* Finished the thing to edit other users' vCards.
[citadel.git] / webcit / useredit.c
1 /*
2  * Administrative screen to add/change/delete user accounts
3  *
4  */
5
6
7 #include <ctype.h>
8 #include <stdlib.h>
9 #include <unistd.h>
10 #include <stdio.h>
11 #include <fcntl.h>
12 #include <signal.h>
13 #include <sys/types.h>
14 #include <sys/wait.h>
15 #include <sys/socket.h>
16 #include <sys/time.h>
17 #include <limits.h>
18 #include <netinet/in.h>
19 #include <netdb.h>
20 #include <string.h>
21 #include <pwd.h>
22 #include <errno.h>
23 #include <stdarg.h>
24 #include <pthread.h>
25 #include <signal.h>
26 #include "webcit.h"
27 #include "webserver.h"
28
29
30
31
32
33 void select_user_to_edit(char *message)
34 {
35         char buf[SIZ];
36         char username[SIZ];
37
38         output_headers(3);      /* No room banner on this screen */
39
40         if (message != NULL) wprintf(message);
41
42         wprintf("<TABLE WIDTH=100%% BORDER=0 BGCOLOR=007700><TR><TD>");
43         wprintf("<FONT SIZE=+1 COLOR=\"FFFFFF\"<B>"
44                 "Add/change/delete user accounts"
45                 "</B></FONT></TD></TR></TABLE>\n");
46
47         wprintf("<TABLE border=0 CELLSPACING=10><TR VALIGN=TOP>"
48                 "<TD>To edit an existing user account, select the user "
49                 "name from the list and click 'Edit'.<BR><BR>");
50         
51         wprintf("<CENTER><FORM METHOD=\"POST\" ACTION=\"/display_edituser\">\n");
52         wprintf("<SELECT NAME=\"username\" SIZE=10>\n");
53         serv_puts("LIST");
54         serv_gets(buf);
55         if (buf[0] == '1') {
56                 while (serv_gets(buf), strcmp(buf, "000")) {
57                         extract(username, buf, 0);
58                         wprintf("<OPTION>");
59                         escputs(username);
60                         wprintf("\n");
61                 }
62         }
63         wprintf("</SELECT><BR>\n");
64
65         wprintf("<input type=submit name=sc value=\"Edit configuration\">");
66         wprintf("<input type=submit name=sc value=\"Edit address book entry\">");
67         wprintf("</FORM></CENTER>\n");
68
69         wprintf("</TD><TD>"
70                 "To create a new user account, enter the desired "
71                 "user name in the box below and click 'Create'.<BR><BR>");
72
73         wprintf("<CENTER><FORM METHOD=\"POST\" ACTION=\"/create_user\">\n");
74         wprintf("New user: ");
75         wprintf("<input type=text name=username><BR>\n"
76                 "<input type=submit value=\"Create\">"
77                 "</FORM></CENTER>\n");
78
79         wprintf("</TD></TR></TABLE>\n");
80
81         wDumpContent(1);
82 }
83
84
85
86 /* 
87  * Display the form for editing a user's address book entry
88  */
89 void display_edit_address_book_entry(char *username, long usernum) {
90         char roomname[SIZ];
91         char buf[SIZ];
92         char error_message[SIZ];
93         long vcard_msgnum = (-1L);
94         char content_type[SIZ];
95         char partnum[SIZ];
96         int already_tried_creating_one = 0;
97
98         struct stuff_t {
99                 struct stuff_t *next;
100                 long msgnum;
101         };
102
103         struct stuff_t *stuff = NULL;
104         struct stuff_t *ptr;
105
106
107         /* Locate the user's config room, creating it if necessary */
108         sprintf(roomname, "%010ld.My Citadel Config", usernum);
109         serv_printf("GOTO %s", roomname);
110         serv_gets(buf);
111         if (buf[0] != '2') {
112                 serv_printf("CRE8 1|%s|5|", roomname);
113                 serv_gets(buf);
114                 serv_printf("GOTO %s", roomname);
115                 serv_gets(buf);
116                 if (buf[0] != '2') {
117                         sprintf(error_message,
118                                 "<IMG SRC=\"static/error.gif\" VALIGN=CENTER>"
119                                 "%s<BR><BR>\n", &buf[4]);
120                         select_user_to_edit(error_message);
121                         return;
122                 }
123         }
124
125 TRYAGAIN:
126         /* Search for the user's vCard */
127         serv_puts("MSGS ALL");
128         serv_gets(buf);
129         if (buf[0] == '1') while (serv_gets(buf), strcmp(buf, "000")) {
130                 ptr = malloc(sizeof(struct stuff_t));
131                 ptr->msgnum = atol(buf);
132                 ptr->next = stuff;
133                 stuff = ptr;
134         }
135
136         /* Iterate throught the message list looking for vCards */
