1: # The LearningOnline Network with CAPA
2: # Create a user
3: #
4: # $Id: loncreateuser.pm,v 1.140 2006/12/01 21:00:35 raeburn Exp $
5: #
6: # Copyright Michigan State University Board of Trustees
7: #
8: # This file is part of the LearningOnline Network with CAPA (LON-CAPA).
9: #
10: # LON-CAPA is free software; you can redistribute it and/or modify
11: # it under the terms of the GNU General Public License as published by
12: # the Free Software Foundation; either version 2 of the License, or
13: # (at your option) any later version.
14: #
15: # LON-CAPA is distributed in the hope that it will be useful,
16: # but WITHOUT ANY WARRANTY; without even the implied warranty of
17: # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18: # GNU General Public License for more details.
19: #
20: # You should have received a copy of the GNU General Public License
21: # along with LON-CAPA; if not, write to the Free Software
22: # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
23: #
24: # /home/httpd/html/adm/gpl.txt
25: #
26: # http://www.lon-capa.org/
27: #
28: ###
29:
30: package Apache::loncreateuser;
31:
32: =pod
33:
34: =head1 NAME
35:
36: Apache::loncreateuser - handler to create users and custom roles
37:
38: =head1 SYNOPSIS
39:
40: Apache::loncreateuser provides an Apache handler for creating users,
41: editing their login parameters, roles, and removing roles, and
42: also creating and assigning custom roles.
43:
44: =head1 OVERVIEW
45:
46: =head2 Custom Roles
47:
48: In LON-CAPA, roles are actually collections of privileges. "Teaching
49: Assistant", "Course Coordinator", and other such roles are really just
50: collection of privileges that are useful in many circumstances.
51:
52: Creating custom roles can be done by the Domain Coordinator through
53: the Create User functionality. That screen will show all privileges
54: that can be assigned to users. For a complete list of privileges,
55: please see C</home/httpd/lonTabs/rolesplain.tab>.
56:
57: Custom role definitions are stored in the C<roles.db> file of the role
58: author.
59:
60: =cut
61:
62: use strict;
63: use Apache::Constants qw(:common :http);
64: use Apache::lonnet;
65: use Apache::loncommon;
66: use Apache::lonlocal;
67: use Apache::longroup;
68: use lib '/home/httpd/lib/perl/';
69: use LONCAPA qw(:DEFAULT :match);
70:
71: my $loginscript; # piece of javascript used in two separate instances
72: my $generalrule;
73: my $authformnop;
74: my $authformkrb;
75: my $authformint;
76: my $authformfsys;
77: my $authformloc;
78:
79: sub initialize_authen_forms {
80: my ($krbdefdom)=( $ENV{'SERVER_NAME'}=~/(\w+\.\w+)$/);
81: $krbdefdom= uc($krbdefdom);
82: my %param = ( formname => 'document.cu',
83: kerb_def_dom => $krbdefdom
84: );
85: # no longer static due to configurable kerberos defaults
86: # $loginscript = &Apache::loncommon::authform_header(%param);
87: $generalrule = &Apache::loncommon::authform_authorwarning(%param);
88: $authformnop = &Apache::loncommon::authform_nochange(%param);
89: # no longer static due to configurable kerberos defaults
90: # $authformkrb = &Apache::loncommon::authform_kerberos(%param);
91: $authformint = &Apache::loncommon::authform_internal(%param);
92: $authformfsys = &Apache::loncommon::authform_filesystem(%param);
93: $authformloc = &Apache::loncommon::authform_local(%param);
94: }
95:
96:
97: # ======================================================= Existing Custom Roles
98:
99: sub my_custom_roles {
100: my %returnhash=();
101: my %rolehash=&Apache::lonnet::dump('roles');
102: foreach my $key (keys %rolehash) {
103: if ($key=~/^rolesdef\_(\w+)$/) {
104: $returnhash{$1}=$1;
105: }
106: }
107: return %returnhash;
108: }
109:
110: # ==================================================== Figure out author access
111:
112: sub authorpriv {
113: my ($auname,$audom)=@_;
114: unless ((&Apache::lonnet::allowed('cca',$audom.'/'.$auname))
115: || (&Apache::lonnet::allowed('caa',$audom.'/'.$auname))) { return ''; }
116: return 1;
117: }
118:
119: # ====================================================
120:
121: sub portfolio_quota {
122: my ($ccuname,$ccdomain) = @_;
123: my %lt = &Apache::lonlocal::texthash(
124: 'disk' => "Disk space allocated to user's portfolio files",
125: );
126: my $output = '<h3>'.$lt{'disk'}.'</h3>'.
127: '<input type="text" name="portfolioquota" size ="5" value="'.
128: &Apache::loncommon::get_user_quota($ccuname,$ccdomain).
129: '" /> Mb';
130: return $output;
131: }
132:
133: # =================================================================== Phase one
134:
135: sub print_username_entry_form {
136: my ($r) = @_;
137: my $defdom=$env{'request.role.domain'};
138: my @domains = &Apache::loncommon::get_domains();
139: my $domform = &Apache::loncommon::select_dom_form($defdom,'ccdomain');
140: my $selscript=&Apache::loncommon::studentbrowser_javascript();
141: my $start_page =
142: &Apache::loncommon::start_page('Create Users, Change User Privileges',
143: $selscript);
144:
145: my $sellink=&Apache::loncommon::selectstudent_link
146: ('crtuser','ccuname','ccdomain');
147: my %existingroles=&my_custom_roles();
148: my $choice=&Apache::loncommon::select_form('make new role','rolename',
149: ('make new role' => 'Generate new role ...',%existingroles));
150: my %lt=&Apache::lonlocal::texthash(
151: 'siur' => "Set Individual User Roles",
152: 'usr' => "Username",
153: 'dom' => "Domain",
154: 'usrr' => "User Roles",
155: 'ecrp' => "Edit Custom Role Privileges",
156: 'nr' => "Name of Role",
157: 'cre' => "Custom Role Editor"
158: );
159: my $help = &Apache::loncommon::help_open_menu(undef,undef,282,'Instructor Interface');
160: my $helpsiur=&Apache::loncommon::help_open_topic('Course_Change_Privileges');
161: my $helpecpr=&Apache::loncommon::help_open_topic('Course_Editing_Custom_Roles');
162: $r->print(<<"ENDDOCUMENT");
163: $start_page
164: <form action="/adm/createuser" method="post" name="crtuser">
165: <input type="hidden" name="phase" value="get_user_info">
166: <h2>$lt{siur}$helpsiur</h2>
167: <table>
168: <tr><td>$lt{usr}:</td><td><input type="text" size="15" name="ccuname">
169: </td><td rowspan="2">$sellink</td></tr><tr><td>
170: $lt{'dom'}:</td><td>$domform</td></tr>
171: </table>
172: <input name="userrole" type="submit" value="$lt{usrr}" />
173: </form>
174: ENDDOCUMENT
175: if (&Apache::lonnet::allowed('mcr','/')) {
176: $r->print(<<ENDCUSTOM);
177: <form action="/adm/createuser" method="post" name="docustom">
178: <input type="hidden" name="phase" value="selected_custom_edit">
179: <h2>$lt{'ecrp'}$helpecpr</h2>
180: $lt{'nr'}: $choice <input type="text" size="15" name="newrolename" /><br />
181: <input name="customeditor" type="submit" value="$lt{'cre'}" />
182: </form>
183: ENDCUSTOM
184: }
185: $r->print(&Apache::loncommon::end_page());
186: }
187:
188:
189: sub user_modification_js {
190: my ($pjump_def,$dc_setcourse_code,$nondc_setsection_code,$groupslist)=@_;
191:
192: return <<END;
193: <script type="text/javascript" language="Javascript">
194:
195: function pclose() {
196: parmwin=window.open("/adm/rat/empty.html","LONCAPAparms",
197: "height=350,width=350,scrollbars=no,menubar=no");
198: parmwin.close();
199: }
200:
201: $pjump_def
202: $dc_setcourse_code
203:
204: function dateset() {
205: eval("document.cu."+document.cu.pres_marker.value+
206: ".value=document.cu.pres_value.value");
207: pclose();
208: }
209:
210: $nondc_setsection_code
211:
212: </script>
213: END
214: }
215:
216: # =================================================================== Phase two
217: sub print_user_modification_page {
218: my $r=shift;
219: my $ccuname =&LONCAPA::clean_username($env{'form.ccuname'});
220: my $ccdomain=&LONCAPA::clean_domain($env{'form.ccdomain'});
221:
222: unless (($ccuname) && ($ccdomain)) {
223: &print_username_entry_form($r);
224: return;
225: }
226:
227: my $defdom=$env{'request.role.domain'};
228:
229: my ($krbdef,$krbdefdom) =
230: &Apache::loncommon::get_kerberos_defaults($defdom);
231:
232: my %param = ( formname => 'document.cu',
233: kerb_def_dom => $krbdefdom,
234: kerb_def_auth => $krbdef
235: );
236: $loginscript = &Apache::loncommon::authform_header(%param);
237: $authformkrb = &Apache::loncommon::authform_kerberos(%param);
238:
239: $ccuname =&LONCAPA::clean_username($ccuname);
240: $ccdomain=&LONCAPA::clean_domain($ccdomain);
241: my $pjump_def = &Apache::lonhtmlcommon::pjump_javascript_definition();
242: my $dc_setcourse_code = '';
243: my $nondc_setsection_code = '';
244:
245: my %loaditem;
246:
247: my $groupslist;
248: my %curr_groups = &Apache::longroup::coursegroups();
249: if (%curr_groups) {
250: $groupslist = join('","',sort(keys(%curr_groups)));
251: $groupslist = '"'.$groupslist.'"';
252: }
253:
254: if ($env{'request.role'} =~ m-^dc\./($match_domain)/$-) {
255: my $dcdom = $1;
256: $loaditem{'onload'} = "document.cu.coursedesc.value='';";
257: my @rolevals = ('st','ta','ep','in','cc');
258: my (@crsroles,@grproles);
259: for (my $i=0; $i<@rolevals; $i++) {
260: $crsroles[$i]=&Apache::lonnet::plaintext($rolevals[$i],'Course');
261: $grproles[$i]=&Apache::lonnet::plaintext($rolevals[$i],'Group');
262: }
263: my $rolevalslist = join('","',@rolevals);
264: my $crsrolenameslist = join('","',@crsroles);
265: my $grprolenameslist = join('","',@grproles);
266: my $pickcrsfirst = '<--'.&mt('Pick course first');
267: my $pickgrpfirst = '<--'.&mt('Pick group first');
268: $dc_setcourse_code = <<"ENDSCRIPT";
269: function setCourse() {
270: var course = document.cu.dccourse.value;
271: if (course != "") {
272: if (document.cu.dcdomain.value != document.cu.origdom.value) {
273: alert("You must select a course in the current domain");
274: return;
275: }
276: var userrole = document.cu.role.options[document.cu.role.selectedIndex].value
277: var section="";
278: var numsections = 0;
279: var newsecs = new Array();
280: for (var i=0; i<document.cu.currsec.length; i++) {
281: if (document.cu.currsec.options[i].selected == true ) {
282: if (document.cu.currsec.options[i].value != "" && document.cu.currsec.options[i].value != null) {
283: if (numsections == 0) {
284: section = document.cu.currsec.options[i].value
285: numsections = 1;
286: }
287: else {
288: section = section + "," + document.cu.currsec.options[i].value
289: numsections ++;
290: }
291: }
292: }
293: }
294: if (document.cu.newsec.value != "" && document.cu.newsec.value != null) {
295: if (numsections == 0) {
296: section = document.cu.newsec.value
297: }
298: else {
299: section = section + "," + document.cu.newsec.value
300: }
301: newsecs = document.cu.newsec.value.split(/,/g);
302: numsections = numsections + newsecs.length;
303: }
304: if ((userrole == 'st') && (numsections > 1)) {
305: alert("In each course, each user may only have one student role at a time. You had selected "+numsections+" sections.\\nPlease modify your selections so they include no more than one section.")
