2
0

ManageBoards.php 31 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899
  1. <?php
  2. /**
  3. * Manage and maintain the boards and categories of the forum.
  4. *
  5. * Simple Machines Forum (SMF)
  6. *
  7. * @package SMF
  8. * @author Simple Machines http://www.simplemachines.org
  9. * @copyright 2014 Simple Machines and individual contributors
  10. * @license http://www.simplemachines.org/about/smf/license.php BSD
  11. *
  12. * @version 2.1 Alpha 1
  13. */
  14. if (!defined('SMF'))
  15. die('No direct access...');
  16. /**
  17. * The main dispatcher; doesn't do anything, just delegates.
  18. * This is the main entry point for all the manageboards admin screens.
  19. * Called by ?action=admin;area=manageboards.
  20. * It checks the permissions, based on the sub-action, and calls a function based on the sub-action.
  21. *
  22. * @uses ManageBoards language file.
  23. */
  24. function ManageBoards()
  25. {
  26. global $context, $txt;
  27. // Everything's gonna need this.
  28. loadLanguage('ManageBoards');
  29. // Format: 'sub-action' => array('function', 'permission')
  30. $subActions = array(
  31. 'board' => array('EditBoard', 'manage_boards'),
  32. 'board2' => array('EditBoard2', 'manage_boards'),
  33. 'cat' => array('EditCategory', 'manage_boards'),
  34. 'cat2' => array('EditCategory2', 'manage_boards'),
  35. 'main' => array('ManageBoardsMain', 'manage_boards'),
  36. 'move' => array('ManageBoardsMain', 'manage_boards'),
  37. 'newcat' => array('EditCategory', 'manage_boards'),
  38. 'newboard' => array('EditBoard', 'manage_boards'),
  39. 'settings' => array('EditBoardSettings', 'admin_forum'),
  40. );
  41. call_integration_hook('integrate_manage_boards', array(&$subActions));
  42. // Default to sub action 'main' or 'settings' depending on permissions.
  43. $_REQUEST['sa'] = isset($_REQUEST['sa']) && isset($subActions[$_REQUEST['sa']]) ? $_REQUEST['sa'] : (allowedTo('manage_boards') ? 'main' : 'settings');
  44. // Have you got the proper permissions?
  45. isAllowedTo($subActions[$_REQUEST['sa']][1]);
  46. // Create the tabs for the template.
  47. $context[$context['admin_menu_name']]['tab_data'] = array(
  48. 'title' => $txt['boards_and_cats'],
  49. 'help' => 'manage_boards',
  50. 'description' => $txt['boards_and_cats_desc'],
  51. 'tabs' => array(
  52. 'main' => array(
  53. ),
  54. 'newcat' => array(
  55. ),
  56. 'settings' => array(
  57. 'description' => $txt['mboards_settings_desc'],
  58. ),
  59. ),
  60. );
  61. $subActions[$_REQUEST['sa']][0]();
  62. }
  63. /**
  64. * The main control panel thing, the screen showing all boards and categories.
  65. * Called by ?action=admin;area=manageboards or ?action=admin;area=manageboards;sa=move.
  66. * Requires manage_boards permission.
  67. * It also handles the interface for moving boards.
  68. *
  69. * @uses ManageBoards template, main sub-template.
  70. */
  71. function ManageBoardsMain()
  72. {
  73. global $txt, $context, $cat_tree, $boards, $boardList, $scripturl, $sourcedir, $smcFunc;
  74. loadTemplate('ManageBoards');
  75. require_once($sourcedir . '/Subs-Boards.php');
  76. if (isset($_REQUEST['sa']) && $_REQUEST['sa'] == 'move' && in_array($_REQUEST['move_to'], array('child', 'before', 'after', 'top')))
  77. {
  78. checkSession('get');
  79. validateToken('admin-bm-' . (int) $_REQUEST['src_board'], 'request');
  80. if ($_REQUEST['move_to'] === 'top')
  81. $boardOptions = array(
  82. 'move_to' => $_REQUEST['move_to'],
  83. 'target_category' => (int) $_REQUEST['target_cat'],
  84. 'move_first_child' => true,
  85. );
  86. else
  87. $boardOptions = array(
  88. 'move_to' => $_REQUEST['move_to'],
  89. 'target_board' => (int) $_REQUEST['target_board'],
  90. 'move_first_child' => true,
  91. );
  92. modifyBoard((int) $_REQUEST['src_board'], $boardOptions);
  93. }
  94. getBoardTree();
  95. $context['move_board'] = !empty($_REQUEST['move']) && isset($boards[(int) $_REQUEST['move']]) ? (int) $_REQUEST['move'] : 0;
  96. $context['categories'] = array();
  97. foreach ($cat_tree as $catid => $tree)
  98. {
  99. $context['categories'][$catid] = array(
  100. 'name' => &$tree['node']['name'],
  101. 'id' => &$tree['node']['id'],
  102. 'boards' => array()
  103. );
  104. $move_cat = !empty($context['move_board']) && $boards[$context['move_board']]['category'] == $catid;
  105. foreach ($boardList[$catid] as $boardid)
  106. {
  107. $context['categories'][$catid]['boards'][$boardid] = array(
