phpBB
Statistics
| Revision:

root / tags / release_2_0_2 / phpBB / groupcp.php

History | View | Annotate | Download (44.8 kB)

1
<?php
2
/***************************************************************************
3
 *                               groupcp.php
4
 *                            -------------------
5
 *   begin                : Saturday, Feb 13, 2001
6
 *   copyright            : (C) 2001 The phpBB Group
7
 *   email                : support@phpbb.com
8
 *
9
 *   $Id: groupcp.php 2845 2002-08-08 18:06:53Z  $
10
 *
11
 *
12
 ***************************************************************************/
13
14
/***************************************************************************
15
 *
16
 *   This program is free software; you can redistribute it and/or modify
17
 *   it under the terms of the GNU General Public License as published by
18
 *   the Free Software Foundation; either version 2 of the License, or
19
 *   (at your option) any later version.
20
 *
21
 ***************************************************************************/
22
23
define('IN_PHPBB', true);
24
$phpbb_root_path = './';
25
include($phpbb_root_path . 'extension.inc');
26
include($phpbb_root_path . 'common.'.$phpEx);
27
28
// -------------------------
29
//
30
function generate_user_info(&$row, $date_format, $group_mod, &$from, &$posts, &$joined, &$poster_avatar, &$profile_img, &$profile, &$search_img, &$search, &$pm_img, &$pm, &$email_img, &$email, &$www_img, &$www, &$icq_status_img, &$icq_img, &$icq, &$aim_img, &$aim, &$msn_img, &$msn, &$yim_img, &$yim)
31
{
32
        global $lang, $images, $board_config, $phpEx;
33
34
        $from = ( !empty($row['user_from']) ) ? $row['user_from'] : '&nbsp;';
35
        $joined = create_date($date_format, $row['user_regdate'], $board_config['board_timezone']);
36
        $posts = ( $row['user_posts'] ) ? $row['user_posts'] : 0;
37
38
        $poster_avatar = '';
39
        if ( $row['user_avatar_type'] && $row['user_id'] != ANONYMOUS && $row['user_allowavatar'] )
40
        {
41
                switch( $row['user_avatar_type'] )
42
                {
43
                        case USER_AVATAR_UPLOAD:
44
                                $poster_avatar = ( $board_config['allow_avatar_upload'] ) ? '<img src="' . $board_config['avatar_path'] . '/' . $row['user_avatar'] . '" alt="" border="0" />' : '';
45
                                break;
46
                        case USER_AVATAR_REMOTE:
47
                                $poster_avatar = ( $board_config['allow_avatar_remote'] ) ? '<img src="' . $row['user_avatar'] . '" alt="" border="0" />' : '';
48
                                break;
49
                        case USER_AVATAR_GALLERY:
50
                                $poster_avatar = ( $board_config['allow_avatar_local'] ) ? '<img src="' . $board_config['avatar_gallery_path'] . '/' . $row['user_avatar'] . '" alt="" border="0" />' : '';
51
                                break;
52
                }
53
        }
54
55
        if ( !empty($row['user_viewemail']) || $group_mod )
56
        {
57
                $email_uri = ( $board_config['board_email_form'] ) ? append_sid("profile.$phpEx?mode=email&amp;" . POST_USERS_URL .'=' . $row['user_id']) : 'mailto:' . $row['user_email'];
58
59
                $email_img = '<a href="' . $email_uri . '"><img src="' . $images['icon_email'] . '" alt="' . $lang['Send_email'] . '" title="' . $lang['Send_email'] . '" border="0" /></a>';
60
                $email = '<a href="' . $email_uri . '">' . $lang['Send_email'] . '</a>';
61
        }
62
        else
63
        {
64
                $email_img = '&nbsp;';
65
                $email = '&nbsp;';
66
        }
67
68
        $temp_url = append_sid("profile.$phpEx?mode=viewprofile&amp;" . POST_USERS_URL . "=" . $row['user_id']);
69
        $profile_img = '<a href="' . $temp_url . '"><img src="' . $images['icon_profile'] . '" alt="' . $lang['Read_profile'] . '" title="' . $lang['Read_profile'] . '" border="0" /></a>';
70
        $profile = '<a href="' . $temp_url . '">' . $lang['Read_profile'] . '</a>';
71
72
        $temp_url = append_sid("privmsg.$phpEx?mode=post&amp;" . POST_USERS_URL . "=" . $row['user_id']);
73
        $pm_img = '<a href="' . $temp_url . '"><img src="' . $images['icon_pm'] . '" alt="' . $lang['Send_private_message'] . '" title="' . $lang['Send_private_message'] . '" border="0" /></a>';
74
        $pm = '<a href="' . $temp_url . '">' . $lang['Send_private_message'] . '</a>';
75
76
        $www_img = ( $row['user_website'] ) ? '<a href="' . $row['user_website'] . '" target="_userwww"><img src="' . $images['icon_www'] . '" alt="' . $lang['Visit_website'] . '" title="' . $lang['Visit_website'] . '" border="0" /></a>' : '';
77
        $www = ( $row['user_website'] ) ? '<a href="' . $row['user_website'] . '" target="_userwww">' . $lang['Visit_website'] . '</a>' : '';
78
79
        if ( !empty($row['user_icq']) )
80
        {
81
                $icq_status_img = '<a href="http://wwp.icq.com/' . $row['user_icq'] . '#pager"><img src="http://web.icq.com/whitepages/online?icq=' . $row['user_icq'] . '&img=5" width="18" height="18" border="0" /></a>';
82
                $icq_img = '<a href="http://wwp.icq.com/scripts/search.dll?to=' . $row['user_icq'] . '"><img src="' . $images['icon_icq'] . '" alt="' . $lang['ICQ'] . '" title="' . $lang['ICQ'] . '" border="0" /></a>';
83
                $icq =  '<a href="http://wwp.icq.com/scripts/search.dll?to=' . $row['user_icq'] . '">' . $lang['ICQ'] . '</a>';
84
        }
85
        else
86
        {
87
                $icq_status_img = '';
88
                $icq_img = '';
89
                $icq = '';
90
        }
91
92
        $aim_img = ( $row['user_aim'] ) ? '<a href="aim:goim?screenname=' . $row['user_aim'] . '&amp;message=Hello+Are+you+there?"><img src="' . $images['icon_aim'] . '" alt="' . $lang['AIM'] . '" title="' . $lang['AIM'] . '" border="0" /></a>' : '';
93
        $aim = ( $row['user_aim'] ) ? '<a href="aim:goim?screenname=' . $row['user_aim'] . '&amp;message=Hello+Are+you+there?">' . $lang['AIM'] . '</a>' : '';
94
95
        $temp_url = append_sid("profile.$phpEx?mode=viewprofile&amp;" . POST_USERS_URL . "=" . $row['user_id']);
96
        $msn_img = ( $row['user_msnm'] ) ? '<a href="' . $temp_url . '"><img src="' . $images['icon_msnm'] . '" alt="' . $lang['MSNM'] . '" title="' . $lang['MSNM'] . '" border="0" /></a>' : '';
97
        $msn = ( $row['user_msnm'] ) ? '<a href="' . $temp_url . '">' . $lang['MSNM'] . '</a>' : '';
98
99
        $yim_img = ( $row['user_yim'] ) ? '<a href="http://edit.yahoo.com/config/send_webmesg?.target=' . $row['user_yim'] . '&amp;.src=pg"><img src="' . $images['icon_yim'] . '" alt="' . $lang['YIM'] . '" title="' . $lang['YIM'] . '" border="0" /></a>' : '';
100
        $yim = ( $row['user_yim'] ) ? '<a href="http://edit.yahoo.com/config/send_webmesg?.target=' . $row['user_yim'] . '&amp;.src=pg">' . $lang['YIM'] . '</a>' : '';
101
102
        $temp_url = append_sid("search.$phpEx?search_author=" . urlencode($username) . "&amp;showresults=posts");
103
        $search_img = '<a href="' . $temp_url . '"><img src="' . $images['icon_search'] . '" alt="' . $lang['Search_user_posts'] . '" title="' . $lang['Search_user_posts'] . '" border="0" /></a>';
104
        $search = '<a href="' . $temp_url . '">' . $lang['Search_user_posts'] . '</a>';
105
106
        return;
107
}
108
//
109
// --------------------------
110
111
//
112
// Start session management
113
//
114
$userdata = session_pagestart($user_ip, PAGE_GROUPCP);
115
init_userprefs($userdata);
116
//
117
// End session management
118
//
119
120
$script_name = preg_replace('/^\/?(.*?)\/?$/', "\\1", trim($board_config['script_path']));
121
$script_name = ( $script_name != '' ) ? $script_name . '/groupcp.'.$phpEx : 'groupcp.'.$phpEx;
122
$server_name = trim($board_config['server_name']);
123
$server_protocol = ( $board_config['cookie_secure'] ) ? 'https://' : 'http://';