306: return;
307: }
308: for (var j=0; j<newsecs.length; j++) {
309: if ((newsecs[j] == 'all') || (newsecs[j] == 'none')) {
310: alert("'"+newsecs[j]+"' may not be used as the name for a section, as it is a reserved word.\\nPlease choose a different section name.");
311: return;
312: }
313: if (document.cu.groups.value != '') {
314: var groups = document.cu.groups.value.split(/,/g);
315: for (var k=0; k<groups.length; k++) {
316: if (newsecs[j] == groups[k]) {
317: alert("'"+newsecs[j]+"' may not be used as the name for a section, as it is the name of a course group.\\nSection names and group names must be distinct. Please choose a different section name.");
318: return;
319: }
320: }
321: }
322: }
323: if ((userrole == 'cc') && (numsections > 0)) {
324: alert("Section designations do not apply to Course Coordinator roles.\\nA course coordinator role will be added with access to all sections.");
325: section = "";
326: }
327: var coursename = "_$dcdom"+"_"+course+"_"+userrole
328: var numcourse = getIndex(document.cu.dccourse);
329: if (numcourse == "-1") {
330: alert("There was a problem with your course selection");
331: return
332: }
333: else {
334: document.cu.elements[numcourse].name = "act"+coursename;
335: var numnewsec = getIndex(document.cu.newsec);
336: if (numnewsec != "-1") {
337: document.cu.elements[numnewsec].name = "sec"+coursename;
338: document.cu.elements[numnewsec].value = section;
339: }
340: var numstart = getIndex(document.cu.start);
341: if (numstart != "-1") {
342: document.cu.elements[numstart].name = "start"+coursename;
343: }
344: var numend = getIndex(document.cu.end);
345: if (numend != "-1") {
346: document.cu.elements[numend].name = "end"+coursename
347: }
348: }
349: }
350: document.cu.submit();
351: }
352:
353: function getIndex(caller) {
354: for (var i=0;i<document.cu.elements.length;i++) {
355: if (document.cu.elements[i] == caller) {
356: return i;
357: }
358: }
359: return -1;
360: }
361:
362: function setType() {
363: var crstype = document.cu.crstype.options[document.cu.crstype.selectedIndex].value;
364: rolevals = new Array("$rolevalslist");
365: if (crstype == 'Group') {
366: if (document.cu.currsec.options[0].text == "$pickcrsfirst") {
367: document.cu.currsec.options[0].text = "$pickgrpfirst";
368: }
369: grprolenames = new Array("$grprolenameslist");
370: for (var i=0; i<rolevals.length; i++) {
371: if (document.cu.role.selectedIndex == i) {
372: document.cu.role.options[i] = new Option(grprolenames[i],rolevals[i],true,false);
373: } else {
374: document.cu.role.options[i] = new Option(grprolenames[i],rolevals[i],false,false);
375: }
376: }
377: } else {
378: if (document.cu.currsec.options[0].text == "$pickgrpfirst") {
379: document.cu.currsec.options[0].text = "$pickcrsfirst";
380: }
381: crsrolenames = new Array("$crsrolenameslist");
382: for (var i=0; i<rolevals.length; i++) {
383: if (document.cu.role.selectedIndex == i) {
384: document.cu.role.options[i] = new Option(crsrolenames[i],rolevals[i],true,false);
385: } else {
386: document.cu.role.options[i] = new Option(crsrolenames[i],rolevals[i],false,false);
387: }
388: }
389: }
390: }
391: ENDSCRIPT
392: } else {
393: $nondc_setsection_code = <<"ENDSECCODE";
394: function setSections() {
395: var re1 = /^currsec_/;
396: var groups = new Array($groupslist);
397: for (var i=0;i<document.cu.elements.length;i++) {
398: var str = document.cu.elements[i].name;
399: var checkcurr = str.match(re1);
400: if (checkcurr != null) {
401: if (document.cu.elements[i-1].checked == true) {
402: var re2 = /^currsec_[a-zA-Z0-9]+_[a-zA-Z0-9]+_(\\w+)\$/;
403: match = re2.exec(str);
404: var role = match[1];
405: if (role == 'cc') {
406: alert("Section designations do not apply to Course Coordinator roles.\\nA course coordinator role will be added with access to all sections.");
407: }
408: else {
409: var sections = '';
410: var numsec = 0;
411: var sections;
412: for (var j=0; j<document.cu.elements[i].length; j++) {
413: if (document.cu.elements[i].options[j].selected == true ) {
414: if (document.cu.elements[i].options[j].value != "") {
415: if (numsec == 0) {
416: if (document.cu.elements[i].options[j].value != "") {
417: sections = document.cu.elements[i].options[j].value;
418: numsec ++;
419: }
420: }
421: else {
422: sections = sections + "," + document.cu.elements[i].options[j].value
423: numsec ++;
424: }
425: }
426: }
427: }
428: if (numsec > 0) {
429: if (document.cu.elements[i+1].value != "" && document.cu.elements[i+1].value != null) {
430: sections = sections + "," + document.cu.elements[i+1].value;
431: }
432: }
433: else {
434: sections = document.cu.elements[i+1].value;
435: }
436: var newsecs = document.cu.elements[i+1].value;
437: var numsplit;
438: if (newsecs != null && newsecs != "") {
439: numsplit = newsecs.split(/,/g);
440: numsec = numsec + numsplit.length;
441: }
442:
443: if ((role == 'st') && (numsec > 1)) {
444: alert("In each course, each user may only have one student role at a time. You had selected "+numsec+" sections.\\nPlease modify your selections so they include no more than one section.")
445: return;
446: }
447: else if (numsplit != null) {
448: for (var j=0; j<numsplit.length; j++) {
449: if ((numsplit[j] == 'all') ||
450: (numsplit[j] == 'none')) {
451: alert("'"+numsplit[j]+"' may not be used as the name for a section, as it is a reserved word.\\nPlease choose a different section name.");
452: return;
453: }
454: for (var k=0; k<groups.length; k++) {
455: if (numsplit[j] == groups[k]) {
456: alert("'"+numsplit[j]+"' may not be used as a section name, as it is the name of a course group.\\nSection names and group names must be distinct. Please choose a different section name.");
457: return;
458: }
459: }
460: }
461: }
462: document.cu.elements[i+2].value = sections;
463: }
464: }
465: }
466: }
467: document.cu.submit();
468: }
469: ENDSECCODE
470: }
471: my $js = &user_modification_js($pjump_def,$dc_setcourse_code,
472: $nondc_setsection_code,$groupslist);
473: my $start_page =
474: &Apache::loncommon::start_page('Create Users, Change User Privileges',
475: $js,{'add_entries' => \%loaditem,});
476:
477: my $forminfo =<<"ENDFORMINFO";
478: <form action="/adm/createuser" method="post" name="cu">
479: <input type="hidden" name="phase" value="update_user_data">
480: <input type="hidden" name="ccuname" value="$ccuname">
481: <input type="hidden" name="ccdomain" value="$ccdomain">
482: <input type="hidden" name="pres_value" value="" >
483: <input type="hidden" name="pres_type" value="" >
484: <input type="hidden" name="pres_marker" value="" >
485: ENDFORMINFO
486: my $uhome=&Apache::lonnet::homeserver($ccuname,$ccdomain);
487: my %incdomains;
488: my %inccourses;
489: foreach my $item (values(%Apache::lonnet::hostdom)) {
490: $incdomains{$item}=1;
491: }
492: foreach my $key (keys(%env)) {
493: if ($key=~/^user\.priv\.cm\.\/($match_domain)\/($match_username)/) {
494: $inccourses{$1.'_'.$2}=1;
495: }
496: }
497: if ($uhome eq 'no_host') {
498: my $home_server_list=
499: '<option value="default" selected>default</option>'."\n".
500: &Apache::loncommon::home_server_option_list($ccdomain);
501:
502: my %lt=&Apache::lonlocal::texthash(
503: 'cnu' => "Create New User",
504: 'nu' => "New User",
505: 'id' => "in domain",
506: 'pd' => "Personal Data",
507: 'fn' => "First Name",
508: 'mn' => "Middle Name",
509: 'ln' => "Last Name",
510: 'gen' => "Generation",
511: 'idsn' => "ID/Student Number",
512: 'hs' => "Home Server",
513: 'lg' => "Login Data"
514: );
515: my $portfolioform;
516: if (&Apache::lonnet::allowed('mpq',$env{'request.role.domain'})) {
517: # Current user has quota modification privileges
518: $portfolioform = &portfolio_quota($ccuname,$ccdomain);
519: }
520: my $genhelp=&Apache::loncommon::help_open_topic('Generation');
521: &initialize_authen_forms();
522: $r->print(<<ENDNEWUSER);
523: $start_page
524: <h1>$lt{'cnu'}</h1>
525: $forminfo
526: <h2>$lt{'nu'} "$ccuname" $lt{'id'} $ccdomain</h2>
527: <script type="text/javascript" language="Javascript">
528: $loginscript
529: </script>
530: <input type='hidden' name='makeuser' value='1' />
531: <h3>$lt{'pd'}</h3>
532: <p>
533: <table>
534: <tr><td>$lt{'fn'} </td>
535: <td><input type='text' name='cfirst' size='15' /></td></tr>
536: <tr><td>$lt{'mn'} </td>
537: <td><input type='text' name='cmiddle' size='15' /></td></tr>
538: <tr><td>$lt{'ln'} </td>
539: <td><input type='text' name='clast' size='15' /></td></tr>
540: <tr><td>$lt{'gen'}$genhelp</td>
541: <td><input type='text' name='cgen' size='5' /></td></tr>
542: </table>
543: $lt{'idsn'} <input type='text' name='cstid' size='15' /></p>
544: $lt{'hs'}: <select name="hserver" size="1"> $home_server_list </select>
545: <hr />
546: <h3>$lt{'lg'}</h3>
547: <p>$generalrule </p>
548: <p>$authformkrb </p>
549: <p>$authformint </p>
550: <p>$authformfsys</p>
551: <p>$authformloc </p>
552: <hr />
553: $portfolioform
554: ENDNEWUSER
555: } else { # user already exists
556: my %lt=&Apache::lonlocal::texthash(
557: 'cup' => "Change User Privileges",
558: 'usr' => "User",
559: 'id' => "in domain",
560: 'fn' => "first name",
561: 'mn' => "middle name",
562: 'ln' => "last name",
563: 'gen' => "generation"
564: );
565: $r->print(<<ENDCHANGEUSER);
566: $start_page
567: <h1>$lt{'cup'}</h1>
568: $forminfo
569: <h2>$lt{'usr'} "$ccuname" $lt{'id'} "$ccdomain"</h2>
570: ENDCHANGEUSER
571: # Get the users information
572: my %userenv = &Apache::lonnet::get('environment',
573: ['firstname','middlename','lastname','generation',
574: 'portfolioquota'],$ccdomain,$ccuname);
575: my %rolesdump=&Apache::lonnet::dump('roles',$ccdomain,$ccuname);
576: $r->print('
577: <hr />'.
