user_import.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447
  1. <?php
  2. /* For licensing terms, see /license.txt */
  3. /**
  4. * This tool allows platform admins to add users by uploading a CSV or XML file
  5. * @todo Add some langvars to DLTT
  6. * @package chamilo.admin
  7. */
  8. /**
  9. * Validate the imported data.
  10. */
  11. $language_file = array('admin', 'registration');
  12. $cidReset = true;
  13. require_once '../inc/global.inc.php';
  14. // Set this option to true to enforce strict purification for usenames.
  15. $purification_option_for_usernames = false;
  16. function validate_data($users) {
  17. global $defined_auth_sources;
  18. global $time;
  19. $errors = array();
  20. $usernames = array();
  21. // 1. Check if mandatory fields are set.
  22. $mandatory_fields = array('LastName', 'FirstName');
  23. if (api_get_setting('registration', 'email') == 'true') {
  24. $mandatory_fields[] = 'Email';
  25. }
  26. foreach ($users as $index => $user) {
  27. foreach ($mandatory_fields as $field) {
  28. if (empty($user[$field])) {
  29. $user['error'] = get_lang($field.'Mandatory');
  30. $errors[] = $user;
  31. }
  32. }
  33. // 2. Check username, first, check whether it is empty.
  34. if (!UserManager::is_username_empty($user['UserName'])) {
  35. // 2.1. Check whether username is too long.
  36. if (UserManager::is_username_too_long($user['UserName'])) {
  37. $user['error'] = get_lang('UserNameTooLong');
  38. $errors[] = $user;
  39. }
  40. // 2.2. Check whether the username was used twice in import file.
  41. if (isset($usernames[$user['UserName']])) {
  42. $user['error'] = get_lang('UserNameUsedTwice');
  43. $errors[] = $user;
  44. }
  45. $usernames[$user['UserName']] = 1;
  46. // 2.3. Check whether username is allready occupied.
  47. if (!UserManager::is_username_available($user['UserName'])) {
  48. $user['error'] = get_lang('UserNameNotAvailable');
  49. $errors[] = $user;
  50. }
  51. }
  52. // 3. Check status.
  53. if (isset($user['Status']) && !api_status_exists($user['Status'])) {
  54. $user['error'] = get_lang('WrongStatus');
  55. $errors[] = $user;
  56. }
  57. // 4. Check classname
  58. if (!empty($user['ClassName'])) {
  59. if (!ClassManager :: class_name_exists($user['ClassName'])) {
  60. $user['error'] = get_lang('ClassNameNotAvailable');
  61. $errors[] = $user;
  62. }
  63. }
  64. // 5. Check authentication source
  65. if (!empty($user['AuthSource'])) {
  66. if (!in_array($user['AuthSource'], $defined_auth_sources)) {
  67. $user['error'] = get_lang('AuthSourceNotAvailable');
  68. $errors[] = $user;
  69. }
  70. }
  71. }
  72. return $errors;
  73. }
  74. /**
  75. * Add missing user-information (which isn't required, like password, username etc).
  76. */
  77. function complete_missing_data($user) {
  78. global $purification_option_for_usernames;
  79. global $time;
  80. // 1. Create a username if necessary.
  81. if (UserManager::is_username_empty($user['UserName'])) {
  82. $user['UserName'] = UserManager::create_unique_username($user['FirstName'], $user['LastName']);
  83. } else {
  84. $user['UserName'] = UserManager::purify_username($user['UserName'], $purification_option_for_usernames);
  85. }
  86. // 2. Generate a password if necessary.
  87. if (empty($user['Password'])) {
  88. $user['Password'] = api_generate_password();
  89. }
  90. // 3. Set status if not allready set.
  91. if (empty($user['Status'])) {
  92. $user['Status'] = 'user';
  93. }
  94. // 4. Set authsource if not allready set.
  95. if (empty($user['AuthSource'])) {
  96. $user['AuthSource'] = PLATFORM_AUTH_SOURCE;
  97. }
  98. return $user;
  99. }
  100. /**
  101. * Save the imported data
  102. * @param array List of users
  103. * @return void
  104. * @uses global variable $inserted_in_course, which returns the list of courses the user was inserted in
  105. */
  106. function save_data($users) {
  107. global $inserted_in_course;
  108. // Not all scripts declare the $inserted_in_course array (although they should).
