2001-01-11 10:52:33 +01:00
|
|
|
<?php
|
|
|
|
/**************************************************************************\
|
2001-01-13 11:18:50 +01:00
|
|
|
* phpGroupWare API - Accounts manager for LDAP *
|
|
|
|
* This file written by Joseph Engo <jengo@phpgroupware.org> *
|
|
|
|
* and Lars Kneschke <kneschke@phpgroupware.org> *
|
|
|
|
* View and manipulate account records using LDAP *
|
|
|
|
* Copyright (C) 2000, 2001 Joseph Engo *
|
|
|
|
* -------------------------------------------------------------------------*
|
2001-01-16 14:52:32 +01:00
|
|
|
* This library is part of the phpGroupWare API *
|
|
|
|
* http://www.phpgroupware.org/api *
|
|
|
|
* ------------------------------------------------------------------------ *
|
2001-01-13 11:18:50 +01:00
|
|
|
* This library is free software; you can redistribute it and/or modify it *
|
|
|
|
* under the terms of the GNU Lesser General Public License as published by *
|
|
|
|
* the Free Software Foundation; either version 2.1 of the License, *
|
|
|
|
* or any later version. *
|
|
|
|
* This library is distributed in the hope that it will be useful, but *
|
|
|
|
* WITHOUT ANY WARRANTY; without even the implied warranty of *
|
|
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. *
|
|
|
|
* See the GNU Lesser General Public License for more details. *
|
|
|
|
* You should have received a copy of the GNU Lesser General Public License *
|
|
|
|
* along with this library; if not, write to the Free Software Foundation, *
|
|
|
|
* Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA *
|
2001-01-11 10:52:33 +01:00
|
|
|
\**************************************************************************/
|
|
|
|
|
|
|
|
/* $Id$ */
|
2001-03-01 17:41:38 +01:00
|
|
|
|
2001-07-27 12:04:54 +02:00
|
|
|
/* Dont know where to put this (seek3r)
|
|
|
|
This is where it belongs (jengo)
|
|
|
|
This is where it ended up (milosch)
|
|
|
|
Since LDAP will return system accounts, there are a few we don't want to login.
|
|
|
|
*/
|
2001-09-01 00:50:30 +02:00
|
|
|
$GLOBALS['phpgw_info']['server']['global_denied_users'] = array(
|
2001-06-26 11:51:16 +02:00
|
|
|
'root' => True, 'bin' => True, 'daemon' => True,
|
|
|
|
'adm' => True, 'lp' => True, 'sync' => True,
|
|
|
|
'shutdown' => True, 'halt' => True, 'ldap' => True,
|
|
|
|
'mail' => True, 'news' => True, 'uucp' => True,
|
|
|
|
'operator' => True, 'games' => True, 'gopher' => True,
|
|
|
|
'nobody' => True, 'xfs' => True, 'pgsql' => True,
|
|
|
|
'mysql' => True, 'postgres' => True, 'oracle' => True,
|
|
|
|
'ftp' => True, 'gdm' => True, 'named' => True,
|
|
|
|
'alias' => True, 'web' => True, 'sweep' => True,
|
|
|
|
'cvs' => True, 'qmaild' => True, 'qmaill' => True,
|
|
|
|
'qmaillog' => True, 'qmailp' => True, 'qmailq' => True,
|
|
|
|
'qmailr' => True, 'qmails' => True, 'rpc' => True,
|
|
|
|
'rpcuser' => True, 'amanda' => True, 'apache' => True,
|
|
|
|
'pvm' => True, 'squid' => True, 'ident' => True,
|
2001-07-27 12:04:54 +02:00
|
|
|
'nscd' => True, 'mailnull' => True, 'cyrus' => True
|
2001-03-01 17:20:48 +01:00
|
|
|
);
|
2001-02-06 14:24:33 +01:00
|
|
|
|
2001-03-10 13:27:22 +01:00
|
|
|
class accounts_
|
|
|
|
{
|
|
|
|
var $db;
|
|
|
|
var $account_id;
|
|
|
|
var $data;
|
|
|
|
|
2001-03-19 21:25:04 +01:00
|
|
|
function accounts_()
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$this->db = $GLOBALS['phpgw']->db;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-01-11 10:52:33 +01:00
|
|
|
|
2001-03-10 13:27:22 +01:00
|
|
|
function read_repository()