578: &Apache::loncommon::start_data_table().
579: &Apache::loncommon::start_data_table_header_row().
580: '<th>'.$lt{'fn'}.'</th><th>'.$lt{'mn'}.'</th><th>'.$lt{'ln'}.'</th><th>'.$lt{'gen'}.'</th>'.
581: &Apache::loncommon::end_data_table_header_row().
582: &Apache::loncommon::start_data_table_row());
583: foreach my $item ('firstname','middlename','lastname','generation') {
584: if (&Apache::lonnet::allowed('mau',$ccdomain)) {
585: $r->print(<<"END");
586: <td><input type="text" name="c$item" value="$userenv{$item}" size="15" /></td>
587: END
588: } else {
589: $r->print('<td>'.$userenv{$item}.'</td>');
590: }
591: }
592: $r->print(&Apache::loncommon::end_data_table_row().
593: &Apache::loncommon::end_data_table());
594: # Build up table of user roles to allow revocation of a role.
595: my ($tmp) = keys(%rolesdump);
596: unless ($tmp =~ /^(con_lost|error)/i) {
597: my $now=time;
598: my %lt=&Apache::lonlocal::texthash(
599: 'rer' => "Revoke Existing Roles",
600: 'rev' => "Revoke",
601: 'del' => "Delete",
602: 'ren' => "Re-Enable",
603: 'rol' => "Role",
604: 'ext' => "Extent",
605: 'sta' => "Start",
606: 'end' => "End"
607: );
608: my (%roletext,%sortrole,%roleclass,%rolepriv);
609: foreach my $area (sort { my $a1=join('_',(split('_',$a))[1,0]);
610: my $b1=join('_',(split('_',$b))[1,0]);
611: return $a1 cmp $b1;
612: } keys(%rolesdump)) {
613: next if ($area =~ /^rolesdef/);
614: my $envkey=$area;
615: my $role = $rolesdump{$area};
616: my $thisrole=$area;
617: $area =~ s/\_\w\w$//;
618: my ($role_code,$role_end_time,$role_start_time) =
619: split(/_/,$role);
620: # Is this a custom role? Get role owner and title.
621: my ($croleudom,$croleuname,$croletitle)=
622: ($role_code=~m{^cr/($match_domain)/($match_username)/(\w+)$});
623: my $allowed=0;
624: my $delallowed=0;
625: my $sortkey=$role_code;
626: my $class='Unknown';
627: if ($area =~ m{^/($match_domain)/($match_username)} ) {
628: $class='Course';
629: my ($coursedom,$coursedir) = ($1,$2);
630: $sortkey.="\0$coursedom";
631: # $1.'_'.$2 is the course id (eg. 103_12345abcef103l3).
632: my %coursedata=
633: &Apache::lonnet::coursedescription($1.'_'.$2);
634: my $carea;
635: if (defined($coursedata{'description'})) {
636: $carea=$coursedata{'description'}.
637: '<br />'.&mt('Domain').': '.$coursedom.(' 'x8).
638: &Apache::loncommon::syllabuswrapper('Syllabus',$coursedir,$coursedom);
639: $sortkey.="\0".$coursedata{'description'};
640: $class=$coursedata{'type'};
641: } else {
642: $carea=&mt('Unavailable course').': '.$area;
643: $sortkey.="\0".&mt('Unavailable course').': '.$area;
644: }
645: $sortkey.="\0$coursedir";
646: $inccourses{$1.'_'.$2}=1;
647: if ((&Apache::lonnet::allowed('c'.$role_code,$1.'/'.$2)) ||
648: (&Apache::lonnet::allowed('c'.$role_code,$ccdomain))) {
649: $allowed=1;
650: }
651: if ((&Apache::lonnet::allowed('dro',$1)) ||
652: (&Apache::lonnet::allowed('dro',$ccdomain))) {
653: $delallowed=1;
654: }
655: # - custom role. Needs more info, too
656: if ($croletitle) {
657: if (&Apache::lonnet::allowed('ccr',$1.'/'.$2)) {
658: $allowed=1;
659: $thisrole.='.'.$role_code;
660: }
661: }
662: # Compute the background color based on $area
663: if ($area=~m{^/($match_domain)/($match_username)/(\w+)}) {
664: $carea.='<br />Section: '.$3;
665: $sortkey.="\0$3";
666: }
667: $area=$carea;
668: } else {
669: $sortkey.="\0".$area;
670: # Determine if current user is able to revoke privileges
671: if ($area=~m{^/($match_domain)/}) {
672: if ((&Apache::lonnet::allowed('c'.$role_code,$1)) ||
673: (&Apache::lonnet::allowed('c'.$role_code,$ccdomain))) {
674: $allowed=1;
675: }
676: if (((&Apache::lonnet::allowed('dro',$1)) ||
677: (&Apache::lonnet::allowed('dro',$ccdomain))) &&
678: ($role_code ne 'dc')) {
679: $delallowed=1;
680: }
681: } else {
682: if (&Apache::lonnet::allowed('c'.$role_code,'/')) {
683: $allowed=1;
684: }
685: }
686: if ($role_code eq 'ca' || $role_code eq 'au') {
687: $class='Construction Space';
688: } elsif ($role_code eq 'su') {
689: $class='System';
690: } else {
691: $class='Domain';
692: }
693: }
694: if (($role_code eq 'ca') || ($role_code eq 'aa')) {
695: $area=~m{/($match_domain)/($match_username)};
696: if (&authorpriv($2,$1)) {
697: $allowed=1;
698: } else {
699: $allowed=0;
700: }
701: }
702: my $row = '';
703: $row.= '<td>';
704: my $active=1;
705: $active=0 if (($role_end_time) && ($now>$role_end_time));
706: if (($active) && ($allowed)) {
707: $row.= '<input type="checkbox" name="rev:'.$thisrole.'">';
708: } else {
709: if ($active) {
710: $row.=' ';
711: } else {
712: $row.=&mt('expired or revoked');
713: }
714: }
715: $row.='</td><td>';
716: if ($allowed && !$active) {
717: $row.= '<input type="checkbox" name="ren:'.$thisrole.'">';
718: } else {
719: $row.=' ';
720: }
721: $row.='</td><td>';
722: if ($delallowed) {
723: $row.= '<input type="checkbox" name="del:'.$thisrole.'">';
724: } else {
725: $row.=' ';
726: }
727: my $plaintext='';
728: unless ($croletitle) {
729: $plaintext=&Apache::lonnet::plaintext($role_code,$class)
730: } else {
731: $plaintext=
732: "Customrole '$croletitle' defined by $croleuname\@$croleudom";
733: }
734: $row.= '</td><td>'.$plaintext.
735: '</td><td>'.$area.
736: '</td><td>'.($role_start_time?localtime($role_start_time)
737: : ' ' ).
738: '</td><td>'.($role_end_time ?localtime($role_end_time)
739: : ' ' )
740: ."</td>";
741: $sortrole{$sortkey}=$envkey;
742: $roletext{$envkey}=$row;
743: $roleclass{$envkey}=$class;
744: $rolepriv{$envkey}=$allowed;
745: #$r->print($row);
746: } # end of foreach (table building loop)
747: my $rolesdisplay = 0;
748: my %output = ();
749: foreach my $type ('Construction Space','Course','Group','Domain','System','Unknown') {
750: $output{$type} = '';
751: foreach my $which (sort {uc($a) cmp uc($b)} (keys(%sortrole))) {
752: if ( ($roleclass{$sortrole{$which}} =~ /^\Q$type\E/ ) && ($rolepriv{$sortrole{$which}}) ) {
753: $output{$type}.=
754: &Apache::loncommon::start_data_table_row().
755: $roletext{$sortrole{$which}}.
756: &Apache::loncommon::end_data_table_row();
757: }
758: }
759: unless($output{$type} eq '') {
760: $output{$type} = '<tr class="LC_info_row">'.
761: "<td align='center' colspan='7'>".&mt($type)."</td></tr>".
762: $output{$type};
763: $rolesdisplay = 1;
764: }
765: }
766: if ($rolesdisplay == 1) {
767: $r->print('
768: <hr />
769: <h3>'.$lt{'rer'}.'</h3>'.
770: &Apache::loncommon::start_data_table("LC_createuser").
771: &Apache::loncommon::start_data_table_header_row().
772: '<th>'.$lt{'rev'}.'</th><th>'.$lt{'ren'}.'</th><th>'.$lt{'del'}.
773: '</th><th>'.$lt{'rol'}.'</th><th>'.$lt{'ext'}.
774: '</th><th>'.$lt{'sta'}.'</th><th>'.$lt{'end'}.'</th>'.
775: &Apache::loncommon::end_data_table_header_row());
776: foreach my $type ('Construction Space','Course','Group','Domain','System','Unknown') {
777: if ($output{$type}) {
778: $r->print($output{$type}."\n");
779: }
780: }
781: $r->print(&Apache::loncommon::end_data_table());
782: }
783: } # End of unless
784: my $currentauth=&Apache::lonnet::queryauthenticate($ccuname,$ccdomain);
785: if ($currentauth=~/^krb(4|5):/) {
786: $currentauth=~/^krb(4|5):(.*)/;
787: my $krbdefdom=$2;
788: my %param = ( formname => 'document.cu',
789: kerb_def_dom => $krbdefdom
790: );
791: $loginscript = &Apache::loncommon::authform_header(%param);
792: }
793: # Check for a bad authentication type
794: unless ($currentauth=~/^krb(4|5):/ or
795: $currentauth=~/^unix:/ or
796: $currentauth=~/^internal:/ or
797: $currentauth=~/^localauth:/
798: ) { # bad authentication scheme
799: if (&Apache::lonnet::allowed('mau',$ccdomain)) {
800: &initialize_authen_forms();
801: my %lt=&Apache::lonlocal::texthash(
802: 'err' => "ERROR",
803: 'uuas' => "This user has an unrecognized authentication scheme",
804: 'sldb' => "Please specify login data below",
805: 'ld' => "Login Data"
806: );
807: $r->print(<<ENDBADAUTH);
808: <hr />
809: <script type="text/javascript" language="Javascript">
810: $loginscript
811: </script>
812: <font color='#ff0000'>$lt{'err'}:</font>
813: $lt{'uuas'} ($currentauth). $lt{'sldb'}.
