]> git.wh0rd.org Git - tt-rss.git/blob - include/functions.php
properly persist include_children
[tt-rss.git] / include / functions.php
1 <?php
2         define('EXPECTED_CONFIG_VERSION', 25);
3         define('SCHEMA_VERSION', 94);
4
5         mb_internal_encoding("UTF-8");
6         date_default_timezone_set('UTC');
7         if (defined('E_DEPRECATED')) {
8                 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
9         } else {
10                 error_reporting(E_ALL & ~E_NOTICE);
11         }
12
13         require_once 'config.php';
14
15         if (DB_TYPE == "pgsql") {
16                 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
17         } else {
18                 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
19         }
20
21         define('THEME_VERSION_REQUIRED', 1.1);
22
23         /**
24          * Return available translations names.
25          *
26          * @access public
27          * @return array A array of available translations.
28          */
29         function get_translations() {
30                 $tr = array(
31                                         "auto"  => "Detect automatically",
32                                         "ca_CA" => "Català",
33                                         "en_US" => "English",
34                                         "es_ES" => "Español",
35                                         "de_DE" => "Deutsch",
36                                         "fr_FR" => "Français",
37                                         "hu_HU" => "Magyar (Hungarian)",
38                                         "it_IT" => "Italiano",
39                                         "ja_JP" => "日本語 (Japanese)",
40                                         "nb_NO" => "Norwegian bokmål",
41                                         "ru_RU" => "Русский",
42                                         "pt_BR" => "Portuguese/Brazil",
43                                         "zh_CN" => "Simplified Chinese");
44
45                 return $tr;
46         }
47
48         require_once "lib/accept-to-gettext.php";
49         require_once "lib/gettext/gettext.inc";
50
51         function startup_gettext() {
52
53                 # Get locale from Accept-Language header
54                 $lang = al2gt(array_keys(get_translations()), "text/html");
55
56                 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
57                         $lang = _TRANSLATION_OVERRIDE_DEFAULT;
58                 }
59
60                 if ($_COOKIE["ttrss_lang"] && $_COOKIE["ttrss_lang"] != "auto") {
61                         $lang = $_COOKIE["ttrss_lang"];
62                 }
63
64                 /* In login action of mobile version */
65                 if ($_POST["language"] && defined('MOBILE_VERSION')) {
66                         $lang = $_POST["language"];
67                         $_COOKIE["ttrss_lang"] = $lang;
68                 }
69
70                 if ($lang) {
71                         if (defined('LC_MESSAGES')) {
72                                 _setlocale(LC_MESSAGES, $lang);
73                         } else if (defined('LC_ALL')) {
74                                 _setlocale(LC_ALL, $lang);
75                         }
76
77                         if (defined('MOBILE_VERSION')) {
78                                 _bindtextdomain("messages", "../locale");
79                         } else {
80                                 _bindtextdomain("messages", "locale");
81                         }
82
83                         _textdomain("messages");
84                         _bind_textdomain_codeset("messages", "UTF-8");
85                 }
86         }
87
88         startup_gettext();
89
90         require_once 'db-prefs.php';
91         require_once 'version.php';
92
93         define('MAGPIE_OUTPUT_ENCODING', 'UTF-8');
94
95         define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
96         define('MAGPIE_USER_AGENT', SELF_USER_AGENT);
97
98         ini_set('user_agent', SELF_USER_AGENT);
99
100         require_once 'lib/pubsubhubbub/publisher.php';
101
102         $purifier = false;
103
104         $tz_offset = -1;
105         $utc_tz = new DateTimeZone('UTC');
106         $schema_version = false;
107
108         /**
109          * Print a timestamped debug message.
110          *
111          * @param string $msg The debug message.
112          * @return void
113          */
114         function _debug($msg) {
115                 if (defined('QUIET') && QUIET) {
116                         return;
117                 }
118                 $ts = strftime("%H:%M:%S", time());
119                 if (function_exists('posix_getpid')) {
120                         $ts = "$ts/" . posix_getpid();
121                 }
122                 print "[$ts] $msg\n";
123         } // function _debug
124
125         /**
126          * Purge a feed old posts.
127          *
128          * @param mixed $link A database connection.
129          * @param mixed $feed_id The id of the purged feed.
130          * @param mixed $purge_interval Olderness of purged posts.
131          * @param boolean $debug Set to True to enable the debug. False by default.
132          * @access public
133          * @return void
134          */
135         function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
136
137                 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
138
139                 $rows = -1;
140
141                 $result = db_query($link,
142                         "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
143
144                 $owner_uid = false;
145
146                 if (db_num_rows($result) == 1) {
147                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
148                 }
149
150                 if ($purge_interval == -1 || !$purge_interval) {
151                         if ($owner_uid) {
152                                 ccache_update($link, $feed_id, $owner_uid);
153                         }
154                         return;
155                 }
156
157                 if (!$owner_uid) return;
158
159                 if (FORCE_ARTICLE_PURGE == 0) {
160                         $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
161                                 $owner_uid, false);
162                 } else {
163                         $purge_unread = true;
164                         $purge_interval = FORCE_ARTICLE_PURGE;
165                 }
166
167                 if (!$purge_unread) $query_limit = " unread = false AND ";
168
169                 if (DB_TYPE == "pgsql") {
170                         $pg_version = get_pgsql_version($link);
171
172                         if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
173
174                                 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
175                                         ttrss_entries.id = ref_id AND
176                                         marked = false AND
177                                         feed_id = '$feed_id' AND
178                                         $query_limit
179                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
180
181                         } else {
182
183                                 $result = db_query($link, "DELETE FROM ttrss_user_entries
184                                         USING ttrss_entries
185                                         WHERE ttrss_entries.id = ref_id AND
186                                         marked = false AND
187                                         feed_id = '$feed_id' AND
188                                         $query_limit
189                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
190                         }
191
192                         $rows = pg_affected_rows($result);
193
194                 } else {
195
196 /*                      $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
197                                 marked = false AND feed_id = '$feed_id' AND
198                                 (SELECT date_updated FROM ttrss_entries WHERE
199                                         id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
200
201                         $result = db_query($link, "DELETE FROM ttrss_user_entries
202                                 USING ttrss_user_entries, ttrss_entries
203                                 WHERE ttrss_entries.id = ref_id AND
204                                 marked = false AND
205                                 feed_id = '$feed_id' AND
206                                 $query_limit
207                                 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
208
209                         $rows = mysql_affected_rows($link);
210
211                 }
212
213                 ccache_update($link, $feed_id, $owner_uid);
214
215                 if ($debug) {
216                         _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
217                 }
218         } // function purge_feed
219
220         function feed_purge_interval($link, $feed_id) {
221
222                 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
223                         WHERE id = '$feed_id'");
224
225                 if (db_num_rows($result) == 1) {
226                         $purge_interval = db_fetch_result($result, 0, "purge_interval");
227                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
228
229                         if ($purge_interval == 0) $purge_interval = get_pref($link,
230                                 'PURGE_OLD_DAYS', $owner_uid);
231
232                         return $purge_interval;
233
234                 } else {
235                         return -1;
236                 }
237         }
238
239         function purge_orphans($link, $do_output = false) {
240
241                 // purge orphaned posts in main content table
242                 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
243                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
244
245                 if ($do_output) {
246                         $rows = db_affected_rows($link, $result);
247                         _debug("Purged $rows orphaned posts.");
248                 }
249         }
250
251         function get_feed_update_interval($link, $feed_id) {
252                 $result = db_query($link, "SELECT owner_uid, update_interval FROM
253                         ttrss_feeds WHERE id = '$feed_id'");
254
255                 if (db_num_rows($result) == 1) {
256                         $update_interval = db_fetch_result($result, 0, "update_interval");
257                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
258
259                         if ($update_interval != 0) {
260                                 return $update_interval;
261                         } else {
262                                 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
263                         }
264
265                 } else {
266                         return -1;
267                 }
268         }
269
270         function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false) {
271                 $login = urlencode($login);
272                 $pass = urlencode($pass);
273
274                 if (function_exists('curl_init') && !ini_get("open_basedir")) {
275                         $ch = curl_init($url);
276
277                         curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 15);
278                         curl_setopt($ch, CURLOPT_TIMEOUT, 45);
279                         curl_setopt($ch, CURLOPT_FOLLOWLOCATION, true);
280                         curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
281                         curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
282                         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
283                         curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
284                         curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
285                         curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
286                         curl_setopt($ch, CURLOPT_ENCODING , "gzip");
287
288                         if ($post_query) {
289                                 curl_setopt($ch, CURLOPT_POST, true);
290                                 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
291                         }
292
293                         if ($login && $pass)
294                                 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
295
296                         $contents = @curl_exec($ch);
297
298                         if ($contents === false) {
299                                 curl_close($ch);
300                                 return false;
301                         }
302
303                         $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
304                         $content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
305                         curl_close($ch);
306
307                         if ($http_code != 200 || $type && strpos($content_type, "$type") === false) {
308                                 return false;
309                         }
310
311                         return $contents;
312                 } else {
313                         if ($login && $pass ){
314                                 $url_parts = array();
315
316                                 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
317
318                                 if ($url_parts[1] && $url_parts[2]) {
319                                         $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
320                                 }
321                         }
322
323                         return @file_get_contents($url);
324                 }
325
326         }
327
328         /**
329          * Try to determine the favicon URL for a feed.
330          * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
331          * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
332          *
333          * @param string $url A feed or page URL
334          * @access public
335          * @return mixed The favicon URL, or false if none was found.
336          */
337         function get_favicon_url($url) {
338
339                 $favicon_url = false;
340
341                 if ($html = @fetch_file_contents($url)) {
342
343                         libxml_use_internal_errors(true);
344
345                         $doc = new DOMDocument();
346                         $doc->loadHTML($html);
347                         $xpath = new DOMXPath($doc);
348
349                         $base = $xpath->query('/html/head/base');
350                         foreach ($base as $b) {
351                                 $url = $b->getAttribute("href");
352                                 break;
353                         }
354
355                         $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
356                         if (count($entries) > 0) {
357                                 foreach ($entries as $entry) {
358                                         $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
359                                         break;
360                                 }
361                         }
362                 }
363
364                 if (!$favicon_url)
365                         $favicon_url = rewrite_relative_url($url, "/favicon.ico");
366
367                 return $favicon_url;
368         } // function get_favicon_url
369
370         function check_feed_favicon($site_url, $feed, $link) {
371 #               print "FAVICON [$site_url]: $favicon_url\n";
372
373                 $icon_file = ICONS_DIR . "/$feed.ico";
374
375                 if (!file_exists($icon_file)) {
376                         $favicon_url = get_favicon_url($site_url);
377
378                         if ($favicon_url) {
379                                 // Limiting to "image" type misses those served with text/plain
380                                 $contents = fetch_file_contents($favicon_url); // , "image");
381
382                                 if ($contents) {
383                                         // Crude image type matching.
384                                         // Patterns gleaned from the file(1) source code.
385                                         if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
386                                                 // 0       string  \000\000\001\000        MS Windows icon resource
387                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
388                                         }
389                                         elseif (preg_match('/^GIF8/', $contents)) {
390                                                 // 0       string          GIF8            GIF image data
391                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
392                                         }
393                                         elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
394                                                 // 0       string          \x89PNG\x0d\x0a\x1a\x0a         PNG image data
395                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
396                                         }
397                                         elseif (preg_match('/^\xff\xd8/', $contents)) {
398                                                 // 0       beshort         0xffd8          JPEG image data
399                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
400                                         }
401                                         else {
402                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
403                                                 $contents = "";
404                                         }
405                                 }
406
407                                 if ($contents) {
408                                         $fp = @fopen($icon_file, "w");
409
410                                         if ($fp) {
411                                                 fwrite($fp, $contents);
412                                                 fclose($fp);
413                                                 chmod($icon_file, 0644);
414                                         }
415                                 }
416                         }
417                 }
418         }
419
420         function print_select($id, $default, $values, $attributes = "") {
421                 print "<select name=\"$id\" id=\"$id\" $attributes>";
422                 foreach ($values as $v) {
423                         if ($v == $default)
424                                 $sel = "selected=\"1\"";
425                          else
426                                 $sel = "";
427
428                         print "<option value=\"$v\" $sel>$v</option>";
429                 }
430                 print "</select>";
431         }
432
433         function print_select_hash($id, $default, $values, $attributes = "") {
434                 print "<select name=\"$id\" id='$id' $attributes>";
435                 foreach (array_keys($values) as $v) {
436                         if ($v == $default)
437                                 $sel = 'selected="selected"';
438                          else
439                                 $sel = "";
440
441                         print "<option $sel value=\"$v\">".$values[$v]."</option>";
442                 }
443
444                 print "</select>";
445         }
446
447         function get_article_filters($filters, $title, $content, $link, $timestamp, $author, $tags) {
448                 $matches = array();
449
450                 if ($filters["title"]) {
451                         foreach ($filters["title"] as $filter) {
452                                 $reg_exp = $filter["reg_exp"];
453                                 $inverse = $filter["inverse"];
454                                 if ((!$inverse && @preg_match("/$reg_exp/i", $title)) ||
455                                                 ($inverse && !@preg_match("/$reg_exp/i", $title))) {
456
457                                         array_push($matches, array($filter["action"], $filter["action_param"]));
458                                 }
459                         }
460                 }
461
462                 if ($filters["content"]) {
463                         foreach ($filters["content"] as $filter) {
464                                 $reg_exp = $filter["reg_exp"];
465                                 $inverse = $filter["inverse"];
466
467                                 if ((!$inverse && @preg_match("/$reg_exp/i", $content)) ||
468                                                 ($inverse && !@preg_match("/$reg_exp/i", $content))) {
469
470                                         array_push($matches, array($filter["action"], $filter["action_param"]));
471                                 }
472                         }
473                 }
474
475                 if ($filters["both"]) {
476                         foreach ($filters["both"] as $filter) {
477                                 $reg_exp = $filter["reg_exp"];
478                                 $inverse = $filter["inverse"];
479
480                                 if ($inverse) {
481                                         if (!@preg_match("/$reg_exp/i", $title) && !preg_match("/$reg_exp/i", $content)) {
482                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
483                                         }
484                                 } else {
485                                         if (@preg_match("/$reg_exp/i", $title) || preg_match("/$reg_exp/i", $content)) {
486                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
487                                         }
488                                 }
489                         }
490                 }
491
492                 if ($filters["link"]) {
493                         $reg_exp = $filter["reg_exp"];
494                         foreach ($filters["link"] as $filter) {
495                                 $reg_exp = $filter["reg_exp"];
496                                 $inverse = $filter["inverse"];
497
498                                 if ((!$inverse && @preg_match("/$reg_exp/i", $link)) ||
499                                                 ($inverse && !@preg_match("/$reg_exp/i", $link))) {
500
501                                         array_push($matches, array($filter["action"], $filter["action_param"]));
502                                 }
503                         }
504                 }
505
506                 if ($filters["date"]) {
507                         $reg_exp = $filter["reg_exp"];
508                         foreach ($filters["date"] as $filter) {
509                                 $date_modifier = $filter["filter_param"];
510                                 $inverse = $filter["inverse"];
511                                 $check_timestamp = strtotime($filter["reg_exp"]);
512
513                                 # no-op when timestamp doesn't parse to prevent misfires
514
515                                 if ($check_timestamp) {
516                                         $match_ok = false;
517
518                                         if ($date_modifier == "before" && $timestamp < $check_timestamp ||
519                                                 $date_modifier == "after" && $timestamp > $check_timestamp) {
520                                                         $match_ok = true;
521                                         }
522
523                                         if ($inverse) $match_ok = !$match_ok;
524
525                                         if ($match_ok) {
526                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
527                                         }
528                                 }
529                         }
530                 }
531
532                 if ($filters["author"]) {
533                         foreach ($filters["author"] as $filter) {
534                                 $reg_exp = $filter["reg_exp"];
535                                 $inverse = $filter["inverse"];
536                                 if ((!$inverse && @preg_match("/$reg_exp/i", $author)) ||
537                                                 ($inverse && !@preg_match("/$reg_exp/i", $author))) {
538
539                                         array_push($matches, array($filter["action"], $filter["action_param"]));
540                                 }
541                         }
542                 }
543
544                 if ($filters["tag"]) {
545
546                         $tag_string = join(",", $tags);
547
548                         foreach ($filters["tag"] as $filter) {
549                                 $reg_exp = $filter["reg_exp"];
550                                 $inverse = $filter["inverse"];
551
552                                 if ((!$inverse && @preg_match("/$reg_exp/i", $tag_string)) ||
553                                                 ($inverse && !@preg_match("/$reg_exp/i", $tag_string))) {
554
555                                         array_push($matches, array($filter["action"], $filter["action_param"]));
556                                 }
557                         }
558                 }
559
560
561                 return $matches;
562         }
563
564         function find_article_filter($filters, $filter_name) {
565                 foreach ($filters as $f) {
566                         if ($f[0] == $filter_name) {
567                                 return $f;
568                         };
569                 }
570                 return false;
571         }
572
573         function calculate_article_score($filters) {
574                 $score = 0;
575
576                 foreach ($filters as $f) {
577                         if ($f[0] == "score") {
578                                 $score += $f[1];
579                         };
580                 }
581                 return $score;
582         }
583
584         function assign_article_to_labels($link, $id, $filters, $owner_uid) {
585                 foreach ($filters as $f) {
586                         if ($f[0] == "label") {
587                                 label_add_article($link, $id, $f[1], $owner_uid);
588                         };
589                 }
590         }
591
592         function getmicrotime() {
593                 list($usec, $sec) = explode(" ",microtime());
594                 return ((float)$usec + (float)$sec);
595         }
596
597         function print_radio($id, $default, $true_is, $values, $attributes = "") {
598                 foreach ($values as $v) {
599
600                         if ($v == $default)
601                                 $sel = "checked";
602                          else
603                                 $sel = "";
604
605                         if ($v == $true_is) {
606                                 $sel .= " value=\"1\"";
607                         } else {
608                                 $sel .= " value=\"0\"";
609                         }
610
611                         print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
612                                 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
613
614                 }
615         }
616
617         function initialize_user_prefs($link, $uid, $profile = false) {
618
619                 $uid = db_escape_string($uid);
620
621                 if (!$profile) {
622                         $profile = "NULL";
623                         $profile_qpart = "AND profile IS NULL";
624                 } else {
625                         $profile_qpart = "AND profile = '$profile'";
626                 }
627
628                 if (get_schema_version($link) < 63) $profile_qpart = "";
629
630                 db_query($link, "BEGIN");
631
632                 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
633
634                 $u_result = db_query($link, "SELECT pref_name
635                         FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
636
637                 $active_prefs = array();
638
639                 while ($line = db_fetch_assoc($u_result)) {
640                         array_push($active_prefs, $line["pref_name"]);
641                 }
642
643                 while ($line = db_fetch_assoc($result)) {
644                         if (array_search($line["pref_name"], $active_prefs) === FALSE) {
645 //                              print "adding " . $line["pref_name"] . "<br>";
646
647                                 if (get_schema_version($link) < 63) {
648                                         db_query($link, "INSERT INTO ttrss_user_prefs
649                                                 (owner_uid,pref_name,value) VALUES
650                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
651
652                                 } else {
653                                         db_query($link, "INSERT INTO ttrss_user_prefs
654                                                 (owner_uid,pref_name,value, profile) VALUES
655                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
656                                 }
657
658                         }
659                 }
660
661                 db_query($link, "COMMIT");
662
663         }
664
665         function get_ssl_certificate_id() {
666                 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
667                         return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
668                                 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
669                                 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
670                                 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
671                 }
672                 return "";
673         }
674
675         function get_login_by_ssl_certificate($link) {
676
677                 $cert_serial = db_escape_string(get_ssl_certificate_id());
678
679                 if ($cert_serial) {
680                         $result = db_query($link, "SELECT login FROM ttrss_user_prefs, ttrss_users
681                                 WHERE pref_name = 'SSL_CERT_SERIAL' AND value = '$cert_serial' AND
682                                 owner_uid = ttrss_users.id");
683
684                         if (db_num_rows($result) != 0) {
685                                 return db_escape_string(db_fetch_result($result, 0, "login"));
686                         }
687                 }
688
689                 return "";
690         }
691
692         function get_remote_user($link) {
693
694                 if (defined('ALLOW_REMOTE_USER_AUTH') && ALLOW_REMOTE_USER_AUTH) {
695                         return db_escape_string($_SERVER["REMOTE_USER"]);
696                 }
697
698                 return db_escape_string(get_login_by_ssl_certificate($link));
699         }
700
701         function get_remote_fakepass($link) {
702                 if (get_remote_user($link))
703                         return "******";
704                 else
705                         return "";
706         }
707
708         function authenticate_user($link, $login, $password, $force_auth = false) {
709
710                 if (!SINGLE_USER_MODE) {
711
712                         $pwd_hash1 = encrypt_password($password);
713                         $pwd_hash2 = encrypt_password($password, $login);
714                         $login = db_escape_string($login);
715
716                         $remote_user = get_remote_user($link);
717
718                         if ($remote_user && $remote_user == $login && $login != "admin") {
719
720                                 $login = $remote_user;
721
722                                 $query = "SELECT id,login,access_level,pwd_hash
723                     FROM ttrss_users WHERE
724                                         login = '$login'";
725
726                                 if (defined('AUTO_CREATE_USER') && AUTO_CREATE_USER
727                                                 && $_SERVER["REMOTE_USER"]) {
728                                         $result = db_query($link, $query);
729
730                                         // First login ?
731                                         if (db_num_rows($result) == 0) {
732                                                 $salt = substr(bin2hex(get_random_bytes(125)), 0, 250);
733                                                 $pwd_hash = encrypt_password($password, $salt, true);
734
735                                                 $query2 = "INSERT INTO ttrss_users
736                                                                 (login,access_level,last_login,created,pwd_hash,salt)
737                                                                 VALUES ('$login', 0, null, NOW(), '$pwd_hash','$salt')";
738                                                 db_query($link, $query2);
739                                         }
740                                 }
741
742                         } else if (get_schema_version($link) > 87) {
743                                 $result = db_query($link, "SELECT salt FROM ttrss_users WHERE
744                                         login = '$login'");
745
746                                 if (db_num_rows($result) != 1) {
747                                         return false;
748                                 }
749
750                                 $salt = db_fetch_result($result, 0, "salt");
751
752                                 if ($salt == "") {
753
754                                         $query = "SELECT id,login,access_level,pwd_hash
755                             FROM ttrss_users WHERE
756                                                 login = '$login' AND (pwd_hash = '$pwd_hash1' OR
757                                                 pwd_hash = '$pwd_hash2')";
758
759                                         // verify and upgrade password to new salt base
760
761                                         $result = db_query($link, $query);
762
763                                         if (db_num_rows($result) == 1) {
764                                                 // upgrade password to MODE2
765
766                                                 $salt = substr(bin2hex(get_random_bytes(125)), 0, 250);
767                                                 $pwd_hash = encrypt_password($password, $salt, true);
768
769                                                 db_query($link, "UPDATE ttrss_users SET
770                                                         pwd_hash = '$pwd_hash', salt = '$salt' WHERE login = '$login'");
771
772                                                 $query = "SELECT id,login,access_level,pwd_hash
773                                     FROM ttrss_users WHERE
774                                                         login = '$login' AND pwd_hash = '$pwd_hash'";
775
776                                         } else {
777                                                 return false;
778                                         }
779
780                                 } else {
781
782                                         $pwd_hash = encrypt_password($password, $salt, true);
783
784                                         $query = "SELECT id,login,access_level,pwd_hash
785                                  FROM ttrss_users WHERE
786                                                 login = '$login' AND pwd_hash = '$pwd_hash'";
787
788                                 }
789                         } else {
790                                 $query = "SELECT id,login,access_level,pwd_hash
791                          FROM ttrss_users WHERE
792                                         login = '$login' AND (pwd_hash = '$pwd_hash1' OR
793                                                 pwd_hash = '$pwd_hash2')";
794                         }
795
796                         $result = db_query($link, $query);
797
798                         if (db_num_rows($result) == 1) {
799                                 $_SESSION["uid"] = db_fetch_result($result, 0, "id");
800                                 $_SESSION["name"] = db_fetch_result($result, 0, "login");
801                                 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
802                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
803
804                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
805                                         $_SESSION["uid"]);
806
807
808                                 // LemonLDAP can send user informations via HTTP HEADER
809                                 if (defined('AUTO_CREATE_USER') && AUTO_CREATE_USER){
810                                         // update user name
811                                         $fullname = $_SERVER['HTTP_USER_NAME'] ? $_SERVER['HTTP_USER_NAME'] : $_SERVER['AUTHENTICATE_CN'];
812                                         if ($fullname){
813                                                 $fullname = db_escape_string($fullname);
814                                                 db_query($link, "UPDATE ttrss_users SET full_name = '$fullname' WHERE id = " .