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* get an ldap connection handle */
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
2001-01-11 10:52:33 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
// search the dn for the given uid
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], 'uidnumber='.$this->account_id);
|
2001-03-10 13:27:22 +01:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
|
|
|
|
|
|
|
/* Now dump it into the array; take first entry found */
|
2001-07-27 12:04:54 +02:00
|
|
|
$this->data['account_id'] = $allValues[0]['uidnumber'][0];
|
|
|
|
$this->data['account_lid'] = $allValues[0]['uid'][0];
|
|
|
|
$this->data['account_dn'] = $allValues[0]['dn'];
|
|
|
|
$this->data['firstname'] = $allValues[0]['givenname'][0];
|
|
|
|
$this->data['lastname'] = $allValues[0]['sn'][0];
|
|
|
|
$this->data['fullname'] = $allValues[0]['cn'][0];
|
2001-09-01 00:50:30 +02:00
|
|
|
if ($GLOBALS['phpgw_info']['server']['ldap_extra_attributes'])
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$this->data['homedirectory'] = $allValues[0]['homedirectory'][0];
|
|
|
|
$this->data['loginshell'] = $allValues[0]['loginshell'][0];
|
2001-03-29 05:40:14 +02:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->query("SELECT * FROM phpgw_accounts WHERE account_id='" . $this->data['account_id'] . "'",__LINE__,__FILE__);
|
|
|
|
$this->db->next_record();
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->data['lastlogin'] = $this->db->f('account_lastlogin');
|
|
|
|
$this->data['lastloginfrom'] = $this->db->f('account_lastloginfrom');
|
|
|
|
$this->data['lastpasswd_change'] = $this->db->f('account_lastpwd_change');
|
|
|
|
$this->data['status'] = $this->db->f('account_status');
|
|
|
|
$this->data['expires'] = -1;
|
2001-03-10 13:27:22 +01:00
|
|
|
|
|
|
|
return $this->data;
|
|
|
|
}
|
|
|
|
|
|
|
|
function save_repository()
|
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-07-27 12:04:54 +02:00
|
|
|
/* search the dn for the given uid */
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], 'uidnumber='.$this->account_id);
|
2001-03-10 13:27:22 +01:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
2001-02-05 22:26:40 +01:00
|
|
|
|
2001-07-27 12:04:54 +02:00
|
|
|
$entry['cn'] = sprintf("%s %s", $this->data['firstname'], $this->data['lastname']);
|
|
|
|
$entry['sn'] = $this->data['lastname'];
|
|
|
|
$entry['givenname'] = $this->data['firstname'];
|
2001-03-29 05:40:14 +02:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
if ($GLOBALS['phpgw_info']['server']['ldap_extra_attributes'])
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
|
|
|
$entry['homedirectory'] = $this->data['homedirectory'];
|
|
|
|
$entry['loginshell'] = $this->data['loginshell'];
|
2001-03-29 05:40:14 +02:00
|
|
|
}
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
while (list($key,$val) = each($entry))
|
2001-04-05 20:55:44 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$tmpentry = '';
|
2001-07-27 12:04:54 +02:00
|
|
|
$tmpentry[$key] = trim($val); /* must trim! */
|
|
|
|
/* echo '<br>'.$key.' '.$val; */
|
2001-06-27 03:31:32 +02:00
|
|
|
if ($tmpentry[$key] && $key)
|
2001-04-05 20:55:44 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
if (!$allValues[0][$key][0])
|
2001-04-05 20:55:44 +02:00
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* attribute was not in LDAP, add it */
|
2001-06-27 03:31:32 +02:00
|
|
|
ldap_mod_add($ds, $allValues[0]['dn'], $tmpentry);
|
2001-04-05 20:55:44 +02:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* attribute was in LDAP, modify it */
