dolibarr 23.0.3
master.inc.php
Go to the documentation of this file.
1<?php
2/* Copyright (C) 2002-2007 Rodolphe Quiedeville <rodolphe@quiedeville.org>
3 * Copyright (C) 2003 Xavier Dutoit <doli@sydesy.com>
4 * Copyright (C) 2004-2012 Laurent Destailleur <eldy@users.sourceforge.net>
5 * Copyright (C) 2004 Sebastien Di Cintio <sdicintio@ressource-toi.org>
6 * Copyright (C) 2004 Benoit Mortier <benoit.mortier@opensides.be>
7 * Copyright (C) 2005-2017 Regis Houssin <regis.houssin@inodbox.com>
8 * Copyright (C) 2005 Simon Tosser <simon@kornog-computing.com>
9 * Copyright (C) 2006 Andre Cianfarani <andre.cianfarani@acdeveloppement.net>
10 * Copyright (C) 2010 Juanjo Menent <jmenent@2byte.es>
11 * Copyright (C) 2011 Philippe Grand <philippe.grand@atoo-net.com>
12 * Copyright (C) 2014 Teddy Andreotti <125155@supinfo.com>
13 * Copyright (C) 2024-2025 MDW <mdeweerd@users.noreply.github.com>
14 * Copyright (C) 2025 Frédéric France <frederic.france@free.fr>
15 *
16 * This program is free software; you can redistribute it and/or modify
17 * it under the terms of the GNU General Public License as published by
18 * the Free Software Foundation; either version 3 of the License, or
19 * (at your option) any later version.
20 *
21 * This program is distributed in the hope that it will be useful,
22 * but WITHOUT ANY WARRANTY; without even the implied warranty of
23 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
24 * GNU General Public License for more details.
25 *
26 * You should have received a copy of the GNU General Public License
27 * along with this program. If not, see <https://www.gnu.org/licenses/>.
28 */
29
37// Include the conf.php and functions.lib.php and security.lib.php. This defined the constants like DOL_DOCUMENT_ROOT, DOL_DATA_ROOT, DOL_URL_ROOT...
38// This file may have been already required by main.inc.php. But may not by scripts. So, here the require_once must be kept.
39require_once 'filefunc.inc.php';
67'
68@phan-var-force ?string $dolibarr_main_db_prefix
69@phan-var-force ?string $dolibarr_main_db_encryption
70@phan-var-force ?string $dolibarr_main_db_cryptkey
71@phan-var-force ?string $dolibarr_main_limit_users
72@phan-var-force ?string $dolibarr_main_url_root_alt
73';
74require_once DOL_DOCUMENT_ROOT.'/core/class/conf.class.php';
75require_once DOL_DOCUMENT_ROOT.'/core/class/hookmanager.class.php';
76
77
78if (!function_exists('is_countable')) {
85 function is_countable($c)
86 {
87 return is_array($c) || $c instanceof Countable;
88 }
89}
90
91
92/*
93 * Define some constants
94 */
95
96if (!defined('EURO')) {
97 define('EURO', chr(128));
98}
99
100// Define syslog constants
101if (!defined('LOG_DEBUG')) {
102 if (!function_exists("syslog")) {
103 // For PHP versions without syslog (like running on Windows OS)
104 define('LOG_EMERG', 0);
105 define('LOG_ALERT', 1);
106 define('LOG_CRIT', 2);
107 define('LOG_ERR', 3);
108 define('LOG_WARNING', 4);
109 define('LOG_NOTICE', 5);
110 define('LOG_INFO', 6);
111 define('LOG_DEBUG', 7);
112 }
113}
114
115/*
116 * Disable some not used PHP stream
117 */
118$listofwrappers = stream_get_wrappers();
119// We need '.phar' for geoip2. TODO Replace phar in geoip with exploded files so we can disable phar by default.
