svn+ssh://danydb@svn/svn/phpcompta/tags/rel650 ........ r5056 | danydb | 2012-06-30 14:39:28 +0200 (Sat, 30 Jun 2012) | 2 lines 0000666: Limiter dans le tableau accueil, le calendrier à exercice courant 0000667: DASHBOAD : agrandir les éléments ........ r5058 | danydb | 2012-06-30 18:43:34 +0200 (Sat, 30 Jun 2012) | 6 lines ------------------------------------------------------------------------ r5057 | danydb | 2012-06-30 18:40:12 +0200 (Sat, 30 Jun 2012) | 1 line bug follow_up::get_late ------------------------------------------------------------------------ ........ r5059 | danydb | 2012-06-30 18:57:18 +0200 (Sat, 30 Jun 2012) | 1 line bug follow_up::get_late ........ r5060 | danydb | 2012-06-30 18:58:55 +0200 (Sat, 30 Jun 2012) | 1 line bug follow_up::get_late ........ r5061 | danydb | 2012-06-30 19:03:29 +0200 (Sat, 30 Jun 2012) | 1 line bug follow_up::get_late ........ r5062 | danydb | 2012-06-30 19:36:51 +0200 (Sat, 30 Jun 2012) | 1 line bug follow_up::get_late ........ r5063 | danydb | 2012-07-01 17:42:31 +0200 (Sun, 01 Jul 2012) | 1 line correct check_formula ........ r5064 | danydb | 2012-07-03 00:56:38 +0200 (Tue, 03 Jul 2012) | 1 line Due to rewrite of parse formula, formula are not evaluated properly ........ r5065 | danydb | 2012-07-08 20:58:45 +0200 (Sun, 08 Jul 2012) | 1 line Bug cannot create a new profile due a javascript error ........ r5066 | danydb | 2012-07-09 18:43:20 +0200 (Mon, 09 Jul 2012) | 1 line 0000674: Deux actions-gestion ne peuvent avoir le même numéro de pièce ........ r5067 | danydb | 2012-07-10 12:34:55 +0200 (Tue, 10 Jul 2012) | 1 line duplicate Ref ........ r5068 | danydb | 2012-07-15 11:14:27 +0200 (Sun, 15 Jul 2012) | 2 lines New function : select exercice with end & start date ........ r5069 | danydb | 2012-07-15 11:15:05 +0200 (Sun, 15 Jul 2012) | 2 lines Javascript var ask_global to reload window if it is <> 0 ........ r5070 | danydb | 2012-07-16 01:10:32 +0200 (Mon, 16 Jul 2012) | 1 line Fix bug in tool_uos ........ r5071 | danydb | 2012-07-19 02:22:15 +0200 (Thu, 19 Jul 2012) | 1 line Improve printing of action - gestion ........ r5072 | danydb | 2012-07-19 12:50:48 +0200 (Thu, 19 Jul 2012) | 2 lines 0000672: Amélioration apparence ........ r5073 | danydb | 2012-07-19 12:51:27 +0200 (Thu, 19 Jul 2012) | 2 lines Enlève background blanc pour les notices ........ r5074 | danydb | 2012-07-19 13:49:10 +0200 (Thu, 19 Jul 2012) | 1 line Improve printing of action - gestion ........ r5075 | danydb | 2012-07-19 16:31:11 +0200 (Thu, 19 Jul 2012) | 1 line Add script for Javascript sort of table ........ r5076 | danydb | 2012-07-19 17:52:24 +0200 (Thu, 19 Jul 2012) | 1 line Add script for Javascript sort of table ........ r5077 | danydb | 2012-07-19 18:13:18 +0200 (Thu, 19 Jul 2012) | 1 line Add script for Javascript sort of table for reconciliation bank ........ r5078 | danydb | 2012-07-20 14:55:50 +0200 (Fri, 20 Jul 2012) | 1 line Show default sorted column ........ r5079 | danydb | 2012-07-20 14:57:16 +0200 (Fri, 20 Jul 2012) | 1 line add documentation ........ r5080 | danydb | 2012-07-26 17:31:54 +0200 (Thu, 26 Jul 2012) | 1 line Add ID ........ r5081 | danydb | 2012-07-29 13:56:59 +0200 (Sun, 29 Jul 2012) | 4 lines add new function default_value_get default_value_post default_value_request ........ r5082 | danydb | 2012-07-29 14:14:51 +0200 (Sun, 29 Jul 2012) | 1 line improve documentation ........ r5083 | danydb | 2012-07-29 14:50:29 +0200 (Sun, 29 Jul 2012) | 1 line Add constant for year ........ r5084 | danydb | 2012-07-29 15:08:11 +0200 (Sun, 29 Jul 2012) | 1 line Message for exercice ........ r5085 | danydb | 2012-07-29 15:08:56 +0200 (Sun, 29 Jul 2012) | 1 line New constant for date range ........ r5086 | danydb | 2012-07-30 20:13:30 +0200 (Mon, 30 Jul 2012) | 1 line cosmetic ........ r5087 | danydb | 2012-07-30 20:38:17 +0200 (Mon, 30 Jul 2012) | 1 line cosmetic ........ r5088 | danydb | 2012-07-30 21:28:46 +0200 (Mon, 30 Jul 2012) | 1 line define max_card_search ........ r5089 | danydb | 2012-07-30 21:36:55 +0200 (Mon, 30 Jul 2012) | 1 line 0000695: ajout d'un bouton pour chercher une fiche ........ r5090 | danydb | 2012-07-30 21:42:06 +0200 (Mon, 30 Jul 2012) | 1 line Amélioration recherche ........ r5091 | danydb | 2012-07-30 21:44:23 +0200 (Mon, 30 Jul 2012) | 1 line Amélioration recherche ........ r5092 | danydb | 2012-08-23 20:29:52 +0200 (Thu, 23 Aug 2012) | 1 line add a field hidden ........ r5093 | danydb | 2012-08-23 22:52:06 +0200 (Thu, 23 Aug 2012) | 2 lines 0000705: Perte info lettrage lors de l'export .csv Nom de fichier comprennent la date et le poste comptable ........ r5094 | danydb | 2012-08-23 23:00:58 +0200 (Thu, 23 Aug 2012) | 1 line 0000700: CARD : historique, Dans le PDF, il manque le quick code et dans le CSV, il manque le nom ........ r5095 | danydb | 2012-08-23 23:06:00 +0200 (Thu, 23 Aug 2012) | 1 line recherche aussi sur quick-code ........ r5096 | danydb | 2012-08-23 23:20:32 +0200 (Thu, 23 Aug 2012) | 1 line #699 CARD : liste des fiches ........ r5097 | danydb | 2012-08-24 22:27:20 +0200 (Fri, 24 Aug 2012) | 1 line replace ob_clean by ob_end_clean ........ r5098 | danydb | 2012-09-04 19:55:56 +0200 (Tue, 04 Sep 2012) | 1 line ajout ag_ref dans action aujourd'hui et action en retard ........ r5099 | danydb | 2012-09-06 18:47:29 +0200 (Thu, 06 Sep 2012) | 1 line 0000721: Nouveaux tag pour les stocks dans génération de documents ........ r5100 | danydb | 2012-09-12 23:05:12 +0200 (Wed, 12 Sep 2012) | 1 line fix bug : when a value is empty then value is n ull ........ r5101 | danydb | 2012-09-15 00:30:02 +0200 (Sat, 15 Sep 2012) | 1 line fix : missing closing tag </a> ........ r5102 | danydb | 2012-09-15 15:22:08 +0200 (Sat, 15 Sep 2012) | 1 line Show type of menu ........ r5103 | danydb | 2012-09-15 17:39:55 +0200 (Sat, 15 Sep 2012) | 1 line Improve add menu printing ........ r5104 | danydb | 2012-09-15 17:48:42 +0200 (Sat, 15 Sep 2012) | 1 line Improve the profile configuration ........ r5105 | danydb | 2012-09-16 03:01:44 +0200 (Sun, 16 Sep 2012) | 1 line Improve the style sheet with hx.title ........ r5106 | danydb | 2012-09-16 18:40:59 +0200 (Sun, 16 Sep 2012) | 1 line bug : Impossible d'avoir impression GRAND LIVRE Pour compte non soldé ........ r5107 | danydb | 2012-09-16 18:53:59 +0200 (Sun, 16 Sep 2012) | 1 line Améliore apparence calculatrice ........ r5108 | danydb | 2012-09-17 20:28:04 +0200 (Mon, 17 Sep 2012) | 1 line When adding a menu it cannot depend on itself ........ r5109 | danydb | 2012-09-17 20:29:23 +0200 (Mon, 17 Sep 2012) | 1 line When adding a menu it cannot depend on itself (update) ........ r5110 | danydb | 2012-09-17 20:46:17 +0200 (Mon, 17 Sep 2012) | 1 line Show default menu ........ r5111 | danydb | 2012-09-17 20:55:13 +0200 (Mon, 17 Sep 2012) | 1 line bug : show default module ........ r5112 | danydb | 2012-09-17 20:57:00 +0200 (Mon, 17 Sep 2012) | 1 line bug : show default module, otherwise menu ........ r5113 | danydb | 2012-09-17 21:07:25 +0200 (Mon, 17 Sep 2012) | 1 line Default module otherwise try to find default menu if several results then returns the first one ........ r5114 | danydb | 2012-09-17 21:13:43 +0200 (Mon, 17 Sep 2012) | 1 line Fix bug when clicking several times on search_poste ........ r5115 | danydb | 2012-09-18 23:37:02 +0200 (Tue, 18 Sep 2012) | 1 line problème quand utilisateur est administrateur global, impossible de voir les postes comptables ........ r5116 | danydb | 2012-09-18 23:46:37 +0200 (Tue, 18 Sep 2012) | 1 line Improve the style sheet with hx.title ........ r5117 | danydb | 2012-09-18 23:47:27 +0200 (Tue, 18 Sep 2012) | 1 line improve html widget with un ID ........ r5118 | danydb | 2012-09-19 22:55:43 +0200 (Wed, 19 Sep 2012) | 1 line Bug locale must be in uppercase ........ r5119 | danydb | 2012-09-29 23:28:46 +0200 (Sat, 29 Sep 2012) | 1 line add the javascript function check_date and check_date_id ........ r5120 | danydb | 2012-09-30 00:04:17 +0200 (Sun, 30 Sep 2012) | 1 line correct javascript function check_date_id ........ r5121 | danydb | 2012-10-01 19:57:15 +0200 (Mon, 01 Oct 2012) | 1 line 0000736: Totaux dans écran ........ r5122 | danydb | 2012-10-01 20:47:26 +0200 (Mon, 01 Oct 2012) | 1 line 0000733: Impression opération depuis POP ME OUT ........ r5123 | danydb | 2012-10-01 20:47:56 +0200 (Mon, 01 Oct 2012) | 1 line Bug : id inconnu dans irelated_action ........ r5124 | danydb | 2012-10-01 20:56:07 +0200 (Mon, 01 Oct 2012) | 1 line 0000733: Impression opération depuis POP ME OUT ........ r5125 | danydb | 2012-10-01 20:58:53 +0200 (Mon, 01 Oct 2012) | 1 line bug css for select ........ r5126 | danydb | 2012-10-01 21:07:00 +0200 (Mon, 01 Oct 2012) | 1 line 0000732: Pouvoir imprimer les opérations avant confirmation ........ r5127 | danydb | 2012-10-01 21:16:04 +0200 (Mon, 01 Oct 2012) | 1 line bug financier le nom de la banque n'est pas mis à jour ........ r5128 | danydb | 2012-10-01 21:23:16 +0200 (Mon, 01 Oct 2012) | 1 line CSS cosmetic nom de journal en h2.title ........ r5129 | danydb | 2012-10-01 21:30:20 +0200 (Mon, 01 Oct 2012) | 1 line Grand Livre : surligné ligne paire ........ r5130 | danydb | 2012-10-01 22:03:42 +0200 (Mon, 01 Oct 2012) | 1 line CSS présentation, remplace fieldset ........ r5131 | danydb | 2012-10-01 22:04:03 +0200 (Mon, 01 Oct 2012) | 1 line Ne surligne pas les actions cloturées ........ r5132 | danydb | 2012-10-01 22:04:19 +0200 (Mon, 01 Oct 2012) | 1 line Les readonly sont en bleus ........ r5133 | danydb | 2012-10-01 22:16:55 +0200 (Mon, 01 Oct 2012) | 1 line Bug in the search button if id was not set ........ r5134 | danydb | 2012-10-02 18:49:40 +0200 (Tue, 02 Oct 2012) | 1 line underline properly ........ r5135 | danydb | 2012-10-02 18:58:09 +0200 (Tue, 02 Oct 2012) | 3 lines Fix several some bugs : * PRINTJRN column name for ledget ACH, simple without VAT * PRINTPOSTE show everything even when unlettered is choosen ........ r5136 | danydb | 2012-10-02 18:58:34 +0200 (Tue, 02 Oct 2012) | 1 line Improve documentation ........ r5137 | danydb | 2012-10-02 23:01:27 +0200 (Tue, 02 Oct 2012) | 1 line Fix problem with date suggest ........ r5138 | danydb | 2012-10-03 11:27:52 +0200 (Wed, 03 Oct 2012) | 1 line Bug auto compute for action ........ r5139 | danydb | 2012-10-16 00:58:52 +0200 (Tue, 16 Oct 2012) | 1 line Suggérer la date = oui ne met plus la date à jour dans les achats ........ r5140 | danydb | 2012-10-16 01:13:30 +0200 (Tue, 16 Oct 2012) | 1 line Suggérer la date = oui ne met plus la date à jour dans les achats ........ r5141 | danydb | 2012-10-16 01:14:01 +0200 (Tue, 16 Oct 2012) | 1 line Suggérer la date = oui ne met plus la date à jour dans les achats ........ r5142 | danydb | 2012-10-17 17:54:22 +0200 (Wed, 17 Oct 2012) | 1 line 0000749: poste alphanumérique (fournisseur 44xxx) ........ r5143 | danydb | 2012-10-20 19:13:04 +0200 (Sat, 20 Oct 2012) | 2 lines #754 Les totaux dans Prévisions #753 Les totaux dans FOURNISSEUR, CLIENT et ADMINISTRATION incorrectes ........ r5144 | danydb | 2012-10-30 20:41:29 +0100 (Tue, 30 Oct 2012) | 1 line #372 système de nouvelles ........ r5145 | danydb | 2012-10-30 20:42:45 +0100 (Tue, 30 Oct 2012) | 1 line add id to submit button ........ r5146 | danydb | 2012-10-30 20:43:04 +0100 (Tue, 30 Oct 2012) | 1 line add a label to ibutton ........ r5147 | danydb | 2012-10-30 20:43:43 +0100 (Tue, 30 Oct 2012) | 1 line add niceEdit.js ........ r5148 | danydb | 2012-10-30 20:44:20 +0100 (Tue, 30 Oct 2012) | 1 line get_folder_access must also test global admin ........ r5149 | danydb | 2012-10-30 22:14:26 +0100 (Tue, 30 Oct 2012) | 1 line 0000755: Erreur en création de fiche avec un compte (455) déjà utilisé. ........ r5150 | danydb | 2012-10-30 22:20:07 +0100 (Tue, 30 Oct 2012) | 2 lines 0000744: (classe) 5Actif 0000746: ajouter un espace là où il faut ........ r5151 | danydb | 2012-10-30 22:25:19 +0100 (Tue, 30 Oct 2012) | 1 line 0000743: le pointeur se trouve sur 'effacer' ........ r5152 | danydb | 2012-11-11 20:47:20 +0100 (Sun, 11 Nov 2012) | 1 line 0000756: Achat ou vente pour rembourser de la TVA, marchandise ou quant. = 0 ........ r5153 | danydb | 2012-11-11 20:51:40 +0100 (Sun, 11 Nov 2012) | 1 line 0000750: place de nouvelle fiche et effacer ........ r5154 | danydb | 2012-11-11 20:55:08 +0100 (Sun, 11 Nov 2012) | 1 line 0000742: remplacer le mot 'classe ' par le mot ' poste (comptable)' ........ r5155 | danydb | 2012-11-22 21:50:27 +0100 (Thu, 22 Nov 2012) | 1 line fix problem with french accounting ........ r5156 | danydb | 2012-11-29 23:17:33 +0100 (Thu, 29 Nov 2012) | 1 line #738: Attribut en pourcent doit être compris entre 0 et 100 au lieu de 0 et 1 ........ r5157 | danydb | 2012-12-05 21:08:07 +0100 (Wed, 05 Dec 2012) | 2 lines 0000766: Utilisation des moyens de paiements : libellé différent pour l'opération de paiement et d'achat/vente. 0000765: affichage des colonnes Prix HTVA quand la société n'est pas assujettie à la TVA ........ r5158 | danydb | 2012-12-06 21:42:51 +0100 (Thu, 06 Dec 2012) | 1 line 0000762: TVA intracommunautaire ........ r5159 | danydb | 2012-12-06 21:43:22 +0100 (Thu, 06 Dec 2012) | 1 line Bug : the history doesn't show the first_name for VEN ........ r5160 | danydb | 2012-12-06 21:51:09 +0100 (Thu, 06 Dec 2012) | 1 line 0000762: TVA intracommunautaire typo ........ r5161 | danydb | 2012-12-06 22:56:36 +0100 (Thu, 06 Dec 2012) | 1 line 0000762: TVA intracommunautaire : montant facture au lieu montant opération ........ r5162 | danydb | 2012-12-06 23:09:20 +0100 (Thu, 06 Dec 2012) | 1 line 0000745: en bas de page il apparaît un pop up ........ r5163 | danydb | 2012-12-08 19:10:52 +0100 (Sat, 08 Dec 2012) | 1 line patch version 104 ........ r5164 | danydb | 2012-12-08 20:48:57 +0100 (Sat, 08 Dec 2012) | 1 line patch version 104 ........ r5165 | danydb | 2012-12-08 21:12:14 +0100 (Sat, 08 Dec 2012) | 1 line cosmetique ........ r5166 | danydb | 2012-12-08 21:30:44 +0100 (Sat, 08 Dec 2012) | 1 line rewriting ........ r5167 | danydb | 2012-12-08 23:48:30 +0100 (Sat, 08 Dec 2012) | 1 line Ajout IMPJRN, détail opération ........ r5168 | danydb | 2012-12-14 19:35:46 +0100 (Fri, 14 Dec 2012) | 1 line add personal expense ........ r5169 | danydb | 2012-12-14 19:58:23 +0100 (Fri, 14 Dec 2012) | 1 line remove "choississez votre exercice" ........ r5170 | danydb | 2013-01-03 21:15:40 +0100 (Thu, 03 Jan 2013) | 1 line 0000773: Bug sur fiches avec double postes comptables ........ r5171 | danydb | 2013-01-19 00:28:52 +0100 (Sat, 19 Jan 2013) | 1 line 0000778: Si dossier n'existe pas alors il y a une erreur dans administration > dossier ........ r5172 | danydb | 2013-01-20 15:57:40 +0100 (Sun, 20 Jan 2013) | 1 line 0000778: Si dossier n'existe pas alors il y a une erreur dans administration > dossier ........ r5173 | danydb | 2013-01-23 22:38:28 +0100 (Wed, 23 Jan 2013) | 2 lines #780 & #776 forbids some character in the quickcode ........ r5174 | danydb | 2013-01-23 22:58:53 +0100 (Wed, 23 Jan 2013) | 1 line Improve format_name ........ r5175 | danydb | 2013-01-23 22:59:52 +0100 (Wed, 23 Jan 2013) | 1 line #778 skip the unexisting folder ........ r5176 | danydb | 2013-02-06 19:34:25 +0100 (Wed, 06 Feb 2013) | 1 line 0000783: Apparence dans HISTO des notes ........ r5177 | danydb | 2013-02-06 19:53:39 +0100 (Wed, 06 Feb 2013) | 1 line 0000783: Apparence dans HISTO des notes ........ r5178 | danydb | 2013-02-13 18:05:32 +0100 (Wed, 13 Feb 2013) | 1 line 0000788: Lettrage : date invalide, bloque ........ r5179 | danydb | 2013-02-13 18:15:46 +0100 (Wed, 13 Feb 2013) | 1 line 0000788: Lettrage : date invalide, bloque ........ r5180 | danydb | 2013-02-13 18:25:43 +0100 (Wed, 13 Feb 2013) | 1 line 0000787: Rapprochement bancaire ........ r5181 | danydb | 2013-02-13 19:13:10 +0100 (Wed, 13 Feb 2013) | 1 line Erreur si db inexistante alors echec ........ r5182 | danydb | 2013-02-28 14:04:44 +0100 (Thu, 28 Feb 2013) | 1 line small bugs in javascript : typo ........ r5183 | danydb | 2013-03-05 15:40:08 +0100 (Tue, 05 Mar 2013) | 2 lines 0000791: Afficher dans la vue Paramètres / Divers / TVA le code TVA ........ r5184 | danydb | 2013-03-13 16:23:22 +0100 (Wed, 13 Mar 2013) | 2 lines 0000795: Orthographe : dans le calendrier : tâche suivi ........ r5185 | danydb | 2013-03-13 16:30:37 +0100 (Wed, 13 Mar 2013) | 2 lines 0000796: Lettrage : en code Hexadécimal ou en base 36 (A à Z + 0 à 10) ........ r5186 | danydb | 2013-03-13 22:10:15 +0100 (Wed, 13 Mar 2013) | 2 lines 0000796: Lettrage : en code Hexadécimal ou en base 36 (A à Z + 0 à 10) ........ r5187 | danydb | 2013-03-14 00:04:53 +0100 (Thu, 14 Mar 2013) | 2 lines esthétique ........ r5188 | danydb | 2013-03-17 01:24:05 +0100 (Sun, 17 Mar 2013) | 3 lines 0000797: Amélioration du workflow : statut des documents / actions ........ r5189 | danydb | 2013-03-20 13:57:01 +0100 (Wed, 20 Mar 2013) | 1 line code cleaning : remove function Acc_Payment::row ........ r5190 | danydb | 2013-03-20 14:02:36 +0100 (Wed, 20 Mar 2013) | 1 line Code cleaning ........ r5191 | danydb | 2013-03-25 23:42:49 +0100 (Mon, 25 Mar 2013) | 1 line Documentation : doxygen tag misplaced due to netbeans ........ r5192 | danydb | 2013-03-27 19:54:37 +0100 (Wed, 27 Mar 2013) | 1 line cosmetic : width div for operation detail ........ r5193 | danydb | 2013-03-27 20:08:09 +0100 (Wed, 27 Mar 2013) | 1 line cosmetic : orthographe profile -> profil ........ r5194 | danydb | 2013-03-27 20:17:51 +0100 (Wed, 27 Mar 2013) | 1 line cosmetic : ajout bouton fermeture si détail non disponible ........ r5195 | danydb | 2013-03-27 20:20:33 +0100 (Wed, 27 Mar 2013) | 1 line 0000802: Bug : visibilité des actions ........ r5196 | danydb | 2013-03-27 20:22:53 +0100 (Wed, 27 Mar 2013) | 1 line 0000802: Bug : visibilité des actions ........ r5197 | danydb | 2013-03-27 23:25:34 +0100 (Wed, 27 Mar 2013) | 1 line 0000801: Ajouter un lien vers l'action ........ r5198 | danydb | 2013-03-27 23:26:17 +0100 (Wed, 27 Mar 2013) | 1 line typo profile -> profil ........ r5199 | danydb | 2013-03-28 00:12:02 +0100 (Thu, 28 Mar 2013) | 1 line javascript bug ........ r5200 | danydb | 2013-03-28 00:12:25 +0100 (Thu, 28 Mar 2013) | 1 line bug last_operation <> late_operation ........ r5201 | danydb | 2013-03-28 00:14:27 +0100 (Thu, 28 Mar 2013) | 1 line cosmetic ........ r5202 | danydb | 2013-03-28 18:05:08 +0100 (Thu, 28 Mar 2013) | 1 line Add patch upgrade105 ........ r5203 | danydb | 2013-03-28 18:13:22 +0100 (Thu, 28 Mar 2013) | 1 line 0000799: Pouvoir augmenter le nombre de lignes proposées pour un rapprochement ........ r5204 | danydb | 2013-03-28 18:54:15 +0100 (Thu, 28 Mar 2013) | 1 line voir les heures dans commentaire ........ r5205 | danydb | 2013-03-28 22:58:34 +0100 (Thu, 28 Mar 2013) | 1 line Cannot save a detail operation ........ r5206 | danydb | 2013-03-28 23:23:50 +0100 (Thu, 28 Mar 2013) | 1 line Cannot save financial ........ r5209 | danydb | 2013-04-04 20:53:49 +0200 (Thu, 04 Apr 2013) | 1 line 0000807: Legend n'est pas agrandi ........ r5210 | danydb | 2013-04-14 23:46:39 +0200 (Sun, 14 Apr 2013) | 1 line 0000819: Note de débit et de crédit négative avec TVA autoliquidation ........ r5211 | danydb | 2013-04-15 18:57:05 +0200 (Mon, 15 Apr 2013) | 1 line Impossible de sauver dans journaux financiers dans certains cas ........ r5212 | danydb | 2013-04-15 19:56:50 +0200 (Mon, 15 Apr 2013) | 1 line 0000819: Note de débit et de crédit négative avec TVA autoliquidation ........ r5213 | danydb | 2013-04-24 23:28:32 +0200 (Wed, 24 Apr 2013) | 1 line 0000824: Impossible de rechercher une action pour les actions liées ........ r5214 | danydb | 2013-05-02 22:54:28 +0200 (Thu, 02 May 2013) | 1 line improve doc ........ r5215 | danydb | 2013-05-03 23:56:40 +0200 (Fri, 03 May 2013) | 3 lines #0000822: Génération document : changer le type de cellule Attention problème si on a utiliser = devant le tag pour forcer le type numérique ........
