X-Git-Url: https://git.mxchange.org/?p=mailer.git;a=blobdiff_plain;f=inc%2Flibs%2Fregister_functions.php;h=e98010cd6650e29d41e6d3f6477fa3ab2709b0cc;hp=4e6e52f4c43a57b553bd5ae67e7e38f839c3e85b;hb=0851db137e420b90617f47b77de2302e770f5f02;hpb=60494e212a67fe360bfbb481eb4928480a6f379b diff --git a/inc/libs/register_functions.php b/inc/libs/register_functions.php index 4e6e52f4c4..e98010cd66 100644 --- a/inc/libs/register_functions.php +++ b/inc/libs/register_functions.php @@ -1,7 +1,7 @@  (*)"; - $eval = "define('MUST_".strtoupper($name)."', \"".$value."\");"; - eval($eval); - } - - // Free memory - SQL_FREERESULT($result); - - // Also fill other constants - define('MUST_SEX' , " (*)"); - define('MUST_ADDY' , " (*)"); - define('MUST_BIRTH' , " (*)"); - define('MUST_MARKER', " (*)"); -} -// -function REGISTER_CHECK_REQUIRED_FIELDS(&$array) -{ - $ret = false; - foreach ($array as $key=>$value) - { - $result = SQL_QUERY("SELECT field_required FROM "._MYSQL_PREFIX."_must_register WHERE field_name='".$key."' LIMIT 1", __FILE__, __LINE__); - if (SQL_NUMROWS($result) == 1) - { - // "Must-line" found - list($chk) = SQL_FETCHROW($result); - SQL_FREERESULT($result); +function ifRequiredRegisterFieldsAreSet (&$array) { + // By default all is fine + $ret = true; + foreach ($array as $key => $value) { + // Check all fields that must register + $result = SQL_QUERY_ESC("SELECT `id` FROM `{?_MYSQL_PREFIX?}_must_register` WHERE `field_name`='%s' AND `field_required`='Y' LIMIT 1", + array($key), __FUNCTION__, __LINE__); + // Entry found? + if (SQL_NUMROWS($result) == 1) { // Check if extension country is not found (you have to enter the 2-chars long country code) or // if extensions is present check if country code was selected // 01 2 21 12 3 32 234 5 54 4 43 34 4 4 5 5432 2 3 3210 - $country = ((!EXT_IS_ACTIVE("country")) || ((EXT_IS_ACTIVE("country")) && (((empty($value)) && ($key == "cntry")) || (($key == "country_code") && (!empty($value)))) && (!empty($array['country_code'])))); - if ((empty($value)) && ($chk == 'Y') && (!$country)) - { + $country = ((!isExtensionActive('country')) || ((isExtensionActive('country')) && (((empty($value)) && ($key == 'cntry')) || (($key == 'country_code') && (!empty($value)))) && (!empty($array['country_code'])))); + if ((empty($value)) && ($country === false)) { // Required field not set - $array[$key] = "!"; - $ret = true; - } - } - } + $array[$key] = '!'; + $ret = false; + } // END - if + } // END - if + + // Free result + SQL_FREERESULT($result); + } // END - foreach + + // Return result return $ret; } -// -function REGISTER_OUTPUT_REQUIRE_CHECK(&$array) -{ - $result = SQL_QUERY("SELECT field_name, field_required FROM "._MYSQL_PREFIX."_must_register ORDER BY id", __FILE__, __LINE__); - while(list($name, $required) = SQL_FETCHROW($result)) - { - if (($array[$name] == "!") && ($required == 'Y')) - { - // Empty entry found - $array[$name] = ""; - $eval = "\$OUT = REGISTER_".strtoupper($name)."_REQUIRED;"; - eval($eval); - OUTPUT_HTML("".$OUT."

