#
#======================================================================
-$menufile = "menu.ini";
-
use DBI;
-use CGI;
-use POSIX qw(strftime);
-use IO::File;
-use Fcntl;
+use Encode;
use English qw(-no_match_vars);
+use Fcntl;
+use File::Copy;
+use IO::File;
+use POSIX qw(strftime);
use Sys::Hostname;
+use SL::Auth;
+use SL::Auth::PasswordPolicy;
use SL::Form;
+use SL::Iconv;
use SL::Mailer;
use SL::User;
use SL::Common;
use SL::DBUtils;
require "bin/mozilla/common.pl";
+require "bin/mozilla/admin_groups.pl";
+require "bin/mozilla/admin_printer.pl";
-our $cgi = new CGI('');
-
-$form = new Form;
-$form->{"root"} = "root login";
+use strict;
-$locale = new Locale $language, "admin";
+our $cgi;
+our $form;
+our $locale;
+our $auth;
-# customization
-if (-f "bin/mozilla/custom_$form->{script}") {
- eval { require "bin/mozilla/custom_$form->{script}"; };
- $form->error($@) if ($@);
-}
+sub run {
+ $::lxdebug->enter_sub;
+ my $session_result = shift;
-$form->{stylesheet} = "lx-office-erp.css";
-$form->{favicon} = "favicon.ico";
+ $form = $::form;
+ $locale = $::locale;
+ $auth = $::auth;
-if ($form->{action}) {
+ $::auth->store_root_credentials_in_session($form->{rpw}) if $session_result == SL::Auth->SESSION_OK;
+ $form->{stylesheet} = "lx-office-erp.css";
+ $form->{favicon} = "favicon.ico";
- $subroutine = $locale->findsub($form->{action});
+ if ($form->{action}) {
+ if ($auth->authenticate_root($form->{rpw}) != $auth->OK()) {
+ $form->{error_message} = $locale->text('Incorrect Password!');
+ $auth->delete_session_value('rpw');
+ adminlogin();
+ } else {
+ if ($auth->session_tables_present()) {
+ $::auth->store_root_credentials_in_session($::form->{rpw});
+ delete $::form->{rpw};
+ _apply_dbupgrade_scripts();
+ }
- if ($subroutine eq 'login') {
- if ($form->{rpw}) {
- $form->{rpw} = crypt $form->{rpw}, "ro";
+ call_sub($locale->findsub($form->{action}));
}
+ } else {
+ # if there are no drivers bail out
+ $form->error($locale->text('No Database Drivers available!'))
+ unless (User->dbdrivers);
+
+ adminlogin();
}
+ $::lxdebug->leave_sub;
+}
- check_password();
+sub adminlogin {
+ my $form = $main::form;
+ my $locale = $main::locale;
- call_sub($subroutine);
+ $form->{title} = qq|Lx-Office ERP $form->{version} | . $locale->text('Administration');
-} else {
+ $form->header();
+ print $form->parse_html_template('admin/adminlogin');
+}
- # if there are no drivers bail out
- $form->error($locale->text('No Database Drivers available!'))
- unless (User->dbdrivers);
+sub login {
+ check_auth_db_and_tables();
+ list_users();
+}
- # create memberfile
- if (!-f $memberfile) {
- open(FH, ">$memberfile") or $form->error("$memberfile : $ERRNO");
- print FH qq|# SQL-Ledger Accounting members
+sub logout {
+ $main::auth->destroy_session();
+ adminlogin();
+}
-[root login]
-password=
+sub check_auth_db_and_tables {
+ my $form = $main::form;
+ my $locale = $main::locale;
-|;
- close FH;
+ my %params;
+
+ map { $params{"db_${_}"} = $main::auth->{DB_config}->{$_} } keys %{ $auth->{DB_config} };
+
+ if (!$main::auth->check_database()) {
+ $form->{title} = $locale->text('Authentification database creation');
+ $form->header();
+ print $form->parse_html_template('admin/check_auth_database', \%params);
+
+ ::end_of_request();
}
- adminlogin();
+ if (!$main::auth->check_tables()) {
+ $form->{title} = $locale->text('Authentification tables creation');
+ $form->header();
+ print $form->parse_html_template('admin/check_auth_tables', \%params);
-}
+ ::end_of_request();
+ }
-1;
+ my $memberfile = $::lx_office_conf{paths}->{memberfile};
+ if (-f $memberfile) {
+ my $memberdir = "";
-# end
+ if ($memberfile =~ m|^.*/|) {
+ $memberdir = $&;
+ }
-sub adminlogin {
+ my $backupdir = "${memberdir}member-file-migration";
- $form->{title} =
- qq|Lx-Office ERP $form->{version} | . $locale->text('Administration');
+ $form->{title} = $locale->text('User data migration');
+ $form->header();
+ print $form->parse_html_template('admin/user_migration', { 'memberfile' => $memberfile,
+ 'backupdir' => $backupdir });
- $form->header();
- print $form->parse_html_template2('admin/adminlogin');
+ ::end_of_request();
+ }
}
-sub login {
- list_users();
+sub create_auth_db {
+ my $form = $main::form;
+
+ $main::auth->create_database('superuser' => $form->{db_superuser},
+ 'superuser_password' => $form->{db_superuser_password},
+ 'template' => $form->{db_template});
+ login();
}
-sub list_users {
+sub create_auth_tables {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ $main::auth->create_tables();
+ $main::auth->set_session_value('rpw', $form->{rpw});
+ $main::auth->create_or_refresh_session();
- $form->error($locale->text('File locked!')) if (-f "${memberfile}.LCK");
+ my $memberfile = $::lx_office_conf{paths}->{memberfile};
+ if (!-f $memberfile) {
+ # New installation -- create a standard group with full access
+ my %members;
+ my $group = {
