2003-05-09 14:42:42 +02:00
|
|
|
<?php
|
2004-02-12 00:20:38 +01:00
|
|
|
// +-----------------------------------------------------------------------+
|
2004-11-06 22:12:59 +01:00
|
|
|
// | PhpWebGallery - a PHP based picture gallery |
|
|
|
|
// | Copyright (C) 2002-2003 Pierrick LE GALL - pierrick@phpwebgallery.net |
|
|
|
|
// | Copyright (C) 2003-2004 PhpWebGallery Team - http://phpwebgallery.net |
|
2004-02-12 00:20:38 +01:00
|
|
|
// +-----------------------------------------------------------------------+
|
2004-11-06 22:12:59 +01:00
|
|
|
// | branch : BSF (Best So Far)
|
2004-02-12 00:20:38 +01:00
|
|
|
// | file : $RCSfile$
|
|
|
|
// | last update : $Date$
|
|
|
|
// | last modifier : $Author$
|
|
|
|
// | revision : $Revision$
|
|
|
|
// +-----------------------------------------------------------------------+
|
|
|
|
// | This program is free software; you can redistribute it and/or modify |
|
|
|
|
// | it under the terms of the GNU General Public License as published by |
|
|
|
|
// | the Free Software Foundation |
|
|
|
|
// | |
|
|
|
|
// | This program is distributed in the hope that it will be useful, but |
|
|
|
|
// | WITHOUT ANY WARRANTY; without even the implied warranty of |
|
|
|
|
// | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU |
|
|
|
|
// | General Public License for more details. |
|
|
|
|
// | |
|
|
|
|
// | You should have received a copy of the GNU General Public License |
|
|
|
|
// | along with this program; if not, write to the Free Software |
|
|
|
|
// | Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, |
|
|
|
|
// | USA. |
|
|
|
|
// +-----------------------------------------------------------------------+
|
2004-02-02 01:55:18 +01:00
|
|
|
|
2004-12-20 13:30:36 +01:00
|
|
|
// retrieving connected user informations
|
2003-07-27 10:24:10 +02:00
|
|
|
|
2004-10-07 00:48:48 +02:00
|
|
|
if (isset($_COOKIE['id']))
|
2003-07-27 10:24:10 +02:00
|
|
|
{
|
2004-10-07 00:48:48 +02:00
|
|
|
$session_id = $_COOKIE['id'];
|
|
|
|
$user['has_cookie'] = true;
|
2003-07-27 10:24:10 +02:00
|
|
|
}
|
2004-10-07 00:48:48 +02:00
|
|
|
else if (isset($_GET['id']))
|
2004-10-03 01:12:50 +02:00
|
|
|
{
|
|
|
|
$session_id = $_GET['id'];
|
|
|
|
$user['has_cookie'] = false;
|
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
|
|
|
$user['has_cookie'] = false;
|
2003-07-27 10:24:10 +02:00
|
|
|
}
|
|
|
|
|
2004-10-03 01:12:50 +02:00
|
|
|
if (isset($session_id)
|
2004-10-07 00:48:48 +02:00
|
|
|
and ereg("^[0-9a-zA-Z]{".$conf['session_id_size']."}$", $session_id))
|
2003-07-27 10:24:10 +02:00
|
|
|
{
|
|
|
|
$page['session_id'] = $session_id;
|
2004-10-03 01:12:50 +02:00
|
|
|
$query = '
|
2004-12-18 23:05:30 +01:00
|
|
|
SELECT user_id,expiration,NOW() AS now
|
2004-10-03 01:12:50 +02:00
|
|
|
FROM '.SESSIONS_TABLE.'
|
|
|
|
WHERE id = \''.$page['session_id'].'\'
|
|
|
|
;';
|
2004-10-30 17:42:29 +02:00
|
|
|
$result = pwg_query($query);
|
2004-10-03 01:12:50 +02:00
|
|
|
if (mysql_num_rows($result) > 0)
|
2003-05-09 14:42:42 +02:00
|
|
|
{
|
2004-10-03 01:12:50 +02:00
|
|
|
$row = mysql_fetch_array($result);
|
2004-12-18 23:05:30 +01:00
|
|
|
if (strnatcmp($row['expiration'], $row['now']) < 0)
|
2003-05-09 14:42:42 +02:00
|
|
|
{
|
2004-12-18 23:05:30 +01:00
|
|
|
// deletion of the session from the database, because it is
|
|
|
|
// out-of-date
|
|
|
|
$delete_query = '
|
|
|
|
DELETE FROM '.SESSIONS_TABLE.'