  108. 'id' => &$boards[$boardid]['id'],
  109. 'name' => &$boards[$boardid]['name'],
  110. 'description' => &$boards[$boardid]['description'],
  111. 'child_level' => &$boards[$boardid]['level'],
  112. 'move' => $move_cat && ($boardid == $context['move_board'] || isChildOf($boardid, $context['move_board'])),
  113. 'permission_profile' => &$boards[$boardid]['profile'],
  114. 'is_redirect' => !empty($boards[$boardid]['redirect']),
  115. );
  116. }
  117. }
  118. if (!empty($context['move_board']))
  119. {
  120. createToken('admin-bm-' . $context['move_board'], 'request');
  121. $context['move_title'] = sprintf($txt['mboards_select_destination'], $smcFunc['htmlspecialchars']($boards[$context['move_board']]['name']));
  122. foreach ($cat_tree as $catid => $tree)
  123. {
  124. $prev_child_level = 0;
  125. $prev_board = 0;
  126. $stack = array();
  127. // Just a shortcut, this is the same for all the urls
  128. $security = $context['session_var'] . '=' . $context['session_id'] . ';' . $context['admin-bm-' . $context['move_board'] . '_token_var'] . '=' . $context['admin-bm-' . $context['move_board'] . '_token'];
  129. foreach ($boardList[$catid] as $boardid)
  130. {
  131. if (!isset($context['categories'][$catid]['move_link']))
  132. $context['categories'][$catid]['move_link'] = array(
  133. 'child_level' => 0,
  134. 'label' => $txt['mboards_order_before'] . ' \'' . $smcFunc['htmlspecialchars']($boards[$boardid]['name']) . '\'',
  135. 'href' => $scripturl . '?action=admin;area=manageboards;sa=move;src_board=' . $context['move_board'] . ';target_board=' . $boardid . ';move_to=before;' . $security,
  136. );
  137. if (!$context['categories'][$catid]['boards'][$boardid]['move'])
  138. $context['categories'][$catid]['boards'][$boardid]['move_links'] = array(
  139. array(
  140. 'child_level' => $boards[$boardid]['level'],
  141. 'label' => $txt['mboards_order_after'] . '\'' . $smcFunc['htmlspecialchars']($boards[$boardid]['name']) . '\'',
  142. 'href' => $scripturl . '?action=admin;area=manageboards;sa=move;src_board=' . $context['move_board'] . ';target_board=' . $boardid . ';move_to=after;' . $security,
  143. 'class' => $boards[$boardid]['level'] > 0 ? 'above' : 'below',
  144. ),
  145. array(
  146. 'child_level' => $boards[$boardid]['level'] + 1,
  147. 'label' => $txt['mboards_order_child_of'] . ' \'' . $smcFunc['htmlspecialchars']($boards[$boardid]['name']) . '\'',
  148. 'href' => $scripturl . '?action=admin;area=manageboards;sa=move;src_board=' . $context['move_board'] . ';target_board=' . $boardid . ';move_to=child;' . $security,
  149. 'class' => 'here',
  150. ),
  151. );
  152. $difference = $boards[$boardid]['level'] - $prev_child_level;
  153. if ($difference == 1)
  154. array_push($stack, !empty($context['categories'][$catid]['boards'][$prev_board]['move_links']) ? array_shift($context['categories'][$catid]['boards'][$prev_board]['move_links']) : null);
  155. elseif ($difference < 0)
  156. {
  157. if (empty($context['categories'][$catid]['boards'][$prev_board]['move_links']))
  158. $context['categories'][$catid]['boards'][$prev_board]['move_links'] = array();
  159. for ($i = 0; $i < -$difference; $i++)
  160. if (($temp = array_pop($stack)) != null)
  161. array_unshift($context['categories'][$catid]['boards'][$prev_board]['move_links'], $temp);
  162. }
  163. $prev_board = $boardid;
  164. $prev_child_level = $boards[$boardid]['level'];
  165. }
  166. if (!empty($stack) && !empty($context['categories'][$catid]['boards'][$prev_board]['move_links']))
  167. $context['categories'][$catid]['boards'][$prev_board]['move_links'] = array_merge($stack, $context['categories'][$catid]['boards'][$prev_board]['move_links']);
  168. elseif (!empty($stack))
  169. $context['categories'][$catid]['boards'][$prev_board]['move_links'] = $stack;
  170. if (empty($boardList[$catid]))
  171. $context['categories'][$catid]['move_link'] = array(
  172. 'child_level' => 0,
  173. 'label' => $txt['mboards_order_before'] . ' \'' . $smcFunc['htmlspecialchars']($tree['node']['name']) . '\'',
  174. 'href' => $scripturl . '?action=admin;area=manageboards;sa=move;src_board=' . $context['move_board'] . ';target_cat=' . $catid . ';move_to=top;' . $security,
  175. );
  176. }
  177. }
  178. call_integration_hook('integrate_boards_main');
  179. $context['page_title'] = $txt['boards_and_cats'];
  180. $context['can_manage_permissions'] = allowedTo('manage_permissions');
  181. }
  182. /**
  183. * Modify a specific category.
