db_prefs.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545
  1. <?php
  2. /**
  3. * db_prefs.php
  4. *
  5. * This contains functions for manipulating user preferences
  6. * stored in a database, accessed though the Pear DB layer.
  7. *
  8. * Database:
  9. *
  10. * The preferences table should have three columns:
  11. * user char \ primary
  12. * prefkey char / key
  13. * prefval blob
  14. *
  15. * CREATE TABLE userprefs (user CHAR(128) NOT NULL DEFAULT '',
  16. * prefkey CHAR(64) NOT NULL DEFAULT '',
  17. * prefval BLOB NOT NULL DEFAULT '',
  18. * primary key (user,prefkey));
  19. *
  20. * Configuration of databasename, username and password is done
  21. * by using conf.pl or the administrator plugin
  22. *
  23. * @copyright &copy; 1999-2006 The SquirrelMail Project Team
  24. * @license http://opensource.org/licenses/gpl-license.php GNU Public License
  25. * @version $Id$
  26. * @package squirrelmail
  27. * @subpackage prefs
  28. * @since 1.1.3
  29. */
  30. /** @ignore */
  31. if (!defined('SM_PATH')) define('SM_PATH','../');
  32. /** Unknown database */
  33. define('SMDB_UNKNOWN', 0);
  34. /** MySQL */
  35. define('SMDB_MYSQL', 1);
  36. /** PostgreSQL */
  37. define('SMDB_PGSQL', 2);
  38. /**
  39. * don't display errors (no code execution in functions/*.php).
  40. * will handle error in dbPrefs class.
  41. */
  42. @include_once('DB.php');
  43. global $prefs_are_cached, $prefs_cache;
  44. /**
  45. * @ignore
  46. */
  47. function cachePrefValues($username) {
  48. global $prefs_are_cached, $prefs_cache;
  49. sqgetGlobalVar('prefs_are_cached', $prefs_are_cached, SQ_SESSION );
  50. if ($prefs_are_cached) {
  51. sqgetGlobalVar('prefs_cache', $prefs_cache, SQ_SESSION );
  52. return;
  53. }
  54. sqsession_unregister('prefs_cache');
  55. sqsession_unregister('prefs_are_cached');
  56. $db = new dbPrefs;
  57. if(isset($db->error)) {
  58. printf( _("Preference database error (%s). Exiting abnormally"),
  59. $db->error);
  60. exit;
  61. }
  62. $db->fillPrefsCache($username);
  63. if (isset($db->error)) {
  64. printf( _("Preference database error (%s). Exiting abnormally"),
  65. $db->error);
  66. exit;
  67. }
  68. $prefs_are_cached = true;
  69. sqsession_register($prefs_cache, 'prefs_cache');
  70. sqsession_register($prefs_are_cached, 'prefs_are_cached');
  71. }
  72. /**
  73. * Class used to handle connections to prefs database and operations with preferences
  74. * @package squirrelmail
  75. * @subpackage prefs
  76. * @since 1.1.3
  77. */
  78. class dbPrefs {
  79. /**
  80. * Table used to store preferences
  81. * @var string
  82. */
  83. var $table = 'userprefs';
  84. /**
  85. * Field used to store owner of preference
  86. * @var string
  87. */
  88. var $user_field = 'user';
  89. /**
  90. * Field used to store preference name
  91. * @var string
  92. */
  93. var $key_field = 'prefkey';
  94. /**
  95. * Field used to store preference value
  96. * @var string
  97. */
  98. var $val_field = 'prefval';
  99. /**
  100. * Database connection object
  101. * @var object
  102. */
  103. var $dbh = NULL;
  104. /**
  105. * Error messages
  106. * @var string
  107. */
  108. var $error = NULL;
  109. /**
  110. * Database type (SMDB_* constants)
  111. * Is used in setKey().
