usuario.php 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364
  1. <?php
  2. class usuario extends controller
  3. {
  4. public function index()
  5. {
  6. webApp::app()->requireLoginRedir();
  7. $this->titulo = 'Usuarios';
  8. $grid = $this->configGrid();
  9. $this->render("index", array(
  10. 'grid' => $grid
  11. ));
  12. }
  13. private function configGrid()
  14. {
  15. $grid = new grid('usuarios');
  16. $grid
  17. ->setJsonUrl($this->getMethodUrl('data'))
  18. ->setUniqueIdFields('id')
  19. ->setColModel(array(
  20. array(
  21. 'name' => 'usuario',
  22. 'width' => 150,
  23. 'format' => grid::FMT_STRING
  24. ),
  25. array(
  26. 'name' => 'nombre',
  27. 'width' => 200,
  28. 'format' => grid::FMT_STRING
  29. ),
  30. array(
  31. 'name' => 'email',
  32. 'width' => 200,
  33. 'format' => grid::FMT_STRING
  34. ),
  35. array(
  36. 'name' => 'role',
  37. 'width' => 150,
  38. 'format' => grid::FMT_SELECT,
  39. 'formatoptions' => array('value' => $this->getRoleDescription())
  40. ),
  41. array(
  42. 'name' => 'ultimoLogin',
  43. 'label' => 'Última sesión',
  44. 'format' => grid::FMT_DATETIME
  45. )
  46. ))
  47. ->setDefaultSortName('usuario')
  48. ->setDefaultSortOrder('asc')
  49. ->setActions(array(
  50. new gridActionButton(gridActionButton::ADD, webApp::app()->getSite() . 'usuario/add'),
  51. new gridActionButton(gridActionButton::EDIT, webApp::app()->getSite() . 'usuario/edit'),
  52. new gridActionButton(gridActionButton::MULTI_DELETE, webApp::app()->getSite() . 'usuario/delete')
  53. ));
  54. return $grid;
  55. }
  56. private function getRoleDescription($role = null)
  57. {
  58. $arr = array(
  59. webApp::ROLE_ADMIN => 'Administrador',
  60. webApp::ROLE_EDITOR => 'Editor',
  61. webApp::ROLE_USER => 'Usuario'
  62. );
  63. if ($role == null)
  64. return $arr;
  65. elseif (isset($arr[$role]))
  66. return $arr[$role];
  67. return false;
  68. }
  69. public function add()
  70. {
  71. webApp::app()->requireLogin();
  72. $form = new webApp_form('usuario', array(
  73. new webApp_column(array(
  74. new webApp_input('usuario', array(
  75. 'rules' => array(
  76. 'required' => true
  77. )
  78. )),
  79. new webApp_input('email', array(
  80. 'rules' => array(
  81. 'required' => true,
  82. 'email' => true
  83. )
  84. )),
  85. new webApp_password('pass', array(
  86. 'label' => 'Contraseña',
  87. 'rules' => array(
  88. 'required' => true
  89. )
  90. )),
  91. new webApp_input('nombre', array(
  92. 'rules' => array(
  93. 'required' => true
  94. )
  95. )),
  96. new webApp_select('role', $this->getRoleDescription())
  97. ))
  98. ), array(
  99. 'action' => webApp::app()->getSite() . 'usuario/add',
  100. 'ajax' => true,
  101. 'gridId' => "usuarios"
  102. ));
  103. if (isset($_POST['usuario'])) {
  104. $form->setAtributes($_POST['usuario']);
  105. if ($form->validate()) {
  106. $param = $form->getAtributes();
  107. $param['pass'] = md5($param['pass']);
  108. webApp::app()->db()->insert('usuarios', $param);
  109. $this->returnJson(array(
  110. 'error' => 0
  111. ));
  112. }
  113. } else {
  114. echo $form->render();
  115. }
  116. }
  117. public function edit()
  118. {
  119. webApp::app()->requireLogin();
  120. $usuario = webApp::app()->db()->queryRow('SELECT id, usuario, email, nombre, role FROM usuarios WHERE id = :id', array(
  121. 'id' => isset($_POST['usuario']['id']) ? $_POST['usuario']['id'] : $_POST['id']
  122. ));
  123. if ($usuario) {
  124. $form = new webApp_form('usuario', array(
  125. new webApp_column(array(
  126. new webApp_hidden('id'),
  127. new webApp_input('email', array(
  128. 'rules' => array(
  129. 'required' => true,
  130. 'email' => true
  131. )
  132. )),
  133. new webApp_password('pass', array(
  134. 'label' => 'Contraseña',
  135. 'htmlOptions' => array(
