QuickFormQuery.php 15.7 KB
Newer Older
1
2
3
4
5
6
7
8
<?php
/**
 * Created by PhpStorm.
 * User: ep
 * Date: 12/23/15
 * Time: 6:33 PM
 */

Carsten  Rose's avatar
Carsten Rose committed
9

10
11
namespace qfq;

Carsten  Rose's avatar
Carsten Rose committed
12
use qfq;
13
14
15
16
17
18
19
20
21

//use qfq\Report;

//use qfq\BuildFormPlain;
//use qfq\BuildFormTable;
//use qfq\BuildFormBootstrap;
//use qfq\UserException;
//use qfq\CodeException;
//use qfq\DbException;
22
//use qfq\helper;
23
//use qfq\Store;
Carsten  Rose's avatar
Carsten Rose committed
24

Carsten  Rose's avatar
Carsten Rose committed
25

26
require_once(__DIR__ . '/../qfq/store/Store.php');
Carsten  Rose's avatar
Carsten Rose committed
27
require_once(__DIR__ . '/../qfq/store/FillStoreForm.php');
Carsten  Rose's avatar
Carsten Rose committed
28
require_once(__DIR__ . '/../qfq/Constants.php');
29
require_once(__DIR__ . '/../qfq/Save.php');
Carsten  Rose's avatar
Carsten Rose committed
30
require_once(__DIR__ . '/../qfq/helper/KeyValueStringParser.php');
31
require_once(__DIR__ . '/../qfq/helper/HelperFormElement.php');
32
require_once(__DIR__ . '/../qfq/exceptions/UserFormException.php');
33
34
require_once(__DIR__ . '/../qfq/exceptions/CodeException.php');
require_once(__DIR__ . '/../qfq/exceptions/DbException.php');
35
require_once(__DIR__ . '/../qfq/exceptions/ErrorHandler.php');
36
require_once(__DIR__ . '/../qfq/Database.php');
Carsten  Rose's avatar
Carsten Rose committed
37
require_once(__DIR__ . '/../qfq/Evaluate.php');
38
39
40
require_once(__DIR__ . '/../qfq/BuildFormPlain.php');
require_once(__DIR__ . '/../qfq/BuildFormTable.php');
require_once(__DIR__ . '/../qfq/BuildFormBootstrap.php');
41
require_once(__DIR__ . '/../qfq/report/Report.php');
42
require_once(__DIR__ . '/../qfq/BodytextParser.php');
43

44
45
46
47
48
49
50
51
52
53
54
55
/*
 * Form will be called
 * a) with a SIP identifier, or
 * b) without a SIP identifier (form setting has to allow this) and will create on the fly a new SIP.
 *
 * The SIP-Store stores:
 *  form=<formname>
 *  r=<record id>  (table.id for a single record form)
 *  keySemId,keySemIduser
 *  <further individual variables>
 */

Carsten  Rose's avatar
Carsten Rose committed
56
/**
57
 * Class Qfq
Carsten  Rose's avatar
Carsten Rose committed
58
59
 * @package qfq
 */
60
class QuickFormQuery {
61
    /**
62
     * @var \qfq\Store instantiated class
63
     */
Carsten  Rose's avatar
Carsten Rose committed
64
    protected $store = null;
65
66
67
    /**
     * @var Database instantiated class
     */
68
    protected $db = null;
69
70
71
72
    /**
     * @var Evaluate instantiated class
     */
    protected $eval = null;
73
74
75
76
77
78
79
    protected $formSpec = array();
    protected $feSpecAction = array();  // Form Definition: copy of the loaded form
    protected $feSpecNative = array(); // FormEelement Definition: all formElement.class='action' of the loaded form
    /**
     * @var array
     */
    private $t3data = array(); // FormEelement Definition: all formElement.class='native' of the loaded form
80

81
82
    private $phpUnit = false;

83
84
85
86
87
88
89
90
91
92
93
    /*
     * TODO:
     *  Preparation: setup logging, database access, record locking
     *  fill stores
     *  Check permission_create / permission_update
     *  Multi: iterate over all records, Single: activate record
     *      Check mode: Load | Save
     *      doActions 'Before'
     *      Do all FormElements
     *      doActions 'After'
     */
94

95
96
97
98
99
    /**
     * Construct the Form Class and Store too. This is the base initialization moment.
     *
     * As a result of instantiating of Form, the class Store will initially called the first time and therefore instantiated automatically.
     * Store might throw an exception, in case the URL-passed SIP is invalid.
100
     *
101
     * @param string $bodytext
102
     */
103
104
    public function __construct(array $t3data = array(), $phpUnit = false) {