815                                                         $_SESSION["uid"]);
816                                         }
817                                         // update user mail
818                                         $email = $_SERVER['HTTP_USER_MAIL'] ? $_SERVER['HTTP_USER_MAIL'] : $_SERVER['AUTHENTICATE_MAIL'];
819                                         if ($email){
820                                                 $email = db_escape_string($email);
821                                                 db_query($link, "UPDATE ttrss_users SET email = '$email' WHERE id = " .
822                                                         $_SESSION["uid"]);
823                                         }
824                                 }
825
826                                 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
827                                 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
828
829                                 $_SESSION["last_version_check"] = time();
830
831                                 initialize_user_prefs($link, $_SESSION["uid"]);
832
833                                 return true;
834                         }
835
836                         return false;
837
838                 } else {
839
840                         $_SESSION["uid"] = 1;
841                         $_SESSION["name"] = "admin";
842                         $_SESSION["access_level"] = 10;
843
844                         if (!$_SESSION["csrf_token"]) {
845                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
846                         }
847
848                         $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
849
850                         initialize_user_prefs($link, $_SESSION["uid"]);
851
852                         return true;
853                 }
854         }
855
856         function make_password($length = 8) {
857
858                 $password = "";
859                 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
860
861         $i = 0;
862
863                 while ($i < $length) {
864                         $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
865
866                         if (!strstr($password, $char)) {
867                                 $password .= $char;
868                                 $i++;
869                         }
870                 }
871                 return $password;
872         }
873
874         // this is called after user is created to initialize default feeds, labels
875         // or whatever else
876
877         // user preferences are checked on every login, not here
878
879         function initialize_user($link, $uid) {
880
881                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
882                         values ('$uid', 'Tiny Tiny RSS: New Releases',
883                         'http://tt-rss.org/releases.rss')");
884
885                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
886                         values ('$uid', 'Tiny Tiny RSS: Forum',
887                                 'http://tt-rss.org/forum/rss.php')");
888         }
889
890         function logout_user() {
891                 session_destroy();
892                 if (isset($_COOKIE[session_name()])) {
893                    setcookie(session_name(), '', time()-42000, '/');
894                 }
895         }
896
897         function validate_csrf($csrf_token) {
898                 return $csrf_token == $_SESSION['csrf_token'];
899         }
900
901         function validate_session($link) {
902                 if (SINGLE_USER_MODE) return true;
903
904                 $check_ip = $_SESSION['ip_address'];
905
906                 switch (SESSION_CHECK_ADDRESS) {
907                 case 0:
908                         $check_ip = '';
909                         break;
910                 case 1:
911                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
912                         break;
913                 case 2:
914                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.'));
915                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
916                         break;
917                 };
918
919                 if ($check_ip && strpos($_SERVER['REMOTE_ADDR'], $check_ip) !== 0) {
920                         $_SESSION["login_error_msg"] =
921                                 __("Session failed to validate (incorrect IP)");
922                         return false;
923                 }
924
925                 if ($_SESSION["ref_schema_version"] != get_schema_version($link, true))
926                         return false;
927
928                 if ($_SESSION["uid"]) {
929
930                         $result = db_query($link,
931                                 "SELECT pwd_hash FROM ttrss_users WHERE id = '".$_SESSION["uid"]."'");
932
933                         $pwd_hash = db_fetch_result($result, 0, "pwd_hash");
934
935                         if ($pwd_hash != $_SESSION["pwd_hash"]) {
936                                 return false;
937                         }
938                 }
939
940 /*              if ($_SESSION["cookie_lifetime"] && $_SESSION["uid"]) {
941
942                         //print_r($_SESSION);
943
944                         if (time() > $_SESSION["cookie_lifetime"]) {
945                                 return false;
946                         }
947                 } */
948
949                 return true;
950         }
951
952         function login_sequence($link, $mobile = false) {
953                 $_SESSION["prefs_cache"] = array();
954
955                 if (!SINGLE_USER_MODE) {
956
957                         $login_action = $_POST["login_action"];
958
959                         # try to authenticate user if called from login form
960                         if ($login_action == "do_login") {
961                                 $login = db_escape_string($_POST["login"]);
962                                 $password = $_POST["password"];
963                                 $remember_me = $_POST["remember_me"];
964
965                                 if (authenticate_user($link, $login, $password)) {
966                                         $_POST["password"] = "";
967
968                                         $_SESSION["language"] = $_POST["language"];
969                                         $_SESSION["ref_schema_version"] = get_schema_version($link, true);
970                                         $_SESSION["bw_limit"] = !!$_POST["bw_limit"];
971
972                                         if ($_POST["profile"]) {
973
974                                                 $profile = db_escape_string($_POST["profile"]);
975
976                                                 $result = db_query($link, "SELECT id FROM ttrss_settings_profiles
977                                                         WHERE id = '$profile' AND owner_uid = " . $_SESSION["uid"]);
978
979                                                 if (db_num_rows($result) != 0) {
980                                                         $_SESSION["profile"] = $profile;
981                                                         $_SESSION["prefs_cache"] = array();
982                                                 }
983                                         }
984
985                                         if ($_REQUEST['return']) {
986                                                 header("Location: " . $_REQUEST['return']);
987                                         } else {
988                                                 header("Location: " . $_SERVER["REQUEST_URI"]);
989                                         }
990
991                                         exit;
992
993                                         return;
994                                 } else {
995                                         $_SESSION["login_error_msg"] = __("Incorrect username or password");
996                                 }
997                         }
998
999                         if (!$_SESSION["uid"] || !validate_session($link)) {
1000
1001                                 if (get_remote_user($link) && AUTO_LOGIN) {
1002                                     authenticate_user($link, get_remote_user($link), null);
1003                                     $_SESSION["ref_schema_version"] = get_schema_version($link, true);
1004                                 } else {
1005                                     render_login_form($link, $mobile);
1006                                     //header("Location: login.php");
1007                                     exit;
1008                                 }
1009                         } else {
1010                                 /* bump login timestamp */
1011                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
1012                                         $_SESSION["uid"]);
1013
1014                                 if ($_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
1015                                         setcookie("ttrss_lang", $_SESSION["language"],
1016                                                 time() + SESSION_COOKIE_LIFETIME);
1017                                 }
1018
1019                                 // try to remove possible duplicates from feed counter cache
1020 //                              ccache_cleanup($link, $_SESSION["uid"]);
1021                         }
1022
1023                 } else {
1024                         return authenticate_user($link, "admin", null);
1025                 }
1026         }
1027
1028         function truncate_string($str, $max_len, $suffix = '&hellip;') {
1029                 if (mb_strlen($str, "utf-8") > $max_len - 3) {
1030                         return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
1031                 } else {
1032                         return $str;
1033                 }
1034         }
1035
1036         function theme_image($link, $filename) {
1037                 if ($link) {
1038                         $theme_path = get_user_theme_path($link);
1039
1040                         if ($theme_path && is_file($theme_path.$filename)) {
1041                                 return $theme_path.$filename;
1042                         } else {
1043                                 return $filename;
1044                         }
1045                 } else {
1046                         return $filename;
1047                 }
1048         }
1049
1050         function get_user_theme($link) {
1051
1052                 if (get_schema_version($link) >= 63 && $_SESSION["uid"]) {
1053                         $theme_name = get_pref($link, "_THEME_ID");
1054                         if (is_dir("themes/$theme_name")) {
1055                                 return $theme_name;
1056                         } else {
1057                                 return '';
1058                         }
1059                 } else {
1060                         return '';
1061                 }
1062
1063         }
1064
1065         function get_user_theme_path($link) {
1066                 $theme_path = '';
1067
1068                 if (get_schema_version($link) >= 63 && $_SESSION["uid"]) {
1069                         $theme_name = get_pref($link, "_THEME_ID");
1070
1071                         if ($theme_name && is_dir("themes/$theme_name")) {
1072                                 $theme_path = "themes/$theme_name/";
1073                         } else {
1074                                 $theme_name = '';
1075                         }
1076                 } else {
1077                         $theme_path = '';
1078                 }
1079
1080                 if ($theme_path) {
1081                         if (is_file("$theme_path/theme.ini")) {
1082                                 $ini = parse_ini_file("$theme_path/theme.ini", true);
1083                                 if ($ini['theme']['version'] >= THEME_VERSION_REQUIRED) {
1084                                         return $theme_path;
1085                                 }
1086                         }
1087                 }
1088                 return '';
1089         }
1090
1091         function get_user_theme_options($link) {
1092                 $t = get_user_theme_path($link);
1093
1094                 if ($t) {
1095                         if (is_file("$t/theme.ini")) {
1096                                 $ini = parse_ini_file("$t/theme.ini", true);
1097                                 if ($ini['theme']['version']) {
1098                                         return $ini['theme']['options'];
1099                                 }
1100                         }
1101                 }
1102                 return '';
1103         }
1104
1105         function print_theme_includes($link) {
1106
1107                 $t = get_user_theme_path($link);
1108                 $time = time();
1109
1110                 if ($t) {
1111                         print "<link rel=\"stylesheet\" type=\"text/css\"
1112                                 href=\"$t/theme.css?$time \">";
1113                         if (file_exists("$t/theme.js")) {
1114                                 print "<script type=\"text/javascript\" src=\"$t/theme.js?$time\">
1115                                         </script>";
1116                         }
1117                 }
1118         }
1119
1120         function get_all_themes() {
1121                 $themes = glob("themes/*");
1122
1123                 asort($themes);
1124
1125                 $rv = array();
1126
1127                 foreach ($themes as $t) {
1128                         if (is_file("$t/theme.ini")) {
1129                                 $ini = parse_ini_file("$t/theme.ini", true);
1130                                 if ($ini['theme']['version'] >= THEME_VERSION_REQUIRED &&
1131                                                         !$ini['theme']['disabled']) {
1132                                         $entry = array();
1133                                         $entry["path"] = $t;
1134                                         $entry["base"] = basename($t);
1135                                         $entry["name"] = $ini['theme']['name'];
1136                                         $entry["version"] = $ini['theme']['version'];
1137                                         $entry["author"] = $ini['theme']['author'];
1138                                         $entry["options"] = $ini['theme']['options'];
1139                                         array_push($rv, $entry);
1140                                 }
1141                         }
1142                 }
1143
1144                 return $rv;
1145         }
1146
1147         function convert_timestamp($timestamp, $source_tz, $dest_tz) {
1148
1149                 try {
1150                         $source_tz = new DateTimeZone($source_tz);
1151                 } catch (Exception $e) {
1152                         $source_tz = new DateTimeZone('UTC');
1153                 }
1154
1155                 try {
1156                         $dest_tz = new DateTimeZone($dest_tz);
1157                 } catch (Exception $e) {
1158                         $dest_tz = new DateTimeZone('UTC');
1159                 }
1160
1161                 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
1162                 return $dt->format('U') + $dest_tz->getOffset($dt);
1163         }
1164
1165         function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
1166                                         $no_smart_dt = false) {
1167
1168                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1169                 if (!$timestamp) $timestamp = '1970-01-01 0:00';
1170
1171                 global $utc_tz;
1172                 global $tz_offset;
1173
1174                 # We store date in UTC internally
1175                 $dt = new DateTime($timestamp, $utc_tz);
1176
1177                 if ($tz_offset == -1) {
1178
1179                         $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
1180
1181                         try {
1182                                 $user_tz = new DateTimeZone($user_tz_string);
1183                         } catch (Exception $e) {
1184                                 $user_tz = $utc_tz;
1185                         }
1186
1187                         $tz_offset = $user_tz->getOffset($dt);
1188                 }
1189
1190                 $user_timestamp = $dt->format('U') + $tz_offset;
1191
1192                 if (!$no_smart_dt) {
1193                         return smart_date_time($link, $user_timestamp,
1194                                 $tz_offset, $owner_uid);
1195                 } else {
1196                         if ($long)
1197                                 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
1198                         else
1199                                 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
1200
1201                         return date($format, $user_timestamp);
1202                 }
1203         }
1204
1205         function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
1206                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1207
1208                 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
1209                         return date("G:i", $timestamp);
1210                 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
1211                         $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
1212                         return date($format, $timestamp);
1213                 } else {
1214                         $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
1215                         return date($format, $timestamp);
1216                 }
1217         }
1218
1219         function sql_bool_to_bool($s) {
1220                 if ($s == "t" || $s == "1" || $s == "true") {
1221                         return true;
1222                 } else {
1223                         return false;
1224                 }
1225         }
1226
1227         function bool_to_sql_bool($s) {
1228                 if ($s) {
1229                         return "true";
1230                 } else {
1231                         return "false";
1232                 }
1233         }
1234
1235         // Session caching removed due to causing wrong redirects to upgrade
1236         // script when get_schema_version() is called on an obsolete session
1237         // created on a previous schema version.
1238         function get_schema_version($link, $nocache = false) {
1239                 global $schema_version;
1240
1241                 if (!$schema_version) {
1242                         $result = db_query($link, "SELECT schema_version FROM ttrss_version");
1243                         $version = db_fetch_result($result, 0, "schema_version");
1244                         $schema_version = $version;
1245                         return $version;
1246                 } else {
1247                         return $schema_version;
1248                 }
1249         }
1250
1251         function sanity_check($link) {
1252                 require_once 'errors.php';
1253
1254                 $error_code = 0;
1255                 $schema_version = get_schema_version($link, true);
1256
1257                 if ($schema_version != SCHEMA_VERSION) {
1258                         $error_code = 5;
1259                 }
1260
1261                 if (DB_TYPE == "mysql") {
1262                         $result = db_query($link, "SELECT true", false);
1263                         if (db_num_rows($result) != 1) {
1264                                 $error_code = 10;
1265                         }
1266                 }
1267
1268                 if (db_escape_string("testTEST") != "testTEST") {
1269                         $error_code = 12;
1270                 }
1271
1272                 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
1273         }
1274
1275         function file_is_locked($filename) {
1276                 if (function_exists('flock')) {
1277                         $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
1278                         if ($fp) {
1279                                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1280                                         flock($fp, LOCK_UN);
1281                                         fclose($fp);
1282                                         return false;
1283                                 }
1284                                 fclose($fp);
1285                                 return true;
1286                         } else {
1287                                 return false;
1288                         }
1289                 }
1290                 return true; // consider the file always locked and skip the test
1291         }
1292
1293         function make_lockfile($filename) {
1294                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1295
1296                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1297                         if (function_exists('posix_getpid')) {
1298                                 fwrite($fp, posix_getpid() . "\n");
1299                         }
1300                         return $fp;
1301                 } else {
1302                         return false;
1303                 }
1304         }
1305
1306         function make_stampfile($filename) {
1307                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1308
1309                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1310                         fwrite($fp, time() . "\n");
1311                         flock($fp, LOCK_UN);
1312                         fclose($fp);
1313                         return true;
1314                 } else {
1315                         return false;
1316                 }
1317         }
1318
1319         function sql_random_function() {
1320                 if (DB_TYPE == "mysql") {
1321                         return "RAND()";
1322                 } else {
1323                         return "RANDOM()";
1324                 }
1325         }
1326
1327         function catchup_feed($link, $feed, $cat_view, $owner_uid = false, $max_id = false) {
1328
1329                         if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1330
1331                         //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
1332
1333                         $ref_check_qpart = ($max_id &&
1334                                 !get_pref($link, 'REVERSE_HEADLINES')) ? "ref_id <= '$max_id'" : "true";
1335
1336                         if (is_numeric($feed)) {
1337                                 if ($cat_view) {
1338
1339                                         if ($feed >= 0) {
1340
1341                                                 if ($feed > 0) {
1342                                                         $cat_qpart = "cat_id = '$feed'";
1343                                                 } else {
1344                                                         $cat_qpart = "cat_id IS NULL";
1345                                                 }
1346
1347                                                 $tmp_result = db_query($link, "SELECT id
1348                                                         FROM ttrss_feeds WHERE $cat_qpart AND owner_uid = $owner_uid");
1349
1350                                                 while ($tmp_line = db_fetch_assoc($tmp_result)) {
1351
1352                                                         $tmp_feed = $tmp_line["id"];
1353
1354                                                         db_query($link, "UPDATE ttrss_user_entries
1355                                                                 SET unread = false,last_read = NOW()
1356                                                                 WHERE feed_id = '$tmp_feed'
1357                                                                 AND $ref_check_qpart
1358                                                                 AND owner_uid = $owner_uid");
1359                                                 }
1360                                         } else if ($feed == -2) {
1361
1362                                                 db_query($link, "UPDATE ttrss_user_entries
1363                                                         SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1364                                                                 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1365                                                                 AND $ref_check_qpart
1366                                                                 AND unread = true AND owner_uid = $owner_uid");
1367                                         }
1368
1369                                 } else if ($feed > 0) {
1370
1371                                         db_query($link, "UPDATE ttrss_user_entries
1372                                                         SET unread = false,last_read = NOW()
1373                                                         WHERE feed_id = '$feed'
1374                                                         AND $ref_check_qpart
1375                                                         AND owner_uid = $owner_uid");
1376
1377                                 } else if ($feed < 0 && $feed > -10) { // special, like starred
1378
1379                                         if ($feed == -1) {
1380                                                 db_query($link, "UPDATE ttrss_user_entries
1381                                                         SET unread = false,last_read = NOW()
1382                                                         WHERE marked = true
1383                                                         AND $ref_check_qpart
1384                                                         AND owner_uid = $owner_uid");
1385                                         }
1386
1387                                         if ($feed == -2) {
1388                                                 db_query($link, "UPDATE ttrss_user_entries
1389                                                         SET unread = false,last_read = NOW()
1390                                                         WHERE published = true
1391                                                         AND $ref_check_qpart
1392                                                         AND owner_uid = $owner_uid");
1393                                         }
1394
1395                                         if ($feed == -3) {
1396
1397                                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1398
1399                                                 if (DB_TYPE == "pgsql") {
1400                                                         $match_part = "updated > NOW() - INTERVAL '$intl hour' ";
1401                                                 } else {
1402                                                         $match_part = "updated > DATE_SUB(NOW(),
1403                                                                 INTERVAL $intl HOUR) ";
1404                                                 }
1405
1406                                                 $result = db_query($link, "SELECT id FROM ttrss_entries,
1407                                                         ttrss_user_entries WHERE $match_part AND
1408                                                         unread = true AND
1409                                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
1410                                                         owner_uid = $owner_uid");
1411
1412                                                 $affected_ids = array();
1413
1414                                                 while ($line = db_fetch_assoc($result)) {
1415                                                         array_push($affected_ids, $line["id"]);
1416                                                 }
1417
1418                                                 catchupArticlesById($link, $affected_ids, 0);
1419                                         }
1420
1421                                         if ($feed == -4) {
1422                                                 db_query($link, "UPDATE ttrss_user_entries
1423                                                         SET unread = false,last_read = NOW()
1424                                                         WHERE $ref_check_qpart AND owner_uid = $owner_uid");
1425                                         }
1426
1427                                 } else if ($feed < -10) { // label
1428
1429                                         $label_id = -$feed - 11;
1430
1431                                         db_query($link, "UPDATE ttrss_user_entries, ttrss_user_labels2
1432                                                 SET unread = false, last_read = NOW()
1433                                                         WHERE label_id = '$label_id' AND unread = true
1434                                                         AND $ref_check_qpart
1435                                                         AND owner_uid = '$owner_uid' AND ref_id = article_id");
1436
1437                                 }
1438
1439                                 ccache_update($link, $feed, $owner_uid, $cat_view);
1440
1441                         } else { // tag
1442                                 db_query($link, "BEGIN");
1443
1444                                 $tag_name = db_escape_string($feed);
1445
1446                                 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
1447                                         WHERE tag_name = '$tag_name' AND owner_uid = $owner_uid");
1448
1449                                 while ($line = db_fetch_assoc($result)) {
1450                                         db_query($link, "UPDATE ttrss_user_entries SET
1451                                                 unread = false, last_read = NOW()
1452                                                 WHERE $ref_check_qpart AND int_id = " . $line["post_int_id"]);
1453                                 }
1454                                 db_query($link, "COMMIT");
1455                         }
1456         }
1457
1458         function getAllCounters($link, $omode = "flc", $active_feed = false) {
1459
1460                 if (!$omode) $omode = "flc";
1461
1462                 $data = getGlobalCounters($link);
1463
1464                 $data = array_merge($data, getVirtCounters($link));
1465
1466                 if (strchr($omode, "l")) $data = array_merge($data, getLabelCounters($link));
1467                 if (strchr($omode, "f")) $data = array_merge($data, getFeedCounters($link, $active_feed));
1468                 if (strchr($omode, "t")) $data = array_merge($data, getTagCounters($link));
1469                 if (strchr($omode, "c")) $data = array_merge($data, getCategoryCounters($link));
1470
1471                 return $data;
1472         }
1473
1474         function getCategoryTitle($link, $cat_id) {
1475
1476                 if ($cat_id == -1) {
1477                         return __("Special");
1478                 } else if ($cat_id == -2) {
1479                         return __("Labels");
1480                 } else {
1481
1482                         $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1483                                 id = '$cat_id'");
1484
1485                         if (db_num_rows($result) == 1) {
1486                                 return db_fetch_result($result, 0, "title");
1487                         } else {
1488                                 return "Uncategorized";
1489                         }
1490                 }
1491         }
1492
1493
1494         function getCategoryCounters($link) {
1495                 $ret_arr = array();
1496
1497                 /* Labels category */
1498
1499                 $cv = array("id" => -2, "kind" => "cat",
1500                         "counter" => getCategoryUnread($link, -2));
1501
1502                 array_push($ret_arr, $cv);
1503
1504                 $result = db_query($link, "SELECT id AS cat_id, value AS unread,
1505                         (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1506                                 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1507                         FROM ttrss_feed_categories, ttrss_cat_counters_cache
1508                         WHERE ttrss_cat_counters_cache.feed_id = id AND
1509                         ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1510
1511                 while ($line = db_fetch_assoc($result)) {
1512                         $line["cat_id"] = (int) $line["cat_id"];
1513
1514                         if ($line["num_children"] > 0) {
1515                                 $child_counter = getCategoryChildrenUnread($link, $line["cat_id"], $_SESSION["uid"]);
1516                         } else {
1517                                 $child_counter = 0;
1518                         }
1519
1520                         $cv = array("id" => $line["cat_id"], "kind" => "cat",
1521                                 "child_counter" => $child_counter,
1522                                 "counter" => $line["unread"]);
1523
1524                         array_push($ret_arr, $cv);
1525                 }
1526
1527                 /* Special case: NULL category doesn't actually exist in the DB */
1528
1529                 $cv = array("id" => 0, "kind" => "cat",
1530                         "counter" => ccache_find($link, 0, $_SESSION["uid"], true));
1531
1532                 array_push($ret_arr, $cv);
1533
1534                 return $ret_arr;
1535         }
1536
1537         // only accepts real cats (>= 0)
1538         function getCategoryChildrenUnread($link, $cat, $owner_uid = false) {
1539                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1540
1541                 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1542                                 AND owner_uid = $owner_uid");
1543
1544                 $unread = 0;
1545
1546                 while ($line = db_fetch_assoc($result)) {
1547                         $unread += getCategoryUnread($link, $line["id"], $owner_uid);
1548                         $unread += getCategoryChildrenUnread($link, $line["id"], $owner_uid);
1549                 }
1550
1551                 return $unread;
1552         }
1553
1554         function getCategoryUnread($link, $cat, $owner_uid = false) {
1555
1556                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1557
1558                 if ($cat >= 0) {
1559
1560                         if ($cat != 0) {
1561                                 $cat_query = "cat_id = '$cat'";
1562                         } else {
1563                                 $cat_query = "cat_id IS NULL";
1564                         }
1565
1566                         $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1567                                         AND owner_uid = " . $owner_uid);
1568
1569                         $cat_feeds = array();
1570                         while ($line = db_fetch_assoc($result)) {
1571                                 array_push($cat_feeds, "feed_id = " . $line["id"]);
1572                         }
1573
1574                         if (count($cat_feeds) == 0) return 0;
1575
1576                         $match_part = implode(" OR ", $cat_feeds);
1577
1578                         $result = db_query($link, "SELECT COUNT(int_id) AS unread
1579                                 FROM ttrss_user_entries
1580                                 WHERE   unread = true AND ($match_part)
1581                                 AND owner_uid = " . $owner_uid);
1582
1583                         $unread = 0;
1584
1585                         # this needs to be rewritten
1586                         while ($line = db_fetch_assoc($result)) {
1587                                 $unread += $line["unread"];
1588                         }
1589
1590                         return $unread;
1591                 } else if ($cat == -1) {
1592                         return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1593                 } else if ($cat == -2) {
1594
1595                         $result = db_query($link, "
1596                                 SELECT COUNT(unread) AS unread FROM
1597                                         ttrss_user_entries, ttrss_user_labels2
1598                                 WHERE article_id = ref_id AND unread = true
1599                                         AND ttrss_user_entries.owner_uid = '$owner_uid'");
1600
1601                         $unread = db_fetch_result($result, 0, "unread");
1602
1603                         return $unread;
1604
1605                 }
1606         }
1607
1608         function getFeedUnread($link, $feed, $is_cat = false) {
1609                 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1610         }
1611
1612         function getLabelUnread($link, $label_id, $owner_uid = false) {
1613                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1614
1615                 $result = db_query($link, "SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1616                         WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1617
1618                 if (db_num_rows($result) != 0) {
1619                         return db_fetch_result($result, 0, "unread");
1620                 } else {
1621                         return 0;