|
|
|
|
/* echo $val.' '; */
|
2001-06-27 03:31:32 +02:00
|
|
|
ldap_modify($ds, $allValues[0]['dn'], $tmpentry);
|
2001-04-05 20:55:44 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->query("update phpgw_accounts set account_firstname='" . $this->data['firstname']
|
|
|
|
. "', account_lastname='" . $this->data['lastname'] . "', account_status='"
|
2001-07-27 12:04:54 +02:00
|
|
|
. $this->data['status']
|
2001-07-02 00:30:07 +02:00
|
|
|
. "' where account_id='" . $this->account_id . "'",__LINE__,__FILE__);
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
2001-03-23 04:10:57 +01:00
|
|
|
function delete($accountid = '')
|
2001-02-14 20:27:37 +01:00
|
|
|
{
|
2001-03-23 04:10:57 +01:00
|
|
|
$account_id = get_account_id($accountid);
|
|
|
|
$account_lid = $this->id2name($account_id);
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], 'uid='.$account_lid);
|
2001-03-14 17:50:17 +01:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
|
|
|
|
2001-06-26 11:51:16 +02:00
|
|
|
if ($allValues[0]['dn'])
|
|
|
|
{
|
2001-03-23 04:10:57 +01:00
|
|
|
$del = ldap_delete($ds, $allValues[0]['dn']);
|
2001-03-14 17:50:17 +01:00
|
|
|
}
|
|
|
|
|
2001-07-27 12:04:54 +02:00
|
|
|
/* Do this last since we are depending upon this record to get the account_lid above */
|
2001-03-30 06:21:10 +02:00
|
|
|
$tables_array = Array('phpgw_accounts');
|
|
|
|
$this->db->lock($tables_array);
|
2001-03-23 04:10:57 +01:00
|
|
|
$this->db->query('DELETE FROM phpgw_accounts WHERE account_id='.$account_id);
|
2001-03-30 06:21:10 +02:00
|
|
|
$this->db->unlock();
|
2001-02-13 16:19:19 +01:00
|
|
|
}
|
2001-02-14 20:27:37 +01:00
|
|
|
|
2001-03-26 22:44:49 +02:00
|
|
|
function get_list($_type='both', $start = '',$sort = '', $order = '', $query = '', $offset = '')
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-03-26 22:44:49 +02:00
|
|
|
if (! $sort)
|
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$sort = 'desc';
|
2001-03-26 22:44:49 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
if ($order)
|
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$orderclause = "ORDER BY $order $sort";
|
2001-03-26 22:44:49 +02:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$orderclause = 'ORDER BY account_lid,account_lastname,account_firstname ASC';
|
2001-03-26 22:44:49 +02:00
|
|
|
}
|
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
switch($_type)
|
2001-02-14 20:27:37 +01:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
case 'accounts':
|
|
|
|
$whereclause = "WHERE account_type = 'u'";
|
|
|
|
break;
|
|
|
|
case 'groups':
|
|
|
|
$whereclause = "WHERE account_type = 'g'";
|
|
|
|
break;
|
|
|
|
default:
|
|
|
|
$whereclause = '';
|
2001-06-27 03:24:37 +02:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-09-02 09:19:46 +02:00
|
|
|
$sql = "SELECT * FROM phpgw_accounts $whereclause $orderclause";
|
|
|
|
$this->db->limit_query($sql,$start,__LINE__,__FILE__,$offset);
|
2001-06-27 03:31:32 +02:00
|
|
|
while ($this->db->next_record())
|
2001-06-27 03:24:37 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
// get user information from ldap only, if it's a user, not a group
|
|
|
|
if ($this->db->f('account_type') == 'u')
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], 'uidnumber='.$this->db->f('account_id'));
|
2001-06-27 03:31:32 +02:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
|
|
|
$accounts[] = Array(
|
|
|
|
'account_id' => $allValues[0]['uidnumber'][0],
|
|
|
|
'account_lid' => $allValues[0]['uid'][0],
|
|
|
|
'account_type' => $this->db->f('account_type'),
