main.attachments.php 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565
  1. <?php
  2. // Copyright (C) 2010-2016 Combodo SARL
  3. //
  4. // This file is part of iTop.
  5. //
  6. // iTop is free software; you can redistribute it and/or modify
  7. // it under the terms of the GNU Affero General Public License as published by
  8. // the Free Software Foundation, either version 3 of the License, or
  9. // (at your option) any later version.
  10. //
  11. // iTop is distributed in the hope that it will be useful,
  12. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  14. // GNU Affero General Public License for more details.
  15. //
  16. // You should have received a copy of the GNU Affero General Public License
  17. // along with iTop. If not, see <http://www.gnu.org/licenses/>
  18. class AttachmentPlugIn implements iApplicationUIExtension, iApplicationObjectExtension
  19. {
  20. protected static $m_bIsModified = false;
  21. public function OnDisplayProperties($oObject, WebPage $oPage, $bEditMode = false)
  22. {
  23. if ($this->GetAttachmentsPosition() == 'properties')
  24. {
  25. $this->DisplayAttachments($oObject, $oPage, $bEditMode);
  26. }
  27. }
  28. public function OnDisplayRelations($oObject, WebPage $oPage, $bEditMode = false)
  29. {
  30. if ($this->GetAttachmentsPosition() == 'relations')
  31. {
  32. $this->DisplayAttachments($oObject, $oPage, $bEditMode);
  33. }
  34. }
  35. public function OnFormSubmit($oObject, $sFormPrefix = '')
  36. {
  37. if ($this->IsTargetObject($oObject))
  38. {
  39. // For new objects attachments are processed in OnDBInsert
  40. if (!$oObject->IsNew())
  41. {
  42. self::UpdateAttachments($oObject);
  43. }
  44. }
  45. }
  46. protected function GetMaxUpload()
  47. {
  48. $iMaxUpload = ini_get('upload_max_filesize');
  49. if (!$iMaxUpload)
  50. {
  51. $sRet = Dict::S('Attachments:UploadNotAllowedOnThisSystem');
  52. }
  53. else
  54. {
  55. $iMaxUpload = utils::ConvertToBytes($iMaxUpload);
  56. if ($iMaxUpload > 1024*1024*1024)
  57. {
  58. $sRet = Dict::Format('Attachment:Max_Go', sprintf('%0.2f', $iMaxUpload/(1024*1024*1024)));
  59. }
  60. else if ($iMaxUpload > 1024*1024)
  61. {
  62. $sRet = Dict::Format('Attachment:Max_Mo', sprintf('%0.2f', $iMaxUpload/(1024*1024)));
  63. }
  64. else
  65. {
  66. $sRet = Dict::Format('Attachment:Max_Ko', sprintf('%0.2f', $iMaxUpload/(1024)));
  67. }
  68. }
  69. return $sRet;
  70. }
  71. public function OnFormCancel($sTempId)
  72. {
  73. // Delete all "pending" attachments for this form
  74. $sOQL = 'SELECT Attachment WHERE temp_id = :temp_id';
  75. $oSearch = DBObjectSearch::FromOQL($sOQL);
  76. $oSet = new DBObjectSet($oSearch, array(), array('temp_id' => $sTempId));
  77. while($oAttachment = $oSet->Fetch())
  78. {
  79. $oAttachment->DBDelete();
  80. // Pending attachment, don't mention it in the history
  81. }
  82. }
  83. public function EnumUsedAttributes($oObject)
  84. {
  85. return array();
  86. }
  87. public function GetIcon($oObject)
  88. {
  89. return '';
  90. }
  91. public function GetHilightClass($oObject)
  92. {
  93. // Possible return values are:
  94. // HILIGHT_CLASS_CRITICAL, HILIGHT_CLASS_WARNING, HILIGHT_CLASS_OK, HILIGHT_CLASS_NONE
  95. return HILIGHT_CLASS_NONE;