"); - } - } - // Free memory - SQL_FREERESULT($result); -} -// -function REGISTER_ADD_CATEGORY_TABLE ($MODE, $return=false) -{ - global $_POST, $_CONFIG; - $OUT = ""; +// Generates a 'category table' for the registration form +function registerGenerateCategoryTable ($mode, $return=false) { + $OUT = ''; // Guests are mostly not interested in how many members has // choosen an individual category - $AND = "WHERE visible='Y' "; + $AND = "WHERE `visible`='Y' "; + // Admins are allowed to see every category... - if (IS_ADMIN()) $AND = ""; - $result = SQL_QUERY("SELECT id, cat, visible FROM "._MYSQL_PREFIX."_cats ".$AND." ORDER BY sort", __FILE__, __LINE__); - if (SQL_NUMROWS($result) > 0) - { + if (isAdmin()) $AND = ''; + + // Look for categories + $result = SQL_QUERY('SELECT `id`, `cat`, `visible` FROM `{?_MYSQL_PREFIX?}_cats` ' . $AND . ' ORDER BY `sort` ASC', + __FUNCTION__, __LINE__); + + if (!SQL_HASZERONUMS($result)) { // List alle visible modules (or all to the admin) - $SW = 2; - $OUT .= "\n"; - while (list($id, $cat, $visible) = SQL_FETCHROW($result)) - { - if (empty($_POST['cat'][$id])) $_POST['cat'][$id] = ""; + $OUT .= '
'; + while ($content = SQL_FETCHARRAY($result)) { // Prepare array for the template - $content = array( - 'sw' => $SW, - 'cat' => $cat, - 'def_y' => "", - 'def_n' => "", - 'id' => $id, - ); - - if (($_POST['cat'][$id] == 'Y') || (($_CONFIG['register_default'] == 'Y') && (empty($_POST['cat'][$id])))) - { - $content['def_y'] = " checked"; - } - else - { - $content['def_n'] = " checked"; + $content['default_yes'] = ''; + $content['default_no'] = ''; + + // Mark categories + if ((postRequestParameter('cat', $content['id']) == 'Y') || ((isRegisterDefaultEnabled()) && (!isPostRequestParameterSet('cat', $content['id'])))) { + $content['default_yes'] = ' checked="checked"'; + } else { + $content['default_no'] = ' checked="checked"'; } // Load template and switch color - $OUT .= LOAD_TEMPLATE("guest_cat_row", true, $content); - $SW = 3 - $SW; - } - $OUT .= "
\n"; + $OUT .= loadTemplate('guest_cat_row', true, $content); + } // END - while + $OUT .= ''; // Free memory SQL_FREERESULT($result); - } - else - { + } else { // No categories setted up so far... - $OUT .= LOAD_TEMPLATE("admin_settings_saved", true, NO_CATEGORIES_VISIBLE); + $OUT .= displayMessage('{--NO_CATEGORIES_VISIBLE--}', true); } - if ($return) - { + if ($return === true) { // Return generated HTML code return $OUT; - } - else - { + } else { // Output directly (default) - OUTPUT_HTML($OUT); + outputHtml($OUT); } } -// + +// Outputs a 'failed message' +function registerOutputFailedMessage ($messageId, $extra='') { + if (empty($messageId)) { + outputHtml('
' . $extra . '
'); + } else { + outputHtml('
{--' . $messageId . '--}' . $extra . '
'); + } +} + +// Checks wether the registration data is complete +function isRegistrationDataComplete () { + // Init elements + $GLOBALS['registration_ip_timeout'] = false; + $GLOBALS['registration_short_password'] = false; + $GLOBALS['registration_selected_cats'] = '0'; + + // Default is okay + $isOkay = true; + + // First we only check the submitted data then we continue... :) + // + // Did he agree to our Terms Of Usage? + if (postRequestParameter('agree') != 'Y') { + setPostRequestParameter('agree', '!'); + $isOkay = false; + } // END - if + + // Did he enter a valid email address? (we really don't care about + // that, he has to click on a confirmation link :P ) + if ((!isPostRequestParameterSet('email')) || (!isEmailValid(postRequestParameter('email')))) { + setPostRequestParameter('email', '!'); + $isOkay = false; + } // END - if + + // And what about surname and family's name? + if (!isPostRequestParameterSet('surname')) { + setPostRequestParameter('surname', '!'); + $isOkay = false; + } // END - if + if (!isPostRequestParameterSet('family')) { + setPostRequestParameter('family', '!'); + $isOkay = false; + } // END - if + + // Get temporary array for modification + $postArray = postRequestArray(); + + // Check for required fields + $isOkay = ($isOkay && ifRequiredRegisterFieldsAreSet($postArray)); + + // Set it back in request + setPostRequestArray($postArray); + + // Did he enter his password