  136. 'placeholder' => 'dejar vacío para no cambiar la contraseña'
  137. )
  138. )),
  139. new webApp_input('nombre', array(
  140. 'rules' => array(
  141. 'required' => true
  142. )
  143. )),
  144. new webApp_select('role', $this->getRoleDescription(), $usuario->usuario == 'admin' ? array('htmlOptions' => array('disabled' => 'disabled')) : null)
  145. ))
  146. ), array(
  147. 'action' => webApp::app()->getSite() . 'usuario/edit',
  148. 'ajax' => true,
  149. 'gridId' => "usuarios"
  150. ));
  151. if (isset($_POST['usuario'])) {
  152. $form->setAtributes($_POST['usuario']);
  153. if ($form->validate()) {
  154. $param = $form->getAtributes();
  155. if (!empty($param['pass']))
  156. $param['pass'] = md5($param['pass']);
  157. else
  158. unset($param['pass']);
  159. webApp::app()->db()->update('usuarios', $param,
  160. array(
  161. 'id' => $param['id']
  162. )
  163. );
  164. $this->returnJson(array(
  165. 'error' => 0
  166. ));
  167. }
  168. }else{
  169. $form->setAtributes($usuario);
  170. echo $form->render();
  171. }
  172. }
  173. }
  174. public function delete()
  175. {
  176. webApp::app()->requireLogin();
  177. if (isset($_POST['id'])) {
  178. $db = webApp::app()->db();
  179. $usuario = $db->queryRow('SELECT * FROM usuarios WHERE id IN(:ids) AND usuario = "admin"', array(
  180. 'ids' => implode(',', $_POST['id'])
  181. ));
  182. if (!$usuario) {
  183. $sessions = $db->queryRow('SELECT * FROM sessions WHERE usuario_id IN(:ids) LIMIT 1', array(
  184. 'ids' => implode(',', $_POST['id'])
  185. ));
  186. if (!$sessions) {
  187. $db->query('DELETE FROM usuarios WHERE id IN(:ids)', array(
  188. 'ids' => implode(',', $_POST['id'])
  189. ));
  190. $this->returnJson(array(
  191. 'error' => 0
  192. ));
  193. }else{
  194. $this->returnJson(array(
  195. 'error' => 1,
  196. 'mensaje' => 'Imposible eliminar, al menos uno de los usuarios seleccionados tiene conversaciones registradas.'
  197. ));
  198. }
  199. }else{
  200. $this->returnJson(array(
  201. 'error' => 1,
  202. 'mensaje' => 'No se permite eliminar el usuario admin.'
  203. ));
  204. }
  205. }
  206. }
  207. public function data()
  208. {
  209. webApp::app()->requireLogin();
  210. $grid = $this->configGrid();
  211. $grid->renderData(webApp::app()->db(), "SELECT * FROM usuarios");
  212. }
  213. public function miperfil()
  214. {
  215. webApp::app()->requireLoginRedir();
  216. $this->titulo = 'Mi perfil';
  217. $form = new webApp_form('usuario', array(
  218. new webApp_column(array(
  219. new webApp_input('email', array(
  220. 'rules' => array(
  221. 'required' => true,
  222. 'email' => true
  223. )
  224. )),
  225. new webApp_password('pass', array(
  226. 'label' => 'Contraseña',
  227. 'htmlOptions' => array(
  228. 'placeholder' => 'dejar vacío para no cambiar la contraseña'
  229. )
  230. )),
  231. new webApp_input('nombre', array(
  232. 'rules' => array(
  233. 'required' => true
  234. )
  235. ))
  236. ))
  237. ));
  238. if (isset($_POST['usuario'])) {
  239. $form->setAtributes($_POST['usuario']);
  240. if ($form->validate()) {
  241. $param = $form->getAtributes();
  242. if (!empty($param['pass']))
  243. $param['pass'] = md5($param['pass']);
  244. else
  245. unset($param['pass']);
  246. webApp::app()->db()->update('usuarios', $param,
  247. array(
  248. 'id' => webApp::app()->getUsuarioId()
  249. )
  250. );
  251. webApp::notify('Sus datos se actualizaron correctamente', notificacion::SUCCESS);
  252. }
  253. } else {
  254. $usuario = webApp::app()->db()->queryRow('SELECT email, nombre FROM usuarios WHERE id = :id', array(
  255. 'id' => webApp::app()->getUsuarioId()
  256. ));
  257. $form->setAtributes($usuario);
  258. }
  259. $this->render("miperfil", array(
  260. 'form' => $form
  261. ));
  262. }
  263. }