+ 'name' => $locale->text('Full Access'),
+ 'description' => $locale->text('Full access to all functions'),
+ 'rights' => { map { $_ => 1 } SL::Auth::all_rights() },
+ 'members' => [ map { $_->{id} } values %members ],
+ };
+
+ $main::auth->save_group($group);
+ }
+
+ _apply_dbupgrade_scripts();
+ login();
+}
- open(FH, "$memberfile") or $form->error("$memberfile : $ERRNO");
+sub migrate_users {
+ $main::lxdebug->enter_sub();
- my %members;
+ my $form = $main::form;
+ my $locale = $main::locale;
- while (<FH>) {
+ my $memberdir = "";
+
+ my $memberfile = $::lx_office_conf{paths}->{memberfile};
+ if ($memberfile =~ m|^.*/|) {
+ $memberdir = $&;
+ }
+
+ my $backupdir = "${memberdir}member-file-migration";
+
+ if (! -d $backupdir && !mkdir $backupdir, 0700) {
+ $form->error(sprintf($locale->text('The directory "%s" could not be created:\n%s'), $backupdir, $!));
+ }
+
+ copy $memberfile, "users/member-file-migration/members";
+
+ my $in = IO::File->new($memberfile, "r");
+
+ $form->error($locale->text('Could not open the old memberfile.')) if (!$in);
+
+ my (%members, $login);
+
+ while (<$in>) {
chomp;
- if (/^\[.*\]/) {
+ next if (m/^\s*\#/);
+
+ if (m/^\[.*\]/) {
$login = $_;
$login =~ s/(\[|\])//g;
+ $login =~ s/^\s*//;
+ $login =~ s/\s*$//;
$members{$login} = { "login" => $login };
+ next;
}
- if (/^([a-z]+)=(.*)/) {
- $members{$login}->{$1} = $2;
+ if ($login && m/=/) {
+ my ($key, $value) = split m/\s*=\s*/, $_, 2;
+ $key =~ s|^\s*||;
+ $value =~ s|\s*$||;
+
+ $value =~ s|\\r||g;
+ $value =~ s|\\n|\n|g;
+
+ $members{$login}->{$key} = $value;
}
}
- close(FH);
+ $in->close();
delete $members{"root login"};
- map { $_->{templates} =~ s|.*/||; } values %members;
- $form->{title} = "Lx-Office ERP " . $locale->text('Administration');
- $form->{LOCKED} = -e "$userspath/nologin";
+ map { $_->{dbpasswd} = unpack 'u', $_->{dbpasswd} } values %members;
+
+ while (my ($login, $params) = each %members) {
+ $main::auth->save_user($login, %{ $params });
+ $main::auth->change_password($login, $params->{password}, 1);
+
+ my $conf_file = "${memberdir}${login}.conf";
+
+ if (-f $conf_file) {
+ copy $conf_file, "${backupdir}/${login}.conf";
+ unlink $conf_file;
+ }
+ }
+
+ unlink $memberfile;
+
+ my @member_list = sort { lc $a->{login} cmp lc $b->{login} } values %members;
+
+ $form->{title} = $locale->text('User data migration');
+ $form->header();
+ print $form->parse_html_template('admin/user_migration_done', { 'MEMBERS' => \@member_list });
+
+ $main::lxdebug->leave_sub();
+}
+
+sub create_standard_group_ask {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ $form->{title} = $locale->text('Create a standard group');
+
+ $form->header();
+ print $form->parse_html_template("admin/create_standard_group_ask");
+}
+
+sub create_standard_group {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ my %members = $main::auth->read_all_users();
+
+ my $groups = $main::auth->read_groups();
+
+ foreach my $group (values %{$groups}) {
+ if (($form->{group_id} != $group->{id})
+ && ($form->{name} eq $group->{name})) {
+ $form->show_generic_error($locale->text("A group with that name does already exist."));
+ }
+ }
+
+ my $group = {
+ 'name' => $locale->text('Full Access'),
+ 'description' => $locale->text('Full access to all functions'),
+ 'rights' => { map { $_ => 1 } SL::Auth::all_rights() },
+ 'members' => [ map { $_->{id} } values %members ],
+ };
+
+ $main::auth->save_group($group);
+
+ user_migration_complete(1);
+}
+
+sub dont_create_standard_group {
+ user_migration_complete(0);
+}
+
+sub user_migration_complete {
+ my $standard_group_created = shift;
+
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ $form->{title} = $locale->text('User migration complete');
+ $form->header();
+
+ print $form->parse_html_template('admin/user_migration_complete', { 'standard_group_created' => $standard_group_created });
+}
+
+sub list_users {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ my %members = $main::auth->read_all_users();
+
+ delete $members{"root login"};
+
+ for (values %members) {
+ $_->{templates} =~ s|.*/||;
+ $_->{login_url} = $::locale->is_utf8 ? Encode::encode('utf-8-strict', $_->{login}) : $_->{login_url};
+ }
+
+ $form->{title} = "Lx-Office ERP " . $locale->text('Administration');
+ $form->{LOCKED} = -e _nologin_file_name();
$form->{MEMBERS} = [ @members{sort { lc $a cmp lc $b } keys %members} ];
$form->header();
- print $form->parse_html_template2("admin/list_users");
+ print $form->parse_html_template("admin/list_users");
}
sub add_user {
+ my $form = $main::form;
+ my $locale = $main::locale;
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Administration') . " / "
- . $locale->text('Add User');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Administration') . " / " . $locale->text('Add User');
- my $myconfig = {
+# Note: Menu Style 'v3' is not compatible to all browsers!
