642 lines
19 KiB
PHP
Raw Normal View History

2010-11-22 12:50:12 +00:00
<?php
2011-05-03 12:49:43 +00:00
class UserController extends Zend_Controller_Action
{
2011-05-03 15:58:48 +00:00
public function init()
{
require_once 'Scores/WsScores.php';
2011-05-23 10:04:12 +00:00
$this->view->headLink()->appendStylesheet('/themes/default/styles/user.css', 'all');
2011-05-03 15:58:48 +00:00
}
2011-05-03 12:49:43 +00:00
/**
* Affiche le fomulaire d'edition des paramètres utilisateur
*/
2010-11-22 12:50:12 +00:00
public function indexAction()
{
2012-05-20 16:31:28 +00:00
$user = new Scores_Utilisateur();
2012-02-29 09:10:51 +00:00
if (!$user->checkPerm('MONPROFIL')){
$this->_forward('perms', 'error');
}
$this->view->assign('device_type', $user->getBrowserInfo()->mobile);
$this->view->assign('browser_info', $user->getBrowserInfo()->name.' '.$user->getBrowserInfo()->version);
2011-05-23 06:45:29 +00:00
$this->view->headLink()->appendStylesheet('/themes/default/styles/form.css', 'all');
$this->view->headScript()->appendFile('/themes/default/scripts/user.js', 'text/javascript');
2011-05-03 12:49:43 +00:00
$request = $this->getRequest();
$messages = '';
$isProfilUpdated = false;
$isPasswordUpdated = false;
2011-05-03 12:49:43 +00:00
$updateResult = false;
2011-04-01 12:14:40 +00:00
$ws = new WsScores();
$login = $request->getParam('login', '');
$op = $request->getParam('op');
//Récupération des informations de l'identité
$auth = Zend_Auth::getInstance();
$identity = $auth->getIdentity();
//Save data
if ( $request->isPost() ) {
2011-05-03 12:49:43 +00:00
$options = $request->getParam('frmOptions', '');
$action = $options['action'];
2011-08-05 14:40:21 +00:00
if ($login=='') $login = $options['login'];
2011-05-03 12:49:43 +00:00
//Enregistrement des données new & update
if (in_array($action, array('new','update'))) {
2012-06-17 13:38:59 +00:00
2012-07-16 13:25:23 +00:00
if ($options['changepwd']!=1) {
$options['password'] = '';
2011-05-03 12:49:43 +00:00
}
if ( in_array($options['profil'], array('Administrateur', 'SuperAdministrateur'))
2013-06-15 08:25:30 +00:00
&& !in_array('monprofil', $options['droits']) ) {
$options['droits'][] = 'monprofil';
}
2012-07-16 13:25:23 +00:00
if( !isset($options['profil']) ) {
$options['profil'] = 'Utilisateur';
}
2012-06-17 13:38:59 +00:00
2012-07-16 13:25:23 +00:00
$reponse = $ws->setInfosLogin($login, $action, $options);
2011-05-03 12:49:43 +00:00
$isProfilUpdated = true;
$message = 'Erreur lors de la mise à jour du compte !';
if (is_string($reponse)) {
$message = $reponse;
} elseif ($reponse){
2011-05-03 12:49:43 +00:00
$updateResult = true;
$message = 'Compte mis à jour.';
}
}
//Write change in session
if ($identity->idClient == $options['idClient'] && $identity->username == $login) {
//Modification lors du changement de mot de passe
if ($options['changepwd']==1 && $updateResult) {
$identity->password = md5($login.'|'.$options['password']);
$auth->getStorage()->write($identity);
}
//Mise à jour du profil
if ($isProfilUpdated && $updateResult) {
2013-07-30 08:52:33 +00:00
$InfosLogin = $ws->getInfosLogin($identity->username, $_SERVER['REMOTE_ADDR']);
$identity = $user->updateProfil($InfosLogin);
$auth->getStorage()->write($identity);
}
//Gestion mode edition en SESSION
if ($action=='update') {
$modeEdition = $request->getParam('modeEdition', false);
if ( $modeEdition ) {
