2 /*=====================================================================*\
3 || ################################################################### ||
4 || # BugStrike [#]version[#]
5 || # --------------------------------------------------------------- # ||
6 || # Copyright ©2002-[#]year[#] by Iris Studios, Inc. All Rights Reserved. # ||
7 || # This file may not be reproduced in any way without permission. # ||
8 || # --------------------------------------------------------------- # ||
9 || # User License Agreement at http://www.iris-studios.com/license/ # ||
10 || ################################################################### ||
11 \*=====================================================================*/
13 require_once('./global.php');
14 require_once('./includes/functions_datastore.php');
16 if (!can_perform('canadmingroups'))
21 // ###################################################################
23 if (empty($_REQUEST['do']))
25 $_REQUEST['do'] = 'modify';
28 // ###################################################################
30 if ($_REQUEST['do'] == 'kill')
32 if ($bugsys->in
['usergroupid'] < 7)
34 $admin->error(lang
::p('cant_delete_default_usergroup'));
37 $db->query("DELETE FROM " . TABLE_PREFIX
. "usergroup WHERE usergroupid = " . intval($bugsys->in
['usergroupid']));
38 $db->query("UPDATE " . TABLE_PREFIX
. "user SET usergroupid = 2 WHERE usergroupid = " . intval($bugsys->in
['usergroupid']));
43 $admin->redirect('usergroup.php?do=modify');
46 // ###################################################################
48 if ($_REQUEST['do'] == 'delete')
50 if ($bugsys->in
['usergroupid'] < 7)
52 $admin->error(lang
::p('cant_delete_default_usergroup'));
55 $admin->page_confirm(lang
::p('confirm_delete_usergroup'), 'usergroup.php?do=kill&usergroupid=' . intval($bugsys->in
['usergroupid']));
58 // ###################################################################
60 if ($_REQUEST['do'] == 'add' OR $_REQUEST['do'] == 'edit')
62 $add = (($_REQUEST['do'] == 'add') ? true
: false
);
63 $edit = (($_REQUEST['do'] == 'edit') ? true
: false
);
65 $admin->page_start((($add) ? lang
::p('new_usergroup') : lang
::p('edit_usergroup')));
67 $admin->form_start('usergroup.php', (($add) ?
'insert' : 'update'));
71 $usergroup = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "usergroup WHERE usergroupid = " . intval($bugsys->in
['usergroupid']));
72 if (!is_array($usergroup))
74 $admin->error(lang
::p('error_invalid_id'));
77 $admin->form_hidden_field('usergroupid', $usergroup['usergroupid']);
81 $usergroup['permissions'] = 319;
85 $admin->table_start();
86 $admin->table_head(lang
::p('usergroup_details'));
87 $admin->row_input(lang
::p('usergroup_title'), 'title', $bugsys->sanitize($usergroup['title']));
88 $admin->row_input(lang
::p('usergroup_display_title'), 'displaytitle', $bugsys->sanitize($usergroup['displaytitle']));
89 $admin->row_input(lang
::p('usergroup_open_markup'), 'opentag', $bugsys->sanitize($usergroup['opentag']));
90 $admin->row_input(lang
::p('usergroup_close_markup'), 'closetag', $bugsys->sanitize($usergroup['closetag']));
94 $admin->table_start();
96 // define permissions as groups
111 'moderation' => array(
127 $admin->table_head(lang
::p('usergroup_permission_settings'));
129 foreach ($permissions AS $group => $settings)
131 $admin->row_span(lang
::p("permissions_group_$group"), 'thead', 'center');
132 foreach ($settings AS $setting)
134 $admin->row_yesno(lang
::p("permissions_$setting"), "perm[$setting]", ($usergroup['permissions'] & $_PERMISSION["$setting"]));
140 // custom field permissions
141 $admin->table_start();
142 $admin->table_head('Custom Field Permissions');
146 $perms = $db->query("SELECT fieldid, mask FROM " . TABLE_PREFIX
. "bugfieldpermission WHERE usergroupid = $usergroup[usergroupid]");
147 while ($perm = $db->fetch_array($perms))
149 $permissions["$perm[fieldid]"] = $perm['mask'];
153 $fields = $db->query("SELECT fieldid, name FROM " . TABLE_PREFIX
. "bugfield ORDER BY fieldid");
154 while ($field = $db->fetch_array($fields))
157 $admin->list_item('No Permission', 0, $permissions["$field[fieldid]"] == 0);