+# "menustyle" => "old" sets the HTML Menu to default.
+ my $myconfig = {
"vclimit" => 200,
"countrycode" => "de",
- "numberformat" => "1000,00",
+ "numberformat" => "1.000,00",
"dateformat" => "dd.mm.yy",
"stylesheet" => "lx-office-erp.css",
- "menustyle" => "v3",
+ "menustyle" => "old",
+ dbport => $::auth->{DB_config}->{port} || 5432,
+ dbuser => $::auth->{DB_config}->{user} || 'lxoffice',
+ dbhost => $::auth->{DB_config}->{host} || 'localhost',
};
+
edit_user_form($myconfig);
}
-sub edit {
+sub edit_user {
+ my $form = $main::form;
+ my $locale = $main::locale;
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Administration') . " / "
- . $locale->text('Edit User');
- $form->{edit} = 1;
+ $form->{title} = "Lx-Office ERP " . $locale->text('Administration') . " / " . $locale->text('Edit User');
+ $form->{edit} = 1;
$form->isblank("login", $locale->text("The login is missing."));
# get user
- my $myconfig = new User "$memberfile", "$form->{login}";
-
- $myconfig->{signature} =~ s/\\n/\r\n/g;
- $myconfig->{address} =~ s/\\n/\r\n/g;
+ my $myconfig = new User($form->{login});
# strip basedir from templates directory
$myconfig->{templates} =~ s|.*/||;
sub edit_user_form {
my ($myconfig) = @_;
+ my $form = $main::form;
+ my $locale = $main::locale;
+
my @valid_dateformats = qw(mm-dd-yy mm/dd/yy dd-mm-yy dd/mm/yy dd.mm.yy yyyy-mm-dd);
$form->{ALL_DATEFORMATS} = [ map { { "format" => $_, "selected" => $_ eq $myconfig->{dateformat} } } @valid_dateformats ];
- my @valid_numberformats = qw(1,000.00 1000.00 1.000,00 1000,00);
+ my @valid_numberformats = ('1,000.00', '1000.00', '1.000,00', '1000,00');
$form->{ALL_NUMBERFORMATS} = [ map { { "format" => $_, "selected" => $_ eq $myconfig->{numberformat} } } @valid_numberformats ];
- %countrycodes = User->country_codes;
+ my %countrycodes = User->country_codes;
$form->{ALL_COUNTRYCODES} = [];
- foreach $countrycode (sort { $countrycodes{$a} cmp $countrycodes{$b} } keys %countrycodes) {
+ foreach my $countrycode (sort { $countrycodes{$a} cmp $countrycodes{$b} } keys %countrycodes) {
push @{ $form->{ALL_COUNTRYCODES} }, { "value" => $countrycode,
"name" => $countrycodes{$countrycode},
"selected" => $countrycode eq $myconfig->{countrycode} };
}
# is there a templates basedir
- if (!-d "$templates") {
- $form->error(sprintf($locale->text("The directory %s does not exist."), $templates));
+ if (!-d $::lx_office_conf{paths}->{templates}) {
+ $form->error(sprintf($locale->text("The directory %s does not exist."), $::lx_office_conf{paths}->{templates}));
}
- opendir TEMPLATEDIR, "$templates/." or $form->error("$templates : $ERRNO");
+ opendir TEMPLATEDIR, $::lx_office_conf{paths}->{templates} or $form->error($::lx_office_conf{paths}->{templates} . " : $ERRNO");
my @all = readdir(TEMPLATEDIR);
- my @alldir = sort grep { -d "$templates/$_" && !/^\.\.?$/ } @all;
- my @allhtml = sort grep { -f "$templates/$_" && /\.html$/ } @all;
+ my @alldir = sort grep { -d ($::lx_office_conf{paths}->{templates} . "/$_") && !/^\.\.?$/ } @all;
closedir TEMPLATEDIR;
@alldir = grep !/\.(html|tex|sty|odt|xml|txb)$/, @alldir;
- @alldir = grep !/^(webpages|\.svn)$/, @alldir;
-
- @allhtml = reverse grep !/Default/, @allhtml;
- push @allhtml, 'Default';
- @allhtml = reverse @allhtml;
+ @alldir = grep !/^(webpages|mastertemplates|\.svn)$/, @alldir;
$form->{ALL_TEMPLATES} = [ map { { "name", => $_, "selected" => $_ eq $myconfig->{templates} } } @alldir ];
- $lastitem = $allhtml[0];
- $lastitem =~ s/-.*//g;
- $form->{ALL_MASTER_TEMPLATES} = [ { "name" => $lastitem, "selected" => $lastitem eq "German" } ];
- foreach $item (@allhtml) {
- $item =~ s/-.*//g;
- next if ($item eq $lastitem);
+ # mastertemplates
+ opendir TEMPLATEDIR, "$::lx_office_conf{paths}->{templates}/mastertemplates" or $form->error("$::lx_office_conf{paths}->{templates}/mastertemplates" . " : $ERRNO");
+ my @allmaster = readdir(TEMPLATEDIR);
+ closedir TEMPLATEDIR;
+
+ @allmaster = sort grep { -d ("$::lx_office_conf{paths}->{templates}/mastertemplates" . "/$_") && !/^\.\.?$/ } @allmaster;
+ @allmaster = reverse grep !/Default/, @allmaster;
+ push @allmaster, 'Default';
+ @allmaster = reverse @allmaster;
+ foreach my $item (@allmaster) {
push @{ $form->{ALL_MASTER_TEMPLATES} }, { "name" => $item, "selected" => $item eq "German" };
- $lastitem = $item;