$identity->modeEdition = true;
$auth->getStorage()->write($identity);
}
}
}
}
if ( $isProfilUpdated || $isPasswordUpdated ) {
2011-05-03 12:49:43 +00:00
$this->view->assign('message', $message);
}
2011-02-21 08:45:13 +00:00
$isAdmin = false;
if ( $identity->profil == 'Administrateur'
|| $identity->profil == 'SuperAdministrateur' ) {
2011-02-21 08:45:13 +00:00
$isAdmin = true;
}
$this->view->assign('isAdmin', $isAdmin);
$isSuperAdmin = false;
if ($identity->profil == 'SuperAdministrateur') {
$isSuperAdmin = true;
}
$this->view->assign('isSuperAdmin', $isSuperAdmin);
if ($op=='new')
{
$idClient = $request->getParam('idClient', '');
if ($idClient == '') {
$idClient = $identity->idClient;
}
$reponse = $ws->getNextLogin($idClient);
2011-08-05 14:40:21 +00:00
$options->idClient = $idClient;
if ($identity->idClient!=1 && $identity->profil!='SuperAdministrateur') {
$options->profil = 'Utilisateur';
}
2011-08-05 14:40:21 +00:00
$this->view->assign('options', $options);
$this->view->assign('loginNew', $reponse->result->racine);
$this->view->assign('droitsClients', explode(' ', strtolower($reponse->result->droitsClients)));
2011-08-05 13:19:01 +00:00
$this->view->assign('action', 'new');
$this->view->assign('pref', array());
}
elseif (!empty($op) || $op!='new')
{
if ( !empty($login) && $identity->username != $login ) {
Zend_Registry::get('firebug')->info('getInfosLogin');
$reponse = $ws->getInfosLogin($login, $_SERVER['REMOTE_ADDR']);
$this->view->assign('options', $reponse->result);
$this->view->assign('loginVu', $reponse->result->login);
2011-08-05 13:43:39 +00:00
$this->view->assign('droits', explode(' ', strtolower($reponse->result->droits)));
$this->view->assign('droitsClients', explode(' ', strtolower($reponse->result->droitsClients)));
} else {
$this->view->assign('options', $identity);
$this->view->assign('loginVu', $identity->username);
2011-08-05 13:43:39 +00:00
$this->view->assign('droits', explode(' ', strtolower($identity->droits)));
$this->view->assign('droitsClients', explode(' ', strtolower($identity->droitsClients)));
}
2011-04-01 12:14:40 +00:00
$this->view->assign('loginNew', '');
2011-05-03 12:49:43 +00:00
$this->view->assign('action', 'update');
2011-04-01 12:14:40 +00:00
$this->view->assign('pref', explode(' ',$identity->pref));
}
//Liste des catégories des accès
$reponse = $ws->getCategory();
$wscategory = $reponse->item;
$this->view->assign('wscategory', $wscategory);
//Liste de tous les droits
$listeDroits = $ws->getListeDroits();
$droitsLib = array();
foreach($listeDroits->item as $droit) {
$droitsLib[strtoupper($droit->code)] = $droit->desc;
}
$this->view->assign('droitsLib', $droitsLib);
//Liste de toutes les préférences
$listePrefs = $ws->getListePrefs();
$prefsLib = array();
foreach($listePrefs->item as $pref) {
$prefsLib[strtoupper($pref->code)] = $pref->desc;
}
$this->view->assign('prefsLib', $prefsLib);
2010-11-22 12:50:12 +00:00
}
2013-06-15 08:25:30 +00:00
/**
* Display box to enter emails
* One main email and two secondary
* Email length 80 * 3 = 240
* 255 chars is the length to store emails (email1;email2;email3)
*/
public function emailsAction()
{
$this->_helper->layout()->disableLayout();
$nbEmails = 3;
$request = $this->getRequest();
$emails = $request->getParam('q');
if (null !== $emails) {
$emailList = explode(';', $emails);
if ( count($emailList)>0 ) {
$i = 1;
foreach ( $emailList as $email ) {
