]> git.wh0rd.org - tt-rss.git/blob - backend.php
73898646766b236d619d77bdeb893995dfb752a6
[tt-rss.git] / backend.php
1 <?
2 session_start();
3
4 if ($_GET["debug"]) {
5 define('DEFAULT_ERROR_LEVEL', E_ALL);
6 } else {
7 define('DEFAULT_ERROR_LEVEL', E_ERROR | E_WARNING | E_PARSE);
8 }
9
10 error_reporting(DEFAULT_ERROR_LEVEL);
11
12 $op = $_REQUEST["op"];
13
14 if ((!$op || $op == "rpc" || $op == "globalUpdateFeeds") && !$_REQUEST["noxml"]) {
15 header("Content-Type: application/xml");
16 }
17
18 if (!$_SESSION["uid"] && $op != "globalUpdateFeeds") {
19
20 if ($op == "rpc") {
21 print "<error error-code=\"6\"/>";
22 }
23 exit;
24 }
25
26 if (!$op) {
27 print "<error error-code=\"7\"/>";
28 exit;
29 }
30
31 define('SCHEMA_VERSION', 2);
32
33 require_once "sanity_check.php";
34 require_once "config.php";
35 require_once "db.php";
36 require_once "db-prefs.php";
37 require_once "functions.php";
38 require_once "magpierss/rss_fetch.inc";
39
40 $script_started = getmicrotime();
41
42 $link = db_connect(DB_HOST, DB_USER, DB_PASS, DB_NAME);
43
44 if (!$link) {
45 if (DB_TYPE == "mysql") {
46 print mysql_error();
47 }
48 // PG seems to display its own errors just fine by default.
49 return;
50 }
51
52 if (DB_TYPE == "pgsql") {
53 pg_query("set client_encoding = 'utf-8'");
54 }
55
56 $fetch = $_GET["fetch"];
57
58 function getAllCounters($link) {
59 getLabelCounters($link);
60 getFeedCounters($link);
61 getTagCounters($link);
62 getGlobalCounters($link);
63 }
64
65 /* FIXME this needs reworking */
66
67 function getGlobalCounters($link) {
68 $result = db_query($link, "SELECT count(id) as c_id FROM ttrss_entries,ttrss_user_entries
69 WHERE unread = true AND
70 ttrss_user_entries.ref_id = ttrss_entries.id AND
71 owner_uid = " . $_SESSION["uid"]);
72 $c_id = db_fetch_result($result, 0, "c_id");
73 print "<counter id='global-unread' counter='$c_id'/>";
74 }
75
76 function getTagCounters($link, $smart_mode = SMART_RPC_COUNTERS) {
77
78 if ($smart_mode) {
79 if (!$_SESSION["tctr_last_value"]) {
80 $_SESSION["tctr_last_value"] = array();
81 }
82 }
83
84 $old_counters = $_SESSION["tctr_last_value"];
85
86 $tctrs_modified = false;
87
88 $result = db_query($link, "SELECT tag_name,count(ttrss_entries.id) AS count
89 FROM ttrss_tags,ttrss_entries,ttrss_user_entries WHERE
90 ttrss_user_entries.ref_id = ttrss_entries.id AND
91 ttrss_tags.owner_uid = ".$_SESSION["uid"]." AND
92 post_int_id = ttrss_user_entries.int_id AND unread = true GROUP BY tag_name
93 UNION
94 select tag_name,0 as count FROM ttrss_tags
95 WHERE ttrss_tags.owner_uid = ".$_SESSION["uid"]);
96
97 $tags = array();
98
99 while ($line = db_fetch_assoc($result)) {
100 $tags[$line["tag_name"]] += $line["count"];
101 }
102
103 foreach (array_keys($tags) as $tag) {
104 $unread = $tags[$tag];
105
106 $tag = htmlspecialchars($tag);
107
108 if (!$smart_mode || $old_counters[$tag] != $unread) {
109 $old_counters[$tag] = $unread;
110 $tctrs_modified = true;
111 print "<tag id=\"$tag\" counter=\"$unread\"/>";
112 }
113
114 }
115
116 if ($smart_mode && $tctrs_modified) {
117 $_SESSION["tctr_last_value"] = $old_counters;
118 }
119
120 }
121
122 function getLabelCounters($link, $smart_mode = SMART_RPC_COUNTERS) {
123
124 if ($smart_mode) {
125 if (!$_SESSION["lctr_last_value"]) {
126 $_SESSION["lctr_last_value"] = array();
127 }
128 }
129
130 $old_counters = $_SESSION["lctr_last_value"];
131 $lctrs_modified = false;
132
133 $result = db_query($link, "SELECT count(id) as count FROM ttrss_entries,ttrss_user_entries
134 WHERE marked = true AND ttrss_user_entries.ref_id = ttrss_entries.id AND
135 unread = true AND owner_uid = ".$_SESSION["uid"]);
136
137 $count = db_fetch_result($result, 0, "count");
138
139 print "<label id=\"-1\" counter=\"$count\"/>";
140
141 $result = db_query($link, "SELECT owner_uid,id,sql_exp,description FROM
142 ttrss_labels WHERE owner_uid = ".$_SESSION["uid"]." ORDER by description");
143
144 while ($line = db_fetch_assoc($result)) {
145
146 $id = -$line["id"] - 11;
147
148 error_reporting (0);
149
150 $tmp_result = db_query($link, "SELECT count(id) as count FROM ttrss_user_entries,ttrss_entries
151 WHERE (" . $line["sql_exp"] . ") AND unread = true AND
152 ttrss_user_entries.ref_id = ttrss_entries.id AND
153 owner_uid = ".$_SESSION["uid"]);
154
155 $count = db_fetch_result($tmp_result, 0, "count");
156
157 if (!$smart_mode || $old_counters[$id] != $count) {
158 $old_counters[$id] = $count;
159 $lctrs_modified = true;
160 print "<label id=\"$id\" counter=\"$count\"/>";
161 }
162
163 error_reporting (DEFAULT_ERROR_LEVEL);
164 }
165
166 if ($smart_mode && $lctrs_modified) {
167 $_SESSION["lctr_last_value"] = $old_counters;
168 }
169 }
170
171 function getFeedCounter($link, $id) {
172
173 $result = db_query($link, "SELECT
174 count(id) as count FROM ttrss_entries,ttrss_user_entries
175 WHERE feed_id = '$id' AND unread = true
176 AND ttrss_user_entries.ref_id = ttrss_entries.id");
177
178 $count = db_fetch_result($result, 0, "count");
179
180 print "<feed id=\"$id\" counter=\"$count\"/>";
181 }
182
183 function getFeedCounters($link, $smart_mode = SMART_RPC_COUNTERS) {
184
185 if ($smart_mode) {
186 if (!$_SESSION["fctr_last_value"]) {
187 $_SESSION["fctr_last_value"] = array();
188 }
189 }
190
191 $old_counters = $_SESSION["fctr_last_value"];
192
193 $result = db_query($link, "SELECT id,
194 (SELECT count(id)
195 FROM ttrss_entries,ttrss_user_entries
196 WHERE feed_id = ttrss_feeds.id AND ttrss_user_entries.ref_id = ttrss_entries.id
197 AND unread = true AND owner_uid = ".$_SESSION["uid"].") as count
198 FROM ttrss_feeds WHERE owner_uid = ".$_SESSION["uid"]);
199
200 $fctrs_modified = false;
201
202 while ($line = db_fetch_assoc($result)) {
203
204 $id = $line["id"];
205 $count = $line["count"];
206
207 if (!$smart_mode || $old_counters[$id] != $count) {
208 $old_counters[$id] = $count;
209 $fctrs_modified = true;
210 print "<feed id=\"$id\" counter=\"$count\"/>";
211 }
212 }
213
214 if ($smart_mode && $fctrs_modified) {
215 $_SESSION["fctr_last_value"] = $old_counters;
216 }
217 }
218
219 function outputFeedList($link, $tags = false) {
220
221 print "<html><head>
222 <title>Tiny Tiny RSS : Feedlist</title>
223 <link rel=\"stylesheet\" href=\"tt-rss.css\" type=\"text/css\">";
224
225 $user_theme = $_SESSION["theme"];
226 if ($user_theme) {
227 print "<link rel=\"stylesheet\" type=\"text/css\"
228 href=\"themes/$user_theme/theme.css\">";
229 }
230
231 if (get_pref($link, 'USE_COMPACT_STYLESHEET')) {
232 print "<link rel=\"stylesheet\" type=\"text/css\"
233 href=\"tt-rss_compact.css\"/>";
234 } else {
235 print "<link title=\"Compact Stylesheet\" rel=\"alternate stylesheet\"
236 type=\"text/css\" href=\"tt-rss_compact.css\"/>";
237 }
238
239 print "<script type=\"text/javascript\" src=\"functions.js\"></script>
240 <script type=\"text/javascript\" src=\"feedlist.js\"></script>
241 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\">
242 </head><body onload=\"init()\">";
243
244 print "<ul class=\"feedList\" id=\"feedList\">";
245
246 $owner_uid = $_SESSION["uid"];
247
248 if (!$tags) {
249
250 /* virtual feeds */
251
252 if (get_pref($link, 'ENABLE_FEED_CATS')) {
253 print "<li class=\"feedCat\">Special</li>";
254 print "<li id=\"feedCatHolder\"><ul class=\"feedCatList\">";
255 }
256
257 $result = db_query($link, "SELECT count(id) as num_starred
258 FROM ttrss_entries,ttrss_user_entries
259 WHERE marked = true AND
260 ttrss_user_entries.ref_id = ttrss_entries.id AND
261 unread = true AND owner_uid = '$owner_uid'");
262 $num_starred = db_fetch_result($result, 0, "num_starred");
263
264 $class = "virt";
265
266 if ($num_starred > 0) $class .= "Unread";
267
268 printFeedEntry(-1, $class, "Starred articles", $num_starred,
269 "images/mark_set.png", $link);
270
271 if (get_pref($link, 'ENABLE_FEED_CATS')) {
272 print "</li></ul>";
273 }
274
275 if (GLOBAL_ENABLE_LABELS && get_pref($link, 'ENABLE_LABELS')) {
276
277 $result = db_query($link, "SELECT id,sql_exp,description FROM
278 ttrss_labels WHERE owner_uid = '$owner_uid' ORDER by description");
279
280 if (db_num_rows($result) > 0) {
281 if (get_pref($link, 'ENABLE_FEED_CATS')) {
282 print "<li class=\"feedCat\">Labels</li>";
283 print "<li id=\"feedCatHolder\"><ul class=\"feedCatList\">";
284 } else {
285 print "<li><hr></li>";
286 }
287 }
288
289 while ($line = db_fetch_assoc($result)) {
290
291 error_reporting (0);
292
293 $tmp_result = db_query($link, "SELECT count(id) as count FROM ttrss_entries,ttrss_user_entries
294 WHERE (" . $line["sql_exp"] . ") AND unread = true AND
295 ttrss_user_entries.ref_id = ttrss_entries.id
296 AND owner_uid = '$owner_uid'");
297
298 $count = db_fetch_result($tmp_result, 0, "count");
299
300 $class = "label";
301
302 if ($count > 0) {
303 $class .= "Unread";
304 }
305
306 error_reporting (DEFAULT_ERROR_LEVEL);
307
308 printFeedEntry(-$line["id"]-11,
309 $class, $line["description"], $count, "images/label.png", $link);
310
311 }
312
313 if (db_num_rows($result) > 0) {
314 if (get_pref($link, 'ENABLE_FEED_CATS')) {
315 print "</li></ul>";
316 }
317 }
318
319 }
320
321 // if (!get_pref($link, 'ENABLE_FEED_CATS')) {
322 print "<li><hr></li>";
323 // }
324
325 if (get_pref($link, 'ENABLE_FEED_CATS')) {
326 $order_by_qpart = "category,title";
327 } else {
328 $order_by_qpart = "title";
329 }
330
331 $result = db_query($link, "SELECT *,
332 (SELECT count(id) FROM ttrss_entries,ttrss_user_entries
333 WHERE feed_id = ttrss_feeds.id AND
334 ttrss_user_entries.ref_id = ttrss_entries.id AND
335 owner_uid = '$owner_uid') AS total,
336 (SELECT count(id) FROM ttrss_entries,ttrss_user_entries
337 WHERE feed_id = ttrss_feeds.id AND unread = true
338 AND ttrss_user_entries.ref_id = ttrss_entries.id
339 AND owner_uid = '$owner_uid') as unread,
340 (SELECT title FROM ttrss_feed_categories
341 WHERE id = cat_id) AS category
342 FROM ttrss_feeds WHERE owner_uid = '$owner_uid' ORDER BY $order_by_qpart");
343
344 $actid = $_GET["actid"];
345
346 /* real feeds */
347
348 $lnum = 0;
349
350 $total_unread = 0;
351
352 $category = "";
353
354 while ($line = db_fetch_assoc($result)) {
355
356 $feed = $line["title"];
357 $feed_id = $line["id"];
358
359 $subop = $_GET["subop"];
360
361 $total = $line["total"];
362 $unread = $line["unread"];
363
364 $tmp_category = $line["category"];
365
366 if (!$tmp_category) {
367 $tmp_category = "Uncategorized";
368 }
369
370 // $class = ($lnum % 2) ? "even" : "odd";
371
372 $class = "feed";
373
374 if ($unread > 0) $class .= "Unread";
375
376 if ($actid == $feed_id) {
377 $class .= "Selected";
378 }
379
380 $total_unread += $unread;
381
382 if ($category != $tmp_category && get_pref($link, 'ENABLE_FEED_CATS')) {
383
384 if ($category) {
385 print "</li></ul></li>";
386 }
387
388 $category = $tmp_category;
389
390 print "<li class=\"feedCat\">$category</li>";
391 print "<li id=\"feedCatHolder\"><ul class=\"feedCatList\">";
392 }
393
394 printFeedEntry($feed_id, $class, $feed, $unread,
395 "icons/$feed_id.ico", $link);
396
397 ++$lnum;
398 }
399
400 } else {
401
402 // tags
403
404 $result = db_query($link, "SELECT tag_name,count(ttrss_entries.id) AS count
405 FROM ttrss_tags,ttrss_entries,ttrss_user_entries WHERE
406 post_int_id = ttrss_user_entries.int_id AND
407 unread = true AND ref_id = ttrss_entries.id
408 AND ttrss_tags.owner_uid = '$owner_uid' GROUP BY tag_name
409 UNION
410 select tag_name,0 as count FROM ttrss_tags WHERE owner_uid = '$owner_uid'
411 ORDER BY tag_name");
412
413 $tags = array();
414
415 while ($line = db_fetch_assoc($result)) {
416 $tags[$line["tag_name"]] += $line["count"];
417 }
418
419 foreach (array_keys($tags) as $tag) {
420
421 $unread = $tags[$tag];
422
423 $class = "tag";
424
425 if ($unread > 0) {
426 $class .= "Unread";
427 }
428
429 printFeedEntry($tag, $class, $tag, $unread, "images/tag.png", $link);
430
431 }
432
433 }
434
435 if (db_num_rows($result) == 0) {
436 if ($tags) {
437 $what = "tags";
438 } else {
439 $what = "feeds";
440 }
441 print "<li>No $what to display.</li>";
442 }
443
444 print "</ul>";
445
446 }
447
448
449 if ($op == "rpc") {
450
451 $subop = $_GET["subop"];
452
453 if ($subop == "getLabelCounters") {
454 $aid = $_GET["aid"];
455 print "<rpc-reply>";
456 getLabelCounters($link);
457 if ($aid) {
458 getFeedCounter($link, $aid);
459 }
460 print "</rpc-reply>";
461 }
462
463 if ($subop == "getFeedCounters") {
464 print "<rpc-reply>";
465 getFeedCounters($link);
466 print "</rpc-reply>";
467 }
468
469 if ($subop == "getAllCounters") {