124
$server_port = ( $board_config['server_port'] <> 80 ) ? ':' . trim($board_config['server_port']) . '/' : '/';
125
126
$server_url = $server_protocol . $server_name . $server_port . $script_name;
127
128
if ( isset($HTTP_GET_VARS[POST_GROUPS_URL]) || isset($HTTP_POST_VARS[POST_GROUPS_URL]) )
129
{
130
        $group_id = ( isset($HTTP_GET_VARS[POST_GROUPS_URL]) ) ? intval($HTTP_GET_VARS[POST_GROUPS_URL]) : intval($HTTP_POST_VARS[POST_GROUPS_URL]);
131
}
132
else
133
{
134
        $group_id = '';
135
}
136
137
if ( isset($HTTP_POST_VARS['mode']) || isset($HTTP_GET_VARS['mode']) )
138
{
139
        $mode = ( isset($HTTP_POST_VARS['mode']) ) ? $HTTP_POST_VARS['mode'] : $HTTP_GET_VARS['mode'];
140
}
141
else
142
{
143
        $mode = '';
144
}
145
146
$confirm = ( isset($HTTP_POST_VARS['confirm']) ) ? TRUE : 0;
147
$cancel = ( isset($HTTP_POST_VARS['cancel']) ) ? TRUE : 0;
148
149
$start = ( isset($HTTP_GET_VARS['start']) ) ? intval($HTTP_GET_VARS['start']) : 0;
150
151
//
152
// Default var values
153
//
154
$header_location = ( @preg_match('/Microsoft|WebSTAR/', getenv('SERVER_SOFTWARE')) ) ? 'Refresh: 0; URL=' : 'Location: ';
155
$is_moderator = FALSE;
156
157
if ( isset($HTTP_POST_VARS['groupstatus']) && $group_id )
158
{
159
        if ( !$userdata['session_logged_in'] )
160
        {
161
                header($header_location . append_sid("login.$phpEx?redirect=groupcp.$phpEx&" . POST_GROUPS_URL . "=$group_id", true));
162
                exit;
163
        }
164
165
        $sql = "SELECT group_moderator 
166
                FROM " . GROUPS_TABLE . "  
167
                WHERE group_id = $group_id";
168
        if ( !($result = $db->sql_query($sql)) )
169
        {
170
                message_die(GENERAL_ERROR, 'Could not obtain user and group information', '', __LINE__, __FILE__, $sql);
171
        }
172
173
        $row = $db->sql_fetchrow($result);
174
175
        if ( $row['group_moderator'] != $userdata['user_id'] && $userdata['user_level'] != ADMIN )
176
        {
177
                $template->assign_vars(array(
178
                        'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
179
                );
180
181
                $message = $lang['Not_group_moderator'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
182
183
                message_die(GENERAL_MESSAGE, $message);
184
        }
185
186
        $sql = "UPDATE " . GROUPS_TABLE . " 
187
                SET group_type = " . intval($HTTP_POST_VARS['group_type']) . "
188
                WHERE group_id = $group_id";
189
        if ( !($result = $db->sql_query($sql)) )
190
        {
191
                message_die(GENERAL_ERROR, 'Could not obtain user and group information', '', __LINE__, __FILE__, $sql);
192
        }
193
194
        $template->assign_vars(array(
195
                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">')
196
        );
197
198
        $message = $lang['Group_type_updated'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
199
200
        message_die(GENERAL_MESSAGE, $message);
201
202
}
203
else if ( isset($HTTP_POST_VARS['joingroup']) && $group_id )
204
{
205
        //
206
        // First, joining a group
207
        // If the user isn't logged in redirect them to login
208
        //
209
        if ( !$userdata['session_logged_in'] )
210
        {
211
                header($header_location . append_sid("login.$phpEx?redirect=groupcp.$phpEx&" . POST_GROUPS_URL . "=$group_id", true));
212
                exit;
213
        }
214
215
        $sql = "SELECT ug.user_id, g.group_type
216
                FROM " . USER_GROUP_TABLE . " ug, " . GROUPS_TABLE . " g 
217
                WHERE g.group_id = $group_id 
218
                        AND g.group_type <> " . GROUP_HIDDEN . " 
219
                        AND ug.group_id = g.group_id";
220
        if ( !($result = $db->sql_query($sql)) )
221
        {
222
                message_die(GENERAL_ERROR, 'Could not obtain user and group information', '', __LINE__, __FILE__, $sql);
223
        }
224
225
        if (        $row = $db->sql_fetchrow($result) )
226
        {
227
                if ( $row['group_type'] == GROUP_OPEN )
228
                {
229
                        do
230
                        {
231
                                if ( $userdata['user_id'] == $row['user_id'] )
232
                                {
233
                                        $template->assign_vars(array(
234
                                                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
235
                                        );
236
237
                                        $message = $lang['Already_member_group'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
238
239
                                        message_die(GENERAL_MESSAGE, $message);
240
                                }
241
                        } while ( $row = $db->sql_fetchrow($result) );
242
                }
243
                else
244
                {
245
                        $template->assign_vars(array(
246
                                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
247
                        );
248
249
                        $message = $lang['This_closed_group'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
250
251
                        message_die(GENERAL_MESSAGE, $message);
252
                }
253
        }
254
        else
255
        {
256
                message_die(GENERAL_MESSAGE, $lang['No_groups_exist']); 
257
        }
258
259
        $sql = "INSERT INTO " . USER_GROUP_TABLE . " (group_id, user_id, user_pending) 
260
                VALUES ($group_id, " . $userdata['user_id'] . ", 1)";
261
        if ( !($result = $db->sql_query($sql)) )
262
        {
263
                message_die(GENERAL_ERROR, "Error inserting user group subscription", "", __LINE__, __FILE__, $sql);
264
        }
265
266
        $sql = "SELECT u.user_email, u.username, u.user_lang, g.group_name 
267
                FROM ".USERS_TABLE . " u, " . GROUPS_TABLE . " g 
268
                WHERE u.user_id = g.group_moderator 
269
                        AND g.group_id = $group_id";
270
        if ( !($result = $db->sql_query($sql)) )
271
        {
272
                message_die(GENERAL_ERROR, "Error getting group moderator data", "", __LINE__, __FILE__, $sql);
273
        }
274
275
        $moderator = $db->sql_fetchrow($result);
276
277
        include($phpbb_root_path . 'includes/emailer.'.$phpEx);
278
        $emailer = new emailer($board_config['smtp_delivery']);
279
280
        $email_headers = 'From: ' . $board_config['board_email'] . "\nReturn-Path: " . $board_config['board_email'] . "\n";
281
282
        $emailer->use_template('group_request', $moderator['user_lang']);
283
        $emailer->email_address($moderator['user_email']);
284
        $emailer->set_subject();//$lang['Group_request']
285
        $emailer->extra_headers($email_headers);
286
287
        $emailer->assign_vars(array(
288
                'SITENAME' => $board_config['sitename'], 
289
                'GROUP_MODERATOR' => $moderator['username'],
290
                'EMAIL_SIG' => str_replace('<br />', "\n", "-- \n" . $board_config['board_email_sig']), 
291
292
                'U_GROUPCP' => $server_url . '?' . POST_GROUPS_URL . "=$group_id&validate=true")
293
        );
294
        $emailer->send();
295
        $emailer->reset();
296
297
        $template->assign_vars(array(
298
                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
299
        );
300
301
        $message = $lang['Group_joined'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
302
303
        message_die(GENERAL_MESSAGE, $message);
304
}
305
else if ( isset($HTTP_POST_VARS['unsub']) || isset($HTTP_POST_VARS['unsubpending']) && $group_id )
306
{
307
        //
308
        // Second, unsubscribing from a group
309
        // Check for confirmation of unsub.