814: <h3>$lt{'ld'}</h3>
815: <p>$generalrule</p>
816: <p>$authformkrb</p>
817: <p>$authformint</p>
818: <p>$authformfsys</p>
819: <p>$authformloc</p>
820: ENDBADAUTH
821: } else {
822: # This user is not allowed to modify the user's
823: # authentication scheme, so just notify them of the problem
824: my %lt=&Apache::lonlocal::texthash(
825: 'err' => "ERROR",
826: 'uuas' => "This user has an unrecognized authentication scheme",
827: 'adcs' => "Please alert a domain coordinator of this situation"
828: );
829: $r->print(<<ENDBADAUTH);
830: <hr />
831: <font color="#ff0000"> $lt{'err'}: </font>
832: $lt{'uuas'} ($currentauth). $lt{'adcs'}.
833: <hr />
834: ENDBADAUTH
835: }
836: } else { # Authentication type is valid
837: my $authformcurrent='';
838: my $authform_other='';
839: &initialize_authen_forms();
840: if ($currentauth=~/^krb(4|5):/) {
841: $authformcurrent=$authformkrb;
842: $authform_other="<p>$authformint</p>\n".
843: "<p>$authformfsys</p><p>$authformloc</p>";
844: }
845: elsif ($currentauth=~/^internal:/) {
846: $authformcurrent=$authformint;
847: $authform_other="<p>$authformkrb</p>".
848: "<p>$authformfsys</p><p>$authformloc</p>";
849: }
850: elsif ($currentauth=~/^unix:/) {
851: $authformcurrent=$authformfsys;
852: $authform_other="<p>$authformkrb</p>".
853: "<p>$authformint</p><p>$authformloc;</p>";
854: }
855: elsif ($currentauth=~/^localauth:/) {
856: $authformcurrent=$authformloc;
857: $authform_other="<p>$authformkrb</p>".
858: "<p>$authformint</p><p>$authformfsys</p>";
859: }
860: $authformcurrent.=' <i>(will override current values)</i><br />';
861: if (&Apache::lonnet::allowed('mau',$ccdomain)) {
862: # Current user has login modification privileges
863: my %lt=&Apache::lonlocal::texthash(
864: 'ccld' => "Change Current Login Data",
865: 'enld' => "Enter New Login Data"
866: );
867: $r->print(<<ENDOTHERAUTHS);
868: <hr />
869: <script type="text/javascript" language="Javascript">
870: $loginscript
871: </script>
872: <h3>$lt{'ccld'}</h3>
873: <p>$generalrule</p>
874: <p>$authformnop</p>
875: <p>$authformcurrent</p>
876: <h3>$lt{'enld'}</h3>
877: $authform_other
878: ENDOTHERAUTHS
879: } else {
880: if (&Apache::lonnet::allowed('mau',$env{'request.role.domain'})) {
881: my %lt=&Apache::lonlocal::texthash(
882: 'ccld' => "Change Current Login Data",
883: 'yodo' => "You do not have privileges to modify the authentication configuration for this user.",
884: 'ifch' => "If a change is required, contact a domain coordinator for the domain",
885: );
886: $r->print(<<ENDNOPRIV);
887: <hr />
888: <h3>$lt{'ccld'}</h3>
889: $lt{'yodo'} $lt{'ifch'}: $ccdomain
890: ENDNOPRIV
891: }
892: }
893: if (&Apache::lonnet::allowed('mpq',$env{'request.role.domain'})) {
894: # Current user has quota modification privileges
895: $r->print(&portfolio_quota($ccuname,$ccdomain));
896: }
897: } ## End of "check for bad authentication type" logic
898: } ## End of new user/old user logic
899: $r->print('<hr /><h3>'.&mt('Add Roles').'</h3>');
900: #
901: # Co-Author
902: #
903: if (&authorpriv($env{'user.name'},$env{'request.role.domain'}) &&
904: ($env{'user.name'} ne $ccuname || $env{'user.domain'} ne $ccdomain)) {
905: # No sense in assigning co-author role to yourself
906: my $cuname=$env{'user.name'};
907: my $cudom=$env{'request.role.domain'};
908: my %lt=&Apache::lonlocal::texthash(
909: 'cs' => "Construction Space",
910: 'act' => "Activate",
911: 'rol' => "Role",
912: 'ext' => "Extent",
913: 'sta' => "Start",
914: 'end' => "End",
915: 'cau' => "Co-Author",
916: 'caa' => "Assistant Co-Author",
917: 'ssd' => "Set Start Date",
918: 'sed' => "Set End Date"
919: );
920: $r->print('<h4>'.$lt{'cs'}.'</h4>'."\n".
921: &Apache::loncommon::start_data_table()."\n".
922: &Apache::loncommon::start_data_table_header_row()."\n".
923: '<th>'.$lt{'act'}.'</th><th>'.$lt{'rol'}.'</th>'.
924: '<th>'.$lt{'ext'}.'</th><th>'.$lt{'sta'}.'</th>'.
925: '<th>'.$lt{'end'}.'</th>'."\n".
926: &Apache::loncommon::end_data_table_header_row()."\n".
927: &Apache::loncommon::start_data_table_row()."\n".
928: '<td>
929: <input type=checkbox name="act_'.$cudom.'_'.$cuname.'_ca" />
930: </td>
931: <td>'.$lt{'cau'}.'</td>
932: <td>'.$cudom.'_'.$cuname.'</td>
933: <td><input type="hidden" name="start_'.$cudom.'_'.$cuname.'_ca" value="" />
934: <a href=
935: "javascript:pjump('."'date_start','Start Date Co-Author',document.cu.start_$cudom\_$cuname\_ca.value,'start_$cudom\_$cuname\_ca','cu.pres','dateset'".')">'.$lt{'ssd'}.'</a></td>
936: <td><input type=hidden name="end_'.$cudom.'_'.$cuname.'_ca" value="" />
937: <a href=
938: "javascript:pjump('."'date_end','End Date Co-Author',document.cu.end_$cudom\_$cuname\_ca.value,'end_$cudom\_$cuname\_ca','cu.pres','dateset'".')">'.$lt{'sed'}.'</a></td>'."\n".
939: &Apache::loncommon::end_data_table_row()."\n".
940: &Apache::loncommon::start_data_table_row()."\n".
941: '<td><input type=checkbox name="act_'.$cudom.'_'.$cuname.'_aa" /></td>
942: <td>'.$lt{'caa'}.'</td>
943: <td>'.$cudom.'_'.$cuname.'</td>
944: <td><input type=hidden name="start_'.$cudom.'_'.$cuname.'_aa" value="" />
945: <a href=
946: "javascript:pjump('."'date_start','Start Date Assistant Co-Author',document.cu.start_$cudom\_$cuname\_aa.value,'start_$cudom\_$cuname\_aa','cu.pres','dateset'".')">'.$lt{'ssd'}.'</a></td>
947: <td><input type=hidden name="end_'.$cudom.'_'.$cuname.'_aa" value="" />
948: <a href=
949: "javascript:pjump('."'date_end','End Date Assistant Co-Author',document.cu.end_$cudom\_$cuname\_aa.value,'end_$cudom\_$cuname\_aa','cu.pres','dateset'".')">'.$lt{'sed'}.'</a></td>'."\n".
950: &Apache::loncommon::end_data_table_row()."\n".
951: &Apache::loncommon::end_data_table());
952: }
953: #
954: # Domain level
955: #
956: my $num_domain_level = 0;
957: my $domaintext =
958: '<h4>'.&mt('Domain Level').'</h4>'.
959: &Apache::loncommon::start_data_table().
960: &Apache::loncommon::start_data_table_header_row().
961: '<th>'.&mt('Activate').'</th><th>'.&mt('Role').'</th><th>'.
962: &mt('Extent').'</th>'.
963: '<th>'.&mt('Start').'</th><th>'.&mt('End').'</th>'.
964: &Apache::loncommon::end_data_table_header_row();
965: foreach my $thisdomain ( sort( keys(%incdomains))) {
966: foreach my $role ('dc','li','dg','au','sc') {
967: if (&Apache::lonnet::allowed('c'.$role,$thisdomain)) {
968: my $plrole=&Apache::lonnet::plaintext($role);
969: my %lt=&Apache::lonlocal::texthash(
970: 'ssd' => "Set Start Date",
971: 'sed' => "Set End Date"
972: );
973: $num_domain_level ++;
974: $domaintext .=
975: &Apache::loncommon::start_data_table_row().
976: '<td><input type=checkbox name="act_'.$thisdomain.'_'.$role.'"></td>
977: <td>'.$plrole.'</td>
978: <td>'.$thisdomain.'</td>
979: <td><input type=hidden name="start_'.$thisdomain.'_'.$role.'" value="">
980: <a href=
981: "javascript:pjump('."'date_start','Start Date $plrole',document.cu.start_$thisdomain\_$role.value,'start_$thisdomain\_$role','cu.pres','dateset'".')">'.$lt{'ssd'}.'</a></td>
982: <td><input type=hidden name="end_'.$thisdomain.'_'.$role.'" value="">
983: <a href=
984: "javascript:pjump('."'date_end','End Date $plrole',document.cu.end_$thisdomain\_$role.value,'end_$thisdomain\_$role','cu.pres','dateset'".')">'.$lt{'sed'}.'</a></td>'.
985: &Apache::loncommon::end_data_table_row();
986: }
987: }
988: }
989: $domaintext.= &Apache::loncommon::end_data_table();
990: if ($num_domain_level > 0) {
991: $r->print($domaintext);
992: }
993: #
994: # Course and group levels
995: #
996:
997: if ($env{'request.role'} =~ m{^dc\./($match_domain)/$}) {
998: $r->print(&course_level_dc($1,'Course'));
999: $r->print('<hr /><input type="button" value="'.&mt('Modify User').'" onClick="setCourse()">'."\n");
1000: } else {
1001: $r->print(&course_level_table(%inccourses));
1002: $r->print('<hr /><input type="button" value="'.&mt('Modify User').'" onClick="setSections()">'."\n");
1003: }
1004: $r->print("</form>".&Apache::loncommon::end_page());
1005: }
1006:
1007: # ================================================================= Phase Three
1008: sub update_user_data {
1009: my $r=shift;
1010: my $uhome=&Apache::lonnet::homeserver($env{'form.ccuname'},
1011: $env{'form.ccdomain'});
1012: # Error messages
1013: my $error = '<font color="#ff0000">'.&mt('Error').':</font>';
1014: my $end = &Apache::loncommon::end_page();
1015:
1016: my $title;
1017: if (exists($env{'form.makeuser'})) {
1018: $title='Set Privileges for New User';
1019: } else {
1020: $title='Modify User Privileges';
1021: }
1022: $r->print(&Apache::loncommon::start_page($title));
1023: my %disallowed;
1024: # Check Inputs
1025: if (! $env{'form.ccuname'} ) {
1026: $r->print($error.&mt('No login name specified').'.'.$end);
1027: return;
1028: }
1029: if ( $env{'form.ccuname'} ne
1030: &LONCAPA::clean_username($env{'form.ccuname'}) ) {
1031: $r->print($error.&mt('Invalid login name').'. '.
1032: &mt('Only letters, numbers, and underscores are valid').'.'.