|
|
|
|
'account_firstname' => $allValues[0]['givenname'][0],
|
|
|
|
'account_lastname' => $allValues[0]['sn'][0],
|
2001-07-27 12:04:54 +02:00
|
|
|
'account_status' => $this->db->f('account_status')
|
2001-06-27 03:31:32 +02:00
|
|
|
);
|
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
|
|
|
$accounts[] = Array(
|
|
|
|
'account_id' => $this->db->f('account_id'),
|
|
|
|
'account_lid' => $this->db->f('account_lid'),
|
|
|
|
'account_type' => $this->db->f('account_type'),
|
|
|
|
'account_firstname' => $this->db->f('account_firstname'),
|
|
|
|
'account_lastname' => $this->db->f('account_lastname'),
|
2001-07-27 12:04:54 +02:00
|
|
|
'account_status' => $this->db->f('account_status')
|
2001-06-27 03:31:32 +02:00
|
|
|
);
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-02-14 20:27:37 +01:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-03-10 13:27:22 +01:00
|
|
|
return $accounts;
|
2001-02-14 20:27:37 +01:00
|
|
|
}
|
2001-03-01 16:32:52 +01:00
|
|
|
|
2001-03-24 03:33:44 +01:00
|
|
|
function name2id($account_lid)
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-08-11 16:45:56 +02:00
|
|
|
static $name_list;
|
|
|
|
|
2001-09-02 01:42:16 +02:00
|
|
|
if(@isset($name_list[$account_lid]) && $name_list[$account_lid])
|
2001-08-11 16:45:56 +02:00
|
|
|
{
|
|
|
|
return $name_list[$account_lid];
|
|
|
|
}
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->query("SELECT account_id FROM phpgw_accounts WHERE account_lid='".$account_lid."'",__LINE__,__FILE__);
|
|
|
|
if($this->db->num_rows())
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->next_record();
|
2001-08-15 04:14:18 +02:00
|
|
|
$name_list[$account_lid] = intval($this->db->f('account_id'));
|
2001-06-27 03:31:32 +02:00
|
|
|
}
|
|
|
|
else
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-08-15 04:14:18 +02:00
|
|
|
$name_list[$account_lid] = False;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-08-15 04:14:18 +02:00
|
|
|
return $name_list[$account_lid];
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
function id2name($account_id)
|
|
|
|
{
|
2001-08-11 16:45:56 +02:00
|
|
|
static $id_list;
|
|
|
|
|
2001-08-15 04:14:18 +02:00
|
|
|
if(isset($id_list[$account_id]))
|
2001-08-11 16:45:56 +02:00
|
|
|
{
|
|
|
|
return $id_list[$account_id];
|
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
|
|
|
$this->db->query("SELECT account_lid FROM phpgw_accounts WHERE account_id='".$account_id."'",__LINE__,__FILE__);
|
|
|
|
if($this->db->num_rows())
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->next_record();
|
2001-08-11 16:45:56 +02:00
|
|
|
$id_list[$account_id] = $this->db->f('account_lid');
|
2001-06-26 11:51:16 +02:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
else
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-08-15 04:14:18 +02:00
|
|
|
$id_list[$account_id] = False;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-08-15 04:14:18 +02:00
|
|
|
return $id_list[$account_id];
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
2001-03-19 21:25:04 +01:00
|
|
|
function get_type($accountid = '')
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-08-15 04:14:18 +02:00
|
|
|
static $account_type;
|
2001-03-19 21:25:04 +01:00
|
|
|
|
2001-06-26 11:51:16 +02:00
|
|
|
$account_id = get_account_id($accountid);
|
2001-08-15 04:14:18 +02:00
|
|
|
if(@isset($account_type[$account_id]))
|
|
|
|
{
|
|
|
|
return $account_type[$account_id];
|
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->query("SELECT account_type FROM phpgw_accounts WHERE account_id='".$account_id."'",__LINE__,__FILE__);