}
# css dir has styles that are not intended as general layouts.
map { $form->{"myc_${_}"} = $myconfig->{$_} } keys %{ $myconfig };
- # access control
- my @acsorder = ();
- my %acs = ();
- my %excl = ();
- open(FH, $menufile) or $form->error("$menufile : $ERRNO");
+ my $groups = [];
- while ($item = <FH>) {
- next unless $item =~ /\[/;
- next if $item =~ /\#/;
+ if ($form->{edit}) {
+ my $user_id = $main::auth->get_user_id($form->{login});
+ my $all_groups = $main::auth->read_groups();
- $item =~ s/(\[|\])//g;
- chomp $item;
-
- my ($level, $menuitem);
-
- if ($item =~ /--/) {
- ($level, $menuitem) = split /--/, $item, 2;
- } else {
- $level = $item;
- $menuitem = $item;
- push @acsorder, $item;
+ foreach my $group (values %{ $all_groups }) {
+ push @{ $groups }, $group if (grep { $user_id == $_ } @{ $group->{members} });
}
- $acs{$level} ||= [];
- push @{ $acs{$level} }, $menuitem;
-
+ $groups = [ sort { lc $a->{name} cmp lc $b->{name} } @{ $groups } ];
}
- foreach $item (split(/;/, $myconfig->{acs})) {
- ($key, $value) = split /--/, $item, 2;
- $excl{$key}{$value} = 1;
- }
-
- $form->{ACLS} = [];
- $form->{all_acs} = "";
-
- foreach $key (@acsorder) {
- my $acl = { "checked" => $form->{login} ? !$excl{$key}->{$key} : 1,
- "name" => "${key}--${key}",
- "title" => $key,
- "SUBACLS" => [], };
- $form->{all_acs} .= "${key}--${key};";
-
- foreach $item (@{ $acs{$key} }) {
- next if ($key eq $item);
-
- my $subacl = { "checked" => $form->{login} ? !$excl{$key}->{$item} : 1,
- "name" => "${key}--${item}",
- "title" => $item };
- push @{ $acl->{SUBACLS} }, $subacl;
- $form->{all_acs} .= "${key}--${item};";
- }
- push @{ $form->{ACLS} }, $acl;
- }
-
- chop $form->{all_acs};
+ $form->{CAN_CHANGE_PASSWORD} = $main::auth->can_change_password();
$form->header();
- print $form->parse_html_template2("admin/edit_user");
+ print $form->parse_html_template("admin/edit_user", { 'GROUPS' => $groups });
}
-sub save {
+sub save_user {
+ my $form = $main::form;
+ my $locale = $main::locale;
$form->{dbdriver} = 'Pg';
# no spaces allowed in login name
- ($form->{login}) = split / /, $form->{login};
-
+ $form->{login} =~ s|\s||g;
$form->isblank("login", $locale->text('Login name missing!'));
# check for duplicates
if (!$form->{edit}) {
- $temp = new User "$memberfile", "$form->{login}";
-
- if ($temp->{login}) {
- $form->error("$form->{login} " . $locale->text('is already a member!'));
+ my %members = $main::auth->read_all_users();
+ if ($members{$form->{login}}) {
+ $form->show_generic_error($locale->text('Another user with the login #1 does already exist.', $form->{login}), 'back_button' => 1);
}
}
}
# is there a basedir
- if (!-d "$templates") {
- $form->error(sprintf($locale->text("The directory %s does not exist."), $templates));
+ if (!-d $::lx_office_conf{paths}->{templates}) {
+ $form->error(sprintf($locale->text("The directory %s does not exist."), $::lx_office_conf{paths}->{templates}));
}
# add base directory to $form->{templates}
$form->{templates} =~ s|.*/||;
- $form->{templates} = "$templates/$form->{templates}";
+ $form->{templates} = $::lx_office_conf{paths}->{templates} . "/$form->{templates}";
- $myconfig = new User "$memberfile", "$form->{login}";
-
- # redo acs variable and delete all the acs codes
- my @acs;
- foreach $item (split m|;|, $form->{all_acs}) {
- my $name = "ACS_${item}";
- $name =~ s| |+|g;
- push @acs, $item if !$form->{$name};
- delete $form->{$name};
- }
- $form->{acs} = join ";", @acs;
+ my $myconfig = new User($form->{login});
$form->isblank("dbname", $locale->text('Dataset missing!'));
$form->isblank("dbuser", $locale->text('Database User missing!'));
- foreach $item (keys %{$form}) {
+ foreach my $item (keys %{$form}) {
$myconfig->{$item} = $form->{$item};
}
$myconfig->{stylesheet} = $form->{userstylesheet};
}
- $myconfig->save_member($memberfile, $userspath);
-
- if ($webdav) {
- @webdavdirs =
- qw(angebote bestellungen rechnungen anfragen lieferantenbestellungen einkaufsrechnungen);
- foreach $directory (@webdavdirs) {
- $file = "webdav/" . $directory . "/webdav-user";
- if ($form->{$directory}) {
- if (open(HTACCESS, "$file")) {
- while (<HTACCESS>) {
- ($login, $password) = split(/:/, $_);
- if ($login ne $form->{login}) {
- $newfile .= $_;
- }
- }
- close(HTACCESS);
- }
- open(HTACCESS, "> $file") or die "cannot open $file $ERRNO\n";
- $newfile .= $myconfig->{login} . ":" . $myconfig->{password} . "\n";
- print(HTACCESS $newfile);
- close(HTACCESS);
- } else {
- $form->{$directory} = 0;
- if (open(HTACCESS, "$file")) {
- while (<HTACCESS>) {
- ($login, $password) = split(/:/, $_);
- if ($login ne $form->{login}) {
- $newfile .= $_;
- }
- }
- close(HTACCESS);
- }
- open(HTACCESS, "> $file") or die "cannot open $file $ERRNO\n";
- print(HTACCESS $newfile);
- close(HTACCESS);
- }
- }
- }
+ $myconfig->save_member();
$form->{templates} =~ s|.*/||;
- $form->{templates} = "${templates}/$form->{templates}";
+ $form->{templates} = $::lx_office_conf{paths}->{templates} . "/$form->{templates}";
