2fc31e6f52ebeac3e7d35cbe809ac2a5c050c301
1 <?php
2 /*
3 This code is part of GOsa (https://gosa.gonicus.de)
4 Copyright (C) 2004-2005 Cajus Pollmeier
6 This program is free software; you can redistribute it and/or modify
7 it under the terms of the GNU General Public License as published by
8 the Free Software Foundation; either version 2 of the License, or
9 (at your option) any later version.
11 This program is distributed in the hope that it will be useful,
12 but WITHOUT ANY WARRANTY; without even the implied warranty of
13 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 GNU General Public License for more details.
16 You should have received a copy of the GNU General Public License
17 along with this program; if not, write to the Free Software
18 Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
19 */
21 class sambaAccount extends plugin
22 {
23 /* Definitions */
24 var $plHeadline= "Samba";
25 var $plDescription= "This does something";
27 /* CLI vars */
28 var $cli_summary= "Manage users samba account";
29 var $cli_description= "Some longer text\nfor help";
30 var $cli_parameters= array("eins" => "Eins ist toll", "zwei" => "Zwei ist noch besser");
32 /* Switch for Samba version */
33 var $samba3= FALSE;
34 var $uidNumber= 65535;
35 var $gidNumber= 65535;
37 /* Samba 2 attributes */
38 var $pwdLastSet= "0";
39 var $logonTime= "0";
40 var $logoffTime= "2147483647";
41 var $kickoffTime= "2147483647";
42 var $pwdCanChange= "0";
43 var $pwdMustChange= "0";
44 var $password_expires= 0;
45 var $acctFlags= "[UX ]";
46 var $smbHome= "";
47 var $homeDrive= "";
48 var $scriptPath= "";
49 var $profilePath= "";
50 var $rid= "";
51 var $primaryGroupID= "";
53 /* Samba 3 attributes */
54 var $SID= "";
55 var $ridBase= 0;
56 var $sambaSID= "";
57 var $sambaPwdLastSet= "0";
58 var $sambaLogonTime= "0";
59 var $sambaLogoffTime= "2147483647";
60 var $sambaKickoffTime= "2147483647";
61 var $sambaPwdCanChange= "0";
62 var $sambaPwdMustChange= "0";
63 var $sambaAcctFlags= "[UX ]";
64 var $sambaHomePath= "";
65 var $sambaHomeDrive= "";
66 var $sambaLogonScript= "";
67 var $sambaProfilePath= "";
68 var $sambaPrimaryGroupSID= "";
69 var $sambaDomainName= "";
70 var $sambaUserWorkstations= "";
71 var $sambaBadPasswordCount= "";
72 var $sambaBadPasswordTime= "";
73 var $sambaPasswordHistory= "";
74 var $sambaLogonHours= "";
75 var $orig_sambaDomainName= "";
76 var $sambaMungedDial= "";
77 var $mungedObject;
79 /* Helper */
80 var $show_ws_dialog= FALSE;
81 var $logon_time_set= 0;
82 var $logoff_time_set= 0;
83 var $kickoff_time_set= 0;
85 /* attribute list for save action */
86 var $ctxattributes= array();
87 var $attributes= array();
88 var $objectclasses= array();
90 function sambaAccount ($config, $dn= NULL)
91 {
92 /* Load attributes depending on the samba version */
93 $this->samba3= ($config->current['SAMBAVERSION'] == 3);
95 if ($this->samba3){
96 $this->attributes= array ("sambaSID", "sambaPwdLastSet", "sambaLogonTime",
97 "sambaLogoffTime", "sambaKickoffTime", "sambaPwdCanChange",
98 "sambaPwdMustChange", "sambaAcctFlags", "uid", "sambaMungedDial",
99 "sambaHomePath", "sambaHomeDrive", "sambaLogonScript",