  96. }
  97. public function EnumAllowedActions(DBObjectSet $oSet)
  98. {
  99. // No action
  100. return array();
  101. }
  102. public function OnIsModified($oObject)
  103. {
  104. return self::$m_bIsModified;
  105. }
  106. public function OnCheckToWrite($oObject)
  107. {
  108. return array();
  109. }
  110. public function OnCheckToDelete($oObject)
  111. {
  112. return array();
  113. }
  114. public function OnDBUpdate($oObject, $oChange = null)
  115. {
  116. if ($this->IsTargetObject($oObject))
  117. {
  118. // Get all current attachments
  119. $oSearch = DBObjectSearch::FromOQL("SELECT Attachment WHERE item_class = :class AND item_id = :item_id");
  120. $oSet = new DBObjectSet($oSearch, array(), array('class' => get_class($oObject), 'item_id' => $oObject->GetKey()));
  121. while ($oAttachment = $oSet->Fetch())
  122. {
  123. $oAttachment->SetItem($oObject, true /*updateonchange*/);
  124. }
  125. }
  126. }
  127. public function OnDBInsert($oObject, $oChange = null)
  128. {
  129. if ($this->IsTargetObject($oObject))
  130. {
  131. self::UpdateAttachments($oObject, $oChange);
  132. }
  133. }
  134. public function OnDBDelete($oObject, $oChange = null)
  135. {
  136. if ($this->IsTargetObject($oObject))
  137. {
  138. $oSearch = DBObjectSearch::FromOQL("SELECT Attachment WHERE item_class = :class AND item_id = :item_id");
  139. $oSet = new DBObjectSet($oSearch, array(), array('class' => get_class($oObject), 'item_id' => $oObject->GetKey()));
  140. while ($oAttachment = $oSet->Fetch())
  141. {
  142. $oAttachment->DBDelete();
  143. }
  144. }
  145. }
  146. ///////////////////////////////////////////////////////////////////////////////////////////////////////
  147. //
  148. // Plug-ins specific functions
  149. //
  150. ///////////////////////////////////////////////////////////////////////////////////////////////////////
  151. protected function IsTargetObject($oObject)
  152. {
  153. $aAllowedClasses = MetaModel::GetModuleSetting('itop-attachments', 'allowed_classes', array('Ticket'));
  154. foreach($aAllowedClasses as $sAllowedClass)
  155. {
  156. if ($oObject instanceof $sAllowedClass)
  157. {
  158. return true;
  159. }
  160. }
  161. return false;
  162. }
  163. protected function GetAttachmentsPosition()
  164. {
  165. return MetaModel::GetModuleSetting('itop-attachments', 'position', 'relations');
  166. }
  167. var $m_bDeleteEnabled = true;
  168. public function EnableDelete($bEnabled)
  169. {
  170. $this->m_bDeleteEnabled = $bEnabled;
  171. }
  172. public function DisplayAttachments($oObject, WebPage $oPage, $bEditMode = false)
  173. {
  174. // Exit here if the class is not allowed
  175. if (!$this->IsTargetObject($oObject)) return;
  176. $oSearch = DBObjectSearch::FromOQL("SELECT Attachment WHERE item_class = :class AND item_id = :item_id");
  177. $oSet = new DBObjectSet($oSearch, array(), array('class' => get_class($oObject), 'item_id' => $oObject->GetKey()));
  178. if ($this->GetAttachmentsPosition() == 'relations')
  179. {
  180. $sTitle = ($oSet->Count() > 0)? Dict::Format('Attachments:TabTitle_Count', $oSet->Count()) : Dict::S('Attachments:EmptyTabTitle');
  181. $oPage->SetCurrentTab($sTitle);
  182. }
  183. $oPage->add_style(
