user_settings.php 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430
  1. <?php
  2. /*
  3. FusionPBX
  4. Version: MPL 1.1
  5. The contents of this file are subject to the Mozilla Public License Version
  6. 1.1 (the "License"); you may not use this file except in compliance with
  7. the License. You may obtain a copy of the License at
  8. http://www.mozilla.org/MPL/
  9. Software distributed under the License is distributed on an "AS IS" basis,
  10. WITHOUT WARRANTY OF ANY KIND, either express or implied. See the License
  11. for the specific language governing rights and limitations under the
  12. License.
  13. The Original Code is FusionPBX
  14. The Initial Developer of the Original Code is
  15. Mark J Crane <[email protected]>
  16. Portions created by the Initial Developer are Copyright (C) 2008-2024
  17. the Initial Developer. All Rights Reserved.
  18. Contributor(s):
  19. Mark J Crane <[email protected]>
  20. */
  21. //includes files
  22. require_once dirname(__DIR__, 2) . "/resources/require.php";
  23. require_once "resources/check_auth.php";
  24. require_once "resources/paging.php";
  25. //check permissions
  26. if (permission_exists('user_setting_view')) {
  27. //access granted
  28. }
  29. else {
  30. echo "access denied";
  31. exit;
  32. }
  33. //connect to the database
  34. $database = new database;
  35. //add multi-lingual support
  36. $language = new text;
  37. $text = $language->get();
  38. //action add or update
  39. if (!empty($_REQUEST["id"]) && is_uuid($_REQUEST["id"])) {
  40. $action = "update";
  41. $user_uuid = $_REQUEST["id"];
  42. $id = $_REQUEST["id"];
  43. }
  44. else {
  45. $action = "add";
  46. }
  47. //get the http post data
  48. if (!empty($_POST['action'])) {
  49. $action = $_POST['action'] ?? '';
  50. $user_uuid = $_POST['user_uuid'] ?? '';
  51. $user_settings = $_POST['user_settings'] ?? '';
  52. //process the http post data by action
  53. if (!empty($user_settings)) {
  54. switch ($action) {
  55. case 'toggle':
  56. if (permission_exists('user_setting_edit')) {
  57. $obj = new user_settings;
  58. $obj->user_uuid = $user_uuid;
  59. $obj->toggle($user_settings);
  60. }
  61. break;
  62. case 'delete':
  63. if (permission_exists('user_setting_delete')) {
  64. $obj = new user_settings;
  65. $obj->user_uuid = $user_uuid;
  66. $obj->delete($user_settings);
  67. }
  68. break;
  69. }
  70. }
  71. //redirect
  72. header('Location: '.PROJECT_PATH.'/core/users/user_edit.php?id='.urlencode($user_uuid));
  73. exit;
  74. }
  75. /*
  76. //toggle setting enabled
  77. if (
  78. is_uuid($_REQUEST["user_id"]) &&
  79. is_array($_REQUEST["id"]) &&
  80. !empty($_REQUEST["id"]) &&
  81. ($_REQUEST['enabled'] === 'true' || $_REQUEST['enabled'] === 'false')
  82. ) {
  83. //get input
  84. $user_setting_uuids = $_REQUEST["id"];
  85. $enabled = $_REQUEST['enabled'];
  86. //update setting
  87. $array['user_settings'][0]['user_setting_uuid'] = $user_setting_uuids[0];
  88. $array['user_settings'][0]['user_setting_enabled'] = $enabled;
  89. $database->app_name = 'user_settings';
  90. $database->app_uuid = '3a3337f7-78d1-23e3-0cfd-f14499b8ed97';
  91. $database->save($array);
  92. unset($array);
  93. //redirect
  94. message::add($text['message-update']);
  95. header("Location: /core/users/user_edit.php?id=".$_REQUEST["user_id"]);
  96. exit;
  97. }
  98. */
  99. //get the variables
  100. $order_by = $_GET["order_by"] ?? '';