158 $admin->list_item('Can View Field', 1, $permissions["$field[fieldid]"] == 1);
159 $admin->list_item('Can View, Edit Field', 2, $permissions["$field[fieldid]"] == 2);
160 $admin->row_list($field['name'], "custom[$field[fieldid]]");
166 $admin->table_start();
167 $admin->row_submit();
175 // ###################################################################
177 if ($_POST['do'] == 'insert')
179 foreach ($_POST['perm'] AS $permtitle => $binaryswitch)
181 $permissionvalue +
= $_PERMISSION["$permtitle"] * $binaryswitch;
185 INSERT INTO " . TABLE_PREFIX
. "usergroup
186 (title, displaytitle, opentag, closetag, permissions)
188 ('" . $bugsys->in
['title'] . "', '" . $bugsys->in
['displaytitle'] . "',
189 '" . $bugsys->in
['opentag'] . "', '" . $bugsys->in
['closetag'] . "',
194 $ugroupid = $db->insert_id();
198 foreach ($_POST['custom'] AS $fieldid => $mask)
200 $values[] = "$ugroupid, " . intval($fieldid) . ", " . intval($mask);
204 INSERT INTO " . TABLE_PREFIX
. "bugfieldpermission
205 (usergroupid, fieldid, mask)
207 (" . implode("\n\t\t\t", $values) . "
211 $admin->redirect('usergroup.php?do=modify');
214 // ###################################################################
216 if ($_POST['do'] == 'update')
218 foreach ($_POST['perm'] AS $permtitle => $binaryswitch)
220 $permissionvalue +
= $_PERMISSION["$permtitle"] * $binaryswitch;
224 UPDATE " . TABLE_PREFIX
. "usergroup
225 SET title = '" . $bugsys->in
['title'] . "',
226 displaytitle = '" . $bugsys->in
['displaytitle'] . "',
227 opentag = '" . $bugsys->unsanitize($bugsys->in
['opentag']) . "',
228 closetag = '" . $bugsys->unsanitize($bugsys->in
['closetag']) . "',
229 permissions = $permissionvalue
230 WHERE usergroupid = " . intval($bugsys->in
['usergroupid'])
236 $ugroupid = intval($bugsys->in
['usergroupid']);
237 foreach ($_POST['custom'] AS $fieldid => $mask)
239 $values[] = "$ugroupid, " . intval($fieldid) . ", " . intval($mask);
243 REPLACE INTO " . TABLE_PREFIX
. "bugfieldpermission
244 (usergroupid, fieldid, mask)
246 (" . implode("),\n\t\t\t(", $values) . ")"
250 $admin->redirect('usergroup.php?do=modify');
253 // ###################################################################
255 if ($_REQUEST['do'] == 'modify')
257 $admin->page_start(lang
::p('usergroup_manager'));
259 $admin->form_start('usergroup.php', 'null');
260 $admin->table_start();
261 $admin->table_head(lang
::p('usergroup_manager'), 3);
263 $groups = $db->query("SELECT * FROM " . TABLE_PREFIX
. "usergroup ORDER BY usergroupid ASC");
264 while ($group = $db->fetch_array($groups))
266 $usergroups["$group[usergroupid]"] = $group;
268 $db->free_result($groups);
270 $groups = $db->query("
271 SELECT COUNT(user.userid) AS total, user.usergroupid
272 FROM " . TABLE_PREFIX
. "user AS user
273 LEFT JOIN " . TABLE_PREFIX
. "usergroup AS usergroup USING (usergroupid)
274 GROUP BY usergroup.usergroupid
275 ORDER BY usergroup.usergroupid"
277 while ($group = $db->fetch_array($groups))
279 $usergroups["$group[usergroupid]"]['total'] = $group['total'];
282 $admin->table_column_head(array(lang
::p('usergroup'), lang
::p('number_of_users'), lang
::p('action')));
283 foreach ($usergroups AS $group)
285 $admin->row_multi_item(array("<a href=\"usergroup.php?do=edit&usergroupid=$group[usergroupid]\">$group[title]</a>" => 'l', ((!$group['total']) ?
'-' : $group['total']) => 'c', "<a href=\"usergroup.php?do=edit&usergroupid=$group[usergroupid]\">" . lang
::p('edit_wraplink') . "</a>" . (($group['usergroupid'] > 6) ?
"<a href=\"usergroup.php?do=delete&usergroupid=$group[usergroupid]\">" . lang
::p('delete_wraplink') . "</a>" : '') => 'c'));
288 $admin->row_span('<input type="button" name="addug" value=" ' . lang
::p('add_new_usergroup') . ' " onclick="window.location = \'usergroup.php?do=add\';" />', 'tfoot', 'center', 3);
295 /*=====================================================================*\
296 || ###################################################################
299 || ###################################################################
300 \*=====================================================================*/