100 "sambaProfilePath", "sambaPrimaryGroupSID", "sambaDomainName",
101 "sambaUserWorkstations", "sambaPasswordHistory",
102 "sambaLogonHours", "sambaBadPasswordTime",
103 "sambaBadPasswordCount");
104 $this->objectclasses= array ("sambaSamAccount");
105 $this->mungedObject= new sambaMungedDial;
106 $this->ctxattributes= $this->mungedObject->ctxattributes;
107 } else {
108 $this->attributes= array ("pwdLastSet", "logonTime", "logoffTime", "kickoffTime",
109 "pwdCanChange", "pwdMustChange", "acctFlags", "profilePath", "uid",
110 "smbHome", "homeDrive", "scriptPath", "rid", "primaryGroupID");
111 $this->objectclasses= array ("sambaAccount");
112 }
114 plugin::plugin ($config, $dn);
116 /* Get samba Domain in case of samba 3 */
117 if ($this->samba3 && $this->sambaSID != ""){
118 $this->SID= preg_replace ("/-[^-]+$/", "", $this->sambaSID);
119 $ldap= $this->config->get_ldap_link();
120 $ldap->cd($this->config->current['BASE']);
121 $ldap->search ("(&(objectClass=sambaDomain)(sambaSID=$this->SID))");
122 if ($ldap->count() != 0){
123 $attrs= $ldap->fetch();
124 $this->ridBase= $attrs['sambaAlgorithmicRidBase'][0];
125 if ($this->sambaDomainName == ""){
126 $this->sambaDomainName= $attrs['sambaDomainName'][0];
127 }
128 } else {
129 if ($this->sambaDomainName == ""){
130 $this->sambaDomainName= "DEFAULT";
131 }
132 $this->ridBase= $this->config->current['RIDBASE'];
133 $this->SID= $this->config->current['SID'];
134 }
136 /* Save in order to compare later on */
137 $this->orig_sambaDomainName= $this->sambaDomainName;
138 }
140 /* Fill mungedDial field */
141 if ($this->samba3 && isset($this->attrs['sambaMungedDial'])){
142 $this->mungedObject->load($this->sambaMungedDial);
143 }
145 /* Password expiery */
146 if(isset($this->attrs['sambaPwdMustChange']) &&
147 $this->attrs['sambaPwdMustChange'][0] != 0){
148 $this->password_expires= 1;
149 }
151 if(isset($this->attrs['sambaLogonTime']) && ! (
152 $this->attrs['sambaLogonTime'][0] == 0 ||
153 $this->attrs['sambaLogonTime'][0] == 2147483647
154 )){
155 $this->logon_time_set= 1;
156 }
157 if(isset($this->attrs['sambaLogoffTime']) && ! (
158 $this->attrs['sambaLogoffTime'][0] == 0 ||
159 $this->attrs['sambaLogoffTime'][0] == 2147483647
160 )){
161 $this->logoff_time_set= 1;
162 }
164 /* Account expiery */
165 if(isset($this->attrs['sambaKickoffTime']) && ! (
166 $this->attrs['sambaKickoffTime'][0] == 0 ||
167 $this->attrs['sambaKickoffTime'][0] == 2147483647
168 )){
169 $this->kickoff_time_set= 1;
170 }
172 /* Get global filter config */
173 if (!is_global("sambafilter")){
174 $ui= get_userinfo();
175 $base= get_base_from_people($ui->dn);
176 $sambafilter= array( "depselect" => $base, "regex" => "*");
177 register_global("sambafilter", $sambafilter);
178 }
180 /* Save initial account state */
181 $this->initially_was_account= $this->is_account;
182 }
184 function execute()
185 {
186 /* Do we need to flip is_account state? */
187 if (isset($_POST['modify_state'])){
188 $this->is_account= !$this->is_account;
189 }
190 /* Do we represent a valid account? */
191 if (!$this->is_account && $this->parent == NULL){
192 $display= "<img src=\"images/stop.png\" align=center> <b>".