105
106
        $this->phpUnit = $phpUnit;

107
        mb_internal_encoding("UTF-8");
108

Carsten  Rose's avatar
Carsten Rose committed
109
110
111
112
113
114
115
116
117
118
        // session.cache_expire
        // session.cookie_lifetime
        // session.gc_maxlifetime

//        $arr1['sessionname'] =   session_name();
//        $arr1['session.auto_start']  = ini_get('session.auto_start');
//        $arr1['session.gc_maxlifetime']  = ini_get('session.gc_maxlifetime');
//        $arr1['session.cookie_lifetime']  = ini_get('session.cookie_lifetime');
//        $arr1['session.name']  = ini_get('session.name');

119
120
121
        // Refresh the session even if no new data saved.
        $_SESSION['LAST_ACTIVITY'] = time();

122
        set_error_handler("\\qfq\\ErrorHandler::exception_error_handler");
123

124
125
126
127
128
        if (!isset($t3data['bodytext']))
            $t3data['bodytext'] = '';
        if (!isset($t3data['uid']))
            $t3data['uid'] = 0;

129
130
131
        $btp = new BodytextParser();
        $t3data['bodytext'] = $btp->process($t3data['bodytext']);

132
133
        $this->t3data = $t3data;

134
135
136
        $bodytext = $this->t3data['bodytext'];

        $this->store = Store::getInstance($bodytext, $phpUnit);
137
        $this->store->setVar(TYPO3_TT_CONTENT_UID, $t3data['uid'], STORE_TYPO3);
138
139
        $this->db = new Database();
        $this->eval = new Evaluate($this->store, $this->db);
Carsten  Rose's avatar
Carsten Rose committed
140
141
    }

142
    /**
143
144
     * Returns the defined forwardMode and set, if necessary, $forwardPage
     *
145
146
147
148
149
150
151
152
     * @param $forwardPage
     * @return mixed
     */
    public function getForwardMode(&$forwardPage) {
        $forwardPage = $this->formSpec['forwardPage'];
        return $this->formSpec['forwardMode'];
    }

153
    /**
154
155
     * Main entrypoint for display content: form or report
     *
156
     * @return string
Carsten  Rose's avatar
Carsten Rose committed
157
     */
158
    public function process() {
159
        $html = '';
160

161
162
163
164
165
        if ($this->store->getVar('debugShowBodyText', STORE_TYPO3) === '1') {
            $html .= Support::appendTooltip('', $this->t3data['bodytext']);
        }

        $html .= $this->doForm(FORM_LOAD);
166
        $html .= $this->doReport();
Carsten  Rose's avatar
Carsten Rose committed
167

168
169
170
171
        $class = $this->store->getVar(SYSTEM_CSS_CLASS_QFQ_CONTAINER, STORE_SYSTEM);
        if ($class)
            $html = Support::wrapTag("<div class='$class'>", $html);

172
        return $html;
173
174
    }

175
    /**
Carsten  Rose's avatar
Carsten Rose committed
176
     * Process form. There
177
     *
178
179
     * @return string
     * @throws CodeException
180
     * @throws UserFormException
181
     */
Carsten  Rose's avatar
Carsten Rose committed
182
183
    private function doForm($mode) {
        $data = '';
Carsten  Rose's avatar
Carsten Rose committed
184
        $foundInStore = '';
185

Carsten  Rose's avatar
Carsten Rose committed
186
187
188
189
190
        // Fill STORE_FORM
        if ($mode === FORM_UPDATE || $mode === FORM_SAVE) {
            $fillStoreForm = new FillStoreForm();
            $fillStoreForm->process();
        }
191

Carsten  Rose's avatar
Carsten Rose committed
192
        $formName = $this->loadFormSpecification($mode, $foundInStore);
193
194
195
        if ($formName === false)
            return '';

Carsten  Rose's avatar
Carsten Rose committed
196
        $sipFound = $this->validateForm($foundInStore);
197
198
199
200
201
202
203
        if (!$sipFound) {
            $this->store->createSipAfterFormLoad($formName);
        }
        $this->store->fillStoreTableDefaultColumnType($this->formSpec['tableName']);

        switch ($mode) {
            case FORM_LOAD:
Carsten  Rose's avatar
Carsten Rose committed
204
            case FORM_UPDATE:
205
206
207
208
209
210
211
212
213
214
215
216
217
                switch ($this->formSpec['render']) {
                    case 'plain':
                        $build = new BuildFormPlain($this->formSpec, $this->feSpecAction, $this->feSpecNative);
                        break;
                    case 'table':
                        $build = new BuildFormTable($this->formSpec, $this->feSpecAction, $this->feSpecNative);
                        break;
                    case 'bootstrap':
                        $build = new BuildFormBootstrap($this->formSpec, $this->feSpecAction, $this->feSpecNative);
                        break;
                    default:
                        throw new CodeException("This statement should never be reached", ERROR_CODE_SHOULD_NOT_HAPPEN);
                }
Carsten  Rose's avatar
Carsten Rose committed
218
219

