4 define('DEFAULT_ERROR_LEVEL', E_ALL
);
6 define('DEFAULT_ERROR_LEVEL', E_ERROR | E_WARNING | E_PARSE
);
9 require_once 'config.php';
10 require_once 'db-prefs.php';
12 require_once 'magpierss/rss_utils.inc';
14 define('MAGPIE_OUTPUT_ENCODING', 'UTF-8');
16 function purge_feed($link, $feed_id, $purge_interval) {
18 if (DB_TYPE
== "pgsql") {
19 db_query($link, "DELETE FROM ttrss_user_entries WHERE
20 marked = false AND feed_id = '$feed_id' AND
21 (SELECT date_entered FROM ttrss_entries WHERE
22 id = ref_id) < NOW() - INTERVAL '$purge_interval days'");
24 db_query($link, "DELETE FROM ttrss_user_entries WHERE
25 marked = false AND feed_id = '$feed_id' AND
26 (SELECT date_entered FROM ttrss_entries WHERE
27 id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
31 function global_purge_old_posts($link, $do_output = false) {
33 $result = db_query($link,
34 "SELECT id,purge_interval,owner_uid FROM ttrss_feeds");
36 while ($line = db_fetch_assoc($result)) {
38 $feed_id = $line["id"];
39 $purge_interval = $line["purge_interval"];
40 $owner_uid = $line["owner_uid"];
42 if ($purge_interval == 0) {
44 $tmp_result = db_query($link,
45 "SELECT value FROM ttrss_user_prefs WHERE
46 pref_name = 'PURGE_OLD_DAYS' AND owner_uid = '$owner_uid'");
48 if (db_num_rows($tmp_result) != 0) {
49 $purge_interval = db_fetch_result($tmp_result, 0, "value");
54 print "<feed id='$feed_id' p_intl='$purge_interval'/>";
57 if ($purge_interval > 0) {
58 purge_feed($link, $feed_id, $purge_interval);
62 // purge orphaned posts in main content table
63 db_query($link, "DELETE FROM ttrss_entries WHERE
64 (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
68 function purge_old_posts($link) {
70 $user_id = $_SESSION["uid"];
72 $result = db_query($link, "SELECT id,purge_interval FROM ttrss_feeds
73 WHERE owner_uid = '$user_id'");
75 while ($line = db_fetch_assoc($result)) {
77 $feed_id = $line["id"];
78 $purge_interval = $line["purge_interval"];
80 if ($purge_interval == 0) $purge_interval = get_pref($link, 'PURGE_OLD_DAYS');
82 if ($purge_interval > 0) {
83 purge_feed($link, $feed_id, $purge_interval);
87 // purge orphaned posts in main content table
88 db_query($link, "DELETE FROM ttrss_entries WHERE
89 (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
92 function update_all_feeds($link, $fetch, $user_id = false, $force_daemon = false) {
94 if (WEB_DEMO_MODE
) return;
97 $user_id = $_SESSION["uid"];
98 purge_old_posts($link);
101 // db_query($link, "BEGIN");
103 $result = db_query($link, "SELECT feed_url,id,
104 SUBSTRING(last_updated,1,19) AS last_updated,
105 update_interval FROM ttrss_feeds WHERE owner_uid = '$user_id'
106 ORDER BY last_updated DESC");
108 while ($line = db_fetch_assoc($result)) {
109 $upd_intl = $line["update_interval"];
111 if (!$upd_intl ||
$upd_intl == 0) {
112 $upd_intl = get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $user_id);
115 if ($fetch ||
(!$line["last_updated"] ||
116 time() - strtotime($line["last_updated"]) > ($upd_intl * 60))) {
118 update_rss_feed($link, $line["feed_url"], $line["id"], $force_daemon);
122 // db_query($link, "COMMIT");
126 function check_feed_favicon($feed_url, $feed, $link) {
127 $feed_url = str_replace("http://", "", $feed_url);
128 $feed_url = preg_replace("/\/.*$/", "", $feed_url);
130 $icon_url = "http://$feed_url/favicon.ico";
131 $icon_file = ICONS_DIR
. "/$feed.ico";
133 if (!file_exists($icon_file)) {
