
$_mailerror = true; $_mailerror = true;
} }
if ($_mailerror) { if ($_mailerror) {
$rstlog = FroxlorLogger::getInstanceOf(array('loginname' => 'ticket_class')); $rstlog = FroxlorLogger::getInstanceOf(array(
'loginname' => 'ticket_class'
));
$rstlog->logAction(ADM_ACTION, LOG_ERR, "Error sending mail: " . $mailerr_msg); $rstlog->logAction(ADM_ACTION, LOG_ERR, "Error sending mail: " . $mailerr_msg);
standard_error('errorsendingmail', $usr['email']); standard_error('errorsendingmail', $usr['email']);
} }
$mail->ClearAddresses(); $mail->ClearAddresses();
} else { } else {
$admin_stmt = Database::prepare(" $admin_stmt = Database::prepare("
SELECT `name`, `email` FROM `" . TABLE_PANEL_ADMINS . "` SELECT `name`, `email` FROM `" . TABLE_PANEL_ADMINS . "`
WHERE `adminid` = :adminid" WHERE `adminid` = :adminid");
); $admin = Database::pexecute_first($admin_stmt, array(
$admin = Database::pexecute_first($admin_stmt, array('adminid' => $this->userinfo['adminid'])); 'adminid' => $this->userinfo['adminid']
));
$_mailerror = false; $_mailerror = false;
try { try {
$mail->SetFrom(Settings::Get('ticket.noreply_email'), Settings::Get('ticket.noreply_name')); $mail->SetFrom(Settings::Get('ticket.noreply_email'), Settings::Get('ticket.noreply_name'));
@@ -324,20 +357,22 @@ class ticket {
$mail->MsgHTML(str_replace("\n", "<br />", $mail_body)); $mail->MsgHTML(str_replace("\n", "<br />", $mail_body));
$mail->AddAddress($admin['email'], $admin['name']); $mail->AddAddress($admin['email'], $admin['name']);
$mail->Send(); $mail->Send();
} catch(phpmailerException $e) { } catch (phpmailerException $e) {
$mailerr_msg = $e->errorMessage(); $mailerr_msg = $e->errorMessage();
$_mailerror = true; $_mailerror = true;
} catch (Exception $e) { } catch (Exception $e) {
$mailerr_msg = $e->getMessage(); $mailerr_msg = $e->getMessage();
$_mailerror = true; $_mailerror = true;
} }
if ($_mailerror) { if ($_mailerror) {
$rstlog = FroxlorLogger::getInstanceOf(array('loginname' => 'ticket_class')); $rstlog = FroxlorLogger::getInstanceOf(array(
'loginname' => 'ticket_class'
));
$rstlog->logAction(ADM_ACTION, LOG_ERR, "Error sending mail: " . $mailerr_msg); $rstlog->logAction(ADM_ACTION, LOG_ERR, "Error sending mail: " . $mailerr_msg);
standard_error('errorsendingmail', $admin['email']); standard_error('errorsendingmail', $admin['email']);
} }
$mail->ClearAddresses(); $mail->ClearAddresses();
} }
} }
@@ -345,21 +380,18 @@ class ticket {
/** /**
* Add a support-categories * Add a support-categories
*/ */
static public function addCategory($_category = null, $_admin = 1, $_order = 1) { static public function addCategory($_category = null, $_admin = 1, $_order = 1)
{
if ($_category != null if ($_category != null && $_category != '') {
&& $_category != ''
) {
if ($_order < 1) { if ($_order < 1) {
$_order = 1; $_order = 1;
} }
$ins_stmt = Database::prepare(" $ins_stmt = Database::prepare("
INSERT INTO `" . TABLE_PANEL_TICKET_CATS . "` SET INSERT INTO `" . TABLE_PANEL_TICKET_CATS . "` SET
`name` = :name, `name` = :name,
`adminid` = :adminid, `adminid` = :adminid,
`logicalorder` = :lo" `logicalorder` = :lo");
);
$ins_data = array( $ins_data = array(
'name' => $_category, 'name' => $_category,
'adminid' => $_admin, 'adminid' => $_admin,
@@ -374,23 +406,24 @@ class ticket {
/** /**
* Edit a support-categories * Edit a support-categories
*/ */
static public function editCategory($_category = null, $_id = 0, $_order = 1) { static public function editCategory($_category = null, $_id = 0, $_order = 1)
{
if ($_category != null if ($_category != null && $_category != '' && $_id != 0) {
&& $_category != ''
&& $_id != 0
) {
if ($_order < 1) { if ($_order < 1) {
$_order = 1; $_order = 1;
} }
$upd_stmt = Database::prepare(" $upd_stmt = Database::prepare("