$form->{mastertemplates} =~ s|.*/||;
# create user template directory and copy master files
umask(007);
# copy templates to the directory
- opendir TEMPLATEDIR, "$templates/." or $form - error("$templates : $ERRNO");
- @templates = grep /$form->{mastertemplates}.*?\.(html|tex|sty|xml|txb)$/,
+ my $templatedir = "$::lx_office_conf{paths}->{templates}/mastertemplates/$form->{mastertemplates}";
+
+ opendir TEMPLATEDIR, $templatedir or $form->error($templatedir . " : $ERRNO");
+ my @templates = grep /.*?\.(html|tex|sty|odt|xml|txb)$/,
readdir TEMPLATEDIR;
closedir TEMPLATEDIR;
- foreach $file (@templates) {
- open(TEMP, "$templates/$file")
- or $form->error("$templates/$file : $ERRNO");
+ foreach my $file (@templates) {
+ open(TEMP, "<", $templatedir . "/$file")
+ or $form->error($templatedir . "/$file : $ERRNO");
- $file =~ s/$form->{mastertemplates}-//;
- open(NEW, ">$form->{templates}/$file")
+ open(NEW, ">", "$form->{templates}/$file")
or $form->error("$form->{templates}/$file : $ERRNO");
- while ($line = <TEMP>) {
+ while (my $line = <TEMP>) {
print NEW $line;
}
close(TEMP);
}
}
+ # Add new user to his groups.
+ if (ref $form->{new_user_group_ids} eq 'ARRAY') {
+ my $all_groups = $main::auth->read_groups();
+ my %user = $main::auth->read_user($form->{login});
+
+ foreach my $group_id (@{ $form->{new_user_group_ids} }) {
+ my $group = $all_groups->{$group_id};
+
+ next if !$group;
+
+ push @{ $group->{members} }, $user{id};
+ $main::auth->save_group($group);
+ }
+ }
+
+ if ($main::auth->can_change_password()
+ && defined $form->{new_password}
+ && ($form->{new_password} ne '********')) {
+ my $verifier = SL::Auth::PasswordPolicy->new;
+ my $result = $verifier->verify($form->{new_password}, 1);
+
+ if ($result != SL::Auth::PasswordPolicy->OK()) {
+ $form->error($::locale->text('The settings were saved, but the password was not changed.') . ' ' . join(' ', $verifier->errors($result)));
+ }
+
+ $main::auth->change_password($form->{login}, $form->{new_password});
+ }
+
$form->redirect($locale->text('User saved!'));
+}
+sub save_user_as_new {
+ my $form = $main::form;
+
+ $form->{login} = $form->{new_user_login};
+ delete @{$form}{qw(edit new_user_login)};
+
+ save_user();
}
-sub delete {
- $form->error($locale->text('File locked!')) if (-f ${memberfile} . LCK);
- open(FH, ">${memberfile}.LCK") or $form->error("${memberfile}.LCK : $ERRNO");
- close(FH);
+sub delete_user {
+ my $form = $main::form;
+ my $locale = $main::locale;
- my $members = Inifile->new($memberfile);
- my $templates = $members->{$form->{login}}->{templates};
- delete $members->{$form->{login}};
- $members->write();
- unlink "${memberfile}.LCK";
+ my %members = $main::auth->read_all_users();
+ my $templates = $members{$form->{login}}->{templates};
+
+ $main::auth->delete_user($form->{login});
if ($templates) {
my $templates_in_use = 0;
- foreach $login (keys %{ $members }) {
- next if $login =~ m/^[A-Z]+$/;
- next if $members->{$login}->{templates} ne $templates;
+
+ foreach my $login (keys %members) {
+ next if $form->{login} eq $login;
+ next if $members{$login}->{templates} ne $templates;
$templates_in_use = 1;
last;
}
}
}
- # delete config file for user
- unlink "$userspath/$form->{login}.conf";
-
$form->redirect($locale->text('User deleted!'));
}
}
sub get_value {
- my $line = shift;
-
+ my $line = shift;
my ($null, $value) = split(/=/, $line, 2);
# remove comments
$value;
}
-sub change_admin_password {
+sub pg_database_administration {
+ my $form = $main::form;
- $form->{title} =
- qq|Lx-Office ERP |
- . $locale->text('Administration') . " / "
- . $locale->text('Change Admin Password');
+ $form->{dbdriver} = 'Pg';
+ dbselect_source();
- $form->header();
- print $form->parse_html_template2("admin/change_admin_password");
}
-sub change_password {
- if ($form->{"password"} ne $form->{"password_again"}) {
- $form->{title} =
- qq|Lx-Office ERP |
- . $locale->text('Administration') . " / "
- . $locale->text('Change Admin Password');
-
- $form->header();
- $form->error($locale->text("The passwords do not match."));
- }
-
- $root->{password} = $form->{password};
-
- $root->{'root login'} = 1;
- $root->save_member($memberfile);
-
- $form->{callback} =
- "$form->{script}?action=list_users&rpw=$root->{password}";
+sub dbselect_source {
+ my $form = $main::form;
+ my $locale = $main::locale;
- $form->redirect($locale->text('Password changed!'));
-}
+ $form->{dbport} = $::auth->{DB_config}->{port} || 5432;
+ $form->{dbuser} = $::auth->{DB_config}->{user} || 'lxoffice';
+ $form->{dbdefault} = 'template1';
+ $form->{dbhost} = $::auth->{DB_config}->{host} || 'localhost';
-sub check_password {
- $root = new User "$memberfile", $form->{root};
+ $form->{title} = "Lx-Office ERP / " . $locale->text('Database Administration');
- if (!defined($root->{password}) || ($root->{password} ne $form->{rpw})) {
- $form->error($locale->text('Incorrect Password!'));
- }
+ # Intentionnaly disabled unless fixed to work with the authentication DB.