470 print "<rpc-reply>";
471 getAllCounters($link);
472 print "</rpc-reply>";
473 }
474
475 if ($subop == "mark") {
476 $mark = $_GET["mark"];
477 $id = db_escape_string($_GET["id"]);
478
479 if ($mark == "1") {
480 $mark = "true";
481 } else {
482 $mark = "false";
483 }
484
485 // FIXME this needs collision testing
486
487 $result = db_query($link, "UPDATE ttrss_user_entries SET marked = $mark
488 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
489 }
490
491 if ($subop == "updateFeed") {
492 $feed_id = db_escape_string($_GET["feed"]);
493
494 $result = db_query($link,
495 "SELECT feed_url FROM ttrss_feeds WHERE id = '$feed_id'
496 AND owner_uid = " . $_SESSION["uid"]);
497
498 if (db_num_rows($result) > 0) {
499 $feed_url = db_fetch_result($result, 0, "feed_url");
500 update_rss_feed($link, $feed_url, $feed_id);
501 }
502
503 print "<rpc-reply>";
504 getFeedCounter($link, $feed_id);
505 print "</rpc-reply>";
506
507 return;
508 }
509
510 if ($subop == "forceUpdateAllFeeds" || $subop == "updateAllFeeds") {
511
512 update_all_feeds($link, $subop == "forceUpdateAllFeeds");
513
514 $omode = $_GET["omode"];
515
516 if (!$omode) $omode = "tfl";
517
518 print "<rpc-reply>";
519 if (strchr($omode, "l")) getLabelCounters($link);
520 if (strchr($omode, "f")) getFeedCounters($link);
521 if (strchr($omode, "t")) getTagCounters($link);
522 getGlobalCounters($link);
523 print "</rpc-reply>";
524 }
525
526 /* GET["cmode"] = 0 - mark as read, 1 - as unread, 2 - toggle */
527 if ($subop == "catchupSelected") {
528
529 $ids = split(",", db_escape_string($_GET["ids"]));
530
531 $cmode = sprintf("%d", $_GET["cmode"]);
532
533 foreach ($ids as $id) {
534
535 if ($cmode == 0) {
536 db_query($link, "UPDATE ttrss_user_entries SET
537 unread = false,last_read = NOW()
538 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
539 } else if ($cmode == 1) {
540 db_query($link, "UPDATE ttrss_user_entries SET
541 unread = true
542 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
543 } else {
544 db_query($link, "UPDATE ttrss_user_entries SET
545 unread = NOT unread,last_read = NOW()
546 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
547 }
548 }
549 print "<rpc-reply>";
550 getAllCounters($link);
551 print "</rpc-reply>";
552 }
553
554 if ($subop == "markSelected") {
555
556 $ids = split(",", db_escape_string($_GET["ids"]));
557
558 $cmode = sprintf("%d", $_GET["cmode"]);
559
560 foreach ($ids as $id) {
561
562 if ($cmode == 0) {
563 db_query($link, "UPDATE ttrss_user_entries SET
564 marked = false
565 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
566 } else if ($cmode == 1) {
567 db_query($link, "UPDATE ttrss_user_entries SET
568 marked = true
569 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
570 } else {
571 db_query($link, "UPDATE ttrss_user_entries SET
572 marked = NOT marked
573 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
574 }
575 }
576 print "<rpc-reply>";
577 getAllCounters($link);
578 print "</rpc-reply>";
579 }
580
581 if ($subop == "sanityCheck") {
582
583 $error_code = 0;
584
585 $result = db_query($link, "SELECT schema_version FROM ttrss_version");
586
587 $schema_version = db_fetch_result($result, 0, "schema_version");
588
589 if ($schema_version != SCHEMA_VERSION) {
590 $error_code = 5;
591 }
592
593 print "<error error-code='$error_code'/>";
594 }
595
596 if ($subop == "globalPurge") {
597
598 print "<rpc-reply>";
599 global_purge_old_posts($link, true);
600 print "</rpc-reply>";
601
602 }
603
604 }
605
606 if ($op == "feeds") {
607
608 $tags = $_GET["tags"];
609
610 $subop = $_GET["subop"];
611
612 if ($subop == "catchupAll") {
613 db_query($link, "UPDATE ttrss_user_entries SET
614 last_read = NOW(),unread = false WHERE owner_uid = " . $_SESSION["uid"]);
615 }
616
617 outputFeedList($link, $tags);
618
619 }
620
621 if ($op == "view") {
622
623 $id = $_GET["id"];
624 $feed_id = $_GET["feed"];
625
626 $result = db_query($link, "UPDATE ttrss_user_entries
627 SET unread = false,last_read = NOW()
628 WHERE ref_id = '$id' AND feed_id = '$feed_id' AND owner_uid = " . $_SESSION["uid"]);
629
630 $addheader = $_GET["addheader"];
631
632 $result = db_query($link, "SELECT title,link,content,feed_id,comments,int_id,
633 SUBSTRING(updated,1,16) as updated,
634 (SELECT icon_url FROM ttrss_feeds WHERE id = feed_id) as icon_url,
635 num_comments
636 FROM ttrss_entries,ttrss_user_entries
637 WHERE id = '$id' AND ref_id = id");
638
639 if ($addheader) {
640 print "<html><head>
641 <title>Tiny Tiny RSS : Article $id</title>
642 <link rel=\"stylesheet\" href=\"tt-rss.css\" type=\"text/css\">";
643
644 $user_theme = $_SESSION["theme"];
645 if ($user_theme) {
646 print "<link rel=\"stylesheet\" type=\"text/css\"
647 href=\"themes/$user_theme/theme.css\">";
648 }
649
650 if (get_pref($link, 'USE_COMPACT_STYLESHEET')) {
651 print "<link rel=\"stylesheet\" type=\"text/css\"
652 href=\"tt-rss_compact.css\"/>";
653 } else {
654 print "<link title=\"Compact Stylesheet\" rel=\"alternate stylesheet\"
655 type=\"text/css\" href=\"tt-rss_compact.css\"/>";
656 }
657
658 print "<script type=\"text/javascript\" src=\"functions.js\"></script>
659 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\">
660 </head><body>";
661 }
662
663 if ($result) {
664
665 $line = db_fetch_assoc($result);
666
667 if ($line["icon_url"]) {
668 $feed_icon = "<img class=\"feedIcon\" src=\"" . $line["icon_url"] . "\">";
669 } else {
670 $feed_icon = "&nbsp;";
671 }
672
673 /* if ($line["comments"] && $line["link"] != $line["comments"]) {
674 $entry_comments = "(<a href=\"".$line["comments"]."\">Comments</a>)";
675 } else {
676 $entry_comments = "";
677 } */
678
679 $num_comments = $line["num_comments"];
680 $entry_comments = "";
681
682 if ($num_comments > 0) {
683 if ($line["comments"]) {
684 $comments_url = $line["comments"];
685 } else {
686 $comments_url = $line["link"];
687 }
688 $entry_comments = "(<a href=\"$comments_url\">$num_comments comments</a>)";
689 } else {
690 if ($line["comments"] && $line["link"] != $line["comments"]) {
691 $entry_comments = "(<a href=\"".$line["comments"]."\">Comments</a>)";
692 }
693 }
694
695 print "<div class=\"postReply\">";
696
697 print "<div class=\"postHeader\"><table width=\"100%\">";
698
699 print "<tr><td>" . $line["title"] . "</td>";
700
701 $parsed_updated = date(get_pref($link, 'LONG_DATE_FORMAT'),
702 strtotime($line["updated"]));
703
704 print "<td class=\"postDate\">$parsed_updated</td>";
705
706 print "</tr>";
707
708 $tmp_result = db_query($link, "SELECT DISTINCT tag_name FROM
709 ttrss_tags WHERE post_int_id = " . $line["int_id"] . "
710 ORDER BY tag_name");
711
712 $tags_str = "";
713 $f_tags_str = "";
714
715 $num_tags = 0;
716
717 while ($tmp_line = db_fetch_assoc($tmp_result)) {
718 $num_tags++;
719 $tag = $tmp_line["tag_name"];
720 $tag_str = "<a href=\"javascript:parent.viewfeed('$tag')\">$tag</a>, ";
721
722 if ($num_tags == 5) {
723 $tags_str .= "<a href=\"javascript:showBlockElement('allEntryTags')\">...</a>";
724 } else if ($num_tags < 5) {
725 $tags_str .= $tag_str;
726 }
727 $f_tags_str .= $tag_str;
728 }
729
730 $tags_str = preg_replace("/, $/", "", $tags_str);
731 $f_tags_str = preg_replace("/, $/", "", $f_tags_str);
732
733 print "<tr><td width='50%'>
734 <a href=\"" . $line["link"] . "\">".$line["link"]."</a>
735 $entry_comments</td>
736 <td align=\"right\">$tags_str</td></tr>";
737
738 /* if ($tags_str) {
739 print "<tr><td><b>Tags:</b></td>
740 <td width='100%'>$tags_str</td></tr>";
741 } */
742
743 print "</table></div>";
744
745 print "<div class=\"postIcon\">" . $feed_icon . "</div>";
746 print "<div class=\"postContent\">";
747
748 if (db_num_rows($tmp_result) > 5) {
749 print "<div id=\"allEntryTags\">Tags: $f_tags_str</div>";
750 }
751
752 print $line["content"] . "</div>";
753
754 print "</div>";
755
756 print "<script type=\"text/javascript\">
757 update_all_counters('$feed_id');
758 </script>";
759 }
760
761 if ($addheader) {
762 print "</body></html>";
763 }
764 }
765
766 if ($op == "viewfeed") {
767
768 $feed = $_GET["feed"];
769 $skip = $_GET["skip"];
770 $subop = $_GET["subop"];
771 $view_mode = $_GET["view"];
772 $addheader = $_GET["addheader"];
773 $limit = $_GET["limit"];
774 $omode = $_GET["omode"];
775
776 if ($omode == "xml") {
777 header("Content-Type: application/xml");
778 }
779
780 if (!$feed) {
781 return;
782 }
783
784 if (!$skip) $skip = 0;
785
786 if ($subop == "undefined") $subop = "";
787
788 if ($addheader) {
789 print "<html><head>
790 <title>Tiny Tiny RSS : Feed $feed</title>
791 <link rel=\"stylesheet\" href=\"tt-rss.css\" type=\"text/css\">";
792
793 $user_theme = $_SESSION["theme"];
794 if ($user_theme) {
795 print "<link rel=\"stylesheet\" type=\"text/css\"
796 href=\"themes/$user_theme/theme.css\">";
797 }
798
799 if (get_pref($link, 'USE_COMPACT_STYLESHEET')) {
800 print "<link rel=\"stylesheet\"
801 type=\"text/css\" href=\"tt-rss_compact.css\"/>";
802
803 } else {
804 print "<link title=\"Compact Stylesheet\" rel=\"alternate stylesheet\"
805 type=\"text/css\" href=\"tt-rss_compact.css\"/>";
806 }
807
808 print "<meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\">
809 <script type=\"text/javascript\" src=\"functions.js\"></script>
810 <script type=\"text/javascript\" src=\"viewfeed.js\"></script>
811 </head><body onload='init()'>";
812 }
813
814 if ($subop == "ForceUpdate" && sprintf("%d", $feed) > 0) {
815
816 $tmp_result = db_query($link, "SELECT feed_url FROM ttrss_feeds
817 WHERE id = '$feed'");
818
819 $feed_url = db_fetch_result($tmp_result, 0, "feed_url");
820
821 update_rss_feed($link, $feed_url, $feed);
822
823 }
824
825 if ($subop == "MarkAllRead") {
826
827 if (sprintf("%d", $feed) != 0) {
828
829 if ($feed > 0) {
830 db_query($link, "UPDATE ttrss_user_entries
831 SET unread = false,last_read = NOW()
832 WHERE feed_id = '$feed' AND owner_uid = " . $_SESSION["uid"]);
833
834 } else if ($feed < 0 && $feed > -10) { // special, like starred
835
836 if ($feed == -1) {
837 db_query($link, "UPDATE ttrss_user_entries
838 SET unread = false,last_read = NOW()
839 WHERE marked = true AND owner_uid = ".$_SESSION["uid"]);
840 }
841
842 } else if ($feed < -10) { // label
843
844 // TODO make this more efficient
845
846 $label_id = -$feed - 11;
847
848 $tmp_result = db_query($link, "SELECT sql_exp FROM ttrss_labels
849 WHERE id = '$label_id'");
850
851 if ($tmp_result) {
852 $sql_exp = db_fetch_result($tmp_result, 0, "sql_exp");
853
854 db_query($link, "BEGIN");
855
856 $tmp2_result = db_query($link,
857 "SELECT
858 int_id
859 FROM
860 ttrss_user_entries,ttrss_entries
861 WHERE
862 ref_id = id AND
863 $sql_exp AND
864 owner_uid = " . $_SESSION["uid"]);
865
866 while ($tmp_line = db_fetch_assoc($tmp2_result)) {
867 db_query($link, "UPDATE
868 ttrss_user_entries
869 SET
870 unread = false, last_read = NOW()
871 WHERE
872 int_id = " . $tmp_line["int_id"]);
873 }
874
875 db_query($link, "COMMIT");
876
877 /* db_query($link, "UPDATE ttrss_user_entries,ttrss_entries
878 SET unread = false,last_read = NOW()
879 WHERE $sql_exp
880 AND ref_id = id
881 AND owner_uid = ".$_SESSION["uid"]); */
882 }
883 }
884 } else { // tag
885 db_query($link, "BEGIN");
886
887 $tag_name = db_escape_string($feed);
888
889 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
890 WHERE tag_name = '$tag_name' AND owner_uid = " . $_SESSION["uid"]);
891
892 while ($line = db_fetch_assoc($result)) {
893 db_query($link, "UPDATE ttrss_user_entries SET
894 unread = false, last_read = NOW()
895 WHERE int_id = " . $line["post_int_id"]);
896 }
897 db_query($link, "COMMIT");
898 }
899
900 }
901
902 $search = db_escape_string($_GET["search"]);
903 $search_mode = db_escape_string($_GET["smode"]);
904
905 if ($search) {
906 $search_query_part = "(upper(title) LIKE upper('%$search%')
907 OR content LIKE '%$search%') AND";
908 } else {
909 $search_query_part = "";
910 }
911
912 $view_query_part = "";
913
914 if ($view_mode == "Starred") {
915 $view_query_part = " marked = true AND ";
916 }
917
918 if ($view_mode == "Unread") {
919 $view_query_part = " unread = true AND ";
920 }
921
922 if ($view_mode == "Unread or Starred") {
923 $view_query_part = " (unread = true OR marked = true) AND ";
924 }
925
926 if ($view_mode == "Unread or Updated") {
927 $view_query_part = " (unread = true OR last_read is NULL) AND ";
928 }
929
930 /* $result = db_query($link, "SELECT count(id) AS total_entries
931 FROM ttrss_entries WHERE
932 $search_query_part
933 feed_id = '$feed'");