  101. $order = $_GET["order"] ?? '';
  102. //set from session variables
  103. $list_row_edit_button = !empty($_SESSION['theme']['list_row_edit_button']['boolean']) ? $_SESSION['theme']['list_row_edit_button']['boolean'] : 'false';
  104. $button_icon_back = !empty($_SESSION['theme']['button_icon_back']) ? $_SESSION['theme']['button_icon_back'] : '';
  105. $button_icon_add = !empty($_SESSION['theme']['button_icon_add']) ? $_SESSION['theme']['button_icon_add'] : '';
  106. $button_icon_copy = !empty($_SESSION['theme']['button_icon_copy']) ? $_SESSION['theme']['button_icon_copy'] : '';
  107. $button_icon_toggle = !empty($_SESSION['theme']['button_icon_toggle']) ? $_SESSION['theme']['button_icon_toggle'] : '';
  108. $button_icon_all = !empty($_SESSION['theme']['button_icon_all']) ? $_SESSION['theme']['button_icon_all'] : '';
  109. $button_icon_delete = !empty($_SESSION['theme']['button_icon_delete']) ? $_SESSION['theme']['button_icon_delete'] : '';
  110. $button_icon_search = !empty($_SESSION['theme']['button_icon_search']) ? $_SESSION['theme']['button_icon_search'] : '';
  111. $button_icon_edit = !empty($_SESSION['theme']['button_icon_edit']) ? $_SESSION['theme']['button_icon_edit'] : '';
  112. $button_icon_reset = !empty($_SESSION['theme']['button_icon_reset']) ? $_SESSION['theme']['button_icon_reset'] : '';
  113. //prepare to page the results
  114. $sql = "select count(*) from v_user_settings ";
  115. $sql .= "where user_uuid = :user_uuid ";
  116. $sql .= "and not ( ";
  117. $sql .= "(user_setting_category = 'domain' and user_setting_subcategory = 'language') ";
  118. $sql .= "or (user_setting_category = 'domain' and user_setting_subcategory = 'time_zone') ";
  119. $sql .= ") ";
  120. $parameters['user_uuid'] = $user_uuid;
  121. $num_rows = $database->select($sql, $parameters, 'column');
  122. unset($sql);
  123. //prepare to page the results
  124. $rows_per_page = (!empty($_SESSION['domain']['paging']['numeric'])) ? $_SESSION['domain']['paging']['numeric'] : 100;
  125. $param = '';
  126. $paging_controls = '';
  127. if (isset($_GET['page'])) {
  128. $page = $_GET['page'];
  129. if (empty($page)) { $page = 0; $_GET['page'] = 0; }
  130. list($paging_controls, $rows_per_page) = paging($num_rows, $param, $rows_per_page);
  131. $offset = $rows_per_page * $page;
  132. }
  133. else {
  134. $offset = 0;
  135. }
  136. //get the list
  137. $sql = "select user_setting_uuid, user_uuid, user_setting_category, user_setting_subcategory, user_setting_name, user_setting_value, cast(user_setting_enabled as text), user_setting_description ";
  138. $sql .= "from v_user_settings ";
  139. $sql .= "where user_uuid = :user_uuid ";
  140. $sql .= "and not ( ";
  141. $sql .= " (user_setting_category = 'domain' and user_setting_subcategory = 'language') ";
  142. $sql .= " or (user_setting_category = 'domain' and user_setting_subcategory = 'time_zone') ";
  143. $sql .= ") ";
  144. if (!empty($order_by)) {
  145. $sql .= "order by user_setting_category, user_setting_subcategory, user_setting_order asc ";
  146. }
  147. else {
  148. $sql .= order_by($order_by, $order);
  149. }
  150. $sql .= limit_offset($rows_per_page, $offset);
  151. $parameters['user_uuid'] = $user_uuid;
  152. $user_settings = $database->select($sql, $parameters, 'all');
  153. unset($sql, $sql_where, $parameters);
  154. //create token
  155. $object = new token;