1622                 }
1623         }
1624
1625         function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1626                 $owner_uid = false) {
1627
1628                 $n_feed = (int) $feed;
1629                 $need_entries = false;
1630
1631                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1632
1633                 if ($unread_only) {
1634                         $unread_qpart = "unread = true";
1635                 } else {
1636                         $unread_qpart = "true";
1637                 }
1638
1639                 if ($is_cat) {
1640                         return getCategoryUnread($link, $n_feed, $owner_uid);
1641                 } if ($feed != "0" && $n_feed == 0) {
1642
1643                         $feed = db_escape_string($feed);
1644
1645                         $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1646                                 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1647                                         AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1648                                 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1649                         return db_fetch_result($result, 0, "count");
1650
1651                 } else if ($n_feed == -1) {
1652                         $match_part = "marked = true";
1653                 } else if ($n_feed == -2) {
1654                         $match_part = "published = true";
1655                 } else if ($n_feed == -3) {
1656                         $match_part = "unread = true AND score >= 0";
1657
1658                         $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1659
1660                         if (DB_TYPE == "pgsql") {
1661                                 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1662                         } else {
1663                                 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1664                         }
1665
1666                         $need_entries = true;
1667
1668                 } else if ($n_feed == -4) {
1669                         $match_part = "true";
1670                 } else if ($n_feed >= 0) {
1671
1672                         if ($n_feed != 0) {
1673                                 $match_part = "feed_id = '$n_feed'";
1674                         } else {
1675                                 $match_part = "feed_id IS NULL";
1676                         }
1677
1678                 } else if ($feed < -10) {
1679
1680                         $label_id = -$feed - 11;
1681
1682                         return getLabelUnread($link, $label_id, $owner_uid);
1683
1684                 }
1685
1686                 if ($match_part) {
1687
1688                         if ($need_entries) {
1689                                 $from_qpart = "ttrss_user_entries,ttrss_entries";
1690                                 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1691                         } else {
1692                                 $from_qpart = "ttrss_user_entries";
1693                         }
1694
1695                         $query = "SELECT count(int_id) AS unread
1696                                 FROM $from_qpart WHERE
1697                                 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1698
1699                         //echo "[$feed/$query]\n";
1700
1701                         $result = db_query($link, $query);
1702
1703                 } else {
1704
1705                         $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1706                                 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1707                                 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1708                                 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1709                 }
1710
1711                 $unread = db_fetch_result($result, 0, "unread");
1712
1713                 return $unread;
1714         }
1715
1716         function getGlobalUnread($link, $user_id = false) {
1717
1718                 if (!$user_id) {
1719                         $user_id = $_SESSION["uid"];
1720                 }
1721
1722                 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1723                         WHERE owner_uid = '$user_id' AND feed_id > 0");
1724
1725                 $c_id = db_fetch_result($result, 0, "c_id");
1726
1727                 return $c_id;
1728         }
1729
1730         function getGlobalCounters($link, $global_unread = -1) {
1731                 $ret_arr = array();
1732
1733                 if ($global_unread == -1) {
1734                         $global_unread = getGlobalUnread($link);
1735                 }
1736
1737                 $cv = array("id" => "global-unread",
1738                         "counter" => $global_unread);
1739
1740                 array_push($ret_arr, $cv);
1741
1742                 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1743                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1744
1745                 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1746
1747                 $cv = array("id" => "subscribed-feeds",
1748                         "counter" => $subscribed_feeds);
1749
1750                 array_push($ret_arr, $cv);
1751
1752                 return $ret_arr;
1753         }
1754
1755         function getTagCounters($link) {
1756
1757                 $ret_arr = array();
1758
1759                 $result = db_query($link, "SELECT tag_name,SUM((SELECT COUNT(int_id)
1760                         FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1761                                 AND ref_id = id AND unread = true)) AS count FROM ttrss_tags
1762                                 WHERE owner_uid = ".$_SESSION['uid']." GROUP BY tag_name
1763                                 ORDER BY count DESC LIMIT 55");
1764
1765                 $tags = array();
1766
1767                 while ($line = db_fetch_assoc($result)) {
1768                         $tags[$line["tag_name"]] += $line["count"];
1769                 }
1770
1771                 foreach (array_keys($tags) as $tag) {
1772                         $unread = $tags[$tag];
1773                         $tag = htmlspecialchars($tag);
1774
1775                         $cv = array("id" => $tag,
1776                                 "kind" => "tag",
1777                                 "counter" => $unread);
1778
1779                         array_push($ret_arr, $cv);
1780                 }
1781
1782                 return $ret_arr;
1783         }
1784
1785         function getVirtCounters($link) {
1786
1787                 $ret_arr = array();
1788
1789                 for ($i = 0; $i >= -4; $i--) {
1790
1791                         $count = getFeedUnread($link, $i);
1792
1793                         $cv = array("id" => $i,
1794                                 "counter" => $count);
1795
1796 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1797 //                              $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1798
1799                         array_push($ret_arr, $cv);
1800                 }
1801
1802                 return $ret_arr;
1803         }
1804
1805         function getLabelCounters($link, $descriptions = false) {
1806
1807                 $ret_arr = array();
1808
1809                 $owner_uid = $_SESSION["uid"];
1810
1811                 $result = db_query($link, "SELECT id, caption FROM ttrss_labels2
1812                         WHERE owner_uid = '$owner_uid'");
1813
1814                 while ($line = db_fetch_assoc($result)) {
1815
1816                         $id = -$line["id"] - 11;
1817
1818                         $label_name = $line["caption"];
1819                         $count = getFeedUnread($link, $id);
1820
1821                         $cv = array("id" => $id,
1822                                 "counter" => $count);
1823
1824                         if ($descriptions)
1825                                 $cv["description"] = $label_name;
1826
1827 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1828 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1829
1830                         array_push($ret_arr, $cv);
1831                 }
1832
1833                 return $ret_arr;
1834         }
1835
1836         function getFeedCounters($link, $active_feed = false) {
1837
1838                 $ret_arr = array();
1839
1840                 $query = "SELECT ttrss_feeds.id,
1841                                 ttrss_feeds.title,
1842                                 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1843                                 last_error, value AS count
1844                         FROM ttrss_feeds, ttrss_counters_cache
1845                         WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1846                                 AND ttrss_counters_cache.feed_id = id";
1847
1848                 $result = db_query($link, $query);
1849                 $fctrs_modified = false;
1850
1851                 while ($line = db_fetch_assoc($result)) {
1852
1853                         $id = $line["id"];
1854                         $count = $line["count"];
1855                         $last_error = htmlspecialchars($line["last_error"]);
1856
1857                         $last_updated = make_local_datetime($link, $line['last_updated'], false);
1858
1859                         $has_img = feed_has_icon($id);
1860
1861                         if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1862                                 $last_updated = '';
1863
1864                         $cv = array("id" => $id,
1865                                 "updated" => $last_updated,
1866                                 "counter" => $count,
1867                                 "has_img" => (int) $has_img);
1868
1869                         if ($last_error)
1870                                 $cv["error"] = $last_error;
1871
1872 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1873 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1874
1875                         if ($active_feed && $id == $active_feed)
1876                                 $cv["title"] = truncate_string($line["title"], 30);
1877
1878                         array_push($ret_arr, $cv);
1879
1880                 }
1881
1882                 return $ret_arr;
1883         }
1884
1885         function get_pgsql_version($link) {
1886                 $result = db_query($link, "SELECT version() AS version");
1887                 $version = explode(" ", db_fetch_result($result, 0, "version"));
1888                 return $version[1];
1889         }
1890
1891         /**
1892          * @return integer Status code:
1893          *                 0 - OK, Feed already exists
1894          *                 1 - OK, Feed added
1895          *                 2 - Invalid URL
1896          *                 3 - URL content is HTML, no feeds available
1897          *                 4 - URL content is HTML which contains multiple feeds.
1898          *                     Here you should call extractfeedurls in rpc-backend
1899          *                     to get all possible feeds.
1900          *                 5 - Couldn't download the URL content.
1901          */
1902         function subscribe_to_feed($link, $url, $cat_id = 0,
1903                         $auth_login = '', $auth_pass = '', $need_auth = false) {
1904
1905                 require_once "include/rssfuncs.php";
1906
1907                 $url = fix_url($url);
1908
1909                 if (!$url || !validate_feed_url($url)) return 2;
1910
1911                 $update_method = 0;
1912
1913                 $result = db_query($link, "SELECT twitter_oauth FROM ttrss_users
1914                         WHERE id = ".$_SESSION['uid']);
1915
1916                 $has_oauth = db_fetch_result($result, 0, 'twitter_oauth');
1917
1918                 if (!$need_auth || !$has_oauth || strpos($url, '://api.twitter.com') === false) {
1919                         if (!fetch_file_contents($url, false, $auth_login, $auth_pass)) return 5;
1920
1921                         if (url_is_html($url, $auth_login, $auth_pass)) {
1922                                 $feedUrls = get_feeds_from_html($url, $auth_login, $auth_pass);
1923                                 if (count($feedUrls) == 0) {
1924                                         return 3;
1925                                 } else if (count($feedUrls) > 1) {
1926                                         return 4;
1927                                 }
1928                                 //use feed url as new URL
1929                                 $url = key($feedUrls);
1930                         }
1931
1932                         } else {
1933                                 if (!fetch_twitter_rss($link, $url, $_SESSION['uid']))
1934                                         return 5;
1935
1936                                 $update_method = 3;
1937                         }
1938                 if ($cat_id == "0" || !$cat_id) {
1939                         $cat_qpart = "NULL";
1940                 } else {
1941                         $cat_qpart = "'$cat_id'";
1942                 }
1943
1944                 $result = db_query($link,
1945                         "SELECT id FROM ttrss_feeds
1946                         WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1947
1948                 if (db_num_rows($result) == 0) {
1949                         $result = db_query($link,
1950                                 "INSERT INTO ttrss_feeds
1951                                         (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method)
1952                                 VALUES ('".$_SESSION["uid"]."', '$url',
1953                                 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', '$update_method')");
1954
1955                         $result = db_query($link,
1956                                 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1957                                         AND owner_uid = " . $_SESSION["uid"]);
1958
1959                         $feed_id = db_fetch_result($result, 0, "id");
1960
1961                         if ($feed_id) {
1962                                 update_rss_feed($link, $feed_id, true);
1963                         }
1964
1965                         return 1;
1966                 } else {
1967                         return 0;
1968                 }
1969         }
1970
1971         function print_feed_select($link, $id, $default_id = "",
1972                 $attributes = "", $include_all_feeds = true) {
1973
1974                 print "<select id=\"$id\" name=\"$id\" $attributes>";
1975                 if ($include_all_feeds) {
1976                         print "<option value=\"0\">".__('All feeds')."</option>";
1977                 }
1978
1979                 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1980                         WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1981
1982                 if (db_num_rows($result) > 0 && $include_all_feeds) {
1983                         print "<option disabled>--------</option>";
1984                 }
1985
1986                 while ($line = db_fetch_assoc($result)) {
1987                         if ($line["id"] == $default_id) {
1988                                 $is_selected = "selected=\"1\"";
1989                         } else {
1990                                 $is_selected = "";
1991                         }
1992
1993                         $title = truncate_string(htmlspecialchars($line["title"]), 40);
1994
1995                         printf("<option $is_selected value='%d'>%s</option>",
1996                                 $line["id"], $title);
1997                 }
1998
1999                 print "</select>";
2000         }
2001
2002         function print_feed_cat_select($link, $id, $default_id,
2003                 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
2004
2005                         if (!$root_id) {
2006                                         print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
2007                         }
2008
2009                         if ($root_id)
2010                                 $parent_qpart = "parent_cat = '$root_id'";
2011                         else
2012                                 $parent_qpart = "parent_cat IS NULL";
2013
2014                         $result = db_query($link, "SELECT id,title,
2015                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
2016                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
2017                                 FROM ttrss_feed_categories
2018                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
2019
2020                         while ($line = db_fetch_assoc($result)) {
2021                                 if ($line["id"] == $default_id) {
2022                                         $is_selected = "selected=\"1\"";
2023                                 } else {
2024                                         $is_selected = "";
2025                                 }
2026
2027                                 for ($i = 0; $i < $nest_level; $i++)
2028                                         $line["title"] = " - " . $line["title"];
2029
2030                                 if ($line["title"])
2031                                         printf("<option $is_selected value='%d'>%s</option>",
2032                                                 $line["id"], htmlspecialchars($line["title"]));
2033
2034                                 if ($line["num_children"] > 0)
2035                                         print_feed_cat_select($link, $id, $default_id, $attributes,
2036                                                 $include_all_cats, $line["id"], $nest_level+1);
2037                         }
2038
2039                         if (!$root_id) {
2040                                 if ($include_all_cats) {
2041                                         if (db_num_rows($result) > 0) {
2042                                                 print "<option disabled=\"1\">--------</option>";
2043                                         }
2044                                                 print "<option value=\"0\">".__('Uncategorized')."</option>";
2045                                 }
2046                                 print "</select>";
2047                         }
2048                 }
2049
2050         function checkbox_to_sql_bool($val) {
2051                 return ($val == "on") ? "true" : "false";
2052         }
2053
2054         function getFeedCatTitle($link, $id) {
2055                 if ($id == -1) {
2056                         return __("Special");
2057                 } else if ($id < -10) {
2058                         return __("Labels");
2059                 } else if ($id > 0) {
2060                         $result = db_query($link, "SELECT ttrss_feed_categories.title
2061                                 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
2062                                         cat_id = ttrss_feed_categories.id");
2063                         if (db_num_rows($result) == 1) {
2064                                 return db_fetch_result($result, 0, "title");
2065                         } else {
2066                                 return __("Uncategorized");
2067                         }
2068                 } else {
2069                         return "getFeedCatTitle($id) failed";
2070                 }
2071
2072         }
2073
2074         function getFeedIcon($id) {
2075                 switch ($id) {
2076                 case 0:
2077                         return "images/archive.png";
2078                         break;
2079                 case -1:
2080                         return "images/mark_set.png";
2081                         break;
2082                 case -2:
2083                         return "images/pub_set.png";
2084                         break;
2085                 case -3:
2086                         return "images/fresh.png";
2087                         break;
2088                 case -4:
2089                         return "images/tag.png";
2090                         break;
2091                 default:
2092                         if ($id < -10) {
2093                                 return "images/label.png";
2094                         } else {
2095                                 if (file_exists(ICONS_DIR . "/$id.ico"))
2096                                         return ICONS_URL . "/$id.ico";
2097                         }
2098                         break;
2099                 }
2100         }
2101
2102         function getFeedTitle($link, $id) {
2103                 if ($id == -1) {
2104                         return __("Starred articles");
2105                 } else if ($id == -2) {
2106                         return __("Published articles");
2107                 } else if ($id == -3) {
2108                         return __("Fresh articles");
2109                 } else if ($id == -4) {
2110                         return __("All articles");
2111                 } else if ($id === 0 || $id === "0") {
2112                         return __("Archived articles");
2113                 } else if ($id < -10) {
2114                         $label_id = -$id - 11;
2115                         $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
2116                         if (db_num_rows($result) == 1) {
2117                                 return db_fetch_result($result, 0, "caption");
2118                         } else {
2119                                 return "Unknown label ($label_id)";
2120                         }
2121
2122                 } else if (is_numeric($id) && $id > 0) {
2123                         $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
2124                         if (db_num_rows($result) == 1) {
2125                                 return db_fetch_result($result, 0, "title");
2126                         } else {
2127                                 return "Unknown feed ($id)";
2128                         }
2129                 } else {
2130                         return $id;
2131                 }
2132         }
2133
2134         function make_init_params($link) {
2135                 $params = array();
2136
2137                 $params["theme"] = get_user_theme($link);
2138                 $params["theme_options"] = get_user_theme_options($link);
2139
2140                 $params["sign_progress"] = theme_image($link, "images/indicator_white.gif");
2141                 $params["sign_progress_tiny"] = theme_image($link, "images/indicator_tiny.gif");
2142                 $params["sign_excl"] = theme_image($link, "images/sign_excl.png");
2143                 $params["sign_info"] = theme_image($link, "images/sign_info.png");
2144
2145                 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
2146                         "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
2147                         "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE", "DEFAULT_ARTICLE_LIMIT",
2148                         "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
2149
2150                                  $params[strtolower($param)] = (int) get_pref($link, $param);
2151                  }
2152
2153                 $params["icons_url"] = ICONS_URL;
2154                 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
2155                 $params["default_include_children"] = get_pref($link, "_DEFAULT_INCLUDE_CHILDREN");
2156                 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
2157                 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
2158                 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
2159                 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
2160
2161                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2162                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2163
2164                 $max_feed_id = db_fetch_result($result, 0, "mid");
2165                 $num_feeds = db_fetch_result($result, 0, "nf");
2166
2167                 $params["max_feed_id"] = (int) $max_feed_id;
2168                 $params["num_feeds"] = (int) $num_feeds;
2169
2170                 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
2171
2172                 $params["csrf_token"] = $_SESSION["csrf_token"];
2173
2174                 return $params;
2175         }
2176
2177         function make_runtime_info($link) {
2178                 $data = array();
2179
2180                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2181                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2182
2183                 $max_feed_id = db_fetch_result($result, 0, "mid");
2184                 $num_feeds = db_fetch_result($result, 0, "nf");
2185
2186                 $data["max_feed_id"] = (int) $max_feed_id;
2187                 $data["num_feeds"] = (int) $num_feeds;
2188
2189                 $data['last_article_id'] = getLastArticleId($link);
2190                 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2191
2192                 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2193
2194                         $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2195
2196                         if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2197
2198                                 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2199
2200                                 if ($stamp) {
2201                                         $stamp_delta = time() - $stamp;
2202
2203                                         if ($stamp_delta > 1800) {
2204                                                 $stamp_check = 0;
2205                                         } else {
2206                                                 $stamp_check = 1;
2207                                                 $_SESSION["daemon_stamp_check"] = time();
2208                                         }
2209
2210                                         $data['daemon_stamp_ok'] = $stamp_check;
2211
2212                                         $stamp_fmt = date("Y.m.d, G:i", $stamp);
2213
2214                                         $data['daemon_stamp'] = $stamp_fmt;
2215                                 }
2216                         }
2217                 }
2218
2219                 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2220                                 $new_version_details = @check_for_update($link);
2221
2222                                 $data['new_version_available'] = (int) ($new_version_details != false);
2223
2224                                 $_SESSION["last_version_check"] = time();
2225                 }
2226
2227                 return $data;
2228         }
2229
2230         function search_to_sql($link, $search, $match_on) {
2231
2232                 $search_query_part = "";
2233
2234                 $keywords = explode(" ", $search);
2235                 $query_keywords = array();
2236
2237                 foreach ($keywords as $k) {
2238                         if (strpos($k, "-") === 0) {
2239                                 $k = substr($k, 1);
2240                                 $not = "NOT";
2241                         } else {
2242                                 $not = "";
2243                         }
2244
2245                         $commandpair = explode(":", mb_strtolower($k), 2);
2246
2247                         if ($commandpair[0] == "note" && $commandpair[1]) {
2248
2249                                 if ($commandpair[1] == "true")
2250                                         array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2251                                 else
2252                                         array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2253
2254                         } else if ($commandpair[0] == "star" && $commandpair[1]) {
2255
2256                                 if ($commandpair[1] == "true")
2257                                         array_push($query_keywords, "($not (marked = true))");
2258                                 else
2259                                         array_push($query_keywords, "($not (marked = false))");
2260
2261                         } else if ($commandpair[0] == "pub" && $commandpair[1]) {
2262
2263                                 if ($commandpair[1] == "true")
2264                                         array_push($query_keywords, "($not (published = true))");
2265                                 else
2266                                         array_push($query_keywords, "($not (published = false))");
2267
2268                         } else if (strpos($k, "@") === 0) {
2269
2270                                 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2271                                 $orig_ts = strtotime(substr($k, 1));
2272                                 $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2273
2274                                 //$k = date("Y-m-d", strtotime(substr($k, 1)));
2275
2276                                 array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2277                         } else if ($match_on == "both") {
2278                                 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2279                                                 OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2280                         } else if ($match_on == "title") {
2281                                 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%'))");
2282                         } else if ($match_on == "content") {
2283                                 array_push($query_keywords, "(UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2284                         }
2285                 }
2286
2287                 $search_query_part = implode("AND", $query_keywords);
2288
2289                 return $search_query_part;
2290         }
2291
2292         function getChildCategories($link, $cat, $owner_uid) {
2293                 $rv = array();
2294
2295                 $result = db_query($link, "SELECT id FROM ttrss_feed_categories
2296                         WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2297
2298                 while ($line = db_fetch_assoc($result)) {
2299                         array_push($rv, $line["id"]);
2300                         $rv = array_merge($rv, getChildCategories($link, $line["id"], $owner_uid));
2301                 }
2302
2303                 return $rv;
2304         }
2305
2306         function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $match_on, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false) {
2307
2308                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2309
2310                 $ext_tables_part = "";
2311
2312                         if ($search) {
2313
2314                                 if (SPHINX_ENABLED) {
2315                                         $ids = join(",", @sphinx_search($search, 0, 500));
2316
2317                                         if ($ids)
2318                                                 $search_query_part = "ref_id IN ($ids) AND ";
2319                                         else
2320                                                 $search_query_part = "ref_id = -1 AND ";
2321
2322                                 } else {
2323                                         $search_query_part = search_to_sql($link, $search, $match_on);
2324                                         $search_query_part .= " AND ";
2325                                 }
2326
2327                         } else {
2328                                 $search_query_part = "";
2329                         }
2330
2331                         if ($filter) {
2332                                 $filter_query_part = filter_to_sql($filter);
2333                         } else {
2334                                 $filter_query_part = "";
2335                         }
2336
2337                         if ($since_id) {
2338                                 $since_id_part = "ttrss_entries.id > $since_id AND ";
2339                         } else {
2340                                 $since_id_part = "";
2341                         }
2342
2343                         $view_query_part = "";
2344
2345                         if ($view_mode == "adaptive" || $view_query_part == "noscores") {
2346                                 if ($search) {
2347                                         $view_query_part = " ";
2348                                 } else if ($feed != -1) {
2349                                         $unread = getFeedUnread($link, $feed, $cat_view);
2350
2351                                         if ($cat_view && $feed > 0 && $include_children)
2352                                                 $unread += getCategoryChildrenUnread($link, $feed);
2353
2354                                         if ($unread > 0) {
2355                                                 $view_query_part = " unread = true AND ";
2356                                         }
2357                                 }
2358                         }
2359
2360                         if ($view_mode == "marked") {
2361                                 $view_query_part = " marked = true AND ";
2362                         }
2363
2364                         if ($view_mode == "published") {
2365                                 $view_query_part = " published = true AND ";
2366                         }
2367
2368                         if ($view_mode == "unread") {
2369                                 $view_query_part = " unread = true AND ";
2370                         }
2371
2372                         if ($view_mode == "updated") {
2373                                 $view_query_part = " (last_read is null and unread = false) AND ";
2374                         }
2375
2376                         if ($limit > 0) {
2377                                 $limit_query_part = "LIMIT " . $limit;
2378                         }
2379
2380                         $vfeed_query_part = "";
2381
2382                         // override query strategy and enable feed display when searching globally
2383                         if ($search && $search_mode == "all_feeds") {
2384                                 $query_strategy_part = "ttrss_entries.id > 0";
2385                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2386                         /* tags */
2387                         } else if (preg_match("/^-?[0-9][0-9]*$/", $feed) == false) {
2388                                 $query_strategy_part = "ttrss_entries.id > 0";
2389                                 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2390                                         id = feed_id) as feed_title,";
2391                         } else if ($feed > 0 && $search && $search_mode == "this_cat") {
2392
2393                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2394
2395                                 $tmp_result = false;
2396
2397                                 if ($cat_view) {
2398                                         $tmp_result = db_query($link, "SELECT id
2399                                                 FROM ttrss_feeds WHERE cat_id = '$feed'");
2400                                 } else {
2401                                         $tmp_result = db_query($link, "SELECT id
2402                                                 FROM ttrss_feeds WHERE cat_id = (SELECT cat_id FROM ttrss_feeds
2403                                                         WHERE id = '$feed') AND id != '$feed'");
2404                                 }
2405
2406                                 $cat_siblings = array();
2407
2408                                 if (db_num_rows($tmp_result) > 0) {
2409                                         while ($p = db_fetch_assoc($tmp_result)) {
2410                                                 array_push($cat_siblings, "feed_id = " . $p["id"]);
2411                                         }
2412
2413                                         $query_strategy_part = sprintf("(feed_id = %d OR %s)",
2414                                                 $feed, implode(" OR ", $cat_siblings));
2415
2416                                 } else {
2417                                         $query_strategy_part = "ttrss_entries.id > 0";
2418                                 }
2419
2420                         } else if ($feed > 0) {
2421
2422                                 if ($cat_view) {
2423
2424                                         if ($feed > 0) {
2425                                                 if ($include_children) {
2426                                                         # sub-cats
2427                                                         $subcats = getChildCategories($link, $feed, $owner_uid);
2428
2429                                                         if (count($subcats) == 0) {
2430                                                                 $query_strategy_part = "cat_id = '$feed'";
2431                                                         } else {
2432                                                                 array_push($subcats, $feed);
2433                                                                 $query_strategy_part = "cat_id IN (".