$this->view->assign('email'.$i, $email);
$i++;
}
}
}
}
/**
* Validate email
*/
public function emailvalidAction()
{
$this->_helper->layout()->disableLayout();
$request = $this->getRequest();
$email = $request->getParam('q');
$valid = false;
if (null !== $email) {
$validateur = new Zend_Validate_EmailAddress();
$valid = $validateur->isValid($email);
}
$result = array(
'valid' => $valid,
);
$this->view->assign('result', $result);
}
2011-05-23 10:04:12 +00:00
/**
* Téléchargement de la consommation au format CSV
*/
2011-05-23 06:45:29 +00:00
public function consoAction()
{
$this->view->headScript()->appendFile('/themes/default/scripts/conso.js', 'text/javascript');
2012-05-20 16:31:28 +00:00
$user = new Scores_Utilisateur();
$request = $this->getRequest();
$idClient = $request->getParam('idClient', $user->getIdClient());
$login = $request->getParam('login', '');
$this->view->assign('idClient', $idClient);
$this->view->assign('login', $login);
2011-05-23 10:04:12 +00:00
$this->view->assign('profil', $user->getProfil());
2011-05-23 06:45:29 +00:00
}
/**
* Renvoi vers le formulaire utilisateur avec les paramètres de la requete
*/
2011-05-03 15:58:48 +00:00
public function editAction()
{
$params = $this->getRequest()->getParams();
$this->_forward('index', 'user', null, $params);
2011-05-03 15:58:48 +00:00
}
/**
* Suppression d'un utilisateur
*/
2011-05-03 15:58:48 +00:00
public function deleteAction()
{
$request = $this->getRequest();
$login = $request->getParam('login');
$action = 'delete';
$ws = new WsScores();
$ws->setInfosLogin($login, $action);
//Redirect
$this->_forward('liste');
2011-05-03 15:58:48 +00:00
}
/**
* Activation d'un utilisateur
*/
public function enableAction()
2011-05-03 15:58:48 +00:00
{
$request = $this->getRequest();
$login = $request->getParam('login');
$action = 'enable';
$ws = new WsScores();
$ws->setInfosLogin($login, $action);
2011-05-04 13:24:26 +00:00
//Redirect
$this->_forward('liste');
2011-05-03 15:58:48 +00:00
}
/**
* Désactivation d'un utilisateur
*/
public function disableAction()
2011-05-03 15:58:48 +00:00
{
$request = $this->getRequest();
$login = $request->getParam('login');
$action = 'disable';
$ws = new WsScores();
$ws->setInfosLogin($login, $action);
2011-05-04 13:24:26 +00:00
//Redirect
$this->_forward('liste');
2011-05-03 15:58:48 +00:00
}
/**
* Méthode AJAX pour modifier le password d'un utilisateur
*/
2011-04-01 12:14:40 +00:00
public function changepwdAction()
{
2011-05-04 13:24:26 +00:00
//Redirect
2011-04-01 12:14:40 +00:00
}
2011-05-23 10:04:12 +00:00
/**
* Affiche la liste des utiliateurs
*/
public function listeAction()
2011-05-03 15:58:48 +00:00
{
2012-05-20 16:31:28 +00:00
$user = new Scores_Utilisateur();
$request = $this->getRequest();
$idClient = $request->getParam('idClient', $user->getIdClient());
2011-05-03 15:58:48 +00:00
if (!$user->isSuperAdmin() && !$user->isAdmin()) {
2011-09-06 09:12:50 +00:00
$this->renderScript('error/perms.phtml');
2011-05-03 15:58:48 +00:00
}
if ($user->isAdmin()){
$idClient = $user->getIdClient();
}
2011-05-03 15:58:48 +00:00
$ws = new WsScores();
$infos = $ws->getListeUtilisateurs($user->getLogin(), $idClient);
2011-05-03 15:58:48 +00:00
$utilisateurs = $infos->result->item;
$this->view->assign('utilisateurs', $utilisateurs);
$this->view->assign('idClient', $idClient);
2011-05-03 15:58:48 +00:00
}
2011-05-23 10:04:12 +00:00