1033: $end);
1034: return;
1035: }
1036: if (! $env{'form.ccdomain'} ) {
1037: $r->print($error.&mt('No domain specified').'.'.$end);
1038: return;
1039: }
1040: if ( $env{'form.ccdomain'} ne
1041: &LONCAPA::clean_domain($env{'form.ccdomain'}) ) {
1042: $r->print($error.&mt ('Invalid domain name').'. '.
1043: &mt('Only letters, numbers, periods, dashes, and underscores are valid').'.'.
1044: $end);
1045: return;
1046: }
1047: if (! exists($env{'form.makeuser'})) {
1048: # Modifying an existing user, so check the validity of the name
1049: if ($uhome eq 'no_host') {
1050: $r->print($error.&mt('Unable to determine home server for ').
1051: $env{'form.ccuname'}.&mt(' in domain ').
1052: $env{'form.ccdomain'}.'.');
1053: return;
1054: }
1055: }
1056: # Determine authentication method and password for the user being modified
1057: my $amode='';
1058: my $genpwd='';
1059: if ($env{'form.login'} eq 'krb') {
1060: $amode='krb';
1061: $amode.=$env{'form.krbver'};
1062: $genpwd=$env{'form.krbarg'};
1063: } elsif ($env{'form.login'} eq 'int') {
1064: $amode='internal';
1065: $genpwd=$env{'form.intarg'};
1066: } elsif ($env{'form.login'} eq 'fsys') {
1067: $amode='unix';
1068: $genpwd=$env{'form.fsysarg'};
1069: } elsif ($env{'form.login'} eq 'loc') {
1070: $amode='localauth';
1071: $genpwd=$env{'form.locarg'};
1072: $genpwd=" " if (!$genpwd);
1073: } elsif (($env{'form.login'} eq 'nochange') ||
1074: ($env{'form.login'} eq '' )) {
1075: # There is no need to tell the user we did not change what they
1076: # did not ask us to change.
1077: # If they are creating a new user but have not specified login
1078: # information this will be caught below.
1079: } else {
1080: $r->print($error.&mt('Invalid login mode or password').$end);
1081: return;
1082: }
1083: if ($env{'form.makeuser'}) {
1084: # Create a new user
1085: my %lt=&Apache::lonlocal::texthash(
1086: 'cru' => "Creating user",
1087: 'id' => "in domain"
1088: );
1089: $r->print(<<ENDNEWUSERHEAD);
1090: <h3>$lt{'cru'} "$env{'form.ccuname'}" $lt{'id'} "$env{'form.ccdomain'}"</h3>
1091: ENDNEWUSERHEAD
1092: # Check for the authentication mode and password
1093: if (! $amode || ! $genpwd) {
1094: $r->print($error.&mt('Invalid login mode or password').$end);
1095: return;
1096: }
1097: # Determine desired host
1098: my $desiredhost = $env{'form.hserver'};
1099: if (lc($desiredhost) eq 'default') {
1100: $desiredhost = undef;
1101: } else {
1102: my %home_servers = &Apache::loncommon::get_library_servers
1103: ($env{'form.ccdomain'});
1104: if (! exists($home_servers{$desiredhost})) {
1105: $r->print($error.&mt('Invalid home server specified'));
1106: return;
1107: }
1108: }
1109: # Call modifyuser
1110: my $result = &Apache::lonnet::modifyuser
1111: ($env{'form.ccdomain'},$env{'form.ccuname'},$env{'form.cstid'},
1112: $amode,$genpwd,$env{'form.cfirst'},
1113: $env{'form.cmiddle'},$env{'form.clast'},$env{'form.cgen'},
1114: undef,$desiredhost
1115: );
1116: $r->print(&mt('Generating user').': '.$result);
1117: my $home = &Apache::lonnet::homeserver($env{'form.ccuname'},
1118: $env{'form.ccdomain'});
1119: $r->print('<br />'.&mt('Home server').': '.$home.' '.
1120: $Apache::lonnet::libserv{$home});
1121: } elsif (($env{'form.login'} ne 'nochange') &&
1122: ($env{'form.login'} ne '' )) {
1123: # Modify user privileges
1124: my %lt=&Apache::lonlocal::texthash(
1125: 'usr' => "User",
1126: 'id' => "in domain"
1127: );
1128: $r->print(<<ENDMODIFYUSERHEAD);
1129: <h2>$lt{'usr'} "$env{'form.ccuname'}" $lt{'id'} "$env{'form.ccdomain'}"</h2>
1130: ENDMODIFYUSERHEAD
1131: if (! $amode || ! $genpwd) {
1132: $r->print($error.'Invalid login mode or password'.$end);
1133: return;
1134: }
1135: # Only allow authentification modification if the person has authority
1136: if (&Apache::lonnet::allowed('mau',$env{'form.ccdomain'})) {
1137: $r->print('Modifying authentication: '.
1138: &Apache::lonnet::modifyuserauth(
1139: $env{'form.ccdomain'},$env{'form.ccuname'},
1140: $amode,$genpwd));
1141: $r->print('<br />'.&mt('Home server').': '.&Apache::lonnet::homeserver
1142: ($env{'form.ccuname'},$env{'form.ccdomain'}));
1143: } else {
1144: # Okay, this is a non-fatal error.
1145: $r->print($error.&mt('You do not have the authority to modify this users authentification information').'.');
1146: }
1147: }
1148: ##
1149: if (! $env{'form.makeuser'} ) {
1150: # Check for need to change
1151: my %userenv = &Apache::lonnet::get
1152: ('environment',['firstname','middlename','lastname','generation',
1153: 'portfolioquota'],$env{'form.ccdomain'},$env{'form.ccuname'});
1154: my ($tmp) = keys(%userenv);
1155: if ($tmp =~ /^(con_lost|error)/i) {
1156: %userenv = ();
1157: }
1158: # Check to see if we need to change user information
1159: foreach my $item ('firstname','middlename','lastname','generation') {
1160: # Strip leading and trailing whitespace
1161: $env{'form.c'.$item} =~ s/(\s+$|^\s+)//g;
1162: }
1163: my ($quotachanged,$namechanged,$oldportfolioquota);
1164: my %changeHash;
1165: if (exists($userenv{'portfolioquota'})) {
1166: $oldportfolioquota = $userenv{'portfolioquota'};
1167: if (exists($env{'form.portfolioquota'})) {
1168: if ($env{'form.portfolioquota'} ne $userenv{'portfolioquota'}) {
1169: if (&Apache::lonnet::allowed('mpq',$env{'form.ccdomain'})) {
1170: # Current user has quota modification privileges
1171: $quotachanged = 1;
1172: $changeHash{'portfolioquota'} = $env{'form.portfolioquota'};
1173: }
1174: }
1175: }
1176: } else {
1177: $oldportfolioquota =
1178: &Apache::loncommon::default_quota($env{'form.ccdomain'});
1179: }
1180: if (&Apache::lonnet::allowed('mau',$env{'form.ccdomain'}) &&
1181: ($env{'form.cfirstname'} ne $userenv{'firstname'} ||
1182: $env{'form.cmiddlename'} ne $userenv{'middlename'} ||
1183: $env{'form.clastname'} ne $userenv{'lastname'} ||
1184: $env{'form.cgeneration'} ne $userenv{'generation'} )) {
1185: $namechanged = 1;
1186: }
1187: if ($namechanged) {
1188: # Make the change
1189: $changeHash{'firstname'} = $env{'form.cfirstname'};
1190: $changeHash{'middlename'} = $env{'form.cmiddlename'};
1191: $changeHash{'lastname'} = $env{'form.clastname'};
1192: $changeHash{'generation'} = $env{'form.cgeneration'};
1193: my $putresult = &Apache::lonnet::put
1194: ('environment',\%changeHash,
1195: $env{'form.ccdomain'},$env{'form.ccuname'});
1196: if ($putresult eq 'ok') {
1197: # Tell the user we changed the name
1198: my %lt=&Apache::lonlocal::texthash(
1199: 'uic' => "User Information Changed",
1200: 'frst' => "first",
1201: 'mddl' => "middle",
1202: 'lst' => "last",
1203: 'gen' => "generation",
1204: 'disk' => "disk space allocated to portfolio files",
1205: 'prvs' => "Previous",
1206: 'chto' => "Changed To"
1207: );
1208: $r->print(<<"END");
1209: <table border="2">
1210: <caption>$lt{'uic'}</caption>
1211: <tr><th> </th>
1212: <th>$lt{'frst'}</th>
1213: <th>$lt{'mddl'}</th>
1214: <th>$lt{'lst'}</th>
1215: <th>$lt{'gen'}</th>
1216: <th>$lt{'disk'}<th></tr>
1217: <tr><td>$lt{'prvs'}</td>
1218: <td>$userenv{'firstname'} </td>
1219: <td>$userenv{'middlename'} </td>
1220: <td>$userenv{'lastname'} </td>
1221: <td>$userenv{'generation'} </td>
1222: <td>$oldportfolioquota</td>
1223: </tr>
1224: <tr><td>$lt{'chto'}</td>
1225: <td>$env{'form.cfirstname'} </td>
1226: <td>$env{'form.cmiddlename'} </td>
1227: <td>$env{'form.clastname'} </td>
1228: <td>$env{'form.cgeneration'} </td>
1229: <td>$env{'form.portfolioquota'} Mb</td></tr>
1230: </table>
1231: END
1232: } else { # error occurred
1233: $r->print("<h2>".&mt('Unable to successfully change environment for')." ".
1234: $env{'form.ccuname'}." ".&mt('in domain')." ".
1235: $env{'form.ccdomain'}."</h2>");
1236: }
1237: } else { # End of if ($env ... ) logic
1238: my $putresult;
1239: if ($quotachanged) {
1240: $putresult = &Apache::lonnet::put
1241: ('environment',\%changeHash,
1242: $env{'form.ccdomain'},$env{'form.ccuname'});
1243: }
1244: # They did not want to change the users name but we can
1245: # still tell them what the name is
1246: my %lt=&Apache::lonlocal::texthash(
1247: 'usr' => "User",
1248: 'id' => "in domain",
1249: 'gen' => "Generation",
1250: 'disk' => "Disk space allocated to user's portfolio files",
1251: );
1252: $r->print(<<"END");
1253: <h2>$lt{'usr'} "$env{'form.ccuname'}" $lt{'id'} "$env{'form.ccdomain'}"</h2>
1254: <h4>$userenv{'firstname'} $userenv{'middlename'} $userenv{'lastname'} </h4>
1255: <h4>$lt{'gen'}: $userenv{'generation'}</h4>
1256: END
1257: if ($putresult eq 'ok') {
1258: if ($oldportfolioquota ne $env{'form.portfolioquota'}) {
1259: $r->print('<h4>'.$lt{'disk'}.': '.$env{'form.portfolioquota'}.' Mb</h4>');
1260: }
1261: }
1262: }
1263: }
1264: ##
1265: my $now=time;
1266: $r->print('<h3>'.&mt('Modifying Roles').'</h3>');
1267: foreach my $key (keys (%env)) {
1268: next if (! $env{$key});
1269: # Revoke roles
1270: if ($key=~/^form\.rev/) {
1271: if ($key=~/^form\.rev\:([^\_]+)\_([^\_\.]+)$/) {
1272: # Revoke standard role
1273: $r->print(&mt('Revoking').' '.$2.' in '.$1.': <b>'.
