6667ea451e85da955df725451a9f3ab917642748
[fa-stable.git] / admin / create_coy.php
1 <?php
2 /**********************************************************************
3     Copyright (C) FrontAccounting, LLC.
4         Released under the terms of the GNU General Public License, GPL, 
5         as published by the Free Software Foundation, either version 3 
6         of the License, or (at your option) any later version.
7     This program is distributed in the hope that it will be useful,
8     but WITHOUT ANY WARRANTY; without even the implied warranty of
9     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  
10     See the License here <http://www.gnu.org/licenses/gpl-3.0.html>.
11 ***********************************************************************/
12 $page_security = 'SA_CREATECOMPANY';
13 $path_to_root="..";
14 include_once($path_to_root . "/includes/session.inc");
15
16 include_once($path_to_root . "/includes/date_functions.inc");
17 include_once($path_to_root . "/admin/db/company_db.inc");
18 include_once($path_to_root . "/admin/db/maintenance_db.inc");
19 include_once($path_to_root . "/includes/ui.inc");
20
21 page(_($help_context = "Create/Update Company"));
22
23 $comp_subdirs = array('images', 'pdf_files', 'backup','js_cache', 'reporting', 'attachments');
24
25 //---------------------------------------------------------------------------------------------
26 if (isset($_GET['selected_id']))
27 {
28         $selected_id = $_GET['selected_id'];
29 }
30 elseif (isset($_POST['selected_id']))
31 {
32         $selected_id = $_POST['selected_id'];
33 }
34 else
35         $selected_id = -1;
36
37 //---------------------------------------------------------------------------------------------
38
39 function check_data()
40 {
41         global $db_connections, $tb_pref_counter, $selected_id;
42
43         if ($_POST['name'] == "" || $_POST['host'] == "" || $_POST['dbuser'] == "" || $_POST['dbname'] == "")
44                 return false;
45         foreach($db_connections as $id=>$con)
46         {
47          if($id != $selected_id && $_POST['host'] == $con['host'] 
48                 && $_POST['dbname'] == $con['dbname'])
49                 {
50                         if ($_POST['tbpref'] == $con['tbpref'])
51                         {
52                                 display_error(_("This database settings are already used by another company."));
53                                 return false;
54                         }
55                         if (($_POST['tbpref'] == 0) ^ ($con['tbpref'] == ''))
56                         {
57                                 display_error(_("You cannot have table set without prefix together with prefixed sets in the same database."));
58                                 return false;
59                         }
60                 }
61         }
62         return true;
63 }
64
65 //---------------------------------------------------------------------------------------------
66
67 function remove_connection($id) {
68         global $db_connections;
69
70         $err = db_drop_db($db_connections[$id]);
71
72         unset($db_connections[$id]);
73         $conn = array_values($db_connections);
74         $db_connections = $conn;
75         //$$db_connections = array_values($db_connections);
76     return $err;
77 }
78 //---------------------------------------------------------------------------------------------
79
80 function handle_submit()
81 {
82         global $db_connections, $def_coy, $tb_pref_counter, $db,
83             $comp_path, $comp_subdirs;
84
85         $new = false;
86
87         if (!check_data())
88                 return false;
89
90         $id = $_GET['id'];
91
92         $db_connections[$id]['name'] = $_POST['name'];
93         $db_connections[$id]['host'] = $_POST['host'];
94         $db_connections[$id]['dbuser'] = $_POST['dbuser'];
95         $db_connections[$id]['dbpassword'] = $_POST['dbpassword'];
96         $db_connections[$id]['dbname'] = $_POST['dbname'];
97         if (isset($_GET['ul']) && $_GET['ul'] == 1)
98         {
99                 if (is_numeric($_POST['tbpref']))
100                 {
101                         $db_connections[$id]['tbpref'] = $_POST['tbpref'] == 1 ?