+ $form->{ALLOW_DBBACKUP} = 0; # "$pg_dump_exe" ne "DISABLED";
+ $form->header();
+ print $form->parse_html_template("admin/dbadmin");
}
-sub pg_database_administration {
+sub test_db_connection {
+ my $form = $main::form;
+ my $locale = $main::locale;
$form->{dbdriver} = 'Pg';
- dbselect_source();
+ User::dbconnect_vars($form, $form->{dbname});
-}
+ my $dbh = DBI->connect($form->{dbconnect}, $form->{dbuser}, $form->{dbpasswd});
-sub dbselect_source {
- $form->{dbport} = '5432';
- $form->{dbuser} = 'postgres';
- $form->{dbdefault} = 'template1';
- $form->{dbhost} = 'localhost';
+ $form->{connection_ok} = $dbh ? 1 : 0;
+ $form->{errstr} = $DBI::errstr;
- $form->{title} = "Lx-Office ERP / " . $locale->text('Database Administration');
-
- $form->{ALLOW_DBBACKUP} = "$pg_dump_exe" ne "DISABLED";
+ $dbh->disconnect() if ($dbh);
+ $form->{title} = $locale->text('Database Connection Test');
$form->header();
- print $form->parse_html_template2("admin/dbadmin");
+ print $form->parse_html_template("admin/test_db_connection");
}
sub continue {
- call_sub($form->{"nextsub"});
-}
-
-sub back {
- call_sub($form->{"back_nextsub"});
+ call_sub($main::form->{"nextsub"});
}
sub update_dataset {
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Update Dataset');
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Update Dataset');
my @need_updates = User->dbneedsupdate($form);
$form->{NEED_UPDATES} = \@need_updates;
$form->{ALL_UPDATED} = !scalar @need_updates;
$form->header();
- print $form->parse_html_template2("admin/update_dataset");
+ print $form->parse_html_template("admin/update_dataset");
}
sub dbupdate {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
$form->{stylesheet} = "lx-office-erp.css";
$form->{title} = $locale->text("Dataset upgrade");
$form->header();
$| = 1;
- print $form->parse_html_template2("admin/dbupgrade_all_header");
+ print $form->parse_html_template("admin/dbupgrade_all_header");
foreach my $i (@update_rows) {
restore_form($saved_form);
- map { $form->{$_} = $form->{"${_}_${i}"} } qw(dbname dbdriver dbhost dbport dbuser dbpasswd);
-
- my $controls = parse_dbupdate_controls($form, $form->{dbdriver});
+ %::myconfig = ();
+ map { $form->{$_} = $::myconfig{$_} = $form->{"${_}_${i}"} } qw(dbname dbdriver dbhost dbport dbuser dbpasswd);
- print $form->parse_html_template2("admin/dbupgrade_header");
+ print $form->parse_html_template("admin/dbupgrade_header");
$form->{dbupdate} = $form->{dbname};
$form->{$form->{dbname}} = 1;
User->dbupdate($form);
- User->dbupdate2($form, $controls);
+ User->dbupdate2($form, SL::DBUpgrade2->new(form => $form, dbdriver => $form->{dbdriver})->parse_dbupdate_controls);
- print $form->parse_html_template2("admin/dbupgrade_footer");
+ print $form->parse_html_template("admin/dbupgrade_footer");
}
- print $form->parse_html_template2("admin/dbupgrade_all_done");
+ print $form->parse_html_template("admin/dbupgrade_all_done");
}
sub create_dataset {
- $form->{dbsources} = join " ", map { "[${_}]" } sort User->dbsources(\%$form);
+ my $form = $main::form;
+ my $locale = $main::locale;
- $form->{CHARTS} = [];
+ $form->{dbsources} = join " ", map { "[${_}]" } sort User->dbsources($form);
- opendir SQLDIR, "sql/." or $form - error($ERRNO);
- foreach $item (sort grep /-chart\.sql\z/, readdir SQLDIR) {
+ $form->{CHARTS} = [];
+
+ opendir SQLDIR, "sql/." or $form->error($ERRNO);
+ foreach my $item (sort grep /-chart\.sql\z/, readdir SQLDIR) {
next if ($item eq 'Default-chart.sql');
$item =~ s/-chart\.sql//;
push @{ $form->{CHARTS} }, { "name" => $item,
}
closedir SQLDIR;
- my $default_charset = $dbcharset;
+ $form->{ACCOUNTING_METHODS} = [];
+ foreach my $item ( qw(accrual cash) ) {
+ push @{ $form->{ACCOUNTING_METHODS} }, { "name" => $item,
+ "selected" => $item eq "cash" };
+ };
+
+ $form->{INVENTORY_SYSTEMS} = [];
+ foreach my $item ( qw(perpetual periodic) ) {
+ push @{ $form->{INVENTORY_SYSTEMS} }, { "name" => $item,
+ "selected" => $item eq "periodic" };
+ };
+
+ $form->{PROFIT_DETERMINATIONS} = [];
+ foreach my $item ( qw(balance income) ) {
+ push @{ $form->{PROFIT_DETERMINATIONS} }, { "name" => $item,
+ "selected" => $item eq "income" };
+ };
+
+ my $default_charset = $::lx_office_conf{system}->{dbcharset};
$default_charset ||= Common::DEFAULT_CHARSET;
- $form->{DBENCODINGS} = [];
+ my $cluster_encoding = User->dbclusterencoding($form);
+ if ($cluster_encoding && ($cluster_encoding =~ m/^(?:UTF-?8|UNICODE)$/i)) {
+ if ($::lx_office_conf{system}->{dbcharset} !~ m/^UTF-?8$/i) {
+ $form->show_generic_error($locale->text('The selected PostgreSQL installation uses UTF-8 as its encoding. ' .