                $data = $build->process($mode);
220
                break;
Carsten  Rose's avatar
Carsten Rose committed
221

222
223
224
225
            case FORM_SAVE:
                $save = new Save($this->formSpec, $this->feSpecAction, $this->feSpecNative);
                $save->process();
                break;
Carsten  Rose's avatar
Carsten Rose committed
226

227
228
229
230
            default:
                throw new CodeException("This statement should never be reached", ERROR_CODE_SHOULD_NOT_HAPPEN);
        }

Carsten  Rose's avatar
Carsten Rose committed
231
        return $data;
232
233
    }

234
    /**
235
     * Load form. Evaluates form. Load FormElements.
236
     *
Carsten  Rose's avatar
Carsten Rose committed
237
     * After processing:
238
239
240
241
     * Loaded Form is in  $this->formSpec
     * Loaded 'action' FormElements are in $this->feSpecAction
     * Loaded 'native' FormElements are in $this->feSpecNative
     *
Carsten  Rose's avatar
Carsten Rose committed
242
243
244
245
     * @param string $mode FORM_LOAD|FORM_SAVE|FORM_UPDATE
     * @param string $foundInStore
     * @return bool|string if found the formName, else 'false'.
     * @throws CodeException
246
     * @throws DbException
247
     * @throws UserFormException
248
     */
Carsten  Rose's avatar
Carsten Rose committed
249
    private function loadFormSpecification($mode, &$foundInStore = '') {
Carsten  Rose's avatar
Carsten Rose committed
250

251
        // formName
Carsten  Rose's avatar
Carsten Rose committed
252
        if (false === ($formName = $this->getFormName($mode, $foundInStore))) {
253
254
            return false;
        }
255
        $this->store->setVar(SYSTEM_FORM, $formName, STORE_SYSTEM);
Carsten  Rose's avatar
Carsten Rose committed
256

257
258
259
        // Load form
        $form = $this->db->sql("SELECT * FROM Form AS f WHERE f.name LIKE ? AND f.deleted='no'", ROW_EXPECT_1,
            [$formName], 'Form not found or multiple forms with the same name.');
260
261

        $this->formSpec = $this->eval->parseArray($form);
262
        HelperFormElement::explodeParameter($this->formSpec);
263

Carsten  Rose's avatar
Carsten Rose committed
264
265
266
267
        # Set defaults:
        if (!isset($this->formSpec['class']))
            $this->formSpec['class'] = '';

Carsten  Rose's avatar
Carsten Rose committed
268
        // Clear
269
270
        $this->store->setVar(SYSTEM_FORM_ELEMENT, '', STORE_SYSTEM);

271
        // FE: Action
272
273
        $this->feSpecAction = $this->eval->parseArray($this->db->sql(SQL_FORM_ELEMENT_ALL_CONTAINER, ROW_REGULAR,
            ['no', $this->formSpec["id"], 'action']));
274
        HelperFormElement::explodeParameterInArrayElements($this->feSpecAction);
275
276

        // FE: Native & Container
277
278
279
        // "SELECT *, ? AS 'nestedInFieldSet' FROM FormElement AS fe WHERE fe.formId = ? AND fe.deleted = 'no' AND FIND_IN_SET(fe.class, ? ) AND fe.feIdContainer = ? AND fe.enabled='yes' ORDER BY fe.ord, fe.id";
        switch ($mode) {
            case FORM_LOAD:
280
281
                $this->feSpecNative = $this->db->sql(SQL_FORM_ELEMENT_SPECIFIC_CONTAINER, ROW_REGULAR,
                    ['no', $this->formSpec["id"], 'native,container', 0]);
282
283
284
                break;

            case FORM_SAVE:
Carsten  Rose's avatar
Carsten Rose committed
285
            case FORM_UPDATE:
286
287
                $this->feSpecNative = $this->db->sql(SQL_FORM_ELEMENT_ALL_CONTAINER, ROW_REGULAR,
                    ['no', $this->formSpec["id"], 'native']);
288
289
290
291
292
                break;