102                           $tb_pref_counter."_" : '';
103                         $new = true;
104                 }
105                 else if ($_POST['tbpref'] != "")
106                         $db_connections[$id]['tbpref'] = $_POST['tbpref'];
107                 else
108                         $db_connections[$id]['tbpref'] = "";
109         }
110         if ((bool)$_POST['def'] == true)
111                 $def_coy = $id;
112         if (isset($_GET['ul']) && $_GET['ul'] == 1)
113         {
114                 $conn = $db_connections[$id];
115                 if (($db = db_create_db($conn)) == 0)
116                 {
117                         display_error(_("Error creating Database: ") . $conn['dbname'] . _(", Please create it manually"));
118                         remove_connection($id);
119                         set_global_connection();
120                         return false;
121                 }
122
123                 $filename = $_FILES['uploadfile']['tmp_name'];
124                 if (is_uploaded_file ($filename))
125                 {
126                         db_import($filename, $conn, $id);
127                         if (isset($_POST['admpassword']) && $_POST['admpassword'] != "")        
128                                 update_admin_password($conn, md5($_POST['admpassword']));
129                 }
130                 else
131                 {
132                         display_error(_("Error uploading Database Script, please upload it manually"));
133                         set_global_connection();
134                         return false;
135                 }
136                 set_global_connection();
137         }
138         $error = write_config_db($new);
139         if ($error == -1)
140                 display_error(_("Cannot open the configuration file - ") . $path_to_root . "/config_db.php");
141         else if ($error == -2)
142                 display_error(_("Cannot write to the configuration file - ") . $path_to_root . "/config_db.php");
143         else if ($error == -3)
144                 display_error(_("The configuration file ") . $path_to_root . "/config_db.php" . _(" is not writable. Change its permissions so it is, then re-run the operation."));
145         if ($error != 0)
146         {
147                 return false;
148         }
149
150         if ($new)
151         {
152                 create_comp_dirs("$comp_path/$id", $comp_subdirs);
153         }
154         $exts = get_company_extensions();
155         write_extensions($exts, $id);
156         return true;
157 }
158
159 //---------------------------------------------------------------------------------------------
160
161 function handle_delete()
162 {
163         global $comp_path, $def_coy, $db_connections, $comp_subdirs, $path_to_root;
164
165         $id = $_GET['id'];
166
167         // First make sure all company directories from the one under removal are writable. 
168         // Without this after operation we end up with changed per-company owners!
169         for($i = $id; $i < count($db_connections); $i++) {
170                 if (!is_dir($comp_path.'/'.$i) || !is_writable($comp_path.'/'.$i)) {
171                         display_error(_('Broken company subdirectories system. You have to remove this company manually.'));
172                         return;
173                 }
174         }
175         // make sure config file is writable
176         if (!is_writeable($path_to_root . "/config_db.php"))
177         {
178                 display_error(_("The configuration file ") . $path_to_root . "/config_db.php" . _(" is not writable. Change its permissions so it is, then re-run the operation."));
179                 return;
180         }
181         // rename directory to temporary name to ensure all
182         // other subdirectories will have right owners even after
183         // unsuccessfull removal.
184         $cdir = $comp_path.'/'.$id;
185         $tmpname  = $comp_path.'/old_'.$id;
186         if (!@rename($cdir, $tmpname)) {
187                 display_error(_('Cannot rename subdirectory to temporary name.'));
188                 return;
189         }
190         // 'shift' company directories names
191         for ($i = $id+1; $i < count($db_connections); $i++) {
192                 if (!rename($comp_path.'/'.$i, $comp_path.'/'.($i-1))) {
193                         display_error(_("Cannot rename company subdirectory"));
194                         return;
195                 }
196         }
197         $err = remove_connection($id);
198         if ($err == 0)
199                 display_error(_("Error removing Database: ") . $dbase . _(", please remove it manually"));
200
201         if ($def_coy == $id)
202                 $def_coy = 0;
203         $error = write_config_db();
204         if ($error == -1)
205                 display_error(_("Cannot open the configuration file - ") . $path_to_root . "/config_db.php");
206         else if ($error == -2)
207                 display_error(_("Cannot write to the configuration file - ") . $path_to_root . "/config_db.php");
208         else if ($error == -3)
209                 display_error(_("The configuration file ") . $path_to_root . "/config_db.php" . _(" is not writable. Change its permissions so it is, then re-run the operation."));
210         if ($error != 0) {
211                 @rename($tmpname, $cdir);
212                 return;
213         }
214         // finally remove renamed company directory
215         @flush_dir($tmpname, true);
216         if (!@rmdir($tmpname))
217         {
218                 display_error(_("Cannot remove temporary renamed company data directory ") . $tmpname);
219                 return;
220         }
221
222         meta_forward($_SERVER['PHP_SELF']);
223 }
224
225 //---------------------------------------------------------------------------------------------
226
227 function display_companies()
228 {
229         global $table_style, $def_coy, $db_connections;
230
231         $coyno = $_SESSION["wa_current_user"]->company;
232
233         echo "
234                 <script language='javascript'>