137         while (stuff != NULL) {
138                 serv_printf("MSG0 %ld|2", stuff->msgnum);
139                 serv_gets(buf);
140                 if (buf[0]=='1') {
141                         while(serv_gets(buf), strcmp(buf, "000")) {
142                                 if (!strncasecmp(buf, "part=", 5)) {
143                                         extract(partnum, &buf[5], 2);
144                                         extract(content_type, &buf[5], 4);
145                                         if (!strcasecmp(content_type,
146                                            "text/x-vcard")) {
147                                                 vcard_msgnum = stuff->msgnum;
148                                         }
149                                 }
150                         }
151                 }
152
153                 ptr = stuff->next;
154                 free(stuff);
155                 stuff = ptr;
156         }
157
158         lprintf(9, "vcard_msgnum == %ld\n", vcard_msgnum);
159
160         /* If there's no vcard, create one */
161         if (vcard_msgnum < 0) if (already_tried_creating_one == 0) {
162                 already_tried_creating_one = 1;
163                 serv_puts("ENT0 1|||4");
164                 serv_gets(buf);
165                 if (buf[0] == '4') {
166                         serv_puts("Content-type: text/x-vcard");
167                         serv_puts("");
168                         serv_puts("begin:vcard");
169                         serv_puts("end:vcard");
170                         serv_puts("000");
171                 }
172                 goto TRYAGAIN;
173         }
174
175         if (vcard_msgnum < 0) {
176                 sprintf(error_message,
177                         "<IMG SRC=\"static/error.gif\" VALIGN=CENTER>"
178                         "Could not create/edit vCard<BR><BR>\n");
179                 select_user_to_edit(error_message);
180                 return;
181         }
182
183         do_edit_vcard(vcard_msgnum, "1", "/select_user_to_edit");
184 }
185
186
187
188
189 /*
190  * Edit a user.  If supplied_username is null, look in the "username"
191  * web variable for the name of the user to edit.
192  */
193 void display_edituser(char *supplied_username) {
194         char buf[SIZ];
195         char error_message[SIZ];
196         time_t now;
197
198         char username[SIZ];
199         char password[SIZ];
200         unsigned int flags;
201         int timescalled;
202         int msgsposted;
203         int axlevel;
204         long usernum;
205         time_t lastcall;
206         int purgedays;
207         int i;
208
209         if (supplied_username != NULL) {
210                 strcpy(username, supplied_username);
211         }
212         else {
213                 strcpy(username, bstr("username") );
214         }
215
216         serv_printf("AGUP %s", username);
217         serv_gets(buf);
218         if (buf[0] != '2') {
219                 sprintf(error_message,
220                         "<IMG SRC=\"static/error.gif\" VALIGN=CENTER>"
221                         "%s<BR><BR>\n", &buf[4]);
222                 select_user_to_edit(error_message);
223                 return;
224         }
225
226         extract(username, &buf[4], 0);
227         extract(password, &buf[4], 1);
228         flags = extract_int(&buf[4], 2);
229         timescalled = extract_int(&buf[4], 3);
230         msgsposted = extract_int(&buf[4], 4);
231         axlevel = extract_int(&buf[4], 5);
232         usernum = extract_long(&buf[4], 6);
233         lastcall = extract_long(&buf[4], 7);
234         purgedays = extract_long(&buf[4], 8);
235
236         if (!strcmp(bstr("sc"), "Edit address book entry")) {
237                 display_edit_address_book_entry(username, usernum);
238                 return;
239         }
240
241         output_headers(3);      /* No room banner on this screen */
242         wprintf("<TABLE WIDTH=100%% BORDER=0 BGCOLOR=007700><TR><TD>");
243         wprintf("<FONT SIZE=+1 COLOR=\"FFFFFF\"<B>"
244                 "Edit user account: ");
245         escputs(username);
246         wprintf("</B></FONT></TD></TR></TABLE>\n");
247
248         wprintf("<FORM METHOD=\"POST\" ACTION=\"/edituser\">\n"
249                 "<INPUT TYPE=\"hidden\" NAME=\"username\" VALUE=\"");
250         escputs(username);
251         wprintf("\">\n");
252
253         wprintf("<INPUT TYPE=\"hidden\" NAME=\"flags\" VALUE=\"%d\">\n", flags);
254
255         wprintf("<CENTER><TABLE>");
256
257         wprintf("<TR><TD>Password</TD><TD>"