  156. $token = $object->create('/core/user_settings/user_settings.php');
  157. //include the header
  158. $document['title'] = $text['title-user_settings'];
  159. require_once "resources/header.php";
  160. //show the content
  161. echo "<div class='action_bar' id='action_bar_sub'>\n";
  162. echo " <div class='heading'><b id='heading_sub'>".$text['title-user_settings']."</b></div>\n";
  163. echo " <div class='actions'>\n";
  164. if (permission_exists('user_add') || permission_exists('user_edit')) {
  165. echo button::create(['type'=>'button','label'=>$text['button-back'],'icon'=>$_SESSION['theme']['button_icon_back'],'id'=>'btn_back','link'=>'/core/users/user_edit.php?id='.$user_uuid]);
  166. }
  167. echo button::create(['type'=>'button','id'=>'action_bar_sub_button_back','label'=>$text['button-back'],'icon'=>$button_icon_back,'style'=>'margin-right: 15px; display: none;','link'=>'users.php']);
  168. if (permission_exists('user_setting_add')) {
  169. echo button::create(['type'=>'button','label'=>$text['button-add'],'icon'=>$button_icon_add,'id'=>'btn_add','link'=>PROJECT_PATH.'/core/user_settings/user_setting_edit.php?user_uuid='.urlencode($_GET['id'])]);
  170. }
  171. if (permission_exists('user_setting_edit') && $user_settings) {
  172. echo button::create(['type'=>'button','label'=>$text['button-toggle'],'icon'=>$button_icon_toggle,'name'=>'btn_toggle','onclick'=>"modal_open('modal-toggle','btn_toggle');"]);
  173. }
  174. if (permission_exists('user_setting_delete') && $user_settings) {
  175. echo button::create(['type'=>'button','label'=>$text['button-delete'],'icon'=>$button_icon_delete,'name'=>'btn_delete','onclick'=>"modal_open('modal-delete','btn_delete');"]);
  176. }
  177. echo " </div>\n";
  178. echo " <div style='clear: both;'></div>\n";
  179. echo "</div>\n";
  180. if (permission_exists('user_setting_edit') && $user_settings) {
  181. echo modal::create(['id'=>'modal-toggle','type'=>'toggle','actions'=>button::create(['type'=>'button','label'=>$text['button-continue'],'icon'=>'check','id'=>'btn_toggle','style'=>'float: right; margin-left: 15px;','collapse'=>'never','onclick'=>"modal_close(); list_action_set('toggle'); list_form_submit('form_list');"])]);
  182. }
  183. if (permission_exists('user_setting_delete') && $user_settings) {
  184. echo modal::create(['id'=>'modal-delete','type'=>'delete','actions'=>button::create(['type'=>'button','label'=>$text['button-continue'],'icon'=>'check','id'=>'btn_delete','style'=>'float: right; margin-left: 15px;','collapse'=>'never','onclick'=>"modal_close(); list_action_set('delete'); list_form_submit('form_list');"])]);
  185. }
  186. echo $text['title_description-user_settings']."\n";
  187. echo "<br /><br />\n";
  188. echo "<form id='form_list' method='post' action='/core/user_settings/user_settings.php'>\n";
  189. echo "<input type='hidden' name='action' id='action' value=''>\n";
  190. echo "<input type='hidden' name='user_uuid' value='".$user_uuid."'>\n";
  191. if (!empty($user_settings)) {
  192. $previous_user_setting_category = '';
  193. $x = 0;
  194. foreach ($user_settings as $row) {
  195. $user_setting_category = strtolower($row['user_setting_category']);
  196. $label_user_setting_category = $row['user_setting_category'];
  197. switch (strtolower($label_user_setting_category)) {
  198. case "api" : $label_user_setting_category = "API"; break;
  199. case "cdr" : $label_user_setting_category = "CDR"; break;
