Rewrites/fixes for handling config entries in SQLs
[mailer.git] / modules.php
index d19dbb2c85897c60a045786bca72f0bf62803f8a..796b1e8128191000cc04810ef640d0afc45390f7 100644 (file)
@@ -1,7 +1,7 @@
 <?php
 /************************************************************************
- * MXChange v0.2.1                                    Start: 08/25/2003 *
- * ===============                              Last change: 07/01/2005 *
+ * Mailer v0.2.1-FINAL                                Start: 08/25/2003 *
+ * ===================                          Last change: 07/01/2005 *
  *                                                                      *
  * -------------------------------------------------------------------- *
  * File              : modules.php                                      *
  * -------------------------------------------------------------------- *
  * Kurzbeschreibung  : Hauptladedatei. Laedt alle benoetigten Dateien   *
  * -------------------------------------------------------------------- *
- *                                                                      *
+ * $Revision::                                                        $ *
+ * $Date::                                                            $ *
+ * $Tag:: 0.2.1-FINAL                                                 $ *
+ * $Author::                                                          $ *
+ * Needs to be in all Files and every File needs "svn propset           *
+ * svn:keywords Date Revision" (autoprobset!) at least!!!!!!            *
  * -------------------------------------------------------------------- *
- * Copyright (c) 2003 - 2008 by Roland Haeder                           *
+ * Copyright (c) 2003 - 2009 by Roland Haeder                           *
+ * Copyright (c) 2009, 2010 by Mailer Developer Team                    *
  * For more information visit: http://www.mxchange.org                  *
  *                                                                      *
  * This program is free software; you can redistribute it and/or modify *
  ************************************************************************/
 
 // XDEBUG call
-//xdebug_start_trace();
+//* DEBUG: */ xdebug_start_trace();
 
-// Load security stuff here (Oh, I hope this is not unsecure? Am I paranoia??? ;-) )
-require("inc/libs/security_functions.php");
+// Load security stuff here
+require('inc/libs/security_functions.php');
 
-// Init "action" and "what"
+// Init start time
 $GLOBALS['startTime'] = microtime(true);
-$GLOBALS['output_mode'] = 0;
-$GLOBALS['what']   = "";
-$GLOBALS['action'] = "";
-$GLOBALS['userid'] = 0;
 
-// Fix missing module to "index"
-if (empty($_GET['module'])) $_GET['module'] = "index";
+// Init output mode and module
+$GLOBALS['output_mode'] = '0';
+$GLOBALS['module'] = 'unknown';
 
-// Secure action/what if present
-if (!empty($_GET['action'])) $GLOBALS['action'] = secureString($_GET['action']);
-if (!empty($_GET['what']))   $GLOBALS['what']   = secureString($_GET['what']);
+// Needed include files
+require('inc/config-global.php');
 
-// Secure the module name (very important line!)
-$GLOBALS['module'] = secureString($_GET['module']);
+// Set content type
+setContentType('text/html');
 
-// Needed include files
-require("inc/config.php");
-
-// Check if logged in
-if (IS_MEMBER()) {
-       // Is still logged in so we welcome him with his name
-       $result = SQL_QUERY_ESC("SELECT surname, family FROM `{!_MYSQL_PREFIX!}_user_data` WHERE userid=%s LIMIT 1",
-        array($GLOBALS['userid']), __FILE__, __LINE__);
-       if (SQL_NUMROWS($result) == 1) {
-               // Load surname and family's name and build the username
-               list($s, $f) = SQL_FETCHROW($result);
-               $username = $s." ".$f;
-
-               // Additionally admin?
-               if (IS_ADMIN()) {
-                       // Add it
-                       $username .= " ({!_ADMIN_SHORT!})";
-               } // END - if
-       } else {
-               // Hmmm, logged in and no valid userid?
-               $username = "<em>{!_UNKNOWN!}</em>";
-
-               // Destroy session
-               destroy_user_session();
-
-               // Kill userid
-               $GLOBALS['userid'] = 0;
-       }
-
-       // Free memory
-       SQL_FREERESULT($result);
-} elseif (IS_ADMIN()) {
-       // Admin is there
-       $username = getMessage('_ADMIN');
-} else {
-       // He's a guest, hello there... ;-)
-       $username = getMessage('_GUEST');
-}
+// Fix missing module to 'index'
+if (!isGetRequestParameterSet('module')) {
+       // Set element
+       setGetRequestParameter('module', 'index');
+
+       // ... and module
+       setModule('index');
+} // END - if
 
 // The header file
-LOAD_INC_ONCE("inc/header.php");
+loadIncludeOnce('inc/header.php');
 