|
|
|
|
if ($this->db->num_rows())
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$this->db->next_record();
|
2001-08-15 04:14:18 +02:00
|
|
|
$account_type[$account_id] = $this->db->f('account_type');
|
2001-06-26 11:51:16 +02:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
else
|
2001-06-26 11:51:16 +02:00
|
|
|
{
|
2001-08-15 04:14:18 +02:00
|
|
|
$account_type[$account_id] = False;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-08-15 04:14:18 +02:00
|
|
|
return $account_type[$account_id];
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
/*
|
|
|
|
* returns nonzero if $account exists in SQL or LDAP: 0: nowhere 1: SQL, 2: LDAP, 3: SQL+LDAP
|
|
|
|
* $account can be an account_id (LDAP: uidnumber) or an account_lid (LDAP: uid) (is determinded by gettype($account) == 'interger')
|
|
|
|
*/
|
|
|
|
function exists($account)
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-08-15 04:14:18 +02:00
|
|
|
/* This sets up internal caching variables for this functon */
|
|
|
|
static $by_id, $by_lid;
|
2001-03-18 14:35:53 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
if(gettype($account) == 'integer')
|
2001-03-18 15:08:39 +01:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$sql_name = 'account_id';
|
|
|
|
$ldap_name = 'uidnumber';
|
2001-08-15 04:14:18 +02:00
|
|
|
/* If data is cached, use it. */
|
|
|
|
if(@isset($by_id[$account]))
|
|
|
|
{
|
|
|
|
return $by_id[$account];
|
|
|
|
}
|
2001-03-18 15:08:39 +01:00
|
|
|
}
|
2001-05-26 23:16:25 +02:00
|
|
|
else
|
2001-07-27 12:04:54 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$sql_name = 'account_lid';
|
|
|
|
$ldap_name = 'uid';
|
2001-08-15 04:14:18 +02:00
|
|
|
/* If data is cached, use it. */
|
|
|
|
if(@isset($by_lid[$account]))
|
|
|
|
{
|
|
|
|
return $by_lid[$account];
|
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
}
|
|
|
|
$this->db->query("SELECT count(*) FROM phpgw_accounts WHERE $sql_name='$account'",__LINE__,__FILE__);
|
|
|
|
$this->db->next_record();
|
|
|
|
if ($this->db->f(0))
|
2001-03-18 14:35:53 +01:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$in += 1;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-03-18 14:35:53 +01:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], "$ldap_name=$account");
|
2001-06-27 03:31:32 +02:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
2001-03-14 19:54:30 +01:00
|
|
|
|
2001-06-26 11:51:16 +02:00
|
|
|
if ($allValues[0]['dn'])
|
2001-05-26 23:16:25 +02:00
|
|
|
{
|
2001-06-27 03:31:32 +02:00
|
|
|
$in += 2;
|
2001-03-14 19:54:30 +01:00
|
|
|
}
|
2001-07-27 12:04:54 +02:00
|
|
|
/* echo "<p>class_accounts_ldap->exists('$account') == $in</p>"; */
|
2001-08-15 04:14:18 +02:00
|
|
|
|
|
|
|
/* This sets up internal caching for this functon */
|
|
|
|
if($sql_name == 'account_id')
|
|
|
|
{
|
|
|
|
$by_id[$account] = $in;
|
|
|
|
$by_lid[$this->id2name($account)] = $in;
|
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
|
|
|
$by_lid[$account] = $in;
|
|
|
|
$by_id[$this->name2id($account)] = $in;
|
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
|
|
|
return $in;
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
2001-05-06 13:32:03 +02:00
|
|
|
function create($account_info)
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
2001-03-29 09:26:28 +02:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
if (!($account_id = $account_info['account_id']))
|
2001-06-27 03:24:37 +02:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