1138 lines
30 KiB
PHP
1138 lines
30 KiB
PHP
<?php
|
|
|
|
/*
|
|
* This file is part of PhpCompta.
|
|
*
|
|
* PhpCompta is free software; you can redistribute it and/or modify
|
|
* it under the terms of the GNU General Public License as published by
|
|
* the Free Software Foundation; either version 2 of the License, or
|
|
* (at your option) any later version.
|
|
*
|
|
* PhpCompta is distributed in the hope that it will be useful,
|
|
* but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
* GNU General Public License for more details.
|
|
*
|
|
* You should have received a copy of the GNU General Public License
|
|
* along with PhpCompta; if not, write to the Free Software
|
|
* Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
|
|
*/
|
|
/* $Revision$ */
|
|
// Copyright Author Dany De Bontridder ddebontridder@yahoo.fr
|
|
/** \file
|
|
* \brief
|
|
* Data & function about connected users
|
|
*/
|
|
/**
|
|
* \brief
|
|
* Data & function about connected users
|
|
*/
|
|
|
|
require_once("constant.php");
|
|
require_once("user_common.php");
|
|
require_once('class_dossier.php');
|
|
require_once('ac_common.php');
|
|
|
|
class User
|
|
{
|
|
|
|
var $id;
|
|
var $pass;
|
|
var $db;
|
|
var $admin;
|
|
var $valid;
|
|
|
|
function User(&$p_cn, $p_id = -1)
|
|
{
|
|
// if p_id is not set then check the connected user
|
|
if ($p_id == -1)
|
|
{
|
|
if (!isset($_SESSION['g_user']))
|
|
{
|
|
echo '<h2 class="error">' . _('Session expirée<br>Utilisateur déconnecté') . '</h2>';
|
|
redirect('index.php', 1);
|
|
exit();
|
|
}
|
|
|
|
$this->login = $_SESSION['g_user'];
|
|
$this->pass = $_SESSION['g_pass'];
|
|
$this->lang = (isset($_SESSION['g_lang'])) ? $_SESSION['g_lang'] : 'fr_FR.utf8';
|
|
$this->valid = (isset($_SESSION['isValid'])) ? 1 : 0;
|
|
$this->db = $p_cn;
|
|
$this->id = -1;
|
|
if (isset($_SESSION['g_theme']))
|
|
$this->theme = $_SESSION['g_theme'];
|
|
|
|
$this->admin = ( isset($_SESSION['use_admin']) ) ? $_SESSION['use_admin'] : 0;
|
|
|
|
if (isset($_SESSION['use_name']))
|
|
$this->name = $_SESSION['use_name'];
|
|
if (isset($_SESSION['use_first_name']))
|
|
$this->first_name = $_SESSION['use_first_name'];
|
|
$this->load();
|
|
}
|
|
else // if p_id is set get data of another user
|
|
{
|
|
$this->id = $p_id;
|
|
$this->db = $p_cn;
|
|
$this->load();
|
|
}
|
|
}
|
|
|
|
/**\brief load data from database.
|
|
* if this->id == -1, it is unknown so we have to retrieve it
|
|
from the database by the login
|
|
* return -1 if nothing is found
|
|
*/
|
|
|
|
function load()
|
|
{
|
|
/* if this->id == -1, it is unknown so we have to retrieve it from
|
|
the database thanks it login */
|
|
if ($this->id < 0)
|
|
{
|
|
$sql_cond = " where use_login=$1";
|
|
$sql_array = array($this->login);
|
|
}
|
|
else
|
|
{
|
|
$sql_cond = " where use_id=$1";
|
|
$sql_array = array($this->id);
|
|
}
|
|
$sql = "select use_id,
|
|
use_first_name,
|
|
use_name,
|
|
use_login,
|
|
use_active,
|
|
use_admin,
|
|
use_pass
|
|
from ac_users ";
|
|
$cn = new Database();
|
|
$Res = $cn->exec_sql($sql . $sql_cond, $sql_array);
|
|
if (($Max = Database::num_row($Res)) == 0)
|
|
return -1;
|
|
$row = Database::fetch_array($Res, 0);
|
|
$this->id = $row['use_id'];
|
|
$this->first_name = $row['use_first_name'];
|
|
$this->name = $row['use_name'];
|
|
$this->active = $row['use_active'];
|
|
$this->login = $row['use_login'];
|
|
$this->admin = $row['use_admin'];
|
|
$this->password = $row['use_pass'];
|
|
}
|
|
|
|
function save()
|
|
{
|
|
|
|
$Sql = "update ac_users set use_first_name=$1, use_name=$2
|
|
,use_active=$3,use_admin=$4,use_pass=$5 where use_id=$6";
|
|
$cn = new Database();
|
|
$Res = $cn->exec_sql($Sql, array($this->first_name, $this->last_name, $this->active, $this->admin, $this->pass, $this->id));
|
|
}
|
|
|
|
/**
|
|
* \brief Check if user is active and exists in therepository
|
|
* Automatically redirect, it doesn't check if a user can access a folder
|
|
* \param $silent false, echo an error message and exit, true : exit without warning
|
|
* default is false
|
|
*
|
|
++ */
|
|
|
|
function Check($silent = false, $from = '')
|
|
{
|
|
|
|
$res = 0;
|
|
$pass5 = md5($this->pass);
|
|
|
|
$cn = new Database();
|
|
$sql = "select ac_users.use_login,ac_users.use_active, ac_users.use_pass,
|
|
use_admin,use_first_name,use_name
|
|
from ac_users
|
|
where ac_users.use_id='$this->id'
|
|
and ac_users.use_active=1
|
|
and ac_users.use_pass='$pass5'";
|
|
$ret = $cn->exec_sql($sql);
|
|
$res = Database::num_row($ret);
|
|
if ($res > 0)
|
|
{
|
|
$r = Database::fetch_array($ret, 0);
|
|
$_SESSION['use_admin'] = $r['use_admin'];
|
|
$_SESSION['use_name'] = $r['use_name'];
|
|
$_SESSION['use_first_name'] = $r['use_first_name'];
|
|
$_SESSION['isValid'] = 1;
|
|
|
|
$this->admin = $_SESSION['use_admin'];
|
|
$this->name = $_SESSION['use_name'];
|
|
$this->first_name = $_SESSION['use_first_name'];
|
|
$this->load_global_pref();
|
|
}
|
|
$sql = "insert into audit_connect (ac_user,ac_ip,ac_module,ac_url,ac_state) values ($1,$2,$3,$4,$5)";
|
|
|
|
if ($res == 0)
|
|
{
|
|
$cn->exec_sql($sql, array($_SESSION['g_user'], $_SERVER["REMOTE_ADDR"], $from, $_SERVER['REQUEST_URI'], 'FAIL'));
|
|
if (!$silent)
|
|
{
|
|
alert(_('Utilisateur ou mot de passe incorrect'));
|
|
redirect('index.html');
|
|
}
|
|
$this->valid = 0;
|
|
session_unset();
|
|
exit - 1;
|
|
}
|
|
else
|
|
{
|
|
if ($from == 'LOGIN')
|
|
$cn->exec_sql($sql, array($_SESSION['g_user'], $_SERVER["REMOTE_ADDR"], $from, $_SERVER['REQUEST_URI'], 'SUCCESS'));
|
|
$this->valid = 1;
|
|
}
|
|
|
|
return $ret;
|
|
}
|
|
|
|
/**\brief return the access to a folder,
|
|
* \param $p_dossier id if it is == 0 then we take the value from $_SESSION
|
|
* \return the priv_priv
|
|
* - X no access
|
|
* - R has access (normal user)
|
|
* - L Local Admin
|
|
*
|
|
*/
|
|
|
|
function get_folder_access($p_dossier = 0)
|
|
{
|
|
|
|
if ($p_dossier == 0)
|
|
$p_dossier = dossier::id();
|
|
if ($this->is_local_admin($p_dossier) == 1 || $this->admin == 1)
|
|
return 'L';
|
|
$cn = new Database();
|
|
|
|
$sql = "select priv_priv from priv_user join jnt_use_dos on (jnt_id=priv_jnt) join ac_users using (use_id)
|
|
where use_id=$1 and dos_id=$2";
|
|
|
|
$res = $cn->get_value($sql, array($this->id, $p_dossier));
|
|
if ($res == '')
|
|
return 'X';
|
|
return $res;
|
|
}
|
|
|
|
/* \brief save the access of a folder
|
|
* \param $db_id the dossier id
|
|
* \param $priv the priv. to set
|
|
*/
|
|
|
|
function set_folder_access($db_id, $priv)
|
|
{
|
|
|
|
$cn = new Database();
|
|
$jnt = $cn->get_value("select jnt_id from jnt_use_dos where dos_id=$1 and use_id=$2", array($db_id, $this->id));
|
|
|
|
if ($cn->size() == 0)
|
|
{
|
|
|
|