934
935 $total_entries = db_fetch_result($result, 0, "total_entries"); */
936
937 /* $result = db_query("SELECT count(id) AS unread_entries
938 FROM ttrss_entries WHERE
939 $search_query_part
940 unread = true AND
941 feed_id = '$feed'");
942
943 $unread_entries = db_fetch_result($result, 0, "unread_entries"); */
944
945 if ($limit && $limit != "All") {
946 $limit_query_part = "LIMIT " . $limit;
947 }
948
949 $vfeed_query_part = "";
950
951 // override query strategy and enable feed display when searching globally
952 if ($search && $search_mode == "All feeds") {
953 $query_strategy_part = "id > 0";
954 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
955 id = feed_id) as feed_title,";
956 } else if (sprintf("%d", $feed) == 0) {
957 $query_strategy_part = "ttrss_entries.id > 0";
958 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
959 id = feed_id) as feed_title,";
960 } else if ($feed >= 0) {
961 $query_strategy_part = "feed_id = '$feed'";
962 } else if ($feed == -1) { // starred virtual feed
963 $query_strategy_part = "marked = true";
964 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
965 id = feed_id) as feed_title,";
966 } else if ($feed <= -10) { // labels
967 $label_id = -$feed - 11;
968
969 $tmp_result = db_query($link, "SELECT sql_exp FROM ttrss_labels
970 WHERE id = '$label_id'");
971
972 $query_strategy_part = db_fetch_result($tmp_result, 0, "sql_exp");
973
974 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
975 id = feed_id) as feed_title,";
976 } else {
977 $query_strategy_part = "id > 0"; // dumb
978 }
979
980 $order_by = "updated DESC";
981
982 // if ($feed < -10) {
983 // $order_by = "feed_id,updated DESC";
984 // }
985
986 $feed_title = "";
987
988 if ($search && $search_mode == "All feeds") {
989 $feed_title = "Search results";
990 } else if (sprintf("%d", $feed) == 0) {
991 $feed_title = $feed;
992 } else if ($feed > 0) {
993 $result = db_query($link, "SELECT title,site_url FROM ttrss_feeds
994 WHERE id = '$feed'");
995
996 $feed_title = db_fetch_result($result, 0, "title");
997 $feed_site_url = db_fetch_result($result, 0, "site_url");
998
999 } else if ($feed == -1) {
1000 $feed_title = "Starred articles";
1001 } else if ($feed < -10) {
1002 $label_id = -$feed - 11;
1003 $result = db_query($link, "SELECT description FROM ttrss_labels
1004 WHERE id = '$label_id'");
1005 $feed_title = db_fetch_result($result, 0, "description");
1006 } else {
1007 $feed_title = "?";
1008 }
1009
1010 if ($feed < -10) error_reporting (0);
1011
1012 if (sprintf("%d", $feed) != 0) {
1013
1014 if ($feed > 0) {
1015 $feed_kind = "Feeds";
1016 } else {
1017 $feed_kind = "Labels";
1018 }
1019
1020 if (!$vfeed_query_part) {
1021 $content_query_part = "SUBSTRING(content,1,300) as content_preview,";
1022 } else {
1023 $content_query_part = "";
1024 }
1025
1026 $result = db_query($link, "SELECT
1027 id,title,
1028 SUBSTRING(updated,1,16) as updated,
1029 unread,feed_id,marked,link,last_read,
1030 SUBSTRING(last_read,1,19) as last_read_noms,
1031 $vfeed_query_part
1032 $content_query_part
1033 SUBSTRING(updated,1,19) as updated_noms
1034 FROM
1035 ttrss_entries,ttrss_user_entries
1036 WHERE
1037 ttrss_user_entries.ref_id = ttrss_entries.id AND
1038 owner_uid = '".$_SESSION["uid"]."' AND
1039 $search_query_part
1040 $view_query_part
1041 $query_strategy_part ORDER BY $order_by
1042 $limit_query_part");
1043
1044 } else {
1045 // browsing by tag
1046
1047 $feed_kind = "Tags";
1048
1049 $result = db_query($link, "SELECT
1050 ttrss_entries.id as id,title,
1051 SUBSTRING(updated,1,16) as updated,
1052 unread,feed_id,
1053 marked,link,last_read,
1054 SUBSTRING(last_read,1,19) as last_read_noms,
1055 $vfeed_query_part
1056 $content_query_part
1057 SUBSTRING(updated,1,19) as updated_noms
1058 FROM
1059 ttrss_entries,ttrss_user_entries,ttrss_tags
1060 WHERE
1061 ref_id = ttrss_entries.id AND
1062 ttrss_user_entries.owner_uid = '".$_SESSION["uid"]."' AND
1063 post_int_id = int_id AND tag_name = '$feed' AND
1064 $view_query_part
1065 $search_query_part
1066 $query_strategy_part ORDER BY $order_by
1067 $limit_query_part");
1068 }
1069
1070 if (!$result) {
1071 if ($omode != "xml") {
1072 print "<div align='center'>
1073 Could not display feed (query failed). Please check label match syntax or local configuration.</div>";
1074 return;
1075 } else {
1076 print "<error error-code=\"8\"/>";
1077
1078 }
1079 }
1080
1081 if (db_num_rows($result) > 0) {
1082
1083 if ($omode != "xml") {
1084
1085 print "<table class=\"headlinesSubToolbar\"
1086 width=\"100%\" cellspacing=\"0\" cellpadding=\"0\"><tr>";
1087
1088 print "<td class=\"headlineActions\">
1089 Select:
1090 <a href=\"javascript:selectTableRowsByIdPrefix('headlinesList',
1091 'RROW-', 'RCHK-', true)\">All</a>,
1092 <a href=\"javascript:selectTableRowsByIdPrefix('headlinesList',
1093 'RROW-', 'RCHK-', true, 'Unread')\">Unread</a>,
1094 <a href=\"javascript:selectTableRowsByIdPrefix('headlinesList',
1095 'RROW-', 'RCHK-', false)\">None</a>
1096 &nbsp;&nbsp;
1097 Toggle: <a href=\"javascript:selectionToggleUnread()\">Unread</a>,
1098 <a href=\"javascript:selectionToggleMarked()\">Starred</a>";
1099
1100 print "</td>";
1101
1102 print "<td class=\"headlineTitle\">";
1103
1104 if ($feed_site_url) {
1105 print "<a target=\"_blank\" href=\"$feed_site_url\">$feed_title</a>";
1106 } else {
1107 print $feed_title;
1108 }
1109
1110 print "</td>";
1111 print "</tr></table>";
1112
1113 print "<table class=\"headlinesList\" id=\"headlinesList\"
1114 cellspacing=\"0\" width=\"100%\">";
1115
1116 } else {
1117 print "<headlines feed=\"$feed\" title=\"$feed_title\" site_url=\"$feed_site_url\">";
1118 }
1119
1120 $lnum = 0;
1121
1122 error_reporting (DEFAULT_ERROR_LEVEL);
1123
1124 $num_unread = 0;
1125
1126 while ($line = db_fetch_assoc($result)) {
1127
1128 $class = ($lnum % 2) ? "even" : "odd";
1129
1130 $id = $line["id"];
1131 $feed_id = $line["feed_id"];
1132
1133 if ($line["last_read"] == "" &&
1134 ($line["unread"] != "t" && $line["unread"] != "1")) {
1135
1136 $update_pic = "<img id='FUPDPIC-$id' src=\"images/updated.png\"
1137 alt=\"Updated\">";
1138 } else {
1139 $update_pic = "<img id='FUPDPIC-$id' src=\"images/blank_icon.gif\"
1140 alt=\"Updated\">";
1141 }
1142
1143 if ($line["unread"] == "t" || $line["unread"] == "1") {
1144 $class .= "Unread";
1145 ++$num_unread;
1146 $is_unread = 'true';
1147 } else {
1148 $is_unread = 'false';
1149 }
1150
1151 if ($line["marked"] == "t" || $line["marked"] == "1") {
1152 $marked_pic = "<img id=\"FMARKPIC-$id\" src=\"images/mark_set.png\"
1153 alt=\"Reset mark\" onclick='javascript:toggleMark($id)'>";
1154 } else {
1155 $marked_pic = "<img id=\"FMARKPIC-$id\" src=\"images/mark_unset.png\"
1156 alt=\"Set mark\" onclick='javascript:toggleMark($id)'>";
1157 }
1158
1159 $content_link = "<a href=\"javascript:view($id,$feed_id);\">" .
1160 $line["title"] . "</a>";
1161
1162 if (get_pref($link, 'HEADLINES_SMART_DATE')) {
1163 $updated_fmt = smart_date_time(strtotime($line["updated"]));
1164 } else {
1165 $short_date = get_pref($link, 'SHORT_DATE_FORMAT');
1166 $updated_fmt = date($short_date, strtotime($line["updated"]));
1167 }
1168
1169 if (get_pref($link, 'SHOW_CONTENT_PREVIEW')) {
1170 $content_preview = truncate_string(strip_tags($line["content_preview"]),
1171 200);
1172 }
1173
1174 if ($omode != "xml") {
1175
1176 print "<tr class='$class' id='RROW-$id'>";
1177 // onclick=\"javascript:view($id,$feed_id)\">
1178
1179 print "<td class='hlUpdatePic'>$update_pic</td>";
1180
1181 print "<td class='hlSelectRow'>
1182 <input type=\"checkbox\" onclick=\"toggleSelectRow(this)\"
1183 class=\"feedCheckBox\" id=\"RCHK-$id\">
1184 </td>";
1185
1186 print "<td class='hlMarkedPic'>$marked_pic</td>";
1187
1188 if ($line["feed_title"]) {
1189 print "<td class='hlContent'>$content_link</td>";
1190 print "<td class='hlFeed'>
1191 <a href='javascript:viewfeed($feed_id)'>".$line["feed_title"]."</a>&nbsp;</td>";
1192 } else {
1193 print "<td class='hlContent' valign='middle'>";
1194
1195 print "<a href=\"javascript:view($id,$feed_id);\">" .
1196 $line["title"];
1197
1198 if (get_pref($link, 'SHOW_CONTENT_PREVIEW')) {
1199
1200 if ($content_preview) {
1201 print "<span class=\"contentPreview\"> - $content_preview</span>";
1202 }
1203 }
1204
1205 print "</a>";
1206 print "</td>";
1207 }
1208
1209 print "<td class=\"hlUpdated\"><nobr>$updated_fmt&nbsp;</nobr></td>";
1210
1211 print "</tr>";
1212
1213 } else {
1214
1215 print "<entry unread='$is_unread' id='$id'>";
1216 print "<title><![CDATA[" . $line["title"] . "]]></title>";
1217 print "<link>" . $line["link"] . "</link>";
1218 print "<updated>$updated_fmt</updated>";
1219 if ($content_preview) {
1220 print "<preview><![CDATA[ $content_preview ]]></preview>";
1221 }
1222
1223 if ($line["feed_title"]) {
1224 print "<feed id='$feed_id'><![CDATA[" . $line["feed_title"] . "]]></feed>";
1225 }
1226 print "</entry>";
1227
1228 }
1229
1230
1231 ++$lnum;
1232 }
1233
1234 if ($omode != "xml") {
1235 print "</table>";
1236 } else {
1237 print "</headlines>";
1238 }
1239
1240 } else {
1241 print "<div width='100%' align='center'>No articles found.</div>";
1242 }
1243
1244 if ($omode != "xml") {
1245
1246 print "<script type=\"text/javascript\">
1247 document.onkeydown = hotkey_handler;
1248 update_all_counters('$feed');
1249 </script>";
1250
1251 if ($addheader) {
1252 print "</body></html>";
1253 }
1254 }
1255 }
1256
1257 if ($op == "pref-rpc") {
1258
1259 $subop = $_GET["subop"];
1260
1261 if ($subop == "unread") {
1262 $ids = split(",", db_escape_string($_GET["ids"]));
1263 foreach ($ids as $id) {
1264 db_query($link, "UPDATE ttrss_user_entries SET unread = true
1265 WHERE feed_id = '$id' AND owner_uid = ".$_SESSION["uid"]);
1266 }
1267
1268 print "Marked selected feeds as unread.";
1269 }
1270
1271 if ($subop == "read") {
1272 $ids = split(",", db_escape_string($_GET["ids"]));
1273 foreach ($ids as $id) {
1274 db_query($link, "UPDATE ttrss_user_entries
1275 SET unread = false,last_read = NOW() WHERE
1276 feed_id = '$id' AND owner_uid = ".$_SESSION["uid"]);
1277 }
1278
1279 print "Marked selected feeds as read.";
1280
1281 }
1282
1283 }
1284
1285 if ($op == "pref-feeds") {
1286
1287 $subop = $_GET["subop"];
1288 $quiet = $_GET["quiet"];
1289
1290 if ($subop == "editSave") {
1291 $feed_title = db_escape_string($_GET["t"]);
1292 $feed_link = db_escape_string($_GET["l"]);
1293 $upd_intl = db_escape_string($_GET["ui"]);
1294 $purge_intl = db_escape_string($_GET["pi"]);
1295 $feed_id = db_escape_string($_GET["id"]);
1296 $cat_id = db_escape_string($_GET["catid"]);
1297
1298 if (strtoupper($upd_intl) == "DEFAULT")
1299 $upd_intl = 0;
1300
1301 if (strtoupper($upd_intl) == "DISABLED")
1302 $upd_intl = -1;
1303
1304 if (strtoupper($purge_intl) == "DEFAULT")
1305 $purge_intl = 0;
1306
1307 if (strtoupper($purge_intl) == "DISABLED")
1308 $purge_intl = -1;
1309
1310 if ($cat_id != 0) {
1311 $category_qpart = "cat_id = '$cat_id'";
1312 } else {
1313 $category_qpart = 'cat_id = NULL';
1314 }
1315
1316 $result = db_query($link, "UPDATE ttrss_feeds SET
1317 $category_qpart,
1318 title = '$feed_title', feed_url = '$feed_link',
1319 update_interval = '$upd_intl',
1320 purge_interval = '$purge_intl'
1321 WHERE id = '$feed_id' AND owner_uid = " . $_SESSION["uid"]);
1322
1323 }
1324
1325 if ($subop == "remove") {
1326
1327 if (!WEB_DEMO_MODE) {
1328
1329 $ids = split(",", db_escape_string($_GET["ids"]));
1330
1331 foreach ($ids as $id) {
1332 db_query($link, "DELETE FROM ttrss_feeds
1333 WHERE id = '$id' AND owner_uid = " . $_SESSION["uid"]);
1334
1335 $icons_dir = ICONS_DIR;
1336
1337 if (file_exists($icons_dir . "/$id.ico")) {
1338 unlink($icons_dir . "/$id.ico");
1339 }
1340 }
1341 }
1342 }
1343
1344 if ($subop == "add") {
1345
1346 if (!WEB_DEMO_MODE) {
1347
1348 $feed_link = db_escape_string(trim($_GET["link"]));
1349
1350 $result = db_query($link,
1351 "SELECT id FROM ttrss_feeds
1352 WHERE feed_url = '$feed_link' AND owner_uid = ".$_SESSION["uid"]);
1353
1354 if (db_num_rows($result) == 0) {
1355
1356 $result = db_query($link,
1357 "INSERT INTO ttrss_feeds (owner_uid,feed_url,title)
1358 VALUES ('".$_SESSION["uid"]."', '$feed_link', '')");
1359
1360 $result = db_query($link,
1361 "SELECT id FROM ttrss_feeds WHERE feed_url = '$feed_link'
1362 AND owner_uid = " . $_SESSION["uid"]);
1363
1364 $feed_id = db_fetch_result($result, 0, "id");
1365
1366 if ($feed_id) {
1367 update_rss_feed($link, $feed_link, $feed_id, true);