if ($GLOBALS['phpgw_info']['server']['account_min_id'])
|
|
|
|
{
|
|
|
|
$min = $GLOBALS['phpgw_info']['server']['account_min_id'];
|
|
|
|
}
|
|
|
|
if ($GLOBALS['phpgw_info']['server']['account_max_id'])
|
|
|
|
{
|
|
|
|
$max = $GLOBALS['phpgw_info']['server']['account_max_id'];
|
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$nextid = $GLOBALS['phpgw']->common->last_id('accounts_ldap',$min,$max);
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-07-27 12:04:54 +02:00
|
|
|
/* Loop until we find a free id */
|
2001-06-27 03:31:32 +02:00
|
|
|
$free = 0;
|
|
|
|
while (!$free)
|
|
|
|
{
|
|
|
|
$ldap_fields = '';
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'],'uidnumber='.$nextid);
|
2001-06-27 03:31:32 +02:00
|
|
|
$ldap_test = ldap_get_entries($ds, $sri);
|
|
|
|
if ($ldap_test[0]['dn'][0])
|
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$nextid = $GLOBALS['phpgw']->common->next_id('accounts_ldap',$min,$max);
|
2001-06-27 03:31:32 +02:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
|
|
|
$free = True;
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
if ($GLOBALS['phpgw_info']['server']['account_max_id'] &&
|
|
|
|
($nextid > $GLOBALS['phpgw_info']['server']['account_max_id']))
|
2001-06-27 03:31:32 +02:00
|
|
|
{
|
|
|
|
return False;
|
|
|
|
}
|
|
|
|
$account_id = $nextid;
|
2001-07-27 12:04:54 +02:00
|
|
|
/* echo $account_id;exit; */
|
2001-03-14 19:54:30 +01:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
|
|
|
$this->db->query("INSERT INTO phpgw_accounts (account_id, account_lid, account_type, account_pwd, "
|
2001-07-27 12:04:54 +02:00
|
|
|
. "account_firstname, account_lastname, account_status, account_expires) VALUES ('" . $account_id . "','" . $account_info['account_lid']
|
2001-06-27 03:31:32 +02:00
|
|
|
. "','" . $account_info['account_type'] . "','" . md5($account_info['account_passwd']) . "', '" . $account_info['account_firstname']
|
2001-07-27 12:04:54 +02:00
|
|
|
. "','" . $account_info['account_lastname'] . "','" . $account_info['account_status'] . "'," . $account_info['account_expires'] . ")",__LINE__,__FILE__);
|
2001-07-02 00:30:07 +02:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'],'uid=' . $account_info['account_lid']);
|
2001-03-10 13:27:22 +01:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
2001-03-14 19:54:30 +01:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
$entry['uidnumber'] = $account_id;
|
|
|
|
$entry['uid'] = $account_info['account_lid'];
|
|
|
|
$entry['cn'] = sprintf('%s %s', $account_info['account_firstname'], $account_info['account_lastname']);
|
|
|
|
$entry['sn'] = $account_info['account_lastname'];
|
|
|
|
$entry['givenname'] = $account_info['account_firstname'];
|
2001-09-01 00:50:30 +02:00
|
|
|
$entry['userpassword'] = $GLOBALS['phpgw']->common->encrypt_password($account_info['account_passwd']);
|
2001-06-27 03:31:32 +02:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
if ($GLOBALS['phpgw_info']['server']['ldap_extra_attributes'] && $account_info['account_type'] == 'u')
|
2001-05-06 13:32:03 +02:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$entry['homedirectory'] = $account_info['homedirectory'] ? $account_info['homedirectory'] : $GLOBALS['phpgw_info']['server']['ldap_account_home'].SEP.$account_info['account_lid'];
|
2001-03-29 05:40:14 +02:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$entry['loginshell'] = $account_info['loginshell'] ? $account_info['loginshell'] : $GLOBALS['phpgw_info']['server']['ldap_account_shell'];
|
2001-03-29 05:40:14 +02:00
|
|
|
}
|
|
|
|
|