$Res = $cn->exec_sql("insert into jnt_use_dos(dos_id,use_id) values($1,$2)", array($db_id, $this->id));
|
|
$jnt = $cn->get_value("select jnt_id from jnt_use_dos where dos_id=$1 and use_id=$2", array($db_id, $this->id));
|
|
$Res = $cn->exec_sql("insert into priv_user (priv_priv,priv_jnt) values($1,$2)", array($priv, $jnt));
|
|
}
|
|
$Res = $cn->exec_sql("update priv_user set priv_priv=$1 where priv_jnt=$2", array($priv, $jnt));
|
|
}
|
|
|
|
/**\brief check that a user is valid and the access to the folder
|
|
* \param $p_ledger the ledger to check
|
|
* \return the priv_priv
|
|
* - O only predefined operation
|
|
* - W write
|
|
* - R read only
|
|
* - X no access
|
|
*
|
|
|
|
*
|
|
*/
|
|
|
|
function get_ledger_access($p_ledger)
|
|
{
|
|
if ($this->admin == 1 ||
|
|
$this->is_local_admin(dossier::id()) == 1)
|
|
return 'W';
|
|
|
|
$sql = "select uj_priv from user_sec_jrn where uj_login=$1 and uj_jrn_id=$2";
|
|
$res = $this->db->get_value($sql, array($this->login, $p_ledger));
|
|
|
|
if ($res == '')
|
|
$res = 'X';
|
|
return $res;
|
|
}
|
|
|
|
/**
|
|
* \brief get all the available ledgers for the current user
|
|
* \param $p_type = ALL or the type of the ledger (ACH,VEN,FIN,ODS)
|
|
* \param $p_access =3 for Read or WRITE, 2 write, 1 for readonly
|
|
* \return a double array of available ledgers
|
|
@verbatim
|
|
[0] => [jrn_def_id]
|
|
[jrn_def_type]
|
|
[jrn_def_name]
|
|
[jrn_def_class_deb]
|
|
[jrn_def_class_cred]
|
|
[jrn_type_id]
|
|
[jrn_desc]
|
|
[uj_priv]
|
|
@endverbatim
|
|
*/
|
|
|
|
function get_ledger($p_type = 'ALL', $p_access = 3)
|
|
{
|
|
if ($this->admin != 1 && $this->is_local_admin() != 1)
|
|
{
|
|
$sql_type = ($p_type == 'ALL') ? '' : "and jrn_def_type=upper('" . sql_string($p_type) . "')";
|
|
switch ($p_access)
|
|
{
|
|
case 3:
|
|
$sql_access = " and uj_priv!= 'X'";
|
|
break;
|
|
case 2:
|
|
$sql_access = " and uj_priv = 'W'";
|
|
break;
|
|
|
|
case 1:
|
|
$sql_access = " and ( uj_priv = 'R' or uj_priv='W') ";
|
|
break;
|
|
}
|
|
|
|
$sql = "select jrn_def_id,jrn_def_type,
|
|
jrn_def_name,jrn_def_class_deb,jrn_def_class_cred,jrn_type_id,jrn_desc,uj_priv,
|
|
jrn_deb_max_line,jrn_cred_max_line
|
|
from jrn_def join jrn_type on jrn_def_type=jrn_type_id
|
|
join user_sec_jrn on uj_jrn_id=jrn_def_id
|
|
where
|
|
uj_login='" . $this->login . "'" .
|
|
$sql_type . $sql_access .
|
|
" order by jrn_Def_id";
|
|
}
|
|
else
|
|
{
|
|
$sql_type = ($p_type == 'ALL') ? '' : "where jrn_def_type=upper('" . sql_string($p_type) . "')";
|
|
$sql = "select jrn_def_id,jrn_def_type,jrn_def_name,jrn_def_class_deb,jrn_def_class_cred,jrn_deb_max_line,jrn_cred_max_line,
|
|
jrn_type_id,jrn_desc,'W' as uj_priv
|
|
from jrn_def join jrn_type on jrn_def_type=jrn_type_id
|
|
$sql_type
|
|
order by jrn_Def_name";
|
|
}
|
|
$res = $this->db->exec_sql($sql);
|
|
if (Database::num_row($res) == 0)
|
|
return null;
|
|
$array = Database::fetch_all($res);
|
|
return $array;
|
|
}
|
|
|
|
/**\brief return an sql condition for filtering the permitted ledger
|
|
* \param $p_type = ALL or the type of the ledger (ACH,VEN,FIN,ODS)
|
|
* \param $p_access =3 for READ or WRITE, 2 READ and write, 1 for readonly
|
|
*
|
|
* \return sql condition like = jrn_def_id in (...)
|
|
*/
|
|
|
|
function get_ledger_sql($p_type = 'ALL', $p_access = 3)
|
|
{
|
|
$aLedger = $this->get_ledger($p_type, $p_access);
|
|
if (empty($aLedger))
|
|
return ' jrn_def_id < 0 ';
|
|
$sql = " jrn_def_id in (";
|
|
foreach ($aLedger as $row)
|
|
{
|
|
$sql.=$row['jrn_def_id'] . ',';
|
|
}
|
|
$sql.='-1)';
|
|
return $sql;
|
|
}
|
|
|
|
/**
|
|
* \brief Check if an user is an admin
|
|
*
|
|
* \return 1 for yes 0 for no
|
|
*/
|
|
|
|
function Admin()
|
|
{
|
|
if ($this->login != 'phpcompta')
|
|
{
|
|
$pass5 = md5($this->pass);
|
|
$sql = "select use_admin from ac_users where use_login=$1
|
|
and use_active=1 ";
|
|
|
|
$cn = new Database();
|
|
$res = $cn->exec_sql($sql, array($this->login));
|
|
if (Database::num_row($res) == 0)
|
|
exit(__FILE__ . " " . __LINE__ . " aucun resultat");
|
|
$this->admin = Database::fetch_result($res, 0);
|
|
}
|
|
else
|
|
$this->admin = 1;
|
|
|
|
return $this->admin;
|
|
}
|
|
|
|
/**
|
|
* \brief Set the selected periode in the user's preferences
|
|
*
|
|
* \param $p_periode periode
|
|
* \param - $p_user
|
|
*
|
|
*/
|
|
|
|
function set_periode($p_periode)
|
|
{
|
|
$sql = "update user_local_pref set parameter_value='$p_periode' where user_id='$this->id' and parameter_type='PERIODE'";
|
|
$Res = $this->db->exec_sql($sql);
|
|
}
|
|
|
|
private function set_default_periode()
|
|
{
|
|
|
|
/* get the first periode */
|
|
$sql = 'select min(p_id) as pid from parm_periode where p_closed = false and p_start = (select min(p_start) from parm_periode)';
|
|
$Res = $this->db->exec_sql($sql);
|
|
|
|
$pid = Database::fetch_result($Res, 0, 0);
|
|
/* if all the periode are closed, then we use the last closed period */
|
|
if ($pid == null)
|
|
{
|
|
$sql = 'select min(p_id) as pid from parm_periode where p_start = (select max(p_start) from parm_periode)';
|
|
$Res2 = $this->db->exec_sql($sql);
|
|
$pid = Database::fetch_result($Res2, 0, 0);
|
|
if ($pid == null)
|
|
{
|
|
echo _("Aucune période trouvéee !!!");
|
|
exit(1);
|
|
}
|
|
|
|
$pid = Database::fetch_result($Res2, 0, 0);
|
|
}
|
|
|
|
$sql = sprintf("insert into user_local_pref (user_id,parameter_value,parameter_type)
|
|
values ('%s','%d','PERIODE')", $this->id, $pid);
|
|
$Res = $this->db->exec_sql($sql);
|
|
}
|
|
|
|
/**
|
|
* \brief Get the default periode from the user's preferences
|
|
*
|
|
* \return the default periode
|
|
*
|
|
*
|
|
*/
|
|
|
|
function get_periode()
|
|
{
|
|
|
|
$array = $this->get_preference();
|
|
if (!isset($array['PERIODE']))
|
|
{
|
|
$this->set_default_periode();
|
|
$array = $this->get_preference();
|
|
}
|
|
return $array['PERIODE'];
|
|
}
|
|
|
|
/**\brief return the mini rapport to display on the welcome page
|
|
* \return 0 if nothing if found or the report to display (formdef.fr_id)
|
|
*/
|
|
|
|
function get_mini_report()
|
|
{
|
|
$array = $this->get_preference();
|
|
$fr_id = (isset($array['MINIREPORT'])) ? $array['MINIREPORT'] : 0;
|
|
return $fr_id;
|
|
}
|
|
|
|
/**\brief set the mini rapport to display on the welcome page
|
|
*/
|
|
|
|
function set_mini_report($p_id)
|
|
{
|
|
$count = $this->db->get_value("select count(*) from user_local_pref where user_id=$1 and parameter_type=$2", array($this->id, 'MINIREPORT'));
|
|
if ($count == 1)
|
|
{
|
|
$sql = "update user_local_pref set parameter_value=$1 where user_id=$2 and parameter_type='MINIREPORT'";
|
|
$Res = $this->db->exec_sql($sql, array($p_id, $this->id));
|
|
}
|
|
else
|
|
{
|
|
$sql = "insert into user_local_pref (user_id,parameter_type,parameter_value)" .