  184. <<<EOF
  185. .attachment {
  186. display: inline-block;
  187. text-align:center;
  188. float:left;
  189. padding:5px;
  190. }
  191. .attachment:hover {
  192. background-color: #e0e0e0;
  193. }
  194. .attachment img {
  195. border: 0;
  196. }
  197. .attachment a {
  198. text-decoration: none;
  199. color: #1C94C4;
  200. }
  201. .btn_hidden {
  202. display: none;
  203. }
  204. EOF
  205. );
  206. $oPage->add('<fieldset>');
  207. $oPage->add('<legend>'.Dict::S('Attachments:FieldsetTitle').'</legend>');
  208. if ($bEditMode)
  209. {
  210. $sIsDeleteEnabled = $this->m_bDeleteEnabled ? 'true' : 'false';
  211. $iTransactionId = $oPage->GetTransactionId();
  212. $sClass = get_class($oObject);
  213. $sTempId = session_id().'_'.$iTransactionId;
  214. $sDeleteBtn = Dict::S('Attachments:DeleteBtn');
  215. $oPage->add_script(
  216. <<<EOF
  217. function RemoveNewAttachment(att_id)
  218. {
  219. $('#attachment_'+att_id).attr('name', 'removed_attachments[]');
  220. $('#display_attachment_'+att_id).hide();
  221. $('#attachment_plugin').trigger('remove_attachment', [att_id]);
  222. return false; // Do not submit the form !
  223. }
  224. function ajaxFileUpload()
  225. {
  226. //starting setting some animation when the ajax starts and completes
  227. $("#attachment_loading").ajaxStart(function(){
  228. $(this).show();
  229. }).ajaxComplete(function(){
  230. $(this).hide();
  231. });
  232. /*
  233. prepareing ajax file upload
  234. url: the url of script file handling the uploaded files
  235. fileElementId: the file type of input element id and it will be the index of \$_FILES Array()
  236. dataType: it support json, xml
  237. secureuri:use secure protocol
  238. success: call back function when the ajax complete
  239. error: callback function when the ajax failed
  240. */
  241. $.ajaxFileUpload
  242. (
  243. {
  244. url: GetAbsoluteUrlModulesRoot()+'itop-attachments/ajax.attachment.php?obj_class={$sClass}&temp_id={$sTempId}&operation=add',
  245. secureuri:false,
  246. fileElementId:'file',
  247. dataType: 'json',
  248. success: function (data, status)
  249. {
  250. if(typeof(data.error) != 'undefined')
  251. {
  252. if(data.error != '')
  253. {
  254. alert(data.error);
  255. }
  256. else
  257. {
  258. var sDownloadLink = GetAbsoluteUrlAppRoot()+'pages/ajax.document.php?operation=download_document&class=Attachment&id='+data.att_id+'&field=contents';
  259. $('#attachments').append('<div class="attachment" id="display_attachment_'+data.att_id+'"><a href="'+sDownloadLink+'"><img src="'+data.icon+'"><br/>'+data.msg+'<input id="attachment_'+data.att_id+'" type="hidden" name="attachments[]" value="'+data.att_id+'"/></a><br/><input type="button" class="btn_hidden" value="{$sDeleteBtn}" onClick="RemoveNewAttachment('+data.att_id+');"/></div>');
  260. if($sIsDeleteEnabled)
  261. {
  262. $('#display_attachment_'+data.att_id).hover( function() { $(this).children(':button').toggleClass('btn_hidden'); } );
  263. }
  264. $('#attachment_plugin').trigger('add_attachment', [data.att_id, data.msg, false /* not an inline image */]);
  265. //alert(data.msg);
  266. }
  267. }
  268. },
  269. error: function (data, status, e)
  270. {
  271. alert(e);
  272. }
  273. }
  274. )
