]> git.wh0rd.org - tt-rss.git/blobdiff - functions.php
optional login form/http basic auth support
[tt-rss.git] / functions.php
index 2176b8b7731e8243c9debc6e81f7c89f7077fb3c..67575cbb24f72da990b1efdafaa081f952efd5da 100644 (file)
@@ -1,41 +1,71 @@
 <?
+       session_start();
+
        require_once 'config.php';
+       require_once 'db-prefs.php';
+
+//     $_SESSION["uid"] = PLACEHOLDER_UID; // FIXME: placeholder
+//     $_SESSION["name"] = PLACEHOLDER_NAME;
 
        define('MAGPIE_OUTPUT_ENCODING', 'UTF-8');
 
        function purge_old_posts($link) {
-               if (PURGE_OLD_DAYS > 0) {
 
-                       if (DB_TYPE == "pgsql") {
-                               $result = db_query($link, "DELETE FROM ttrss_entries WHERE
-                                       marked = false AND 
-                                       date_entered < NOW() - INTERVAL '".PURGE_OLD_DAYS." days'");
-                       } else {
-                               $result = db_query($link, "DELETE FROM ttrss_entries WHERE
-                                       marked = false AND 
-                                       date_entered < DATE_SUB(NOW(), INTERVAL ".PURGE_OLD_DAYS." DAY)");
+               $user_id = $_SESSION["uid"];
+       
+               $result = db_query($link, "SELECT id,purge_interval FROM ttrss_feeds 
+                       WHERE owner_uid = '$user_id'");
+
+               while ($line = db_fetch_assoc($result)) {
+
+                       $feed_id = $line["id"];
+                       $purge_interval = $line["purge_interval"];
+
+                       if ($purge_interval == 0) $purge_interval = get_pref($link, 'PURGE_OLD_DAYS');
+
+                       if ($purge_interval > 0) {
+
+                               if (DB_TYPE == "pgsql") {
+                                       db_query($link, "DELETE FROM ttrss_entries WHERE
+                                               marked = false AND feed_id = '$feed_id' AND
+                                               date_entered < NOW() - INTERVAL '$purge_interval days'");
+                               } else {
+                                       db_query($link, "DELETE FROM ttrss_entries WHERE
+                                               marked = false AND feed_id = '$feed_id' AND
+                                               date_entered < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
+                               }
                        }
-               }
+               }       
        }
 
        function update_all_feeds($link, $fetch) {
 
                if (WEB_DEMO_MODE) return;
 
+               if (get_pref($link, 'DAEMON_REFRESH_ONLY')) {
+                       if (!$_GET["daemon"]) {
+                               return;
+                       }
+               }
+
                db_query($link, "BEGIN");
 
+               $user_id = $_SESSION["uid"];
+
                $result = db_query($link, "SELECT feed_url,id,
                        substring(last_updated,1,19) as last_updated,
-                       update_interval FROM ttrss_feeds");
+                       update_interval FROM ttrss_feeds WHERE owner_uid = '$user_id'");
 
                while ($line = db_fetch_assoc($result)) {
                        $upd_intl = $line["update_interval"];
 
-                       if (!$upd_intl) $upd_intl = MIN_UPDATE_INTERVAL;
+                       if (!$upd_intl || $upd_intl == 0) {
+                               $upd_intl = get_pref($link, 'DEFAULT_UPDATE_INTERVAL');
+                       }
 
                        if (!$line["last_updated"] || 
                                time() - strtotime($line["last_updated"]) > ($upd_intl * 60)) {
-                       
+
                                update_rss_feed($link, $line["feed_url"], $line["id"]);
                        }
                }
 
        }
 
-       function check_feed_favicon($feed_url, $feed) {
+       function check_feed_favicon($feed_url, $feed, $link) {
                $feed_url = str_replace("http://", "", $feed_url);
                $feed_url = preg_replace("/\/.*$/", "", $feed_url);
                
                $icon_url = "http://$feed_url/favicon.ico";
-               $icon_file = ICONS_DIR . "/$feed.ico";
+               $icon_file = get_pref($link, 'ICONS_DIR') . "/$feed.ico";
 
                if (!file_exists($icon_file)) {
                                
 
                if (WEB_DEMO_MODE) return;
 
+               $feed = db_escape_string($feed);
+
                error_reporting(0);
                $rss = fetch_rss($feed_url);
+
                error_reporting (E_ERROR | E_WARNING | E_PARSE);
 
                db_query($link, "BEGIN");
 
                $feed = db_escape_string($feed);
-       
+
                if ($rss) {
 
-                       if (ENABLE_FEED_ICONS) {        
-                               check_feed_favicon($feed_url, $feed);
+                       if (get_pref($link, 'ENABLE_FEED_ICONS')) {     
+                               check_feed_favicon($feed_url, $feed, $link);
                        }
                
                        $result = db_query($link, "SELECT title,icon_url FROM ttrss_feeds WHERE id = '$feed'");
                        $result = db_query($link, "SELECT reg_exp,
                                (SELECT name FROM ttrss_filter_types
                                        WHERE id = filter_type) as name
-                               FROM ttrss_filters");
+                               FROM ttrss_filters WHERE owner_uid = ".$_SESSION["uid"]);
 
                        while ($line = db_fetch_assoc($result)) {
                                if (!$filters[$line["name"]]) $filters[$line["name"]] = array();
                                        FROM
                                                ttrss_entries 
                                        WHERE
-                                               guid = '$entry_guid'");
+                                               guid = '$entry_guid' AND owner_uid = " . $_SESSION["uid"]);
 
 //                             print db_num_rows($result) . "$entry_guid<br/>";
 