|
|
"values($1,'MINIREPORT',$2)";
|
|
$Res = $this->db->exec_sql($sql, array($this->id, $p_id));
|
|
}
|
|
}
|
|
|
|
function save_global_preference($key, $value)
|
|
{
|
|
$repo = new Database();
|
|
$count = $repo->get_value("select count(*)
|
|
from
|
|
user_global_pref
|
|
where
|
|
parameter_type=$1 and user_id=$2", array($key, $this->login));
|
|
if ($count == 1)
|
|
{
|
|
$repo->exec_sql("update user_global_pref set parameter_value=$1
|
|
where parameter_type=$2 and user_id=$3", array($value, $key, $this->login));
|
|
}
|
|
elseif ($count == 0)
|
|
{
|
|
$repo->exec_sql("insert into user_global_pref(user_id,parameter_type,parameter_value)
|
|
values($1,$2,$3)", array($this->login, $key, $value));
|
|
}
|
|
}
|
|
|
|
/**
|
|
* \brief Get the default user's preferences
|
|
* \return array of (parameter_type => parameter_value)
|
|
*/
|
|
|
|
function get_preference()
|
|
{
|
|
$sql = "select parameter_type,parameter_value from user_local_pref where user_id=$1";
|
|
$Res = $this->db->exec_sql($sql, array($this->id));
|
|
$l_array = array();
|
|
for ($i = 0; $i < Database::num_row($Res); $i++)
|
|
{
|
|
$row = Database::fetch_array($Res, $i);
|
|
$type = $row['parameter_type'];
|
|
$l_array[$type] = $row['parameter_value'];
|
|
}
|
|
|
|
|
|
return $l_array;
|
|
}
|
|
|
|
/**
|
|
* Check if an user can access a module, return 1 if yes, otherwise 0
|
|
* record in audit log
|
|
* @param string $p_module menu_ref.me_code
|
|
*/
|
|
function check_module($p_module)
|
|
{
|
|
$acc = $this->db->get_value("select count(*) from v_all_menu where user_name = $1
|
|
and me_code=$2", array($this->login, $p_module));
|
|
if ($acc == 0)
|
|
{
|
|
$this->audit("FAIL", $p_module);
|
|
return 0;
|
|
}
|
|
$this->audit("SUCCESS", $p_module);
|
|
return 1;
|
|
}
|
|
|
|
/**
|
|
* \brief Check if an user is allowed to do an action
|
|
* \param p_action_id
|
|
* \return
|
|
* - 0 no priv
|
|
* - 1 priv granted
|
|
* @see constant.security.php
|
|
*/
|
|
|
|
function check_action($p_action_id)
|
|
{
|
|
/* save it into the log */
|
|
global $audit;
|
|
if ($this->Admin() == 1)
|
|
return 1;
|
|
if ($this->is_local_admin(dossier::id()) == 1)
|
|
return 1;
|
|
|
|
$Res = $this->db->exec_sql(
|
|
"select * from user_sec_act where ua_login=$1 and ua_act_id=$2", array($this->login, $p_action_id));
|
|
$Count = Database::num_row($Res);
|
|
if ($Count == 0)
|
|
{
|
|
if (isset($audit) && $audit == true)
|
|
{
|
|
$cn = new Database();
|
|
$sql = "insert into audit_connect (ac_user,ac_ip,ac_module,ac_url,ac_state) values ($1,$2,$3,$4,$5)";
|
|
$cn->exec_sql($sql, array($_SESSION['g_user'], $_SERVER["REMOTE_ADDR"], $p_action_id, $_SERVER['REQUEST_URI'], 'FAIL'));
|
|
}
|
|
return 0;
|
|
}
|
|
if ($Count == 1)
|
|
return 1;
|
|
echo "<H2 class=\"error\"> Action Invalide !!! $Count select * from user_sec_act where ua_login='$p_login' and ua_act_id=$p_action_id </H2>";
|
|
exit();
|
|
}
|
|
|
|
/**
|
|
* \brief Get the global preferences from user_global_pref
|
|
* in the account_repository db
|
|
*
|
|
* \note set $SESSION[g_variable]
|
|
*/
|
|
|
|
function load_global_pref()
|
|
{
|
|
$cn = new Database();
|
|
// Load everything in an array
|
|
$Res = $cn->exec_sql("select parameter_type,parameter_value from
|
|
user_global_pref
|
|
where user_id='" . $this->login . "'");
|
|
$Max = Database::num_row($Res);
|
|
if ($Max == 0)
|
|
{
|
|
$this->insert_default_global_pref();
|
|
$this->load_global_pref();
|
|
return;
|
|
}
|
|
// Load value into array
|
|
$line = array();
|
|
for ($i = 0; $i < $Max; $i++)
|
|
{
|
|
$row = Database::fetch_array($Res, $i);
|
|
$type = $row['parameter_type'];
|
|
$line[$type] = $row['parameter_value'];
|
|
;
|
|
}
|
|
// save array into g_ variable
|
|
$array_pref = array('g_theme' => 'THEME', 'g_pagesize' => 'PAGESIZE', 'g_topmenu' => 'TOPMENU', 'g_lang' => 'LANG');
|
|
foreach ($array_pref as $name => $parameter)
|
|
{
|
|
if (!isset($line[$parameter]))
|
|
{
|
|
$this->insert_default_global_pref($parameter);
|
|
$this->load_global_pref();
|
|
return;
|
|
}
|
|
$_SESSION[$name] = $line[$parameter];
|
|
}
|
|
}
|
|
|
|
/**
|
|
* \brief insert default pref
|
|
* if no parameter are given insert all the existing
|
|
* parameter otherwise only the requested
|
|
* \param $p_type parameter's type or nothing
|
|
* \param $p_value parameter value
|
|
*
|
|
*/
|
|
|
|
function insert_default_global_pref($p_type = "", $p_value = "")
|
|
{
|
|
|
|
$default_parameter = array("THEME" => "classic",
|
|
"PAGESIZE" => "50",
|
|
'TOPMENU' => 'TEXT',
|
|
'LANG' => 'fr_FR.utf8');
|
|
$cn = new Database();
|
|
$Sql = "insert into user_global_pref(user_id,parameter_type,parameter_value)
|
|
values ('%s','%s','%s')";
|
|
if ($p_type == "")
|
|
{
|
|
foreach ($default_parameter as $name => $value)
|
|
{
|
|
$Insert = sprintf($Sql, $this->login, $name, $value);
|
|
$cn->exec_sql($Insert);
|
|
}
|
|
}
|
|
else
|
|
{
|
|
$value = ($p_value == "") ? $default_parameter[$p_type] : $p_value;
|
|
$Insert = sprintf($Sql, $this->login, $p_type, $value);
|
|
$cn->exec_sql($Insert);
|
|
}
|
|
}
|
|
|
|
/**
|
|
* \brief update default pref
|
|
* if value is not given then use the default value
|
|
*
|
|
* \param $p_type parameter's type
|
|
* \param $p_value parameter's value value of the type
|
|
*/
|
|
|
|
function update_global_pref($p_type, $p_value = "")
|
|
{
|
|
$default_parameter = array("THEME" => "classic",
|
|
"PAGESIZE" => "50",
|
|
"LANG" => 'fr_FR.utf8',
|
|
'TOPMENU' => 'SELECT');
|
|
$cn = new Database();
|
|
$Sql = "update user_global_pref set parameter_value=$1
|
|
where parameter_type=$2 and
|
|
user_id=$3";
|
|
$value = ($p_value == "") ? $default_parameter[$p_type] : $p_value;
|
|
$cn->exec_sql($Sql, array($value, $p_type, $this->login));
|
|
}
|
|
|
|
//end function
|
|
/**\brief Return the year of current Periode
|
|
* it is the parm_periode.p_exercice col
|
|
* if an error occurs return 0
|
|
*/
|
|
|
|
function get_exercice()
|
|
{
|
|
$sql = "select p_exercice from parm_periode where p_id=" . $this->get_periode();
|
|
$Ret = $this->db->exec_sql($sql);
|
|
if (Database::num_row($Ret) == 1)
|
|
{
|
|
$r = Database::fetch_array($Ret, 0);
|
|
return $r['p_exercice'];
|
|
}
|
|
else
|
|
return 0;