136 $r = fopen($icon_url, "r");
137 error_reporting (DEFAULT_ERROR_LEVEL
);
140 $tmpfname = tempnam("/tmp", "ttrssicon");
142 $t = fopen($tmpfname, "w");
145 $buf = fread($r, 16384);
153 if (!rename($tmpfname, $icon_file)) {
157 chmod($icon_file, 0644);
159 error_reporting (DEFAULT_ERROR_LEVEL
);
165 function update_rss_feed($link, $feed_url, $feed, $ignore_daemon = false) {
167 if (WEB_DEMO_MODE
) return;
169 if (DAEMON_REFRESH_ONLY
&& !$_GET["daemon"] && !$ignore_daemon) {
173 $result = db_query($link, "SELECT update_interval,auth_login,auth_pass
174 FROM ttrss_feeds WHERE id = '$feed'");
176 $auth_login = db_fetch_result($result, 0, "auth_login");
177 $auth_pass = db_fetch_result($result, 0, "auth_pass");
179 $update_interval = db_fetch_result($result, 0, "update_interval");
181 if ($update_interval < 0) { return; }
183 $feed = db_escape_string($feed);
185 $fetch_url = $feed_url;
187 if ($auth_login && $auth_pass) {
188 $url_parts = array();
189 preg_match("/(^[^:]*):\/\/(.*)/", $fetch_url, $url_parts);
191 if ($url_parts[1] && $url_parts[2]) {
192 $fetch_url = $url_parts[1] . "://$auth_login:$auth_pass@" . $url_parts[2];
197 $rss = fetch_rss($fetch_url);
199 error_reporting (DEFAULT_ERROR_LEVEL
);
201 $feed = db_escape_string($feed);
205 db_query($link, "BEGIN");
207 $result = db_query($link, "SELECT title,icon_url,site_url,owner_uid
208 FROM ttrss_feeds WHERE id = '$feed'");
210 $registered_title = db_fetch_result($result, 0, "title");
211 $orig_icon_url = db_fetch_result($result, 0, "icon_url");
212 $orig_site_url = db_fetch_result($result, 0, "site_url");
214 $owner_uid = db_fetch_result($result, 0, "owner_uid");
216 if (get_pref($link, 'ENABLE_FEED_ICONS', $owner_uid)) {
217 check_feed_favicon($feed_url, $feed, $link);
220 if (!$registered_title ||
$registered_title == "[Unknown]") {
221 $feed_title = db_escape_string($rss->channel
["title"]);
222 db_query($link, "UPDATE ttrss_feeds SET
223 title = '$feed_title' WHERE id = '$feed'");
226 $site_url = $rss->channel
["link"];
227 // weird, weird Magpie
228 if (!$site_url) $site_url = db_escape_string($rss->channel
["link_"]);
230 if ($site_url && $orig_site_url != db_escape_string($site_url)) {
231 db_query($link, "UPDATE ttrss_feeds SET
232 site_url = '$site_url' WHERE id = '$feed'");
235 // print "I: " . $rss->channel["image"]["url"];
237 $icon_url = $rss->image
["url"];
239 if ($icon_url && !$orig_icon_url != db_escape_string($icon_url)) {
240 $icon_url = db_escape_string($icon_url);
241 db_query($link, "UPDATE ttrss_feeds SET icon_url = '$icon_url' WHERE id = '$feed'");
247 $result = db_query($link, "SELECT reg_exp,
248 ttrss_filter_types.name AS name,
249 ttrss_filter_actions.name AS action
250 FROM ttrss_filters,ttrss_filter_types,ttrss_filter_actions WHERE
251 owner_uid = $owner_uid AND
252 ttrss_filter_types.id = filter_type AND
253 ttrss_filter_actions.id = action_id AND
254 (feed_id IS NULL OR feed_id = '$feed')");
256 while ($line = db_fetch_assoc($result)) {
257 if (!$filters[$line["name"]]) $filters[$line["name"]] = array();
259 $filter["reg_exp"] = $line["reg_exp"];
260 $filter["action"] = $line["action"];
262 array_push($filters[$line["name"]], $filter);
265 $iterator = $rss->items
;
267 if (!$iterator) $iterator = $rss->entries
;
268 if (!$iterator) $iterator = $rss;
270 foreach ($iterator as $item) {
272 $entry_guid = $item["id"];
274 if (!$entry_guid) $entry_guid = $item["guid"];