  200. case "ldap" : $label_user_setting_category = "LDAP"; break;
  201. case "ivr_menu" : $label_user_setting_category = "IVR Menu"; break;
  202. default:
  203. $label_user_setting_category = str_replace("_", " ", $label_user_setting_category);
  204. $label_user_setting_category = str_replace("-", " ", $label_user_setting_category);
  205. $label_user_setting_category = ucwords($label_user_setting_category);
  206. }
  207. if ($previous_user_setting_category != $row['user_setting_category']) {
  208. if (!empty($previous_user_setting_category)) {
  209. echo "</table>\n";
  210. echo "</div>\n";
  211. echo "</div>\n";
  212. }
  213. echo "<div class='category' id='category_".$user_setting_category."'>\n";
  214. echo "<b>".escape($label_user_setting_category)."</b><br>\n";
  215. echo "<div class='card'>\n";
  216. echo "<table class='list'>\n";
  217. echo "<tr class='list-header'>\n";
  218. if (permission_exists('user_setting_add') || permission_exists('user_setting_edit') || permission_exists('user_setting_delete')) {
  219. echo " <th class='checkbox'>\n";
  220. echo " <input type='checkbox' id='checkbox_all_".$user_setting_category."' name='checkbox_all' onclick=\"list_all_toggle('".$user_setting_category."');\">\n";
  221. echo " </th>\n";
  222. }
  223. echo "<th class='pct-35'>".$text['label-subcategory']."</th>";
  224. echo "<th class='pct-10 hide-sm-dn'>".$text['label-type']."</th>";
  225. echo "<th class='pct-30'>".$text['label-value']."</th>";
  226. echo "<th class='center'>".$text['label-enabled']."</th>";
  227. echo "<th class='pct-25 hide-sm-dn'>".$text['label-description']."</th>";
  228. if (permission_exists('user_setting_edit') && $list_row_edit_button == 'true') {
  229. echo " <td class='action-button'>&nbsp;</td>\n";
  230. }
  231. echo "</tr>\n";
  232. }
  233. if (permission_exists('user_setting_edit')) {
  234. $list_row_url = PROJECT_PATH."/core/user_settings/user_setting_edit.php?user_uuid=".$row['user_uuid']."&id=".$row['user_setting_uuid'];
  235. }
  236. echo "<tr class='list-row' href='".$list_row_url."'>\n";
  237. if (permission_exists('user_setting_add') || permission_exists('user_setting_edit') || permission_exists('user_setting_delete')) {
  238. echo " <td class='checkbox'>\n";
  239. echo " <input type='checkbox' name='user_settings[$x][checked]' id='checkbox_".$x."' class='checkbox_".$user_setting_category."' value='true' onclick=\"if (!this.checked) { document.getElementById('checkbox_all_".$user_setting_category."').checked = false; }\">\n";
  240. echo " <input type='hidden' name='user_settings[$x][uuid]' value='".escape($row['user_setting_uuid'])."' />\n";
  241. echo " </td>\n";
  242. }
  243. echo " <td class='overflow no-wrap'>";
  244. if (permission_exists('user_setting_edit')) {
  245. echo " <a href='".$list_row_url."'>".escape($row['user_setting_subcategory'])."</a>";
  246. }
  247. else {
  248. echo escape($row['user_setting_subcategory']);
  249. }
  250. echo " </td>\n";
  251. $setting_types = ['Array','Boolean','Code','Dir','Name','Numeric','Text','UUID'];
  252. echo " <td class='hide-sm-dn'>".$setting_types[array_search(strtolower($row['user_setting_name']), array_map('strtolower',$setting_types))]."</td>\n";
  253. echo " <td class='overflow no-wrap'>\n";
  254. $category = $row['user_setting_category'];
  255. $subcategory = $row['user_setting_subcategory'];
  256. $name = $row['user_setting_name'];