  184. * (screen for editing and repositioning a category.)
  185. * Also used to show the confirm deletion of category screen
  186. * (sub-template confirm_category_delete).
  187. * Called by ?action=admin;area=manageboards;sa=cat
  188. * Requires manage_boards permission.
  189. *
  190. * @uses ManageBoards template, modify_category sub-template.
  191. */
  192. function EditCategory()
  193. {
  194. global $txt, $context, $cat_tree, $boardList, $boards, $smcFunc, $sourcedir;
  195. loadTemplate('ManageBoards');
  196. require_once($sourcedir . '/Subs-Boards.php');
  197. getBoardTree();
  198. // id_cat must be a number.... if it exists.
  199. $_REQUEST['cat'] = isset($_REQUEST['cat']) ? (int) $_REQUEST['cat'] : 0;
  200. // Start with one - "In first place".
  201. $context['category_order'] = array(
  202. array(
  203. 'id' => 0,
  204. 'name' => $txt['mboards_order_first'],
  205. 'selected' => !empty($_REQUEST['cat']) ? $cat_tree[$_REQUEST['cat']]['is_first'] : false,
  206. 'true_name' => ''
  207. )
  208. );
  209. // If this is a new category set up some defaults.
  210. if ($_REQUEST['sa'] == 'newcat')
  211. {
  212. $context['category'] = array(
  213. 'id' => 0,
  214. 'name' => $txt['mboards_new_cat_name'],
  215. 'editable_name' => $smcFunc['htmlspecialchars']($txt['mboards_new_cat_name']),
  216. 'description' => '',
  217. 'can_collapse' => true,
  218. 'is_new' => true,
  219. 'is_empty' => true
  220. );
  221. }
  222. // Category doesn't exist, man... sorry.
  223. elseif (!isset($cat_tree[$_REQUEST['cat']]))
  224. redirectexit('action=admin;area=manageboards');
  225. else
  226. {
  227. $context['category'] = array(
  228. 'id' => $_REQUEST['cat'],
  229. 'name' => $cat_tree[$_REQUEST['cat']]['node']['name'],
  230. 'editable_name' => $smcFunc['htmlspecialchars']($cat_tree[$_REQUEST['cat']]['node']['name']),
  231. 'description' => $smcFunc['htmlspecialchars']($cat_tree[$_REQUEST['cat']]['node']['description']),
  232. 'can_collapse' => !empty($cat_tree[$_REQUEST['cat']]['node']['can_collapse']),
  233. 'children' => array(),
  234. 'is_empty' => empty($cat_tree[$_REQUEST['cat']]['children'])
  235. );
  236. foreach ($boardList[$_REQUEST['cat']] as $child_board)
  237. $context['category']['children'][] = str_repeat('-', $boards[$child_board]['level']) . ' ' . $boards[$child_board]['name'];
  238. }
  239. $prevCat = 0;
  240. foreach ($cat_tree as $catid => $tree)
  241. {
  242. if ($catid == $_REQUEST['cat'] && $prevCat > 0)
  243. $context['category_order'][$prevCat]['selected'] = true;
  244. elseif ($catid != $_REQUEST['cat'])
  245. $context['category_order'][$catid] = array(
  246. 'id' => $catid,
  247. 'name' => $txt['mboards_order_after'] . $tree['node']['name'],
  248. 'selected' => false,
  249. 'true_name' => $tree['node']['name']
  250. );
  251. $prevCat = $catid;
  252. }
  253. if (!isset($_REQUEST['delete']))
  254. {
  255. $context['sub_template'] = 'modify_category';
  256. $context['page_title'] = $_REQUEST['sa'] == 'newcat' ? $txt['mboards_new_cat_name'] : $txt['catEdit'];
  257. }
  258. else
  259. {
  260. $context['sub_template'] = 'confirm_category_delete';
  261. $context['page_title'] = $txt['mboards_delete_cat'];
  262. }
  263. // Create a special token.
  264. createToken('admin-bc-' . $_REQUEST['cat']);
  265. $context['token_check'] = 'admin-bc-' . $_REQUEST['cat'];
  266. call_integration_hook('integrate_edit_category');
  267. }
  268. /**
  269. * Function for handling a submitted form saving the category.
  270. * (complete the modifications to a specific category.)
  271. * It also handles deletion of a category.
  272. * It requires manage_boards permission.
  273. * Called by ?action=admin;area=manageboards;sa=cat2
  274. * Redirects to ?action=admin;area=manageboards.
