f1c872f9b6a2a3905c0b59fe281541798e384e2a
[citadel.git] / webcit / useredit.c
1 /*
2  * $Id$
3  *
4  * Administrative screen to add/change/delete user accounts
5  *
6  */
7
8
9 #include "webcit.h"
10 #include "webserver.h"
11
12
13 void select_user_to_edit(char *message, char *preselect)
14 {
15         char buf[SIZ];
16         char username[SIZ];
17
18         output_headers(1, 1, 2, 0, 0, 0);
19         wprintf("<div id=\"banner\">\n");
20         wprintf("<table width=100%% border=0 bgcolor=#444455><tr>"
21                 "<td>"
22                 "<span class=\"titlebar\">"
23                 "<img src=\"static/usermanag_48x.gif\">");
24         wprintf(_("Edit or delete users"));
25         wprintf("</span></td></tr></table>\n"
26                 "</div>\n<div id=\"content\">\n"
27         );
28
29         if (message != NULL) wprintf(message);
30
31         wprintf("<TABLE border=0 CELLSPACING=10><TR VALIGN=TOP><TD>\n");
32
33         svprintf("BOXTITLE", WCS_STRING, _("Add users"));
34         do_template("beginbox");
35
36         wprintf(_("To create a new user account, enter the desired "
37                 "user name in the box below and click 'Create'."));
38         wprintf("<br /><br />");
39
40         wprintf("<CENTER><FORM METHOD=\"POST\" action=\"create_user\">\n");
41         wprintf(_("New user: "));
42         wprintf("<input type=\"text\" name=\"username\"><br />\n"
43                 "<input type=\"submit\" name=\"create_button\" value=\"%s\">"
44                 "</FORM></CENTER>\n", _("Create"));
45
46         do_template("endbox");
47
48         wprintf("</TD><TD>");
49
50         svprintf("BOXTITLE", WCS_STRING, _("Edit or Delete users"));
51         do_template("beginbox");
52
53         wprintf(_("To edit an existing user account, select the user "
54                 "name from the list and click 'Edit'."));
55         wprintf("<br /><br />");
56         
57         wprintf("<CENTER>"
58                 "<FORM METHOD=\"POST\" action=\"display_edituser\">\n");
59         wprintf("<SELECT NAME=\"username\" SIZE=10 STYLE=\"width:100%%\">\n");
60         serv_puts("LIST");
61         serv_getln(buf, sizeof buf);
62         if (buf[0] == '1') {
63                 while (serv_getln(buf, sizeof buf), strcmp(buf, "000")) {
64                         extract_token(username, buf, 0, '|', sizeof username);
65                         wprintf("<OPTION");
66                         if (preselect != NULL)
67                            if (!strcasecmp(username, preselect))
68                               wprintf(" SELECTED");
69                         wprintf(">");
70                         escputs(username);
71                         wprintf("\n");
72                 }
73         }
74         wprintf("</SELECT><br />\n");
75
76         wprintf("<input type=\"submit\" name=\"edit_config_button\" value=\"%s\">", _("Edit configuration"));
77         wprintf("<input type=\"submit\" name=\"edit_abe_button\" value=\"%s\">", _("Edit address book entry"));
78         wprintf("<input type=\"submit\" name=\"delete_button\" value=\"%s\" "
79                 "onClick=\"return confirm('%s');\">", _("Delete user"), _("Delete this user?"));
80         wprintf("</FORM></CENTER>\n");
81         do_template("endbox");
82
83         wprintf("</TD></TR></TABLE>\n");
84
85         wDumpContent(1);
86 }
87
88
89
90 /* 
91  * Locate the message number of a user's vCard in the current room
92  */
93 long locate_user_vcard(char *username, long usernum) {
94         char buf[SIZ];
95         long vcard_msgnum = (-1L);
96         char content_type[SIZ];
97         char partnum[SIZ];
98         int already_tried_creating_one = 0;
99
100         struct stuff_t {
101                 struct stuff_t *next;
102                 long msgnum;
103         };
104
105         struct stuff_t *stuff = NULL;
106         struct stuff_t *ptr;
107
108 TRYAGAIN:
109         /* Search for the user's vCard */
110         serv_puts("MSGS ALL");
111         serv_getln(buf, sizeof buf);