120// phar stream does not auto unserialize content (possible code execution) since PHP 8.1
121// zip stream is necessary by excel import module
122$arrayofstreamtodisable = array('compress.zlib', 'compress.bzip2', 'ftp', 'ftps', 'glob', 'data', 'expect', 'ogg', 'rar', 'zlib');
123if (!empty($dolibarr_main_stream_to_disable) && is_array($dolibarr_main_stream_to_disable)) {
124 $arrayofstreamtodisable = $dolibarr_main_stream_to_disable;
125}
126foreach ($arrayofstreamtodisable as $streamtodisable) {
127 if (!empty($listofwrappers) && in_array($streamtodisable, $listofwrappers)) {
128 /*if (!empty($dolibarr_main_stream_do_not_disable) && is_array($dolibarr_main_stream_do_not_disable) && in_array($streamtodisable, $dolibarr_main_stream_do_not_disable)) {
129 continue; // We do not disable this stream
130 }*/
131 stream_wrapper_unregister($streamtodisable);
132 }
133}
134
135
136/*
137 * Create $conf object
138 */
139
140$conf = new Conf();
141
142// Set properties specific to database
143$conf->db->host = empty($dolibarr_main_db_host) ? '' : $dolibarr_main_db_host;
144$conf->db->port = empty($dolibarr_main_db_port) ? '' : $dolibarr_main_db_port;
145$conf->db->name = empty($dolibarr_main_db_name) ? '' : $dolibarr_main_db_name;
146$conf->db->user = empty($dolibarr_main_db_user) ? '' : $dolibarr_main_db_user;
147$conf->db->pass = empty($dolibarr_main_db_pass) ? '' : $dolibarr_main_db_pass;
148$conf->db->type = $dolibarr_main_db_type;
149$conf->db->prefix = $dolibarr_main_db_prefix;
150$conf->db->character_set = $dolibarr_main_db_character_set;
151$conf->db->dolibarr_main_db_collation = $dolibarr_main_db_collation;
152$conf->db->dolibarr_main_db_encryption = $dolibarr_main_db_encryption;
153$conf->db->dolibarr_main_db_cryptkey = $dolibarr_main_db_cryptkey;
154if (defined('TEST_DB_FORCE_TYPE')) {
155 $conf->db->type = constant('TEST_DB_FORCE_TYPE'); // Force db type (for test purpose, by PHP unit for example)
156}
157
158// Set properties specific to conf file
159$conf->file->main_limit_users = $dolibarr_main_limit_users;
160$conf->file->mailing_limit_sendbyweb = empty($dolibarr_mailing_limit_sendbyweb) ? 0 : $dolibarr_mailing_limit_sendbyweb;
161$conf->file->mailing_limit_sendbycli = empty($dolibarr_mailing_limit_sendbycli) ? 0 : $dolibarr_mailing_limit_sendbycli;
162$conf->file->mailing_limit_sendbyday = empty($dolibarr_mailing_limit_sendbyday) ? 0 : $dolibarr_mailing_limit_sendbyday;
163$conf->file->main_authentication = empty($dolibarr_main_authentication) ? 'dolibarr' : $dolibarr_main_authentication; // Identification mode
164$conf->file->main_force_https = empty($dolibarr_main_force_https) ? '' : $dolibarr_main_force_https; // Force https
165$conf->file->strict_mode = empty($dolibarr_strict_mode) ? '' : $dolibarr_strict_mode; // Force php strict mode (for debug)
166$conf->file->instance_unique_id = empty($dolibarr_main_instance_unique_id) ? (empty($dolibarr_main_cookie_cryptkey) ? '' : $dolibarr_main_cookie_cryptkey) : $dolibarr_main_instance_unique_id; // Unique id of instance
167$conf->file->dol_main_url_root = $dolibarr_main_url_root; // Define url inside the config file
168$conf->file->dol_document_root = array('main' => (string) DOL_DOCUMENT_ROOT); // Define an array of document root directories ('/home/htdocs')
169$conf->file->dol_url_root = array('main' => (string) DOL_URL_ROOT); // Define an array of url root path ('' or '/dolibarr')
170if (!empty($dolibarr_main_document_root_alt)) {
171 // dolibarr_main_document_root_alt can contains several directories
172 $values = preg_split('/[;,]/', $dolibarr_main_document_root_alt);
173 $i = 0;
174 foreach ($values as $value) {
175 $conf->file->dol_document_root['alt'.($i++)] = (string) $value;
176 }
177 $values = preg_split('/[;,]/', (string) $dolibarr_main_url_root_alt);
178 $i = 0;
179 foreach ($values as $value) {
180 if (preg_match('/^http(s)?:/', $value)) {
181 // Show error message
182 $correct_value = str_replace($dolibarr_main_url_root, '', $value);