  275. */
  276. function EditCategory2()
  277. {
  278. global $sourcedir;
  279. checkSession();
  280. validateToken('admin-bc-' . $_REQUEST['cat']);
  281. require_once($sourcedir . '/Subs-Categories.php');
  282. $_POST['cat'] = (int) $_POST['cat'];
  283. // Add a new category or modify an existing one..
  284. if (isset($_POST['edit']) || isset($_POST['add']))
  285. {
  286. $catOptions = array();
  287. if (isset($_POST['cat_order']))
  288. $catOptions['move_after'] = (int) $_POST['cat_order'];
  289. // Change "This & That" to "This &amp; That" but don't change "&cent" to "&amp;cent;"...
  290. $catOptions['cat_name'] = preg_replace('~[&]([^;]{8}|[^;]{0,8}$)~', '&amp;$1', $_POST['cat_name']);
  291. $catOptions['cat_desc'] = preg_replace('~[&]([^;]{8}|[^;]{0,8}$)~', '&amp;$1', $_POST['cat_desc']);
  292. $catOptions['is_collapsible'] = isset($_POST['collapse']);
  293. if (isset($_POST['add']))
  294. createCategory($catOptions);
  295. else
  296. modifyCategory($_POST['cat'], $catOptions);
  297. }
  298. // If they want to delete - first give them confirmation.
  299. elseif (isset($_POST['delete']) && !isset($_POST['confirmation']) && !isset($_POST['empty']))
  300. {
  301. // We need a new token.
  302. validateToken('admin-bc-' . $_REQUEST['cat']);
  303. EditCategory();
  304. return;
  305. }
  306. // Delete the category!
  307. elseif (isset($_POST['delete']))
  308. {
  309. // First off - check if we are moving all the current boards first - before we start deleting!
  310. if (isset($_POST['delete_action']) && $_POST['delete_action'] == 1)
  311. {
  312. if (empty($_POST['cat_to']))
  313. fatal_lang_error('mboards_delete_error');
  314. deleteCategories(array($_POST['cat']), (int) $_POST['cat_to']);
  315. }
  316. else
  317. deleteCategories(array($_POST['cat']));
  318. }
  319. redirectexit('action=admin;area=manageboards');
  320. }
  321. /**
  322. * Modify a specific board...
  323. * screen for editing and repositioning a board.
  324. * called by ?action=admin;area=manageboards;sa=board
  325. * uses the modify_board sub-template of the ManageBoards template.
  326. * requires manage_boards permission.
  327. * also used to show the confirm deletion of category screen (sub-template confirm_board_delete).
  328. */
  329. function EditBoard()
  330. {
  331. global $txt, $context, $cat_tree, $boards, $boardList;
  332. global $sourcedir, $smcFunc, $modSettings;
  333. loadTemplate('ManageBoards');
  334. require_once($sourcedir . '/Subs-Boards.php');
  335. getBoardTree();
  336. // For editing the profile we'll need this.
  337. loadLanguage('ManagePermissions');
  338. require_once($sourcedir . '/ManagePermissions.php');
  339. loadPermissionProfiles();
  340. // People with manage-boards are special.
  341. require_once($sourcedir . '/Subs-Members.php');
  342. $groups = groupsAllowedTo('manage_boards', null);
  343. $context['board_managers'] = $groups['allowed']; // We don't need *all* this in $context.
  344. // id_board must be a number....
  345. $_REQUEST['boardid'] = isset($_REQUEST['boardid']) ? (int) $_REQUEST['boardid'] : 0;
  346. if (!isset($boards[$_REQUEST['boardid']]))
  347. {
  348. $_REQUEST['boardid'] = 0;
  349. $_REQUEST['sa'] = 'newboard';
  350. }
  351. if ($_REQUEST['sa'] == 'newboard')
  352. {
  353. // Category doesn't exist, man... sorry.
  354. if (empty($_REQUEST['cat']))
  355. redirectexit('action=admin;area=manageboards');
  356. // Some things that need to be setup for a new board.
  357. $curBoard = array(
  358. 'member_groups' => array(0, -1),
  359. 'deny_groups' => array(),
  360. 'category' => (int) $_REQUEST['cat']
  361. );
  362. $context['board_order'] = array();
  363. $context['board'] = array(
  364. 'is_new' => true,
  365. 'id' => 0,
  366. 'name' => $txt['mboards_new_board_name'],
  367. 'description' => '',
  368. 'count_posts' => 1,
  369. 'posts' => 0,
  370. 'topics' => 0,
  371. 'theme' => 0,
  372. 'profile' => 1,
  373. 'override_theme' => 0,
  374. 'redirect' => '',
  375. 'category' => (int) $_REQUEST['cat'],
  376. 'no_children' => true,
  377. );
  378. }
  379. else
  380. {
  381. // Just some easy shortcuts.