  257. if ($category == "domain" && $subcategory == "menu" && $name == "uuid" ) {
  258. $sql = "select * from v_menus ";
  259. $sql .= "where menu_uuid = :menu_uuid ";
  260. $parameters['menu_uuid'] = $row['user_setting_value'];
  261. $sub_result = $database->select($sql, $parameters, 'all');
  262. if (!empty($sub_result)) {
  263. foreach ($sub_result as $sub_row) {
  264. echo escape($sub_row["menu_language"])." - ".escape($sub_row["menu_name"])."\n";
  265. }
  266. }
  267. unset($sql, $parameters, $sub_result, $sub_row);
  268. }
  269. else if ($category == "domain" && $subcategory == "template" && $name == "name" ) {
  270. echo " ".ucwords($row['user_setting_value']);
  271. }
  272. else if ($category == "domain" && $subcategory == "time_format" && $name == "text" ) {
  273. switch ($row['user_setting_value']) {
  274. case '12h': echo $text['label-12-hour']; break;
  275. case '24h': echo $text['label-24-hour']; break;
  276. }
  277. }
  278. else if (
  279. ( $category == "theme" && $subcategory == "menu_main_icons" && $name == "boolean" ) ||
  280. ( $category == "theme" && $subcategory == "menu_sub_icons" && $name == "boolean" ) ||
  281. ( $category == "theme" && $subcategory == "menu_brand_type" && $name == "text" ) ||
  282. ( $category == "theme" && $subcategory == "menu_style" && $name == "text" ) ||
  283. ( $category == "theme" && $subcategory == "menu_position" && $name == "text" ) ||
  284. ( $category == "theme" && $subcategory == "body_header_brand_type" && $name == "text" ) ||
  285. ( $category == "theme" && $subcategory == "logo_align" && $name == "text" )
  286. ) {
  287. echo " ".$text['label-'.escape($row['user_setting_value'])];
  288. }
  289. else if ($subcategory == 'password' || substr_count($subcategory, '_password') > 0 || substr_count($subcategory, '_key') || substr_count($subcategory, '_secret') > 0) {
  290. echo " ".str_repeat('*', strlen(escape($row['user_setting_value'])));
  291. }
  292. else if ($category == 'theme' && $subcategory == 'button_icons' && $name == 'text') {
  293. echo " ".$text['option-button_icons_'.$row['user_setting_value']]."\n";
  294. }
  295. else if ($category == 'theme' && $subcategory == 'menu_side_state' && $name == 'text') {
  296. echo " ".$text['option-'.$row['user_setting_value']]."\n";
  297. }
  298. else if ($category == 'theme' && $subcategory == 'menu_side_toggle' && $name == 'text') {
  299. echo " ".$text['option-'.$row['user_setting_value']]."\n";
  300. }
  301. else if ($category == 'theme' && $subcategory == 'menu_side_toggle_body_width' && $name == 'text') {
  302. echo " ".$text['option-'.$row['user_setting_value']]."\n";
  303. }
  304. else if ($category == 'theme' && $subcategory == 'input_toggle_style' && $name == 'text') {
  305. echo " ".$text['option-'.$row['user_setting_value']]."\n";
  306. }
  307. else if ($category == "theme" && substr_count($subcategory, "_color") > 0 && ($name == "text" || $name == 'array')) {
  308. echo " ".(img_spacer('15px', '15px', 'background: '.escape($row['user_setting_value']).'; margin-right: 4px; vertical-align: middle; border: 1px solid '.(color_adjust($row['user_setting_value'], -0.18)).'; padding: -1px;'));
  309. echo "<span style=\"font-family: 'Courier New'; line-height: 6pt;\">".escape($row['user_setting_value'])."</span>\n";
  310. }
  311. else if ($category == 'users' && $subcategory == 'username_format' && $name == 'text') {
  312. echo " ".$text['option-username_format_'.$row['user_setting_value']]."\n";