1274: &Apache::lonnet::revokerole($env{'form.ccdomain'},
1275: $env{'form.ccuname'},$1,$2).'</b><br />');
1276: if ($2 eq 'st') {
1277: $1=~m{^/($match_domain)/($match_username)};
1278: my $cid=$1.'_'.$2;
1279: $r->print(&mt('Drop from classlist').': <b>'.
1280: &Apache::lonnet::critical('put:'.
1281: $env{'course.'.$cid.'.domain'}.':'.
1282: $env{'course.'.$cid.'.num'}.':classlist:'.
1283: &escape($env{'form.ccuname'}.':'.
1284: $env{'form.ccdomain'}).'='.
1285: &escape($now.':'),
1286: $env{'course.'.$cid.'.home'}).'</b><br />');
1287: }
1288: }
1289: if ($key=~m{^form\.rev\:([^_]+)_cr\.cr/($match_domain)/($match_username)/(\w+)$}) {
1290: # Revoke custom role
1291: $r->print(&mt('Revoking custom role:').
1292: ' '.$4.' by '.$3.':'.$2.' in '.$1.': <b>'.
1293: &Apache::lonnet::revokecustomrole($env{'form.ccdomain'},
1294: $env{'form.ccuname'},$1,$2,$3,$4).
1295: '</b><br />');
1296: }
1297: } elsif ($key=~/^form\.del/) {
1298: if ($key=~/^form\.del\:([^\_]+)\_([^\_\.]+)$/) {
1299: # Delete standard role
1300: $r->print(&mt('Deleting').' '.$2.' in '.$1.': '.
1301: &Apache::lonnet::assignrole($env{'form.ccdomain'},
1302: $env{'form.ccuname'},$1,$2,$now,0,1).'<br />');
1303: if ($2 eq 'st') {
1304: $1=~m{^/($match_domain)/($match_username)};
1305: my $cid=$1.'_'.$2;
1306: $r->print(&mt('Drop from classlist').': <b>'.
1307: &Apache::lonnet::critical('put:'.
1308: $env{'course.'.$cid.'.domain'}.':'.
1309: $env{'course.'.$cid.'.num'}.':classlist:'.
1310: &escape($env{'form.ccuname'}.':'.
1311: $env{'form.ccdomain'}).'='.
1312: &escape($now.':'),
1313: $env{'course.'.$cid.'.home'}).'</b><br />');
1314: }
1315: }
1316: if ($key=~m{^form\.del\:([^_]+)_cr\.cr/($match_domain)/($match_username)/(\w+)$}) {
1317: my ($url,$rdom,$rnam,$rolename) = ($1,$2,$3,$4);
1318: # Delete custom role
1319: $r->print(&mt('Deleting custom role [_1] by [_2]@[_3] in [_4]',
1320: $rolename,$rnam,$rdom,$url).': <b>'.
1321: &Apache::lonnet::assigncustomrole($env{'form.ccdomain'},
1322: $env{'form.ccuname'},$url,$rdom,$rnam,$rolename,$now,
1323: 0,1).'</b><br />');
1324: }
1325: } elsif ($key=~/^form\.ren/) {
1326: my $udom = $env{'form.ccdomain'};
1327: my $uname = $env{'form.ccuname'};
1328: # Re-enable standard role
1329: if ($key=~/^form\.ren\:([^\_]+)\_([^\_\.]+)$/) {
1330: my $url = $1;
1331: my $role = $2;
1332: my $logmsg;
1333: my $output;
1334: if ($role eq 'st') {
1335: if ($url =~ m-^/($match_domain)/($match_username)/?(\w*)$-) {
1336: my $result = &Apache::loncommon::commit_studentrole(\$logmsg,$udom,$uname,$url,$role,$now,0,$1,$2,$3);
1337: if (($result =~ /^error/) || ($result eq 'not_in_class') || ($result eq 'unknown_course')) {
1338: $output = "Error: $result\n";
1339: } else {
1340: $output = &mt('Assigning').' '.$role.' in '.$url.
1341: &mt('starting').' '.localtime($now).
1342: ': <br />'.$logmsg.'<br />'.
1343: &mt('Add to classlist').': <b>ok</b><br />';
1344: }
1345: }
1346: } else {
1347: my $result=&Apache::lonnet::assignrole($env{'form.ccdomain'},
1348: $env{'form.ccuname'},$url,$role,0,$now);
1349: $output = &mt('Re-enabling [_1] in [_2]: <b>[_3]</b>',
1350: $role,$url,$result).'<br />';
1351: }
1352: $r->print($output);
1353: }
1354: # Re-enable custom role
1355: if ($key=~m{^form\.ren\:([^_]+)_cr\.cr/($match_domain)/($match_username)/(\w+)$}) {
1356: my ($url,$rdom,$rnam,$rolename) = ($1,$2,$3,$4);
1357: my $result = &Apache::lonnet::assigncustomrole(
1358: $env{'form.ccdomain'}, $env{'form.ccuname'},
1359: $url,$rdom,$rnam,$rolename,0,$now);
1360: $r->print(&mt('Re-enabling custom role [_1] by [_2]@[_3] in [_4] : <b>[_5]</b>',
1361: $rolename,$rnam,$rdom,$url,$result).'<br />');
1362: }
1363: } elsif ($key=~/^form\.act/) {
1364: my $udom = $env{'form.ccdomain'};
1365: my $uname = $env{'form.ccuname'};
1366: if ($key=~/^form\.act\_($match_domain)\_($match_username)\_cr_cr_($match_domain)_($match_username)_([^\_]+)$/) {
1367: # Activate a custom role
1368: my ($one,$two,$three,$four,$five)=($1,$2,$3,$4,$5);
1369: my $url='/'.$one.'/'.$two;
1370: my $full=$one.'_'.$two.'_cr_cr_'.$three.'_'.$four.'_'.$five;
1371:
1372: my $start = ( $env{'form.start_'.$full} ?
1373: $env{'form.start_'.$full} :
1374: $now );
1375: my $end = ( $env{'form.end_'.$full} ?
1376: $env{'form.end_'.$full} :
1377: 0 );
1378:
1379: # split multiple sections
1380: my %sections = ();
1381: my $num_sections = &build_roles($env{'form.sec_'.$full},\%sections,$5);
1382: if ($num_sections == 0) {
1383: $r->print(&Apache::loncommon::commit_customrole($udom,$uname,$url,$three,$four,$five,$start,$end));
1384: } else {
1385: my %curr_groups =
1386: &Apache::longroup::coursegroups($one,$two);
1387: foreach my $sec (sort {$a cmp $b} keys %sections) {
1388: if (($sec eq 'none') || ($sec eq 'all') ||
1389: exists($curr_groups{$sec})) {
1390: $disallowed{$sec} = $url;
1391: next;
1392: }
1393: my $securl = $url.'/'.$sec;
1394: $r->print(&Apache::loncommon::commit_customrole($udom,$uname,$securl,$three,$four,$five,$start,$end));
1395: }
1396: }
1397: } elsif ($key=~/^form\.act\_($match_domain)\_($match_username)\_([^\_]+)$/) {
1398: # Activate roles for sections with 3 id numbers
1399: # set start, end times, and the url for the class
1400: my ($one,$two,$three)=($1,$2,$3);
1401: my $start = ( $env{'form.start_'.$one.'_'.$two.'_'.$three} ?
1402: $env{'form.start_'.$one.'_'.$two.'_'.$three} :
1403: $now );
1404: my $end = ( $env{'form.end_'.$one.'_'.$two.'_'.$three} ?
1405: $env{'form.end_'.$one.'_'.$two.'_'.$three} :
1406: 0 );
1407: my $url='/'.$one.'/'.$two;
1408: my $type = 'three';
1409: # split multiple sections
1410: my %sections = ();
1411: my $num_sections = &build_roles($env{'form.sec_'.$one.'_'.$two.'_'.$three},\%sections,$three);
1412: if ($num_sections == 0) {
1413: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$url,$three,$start,$end,$one,$two,''));
1414: } else {
1415: my %curr_groups =
1416: &Apache::longroup::coursegroups($one,$two);
1417: my $emptysec = 0;
1418: foreach my $sec (sort {$a cmp $b} keys %sections) {
1419: $sec =~ s/\W//g;
1420: if ($sec ne '') {
1421: if (($sec eq 'none') || ($sec eq 'all') ||
1422: exists($curr_groups{$sec})) {
1423: $disallowed{$sec} = $url;
1424: next;
1425: }
1426: my $securl = $url.'/'.$sec;
1427: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$securl,$three,$start,$end,$one,$two,$sec));
1428: } else {
1429: $emptysec = 1;
1430: }
1431: }
1432: if ($emptysec) {
1433: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$url,$three,$start,$end,$one,$two,''));
1434: }
1435: }
1436: } elsif ($key=~/^form\.act\_([^\_]+)\_([^\_]+)$/) {
1437: # Activate roles for sections with two id numbers
1438: # set start, end times, and the url for the class
1439: my $start = ( $env{'form.start_'.$1.'_'.$2} ?
1440: $env{'form.start_'.$1.'_'.$2} :
1441: $now );
1442: my $end = ( $env{'form.end_'.$1.'_'.$2} ?
1443: $env{'form.end_'.$1.'_'.$2} :
1444: 0 );
1445: my $url='/'.$1.'/';
1446: # split multiple sections
1447: my %sections = ();
1448: my $num_sections = &build_roles($env{'form.sec_'.$1.'_'.$2},\%sections,$2);
1449: if ($num_sections == 0) {
1450: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$url,$2,$start,$end,$1,undef,''));
1451: } else {
1452: my $emptysec = 0;
1453: foreach my $sec (sort {$a cmp $b} keys %sections) {
1454: if ($sec ne '') {
1455: my $securl = $url.'/'.$sec;
1456: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$securl,$2,$start,$end,$1,undef,$sec));
1457: } else {
1458: $emptysec = 1;
1459: }
1460: }
1461: if ($emptysec) {
1462: $r->print(&Apache::loncommon::commit_standardrole($udom,$uname,$url,$2,$start,$end,$1,undef,''));
1463: }
1464: }
1465: } else {
1466: $r->print('<p>'.&mt('ERROR').': '.&mt('Unknown command').' <tt>'.$key.'</tt></p><br />');
1467: }
1468: foreach my $key (sort(keys(%disallowed))) {
1469: if (($key eq 'none') || ($key eq 'all')) {
1470: $r->print('<p>'.&mt('[_1] may not be used as the name for a section, as it is a reserved word.',$key));
1471: } else {
1472: $r->print('<p>'.&mt('[_1] may not be used as the name for a section, as it is the name of a course group.',$key));
1473: }
1474: $r->print(' '.&mt('Please <a href="javascript:history.go(-1)">go back</a> and choose a different section name.').'</p><br />');
1475: }
1476: }
1477: } # End of foreach (keys(%env))
1478: # Flush the course logs so reverse user roles immediately updated
1479: &Apache::lonnet::flushcourselogs();
1480: $r->print('<p><a href="/adm/createuser">Create/Modify Another User</a></p>');
1481: $r->print(&Apache::loncommon::end_page());
1482: }
1483:
1484: sub build_roles {
1485: my ($sectionstr,$sections,$role) = @_;
1486: my $num_sections = 0;
1487: if ($sectionstr=~ /,/) {
1488: my @secnums = split/,/,$sectionstr;
1489: if ($role eq 'st') {
1490: $secnums[0] =~ s/\W//g;
1491: $$sections{$secnums[0]} = 1;
1492: $num_sections = 1;
1493: } else {
1494: foreach my $sec (@secnums) {
1495: $sec =~ ~s/\W//g;
1496: unless ($sec eq "") {
1497: if (exists($$sections{$sec})) {
1498: $$sections{$sec} ++;
1499: } else {
1500: $$sections{$sec} = 1;
1501: $num_sections ++;
1502: }
1503: }
1504: }
1505: }
1506: } else {
1507: $sectionstr=~s/\W//g;
1508: unless ($sectionstr eq '') {
1509: $$sections{$sectionstr} = 1;
1510: $num_sections ++;
1511: }
1512: }
1513:
1514: return $num_sections;
1515: }
1516:
1517: # ========================================================== Custom Role Editor
1518:
1519: sub custom_role_editor {
1520: my $r=shift;
1521: my $rolename=$env{'form.rolename'};
1522:
1523: if ($rolename eq 'make new role') {
1524: $rolename=$env{'form.newrolename'};
1525: }
1526:
1527: $rolename=~s/[^A-Za-z0-9]//gs;
1528:
1529: unless ($rolename) {
1530: &print_username_entry_form($r);
1531: return;
1532: }
1533:
1534: $r->print(&Apache::loncommon::start_page('Custom Role Editor'));
1535: my $syspriv='';
1536: my $dompriv='';
1537: my $coursepriv='';
1538: my ($rdummy,$roledef)=
1539: &Apache::lonnet::get('roles',["rolesdef_$rolename"]);
1540: # ------------------------------------------------------- Does this role exist?
