dolibarr  16.0.5
myobject_document.php
Go to the documentation of this file.
1 <?php
2 /* Copyright (C) 2007-2017 Laurent Destailleur <eldy@users.sourceforge.net>
3  * Copyright (C) ---Put here your own copyright and developer email---
4  *
5  * This program is free software; you can redistribute it and/or modify
6  * it under the terms of the GNU General Public License as published by
7  * the Free Software Foundation; either version 3 of the License, or
8  * (at your option) any later version.
9  *
10  * This program is distributed in the hope that it will be useful,
11  * but WITHOUT ANY WARRANTY; without even the implied warranty of
12  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13  * GNU General Public License for more details.
14  *
15  * You should have received a copy of the GNU General Public License
16  * along with this program. If not, see <https://www.gnu.org/licenses/>.
17  */
18 
25 //if (! defined('NOREQUIREDB')) define('NOREQUIREDB', '1'); // Do not create database handler $db
26 //if (! defined('NOREQUIREUSER')) define('NOREQUIREUSER', '1'); // Do not load object $user
27 //if (! defined('NOREQUIRESOC')) define('NOREQUIRESOC', '1'); // Do not load object $mysoc
28 //if (! defined('NOREQUIRETRAN')) define('NOREQUIRETRAN', '1'); // Do not load object $langs
29 //if (! defined('NOSCANGETFORINJECTION')) define('NOSCANGETFORINJECTION', '1'); // Do not check injection attack on GET parameters
30 //if (! defined('NOSCANPOSTFORINJECTION')) define('NOSCANPOSTFORINJECTION', '1'); // Do not check injection attack on POST parameters
31 //if (! defined('NOCSRFCHECK')) define('NOCSRFCHECK', '1'); // Do not check CSRF attack (test on referer + on token if option MAIN_SECURITY_CSRF_WITH_TOKEN is on).
32 //if (! defined('NOTOKENRENEWAL')) define('NOTOKENRENEWAL', '1'); // Do not roll the Anti CSRF token (used if MAIN_SECURITY_CSRF_WITH_TOKEN is on)
33 //if (! defined('NOSTYLECHECK')) define('NOSTYLECHECK', '1'); // Do not check style html tag into posted data
34 //if (! defined('NOREQUIREMENU')) define('NOREQUIREMENU', '1'); // If there is no need to load and show top and left menu
35 //if (! defined('NOREQUIREHTML')) define('NOREQUIREHTML', '1'); // If we don't need to load the html.form.class.php
36 //if (! defined('NOREQUIREAJAX')) define('NOREQUIREAJAX', '1'); // Do not load ajax.lib.php library
37 //if (! defined("NOLOGIN")) define("NOLOGIN", '1'); // If this page is public (can be called outside logged session). This include the NOIPCHECK too.
38 //if (! defined('NOIPCHECK')) define('NOIPCHECK', '1'); // Do not check IP defined into conf $dolibarr_main_restrict_ip
39 //if (! defined("MAIN_LANG_DEFAULT")) define('MAIN_LANG_DEFAULT', 'auto'); // Force lang to a particular value
40 //if (! defined("MAIN_AUTHENTICATION_MODE")) define('MAIN_AUTHENTICATION_MODE', 'aloginmodule'); // Force authentication handler
41 //if (! defined("NOREDIRECTBYMAINTOLOGIN")) define('NOREDIRECTBYMAINTOLOGIN', 1); // The main.inc.php does not make a redirect if not logged, instead show simple error message
42 //if (! defined("FORCECSP")) define('FORCECSP', 'none'); // Disable all Content Security Policies
43 //if (! defined('CSRFCHECK_WITH_TOKEN')) define('CSRFCHECK_WITH_TOKEN', '1'); // Force use of CSRF protection with tokens even for GET
44 //if (! defined('NOBROWSERNOTIF')) define('NOBROWSERNOTIF', '1'); // Disable browser notification
45 
46 // Load Dolibarr environment
47 $res = 0;
48 // Try main.inc.php into web root known defined into CONTEXT_DOCUMENT_ROOT (not always defined)