  112. * @var integer
  113. */
  114. var $db_type = SMDB_UNKNOWN;
  115. /**
  116. * Default preferences
  117. * @var array
  118. */
  119. var $default = Array('theme_default' => 0,
  120. 'show_html_default' => '0');
  121. /**
  122. * Preference owner field size
  123. * @var integer
  124. * @since 1.5.1
  125. */
  126. var $user_size = 128;
  127. /**
  128. * Preference key field size
  129. * @var integer
  130. * @since 1.5.1
  131. */
  132. var $key_size = 64;
  133. /**
  134. * Preference value field size
  135. * @var integer
  136. * @since 1.5.1
  137. */
  138. var $val_size = 65536;
  139. /**
  140. * initialize DB connection object
  141. * @return boolean true, if object is initialized
  142. */
  143. function open() {
  144. global $prefs_dsn, $prefs_table;
  145. global $prefs_user_field, $prefs_key_field, $prefs_val_field;
  146. global $prefs_user_size, $prefs_key_size, $prefs_val_size;
  147. /* test if Pear DB class is available and freak out if it is not */
  148. if (! class_exists('DB')) {
  149. // same error also in abook_database.php
  150. $this->error = _("Could not include PEAR database functions required for the database backend.") . "<br />\n";
  151. $this->error .= sprintf(_("Is PEAR installed, and is the include path set correctly to find %s?"),
  152. '<tt>DB.php</tt>') . "<br />\n";
  153. $this->error .= _("Please contact your system administrator and report this error.");
  154. return false;
  155. }
  156. if(isset($this->dbh)) {
  157. return true;
  158. }
  159. if (preg_match('/^mysql/', $prefs_dsn)) {
  160. $this->db_type = SMDB_MYSQL;
  161. } elseif (preg_match('/^pgsql/', $prefs_dsn)) {
  162. $this->db_type = SMDB_PGSQL;
  163. }
  164. if (!empty($prefs_table)) {
  165. $this->table = $prefs_table;
  166. }
  167. if (!empty($prefs_user_field)) {
  168. $this->user_field = $prefs_user_field;
  169. }
  170. if (!empty($prefs_key_field)) {
  171. $this->key_field = $prefs_key_field;
  172. }
  173. if (!empty($prefs_val_field)) {
  174. $this->val_field = $prefs_val_field;
  175. }
  176. if (!empty($prefs_user_size)) {
  177. $this->user_size = (int) $prefs_user_size;
  178. }
  179. if (!empty($prefs_key_size)) {
  180. $this->key_size = (int) $prefs_key_size;
  181. }
  182. if (!empty($prefs_val_size)) {
  183. $this->val_size = (int) $prefs_val_size;
  184. }
  185. $dbh = DB::connect($prefs_dsn, true);
  186. if(DB::isError($dbh)) {
  187. $this->error = DB::errorMessage($dbh);
  188. return false;
  189. }
  190. $this->dbh = $dbh;
  191. return true;
  192. }
  193. /**
  194. * Function used to handle database connection errors
  195. * @param object PEAR Error object
  196. */
  197. function failQuery($res = NULL) {
  198. if($res == NULL) {
  199. printf(_("Preference database error (%s). Exiting abnormally"),
  200. $this->error);
  201. } else {
  202. printf(_("Preference database error (%s). Exiting abnormally"),
  203. DB::errorMessage($res));
  204. }
  205. exit;
  206. }
  207. /**
  208. * Get user's prefs setting
  209. * @param string $user user name
  210. * @param string $key preference name
  211. * @param mixed $default (since 1.2.5) default value
  212. * @return mixed preference value
  213. */
  214. function getKey($user, $key, $default = '') {
  215. global $prefs_cache;
  216. cachePrefValues($user);
  217. if (isset($prefs_cache[$key])) {
  218. return $prefs_cache[$key];
  219. } else {
  220. if (isset($this->default[$key])) {
  221. return $this->default[$key];
  222. } else {
  223. return $default;
  224. }
  225. }
  226. }
  227. /**
  228. * Delete user's prefs setting
  229. * @param string $user user name
  230. * @param string $key preference name
  231. * @return boolean
  232. */
  233. function deleteKey($user, $key) {
  234. global $prefs_cache;
  235. if (!$this->open()) {
  236. return false;
  237. }
  238. $query = sprintf("DELETE FROM %s WHERE %s='%s' AND %s='%s'",
  239. $this->table,
  240. $this->user_field,
  241. $this->dbh->quoteString($user),
  242. $this->key_field,
  243. $this->dbh->quoteString($key));
  244. $res = $this->dbh->simpleQuery($query);
  245. if(DB::isError($res)) {
  246. $this->failQuery($res);
  247. }
  248. unset($prefs_cache[$key]);
  249. return true;
  250. }
  251. /**
  252. * Set user's preference
  253. * @param string $user user name
  254. * @param string $key preference name
  255. * @param mixed $value preference value
  256. * @return boolean
  257. */
  258. function setKey($user, $key, $value) {
  259. if (!$this->open()) {
  260. return false;
  261. }
  262. /**
  263. * Check if username fits into db field
  264. */
  265. if (strlen($user) > $this->user_size) {
  266. $this->error = "Oversized username value."