  313. }
  314. else if ($category == 'recordings' && $subcategory == 'storage_type' && $name == 'text') {
  315. echo " ".$text['label-'.$row['user_setting_value']]."\n";
  316. }
  317. else if ($category == 'destinations' && $subcategory == 'dialplan_mode' && $name == 'text') {
  318. echo " ".$text['label-'.$row['user_setting_value']]."\n";
  319. }
  320. else if ($category == 'destinations' && $subcategory == 'select_mode' && $name == 'text') {
  321. echo " ".$text['label-'.$row['user_setting_value']]."\n";
  322. }
  323. else if ($row['user_setting_value'] == 'true' || $row['user_setting_value'] == 'false') {
  324. echo " ".$text['label-'.$row['user_setting_value']]."\n";
  325. }
  326. else {
  327. if (!empty($row['user_setting_value']) && substr_count($row['user_setting_value'], "\n") > 0) {
  328. $lines = explode("\n", $row['user_setting_value']);
  329. if (!empty($lines) && is_array($lines) && @sizeof($lines) != 0) {
  330. foreach ($lines as $i => $line) {
  331. $lines[$i] = escape($line);
  332. }
  333. echo implode("<i class='fas fa-level-down-alt fa-rotate-90 fa-xs ml-2 mr-5' style='opacity: 0.3;'></i>", $lines);
  334. }
  335. unset($lines, $line);
  336. }
  337. else {
  338. echo escape($row['user_setting_value'])."\n";
  339. }
  340. }
  341. echo " </td>\n";
  342. if (permission_exists('user_setting_edit')) {
  343. echo " <td class='no-link center'>\n";
  344. echo button::create(['type'=>'submit','class'=>'link','label'=>$text['label-'.$row['user_setting_enabled']],'title'=>$text['button-toggle'],'onclick'=>"list_self_check('checkbox_".$x."'); list_action_set('toggle'); list_form_submit('form_list')"]);
  345. }
  346. else {
  347. echo " <td class='center'>\n";
  348. echo $text['label-'.$row['user_setting_enabled']];
  349. }
  350. echo " </td>\n";
  351. echo " <td class='description overflow hide-sm-dn' title=\"".escape($row['user_setting_description'])."\">".escape($row['user_setting_description'])."&nbsp;</td>\n";
  352. if (permission_exists('user_setting_edit') && $list_row_edit_button == 'true') {
  353. echo " <td class='action-button'>\n";
  354. echo button::create(['type'=>'button','title'=>$text['button-edit'],'icon'=>$button_icon_edit,'link'=>$list_row_url]);
  355. echo " </td>\n";
  356. }
  357. echo "</tr>\n";
  358. //set the previous category
  359. $previous_user_setting_category = $row['user_setting_category'];
  360. $x++;
  361. }
  362. }
  363. unset($user_settings);
  364. echo "</table>\n";
  365. echo "</div>\n";
  366. echo "</div>\n";
  367. echo "<br />\n";
  368. echo "<div align='center'>".$paging_controls."</div>\n";
  369. echo "<input type='hidden' name='".$token['name']."' value='".$token['hash']."'>\n";
  370. echo "</form>\n";
  371. //make sub action bar sticky
  372. echo "<script>\n";
  373. echo " window.addEventListener('scroll', function(){\n";
  374. echo " action_bar_scroll('action_bar_sub', 820, heading_modify, heading_restore);\n";
  375. echo " }, false);\n";
  376. echo " function heading_modify() {\n";
  377. echo " document.getElementById('action_bar_sub_button_back').style.display = 'inline-block';\n";
  378. echo " }\n";
  379. echo " function heading_restore() {\n";
  380. echo " document.getElementById('action_bar_sub_button_back').style.display = 'none';\n";
  381. echo " }\n";
  382. echo "</script>\n";
  383. //include the footer
  384. require_once "resources/footer.php";
  385. ?>