/**
* Gestion de l'authentification
*/
2011-05-03 15:58:48 +00:00
public function loginAction()
2010-11-22 12:50:12 +00:00
{
2013-06-15 08:25:30 +00:00
$this->view->headScript()
->appendFile('/libs/jquery/jquery.infieldlabel.min.js');
2011-02-21 08:45:13 +00:00
//@todo : gestion des affichages particuliers pour les clients
2010-11-24 10:55:21 +00:00
$this->view->headTitle()->append('Connexion');
2013-05-17 07:06:21 +00:00
$form = new Application_Form_Login();
2010-11-22 12:50:12 +00:00
$this->view->form = $form;
$request = $this->getRequest();
if ( $request->isPost() ) {
$formData = $request->getPost();
2010-11-22 12:50:12 +00:00
if ($form->isValid($formData)) {
$login = $form->getValue('login');
$pass = $form->getValue('pass');
$auth = Zend_Auth::getInstance();
2013-11-21 16:31:49 +00:00
$authAdapter = new Scores_Auth_Adapter_Ws($login, md5($login.'|'.$pass));
2010-11-22 12:50:12 +00:00
$result = $auth->authenticate($authAdapter);
//Auth is valid
if ( $result->isValid() ) {
//Save browser information
$screenSize = $request->getParam('screenSize', 'unknow');
$user = new Scores_Utilisateur();
$info = get_browser();
$isMobile = ($info->ismobiledevice==1) ? 1 : 0;
$user->setBrowserInfo($info->platform, $info->browser, $info->version, $isMobile, $screenSize);
//Get previous url if user has been disconnected
$url = '';
if (Zend_Session::namespaceIsset('login')){
$session = new Zend_Session_Namespace('login');
if (isset($session->url)) {
$url = $session->url;
}
}
if (!empty($url) && $url!='/user/login' && $url!='/user/logout' && $url!='/localauth'){
$this->_redirect($url);
}
$this->_redirect('/');
}
//Auth error
else {
$this->view->message = '';
Zend_Registry::get('firebug')->info($result);
foreach ($result->getMessages() as $message) {
$this->view->message.= $message."<br/>";
}
2010-11-22 12:50:12 +00:00
}
}
}
2011-01-06 11:22:26 +00:00
$this->_helper->layout()->disableLayout();
2010-11-22 12:50:12 +00:00
}
2011-05-23 10:04:12 +00:00
/**
* Gestion de la déconnexion
*/
2011-02-21 08:45:13 +00:00
public function logoutAction()
{
2012-08-23 08:04:46 +00:00
Zend_Auth::getInstance()->clearIdentity();
2013-09-16 15:41:31 +00:00
$session = new Zend_Session_Namespace('wcheck');
$session->unsetAll();
$this->_helper->layout()->disableLayout();
$request = $this->getRequest();
$message = $request->getParam('message');
$this->view->assign('message', $message);
2012-11-20 14:12:54 +00:00
$ajax = $request->getParam('ajax', 0);
$this->view->assign('ajax', $ajax);
2012-08-23 08:04:46 +00:00
$refresh = 5;
2012-08-23 08:04:46 +00:00
$url = 'http://'.$_SERVER['SERVER_NAME'].$this->view->url(array(
'controller' => 'user',
'action' => 'login',
2012-09-26 20:02:31 +00:00
), null, true);
2012-08-23 08:04:46 +00:00
2011-09-09 08:28:42 +00:00
$this->view->assign('url', $url);
2012-11-20 14:12:54 +00:00
if (!$ajax) {
$this->view->assign('refresh', $refresh);
$this->view->headMeta()->appendHttpEquiv('refresh', $refresh.'; url='.$url);
}
2010-11-22 12:50:12 +00:00
}
2011-11-22 17:00:53 +00:00
/**
* Mettre à jour le mode edition en session sans refresh de la page
*/
public function editionsessionAction()
{
$this->_helper->layout()->disableLayout();
$this->_helper->viewRenderer->setNoRender(true);
2011-11-22 17:00:53 +00:00
$request = $this->getRequest();
$mode = $request->getParam('mode', 'false');
$auth = Zend_Auth::getInstance();