  267. ." Your preferences can't be saved."
  268. ." See doc/db-backend.txt or contact your system administrator.";
  269. /**
  270. * Debugging function. Can be used to log all issues that trigger
  271. * oversized field errors. Function should be enabled in all three
  272. * strlen checks. See http://www.php.net/error-log
  273. */
  274. // error_log($user.'|'.$key.'|'.$value."\n",3,'/tmp/oversized_log');
  275. // error is fatal
  276. $this->failQuery(null);
  277. }
  278. /**
  279. * Check if preference key fits into db field
  280. */
  281. if (strlen($key) > $this->key_size) {
  282. $err_msg = "Oversized user's preference key."
  283. ." Some preferences were not saved."
  284. ." See doc/db-backend.txt or contact your system administrator.";
  285. // error is not fatal. Only some preference is not saved.
  286. trigger_error($err_msg,E_USER_WARNING);
  287. return false;
  288. }
  289. /**
  290. * Check if preference value fits into db field
  291. */
  292. if (strlen($value) > $this->val_size) {
  293. $err_msg = "Oversized user's preference value."
  294. ." Some preferences were not saved."
  295. ." See doc/db-backend.txt or contact your system administrator.";
  296. // error is not fatal. Only some preference is not saved.
  297. trigger_error($err_msg,E_USER_WARNING);
  298. return false;
  299. }
  300. if ($this->db_type == SMDB_MYSQL) {
  301. $query = sprintf("REPLACE INTO %s (%s, %s, %s) ".
  302. "VALUES('%s','%s','%s')",
  303. $this->table,
  304. $this->user_field,
  305. $this->key_field,
  306. $this->val_field,
  307. $this->dbh->quoteString($user),
  308. $this->dbh->quoteString($key),
  309. $this->dbh->quoteString($value));
  310. $res = $this->dbh->simpleQuery($query);
  311. if(DB::isError($res)) {
  312. $this->failQuery($res);
  313. }
  314. } elseif ($this->db_type == SMDB_PGSQL) {
  315. $this->dbh->simpleQuery("BEGIN TRANSACTION");
  316. $query = sprintf("DELETE FROM %s WHERE %s='%s' AND %s='%s'",
  317. $this->table,
  318. $this->user_field,
  319. $this->dbh->quoteString($user),
  320. $this->key_field,
  321. $this->dbh->quoteString($key));
  322. $res = $this->dbh->simpleQuery($query);
  323. if (DB::isError($res)) {
  324. $this->dbh->simpleQuery("ROLLBACK TRANSACTION");
  325. $this->failQuery($res);
  326. }
  327. $query = sprintf("INSERT INTO %s (%s, %s, %s) VALUES ('%s', '%s', '%s')",
  328. $this->table,
  329. $this->user_field,
  330. $this->key_field,
  331. $this->val_field,
  332. $this->dbh->quoteString($user),
  333. $this->dbh->quoteString($key),
  334. $this->dbh->quoteString($value));
  335. $res = $this->dbh->simpleQuery($query);
  336. if (DB::isError($res)) {
  337. $this->dbh->simpleQuery("ROLLBACK TRANSACTION");
  338. $this->failQuery($res);
  339. }
  340. $this->dbh->simpleQuery("COMMIT TRANSACTION");
  341. } else {
  342. $query = sprintf("DELETE FROM %s WHERE %s='%s' AND %s='%s'",
  343. $this->table,
  344. $this->user_field,
  345. $this->dbh->quoteString($user),
  346. $this->key_field,
  347. $this->dbh->quoteString($key));
  348. $res = $this->dbh->simpleQuery($query);
  349. if (DB::isError($res)) {
  350. $this->failQuery($res);
  351. }
  352. $query = sprintf("INSERT INTO %s (%s, %s, %s) VALUES ('%s', '%s', '%s')",
  353. $this->table,
  354. $this->user_field,
  355. $this->key_field,
  356. $this->val_field,
  357. $this->dbh->quoteString($user),
  358. $this->dbh->quoteString($key),
  359. $this->dbh->quoteString($value));
  360. $res = $this->dbh->simpleQuery($query);
  361. if (DB::isError($res)) {
  362. $this->failQuery($res);
  363. }
  364. }
  365. return true;
  366. }
  367. /**
  368. * Fill preference cache array
  369. * @param string $user user name
  370. * @since 1.2.3
  371. */
  372. function fillPrefsCache($user) {
  373. global $prefs_cache;
  374. if (!$this->open()) {
  375. return;
  376. }
  377. $prefs_cache = array();
  378. $query = sprintf("SELECT %s as prefkey, %s as prefval FROM %s ".