UPDATE `" . TABLE_PANEL_TICKET_CATS . "` SET UPDATE `" . TABLE_PANEL_TICKET_CATS . "` SET
`name` = :name, `name` = :name,
`logicalorder` = :lo `logicalorder` = :lo
WHERE `id` = :id WHERE `id` = :id
"); ");
Database::pexecute($upd_stmt, array('name' => $_category, 'lo' => $_order, 'id' => $_id)); Database::pexecute($upd_stmt, array(
'name' => $_category,
'lo' => $_order,
'id' => $_id
));
return true; return true;
} }
return false; return false;
@@ -399,40 +432,43 @@ class ticket {
/** /**
* Delete a support-categories * Delete a support-categories
*/ */
static public function deleteCategory($_id = 0) { static public function deleteCategory($_id = 0)
{
if ($_id != 0) { if ($_id != 0) {
$result_stmt = Database::prepare(" $result_stmt = Database::prepare("
SELECT COUNT(`id`) as `numtickets` FROM `" . TABLE_PANEL_TICKETS . "` SELECT COUNT(`id`) as `numtickets` FROM `" . TABLE_PANEL_TICKETS . "`
WHERE `category` = :cat" WHERE `category` = :cat");
); $result = Database::pexecute_first($result_stmt, array(
$result = Database::pexecute_first($result_stmt, array('cat' => $_id)); 'cat' => $_id
));
if ($result['numtickets'] == "0") { if ($result['numtickets'] == "0") {
$del_stmt = Database::prepare(" $del_stmt = Database::prepare("
DELETE FROM `" . TABLE_PANEL_TICKET_CATS . "` WHERE `id` = :id" DELETE FROM `" . TABLE_PANEL_TICKET_CATS . "` WHERE `id` = :id");
); Database::pexecute($del_stmt, array(
Database::pexecute($del_stmt, array('id' => $_id)); 'id' => $_id
));
return true; return true;
} else { } else {
return false; return false;
} }
} }
return false; return false;
} }
/** /**
* Return a support-category-name * Return a support-category-name
*/ */
static public function getCategoryName($_id = 0) { static public function getCategoryName($_id = 0)
{
if ($_id != 0) { if ($_id != 0) {
$stmt = Database::prepare(" $stmt = Database::prepare("
SELECT `name` FROM `" . TABLE_PANEL_TICKET_CATS . "` WHERE `id` = :id" SELECT `name` FROM `" . TABLE_PANEL_TICKET_CATS . "` WHERE `id` = :id");
); $category = Database::pexecute_first($stmt, array(
$category = Database::pexecute_first($stmt, array('id' => $_id)); 'id' => $_id
));
return $category['name']; return $category['name'];
} }
return null; return null;
@@ -440,32 +476,33 @@ class ticket {
/** /**
* get the highest order number * get the highest order number
* *
* @param object $_uid admin-id (optional) * @param object $_uid
* * admin-id (optional)
*
* @return int highest order number * @return int highest order number
*/ */
static public function getHighestOrderNumber($_uid = 0) { static public function getHighestOrderNumber($_uid = 0)
{
$where = ''; $where = '';
$sel_data = array(); $sel_data = array();
if ($_uid > 0) { if ($_uid > 0) {
$where = " WHERE `adminid` = :adminid"; $where = " WHERE `adminid` = :adminid";
$sel_data['adminid'] = $_uid; $sel_data['adminid'] = $_uid;
} }
$sql = "SELECT MAX(`logicalorder`) as `highestorder` FROM `" . TABLE_PANEL_TICKET_CATS . "`".$where.";"; $sql = "SELECT MAX(`logicalorder`) as `highestorder` FROM `" . TABLE_PANEL_TICKET_CATS . "`" . $where . ";";
$result_stmt = Database::prepare($sql); $result_stmt = Database::prepare($sql);
$result = Database::pexecute_first($result_stmt, $sel_data); $result = Database::pexecute_first($result_stmt, $sel_data);
return (isset($result['highestorder']) ? (int)$result['highestorder'] : 0); return (isset($result['highestorder']) ? (int) $result['highestorder'] : 0);
} }
/** /**
* returns the last x archived tickets * returns the last x archived tickets
*/ */
static public function getLastArchived($_num = 10, $_admin = 1) { static public function getLastArchived($_num = 10, $_admin = 1)
{
if ($_num > 0) { if ($_num > 0) {
$archived = array(); $archived = array();
$counter = 0; $counter = 0;
$result_stmt = Database::prepare(" $result_stmt = Database::prepare("