258                 "<INPUT TYPE=\"password\" NAME=\"password\" VALUE=\"");
259         escputs(password);
260         wprintf("\" MAXLENGTH=\"20\"></TD></TR>\n");
261
262         wprintf("<TR><TD>Times logged in</TD><TD>"
263                 "<INPUT TYPE=\"text\" NAME=\"timescalled\" VALUE=\"");
264         wprintf("%d", timescalled);
265         wprintf("\" MAXLENGTH=\"6\"></TD></TR>\n");
266
267         wprintf("<TR><TD>Messages posted</TD><TD>"
268                 "<INPUT TYPE=\"text\" NAME=\"msgsposted\" VALUE=\"");
269         wprintf("%d", msgsposted);
270         wprintf("\" MAXLENGTH=\"6\"></TD></TR>\n");
271
272         wprintf("<TR><TD>Access level</TD><TD>"
273                 "<SELECT NAME=\"axlevel\">\n");
274         for (i=0; i<7; ++i) {
275                 wprintf("<OPTION ");
276                 if (axlevel == i) {
277                         wprintf("SELECTED ");
278                 }
279                 wprintf("VALUE=\"%d\">%d - %s</OPTION>\n",
280                         i, i, axdefs[i]);
281         }
282         wprintf("</SELECT></TD></TR>\n");
283
284         wprintf("<TR><TD>User ID number</TD><TD>"
285                 "<INPUT TYPE=\"text\" NAME=\"usernum\" VALUE=\"");
286         wprintf("%ld", usernum);
287         wprintf("\" MAXLENGTH=\"7\"></TD></TR>\n");
288
289         now = time(NULL);
290         wprintf("<TR><TD>Date/time of last login</TD><TD>"
291                 "<SELECT NAME=\"lastcall\">\n");
292
293         wprintf("<OPTION SELECTED VALUE=\"%ld\">", lastcall);
294         escputs(asctime(localtime(&lastcall)));
295         wprintf("</OPTION>\n");
296
297         wprintf("<OPTION VALUE=\"%ld\">", now);
298         escputs(asctime(localtime(&now)));
299         wprintf("</OPTION>\n");
300
301         wprintf("</SELECT></TD></TR>");
302
303         wprintf("<TR><TD>Auto-purge after days</TD><TD>"
304                 "<INPUT TYPE=\"text\" NAME=\"purgedays\" VALUE=\"");
305         wprintf("%d", purgedays);
306         wprintf("\" MAXLENGTH=\"5\"></TD></TR>\n");
307
308         wprintf("</TABLE>\n");
309
310         wprintf("<INPUT type=\"submit\" NAME=\"action\" VALUE=\"OK\">\n"
311                 "<INPUT type=\"submit\" NAME=\"action\" VALUE=\"Cancel\">\n"
312                 "<BR><BR></FORM>\n");
313
314         wprintf("<A HREF=\"/dotgoto&room=%010ld.My%%20Citadel%%20Config\">",
315                 usernum);
316         wprintf("Click here to access the configuration room for ");
317         escputs(username);
318         wprintf("</A><BR>\n"
319                 "(Contact information, Internet e-mail addresses, etc.)<BR>"
320                 "</CENTER>\n");
321
322         wDumpContent(1);
323
324 }
325
326
327
328 void edituser(void) {
329         char message[SIZ];
330         char buf[SIZ];
331
332         if (strcasecmp(bstr("action"), "OK")) {
333                 strcpy(message, "Edit user cancelled.");
334         }
335
336         else {
337
338                 serv_printf("ASUP %s|%s|%s|%s|%s|%s|%s|%s|%s|",
339                         bstr("username"),
340                         bstr("password"),
341                         bstr("flags"),
342                         bstr("timescalled"),
343                         bstr("msgsposted"),
344                         bstr("axlevel"),
345                         bstr("usernum"),
346                         bstr("lastcall"),
347                         bstr("purgedays")
348                 );
349                 serv_gets(buf);
350                 if (buf[0] != '2') {
351                         sprintf(message,
352                                 "<IMG SRC=\"static/error.gif\" VALIGN=CENTER>"
353                                 "%s<BR><BR>\n", &buf[4]);
354                 }
355                 else {
356                         strcpy(message, "");
357                 }
358         }
359
360         select_user_to_edit(message);
361 }
362
363
364
365
366 void create_user(void) {
367         char buf[SIZ];
368         char error_message[SIZ];
369         char username[SIZ];
370
371         strcpy(username, bstr("username"));
372
373         serv_printf("CREU %s", username);
374         serv_gets(buf);
375
376         if (buf[0] == '2') {
377                 display_edituser(username);
378         }
379         else {
380                 sprintf(error_message,
381                         "<IMG SRC=\"static/error.gif\" VALIGN=CENTER>"
382                         "%s<BR><BR>\n", &buf[4]);
383                 select_user_to_edit(error_message);
384         }
385
386 }
387