2434                                                                         implode(",", $subcats).")";
2435                                                         }
2436                                                 } else {
2437                                                         $query_strategy_part = "cat_id = '$feed'";
2438                                                 }
2439
2440                                         } else {
2441                                                 $query_strategy_part = "cat_id IS NULL";
2442                                         }
2443
2444                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2445
2446                                 } else {
2447                                         $query_strategy_part = "feed_id = '$feed'";
2448                                 }
2449                         } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2450                                 $query_strategy_part = "feed_id IS NULL";
2451                         } else if ($feed == 0 && $cat_view) { // uncategorized
2452                                 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2453                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2454                         } else if ($feed == -1) { // starred virtual feed
2455                                 $query_strategy_part = "marked = true";
2456                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2457                         } else if ($feed == -2) { // published virtual feed OR labels category
2458
2459                                 if (!$cat_view) {
2460                                         $query_strategy_part = "published = true";
2461                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2462                                 } else {
2463                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2464
2465                                         $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2466
2467                                         $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2468                                                 ttrss_user_labels2.article_id = ref_id";
2469
2470                                 }
2471
2472                         } else if ($feed == -3) { // fresh virtual feed
2473                                 $query_strategy_part = "unread = true AND score >= 0";
2474
2475                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2476
2477                                 if (DB_TYPE == "pgsql") {
2478                                         $query_strategy_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
2479                                 } else {
2480                                         $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2481                                 }
2482
2483                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2484                         } else if ($feed == -4) { // all articles virtual feed
2485                                 $query_strategy_part = "true";
2486                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2487                         } else if ($feed <= -10) { // labels
2488                                 $label_id = -$feed - 11;
2489
2490                                 $query_strategy_part = "label_id = '$label_id' AND
2491                                         ttrss_labels2.id = ttrss_user_labels2.label_id AND
2492                                         ttrss_user_labels2.article_id = ref_id";
2493
2494                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2495                                 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2496
2497                         } else {
2498                                 $query_strategy_part = "id > 0"; // dumb
2499                         }
2500
2501                         if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
2502                                 $date_sort_field = "updated";
2503                         } else {
2504                                 $date_sort_field = "date_entered";
2505                         }
2506
2507                         if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
2508                                 $order_by = "$date_sort_field";
2509                         } else {
2510                                 $order_by = "$date_sort_field DESC";
2511                         }
2512
2513                         if ($view_mode != "noscores") {
2514                                 $order_by = "score DESC, $order_by";
2515                         }
2516
2517                         if ($override_order) {
2518                                 $order_by = $override_order;
2519                         }
2520
2521                         $feed_title = "";
2522
2523                         if ($search) {
2524                                 $feed_title = "Search results";
2525                         } else {
2526                                 if ($cat_view) {
2527                                         $feed_title = getCategoryTitle($link, $feed);
2528                                 } else {
2529                                         if (is_numeric($feed) && $feed > 0) {
2530                                                 $result = db_query($link, "SELECT title,site_url,last_error
2531                                                         FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2532
2533                                                 $feed_title = db_fetch_result($result, 0, "title");
2534                                                 $feed_site_url = db_fetch_result($result, 0, "site_url");
2535                                                 $last_error = db_fetch_result($result, 0, "last_error");
2536                                         } else {
2537                                                 $feed_title = getFeedTitle($link, $feed);
2538                                         }
2539                                 }
2540                         }
2541
2542                         $content_query_part = "content as content_preview,";
2543
2544                         if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
2545
2546                                 if ($feed >= 0) {
2547                                         $feed_kind = "Feeds";
2548                                 } else {
2549                                         $feed_kind = "Labels";
2550                                 }
2551
2552                                 if ($limit_query_part) {
2553                                         $offset_query_part = "OFFSET $offset";
2554                                 }
2555
2556                                 if ($vfeed_query_part && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2557                                         if (!$override_order) {
2558                                                 $order_by = "ttrss_feeds.title, $order_by";
2559                                         }
2560                                 }
2561
2562                                 if ($feed != "0") {
2563                                         $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2564                                         $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2565
2566                                 } else {
2567                                         $from_qpart = "ttrss_entries,ttrss_user_entries$ext_tables_part
2568                                                 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2569                                 }
2570
2571                                 $query = "SELECT DISTINCT
2572                                                 date_entered,
2573                                                 guid,
2574                                                 ttrss_entries.id,ttrss_entries.title,
2575                                                 updated,
2576                                                 label_cache,
2577                                                 tag_cache,
2578                                                 always_display_enclosures,
2579                                                 site_url,
2580                                                 note,
2581                                                 num_comments,
2582                                                 comments,
2583                                                 int_id,
2584                                                 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2585                                                 ".SUBSTRING_FOR_DATE."(last_read,1,19) as last_read_noms,
2586                                                 $vfeed_query_part
2587                                                 $content_query_part
2588                                                 ".SUBSTRING_FOR_DATE."(updated,1,19) as updated_noms,
2589                                                 author,score
2590                                         FROM
2591                                                 $from_qpart
2592                                         WHERE
2593                                         $feed_check_qpart
2594                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
2595                                         ttrss_user_entries.owner_uid = '$owner_uid' AND
2596                                         $search_query_part
2597                                         $filter_query_part
2598                                         $view_query_part
2599                                         $since_id_part
2600                                         $query_strategy_part ORDER BY $order_by
2601                                         $limit_query_part $offset_query_part";
2602
2603                                 if ($_REQUEST["debug"]) print $query;
2604
2605                                 $result = db_query($link, $query);
2606
2607                         } else {
2608                                 // browsing by tag
2609
2610                                 $select_qpart = "SELECT DISTINCT " .
2611                                                                 "date_entered," .
2612                                                                 "guid," .
2613                                                                 "note," .
2614                                                                 "ttrss_entries.id as id," .
2615                                                                 "title," .
2616                                                                 "updated," .
2617                                                                 "unread," .
2618                                                                 "feed_id," .
2619                                                                 "orig_feed_id," .
2620                                                                 "marked," .
2621                                                                 "num_comments, " .
2622                                                                 "comments, " .
2623                                                                 "tag_cache," .
2624                                                                 "label_cache," .
2625                                                                 "link," .
2626                                                                 "last_read," .
2627                                                                 SUBSTRING_FOR_DATE . "(last_read,1,19) as last_read_noms," .
2628                                                                 $since_id_part .
2629                                                                 $vfeed_query_part .
2630                                                                 $content_query_part .
2631                                                                 SUBSTRING_FOR_DATE . "(updated,1,19) as updated_noms," .
2632                                                                 "score ";
2633
2634                                 $feed_kind = "Tags";
2635                                 $all_tags = explode(",", $feed);
2636                                 if ($search_mode == 'any') {
2637                                         $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2638                                         $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2639                                         $where_qpart = " WHERE " .
2640                                                                    "ref_id = ttrss_entries.id AND " .
2641                                                                    "ttrss_user_entries.owner_uid = $owner_uid AND " .
2642                                                                    "post_int_id = int_id AND $tag_sql AND " .
2643                                                                    $view_query_part .
2644                                                                    $search_query_part .
2645                                                                    $query_strategy_part . " ORDER BY $order_by " .
2646                                                                    $limit_query_part;
2647
2648                                 } else {
2649                                         $i = 1;
2650                                         $sub_selects = array();
2651                                         $sub_ands = array();
2652                                         foreach ($all_tags as $term) {
2653                                                 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2654                                                 $i++;
2655                                         }
2656                                         if ($i > 2) {
2657                                                 $x = 1;
2658                                                 $y = 2;
2659                                                 do {
2660                                                         array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2661                                                         $x++;
2662                                                         $y++;
2663                                                 } while ($y < $i);
2664                                         }
2665                                         array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2666                                         array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2667                                         $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2668                                         $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2669                                 }
2670                                 //                              error_log("TAG SQL: " . $tag_sql);
2671                                 // $tag_sql = "tag_name = '$feed'";   DEFAULT way
2672
2673                                 //                              error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2674                                 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2675                         }
2676
2677                         return array($result, $feed_title, $feed_site_url, $last_error);
2678
2679         }
2680
2681         function sanitize($link, $str, $force_strip_tags = false, $owner = false, $site_url = false) {
2682                 global $purifier;
2683
2684                 if (!$owner) $owner = $_SESSION["uid"];
2685
2686                 $res = trim($str); if (!$res) return '';
2687
2688                 // create global Purifier object if needed
2689                 if (!$purifier) {
2690                         require_once 'lib/htmlpurifier/library/HTMLPurifier.auto.php';
2691
2692                         $config = HTMLPurifier_Config::createDefault();
2693
2694                         $allowed = "p,a[href],i,em,b,strong,code,pre,blockquote,br,img[src|alt|title|align|hspace],ul,ol,li,h1,h2,h3,h4,s,object[classid|type|id|name|width|height|codebase],param[name|value],table,tr,td,span[class]";
2695
2696                         $config->set('HTML.SafeObject', true);
2697                         @$config->set('HTML', 'Allowed', $allowed);
2698                         $config->set('Output.FlashCompat', true);
2699                         $config->set('Attr.EnableID', true);
2700                         if (!defined('MOBILE_VERSION')) {
2701                                 @$config->set('Cache', 'SerializerPath', CACHE_DIR . "/htmlpurifier");
2702                         } else {
2703                                 @$config->set('Cache', 'SerializerPath', "../" . CACHE_DIR . "/htmlpurifier");
2704                         }
2705
2706                         $config->set('Filter.YouTube', true);
2707
2708                         $purifier = new HTMLPurifier($config);
2709                 }
2710
2711                 $res = $purifier->purify($res);
2712
2713                 if (get_pref($link, "STRIP_IMAGES", $owner)) {
2714                         $res = preg_replace('/<img[^>]+>/is', '', $res);
2715                 }
2716
2717                 if (strpos($res, "href=") === false)
2718                         $res = rewrite_urls($res);
2719
2720                 $charset_hack = '<head>
2721                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2722                 </head>';
2723
2724                 $res = trim($res); if (!$res) return '';
2725
2726                 libxml_use_internal_errors(true);
2727
2728                 $doc = new DOMDocument();
2729                 $doc->loadHTML($charset_hack . $res);
2730                 $xpath = new DOMXPath($doc);
2731
2732                 $entries = $xpath->query('(//a[@href]|//img[@src])');
2733                 $br_inserted = 0;
2734
2735                 foreach ($entries as $entry) {
2736
2737                         if ($site_url) {
2738
2739                                 if ($entry->hasAttribute('href'))
2740                                         $entry->setAttribute('href',
2741                                                 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2742
2743                                 if ($entry->hasAttribute('src'))
2744                                         if (preg_match('/^image.php\?i=[a-z0-9]+$/', $entry->getAttribute('src')) == 0)
2745                                                 $entry->setAttribute('src',
2746                                                         rewrite_relative_url($site_url, $entry->getAttribute('src')));
2747                         }
2748
2749                         if (strtolower($entry->nodeName) == "a") {
2750                                 $entry->setAttribute("target", "_blank");
2751                         }
2752
2753                         if (strtolower($entry->nodeName) == "img" && !$br_inserted) {
2754                                 $br = $doc->createElement("br");
2755
2756                                 if ($entry->parentNode->nextSibling) {
2757                                         $entry->parentNode->insertBefore($br, $entry->nextSibling);
2758                                         $br_inserted = 1;
2759                                 }
2760
2761                         }
2762                 }
2763
2764                 $node = $doc->getElementsByTagName('body')->item(0);
2765
2766                 return $doc->saveXML($node, LIBXML_NOEMPTYTAG);
2767         }
2768
2769         /**
2770          * Send by mail a digest of last articles.
2771          *
2772          * @param mixed $link The database connection.
2773          * @param integer $limit The maximum number of articles by digest.
2774          * @return boolean Return false if digests are not enabled.
2775          */
2776         function send_headlines_digests($link, $debug = false) {
2777
2778                 require_once 'lib/phpmailer/class.phpmailer.php';
2779
2780                 $user_limit = 15; // amount of users to process (e.g. emails to send out)
2781                 $limit = 1000; // maximum amount of headlines to include
2782
2783                 if ($debug) _debug("Sending digests, batch of max $user_limit users, headline limit = $limit");
2784
2785                 if (DB_TYPE == "pgsql") {
2786                         $interval_query = "last_digest_sent < NOW() - INTERVAL '1 days'";
2787                 } else if (DB_TYPE == "mysql") {
2788                         $interval_query = "last_digest_sent < DATE_SUB(NOW(), INTERVAL 1 DAY)";
2789                 }
2790
2791                 $result = db_query($link, "SELECT id,email FROM ttrss_users
2792                                 WHERE email != '' AND (last_digest_sent IS NULL OR $interval_query)");
2793
2794                 while ($line = db_fetch_assoc($result)) {
2795
2796                         if (get_pref($link, 'DIGEST_ENABLE', $line['id'], false)) {
2797                                 $preferred_ts = strtotime(get_pref($link, 'DIGEST_PREFERRED_TIME', $line['id'], '00:00'));
2798
2799                                 // try to send digests within 2 hours of preferred time
2800                                 if ($preferred_ts && time() >= $preferred_ts &&
2801                                                 time() - $preferred_ts <= 7200) {
2802
2803                                         if ($debug) print "Sending digest for UID:" . $line['id'] . " - " . $line["email"] . " ... ";
2804
2805                                         $do_catchup = get_pref($link, 'DIGEST_CATCHUP', $line['id'], false);
2806
2807                                         global $tz_offset;
2808
2809                                         // reset tz_offset global to prevent tz cache clash between users
2810                                         $tz_offset = -1;
2811
2812                                         $tuple = prepare_headlines_digest($link, $line["id"], 1, $limit);
2813                                         $digest = $tuple[0];
2814                                         $headlines_count = $tuple[1];
2815                                         $affected_ids = $tuple[2];
2816                                         $digest_text = $tuple[3];
2817
2818                                         if ($headlines_count > 0) {
2819
2820                                                 $mail = new PHPMailer();
2821
2822                                                 $mail->PluginDir = "lib/phpmailer/";
2823                                                 $mail->SetLanguage("en", "lib/phpmailer/language/");
2824
2825                                                 $mail->CharSet = "UTF-8";
2826
2827                                                 $mail->From = SMTP_FROM_ADDRESS;
2828                                                 $mail->FromName = SMTP_FROM_NAME;
2829                                                 $mail->AddAddress($line["email"], $line["login"]);
2830
2831                                                 if (SMTP_HOST) {
2832                                                         $mail->Host = SMTP_HOST;
2833                                                         $mail->Mailer = "smtp";
2834                                                         $mail->SMTPAuth = SMTP_LOGIN != '';
2835                                                         $mail->Username = SMTP_LOGIN;
2836                                                         $mail->Password = SMTP_PASSWORD;
2837                                                 }
2838
2839                                                 $mail->IsHTML(true);
2840                                                 $mail->Subject = DIGEST_SUBJECT;
2841                                                 $mail->Body = $digest;
2842                                                 $mail->AltBody = $digest_text;
2843
2844                                                 $rc = $mail->Send();
2845
2846                                                 if (!$rc && $debug) print "ERROR: " . $mail->ErrorInfo;
2847
2848                                                 if ($debug) print "RC=$rc\n";
2849
2850                                                 if ($rc && $do_catchup) {
2851                                                         if ($debug) print "Marking affected articles as read...\n";
2852                                                         catchupArticlesById($link, $affected_ids, 0, $line["id"]);
2853                                                 }
2854                                         } else {
2855                                                 if ($debug) print "No headlines\n";
2856                                         }
2857
2858                                         db_query($link, "UPDATE ttrss_users SET last_digest_sent = NOW()
2859                                                 WHERE id = " . $line["id"]);
2860
2861                                 }
2862                         }
2863                 }
2864
2865                 if ($debug) _debug("All done.");
2866
2867         }
2868
2869         function prepare_headlines_digest($link, $user_id, $days = 1, $limit = 1000) {
2870
2871                 require_once "lib/MiniTemplator.class.php";
2872
2873                 $tpl = new MiniTemplator;
2874                 $tpl_t = new MiniTemplator;
2875
2876                 $tpl->readTemplateFromFile("templates/digest_template_html.txt");
2877                 $tpl_t->readTemplateFromFile("templates/digest_template.txt");
2878
2879                 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $user_id);
2880                 $local_ts = convert_timestamp(time(), 'UTC', $user_tz_string);
2881
2882                 $tpl->setVariable('CUR_DATE', date('Y/m/d', $local_ts));
2883                 $tpl->setVariable('CUR_TIME', date('G:i', $local_ts));
2884
2885                 $tpl_t->setVariable('CUR_DATE', date('Y/m/d', $local_ts));
2886                 $tpl_t->setVariable('CUR_TIME', date('G:i', $local_ts));
2887
2888                 $affected_ids = array();
2889
2890                 if (DB_TYPE == "pgsql") {
2891                         $interval_query = "ttrss_entries.date_updated > NOW() - INTERVAL '$days days'";
2892                 } else if (DB_TYPE == "mysql") {
2893                         $interval_query = "ttrss_entries.date_updated > DATE_SUB(NOW(), INTERVAL $days DAY)";
2894                 }
2895
2896                 $result = db_query($link, "SELECT ttrss_entries.title,
2897                                 ttrss_feeds.title AS feed_title,
2898                                 COALESCE(ttrss_feed_categories.title, '".__('Uncategorized')."') AS cat_title,
2899                                 date_updated,
2900                                 ttrss_user_entries.ref_id,
2901                                 link,
2902                                 score,
2903                                 content,
2904                                 ".SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
2905                         FROM
2906                                 ttrss_user_entries,ttrss_entries,ttrss_feeds
2907                         LEFT JOIN
2908                                 ttrss_feed_categories ON (cat_id = ttrss_feed_categories.id)
2909                         WHERE
2910                                 ref_id = ttrss_entries.id AND feed_id = ttrss_feeds.id
2911                                 AND include_in_digest = true
2912                                 AND $interval_query
2913                                 AND ttrss_user_entries.owner_uid = $user_id
2914                                 AND unread = true
2915                                 AND score >= 0
2916                         ORDER BY ttrss_feed_categories.title, ttrss_feeds.title, score DESC, date_updated DESC
2917                         LIMIT $limit");
2918
2919                 $cur_feed_title = "";
2920
2921                 $headlines_count = db_num_rows($result);
2922
2923                 $headlines = array();
2924
2925                 while ($line = db_fetch_assoc($result)) {
2926                         array_push($headlines, $line);
2927                 }
2928
2929                 for ($i = 0; $i < sizeof($headlines); $i++) {
2930
2931                         $line = $headlines[$i];
2932
2933                         array_push($affected_ids, $line["ref_id"]);
2934
2935                         $updated = make_local_datetime($link, $line['last_updated'], false,
2936                                 $user_id);
2937
2938 /*                      if ($line["score"] != 0) {
2939                                 if ($line["score"] > 0) $line["score"] = '+' . $line["score"];
2940
2941                                 $line["title"] .= " (".$line['score'].")";
2942                         } */
2943
2944                         if (get_pref($link, 'ENABLE_FEED_CATS', $user_id)) {
2945                                 $line['feed_title'] = $line['cat_title'] . " / " . $line['feed_title'];
2946                         }
2947
2948                         $tpl->setVariable('FEED_TITLE', $line["feed_title"]);
2949                         $tpl->setVariable('ARTICLE_TITLE', $line["title"]);
2950                         $tpl->setVariable('ARTICLE_LINK', $line["link"]);
2951                         $tpl->setVariable('ARTICLE_UPDATED', $updated);
2952                         $tpl->setVariable('ARTICLE_EXCERPT',
2953                                 truncate_string(strip_tags($line["content"]), 300));
2954 //                      $tpl->setVariable('ARTICLE_CONTENT',
2955 //                              strip_tags($article_content));
2956
2957                         $tpl->addBlock('article');
2958
2959                         $tpl_t->setVariable('FEED_TITLE', $line["feed_title"]);
2960                         $tpl_t->setVariable('ARTICLE_TITLE', $line["title"]);
2961                         $tpl_t->setVariable('ARTICLE_LINK', $line["link"]);
2962                         $tpl_t->setVariable('ARTICLE_UPDATED', $updated);
2963 //                      $tpl_t->setVariable('ARTICLE_EXCERPT',
2964 //                              truncate_string(strip_tags($line["excerpt"]), 100));
2965
2966                         $tpl_t->addBlock('article');
2967
2968                         if ($headlines[$i]['feed_title'] != $headlines[$i+1]['feed_title']) {
2969                                 $tpl->addBlock('feed');
2970                                 $tpl_t->addBlock('feed');
2971                         }
2972
2973                 }
2974
2975                 $tpl->addBlock('digest');
2976                 $tpl->generateOutputToString($tmp);
2977
2978                 $tpl_t->addBlock('digest');
2979                 $tpl_t->generateOutputToString($tmp_t);
2980
2981                 return array($tmp, $headlines_count, $affected_ids, $tmp_t);
2982         }
2983
2984         function check_for_update($link) {
2985                 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2986                         $version_url = "http://tt-rss.org/version.php?ver=" . VERSION;
2987
2988                         $version_data = @fetch_file_contents($version_url);
2989
2990                         if ($version_data) {
2991                                 $version_data = json_decode($version_data, true);
2992                                 if ($version_data && $version_data['version']) {
2993
2994                                         if (version_compare(VERSION, $version_data['version']) == -1) {
2995                                                 return $version_data;
2996                                         }
2997                                 }
2998                         }
2999                 }
3000                 return false;
3001         }
3002
3003         function markArticlesById($link, $ids, $cmode) {
3004
3005                 $tmp_ids = array();
3006
3007                 foreach ($ids as $id) {
3008                         array_push($tmp_ids, "ref_id = '$id'");
3009                 }
3010
3011                 $ids_qpart = join(" OR ", $tmp_ids);
3012
3013                 if ($cmode == 0) {
3014                         db_query($link, "UPDATE ttrss_user_entries SET
3015                         marked = false,last_read = NOW()
3016                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3017                 } else if ($cmode == 1) {
3018                         db_query($link, "UPDATE ttrss_user_entries SET
3019                         marked = true
3020                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3021                 } else {
3022                         db_query($link, "UPDATE ttrss_user_entries SET
3023                         marked = NOT marked,last_read = NOW()
3024                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3025                 }
3026         }
3027
3028         function publishArticlesById($link, $ids, $cmode) {
3029
3030                 $tmp_ids = array();
3031
3032                 foreach ($ids as $id) {
3033                         array_push($tmp_ids, "ref_id = '$id'");
3034                 }
3035
3036                 $ids_qpart = join(" OR ", $tmp_ids);
3037
3038                 if ($cmode == 0) {
3039                         db_query($link, "UPDATE ttrss_user_entries SET
3040                         published = false,last_read = NOW()
3041                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3042                 } else if ($cmode == 1) {
3043                         db_query($link, "UPDATE ttrss_user_entries SET
3044                         published = true
3045                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3046                 } else {
3047                         db_query($link, "UPDATE ttrss_user_entries SET
3048                         published = NOT published,last_read = NOW()
3049                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
3050                 }
3051
3052                 if (PUBSUBHUBBUB_HUB) {
3053                         $rss_link = get_self_url_prefix() .