@@ -477,12 +514,13 @@ class ticket {
FROM `" . TABLE_PANEL_TICKETS . "` `main` FROM `" . TABLE_PANEL_TICKETS . "` `main`
WHERE `main`.`answerto` = '0' AND `main`.`archived` = '1' WHERE `main`.`answerto` = '0' AND `main`.`archived` = '1'
AND `main`.`adminid` = :adminid AND `main`.`adminid` = :adminid
ORDER BY `main`.`lastchange` DESC LIMIT 0, ".(int)$_num ORDER BY `main`.`lastchange` DESC LIMIT 0, " . (int) $_num);
); Database::pexecute($result_stmt, array(
Database::pexecute($result_stmt, array('adminid' => $_admin)); 'adminid' => $_admin
));
while ($row = $result_stmt->fetch(PDO::FETCH_ASSOC)) { while ($row = $result_stmt->fetch(PDO::FETCH_ASSOC)) {
$archived[$counter]['id'] = $row['id']; $archived[$counter]['id'] = $row['id'];
$archived[$counter]['customerid'] = $row['customerid']; $archived[$counter]['customerid'] = $row['customerid'];
$archived[$counter]['adminid'] = $row['adminid']; $archived[$counter]['adminid'] = $row['adminid'];
@@ -496,9 +534,9 @@ class ticket {
$archived[$counter]['lastchange'] = $row['lastchange']; $archived[$counter]['lastchange'] = $row['lastchange'];
$archived[$counter]['status'] = $row['status']; $archived[$counter]['status'] = $row['status'];
$archived[$counter]['by'] = $row['by']; $archived[$counter]['by'] = $row['by'];
$counter++; $counter ++;
} }
if (isset($archived[0]['id'])) { if (isset($archived[0]['id'])) {
return $archived; return $archived;
} else { } else {
@@ -516,129 +554,102 @@ class ticket {
static public function getArchiveSearchStatement($subject = null, $priority = null, $fromdate = null, $todate = null, $message = null, $customer = - 1, $admin = 1, $categories = null) static public function getArchiveSearchStatement($subject = null, $priority = null, $fromdate = null, $todate = null, $message = null, $customer = - 1, $admin = 1, $categories = null)
{ {
$search_params = array(); $search_params = array();
$query = " $query = "
SELECT `main`.*, ( SELECT `main`.*, (
SELECT COUNT(`sub`.`id`) FROM `" . TABLE_PANEL_TICKETS . "` `sub` SELECT COUNT(`sub`.`id`) FROM `" . TABLE_PANEL_TICKETS . "` `sub`
WHERE `sub`.`answerto` = `main`.`id` WHERE `sub`.`answerto` = `main`.`id`
) as `ticket_answers` ) as `ticket_answers`
FROM `" . TABLE_PANEL_TICKETS . "` `main` FROM `" . TABLE_PANEL_TICKETS . "` `main`
WHERE `main`.`archived` = '1' AND `main`.`adminid` = :admin" WHERE `main`.`archived` = '1' AND `main`.`adminid` = :admin";
;
$search_params['admin'] = $admin; $search_params['admin'] = $admin;
if ($subject != NULL if ($subject != NULL && $subject != '') {
&& $subject != ''
) {
$query .= " AND `main`.`subject` LIKE :subject"; $query .= " AND `main`.`subject` LIKE :subject";
$search_params['subject'] = "%".$subject."%"; $search_params['subject'] = "%" . $subject . "%";
} }
if ($priority != null if ($priority != null && isset($priority[0]) && $priority[0] != '') {
&& isset($priority[0])
&& $priority[0] != '' if (isset($priority[1]) && $priority[1] != '') {
) {
if (isset($priority[2]) && $priority[2] != '') {
if (isset($priority[1])
&& $priority[1] != ''
) {
if (isset($priority[2])
&& $priority[2] != ''
) {
$query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '2' OR `main`.`priority` = '3')"; $query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '2' OR `main`.`priority` = '3')";
} else { } else {
$query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '1')"; $query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '1')";
} }
} elseif (isset($priority[2]) && $priority[2] != '') {
} elseif (isset($priority[2])
&& $priority[2] != ''
) {
$query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '3')"; $query .= " AND (`main`.`priority` = '1' OR `main`.`priority` = '3')";
} else { } else {
$query .= " AND `main`.`priority` = '1'"; $query .= " AND `main`.`priority` = '1'";