275 if (!$entry_guid) $entry_guid = $item["link"];
277 if (!$entry_guid) continue;
279 $entry_timestamp = "";
281 $rss_2_date = $item['pubdate'];
282 $rss_1_date = $item['dc']['date'];
283 $atom_date = $item['issued'];
284 if (!$atom_date) $atom_date = $item['updated'];
286 if ($atom_date != "") $entry_timestamp = parse_w3cdtf($atom_date);
287 if ($rss_1_date != "") $entry_timestamp = parse_w3cdtf($rss_1_date);
288 if ($rss_2_date != "") $entry_timestamp = strtotime($rss_2_date);
290 if ($entry_timestamp == "") {
291 $entry_timestamp = time();
292 $no_orig_date = 'true';
294 $no_orig_date = 'false';
297 $entry_timestamp_fmt = strftime("%Y/%m/%d %H:%M:%S", $entry_timestamp);
299 $entry_title = $item["title"];
301 // strange Magpie workaround
302 $entry_link = $item["link_"];
303 if (!$entry_link) $entry_link = $item["link"];
305 if (!$entry_title) continue;
306 if (!$entry_link) continue;
308 $entry_content = $item["content:escaped"];
310 if (!$entry_content) $entry_content = $item["content:encoded"];
311 if (!$entry_content) $entry_content = $item["content"];
312 if (!$entry_content) $entry_content = $item["summary"];
313 if (!$entry_content) $entry_content = $item["description"];
315 // if (!$entry_content) continue;
318 if (is_array($entry_content)) {
319 $entry_content = $entry_content["encoded"];
320 if (!$entry_content) $entry_content = $entry_content["escaped"];
324 // print_r(htmlspecialchars($entry_content));
327 $entry_content_unescaped = $entry_content;
328 $content_hash = "SHA1:" . sha1(strip_tags($entry_content));
330 $entry_comments = $item["comments"];
332 $entry_guid = db_escape_string($entry_guid);
334 $result = db_query($link, "SELECT id FROM ttrss_entries
335 WHERE guid = '$entry_guid'");
337 $entry_content = db_escape_string($entry_content);
338 $entry_title = db_escape_string($entry_title);
339 $entry_link = db_escape_string($entry_link);
340 $entry_comments = db_escape_string($entry_comments);
342 $num_comments = db_escape_string($item["slash"]["comments"]);
344 if (!$num_comments) $num_comments = 0;
346 if (db_num_rows($result) == 0) {
348 // base post entry does not exist, create it
350 $result = db_query($link,
351 "INSERT INTO ttrss_entries
366 '$entry_timestamp_fmt',
374 // we keep encountering the entry in feeds, so we need to
375 // update date_entered column so that we don't get horrible
376 // dupes when the entry gets purged and reinserted again e.g.
377 // in the case of SLOW SLOW OMG SLOW updating feeds
379 $base_entry_id = db_fetch_result($result, 0, "id");
381 db_query($link, "UPDATE ttrss_entries SET date_entered = NOW()
382 WHERE id = '$base_entry_id'");
385 // now it should exist, if not - bad luck then
387 $result = db_query($link, "SELECT
388 id,content_hash,no_orig_date,title,
389 substring(date_entered,1,19) as date_entered,
390 substring(updated,1,19) as updated,
394 WHERE guid = '$entry_guid'");
396 if (db_num_rows($result) == 1) {
398 // this will be used below in update handler
399 $orig_content_hash = db_fetch_result($result, 0, "content_hash");
400 $orig_title = db_fetch_result($result, 0, "title");
401 $orig_num_comments = db_fetch_result($result, 0, "num_comments");
402 $orig_date_entered = strtotime(db_fetch_result($result,
405 $ref_id = db_fetch_result($result, 0, "id");
407 // check for user post link to main table
409 // do we allow duplicate posts with same GUID in different feeds?