twice? + if (((!isPostRequestParameterSet('pass1')) || (!isPostRequestParameterSet('pass2'))) || ((postRequestParameter('pass1') != postRequestParameter('pass2')) && (isPostRequestParameterSet('pass1')) && (isPostRequestParameterSet('pass2')))) { + if ((postRequestParameter('pass1') != postRequestParameter('pass2')) && (isPostRequestParameterSet('pass1')) && (isPostRequestParameterSet('pass2'))) { + setPostRequestParameter('pass1', '!'); + setPostRequestParameter('pass2', '!'); + } else { + if (!isPostRequestParameterSet('pass1')) { + setPostRequestParameter('pass1', '!'); + } else { + setPostRequestParameter('pass1', ''); + } + if (!isPostRequestParameterSet('pass2')) { + setPostRequestParameter('pass2', '!'); + } else { + setPostRequestParameter('pass2', ''); + } + } + $isOkay = false; + } // END - if + + // Are both passwords zero length? + if ((strlen(postRequestParameter('pass1')) == 0) && (strlen(postRequestParameter('pass2')) == 0) && ($isOkay === true)) { + // Is the extension 'register' newer or equal 0.5.5? + if ((isExtensionInstalledAndNewer('register', '0.5.5')) && (isRegisterGeneratePasswordEmptyEnabled())) { + // Generate a random password + $randomPassword = generatePassword(); + + // Set it in both entries + setPostRequestParameter('pass1', $randomPassword); + setPostRequestParameter('pass2', $randomPassword); + } else { + // Not allowed or no recent extension version + setPostRequestParameter('pass1', '!'); + setPostRequestParameter('pass2', '!'); + + // ... which is both not okay + $isOkay = false; + } + } // END - if + + // Is the password long enouth? + if ((strlen(postRequestParameter('pass1')) < getPassLen()) && ($isOkay === true)) { + $GLOBALS['registration_short_password'] = true; + $isOkay = false; + } // END - if + + // Do this check only when no admin is logged in + if (is_array(postRequestParameter('cat'))) { + // Only continue with array + foreach (postRequestParameter('cat') as $id => $answer) { + // Is this category choosen? + if ($answer == 'Y') { + $GLOBALS['registration_selected_cats']++; + } // END - if + } // END - foreach + } // END - if + + // Enougth categories selected? + //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'isOkay='.intval($isOkay).',selected='.$GLOBALS['registration_selected_cats'].'/'.getLeastCats()); + $isOkay = (($isOkay) && ($GLOBALS['registration_selected_cats'] >= getLeastCats())); + + if ((postRequestParameter('email') != '!') && (isCheckDoubleEmailEnabled())) { + // Does the email address already exists in our database? + if ((isEmailTaken(postRequestParameter('email'))) && (!isAdmin())) { + setPostRequestParameter('email', '?'); + $isOkay = false; + } // END - if + } // END - if + + // Check for IP timeout? + //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'isOkay='.intval($isOkay)); + if ((!isAdmin()) && (getIpTimeout() > 0)) { + // Check his IP number + $GLOBALS['registration_ip_timeout'] = (countSumTotalData(detectRemoteAddr() , 'user_data', 'userid', 'REMOTE_ADDR', true, " AND ((UNIX_TIMESTAMP() - `joined`) < {?ip_timeout?} OR (UNIX_TIMESTAMP() - `last_update`) < {?ip_timeout?}) LIMIT 1") == 1); + //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'isOkay='.intval($isOkay).',timeout='.intval($GLOBALS['registration_ip_timeout'])); + $isOkay = (($isOkay) && (!$GLOBALS['registration_ip_timeout'])); + } // END - if + + // Return result + //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'isOkay='.intval($isOkay)); + return $isOkay; +} + +// Do the registration +function doRegistration () { + // Prepapre month and day of birth + if (strlen(postRequestParameter('day')) == 1) setPostRequestParameter('day' , '0' . postRequestParameter('day')); + if (strlen(postRequestParameter('month')) == 1) setPostRequestParameter('month', '0' . postRequestParameter('month')); + + // Generate hash which will be inserted into confirmation mail + $hash = generateHash(sha1( + // Get total confirmed, ... + getTotalConfirmedUser() . getEncryptSeperator() . + // ... unconfirmed ... + getTotalUnconfirmedUser() . getEncryptSeperator() . + // ... and locked