X-Git-Url: http://wagnertech.de/git?a=blobdiff_plain;f=bin%2Fmozilla%2Fadmin.pl;h=160d303660a90694fef462ac456d7bc395f2add6;hb=e74c2ab4728dfdc932cd290db005ce2250e9d61b;hp=9856c29550de158ee6ae7626107498ea81e35101;hpb=4dbb09950c9f5596646537c12d991c99086fe7c1;p=kivitendo-erp.git diff --git a/bin/mozilla/admin.pl b/bin/mozilla/admin.pl index 9856c2955..160d30366 100644 --- a/bin/mozilla/admin.pl +++ b/bin/mozilla/admin.pl @@ -34,837 +34,454 @@ $menufile = "menu.ini"; +use DBI; +use CGI; +use English qw(-no_match_vars); +use Fcntl; +use File::Copy; +use IO::File; +use POSIX qw(strftime); +use Sys::Hostname; + +use SL::Auth; use SL::Form; +use SL::Mailer; use SL::User; +use SL::Common; +use SL::Inifile; +use SL::DBUpgrade2; +use SL::DBUtils; +require "bin/mozilla/common.pl"; +require "bin/mozilla/admin_groups.pl"; + +our $cgi = new CGI(''); $form = new Form; $locale = new Locale $language, "admin"; - -eval { require DBI; }; -$form->error($locale->text('DBI not installed!')) if ($@); +our $auth = SL::Auth->new(); +if ($auth->session_tables_present()) { + $auth->expire_sessions(); + $auth->restore_session(); + $auth->set_session_value('rpw', $form->{rpw}); +} # customization -if (-f "$form->{path}/custom_$form->{script}") { - eval { require "$form->{path}/custom_$form->{script}"; }; +if (-f "bin/mozilla/custom_$form->{script}") { + eval { require "bin/mozilla/custom_$form->{script}"; }; $form->error($@) if ($@); } - $form->{stylesheet} = "lx-office-erp.css"; -$form->{favicon} = "favicon.ico"; +$form->{favicon} = "favicon.ico"; if ($form->{action}) { - - $subroutine = $locale->findsub($form->{action}); - - if ($subroutine eq 'login') { - if ($form->{rpw}) { - $form->{rpw} = crypt $form->{rpw}, "ro"; - } + if ($auth->authenticate_root($form->{rpw}, 0) != Auth::OK) { + $form->{error_message} = $locale->text('Incorrect Password!'); + adminlogin(); + exit; } - - &check_password; - - &$subroutine; - -} else { - # if there are no drivers bail out - $form->error($locale->text('No Database Drivers available!')) unless (User->dbdrivers); + $auth->create_or_refresh_session() if ($auth->session_tables_present()); - # create memberfile - if (! -f $memberfile) { - open(FH, ">$memberfile") or $form->error("$memberfile : $!"); - print FH qq|# SQL-Ledger Accounting members + call_sub($locale->findsub($form->{action})); -[root login] -password= +} elsif ($auth->authenticate_root($form->{rpw}, 0) == Auth::OK) { -|; - close FH; - } + $auth->create_or_refresh_session() if ($auth->session_tables_present()); + + login(); + +} else { + # if there are no drivers bail out + $form->error($locale->text('No Database Drivers available!')) + unless (User->dbdrivers); - &adminlogin; + adminlogin(); } 1; -# end +# end sub adminlogin { - $form->{title} = qq|Lx-Office ERP $form->{version} |.$locale->text('Administration'); - - $form->header; - - print qq| - + $form->{title} = qq|Lx-Office ERP $form->{version} | . $locale->text('Administration'); + $form->header(); + print $form->parse_html_template('admin/adminlogin'); +} -
+sub login { + check_auth_db_and_tables(); + list_users(); +} - -