410 if (get_pref($link, "ALLOW_DUPLICATE_POSTS", $owner_uid)) {
411 $dupcheck_qpart = "AND feed_id = '$feed'";
413 $dupcheck_qpart = "";
416 // error_reporting(0);
418 $filter_name = get_filter_name($entry_title, $entry_content,
419 $entry_link, $filters);
421 if ($filter_name == "filter") {
425 // error_reporting (DEFAULT_ERROR_LEVEL);
427 $result = db_query($link,
428 "SELECT ref_id FROM ttrss_user_entries WHERE
429 ref_id = '$ref_id' AND owner_uid = '$owner_uid'
432 // okay it doesn't exist - create user entry
433 if (db_num_rows($result) == 0) {
435 if ($filter_name != 'catchup') {
437 $last_read_qpart = 'NULL';
440 $last_read_qpart = 'NOW()';
443 $result = db_query($link,
444 "INSERT INTO ttrss_user_entries
445 (ref_id, owner_uid, feed_id, unread, last_read)
446 VALUES ('$ref_id', '$owner_uid', '$feed', $unread,
450 $post_needs_update = false;
452 if (get_pref($link, "UPDATE_POST_ON_CHECKSUM_CHANGE", $owner_uid) &&
453 ($content_hash != $orig_content_hash)) {
454 $post_needs_update = true;
457 if ($orig_title != $entry_title) {
458 $post_needs_update = true;
461 if ($orig_num_comments != $num_comments) {
462 $post_needs_update = true;
465 // this doesn't seem to be very reliable
467 // if ($orig_timestamp != $entry_timestamp && !$orig_no_orig_date) {
468 // $post_needs_update = true;
471 // if post needs update, update it and mark all user entries
472 // linking to this post as updated
473 if ($post_needs_update) {
475 // print "<!-- post $orig_title needs update : $post_needs_update -->";
477 db_query($link, "UPDATE ttrss_entries
478 SET title = '$entry_title', content = '$entry_content',
479 num_comments = '$num_comments'
480 WHERE id = '$ref_id'");
482 db_query($link, "UPDATE ttrss_user_entries
483 SET last_read = null WHERE ref_id = '$ref_id' AND unread = false");
489 // <a href="http://technorati.com/tag/Xorg" rel="tag">Xorg</a>, //
493 preg_match_all("/<a.*?href=.http:\/\/.*?technorati.com\/tag\/([^\"\'>]+)/i",
494 $entry_content_unescaped, $entry_tags);
496 // print "<br>$entry_title : $entry_content_unescaped<br>";
497 // print_r($entry_tags);
500 $entry_tags = $entry_tags[1];
502 if (count($entry_tags) > 0) {
504 $result = db_query($link, "SELECT id,int_id
505 FROM ttrss_entries,ttrss_user_entries
506 WHERE guid = '$entry_guid'
507 AND feed_id = '$feed' AND ref_id = id
508 AND owner_uid = '$owner_uid'");
510 if (db_num_rows($result) == 1) {
512 $entry_id = db_fetch_result($result, 0, "id");
513 $entry_int_id = db_fetch_result($result, 0, "int_id");
515 foreach ($entry_tags as $tag) {
516 $tag = db_escape_string(strtolower($tag));
518 $tag = str_replace("+", " ", $tag);
519 $tag = str_replace("technorati tag: ", "", $tag);
521 $result = db_query($link, "SELECT id FROM ttrss_tags
522 WHERE tag_name = '$tag' AND post_int_id = '$entry_int_id' AND
523 owner_uid = '$owner_uid' LIMIT 1");
525 // print db_fetch_result($result, 0, "id");
527 if ($result && db_num_rows($result) == 0) {
529 // print "tagging $entry_id as $tag<br>";
531 db_query($link, "INSERT INTO ttrss_tags
532 (owner_uid,tag_name,post_int_id)
533 VALUES ('$owner_uid','$tag', '$entry_int_id')");
540 db_query($link, "UPDATE ttrss_feeds
541 SET last_updated = NOW(), last_error = '' WHERE id = '$feed'");
543 db_query($link, "COMMIT");
546 $error_msg = db_escape_string(magpie_error());
548 "UPDATE ttrss_feeds SET last_error = '$error_msg',
549 last_updated = NOW() WHERE id = '$feed'");