112         if (buf[0] == '1') while (serv_getln(buf, sizeof buf), strcmp(buf, "000")) {
113                 ptr = malloc(sizeof(struct stuff_t));
114                 ptr->msgnum = atol(buf);
115                 ptr->next = stuff;
116                 stuff = ptr;
117         }
118
119         /* Iterate through the message list looking for vCards */
120         while (stuff != NULL) {
121                 serv_printf("MSG0 %ld|2", stuff->msgnum);
122                 serv_getln(buf, sizeof buf);
123                 if (buf[0]=='1') {
124                         while(serv_getln(buf, sizeof buf), strcmp(buf, "000")) {
125                                 if (!strncasecmp(buf, "part=", 5)) {
126                                         extract_token(partnum, &buf[5], 2, '|', sizeof partnum);
127                                         extract_token(content_type, &buf[5], 4, '|', sizeof content_type);
128                                         if (!strcasecmp(content_type,
129                                            "text/x-vcard")) {
130                                                 vcard_msgnum = stuff->msgnum;
131                                         }
132                                 }
133                         }
134                 }
135
136                 ptr = stuff->next;
137                 free(stuff);
138                 stuff = ptr;
139         }
140
141         /* If there's no vcard, create one */
142         if (vcard_msgnum < 0) if (already_tried_creating_one == 0) {
143                 already_tried_creating_one = 1;
144                 serv_puts("ENT0 1|||4");
145                 serv_getln(buf, sizeof buf);
146                 if (buf[0] == '4') {
147                         serv_puts("Content-type: text/x-vcard");
148                         serv_puts("");
149                         serv_puts("begin:vcard");
150                         serv_puts("end:vcard");
151                         serv_puts("000");
152                 }
153                 goto TRYAGAIN;
154         }
155
156         return(vcard_msgnum);
157 }
158
159
160 /* 
161  * Display the form for editing a user's address book entry
162  */
163 void display_edit_address_book_entry(char *username, long usernum) {
164         char roomname[SIZ];
165         char buf[SIZ];
166         char error_message[SIZ];
167         long vcard_msgnum = (-1L);
168
169         /* Locate the user's config room, creating it if necessary */
170         sprintf(roomname, "%010ld.%s", usernum, USERCONFIGROOM);
171         serv_printf("GOTO %s||1", roomname);
172         serv_getln(buf, sizeof buf);
173         if (buf[0] != '2') {
174                 serv_printf("CRE8 1|%s|5|||1|", roomname);
175                 serv_getln(buf, sizeof buf);
176                 serv_printf("GOTO %s||1", roomname);
177                 serv_getln(buf, sizeof buf);
178                 if (buf[0] != '2') {
179                         sprintf(error_message,
180                                 "<img src=\"static/error.gif\" ALIGN=CENTER>"
181                                 "%s<br /><br />\n", &buf[4]);
182                         select_user_to_edit(error_message, username);
183                         return;
184                 }
185         }
186
187         vcard_msgnum = locate_user_vcard(username, usernum);
188
189         if (vcard_msgnum < 0) {
190                 sprintf(error_message,
191                         "<img src=\"static/error.gif\" ALIGN=CENTER>%s<br /><br />\n",
192                         _("An error occurred while trying to create or edit this address book entry.")
193                 );
194                 select_user_to_edit(error_message, username);
195                 return;
196         }
197
198         do_edit_vcard(vcard_msgnum, "1", "select_user_to_edit");
199 }
200
201
202
203
204 /*
205  * Edit a user.  If supplied_username is null, look in the "username"
206  * web variable for the name of the user to edit.
207  * 
208  * If "is_new" is set to nonzero, this screen will set the web variables
209  * to send the user to the vCard editor next.