+ 'Therefore you have to configure Lx-Office to use UTF-8 as well.'),
+ 'back_button' => 1);
+ }
+
+ $form->{FORCE_DBENCODING} = 'UNICODE';
- foreach my $encoding (@Common::db_encodings) {
- push @{ $form->{DBENCODINGS} }, { "dbencoding" => $encoding->{dbencoding},
- "label" => $encoding->{label},
- "selected" => $encoding->{charset} eq $default_charset };
+ } else {
+ $form->{DBENCODINGS} = [];
+
+ foreach my $encoding (@Common::db_encodings) {
+ push @{ $form->{DBENCODINGS} }, { "dbencoding" => $encoding->{dbencoding},
+ "label" => $encoding->{label},
+ "selected" => $encoding->{charset} eq $default_charset };
+ }
}
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Create Dataset');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Create Dataset');
$form->header();
- print $form->parse_html_template2("admin/create_dataset");
+ print $form->parse_html_template("admin/create_dataset");
}
sub dbcreate {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
$form->isblank("db", $locale->text('Dataset missing!'));
User->dbcreate(\%$form);
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Create Dataset');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Create Dataset');
$form->header();
- print $form->parse_html_template2("admin/dbcreate");
+ print $form->parse_html_template("admin/dbcreate");
}
sub delete_dataset {
- @dbsources = User->dbsources_unused(\%$form, $memberfile);
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ my @dbsources = User->dbsources_unused($form);
$form->error($locale->text('Nothing to delete!')) unless @dbsources;
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Delete Dataset');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Delete Dataset');
$form->{DBSOURCES} = [ map { { "name", $_ } } sort @dbsources ];
$form->header();
- print $form->parse_html_template2("admin/delete_dataset");
+ print $form->parse_html_template("admin/delete_dataset");
}
sub dbdelete {
+ my $form = $main::form;
+ my $locale = $main::locale;
if (!$form->{db}) {
$form->error($locale->text('No Dataset selected!'));
User->dbdelete(\%$form);
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Delete Dataset');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Delete Dataset');
$form->header();
- print $form->parse_html_template2("admin/dbdelete");
+ print $form->parse_html_template("admin/dbdelete");
}
sub backup_dataset {
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Backup Dataset');
+ my $form = $main::form;
+ my $locale = $main::locale;
- if ("$pg_dump_exe" eq "DISABLED") {
- $form->error($locale->text('Database backups and restorations are disabled in lx-erp.conf.'));
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Backup Dataset');
+
+ if ($::lx_office_conf{applications}->{pg_dump} eq "DISABLED") {
+ $form->error($locale->text('Database backups and restorations are disabled in the configuration.'));
}
my @dbsources = sort User->dbsources($form);
$form->{from} = "Lx-Office Admin <${username}\@${hostname}>";
$form->header();
- print $form->parse_html_template2("admin/backup_dataset");
+ print $form->parse_html_template("admin/backup_dataset");
}
sub backup_dataset_start {
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Backup Dataset');
+ my $form = $main::form;
+ my $locale = $main::locale;
- $pg_dump_exe ||= "pg_dump";
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Backup Dataset');
+
+ my $pg_dump_exe = $::lx_office_conf{applications}->{pg_dump} || "pg_dump";
if ("$pg_dump_exe" eq "DISABLED") {
- $form->error($locale->text('Database backups and restorations are disabled in lx-erp.conf.'));
+ $form->error($locale->text('Database backups and restorations are disabled in the configuration.'));
}
$form->isblank("dbname", $locale->text('The dataset name is missing.'));
push @args, ("-p", $form->{dbport}) if ($form->{dbport});
push @args, $form->{dbname};
- my $cmd = "${pg_dump_exe} " . join(" ", map { s/\\/\\\\/g; s/\"/\\\"/g; $_ } @args);
+ my $cmd = "$pg_dump_exe " . join(" ", map { s/\\/\\\\/g; s/\"/\\\"/g; $_ } @args);
my $name = "dataset_backup_$form->{dbname}_" . strftime("%Y%m%d", localtime()) . ".tar";
if ($form->{destination} ne "email") {
map { $mail->{$_} = $form->{$_} } qw(from to cc subject message);
- $mail->{charset} = $dbcharset ? $dbcharset : Common::DEFAULT_CHARSET;
+ $mail->{charset} = $::lx_office_conf{system}->{dbcharset} || Common::DEFAULT_CHARSET;
$mail->{attachments} = [ { "filename" => $tmp, "name" => $name } ];
$mail->send();
unlink "${tmpdir}/.pgpass", $tmp;
rmdir $tmpdir;
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Backup Dataset');
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Backup Dataset');