} }
} elseif ($priority != null && isset($priority[1]) && $priority[1] != '') {
} elseif($priority != null if (isset($priority[2]) && $priority[2] != '') {
&& isset($priority[1])
&& $priority[1] != ''
) {
if (isset($priority[2])
&& $priority[2] != ''
) {
$query .= " AND (`main`.`priority` = '2' OR `main`.`priority` = '3')"; $query .= " AND (`main`.`priority` = '2' OR `main`.`priority` = '3')";
} else { } else {
$query .= " AND `main`.`priority` = '2'"; $query .= " AND `main`.`priority` = '2'";
} }
} elseif ($priority != null) {
} elseif($priority != null) {
if (isset($priority[3]) && $priority[3] != '') {
if (isset($priority[3])
&& $priority[3] != ''
) {
$query .= " AND `main`.`priority` = '3'"; $query .= " AND `main`.`priority` = '3'";
} }
} }
if ($fromdate != null if ($fromdate != null && $fromdate > 0) {
&& $fromdate > 0
) {
$query .= " AND `main`.`lastchange` > :fromdate"; $query .= " AND `main`.`lastchange` > :fromdate";
$search_params['fromdate'] = strtotime($fromdate); $search_params['fromdate'] = strtotime($fromdate);
} }
if ($todate != null if ($todate != null && $todate > 0) {
&& $todate > 0
) {
$query .= " AND `main`.`lastchange` < :todate"; $query .= " AND `main`.`lastchange` < :todate";
$search_params['todate'] = strtotime($todate); $search_params['todate'] = strtotime($todate);
} }
if ($message != null if ($message != null && $message != '') {
&& $message != ''
) {
$query .= " AND `main`.`message` LIKE :message"; $query .= " AND `main`.`message` LIKE :message";
$search_params['message'] = "%".$message."%"; $search_params['message'] = "%" . $message . "%";
} }
if ($customer != - 1) { if ($customer != - 1) {
$query .= " AND `main`.`customerid` = :customer"; $query .= " AND `main`.`customerid` = :customer";
$search_params['customer'] = $customer; $search_params['customer'] = $customer;
} }
if ($categories != null) { if ($categories != null) {
$cats = array(); $cats = array();
foreach ($categories as $index => $catid) { foreach ($categories as $index => $catid) {
if ($catid != "") { if ($catid != "") {
$cats[] = $catid; $cats[] = $catid;
} }
} }
if (count($cats) > 0) { if (count($cats) > 0) {
$query .= " AND ("; $query .= " AND (";
} }
foreach ($cats as $catid) { foreach ($cats as $catid) {
if (isset($catid) && $catid > 0) { if (isset($catid) && $catid > 0) {
$query .= "`main`.`category` = :catid_".$catid." OR "; $query .= "`main`.`category` = :catid_" . $catid . " OR ";
$search_params['catid_'.$catid] = $catid; $search_params['catid_' . $catid] = $catid;
} }
} }
if (count($cats) > 0) { if (count($cats) > 0) {
$query = substr($query, 0, strlen($query) - 3); $query = substr($query, 0, strlen($query) - 3);
$query .= ") "; $query .= ") ";
} }
} }
return array('0' => $query, '1' => $search_params); return array(
'0' => $query,
'1' => $search_params
);
} }
/** /**
@@ -646,8 +657,7 @@ class ticket {
*/ */
static public function getStatusText($_lng, $_status = 0) static public function getStatusText($_lng, $_status = 0)
{ {
switch($_status) switch ($_status) {
{
case 0: case 0:
return $_lng['ticket']['open']; return $_lng['ticket']['open'];
break; break;
@@ -668,8 +678,7 @@ class ticket {
*/ */
static public function getPriorityText($_lng, $_priority = 0) static public function getPriorityText($_lng, $_priority = 0)
{ {
switch($_priority) switch ($_priority) {
{
case 1: case 1:
return $_lng['ticket']['high']; return $_lng['ticket']['high'];
break; break;
@@ -684,19 +693,19 @@ class ticket {
private function convertLatin1ToHtml($str) private function convertLatin1ToHtml($str)
{ {
$html_entities = array ( $html_entities = array(
"Ä" => "&Auml;", "Ä" => "&Auml;",
"ä" => "&auml;", "ä" => "&auml;",
"Ö" => "&Ouml;", "Ö" => "&Ouml;",
"ö" => "&ouml;", "ö" => "&ouml;",
