Portions created by the Initial Developer are Copyright (C) 2018 - 2020 the Initial Developer. All Rights Reserved. Contributor(s): Mark J Crane */ //includes require_once "root.php"; require_once "resources/require.php"; require_once "resources/check_auth.php"; //check permissions if (permission_exists('access_control_view')) { //access granted } else { echo "access denied"; exit; } //add multi-lingual support $language = new text; $text = $language->get(); //get the http post data if (is_array($_POST['access_controls'])) { $action = $_POST['action']; $search = $_POST['search']; $access_controls = $_POST['access_controls']; } //process the http post data by action if ($action != '' && is_array($access_controls) && @sizeof($access_controls) != 0) { //validate the token $token = new token; if (!$token->validate($_SERVER['PHP_SELF'])) { message::add($text['message-invalid_token'],'negative'); header('Location: access_controls.php'); exit; } //prepare the array foreach($access_controls as $row) { $array['access_controls'][$x]['checked'] = $row['checked']; $array['access_controls'][$x]['access_control_uuid'] = $row['access_control_uuid']; $x++; } //prepare the database object $database = new database; $database->app_name = 'access_controls'; $database->app_uuid = '1416a250-f6e1-4edc-91a6-5c9b883638fd'; //send the array to the database class switch ($action) { case 'copy': if (permission_exists('access_control_add')) { $database->copy($array); } break; case 'toggle': if (permission_exists('access_control_edit')) { $database->toggle($array); } break; case 'delete': if (permission_exists('access_control_delete')) { $database->delete($array); } break; } //redirect the user header('Location: access_controls.php'.($search != '' ? '?search='.urlencode($search) : null)); exit; } //get order and order by $order_by = $_GET["order_by"]; $order = $_GET["order"]; //add the search if (isset($_GET["search"])) { $search = strtolower($_GET["search"]); $parameters['search'] = '%'.$search.'%'; } //get the count $sql = "select count(access_control_uuid) "; $sql .= "from v_access_controls "; if (isset($_GET["search"])) { $sql .= "where ("; $sql .= " lower(access_control_name) like :search "; $sql .= " or lower(access_control_default) like :search "; $sql .= " or lower(access_control_description) like :search "; $sql .= ") "; } $database = new database; $num_rows = $database->select($sql, $parameters, 'column'); //get the list $sql = "select "; $sql .= "access_control_uuid, "; $sql .= "access_control_name, "; $sql .= "access_control_default, "; $sql .= "access_control_description "; $sql .= "from v_access_controls "; if (isset($_GET["search"])) { $sql .= "where ("; $sql .= " lower(access_control_name) like :search "; $sql .= " or lower(access_control_default) like :search "; $sql .= " or lower(access_control_description) like :search "; $sql .= ") "; } $sql .= order_by($order_by, $order, 'access_control_name', 'asc'); $sql .= limit_offset($rows_per_page, $offset); $database = new database; $access_controls = $database->select($sql, $parameters, 'all'); unset($sql, $parameters); //create token $object = new token; $token = $object->create($_SERVER['PHP_SELF']); //additional includes $document['title'] = $text['title-access_controls']; require_once "resources/header.php"; //show the content echo "
\n"; echo "
".$text['title-access_controls']." (".$num_rows.")
\n"; echo "
\n"; if (permission_exists('access_control_add')) { echo button::create(['type'=>'button','label'=>$text['button-add'],'icon'=>$_SESSION['theme']['button_icon_add'],'id'=>'btn_add','name'=>'btn_add','link'=>'access_control_edit.php']); } if (permission_exists('access_control_add') && $access_controls) { echo button::create(['type'=>'button','label'=>$text['button-copy'],'icon'=>$_SESSION['theme']['button_icon_copy'],'id'=>'btn_copy','name'=>'btn_copy','style'=>'display:none;','onclick'=>"modal_open('modal-copy','btn_copy');"]); } if (permission_exists('access_control_delete') && $access_controls) { echo button::create(['type'=>'button','label'=>$text['button-delete'],'icon'=>$_SESSION['theme']['button_icon_delete'],'id'=>'btn_delete','name'=>'btn_delete','style'=>'display:none;','onclick'=>"modal_open('modal-delete','btn_delete');"]); } echo "\n"; echo "
\n"; echo "
\n"; echo "
\n"; if (permission_exists('access_control_add') && $access_controls) { echo modal::create(['id'=>'modal-copy','type'=>'copy','actions'=>button::create(['type'=>'button','label'=>$text['button-continue'],'icon'=>'check','id'=>'btn_copy','style'=>'float: right; margin-left: 15px;','collapse'=>'never','onclick'=>"modal_close(); list_action_set('copy'); list_form_submit('form_list');"])]); } if (permission_exists('access_control_delete') && $access_controls) { echo modal::create(['id'=>'modal-delete','type'=>'delete','actions'=>button::create(['type'=>'button','label'=>$text['button-continue'],'icon'=>'check','id'=>'btn_delete','style'=>'float: right; margin-left: 15px;','collapse'=>'never','onclick'=>"modal_close(); list_action_set('delete'); list_form_submit('form_list');"])]); } echo $text['title_description-access_controls']."\n"; echo "

\n"; echo "
\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; if (permission_exists('access_control_add') || permission_exists('access_control_edit') || permission_exists('access_control_delete')) { echo " \n"; } echo th_order_by('access_control_name', $text['label-access_control_name'], $order_by, $order); echo th_order_by('access_control_default', $text['label-access_control_default'], $order_by, $order); echo " \n"; if (permission_exists('access_control_edit') && $_SESSION['theme']['list_row_edit_button']['boolean'] == 'true') { echo " \n"; } echo "\n"; if (is_array($access_controls) && @sizeof($access_controls) != 0) { $x = 0; foreach ($access_controls as $row) { if (permission_exists('access_control_edit')) { $list_row_url = "access_control_edit.php?id=".urlencode($row['access_control_uuid']); } echo "\n"; if (permission_exists('access_control_add') || permission_exists('access_control_edit') || permission_exists('access_control_delete')) { echo " \n"; } echo " \n"; echo " \n"; echo " \n"; if (permission_exists('access_control_edit') && $_SESSION['theme']['list_row_edit_button']['boolean'] == 'true') { echo " \n"; } echo "\n"; $x++; } unset($access_controls); } echo "
\n"; echo " \n"; echo " ".$text['label-access_control_description']." 
\n"; echo " \n"; echo " \n"; echo " \n"; if (permission_exists('access_control_edit')) { echo " ".escape($row['access_control_name'])."\n"; } else { echo " ".escape($row['access_control_name']); } echo " ".escape($row['access_control_default'])."".escape($row['access_control_description'])."\n"; echo button::create(['type'=>'button','title'=>$text['button-edit'],'icon'=>$_SESSION['theme']['button_icon_edit'],'link'=>$list_row_url]); echo "
\n"; echo "
\n"; echo "
".$paging_controls."
\n"; echo "\n"; echo "
\n"; //include the footer require_once "resources/footer.php"; ?>