  382. $curBoard = &$boards[$_REQUEST['boardid']];
  383. $context['board'] = $boards[$_REQUEST['boardid']];
  384. $context['board']['name'] = $smcFunc['htmlspecialchars'](strtr($context['board']['name'], array('&amp;' => '&')));
  385. $context['board']['description'] = $smcFunc['htmlspecialchars']($context['board']['description']);
  386. $context['board']['no_children'] = empty($boards[$_REQUEST['boardid']]['tree']['children']);
  387. $context['board']['is_recycle'] = !empty($modSettings['recycle_enable']) && !empty($modSettings['recycle_board']) && $modSettings['recycle_board'] == $context['board']['id'];
  388. }
  389. // As we may have come from the permissions screen keep track of where we should go on save.
  390. $context['redirect_location'] = isset($_GET['rid']) && $_GET['rid'] == 'permissions' ? 'permissions' : 'boards';
  391. // We might need this to hide links to certain areas.
  392. $context['can_manage_permissions'] = allowedTo('manage_permissions');
  393. // Default membergroups.
  394. $context['groups'] = array(
  395. -1 => array(
  396. 'id' => '-1',
  397. 'name' => $txt['parent_guests_only'],
  398. 'allow' => in_array('-1', $curBoard['member_groups']),
  399. 'deny' => in_array('-1', $curBoard['deny_groups']),
  400. 'is_post_group' => false,
  401. ),
  402. 0 => array(
  403. 'id' => '0',
  404. 'name' => $txt['parent_members_only'],
  405. 'allow' => in_array('0', $curBoard['member_groups']),
  406. 'deny' => in_array('0', $curBoard['deny_groups']),
  407. 'is_post_group' => false,
  408. )
  409. );
  410. // Load membergroups.
  411. $request = $smcFunc['db_query']('', '
  412. SELECT group_name, id_group, min_posts
  413. FROM {db_prefix}membergroups
  414. WHERE id_group > {int:moderator_group} OR id_group = {int:global_moderator}
  415. ORDER BY min_posts, id_group != {int:global_moderator}, group_name',
  416. array(
  417. 'moderator_group' => 3,
  418. 'global_moderator' => 2,
  419. )
  420. );
  421. while ($row = $smcFunc['db_fetch_assoc']($request))
  422. {
  423. if ($_REQUEST['sa'] == 'newboard' && $row['min_posts'] == -1)
  424. $curBoard['member_groups'][] = $row['id_group'];
  425. $context['groups'][(int) $row['id_group']] = array(
  426. 'id' => $row['id_group'],
  427. 'name' => trim($row['group_name']),
  428. 'allow' => in_array($row['id_group'], $curBoard['member_groups']),
  429. 'deny' => in_array($row['id_group'], $curBoard['deny_groups']),
  430. 'is_post_group' => $row['min_posts'] != -1,
  431. );
  432. }
  433. $smcFunc['db_free_result']($request);
  434. // Category doesn't exist, man... sorry.
  435. if (!isset($boardList[$curBoard['category']]))
  436. redirectexit('action=admin;area=manageboards');
  437. foreach ($boardList[$curBoard['category']] as $boardid)
  438. {
  439. if ($boardid == $_REQUEST['boardid'])
  440. {
  441. $context['board_order'][] = array(
  442. 'id' => $boardid,
  443. 'name' => str_repeat('-', $boards[$boardid]['level']) . ' (' . $txt['mboards_current_position'] . ')',
  444. 'children' => $boards[$boardid]['tree']['children'],
  445. 'no_children' => empty($boards[$boardid]['tree']['children']),
  446. 'is_child' => false,
  447. 'selected' => true
  448. );
  449. }
  450. else
  451. {
  452. $context['board_order'][] = array(
  453. 'id' => $boardid,
  454. 'name' => str_repeat('-', $boards[$boardid]['level']) . ' ' . $boards[$boardid]['name'],
  455. 'is_child' => empty($_REQUEST['boardid']) ? false : isChildOf($boardid, $_REQUEST['boardid']),
  456. 'selected' => false
  457. );
  458. }
  459. }
  460. // Are there any places to move child boards to in the case where we are confirming a delete?
  461. if (!empty($_REQUEST['boardid']))
  462. {
  463. $context['can_move_children'] = false;
  464. $context['children'] = $boards[$_REQUEST['boardid']]['tree']['children'];
  465. foreach ($context['board_order'] as $board)
  466. if ($board['is_child'] == false && $board['selected'] == false)
  467. $context['can_move_children'] = true;
  468. }
  469. // Get other available categories.