210  */
211 void display_edituser(char *supplied_username, int is_new) {
212         char buf[1024];
213         char error_message[1024];
214         time_t now;
215
216         char username[256];
217         char password[256];
218         unsigned int flags;
219         int timescalled;
220         int msgsposted;
221         int axlevel;
222         long usernum;
223         time_t lastcall;
224         int purgedays;
225         int i;
226
227         if (supplied_username != NULL) {
228                 safestrncpy(username, supplied_username, sizeof username);
229         }
230         else {
231                 safestrncpy(username, bstr("username"), sizeof username);
232         }
233
234         serv_printf("AGUP %s", username);
235         serv_getln(buf, sizeof buf);
236         if (buf[0] != '2') {
237                 sprintf(error_message,
238                         "<img src=\"static/error.gif\" ALIGN=CENTER>"
239                         "%s<br /><br />\n", &buf[4]);
240                 select_user_to_edit(error_message, username);
241                 return;
242         }
243
244         extract_token(username, &buf[4], 0, '|', sizeof username);
245         extract_token(password, &buf[4], 1, '|', sizeof password);
246         flags = extract_int(&buf[4], 2);
247         timescalled = extract_int(&buf[4], 3);
248         msgsposted = extract_int(&buf[4], 4);
249         axlevel = extract_int(&buf[4], 5);
250         usernum = extract_long(&buf[4], 6);
251         lastcall = extract_long(&buf[4], 7);
252         purgedays = extract_long(&buf[4], 8);
253
254         if (strlen(bstr("edit_abe_button")) > 0) {
255                 display_edit_address_book_entry(username, usernum);
256                 return;
257         }
258
259         if (strlen(bstr("delete_button")) > 0) {
260                 delete_user(username);
261                 return;
262         }
263
264         output_headers(1, 1, 2, 0, 0, 0);
265         wprintf("<div id=\"banner\">\n");
266         wprintf("<TABLE WIDTH=100%% BORDER=0 BGCOLOR=\"#444455\"><TR><TD>");
267         wprintf("<SPAN CLASS=\"titlebar\">");
268         wprintf(_("Edit user account: "));
269         escputs(username);
270         wprintf("</SPAN></TD></TR></TABLE>\n");
271         wprintf("</div>\n<div id=\"content\">\n");
272
273         wprintf("<div class=\"fix_scrollbar_bug\">"
274                 "<table border=0 width=100%% bgcolor=\"#ffffff\"><tr><td>\n");
275         wprintf("<FORM METHOD=\"POST\" action=\"edituser\">\n"
276                 "<INPUT TYPE=\"hidden\" NAME=\"username\" VALUE=\"");
277         escputs(username);
278         wprintf("\">\n");
279         wprintf("<INPUT TYPE=\"hidden\" NAME=\"is_new\" VALUE=\"%d\">\n"
280                 "<INPUT TYPE=\"hidden\" NAME=\"usernum\" VALUE=\"%ld\">\n",
281                 is_new, usernum);
282
283         wprintf("<INPUT TYPE=\"hidden\" NAME=\"flags\" VALUE=\"%d\">\n", flags);
284
285         wprintf("<CENTER><TABLE>");
286
287         wprintf("<TR><TD>");
288         wprintf(_("Password"));
289         wprintf("</TD><TD>"
290                 "<INPUT TYPE=\"password\" NAME=\"password\" VALUE=\"");
291         escputs(password);
292         wprintf("\" MAXLENGTH=\"20\"></TD></TR>\n");
293
294         wprintf("<tr><td>");
295         wprintf(_("Permission to send Internet mail"));
296         wprintf("</td><td>");
297         wprintf("<input type=\"checkbox\" name=\"inetmail\" value=\"yes\" ");
298         if (flags & US_INTERNET) {
299                 wprintf("CHECKED ");
300         }
301         wprintf("></td></tr>\n");
302
303         wprintf("<TR><TD>");
304         wprintf(_("Number of logins"));
305         wprintf("</TD><TD>"
306                 "<INPUT TYPE=\"text\" NAME=\"timescalled\" VALUE=\"");
307         wprintf("%d", timescalled);
308         wprintf("\" MAXLENGTH=\"6\"></TD></TR>\n");
309
310         wprintf("<TR><TD>");
311         wprintf(_("Messages submitted"));
312         wprintf("</TD><TD>"
313                 "<INPUT TYPE=\"text\" NAME=\"msgsposted\" VALUE=\"");
314         wprintf("%d", msgsposted);
315         wprintf("\" MAXLENGTH=\"6\"></TD></TR>\n");
316
317         wprintf("<TR><TD>");
318         wprintf(_("Access level"));
319         wprintf("</TD><TD>"
320                 "<SELECT NAME=\"axlevel\">\n");
321         for (i=0; i<7; ++i) {
322                 wprintf("<OPTION ");
323                 if (axlevel == i) {
324                         wprintf("SELECTED ");
325                 }
326                 wprintf("VALUE=\"%d\">%d - %s</OPTION>\n",
327                         i, i, axdefs[i]);
328         }
329         wprintf("</SELECT></TD></TR>\n");
330
331         wprintf("<TR><TD>");
332         wprintf(_("User ID number"));
333         wprintf("</TD><TD>"