users! + getTotalLockedUser() . getEncryptSeperator() . + postRequestParameter('month') . '-' . + postRequestParameter('day') . '-' . + postRequestParameter('year') . getEncryptSeperator() . + detectServerName() . getEncryptSeperator() . + detectRemoteAddr() . getEncryptSeperator() . + detectUserAgent() . '/' . + getSiteKey() . '/' . + getDateKey() . '/' . + getConfig('CACHE_BUSTER') + )); + + // Old way with enterable two-char-code + $countryRow = '`country`'; + $countryData = substr(postRequestParameter('cntry'), 0, 2); + + // Add design when extension sql_patches is v0.2.7 or greater + // @TODO Rewrite these all to a single filter + $GLOBALS['register_sql_columns'] = ''; + $GLOBALS['register_sql_data'] = ''; + if (isExtensionInstalledAndNewer('theme', '0.0.8')) { + // Okay, add design here + $GLOBALS['register_sql_columns'] .= ', `curr_theme`'; + $GLOBALS['register_sql_data'] .= ", '" . getCurrentTheme() . "'"; + } // END - if + + // Check if I shall disable sending mail to newly registered members out about active/begging rallye + // + // First comes first: begging rallye + if ((isExtensionInstalledAndNewer('beg', '0.2.7')) && (!isBegNewMemberNotifyEnabled())) { + $GLOBALS['register_sql_columns'] .= ', `beg_rallye_enable_notify`, `beg_rallye_disable_notify`'; + $GLOBALS['register_sql_data'] .= ', UNIX_TIMESTAMP(), UNIX_TIMESTAMP()'; + } // END - if + + // Second: active rallye + if ((isExtensionActive('bonus')) && (!isBonusNewMemberNotifyEnabled())) { + $GLOBALS['register_sql_columns'] .= ', `bonus_rallye_enable_notify`, `bonus_rallye_disable_notify`'; + $GLOBALS['register_sql_data'] .= ', UNIX_TIMESTAMP(), UNIX_TIMESTAMP()'; + } // END - if + + // Write user data to table + if (isExtensionActive('country')) { + // Save with new selectable country code + $countryRow = '`country_code`'; + $countryData = bigintval(postRequestParameter('country_code')); + } // END - if + + // Create user's account... + SQL_QUERY_ESC("INSERT INTO + `{?_MYSQL_PREFIX?}_user_data` +(`gender`, `surname`, `family`, `street_nr`,%s, `zip`, `city`, `email`, `birth_day`, `birth_month`, `birth_year`, `password`, `max_mails`, `receive_mails`, `refid`, `status`, `user_hash`, `REMOTE_ADDR`, `joined`, `last_update`".$GLOBALS['register_sql_columns'].") + VALUES +('%s','%s','%s','%s','%s',%s,'%s','%s',%s, %s,%s,'%s',%s, %s,'%s','UNCONFIRMED','%s','%s', UNIX_TIMESTAMP(), UNIX_TIMESTAMP()".$GLOBALS['register_sql_data'].")", + array( + $countryRow, + substr(postRequestParameter('gender'), 0, 1), + postRequestParameter('surname'), + postRequestParameter('family'), + postRequestParameter('street_nr'), + $countryData, + bigintval(postRequestParameter('zip')), + postRequestParameter('city'), + postRequestParameter('email'), + bigintval(postRequestParameter('day')), + bigintval(postRequestParameter('month')), + bigintval(postRequestParameter('year')), + generateHash(postRequestParameter('pass1')), + bigintval(postRequestParameter('max_mails')), + bigintval(postRequestParameter('max_mails')), + makeZeroToNull(postRequestParameter('refid')), + $hash, + detectRemoteAddr(), + ), __FUNCTION__, __LINE__); + + // Get his userid + $userid = bigintval(SQL_INSERTID()); + + // Did this work? + if ($userid == '0') { + // Something bad happened! + displayMessage('{--USER_NOT_REGISTERED--}'); + + // Stop here + return; + } // END - if + + // Is the refback extension there? + // @TODO Rewrite this to a filter + if (isExtensionActive('refback')) { + // Update refback table + updateRefbackTable($userid); + } // END - if + + // Write his welcome-points + // @TODO Wether the registration bonus should only be added to user directly or through referal system should be configurable + addPointsDirectly('register_welcome', $userid, getPointsRegister()); + + // Write catgories + if ((is_array(postRequestParameter('cat'))) && (count(postRequestParameter('cat')))) { + foreach (postRequestParameter('cat') as $categoryId => $joined) { + if ($joined == 'Y') { + // Insert category entry + SQL_QUERY_ESC("INSERT INTO `{?_MYSQL_PREFIX?