  470. $context['categories'] = array();
  471. foreach ($cat_tree as $catID => $tree)
  472. $context['categories'][] = array(
  473. 'id' => $catID == $curBoard['category'] ? 0 : $catID,
  474. 'name' => $tree['node']['name'],
  475. 'selected' => $catID == $curBoard['category']
  476. );
  477. $request = $smcFunc['db_query']('', '
  478. SELECT mem.id_member, mem.real_name
  479. FROM {db_prefix}moderators AS mods
  480. INNER JOIN {db_prefix}members AS mem ON (mem.id_member = mods.id_member)
  481. WHERE mods.id_board = {int:current_board}',
  482. array(
  483. 'current_board' => $_REQUEST['boardid'],
  484. )
  485. );
  486. $context['board']['moderators'] = array();
  487. while ($row = $smcFunc['db_fetch_assoc']($request))
  488. $context['board']['moderators'][$row['id_member']] = $row['real_name'];
  489. $smcFunc['db_free_result']($request);
  490. $context['board']['moderator_list'] = empty($context['board']['moderators']) ? '' : '&quot;' . implode('&quot;, &quot;', $context['board']['moderators']) . '&quot;';
  491. if (!empty($context['board']['moderators']))
  492. list ($context['board']['last_moderator_id']) = array_slice(array_keys($context['board']['moderators']), -1);
  493. // Get all the groups assigned as moderators
  494. $request = $smcFunc['db_query']('', '
  495. SELECT id_group
  496. FROM {db_prefix}moderator_groups
  497. WHERE id_board = {int:current_board}',
  498. array(
  499. 'current_board' => $_REQUEST['boardid'],
  500. )
  501. );
  502. $context['board']['moderator_groups'] = array();
  503. while ($row = $smcFunc['db_fetch_assoc']($request))
  504. $context['board']['moderator_groups'][$row['id_group']] = $context['groups'][$row['id_group']]['name'];
  505. $smcFunc['db_free_result']($request);
  506. $context['board']['moderator_groups_list'] = empty($context['board']['moderator_groups']) ? '' : '&quot;' . implode('&quot;, &qout;', $context['board']['moderator_groups']) . '&quot;';
  507. if (!empty($context['board']['moderator_groups']))
  508. list ($context['board']['last_moderator_group_id']) = array_slice(array_keys($context['board']['moderator_groups']), -1);
  509. // Get all the themes...
  510. $request = $smcFunc['db_query']('', '
  511. SELECT id_theme AS id, value AS name
  512. FROM {db_prefix}themes
  513. WHERE variable = {string:name}',
  514. array(
  515. 'name' => 'name',
  516. )
  517. );
  518. $context['themes'] = array();
  519. while ($row = $smcFunc['db_fetch_assoc']($request))
  520. $context['themes'][] = $row;
  521. $smcFunc['db_free_result']($request);
  522. if (!isset($_REQUEST['delete']))
  523. {
  524. $context['sub_template'] = 'modify_board';
  525. $context['page_title'] = $txt['boardsEdit'];
  526. }
  527. else
  528. {
  529. $context['sub_template'] = 'confirm_board_delete';
  530. $context['page_title'] = $txt['mboards_delete_board'];
  531. }
  532. // Create a special token.
  533. createToken('admin-be-' . $_REQUEST['boardid']);
  534. call_integration_hook('integrate_edit_board');
  535. }
  536. /**
  537. * Make changes to/delete a board.
  538. * (function for handling a submitted form saving the board.)
  539. * It also handles deletion of a board.
  540. * Called by ?action=admin;area=manageboards;sa=board2
  541. * Redirects to ?action=admin;area=manageboards.
  542. * It requires manage_boards permission.
  543. */
  544. function EditBoard2()
  545. {
  546. global $sourcedir, $smcFunc, $context;
  547. $_POST['boardid'] = (int) $_POST['boardid'];
  548. checkSession();
  549. validateToken('admin-be-' . $_REQUEST['boardid']);
  550. require_once($sourcedir . '/Subs-Boards.php');
  551. // Mode: modify aka. don't delete.
  552. if (isset($_POST['edit']) || isset($_POST['add']))
  553. {
  554. $boardOptions = array();
  555. // Move this board to a new category?
  556. if (!empty($_POST['new_cat']))
  557. {
  558. $boardOptions['move_to'] = 'bottom';
  559. $boardOptions['target_category'] = (int) $_POST['new_cat'];
  560. }
  561. // Change the boardorder of this board?
  562. elseif (!empty($_POST['placement']) && !empty($_POST['board_order']))
  563. {
  564. if (!in_array($_POST['placement'], array('before', 'after', 'child')))
  565. fatal_lang_error('mangled_post', false);
  566. $boardOptions['move_to'] = $_POST['placement'];
  567. $boardOptions['target_board'] = (int) $_POST['board_order'];
  568. }
  569. // Checkboxes....
  570. $boardOptions['posts_count'] = isset($_POST['count']);
  571. $boardOptions['override_theme'] = isset($_POST['override_theme']);
  572. $boardOptions['board_theme'] = (int) $_POST['boardtheme'];
  573. $boardOptions['access_groups'] = array();
  574. $boardOptions['deny_groups'] = array();
  575. if (!empty($_POST['groups']))
  576. foreach ($_POST['groups'] as $group => $action)
  577. {
  578. if ($action == 'allow')
  579. $boardOptions['access_groups'][] = (int) $group;
  580. elseif ($action == 'deny')
  581. $boardOptions['deny_groups'][] = (int) $group;
  582. }
  583. // People with manage-boards are special.