                                                        feed_id, 
                                                        comments,                                                       
                                                        no_orig_date,
-                                                       date_entered) 
+                                                       date_entered,
+                                                       owner_uid) 
                                                VALUES
                                                        ('$entry_title', 
                                                        '$entry_guid', 
                                                        '$feed', 
                                                        '$entry_comments',
                                                        $no_orig_date,
-                                                       NOW())";
+                                                       NOW(),".$_SESSION["uid"].")";
 
                                        $result = db_query($link, $query);
 
                                        if ($orig_content_hash != $content_hash) {
 //                                             print "$orig_content_hash :: $content_hash<br>";
 
-                                               if (UPDATE_POST_ON_CHECKSUM_CHANGE) {
+                                               if (get_pref($link, 'UPDATE_POST_ON_CHECKSUM_CHANGE')) {
                                                        $last_read_qpart = 'last_read = null,';
                                                }
                                                $entry_is_modified = true;                                              
                                                $tag = db_escape_string(strtolower($tag));
 
                                                $result = db_query($link, "SELECT id FROM ttrss_tags            
-                                                       WHERE tag_name = '$tag' AND post_id = '$entry_id' LIMIT 1");
+                                                       WHERE tag_name = '$tag' AND post_id = '$entry_id' AND owner_uid = ".$_SESSION["uid"]." LIMIT 1");
 
                                                if ($result && db_num_rows($result) == 0) {
                                                        
 //                                                     print "tagging $entry_id as $tag<br>";
 
-                                                       db_query($link, "INSERT INTO ttrss_tags (tag_name,post_id)
-                                                               VALUES ('$tag', '$entry_id')");
+                                                       db_query($link, "INSERT INTO ttrss_tags (owner_uid,tag_name,post_id)
+                                                               VALUES ('".$_SESSION["uid"]."','$tag', '$entry_id')");
                                                }                                                       
                                        }
                                }
                        }
 
-                       db_query($link, "UPDATE ttrss_feeds SET last_updated = NOW()");
+                       db_query($link, "UPDATE ttrss_feeds 
+                               SET last_updated = NOW(), last_error = '' WHERE id = '$feed'");
 
+               } else {
+                       $error_msg = db_escape_string(magpie_error());
+                       db_query($link, 
+                               "UPDATE ttrss_feeds SET last_error = '$error_msg', 
+                                       last_updated = NOW() WHERE id = '$feed'");
                }
 
                db_query($link, "COMMIT");
                return false;
        }
 
-       function printFeedEntry($feed_id, $class, $feed_title, $unread, $icon_file) {
+       function printFeedEntry($feed_id, $class, $feed_title, $unread, $icon_file, $link) {
 
                if (file_exists($icon_file) && filesize($icon_file) > 0) {
                                $feed_icon = "<img src=\"$icon_file\">";
                $feed = "<a href=\"javascript:viewfeed('$feed_id', 0);\">$feed_title</a>";
 
                print "<li id=\"FEEDR-$feed_id\" class=\"$class\">";
-               if (ENABLE_FEED_ICONS) {
+               if (get_pref($link, 'ENABLE_FEED_ICONS')) {
                        print "$feed_icon";
                }
 
                return ((float)$usec + (float)$sec);
        }
 
+       function print_radio($id, $default, $values, $attributes = "") {
+               foreach ($values as $v) {
+               
+                       if ($v == $default)
+                               $sel = "checked";
+                        else
+                               $sel = "";
+
+                       if ($v == "Yes") {
+                               $sel .= " value=\"1\"";
+                       } else {
+                               $sel .= " value=\"0\"";
+                       }
+                       
+                       print "<input type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
+
+               }
+       }
+
+       function initialize_user_prefs($link, $uid) {
+
+               $uid = db_escape_string($uid);
+
+               db_query($link, "BEGIN");
+
+               $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
+               
+               $u_result = db_query($link, "SELECT pref_name 
+                       FROM ttrss_user_prefs WHERE owner_uid = '$uid'");
+
+               $active_prefs = array();
+
+               while ($line = db_fetch_assoc($u_result)) {
+                       array_push($active_prefs, $line["pref_name"]);                  
+               }
+
+               while ($line = db_fetch_assoc($result)) {
+                       if (array_search($line["pref_name"], $active_prefs) === FALSE) {
+//                             print "adding " . $line["pref_name"] . "<br>";
+
+                               db_query($link, "INSERT INTO ttrss_user_prefs
+                                       (owner_uid,pref_name,value) VALUES 
+                                       ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
+
+                       }
+               }
+
+               db_query($link, "COMMIT");
+
+       }
+       
+       function authenticate_user($link, $login, $password) {
+
+               $pwd_hash = 'SHA1:' . sha1($password);
+
+               $result = db_query($link, "SELECT id,login FROM ttrss_users WHERE 
+                       login = '$login' AND (pwd_hash = '$password' OR pwd_hash = '$pwd_hash')");
+
+               if (db_num_rows($result) == 1) {
+                       $_SESSION["uid"] = db_fetch_result($result, 0, "id");
+                       $_SESSION["name"] = db_fetch_result($result, 0, "login");
+
+                       return true;
+               }
+
+               return false;
+
+       }
+
+       function http_authenticate_user($link) {
+
+               if (!$_SERVER['PHP_AUTH_USER']) {
+
+                       header('WWW-Authenticate: Basic realm="Tiny Tiny RSS"');
+                       header('HTTP/1.0 401 Unauthorized');
+                       print "<h1>401 Unathorized</h1>";
+                       exit;
+                       
+               } else {
+
+                       $login = db_escape_string($_SERVER['PHP_AUTH_USER']);
+                       $password = db_escape_string($_SERVER['PHP_AUTH_PW']);
+
+                       return authenticate_user($link, $login, $password);
+               }               
+       }
+
 ?>