$identity = $auth->getIdentity();
if ($identity->idClient == 1) {
2011-11-22 17:00:53 +00:00
if ($mode == 'false') {
$identity->modeEdition = false;
echo 0;
} else {
$identity->modeEdition = true;
echo 1;
}
$auth->getStorage()->write($identity);
} else {
echo 0;
2011-11-22 17:00:53 +00:00
}
}
/**
* Override email in surveillance portfolio
*/
public function emailsurveillanceAction()
{
$this->_helper->layout()->disableLayout();
$request = $this->getRequest();
$user = new Scores_Utilisateur();
//Execute webservice operation
if ( $request->isPost() ) {
$email = trim($request->getParam('email'));
if ($user->isAdmin() || $user->isSuperAdmin()) {
$login = $request->getParam('login');
}
if (empty($email)) {
$result = "Aucun email défini!";
} else if (empty($login)) {
$result = "Aucun utilisateur défini!";
} else {
$ws = new WsScores();
$result = $ws->setSurveillancesMail($login, $email);
}
$this->view->assign('result', $result);
}
//Display form in dialog
else {
if ($user->isAdmin() || $user->isSuperAdmin()) {
$login = $request->getParam('login');
} else {
$login = $user->getLogin();
}
$this->view->assign('login', $login);
$this->view->assign('dialog',true);
}
}
/**
* Changer la langue de l'utilisateur
*/
public function langAction()
{
$this->_helper->layout()->disableLayout();
$this->_helper->viewRenderer->setNoRender(true);
$lang = $this->getRequest()->getParam('lang', null);
$auth = Zend_Auth::getInstance();
$identity = $auth->getIdentity();
$identity->langtmp = $lang;
$auth->getStorage()->write($identity);
}
2012-02-29 09:05:19 +00:00
/**
* Changer le theme de l'utilisateur
*/
public function changethemeAction()
{
$this->_helper->layout()->disableLayout();
$this->_helper->viewRenderer->setNoRender(true);
2012-02-29 09:05:19 +00:00
$request = $this->getRequest();
$nom = $request->getParam('nom', 'default');
2012-02-29 09:05:19 +00:00
$auth = Zend_Auth::getInstance();
$identity = $auth->getIdentity();
2012-02-29 09:05:19 +00:00
$identity->theme = $nom;
2012-02-29 09:05:19 +00:00
$auth->getStorage()->write($identity);
2012-02-29 09:05:19 +00:00
//Rediriger vers l'écran de recherche
$this->_redirect('/');
2012-02-29 09:05:19 +00:00
}
/**
* Display browser informations on a simple page
*/
public function browserAction()
{
$this->_helper->layout()->disableLayout();
$this->_helper->viewRenderer->setNoRender(true);
//Load bootstrap
$bootstrap = Zend_Controller_Front::getInstance()->getParam('bootstrap');
//Get useragent and device informations
$userAgent = $bootstrap->getResource('useragent');
$device = $userAgent->getDevice();
//Display
echo "<pre>";
print_r(get_browser());
print_r($device->getAllFeatures());
echo "</pre>";
}
2013-06-15 08:25:30 +00:00
2013-06-14 16:00:22 +00:00
/**
* Sends email to the specific client, who requests for forgotten password
*/
public function motpasseAction()
{
$request = $this->getRequest();
2013-06-15 08:25:30 +00:00
$name = 'Identifiants oubliés ?';
2013-06-14 16:00:22 +00:00
$params = array(
'identifiant' => '',
'telephone' => '',
'email' => '',
'nom' => '',
'prenom' => '',
2013-06-20 15:15:39 +00:00
'fonction' => '',
'service' => '',
2013-06-14 16:00:22 +00:00
'rsociale' => '',
);
2013-06-15 08:25:30 +00:00
2013-06-25 10:05:46 +00:00
$this->_helper->layout()->disableLayout();
if ( $request->isPost() ) {
$params = $request->getParams();
$message = '';
2013-06-15 08:25:30 +00:00