3054                                 "/public.php?op=rss&id=-2&key=" .
3055                                 get_feed_access_key($link, -2, false);
3056
3057                         $p = new Publisher(PUBSUBHUBBUB_HUB);
3058
3059                         $pubsub_result = $p->publish_update($rss_link);
3060                 }
3061         }
3062
3063         function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
3064
3065                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3066                 if (count($ids) == 0) return;
3067
3068                 $tmp_ids = array();
3069
3070                 foreach ($ids as $id) {
3071                         array_push($tmp_ids, "ref_id = '$id'");
3072                 }
3073
3074                 $ids_qpart = join(" OR ", $tmp_ids);
3075
3076                 if ($cmode == 0) {
3077                         db_query($link, "UPDATE ttrss_user_entries SET
3078                         unread = false,last_read = NOW()
3079                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3080                 } else if ($cmode == 1) {
3081                         db_query($link, "UPDATE ttrss_user_entries SET
3082                         unread = true
3083                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3084                 } else {
3085                         db_query($link, "UPDATE ttrss_user_entries SET
3086                         unread = NOT unread,last_read = NOW()
3087                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3088                 }
3089
3090                 /* update ccache */
3091
3092                 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
3093                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3094
3095                 while ($line = db_fetch_assoc($result)) {
3096                         ccache_update($link, $line["feed_id"], $owner_uid);
3097                 }
3098         }
3099
3100         function catchupArticleById($link, $id, $cmode) {
3101
3102                 if ($cmode == 0) {
3103                         db_query($link, "UPDATE ttrss_user_entries SET
3104                         unread = false,last_read = NOW()
3105                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3106                 } else if ($cmode == 1) {
3107                         db_query($link, "UPDATE ttrss_user_entries SET
3108                         unread = true
3109                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3110                 } else {
3111                         db_query($link, "UPDATE ttrss_user_entries SET
3112                         unread = NOT unread,last_read = NOW()
3113                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3114                 }
3115
3116                 $feed_id = getArticleFeed($link, $id);
3117                 ccache_update($link, $feed_id, $_SESSION["uid"]);
3118         }
3119
3120         function make_guid_from_title($title) {
3121                 return preg_replace("/[ \"\',.:;]/", "-",
3122                         mb_strtolower(strip_tags($title), 'utf-8'));
3123         }
3124
3125         function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
3126
3127                 $a_id = db_escape_string($id);
3128
3129                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3130
3131                 $query = "SELECT DISTINCT tag_name,
3132                         owner_uid as owner FROM
3133                         ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
3134                         ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
3135
3136                 $obj_id = md5("TAGS:$owner_uid:$id");
3137                 $tags = array();
3138
3139                 /* check cache first */
3140
3141                 if ($tag_cache === false) {
3142                         $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
3143                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
3144
3145                         $tag_cache = db_fetch_result($result, 0, "tag_cache");
3146                 }
3147
3148                 if ($tag_cache) {
3149                         $tags = explode(",", $tag_cache);
3150                 } else {
3151
3152                         /* do it the hard way */
3153
3154                         $tmp_result = db_query($link, $query);
3155
3156                         while ($tmp_line = db_fetch_assoc($tmp_result)) {
3157                                 array_push($tags, $tmp_line["tag_name"]);
3158                         }
3159
3160                         /* update the cache */
3161
3162                         $tags_str = db_escape_string(join(",", $tags));
3163
3164                         db_query($link, "UPDATE ttrss_user_entries
3165                                 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
3166                                 AND owner_uid = $owner_uid");
3167                 }
3168
3169                 return $tags;
3170         }
3171
3172         function trim_array($array) {
3173                 $tmp = $array;
3174                 array_walk($tmp, 'trim');
3175                 return $tmp;
3176         }
3177
3178         function tag_is_valid($tag) {
3179                 if ($tag == '') return false;
3180                 if (preg_match("/^[0-9]*$/", $tag)) return false;
3181                 if (mb_strlen($tag) > 250) return false;
3182
3183                 if (function_exists('iconv')) {
3184                         $tag = iconv("utf-8", "utf-8", $tag);
3185                 }
3186
3187                 if (!$tag) return false;
3188
3189                 return true;
3190         }
3191
3192         function render_login_form($link, $mobile = 0) {
3193                 switch ($mobile) {
3194                 case 0:
3195                         require_once "login_form.php";
3196                         break;
3197                 case 1:
3198                         require_once "mobile/login_form.php";
3199                         break;
3200                 case 2:
3201                         require_once "mobile/classic/login_form.php";
3202                 }
3203         }
3204
3205         // from http://developer.apple.com/internet/safari/faq.html
3206         function no_cache_incantation() {
3207                 header("Expires: Mon, 22 Dec 1980 00:00:00 GMT"); // Happy birthday to me :)
3208                 header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // always modified
3209                 header("Cache-Control: no-store, no-cache, must-revalidate, max-age=0"); // HTTP/1.1
3210                 header("Cache-Control: post-check=0, pre-check=0", false);
3211                 header("Pragma: no-cache"); // HTTP/1.0
3212         }
3213
3214         function format_warning($msg, $id = "") {
3215                 global $link;
3216                 return "<div class=\"warning\" id=\"$id\">
3217                         <img src=\"".theme_image($link, "images/sign_excl.png")."\">$msg</div>";
3218         }
3219
3220         function format_notice($msg, $id = "") {
3221                 global $link;
3222                 return "<div class=\"notice\" id=\"$id\">
3223                         <img src=\"".theme_image($link, "images/sign_info.png")."\">$msg</div>";
3224         }
3225
3226         function format_error($msg, $id = "") {
3227                 global $link;
3228                 return "<div class=\"error\" id=\"$id\">
3229                         <img src=\"".theme_image($link, "images/sign_excl.png")."\">$msg</div>";
3230         }
3231
3232         function print_notice($msg) {
3233                 return print format_notice($msg);
3234         }
3235
3236         function print_warning($msg) {
3237                 return print format_warning($msg);
3238         }
3239
3240         function print_error($msg) {
3241                 return print format_error($msg);
3242         }
3243
3244
3245         function T_sprintf() {
3246                 $args = func_get_args();
3247                 return vsprintf(__(array_shift($args)), $args);
3248         }
3249
3250         function format_inline_player($link, $url, $ctype) {
3251
3252                 $entry = "";
3253
3254                 if (strpos($ctype, "audio/") === 0) {
3255
3256                         if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
3257                                 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
3258                                 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
3259
3260                                 $id = 'AUDIO-' . uniqid();
3261
3262                                 $entry .= "<audio id=\"$id\"\">
3263                                         <source src=\"$url\"></source>
3264                                         </audio>";
3265
3266                                 $entry .= "<span onclick=\"player(this)\"
3267                                         title=\"".__("Click to play")."\" status=\"0\"
3268                                         class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
3269
3270                         } else {
3271
3272                                 $entry .= "<object type=\"application/x-shockwave-flash\"
3273                                         data=\"lib/button/musicplayer.swf?song_url=$url\"
3274                                         width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
3275                                         <param name=\"movie\"
3276                                                 value=\"lib/button/musicplayer.swf?song_url=$url\" />
3277                                         </object>";
3278                         }
3279                 }
3280
3281                 $filename = substr($url, strrpos($url, "/")+1);
3282
3283                 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3284                         $filename . " (" . $ctype . ")" . "</a>";
3285
3286                 return $entry;
3287         }
3288
3289         function format_article($link, $id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
3290
3291                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3292
3293                 $rv = array();
3294
3295                 $rv['id'] = $id;
3296
3297                 /* we can figure out feed_id from article id anyway, why do we
3298                  * pass feed_id here? let's ignore the argument :( */
3299
3300                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3301                         WHERE ref_id = '$id'");
3302
3303                 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
3304
3305                 $rv['feed_id'] = $feed_id;
3306
3307                 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
3308
3309                 $result = db_query($link, "SELECT rtl_content, always_display_enclosures FROM ttrss_feeds
3310                         WHERE id = '$feed_id' AND owner_uid = $owner_uid");
3311
3312                 if (db_num_rows($result) == 1) {
3313                         $rtl_content = sql_bool_to_bool(db_fetch_result($result, 0, "rtl_content"));
3314                         $always_display_enclosures = sql_bool_to_bool(db_fetch_result($result, 0, "always_display_enclosures"));
3315                 } else {
3316                         $rtl_content = false;
3317                         $always_display_enclosures = false;
3318                 }
3319
3320                 if ($rtl_content) {
3321                         $rtl_tag = "dir=\"RTL\"";
3322                         $rtl_class = "RTL";
3323                 } else {
3324                         $rtl_tag = "";
3325                         $rtl_class = "";
3326                 }
3327
3328                 if ($mark_as_read) {
3329                         $result = db_query($link, "UPDATE ttrss_user_entries
3330                                 SET unread = false,last_read = NOW()
3331                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
3332
3333                         ccache_update($link, $feed_id, $owner_uid);
3334                 }
3335
3336                 $result = db_query($link, "SELECT title,link,content,feed_id,comments,int_id,
3337                         ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
3338                         (SELECT icon_url FROM ttrss_feeds WHERE id = feed_id) as icon_url,
3339                         (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
3340                         num_comments,
3341                         tag_cache,
3342                         author,
3343                         orig_feed_id,
3344                         note
3345                         FROM ttrss_entries,ttrss_user_entries
3346                         WHERE   id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
3347
3348                 if ($result) {
3349
3350                         $line = db_fetch_assoc($result);
3351
3352                         if ($line["icon_url"]) {
3353                                 $feed_icon = "<img src=\"" . $line["icon_url"] . "\">";
3354                         } else {
3355                                 $feed_icon = "&nbsp;";
3356                         }
3357
3358                         $feed_site_url = $line['site_url'];
3359
3360                         $num_comments = $line["num_comments"];
3361                         $entry_comments = "";
3362
3363                         if ($num_comments > 0) {
3364                                 if ($line["comments"]) {
3365                                         $comments_url = $line["comments"];
3366                                 } else {
3367                                         $comments_url = $line["link"];
3368                                 }
3369                                 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
3370                         } else {
3371                                 if ($line["comments"] && $line["link"] != $line["comments"]) {
3372                                         $entry_comments = "<a target='_blank' href=\"".$line["comments"]."\">comments</a>";
3373                                 }
3374                         }
3375
3376                         if ($zoom_mode) {
3377                                 header("Content-Type: text/html");
3378                                 $rv['content'] .= "<html><head>
3379                                                 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
3380                                                 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3381                                                 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
3382                                         </head><body>";
3383                         }
3384
3385                         $title_escaped = db_escape_string($line['title']);
3386
3387                         $rv['content'] .= "<div id=\"PTITLE-$id\" style=\"display : none\">" .
3388                                 truncate_string(strip_tags($line['title']), 15) . "</div>";
3389
3390                         $rv['content'] .= "<div id=\"PTITLE-FULL-$id\" style=\"display : none\">" .
3391                                 strip_tags($line['title']) . "</div>";
3392
3393                         $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3394
3395                         $rv['content'] .= "<div onclick=\"return postClicked(event, $id)\"
3396                                 class=\"postHeader\" id=\"POSTHDR-$id\">";
3397
3398                         $entry_author = $line["author"];
3399
3400                         if ($entry_author) {
3401                                 $entry_author = __(" - ") . $entry_author;
3402                         }
3403
3404                         $parsed_updated = make_local_datetime($link, $line["updated"], true,
3405                                 $owner_uid, true);
3406
3407                         $rv['content'] .= "<div class=\"postDate$rtl_class\">$parsed_updated</div>";
3408
3409                         if ($line["link"]) {
3410                                 $rv['content'] .= "<div class='postTitle' clear='both'><a target='_blank'
3411                                         title=\"".htmlspecialchars($line['title'])."\"
3412                                         href=\"" .
3413                                         $line["link"] . "\">" .
3414                                         truncate_string($line["title"], 100) .
3415                                         "<span class='author'>$entry_author</span></a></div>";
3416                         } else {
3417                                 $rv['content'] .= "<div class='postTitle' clear='both'>" . $line["title"] . "$entry_author</div>";
3418                         }
3419
3420                         $tag_cache = $line["tag_cache"];
3421
3422                         if (!$tag_cache)
3423                                 $tags = get_article_tags($link, $id, $owner_uid);
3424                         else
3425                                 $tags = explode(",", $tag_cache);
3426
3427                         $tags_str = format_tags_string($tags, $id);
3428                         $tags_str_full = join(", ", $tags);
3429
3430                         if (!$tags_str_full) $tags_str_full = __("no tags");
3431
3432                         if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3433
3434                         $rv['content'] .= "<div class='postTags' style='float : right'>
3435                                 <img src='".theme_image($link, 'images/tag.png')."'
3436                                 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3437
3438                         if (!$zoom_mode) {
3439                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3440                                         <a title=\"".__('Edit tags for this article')."\"
3441                                         href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3442
3443                                 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3444                                         id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3445                                         position=\"below\">$tags_str_full</div>";
3446
3447                                 $rv['content'] .= "<img src=\"".theme_image($link, 'images/art-zoom.png')."\"
3448                                                 class='tagsPic' style=\"cursor : pointer\"
3449                                                 onclick=\"postOpenInNewTab(event, $id)\"
3450                                                 alt='Zoom' title='".__('Open article in new tab')."'>";
3451
3452                                 $button_plugins = explode(",", ARTICLE_BUTTON_PLUGINS);
3453
3454                                 foreach ($button_plugins as $p) {
3455                                         $pclass = trim("${p}_button");
3456
3457                                         if (class_exists($pclass)) {
3458                                                 $plugin = new $pclass($link);
3459                                                 $rv['content'] .= $plugin->render($id, $line);
3460                                         }
3461                                 }
3462
3463                                 $rv['content'] .= "<img src=\"".theme_image($link, 'images/digest_checkbox.png')."\"
3464                                                 class='tagsPic' style=\"cursor : pointer\"
3465                                                 onclick=\"closeArticlePanel($id)\"
3466                                                 title='".__('Close article')."'>";
3467
3468                         } else {
3469                                 $tags_str = strip_tags($tags_str);
3470                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3471                         }
3472                         $rv['content'] .= "</div>";
3473                         $rv['content'] .= "<div clear='both'>$entry_comments</div>";
3474
3475                         if ($line["orig_feed_id"]) {
3476
3477                                 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3478                                         WHERE id = ".$line["orig_feed_id"]);
3479
3480                                 if (db_num_rows($tmp_result) != 0) {
3481
3482                                         $rv['content'] .= "<div clear='both'>";
3483                                         $rv['content'] .= __("Originally from:");
3484
3485                                         $rv['content'] .= "&nbsp;";
3486
3487                                         $tmp_line = db_fetch_assoc($tmp_result);
3488
3489                                         $rv['content'] .= "<a target='_blank'
3490                                                 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3491                                                 $tmp_line['title'] . "</a>";
3492
3493                                         $rv['content'] .= "&nbsp;";
3494
3495                                         $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3496                                         $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.png'></a>";
3497
3498                                         $rv['content'] .= "</div>";
3499                                 }
3500                         }
3501
3502                         $rv['content'] .= "</div>";
3503
3504                         $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3505                                 if ($line['note']) {
3506                                         $rv['content'] .= format_article_note($id, $line['note']);
3507                                 }
3508                         $rv['content'] .= "</div>";
3509
3510                         $rv['content'] .= "<div class=\"postIcon\">" .
3511                                 "<a target=\"_blank\" title=\"".__("Visit the website")."\"$
3512                                 href=\"".htmlspecialchars($feed_site_url)."\">".
3513                                 $feed_icon . "</a></div>";
3514
3515                         $rv['content'] .= "<div class=\"postContent\">";
3516
3517                         // N-grams
3518
3519                         if (DB_TYPE == "pgsql" and defined('_NGRAM_TITLE_RELATED_THRESHOLD')) {
3520
3521                                 $ngram_result = db_query($link, "SELECT id,title FROM
3522                                                 ttrss_entries,ttrss_user_entries
3523                                         WHERE ref_id = id AND updated >= NOW() - INTERVAL '7 day'
3524                                                 AND similarity(title, '$title_escaped') >= "._NGRAM_TITLE_RELATED_THRESHOLD."
3525                                                 AND title != '$title_escaped'
3526                                                 AND owner_uid = $owner_uid");
3527
3528                                 if (db_num_rows($ngram_result) > 0) {
3529                                         $rv['content'] .= "<div dojoType=\"dijit.form.DropDownButton\">".
3530                                                 "<span>" . __('Related')."</span>";
3531                                         $rv['content'] .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3532
3533                                         while ($nline = db_fetch_assoc($ngram_result)) {
3534                                                 $rv['content'] .= "<div onclick=\"hlOpenInNewTab(null,".$nline['id'].")\"
3535                                                         dojoType=\"dijit.MenuItem\">".$nline['title']."</div>";
3536
3537                                         }
3538                                         $rv['content'] .= "</div></div><br/";
3539                                 }
3540                         }
3541
3542                         $article_content = sanitize($link, $line["content"], false, $owner_uid,
3543                                 $feed_site_url);
3544
3545                         $rv['content'] .= $article_content;
3546
3547                         $rv['content'] .= format_article_enclosures($link, $id,
3548                                 $always_display_enclosures, $article_content);
3549
3550                         $rv['content'] .= "</div>";
3551
3552                         $rv['content'] .= "</div>";
3553
3554                 }
3555
3556                 if ($zoom_mode) {
3557                         $rv['content'] .= "
3558                                 <div style=\"text-align : center\">
3559                                 <button onclick=\"return window.close()\">".