            default:
        }

293
        HelperFormElement::explodeParameterInArrayElements($this->feSpecNative);
294
295

        return $formName;
Carsten  Rose's avatar
Carsten Rose committed
296
297
    }

Carsten  Rose's avatar
Carsten Rose committed
298
    /**
299
300
     * Get the formName from STORE_TYPO3 (bodytext), STORE_SIP or by STORE_CLIENT (URL).
     *
301
302
303
304
305
306
307
308
309
310
311
312
     * FORM_LOAD:
     *   Specified in T3 body text with form=<formname>            Returned Store:Typo3
     *   Specified in T3 body text with form={{form}} ':FSRD'      Returned Store:SIP
     *   Specified in T3 body text with form={{form:C:ALNUMX}}     Returned Store:Client
     *   Specified in T3 body text with form={{SELECT registrationFormName FROM Conference WHERE id={{conferenceId:S0}} }}
     *   Specified in T3 body text with form={{SELECT registrationFormName FROM Conference WHERE id={{conferenceId:C0:DIGIT}} }}
     *   Specified in SIP
     *
     * FORM_SAVE:
     *   Specified in SIP
     *
     *
Carsten  Rose's avatar
Carsten Rose committed
313
     * @param string $mode FORM_LOAD|FORM_SAVE|FORM_UPDATE
Carsten  Rose's avatar
Carsten Rose committed
314
     * @param string $foundInStore
Carsten  Rose's avatar
Carsten Rose committed
315
316
     * @return array|bool|mixed|null|string  Formname (Form.name) or FALSE, if no formname found.
     * @throws CodeException
317
     * @throws UserFormException
Carsten  Rose's avatar
Carsten Rose committed
318
     */
Carsten  Rose's avatar
Carsten Rose committed
319
    private function getFormName($mode, &$foundInStore = '') {
320
        $dummy = array();
Carsten  Rose's avatar
Carsten Rose committed
321

Carsten  Rose's avatar
Carsten Rose committed
322
323
324
325
326
327
328
329
330
331
332
333
        switch ($mode) {
            case FORM_LOAD:
                $store = STORE_TYPO3;
                break;
            case FORM_SAVE:
            case FORM_UPDATE:
                $store = STORE_SIP;
                break;
            default:
                throw new CodeException("Unknown mode: $mode.", ERROR_UNKNOWN_MODE);
        }

334
335
336
        $storeFormName = $this->store->getVar(SIP_FORM, $store, '', $foundInStore);

        $formName = $this->eval->parse($storeFormName, 0, $dummy, $foundInStore);
Carsten  Rose's avatar
Carsten Rose committed
337

338
339
340
341
342
343
344
345
        // If the formname is '': no formname name.
        if ($formName === '')
            return false;

        // If the formname is surrounded by single ticks: the token (typically 'form') has not been replaced by a value.
        if ($formName[0] === "'" && $formName[strlen($formName) - 1] === "'") {
            return false;
        }
346

347
        return $formName;
348
    }
Carsten  Rose's avatar
Carsten Rose committed
349

350
    /**
Carsten  Rose's avatar
Carsten Rose committed
351
     * Check if loading of the given form is permitted. If not, throw an exception.
352
     *
Carsten  Rose's avatar
Carsten Rose committed
353
354
     * @param $formNameFoundInStore
     * @return bool 'true' if SIP exists, else 'false'
355
     * @throws CodeException
356
     * @throws UserFormException
Carsten  Rose's avatar
Carsten Rose committed
357
     * @internal param $foundInStore
358
     */
Carsten  Rose's avatar
Carsten Rose committed
359
    private function validateForm($formNameFoundInStore) {
360
361

        // Retrieve record_id either from SIP (prefered) or via URL
Carsten  Rose's avatar
Carsten Rose committed
362
        $r = $this->store->getVar(SIP_RECORD_ID, STORE_SIP . STORE_CLIENT, '', $recordIdFoundInStore);
363

Carsten  Rose's avatar
Carsten Rose committed
364
        // If there is a record_id>0: EDIT else NEW: 'sip','logged_in','logged_out','always','never'
365
        $permitMode = ($r > 0) ? $this->formSpec['permitEdit'] : $this->formSpec['permitNew'];
366
367
368
369
370

        $feUserLoggedIn = isset($GLOBALS["TSFE"]->fe_user->user["uid"]) && $GLOBALS["TSFE"]->fe_user->user["uid"] > 0;

        $sipFound = $this->store->getVar(SIP_SIP, STORE_SIP) !== false;