310
        //
311
        if ( $cancel )
312
        {
313
                header($header_location . append_sid("groupcp.$phpEx", true));
314
                exit;
315
        }
316
        elseif ( !$userdata['session_logged_in'] )
317
        {
318
                header($header_location . append_sid("login.$phpEx?redirect=groupcp.$phpEx&" . POST_GROUPS_URL . "=$group_id", true));
319
                exit;
320
        }
321
322
        if ( $confirm )
323
        {
324
                $sql = "DELETE FROM " . USER_GROUP_TABLE . " 
325
                        WHERE user_id = " . $userdata['user_id'] . " 
326
                                AND group_id = $group_id";
327
                if ( !($result = $db->sql_query($sql)) )
328
                {
329
                        message_die(GENERAL_ERROR, 'Could not delete group memebership data', '', __LINE__, __FILE__, $sql);
330
                }
331
332
                if ( $userdata['user_level'] != ADMIN && $userdata['user_level'] == MOD )
333
                {
334
                        $sql = "SELECT COUNT(auth_mod) AS is_auth_mod 
335
                                FROM " . AUTH_ACCESS_TABLE . " aa, " . USER_GROUP_TABLE . " ug 
336
                                WHERE ug.user_id = " . $userdata['user_id'] . " 
337
                                        AND aa.group_id = ug.group_id 
338
                                        AND aa.auth_mod = 1";
339
                        if ( !($result = $db->sql_query($sql)) )
340
                        {
341
                                message_die(GENERAL_ERROR, 'Could not obtain moderator status', '', __LINE__, __FILE__, $sql);
342
                        }
343
344
                        if ( !($row = $db->sql_fetchrow($result)) )
345
                        {
346
                                $sql = "UPDATE " . USERS_TABLE . " 
347
                                        SET user_level = " . USER . " 
348
                                        WHERE user_id = " . $userdata['user_id'];
349
                                if ( !($result = $db->sql_query($sql)) )
350
                                {
351
                                        message_die(GENERAL_ERROR, 'Could not update user level', '', __LINE__, __FILE__, $sql);
352
                                }
353
                        }
354
                }
355
356
                $template->assign_vars(array(
357
                        'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
358
                );
359
360
                $message = $lang['Usub_success'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
361
362
                message_die(GENERAL_MESSAGE, $message);
363
        }
364
        else
365
        {
366
                $unsub_msg = ( isset($HTTP_POST_VARS['unsub']) ) ? $lang['Confirm_unsub'] : $lang['Confirm_unsub_pending'];
367
368
                $s_hidden_fields = '<input type="hidden" name="' . POST_GROUPS_URL . '" value="' . $group_id . '" /><input type="hidden" name="unsub" value="1" />';
369
370
                $page_title = $lang['Group_Control_Panel'];
371
                include($phpbb_root_path . 'includes/page_header.'.$phpEx);
372
373
                $template->set_filenames(array(
374
                        'confirm' => 'confirm_body.tpl')
375
                );
376
377
                $template->assign_vars(array(
378
                        'MESSAGE_TITLE' => $lang['Confirm'],
379
                        'MESSAGE_TEXT' => $unsub_msg,
380
                        'L_YES' => $lang['Yes'],
381
                        'L_NO' => $lang['No'],
382
                        'S_CONFIRM_ACTION' => append_sid("groupcp.$phpEx"),
383
                        'S_HIDDEN_FIELDS' => $s_hidden_fields)
384
                );
385
386
                $template->pparse('confirm');
387
388
                include($phpbb_root_path . 'includes/page_tail.'.$phpEx);
389
        }
390
391
}
392
else if ( $group_id )
393
{
394
        //
395
        // Did the group moderator get here through an email?
396
        // If so, check to see if they are logged in.
397
        //
398
        if ( isset($HTTP_GET_VARS['validate']) )
399
        {
400
                if ( !$userdata['session_logged_in'] )
401
                {
402
                        header($header_location . append_sid("login.$phpEx?redirect=groupcp.$phpEx&" . POST_GROUPS_URL . "=$group_id", true));
403
                        exit;
404
                }
405
        }
406
407
        //
408
        // For security, get the ID of the group moderator.
409
        //
410
        switch(SQL_LAYER)
411
        {
412
                case 'postgresql':
413
                        $sql = "SELECT g.group_moderator, g.group_type, aa.auth_mod 
414
                                FROM " . GROUPS_TABLE . " g, " . AUTH_ACCESS_TABLE . " aa 
415
                                WHERE g.group_id = $group_id
416
                                        AND aa.group_id = g.group_id 
417
                                        UNION (
418
                                                SELECT g.group_moderator, g.group_type, NULL 
419
                                                FROM " . GROUPS_TABLE . " g
420
                                                WHERE g.group_id = $group_id
421
                                                        AND NOT EXISTS (
422
                                                        SELECT aa.group_id 
423
                                                        FROM " . AUTH_ACCESS_TABLE . " aa 
424
                                                        WHERE aa.group_id = g.group_id  
425
                                                )
426
                                        )";
427
                        break;
428
429
                case 'oracle':
430
                        $sql = "SELECT g.group_moderator, g.group_type, aa.auth_mod 
431
                                FROM " . GROUPS_TABLE . " g, " . AUTH_ACCESS_TABLE . " aa 
432
                                WHERE g.group_id = $group_id
433
                                        AND aa.group_id = g.group_id(+)";
434
                        break;
435
436
                default:
437
                        $sql = "SELECT g.group_moderator, g.group_type, aa.auth_mod 
438
                                FROM ( " . GROUPS_TABLE . " g 
439
                                LEFT JOIN " . AUTH_ACCESS_TABLE . " aa ON aa.group_id = g.group_id )
440
                                WHERE g.group_id = $group_id";
441
                        break;
442
        }
443
        if ( !($result = $db->sql_query($sql)) )
444
        {
445
                message_die(GENERAL_ERROR, 'Could not get moderator information', '', __LINE__, __FILE__, $sql);
446
        }
447
448
        if ( $group_info = $db->sql_fetchrow($result) )
449
        {
450
                $group_moderator = $group_info['group_moderator'];
451
        
452
                if ( $group_moderator == $userdata['user_id'] || $userdata['user_level'] == ADMIN )
453
                {
454
                        $is_moderator = TRUE;
455
                }
456
                        
457
                //
458
                // Handle Additions, removals, approvals and denials
459
                //
460
                if ( !empty($HTTP_POST_VARS['add']) || !empty($HTTP_POST_VARS['remove']) || isset($HTTP_POST_VARS['approve']) || isset($HTTP_POST_VARS['deny']) )
461
                {
462
                        if ( !$userdata['session_logged_in'] )
463
                        {
464
                                header($header_location . append_sid("login.$phpEx?redirect=groupcp.$phpEx&" . POST_GROUPS_URL . "=$group_id", true));
465
                                exit;
466
                        }
467
468
                        if ( !$is_moderator )
469
                        {
470
                                $template->assign_vars(array(
471
                                        'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("index.$phpEx") . '">')
472
                                );
473
474
                                $message = $lang['Not_group_moderator'] . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
475
476
                                message_die(GENERAL_MESSAGE, $message);
477
                        }
478
479
                        if ( isset($HTTP_POST_VARS['add']) )
480
                        {
481
                                $username = ( isset($HTTP_POST_VARS['username']) ) ? $HTTP_POST_VARS['username'] : "";
482
                                
483
                                $sql = "SELECT user_id, user_email, user_lang, user_level  
484
                                        FROM " . USERS_TABLE . " 
485
                                        WHERE username = '" . str_replace("\'", "''", $username) . "'";
486
                                if ( !($result = $db->sql_query($sql)) )
487
                                {
488
                                        message_die(GENERAL_ERROR, "Could not get user information", $lang['Error'], __LINE__, __FILE__, $sql);
489
                                }
490
491
                                if ( !($row = $db->sql_fetchrow($result)) )
492
                                {
493
                                        $template->assign_vars(array(
494
                                                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">')
495
                                        );
496
497