3560                                         __("Close this window")."</button></div>";
3561                         $rv['content'] .= "</body></html>";
3562                 }
3563
3564                 return $rv;
3565
3566         }
3567
3568         function print_checkpoint($n, $s) {
3569                 $ts = getmicrotime();
3570                 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3571                 return $ts;
3572         }
3573
3574         function sanitize_tag($tag) {
3575                 $tag = trim($tag);
3576
3577                 $tag = mb_strtolower($tag, 'utf-8');
3578
3579                 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3580
3581 //              $tag = str_replace('"', "", $tag);
3582 //              $tag = str_replace("+", " ", $tag);
3583                 $tag = str_replace("technorati tag: ", "", $tag);
3584
3585                 return $tag;
3586         }
3587
3588         function get_self_url_prefix() {
3589                 return SELF_URL_PATH;
3590         }
3591
3592         function opml_publish_url($link){
3593
3594                 $url_path = get_self_url_prefix();
3595                 $url_path .= "/opml.php?op=publish&key=" .
3596                         get_feed_access_key($link, 'OPML:Publish', false, $_SESSION["uid"]);
3597
3598                 return $url_path;
3599         }
3600
3601         /**
3602          * Purge a feed contents, marked articles excepted.
3603          *
3604          * @param mixed $link The database connection.
3605          * @param integer $id The id of the feed to purge.
3606          * @return void
3607          */
3608         function clear_feed_articles($link, $id) {
3609
3610                 if ($id != 0) {
3611                         $result = db_query($link, "DELETE FROM ttrss_user_entries
3612                         WHERE feed_id = '$id' AND marked = false AND owner_uid = " . $_SESSION["uid"]);
3613                 } else {
3614                         $result = db_query($link, "DELETE FROM ttrss_user_entries
3615                         WHERE feed_id IS NULL AND marked = false AND owner_uid = " . $_SESSION["uid"]);
3616                 }
3617
3618                 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
3619                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
3620
3621                 ccache_update($link, $id, $_SESSION['uid']);
3622         } // function clear_feed_articles
3623
3624         /**
3625          * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3626          *
3627          * @return string The Mozilla Firefox feed adding URL.
3628          */
3629         function add_feed_url() {
3630                 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' :  'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3631
3632                 $url_path = get_self_url_prefix() .
3633                         "/backend.php?op=pref-feeds&quiet=1&method=add&feed_url=%s";
3634                 return $url_path;
3635         } // function add_feed_url
3636
3637         function encrypt_password($pass, $salt = '', $mode2 = false) {
3638                 if ($salt && $mode2) {
3639                         return "MODE2:" . hash('sha256', $salt . $pass);
3640                 } else if ($salt) {
3641                         return "SHA1X:" . sha1("$salt:$pass");
3642                 } else {
3643                         return "SHA1:" . sha1($pass);
3644                 }
3645         } // function encrypt_password
3646
3647         function sanitize_article_content($text) {
3648                 # we don't support CDATA sections in articles, they break our own escaping
3649                 $text = preg_replace("/\[\[CDATA/", "", $text);
3650                 $text = preg_replace("/\]\]\>/", "", $text);
3651                 return $text;
3652         }
3653
3654         function load_filters($link, $feed, $owner_uid, $action_id = false) {
3655                 $filters = array();
3656
3657
3658                 if ($action_id) $ftype_query_part = "action_id = '$action_id' AND";
3659
3660                 $result = db_query($link, "SELECT reg_exp,
3661                         ttrss_filter_types.name AS name,
3662                         ttrss_filter_actions.name AS action,
3663                         inverse,
3664                         action_param,
3665                         filter_param
3666                         FROM ttrss_filters
3667                                 LEFT JOIN ttrss_feeds ON (ttrss_feeds.id = '$feed'),
3668                                 ttrss_filter_types,ttrss_filter_actions
3669                         WHERE
3670                                 enabled = true AND
3671                                 $ftype_query_part
3672                                 ttrss_filters.owner_uid = $owner_uid AND
3673                                 ttrss_filter_types.id = filter_type AND
3674                                 ttrss_filter_actions.id = action_id AND
3675                                 ((cat_filter = true AND ttrss_feeds.cat_id = ttrss_filters.cat_id) OR
3676                                 (cat_filter = true AND ttrss_feeds.cat_id IS NULL AND
3677                                         ttrss_filters.cat_id IS NULL) OR
3678                                 (cat_filter = false AND (feed_id IS NULL OR feed_id = '$feed')))
3679                         ORDER BY reg_exp");
3680
3681                 while ($line = db_fetch_assoc($result)) {
3682
3683                         if (!$filters[$line["name"]]) $filters[$line["name"]] = array();
3684                                 $filter["reg_exp"] = $line["reg_exp"];
3685                                 $filter["action"] = $line["action"];
3686                                 $filter["action_param"] = $line["action_param"];
3687                                 $filter["filter_param"] = $line["filter_param"];
3688                                 $filter["inverse"] = sql_bool_to_bool($line["inverse"]);
3689
3690                                 array_push($filters[$line["name"]], $filter);
3691                         }
3692
3693
3694                 return $filters;
3695         }
3696
3697         function get_score_pic($score) {
3698                 if ($score > 100) {
3699                         return "score_high.png";
3700                 } else if ($score > 0) {
3701                         return "score_half_high.png";
3702                 } else if ($score < -100) {
3703                         return "score_low.png";
3704                 } else if ($score < 0) {
3705                         return "score_half_low.png";
3706                 } else {
3707                         return "score_neutral.png";
3708                 }
3709         }
3710
3711         function feed_has_icon($id) {
3712                 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3713         }
3714
3715         function init_connection($link) {
3716                 if ($link) {
3717
3718                         if (DB_TYPE == "pgsql") {
3719                                 pg_query($link, "set client_encoding = 'UTF-8'");
3720                                 pg_set_client_encoding("UNICODE");
3721                                 pg_query($link, "set datestyle = 'ISO, european'");
3722                                 pg_query($link, "set TIME ZONE 0");
3723                         } else {
3724                                 db_query($link, "SET time_zone = '+0:0'");
3725
3726                                 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3727                                         db_query($link, "SET NAMES " . MYSQL_CHARSET);
3728                                 }
3729                         }
3730                         return true;
3731                 } else {
3732                         print "Unable to connect to database:" . db_last_error();
3733                         return false;
3734                 }
3735         }
3736
3737         /* function ccache_zero($link, $feed_id, $owner_uid) {
3738                 db_query($link, "UPDATE ttrss_counters_cache SET
3739                         value = 0, updated = NOW() WHERE
3740                         feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3741         } */
3742
3743         function ccache_zero_all($link, $owner_uid) {
3744                 db_query($link, "UPDATE ttrss_counters_cache SET
3745                         value = 0 WHERE owner_uid = '$owner_uid'");
3746
3747                 db_query($link, "UPDATE ttrss_cat_counters_cache SET
3748                         value = 0 WHERE owner_uid = '$owner_uid'");
3749         }
3750
3751         function ccache_remove($link, $feed_id, $owner_uid, $is_cat = false) {
3752
3753                 if (!$is_cat) {
3754                         $table = "ttrss_counters_cache";
3755                 } else {
3756                         $table = "ttrss_cat_counters_cache";
3757                 }
3758
3759                 db_query($link, "DELETE FROM $table WHERE
3760                         feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3761
3762         }
3763
3764         function ccache_update_all($link, $owner_uid) {
3765
3766                 if (get_pref($link, 'ENABLE_FEED_CATS', $owner_uid)) {
3767
3768                         $result = db_query($link, "SELECT feed_id FROM ttrss_cat_counters_cache
3769                                 WHERE feed_id > 0 AND owner_uid = '$owner_uid'");
3770
3771                         while ($line = db_fetch_assoc($result)) {
3772                                 ccache_update($link, $line["feed_id"], $owner_uid, true);
3773                         }
3774
3775                         /* We have to manually include category 0 */
3776
3777                         ccache_update($link, 0, $owner_uid, true);
3778
3779                 } else {
3780                         $result = db_query($link, "SELECT feed_id FROM ttrss_counters_cache
3781                                 WHERE feed_id > 0 AND owner_uid = '$owner_uid'");
3782
3783                         while ($line = db_fetch_assoc($result)) {
3784                                 print ccache_update($link, $line["feed_id"], $owner_uid);
3785
3786                         }
3787
3788                 }
3789         }
3790
3791         function ccache_find($link, $feed_id, $owner_uid, $is_cat = false,
3792                 $no_update = false) {
3793
3794                 if (!is_numeric($feed_id)) return;
3795
3796                 if (!$is_cat) {
3797                         $table = "ttrss_counters_cache";
3798                         if ($feed_id > 0) {
3799                                 $tmp_result = db_query($link, "SELECT owner_uid FROM ttrss_feeds
3800                                         WHERE id = '$feed_id'");
3801                                 $owner_uid = db_fetch_result($tmp_result, 0, "owner_uid");
3802                         }
3803                 } else {
3804                         $table = "ttrss_cat_counters_cache";
3805                 }
3806
3807                 if (DB_TYPE == "pgsql") {
3808                         $date_qpart = "updated > NOW() - INTERVAL '15 minutes'";
3809                 } else if (DB_TYPE == "mysql") {
3810                         $date_qpart = "updated > DATE_SUB(NOW(), INTERVAL 15 MINUTE)";
3811                 }
3812
3813                 $result = db_query($link, "SELECT value FROM $table
3814                         WHERE owner_uid = '$owner_uid' AND feed_id = '$feed_id'
3815                         LIMIT 1");
3816
3817                 if (db_num_rows($result) == 1) {
3818                         return db_fetch_result($result, 0, "value");
3819                 } else {
3820                         if ($no_update) {
3821                                 return -1;
3822                         } else {
3823                                 return ccache_update($link, $feed_id, $owner_uid, $is_cat);
3824                         }
3825                 }
3826
3827         }
3828
3829         function ccache_update($link, $feed_id, $owner_uid, $is_cat = false,
3830                 $update_pcat = true) {
3831
3832                 if (!is_numeric($feed_id)) return;
3833
3834                 if (!$is_cat && $feed_id > 0) {
3835                         $tmp_result = db_query($link, "SELECT owner_uid FROM ttrss_feeds
3836                                 WHERE id = '$feed_id'");
3837                         $owner_uid = db_fetch_result($tmp_result, 0, "owner_uid");
3838                 }
3839
3840                 $prev_unread = ccache_find($link, $feed_id, $owner_uid, $is_cat, true);
3841
3842                 /* When updating a label, all we need to do is recalculate feed counters
3843                  * because labels are not cached */
3844
3845                 if ($feed_id < 0) {
3846                         ccache_update_all($link, $owner_uid);
3847                         return;
3848                 }
3849
3850                 if (!$is_cat) {
3851                         $table = "ttrss_counters_cache";
3852                 } else {
3853                         $table = "ttrss_cat_counters_cache";
3854                 }
3855
3856                 if ($is_cat && $feed_id >= 0) {
3857                         if ($feed_id != 0) {
3858                                 $cat_qpart = "cat_id = '$feed_id'";
3859                         } else {
3860                                 $cat_qpart = "cat_id IS NULL";
3861                         }
3862
3863                         /* Recalculate counters for child feeds */
3864
3865                         $result = db_query($link, "SELECT id FROM ttrss_feeds
3866                                                 WHERE owner_uid = '$owner_uid' AND $cat_qpart");
3867
3868                         while ($line = db_fetch_assoc($result)) {
3869                                 ccache_update($link, $line["id"], $owner_uid, false, false);
3870                         }
3871
3872                         $result = db_query($link, "SELECT SUM(value) AS sv
3873                                 FROM ttrss_counters_cache, ttrss_feeds
3874                                 WHERE id = feed_id AND $cat_qpart AND
3875                                 ttrss_feeds.owner_uid = '$owner_uid'");
3876
3877                         $unread = (int) db_fetch_result($result, 0, "sv");
3878
3879                 } else {
3880                         $unread = (int) getFeedArticles($link, $feed_id, $is_cat, true, $owner_uid);
3881                 }
3882
3883                 db_query($link, "BEGIN");
3884
3885                 $result = db_query($link, "SELECT feed_id FROM $table
3886                         WHERE owner_uid = '$owner_uid' AND feed_id = '$feed_id' LIMIT 1");
3887
3888                 if (db_num_rows($result) == 1) {
3889                         db_query($link, "UPDATE $table SET
3890                                 value = '$unread', updated = NOW() WHERE
3891                                 feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3892
3893                 } else {
3894                         db_query($link, "INSERT INTO $table
3895                                 (feed_id, value, owner_uid, updated)
3896                                 VALUES
3897                                 ($feed_id, $unread, $owner_uid, NOW())");
3898                 }
3899
3900                 db_query($link, "COMMIT");
3901
3902                 if ($feed_id > 0 && $prev_unread != $unread) {
3903
3904                         if (!$is_cat) {
3905
3906                                 /* Update parent category */
3907
3908                                 if ($update_pcat) {
3909
3910                                         $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
3911                                                 WHERE owner_uid = '$owner_uid' AND id = '$feed_id'");
3912
3913                                         $cat_id = (int) db_fetch_result($result, 0, "cat_id");
3914
3915                                         ccache_update($link, $cat_id, $owner_uid, true);
3916
3917                                 }
3918                         }
3919                 } else if ($feed_id < 0) {
3920                         ccache_update_all($link, $owner_uid);
3921                 }
3922
3923                 return $unread;
3924         }
3925
3926         /* function ccache_cleanup($link, $owner_uid) {
3927
3928                 if (DB_TYPE == "pgsql") {
3929                         db_query($link, "DELETE FROM ttrss_counters_cache AS c1 WHERE
3930                                 (SELECT count(*) FROM ttrss_counters_cache AS c2
3931                                         WHERE c1.feed_id = c2.feed_id AND c2.owner_uid = c1.owner_uid) > 1
3932                                         AND owner_uid = '$owner_uid'");
3933
3934                         db_query($link, "DELETE FROM ttrss_cat_counters_cache AS c1 WHERE
3935                                 (SELECT count(*) FROM ttrss_cat_counters_cache AS c2
3936                                         WHERE c1.feed_id = c2.feed_id AND c2.owner_uid = c1.owner_uid) > 1
3937                                         AND owner_uid = '$owner_uid'");
3938                 } else {
3939                         db_query($link, "DELETE c1 FROM
3940                                         ttrss_counters_cache AS c1,
3941                                         ttrss_counters_cache AS c2
3942                                 WHERE
3943                                         c1.owner_uid = '$owner_uid' AND
3944                                         c1.owner_uid = c2.owner_uid AND
3945                                         c1.feed_id = c2.feed_id");
3946
3947                         db_query($link, "DELETE c1 FROM
3948                                         ttrss_cat_counters_cache AS c1,
3949                                         ttrss_cat_counters_cache AS c2
3950                                 WHERE
3951                                         c1.owner_uid = '$owner_uid' AND
3952                                         c1.owner_uid = c2.owner_uid AND
3953                                         c1.feed_id = c2.feed_id");
3954
3955                 }
3956         } */
3957
3958         function label_find_id($link, $label, $owner_uid) {
3959                 $result = db_query($link,
3960                         "SELECT id FROM ttrss_labels2 WHERE caption = '$label'
3961                                 AND owner_uid = '$owner_uid' LIMIT 1");
3962
3963                 if (db_num_rows($result) == 1) {
3964                         return db_fetch_result($result, 0, "id");
3965                 } else {
3966                         return 0;
3967                 }
3968         }
3969
3970         function get_article_labels($link, $id) {
3971                 $rv = array();
3972
3973
3974                 $result = db_query($link, "SELECT label_cache FROM
3975                         ttrss_user_entries WHERE ref_id = '$id' AND owner_uid = " .
3976                         $_SESSION["uid"]);
3977
3978                 $label_cache = db_fetch_result($result, 0, "label_cache");
3979
3980                 if ($label_cache) {
3981
3982                         $label_cache = json_decode($label_cache, true);
3983
3984                         if ($label_cache["no-labels"] == 1)
3985                                 return $rv;
3986                         else
3987                                 return $label_cache;
3988                 }
3989
3990                 $result = db_query($link,
3991                         "SELECT DISTINCT label_id,caption,fg_color,bg_color
3992                                 FROM ttrss_labels2, ttrss_user_labels2
3993                         WHERE id = label_id
3994                                 AND article_id = '$id'
3995                                 AND owner_uid = ".$_SESSION["uid"] . "
3996                         ORDER BY caption");
3997
3998                 while ($line = db_fetch_assoc($result)) {
3999                         $rk = array($line["label_id"], $line["caption"], $line["fg_color"],
4000                                 $line["bg_color"]);
4001                         array_push($rv, $rk);
4002                 }
4003
4004                 if (count($rv) > 0)
4005                         label_update_cache($link, $id, $rv);
4006                 else
4007                         label_update_cache($link, $id, array("no-labels" => 1));
4008
4009                 return $rv;
4010         }
4011
4012
4013         function label_find_caption($link, $label, $owner_uid) {
4014                 $result = db_query($link,
4015                         "SELECT caption FROM ttrss_labels2 WHERE id = '$label'
4016                                 AND owner_uid = '$owner_uid' LIMIT 1");
4017
4018                 if (db_num_rows($result) == 1) {
4019                         return db_fetch_result($result, 0, "caption");
4020                 } else {
4021                         return "";
4022                 }
4023         }
4024
4025         function label_update_cache($link, $id, $labels = false, $force = false) {
4026
4027                 if ($force)
4028                         label_clear_cache($link, $id);
4029
4030                 if (!$labels)
4031                         $labels = get_article_labels($link, $id);
4032
4033                 $labels = db_escape_string(json_encode($labels));
4034
4035                 db_query($link, "UPDATE ttrss_user_entries SET
4036                         label_cache = '$labels' WHERE ref_id = '$id'");
4037
4038         }
4039
4040         function label_clear_cache($link, $id) {
4041
4042                 db_query($link, "UPDATE ttrss_user_entries SET
4043                         label_cache = '' WHERE ref_id = '$id'");
4044
4045         }
4046
4047         function label_remove_article($link, $id, $label, $owner_uid) {
4048
4049                 $label_id = label_find_id($link, $label, $owner_uid);
4050
4051                 if (!$label_id) return;
4052
4053                 $result = db_query($link,
4054                         "DELETE FROM ttrss_user_labels2
4055                         WHERE
4056                                 label_id = '$label_id' AND
4057                                 article_id = '$id'");
4058
4059                 label_clear_cache($link, $id);
4060         }
4061
4062         function label_add_article($link, $id, $label, $owner_uid) {
4063
4064                 $label_id = label_find_id($link, $label, $owner_uid);
4065
4066                 if (!$label_id) return;
4067
4068                 $result = db_query($link,
4069                         "SELECT
4070                                 article_id FROM ttrss_labels2, ttrss_user_labels2
4071                         WHERE
4072                                 label_id = id AND
4073                                 label_id = '$label_id' AND
4074                                 article_id = '$id' AND owner_uid = '$owner_uid'
4075                         LIMIT 1");
4076
4077                 if (db_num_rows($result) == 0) {
4078                         db_query($link, "INSERT INTO ttrss_user_labels2
4079                                 (label_id, article_id) VALUES ('$label_id', '$id')");
4080                 }
4081
4082                 label_clear_cache($link, $id);
4083
4084         }
4085
4086         function label_remove($link, $id, $owner_uid) {
4087                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4088
4089                 db_query($link, "BEGIN");
4090
4091                 $result = db_query($link, "SELECT caption FROM ttrss_labels2
4092                         WHERE id = '$id'");
4093
4094                 $caption = db_fetch_result($result, 0, "caption");
4095
4096                 $result = db_query($link, "DELETE FROM ttrss_labels2 WHERE id = '$id'
4097                         AND owner_uid = " . $owner_uid);
4098
4099                 if (db_affected_rows($link, $result) != 0 && $caption) {
4100
4101                         /* Remove access key for the label */
4102
4103                         $ext_id = -11 - $id;
4104
4105                         db_query($link, "DELETE FROM ttrss_access_keys WHERE
4106                                 feed_id = '$ext_id' AND owner_uid = $owner_uid");
4107
4108                         /* Disable filters that reference label being removed */
4109
4110                         db_query($link, "UPDATE ttrss_filters SET
4111                                 enabled = false WHERE action_param = '$caption'
4112                                         AND action_id = 7
4113                                         AND owner_uid = " . $owner_uid);
4114
4115                         /* Remove cached data */
4116
4117                         db_query($link, "UPDATE ttrss_user_entries SET label_cache = ''
4118                                 WHERE label_cache LIKE '%$caption%' AND owner_uid = " . $owner_uid);
4119
4120                 }
4121
4122                 db_query($link, "COMMIT");
4123         }
4124
4125         function label_create($link, $caption, $fg_color = '', $bg_color = '', $owner_uid) {
4126
4127                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
4128
4129                 db_query($link, "BEGIN");
4130
4131                 $result = false;
4132
4133                 $result = db_query($link, "SELECT id FROM ttrss_labels2
4134                         WHERE caption = '$caption' AND owner_uid = $owner_uid");
4135
4136                 if (db_num_rows($result) == 0) {
4137                         $result = db_query($link,
4138                                 "INSERT INTO ttrss_labels2 (caption,owner_uid,fg_color,bg_color)
4139                                         VALUES ('$caption', '$owner_uid', '$fg_color', '$bg_color')");
4140
4141                         $result = db_affected_rows($link, $result) != 0;
4142                 }
4143
4144                 db_query($link, "COMMIT");
4145
4146                 return $result;
4147         }
4148
4149         function format_tags_string($tags, $id) {
4150
4151                 $tags_str = "";
4152                 $tags_nolinks_str = "";
4153
4154                 $num_tags = 0;
4155
4156                 $tag_limit = 6;
4157
4158                 $formatted_tags = array();
4159
4160                 foreach ($tags as $tag) {
4161                         $num_tags++;
4162                         $tag_escaped = str_replace("'", "\\'", $tag);
4163
4164                         if (mb_strlen($tag) > 30) {
4165                                 $tag = truncate_string($tag, 30);
4166                         }
4167
4168                         $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
4169
4170                         array_push($formatted_tags, $tag_str);
4171
4172                         $tmp_tags_str = implode(", ", $formatted_tags);
4173
4174                         if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
4175                                 break;
4176                         }
4177                 }
4178
4179                 $tags_str = implode(", ", $formatted_tags);
4180
4181                 if ($num_tags < count($tags)) {
4182                         $tags_str .= ", &hellip;";
4183                 }
4184
4185                 if ($num_tags == 0) {
4186                         $tags_str = __("no tags");
4187                 }
4188
4189                 return $tags_str;
4190
4191         }
4192
4193         function format_article_labels($labels, $id) {
4194
4195                 $labels_str = "";
4196
4197                 foreach ($labels as $l) {
4198                         $labels_str .= sprintf("<span class='hlLabelRef'
4199                                 style='color : %s; background-color : %s'>%s</span>",
4200                                         $l[2], $l[3], $l[1]);
4201                         }
4202
4203                 return $labels_str;
4204
4205         }
4206
4207         function format_article_note($id, $note) {
4208
4209                 $str = "<div class='articleNote'        onclick=\"editArticleNote($id)\">
4210                         <div class='noteEdit' onclick=\"editArticleNote($id)\">".
4211                         __('(edit note)')."</div>$note</div>";
4212
4213                 return $str;
4214         }
4215
4216         function toggle_collapse_cat($link, $cat_id, $mode) {
4217                 if ($cat_id > 0) {
4218                         $mode = bool_to_sql_bool($mode);
4219
4220                         db_query($link, "UPDATE ttrss_feed_categories SET
4221                                 collapsed = $mode WHERE id = '$cat_id' AND owner_uid = " .