|
|
}
|
|
|
|
/**\brief Check if the user can access
|
|
* otherwise warn and exit
|
|
* \param $p_action requested action
|
|
* \param $p_js = 1 javascript, or 0 just a text
|
|
* \return nothing the program exits automatically
|
|
*/
|
|
|
|
function can_request($p_action, $p_js = 0)
|
|
{
|
|
if ($this->check_action($p_action) == 0)
|
|
{
|
|
$this->audit('FAIL');
|
|
if ($p_js == 1)
|
|
{
|
|
echo "<script>";
|
|
echo "alert ('Cette action ne vous est pas autorisée. Contactez votre responsable');";
|
|
echo "</script>";
|
|
}
|
|
else
|
|
{
|
|
echo '<div class="redcontent">';
|
|
echo '<h2 class="error"> Cette action ne vous est pas autorisée Contactez votre responsable</h2>';
|
|
echo '</div>';
|
|
}
|
|
exit(-1);
|
|
}
|
|
}
|
|
|
|
/**
|
|
* !\brief Check if the user can print (in menu_ref p_type_display=p)
|
|
* otherwise warn and exit
|
|
* \param $p_action requested action
|
|
* \return nothing the program exits automatically
|
|
*/
|
|
function check_print($p_action)
|
|
{
|
|
global $audit, $cn;
|
|
$this->audit('AUDIT', $p_action);
|
|
if ($this->Admin() == 1)
|
|
return 1;
|
|
if ($this->is_local_admin(dossier::id()) == 1)
|
|
return 1;
|
|
$res = $cn->get_value("select count(*) from profile_menu
|
|
join profile_user using (p_id)
|
|
where user_name=$1 and me_code=$2 ", array($this->login, $p_action));
|
|
return $res;
|
|
}
|
|
|
|
/**\brief Check if the user can print (in menu_ref p_type_display=p)
|
|
* otherwise warn and exit
|
|
* \param $p_action requested action
|
|
* \return nothing the program exits automatically
|
|
*/
|
|
|
|
function can_print($p_action, $p_js = 0)
|
|
{
|
|
if ($this->check_print($p_action) == 0)
|
|
{
|
|
$this->audit('FAIL');
|
|
if ($p_js == 1)
|
|
{
|
|
echo "<script>";
|
|
echo "alert ('Cette action ne vous est pas autorisée. Contactez votre responsable');";
|
|
echo "</script>";
|
|
}
|
|
else
|
|
{
|
|
echo '<div class="redcontent">';
|
|
echo '<h2 class="error"> Cette action ne vous est pas autorisée Contactez votre responsable</h2>';
|
|
echo '</div>';
|
|
}
|
|
exit(-1);
|
|
}
|
|
}
|
|
|
|
/**
|
|
* \brief Check if an user is an local administrator
|
|
*
|
|
*
|
|
* \param $p_dossier : dossier_id
|
|
*
|
|
* \return
|
|
* - 0 if no
|
|
* - 1 if yes
|
|
*
|
|
*/
|
|
|
|
function is_local_admin($p_dossier = -1)
|
|
{
|
|
if ($p_dossier == -1)
|
|
{
|
|
$p_dossier = dossier::id();
|
|
}
|
|
|
|
if ($this->login == 'phpcompta')
|
|
return 1;
|
|
$sql = 'select priv_priv from ac_users join jnt_use_dos using (use_id) join priv_user ' .
|
|
' on ( jnt_use_dos.jnt_id = priv_user.priv_jnt) ' .
|
|
" where priv_priv='L' and use_login='" . $this->login . "' and dos_id=$p_dossier";
|
|
|
|
$cn = new Database();
|
|
|
|
$isAdmin = $cn->count_sql($sql);
|
|
|
|
|
|
return $isAdmin;
|
|
}
|
|
/**
|
|
*@brief return array of available repository
|
|
*
|
|
* @param $p_access R for read W for write
|
|
* @return an array
|
|
*/
|
|
function get_available_repository($p_access='R')
|
|
{
|
|
$profile=$this->get_profile();
|
|
$r=array();
|
|
if ($p_access=='R')
|
|
{
|
|
$r=$this->db->get_array("select u.r_id,r_name
|
|
from
|
|
profile_sec_repository as u
|
|
join stock_repository as s on(u.r_id=s.r_id)
|
|
where
|
|
p_id =$1
|
|
and ur_right='W'
|
|
order by 2
|
|
",array($profile));
|
|
}
|
|
if ($p_access == 'W')
|
|
{
|
|
$r=$this->db->get_array("select u.r_id,r_name
|
|
from
|
|
profile_sec_repository as u
|
|
join stock_repository as s on(u.r_id=s.r_id)
|
|
where
|
|
p_id =$1 order by 2
|
|
",array($profile));
|
|
}
|
|
return $r;
|
|
}
|
|
/**
|
|
* \brief return an array with all the users who can access $p_dossier including the global admin. The user
|
|
* must be activated
|
|
*
|
|
* \param $p_dossier dossier
|
|
* \return an array of user's object
|
|
* array indices
|
|
* - use_id (id )
|
|
* - use_login (login of the user)
|
|
* - use_name
|
|
* - use_first_name
|
|
*
|
|
* \exception throw an exception if nobody can access
|
|
*/
|
|
|
|
static function get_list($p_dossier)
|
|
{
|
|
$sql = "select distinct use_id,use_login,use_first_name,use_name from ac_users
|
|
left outer join jnt_use_dos using (use_id)
|
|
left join priv_user on (priv_jnt=jnt_id)
|
|
where
|
|
(dos_id=$1 or use_admin=1) and use_active=1 and (use_admin=1 or priv_priv <> 'X') order by use_login,use_name";
|
|
|
|
|
|
$repo = new Database();
|
|
$array = $repo->get_array($sql, array($p_dossier));
|
|
if ($repo->size() == 0)
|
|
throw new Exception('Error inaccessible folder');
|
|
return $array;
|
|
}
|
|
|
|
/**
|
|
* \brief check the access of an user on a ledger
|
|
*
|
|
* \param $p_jrn the ledger id
|
|
* \return
|
|
* - O only predefined operation
|
|
* - W write
|
|
* - R read only
|
|
* - X no access
|
|
*
|
|
*/
|
|
|
|
function check_jrn($p_jrn)
|
|
{
|
|
return $this->get_ledger_access($p_jrn);
|
|
}
|
|
|
|
/**\brief check if an user can access a folder, if he cannot display a dialog box
|
|
* and exit
|
|
* \param the folder if
|
|
* \param $silent false, echo an error message and exit, true : exit without warning
|
|
* default is false
|
|
* \return
|
|
* - L for administrator (local and global)
|
|
* - P for extension only
|
|
* - R regular user
|
|
*/
|
|
|
|
function check_dossier($p_dossier_id, $silent = false)
|
|
{
|
|
$this->Admin();
|
|
if ($this->admin == 1 || $this->is_local_admin($p_dossier_id) == 1)
|
|
return 'L';
|
|
$cn = new Database();
|
|
|
|
$dossier = $cn->get_value("select priv_priv from jnt_use_dos join priv_user on (priv_jnt=jnt_id) where dos_id=$1 and use_id=$2", array($p_dossier_id, $this->id));
|
|
$dossier = ($dossier == '') ? 'X' : $dossier;
|
|
if ($dossier == 'X')
|
|
{
|
|
$this->audit('FAIL', "Access folder ");
|
|
if (!$silent)
|
|
{
|
|
alert(_('Dossier non accessible'));
|
|
exit();
|
|
}
|
|
}
|
|
return $dossier;
|
|
}
|
|
|
|
/**
|
|
* @brief return the first date and the last date of the current exercice for the current user
|
|
* @return and array ([0] => start_date,[1] => end_date)
|
|
*/
|
|
function get_limit_current_exercice()
|
|
{
|
|
$current_exercice = $this->get_exercice();
|
|
$periode = new Periode($this->db);
|
|
list($per_start, $per_end) = $periode->get_limit($current_exercice);
|
|