                                        $message = $lang['Could_not_add_user'] . "<br /><br />" . sprintf($lang['Click_return_group'], "<a href=\"" . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . "\">", "</a>") . "<br /><br />" . sprintf($lang['Click_return_index'], "<a href=\"" . append_sid("index.$phpEx") . "\">", "</a>");
498
499
                                        message_die(GENERAL_MESSAGE, $message);
500
                                }
501
502
                                if ( $row['user_id'] == ANONYMOUS )
503
                                {
504
                                        $template->assign_vars(array(
505
                                                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">')
506
                                        );
507
508
                                        $message = $lang['Could_not_anon_user'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
509
510
                                        message_die(GENERAL_MESSAGE, $message);
511
                                }
512
                                
513
                                $sql = "SELECT ug.user_id, u.user_level 
514
                                        FROM " . USER_GROUP_TABLE . " ug, " . USERS_TABLE . " u 
515
                                        WHERE u.user_id = " . $row['user_id'] . " 
516
                                                AND ug.user_id = u.user_id 
517
                                                AND ug.group_id = $group_id";
518
                                if ( !($result = $db->sql_query($sql)) )
519
                                {
520
                                        message_die(GENERAL_ERROR, 'Could not get user information', '', __LINE__, __FILE__, $sql);
521
                                }
522
523
                                if ( !($db->sql_fetchrow($result)) )
524
                                {
525
                                        $sql = "INSERT INTO " . USER_GROUP_TABLE . " (user_id, group_id, user_pending) 
526
                                                VALUES (" . $row['user_id'] . ", $group_id, 0)";
527
                                        if ( !$db->sql_query($sql) )
528
                                        {
529
                                                message_die(GENERAL_ERROR, 'Could not add user to group', '', __LINE__, __FILE__, $sql);
530
                                        }
531
                                        
532
                                        if ( $row['user_level'] != ADMIN && $row['user_level'] != MOD && $group_info['auth_mod'] )
533
                                        {
534
                                                $sql = "UPDATE " . USERS_TABLE . " 
535
                                                        SET user_level = " . MOD . " 
536
                                                        WHERE user_id = " . $row['user_id'];
537
                                                if ( !$db->sql_query($sql) )
538
                                                {
539
                                                        message_die(GENERAL_ERROR, 'Could not update user level', '', __LINE__, __FILE__, $sql);
540
                                                }
541
                                        }
542
543
                                        //
544
                                        // Get the group name
545
                                        // Email the user and tell them they're in the group
546
                                        //
547
                                        $group_sql = "SELECT group_name 
548
                                                FROM " . GROUPS_TABLE . " 
549
                                                WHERE group_id = $group_id";
550
                                        if ( !($result = $db->sql_query($group_sql)) )
551
                                        {
552
                                                message_die(GENERAL_ERROR, 'Could not get group information', '', __LINE__, __FILE__, $group_sql);
553
                                        }
554
555
                                        $group_name_row = $db->sql_fetchrow($result);
556
557
                                        $group_name = $group_name_row['group_name'];
558
559
                                        include($phpbb_root_path . 'includes/emailer.'.$phpEx);
560
                                        $emailer = new emailer($board_config['smtp_delivery']);
561
562
                                        $email_headers = 'From: ' . $board_config['board_email'] . "\nReturn-Path: " . $board_config['board_email'] . "\n";
563
564
                                        $emailer->use_template('group_added', $row['user_lang']);
565
                                        $emailer->email_address($row['user_email']);
566
                                        $emailer->set_subject();//$lang['Group_added']
567
                                        $emailer->extra_headers($email_headers);
568
569
                                        $emailer->assign_vars(array(
570
                                                'SITENAME' => $board_config['sitename'], 
571
                                                'GROUP_NAME' => $group_name,
572
                                                'EMAIL_SIG' => str_replace('<br />', "\n", "-- \n" . $board_config['board_email_sig']), 
573
574
                                                'U_GROUPCP' => $server_url . '?' . POST_GROUPS_URL . "=$group_id")
575
                                        );
576
                                        $emailer->send();
577
                                        $emailer->reset();
578
                                }
579
                                else
580
                                {
581
                                        $template->assign_vars(array(
582
                                                'META' => '<meta http-equiv="refresh" content="3;url=' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">')
583
                                        );
584
585
                                        $message = $lang['User_is_member_group'] . '<br /><br />' . sprintf($lang['Click_return_group'], '<a href="' . append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id") . '">', '</a>') . '<br /><br />' . sprintf($lang['Click_return_index'], '<a href="' . append_sid("index.$phpEx") . '">', '</a>');
586
587
                                        message_die(GENERAL_MESSAGE, $message);
588
                                }
589
                        }
590
                        else 
591
                        {
592
                                if ( ( ( isset($HTTP_POST_VARS['approve']) || isset($HTTP_POST_VARS['deny']) ) && isset($HTTP_POST_VARS['pending_members']) ) || ( isset($HTTP_POST_VARS['remove']) && isset($HTTP_POST_VARS['members']) ) )
593
                                {
594
595
                                        $members = ( isset($HTTP_POST_VARS['approve']) || isset($HTTP_POST_VARS['deny']) ) ? $HTTP_POST_VARS['pending_members'] : $HTTP_POST_VARS['members'];
596
597
                                        $sql_in = '';
598
                                        for($i = 0; $i < count($members); $i++)
599
                                        {
600
                                                $sql_in .= ( ( $sql_in != '' ) ? ', ' : '' ) . $members[$i];
601
                                        }
602
603
                                        if ( isset($HTTP_POST_VARS['approve']) )
604
                                        {
605
                                                if ( $group_info['auth_mod'] )
606
                                                {
607
                                                        $sql = "UPDATE " . USERS_TABLE . " 
608
                                                                SET user_level = " . MOD . " 
609
                                                                WHERE user_id IN ($sql_in) 
610
                                                                        AND user_level NOT IN (" . MOD . ", " . ADMIN . ")";
611
                                                        if ( !$db->sql_query($sql) )
612
                                                        {
613
                                                                message_die(GENERAL_ERROR, 'Could not update user level', '', __LINE__, __FILE__, $sql);
614
                                                        }
615
                                                }
616
617
                                                $sql = "UPDATE " . USER_GROUP_TABLE . " 
618
                                                        SET user_pending = 0 
619
                                                        WHERE user_id IN ($sql_in) 
620
                                                                AND group_id = $group_id";
621
                                                $sql_select = "SELECT user_email 
622
                                                        FROM ". USERS_TABLE . " 
623
                                                        WHERE user_id IN ($sql_in)"; 
624
                                        }
625
                                        else if ( isset($HTTP_POST_VARS['deny']) || isset($HTTP_POST_VARS['remove']) )
626
                                        {
627
                                                if ( $group_info['auth_mod'] )
628
                                                {
629
                                                        $sql = "SELECT ug.user_id, ug.group_id 
630