4222                                 $_SESSION["uid"]);
4223                 } else {
4224                         $pref_name = '';
4225
4226                         switch ($cat_id) {
4227                         case -1:
4228                                 $pref_name = '_COLLAPSED_SPECIAL';
4229                                 break;
4230                         case -2:
4231                                 $pref_name = '_COLLAPSED_LABELS';
4232                                 break;
4233                         case 0:
4234                                 $pref_name = '_COLLAPSED_UNCAT';
4235                                 break;
4236                         }
4237
4238                         if ($pref_name) {
4239                                 if ($mode) {
4240                                         set_pref($link, $pref_name, 'true');
4241                                 } else {
4242                                         set_pref($link, $pref_name, 'false');
4243                                 }
4244                         }
4245                 }
4246         }
4247
4248         function remove_feed($link, $id, $owner_uid) {
4249
4250                 if ($id > 0) {
4251
4252                         /* save starred articles in Archived feed */
4253
4254                         db_query($link, "BEGIN");
4255
4256                         /* prepare feed if necessary */
4257
4258                         $result = db_query($link, "SELECT id FROM ttrss_archived_feeds
4259                                 WHERE id = '$id'");
4260
4261                         if (db_num_rows($result) == 0) {
4262                                 db_query($link, "INSERT INTO ttrss_archived_feeds
4263                                         (id, owner_uid, title, feed_url, site_url)
4264                                 SELECT id, owner_uid, title, feed_url, site_url from ttrss_feeds
4265                                 WHERE id = '$id'");
4266                         }
4267
4268                         db_query($link, "UPDATE ttrss_user_entries SET feed_id = NULL,
4269                                 orig_feed_id = '$id' WHERE feed_id = '$id' AND
4270                                         marked = true AND owner_uid = $owner_uid");
4271
4272                         /* Remove access key for the feed */
4273
4274                         db_query($link, "DELETE FROM ttrss_access_keys WHERE
4275                                 feed_id = '$id' AND owner_uid = $owner_uid");
4276
4277                         /* remove the feed */
4278
4279                         db_query($link, "DELETE FROM ttrss_feeds
4280                                         WHERE id = '$id' AND owner_uid = $owner_uid");
4281
4282                         db_query($link, "COMMIT");
4283
4284                         if (file_exists(ICONS_DIR . "/$id.ico")) {
4285                                 unlink(ICONS_DIR . "/$id.ico");
4286                         }
4287
4288                         ccache_remove($link, $id, $owner_uid);
4289
4290                 } else {
4291                         label_remove($link, -11-$id, $owner_uid);
4292                         ccache_remove($link, -11-$id, $owner_uid);
4293                 }
4294         }
4295
4296         function add_feed_category($link, $feed_cat) {
4297
4298                 if (!$feed_cat) return false;
4299
4300                 db_query($link, "BEGIN");
4301
4302                 $result = db_query($link,
4303                         "SELECT id FROM ttrss_feed_categories
4304                         WHERE title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
4305
4306                 if (db_num_rows($result) == 0) {
4307
4308                         $result = db_query($link,
4309                                 "INSERT INTO ttrss_feed_categories (owner_uid,title)
4310                                 VALUES ('".$_SESSION["uid"]."', '$feed_cat')");
4311
4312                         db_query($link, "COMMIT");
4313
4314                         return true;
4315                 }
4316
4317                 return false;
4318         }
4319
4320         function remove_feed_category($link, $id, $owner_uid) {
4321
4322                 db_query($link, "DELETE FROM ttrss_feed_categories
4323                         WHERE id = '$id' AND owner_uid = $owner_uid");
4324
4325                 ccache_remove($link, $id, $owner_uid, true);
4326         }
4327
4328         function archive_article($link, $id, $owner_uid) {
4329                 db_query($link, "BEGIN");
4330
4331                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
4332                         WHERE ref_id = '$id' AND owner_uid = $owner_uid");
4333
4334                 if (db_num_rows($result) != 0) {
4335
4336                         /* prepare the archived table */
4337
4338                         $feed_id = (int) db_fetch_result($result, 0, "feed_id");
4339
4340                         if ($feed_id) {
4341                                 $result = db_query($link, "SELECT id FROM ttrss_archived_feeds
4342                                         WHERE id = '$feed_id'");
4343
4344                                 if (db_num_rows($result) == 0) {
4345                                         db_query($link, "INSERT INTO ttrss_archived_feeds
4346                                                 (id, owner_uid, title, feed_url, site_url)
4347                                         SELECT id, owner_uid, title, feed_url, site_url from ttrss_feeds
4348                                         WHERE id = '$feed_id'");
4349                                 }
4350
4351                                 db_query($link, "UPDATE ttrss_user_entries
4352                                         SET orig_feed_id = feed_id, feed_id = NULL
4353                                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
4354                         }
4355                 }
4356
4357                 db_query($link, "COMMIT");
4358         }
4359
4360         function getArticleFeed($link, $id) {
4361                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
4362                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
4363
4364                 if (db_num_rows($result) != 0) {
4365                         return db_fetch_result($result, 0, "feed_id");
4366                 } else {
4367                         return 0;
4368                 }
4369         }
4370
4371         /**
4372          * Fixes incomplete URLs by prepending "http://".
4373          * Also replaces feed:// with http://, and
4374          * prepends a trailing slash if the url is a domain name only.
4375          *
4376          * @param string $url Possibly incomplete URL
4377          *
4378          * @return string Fixed URL.
4379          */
4380         function fix_url($url) {
4381                 if (strpos($url, '://') === false) {
4382                         $url = 'http://' . $url;
4383                 } else if (substr($url, 0, 5) == 'feed:') {
4384                         $url = 'http:' . substr($url, 5);
4385                 }
4386
4387                 //prepend slash if the URL has no slash in it
4388                 // "http://www.example" -> "http://www.example/"
4389                 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
4390                         $url .= '/';
4391                 }
4392
4393                 if ($url != "http:///")
4394                         return $url;
4395                 else
4396                         return '';
4397         }
4398
4399         function validate_feed_url($url) {
4400                 $parts = parse_url($url);
4401
4402                 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
4403
4404         }
4405
4406         function get_article_enclosures($link, $id) {
4407
4408                 $query = "SELECT * FROM ttrss_enclosures
4409                         WHERE post_id = '$id' AND content_url != ''";
4410
4411                 $rv = array();
4412
4413                 $result = db_query($link, $query);
4414
4415                 if (db_num_rows($result) > 0) {
4416                         while ($line = db_fetch_assoc($result)) {
4417                                 array_push($rv, $line);
4418                         }
4419                 }
4420
4421                 return $rv;
4422         }
4423
4424         function api_get_feeds($link, $cat_id, $unread_only, $limit, $offset) {
4425
4426                         $feeds = array();
4427
4428                         /* Labels */
4429
4430                         if ($cat_id == -4 || $cat_id == -2) {
4431                                 $counters = getLabelCounters($link, true);
4432
4433                                 foreach (array_values($counters) as $cv) {
4434
4435                                         $unread = $cv["counter"];
4436
4437                                         if ($unread || !$unread_only) {
4438
4439                                                 $row = array(
4440                                                                 "id" => $cv["id"],
4441                                                                 "title" => $cv["description"],
4442                                                                 "unread" => $cv["counter"],
4443                                                                 "cat_id" => -2,
4444                                                         );
4445
4446                                                 array_push($feeds, $row);
4447                                         }
4448                                 }
4449                         }
4450
4451                         /* Virtual feeds */
4452
4453                         if ($cat_id == -4 || $cat_id == -1) {
4454                                 foreach (array(-1, -2, -3, -4, 0) as $i) {
4455                                         $unread = getFeedUnread($link, $i);
4456
4457                                         if ($unread || !$unread_only) {
4458                                                 $title = getFeedTitle($link, $i);
4459
4460                                                 $row = array(
4461                                                                 "id" => $i,
4462                                                                 "title" => $title,
4463                                                                 "unread" => $unread,
4464                                                                 "cat_id" => -1,
4465                                                         );
4466                                                 array_push($feeds, $row);
4467                                         }
4468
4469                                 }
4470                         }
4471
4472                         /* Real feeds */
4473
4474                         if ($limit) {
4475                                 $limit_qpart = "LIMIT $limit OFFSET $offset";
4476                         } else {
4477                                 $limit_qpart = "";
4478                         }
4479
4480                         if ($cat_id == -4 || $cat_id == -3) {
4481                                 $result = db_query($link, "SELECT
4482                                         id, feed_url, cat_id, title, order_id, ".
4483                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
4484                                                 FROM ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"] .
4485                                                 " ORDER BY cat_id, title " . $limit_qpart);
4486                         } else {
4487
4488                                 if ($cat_id)
4489                                         $cat_qpart = "cat_id = '$cat_id'";
4490                                 else
4491                                         $cat_qpart = "cat_id IS NULL";
4492
4493                                 $result = db_query($link, "SELECT
4494                                         id, feed_url, cat_id, title, order_id, ".
4495                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
4496                                                 FROM ttrss_feeds WHERE
4497                                                 $cat_qpart AND owner_uid = " . $_SESSION["uid"] .
4498                                                 " ORDER BY cat_id, title " . $limit_qpart);
4499                         }
4500
4501                         while ($line = db_fetch_assoc($result)) {
4502
4503                                 $unread = getFeedUnread($link, $line["id"]);
4504
4505                                 $has_icon = feed_has_icon($line['id']);
4506
4507                                 if ($unread || !$unread_only) {
4508
4509                                         $row = array(
4510                                                         "feed_url" => $line["feed_url"],
4511                                                         "title" => $line["title"],
4512                                                         "id" => (int)$line["id"],
4513                                                         "unread" => (int)$unread,
4514                                                         "has_icon" => $has_icon,
4515                                                         "cat_id" => (int)$line["cat_id"],
4516                                                         "last_updated" => strtotime($line["last_updated"]),
4517                                                         "order_id" => (int) $line["order_id"],
4518                                                 );
4519
4520                                         array_push($feeds, $row);
4521                                 }
4522                         }
4523
4524                 return $feeds;
4525         }
4526
4527         function api_get_headlines($link, $feed_id, $limit, $offset,
4528                                 $filter, $is_cat, $show_excerpt, $show_content, $view_mode, $order,
4529                                 $include_attachments, $since_id,
4530                                 $search = "", $search_mode = "", $match_on = "") {
4531
4532                         $qfh_ret = queryFeedHeadlines($link, $feed_id, $limit,
4533                                 $view_mode, $is_cat, $search, $search_mode, $match_on,
4534                                 $order, $offset, 0, false, $since_id);
4535
4536                         $result = $qfh_ret[0];
4537                         $feed_title = $qfh_ret[1];
4538
4539                         $headlines = array();
4540
4541                         while ($line = db_fetch_assoc($result)) {
4542                                 $is_updated = ($line["last_read"] == "" &&
4543                                         ($line["unread"] != "t" && $line["unread"] != "1"));
4544
4545                                 $tags = explode(",", $line["tag_cache"]);
4546                                 $labels = json_decode($line["label_cache"], true);
4547
4548                                 //if (!$tags) $tags = get_article_tags($link, $line["id"]);
4549                                 //if (!$labels) $labels = get_article_labels($link, $line["id"]);
4550
4551                                 $headline_row = array(
4552                                                 "id" => (int)$line["id"],
4553                                                 "unread" => sql_bool_to_bool($line["unread"]),
4554                                                 "marked" => sql_bool_to_bool($line["marked"]),
4555                                                 "published" => sql_bool_to_bool($line["published"]),
4556                                                 "updated" => strtotime($line["updated"]),
4557                                                 "is_updated" => $is_updated,
4558                                                 "title" => $line["title"],
4559                                                 "link" => $line["link"],
4560                                                 "feed_id" => $line["feed_id"],
4561                                                 "tags" => $tags,
4562                                         );
4563
4564                                         if ($include_attachments)
4565                                                 $headline_row['attachments'] = get_article_enclosures($link,
4566                                                         $line['id']);
4567
4568                                 if ($show_excerpt) {
4569                                         $excerpt = truncate_string(strip_tags($line["content_preview"]), 100);
4570                                         $headline_row["excerpt"] = $excerpt;
4571                                 }
4572
4573                                 if ($show_content) {
4574                                         $headline_row["content"] = $line["content_preview"];
4575                                 }
4576
4577                                 // unify label output to ease parsing
4578                                 if ($labels["no-labels"] == 1) $labels = array();
4579
4580                                 $headline_row["labels"] = $labels;
4581
4582                                 $headline_row["feed_title"] = $line["feed_title"];
4583
4584                                 array_push($headlines, $headline_row);
4585                         }
4586
4587                         return $headlines;
4588         }
4589
4590         function generate_error_feed($link, $error) {
4591                 $reply = array();
4592
4593                 $reply['headlines']['id'] = -6;
4594                 $reply['headlines']['is_cat'] = false;
4595
4596                 $reply['headlines']['toolbar'] = '';
4597                 $reply['headlines']['content'] = "<div class='whiteBox'>". $error . "</div>";
4598
4599                 $reply['headlines-info'] = array("count" => 0,
4600                         "vgroup_last_feed" => '',
4601                         "unread" => 0,
4602                         "disable_cache" => true);
4603
4604                 return $reply;
4605         }
4606
4607
4608         function generate_dashboard_feed($link) {
4609                 $reply = array();
4610
4611                 $reply['headlines']['id'] = -5;
4612                 $reply['headlines']['is_cat'] = false;
4613
4614                 $reply['headlines']['toolbar'] = '';
4615                 $reply['headlines']['content'] = "<div class='whiteBox'>".__('No feed selected.');
4616
4617                 $reply['headlines']['content'] .= "<p class=\"small\"><span class=\"insensitive\">";
4618
4619                 $result = db_query($link, "SELECT ".SUBSTRING_FOR_DATE."(MAX(last_updated), 1, 19) AS last_updated FROM ttrss_feeds
4620                         WHERE owner_uid = " . $_SESSION['uid']);
4621
4622                 $last_updated = db_fetch_result($result, 0, "last_updated");
4623                 $last_updated = make_local_datetime($link, $last_updated, false);
4624
4625                 $reply['headlines']['content'] .= sprintf(__("Feeds last updated at %s"), $last_updated);
4626
4627                 $result = db_query($link, "SELECT COUNT(id) AS num_errors
4628                         FROM ttrss_feeds WHERE last_error != '' AND owner_uid = ".$_SESSION["uid"]);
4629
4630                 $num_errors = db_fetch_result($result, 0, "num_errors");
4631
4632                 if ($num_errors > 0) {
4633                         $reply['headlines']['content'] .= "<br/>";
4634                         $reply['headlines']['content'] .= "<a class=\"insensitive\" href=\"#\" onclick=\"showFeedsWithErrors()\">".
4635                                 __('Some feeds have update errors (click for details)')."</a>";
4636                 }
4637                 $reply['headlines']['content'] .= "</span></p>";
4638
4639                 $reply['headlines-info'] = array("count" => 0,
4640                         "vgroup_last_feed" => '',
4641                         "unread" => 0,
4642                         "disable_cache" => true);
4643
4644                 return $reply;
4645         }
4646
4647         function save_email_address($link, $email) {
4648                 // FIXME: implement persistent storage of emails
4649
4650                 if (!$_SESSION['stored_emails'])
4651                         $_SESSION['stored_emails'] = array();
4652
4653                 if (!in_array($email, $_SESSION['stored_emails']))
4654                         array_push($_SESSION['stored_emails'], $email);
4655         }
4656
4657         function update_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
4658                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4659
4660                 $sql_is_cat = bool_to_sql_bool($is_cat);
4661
4662                 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
4663                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
4664                         AND owner_uid = " . $owner_uid);
4665
4666                 if (db_num_rows($result) == 1) {
4667                         $key = db_escape_string(sha1(uniqid(rand(), true)));
4668
4669                         db_query($link, "UPDATE ttrss_access_keys SET access_key = '$key'
4670                                 WHERE feed_id = '$feed_id' AND is_cat = $sql_is_cat
4671                                 AND owner_uid = " . $owner_uid);
4672
4673                         return $key;
4674
4675                 } else {
4676                         return get_feed_access_key($link, $feed_id, $is_cat, $owner_uid);
4677                 }
4678         }
4679
4680         function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
4681
4682                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4683
4684                 $sql_is_cat = bool_to_sql_bool($is_cat);
4685
4686                 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
4687                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
4688                         AND owner_uid = " . $owner_uid);
4689
4690                 if (db_num_rows($result) == 1) {
4691                         return db_fetch_result($result, 0, "access_key");
4692                 } else {
4693                         $key = db_escape_string(sha1(uniqid(rand(), true)));
4694
4695                         $result = db_query($link, "INSERT INTO ttrss_access_keys
4696                                 (access_key, feed_id, is_cat, owner_uid)
4697                                 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
4698
4699                         return $key;
4700                 }
4701                 return false;
4702         }
4703
4704         /**
4705          * Extracts RSS/Atom feed URLs from the given HTML URL.
4706          *
4707          * @param string $url HTML page URL
4708          *
4709          * @return array Array of feeds. Key is the full URL, value the title
4710          */
4711         function get_feeds_from_html($url, $login = false, $pass = false)
4712         {
4713                 $url     = fix_url($url);
4714                 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
4715
4716                 libxml_use_internal_errors(true);
4717
4718                 $content = @fetch_file_contents($url, false, $login, $pass);
4719
4720                 $doc = new DOMDocument();
4721                 $doc->loadHTML($content);
4722                 $xpath = new DOMXPath($doc);
4723                 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
4724                 $feedUrls = array();
4725                 foreach ($entries as $entry) {
4726                         if ($entry->hasAttribute('href')) {
4727                                 $title = $entry->getAttribute('title');
4728                                 if ($title == '') {
4729                                         $title = $entry->getAttribute('type');
4730                                 }
4731                                 $feedUrl = rewrite_relative_url(
4732                                         $baseUrl, $entry->getAttribute('href')
4733                                 );
4734                                 $feedUrls[$feedUrl] = $title;
4735                         }
4736                 }
4737                 return $feedUrls;
4738         }
4739
4740         /**
4741          * Checks if the content behind the given URL is a HTML file
4742          *
4743          * @param string $url URL to check
4744          *
4745          * @return boolean True if the URL contains HTML content
4746          */
4747         function url_is_html($url, $login = false, $pass = false) {
4748                 $content = substr(fetch_file_contents($url, false, $login, $pass), 0, 1000);
4749
4750                 if (stripos($content, '<html>') === false
4751                         && stripos($content, '<html ') === false
4752                 ) {
4753                         return false;
4754                 }
4755
4756                 return true;
4757         }
4758
4759         function print_label_select($link, $name, $value, $attributes = "") {
4760
4761                 $result = db_query($link, "SELECT caption FROM ttrss_labels2
4762                         WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
4763
4764                 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
4765                         "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
4766
4767                 while ($line = db_fetch_assoc($result)) {
4768
4769                         $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
4770
4771                         print "<option value=\"".htmlspecialchars($line["caption"])."\"
4772                                 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
4773
4774                 }
4775
4776 #               print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
4777
4778                 print "</select>";
4779
4780
4781         }
4782
4783         function format_article_enclosures($link, $id, $always_display_enclosures,
4784                                         $article_content) {
4785
4786                 $result = get_article_enclosures($link, $id);
4787                 $rv = '';
4788
4789                 if (count($result) > 0) {
4790
4791                         $entries_html = array();
4792                         $entries = array();
4793
4794                         foreach ($result as $line) {
4795
4796                                 $url = $line["content_url"];
4797                                 $ctype = $line["content_type"];
4798
4799                                 if (!$ctype) $ctype = __("unknown type");
4800
4801                                 $filename = substr($url, strrpos($url, "/")+1);
4802
4803 #                               $player = format_inline_player($link, $url, $ctype);
4804
4805 #                               $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
4806 #                                       $filename . " (" . $ctype . ")" . "</a>";
4807
4808                                 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
4809                                         dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
4810
4811                                 array_push($entries_html, $entry);
4812
4813                                 $entry = array();
4814
4815                                 $entry["type"] = $ctype;
4816                                 $entry["filename"] = $filename;
4817                                 $entry["url"] = $url;
4818
4819                                 array_push($entries, $entry);
4820                         }
4821
4822                         if (!get_pref($link, "STRIP_IMAGES")) {
4823                                 if ($always_display_enclosures ||
4824                                                         !preg_match("/<img/i", $article_content)) {
4825
4826                                         foreach ($entries as $entry) {
4827
4828                                                 if (preg_match("/image/", $entry["type"]) ||
4829                                                                 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
4830
4831                                                                 $rv .= "<p><img
4832                                                                 alt=\"".htmlspecialchars($entry["filename"])."\"
4833                                                                 src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
4834
4835                                                 }
4836                                         }
4837                                 }
4838                         }
4839
4840                         $rv .= "<div dojoType=\"dijit.form.DropDownButton\">".
4841                                 "<span>" . __('Attachments')."</span>";
4842                         $rv .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
4843
4844                         foreach ($entries_html as $entry) { $rv .= $entry; };
4845
4846                         $rv .= "</div></div>";
4847                 }
4848
4849                 return $rv;
4850         }
4851
4852         function getLastArticleId($link) {
4853                 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
4854                         WHERE owner_uid = " . $_SESSION["uid"]);
4855
4856                 if (db_num_rows($result) == 1) {
4857                         return db_fetch_result($result, 0, "id");
4858                 } else {
4859                         return -1;
4860                 }
4861         }
4862
4863         function build_url($parts) {
4864                 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
4865         }
4866
4867         /**
4868          * Converts a (possibly) relative URL to a absolute one.