|.$locale->text('Version').qq| $form->{version}

|.$locale->text('Administration').qq|

+sub logout { + $auth->destroy_session(); + adminlogin(); +} -
+sub check_auth_db_and_tables { + my %params; - - - - - - - - -{path}> -
|.$locale->text('Password').qq|
+ map { $params{"db_${_}"} = $auth->{DB_config}->{$_} } keys %{ $auth->{DB_config} }; + if (!$auth->check_database()) { + $form->{title} = $locale->text('Authentification database creation'); + $form->header(); + print $form->parse_html_template('admin/check_auth_database', \%params); -
+ exit 0; + } -Lx-Office |.$locale->text('website').qq| + if (!$auth->check_tables()) { + $form->{title} = $locale->text('Authentification tables creation'); + $form->header(); + print $form->parse_html_template('admin/check_auth_tables', \%params); -
+ exit 0; + } - - -|; + if (-f $memberfile) { + my $memberdir = ""; -} + if ($memberfile =~ m|^.*/|) { + $memberdir = $&; + } + my $backupdir = "${memberdir}member-file-migration"; + $form->{title} = $locale->text('User data migration'); + $form->header(); + print $form->parse_html_template('admin/user_migration', { 'memberfile' => $memberfile, + 'backupdir' => $backupdir }); + exit 0 + } +} -sub login { +sub create_auth_db { + $auth->create_database('superuser' => $form->{db_superuser}, + 'superuser_password' => $form->{db_superuser_password}, + 'template' => $form->{db_template}); + login(); +} - &list_users; +sub create_auth_tables { + $auth->create_tables(); + $auth->set_session_value('rpw', $form->{rpw}); + $auth->create_or_refresh_session(); + + if (!-f $memberfile) { + # New installation -- create a standard group with full access + my $group = { + 'name' => $locale->text('Full Access'), + 'description' => $locale->text('Full access to all functions'), + 'rights' => { map { $_ => 1 } SL::Auth::all_rights() }, + 'members' => [ map { $_->{id} } values %members ], + }; + + $auth->save_group($group); + } + login(); } +sub migrate_users { + $lxdebug->enter_sub(); + my $memberdir = ""; -sub add_user { - - $form->{title} = "Lx-Office ERP ".$locale->text('Administration')." / ".$locale->text('Add User'); + if ($memberfile =~ m|^.*/|) { + $memberdir = $&; + } - $form->{Oracle_sid} = $sid; - $form->{Oracle_dbport} = '1521'; - $form->{Oracle_dbhost} = `hostname`; + my $backupdir = "${memberdir}member-file-migration"; - if (-f "css/lx-office-erp.css") { - $myconfig->{stylesheet} = "lx-office-erp.css"; + if (! -d $backupdir && !mkdir $backupdir, 0700) { + $form->error(sprintf($locale->text('The directory "%s" could not be created:\n%s'), $backupdir, $!)); } - $myconfig->{vclimit} = 200; - - &form_header; - &form_footer; - -} + copy $memberfile, "users/member-file-migration/members"; + my $in = IO::File->new($memberfile, "r"); -sub edit { + $form->error($locale->text('Could not open the old memberfile.')) if (!$in); - $form->{title} = "Lx-Office ERP ".$locale->text('Administration')." / ".$locale->text('Edit User'); - $form->{edit} = 1; + my (%members, $login); - &form_header; - &form_footer; + while (<$in>) { + chomp; -} + next if (m/^\s*\#/); + + if (m/^\[.*\]/) { + $login = $_; + $login =~ s/(\[|\])//g; + $login =~ s/^\s*//; + $login =~ s/\s*$//; + $members{$login} = { "login" => $login }; + next; + } -sub form_footer { + if ($login && m/=/) { + my ($key, $value) = split m/\s*=\s*/, $_, 2; + $key =~ s|^\s*||; + $value =~ s|\s*$||; - if ($form->{edit}) { - $delete = qq| -|; + $value =~ s|\\r||g; + $value =~ s|\\n|\n|g; + + $members{$login}->{$key} = $value; + } } - print qq| + $in->close(); - - -{path}> -{rpw}> + delete $members{"root login"}; - -$delete + map { $_->{dbpasswd} = unpack 'u', $_->{dbpasswd} } values %members; - + while (my ($login, $params) = each %members) { + $auth->save_user($login, %{ $params }); + $auth->change_password($login, $params->{password}, 1); - - -|; + my $conf_file = "${memberdir}${login}.conf"; -} + if (-f $conf_file) { + copy $conf_file, "${backupdir}/${login}.conf"; + unlink $conf_file; + } + } + unlink $memberfile; -sub list_users { + my @member_list = sort { lc $a->{login} cmp lc $b->{login} } values %members; - $form->error($locale->text('File locked!')) if (-f "${memberfile}.LCK"); + $form->{title} = $locale->text('User data migration'); + $form->header(); + print $form->parse_html_template('admin/user_migration_done', { 'MEMBERS' => \@member_list }); - open(FH, "$memberfile") or $form->error("$memberfile : $!"); + $lxdebug->leave_sub(); +} - $nologin = qq| -|; +sub create_standard_group_ask { + $form->{title} = $locale->text('Create a standard group'); - if (-e "$userspath/nologin") { - $nologin = qq| -|; - } + $form->header(); + print $form->parse_html_template("admin/create_standard_group_ask"); +} +sub create_standard_group { + my %members = $auth->read_all_users(); - while () { - chop; - - if (/^\[.*\]/) { - $login = $_; - $login =~ s/(\[|\])//g; - } + my $groups = $auth->read_groups(); - if (/^(name=|company=|templates=|dbuser=|dbdriver=|dbname=|dbhost=)/) { - chop ($var = $&); - ($null, $member{$login}{$var}) = split /=/, $_, 2; + foreach my $group (values %{$groups}) { + if (($form->{group_id} != $group->{id}) + && ($form->{name} eq $group->{name})) { + $form->show_generic_error($locale->text("A group with that name does already exist.")); } } - - close(FH); -# type=submit $locale->text('Pg Database Administration') -# type=submit $locale->text('Oracle Database Administration') + my $group = { + 'name' => $locale->text('Full Access'), + 'description' => $locale->text('Full access to all functions'), + 'rights' => { map { $_ => 1 } SL::Auth::all_rights() }, + 'members' => [ map { $_->{id} } values %members ], + }; - foreach $item (User->dbdrivers) { - $dbdrivers .= qq||; - } + $auth->save_group($group); + user_migration_complete(1); +} - $column_header{login} = qq||.$locale->text('Login').qq||; - $column_header{name} = qq||.$locale->text('Name').qq||; - $column_header{company} = qq||.$locale->text('Company').qq||; - $column_header{dbdriver} = qq||.$locale->text('Driver').qq||; - $column_header{dbhost} = qq||.$locale->text('Host').qq||; - $column_header{dataset} = qq||.$locale->text('Dataset').qq||; - $column_header{templates} = qq||.$locale->text('Templates').qq||; - - @column_index = qw(login name company dbdriver dbhost dataset templates); - - $form->{title} = "Lx-Office ERP ".$locale->text('Administration'); - - $form->header; - - print qq| - - -
{script}> - - - - - - - - - - - - - -
$form->{title}
- - |; - - map { print "$column_header{$_}\n" } @column_index; - - print qq| - -|; - -foreach $key (sort keys %member) { - $href = "$script?action=edit&login=$key&path=$form->{path}&root=$form->{root}&rpw=$form->{rpw}"; - $href =~ s/ /%20/g; - - $member{$key}{templates} =~ s/^$templates\///; - $member{$key}{dbhost} = $locale->text('localhost') unless $member{$key}{dbhost}; - $member{$key}{dbname} = $member{$key}{dbuser} if ($member{$key}{dbdriver} eq 'Oracle'); - - $column_data{login} = qq||; - $column_data{name} = qq||; - $column_data{company} = qq||; - $column_data{dbdriver} = qq||; - $column_data{dbhost} = qq||; - $column_data{dataset} = qq||; - $column_data{templates} = qq||; - - $i++; $i %= 2; - print qq| - |; - - map { print "$column_data{$_}\n" } @column_index; - - print qq| - |; +sub dont_create_standard_group { + user_migration_complete(0); } +sub user_migration_complete { + my $standard_group_created = shift; -print qq| -
$key$member{$key}{name}$member{$key}{company}$member{$key}{dbdriver}$member{$key}{dbhost}$member{$key}{dbname}$member{$key}{templates}
-