                                                                FROM " . AUTH_ACCESS_TABLE . " aa, " . USER_GROUP_TABLE . " ug 
631
                                                                WHERE ug.user_id IN  ($sql_in) 
632
                                                                        AND aa.group_id = ug.group_id 
633
                                                                        AND aa.auth_mod = 1 
634
                                                                GROUP BY ug.user_id, ug.group_id 
635
                                                                ORDER BY ug.user_id, ug.group_id";
636
                                                        if ( !($result = $db->sql_query($sql)) )
637
                                                        {
638
                                                                message_die(GENERAL_ERROR, 'Could not obtain moderator status', '', __LINE__, __FILE__, $sql);
639
                                                        }
640
641
                                                        if ( $row = $db->sql_fetchrow($result) )
642
                                                        {
643
                                                                $group_check = array();
644
                                                                $remove_mod_sql = '';
645
646
                                                                do
647
                                                                {
648
                                                                        $group_check[$row['user_id']][] = $row['group_id'];
649
                                                                }
650
                                                                while ( $row = $db->sql_fetchrow($result) );
651
652
                                                                while( list($user_id, $group_list) = @each($group_check) )
653
                                                                {
654
                                                                        if ( count($group_list) == 1 )
655
                                                                        {
656
                                                                                $remove_mod_sql .= ( ( $remove_mod_sql != '' ) ? ', ' : '' ) . $user_id;
657
                                                                        }
658
                                                                }
659
660
                                                                if ( $remove_mod_sql != '' )
661
                                                                {
662
                                                                        $sql = "UPDATE " . USERS_TABLE . " 
663
                                                                                SET user_level = " . USER . " 
664
                                                                                WHERE user_id IN ($remove_mod_sql) 
665
                                                                                        AND user_level NOT IN (" . ADMIN . ")";
666
                                                                        if ( !$db->sql_query($sql) )
667
                                                                        {
668
                                                                                message_die(GENERAL_ERROR, 'Could not update user level', '', __LINE__, __FILE__, $sql);
669
                                                                        }
670
                                                                }
671
                                                        }
672
                                                }
673
674
                                                $sql = "DELETE FROM " . USER_GROUP_TABLE . " 
675
                                                        WHERE user_id IN ($sql_in) 
676
                                                                AND group_id = $group_id";
677
                                        }
678
679
                                        if ( !$db->sql_query($sql) )
680
                                        {
681
                                                message_die(GENERAL_ERROR, 'Could not update user group table', '', __LINE__, __FILE__, $sql);
682
                                        }
683
684
                                        //
685
                                        // Email users when they are approved
686
                                        //
687
                                        if ( isset($HTTP_POST_VARS['approve']) )
688
                                        {
689
                                                if ( !($result = $db->sql_query($sql_select)) )
690
                                                {
691
                                                        message_die(GENERAL_ERROR, 'Could not get user email information', '', __LINE__, __FILE__, $sql);
692
                                                }
693
694
                                                $email_addresses = '';
695
                                                while( $row = $db->sql_fetchrow($result) )
696
                                                {
697
                                                        $email_addresses .= ( ( $email_addresses != '' ) ? ', ' : '' ) . $row['user_email'];
698
                                                }
699
700
                                                //
701
                                                // Get the group name
702
                                                //
703
                                                $group_sql = "SELECT group_name 
704
                                                        FROM " . GROUPS_TABLE . " 
705
                                                        WHERE group_id = $group_id";
706
                                                if ( !($result = $db->sql_query($group_sql)) )
707
                                                {
708
                                                        message_die(GENERAL_ERROR, 'Could not get group information', '', __LINE__, __FILE__, $group_sql);
709
                                                }
710
711
                                                $group_name_row = $db->sql_fetchrow($result);
712
                                                $group_name = $group_name_row['group_name'];
713
714
                                                include($phpbb_root_path . 'includes/emailer.'.$phpEx);
715
                                                $emailer = new emailer($board_config['smtp_delivery']);
716
717
                                                $email_headers = 'From: ' . $board_config['board_email'] . "\nReturn-Path: " . $board_config['board_email'] . "\nBcc: " . $email_addresses . "\n";
718
719
                                                $emailer->use_template('group_approved');
720
                                                $emailer->email_address($userdata['user_email']);
721
                                                $emailer->set_subject();//$lang['Group_approved']
722
                                                $emailer->extra_headers($email_headers);
723
724
                                                $emailer->assign_vars(array(
725
                                                        'SITENAME' => $board_config['sitename'], 
726
                                                        'GROUP_NAME' => $group_name,
727
                                                        'EMAIL_SIG' => str_replace('<br />', "\n", "-- \n" . $board_config['board_email_sig']), 
728
729
                                                        'U_GROUPCP' => $server_url . '?' . POST_GROUPS_URL . "=$group_id")
730
                                                );
731
                                                $emailer->send();
732
                                                $emailer->reset();
733
                                        }
734
                                }
735
                        }
736
                }
737
                //
738
                // END approve or deny
739
                //
740
        }
741
        else
742
        {
743
                message_die(GENERAL_MESSAGE, $lang['No_groups_exist']);
744
        }
745
746
        //
747
        // Get group details
748
        //
749
        $sql = "SELECT *
750
                FROM " . GROUPS_TABLE . "
751
                WHERE group_id = $group_id
752
                        AND group_single_user = 0";
753
        if ( !($result = $db->sql_query($sql)) )
754
        {
755
                message_die(GENERAL_ERROR, 'Error getting group information', '', __LINE__, __FILE__, $sql);
756
        }
757
758
        if ( !($group_info = $db->sql_fetchrow($result)) )
759
        {
760
                message_die(GENERAL_MESSAGE, $lang['Group_not_exist']); 
761
        }
762
763
        //
764
        // Get moderator details for this group
765
        //
766
        $sql = "SELECT username, user_id, user_viewemail, user_posts, user_regdate, user_from, user_website, user_email, user_icq, user_aim, user_yim, user_msnm  
767
                FROM " . USERS_TABLE . " 
768
                WHERE user_id = " . $group_info['group_moderator'];
769
        if ( !($result = $db->sql_query($sql)) )
770
        {
771
                message_die(GENERAL_ERROR, 'Error getting user list for group', '', __LINE__, __FILE__, $sql);
772
        }
773
774
        $group_moderator = $db->sql_fetchrow($result); 
775
776
        //
777
        // Get user information for this group