4869          *
4870          * @param string $url     Base URL (i.e. from where the document is)
4871          * @param string $rel_url Possibly relative URL in the document
4872          *
4873          * @return string Absolute URL
4874          */
4875         function rewrite_relative_url($url, $rel_url) {
4876                 if (strpos($rel_url, "magnet:") === 0) {
4877                         return $rel_url;
4878                 } else if (strpos($rel_url, "://") !== false) {
4879                         return $rel_url;
4880                 } else if (strpos($rel_url, "//") === 0) {
4881                         # protocol-relative URL (rare but they exist)
4882                         return $rel_url;
4883                 } else if (strpos($rel_url, "/") === 0)
4884                 {
4885                         $parts = parse_url($url);
4886                         $parts['path'] = $rel_url;
4887
4888                         return build_url($parts);
4889
4890                 } else {
4891                         $parts = parse_url($url);
4892                         if (!isset($parts['path'])) {
4893                                 $parts['path'] = '/';
4894                         }
4895                         $dir = $parts['path'];
4896                         if (substr($dir, -1) !== '/') {
4897                                 $dir = dirname($parts['path']);
4898                                 $dir !== '/' && $dir .= '/';
4899                         }
4900                         $parts['path'] = $dir . $rel_url;
4901
4902                         return build_url($parts);
4903                 }
4904         }
4905
4906         function sphinx_search($query, $offset = 0, $limit = 30) {
4907                 require_once 'lib/sphinxapi.php';
4908
4909                 $sphinxClient = new SphinxClient();
4910
4911                 $sphinxClient->SetServer('localhost', 9312);
4912                 $sphinxClient->SetConnectTimeout(1);
4913
4914                 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
4915                         'feed_title' => 20));
4916
4917                 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
4918                 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
4919                 $sphinxClient->SetLimits($offset, $limit, 1000);
4920                 $sphinxClient->SetArrayResult(false);
4921                 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
4922
4923                 $result = $sphinxClient->Query($query, SPHINX_INDEX);
4924
4925                 $ids = array();
4926
4927                 if (is_array($result['matches'])) {
4928                         foreach (array_keys($result['matches']) as $int_id) {
4929                                 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
4930                                 array_push($ids, $ref_id);
4931                         }
4932                 }
4933
4934                 return $ids;
4935         }
4936
4937         function cleanup_tags($link, $days = 14, $limit = 1000) {
4938
4939                 if (DB_TYPE == "pgsql") {
4940                         $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
4941                 } else if (DB_TYPE == "mysql") {
4942                         $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
4943                 }
4944
4945                 $tags_deleted = 0;
4946
4947                 while ($limit > 0) {
4948                         $limit_part = 500;
4949
4950                         $query = "SELECT ttrss_tags.id AS id
4951                                 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
4952                                 WHERE post_int_id = int_id AND $interval_query AND
4953                                 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
4954
4955                         $result = db_query($link, $query);
4956
4957                         $ids = array();
4958
4959                         while ($line = db_fetch_assoc($result)) {
4960                                 array_push($ids, $line['id']);
4961                         }
4962
4963                         if (count($ids) > 0) {
4964                                 $ids = join(",", $ids);
4965                                 print ".";
4966
4967                                 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
4968                                 $tags_deleted += db_affected_rows($link, $tmp_result);
4969                         } else {
4970                                 break;
4971                         }
4972
4973                         $limit -= $limit_part;
4974                 }
4975
4976                 print "\n";
4977
4978                 return $tags_deleted;
4979         }
4980
4981         function print_user_stylesheet($link) {
4982                 $value = get_pref($link, 'USER_STYLESHEET');
4983
4984                 if ($value) {
4985                         print "<style type=\"text/css\">";
4986                         print str_replace("<br/>", "\n", $value);
4987                         print "</style>";
4988                 }
4989
4990         }
4991
4992 /*      function rewrite_urls($line) {
4993                 global $url_regex;
4994
4995                 $urls = null;
4996
4997                 $result = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
4998                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $line);
4999
5000                 return $result;
5001         } */
5002
5003         function rewrite_urls($html) {
5004                 libxml_use_internal_errors(true);
5005
5006                 $charset_hack = '<head>
5007                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
5008                 </head>';
5009
5010                 $doc = new DOMDocument();
5011                 $doc->loadHTML($charset_hack . $html);
5012                 $xpath = new DOMXPath($doc);
5013
5014                 $entries = $xpath->query('//*/text()');
5015
5016                 foreach ($entries as $entry) {
5017                         if (strstr($entry->wholeText, "://") !== false) {
5018                                 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
5019                                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
5020
5021                                 if ($text != $entry->wholeText) {
5022                                         $cdoc = new DOMDocument();
5023                                         $cdoc->loadHTML($charset_hack . $text);
5024
5025
5026                                         foreach ($cdoc->childNodes as $cnode) {
5027                                                 $cnode = $doc->importNode($cnode, true);
5028
5029                                                 if ($cnode) {
5030                                                         $entry->parentNode->insertBefore($cnode);
5031                                                 }
5032                                         }
5033
5034                                         $entry->parentNode->removeChild($entry);
5035
5036                                 }
5037                         }
5038                 }
5039
5040                 $node = $doc->getElementsByTagName('body')->item(0);
5041
5042                 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
5043                 if ($node)
5044                         return $doc->saveXML($node, LIBXML_NOEMPTYTAG);
5045                 else
5046                         return $html;
5047         }
5048
5049         function filter_to_sql($filter) {
5050                 $query = "";
5051
5052                 $regexp_valid = preg_match('/' . $filter['reg_exp'] . '/',
5053                         $filter['reg_exp']) !== FALSE;
5054
5055                 if ($regexp_valid) {
5056
5057                         if (DB_TYPE == "pgsql")
5058                                 $reg_qpart = "~";
5059                         else
5060                                 $reg_qpart = "REGEXP";
5061
5062                         switch ($filter["type"]) {
5063                                 case "title":
5064                                         $query = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
5065                                                 $filter['reg_exp'] . "')";
5066                                         break;
5067                                 case "content":
5068                                         $query = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
5069                                                 $filter['reg_exp'] . "')";
5070                                         break;
5071                                 case "both":
5072                                         $query = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
5073                                                 $filter['reg_exp'] . "') OR LOWER(" .
5074                                                 "ttrss_entries.content) $reg_qpart LOWER('" . $filter['reg_exp'] . "')";
5075                                         break;
5076                                 case "tag":
5077                                         $query = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
5078                                                 $filter['reg_exp'] . "')";
5079                                         break;
5080                                 case "link":
5081                                         $query = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
5082                                                 $filter['reg_exp'] . "')";
5083                                         break;
5084                                 case "date":
5085
5086                                         if ($filter["filter_param"] == "before")
5087                                                 $cmp_qpart = "<";
5088                                         else
5089                                                 $cmp_qpart = ">=";
5090
5091                                         $timestamp = date("Y-m-d H:N:s", strtotime($filter["reg_exp"]));
5092                                         $query = "ttrss_entries.date_entered $cmp_qpart '$timestamp'";
5093                                         break;
5094                                 case "author":
5095                                         $query = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
5096                                                 $filter['reg_exp'] . "')";
5097                                         break;
5098                         }
5099
5100                         if ($filter["inverse"])
5101                                 $query = "NOT ($query)";
5102
5103                         if ($query) {
5104                                 if (DB_TYPE == "pgsql") {
5105                                         $query = " ($query) AND ttrss_entries.date_entered > NOW() - INTERVAL '14 days'";
5106                                 } else {
5107                                         $query = " ($query) AND ttrss_entries.date_entered > DATE_SUB(NOW(), INTERVAL 14 DAY)";
5108                                 }
5109                                 $query .= " AND ";
5110                         }
5111
5112                         return $query;
5113                 } else {
5114                         return false;
5115                 }
5116         }
5117
5118         // Status codes:
5119         // -1  - never connected
5120         // 0   - no data received
5121         // 1   - data received successfully
5122         // 2   - did not receive valid data
5123         // >10 - server error, code + 10 (e.g. 16 means server error 6)
5124
5125         function get_linked_feeds($link, $instance_id = false) {
5126                 if ($instance_id)
5127                         $instance_qpart = "id = '$instance_id' AND ";
5128                 else
5129                         $instance_qpart = "";
5130
5131                 if (DB_TYPE == "pgsql") {
5132                         $date_qpart = "last_connected < NOW() - INTERVAL '6 hours'";
5133                 } else {
5134                         $date_qpart = "last_connected < DATE_SUB(NOW(), INTERVAL 6 HOUR)";
5135                 }
5136
5137                 $result = db_query($link, "SELECT id, access_key, access_url FROM ttrss_linked_instances
5138                         WHERE $instance_qpart $date_qpart ORDER BY last_connected");
5139
5140                 while ($line = db_fetch_assoc($result)) {
5141                         $id = $line['id'];
5142
5143                         _debug("Updating: " . $line['access_url'] . " ($id)");
5144
5145                         $fetch_url = $line['access_url'] . '/public.php?op=fbexport';
5146                         $post_query = 'key=' . $line['access_key'];
5147
5148                         $feeds = fetch_file_contents($fetch_url, false, false, false, $post_query);
5149
5150                         // try doing it the old way
5151                         if (!$feeds) {
5152                                 $fetch_url = $line['access_url'] . '/backend.php?op=fbexport';
5153                                 $feeds = fetch_file_contents($fetch_url, false, false, false, $post_query);
5154                         }
5155
5156                         if ($feeds) {
5157                                 $feeds = json_decode($feeds, true);
5158
5159                                 if ($feeds) {
5160                                         if ($feeds['error']) {
5161                                                 $status = $feeds['error']['code'] + 10;
5162                                         } else {
5163                                                 $status = 1;
5164
5165                                                 if (count($feeds['feeds']) > 0) {
5166
5167                                                         db_query($link, "DELETE FROM ttrss_linked_feeds
5168                                                                 WHERE instance_id = '$id'");
5169
5170                                                         foreach ($feeds['feeds'] as $feed) {
5171                                                                 $feed_url = db_escape_string($feed['feed_url']);
5172                                                                 $title = db_escape_string($feed['title']);
5173                                                                 $subscribers = db_escape_string($feed['subscribers']);
5174                                                                 $site_url = db_escape_string($feed['site_url']);
5175
5176                                                                 db_query($link, "INSERT INTO ttrss_linked_feeds
5177                                                                         (feed_url, site_url, title, subscribers, instance_id, created, updated)
5178                                                                 VALUES
5179                                                                         ('$feed_url', '$site_url', '$title', '$subscribers', '$id', NOW(), NOW())");
5180                                                         }
5181                                                 } else {
5182                                                         // received 0 feeds, this might indicate that
5183                                                         // the instance on the other hand is rebuilding feedbrowser cache
5184                                                         // we will try again later
5185
5186                                                         // TODO: maybe perform expiration based on updated here?
5187                                                 }
5188
5189                                                 _debug("Processed " . count($feeds['feeds']) . " feeds.");
5190                                         }
5191                                 } else {
5192                                         $status = 2;
5193                                 }
5194
5195                         } else {
5196                                 $status = 0;
5197                         }
5198
5199                         _debug("Status: $status");
5200
5201                         db_query($link, "UPDATE ttrss_linked_instances SET
5202                                 last_status_out = '$status', last_connected = NOW() WHERE id = '$id'");
5203
5204                 }
5205         }
5206
5207         function make_feed_browser($link, $search, $limit, $mode = 1) {
5208
5209                 $owner_uid = $_SESSION["uid"];
5210                 $rv = '';
5211
5212                 if ($search) {
5213                         $search_qpart = "AND (UPPER(feed_url) LIKE UPPER('%$search%') OR
5214                                                 UPPER(title) LIKE UPPER('%$search%'))";
5215                 } else {
5216                         $search_qpart = "";
5217                 }
5218
5219                 if ($mode == 1) {
5220                         /* $result = db_query($link, "SELECT feed_url, subscribers FROM
5221                          ttrss_feedbrowser_cache WHERE (SELECT COUNT(id) = 0 FROM ttrss_feeds AS tf
5222                         WHERE tf.feed_url = ttrss_feedbrowser_cache.feed_url
5223                         AND owner_uid = '$owner_uid') $search_qpart
5224                         ORDER BY subscribers DESC LIMIT $limit"); */
5225
5226                         $result = db_query($link, "SELECT feed_url, site_url, title, SUM(subscribers) AS subscribers FROM
5227                                                 (SELECT feed_url, site_url, title, subscribers FROM ttrss_feedbrowser_cache UNION ALL
5228                                                         SELECT feed_url, site_url, title, subscribers FROM ttrss_linked_feeds) AS qqq
5229                                                 WHERE
5230                                                         (SELECT COUNT(id) = 0 FROM ttrss_feeds AS tf
5231                                                                 WHERE tf.feed_url = qqq.feed_url
5232                                                                         AND owner_uid = '$owner_uid') $search_qpart
5233                                                 GROUP BY feed_url, site_url, title ORDER BY subscribers DESC LIMIT $limit");
5234
5235                 } else if ($mode == 2) {
5236                         $result = db_query($link, "SELECT *,
5237                                                 (SELECT COUNT(*) FROM ttrss_user_entries WHERE
5238                                                         orig_feed_id = ttrss_archived_feeds.id) AS articles_archived
5239                                                 FROM
5240                                                         ttrss_archived_feeds
5241                                                 WHERE
5242                                                 (SELECT COUNT(*) FROM ttrss_feeds
5243                                                         WHERE ttrss_feeds.feed_url = ttrss_archived_feeds.feed_url AND
5244                                                                 owner_uid = '$owner_uid') = 0   AND
5245                                                 owner_uid = '$owner_uid' $search_qpart
5246                                                 ORDER BY id DESC LIMIT $limit");
5247                 }
5248
5249                 $feedctr = 0;
5250
5251                 while ($line = db_fetch_assoc($result)) {
5252
5253                         if ($mode == 1) {
5254
5255                                 $feed_url = htmlspecialchars($line["feed_url"]);
5256                                 $site_url = htmlspecialchars($line["site_url"]);
5257                                 $subscribers = $line["subscribers"];
5258
5259                                 $check_box = "<input onclick='toggleSelectListRow2(this)'
5260                                                         dojoType=\"dijit.form.CheckBox\"
5261                                                         type=\"checkbox\" \">";
5262
5263                                 $class = ($feedctr % 2) ? "even" : "odd";
5264
5265                                 $site_url = "<a target=\"_blank\"
5266                                                         href=\"$site_url\">
5267                                                         <span class=\"fb_feedTitle\">".
5268                                 htmlspecialchars($line["title"])."</span></a>";
5269
5270                                 $feed_url = "<a target=\"_blank\" class=\"fb_feedUrl\"
5271                                                         href=\"$feed_url\"><img src='images/feed-icon-12x12.png'
5272                                                         style='vertical-align : middle'></a>";
5273
5274                                 $rv .= "<li>$check_box $feed_url $site_url".
5275                                                         "&nbsp;<span class='subscribers'>($subscribers)</span></li>";
5276
5277                         } else if ($mode == 2) {
5278                                 $feed_url = htmlspecialchars($line["feed_url"]);
5279                                 $site_url = htmlspecialchars($line["site_url"]);
5280                                 $title = htmlspecialchars($line["title"]);
5281
5282                                 $check_box = "<input onclick='toggleSelectListRow2(this)' dojoType=\"dijit.form.CheckBox\"
5283                                                         type=\"checkbox\">";
5284
5285                                 $class = ($feedctr % 2) ? "even" : "odd";
5286
5287                                 if ($line['articles_archived'] > 0) {
5288                                         $archived = sprintf(__("%d archived articles"), $line['articles_archived']);
5289                                         $archived = "&nbsp;<span class='subscribers'>($archived)</span>";
5290                                 } else {
5291                                         $archived = '';
5292                                 }
5293
5294                                 $site_url = "<a target=\"_blank\"
5295                                                         href=\"$site_url\">
5296                                                         <span class=\"fb_feedTitle\">".
5297                                 htmlspecialchars($line["title"])."</span></a>";
5298
5299                                 $feed_url = "<a target=\"_blank\" class=\"fb_feedUrl\"
5300                                                         href=\"$feed_url\"><img src='images/feed-icon-12x12.png'
5301                                                         style='vertical-align : middle'></a>";
5302
5303
5304                                 $rv .= "<li id=\"FBROW-".$line["id"]."\">".
5305                                                         "$check_box $feed_url $site_url $archived</li>";
5306                         }
5307
5308                         ++$feedctr;
5309                 }
5310
5311                 if ($feedctr == 0) {
5312                         $rv .= "<li style=\"text-align : center\"><p>".__('No feeds found.')."</p></li>";
5313                 }
5314
5315                 return $rv;
5316         }
5317
5318         if (!function_exists('gzdecode')) {
5319                 function gzdecode($string) { // no support for 2nd argument
5320                         return file_get_contents('compress.zlib://data:who/cares;base64,'.
5321                                 base64_encode($string));
5322                 }
5323         }
5324
5325         function perform_data_import($link, $filename, $owner_uid) {
5326
5327                 $num_imported = 0;
5328                 $num_processed = 0;
5329                 $num_feeds_created = 0;
5330
5331                 $doc = @DOMDocument::load($filename);
5332
5333                 if (!$doc) {
5334                         $contents = file_get_contents($filename);
5335
5336                         if ($contents) {
5337                                 $data = @gzuncompress($contents);
5338                         }
5339
5340                         if (!$data) {
5341                                 $data = @gzdecode($contents);
5342                         }
5343
5344                         if ($data)
5345                                 $doc = DOMDocument::loadXML($data);
5346                 }
5347
5348                 if ($doc) {
5349
5350                         $xpath = new DOMXpath($doc);
5351
5352                         $container = $doc->firstChild;
5353
5354                         if ($container && $container->hasAttribute('schema-version')) {
5355                                 $schema_version = $container->getAttribute('schema-version');
5356
5357                                 if ($schema_version != SCHEMA_VERSION) {
5358                                         print "<p>" .__("Could not import: incorrect schema version.") . "</p>";
5359                                         return;
5360                                 }
5361
5362                         } else {
5363                                 print "<p>" . __("Could not import: unrecognized document format.") . "</p>";
5364                                 return;
5365                         }
5366
5367                         $articles = $xpath->query("//article");
5368
5369                         foreach ($articles as $article_node) {
5370                                 if ($article_node->childNodes) {
5371
5372                                         $ref_id = 0;
5373
5374                                         $article = array();
5375
5376                                         foreach ($article_node->childNodes as $child) {
5377                                                 if ($child->nodeName != 'label_cache')
5378                                                         $article[$child->nodeName] = db_escape_string($child->nodeValue);
5379                                                 else
5380                                                         $article[$child->nodeName] = $child->nodeValue;
5381                                         }
5382
5383                                         //print_r($article);
5384
5385                                         if ($article['guid']) {
5386
5387                                                 ++$num_processed;
5388
5389                                                 //db_query($link, "BEGIN");
5390
5391                                                 //print 'GUID:' . $article['guid'] . "\n";
5392
5393                                                 $result = db_query($link, "SELECT id FROM ttrss_entries
5394                                                         WHERE guid = '".$article['guid']."'");
5395
5396                                                 if (db_num_rows($result) == 0) {
5397
5398                                                         $result = db_query($link,
5399                                                                 "INSERT INTO ttrss_entries
5400                                                                         (title,
5401                                                                         guid,
5402                                                                         link,
5403                                                                         updated,
5404                                                                         content,
5405                                                                         content_hash,
5406                                                                         no_orig_date,
5407                                                                         date_updated,
5408                                                                         date_entered,
5409                                                                         comments,
5410                                                                         num_comments,
5411                                                                         author)
5412                                                                 VALUES
5413                                                                         ('".$article['title']."',
5414                                                                         '".$article['guid']."',
5415                                                                         '".$article['link']."',
5416                                                                         '".$article['updated']."',
5417                                                                         '".$article['content']."',
5418                                                                         '".sha1($article['content'])."',
5419                                                                         false,
5420                                                                         NOW(),
5421                                                                         NOW(),
5422                                                                         '',
5423                                                                         '0',
5424                                                                         '')");
5425
5426                                                         $result = db_query($link, "SELECT id FROM ttrss_entries
5427                                                                 WHERE guid = '".$article['guid']."'");
5428
5429                                                         if (db_num_rows($result) != 0) {
5430                                                                 $ref_id = db_fetch_result($result, 0, "id");
5431                                                         }
5432
5433                                                 } else {
5434                                                         $ref_id = db_fetch_result($result, 0, "id");
5435                                                 }
5436
5437                                                 //print "Got ref ID: $ref_id\n";
5438
5439                                                 if ($ref_id) {
5440
5441                                                         $feed_url = $article['feed_url'];
5442                                                         $feed_title = $article['feed_title'];
5443
5444                                                         $feed = 'NULL';
5445
5446                                                         if ($feed_url && $feed_title) {
5447                                                                 $result = db_query($link, "SELECT id FROM ttrss_feeds
5448                                                                         WHERE feed_url = '$feed_url' AND owner_uid = '$owner_uid'");
5449
5450                                                                 if (db_num_rows($result) != 0) {
5451                                                                         $feed = db_fetch_result($result, 0, "id");
5452                                                                 } else {
5453                                                                         // try autocreating feed in Uncategorized...
5454
5455                                                                         $result = db_query($link, "INSERT INTO ttrss_feeds (owner_uid,
5456                                                                                 feed_url, title) VALUES ($owner_uid, '$feed_url', '$feed_title')");
5457
5458                                                                         $result = db_query($link, "SELECT id FROM ttrss_feeds
5459                                                                                 WHERE feed_url = '$feed_url' AND owner_uid = '$owner_uid'");
5460
5461                                                                         if (db_num_rows($result) != 0) {
5462                                                                                 ++$num_feeds_created;
5463
5464                                                                                 $feed = db_fetch_result($result, 0, "id");
5465                                                                         }
5466                                                                 }
5467                                                         }
5468
5469                                                         if ($feed != 'NULL')
5470                                                                 $feed_qpart = "feed_id = $feed";
5471                                                         else
5472                                                                 $feed_qpart = "feed_id IS NULL";
5473
5474                                                         //print "$ref_id / $feed / " . $article['title'] . "\n";
5475
5476                                                         $result = db_query($link, "SELECT int_id FROM ttrss_user_entries
5477                                                                 WHERE ref_id = '$ref_id' AND owner_uid = '$owner_uid' AND $feed_qpart");
5478
5479                                                         if (db_num_rows($result) == 0) {
5480
5481                                                                 $marked = bool_to_sql_bool(sql_bool_to_bool($article['marked']));
5482                                                                 $published = bool_to_sql_bool(sql_bool_to_bool($article['published']));
5483                                                                 $score = (int) $article['score'];
5484
5485                                                                 $tag_cache = $article['tag_cache'];
5486                                                                 $label_cache = db_escape_string($article['label_cache']);
5487                                                                 $note = $article['note'];
5488
5489                                                                 //print "Importing " . $article['title'] . "<br/>";
5490
5491                                                                 ++$num_imported;
5492
5493                                                                 $result = db_query($link,
5494                                                                         "INSERT INTO ttrss_user_entries
5495                                                                         (ref_id, owner_uid, feed_id, unread, last_read, marked,
5496                                                                                 published, score, tag_cache, label_cache, uuid, note)
5497                                                                         VALUES ($ref_id, $owner_uid, $feed, false,
5498                                                                                 NULL, $marked, $published, $score, '$tag_cache',
5499                                                                                         '$label_cache', '', '$note')");
5500
5501                                                                 $label_cache = json_decode($label_cache, true);
5502
5503                                                                 if (is_array($label_cache) && $label_cache["no-labels"] != 1) {
5504                                                                         foreach ($label_cache as $label) {
5505
5506                                                                                 label_create($link, $label[1],
5507                                                                                         $label[2], $label[3], $owner_uid);
5508
5509                                                                                 label_add_article($link, $ref_id, $label[1], $owner_uid);
5510
5511                                                                         }
5512                                                                 }
5513
5514                                                                 //db_query($link, "COMMIT");
5515                                                         }
5516                                                 }
5517                                         }
5518                                 }
5519                         }
5520
5521                         print "<p>" .
5522                                 T_sprintf("Finished: %d articles processed, %d imported, %d feeds created.",
5523                                         $num_processed, $num_imported, $num_feeds_created) .
5524                                         "</p>";
5525
5526                 } else {
5527
5528                         print "<p>" . __("Could not load XML document.") . "</p>";
5529
5530                 }
5531         }
5532
5533         function get_random_bytes($length) {
5534                 if (function_exists('openssl_random_pseudo_bytes')) {
5535                         return openssl_random_pseudo_bytes($length);
5536                 } else {
5537                         $output = "";
5538
5539                         for ($i = 0; $i < $length; $i++)
5540                                 $output .= chr(mt_rand(0, 255));
5541
5542                         return $output;
5543                 }
5544         }
5545
5546         function read_stdin() {
5547                 $fp = fopen("php://stdin", "r");
5548
5549                 if ($fp) {
5550                         $line = trim(fgets($fp));
5551                         fclose($fp);
5552                         return $line;
5553                 }
5554
5555                 return null;
5556         }
5557 ?>