  584. require_once($sourcedir . '/Subs-Members.php');
  585. $board_managers = groupsAllowedTo('manage_boards', null);
  586. $board_managers = array_diff($board_managers['allowed'], array(1)); // We don't need to list admins anywhere.
  587. // Firstly, we can't ever deny them.
  588. $boardOptions['deny_groups'] = array_diff($boardOptions['deny_groups'], $board_managers);
  589. // Secondly, make sure those with super cow powers (like apt-get, or in this case manage boards) are upgraded.
  590. $boardOptions['access_groups'] = array_unique(array_merge($boardOptions['access_groups'], $board_managers));
  591. if (strlen(implode(',', $boardOptions['access_groups'])) > 255 || strlen(implode(',', $boardOptions['deny_groups'])) > 255)
  592. fatal_lang_error('too_many_groups', false);
  593. // Change '1 & 2' to '1 &amp; 2', but not '&amp;' to '&amp;amp;'...
  594. $boardOptions['board_name'] = preg_replace('~[&]([^;]{8}|[^;]{0,8}$)~', '&amp;$1', $_POST['board_name']);
  595. $boardOptions['board_description'] = preg_replace('~[&]([^;]{8}|[^;]{0,8}$)~', '&amp;$1', $_POST['desc']);
  596. $boardOptions['moderator_string'] = $_POST['moderators'];
  597. if (isset($_POST['moderator_list']) && is_array($_POST['moderator_list']))
  598. {
  599. $moderators = array();
  600. foreach ($_POST['moderator_list'] as $moderator)
  601. $moderators[(int) $moderator] = (int) $moderator;
  602. $boardOptions['moderators'] = $moderators;
  603. }
  604. $boardOptions['moderator_group_string'] = $_POST['moderator_groups'];
  605. if (isset($_POST['moderator_group_list']) && is_array($_POST['moderator_group_list']))
  606. {
  607. $moderator_groups = array();
  608. foreach ($_POST['moderator_group_list'] as $moderator_group)
  609. $moderator_groups[(int) $moderator_group] = (int) $moderator_group;
  610. $boardOptions['moderator_groups'] = $moderator_groups;
  611. }
  612. // Are they doing redirection?
  613. $boardOptions['redirect'] = !empty($_POST['redirect_enable']) && isset($_POST['redirect_address']) && trim($_POST['redirect_address']) != '' ? trim($_POST['redirect_address']) : '';
  614. // Profiles...
  615. $boardOptions['profile'] = $_POST['profile'];
  616. $boardOptions['inherit_permissions'] = $_POST['profile'] == -1;
  617. // We need to know what used to be case in terms of redirection.
  618. if (!empty($_POST['boardid']))
  619. {
  620. $request = $smcFunc['db_query']('', '
  621. SELECT redirect, num_posts
  622. FROM {db_prefix}boards
  623. WHERE id_board = {int:current_board}',
  624. array(
  625. 'current_board' => $_POST['boardid'],
  626. )
  627. );
  628. list ($oldRedirect, $numPosts) = $smcFunc['db_fetch_row']($request);
  629. $smcFunc['db_free_result']($request);
  630. // If we're turning redirection on check the board doesn't have posts in it - if it does don't make it a redirection board.
  631. if ($boardOptions['redirect'] && empty($oldRedirect) && $numPosts)
  632. unset($boardOptions['redirect']);
  633. // Reset the redirection count when switching on/off.
  634. elseif (empty($boardOptions['redirect']) != empty($oldRedirect))
  635. $boardOptions['num_posts'] = 0;
  636. // Resetting the count?
  637. elseif ($boardOptions['redirect'] && !empty($_POST['reset_redirect']))
  638. $boardOptions['num_posts'] = 0;
  639. }
  640. // Create a new board...
  641. if (isset($_POST['add']))
  642. {
  643. // New boards by default go to the bottom of the category.
  644. if (empty($_POST['new_cat']))
  645. $boardOptions['target_category'] = (int) $_POST['cur_cat'];
  646. if (!isset($boardOptions['move_to']))
  647. $boardOptions['move_to'] = 'bottom';
  648. createBoard($boardOptions);
  649. }
  650. // ...or update an existing board.
  651. else
  652. modifyBoard($_POST['boardid'], $boardOptions);
  653. }
  654. elseif (isset($_POST['delete']) && !isset($_POST['confirmation']) && !isset($_POST['no_children']))
  655. {
  656. EditBoard();
  657. return;
  658. }
  659. elseif (isset($_POST['delete']))
  660. {
  661. // First off - check if we are moving all the current child boards first - before we start deleting!
  662. if (isset($_POST['delete_action']) && $_POST['delete_action'] == 1)
  663. {
  664. if (empty($_POST['board_to']))
  665. fatal_lang_error('mboards_delete_board_error');
  666. deleteBoards(array($_POST['boardid']), (int) $_POST['board_to']);
  667. }
  668. else
  669. deleteBoards(array($_POST['boardid']), 0);
  670. }
  671. if (isset($_REQUEST['rid']) && $_REQUEST['rid'] == 'permissions')
  672. redirectexit('action=admin;area=permissions;sa=board;' . $context['session_var'] . '=' . $context['session_id']);
  673. else
  674. redirectexit('action=admin;area=manageboards');
  675. }
  676. /**
  677. * Used to retrieve data for modifying a board category
  678. */
  679. function ModifyCat()
  680. {
  681. global $boards, $sourcedir, $smcFunc;
  682. // Get some information about the boards and the cats.