$start = $per_start->first_day();
|
|
$end = $per_end->last_day();
|
|
return array($start, $end);
|
|
}
|
|
|
|
/**
|
|
* \brief Show all the available folder for the users
|
|
* at the login page. For the special case 'E'
|
|
* go directly to extension and bypasse the dashboard
|
|
* \param $p_user user
|
|
* \param $p_admin 1 if admin
|
|
*
|
|
* \return table in HTML
|
|
*
|
|
*/
|
|
|
|
function show_dossier($p_filtre = "")
|
|
{
|
|
$p_array = $this->get_available_folder($p_filtre);
|
|
|
|
$result = "";
|
|
if ($p_array == 0)
|
|
return $result . " * Aucun dossier *";
|
|
|
|
$result.="<TABLE style=\"width:auto;border-width:0px;border-collapse:collapse;\">";
|
|
for ($i = 0; $i < sizeof($p_array); $i++)
|
|
{
|
|
|
|
$id = $p_array[$i]['dos_id'];
|
|
$name = $p_array[$i]['dos_name'];
|
|
$desc = $p_array[$i]['dos_description'];
|
|
if ($i % 2 == 0)
|
|
$tr = "odd";
|
|
else
|
|
$tr = "even";
|
|
if ($this->check_dossier($id) != 'P')
|
|
{
|
|
$target = "do.php?gDossier=$id";
|
|
}
|
|
else
|
|
{
|
|
$target = "extension.php?gDossier=$id";
|
|
}
|
|
|
|
$result.="<TR class=\"$tr\">";
|
|
|
|
$result.=td($id, ' class="num" ');
|
|
$result.="<TD class=\"$tr\">";
|
|
$result.="<A class=\"dossier\" HREF=\"$target\">";
|
|
$result.= " <B>" . h($name) . "</B>";
|
|
$result.="</A>";
|
|
$result.="</TD>";
|
|
$desc = ($desc == "") ? "<i>Aucune description</i>" : h($desc);
|
|
$desc = "<A class=\"dossier\" HREF=\"$target\">$desc</A>";
|
|
$result.="<TD class=\"$tr\" style=\"padding-left:50px\">" . $desc;
|
|
$result.="</TD>";
|
|
$result.="</TR>";
|
|
}
|
|
$result.="</TABLE>";
|
|
return $result;
|
|
}
|
|
|
|
/**
|
|
* \brief Get all the available folders
|
|
* for the users, checked with the security
|
|
*
|
|
* \param $p_user user login
|
|
* \param $p_admin 1 if admin
|
|
* \return array containing
|
|
* - ac_dossier.dos_id
|
|
* - ac_dossier.dos_name
|
|
* - ac_dossier.dos_description
|
|
*
|
|
*/
|
|
|
|
function get_available_folder($p_filter = "")
|
|
{
|
|
$cn = new Database();
|
|
$filter = "";
|
|
if ($this->admin == 0)
|
|
{
|
|
// show only available folders
|
|
// if user is not an admin
|
|
$Res = $cn->exec_sql("select distinct dos_id,dos_name,dos_description from ac_users
|
|
natural join jnt_use_dos
|
|
natural join ac_dossier
|
|
join priv_user on ( priv_jnt=jnt_id)
|
|
where use_active=1
|
|
and use_login= $1
|
|
and priv_priv != 'X' and ( dos_name ~* $2 or dos_description ~* $2 )
|
|
order by dos_name", array($this->login, $p_filter));
|
|
}
|
|
else
|
|
{
|
|
$Res = $cn->exec_sql("select distinct dos_id,dos_name,dos_description from ac_dossier
|
|
where dos_name ~* $1 or dos_description ~* $1 order by dos_name", array($p_filter));
|
|
}
|
|
require_once('class_database.php');
|
|
|
|
$max = Database::num_row($Res);
|
|
if ($max == 0)
|
|
return 0;
|
|
|
|
for ($i = 0; $i < $max; $i++)
|
|
{
|
|
$array[] = Database::fetch_array($Res, $i);
|
|
}
|
|
return $array;
|
|
}
|
|
|
|
function audit($action = 'AUDIT', $p_module = "")
|
|
{
|
|
global $audit;
|
|
if ($audit)
|
|
{
|
|
if ($p_module == "" && isset($_REQUEST['ac']))
|
|
{
|
|
$p_module = $_REQUEST['ac'];
|
|
}
|
|
$cn = new Database();
|
|
if (isset($_REQUEST['gDossier']))
|
|
$p_module.= " dossier : " . $_REQUEST['gDossier'];
|
|
$sql = "insert into audit_connect (ac_user,ac_ip,ac_module,ac_url,ac_state) values ($1,$2,$3,$4,$5)";
|
|
|
|
$cn->exec_sql($sql, array(
|
|
$_SESSION['g_user'],
|
|
$_SERVER["REMOTE_ADDR"],
|
|
$p_module,
|
|
$_SERVER['REQUEST_URI'],
|
|
$action));
|
|
}
|
|
}
|
|
|
|
function save_profile($p_id)
|
|
{
|
|
$count = $this->db->get_value("select count(*) from profile_user where user_name=$1", array($this->login));
|
|
if ($count == 0)
|
|
{
|
|
$this->db->exec_sql("insert into profile_user(p_id,user_name)
|
|
values ($1,$2)", array($p_id, $this->login));
|
|
}
|
|
else
|
|
{
|
|
$this->db->exec_sql("update profile_user set p_id=$1 where user_name=$2", array($p_id, $this->login));
|
|
}
|
|
}
|
|
/**
|
|
*return the profile (p_id)
|
|
* @return profile.p_id
|
|
*/
|
|
function get_profile()
|
|
{
|
|
$profile = $this->db->get_value("select p_id from profile_user where
|
|
user_name=$1", array($this->login));
|
|
return $profile;
|
|
}
|
|
/**
|
|
*Check if the profile of the user can write for this profile
|
|
* @param $dtoc action_gestion.ag_id
|
|
* @return true if he can write otherwise false
|
|
*/
|
|
function can_write_action($dtoc)
|
|
{
|
|
$profile = $this->get_profile();
|
|
$r = $this->db->get_value(" select count(*) from action_gestion where ag_id=$1 and ag_dest in
|
|
(select p_granted from user_sec_action_profile where ua_right='W' and p_id=$2) ", array($dtoc, $profile));
|
|
if ($r == 0)
|
|
return false;
|
|
return true;
|
|
}
|
|
|
|
/**
|
|
*Check if the profile of the user can write for this profile
|
|
* @param $dtoc action_gestion.ag_id
|
|
* @return true if he can write otherwise false
|
|
*/
|
|
function can_read_action($dtoc)
|
|
{
|
|
$profile = $this->get_profile();
|
|
$r = $this->db->get_value(" select count(*) from action_gestion where ag_id=$1 and (ag_dest in
|
|
(select p_granted from user_sec_action_profile where p_id=$2) or ag_owner=$3)", array($dtoc, $profile, $this->login));
|
|
if ($r == 0)
|
|
return false;
|
|
return true;
|
|
}
|
|
/**
|
|
*Check if the profile of the user can write for this repository
|
|
* @param $p_repo stock_repository.r_id
|
|
* @return true if he can write otherwise false
|
|
*/
|
|
function can_write_repo($p_repo)
|
|
{
|
|
$profile=$this->get_profile();
|
|
$r=$this->db->get_value("select count(*)
|
|
from profile_sec_repository
|
|
where
|
|
r_id=$1
|
|
and p_id =$2
|
|
and ur_right='W'",array($p_repo,$profile));
|
|
if ( $r==0)
|
|
return false;
|
|
return true;
|
|
}
|
|
/**
|
|
*Check if the profile of the user can read for this repository
|
|
* @param $p_repo stock_repository.r_id
|
|
* @return true if he read write otherwise false
|
|
*/
|
|
function can_read_repo($p_repo)
|
|
{
|
|
$profile=$this->get_profile();
|
|
$r=$this->db->get_value("select count(*)
|
|
from profile_sec_repository
|
|
where
|
|
r_id=$1
|
|
and p_id =$2
|
|
",array($p_repo,$profile));
|
|
if ( $r==0)
|
|
return false;
|
|
return true;
|
|
}
|
|
|
|
}
|
|
|
|
?>
|