  275. return false;
  276. }
  277. EOF
  278. );
  279. $oPage->add('<span id="attachments">');
  280. while ($oAttachment = $oSet->Fetch())
  281. {
  282. $iAttId = $oAttachment->GetKey();
  283. $oDoc = $oAttachment->Get('contents');
  284. $sFileName = $oDoc->GetFileName();
  285. $sIcon = utils::GetAbsoluteUrlAppRoot().AttachmentPlugIn::GetFileIcon($sFileName);
  286. $sDownloadLink = utils::GetAbsoluteUrlAppRoot().'pages/ajax.document.php?operation=download_document&class=Attachment&id='.$iAttId.'&field=contents';
  287. $oPage->add('<div class="attachment" id="attachment_'.$iAttId.'"><a href="'.$sDownloadLink.'"><img src="'.$sIcon.'"><br/>'.$sFileName.'<input type="hidden" name="attachments[]" value="'.$iAttId.'"/></a><br/>&nbsp;<input id="btn_remove_'.$iAttId.'" type="button" class="btn_hidden" value="Delete" onClick="$(\'#attachment_'.$iAttId.'\').remove();"/>&nbsp;</div>');
  288. }
  289. // Suggested attachments are listed here but treated as temporary
  290. $aDefault = utils::ReadParam('default', array(), false, 'raw_data');
  291. if (array_key_exists('suggested_attachments', $aDefault))
  292. {
  293. $sSuggestedAttachements = $aDefault['suggested_attachments'];
  294. if (is_array($sSuggestedAttachements))
  295. {
  296. $sSuggestedAttachements = implode(',', $sSuggestedAttachements);
  297. }
  298. $oSearch = DBObjectSearch::FromOQL("SELECT Attachment WHERE id IN($sSuggestedAttachements)");
  299. $oSet = new DBObjectSet($oSearch, array());
  300. if ($oSet->Count() > 0)
  301. {
  302. while ($oAttachment = $oSet->Fetch())
  303. {
  304. // Mark the attachments as temporary attachments for the current object/form
  305. $oAttachment->Set('temp_id', $sTempId);
  306. $oAttachment->DBUpdate();
  307. // Display them
  308. $iAttId = $oAttachment->GetKey();
  309. $oDoc = $oAttachment->Get('contents');
  310. $sFileName = $oDoc->GetFileName();
  311. $sIcon = utils::GetAbsoluteUrlAppRoot().AttachmentPlugIn::GetFileIcon($sFileName);
  312. $sDownloadLink = utils::GetAbsoluteUrlAppRoot().'pages/ajax.document.php?operation=download_document&class=Attachment&id='.$iAttId.'&field=contents';
  313. $oPage->add('<div class="attachment" id="display_attachment_'.$iAttId.'"><a href="'.$sDownloadLink.'"><img src="'.$sIcon.'"><br/>'.$sFileName.'<input type="hidden" name="attachments[]" value="'.$iAttId.'"/></a><br/>&nbsp;<input id="btn_remove_'.$iAttId.'" type="button" class="btn_hidden" value="Delete" onClick="RemoveNewAttachment('.$iAttId.');"/>&nbsp;</div>');
  314. $oPage->add_ready_script("$('#attachment_plugin').trigger('add_attachment', [$iAttId, '".addslashes($sFileName)."', false /* not an line image */]);");
  315. }
  316. }
  317. }
  318. $oPage->add('</span>');
  319. $oPage->add('<div style="clear:both"></div>');
  320. $sMaxUpload = $this->GetMaxUpload();
  321. $oPage->p(Dict::S('Attachments:AddAttachment').'<input type="file" name="file" id="file" onChange="ajaxFileUpload();"><span style="display:none;" id="attachment_loading">&nbsp;<img src="../images/indicator.gif"></span> '.$sMaxUpload);
  322. $oPage->p('<span style="display:none;" id="attachment_loading">Loading, please wait...</span>');
  323. $oPage->p('<input type="hidden" id="attachment_plugin" name="attachment_plugin"/>');
  324. $oPage->add('</fieldset>');