1368 }
1369 } else {
1370
1371 print "<div class=\"warning\">
1372 Feed <b>$feed_link</b> already exists in the database.
1373 </div>";
1374 }
1375 }
1376 }
1377
1378 if ($subop == "addCat") {
1379
1380 if (!WEB_DEMO_MODE) {
1381
1382 $feed_cat = db_escape_string(trim($_GET["cat"]));
1383
1384 $result = db_query($link,
1385 "SELECT id FROM ttrss_feed_categories
1386 WHERE title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
1387
1388 if (db_num_rows($result) == 0) {
1389
1390 $result = db_query($link,
1391 "INSERT INTO ttrss_feed_categories (owner_uid,title)
1392 VALUES ('".$_SESSION["uid"]."', '$feed_cat')");
1393
1394 } else {
1395
1396 print "<div class=\"warning\">
1397 Category <b>$feed_cat</b> already exists in the database.
1398 </div>";
1399 }
1400
1401
1402 }
1403 }
1404
1405 if ($subop == "removeCats") {
1406
1407 if (!WEB_DEMO_MODE) {
1408
1409 $ids = split(",", db_escape_string($_GET["ids"]));
1410
1411 foreach ($ids as $id) {
1412
1413 db_query($link, "BEGIN");
1414
1415 $result = db_query($link,
1416 "SELECT count(id) as num_feeds FROM ttrss_feeds
1417 WHERE cat_id = '$id'");
1418
1419 $num_feeds = db_fetch_result($result, 0, "num_feeds");
1420
1421 if ($num_feeds == 0) {
1422 db_query($link, "DELETE FROM ttrss_feed_categories
1423 WHERE id = '$id' AND owner_uid = " . $_SESSION["uid"]);
1424 } else {
1425
1426 print "<div class=\"warning\">
1427 Unable to delete non empty feed categories.</div>";
1428
1429 }
1430
1431 db_query($link, "COMMIT");
1432 }
1433 }
1434 }
1435
1436 if ($subop == "categorize") {
1437
1438 if (!WEB_DEMO_MODE) {
1439
1440 $ids = split(",", db_escape_string($_GET["ids"]));
1441
1442 $cat_id = db_escape_string($_GET["cat_id"]);
1443
1444 if ($cat_id == 0) {
1445 $cat_id_qpart = 'NULL';
1446 } else {
1447 $cat_id_qpart = "'$cat_id'";
1448 }
1449
1450 db_query($link, "BEGIN");
1451
1452 foreach ($ids as $id) {
1453
1454 db_query($link, "UPDATE ttrss_feeds SET cat_id = $cat_id_qpart
1455 WHERE id = '$id' AND owner_uid = " . $_SESSION["uid"]);
1456 }
1457
1458 db_query($link, "COMMIT");
1459 }
1460
1461 }
1462
1463 if ($quiet) return;
1464
1465 // print "<h3>Edit Feeds</h3>";
1466
1467 $result = db_query($link, "SELECT id,title,feed_url,last_error
1468 FROM ttrss_feeds WHERE last_error != '' AND owner_uid = ".$_SESSION["uid"]);
1469
1470 if (db_num_rows($result) > 0) {
1471
1472 print "<div class=\"warning\">";
1473
1474 print "<a href=\"javascript:showBlockElement('feedUpdateErrors')\">
1475 <b>Feeds with update errors</b> (click to expand)</a>";
1476
1477 print "<ul id=\"feedUpdateErrors\" class=\"nomarks\">";
1478
1479 while ($line = db_fetch_assoc($result)) {
1480 print "<li>" . $line["title"] . " (" . $line["feed_url"] . "): " .
1481 $line["last_error"];
1482 }
1483
1484 print "</ul>";
1485 print "</div>";
1486
1487 }
1488
1489 $feed_search = db_escape_string($_GET["search"]);
1490
1491 if (array_key_exists("search", $_GET)) {
1492 $_SESSION["prefs_feed_search"] = $feed_search;
1493 } else {
1494 $feed_search = $_SESSION["prefs_feed_search"];
1495 }
1496
1497 print "<table width='100%' class=\"prefGenericAddBox\"
1498 cellspacing='0' cellpadding='0'><tr>
1499 <td>
1500 <input id=\"fadd_link\"
1501 onchange=\"javascript:addFeed()\"
1502 size=\"40\">
1503 <input type=\"submit\" class=\"button\"
1504 onclick=\"javascript:addFeed()\" value=\"Add feed\">
1505 </td><td align='right'>
1506 <input id=\"feed_search\" size=\"20\"
1507 onchange=\"javascript:updateFeedList()\"
1508 value=\"$feed_search\">
1509 <input type=\"submit\" class=\"button\"
1510 onclick=\"javascript:updateFeedList()\" value=\"Search\">
1511 </td>
1512 </tr></table>";
1513
1514 $feeds_sort = db_escape_string($_GET["sort"]);
1515
1516 if (!$feeds_sort || $feeds_sort == "undefined") {
1517 $feeds_sort = $_SESSION["pref_sort_feeds"];
1518 if (!$feeds_sort) $feeds_sort = "title";
1519 }
1520
1521 $_SESSION["pref_sort_feeds"] = $feeds_sort;
1522
1523 if ($feed_search) {
1524 $search_qpart = "UPPER(title) LIKE UPPER('%$feed_search%') AND";
1525 } else {
1526 $search_qpart = "";
1527 }
1528
1529 $result = db_query($link, "SELECT
1530 id,title,feed_url,substring(last_updated,1,16) as last_updated,
1531 update_interval,purge_interval,cat_id,
1532 (SELECT title FROM ttrss_feed_categories
1533 WHERE id = cat_id) AS category
1534 FROM
1535 ttrss_feeds
1536 WHERE
1537 $search_qpart owner_uid = '".$_SESSION["uid"]."'
1538 ORDER by $feeds_sort,title");
1539
1540 if (db_num_rows($result) != 0) {
1541
1542 print "<div id=\"infoBoxShadow\"><div id=\"infoBox\">PLACEHOLDER</div></div>";
1543
1544 print "<p><table width=\"100%\" cellspacing=\"0\"
1545 class=\"prefFeedList\" id=\"prefFeedList\">";
1546 print "<tr><td class=\"selectPrompt\" colspan=\"8\">
1547 Select:
1548 <a href=\"javascript:selectTableRowsByIdPrefix('prefFeedList',
1549 'FEEDR-', 'FRCHK-', true)\">All</a>,
1550 <a href=\"javascript:selectTableRowsByIdPrefix('prefFeedList',
1551 'FEEDR-', 'FRCHK-', false)\">None</a>
1552 </td</tr>";
1553
1554 print "<tr class=\"title\">
1555 <td width=\"3%\">&nbsp;</td>
1556 <td width=\"3%\">Select</td>
1557 <td width=\"20%\">
1558 <a href=\"javascript:updateFeedList('title')\">Title</a></td>
1559 <td width=\"20%\">
1560 <a href=\"javascript:updateFeedList('feed_url')\">Link</a>
1561 </td>";
1562
1563 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1564 print "<td width=\"10%\">
1565 <a href=\"javascript:updateFeedList('category')\">Category</a></td>";
1566 }
1567
1568 print "
1569 <td width=\"10%\">
1570 <a href=\"javascript:updateFeedList('update_interval')\">Update Interval</a>
1571 </td>
1572 <td width=\"10%\">
1573 <a href=\"javascript:updateFeedList('purge_interval')\">Purge Days</a>
1574 </td>
1575 </tr>";
1576
1577 $lnum = 0;
1578
1579 while ($line = db_fetch_assoc($result)) {
1580
1581 $class = ($lnum % 2) ? "even" : "odd";
1582
1583 $feed_id = $line["id"];
1584
1585 $edit_feed_id = $_GET["id"];
1586
1587 if ($subop == "edit" && $feed_id != $edit_feed_id) {
1588 $class .= "Grayed";
1589 $this_row_id = "";
1590 } else {
1591 $this_row_id = "id=\"FEEDR-$feed_id\"";
1592 }
1593
1594 print "<tr class=\"$class\" $this_row_id>";
1595
1596 $icon_file = ICONS_DIR . "/$feed_id.ico";
1597
1598 if (file_exists($icon_file) && filesize($icon_file) > 0) {
1599 $feed_icon = "<img width=\"16\" height=\"16\"
1600 src=\"" . ICONS_URL . "/$feed_id.ico\">";
1601 } else {
1602 $feed_icon = "&nbsp;";
1603 }
1604 print "<td align='center'>$feed_icon</td>";
1605
1606 $edit_title = htmlspecialchars(db_unescape_string($line["title"]));
1607 $edit_link = htmlspecialchars(db_unescape_string($line["feed_url"]));
1608 $edit_cat = htmlspecialchars(db_unescape_string($line["category"]));
1609
1610 if (!$edit_cat) $edit_cat = "Uncategorized";
1611
1612 if (!$edit_feed_id || $subop != "edit") {
1613
1614 print "<td><input onclick='toggleSelectRow(this);'
1615 type=\"checkbox\" id=\"FRCHK-".$line["id"]."\"></td>";
1616
1617 $edit_title = truncate_string($edit_title, 40);
1618 $edit_link = truncate_string($edit_link, 60);
1619
1620 print "<td><a href=\"javascript:editFeed($feed_id);\">" .
1621 $edit_title . "</a></td>";
1622
1623 print "<td><a href=\"javascript:editFeed($feed_id);\">" .
1624 $edit_link . "</a></td>";
1625
1626 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1627 print "<td><a href=\"javascript:editFeed($feed_id);\">" .
1628 $edit_cat . "</a></td>";
1629 }
1630
1631 if ($line["update_interval"] == "0")
1632 $line["update_interval"] = "Default";
1633
1634 if ($line["update_interval"] == "-1")
1635 $line["update_interval"] = "Disabled";
1636
1637 print "<td><a href=\"javascript:editFeed($feed_id);\">" .
1638 $line["update_interval"] . "</a></td>";
1639
1640 if ($line["purge_interval"] == "0")
1641 $line["purge_interval"] = "Default";
1642
1643 if ($line["purge_interval"] < 0)
1644 $line["purge_interval"] = "Disabled";
1645
1646 print "<td><a href=\"javascript:editFeed($feed_id);\">" .
1647 $line["purge_interval"] . "</a></td>";
1648
1649 } else if ($feed_id != $edit_feed_id) {
1650
1651 print "<td><input disabled=\"true\" type=\"checkbox\"
1652 id=\"FRCHK-".$line["id"]."\"></td>";
1653
1654 $edit_title = truncate_string($edit_title, 40);
1655 $edit_link = truncate_string($edit_link, 60);
1656
1657 print "<td>$edit_title</td>";
1658 print "<td>$edit_link</td>";
1659
1660 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1661 print "<td>$edit_cat</td>";
1662 }
1663
1664 if ($line["update_interval"] == "0")
1665 $line["update_interval"] = "Default";
1666
1667 print "<td>" . $line["update_interval"] . "</td>";
1668
1669 if ($line["purge_interval"] == "0")
1670 $line["purge_interval"] = "Default";
1671
1672 if ($line["purge_interval"] < 0)
1673 $line["purge_interval"] = "Disabled";
1674
1675 print "<td>" . $line["purge_interval"] . "</td>";
1676
1677 } else {
1678
1679 print "<td><input disabled=\"true\" type=\"checkbox\" checked></td>";
1680
1681 print "<td><input id=\"iedit_title\" value=\"$edit_title\"></td>";
1682 print "<td><input id=\"iedit_link\" value=\"$edit_link\"></td>";
1683
1684 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1685
1686 print "<td>";
1687 print "<select id=\"iedit_fcat\">";
1688 print "<option id=\"0\">Uncategorized</option>";
1689
1690 $tmp_result = db_query($link, "SELECT id,title FROM ttrss_feed_categories
1691 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1692
1693 if (db_num_rows($tmp_result) > 0) {
1694 print "<option disabled>--------</option>";
1695 }
1696
1697 while ($tmp_line = db_fetch_assoc($tmp_result)) {
1698 if ($tmp_line["id"] == $line["cat_id"]) {
1699 $is_selected = "selected";
1700 } else {
1701 $is_selected = "";
1702 }
1703 printf("<option $is_selected id='%d'>%s</option>",
1704 $tmp_line["id"], $tmp_line["title"]);
1705 }
1706
1707 print "</select></td>";
1708 print "</td>";
1709
1710 }
1711
1712 print "<td><input id=\"iedit_updintl\"
1713 value=\"".$line["update_interval"]."\"></td>";
1714 print "<td><input id=\"iedit_purgintl\"
1715 value=\"".$line["purge_interval"]."\"></td>";
1716
1717 }
1718
1719 /* if (!$line["last_updated"]) $line["last_updated"] = "Never";
1720
1721 print "<td>" . $line["last_updated"] . "</td>"; */
1722
1723 print "</tr>";
1724
1725 ++$lnum;
1726 }
1727
1728 print "</table>";
1729
1730 print "<p>";
1731
1732 if ($subop == "edit") {
1733 print "Edit feed:&nbsp;
1734 <input type=\"submit\" class=\"button\"
1735 onclick=\"javascript:feedEditCancel()\" value=\"Cancel\">
1736 <input type=\"submit\" class=\"button\"
1737 onclick=\"javascript:feedEditSave()\" value=\"Save\">";
1738 } else {
1739
1740 print "
1741 Selection:&nbsp;
1742 <input type=\"submit\" class=\"button\"
1743 onclick=\"javascript:selectedFeedDetails()\" value=\"Details\">
1744 <input type=\"submit\" class=\"button\"
1745 onclick=\"javascript:editSelectedFeed()\" value=\"Edit\">
1746 <input type=\"submit\" class=\"button\"
1747 onclick=\"javascript:removeSelectedFeeds()\" value=\"Remove\">";
1748
1749 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1750
1751 print "&nbsp;&nbsp;";