183 print '<b>Error:</b><br>'."\n";
184 print 'Wrong <b>$dolibarr_main_url_root_alt</b> value in <b>conf.php</b> file.<br>'."\n";
185 print 'We now use a relative path to $dolibarr_main_url_root to build alternate URLs.<br>'."\n";
186 print 'Value found: '.$value.'<br>'."\n";
187 print 'Should be replaced by: '.$correct_value.'<br>'."\n";
188 print "Or something like following examples:<br>\n";
189 print "\"/extensions\"<br>\n";
190 print "\"/extensions1,/extensions2,...\"<br>\n";
191 print "\"/../extensions\"<br>\n";
192 print "\"/custom\"<br>\n";
193 exit;
194 }
195 $conf->file->dol_url_root['alt'.($i++)] = (string) $value;
196 }
197}
198
199// Load the main includes of common libraries
200if (!defined('NOREQUIREUSER')) {
201 require_once DOL_DOCUMENT_ROOT.'/user/class/user.class.php'; // Need 500ko memory
202}
203if (!defined('NOREQUIRETRAN')) {
204 require_once DOL_DOCUMENT_ROOT.'/core/class/translate.class.php';
205}
206if (!defined('NOREQUIRESOC')) {
207 require_once DOL_DOCUMENT_ROOT.'/societe/class/societe.class.php';
208}
209
210
211/*
212 * Create object $langs (must be before all other code)
213 */
214$langs = null;
215if (!defined('NOREQUIRETRAN')) {
216 $langs = new Translate('', $conf); // Must be after reading conf
217}
218
219
220/*
221 * Create object $db
222 */
223$db = null;
224if (!defined('NOREQUIREDB')) {
225 $db = getDoliDBInstance($conf->db->type, $conf->db->host, $conf->db->user, $conf->db->pass, $conf->db->name, (int) $conf->db->port);
230 if ($db->error) {
231 if (is_object($langs)) {
232 $langs->setDefaultLang('auto');
233 }
234 // If we were into a website context
235 if (!defined('USEDOLIBARREDITOR') && !defined('USEDOLIBARRSERVER') && !empty($_SERVER['SCRIPT_FILENAME']) && (strpos($_SERVER['SCRIPT_FILENAME'], DOL_DATA_ROOT.'/website') === 0)) {
236 $sapi_type = php_sapi_name();
237 if (substr($sapi_type, 0, 3) != 'cgi') {
238 http_response_code(503); // To tel search engine this is a temporary error
239 }
240 print '<div class="center" style="text-align: center; margin: 100px;">';
241 if (is_object($langs)) {
242 $langs->load("website");
243 print $langs->trans("SorryWebsiteIsCurrentlyOffLine");
244 } else {
245 print "SorryWebsiteIsCurrentlyOffLine";
246 }
247 print '</div>';
248 exit(1);
249 }
250 dol_print_error($db, "host=".$conf->db->host.", port=".$conf->db->port.", user=".$conf->db->user.", databasename=".$conf->db->name.", ".$db->error);
251 exit(1);
252 }
253}
254
255// Now database connection is known, so we can forget password
256//unset($dolibarr_main_db_pass); // We comment this because this constant is used in some other pages
257unset($conf->db->pass); // This is to avoid password to be shown in memory/swap dump
258
259
260/*
261 * Create object $user
262 */
263if (!defined('NOREQUIREUSER')) {
264 $user = new User($db);
265}
266
267/*
268 * Create the global $hookmanager object
269 */
270if (!defined('NOHOOKMANAGER')) {
271 $hookmanager = new HookManager($db);
272}
273
274
275/*
276 * Load object $conf
277 */
278
279// By default conf->entity is 1, but we change this if we ask another value.
280if (session_id() && !empty($_SESSION["dol_entity"])) {
281 // Entity inside an opened session
282 $conf->entity = $_SESSION["dol_entity"];
283} elseif (!empty($_ENV["dol_entity"])) {
284 // Entity inside a CLI script
285 $conf->entity = $_ENV["dol_entity"];
286} elseif (GETPOSTISSET("loginfunction") && (GETPOSTINT("entity") || GETPOSTINT("switchentity"))) {
287 // Just after a login page
288 $conf->entity = (GETPOSTISSET("entity") ? GETPOSTINT("entity") : GETPOSTINT("switchentity"));
289} elseif (defined('DOLENTITY') && is_numeric(constant('DOLENTITY'))) {
290 // For public page with MultiCompany module
291 $conf->entity = constant('DOLENTITY');
292}
293// Sanitize entity
294if (!is_numeric($conf->entity)) {
295 $conf->entity = 1;
296}
297// Here we read database (llx_const table) and define conf var $conf->global->XXX.