  325. if ($this->m_bDeleteEnabled)
  326. {
  327. $oPage->add_ready_script('$(".attachment").hover( function() {$(this).children(":button").toggleClass("btn_hidden"); } );');
  328. }
  329. }
  330. else
  331. {
  332. $oPage->add('<span id="attachments">');
  333. if ($oSet->Count() == 0)
  334. {
  335. $oPage->add(Dict::S('Attachments:NoAttachment'));
  336. }
  337. else
  338. {
  339. while ($oAttachment = $oSet->Fetch())
  340. {
  341. $iAttId = $oAttachment->GetKey();
  342. $oDoc = $oAttachment->Get('contents');
  343. $sFileName = $oDoc->GetFileName();
  344. $sIcon = utils::GetAbsoluteUrlAppRoot().AttachmentPlugIn::GetFileIcon($sFileName);
  345. $sDownloadLink = utils::GetAbsoluteUrlAppRoot().'pages/ajax.document.php?operation=download_document&class=Attachment&id='.$iAttId.'&field=contents';
  346. $oPage->add('<div class="attachment" id="attachment_'.$iAttId.'"><a href="'.$sDownloadLink.'"><img src="'.$sIcon.'"><br/>'.$sFileName.'</a><input type="hidden" name="attachments[]" value="'.$iAttId.'"/><br/>&nbsp;&nbsp;</div>');
  347. }
  348. }
  349. }
  350. }
  351. protected static function UpdateAttachments($oObject, $oChange = null)
  352. {
  353. self::$m_bIsModified = false;
  354. if (utils::ReadParam('attachment_plugin', 'not-in-form') == 'not-in-form')
  355. {
  356. // Workaround to an issue in iTop < 2.0
  357. // Leave silently if there is no trace of the attachment form
  358. return;
  359. }
  360. $iTransactionId = utils::ReadParam('transaction_id', null);
  361. if (!is_null($iTransactionId))
  362. {
  363. $aActions = array();
  364. $aAttachmentIds = utils::ReadParam('attachments', array());
  365. // Get all current attachments
  366. $oSearch = DBObjectSearch::FromOQL("SELECT Attachment WHERE item_class = :class AND item_id = :item_id");
  367. $oSet = new DBObjectSet($oSearch, array(), array('class' => get_class($oObject), 'item_id' => $oObject->GetKey()));
  368. while ($oAttachment = $oSet->Fetch())
  369. {
  370. // Remove attachments that are no longer attached to the current object
  371. if (!in_array($oAttachment->GetKey(), $aAttachmentIds))
  372. {
  373. $oAttachment->DBDelete();
  374. $aActions[] = self::GetActionDescription($oAttachment, false /* false => deletion */);
  375. }
  376. }
  377. // Attach new (temporary) attachements
  378. $sTempId = session_id().'_'.$iTransactionId;
  379. // The object is being created from a form, check if there are pending attachments
  380. // for this object, but deleting the "new" ones that were already removed from the form
  381. $aRemovedAttachmentIds = utils::ReadParam('removed_attachments', array());
  382. $sOQL = 'SELECT Attachment WHERE temp_id = :temp_id';
  383. $oSearch = DBObjectSearch::FromOQL($sOQL);
  384. foreach($aAttachmentIds as $iAttachmentId)
  385. {
  386. $oSet = new DBObjectSet($oSearch, array(), array('temp_id' => $sTempId));
  387. while($oAttachment = $oSet->Fetch())
  388. {
  389. if (in_array($oAttachment->GetKey(),$aRemovedAttachmentIds))
  390. {
  391. $oAttachment->DBDelete();
  392. // temporary attachment removed, don't even mention it in the history
  393. }
  394. else
  395. {
  396. $oAttachment->SetItem($oObject);
  397. $oAttachment->Set('temp_id', '');
  398. $oAttachment->DBUpdate();