  109. if (!isset($inserted_in_course)) {
  110. $inserted_in_course = array();
  111. }
  112. $send_mail = $_POST['sendMail'] ? 1 : 0;
  113. $t0 = time();
  114. if (is_array($users)) {
  115. foreach ($users as $index => $user) {
  116. $user = complete_missing_data($user);
  117. $user['Status'] = api_status_key($user['Status']);
  118. $user_id = UserManager :: create_user($user['FirstName'], $user['LastName'], $user['Status'], $user['Email'], $user['UserName'], $user['Password'], (isset($user['OfficialCode'])?$user['OfficialCode']:null), (isset($user['language'])?$user['language']:null), (isset($user['PhoneNumber'])?$user['PhoneNumber']:null), '', $user['AuthSource'], null, 1, 0, null, null, $send_mail, true);
  119. if (!empty($user['Courses']) && !is_array($user['Courses'])) {
  120. $user['Courses'] = array($user['Courses']);
  121. }
  122. if (isset($user['Courses']) && is_array($user['Courses'])) {
  123. foreach ($user['Courses'] as $index => $course) {
  124. if (CourseManager :: course_exists($course)) {
  125. CourseManager :: subscribe_user($user_id, $course,$user['Status']);
  126. $course_info = CourseManager::get_course_information($course);
  127. $inserted_in_course[$course] = $course_info['title'];
  128. }
  129. if (CourseManager :: course_exists($course, true)) {
  130. // Also subscribe to virtual courses through check on visual code.
  131. $list = CourseManager :: get_courses_info_from_visual_code($course);
  132. foreach ($list as $vcourse) {
  133. if ($vcourse['code'] == $course) {
  134. // Ignore, this has already been inserted.
  135. } else {
  136. CourseManager :: subscribe_user($user_id, $vcourse['code'],$user['Status']);
  137. $inserted_in_course[$vcourse['code']] = $vcourse['title'];
  138. }
  139. }
  140. }
  141. }
  142. }
  143. if (!empty($user['ClassName'])) {
  144. $class_id = ClassManager :: get_class_id($user['ClassName']);
  145. ClassManager :: add_user($user_id, $class_id);
  146. }
  147. // Saving extra fields.
  148. global $extra_fields;
  149. // We are sure that the extra field exists.
  150. if (isset($extra_fields) && is_array($extra_fields)) {
  151. foreach($extra_fields as $extras) {
  152. if (isset($user[$extras[1]])) {
  153. $key = $extras[1];
  154. $value = $user[$extras[1]];
  155. UserManager::update_extra_field_value($user_id, $key,$value);
  156. }
  157. }
  158. }
  159. }
  160. }
  161. $t1 = time()-$t0;
  162. error_log('Total import took '.$t1.'s');
  163. }
  164. /**
  165. * Read the CSV-file
  166. * @param string $file Path to the CSV-file
  167. * @return array All userinformation read from the file
  168. */
  169. function parse_csv_data($file) {
  170. global $time;
  171. $time = time();
  172. $users = Import :: csv_to_array($file);
  173. foreach ($users as $index => $user) {
  174. if (isset ($user['Courses'])) {
  175. $user['Courses'] = explode('|', trim($user['Courses']));
  176. }
  177. $users[$index] = $user;
  178. }
  179. return $users;
  180. }
  181. /**
  182. * XML-parser: handle start of element
  183. */
  184. function element_start($parser, $data) {
  185. $data = api_utf8_decode($data);
  186. global $user;
  187. global $current_tag;
  188. switch ($data) {
  189. case 'Contact' :
  190. $user = array ();
  191. break;
  192. default :
  193. $current_tag = $data;
  194. }
  195. }
  196. /**
  197. * XML-parser: handle end of element
  198. */
  199. function element_end($parser, $data) {
  200. $data = api_utf8_decode($data);
  201. global $user;
  202. global $users;
  203. global $current_value;
  204. switch ($data) {
  205. case 'Contact' :
  206. if ($user['Status'] == '5') {
  207. $user['Status'] = STUDENT;
  208. }
  209. if ($user['Status'] == '1') {
  210. $user['Status'] = COURSEMANAGER;
  211. }
  212. $users[] = $user;
  213. break;
  214. default :
  215. $user[$data] = $current_value;
  216. break;
  217. }
  218. }
  219. /**
  220. * XML-parser: handle character data
  221. */
  222. function character_data($parser, $data) {
  223. $data = trim(api_utf8_decode($data));
  224. global $current_value;
  225. $current_value = $data;
  226. }
  227. /**
  228. * Read the XML-file