- -{path}> -{rpw}> - - -
- - -$dbdrivers -$nologin - -
- -|.$locale->text('Click on login name to edit!').qq| -
-|.$locale->text('To add a user to a group edit a name, change the login name and save. A new user with the same variables will then be saved under the new login name.').qq| - -

- -

- - - - - - - - -
Lx-Office ERP |.$locale->text('Login').qq|
- - - - - - - - - - - -{path}> -
|.$locale->text('Name').qq| 
|.$locale->text('Password').qq|
-
- -
- -
- - - -|; + $form->{title} = $locale->text('User migration complete'); + $form->header(); + print $form->parse_html_template('admin/user_migration_complete', { 'standard_group_created' => $standard_group_created }); } +sub list_users { + my %members = $auth->read_all_users(); + delete $members{"root login"}; -sub form_header { + map { $_->{templates} =~ s|.*/||; } values %members; - # if there is a login, get user - if ($form->{login}) { - # get user - $myconfig = new User "$memberfile", "$form->{login}"; + $form->{title} = "Lx-Office ERP " . $locale->text('Administration'); + $form->{LOCKED} = -e "$userspath/nologin"; + $form->{MEMBERS} = [ @members{sort { lc $a cmp lc $b } keys %members} ]; - $myconfig->{signature} =~ s/\\n/\r\n/g; - $myconfig->{address} =~ s/\\n/\r\n/g; + $form->header(); + print $form->parse_html_template("admin/list_users"); +} - # strip basedir from templates directory - $myconfig->{templates} =~ s/^$templates\///; +sub add_user { - # $myconfig->{dbpasswd} = unpack 'u', $myconfig->{dbpasswd}; - } + $form->{title} = + "Lx-Office ERP " + . $locale->text('Administration') . " / " + . $locale->text('Add User'); + + my $myconfig = { + "vclimit" => 200, + "countrycode" => "de", + "numberformat" => "1.000,00", + "dateformat" => "dd.mm.yy", + "stylesheet" => "lx-office-erp.css", + "menustyle" => "v3", + }; + + edit_user_form($myconfig); +} +sub edit_user { - foreach $item (qw(mm-dd-yy mm/dd/yy dd-mm-yy dd/mm/yy dd.mm.yy yyyy-mm-dd)) { - $dateformat .= ($item eq $myconfig->{dateformat}) ? "