554 function print_select($id, $default, $values, $attributes = "") {
555 print "<select id=\"$id\" $attributes>";
556 foreach ($values as $v) {
562 print "<option$sel>$v</option>";
567 function get_filter_name($title, $content, $link, $filters) {
569 if ($filters["title"]) {
570 foreach ($filters["title"] as $filter) {
571 $reg_exp = $filter["reg_exp"];
572 if (preg_match("/$reg_exp/i", $title)) {
573 return $filter["action"];
578 if ($filters["content"]) {
579 foreach ($filters["content"] as $filter) {
580 $reg_exp = $filter["reg_exp"];
581 if (preg_match("/$reg_exp/i", $content)) {
582 return $filter["action"];
587 if ($filters["both"]) {
588 foreach ($filters["both"] as $filter) {
589 $reg_exp = $filter["reg_exp"];
590 if (preg_match("/$reg_exp/i", $title) ||
591 preg_match("/$reg_exp/i", $content)) {
592 return $filter["action"];
597 if ($filters["link"]) {
598 $reg_exp = $filter["reg_exp"];
599 foreach ($filters["link"] as $filter) {
600 $reg_exp = $filter["reg_exp"];
601 if (preg_match("/$reg_exp/i", $link)) {
602 return $filter["action"];
610 function printFeedEntry($feed_id, $class, $feed_title, $unread, $icon_file, $link) {
612 if (file_exists($icon_file) && filesize($icon_file) > 0) {
613 $feed_icon = "<img id=\"FIMG-$feed_id\" src=\"$icon_file\">";
615 $feed_icon = "<img id=\"FIMG-$feed_id\" src=\"images/blank_icon.gif\">";
618 $feed = "<a href=\"javascript:viewfeed('$feed_id', 0);\">$feed_title</a>";
620 print "<li id=\"FEEDR-$feed_id\" class=\"$class\">";
621 if (get_pref($link, 'ENABLE_FEED_ICONS')) {
625 print "<span id=\"FEEDN-$feed_id\">$feed</span>";
630 $fctr_class = "class=\"invisible\"";
633 print "<span $fctr_class id=\"FEEDCTR-$feed_id\">
634 (<span id=\"FEEDU-$feed_id\">$unread</span>)</span>";
640 function getmicrotime() {
641 list($usec, $sec) = explode(" ",microtime());
642 return ((float)$usec +
(float)$sec);
645 function print_radio($id, $default, $values, $attributes = "") {
646 foreach ($values as $v) {
654 $sel .= " value=\"1\"";
656 $sel .= " value=\"0\"";
659 print "<input type=\"radio\" $sel $attributes name=\"$id\"> $v ";
664 function initialize_user_prefs($link, $uid) {
666 $uid = db_escape_string($uid);
668 db_query($link, "BEGIN");
670 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
672 $u_result = db_query($link, "SELECT pref_name
673 FROM ttrss_user_prefs WHERE owner_uid = '$uid'");
675 $active_prefs = array();
677 while ($line = db_fetch_assoc($u_result)) {
678 array_push($active_prefs, $line["pref_name"]);
681 while ($line = db_fetch_assoc($result)) {
682 if (array_search($line["pref_name"], $active_prefs) === FALSE) {
683 // print "adding " . $line["pref_name"] . "<br>";
685 db_query($link, "INSERT INTO ttrss_user_prefs
686 (owner_uid,pref_name,value) VALUES
687 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
692 db_query($link, "COMMIT");
696 function authenticate_user($link, $login, $password) {
698 $pwd_hash = 'SHA1:' . sha1($password);
700 $result = db_query($link, "SELECT id,login,access_level FROM ttrss_users WHERE
701 login = '$login' AND ((pwd_hash = '$password' AND '$password' = 'password')
702 OR pwd_hash = '$pwd_hash')");
704 if (db_num_rows($result) == 1) {
705 $_SESSION["uid"] = db_fetch_result($result, 0, "id");
706 $_SESSION["name"] = db_fetch_result($result, 0, "login");
707 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
709 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