1541: $r->print('<h2>');
1542: if (($rdummy ne 'con_lost') && ($roledef ne '')) {
1543: $r->print(&mt('Existing Role').' "');
1544: # ------------------------------------------------- Get current role privileges
1545: ($syspriv,$dompriv,$coursepriv)=split(/\_/,$roledef);
1546: } else {
1547: $r->print(&mt('New Role').' "');
1548: $roledef='';
1549: }
1550: $r->print($rolename.'"</h2>');
1551: # ------------------------------------------------------- What can be assigned?
1552: my %full=();
1553: my %courselevel=();
1554: my %courselevelcurrent=();
1555: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:c'})) {
1556: my ($priv,$restrict)=split(/\&/,$item);
1557: unless ($restrict) { $restrict='F'; }
1558: $courselevel{$priv}=$restrict;
1559: if ($coursepriv=~/\:$priv/) {
1560: $courselevelcurrent{$priv}=1;
1561: }
1562: $full{$priv}=1;
1563: }
1564: my %domainlevel=();
1565: my %domainlevelcurrent=();
1566: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:d'})) {
1567: my ($priv,$restrict)=split(/\&/,$item);
1568: unless ($restrict) { $restrict='F'; }
1569: $domainlevel{$priv}=$restrict;
1570: if ($dompriv=~/\:$priv/) {
1571: $domainlevelcurrent{$priv}=1;
1572: }
1573: $full{$priv}=1;
1574: }
1575: my %systemlevel=();
1576: my %systemlevelcurrent=();
1577: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:s'})) {
1578: my ($priv,$restrict)=split(/\&/,$item);
1579: unless ($restrict) { $restrict='F'; }
1580: $systemlevel{$priv}=$restrict;
1581: if ($syspriv=~/\:$priv/) {
1582: $systemlevelcurrent{$priv}=1;
1583: }
1584: $full{$priv}=1;
1585: }
1586: my %lt=&Apache::lonlocal::texthash(
1587: 'prv' => "Privilege",
1588: 'crl' => "Course Level",
1589: 'dml' => "Domain Level",
1590: 'ssl' => "System Level"
1591: );
1592: $r->print(<<ENDCCF);
1593: <form method="post">
1594: <input type="hidden" name="phase" value="set_custom_roles" />
1595: <input type="hidden" name="rolename" value="$rolename" />
1596: ENDCCF
1597: $r->print(&Apache::loncommon::start_data_table().
1598: &Apache::loncommon::start_data_table_header_row().
1599: '<th>'.$lt{'prv'}.'</th><th>'.$lt{'crl'}.'</th><th>'.$lt{'dml'}.
1600: '</th><th>'.$lt{'ssl'}.'</th>'.
1601: &Apache::loncommon::end_data_table_header_row());
1602: foreach my $priv (sort keys %full) {
1603: my $privtext = &Apache::lonnet::plaintext($priv);
1604: $r->print(&Apache::loncommon::start_data_table_row().
1605: '<td>'.$privtext.'</td><td>'.
1606: ($courselevel{$priv}?'<input type="checkbox" name="'.$priv.':c" '.
1607: ($courselevelcurrent{$priv}?'checked="1"':'').' />':' ').
1608: '</td><td>'.
1609: ($domainlevel{$priv}?'<input type="checkbox" name="'.$priv.':d" '.
1610: ($domainlevelcurrent{$priv}?'checked="1"':'').' />':' ').
1611: '</td><td>'.
1612: ($systemlevel{$priv}?'<input type="checkbox" name="'.$priv.':s" '.
1613: ($systemlevelcurrent{$priv}?'checked="1"':'').' />':' ').
1614: '</td>'.
1615: &Apache::loncommon::end_data_table_row());
1616: }
1617: $r->print(&Apache::loncommon::end_data_table().
1618: '<input type="submit" value="'.&mt('Define Role').'" /></form>'.
1619: &Apache::loncommon::end_page());
1620: }
1621:
1622: # ---------------------------------------------------------- Call to definerole
1623: sub set_custom_role {
1624: my ($r) = @_;
1625:
1626: my $rolename=$env{'form.rolename'};
1627:
1628: $rolename=~s/[^A-Za-z0-9]//gs;
1629:
1630: unless ($rolename) {
1631: &print_username_entry_form($r);
1632: return;
1633: }
1634:
1635: $r->print(&Apache::loncommon::start_page('Save Custom Role').'<h2>');
1636: my ($rdummy,$roledef)=
1637: &Apache::lonnet::get('roles',["rolesdef_$rolename"]);
1638:
1639: # ------------------------------------------------------- Does this role exist?
1640: if (($rdummy ne 'con_lost') && ($roledef ne '')) {
1641: $r->print(&mt('Existing Role').' "');
1642: } else {
1643: $r->print(&mt('New Role').' "');
1644: $roledef='';
1645: }
1646: $r->print($rolename.'"</h2>');
1647: # ------------------------------------------------------- What can be assigned?
1648: my $sysrole='';
1649: my $domrole='';
1650: my $courole='';
1651:
1652: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:c'})) {
1653: my ($priv,$restrict)=split(/\&/,$item);
1654: unless ($restrict) { $restrict=''; }
1655: if ($env{'form.'.$priv.':c'}) {
1656: $courole.=':'.$item;
1657: }
1658: }
1659:
1660: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:d'})) {
1661: my ($priv,$restrict)=split(/\&/,$item);
1662: unless ($restrict) { $restrict=''; }
1663: if ($env{'form.'.$priv.':d'}) {
1664: $domrole.=':'.$item;
1665: }
1666: }
1667:
1668: foreach my $item (split(/\:/,$Apache::lonnet::pr{'cr:s'})) {
1669: my ($priv,$restrict)=split(/\&/,$item);
1670: unless ($restrict) { $restrict=''; }
1671: if ($env{'form.'.$priv.':s'}) {
1672: $sysrole.=':'.$item;
1673: }
1674: }
1675: $r->print('<br />Defining Role: '.
1676: &Apache::lonnet::definerole($rolename,$sysrole,$domrole,$courole));
1677: if ($env{'request.course.id'}) {
1678: my $url='/'.$env{'request.course.id'};
1679: $url=~s/\_/\//g;
1680: $r->print('<br />'.&mt('Assigning Role to Self').': '.
1681: &Apache::lonnet::assigncustomrole($env{'user.domain'},
1682: $env{'user.name'},
1683: $url,
1684: $env{'user.domain'},
1685: $env{'user.name'},
1686: $rolename));
1687: }
1688: $r->print('<p><a href="/adm/createuser">Create another role, or Create/Modify a user.</a></p>');
1689: $r->print(&Apache::loncommon::end_page());
1690: }
1691:
1692: # ================================================================ Main Handler
1693: sub handler {
1694: my $r = shift;
1695:
1696: if ($r->header_only) {
1697: &Apache::loncommon::content_type($r,'text/html');
1698: $r->send_http_header;
1699: return OK;
1700: }
1701:
1702: if ((&Apache::lonnet::allowed('cta',$env{'request.course.id'})) ||
1703: (&Apache::lonnet::allowed('cin',$env{'request.course.id'})) ||
1704: (&Apache::lonnet::allowed('ccr',$env{'request.course.id'})) ||
1705: (&Apache::lonnet::allowed('cep',$env{'request.course.id'})) ||
1706: (&authorpriv($env{'user.name'},$env{'request.role.domain'})) ||
1707: (&Apache::lonnet::allowed('mau',$env{'request.role.domain'}))) {
1708: &Apache::loncommon::content_type($r,'text/html');
1709: $r->send_http_header;
1710: unless ($env{'form.phase'}) {
1711: &print_username_entry_form($r);
1712: }
1713: if ($env{'form.phase'} eq 'get_user_info') {
1714: &print_user_modification_page($r);
1715: } elsif ($env{'form.phase'} eq 'update_user_data') {
1716: &update_user_data($r);
1717: } elsif ($env{'form.phase'} eq 'selected_custom_edit') {
1718: &custom_role_editor($r);
1719: } elsif ($env{'form.phase'} eq 'set_custom_roles') {
1720: &set_custom_role($r);
1721: }
1722: } else {
1723: $env{'user.error.msg'}=
1724: "/adm/createuser:mau:0:0:Cannot modify user data";
1725: return HTTP_NOT_ACCEPTABLE;
1726: }
1727: return OK;
1728: }
1729:
1730: #-------------------------------------------------- functions for &phase_two
1731: sub course_level_table {
1732: my (%inccourses) = @_;
1733: my $table = '';
1734: # Custom Roles?