  229. * @param string $file Path to the XML-file
  230. * @return array All userinformation read from the file
  231. */
  232. function parse_xml_data($file) {
  233. global $current_tag;
  234. global $current_value;
  235. global $user;
  236. global $users;
  237. $users = array();
  238. $parser = xml_parser_create('UTF-8');
  239. xml_set_element_handler($parser, 'element_start', 'element_end');
  240. xml_set_character_data_handler($parser, 'character_data');
  241. xml_parser_set_option($parser, XML_OPTION_CASE_FOLDING, false);
  242. xml_parse($parser, Text::api_utf8_encode_xml(file_get_contents($file)));
  243. xml_parser_free($parser);
  244. return $users;
  245. }
  246. $this_section = SECTION_PLATFORM_ADMIN;
  247. api_protect_admin_script(true);
  248. $defined_auth_sources[] = PLATFORM_AUTH_SOURCE;
  249. if (isset($extAuthSource) && is_array($extAuthSource)) {
  250. $defined_auth_sources = array_merge($defined_auth_sources, array_keys($extAuthSource));
  251. }
  252. $tool_name = get_lang('ImportUserListXMLCSV');
  253. $interbreadcrumb[] = array ("url" => 'index.php', "name" => get_lang('PlatformAdmin'));
  254. set_time_limit(0);
  255. $extra_fields = UserManager::get_extra_fields(0, 0, 5, 'ASC', true);
  256. $user_id_error = array();
  257. $error_message = '';
  258. if (!empty($_POST['formSent']) AND $_FILES['import_file']['size'] !== 0) {
  259. $file_type = $_POST['file_type'];
  260. Security::clear_token();
  261. $tok = Security::get_token();
  262. $allowed_file_mimetype = array('csv','xml');
  263. $error_kind_file = false;
  264. $ext_import_file = substr($_FILES['import_file']['name'],(strrpos($_FILES['import_file']['name'],'.')+1));
  265. if (in_array($ext_import_file,$allowed_file_mimetype)) {
  266. if (strcmp($file_type, 'csv') === 0 && $ext_import_file == $allowed_file_mimetype[0]) {
  267. $users = parse_csv_data($_FILES['import_file']['tmp_name']);
  268. $errors = validate_data($users);
  269. $error_kind_file = false;
  270. } elseif (strcmp($file_type, 'xml') === 0 && $ext_import_file == $allowed_file_mimetype[1]) {
  271. $users = parse_xml_data($_FILES['import_file']['tmp_name']);
  272. $errors = validate_data($users);
  273. $error_kind_file = false;
  274. } else {
  275. $error_kind_file = true;
  276. }
  277. } else {
  278. $error_kind_file = true;
  279. }
  280. // List user id whith error.
  281. $users_to_insert = $user_id_error = array();
  282. if (is_array($errors)) {
  283. foreach ($errors as $my_errors) {
  284. $user_id_error[] = $my_errors['UserName'];
  285. }
  286. }
  287. if (is_array($users)) {
  288. foreach ($users as $my_user) {
  289. if (!in_array($my_user['UserName'], $user_id_error)) {
  290. $users_to_insert[] = $my_user;
  291. }
  292. }
  293. }
  294. $inserted_in_course = array();
  295. if (strcmp($file_type, 'csv') === 0) {
  296. save_data($users_to_insert);
  297. } elseif (strcmp($file_type, 'xml') === 0) {
  298. save_data($users_to_insert);
  299. } else {
  300. $error_message = get_lang('YouMustImportAFileAccordingToSelectedOption');
  301. }
  302. if (count($errors) > 0) {
  303. $see_message_import = get_lang('FileImportedJustUsersThatAreNotRegistered');
  304. } else {
  305. $see_message_import = get_lang('FileImported');
  306. }
  307. /*
  308. $msg2 = '';
  309. if (count($inserted_in_course) > 1) {
  310. $msg2 .= '<br>'.get_lang('UsersSubscribedToSeveralCoursesBecauseOfVirtualCourses').':';
  311. foreach ($inserted_in_course as $course) {
  312. $msg2 .= ' '.$course.',';
  313. }
  314. $msg2 = substr($msg2, 0, -1);
  315. $msg2 .= '</br>';
  316. }
  317. */
  318. if (count($errors) != 0) {
  319. $warning_message = '<ul>';
  320. foreach ($errors as $index => $error_user) {
  321. $warning_message .= '<li><b>'.$error_user['error'].'</b>: ';
  322. $warning_message .= '<strong>'.$error_user['UserName'].'</strong>&nbsp;('.api_get_person_name($error_user['FirstName'], $error_user['LastName']).')';
  323. $warning_message .= '</li>';
  324. }
  325. $warning_message .= '</ul>';
  326. }
  327. // if the warning message is too long then we display the warning message trough a session