193 _("This account has no samba extensions.")."</b>";
194 $display.= back_to_main();
195 return ($display);
196 }
198 /* Show tab dialog headers */
199 $display= "";
200 if ($this->parent != NULL){
201 if ($this->is_account){
202 $display= $this->show_header(_("Remove samba account"),
203 _("This account has samba features enabled. You can disable them by clicking below."));
204 } else {
205 $obj= $this->parent->by_object['posixAccount'];
207 /* Samba3 dependency on posix accounts are enabled
208 in the moment, because I need to rely on unique
209 uidNumbers. There'll be a better solution later
210 on. */
211 if ($obj->is_account){
213 $display= $this->show_header(_("Create samba account"),
214 _("This account has samba features disabled. You can enable them by clicking below."));
215 } else {
216 $display= $this->show_header(_("Create samba account"),
217 _("This account has samba features disabled. Posix features are needed for samba accounts, enable them first."), TRUE);
218 }
219 return ($display);
220 }
221 }
223 /* Prepare templating */
224 $smarty= get_smarty();
225 if ($this->sambaPwdMustChange=="0"){
226 $date= getdate();
227 } else {
228 $date= getdate($this->sambaPwdMustChange);
229 }
231 if ($this->sambaLogonTime=="2147483647" || $this->sambaLogonTime=="0"){
232 $sambaLogonTime_date= getdate();
233 } else {
234 $sambaLogonTime_date= getdate($this->sambaLogonTime);
235 }
237 if ($this->sambaLogoffTime=="2147483647" || $this->sambaLogoffTime=="0"){
238 $sambaLogoffTime_date= getdate();
239 } else {
240 $sambaLogoffTime_date= getdate($this->sambaLogoffTime);
241 }
243 if ($this->sambaKickoffTime=="2147483647" || $this->sambaKickoffTime=="0"){
244 $sambaKickoffTime_date= getdate();
245 } else {
246 $sambaKickoffTime_date= getdate($this->sambaKickoffTime);
247 }
249 /* Remove user workstations? */
250 if (isset($_POST["delete_ws"]) && isset($_POST['workstation_list'])){
251 $tmp= $this->sambaUserWorkstations;
252 foreach($_POST['workstation_list'] as $name){
253 $tmp= preg_replace("/$name/", '', $tmp);
254 $this->is_modified= TRUE;
255 }
256 $tmp= preg_replace('/,+/', ',', $tmp);
257 $this->sambaUserWorkstations= trim($tmp, ',');
258 }
260 /* Add user workstation? */
261 if (isset($_POST["add_ws"])){
262 $this->show_ws_dialog= TRUE;
263 $this->dialog= TRUE;
264 }
266 /* Add user workstation finished? */
267 if (isset($_POST["add_ws_finish"]) || isset($_POST["add_ws_cancel"])){
268 $this->show_ws_dialog= FALSE;
269 $this->dialog= FALSE;
270 }
272 /* Add user workstation? */
273 if (isset($_POST["add_ws_finish"]) && isset($_POST['wslist'])){
274 $tmp= $this->sambaUserWorkstations;
275 foreach($_POST['wslist'] as $ws){
276 $tmp.= ",$ws";
277 }
278 $tmp= preg_replace('/,+/', ',', $tmp);
279 $this->sambaUserWorkstations= trim($tmp, ',');
280 $this->is_modified= TRUE;
281 }
283 /* Show ws dialog */
284 if ($this->show_ws_dialog){
286 /* Save data */
287 $sambafilter= get_global("sambafilter");
288 foreach( array("depselect", "regex") as $type){
289 if (isset($_POST[$type])){
290 $sambafilter[$type]= $_POST[$type];
291 }
292 }
293 if (isset($_GET['search'])){
294 $s= mb_substr($_GET['search'], 0, 1, "UTF8")."*";
295 if ($s == "**"){
296 $s= "*";
297 }
298 $sambafilter['regex']= $s;
299 }
300 register_global("sambafilter", $sambafilter);
302 /* Get workstation list */
303 $exclude= "";
304 foreach(split(',', $this->sambaUserWorkstations) as $ws){
305 $exclude.= "(cn=$ws$)";
306 }
307 if ($exclude != ""){
308 $exclude= "(!(|$exclude))";
309 }
310 $acl= array($this->config->current['BASE'] => ":all");