334                 "<INPUT TYPE=\"text\" NAME=\"usernum\" VALUE=\"");
335         wprintf("%ld", usernum);
336         wprintf("\" MAXLENGTH=\"7\"></TD></TR>\n");
337
338         now = time(NULL);
339         wprintf("<TR><TD>");
340         wprintf(_("Date and time of last login"));
341         wprintf("</TD><TD>"
342                 "<SELECT NAME=\"lastcall\">\n");
343
344         wprintf("<OPTION SELECTED VALUE=\"%ld\">", lastcall);
345         escputs(asctime(localtime(&lastcall)));
346         wprintf("</OPTION>\n");
347
348         wprintf("<OPTION VALUE=\"%ld\">", now);
349         escputs(asctime(localtime(&now)));
350         wprintf("</OPTION>\n");
351
352         wprintf("</SELECT></TD></TR>");
353
354         wprintf("<TR><TD>");
355         wprintf(_("Auto-purge after this many days"));
356         wprintf("</TD><TD>"
357                 "<INPUT TYPE=\"text\" NAME=\"purgedays\" VALUE=\"");
358         wprintf("%d", purgedays);
359         wprintf("\" MAXLENGTH=\"5\"></TD></TR>\n");
360
361         wprintf("</TABLE>\n");
362
363         wprintf("<INPUT type=\"submit\" NAME=\"ok_button\" VALUE=\"%s\">\n"
364                 "&nbsp;"
365                 "<INPUT type=\"submit\" NAME=\"cancel\" VALUE=\"%s\">\n"
366                 "<br /><br /></FORM>\n", _("Save changes"), _("Cancel"));
367
368         wprintf("</CENTER>\n");
369         wprintf("</td></tr></table></div>\n");
370         wDumpContent(1);
371
372 }
373
374
375
376 void edituser(void) {
377         char message[SIZ];
378         char buf[SIZ];
379         int is_new = 0;
380         unsigned int flags = 0;
381
382         is_new = atoi(bstr("is_new"));
383
384         if (strlen(bstr("ok_button")) == 0) {
385                 safestrncpy(message, _("Changes were not saved."), sizeof message);
386         }
387         else {
388                 flags = atoi(bstr("flags"));
389                 if (!strcasecmp(bstr("inetmail"), "yes")) {
390                         flags |= US_INTERNET;
391                 }
392                 else {
393                         flags &= ~US_INTERNET ;
394                 }
395
396                 serv_printf("ASUP %s|%s|%d|%s|%s|%s|%s|%s|%s|",
397                         bstr("username"),
398                         bstr("password"),
399                         flags,
400                         bstr("timescalled"),
401                         bstr("msgsposted"),
402                         bstr("axlevel"),
403                         bstr("usernum"),
404                         bstr("lastcall"),
405                         bstr("purgedays")
406                 );
407                 serv_getln(buf, sizeof buf);
408                 if (buf[0] != '2') {
409                         sprintf(message,
410                                 "<img src=\"static/error.gif\" ALIGN=CENTER>"
411                                 "%s<br /><br />\n", &buf[4]);
412                 }
413                 else {
414                         safestrncpy(message, "", sizeof message);
415                 }
416         }
417
418         /* If we are in the middle of creating a new user, move on to
419          * the vCard edit screen.
420          */
421         if (is_new) {
422                 display_edit_address_book_entry( bstr("username"), atol(bstr("usernum")) );
423         }
424         else {
425                 select_user_to_edit(message, bstr("username"));
426         }
427 }
428
429
430 void delete_user(char *username) {
431         char buf[SIZ];
432         char message[SIZ];
433
434         serv_printf("ASUP %s|0|0|0|0|0|", username);
435         serv_getln(buf, sizeof buf);
436         if (buf[0] != '2') {
437                 sprintf(message,
438                         "<img src=\"static/error.gif\" ALIGN=CENTER>"
439                         "%s<br /><br />\n", &buf[4]);
440         }
441         else {
442                 safestrncpy(message, "", sizeof message);
443         }
444         select_user_to_edit(message, bstr("username"));
445 }
446                 
447
448
449
450 void create_user(void) {
451         char buf[SIZ];
452         char error_message[SIZ];
453         char username[SIZ];
454
455         safestrncpy(username, bstr("username"), sizeof username);
456
457         serv_printf("CREU %s", username);
458         serv_getln(buf, sizeof buf);
459
460         if (buf[0] == '2') {
461                 sprintf(WC->ImportantMessage,
462                         _("A new user has been created."));
463                 display_edituser(username, 1);
464         }
465         else {
466                 sprintf(error_message,
467                         "<img src=\"static/error.gif\" ALIGN=CENTER>"
468                         "%s<br /><br />\n", &buf[4]);
469                 select_user_to_edit(error_message, NULL);
470         }
471
472 }
473