2001-05-06 15:07:57 +02:00
|
|
|
if ($allValues[0]['dn'])
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* This should keep the password from being overwritten here ? */
|
2001-05-06 13:32:03 +02:00
|
|
|
unset($entry['userpassword']);
|
2001-04-05 20:55:44 +02:00
|
|
|
|
|
|
|
while (list($key,$val) = each($entry))
|
|
|
|
{
|
|
|
|
$tmpentry = '';
|
2001-07-27 12:04:54 +02:00
|
|
|
$tmpentry[$key] = trim($val); /* must trim! */
|
|
|
|
/* echo '<br>'.$key.' '.$val; */
|
2001-04-05 20:55:44 +02:00
|
|
|
if ($tmpentry[$key])
|
|
|
|
{
|
|
|
|
if (!$allValues[0][$key][0])
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* attribute was not in LDAP, add it */
|
2001-06-27 03:31:32 +02:00
|
|
|
ldap_mod_add($ds, $allValues[0]['dn'], $tmpentry);
|
2001-04-05 20:55:44 +02:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/* attribute was in LDAP, modify it */
|
2001-06-27 03:31:32 +02:00
|
|
|
ldap_modify($ds, $allValues[0]['dn'], $tmpentry);
|
2001-04-05 20:55:44 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2001-07-27 12:04:54 +02:00
|
|
|
/*
|
|
|
|
if ($account_type == 'g')
|
|
|
|
{
|
|
|
|
$tmpentry['objectclass'][0] = 'top';
|
|
|
|
$tmpentry['objectclass'][1] = 'posixGroup';
|
|
|
|
}
|
|
|
|
else
|
|
|
|
*/
|
2001-06-27 03:31:32 +02:00
|
|
|
if ($account_info['account_type'] == 'u')
|
2001-04-05 20:55:44 +02:00
|
|
|
{
|
2001-05-06 13:32:03 +02:00
|
|
|
$tmpentry['objectclass'][0] = 'top';
|
|
|
|
$tmpentry['objectclass'][1] = 'person';
|
|
|
|
$tmpentry['objectclass'][2] = 'organizationalPerson';
|
|
|
|
$tmpentry['objectclass'][3] = 'inetOrgPerson';
|
2001-06-27 03:31:32 +02:00
|
|
|
$tmpentry['objectclass'][4] = 'account';
|
|
|
|
$tmpentry['objectclass'][5] = 'posixAccount';
|
|
|
|
$tmpentry['objectclass'][6] = 'shadowAccount';
|
2001-04-05 20:55:44 +02:00
|
|
|
}
|
2001-06-27 03:31:32 +02:00
|
|
|
|
|
|
|
ldap_modify($ds, $allValues[0]['dn'], $tmpentry);
|
2001-05-06 15:07:57 +02:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2001-07-27 12:04:54 +02:00
|
|
|
/*
|
|
|
|
if ($account_type == 'g')
|
|
|
|
{
|
|
|
|
$entry['objectclass'][0] = 'top';
|
|
|
|
$entry['objectclass'][1] = 'posixGroup';
|
|
|
|
}
|
|
|
|
else
|
|
|
|
*/
|
2001-06-27 03:31:32 +02:00
|
|
|
if ($account_info['account_type'] == 'u')
|
2001-04-05 20:55:44 +02:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
$dn = 'uid=' . $account_info['account_lid'] . ',' . $GLOBALS['phpgw_info']['server']['ldap_context'];
|
2001-05-06 13:32:03 +02:00
|
|
|
$entry['objectclass'][0] = 'top';
|
|
|
|
$entry['objectclass'][1] = 'person';
|
|
|
|
$entry['objectclass'][2] = 'organizationalPerson';
|
|
|
|
$entry['objectclass'][3] = 'inetOrgPerson';
|
2001-06-27 03:31:32 +02:00
|
|
|
$entry['objectclass'][4] = 'account';
|
|
|
|
$entry['objectclass'][5] = 'posixAccount';
|
|
|
|
$entry['objectclass'][6] = 'shadowAccount';
|
2001-06-27 03:24:37 +02:00
|
|
|
|
2001-06-27 03:31:32 +02:00
|
|
|
ldap_add($ds, $dn, $entry);
|
|
|
|
}
|
2001-07-27 12:04:54 +02:00
|
|
|
/* ldap_add($ds, $dn, $entry); */
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-07-27 12:04:54 +02:00
|
|
|
/* print ldap_error($ds); */
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
function auto_add($accountname, $passwd, $default_prefs = False, $default_acls = False, $expiredate = 0, $account_status = 'A')
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-09-01 00:50:30 +02:00
|
|
|
echo 'not yet implemented - auto_generate class.accounts_ldap.inc.php<br>';
|
|
|
|
exit;
|
|
|
|
|
|
|
|
if (!$expiredate)
|
|
|
|
{
|
|
|
|