1752
1753 $result = db_query($link, "SELECT title,id FROM ttrss_feed_categories
1754 WHERE owner_uid = ".$_SESSION["uid"]."
1755 ORDER BY title");
1756
1757 print "<select id=\"sfeed_set_fcat\">";
1758 print "<option id=\"0\">Uncategorized</option>";
1759
1760 if (db_num_rows($result) != 0) {
1761
1762 print "<option disabled>--------</option>";
1763
1764 while ($line = db_fetch_assoc($result)) {
1765 printf("<option id='%d'>%s</option>",
1766 $line["id"], $line["title"]);
1767 }
1768 }
1769
1770 print "</select>";
1771
1772 print " <input type=\"submit\" class=\"button\"
1773 onclick=\"javascript:categorizeSelectedFeeds()\" value=\"Set category\">";
1774
1775 }
1776
1777 if (get_pref($link, 'ENABLE_PREFS_CATCHUP_UNCATCHUP')) {
1778 print "
1779 <input type=\"submit\" class=\"button\"
1780 onclick=\"javascript:readSelectedFeeds(true)\" value=\"Mark as read\">
1781 <input type=\"submit\" class=\"button\"
1782 onclick=\"javascript:readSelectedFeeds(false)\"
1783 value=\"Mark as unread\">&nbsp;";
1784 }
1785
1786 print "
1787 &nbsp;All feeds: <input type=\"submit\"
1788 class=\"button\" onclick=\"gotoExportOpml()\"
1789 value=\"Export OPML\">";
1790 }
1791 } else {
1792
1793 print "<p>No feeds defined.</p>";
1794
1795 }
1796
1797 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1798
1799 print "<h3>Edit Categories</h3>";
1800
1801 // print "<h3>Categories</h3>";
1802
1803 print "<div class=\"prefGenericAddBox\">
1804 <input id=\"fadd_cat\"
1805 onchange=\"javascript:addFeedCat()\"
1806 size=\"40\">&nbsp;
1807 <input
1808 type=\"submit\" class=\"button\"
1809 onclick=\"javascript:addFeedCat()\" value=\"Add category\"></div>";
1810
1811 $result = db_query($link, "SELECT title,id FROM ttrss_feed_categories
1812 WHERE owner_uid = ".$_SESSION["uid"]."
1813 ORDER BY title");
1814
1815 if (db_num_rows($result) != 0) {
1816
1817 print "<p><table width=\"100%\" class=\"prefFeedCatList\"
1818 cellspacing=\"0\" id=\"prefFeedCatList\">";
1819
1820 print "<tr><td class=\"selectPrompt\" colspan=\"8\">
1821 Select:
1822 <a href=\"javascript:selectTableRowsByIdPrefix('prefFeedCatList',
1823 'FCATR-', 'FCCHK-', true)\">All</a>,
1824 <a href=\"javascript:selectTableRowsByIdPrefix('prefFeedCatList',
1825 'FCATR-', 'FCCHK-', false)\">None</a>
1826 </td</tr>";
1827
1828 print "<tr class=\"title\">
1829 <td width=\"10%\">Select</td><td width=\"80%\">Title</td>
1830 </tr>";
1831
1832 $lnum = 0;
1833
1834 while ($line = db_fetch_assoc($result)) {
1835
1836 $class = ($lnum % 2) ? "even" : "odd";
1837
1838 $cat_id = $line["id"];
1839
1840 $edit_cat_id = $_GET["id"];
1841
1842 if ($subop == "editCat" && $cat_id != $edit_cat_id) {
1843 $class .= "Grayed";
1844 $this_row_id = "";
1845 } else {
1846 $this_row_id = "id=\"FCATR-$cat_id\"";
1847 }
1848
1849 print "<tr class=\"$class\" $this_row_id>";
1850
1851 $edit_title = htmlspecialchars(db_unescape_string($line["title"]));
1852
1853 if (!$edit_cat_id || $subop != "editCat") {
1854
1855 print "<td><input onclick='toggleSelectRow(this);'
1856 type=\"checkbox\" id=\"FCCHK-".$line["id"]."\"></td>";
1857
1858 print "<td><a href=\"javascript:editFeedCat($cat_id);\">" .
1859 $edit_title . "</a></td>";
1860
1861 } else if ($cat_id != $edit_cat_id) {
1862
1863 print "<td><input disabled=\"true\" type=\"checkbox\"
1864 id=\"FRCHK-".$line["id"]."\"></td>";
1865
1866 print "<td>$edit_title</td>";
1867
1868 } else {
1869
1870 print "<td><input disabled=\"true\" type=\"checkbox\" checked></td>";
1871
1872 print "<td><input id=\"iedit_title\" value=\"$edit_title\"></td>";
1873
1874 }
1875
1876 print "</tr>";
1877
1878 ++$lnum;
1879 }
1880
1881 print "</table>";
1882
1883 print "<p>";
1884
1885 if ($subop == "editCat") {
1886 print "Edit category:&nbsp;
1887 <input type=\"submit\" class=\"button\"
1888 onclick=\"javascript:feedCatEditCancel()\" value=\"Cancel\">
1889 <input type=\"submit\" class=\"button\"
1890 onclick=\"javascript:feedCatEditSave()\" value=\"Save\">";
1891 } else {
1892
1893 print "
1894 Selection:&nbsp;
1895 <input type=\"submit\" class=\"button\"
1896 onclick=\"javascript:editSelectedFeedCat()\" value=\"Edit\">
1897 <input type=\"submit\" class=\"button\"
1898 onclick=\"javascript:removeSelectedFeedCats()\" value=\"Remove\">";
1899
1900 }
1901
1902 } else {
1903 print "<p>No feed categories defined.</p>";
1904 }
1905 }
1906
1907 print "<h3>Import OPML</h3>
1908 <form enctype=\"multipart/form-data\" method=\"POST\" action=\"opml.php\">
1909 File: <input id=\"opml_file\" name=\"opml_file\" type=\"file\">&nbsp;
1910 <input class=\"button\" name=\"op\" onclick=\"return validateOpmlImport();\"
1911 type=\"submit\" value=\"Import\">
1912 </form>";
1913
1914 }
1915
1916 if ($op == "pref-filters") {
1917
1918 $subop = $_GET["subop"];
1919 $quiet = $_GET["quiet"];
1920
1921 if ($subop == "editSave") {
1922
1923 $regexp = db_escape_string($_GET["r"]);
1924 $descr = db_escape_string($_GET["d"]);
1925 $match = db_escape_string($_GET["m"]);
1926 $filter_id = db_escape_string($_GET["id"]);
1927 $feed_id = db_escape_string($_GET["fid"]);
1928 $action_id = db_escape_string($_GET["aid"]);
1929
1930 if (!$feed_id) {
1931 $feed_id = 'NULL';
1932 } else {
1933 $feed_id = sprintf("'%s'", db_escape_string($feed_id));
1934 }
1935
1936 $result = db_query($link, "UPDATE ttrss_filters SET
1937 reg_exp = '$regexp',
1938 description = '$descr',
1939 feed_id = $feed_id,
1940 action_id = '$action_id',
1941 filter_type = (SELECT id FROM ttrss_filter_types WHERE
1942 description = '$match')
1943 WHERE id = '$filter_id'");
1944 }
1945
1946 if ($subop == "remove") {
1947
1948 if (!WEB_DEMO_MODE) {
1949
1950 $ids = split(",", db_escape_string($_GET["ids"]));
1951
1952 foreach ($ids as $id) {
1953 db_query($link, "DELETE FROM ttrss_filters WHERE id = '$id'");
1954
1955 }
1956 }
1957 }
1958
1959 if ($subop == "add") {
1960
1961 if (!WEB_DEMO_MODE) {
1962
1963 $regexp = db_escape_string(trim($_GET["regexp"]));
1964 $match = db_escape_string(trim($_GET["match"]));
1965 $feed_id = db_escape_string($_GET["fid"]);
1966 $action_id = db_escape_string($_GET["aid"]);
1967
1968 if (!$feed_id) {
1969 $feed_id = 'NULL';
1970 } else {
1971 $feed_id = sprintf("'%s'", db_escape_string($feed_id));
1972 }
1973
1974 $result = db_query($link,
1975 "INSERT INTO ttrss_filters (reg_exp,filter_type,owner_uid,feed_id,
1976 action_id)
1977 VALUES
1978 ('$regexp', (SELECT id FROM ttrss_filter_types WHERE
1979 description = '$match'),'".$_SESSION["uid"]."',
1980 $feed_id, '$action_id')");
1981 }
1982 }
1983
1984 if ($quiet) return;
1985
1986 $result = db_query($link, "SELECT description
1987 FROM ttrss_filter_types ORDER BY description");
1988
1989 $filter_types = array();
1990
1991 while ($line = db_fetch_assoc($result)) {
1992 array_push($filter_types, $line["description"]);
1993 }
1994
1995 print "<div class=\"prefGenericAddBox\">
1996 <input id=\"fadd_regexp\" size=\"40\">&nbsp;";
1997
1998 print_select("fadd_match", "Title", $filter_types);
1999
2000 print "&nbsp;<select id=\"fadd_feed\">";
2001
2002 print "<option selected id=\"0\">All feeds</option>";
2003
2004 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
2005 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
2006
2007 if (db_num_rows($result) > 0) {
2008 print "<option disabled>--------</option>";
2009 }
2010
2011 while ($line = db_fetch_assoc($result)) {
2012 printf("<option id='%d'>%s</option>", $line["id"], $line["title"]);
2013 }
2014
2015 print "</select>&nbsp;";
2016
2017 print "&nbsp;Action: ";
2018
2019 print "<select id=\"fadd_action\">";
2020
2021 $result = db_query($link, "SELECT id,description FROM ttrss_filter_actions
2022 ORDER BY name");
2023
2024 while ($line = db_fetch_assoc($result)) {
2025 printf("<option id='%d'>%s</option>", $line["id"], $line["description"]);
2026 }
2027
2028 print "</select>&nbsp;";
2029
2030 print "<input type=\"submit\"
2031 class=\"button\" onclick=\"javascript:addFilter()\"
2032 value=\"Add filter\">";
2033
2034 print "</div>";
2035
2036 $result = db_query($link, "SELECT
2037 ttrss_filters.id AS id,reg_exp,
2038 ttrss_filters.description AS description,
2039 ttrss_filter_types.name AS filter_type_name,
2040 ttrss_filter_types.description AS filter_type_descr,
2041 feed_id,
2042 ttrss_filter_actions.description AS action_description,
2043 (SELECT title FROM ttrss_feeds WHERE id = feed_id) AS feed_title
2044 FROM
2045 ttrss_filters,ttrss_filter_types,ttrss_filter_actions
2046 WHERE
2047 filter_type = ttrss_filter_types.id AND
2048 ttrss_filter_actions.id = action_id AND
2049 ttrss_filters.owner_uid = ".$_SESSION["uid"]."
2050 ORDER by reg_exp");
2051
2052 if (db_num_rows($result) != 0) {
2053
2054 print "<p><table width=\"100%\" cellspacing=\"0\" class=\"prefFilterList\"
2055 id=\"prefFilterList\">";
2056
2057 print "<tr><td class=\"selectPrompt\" colspan=\"8\">
2058 Select:
2059 <a href=\"javascript:selectTableRowsByIdPrefix('prefFilterList',
2060 'FILRR-', 'FICHK-', true)\">All</a>,
2061 <a href=\"javascript:selectTableRowsByIdPrefix('prefFilterList',
2062 'FILRR-', 'FICHK-', false)\">None</a>
2063 </td</tr>";
2064
2065 print "<tr class=\"title\">
2066 <td width=\"5%\">Select</td>
2067 <td width=\"20%\">Filter expression</td>
2068 <td width=\"20%\">Feed</td>
2069 <td width=\"15%\">Match</td>
2070 <td width=\"15%\">Action</td>
2071 <td width=\"30%\">Description</td></tr>";
2072
2073 $lnum = 0;
2074
2075 while ($line = db_fetch_assoc($result)) {
2076
2077 $class = ($lnum % 2) ? "even" : "odd";
2078
2079 $filter_id = $line["id"];
2080 $edit_filter_id = $_GET["id"];
2081
2082 if ($subop == "edit" && $filter_id != $edit_filter_id) {
2083 $class .= "Grayed";
2084 $this_row_id = "";
2085 } else {
2086 $this_row_id = "id=\"FILRR-$filter_id\"";
2087 }
2088
2089 print "<tr class=\"$class\" $this_row_id>";
2090
2091 $line["regexp"] = htmlspecialchars($line["reg_exp"]);
2092 $line["description"] = htmlspecialchars($line["description"]);
2093
2094 if (!$line["feed_title"]) $line["feed_title"] = "All feeds";
2095
2096 if (!$edit_filter_id || $subop != "edit") {
2097
2098 if (!$line["description"]) $line["description"] = "[No description]";
2099
2100 print "<td><input onclick='toggleSelectRow(this);'
2101 type=\"checkbox\" id=\"FICHK-".$line["id"]."\"></td>";
2102
2103 print "<td><a href=\"javascript:editFilter($filter_id);\">" .
2104 $line["reg_exp"] . "</td>";
2105
2106 print "<td><a href=\"javascript:editFilter($filter_id);\">" .
2107 $line["feed_title"] . "</td>";
2108
2109 print "<td><a href=\"javascript:editFilter($filter_id);\">" .
2110 $line["filter_type_descr"] . "</td>";
2111
2112 print "<td><a href=\"javascript:editFilter($filter_id);\">" .
2113 $line["action_description"] . "</td>";
2114
2115 print "<td><a href=\"javascript:editFilter($filter_id);\">" .
2116 $line["description"] . "</td>";
2117
2118 } else if ($filter_id != $edit_filter_id) {
2119
2120 if (!$line["description"]) $line["description"] = "[No description]";
2121
2122 print "<td><input disabled=\"true\" type=\"checkbox\"
2123 id=\"FICHK-".$line["id"]."\"></td>";
2124
2125 print "<td>".$line["reg_exp"]."</td>";
2126 print "<td>".$line["feed_title"]."</td>";
2127 print "<td>".$line["filter_type_descr"]."</td>";
2128 print "<td>".$line["action_description"]."</td>";
2129 print "<td>".$line["description"]."</td>";
2130
2131 } else {
2132
2133 print "<td><input disabled=\"true\" type=\"checkbox\" checked></td>";
2134
2135 print "<td><input id=\"iedit_regexp\" value=\"".$line["reg_exp"].