$form->header();
- print $form->parse_html_template2("admin/backup_dataset_email_done");
+ print $form->parse_html_template("admin/backup_dataset_email_done");
}
}
sub restore_dataset {
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Restore Dataset');
+ my $form = $main::form;
+ my $locale = $main::locale;
- if ("$pg_restore_exe" eq "DISABLED") {
- $form->error($locale->text('Database backups and restorations are disabled in lx-erp.conf.'));
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Restore Dataset');
+
+ if ($::lx_office_conf{applications}->{pg_restore} eq "DISABLED") {
+ $form->error($locale->text('Database backups and restorations are disabled in the configuration.'));
}
- my $default_charset = $dbcharset;
+ my $default_charset = $::lx_office_conf{system}->{dbcharset};
$default_charset ||= Common::DEFAULT_CHARSET;
$form->{DBENCODINGS} = [];
}
$form->header();
- print $form->parse_html_template2("admin/restore_dataset");
+ print $form->parse_html_template("admin/restore_dataset");
}
sub restore_dataset_start {
- $form->{title} =
- "Lx-Office ERP "
- . $locale->text('Database Administration') . " / "
- . $locale->text('Restore Dataset');
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ $form->{title} = "Lx-Office ERP " . $locale->text('Database Administration') . " / " . $locale->text('Restore Dataset');
- $pg_restore_exe ||= "pg_restore";
+ my $pg_restore_exe = $::lx_office_conf{applications}->{pg_restore} || "pg_restore";
if ("$pg_restore_exe" eq "DISABLED") {
- $form->error($locale->text('Database backups and restorations are disabled in lx-erp.conf.'));
+ $form->error($locale->text('Database backups and restorations are disabled in the configuration.'));
}
$form->isblank("new_dbname", $locale->text('The dataset name is missing.'));
push @args, ("-p", $form->{dbport}) if ($form->{dbport});
push @args, $tmp;
- my $cmd = "${pg_restore_exe} " . join(" ", map { s/\\/\\\\/g; s/\"/\\\"/g; $_ } @args);
+ my $cmd = "$pg_restore_exe " . join(" ", map { s/\\/\\\\/g; s/\"/\\\"/g; $_ } @args);
my $in = IO::File->new("$cmd 2>&1 |");
$form->error($locale->text('The pg_restore process could not be started.'));
}
- $AUTOFLUSH = 1;
+ $English::AUTOFLUSH = 1;
$form->header();
- print $form->parse_html_template2("admin/restore_dataset_start_header");
+ print $form->parse_html_template("admin/restore_dataset_start_header");
while (my $line = <$in>) {
print $line;
$in->close();
$form->{retval} = $CHILD_ERROR >> 8;
- print $form->parse_html_template2("admin/restore_dataset_start_footer");
+ print $form->parse_html_template("admin/restore_dataset_start_footer");
unlink "${tmpdir}/.pgpass", $tmp;
rmdir $tmpdir;
}
sub unlock_system {
+ my $form = $main::form;
+ my $locale = $main::locale;
- unlink "$userspath/nologin";
+ unlink _nologin_file_name();;
- $form->{callback} =
- "$form->{script}?action=list_users&rpw=$root->{password}";
+ $form->{callback} = "admin.pl?action=list_users";
$form->redirect($locale->text('Lockfile removed!'));
}
sub lock_system {
+ my $form = $main::form;
+ my $locale = $main::locale;
- open(FH, ">$userspath/nologin")
+ open(FH, ">", _nologin_file_name())
or $form->error($locale->text('Cannot create Lock!'));
close(FH);
- $form->{callback} =
- "$form->{script}?action=list_users&rpw=$root->{password}";
+ $form->{callback} = "admin.pl?action=list_users";
$form->redirect($locale->text('Lockfile created!'));
}
+
+sub yes {
+ call_sub($main::form->{yes_nextsub});
+}
+
+sub no {
+ call_sub($main::form->{no_nextsub});
+}
+
+sub add {
+ call_sub($main::form->{add_nextsub});
+}
+
+sub edit {
+ my $form = $main::form;
+
+ $form->{edit_nextsub} ||= 'edit_user';
+
+ call_sub($form->{edit_nextsub});
+}
+
+sub delete {
+ my $form = $main::form;
+
+ $form->{delete_nextsub} ||= 'delete_user';
+
+ call_sub($form->{delete_nextsub});
+}
+
+sub save {
+ my $form = $main::form;
+
+ $form->{save_nextsub} ||= 'save_user';
+
+ call_sub($form->{save_nextsub});
+}
+
+sub back {
+ call_sub($main::form->{back_nextsub});
+}
+
+sub dispatcher {
+ my $form = $main::form;
+ my $locale = $main::locale;
+
+ foreach my $action (qw(create_standard_group dont_create_standard_group
+ save_user delete_user save_user_as_new)) {
+ if ($form->{"action_${action}"}) {
+ call_sub($action);
+ return;
+ }
+ }
+
+ call_sub($form->{default_action}) if ($form->{default_action});
+
+ $form->error($locale->text('No action defined.'));
+}
+
+sub _apply_dbupgrade_scripts {
+ ::end_of_request() if SL::DBUpgrade2->new(form => $::form, dbdriver => 'Pg', auth => 1)->apply_admin_dbupgrade_scripts(1);
+}
+
+sub _nologin_file_name {
+ return $::lx_office_conf{paths}->{userspath} . '/nologin';
+}
+
+1;