}_user_cats` (`userid`, `cat_id`) VALUES (%s, %s)", + array( + $userid, + bigintval($categoryId) + ), __FUNCTION__, __LINE__); + } // END - if + } // END - foreach + } // END - if + + // ... rewrite a zero referal id to the main title + if (!isValidUserId(postRequestParameter('refid'))) { + setPostRequestParameter('refid', getMainTitle()); + } // END - if + + // Is ZIP code set? + if (isPostRequestParameterSet('zip')) { + // Prepare data array for the email template + // Start with the gender... + $content = array( + 'hash' => $hash, + 'userid' => $userid, + 'gender' => SQL_ESCAPE(postRequestParameter('gender')), + 'surname' => SQL_ESCAPE(postRequestParameter('surname')), + 'family' => SQL_ESCAPE(postRequestParameter('family')), + 'email' => SQL_ESCAPE(postRequestParameter('email')), + 'street' => SQL_ESCAPE(postRequestParameter('street_nr')), + 'city' => SQL_ESCAPE(postRequestParameter('city')), + 'zip' => bigintval(postRequestParameter('zip')), + 'country' => $countryData, + 'refid' => SQL_ESCAPE(postRequestParameter('refid')), + 'password' => SQL_ESCAPE(postRequestParameter('pass1')), + ); + } else { + // No ZIP code entered + $content = array( + 'hash' => $hash, + 'userid' => $userid, + 'gender' => SQL_ESCAPE(postRequestParameter('gender')), + 'surname' => SQL_ESCAPE(postRequestParameter('surname')), + 'family' => SQL_ESCAPE(postRequestParameter('family')), + 'email' => SQL_ESCAPE(postRequestParameter('email')), + 'street' => SQL_ESCAPE(postRequestParameter('street_nr')), + 'city' => SQL_ESCAPE(postRequestParameter('city')), + 'zip' => '', + 'country' => $countryData, + 'refid' => SQL_ESCAPE(postRequestParameter('refid')), + 'password' => SQL_ESCAPE(postRequestParameter('pass1')), + ); + } + + // Continue with birthday... + switch (getLanguage()) { + case 'de': + $content['birthday'] = bigintval(postRequestParameter('day')) . '.' . bigintval(postRequestParameter('month')) . '.' . bigintval(postRequestParameter('year')); + break; + + default: + $content['birthday'] = bigintval(postRequestParameter('month')) . '/' . bigintval(postRequestParameter('day')) . '/' . bigintval(postRequestParameter('year')); + break; + } // END - switch + + // Display information to the user that he got mail and send it away + $messageGuest = loadEmailTemplate('guest_register_done', $content, $userid, false); + + // Send mail to user (confirmation link!) + $email = $content['email']; + sendEmail($content['email'], '{--GUEST_CONFIRM_LINK_SUBJECT--}', $messageGuest); + $content['email'] = $email; + + // Send mail to admin + sendAdminNotification('{--ADMIN_NEW_ACCOUNT_SUBJECT--}', 'admin_register_done', $content, $userid); +} + +//----------------------------------------------------------------------------- +// Wrapper functions for ext-register +//----------------------------------------------------------------------------- + +// Getter for 'display_refid' +function getDisplayRefid () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = getConfig('display_refid'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Checks wether 'display_refid' is "YES" +function isDisplayRefidEnabled () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = (getDisplayRefid() == 'Y'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Getter for 'ip_timeout' +function getIpTimeout () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = getConfig('ip_timeout'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Getter for 'register_default' +function getRegisterDefault () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = getConfig('register_default'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Checks wether 'register_default' is "YES" +function isRegisterDefaultEnabled () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = (getRegisterDefault() == 'Y'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Getter for 'register_generate_password_empty' +function getRegisterGeneratePasswordEmpty () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = getConfig('register_generate_password_empty'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// Checks wether 'register_generate_password_empty' is "YES" +function isRegisterGeneratePasswordEmptyEnabled () { + // Is the cache entry set? + if (!isset($GLOBALS[__FUNCTION__])) { + // No, so determine it + $GLOBALS[__FUNCTION__] = (getRegisterGeneratePasswordEmpty() == 'Y'); + } // END - if + + // Return cached entry + return $GLOBALS[__FUNCTION__]; +} + +// [EOF] ?>