1735:
1736: my %customroles=&my_custom_roles();
1737: my %lt=&Apache::lonlocal::texthash(
1738: 'exs' => "Existing sections",
1739: 'new' => "Define new section",
1740: 'ssd' => "Set Start Date",
1741: 'sed' => "Set End Date",
1742: 'crl' => "Course Level",
1743: 'act' => "Activate",
1744: 'rol' => "Role",
1745: 'ext' => "Extent",
1746: 'grs' => "Section",
1747: 'sta' => "Start",
1748: 'end' => "End"
1749: );
1750:
1751: foreach my $protectedcourse (sort( keys(%inccourses))) {
1752: my $thiscourse=$protectedcourse;
1753: $thiscourse=~s:_:/:g;
1754: my %coursedata=&Apache::lonnet::coursedescription($thiscourse);
1755: my $area=$coursedata{'description'};
1756: my $type=$coursedata{'type'};
1757: if (!defined($area)) { $area=&mt('Unavailable course').': '.$protectedcourse; }
1758: my ($domain,$cnum)=split(/\//,$thiscourse);
1759: my %sections_count;
1760: if (defined($env{'request.course.id'})) {
1761: if ($env{'request.course.id'} eq $domain.'_'.$cnum) {
1762: %sections_count =
1763: &Apache::loncommon::get_sections($domain,$cnum);
1764: }
1765: }
1766: foreach my $role ('st','ta','ep','in','cc') {
1767: if (&Apache::lonnet::allowed('c'.$role,$thiscourse)) {
1768: my $plrole=&Apache::lonnet::plaintext($role);
1769: $table .= &Apache::loncommon::start_data_table_row().
1770: '<td><input type="checkbox" name="act_'.$protectedcourse.'_'.$role.'"></td>
1771: <td>'.$plrole.'</td>
1772: <td>'.$area.'<br />Domain: '.$domain.'</td>'."\n";
1773: if ($role ne 'cc') {
1774: if (%sections_count) {
1775: my $currsec = &course_sections(\%sections_count,$protectedcourse.'_'.$role);
1776: $table .=
1777: '<td><table class="LC_createuser">'.
1778: '<tr class="LC_section_row">
1779: <td valign="top">'.$lt{'exs'}.'<br />'.
1780: $currsec.'</td>'.
1781: '<td> </td>'.
1782: '<td valign="top"> '.$lt{'new'}.'<br />'.
1783: '<input type="text" name="newsec_'.$protectedcourse.'_'.$role.'" value="" /></td>'.
1784: '<input type="hidden" '.
1785: 'name="sec_'.$protectedcourse.'_'.$role.'"></td>'.
1786: '</tr></table></td>';
1787: } else {
1788: $table .= '<td><input type="text" size="10" '.
1789: 'name="sec_'.$protectedcourse.'_'.$role.'"></td>';
1790: }
1791: } else {
1792: $table .= '<td> </td>';
1793: }
1794: $table .= <<ENDTIMEENTRY;
1795: <td><input type=hidden name="start_$protectedcourse\_$role" value=''>
1796: <a href=
1797: "javascript:pjump('date_start','Start Date $plrole',document.cu.start_$protectedcourse\_$role.value,'start_$protectedcourse\_$role','cu.pres','dateset')">$lt{'ssd'}</a></td>
1798: <td><input type=hidden name="end_$protectedcourse\_$role" value=''>
1799: <a href=
1800: "javascript:pjump('date_end','End Date $plrole',document.cu.end_$protectedcourse\_$role.value,'end_$protectedcourse\_$role','cu.pres','dateset')">$lt{'sed'}</a></td>
1801: ENDTIMEENTRY
1802: $table.= &Apache::loncommon::end_data_table_row();
1803: }
1804: }
1805: foreach my $cust (sort keys %customroles) {
1806: if (&Apache::lonnet::allowed('ccr',$thiscourse)) {
1807: my $plrole=$cust;
1808: my $customrole=$protectedcourse.'_cr_cr_'.$env{'user.domain'}.
1809: '_'.$env{'user.name'}.'_'.$plrole;
1810: $table .= &Apache::loncommon::start_data_table_row().
1811: '<td><input type="checkbox" name="act_'.$customrole.'"></td>
1812: <td>'.$plrole.'</td>
1813: <td>'.$area.'</td>'."\n";
1814: if (%sections_count) {
1815: my $currsec = &course_sections(\%sections_count,$customrole);
1816: $table.=
1817: '<td><table border="0" cellspacing="0" cellpadding="0">'.
1818: '<tr><td valign="top">'.$lt{'exs'}.'<br />'.
1819: $currsec.'</td>'.
1820: '<td> </td>'.
1821: '<td valign="top"> '.$lt{'new'}.'<br />'.
1822: '<input type="text" name="newsec_'.$customrole.'" value="" /></td>'.
1823: '<input type="hidden" '.
1824: 'name="sec_'.$customrole.'"></td>'.
1825: '</tr></table></td>';
1826: } else {
1827: $table .= '<td><input type="text" size="10" '.
1828: 'name="sec_'.$customrole.'"></td>';
1829: }
1830: $table .= <<ENDENTRY;
1831: <td><input type=hidden name="start_$customrole" value=''>
1832: <a href=
1833: "javascript:pjump('date_start','Start Date $plrole',document.cu.start_$customrole.value,'start_$customrole','cu.pres','dateset')">$lt{'ssd'}</a></td>
1834: <td><input type=hidden name="end_$customrole" value=''>
1835: <a href=
1836: "javascript:pjump('date_end','End Date $plrole',document.cu.end_$customrole.value,'end_$customrole','cu.pres','dateset')">$lt{'sed'}</a></td>
1837: ENDENTRY
1838: $table .= &Apache::loncommon::end_data_table_row();
1839: }
1840: }
1841: }
1842: return '' if ($table eq ''); # return nothing if there is nothing
1843: # in the table
1844: my $result = '
1845: <h4>'.$lt{'crl'}.'</h4>'.
1846: &Apache::loncommon::start_data_table().
1847: &Apache::loncommon::start_data_table_header_row().
1848: '<th>'.$lt{'act'}.'</th><th>'.$lt{'rol'}.'</th><th>'.$lt{'ext'}.'</th>
1849: <th>'.$lt{'grs'}.'</th><th>'.$lt{'sta'}.'</th><th>'.$lt{'end'}.'</th>'.
1850: &Apache::loncommon::end_data_table_header_row().
1851: &Apache::loncommon::start_data_table_row().
1852: $table.
1853: &Apache::loncommon::end_data_table_row().
1854: &Apache::loncommon::end_data_table();
1855: return $result;
1856: }
1857:
1858: sub course_sections {
1859: my ($sections_count,$role) = @_;
1860: my $output = '';
1861: my @sections = (sort {$a <=> $b} keys %{$sections_count});
1862: if (scalar(@sections) == 1) {
1863: $output = '<select name="currsec_'.$role.'" >'."\n".
1864: ' <option value="">Select</option>'."\n".
1865: ' <option value="">No section</option>'."\n".
1866: ' <option value="'.$sections[0].'" >'.$sections[0].'</option>'."\n";
1867: } else {
1868: $output = '<select name="currsec_'.$role.'" ';
1869: my $multiple = 4;
1870: if (scalar(@sections) < 4) { $multiple = scalar(@sections); }
1871: $output .= '"multiple" size="'.$multiple.'">'."\n";
1872: foreach my $sec (@sections) {
1873: $output .= '<option value="'.$sec.'">'.$sec."</option>\n";
1874: }
1875: }
1876: $output .= '</select>';
1877: return $output;
1878: }
1879:
1880: sub course_level_dc {
1881: my ($dcdom) = @_;
1882: my %customroles=&my_custom_roles();
1883: my $hiddenitems = '<input type="hidden" name="dcdomain" value="'.$dcdom.'" />'.
1884: '<input type="hidden" name="origdom" value="'.$dcdom.'" />'.
1885: '<input type="hidden" name="dccourse" value="" />';
1886: my $courseform='<b>'.&Apache::loncommon::selectcourse_link
1887: ('cu','dccourse','dcdomain','coursedesc',undef,undef,'Course').'</b>';
1888: my $cb_jscript = &Apache::loncommon::coursebrowser_javascript($dcdom,'currsec','cu');
1889: my %lt=&Apache::lonlocal::texthash(
1890: 'typ' => "Type",
1891: 'rol' => "Role",
1892: 'grs' => "Section",
1893: 'exs' => "Existing sections",
1894: 'new' => "Define new section",
1895: 'sta' => "Start",
1896: 'end' => "End",
1897: 'ssd' => "Set Start Date",
1898: 'sed' => "Set End Date"
1899: );
1900: my $header = '<h4>'.&mt('Course Level').'</h4>'.
1901: &Apache::loncommon::start_data_table().
1902: &Apache::loncommon::start_data_table_header_row().
1903: '<th>'.$lt{'typ'}.'</th><th>'.$courseform.'</th><th>'.$lt{'rol'}.'</th><th>'.$lt{'grs'}.'</th><th>'.$lt{'sta'}.'</th><th>'.$lt{'end'}.'</th>'.
1904: &Apache::loncommon::end_data_table_header_row();
1905: my $otheritems = &Apache::loncommon::start_data_table_row().
1906: '<td><select name="crstype" onChange="javascript:setType();">'."\n".
1907: ' <option value="">'.&mt('Please select')."\n".
1908: ' <option value="Course">'.&mt('Course')."\n".
1909: ' <option value="Non-standard course">'.&mt('Non-standard course')."\n".
1910: '</select>'."\n".
1911: '<td><input type="text" name="coursedesc" value="" onFocus="this.blur();opencrsbrowser('."'cu','dccourse','dcdomain','coursedesc',''".')" /></td>'."\n".
1912: '<td><select name="role">'."\n";
1913: foreach my $role ('st','ta','ep','in','cc') {
1914: my $plrole=&Apache::lonnet::plaintext($role);
1915: $otheritems .= ' <option value="'.$role.'">'.$plrole;
1916: }
1917: if ( keys %customroles > 0) {
1918: foreach my $cust (sort keys %customroles) {
1919: my $custrole='cr_cr_'.$env{'user.domain'}.
1920: '_'.$env{'user.name'}.'_'.$cust;
1921: $otheritems .= ' <option value="'.$custrole.'">'.$cust;
1922: }
1923: }
1924: $otheritems .= '</select></td><td>'.
1925: '<table border="0" cellspacing="0" cellpadding="0">'.
1926: '<tr><td valign="top"><b>'.$lt{'exs'}.'</b><br /><select name="currsec">'.
1927: ' <option value=""><--'.&mt('Pick course first').'</select></td>'.
1928: '<td> </td>'.
1929: '<td valign="top"> <b>'.$lt{'new'}.'</b><br />'.
1930: '<input type="text" name="newsec" value="" />'.
1931: '<input type="hidden" name="groups" value="" /></td>'.
1932: '</tr></table></td>';
1933: $otheritems .= <<ENDTIMEENTRY;
1934: <td><input type=hidden name="start" value=''>
1935: <a href=
1936: "javascript:pjump('date_start','Start Date',document.cu.start.value,'start','cu.pres','dateset')">$lt{'ssd'}</a></td>
1937: <td><input type=hidden name="end" value=''>
1938: <a href=
1939: "javascript:pjump('date_end','End Date',document.cu.end.value,'end','cu.pres','dateset')">$lt{'sed'}</a></td>
1940: ENDTIMEENTRY
1941: $otheritems .= &Apache::loncommon::end_data_table_row().
1942: &Apache::loncommon::end_data_table()."\n";
1943: return $cb_jscript.$header.$hiddenitems.$otheritems;
1944: }
1945:
1946: #---------------------------------------------- end functions for &phase_two
1947:
1948: #--------------------------------- functions for &phase_two and &phase_three
1949:
1950: #--------------------------end of functions for &phase_two and &phase_three
1951:
1952: 1;
1953: __END__
1954:
1955:
FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>