712 $user_theme = get_user_theme_path($link);
714 $_SESSION["theme"] = $user_theme;
716 initialize_user_prefs($link, $_SESSION["uid"]);
725 function make_password($length = 8) {
728 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
732 while ($i < $length) {
733 $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
735 if (!strstr($password, $char)) {
743 // this is called after user is created to initialize default feeds, labels
746 // user preferences are checked on every login, not here
748 function initialize_user($link, $uid) {
750 db_query($link, "insert into ttrss_labels (owner_uid,sql_exp,description)
751 values ('$uid','unread = true', 'Unread articles')");
753 db_query($link, "insert into ttrss_labels (owner_uid,sql_exp,description)
754 values ('$uid','last_read is null and unread = false', 'Updated articles')");
756 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
757 values ('$uid', 'Tiny Tiny RSS: New Releases',
758 'http://tt-rss.spb.ru/releases.rss')");
762 function logout_user() {
766 function get_script_urlpath() {
767 return preg_replace('/\/[^\/]*$/', "", $_SERVER["REQUEST_URI"]);
770 function get_login_redirect() {
771 $server = $_SERVER["SERVER_NAME"];
773 if (ENABLE_LOGIN_SSL
) {
779 $url_path = get_script_urlpath();
781 $redirect_uri = "$protocol://$server$url_path/login.php";
783 return $redirect_uri;
786 function login_sequence($link) {
787 if (!SINGLE_USER_MODE
) {
789 if (!USE_HTTP_AUTH
) {
790 if (!$_SESSION["uid"]) {
791 $redirect_uri = get_login_redirect();
792 $return_to = preg_replace('/.*?\//', '', $_SERVER["REQUEST_URI"]);
793 header("Location: $redirect_uri?rt=$return_to");
797 if (!$_SESSION["uid"]) {
798 if (!$_SERVER["PHP_AUTH_USER"]) {
800 header('WWW-Authenticate: Basic realm="Tiny Tiny RSS"');
801 header('HTTP/1.0 401 Unauthorized');
805 $auth_result = authenticate_user($link,
806 $_SERVER["PHP_AUTH_USER"], $_SERVER["PHP_AUTH_PW"]);
809 header('WWW-Authenticate: Basic realm="Tiny Tiny RSS"');
810 header('HTTP/1.0 401 Unauthorized');
817 $_SESSION["uid"] = 1;
818 $_SESSION["name"] = "admin";
819 initialize_user_prefs($link, 1);
823 function truncate_string($str, $max_len) {
824 if (strlen($str) > $max_len) {
825 return substr($str, 0, $max_len) . "...";
831 function get_user_theme_path($link) {
832 $result = db_query($link, "SELECT theme_path
834 ttrss_themes,ttrss_users
835 WHERE ttrss_themes.id = theme_id AND ttrss_users.id = " . $_SESSION["uid"]);
836 if (db_num_rows($result) != 0) {
837 return db_fetch_result($result, 0, "theme_path");
843 function smart_date_time($timestamp) {
844 if (date("Y.m.d", $timestamp) == date("Y.m.d")) {
845 return date("G:i", $timestamp);
846 } else if (date("Y", $timestamp) == date("Y")) {
847 return date("M d, G:i", $timestamp);
849 return date("Y/m/d G:i");
853 function smart_date($timestamp) {
854 if (date("Y.m.d", $timestamp) == date("Y.m.d")) {
856 } else if (date("Y", $timestamp) == date("Y")) {
857 return date("D m", $timestamp);
859 return date("Y/m/d");
863 function sql_bool_to_string($s) {
864 if ($s == "t" ||
$s == "1") {
871 function toggleEvenOdd($a) {
878 function sanity_check($link) {
881 $result = db_query($link, "SELECT schema_version FROM ttrss_version");
882 $schema_version = db_fetch_result($result, 0, "schema_version");
884 if ($schema_version != SCHEMA_VERSION
) {
888 if ($error_code != 0) {
889 print "<error error-code='$error_code'/>";