235                 function deleteCompany(id) {
236                         if (!confirm('" . _("Are you sure you want to delete company no. ") . "'+id))
237                                 return
238                         document.location.replace('create_coy.php?c=df&id='+id)
239                 }
240                 </script>";
241         start_table($table_style);
242
243         $th = array(_("Company"), _("Database Host"), _("Database User"),
244                 _("Database Name"), _("Table Pref"), _("Default"), "", "");
245         table_header($th);
246
247         $k=0;
248         $conn = $db_connections;
249         $n = count($conn);
250         for ($i = 0; $i < $n; $i++)
251         {
252                 if ($i == $def_coy)
253                         $what = _("Yes");
254                 else
255                         $what = _("No");
256                 if ($i == $coyno)
257                 start_row("class='stockmankobg'");
258         else
259                 alt_table_row_color($k);
260
261                 label_cell($conn[$i]['name']);
262                 label_cell($conn[$i]['host']);
263                 label_cell($conn[$i]['dbuser']);
264                 label_cell($conn[$i]['dbname']);
265                 label_cell($conn[$i]['tbpref']);
266                 label_cell($what);
267                 $edit = _("Edit");
268                 $delete = _("Delete");
269                 if (user_graphic_links())
270                 {
271                         $edit = set_icon(ICON_EDIT, $edit);
272                         $delete = set_icon(ICON_DELETE, $delete);
273                 }
274         label_cell("<a href='" . $_SERVER['PHP_SELF']. "?selected_id=$i'>$edit</a>");
275                 label_cell( $i == $coyno ? '' :
276                         "<a href='javascript:deleteCompany(" . $i . ")'>$delete</a>");
277                 end_row();
278         }
279
280         end_table();
281     display_note(_("The marked company is the current company which cannot be deleted."), 0, 0, "class='currentfg'");
282 }
283
284 //---------------------------------------------------------------------------------------------
285
286 function display_company_edit($selected_id)
287 {
288         global $def_coy, $db_connections, $tb_pref_counter, $table_style2;
289
290         if ($selected_id != -1)
291                 $n = $selected_id;
292         else
293                 $n = count($db_connections);
294
295         start_form(true);
296
297         echo "
298                 <script language='javascript'>
299                 function updateCompany() {
300                         if (document.forms[0].uploadfile.value!='' && document.forms[0].dbname.value!='') {
301                                 document.forms[0].action='create_coy.php?c=u&ul=1&id=" . $n . "&fn=' + document.forms[0].uploadfile.value
302                         }
303                         else {
304                                 document.forms[0].action='create_coy.php?c=u&id=" . $n . "&fn=' + document.forms[0].uploadfile.value
305                         }
306                         document.forms[0].submit()
307                 }
308                 </script>";
309
310         start_table($table_style2);
311
312         if ($selected_id != -1)
313         {
314                 $conn = $db_connections[$selected_id];
315                 $_POST['name'] = $conn['name'];
316                 $_POST['host']  = $conn['host'];
317                 $_POST['dbuser']  = $conn['dbuser'];
318                 $_POST['dbpassword']  = $conn['dbpassword'];
319                 $_POST['dbname']  = $conn['dbname'];
320                 $_POST['tbpref']  = $conn['tbpref'];
321                 if ($selected_id == $def_coy)
322                         $_POST['def'] = true;
323                 else
324                         $_POST['def'] = false;
325                 $_POST['dbcreate']  = false;
326                 hidden('selected_id', $selected_id);
327                 hidden('tbpref', $_POST['tbpref']);
328                 hidden('dbpassword', $_POST['dbpassword']);
329         }
330         else
331                 $_POST['tbpref'] = $tb_pref_counter."_";
332         text_row_ex(_("Company"), 'name', 30);
333         text_row_ex(_("Host"), 'host', 30);
334         text_row_ex(_("Database User"), 'dbuser', 30);
335         if ($selected_id == -1)
336                 text_row_ex(_("Database Password"), 'dbpassword', 30);
337         text_row_ex(_("Database Name"), 'dbname', 30);
338         if ($selected_id == -1)
339                 yesno_list_row(_("Table Pref"), 'tbpref', 1, $_POST['tbpref'], _("None"), false);
340         else
341                 label_row(_("Table Pref"), $_POST['tbpref']);
342         yesno_list_row(_("Default"), 'def', null, "", "", false);
343
344         start_row();
345         label_cell(_("Database Script"));
346         label_cell("<input name='uploadfile' type='file'>");
347         end_row();
348
349         text_row_ex(_("New script Admin Password"), 'admpassword', 20);
350
351         end_table();
352         display_note(_("Choose from Database scripts in SQL folder. No Database is created without a script."), 0, 1);
353         echo "<center><input onclick='javascript:updateCompany()' type='button' style='width:150px' value='". _("Save"). "'></center>";
354
355
356         end_form();
357 }
358
359
360 //---------------------------------------------------------------------------------------------
361
362 if (isset($_GET['c']) && $_GET['c'] == 'df')
363 {
364
365         handle_delete();
366 }
367
368 if (isset($_GET['c']) && $_GET['c'] == 'u')
369 {
370         if (handle_submit())
371         {
372                 meta_forward($_SERVER['PHP_SELF']);
373         }
374 }
375
376
377 //---------------------------------------------------------------------------------------------
378
379 display_companies();
380
381 hyperlink_no_params($_SERVER['PHP_SELF'], _("Create a new company"));
382
383 display_company_edit($selected_id);
384
385 //---------------------------------------------------------------------------------------------
386 end_page();
387
388 ?>