  379. "WHERE %s = '%s'",
  380. $this->key_field,
  381. $this->val_field,
  382. $this->table,
  383. $this->user_field,
  384. $this->dbh->quoteString($user));
  385. $res = $this->dbh->query($query);
  386. if (DB::isError($res)) {
  387. $this->failQuery($res);
  388. }
  389. while ($row = $res->fetchRow(DB_FETCHMODE_ASSOC)) {
  390. $prefs_cache[$row['prefkey']] = $row['prefval'];
  391. }
  392. }
  393. } /* end class dbPrefs */
  394. /**
  395. * returns the value for the pref $string
  396. * @ignore
  397. */
  398. function getPref($data_dir, $username, $string, $default = '') {
  399. $db = new dbPrefs;
  400. if(isset($db->error)) {
  401. printf( _("Preference database error (%s). Exiting abnormally"),
  402. $db->error);
  403. exit;
  404. }
  405. return $db->getKey($username, $string, $default);
  406. }
  407. /**
  408. * Remove the pref $string
  409. * @ignore
  410. */
  411. function removePref($data_dir, $username, $string) {
  412. global $prefs_cache;
  413. $db = new dbPrefs;
  414. if(isset($db->error)) {
  415. $db->failQuery();
  416. }
  417. $db->deleteKey($username, $string);
  418. if (isset($prefs_cache[$string])) {
  419. unset($prefs_cache[$string]);
  420. }
  421. sqsession_register($prefs_cache , 'prefs_cache');
  422. return;
  423. }
  424. /**
  425. * sets the pref, $string, to $set_to
  426. * @ignore
  427. */
  428. function setPref($data_dir, $username, $string, $set_to) {
  429. global $prefs_cache;
  430. if (isset($prefs_cache[$string]) && ($prefs_cache[$string] == $set_to)) {
  431. return;
  432. }
  433. if ($set_to === '') {
  434. removePref($data_dir, $username, $string);
  435. return;
  436. }
  437. $db = new dbPrefs;
  438. if(isset($db->error)) {
  439. $db->failQuery();
  440. }
  441. $db->setKey($username, $string, $set_to);
  442. $prefs_cache[$string] = $set_to;
  443. assert_options(ASSERT_ACTIVE, 1);
  444. assert_options(ASSERT_BAIL, 1);
  445. assert ('$set_to == $prefs_cache[$string]');
  446. sqsession_register($prefs_cache , 'prefs_cache');
  447. return;
  448. }
  449. /**
  450. * This checks if the prefs are available
  451. * @ignore
  452. */
  453. function checkForPrefs($data_dir, $username) {
  454. $db = new dbPrefs;
  455. if(isset($db->error)) {
  456. $db->failQuery();
  457. }
  458. }
  459. /**
  460. * Writes the Signature
  461. * @ignore
  462. */
  463. function setSig($data_dir, $username, $number, $string) {
  464. if ($number == "g") {
  465. $key = '___signature___';
  466. } else {
  467. $key = sprintf('___sig%s___', $number);
  468. }
  469. setPref($data_dir, $username, $key, $string);
  470. return;
  471. }
  472. /**
  473. * Gets the signature
  474. * @ignore
  475. */
  476. function getSig($data_dir, $username, $number) {
  477. if ($number == "g") {
  478. $key = '___signature___';
  479. } else {
  480. $key = sprintf('___sig%d___', $number);
  481. }
  482. return getPref($data_dir, $username, $key);
  483. }
  484. // vim: et ts=4