"Ü" => "&Uuml;", "Ü" => "&Uuml;",
"ü" => "&uuml;", "ü" => "&uuml;",
"ß" => "&szlig;" "ß" => "&szlig;"
/* /*
* @TODO continue this table for all the special-characters * @TODO continue this table for all the special-characters
*/ */
); );
foreach ($html_entities as $key => $value) { foreach ($html_entities as $key => $value) {
$str = str_replace($key, $value, $str); $str = str_replace($key, $value, $str);
} }
@@ -706,45 +715,47 @@ class ticket {
/** /**
* function customerHasTickets * function customerHasTickets
* *
* @param int customer-id * @param
* * int customer-id
* @return array/bool array of ticket-ids if customer has any, else false *
* @return array/bool array of ticket-ids if customer has any, else false
*/ */
static public function customerHasTickets($_cid = 0) { static public function customerHasTickets($_cid = 0)
{
if ($_cid != 0) { if ($_cid != 0) {
$result_stmt = Database::prepare(" $result_stmt = Database::prepare("
SELECT `id` FROM `" . TABLE_PANEL_TICKETS . "` WHERE `customerid` = :cid" SELECT `id` FROM `" . TABLE_PANEL_TICKETS . "` WHERE `customerid` = :cid");
); Database::pexecute($result_stmt, array(
Database::pexecute($result_stmt, array('cid' => $_cid)); 'cid' => $_cid
));
$tickets = array(); $tickets = array();
while ($row = $result_stmt->fetch(PDO::FETCH_ASSOC)) { while ($row = $result_stmt->fetch(PDO::FETCH_ASSOC)) {
$tickets[] = $row['id']; $tickets[] = $row['id'];
} }
return $tickets; return $tickets;
} }
return false; return false;
} }
/** /**
* Get a data-var * Get a data-var
*/ */
public function Get($_var = '', $_vartrusted = false) { public function Get($_var = '', $_vartrusted = false)
{
if ($_var != '') { if ($_var != '') {
if (!$_vartrusted) { if (! $_vartrusted) {
$_var = htmlspecialchars($_var); $_var = htmlspecialchars($_var);
} }
if (isset($this->t_data[$_var])) { if (isset($this->t_data[$_var])) {
if (strtolower($_var) == 'message') { if (strtolower($_var) == 'message') {
// avoid double line-breaks, #1413 // avoid double line-breaks, #1413
$this->t_data[$_var] = str_replace("<br />\n", "\n", $this->t_data[$_var]); $this->t_data[$_var] = str_replace("<br />\n", "\n", $this->t_data[$_var]);
return nl2br($this->t_data[$_var]); return nl2br($this->t_data[$_var]);
} elseif(strtolower($_var) == 'subject') { } elseif (strtolower($_var) == 'subject') {
return nl2br($this->t_data[$_var]); return nl2br($this->t_data[$_var]);
} else { } else {
return $this->t_data[$_var]; return $this->t_data[$_var];
@@ -758,25 +769,21 @@ class ticket {
/** /**
* Set a data-var * Set a data-var
*/ */
public function Set($_var = '', $_value = '', $_vartrusted = false, $_valuetrusted = false) { public function Set($_var = '', $_value = '', $_vartrusted = false, $_valuetrusted = false)
{
if ($_var != '' if ($_var != '' && $_value != '') {
&& $_value != '' if (! $_vartrusted) {
) {
if (!$_vartrusted) {
$_var = strip_tags($_var); $_var = strip_tags($_var);
} }
if (!$_valuetrusted) { if (! $_valuetrusted) {
$_value = strip_tags($_value, '<br />'); $_value = strip_tags($_value, '<br />');
} }
if (strtolower($_var) == 'message' if (strtolower($_var) == 'message' || strtolower($_var) == 'subject') {
|| strtolower($_var) == 'subject'
) {
$_value = $this->convertLatin1ToHtml($_value); $_value = $this->convertLatin1ToHtml($_value);
} }
$this->t_data[$_var] = $_value; $this->t_data[$_var] = $_value;
} }
} }

View File

@@ -57,7 +57,7 @@
<footer> <footer>
<span> <span>
<img src="" style="height: 13px; margin: 0 2px 3px 0; vertical-align:middle;"/> <img src="" style="height: 13px; margin: 0 2px 3px 0; vertical-align:middle;"/>
&copy; 2009-2017 by <a href="http://www.froxlor.org">the Froxlor Team</a> &copy; 2009-2018 by <a href="http://www.froxlor.org">the Froxlor Team</a>
</span> </span>
</footer> </footer>
</body> </body>