49 if (!$res && !empty($_SERVER["CONTEXT_DOCUMENT_ROOT"])) {
50  $res = @include $_SERVER["CONTEXT_DOCUMENT_ROOT"]."/main.inc.php";
51 }
52 // Try main.inc.php into web root detected using web root calculated from SCRIPT_FILENAME
53 $tmp = empty($_SERVER['SCRIPT_FILENAME']) ? '' : $_SERVER['SCRIPT_FILENAME']; $tmp2 = realpath(__FILE__); $i = strlen($tmp) - 1; $j = strlen($tmp2) - 1;
54 while ($i > 0 && $j > 0 && isset($tmp[$i]) && isset($tmp2[$j]) && $tmp[$i] == $tmp2[$j]) {
55  $i--; $j--;
56 }
57 if (!$res && $i > 0 && file_exists(substr($tmp, 0, ($i + 1))."/main.inc.php")) {
58  $res = @include substr($tmp, 0, ($i + 1))."/main.inc.php";
59 }
60 if (!$res && $i > 0 && file_exists(dirname(substr($tmp, 0, ($i + 1)))."/main.inc.php")) {
61  $res = @include dirname(substr($tmp, 0, ($i + 1)))."/main.inc.php";
62 }
63 // Try main.inc.php using relative path
64 if (!$res && file_exists("../main.inc.php")) {
65  $res = @include "../main.inc.php";
66 }
67 if (!$res && file_exists("../../main.inc.php")) {
68  $res = @include "../../main.inc.php";
69 }
70 if (!$res && file_exists("../../../main.inc.php")) {
71  $res = @include "../../../main.inc.php";
72 }
73 if (!$res) {
74  die("Include of main fails");
75 }
76 
77 require_once DOL_DOCUMENT_ROOT.'/core/lib/company.lib.php';
78 require_once DOL_DOCUMENT_ROOT.'/core/lib/files.lib.php';
79 require_once DOL_DOCUMENT_ROOT.'/core/lib/images.lib.php';
80 require_once DOL_DOCUMENT_ROOT.'/core/class/html.formfile.class.php';
81 dol_include_once('/mymodule/class/myobject.class.php');
82 dol_include_once('/mymodule/lib/mymodule_myobject.lib.php');
83 
84 // Load translation files required by the page
85 $langs->loadLangs(array("mymodule@mymodule", "companies", "other", "mails"));
86 
87 
88 $action = GETPOST('action', 'aZ09');
89 $confirm = GETPOST('confirm');
90 $id = (GETPOST('socid', 'int') ? GETPOST('socid', 'int') : GETPOST('id', 'int'));
91 $ref = GETPOST('ref', 'alpha');
92 
93 // Get parameters
94 $limit = GETPOST('limit', 'int') ? GETPOST('limit', 'int') : $conf->liste_limit;
95 $sortfield = GETPOST('sortfield', 'aZ09comma');
96 $sortorder = GETPOST('sortorder', 'aZ09comma');
97 $page = GETPOSTISSET('pageplusone') ? (GETPOST('pageplusone') - 1) : GETPOST("page", 'int');
98 if (empty($page) || $page == -1) {
99  $page = 0;
100 } // If $page is not defined, or '' or -1
101 $offset = $limit * $page;
102 $pageprev = $page - 1;
103 $pagenext = $page + 1;
104 if (!$sortorder) {
105  $sortorder = "ASC";
106 }
107 if (!$sortfield) {
108  $sortfield = "name";
109 }
110 //if (! $sortfield) $sortfield="position_name";
111 
112 // Initialize technical objects
113 $object = new MyObject($db);
114 $extrafields = new ExtraFields($db);
115 $diroutputmassaction = $conf->mymodule->dir_output.'/temp/massgeneration/'.$user->id;
116 $hookmanager->initHooks(array('myobjectdocument', 'globalcard')); // Note that conf->hooks_modules contains array
117 // Fetch optionals attributes and labels
118 $extrafields->fetch_name_optionals_label($object->table_element);
119 
120 // Load object
121 include DOL_DOCUMENT_ROOT.'/core/actions_fetchobject.inc.php'; // Must be include, not include_once // Must be include, not include_once. Include fetch and fetch_thirdparty but not fetch_optionals
122 
123 if ($id > 0 || !empty($ref)) {
124  $upload_dir = $conf->mymodule->multidir_output[$object->entity ? $object->entity : $conf->entity]."/myobject/".get_exdir(0, 0, 0, 1, $object);
125 }
126 
127 // There is several ways to check permission.