298//print "We work with data into entity instance number '".$conf->entity."'";
299if ($db !== null) {
300 $conf->setValues($db);
301}
302
303
304// Set default language (must be after the setValues setting global conf 'MAIN_LANG_DEFAULT'. Page main.inc.php will overwrite langs->defaultlang with user value later)
305if (!defined('NOREQUIRETRAN')) {
306 $langcode = (GETPOST('lang', 'aZ09') ? GETPOST('lang', 'aZ09', 1) : getDolGlobalString('MAIN_LANG_DEFAULT', 'auto'));
307 if (defined('MAIN_LANG_DEFAULT')) { // So a page can force the language whatever is setup and parameters in URL
308 $langcode = constant('MAIN_LANG_DEFAULT');
309 }
310 $langs->setDefaultLang($langcode);
311}
312
313
314// Create object $mysoc (A thirdparty object that contains properties of companies managed by Dolibarr.
315if (!defined('NOREQUIREDB') && !defined('NOREQUIRESOC') && $db != null) {
316 require_once DOL_DOCUMENT_ROOT.'/societe/class/societe.class.php';
317
318 $mysoc = new Societe($db);
319 $mysoc->setMysoc($conf);
320
321 // We set some specific default values according to country
322
323 if ($mysoc->country_code == 'DE' && !isset($conf->global->MAIN_INVERT_SENDER_RECIPIENT)) {
324 // For DE, we need to invert our address with customer address
325 $conf->global->MAIN_INVERT_SENDER_RECIPIENT = 1;
326 }
327 if ($mysoc->country_code == 'FR' && !isset($conf->global->INVOICE_CATEGORY_OF_OPERATION)) {
328 // For FR, default value of option to show category of operations is on by default. Decret n°2099-1299 2022-10-07
329 $conf->global->INVOICE_CATEGORY_OF_OPERATION = 1;
330 }
331 if ($mysoc->country_code == 'FR' && !isset($conf->global->INVOICE_DISABLE_REPLACEMENT)) {
332 // For FR, the replacement invoice type is not allowed.
333 // From an accounting point of view, this creates holes in the numbering of the invoice.
334 // This is very problematic during a fiscal control.
335 $conf->global->INVOICE_DISABLE_REPLACEMENT = 1;
336 }
337 if ($mysoc->country_code == 'GR' && !isset($conf->global->INVOICE_DISABLE_REPLACEMENT)) {
338 // The replacement invoice type is not allowed in Greece.
339 $conf->global->INVOICE_DISABLE_REPLACEMENT = 1;
340 }
341 if ($mysoc->country_code == 'GR' && !isset($conf->global->INVOICE_DISABLE_DEPOSIT)) {
342 // The deposit invoice type is not allowed in Greece.
343 $conf->global->INVOICE_DISABLE_DEPOSIT = 1;
344 }
345 if ($mysoc->country_code == 'GR' && !isset($conf->global->INVOICE_CREDIT_NOTE_STANDALONE)) {
346 // Standalone credit note is compulsory in Greece.
347 $conf->global->INVOICE_CREDIT_NOTE_STANDALONE = 1;
348 }
349 if ($mysoc->country_code == 'GR' && !isset($conf->global->INVOICE_SUBTYPE_ENABLED)) {
350 // Invoice subtype is a requirement for Greece.
351 $conf->global->INVOICE_SUBTYPE_ENABLED = 1;
352 }
353
354 if (($mysoc->localtax1_assuj || $mysoc->localtax2_assuj) && !isset($conf->global->MAIN_NO_INPUT_PRICE_WITH_TAX)) {
355 // For countries using the 2nd or 3rd tax, we disable input/edit of lines using the price including tax (because 2nb and 3rd tax not yet taken into account).
356 // Work In Progress to support all taxes into unit price entry when MAIN_UNIT_PRICE_WITH_TAX_IS_FOR_ALL_TAXES is set.
357 $conf->global->MAIN_NO_INPUT_PRICE_WITH_TAX = 1;
358 }
359}
global $dolibarr_main_url_root
$c
Definition line.php:331
Class to stock current configuration.
Class to manage hooks.
Class to manage third parties objects (customers, suppliers, prospects...)
Class to manage translations.
Class to manage Dolibarr users.
global $mysoc
GETPOSTINT($paramname, $method=0)
Return the value of a $_GET or $_POST supervariable, converted into integer.
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
dol_print_error($db=null, $error='', $errors=null)
Displays error message system with all the information to facilitate the diagnosis and the escalation...
getDolGlobalString($key, $default='')
Return a Dolibarr global constant string value.
getDoliDBInstance($type, $host, $user, $pass, $name, $port)
Return a DoliDB instance (database handler).