 // Modules are by default not valid!
-$MOD_VALID = false; $check = "failed";
-if ((getConfig('maintenance') == "Y") && (!IS_ADMIN()) && ($GLOBALS['module'] != "admin")) {
+$isModuleValid = false;
+$URL = '';
+$check = 'failed';
+
+// Is the maintenance mode active or goes all well?
+if ((isExtensionActive('maintenance')) && (getConfig('maintenance') == 'Y') && (!isAdmin()) && (getModule() != 'admin')) {
        // Maintain mode is active and you are no admin
-       addFatalMessage(getMessage('LANG_DOWN_MAINTAINCE'));
-} elseif ((SQL_IS_LINK_UP()) && (getTotalFatalErrors() == 0)) {
+       addFatalMessage(__FILE__, __LINE__, getMessage('MAILER_DOWN_FOR_MAINTENANCE'));
+} elseif ((SQL_IS_LINK_UP()) && (!ifFatalErrorsDetected())) {
        // Construct module name
-       define('__MODULE', sprintf("inc/modules/%s.php", SQL_ESCAPE($GLOBALS['module'])));
-
-       // Did we found the module listed in allowed modules and are we successfully connected?
-       $check = CHECK_MODULE($GLOBALS['module']);
-       switch ($check)
-       {
-       case "admin_only":
-       case "mem_only":
-       case "done":
-               // Does the module exists on local file system?
-               if ((FILE_READABLE(constant('__MODULE'))) && (getTotalFatalErrors() == 0)) {
-                       // Module is valid, active and located on the local disc...
-                       $MOD_VALID = true;
-               } elseif (!empty($URL)) {
-                       // An URL was specified so we load the de-referrer module
-                       LOAD_URL(DEREFERER($URL));
-               } elseif (getTotalFatalErrors() == 0) {
-                       addFatalMessage(sprintf(getMessage('LANG_MOD_REG_404'), $GLOBALS['module']));
-               }
-               break;
-
-       case "404":
-               addFatalMessage(sprintf(getMessage('LANG_MOD_REG_404'), $GLOBALS['module']));
-               break;
-
-       case "locked":
-               if (!FILE_READABLE(constant('__MODULE'))) {
-                       // Module does addionally not exists
-                       addFatalMessage(sprintf(getMessage('LANG_MOD_REG_404'), $GLOBALS['module']));
-               } // END - if
-
-               // Add fatal message
-               addFatalMessage(sprintf(getMessage('LANG_MOD_REG_LOCKED'), $GLOBALS['module']));
-               break;
-
-       default:
-               DEBUG_LOG(__FILE__, __LINE__, sprintf("Unknown status %s return from module check. Module=%s", $check, $GLOBALS['module']));
-               addFatalMessage(sprintf(getMessage('LANG_MOD_REG_UNKNOWN'), $check));
-               break;
-       }
-} elseif (getTotalFatalErrors() == 0) {
-       // MySQL problems!
-       addFatalMessage(getMessage('MYSQL_ERRORS'));
+       $GLOBALS['module_inc'] =  sprintf("inc/modules/%s.php", getModule());
+
+       // Check module permission (again)
+       $check = checkModulePermissions();
+       switch ($check) {
+               case 'cache_miss': // The cache is gone
+               case 'admin_only': // Admin-only access
+               case 'mem_only': // Member-only access
+               case 'done': // All fine!
+                       // Does the module exists on local file system?
+                       if ((isIncludeReadable($GLOBALS['module_inc'])) && (!ifFatalErrorsDetected())) {
+                               // Module is valid, active and located on the local disc...
+                               $isModuleValid = true;
+                       } elseif (!ifFatalErrorsDetected()) {
+                               // Set HTTP status
+                               setHttpStatus('404');
+
+                               // Module not found!
+                               addFatalMessage(__FILE__, __LINE__, getMaskedMessage('MODULE_REGISTRY_404', getModule()));
+                       }
+                       break;
+
+               case '404':
+                       // Set HTTP status
+                       setHttpStatus('404');
+
+                       // Add fatal message
+                       addFatalMessage(__FILE__, __LINE__, getMaskedMessage('MODULE_REGISTRY_404', getModule()));
+                       break;
+
+               case 'locked':
+                       // Set HTTP status
+                       setHttpStatus('403');
+
+                       if (!isIncludeReadable($GLOBALS['module_inc'])) {
+                               // Set HTTP status
+                               setHttpStatus('404');
+
+                               // Module does addionally not exists
+                               addFatalMessage(__FILE__, __LINE__, getMaskedMessage('MODULE_REGISTRY_404', getModule()));
+                       } // END - if
+
+                       // Add fatal message
+                       addFatalMessage(__FILE__, __LINE__, getMaskedMessage('MODULE_IS_LOCKED', getModule()));
+                       break;
+
+               default:
+                       // Unknown module status
+                       logDebugMessage(__FILE__, __LINE__, sprintf("Unknown status %s return from module check. Module=%s", $check, getModule()));
+                       addFatalMessage(__FILE__, __LINE__, getMaskedMessage('UNKNOWN_MODULE_STATUS', $check));
+                       break;
+       } // END - switch
+} elseif (!ifFatalErrorsDetected()) {
+       // MySQL problems detected
+       addFatalMessage(__FILE__, __LINE__, getMessage('MYSQL_ERRORS'));
 }
 
-if (($MOD_VALID) && (defined('__MODULE'))) {
-       /////////////////////////////////////////////
-       // Main including line DO NOT REMOVE/EDIT! //
-       /////////////////////////////////////////////
-       //
+if (($isModuleValid === true) && (isset($GLOBALS['module_inc']))) {
        // Everything is okay so we can load the module
-       LOAD_INC_ONCE(constant('__MODULE'));
+       loadIncludeOnce($GLOBALS['module_inc']);
 } // END - if
 
-// Next-to-end add the footer
-LOAD_INC_ONCE("inc/footer.php");
+// Add the footer (this will call shutdown())
+loadIncludeOnce('inc/footer.php');
 
-//
+// [EOF]
 ?>