Carsten  Rose's avatar
Carsten Rose committed
371
372
        if ($sipFound) {
            if (($formNameFoundInStore === STORE_CLIENT) || ($recordIdFoundInStore === STORE_CLIENT)) {
373
                throw new UserFormException("SIP exist but FORM or RECORD_ID are given by CLIENT.", ERROR_SIP_EXIST_BUT_OTHER_PARAM_GIVEN_BY_CLIENT);
Carsten  Rose's avatar
Carsten Rose committed
374
375
376
            }
        }

377
        switch ($permitMode) {
378
            case  FORM_PERMISSION_SIP:
Carsten  Rose's avatar
Carsten Rose committed
379
                if (!$sipFound || $formNameFoundInStore !== STORE_SIP || $recordIdFoundInStore !== STORE_SIP) {
380
                    throw new UserFormException("SIP Parameter needed for this form.", ERROR_SIP_NEEDED_FOR_THIS_FORM);
381
382
383
384
                }
                break;
            case  FORM_PERMISSION_LOGGED_IN:
                if (!$feUserLoggedIn) {
385
                    throw new UserFormException("User not logged in.", ERROR_USER_NOT_LOGGED_IN);
386
387
388
389
                }
                break;
            case FORM_PERMISSION_LOGGED_OUT:
                if ($feUserLoggedIn) {
390
                    throw new UserFormException("User logged in.", ERROR_USER_LOGGED_IN);
391
392
393
394
395
                }
                break;
            case FORM_PERMISSION_ALWAYS:
                break;
            case FORM_PERMISSION_NEVER:
396
                throw new UserFormException("Loading form forbidden.", ERROR_FORM_FORBIDDEN);
397
            default:
398
                throw new CodeException("Unknown permission mode: '" . $permitMode . "'", ERROR_FORM_UNKNOWN_PERMISSION_MODE);
399
        }
Carsten  Rose's avatar
Carsten Rose committed
400

Carsten  Rose's avatar
Carsten Rose committed
401
        // Form Definition valid?
402
        if ($this->formSpec['multiMode'] !== 'none' && $this->formSpec['multiSql'] === '') {
403
            throw new UserFormException("MultiMode selected, but MultiSQL missing", ERROR_MULTI_SQL_MISSING);
Carsten  Rose's avatar
Carsten Rose committed
404
405
        }

406
        return $sipFound;
407
    }
Carsten  Rose's avatar
Carsten Rose committed
408

409
    /**
410
411
     * Process the SQL Queries from bodytext. Return the output.
     *
412
413
     * @return string
     */
414
    private function doReport() {
415
        $report = new Report($this->t3data, $this->store->getVar(SYSTEM_SESSION_NAME, STORE_SYSTEM), $this->phpUnit);
416

417
        $html = $report->process();
418
419
420
421
422

        return $html;

    }

423
    /**
424
425
     * Save the current form.
     *
426
427
428
429
     * @return string
     */
    public function saveForm() {

Carsten  Rose's avatar
Carsten Rose committed
430
        $html = $this->doForm(FORM_SAVE);
431
432
433
434

        return $html;
    }

Carsten  Rose's avatar
Carsten Rose committed
435
436
437
438
439
440
441
442
443
444
445
446
447
    /**
     * Update FormElements and form values. Receives the current form values via POST.
     *
     * @return array
     * @throws CodeException
     */
    public function updateForm() {

        $json = $this->doForm(FORM_UPDATE);

        return $json;
    }

448
449
450
451
452
    /**
     * Delete a record (tablename and recordid are given) or process a 'delete form'
     *
     * @throws CodeException
     * @throws DbException
453
     * @throws UserFormException
454
455
456
457
458
459
460
461
462
     */
    public function delete() {

        #TODO: implement 'delete form'

        // simple delete: table and recordId are given
        $recordId = $this->store->getVar(SIP_RECORD_ID, STORE_SIP);
        $table = $this->store->getVar(SIP_TABLE, STORE_SIP);

Carsten  Rose's avatar
Carsten Rose committed
463
        if ($recordId === false || $recordId < 1 || $table === false || $table === '') {
464
            throw new UserFormException("Invalid or missing parameter: recordId=$recordId, table=$table", ERROR_INVALID_OR_MISSING_PARAMETER);
465
466
        }

Carsten  Rose's avatar
Carsten Rose committed
467
        $this->db->sql("DELETE FROM $table WHERE id = ? LIMIT 1", ROW_REGULAR, [$recordId]);
468
469
    }

470
}