  328. if (isset($warning_message) && api_strlen($warning_message) > 150) {
  329. $_SESSION['session_message_import_users'] = (isset($warning_message)?$warning_message:'');
  330. $warning_message = 'session_message';
  331. }
  332. if ($error_kind_file) {
  333. $error_message = get_lang('YouMustImportAFileAccordingToSelectedOption');
  334. } else {
  335. header('Location: '.api_get_path(WEB_CODE_PATH).'admin/user_list.php?action=show_message&warn='.(isset($warning_message)?urlencode($warning_message):'').'&message='.urlencode($see_message_import).'&sec_token='.$tok);
  336. exit;
  337. }
  338. }
  339. Display :: display_header($tool_name);
  340. if (!empty($error_message)) {
  341. Display::display_error_message($error_message);
  342. }
  343. $form = new FormValidator('user_import','post','user_import.php');
  344. $form->addElement('header', '', $tool_name);
  345. $form->addElement('hidden', 'formSent');
  346. $form->addElement('file', 'import_file', get_lang('ImportFileLocation'));
  347. $group = array();
  348. $group[] = $form->createElement('radio', 'file_type', '', 'CSV (<a href="example.csv" target="_blank">'.get_lang('ExampleCSVFile').'</a>)', 'csv');
  349. $group[] = $form->createElement('radio', 'file_type', null, 'XML (<a href="example.xml" target="_blank">'.get_lang('ExampleXMLFile').'</a>)', 'xml');
  350. $form->addGroup($group, '', get_lang('FileType'), '<br/>');
  351. $group = array();
  352. $group[] = $form->createElement('radio', 'sendMail', '', get_lang('Yes'), 1);
  353. $group[] = $form->createElement('radio', 'sendMail', null, get_lang('No'), 0);
  354. $form->addGroup($group, '', get_lang('SendMailToUsers'), '<br/>');
  355. $form->addElement('style_submit_button', 'submit', get_lang('Import'), 'class="save"');
  356. $defaults['formSent'] = 1;
  357. $defaults['sendMail'] = 0;
  358. $defaults['file_type'] = 'csv';
  359. $form->setDefaults($defaults);
  360. $form->display();
  361. $list = array();
  362. $list_reponse = array();
  363. $result_xml = '';
  364. $i = 0;
  365. $count_fields = count($extra_fields);
  366. if ($count_fields > 0) {
  367. foreach ($extra_fields as $extra) {
  368. $list[] = $extra[1];
  369. $list_reponse[] = 'xxx';
  370. $spaces = '&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;';
  371. $result_xml .= $spaces.'&lt;'.$extra[1].'&gt;xxx&lt;/'.$extra[1].'&gt;';
  372. if ($i != $count_fields - 1) {
  373. $result_xml .= '<br/>';
  374. }
  375. $i++;
  376. }
  377. }
  378. ?>
  379. <p><?php echo get_lang('CSVMustLookLike').' ('.get_lang('MandatoryFields').')'; ?> :</p>
  380. <blockquote>
  381. <pre>
  382. <b>LastName</b>;<b>FirstName</b>;<b>Email</b>;UserName;Password;AuthSource;OfficialCode;PhoneNumber;Status;<font style="color:red;"><?php if (count($list) > 0) echo implode(';', $list).';'; ?></font>Courses;
  383. <b>xxx</b>;<b>xxx</b>;<b>xxx</b>;xxx;xxx;<?php echo implode('/', $defined_auth_sources); ?>;xxx;xxx;user/teacher/drh;<font style="color:red;"><?php if (count($list_reponse) > 0) echo implode(';', $list_reponse).';'; ?></font>xxx1|xxx2|xxx3;<br />
  384. </pre>
  385. </blockquote>
  386. <p><?php echo get_lang('XMLMustLookLike').' ('.get_lang('MandatoryFields').')'; ?> :</p>
  387. <blockquote>
  388. <pre>
  389. &lt;?xml version=&quot;1.0&quot; encoding=&quot;<?php echo api_refine_encoding_id(api_get_system_encoding()); ?>&quot;?&gt;
  390. &lt;Contacts&gt;
  391. &lt;Contact&gt;
  392. <b>&lt;LastName&gt;xxx&lt;/LastName&gt;</b>
  393. <b>&lt;FirstName&gt;xxx&lt;/FirstName&gt;</b>
  394. &lt;UserName&gt;xxx&lt;/UserName&gt;
  395. &lt;Password&gt;xxx&lt;/Password&gt;
  396. &lt;AuthSource&gt;<?php echo implode('/', $defined_auth_sources); ?>&lt;/AuthSource&gt;
  397. <b>&lt;Email&gt;xxx&lt;/Email&gt;</b>
  398. &lt;OfficialCode&gt;xxx&lt;/OfficialCode&gt;
  399. &lt;PhoneNumber&gt;xxx&lt;/PhoneNumber&gt;
  400. &lt;Status&gt;user/teacher/drh<?php if ($result_xml != '') { echo '<br /><font style="color:red;">', $result_xml; echo '</font>'; } ?>&lt;/Status&gt;
  401. &lt;Courses&gt;xxx1|xxx2|xxx3&lt;/Courses&gt;
  402. &lt;/Contact&gt;
  403. &lt;/Contacts&gt;
  404. </pre>
  405. </blockquote>
  406. <?php
  407. Display :: display_footer();