128 // Set $enablepermissioncheck to 1 to enable a minimum low level of checks
129 $enablepermissioncheck = 0;
130 if ($enablepermissioncheck) {
131  $permissiontoread = $user->rights->mymodule->myobject->read;
132  $permissiontoadd = $user->rights->mymodule->myobject->write; // Used by the include of actions_addupdatedelete.inc.php and actions_linkedfiles.inc.php
133 } else {
134  $permissiontoread = 1;
135  $permissiontoadd = 1;
136 }
137 
138 // Security check (enable the most restrictive one)
139 //if ($user->socid > 0) accessforbidden();
140 //if ($user->socid > 0) $socid = $user->socid;
141 //$isdraft = (($object->status == $object::STATUS_DRAFT) ? 1 : 0);
142 //restrictedArea($user, $object->element, $object->id, $object->table_element, '', 'fk_soc', 'rowid', $isdraft);
143 if (empty($conf->mymodule->enabled)) accessforbidden();
144 if (!$permissiontoread) accessforbidden();
145 
146 
147 /*
148  * Actions
149  */
150 
151 include DOL_DOCUMENT_ROOT.'/core/actions_linkedfiles.inc.php';
152 
153 
154 /*
155  * View
156  */
157 
158 $form = new Form($db);
159 
160 $title = $langs->trans("MyObject").' - '.$langs->trans("Files");
161 $help_url = '';
162 //$help_url='EN:Module_Third_Parties|FR:Module_Tiers|ES:Empresas';
163 llxHeader('', $title, $help_url);
164 
165 if ($object->id) {
166  /*
167  * Show tabs
168  */
169  $head = myobjectPrepareHead($object);
170 
171  print dol_get_fiche_head($head, 'document', $langs->trans("MyObject"), -1, $object->picto);
172 
173 
174  // Build file list
175  $filearray = dol_dir_list($upload_dir, "files", 0, '', '(\.meta|_preview.*\.png)$', $sortfield, (strtolower($sortorder) == 'desc' ?SORT_DESC:SORT_ASC), 1);
176  $totalsize = 0;
177  foreach ($filearray as $key => $file) {
178  $totalsize += $file['size'];
179  }
180 
181  // Object card
182  // ------------------------------------------------------------
183  $linkback = '<a href="'.dol_buildpath('/mymodule/myobject_list.php', 1).'?restore_lastsearch_values=1'.(!empty($socid) ? '&socid='.$socid : '').'">'.$langs->trans("BackToList").'</a>';
184 
185  $morehtmlref = '<div class="refidno">';
186  /*
187  // Ref customer
188  $morehtmlref.=$form->editfieldkey("RefCustomer", 'ref_client', $object->ref_client, $object, 0, 'string', '', 0, 1);
189  $morehtmlref.=$form->editfieldval("RefCustomer", 'ref_client', $object->ref_client, $object, 0, 'string', '', null, null, '', 1);
190  // Thirdparty
191  $morehtmlref.='<br>'.$langs->trans('ThirdParty') . ' : ' . (is_object($object->thirdparty) ? $object->thirdparty->getNomUrl(1) : '');
192  // Project
193  if (! empty($conf->project->enabled))
194  {
195  $langs->load("projects");
196  $morehtmlref.='<br>'.$langs->trans('Project') . ' ';
197  if ($permissiontoadd)
198  {
199  if ($action != 'classify')
200  //$morehtmlref.='<a class="editfielda" href="' . $_SERVER['PHP_SELF'] . '?action=classify&token='.newToken().'&id=' . $object->id . '">' . img_edit($langs->transnoentitiesnoconv('SetProject')) . '</a> : ';
201  $morehtmlref.=' : ';
202  if ($action == 'classify') {
203  //$morehtmlref.=$form->form_project($_SERVER['PHP_SELF'] . '?id=' . $object->id, $object->socid, $object->fk_project, 'projectid', 0, 0, 1, 1);
204  $morehtmlref.='<form method="post" action="'.$_SERVER['PHP_SELF'].'?id='.$object->id.'">';
205  $morehtmlref.='<input type="hidden" name="action" value="classin">';
206  $morehtmlref.='<input type="hidden" name="token" value="'.newToken().'">';
207  $morehtmlref.=$formproject->select_projects($object->socid, $object->fk_project, 'projectid', $maxlength, 0, 1, 0, 1, 0, 0, '', 1);
208  $morehtmlref.='<input type="submit" class="button valignmiddle" value="'.$langs->trans("Modify").'">';
209  $morehtmlref.='</form>';
210  } else {
211  $morehtmlref.=$form->form_project($_SERVER['PHP_SELF'] . '?id=' . $object->id, $object->socid, $object->fk_project, 'none', 0, 0, 0, 1);
212  }
213  } else {
214  if (! empty($object->fk_project)) {
215  $proj = new Project($db);
216  $proj->fetch($object->fk_project);
217  $morehtmlref .= ': '.$proj->getNomUrl();
218  } else {
219  $morehtmlref .= '';
220  }
221  }
222  }*/
223  $morehtmlref .= '</div>';
224 
225  dol_banner_tab($object, 'ref', $linkback, 1, 'ref', 'ref', $morehtmlref);
226 
227  print '<div class="fichecenter">';
228 
229  print '<div class="underbanner clearboth"></div>';
230  print '<table class="border centpercent tableforfield">';
231 
232  // Number of files
233  print '<tr><td class="titlefield">'.$langs->trans("NbOfAttachedFiles").'</td><td colspan="3">'.count($filearray).'</td></tr>';
234 
235  // Total size
236  print '<tr><td>'.$langs->trans("TotalSizeOfAttachedFiles").'</td><td colspan="3">'.$totalsize.' '.$langs->trans("bytes").'</td></tr>';
237 
238  print '</table>';
239 
240  print '</div>';
241 
242  print dol_get_fiche_end();
243 
244  $modulepart = 'mymodule';
245  //$permissiontoadd = $user->rights->mymodule->myobject->write;
246  $permissiontoadd = 1;
247  //$permtoedit = $user->rights->mymodule->myobject->write;
248  $permtoedit = 1;
249  $param = '&id='.$object->id;
250 
251  //$relativepathwithnofile='myobject/' . dol_sanitizeFileName($object->id).'/';
252  $relativepathwithnofile = 'myobject/'.dol_sanitizeFileName($object->ref).'/';
253 
254  include DOL_DOCUMENT_ROOT.'/core/tpl/document_actions_post_headers.tpl.php';
255 } else {
256  accessforbidden('', 0, 1);
257 }
258 
259 // End of page
260 llxFooter();
261 $db->close();
llxFooter
llxFooter()
Empty footer.