778
        //
779
        $sql = "SELECT u.username, u.user_id, u.user_viewemail, u.user_posts, u.user_regdate, u.user_from, u.user_website, u.user_email, u.user_icq, u.user_aim, u.user_yim, u.user_msnm, ug.user_pending 
780
                FROM " . USERS_TABLE . " u, " . USER_GROUP_TABLE . " ug
781
                WHERE ug.group_id = $group_id
782
                        AND u.user_id = ug.user_id
783
                        AND ug.user_pending = 0 
784
                        AND ug.user_id <> " . $group_moderator['user_id'] . " 
785
                ORDER BY u.username"; 
786
        if ( !($result = $db->sql_query($sql)) )
787
        {
788
                message_die(GENERAL_ERROR, 'Error getting user list for group', '', __LINE__, __FILE__, $sql);
789
        }
790
791
        $group_members = $db->sql_fetchrowset($result); 
792
        $members_count = count($group_members);
793
        $db->sql_freeresult($result);
794
795
        $sql = "SELECT u.username, u.user_id, u.user_viewemail, u.user_posts, u.user_regdate, u.user_from, u.user_website, u.user_email, u.user_icq, u.user_aim, u.user_yim, u.user_msnm
796
                FROM " . GROUPS_TABLE . " g, " . USER_GROUP_TABLE . " ug, " . USERS_TABLE . " u
797
                WHERE ug.group_id = $group_id
798
                        AND g.group_id = ug.group_id
799
                        AND ug.user_pending = 1
800
                        AND u.user_id = ug.user_id
801
                ORDER BY u.username"; 
802
        if ( !($result = $db->sql_query($sql)) )
803
        {
804
                message_die(GENERAL_ERROR, 'Error getting user pending information', '', __LINE__, __FILE__, $sql);
805
        }
806
807
        $modgroup_pending_list = $db->sql_fetchrowset($result);
808
        $modgroup_pending_count = count($modgroup_pending_list);
809
        $db->sql_freeresult($result);
810
811
        $is_group_member = 0;
812
        if ( $members_count )
813
        {
814
                for($i = 0; $i < $members_count; $i++)
815
                {
816
                        if ( $group_members[$i]['user_id'] == $userdata['user_id'] && $userdata['session_logged_in'] )
817
                        {
818
                                $is_group_member = TRUE; 
819
                        }
820
                }
821
        }
822
823
        $is_group_pending_member = 0;
824
        if ( $modgroup_pending_count )
825
        {
826
                for($i = 0; $i < $modgroup_pending_count; $i++)
827
                {
828
                        if ( $modgroup_pending_list[$i]['user_id'] == $userdata['user_id'] && $userdata['session_logged_in'] )
829
                        {
830
                                $is_group_pending_member = TRUE;
831
                        }
832
                }
833
        }
834
835
        if ( $userdata['user_level'] == ADMIN )
836
        {
837
                $is_moderator = TRUE;
838
        }
839
840
        if ( $userdata['user_id'] == $group_info['group_moderator'] )
841
        {
842
                $is_moderator = TRUE;
843
844
                $group_details =  $lang['Are_group_moderator'];
845
846
                $s_hidden_fields = '<input type="hidden" name="' . POST_GROUPS_URL . '" value="' . $group_id . '" />';
847
        }
848
        else if ( $is_group_member || $is_group_pending_member )
849
        {
850
                $template->assign_block_vars('switch_unsubscribe_group_input', array());
851
852
                $group_details =  ( $is_group_pending_member ) ? $lang['Pending_this_group'] : $lang['Member_this_group'];
853
854
                $s_hidden_fields = '<input type="hidden" name="' . POST_GROUPS_URL . '" value="' . $group_id . '" />';
855
        }
856
        else if ( $userdata['user_id'] == ANONYMOUS )
857
        {
858
                $group_details =  $lang['Login_to_join'];
859
                $s_hidden_fields = '';
860
        }
861
        else
862
        {
863
                if ( $group_info['group_type'] == GROUP_OPEN )
864
                {
865
                        $template->assign_block_vars('switch_subscribe_group_input', array());
866
867
                        $group_details =  $lang['This_open_group'];
868
                        $s_hidden_fields = '<input type="hidden" name="' . POST_GROUPS_URL . '" value="' . $group_id . '" />';
869
                }
870
                else if ( $group_info['group_type'] == GROUP_CLOSED )
871
                {
872
                        $group_details =  $lang['This_closed_group'];
873
                        $s_hidden_fields = '';
874
                }
875
                else if ( $group_info['group_type'] == GROUP_HIDDEN )
876
                {
877
                        $group_details =  $lang['This_hidden_group'];
878
                        $s_hidden_fields = '';
879
                }
880
        }
881
882
        $page_title = $lang['Group_Control_Panel'];
883
        include($phpbb_root_path . 'includes/page_header.'.$phpEx);
884
885
        //
886
        // Load templates
887
        //
888
        $template->set_filenames(array(
889
                'info' => 'groupcp_info_body.tpl', 
890
                'pendinginfo' => 'groupcp_pending_info.tpl')
891
        );
892
        make_jumpbox('viewforum.'.$phpEx);
893
894
        //
895
        // Add the moderator
896
        //
897
        $username = $group_moderator['username'];
898
        $user_id = $group_moderator['user_id'];
899
900
        generate_user_info($group_moderator, $board_config['default_dateformat'], $is_moderator, $from, $posts, $joined, $poster_avatar, $profile_img, $profile, $search_img, $search, $pm_img, $pm, $email_img, $email, $www_img, $www, $icq_status_img, $icq_img, $icq, $aim_img, $aim, $msn_img, $msn, $yim_img, $yim);
901
902
        $template->assign_vars(array(
903
                'L_GROUP_INFORMATION' => $lang['Group_Information'],
904
                'L_GROUP_NAME' => $lang['Group_name'],
905
                'L_GROUP_DESC' => $lang['Group_description'],
906
                'L_GROUP_TYPE' => $lang['Group_type'],
907
                'L_GROUP_MEMBERSHIP' => $lang['Group_membership'],
908
                'L_SUBSCRIBE' => $lang['Subscribe'],
909
                'L_UNSUBSCRIBE' => $lang['Unsubscribe'],
910
                'L_JOIN_GROUP' => $lang['Join_group'], 
911
                'L_UNSUBSCRIBE_GROUP' => $lang['Unsubscribe'], 
912
                'L_GROUP_OPEN' => $lang['Group_open'],
913
                'L_GROUP_CLOSED' => $lang['Group_closed'],
914
                'L_GROUP_HIDDEN' => $lang['Group_hidden'], 
915
                'L_UPDATE' => $lang['Update'], 
916
                'L_GROUP_MODERATOR' => $lang['Group_Moderator'], 
917
                'L_GROUP_MEMBERS' => $lang['Group_Members'], 
918
                'L_PENDING_MEMBERS' => $lang['Pending_members'], 
919
                'L_SELECT_SORT_METHOD' => $lang['Select_sort_method'], 
920
                'L_PM' => $lang['Private_Message'], 
921
                'L_EMAIL' => $lang['Email'], 
922
                'L_POSTS' => $lang['Posts'], 
923
                'L_WEBSITE' => $lang['Website'],
924
                'L_FROM' => $lang['Location'],
925
                'L_ORDER' => $lang['Order'],
926
                'L_SORT' => $lang['Sort'],
927
                'L_SUBMIT' => $lang['Sort'],
928
                'L_AIM' => $lang['AIM'],
929
                'L_YIM' => $lang['YIM'],
930
                'L_MSNM' => $lang['MSNM'],
931
                'L_ICQ' => $lang['ICQ'],
932
                'L_SELECT' => $lang['Select'],
933
                'L_REMOVE_SELECTED' => $lang['Remove_selected'],
934
                'L_ADD_MEMBER' => $lang['Add_member'],
935
                'L_FIND_USERNAME' => $lang['Find_username'],
936
937
                'GROUP_NAME' => $group_info['group_name'],
938
                'GROUP_DESC' => $group_info['group_description'],
939
                'GROUP_DETAILS' => $group_details,
940
                'MOD_ROW_COLOR' => '#' . $theme['td_color1'],
941
                'MOD_ROW_CLASS' => $theme['td_class1'],
942
                'MOD_USERNAME' => $username,
943
                'MOD_FROM' => $from,
944
                'MOD_JOINED' => $joined,
945
                'MOD_POSTS' => $posts,
946
                'MOD_AVATAR_IMG' => $poster_avatar,
947
                'MOD_PROFILE_IMG' => $profile_img, 
948
                'MOD_PROFILE' => $profile, 
949
                'MOD_SEARCH_IMG' => $search_img,
950
                'MOD_SEARCH' => $search,
951
                'MOD_PM_IMG' => $pm_img,
952
                'MOD_PM' => $pm,
953
                'MOD_EMAIL_IMG' => $email_img,
954
                'MOD_EMAIL' => $email,
955
                'MOD_WWW_IMG' => $www_img,
956
                'MOD_WWW' => $www,
957
                'MOD_ICQ_STATUS_IMG' => $icq_status_img,
958
                'MOD_ICQ_IMG' => $icq_img, 
959
                'MOD_ICQ' => $icq, 
960
                'MOD_AIM_IMG' => $aim_img,
961
                'MOD_AIM' => $aim,
962
                'MOD_MSN_IMG' => $msn_img,
963
                'MOD_MSN' => $msn,
964
                'MOD_YIM_IMG' => $yim_img,
965
                'MOD_YIM' => $yim,
966
967
                'U_MOD_VIEWPROFILE' => append_sid("profile.$phpEx?mode=viewprofile&amp;" . POST_USERS_URL . "=$user_id"), 
968
                'U_SEARCH_USER' => append_sid("search.$phpEx?mode=searchuser"), 
969
970
                'S_GROUP_OPEN_TYPE' => GROUP_OPEN,
971
                'S_GROUP_CLOSED_TYPE' => GROUP_CLOSED,
972
                'S_GROUP_HIDDEN_TYPE' => GROUP_HIDDEN,
973
                'S_GROUP_OPEN_CHECKED' => ( $group_info['group_type'] == GROUP_OPEN ) ? ' checked="checked"' : '',