2136 "\"></td>";
2137
2138 print "<td>";
2139 print "<select id=\"iedit_feed\">";
2140 print "<option id=\"0\">All feeds</option>";
2141
2142 $tmp_result = db_query($link, "SELECT id,title FROM ttrss_feeds
2143 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
2144
2145 if (db_num_rows($tmp_result) > 0) {
2146 print "<option disabled>--------</option>";
2147 }
2148
2149 while ($tmp_line = db_fetch_assoc($tmp_result)) {
2150 if ($tmp_line["id"] == $line["feed_id"]) {
2151 $is_selected = "selected";
2152 } else {
2153 $is_selected = "";
2154 }
2155 printf("<option $is_selected id='%d'>%s</option>",
2156 $tmp_line["id"], $tmp_line["title"]);
2157 }
2158
2159 print "</select></td>";
2160
2161 print "<td>";
2162 print_select("iedit_match", $line["filter_type_descr"], $filter_types);
2163 print "</td>";
2164
2165 print "<td>";
2166 print "<select id=\"iedit_filter_action\">";
2167
2168 $tmp_result = db_query($link, "SELECT id,description FROM ttrss_filter_actions
2169 ORDER BY description");
2170
2171 while ($tmp_line = db_fetch_assoc($tmp_result)) {
2172 if ($tmp_line["description"] == $line["action_description"]) {
2173 $is_selected = "selected";
2174 } else {
2175 $is_selected = "";
2176 }
2177 printf("<option $is_selected id='%d'>%s</option>",
2178 $tmp_line["id"], $tmp_line["description"]);
2179 }
2180
2181 print "</select></td>";
2182
2183
2184 print "<td><input id=\"iedit_descr\" value=\"".$line["description"].
2185 "\"></td>";
2186
2187 print "</td>";
2188 }
2189
2190 print "</tr>";
2191
2192 ++$lnum;
2193 }
2194
2195 if ($lnum == 0) {
2196 print "<tr><td colspan=\"4\" align=\"center\">No filters defined.</td></tr>";
2197 }
2198
2199 print "</table>";
2200
2201 print "<p>";
2202
2203 if ($subop == "edit") {
2204 print "Edit feed:
2205 <input type=\"submit\" class=\"button\"
2206 onclick=\"javascript:filterEditCancel()\" value=\"Cancel\">
2207 <input type=\"submit\" class=\"button\"
2208 onclick=\"javascript:filterEditSave()\" value=\"Save\">";
2209
2210 } else {
2211
2212 print "
2213 Selection:
2214 <input type=\"submit\" class=\"button\"
2215 onclick=\"javascript:editSelectedFilter()\" value=\"Edit\">
2216 <input type=\"submit\" class=\"button\"
2217 onclick=\"javascript:removeSelectedFilters()\" value=\"Remove\">";
2218 }
2219
2220 } else {
2221
2222 print "<p>No filters defined.</p>";
2223
2224 }
2225 }
2226
2227 // We need to accept raw SQL data in label queries, so not everything is escaped
2228 // here, this is by design. If you don't like the whole idea, disable labels
2229 // altogether with GLOBAL_ENABLE_LABELS = false
2230
2231 if ($op == "pref-labels") {
2232
2233 if (!GLOBAL_ENABLE_LABELS) {
2234 return;
2235 }
2236
2237 $subop = $_GET["subop"];
2238
2239 if ($subop == "test") {
2240
2241 $expr = $_GET["expr"];
2242 $descr = $_GET["descr"];
2243
2244 print "<div class='infoBoxContents'>";
2245
2246 print "<h1>Label &laquo;$descr&raquo;</h1>";
2247
2248 // print "<p><b>Expression</b>: $expr</p>";
2249
2250 $result = db_query($link,
2251 "SELECT count(id) AS num_matches
2252 FROM ttrss_entries,ttrss_user_entries
2253 WHERE ($expr) AND
2254 ttrss_user_entries.ref_id = ttrss_entries.id AND
2255 owner_uid = " . $_SESSION["uid"]);
2256
2257 $num_matches = db_fetch_result($result, 0, "num_matches");;
2258
2259 if ($num_matches > 0) {
2260
2261 print "<p>Query returned <b>$num_matches</b> matches, first 5 follow:</p>";
2262
2263 $result = db_query($link,
2264 "SELECT title,
2265 (SELECT title FROM ttrss_feeds WHERE id = feed_id) AS feed_title
2266 FROM ttrss_entries,ttrss_user_entries
2267 WHERE ($expr) AND
2268 ttrss_user_entries.ref_id = ttrss_entries.id
2269 AND owner_uid = " . $_SESSION["uid"] . "
2270 ORDER BY date_entered DESC LIMIT 5");
2271
2272 print "<ul class=\"nomarks\">";
2273 while ($line = db_fetch_assoc($result)) {
2274 print "<li>".$line["title"].
2275 " <span class=\"insensitive\">(".$line["feed_title"].")</span></li>";
2276 }
2277 print "</ul>";
2278
2279 } else {
2280 print "<p>Query didn't return any matches.</p>";
2281 }
2282
2283 print "</div>";
2284
2285 print "<div align='center'>
2286 <input type='submit' class='button'
2287 onclick=\"closeInfoBox()\" value=\"Close this window\"></div>";
2288 return;
2289 }
2290
2291 if ($subop == "editSave") {
2292
2293 $sql_exp = $_GET["s"];
2294 $descr = $_GET["d"];
2295 $label_id = db_escape_string($_GET["id"]);
2296
2297 // print "$sql_exp : $descr : $label_id";
2298
2299 $result = db_query($link, "UPDATE ttrss_labels SET
2300 sql_exp = '$sql_exp',
2301 description = '$descr'
2302 WHERE id = '$label_id'");
2303 }
2304
2305 if ($subop == "remove") {
2306
2307 if (!WEB_DEMO_MODE) {
2308
2309 $ids = split(",", db_escape_string($_GET["ids"]));
2310
2311 foreach ($ids as $id) {
2312 db_query($link, "DELETE FROM ttrss_labels WHERE id = '$id'");
2313
2314 }
2315 }
2316 }
2317
2318 if ($subop == "add") {
2319
2320 if (!WEB_DEMO_MODE) {
2321
2322 // no escaping is done here on purpose
2323 $exp = trim($_GET["exp"]);
2324
2325 $result = db_query($link,
2326 "INSERT INTO ttrss_labels (sql_exp,description,owner_uid)
2327 VALUES ('$exp', '$exp', '".$_SESSION["uid"]."')");
2328 }
2329 }
2330
2331 print "<div class=\"prefGenericAddBox\">
2332 <input size=\"40\" id=\"ladd_expr\">&nbsp;";
2333
2334 print"<input type=\"submit\" class=\"button\"
2335 onclick=\"javascript:addLabel()\" value=\"Add label\"></div>";
2336
2337 $result = db_query($link, "SELECT
2338 id,sql_exp,description
2339 FROM
2340 ttrss_labels
2341 WHERE
2342 owner_uid = ".$_SESSION["uid"]."
2343 ORDER by description");
2344
2345 print "<div id=\"infoBoxShadow\"><div id=\"infoBox\">PLACEHOLDER</div></div>";
2346
2347 if (db_num_rows($result) != 0) {
2348
2349 print "<p><table width=\"100%\" cellspacing=\"0\"
2350 class=\"prefLabelList\" id=\"prefLabelList\">";
2351
2352 print "<tr><td class=\"selectPrompt\" colspan=\"8\">
2353 Select:
2354 <a href=\"javascript:selectTableRowsByIdPrefix('prefLabelList',
2355 'LILRR-', 'LICHK-', true)\">All</a>,
2356 <a href=\"javascript:selectTableRowsByIdPrefix('prefLabelList',
2357 'LILRR-', 'LICHK-', false)\">None</a>
2358 </td</tr>";
2359
2360 print "<tr class=\"title\">
2361 <td width=\"5%\">Select</td><td width=\"40%\">SQL expression
2362 <a class=\"helpLink\" href=\"javascript:displayHelpInfobox(1)\">(?)</a>
2363 </td>
2364 <td width=\"40%\">Caption</td></tr>";
2365
2366 $lnum = 0;
2367
2368 while ($line = db_fetch_assoc($result)) {
2369
2370 $class = ($lnum % 2) ? "even" : "odd";
2371
2372 $label_id = $line["id"];
2373 $edit_label_id = $_GET["id"];
2374
2375 if ($subop == "edit" && $label_id != $edit_label_id) {
2376 $class .= "Grayed";
2377 $this_row_id = "";
2378 } else {
2379 $this_row_id = "id=\"LILRR-$label_id\"";
2380 }
2381
2382 print "<tr class=\"$class\" $this_row_id>";
2383
2384 $line["sql_exp"] = htmlspecialchars($line["sql_exp"]);
2385 $line["description"] = htmlspecialchars($line["description"]);
2386
2387 if (!$edit_label_id || $subop != "edit") {
2388
2389 if (!$line["description"]) $line["description"] = "[No caption]";
2390
2391 print "<td><input onclick='toggleSelectRow(this);'
2392 type=\"checkbox\" id=\"LICHK-".$line["id"]."\"></td>";
2393
2394 print "<td><a href=\"javascript:editLabel($label_id);\">" .
2395 $line["sql_exp"] . "</td>";
2396
2397 print "<td><a href=\"javascript:editLabel($label_id);\">" .
2398 $line["description"] . "</td>";
2399
2400 } else if ($label_id != $edit_label_id) {
2401
2402 if (!$line["description"]) $line["description"] = "[No description]";
2403
2404 print "<td><input disabled=\"true\" type=\"checkbox\"
2405 id=\"LICHK-".$line["id"]."\"></td>";
2406
2407 print "<td>".$line["sql_exp"]."</td>";
2408 print "<td>".$line["description"]."</td>";
2409
2410 } else {
2411
2412 print "<td><input disabled=\"true\" type=\"checkbox\" checked></td>";
2413
2414 print "<td><input id=\"iedit_expr\" value=\"".$line["sql_exp"].
2415 "\"></td>";
2416
2417 print "<td><input id=\"iedit_descr\" value=\"".$line["description"].
2418 "\"></td>";
2419
2420 }
2421
2422
2423 print "</tr>";
2424
2425 ++$lnum;
2426 }
2427
2428 if ($lnum == 0) {
2429 print "<tr><td colspan=\"4\" align=\"center\">No labels defined.</td></tr>";
2430 }
2431
2432 print "</table>";
2433
2434 print "<p>";
2435
2436 if ($subop == "edit") {
2437 print "Edit label:
2438 <input type=\"submit\" class=\"button\"
2439 onclick=\"javascript:labelTest()\" value=\"Test\">
2440 <input type=\"submit\" class=\"button\"
2441 onclick=\"javascript:labelEditCancel()\" value=\"Cancel\">
2442 <input type=\"submit\" class=\"button\"
2443 onclick=\"javascript:labelEditSave()\" value=\"Save\">";
2444
2445 } else {
2446
2447 print "
2448 Selection:
2449 <input type=\"submit\" class=\"button\"
2450 onclick=\"javascript:editSelectedLabel()\" value=\"Edit\">
2451 <input type=\"submit\" class=\"button\"
2452 onclick=\"javascript:removeSelectedLabels()\" value=\"Remove\">";
2453 }
2454 } else {
2455 print "<p>No labels defined.</p>";
2456 }
2457 }
2458
2459 if ($op == "error") {
2460 print "<div width=\"100%\" align='center'>";
2461 $msg = $_GET["msg"];
2462 print $msg;
2463 print "</div>";
2464 }
2465
2466 if ($op == "help") {
2467 if (!$_GET["noheaders"]) {
2468 print "<html><head>
2469 <title>Tiny Tiny RSS : Help</title>
2470 <link rel=\"stylesheet\" href=\"tt-rss.css\" type=\"text/css\">
2471 <script type=\"text/javascript\" src=\"functions.js\"></script>
2472 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\">
2473 </head><body>";
2474 }
2475
2476 $tid = sprintf("%d", $_GET["tid"]);
2477
2478 print "<div class='infoBoxContents'>";
2479
2480 if (file_exists("help/$tid.php")) {
2481 include("help/$tid.php");
2482 } else {
2483 print "<p>Help topic not found.</p>";
2484 }
2485
2486 print "</div>";
2487
2488 print "<div align='center'>
2489 <input type='submit' class='button'
2490 onclick=\"closeInfoBox()\" value=\"Close this window\"></div>";
2491
2492 if (!$_GET["noheaders"]) {
2493 print "</body></html>";
2494 }
2495
2496 }
2497
2498 if ($op == "dlg") {
2499 $id = $_GET["id"];
2500 $param = $_GET["param"];
2501
2502 if ($id == "quickAddFeed") {
2503 print "
2504 Feed URL: <input
2505 onblur=\"javascript:enableHotkeys()\" onfocus=\"javascript:disableHotkeys()\"
2506 id=\"qafInput\">
2507 <input class=\"button\"
2508 type=\"submit\" onclick=\"javascript:qafAdd()\" value=\"Add feed\">
2509 <input class=\"button\"
2510 type=\"submit\" onclick=\"javascript:closeDlg()\"
2511 value=\"Cancel\">";
2512 }
2513
2514 if ($id == "quickDelFeed") {
2515
2516 $param = db_escape_string($param);
2517
2518 $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$param'");
2519
2520 if ($result) {
2521
2522 $f_title = db_fetch_result($result, 0, "title");
2523
2524 print "Remove current feed (<b>$f_title</b>)?&nbsp;
2525 <input class=\"button\"
2526 type=\"submit\" onclick=\"javascript:qfdDelete($param)\" value=\"Remove\">
2527 <input class=\"button\"
2528 type=\"submit\" onclick=\"javascript:closeDlg()\"
2529 value=\"Cancel\">";
2530 } else {
2531 print "Error: Feed $param not found.&nbsp;
2532 <input class=\"button\"
2533 type=\"submit\" onclick=\"javascript:closeDlg()\"
2534 value=\"Cancel\">";
2535 }
2536 }
2537
2538 if ($id == "search") {
2539
2540 print "<input id=\"searchbox\" class=\"extSearch\"
2541 onblur=\"javascript:enableHotkeys()\" onfocus=\"javascript:disableHotkeys()\"
2542 onchange=\"javascript:search()\">
2543 <select id=\"searchmodebox\">
2544 <option selected>All feeds</option>
2545 <option>This feed</option>
2546 </select>
2547 <input type=\"submit\"
2548 class=\"button\" onclick=\"javascript:search()\" value=\"Search\">
2549 <input class=\"button\"
2550 type=\"submit\" onclick=\"javascript:closeDlg()\"
2551 value=\"Close\">";
2552
2553 }
2554
2555 if ($id == "quickAddFilter") {
2556
2557 $result = db_query($link, "SELECT description
2558 FROM ttrss_filter_types ORDER BY description");
2559
2560 $filter_types = array();
2561
2562 while ($line = db_fetch_assoc($result)) {
2563 array_push($filter_types, $line["description"]);
2564 }
2565
2566 print "<table>";
2567
2568 print "<tr><td>Match:</td><td><input id=\"fadd_regexp\" size=\"40\">&nbsp;";
2569
2570 print_select("fadd_match", "Title", $filter_types);
2571
2572 print "</td></tr>";
2573 print "<tr><td>Feed:</td><td><select id=\"fadd_feed\">";
2574
2575 print "<option selected id=\"0\">All feeds</option>";
2576
2577 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
2578 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