Definition: wrapper.php:73
GETPOST
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
Definition: functions.lib.php:484
dol_include_once
if(!function_exists('dol_getprefix')) dol_include_once($relpath, $classname='')
Make an include_once using default root and alternate root if it fails.
Definition: functions.lib.php:1033
$form
if($cancel &&! $id) if($action=='add' &&! $cancel) if($action=='delete') if($id) $form
Actions.
Definition: card.php:142
dol_dir_list
dol_dir_list($path, $types="all", $recursive=0, $filter="", $excludefilter=null, $sortcriteria="name", $sortorder=SORT_ASC, $mode=0, $nohook=0, $relativename="", $donotfollowsymlinks=0)
Scan a directory and return a list of files/directories.
Definition: files.lib.php:60
dol_banner_tab
dol_banner_tab($object, $paramid, $morehtml='', $shownav=1, $fieldid='rowid', $fieldref='ref', $morehtmlref='', $moreparam='', $nodbprefix=0, $morehtmlleft='', $morehtmlstatus='', $onlybanner=0, $morehtmlright='')
Show tab footer of a card.
Definition: functions.lib.php:2046
$help_url
if(GETPOST('button_removefilter_x', 'alpha')||GETPOST('button_removefilter.x', 'alpha')||GETPOST('button_removefilter', 'alpha')) if(GETPOST('button_search_x', 'alpha')||GETPOST('button_search.x', 'alpha')||GETPOST('button_search', 'alpha')) if($action=="save" &&empty($cancel)) $help_url
View.
Definition: agenda.php:116
get_exdir
get_exdir($num, $level, $alpha, $withoutslash, $object, $modulepart='')
Return a path to have a the directory according to object where files are stored.
Definition: functions.lib.php:6549
myobjectPrepareHead
myobjectPrepareHead($object)
Prepare array of tabs for MyObject.
Definition: mymodule_myobject.lib.php:30
dol_get_fiche_head
dol_get_fiche_head($links=array(), $active='', $title='', $notab=0, $picto='', $pictoisfullpath=0, $morehtmlright='', $morecss='', $limittoshow=0, $moretabssuffix='')
Show tabs of a record.
Definition: functions.lib.php:1822
dol_get_fiche_end
dol_get_fiche_end($notab=0)
Return tab footer of a card.
Definition: functions.lib.php:2018
MyObject
Class for MyObject.
Definition: myobject.class.php:33
GETPOSTISSET
GETPOSTISSET($paramname)
Return true if we are in a context of submitting the parameter $paramname from a POST of a form.
Definition: functions.lib.php:386
ExtraFields
Class to manage standard extra fields.
Definition: extrafields.class.php:39
Form
Class to manage generation of HTML components Only common components must be here.
Definition: html.form.class.php:52
accessforbidden
accessforbidden($message='', $printheader=1, $printfooter=1, $showonlymessage=0, $params=null)
Show a message to say access is forbidden and stop program Calling this function terminate execution ...
Definition: security.lib.php:933
llxHeader
if(!defined('NOREQUIRESOC')) if(!defined('NOREQUIRETRAN')) if(!defined('NOCSRFCHECK')) if(!defined('NOTOKENRENEWAL')) if(!defined('NOREQUIREMENU')) if(!defined('NOREQUIREHTML')) if(!defined('NOREQUIREAJAX')) llxHeader()
Empty header.
Definition: wrapper.php:59