|
|
|
|
WHERE id = \''.$page['session_id'].'\'
|
|
|
|
;';
|
|
|
|
pwg_query($delete_query);
|
2003-05-09 14:42:42 +02:00
|
|
|
}
|
2003-07-27 10:24:10 +02:00
|
|
|
else
|
|
|
|
{
|
2004-12-20 13:30:36 +01:00
|
|
|
$user['id'] = $row['user_id'];
|
|
|
|
$user['is_the_guest'] = false;
|
2003-07-27 10:24:10 +02:00
|
|
|
}
|
2003-05-09 14:42:42 +02:00
|
|
|
}
|
|
|
|
}
|
2004-12-20 13:30:36 +01:00
|
|
|
if (!isset($user['id']))
|
2003-05-09 14:42:42 +02:00
|
|
|
{
|
2004-12-20 13:30:36 +01:00
|
|
|
$user['id'] = 2;
|
2003-05-09 14:42:42 +02:00
|
|
|
$user['is_the_guest'] = true;
|
|
|
|
}
|
|
|
|
|
2004-12-20 13:30:36 +01:00
|
|
|
$query = '
|
|
|
|
SELECT u.*, uf.*
|
|
|
|
FROM '.USERS_TABLE.' AS u LEFT JOIN '.USER_FORBIDDEN_TABLE.' AS uf
|
|
|
|
ON id = user_id
|
|
|
|
WHERE u.id = '.$user['id'].'
|
|
|
|
;';
|
|
|
|
$row = mysql_fetch_array(pwg_query($query));
|
|
|
|
|
|
|
|
// affectation of each value retrieved in the users table into a variable of
|
|
|
|
// the array $user.
|
|
|
|
foreach ($row as $key => $value)
|
|
|
|
{
|
|
|
|
if (!is_numeric($key))
|
2003-05-09 14:42:42 +02:00
|
|
|
{
|
2004-02-02 01:55:18 +01:00
|
|
|
// If the field is true or false, the variable is transformed into a
|
|
|
|
// boolean value.
|
2004-12-20 13:30:36 +01:00
|
|
|
if ($value == 'true' or $value == 'false')
|
|
|
|
{
|
|
|
|
$user[$key] = get_boolean($value);
|
|
|
|
}
|
2004-02-02 01:55:18 +01:00
|
|
|
else
|
2004-12-20 13:30:36 +01:00
|
|
|
{
|
|
|
|
$user[$key] = $value;
|
|
|
|
}
|
2003-05-09 14:42:42 +02:00
|
|
|
}
|
|
|
|
}
|
2004-02-02 01:55:18 +01:00
|
|
|
|
2004-12-20 13:30:36 +01:00
|
|
|
// if no information were found about user in user_forbidden table OR the
|
|
|
|
// forbidden categories must be updated
|
|
|
|
if (!isset($user['need_update'])
|
|
|
|
or !is_bool($user['need_update'])
|
|
|
|
or $user['need_update'] == true)
|
|
|
|
{
|
|
|
|
$user['forbidden_categories'] = calculate_permissions($user['id']);
|
|
|
|
}
|
|
|
|
|
|
|
|
// forbidden_categories is a must be empty, at least
|
|
|
|
if (!isset($user['forbidden_categories']))
|
|
|
|
{
|
|
|
|
$user['forbidden_categories'] = '';
|
|
|
|
}
|
|
|
|
|
2004-02-02 01:55:18 +01:00
|
|
|
// special for $user['restrictions'] array
|
2004-10-03 01:12:50 +02:00
|
|
|
$user['restrictions'] = explode(',', $user['forbidden_categories']);
|
|
|
|
if ($user['restrictions'][0] == '')
|
2004-03-27 09:05:01 +01:00
|
|
|
{
|
|
|
|
$user['restrictions'] = array();
|
|
|
|
}
|
|
|
|
|
2004-02-07 12:50:26 +01:00
|
|
|
// calculation of the number of picture to display per page
|
|
|
|
$user['nb_image_page'] = $user['nb_image_line'] * $user['nb_line_page'];
|
2004-12-20 13:30:36 +01:00
|
|
|
|
2004-12-20 20:26:43 +01:00
|
|
|
if (empty($user['language'])
|
|
|
|
or !file_exists(PHPWG_ROOT_PATH.'language/'.
|
|
|
|
$user['language'].'/common.lang.php'))
|
|
|
|
{
|
|
|
|
$user['language'] = $conf['default_language'];
|
|
|
|
}
|
|
|
|
include_once(PHPWG_ROOT_PATH.'language/'.$user['language'].'/common.lang.php');
|
|
|
|
|
|
|
|
// only if we are in the administration section
|
|
|
|
if (defined('IN_ADMIN') and IN_ADMIN)
|
|
|
|
{
|
|
|
|
$langdir = PHPWG_ROOT_PATH.'language/'.$user['language'];
|
|
|
|
if (!file_exists($langdir.'/admin.lang.php'))
|
|
|
|
{
|
|
|
|
$langdir = PHPWG_ROOT_PATH.'language/'.$conf['default_language'];
|
|
|
|
}
|
|
|
|
include_once($langdir.'/admin.lang.php');
|
|
|
|
include_once($langdir.'/faq.lang.php');
|
|
|
|
}
|
|
|
|
|
|
|
|
if (empty($user['template']))
|
|
|
|
{
|
|
|
|
$user['template'] = $conf['default_template'];
|
|
|
|
}
|
|
|
|
$template = setup_style($user['template']);
|
2004-02-12 00:20:38 +01:00
|
|
|
?>
|