2579
2580 if (db_num_rows($result) > 0) {
2581 print "<option disabled>--------</option>";
2582 }
2583
2584 while ($line = db_fetch_assoc($result)) {
2585 if ($param == $line["id"]) {
2586 $selected = "selected";
2587 } else {
2588 $selected = "";
2589 }
2590 printf("<option id='%d' %s>%s</option>", $line["id"], $selected, $line["title"]);
2591 }
2592
2593 print "</select></td></tr>";
2594
2595 print "<tr><td>Action:</td>";
2596
2597 print "<td><select id=\"fadd_action\">";
2598
2599 $result = db_query($link, "SELECT id,description FROM ttrss_filter_actions
2600 ORDER BY name");
2601
2602 while ($line = db_fetch_assoc($result)) {
2603 printf("<option id='%d'>%s</option>", $line["id"], $line["description"]);
2604 }
2605
2606 print "</select>";
2607
2608 print "</td></tr><tr><td colspan=\"2\" align=\"right\">";
2609
2610 print "<input type=\"submit\"
2611 class=\"button\" onclick=\"javascript:qaddFilter()\"
2612 value=\"Add filter\"> ";
2613
2614 print "<input class=\"button\"
2615 type=\"submit\" onclick=\"javascript:closeDlg()\"
2616 value=\"Close\">";
2617
2618 print "</td></tr></table>";
2619 }
2620 }
2621
2622 // update feeds of all users, may be used anonymously
2623 if ($op == "globalUpdateFeeds") {
2624
2625 $result = db_query($link, "SELECT id FROM ttrss_users");
2626
2627 while ($line = db_fetch_assoc($result)) {
2628 $user_id = $line["id"];
2629 // print "<!-- updating feeds of uid $user_id -->";
2630 update_all_feeds($link, false, $user_id);
2631 }
2632
2633 print "<rpc-reply>
2634 <message msg=\"All feeds updated\"/>
2635 </rpc-reply>";
2636
2637 }
2638
2639 if ($op == "pref-prefs") {
2640
2641 $subop = $_REQUEST["subop"];
2642
2643 if ($subop == "Save configuration") {
2644
2645 if (WEB_DEMO_MODE) {
2646 header("Location: prefs.php");
2647 return;
2648 }
2649
2650 $_SESSION["prefs_op_result"] = "save-config";
2651
2652 foreach (array_keys($_POST) as $pref_name) {
2653
2654 $pref_name = db_escape_string($pref_name);
2655 $value = db_escape_string($_POST[$pref_name]);
2656
2657 $result = db_query($link, "SELECT type_name
2658 FROM ttrss_prefs,ttrss_prefs_types
2659 WHERE pref_name = '$pref_name' AND type_id = ttrss_prefs_types.id");
2660
2661 if (db_num_rows($result) > 0) {
2662
2663 $type_name = db_fetch_result($result, 0, "type_name");
2664
2665 // print "$pref_name : $type_name : $value<br>";
2666
2667 if ($type_name == "bool") {
2668 if ($value == "1") {
2669 $value = "true";
2670 } else {
2671 $value = "false";
2672 }
2673 } else if ($type_name == "integer") {
2674 $value = sprintf("%d", $value);
2675 }
2676
2677 // print "$pref_name : $type_name : $value<br>";
2678
2679 db_query($link, "UPDATE ttrss_user_prefs SET value = '$value'
2680 WHERE pref_name = '$pref_name' AND owner_uid = ".$_SESSION["uid"]);
2681
2682 }
2683
2684 header("Location: prefs.php");
2685
2686 }
2687
2688 } else if ($subop == "getHelp") {
2689
2690 $pref_name = db_escape_string($_GET["pn"]);
2691
2692 $result = db_query($link, "SELECT help_text FROM ttrss_prefs
2693 WHERE pref_name = '$pref_name'");
2694
2695 if (db_num_rows($result) > 0) {
2696 $help_text = db_fetch_result($result, 0, "help_text");
2697 print $help_text;
2698 } else {
2699 print "Unknown option: $pref_name";
2700 }
2701
2702 } else if ($subop == "Change password") {
2703
2704 if (WEB_DEMO_MODE) {
2705 header("Location: prefs.php");
2706 return;
2707 }
2708
2709 $old_pw = $_POST["OLD_PASSWORD"];
2710 $new_pw = $_POST["OLD_PASSWORD"];
2711
2712 $old_pw_hash = 'SHA1:' . sha1($_POST["OLD_PASSWORD"]);
2713 $new_pw_hash = 'SHA1:' . sha1($_POST["NEW_PASSWORD"]);
2714
2715 $active_uid = $_SESSION["uid"];
2716
2717 if ($old_pw && $new_pw) {
2718
2719 $login = db_escape_string($_SERVER['PHP_AUTH_USER']);
2720
2721 $result = db_query($link, "SELECT id FROM ttrss_users WHERE
2722 id = '$active_uid' AND (pwd_hash = '$old_pw' OR
2723 pwd_hash = '$old_pw_hash')");
2724
2725 if (db_num_rows($result) == 1) {
2726 db_query($link, "UPDATE ttrss_users SET pwd_hash = '$new_pw_hash'
2727 WHERE id = '$active_uid'");
2728
2729 $_SESSION["pwd_change_result"] = "ok";
2730 } else {
2731 $_SESSION["pwd_change_result"] = "failed";
2732 }
2733 }
2734
2735 header("Location: prefs.php");
2736
2737 } else if ($subop == "Reset to defaults") {
2738
2739 if (WEB_DEMO_MODE) {
2740 header("Location: prefs.php");
2741 return;
2742 }
2743
2744 $_SESSION["prefs_op_result"] = "reset-to-defaults";
2745
2746 if (DB_TYPE == "pgsql") {
2747 db_query($link,"UPDATE ttrss_user_prefs
2748 SET value = ttrss_prefs.def_value
2749 WHERE owner_uid = '".$_SESSION["uid"]."' AND
2750 ttrss_prefs.pref_name = ttrss_user_prefs.pref_name");
2751 } else {
2752 db_query($link, "DELETE FROM ttrss_user_prefs
2753 WHERE owner_uid = ".$_SESSION["uid"]);
2754 initialize_user_prefs($link, $_SESSION["uid"]);
2755 }
2756
2757 header("Location: prefs.php");
2758
2759 } else if ($subop == "Change theme") {
2760
2761 $theme = db_escape_string($_POST["theme"]);
2762
2763 if ($theme == "Default") {
2764 $theme_qpart = 'NULL';
2765 } else {
2766 $theme_qpart = "'$theme'";
2767 }
2768
2769 $result = db_query($link, "SELECT id,theme_path FROM ttrss_themes
2770 WHERE theme_name = '$theme'");
2771
2772 if (db_num_rows($result) == 1) {
2773 $theme_id = db_fetch_result($result, 0, "id");
2774 $theme_path = db_fetch_result($result, 0, "theme_path");
2775 } else {
2776 $theme_id = "NULL";
2777 $theme_path = "";
2778 }
2779
2780 db_query($link, "UPDATE ttrss_users SET
2781 theme_id = $theme_id WHERE id = " . $_SESSION["uid"]);
2782
2783 $_SESSION["theme"] = $theme_path;
2784
2785 header("Location: prefs.php");
2786
2787 } else {
2788
2789 if (!SINGLE_USER_MODE) {
2790
2791 $result = db_query($link, "SELECT id FROM ttrss_users
2792 WHERE id = ".$_SESSION["uid"]." AND (pwd_hash = 'password' OR
2793 pwd_hash = 'SHA1:".sha1("password")."')");
2794
2795 if (db_num_rows($result) != 0) {
2796 print "<div class=\"warning\">
2797 Your password is at default value, please change it.
2798 </div>";
2799 }
2800
2801 if ($_SESSION["pwd_change_result"] == "failed") {
2802 print "<div class=\"warning\">
2803 There was an error while changing your password.
2804 </div>";
2805 }
2806
2807 if ($_SESSION["pwd_change_result"] == "ok") {
2808 print "<div class=\"notice\">
2809 Password changed successfully.
2810 </div>";
2811 }
2812
2813 $_SESSION["pwd_change_result"] = "";
2814
2815 if ($_SESSION["prefs_op_result"] == "reset-to-defaults") {
2816 print "<div class=\"notice\">
2817 Your configuration was reset to defaults.
2818 </div>";
2819 }
2820
2821 if ($_SESSION["prefs_op_result"] == "save-config") {
2822 print "<div class=\"notice\">
2823 Your configuration was saved successfully.
2824 </div>";
2825 }
2826
2827 $_SESSION["prefs_op_result"] = "";
2828
2829 print "<form action=\"backend.php\" method=\"POST\">";
2830
2831 print "<table width=\"100%\" class=\"prefPrefsList\">";
2832 print "<tr><td colspan='3'><h3>Authentication</h3></tr></td>";
2833
2834 print "<tr><td width=\"40%\">Old password</td>";
2835 print "<td><input class=\"editbox\" type=\"password\"
2836 name=\"OLD_PASSWORD\"></td></tr>";
2837
2838 print "<tr><td width=\"40%\">New password</td>";
2839
2840 print "<td><input class=\"editbox\" type=\"password\"
2841 name=\"NEW_PASSWORD\"></td></tr>";
2842
2843 print "</table>";
2844
2845 print "<input type=\"hidden\" name=\"op\" value=\"pref-prefs\">";
2846
2847 print "<p><input class=\"button\" type=\"submit\"
2848 value=\"Change password\" name=\"subop\">";
2849
2850 print "</form>";
2851
2852 }
2853
2854 $result = db_query($link, "SELECT
2855 theme_id FROM ttrss_users WHERE id = " . $_SESSION["uid"]);
2856
2857 $user_theme_id = db_fetch_result($result, 0, "theme_id");
2858
2859 $result = db_query($link, "SELECT
2860 id,theme_name FROM ttrss_themes ORDER BY theme_name");
2861
2862 if (db_num_rows($result) > 0) {
2863
2864 print "<form action=\"backend.php\" method=\"POST\">";
2865 print "<table width=\"100%\" class=\"prefPrefsList\">";
2866 print "<tr><td colspan='3'><h3>Themes</h3></tr></td>";
2867 print "<tr><td width=\"40%\">Select theme</td>";
2868 print "<td><select name=\"theme\">";
2869 print "<option>Default</option>";
2870 print "<option disabled>--------</option>";
2871
2872 while ($line = db_fetch_assoc($result)) {
2873 if ($line["id"] == $user_theme_id) {
2874 $selected = "selected";
2875 } else {
2876 $selected = "";
2877 }
2878 print "<option $selected>" . $line["theme_name"] . "</option>";
2879 }
2880 print "</select></td></tr>";
2881 print "</table>";
2882 print "<input type=\"hidden\" name=\"op\" value=\"pref-prefs\">";
2883 print "<p><input class=\"button\" type=\"submit\"
2884 value=\"Change theme\" name=\"subop\">";
2885 print "</form>";
2886 }
2887
2888 $result = db_query($link, "SELECT
2889 ttrss_user_prefs.pref_name,short_desc,help_text,value,type_name,
2890 section_name,def_value
2891 FROM ttrss_prefs,ttrss_prefs_types,ttrss_prefs_sections,ttrss_user_prefs
2892 WHERE type_id = ttrss_prefs_types.id AND
2893 section_id = ttrss_prefs_sections.id AND
2894 ttrss_user_prefs.pref_name = ttrss_prefs.pref_name AND
2895 owner_uid = ".$_SESSION["uid"]."
2896 ORDER BY section_id,short_desc");
2897
2898 print "<form action=\"backend.php\" method=\"POST\">";
2899
2900 $lnum = 0;
2901
2902 $active_section = "";
2903
2904 while ($line = db_fetch_assoc($result)) {
2905
2906 if ($active_section != $line["section_name"]) {
2907
2908 if ($active_section != "") {
2909 print "</table>";
2910 }
2911
2912 print "<p><table width=\"100%\" class=\"prefPrefsList\">";
2913
2914 $active_section = $line["section_name"];
2915
2916 print "<tr><td colspan=\"3\"><h3>$active_section</h3></td></tr>";
2917 // print "<tr class=\"title\">
2918 // <td width=\"25%\">Option</td><td>Value</td></tr>";
2919
2920 $lnum = 0;
2921 }
2922
2923 // $class = ($lnum % 2) ? "even" : "odd";
2924
2925 print "<tr>";
2926
2927 $type_name = $line["type_name"];
2928 $pref_name = $line["pref_name"];
2929 $value = $line["value"];
2930 $def_value = $line["def_value"];
2931 $help_text = $line["help_text"];
2932
2933 print "<td width=\"40%\" id=\"$pref_name\">" . $line["short_desc"];
2934
2935 if ($help_text) print "<div class=\"prefHelp\">$help_text</div>";
2936
2937 print "</td>";
2938
2939 print "<td>";
2940
2941 if ($type_name == "bool") {
2942 // print_select($pref_name, $value, array("true", "false"));
2943
2944 if ($value == "true") {
2945 $value = "Yes";
2946 } else {
2947 $value = "No";
2948 }
2949
2950 print_radio($pref_name, $value, array("Yes", "No"));
2951
2952 } else {
2953 print "<input class=\"editbox\" name=\"$pref_name\" value=\"$value\">";
2954 }
2955
2956 print "</td>";
2957
2958 print "</tr>";
2959
2960 $lnum++;
2961 }
2962
2963 print "</table>";
2964
2965 print "<input type=\"hidden\" name=\"op\" value=\"pref-prefs\">";
2966
2967 print "<p><input class=\"button\" type=\"submit\"
2968 name=\"subop\" value=\"Save configuration\">";
2969
2970 print "&nbsp;<input class=\"button\" type=\"submit\"
2971 name=\"subop\" value=\"Reset to defaults\"></p>";
2972
2973 print "</form>";
2974
2975 }
2976
2977 }
2978
2979 if ($op == "pref-users") {
2980
2981 $subop = $_GET["subop"];
2982
2983 if ($subop == "editSave") {
2984
2985 if (!WEB_DEMO_MODE) {
2986
2987 $login = db_escape_string($_GET["l"]);
2988 $uid = db_escape_string($_GET["id"]);
2989 $access_level = sprintf("%d", $_GET["al"]);
2990
2991 db_query($link, "UPDATE ttrss_users SET login = '$login', access_level = '$access_level' WHERE id = '$uid'");
2992
2993 }
2994 } else if ($subop == "remove") {
2995
2996 if (!WEB_DEMO_MODE && $_SESSION["access_level"] >= 10) {
2997
2998 $ids = split(",", db_escape_string($_GET["ids"]));
2999
3000 foreach ($ids as $id) {
3001 db_query($link, "DELETE FROM ttrss_users WHERE id = '$id' AND id != " . $_SESSION["uid"]);
3002
3003 }
3004 }
3005 } else if ($subop == "add") {
3006
3007 if (!WEB_DEMO_MODE && $_SESSION["access_level"] >= 10) {
3008
3009 $login = db_escape_string(trim($_GET["login"]));
3010 $tmp_user_pwd = make_password(8);
3011 $pwd_hash = 'SHA1:' . sha1($tmp_user_pwd);
3012
3013 db_query($link, "INSERT INTO ttrss_users (login,pwd_hash,access_level)
3014 VALUES ('$login', '$pwd_hash', 0)");
3015
3016
3017 $result = db_query($link, "SELECT id FROM ttrss_users WHERE
3018 login = '$login' AND pwd_hash = '$pwd_hash'");
3019
3020 if (db_num_rows($result) == 1) {
3021
3022 $new_uid = db_fetch_result($result, 0, "id");
3023
3024 print "<div class=\"notice\">Added user <b>".$_GET["login"].