/* expire in 30 days by default */
|
|
|
|
$expiredate = time() + ( ( 60 * 60 ) * (30 * 24) );
|
|
|
|
}
|
|
|
|
|
|
|
|
$acct_info = array(
|
|
|
|
'account_lid' => $accountname,
|
|
|
|
'account_type' => 'u',
|
|
|
|
'account_passwd' => $passwd,
|
|
|
|
'account_firstname' => '',
|
|
|
|
'account_lastname' => '',
|
|
|
|
'account_status' => $account_status,
|
|
|
|
'account_expires' => mktime(2,0,0,date('n',$expiredate), intval(date('d',$expiredate)), date('Y',$expiredate))
|
|
|
|
);
|
|
|
|
$this->create($acct_info);
|
|
|
|
$accountid = $this->name2id($accountname);
|
|
|
|
|
|
|
|
$this->db->transaction_begin();
|
|
|
|
if ($default_prefs == False)
|
2001-06-27 03:31:32 +02:00
|
|
|
{
|
|
|
|
$defaultprefs = 'a:5:{s:6:"common";a:10:{s:9:"maxmatchs";s:2:"15";s:12:"template_set";s:8:"verdilak";s:5:"theme";s:6:"purple";s:13:"navbar_format";s:5:"icons";s:9:"tz_offset";N;s:10:"dateformat";s:5:"m/d/Y";s:10:"timeformat";s:2:"12";s:4:"lang";s:2:"en";s:11:"default_app";N;s:8:"currency";s:1:"$";}s:11:"addressbook";a:1:{s:0:"";s:4:"True";}:s:8:"calendar";a:4:{s:13:"workdaystarts";s:1:"7";s:11:"workdayends";s:2:"15";s:13:"weekdaystarts";s:6:"Monday";s:15:"defaultcalendar";s:9:"month.php";}}';
|
2001-09-01 00:50:30 +02:00
|
|
|
/* $defaultprefs = 'a:5:{s:6:"common";a:1:{s:0:"";s:2:"en";}s:11:"addressbook";a:1:{s:0:"";s:4:"True";}s:8:"calendar";a:1:{s:0:"";s:13:"workdaystarts";}i:15;a:1:{s:0:"";s:11:"workdayends";}s:6:"Monday";a:1:{s:0:"";s:13:"weekdaystarts";}}'; */
|
|
|
|
$this->db->query("insert into phpgw_preferences (preference_owner, preference_value) values ('".$accountid."', '$defaultprefs')");
|
|
|
|
}
|
|
|
|
|
|
|
|
if ($default_acls == False)
|
|
|
|
{
|
|
|
|
$default_group_lid = $GLOBALS['phpgw_info']['server']['default_group_lid'];
|
|
|
|
$default_group_id = $this->name2id($default_group_lid);
|
|
|
|
$defaultgroupid = $default_group_id ? $default_group_id : $this->name2id('Default');
|
|
|
|
if($defaultgroupid)
|
|
|
|
{
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('phpgw_group', "
|
|
|
|
. $defaultgroupid . ", " . $accountid . ", 1)",__LINE__,__FILE__);
|
|
|
|
}
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights)values('preferences', 'changepassword', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('addressbook', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('filemanager', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('calendar', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('email', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('notes', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
$this->db->query("insert into phpgw_acl (acl_appname, acl_location, acl_account, acl_rights) values('todo', 'run', ".$accountid.", 1)",__LINE__,__FILE__);
|
|
|
|
}
|
|
|
|
$this->db->transaction_commit();
|
2001-03-10 13:27:22 +01:00
|
|
|
return $accountid;
|
|
|
|
}
|
|
|
|
|
2001-03-19 21:25:04 +01:00
|
|
|
function getDNforID($_accountid = '')
|
2001-03-10 13:27:22 +01:00
|
|
|
{
|
2001-03-19 21:25:04 +01:00
|
|
|
$_account_id = get_account_id($_accountid);
|
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$ds = $GLOBALS['phpgw']->common->ldapConnect();
|
2001-03-10 13:27:22 +01:00
|
|
|
|
2001-09-01 00:50:30 +02:00
|
|
|
$sri = ldap_search($ds, $GLOBALS['phpgw_info']['server']['ldap_context'], "uidnumber=$_account_id");
|
2001-03-10 13:27:22 +01:00
|
|
|
$allValues = ldap_get_entries($ds, $sri);
|
|
|
|
|
2001-06-26 11:51:16 +02:00
|
|
|
return $allValues[0]['dn'];
|
2001-03-10 13:27:22 +01:00
|
|
|
}
|
2001-02-12 22:13:09 +01:00
|
|
|
}
|