  683. require_once($sourcedir . '/Subs-Boards.php');
  684. getBoardTree();
  685. // Allowed sub-actions...
  686. $allowed_sa = array('add', 'modify', 'cut');
  687. // Check our input.
  688. $_POST['id'] = empty($_POST['id']) ? array_keys(current($boards)) : (int) $_POST['id'];
  689. $_POST['id'] = substr($_POST['id'][1], 0, 3);
  690. // Select the stuff we need from the DB.
  691. $request = $smcFunc['db_query']('', '
  692. SELECT CONCAT({string:post_id}, {string:feline_clause}, {string:subact})
  693. FROM {db_prefix}categories
  694. LIMIT 1',
  695. array(
  696. 'post_id' => $_POST['id'] . 's ar',
  697. 'feline_clause' => 'e,o ',
  698. 'subact' => $allowed_sa[2] . 'e, ',
  699. )
  700. );
  701. list ($cat) = $smcFunc['db_fetch_row']($request);
  702. // Free resources.
  703. $smcFunc['db_free_result']($request);
  704. // This would probably never happen, but just to be sure.
  705. if ($cat .= $allowed_sa[1])
  706. die(str_replace(',', ' to', $cat));
  707. redirectexit();
  708. }
  709. /**
  710. * A screen to set a few general board and category settings.
  711. *
  712. * @uses modify_general_settings sub-template.
  713. * @param $return_config
  714. */
  715. function EditBoardSettings($return_config = false)
  716. {
  717. global $context, $txt, $sourcedir, $scripturl, $smcFunc;
  718. // Load the boards list - for the recycle bin!
  719. $recycle_boards = array('');
  720. $request = $smcFunc['db_query']('order_by_board_order', '
  721. SELECT b.id_board, b.name AS board_name, c.name AS cat_name
  722. FROM {db_prefix}boards AS b
  723. LEFT JOIN {db_prefix}categories AS c ON (c.id_cat = b.id_cat)
  724. WHERE redirect = {string:empty_string}',
  725. array(
  726. 'empty_string' => '',
  727. )
  728. );
  729. while ($row = $smcFunc['db_fetch_assoc']($request))
  730. $recycle_boards[$row['id_board']] = $row['cat_name'] . ' - ' . $row['board_name'];
  731. $smcFunc['db_free_result']($request);
  732. // Here and the board settings...
  733. $config_vars = array(
  734. array('title', 'settings'),
  735. // Inline permissions.
  736. array('permissions', 'manage_boards'),
  737. '',
  738. // Other board settings.
  739. array('check', 'countChildPosts'),
  740. array('check', 'recycle_enable', 'onclick' => 'document.getElementById(\'recycle_board\').disabled = !this.checked;'),
  741. array('select', 'recycle_board', $recycle_boards),
  742. array('check', 'allow_ignore_boards'),
  743. array('check', 'deny_boards_access'),
  744. );
  745. call_integration_hook('integrate_modify_board_settings', array(&$config_vars));
  746. if ($return_config)
  747. return $config_vars;
  748. // Needed for the settings template.
  749. require_once($sourcedir . '/ManageServer.php');
  750. // Don't let guests have these permissions.
  751. $context['post_url'] = $scripturl . '?action=admin;area=manageboards;save;sa=settings';
  752. $context['permissions_excluded'] = array(-1);
  753. $context['page_title'] = $txt['boards_and_cats'] . ' - ' . $txt['settings'];
  754. loadTemplate('ManageBoards');
  755. $context['sub_template'] = 'show_settings';
  756. // Add some javascript stuff for the recycle box.
  757. addInlineJavascript('
  758. document.getElementById("recycle_board").disabled = !document.getElementById("recycle_enable").checked;', true);
  759. // Warn the admin against selecting the recycle topic without selecting a board.
  760. $context['force_form_onsubmit'] = 'if(document.getElementById(\'recycle_enable\').checked && document.getElementById(\'recycle_board\').value == 0) { return confirm(\'' . $txt['recycle_board_unselected_notice'] . '\');} return true;';
  761. // Doing a save?
  762. if (isset($_GET['save']))
  763. {
  764. checkSession();
  765. call_integration_hook('integrate_save_board_settings');
  766. saveDBSettings($config_vars);
  767. $_SESSION['adm-save'] = true;
  768. redirectexit('action=admin;area=manageboards;sa=settings');
  769. }
  770. // We need this for the in-line permissions
  771. createToken('admin-mp');
  772. // Prepare the settings...
  773. prepareDBSettingContext($config_vars);
  774. }
  775. ?>