2013-06-25 10:05:46 +00:00
$paramlist = array(
'telephone' => 'Numéro de téléphone direct',
'email' => 'Adresse email',
'nom' => 'Nom',
'prenom' => 'Prénom',
'fonction' => 'Fonction',
'service' => 'Service',
'rsociale' => 'Sociale',
);
foreach ($paramlist as $item => $val) {
if (!isset($params[$item])) {
$message .= "Champs $val vide !<br/>";
}
}
2013-06-15 08:25:30 +00:00
2013-06-25 10:05:46 +00:00
$validator = new Zend_Validate_EmailAddress();
if (isset($params['email'])){
if (!$validator->isValid($params['email'])) {
$message .="Adresse email invalide ! <br/>";
}
}
2013-06-20 15:15:39 +00:00
2013-06-25 10:05:46 +00:00
if ($message == '') {
$mailbody = '<style type="text/css">table {font-family:Arial, Helvetica, sans-serif; font-size: 12px; width: 550px; border: none;}table td{padding: 4px 8px;}</style>';
2013-07-30 08:52:33 +00:00
$mailbody .= "Demande d'envoi des identifiants.<br /><br />";
$mailbody .= "L'un de nos clients a égaré son(ses) identifiant(s).<br />";
$mailbody .= "Via notre lien -identifiants oubliés- il a effectué une demande de transmission de ces codes.<br />";
$mailbody .= "<p>A l'aide des informations ci-dessous, merci de retrouver ces codes et les lui envoyer par email.</p>";
2013-06-25 10:05:46 +00:00
$mailbody .= "<table><tr bgcolor='#eeeeee'><td width='200px'><strong>Identifiant :</strong></td><td>".$params['identifiant']."</td></tr>";
$mailbody .= "<tr><td><strong>Adresse email:</strong></td><td>".$params['email']."</td></tr>";
$mailbody .= "<tr bgcolor='#eeeeee'><td><strong>Numéro de téléphone direct:</strong></td><td>".$params['telephone']."</td></tr>";
$mailbody .= "<tr><td><strong>Nom:</strong></td><td>".$params['nom']."</td></tr>";
$mailbody .= "<tr bgcolor='#eeeeee'><td><strong>Prénom:</strong></td><td>".$params['prenom']."</td></tr>";
$mailbody .= "<tr><td><strong>Fonction:</strong></td><td>".$params['fonction']."</td></tr>";
$mailbody .= "<tr bgcolor='#eeeeee'><td><strong>Service:</strong></td><td>".$params['service']."</td></tr>";
2013-12-26 14:42:44 +00:00
$mailbody .= "<tr><td><strong>Dénomination Sociale:</strong></td><td>".$params['rsociale']."</td></tr></table>";
2013-07-30 08:52:33 +00:00
$mailbody .= "<p>Si les informations fournies ne permettent pas d'identifier correctement l'utilisateur, ";
$mailbody .= "merci d'émettre un message sur le mail communiquer en précisant que \"Les éléments confiés ne permettent pas d'identifier l'utilisateur ";
$mailbody .= "et par conséquence de vous délivrer les codes d'accès demandés\".<br />";
$mailbody .= "Aussi nous vous invitons à vous rapprocher de votre interlocuteur commercial habituel ";
$mailbody .= "ou de votre responsable suivi relations Scores & Décisions au sein de votre société.</p>";
2013-06-25 10:05:46 +00:00
$mail = new Scores_Mail();
2013-07-30 08:52:33 +00:00
$mail->setSubject("Demande d'envoi des identifiants");
2013-06-25 10:05:46 +00:00
$mail->setBodyHTML($mailbody);
$mail->setFrom('support');
$mail->addToKey('support');
$mail->setReplyTo($params['email']);
try {
$mail->send();
2013-07-30 08:52:33 +00:00
$this->view->assign('sendEmail' , true);
2013-06-25 10:05:46 +00:00
}
catch ( Zend_Mail_Transport_Exception $e ){
$message = $e->getMessage();
}
2013-06-25 10:05:46 +00:00
}
$this->view->assign('message', $message);
2014-02-13 14:41:39 +00:00
}
2013-06-14 16:00:22 +00:00
}
2010-11-22 12:50:12 +00:00
}