974
                'S_GROUP_CLOSED_CHECKED' => ( $group_info['group_type'] == GROUP_CLOSED ) ? ' checked="checked"' : '',
975
                'S_GROUP_HIDDEN_CHECKED' => ( $group_info['group_type'] == GROUP_HIDDEN ) ? ' checked="checked"' : '',
976
                'S_HIDDEN_FIELDS' => $s_hidden_fields, 
977
                'S_MODE_SELECT' => $select_sort_mode,
978
                'S_ORDER_SELECT' => $select_sort_order,
979
                'S_GROUPCP_ACTION' => append_sid("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id"))
980
        );
981
982
        //
983
        // Dump out the remaining users
984
        //
985
        for($i = $start; $i < min($board_config['topics_per_page'] + $start, $members_count); $i++)
986
        {
987
                $username = $group_members[$i]['username'];
988
                $user_id = $group_members[$i]['user_id'];
989
990
                generate_user_info($group_members[$i], $board_config['default_dateformat'], $is_moderator, $from, $posts, $joined, $poster_avatar, $profile_img, $profile, $search_img, $search, $pm_img, $pm, $email_img, $email, $www_img, $www, $icq_status_img, $icq_img, $icq, $aim_img, $aim, $msn_img, $msn, $yim_img, $yim);
991
992
                if ( $group_info['group_type'] != GROUP_HIDDEN || $is_group_member || $is_moderator )
993
                {
994
                        $row_color = ( !($i % 2) ) ? $theme['td_color1'] : $theme['td_color2'];
995
                        $row_class = ( !($i % 2) ) ? $theme['td_class1'] : $theme['td_class2'];
996
997
                        $template->assign_block_vars('member_row', array(
998
                                'ROW_COLOR' => '#' . $row_color,
999
                                'ROW_CLASS' => $row_class,
1000
                                'USERNAME' => $username,
1001
                                'FROM' => $from,
1002
                                'JOINED' => $joined,
1003
                                'POSTS' => $posts,
1004
                                'USER_ID' => $user_id, 
1005
                                'AVATAR_IMG' => $poster_avatar,
1006
                                'PROFILE_IMG' => $profile_img, 
1007
                                'PROFILE' => $profile, 
1008
                                'SEARCH_IMG' => $search_img,
1009
                                'SEARCH' => $search,
1010
                                'PM_IMG' => $pm_img,
1011
                                'PM' => $pm,
1012
                                'EMAIL_IMG' => $email_img,
1013
                                'EMAIL' => $email,
1014
                                'WWW_IMG' => $www_img,
1015
                                'WWW' => $www,
1016
                                'ICQ_STATUS_IMG' => $icq_status_img,
1017
                                'ICQ_IMG' => $icq_img, 
1018
                                'ICQ' => $icq, 
1019
                                'AIM_IMG' => $aim_img,
1020
                                'AIM' => $aim,
1021
                                'MSN_IMG' => $msn_img,
1022
                                'MSN' => $msn,
1023
                                'YIM_IMG' => $yim_img,
1024
                                'YIM' => $yim,
1025
                                
1026
                                'U_VIEWPROFILE' => append_sid("profile.$phpEx?mode=viewprofile&amp;" . POST_USERS_URL . "=$user_id"))
1027
                        );
1028
1029
                        if ( $is_moderator )
1030
                        {
1031
                                $template->assign_block_vars('member_row.switch_mod_option', array());
1032
                        }
1033
                }
1034
        }
1035
1036
        if ( !$members_count )
1037
        {
1038
                //
1039
                // No group members
1040
                //
1041
                $template->assign_block_vars('switch_no_members', array());
1042
                $template->assign_vars(array(
1043
                        'L_NO_MEMBERS' => $lang['No_group_members'])
1044
                );
1045
        }
1046
1047
        $current_page = ( !$members_count ) ? 1 : ceil( $members_count / $board_config['topics_per_page'] );
1048
1049
        $template->assign_vars(array(
1050
                'PAGINATION' => generate_pagination("groupcp.$phpEx?" . POST_GROUPS_URL . "=$group_id", $members_count, $board_config['topics_per_page'], $start),
1051
                'PAGE_NUMBER' => sprintf($lang['Page_of'], ( floor( $start / $board_config['topics_per_page'] ) + 1 ), $current_page ), 
1052
1053
                'L_GOTO_PAGE' => $lang['Goto_page'])
1054
        );
1055
1056
        if ( $group_info['group_type'] == GROUP_HIDDEN && !$is_group_member && !$is_moderator )
1057
        {
1058
                //
1059
                // No group members
1060
                //
1061
                $template->assign_block_vars('switch_hidden_group', array());
1062
                $template->assign_vars(array(
1063
                        'L_HIDDEN_MEMBERS' => $lang['Group_hidden_members'])
1064
                );
1065
        }
1066
1067
        //
1068
        // We've displayed the members who belong to the group, now we 
1069
        // do that pending memebers... 
1070
        //
1071
        if ( $is_moderator )
1072
        {
1073
                //
1074
                // Users pending in ONLY THIS GROUP (which is moderated by this user)
1075
                //
1076
                if ( $modgroup_pending_count )
1077
                {
1078
                        for($i = 0; $i < $modgroup_pending_count; $i++)
1079
                        {
1080
                                $username = $modgroup_pending_list[$i]['username'];
1081
                                $user_id = $modgroup_pending_list[$i]['user_id'];
1082
1083
                                generate_user_info($modgroup_pending_list[$i], $board_config['default_dateformat'], $is_moderator, $from, $posts, $joined, $poster_avatar, $profile_img, $profile, $search_img, $search, $pm_img, $pm, $email_img, $email, $www_img, $www, $icq_status_img, $icq_img, $icq, $aim_img, $aim, $msn_img, $msn, $yim_img, $yim);
1084
1085
                                $row_color = ( !($i % 2) ) ? $theme['td_color1'] : $theme['td_color2'];
1086
                                $row_class = ( !($i % 2) ) ? $theme['td_class1'] : $theme['td_class2'];
1087
1088
                                $user_select = '<input type="checkbox" name="member[]" value="' . $user_id . '">';
1089
1090
                                $template->assign_block_vars('pending_members_row', array(
1091
                                        'ROW_CLASS' => $row_class,
1092
                                        'ROW_COLOR' => '#' . $row_color, 
1093
                                        'USERNAME' => $username,
1094
                                        'FROM' => $from,
1095
                                        'JOINED' => $joined,
1096
                                        'POSTS' => $posts,
1097
                                        'USER_ID' => $user_id, 
1098
                                        'AVATAR_IMG' => $poster_avatar,
1099
                                        'PROFILE_IMG' => $profile_img, 
1100
                                        'PROFILE' => $profile, 
1101
                                        'SEARCH_IMG' => $search_img,
1102
                                        'SEARCH' => $search,
1103
                                        'PM_IMG' => $pm_img,
1104
                                        'PM' => $pm,
1105
                                        'EMAIL_IMG' => $email_img,
1106
                                        'EMAIL' => $email,
1107
                                        'WWW_IMG' => $www_img,
1108
                                        'WWW' => $www,
1109
                                        'ICQ_STATUS_IMG' => $icq_status_img,
1110
                                        'ICQ_IMG' => $icq_img, 
1111
                                        'ICQ' => $icq, 
1112
                                        'AIM_IMG' => $aim_img,
1113
                                        'AIM' => $aim,
1114
                                        'MSN_IMG' => $msn_img,
1115
                                        'MSN' => $msn,
1116
                                        'YIM_IMG' => $yim_img,
1117
                                        'YIM' => $yim,
1118
                                        
1119
                                        'U_VIEWPROFILE' => append_sid("profile.$phpEx?mode=viewprofile&amp;" . POST_USERS_URL . "=$user_id"))
1120
                                );
1121
                        }
1122
1123
                        $template->assign_block_vars('switch_pending_members', array() );
1124
1125
                        $template->assign_vars(array(
1126
                                'L_SELECT' => $lang['Select'],
1127
                                'L_APPROVE_SELECTED' => $lang['Approve_selected'],
1128
                                'L_DENY_SELECTED' => $lang['Deny_selected'])
1129
                        );
1130
1131
                        $template->assign_var_from_handle('PENDING_USER_BOX', 'pendinginfo');
1132
                
1133
                }
1134
        }
1135
1136
        if ( $is_moderator )
1137
        {
1138
                $template->assign_block_vars('switch_mod_option', array());
1139
                $template->assign_block_vars('switch_add_member', array());
1140
        }
1141
1142
        $template->pparse('info');
1143
}
1144
else
1145
{
1146
        //
1147
        // Show the main groupcp.php screen where the user can select a group.