3025 "</b> with password <b>$tmp_user_pwd</b>.</div>";
3026
3027 initialize_user($link, $new_uid);
3028
3029 } else {
3030
3031 print "<div class=\"warning\">Error while adding user <b>".
3032 $_GET["login"].".</b></div>";
3033
3034 }
3035 }
3036 } else if ($subop == "resetPass") {
3037
3038 if (!WEB_DEMO_MODE && $_SESSION["access_level"] >= 10) {
3039
3040 $uid = db_escape_string($_GET["id"]);
3041
3042 $result = db_query($link, "SELECT login FROM ttrss_users WHERE id = '$uid'");
3043
3044 $login = db_fetch_result($result, 0, "login");
3045 $tmp_user_pwd = make_password(8);
3046 $pwd_hash = 'SHA1:' . sha1($tmp_user_pwd);
3047
3048 db_query($link, "UPDATE ttrss_users SET pwd_hash = '$pwd_hash'
3049 WHERE id = '$uid'");
3050
3051 print "<div class=\"notice\">Changed password of
3052 user <b>$login</b> to <b>$tmp_user_pwd</b>.</div>";
3053
3054 }
3055 }
3056
3057 print "<div class=\"prefGenericAddBox\">
3058 <input id=\"uadd_box\" onchange=\"javascript:addUser()\" size=\"40\">&nbsp;";
3059
3060 print"<input type=\"submit\" class=\"button\"
3061 onclick=\"javascript:addUser()\" value=\"Add user\"></div>";
3062
3063 $result = db_query($link, "SELECT
3064 id,login,access_level,
3065 SUBSTRING(last_login,1,16) as last_login
3066 FROM
3067 ttrss_users
3068 ORDER by login");
3069
3070 print "<div id=\"infoBoxShadow\"><div id=\"infoBox\">PLACEHOLDER</div></div>";
3071
3072 print "<p><table width=\"100%\" cellspacing=\"0\"
3073 class=\"prefUserList\" id=\"prefUserList\">";
3074
3075 print "<tr><td class=\"selectPrompt\" colspan=\"8\">
3076 Select:
3077 <a href=\"javascript:selectTableRowsByIdPrefix('prefUserList',
3078 'UMRR-', 'UMCHK-', true)\">All</a>,
3079 <a href=\"javascript:selectTableRowsByIdPrefix('prefUserList',
3080 'UMRR-', 'UMCHK-', false)\">None</a>
3081 </td</tr>";
3082
3083 print "<tr class=\"title\">
3084 <td width=\"5%\">Select</td>
3085 <td width='30%'>Username</td>
3086 <td width='30%'>Access Level</td>
3087 <td width='30%'>Last login</td></tr>";
3088
3089 $lnum = 0;
3090
3091 while ($line = db_fetch_assoc($result)) {
3092
3093 $class = ($lnum % 2) ? "even" : "odd";
3094
3095 $uid = $line["id"];
3096 $edit_uid = $_GET["id"];
3097
3098 if ($uid == $_SESSION["uid"] || ($subop == "edit" && $uid != $edit_uid)) {
3099 $class .= "Grayed";
3100 $this_row_id = "";
3101 } else {
3102 $this_row_id = "id=\"UMRR-$uid\"";
3103 }
3104
3105 print "<tr class=\"$class\" $this_row_id>";
3106
3107 $line["login"] = htmlspecialchars($line["login"]);
3108
3109 $line["last_login"] = date(get_pref($link, 'SHORT_DATE_FORMAT'),
3110 strtotime($line["last_login"]));
3111
3112 if ($uid == $_SESSION["uid"]) {
3113
3114 print "<td><input disabled=\"true\" type=\"checkbox\"
3115 id=\"UMCHK-".$line["id"]."\"></td>";
3116
3117 print "<td>".$line["login"]."</td>";
3118 print "<td>".$line["access_level"]."</td>";
3119
3120 } else if (!$edit_uid || $subop != "edit") {
3121
3122 print "<td><input onclick='toggleSelectRow(this);'
3123 type=\"checkbox\" id=\"UMCHK-$uid\"></td>";
3124
3125 print "<td><a href=\"javascript:editUser($uid);\">" .
3126 $line["login"] . "</td>";
3127
3128 print "<td><a href=\"javascript:editUser($uid);\">" .
3129 $line["access_level"] . "</td>";
3130
3131 } else if ($uid != $edit_uid) {
3132
3133 print "<td><input disabled=\"true\" type=\"checkbox\"
3134 id=\"UMCHK-".$line["id"]."\"></td>";
3135
3136 print "<td>".$line["login"]."</td>";
3137 print "<td>".$line["access_level"]."</td>";
3138
3139 } else {
3140
3141 print "<td><input disabled=\"true\" type=\"checkbox\" checked></td>";
3142
3143 print "<td><input id=\"iedit_ulogin\" value=\"".$line["login"].
3144 "\"></td>";
3145
3146 print "<td><input id=\"iedit_ulevel\" value=\"".$line["access_level"].
3147 "\"></td>";
3148
3149 }
3150
3151 print "<td>".$line["last_login"]."</td>";
3152
3153 print "</tr>";
3154
3155 ++$lnum;
3156 }
3157
3158 print "</table>";
3159
3160 print "<p>";
3161
3162 if ($subop == "edit") {
3163 print "Edit label:
3164 <input type=\"submit\" class=\"button\"
3165 onclick=\"javascript:userEditCancel()\" value=\"Cancel\">
3166 <input type=\"submit\" class=\"button\"
3167 onclick=\"javascript:userEditSave()\" value=\"Save\">";
3168
3169 } else {
3170
3171 print "
3172 Selection:
3173 <input type=\"submit\" class=\"button\"
3174 onclick=\"javascript:selectedUserDetails()\" value=\"User details\">
3175 <input type=\"submit\" class=\"button\"
3176 onclick=\"javascript:editSelectedUser()\" value=\"Edit\">
3177 <input type=\"submit\" class=\"button\"
3178 onclick=\"javascript:removeSelectedUsers()\" value=\"Remove\">
3179 <input type=\"submit\" class=\"button\"
3180 onclick=\"javascript:resetSelectedUserPass()\" value=\"Reset password\">";
3181
3182 }
3183 }
3184
3185 if ($op == "user-details") {
3186
3187 if (WEB_DEMO_MODE || $_SESSION["access_level"] < 10) {
3188 return;
3189 }
3190
3191 /* print "<html><head>
3192 <title>Tiny Tiny RSS : User Details</title>
3193 <link rel=\"stylesheet\" href=\"tt-rss.css\" type=\"text/css\">
3194 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\">
3195 </head><body>"; */
3196
3197 $uid = sprintf("%d", $_GET["id"]);
3198
3199 print "<div class='infoBoxContents'>";
3200
3201 $result = db_query($link, "SELECT login,
3202 SUBSTRING(last_login,1,16) AS last_login,
3203 access_level,
3204 (SELECT COUNT(int_id) FROM ttrss_user_entries
3205 WHERE owner_uid = id) AS stored_articles
3206 FROM ttrss_users
3207 WHERE id = '$uid'");
3208
3209 if (db_num_rows($result) == 0) {
3210 print "<h1>User not found</h1>";
3211 return;
3212 }
3213
3214 print "<h1>User Details</h1>";
3215
3216 print "<table width='100%'>";
3217
3218 $login = db_fetch_result($result, 0, "login");
3219 $last_login = date(get_pref($link, 'LONG_DATE_FORMAT'),
3220 strtotime(db_fetch_result($result, 0, "last_login")));
3221 $access_level = db_fetch_result($result, 0, "access_level");
3222 $stored_articles = db_fetch_result($result, 0, "stored_articles");
3223
3224 print "<tr><td>Username</td><td>$login</td></tr>";
3225 print "<tr><td>Access level</td><td>$access_level</td></tr>";
3226 print "<tr><td>Last logged in</td><td>$last_login</td></tr>";
3227 print "<tr><td>Stored articles</td><td>$stored_articles</td></tr>";
3228
3229 $result = db_query($link, "SELECT COUNT(id) as num_feeds FROM ttrss_feeds
3230 WHERE owner_uid = '$uid'");
3231
3232 $num_feeds = db_fetch_result($result, 0, "num_feeds");
3233
3234 print "<tr><td>Subscribed feeds count</td><td>$num_feeds</td></tr>";
3235
3236 /* $result = db_query($link, "SELECT
3237 SUM(LENGTH(content)+LENGTH(title)+LENGTH(link)+LENGTH(guid)) AS db_size
3238 FROM ttrss_user_entries,ttrss_entries
3239 WHERE owner_uid = '$uid' AND ref_id = id");
3240
3241 $db_size = round(db_fetch_result($result, 0, "db_size") / 1024);
3242
3243 print "<tr><td>Approx. used DB size</td><td>$db_size KBytes</td></tr>"; */
3244
3245 print "</table>";
3246
3247 print "<h1>Subscribed feeds</h1>";
3248
3249 $result = db_query($link, "SELECT id,title,site_url FROM ttrss_feeds
3250 WHERE owner_uid = '$uid' ORDER BY title LIMIT 20");
3251
3252 print "<ul class=\"nomarks\">";
3253
3254 while ($line = db_fetch_assoc($result)) {
3255
3256 $icon_file = ICONS_URL."/".$line["id"].".ico";
3257
3258 if (file_exists($icon_file) && filesize($icon_file) > 0) {
3259 $feed_icon = "<img class=\"tinyFeedIcon\" src=\"$icon_file\">";
3260 } else {
3261 $feed_icon = "<img class=\"tinyFeedIcon\" src=\"images/blank_icon.gif\">";
3262 }
3263
3264 print "<li>$feed_icon&nbsp;<a href=\"".$line["site_url"]."\">".$line["title"]."</a></li>";
3265 }
3266
3267 if (db_num_rows($result) < $num_feeds) {
3268 // FIXME - add link to show ALL subscribed feeds here somewhere
3269 print "<li><img
3270 class=\"tinyFeedIcon\" src=\"images/blank_icon.gif\">&nbsp;...</li>";
3271 }
3272
3273 print "</ul>";
3274
3275 print "</div>";
3276
3277 print "<div align='center'>
3278 <input type='submit' class='button'
3279 onclick=\"closeInfoBox()\" value=\"Close this window\"></div>";
3280
3281 // print "</body></html>";
3282
3283 }
3284
3285 if ($op == "feed-details") {
3286
3287 $feed_id = $_GET["id"];
3288
3289 $result = db_query($link,
3290 "SELECT
3291 title,feed_url,
3292 SUBSTRING(last_updated,1,16) as last_updated,
3293 icon_url,site_url,
3294 (SELECT COUNT(int_id) FROM ttrss_user_entries
3295 WHERE feed_id = id) AS total,
3296 (SELECT COUNT(int_id) FROM ttrss_user_entries
3297 WHERE feed_id = id AND unread = true) AS unread,
3298 (SELECT COUNT(int_id) FROM ttrss_user_entries
3299 WHERE feed_id = id AND marked = true) AS marked
3300 FROM ttrss_feeds
3301 WHERE id = '$feed_id' AND owner_uid = ".$_SESSION["uid"]);
3302
3303 if (db_num_rows($result) == 0) return;
3304
3305 $title = db_fetch_result($result, 0, "title");
3306 $last_updated = date(get_pref($link, 'LONG_DATE_FORMAT'),
3307 strtotime(db_fetch_result($result, 0, "last_updated")));
3308 $feed_url = db_fetch_result($result, 0, "feed_url");
3309 $icon_url = db_fetch_result($result, 0, "icon_url");
3310 $total = db_fetch_result($result, 0, "total");
3311 $unread = db_fetch_result($result, 0, "unread");
3312 $marked = db_fetch_result($result, 0, "marked");
3313 $site_url = db_fetch_result($result, 0, "site_url");
3314
3315 $result = db_query($link, "SELECT COUNT(id) AS subscribed
3316 FROM ttrss_feeds WHERE feed_url = '$feed_url'");
3317
3318 $subscribed = db_fetch_result($result, 0, "subscribed");
3319
3320 print "<div class=\"infoBoxContents\">";
3321
3322 $icon_file = ICONS_DIR . "/$feed_id.ico";
3323
3324 if (file_exists($icon_file) && filesize($icon_file) > 0) {
3325 $feed_icon = "<img width=\"16\" height=\"16\"
3326 src=\"" . ICONS_URL . "/$feed_id.ico\">";
3327 } else {
3328 $feed_icon = "";
3329 }
3330
3331 print "<h1>$feed_icon $title</h1>";
3332
3333 print "<table width='100%'>";
3334
3335 if ($site_url) {
3336 print "<tr><td width='30%'>Link</td>
3337 <td><a href=\"$site_url\">$site_url</a>
3338 <a href=\"$feed_url\">(feed)</a></td>
3339 </td></tr>";
3340 } else {
3341 print "<tr><td width='30%'>Feed URL</td>
3342 <td><a href=\"$feed_url\">$feed_url</a></td></tr>";
3343 }
3344 print "<tr><td>Last updated</td><td>$last_updated</td></tr>";
3345 print "<tr><td>Total articles</td><td>$total</td></tr>";
3346 print "<tr><td>Unread articles</td><td>$unread</td></tr>";
3347 print "<tr><td>Starred articles</td><td>$marked</td></tr>";
3348 print "<tr><td>Subscribed users</td><td>$subscribed</td></tr>";
3349
3350 print "</table>";
3351
3352 $result = db_query($link, "SELECT title,
3353 SUBSTRING(updated,1,16) AS updated,unread
3354 FROM ttrss_entries,ttrss_user_entries
3355 WHERE ref_id = id AND feed_id = '$feed_id'
3356 ORDER BY date_entered DESC LIMIT 5");
3357
3358 if (db_num_rows($result) > 0) {
3359
3360 print "<h1>Latest headlines</h1>";
3361
3362 print "<ul class=\"nomarks\">";
3363
3364 while ($line = db_fetch_assoc($result)) {
3365 if ($line["unread"] == "t" || $line["unread"] == "1") {
3366 $line["title"] = "<b>" . $line["title"] . "</b>";
3367 }
3368 print "<li>" . $line["title"].
3369 "&nbsp;<span class=\"insensitive\">(" .
3370 date(get_pref($link, 'SHORT_DATE_FORMAT'),
3371 strtotime($line["updated"])).
3372 ")</span></li>";
3373 }
3374
3375 print "</ul>";
3376
3377 print "</div>";
3378
3379 print "<div align='center'>
3380 <input type='submit' class='button'
3381 onclick=\"closeInfoBox()\" value=\"Close this window\"></div>";
3382 }
3383 }
3384
3385 db_close($link);
3386 ?>
3387
3388 <!-- <?= sprintf("Backend execution time: %.4f seconds", getmicrotime() - $script_started) ?> -->
3389