  399. // temporary attachment confirmed, list it in the history
  400. $aActions[] = self::GetActionDescription($oAttachment, true /* true => creation */);
  401. }
  402. }
  403. }
  404. if (count($aActions) > 0)
  405. {
  406. if ($oChange == null)
  407. {
  408. // Let's create a change if non is supplied
  409. $oChange = MetaModel::NewObject("CMDBChange");
  410. $oChange->Set("date", time());
  411. $sUserString = CMDBChange::GetCurrentUserName();
  412. $oChange->Set("userinfo", $sUserString);
  413. $iChangeId = $oChange->DBInsert();
  414. }
  415. foreach($aActions as $sActionDescription)
  416. {
  417. self::RecordHistory($oChange, $oObject, $sActionDescription);
  418. }
  419. self::$m_bIsModified = true;
  420. }
  421. }
  422. }
  423. /////////////////////////////////////////////////////////////////////////////////////////
  424. public static function GetFileIcon($sFileName)
  425. {
  426. $aPathParts = pathinfo($sFileName);
  427. switch($aPathParts['extension'])
  428. {
  429. case 'doc':
  430. case 'docx':
  431. $sIcon = 'doc.png';
  432. break;
  433. case 'xls':
  434. case 'xlsx':
  435. $sIcon = 'xls.png';
  436. break;
  437. case 'ppt':
  438. case 'pptx':
  439. $sIcon = 'ppt.png';
  440. break;
  441. case 'pdf':
  442. $sIcon = 'pdf.png';
  443. break;
  444. case 'txt':
  445. case 'text':
  446. $sIcon = 'txt.png';
  447. break;
  448. case 'rtf':
  449. $sIcon = 'rtf.png';
  450. break;
  451. case 'odt':
  452. $sIcon = 'odt.png';
  453. break;
  454. case 'ods':
  455. $sIcon = 'ods.png';
  456. break;
  457. case 'odp':
  458. $sIcon = 'odp.png';
  459. break;
  460. case 'html':
  461. case 'htm':
  462. $sIcon = 'html.png';
  463. break;
  464. case 'png':
  465. case 'gif':
  466. case 'jpg':
  467. case 'jpeg':
  468. case 'tiff':
  469. case 'tif':
  470. case 'bmp':
  471. $sIcon = 'image.png';
  472. break;
  473. case 'zip':
  474. case 'gz':
  475. case 'tgz':
  476. case 'rar':
  477. $sIcon = 'zip.png';
  478. break;
  479. default:
  480. $sIcon = 'document.png';
  481. break;
  482. }
  483. return 'env-'.utils::GetCurrentEnvironment()."/itop-attachments/icons/$sIcon";
  484. }
  485. /////////////////////////////////////////////////////////////////////////
  486. private static function RecordHistory(CMDBChange $oChange, $oTargetObject, $sDescription)
  487. {
  488. $oMyChangeOp = MetaModel::NewObject("CMDBChangeOpPlugin");
  489. $oMyChangeOp->Set("change", $oChange->GetKey());
  490. $oMyChangeOp->Set("objclass", get_class($oTargetObject));
  491. $oMyChangeOp->Set("objkey", $oTargetObject->GetKey());
  492. $oMyChangeOp->Set("description", $sDescription);
  493. $iId = $oMyChangeOp->DBInsertNoReload();
  494. }
  495. /////////////////////////////////////////////////////////////////////////
  496. private static function GetActionDescription($oAttachment, $bCreate = true)
  497. {
  498. $oBlob = $oAttachment->Get('contents');
  499. $sFileName = $oBlob->GetFileName();
  500. if ($bCreate)
  501. {
  502. $sDescription = Dict::Format('Attachments:History_File_Added', $sFileName);
  503. }
  504. else
  505. {
  506. $sDescription = Dict::Format('Attachments:History_File_Removed', $sFileName);
  507. }
  508. return $sDescription;
  509. }
  510. }
  511. ?>