1148
        //
1149
        // Select all group that the user is a member of or where the user has
1150
        // a pending membership.
1151
        //
1152
        if ( $userdata['session_logged_in'] ) 
1153
        {
1154
                $sql = "SELECT g.group_id, g.group_name, g.group_type, ug.user_pending 
1155
                        FROM " . GROUPS_TABLE . " g, " . USER_GROUP_TABLE . " ug
1156
                        WHERE ug.user_id = " . $userdata['user_id'] . "  
1157
                                AND ug.group_id = g.group_id
1158
                                AND g.group_single_user <> " . TRUE . "
1159
                        ORDER BY g.group_name, ug.user_id";
1160
                if ( !($result = $db->sql_query($sql)) )
1161
                {
1162
                        message_die(GENERAL_ERROR, 'Error getting group information', '', __LINE__, __FILE__, $sql);
1163
                }
1164
1165
                if ( $row = $db->sql_fetchrow($result) )
1166
                {
1167
                        $in_group = array();
1168
                        $s_member_groups_opt = '';
1169
                        $s_pending_groups_opt = '';
1170
1171
                        do
1172
                        {
1173
                                $in_group[] = $row['group_id'];
1174
                                if ( $row['user_pending'] )
1175
                                {
1176
                                        $s_pending_groups_opt .= '<option value="' . $row['group_id'] . '">' . $row['group_name'] . '</option>';
1177
                                }
1178
                                else
1179
                                {
1180
                                        $s_member_groups_opt .= '<option value="' . $row['group_id'] . '">' . $row['group_name'] . '</option>';
1181
                                }
1182
                        }
1183
                        while( $row = $db->sql_fetchrow($result) );
1184
1185
                        $s_pending_groups = '<select name="' . POST_GROUPS_URL . '">' . $s_pending_groups_opt . "</select>";
1186
                        $s_member_groups = '<select name="' . POST_GROUPS_URL . '">' . $s_member_groups_opt . "</select>";
1187
                }
1188
        }
1189
1190
        //
1191
        // Select all other groups i.e. groups that this user is not a member of
1192
        //
1193
        $ignore_group_sql =        ( count($in_group) ) ? "AND group_id NOT IN (" . implode(', ', $in_group) . ")" : ''; 
1194
        $sql = "SELECT group_id, group_name, group_type 
1195
                FROM " . GROUPS_TABLE . " g 
1196
                WHERE group_single_user <> " . TRUE . " 
1197
                        $ignore_group_sql 
1198
                ORDER BY g.group_name";
1199
        if ( !($result = $db->sql_query($sql)) )
1200
        {
1201
                message_die(GENERAL_ERROR, 'Error getting group information', '', __LINE__, __FILE__, $sql);
1202
        }
1203
1204
        $s_group_list_opt = '';
1205
        while( $row = $db->sql_fetchrow($result) )
1206
        {
1207
                if  ( $row['group_type'] != GROUP_HIDDEN || $userdata['user_level'] == ADMIN )
1208
                {
1209
                        $s_group_list_opt .='<option value="' . $row['group_id'] . '">' . $row['group_name'] . '</option>';
1210
                }
1211
        }
1212
        $s_group_list = '<select name="' . POST_GROUPS_URL . '">' . $s_group_list_opt . '</select>';
1213
1214
        if ( $s_group_list_opt != '' || $s_pending_groups_opt != '' || $s_member_groups_opt != '' )
1215
        {
1216
                //
1217
                // Load and process templates
1218
                //
1219
                include($phpbb_root_path . 'includes/page_header.'.$phpEx);
1220
1221
                $template->set_filenames(array(
1222
                        'user' => 'groupcp_user_body.tpl')
1223
                );
1224
                make_jumpbox('viewforum.'.$phpEx);
1225
1226
                if ( $s_pending_groups_opt != '' || $s_member_groups_opt != '' )
1227
                {
1228
                        $template->assign_block_vars('switch_groups_joined', array() );
1229
                }
1230
1231
                if ( $s_member_groups_opt != '' )
1232
                {
1233
                        $template->assign_block_vars('switch_groups_joined.switch_groups_member', array() );
1234
                }
1235
1236
                if ( $s_pending_groups_opt != '' )
1237
                {
1238
                        $template->assign_block_vars('switch_groups_joined.switch_groups_pending', array() );
1239
                }
1240
1241
                if ( $s_group_list_opt != '' )
1242
                {
1243
                        $template->assign_block_vars('switch_groups_remaining', array() );
1244
                }
1245
1246
                $s_hidden_fields = '<input type="hidden" name="sid" value="' . $userdata['session_id'] . '" />';
1247
1248
                $template->assign_vars(array(
1249
                        'L_GROUP_MEMBERSHIP_DETAILS' => $lang['Group_member_details'],
1250
                        'L_JOIN_A_GROUP' => $lang['Group_member_join'],
1251
                        'L_YOU_BELONG_GROUPS' => $lang['Current_memberships'],
1252
                        'L_SELECT_A_GROUP' => $lang['Non_member_groups'],
1253
                        'L_PENDING_GROUPS' => $lang['Memberships_pending'],
1254
                        'L_SUBSCRIBE' => $lang['Subscribe'],
1255
                        'L_UNSUBSCRIBE' => $lang['Unsubscribe'],
1256
                        'L_VIEW_INFORMATION' => $lang['View_Information'], 
1257
1258
                        'S_USERGROUP_ACTION' => append_sid("groupcp.$phpEx"), 
1259
                        'S_HIDDEN_FIELDS' => $s_hidden_fields, 
1260
1261
                        'GROUP_LIST_SELECT' => $s_group_list,
1262
                        'GROUP_PENDING_SELECT' => $s_pending_groups,
1263
                        'GROUP_MEMBER_SELECT' => $s_member_groups)
1264
                );
1265
1266
                $template->pparse('user');
1267
        }
1268
        else
1269
        {
1270
                message_die(GENERAL_MESSAGE, $lang['No_groups_exist']);
1271
        }
1272
1273
}
1274
1275
include($phpbb_root_path . 'includes/page_tail.'.$phpEx);
1276
1277
?>