311 $regex= $sambafilter['regex'];
312 $filter= "(&(objectClass=sambaSAMAccount)$exclude(uid=*$)(|(uid=$regex)(cn=$regex)))";
313 $res= get_list($acl, "$filter", TRUE, $sambafilter['depselect'], array("uid"), TRUE);
314 $wslist= array();
315 foreach ($res as $attrs){
316 $wslist[]= preg_replace('/\$/', '', $attrs['uid'][0]);
317 }
318 asort($wslist);
320 $smarty->assign("search_image", get_template_path('images/search.png'));
321 $smarty->assign("launchimage", get_template_path('images/small_filter.png'));
322 $smarty->assign("tree_image", get_template_path('images/tree.png'));
323 $smarty->assign("deplist", $this->config->idepartments);
324 $smarty->assign("alphabet", generate_alphabet());
325 foreach( array("depselect", "regex") as $type){
326 $smarty->assign("$type", $sambafilter[$type]);
327 }
328 $smarty->assign("hint", print_sizelimit_warning());
329 $smarty->assign("wslist", $wslist);
330 $display= $smarty->fetch (get_template_path('samba3_workstations.tpl', TRUE,
331 dirname(__FILE__)));
332 return ($display);
333 }
335 /* Fill calendar */
336 $days= array();
337 for($d= 1; $d<32; $d++){
338 $days[]= $d;
339 }
340 $years= array();
341 for($y= $date['year']-4; $y<$date['year']+4; $y++){
342 $years[]= $y;
343 }
344 $months= array(_("January"), _("February"), _("March"), _("April"),
345 _("May"), _("June"), _("July"), _("August"), _("September"),
346 _("October"), _("November"), _("December"));
347 $smarty->assign("day", $date["mday"]);
348 $smarty->assign("days", $days);
349 $smarty->assign("months", $months);
350 $smarty->assign("month", $date["mon"]-1);
351 $smarty->assign("years", $years);
352 $smarty->assign("year", $date["year"]);
354 $sambaLogonTime_days= array();
355 for($d= 1; $d<32; $d++){
356 $sambaLogonTime_days[]= $d;
357 }
358 $sambaLogonTime_years= array();
359 for($y= $date['year']-4; $y<$date['year']+4; $y++){
360 $sambaLogonTime_years[]= $y;
361 }
362 $sambaLogonTime_months= array(_("January"), _("February"), _("March"), _("April"),
363 _("May"), _("June"), _("July"), _("August"), _("September"),
364 _("October"), _("November"), _("December"));
365 $smarty->assign("sambaLogonTime_day", $sambaLogonTime_date["mday"]);
366 $smarty->assign("sambaLogonTime_days", $sambaLogonTime_days);
367 $smarty->assign("sambaLogonTime_months", $sambaLogonTime_months);
368 $smarty->assign("sambaLogonTime_month", $sambaLogonTime_date["mon"]-1);
369 $smarty->assign("sambaLogonTime_years", $sambaLogonTime_years);
370 $smarty->assign("sambaLogonTime_year", $sambaLogonTime_date["year"]);
372 $sambaLogoffTime_days= array();
373 for($d= 1; $d<32; $d++){
374 $sambaLogoffTime_days[]= $d;
375 }
376 $sambaLogoffTime_years= array();
377 for($y= $date['year']-4; $y<$date['year']+4; $y++){
378 $sambaLogoffTime_years[]= $y;
379 }
380 $sambaLogoffTime_months= array(_("January"), _("February"), _("March"), _("April"),
381 _("May"), _("June"), _("July"), _("August"), _("September"),
382 _("October"), _("November"), _("December"));
383 $smarty->assign("sambaLogoffTime_day", $sambaLogoffTime_date["mday"]);
384 $smarty->assign("sambaLogoffTime_days", $sambaLogoffTime_days);
385 $smarty->assign("sambaLogoffTime_months", $sambaLogoffTime_months);
386 $smarty->assign("sambaLogoffTime_month", $sambaLogoffTime_date["mon"]-1);
387 $smarty->assign("sambaLogoffTime_years", $sambaLogoffTime_years);
388 $smarty->assign("sambaLogoffTime_year", $sambaLogoffTime_date["year"]);
390 $sambaKickoffTime_days= array();
391 for($d= 1; $d<32; $d++){
392 $sambaKickoffTime_days[]= $d;
393 }
394 $sambaKickoffTime_years= array();
395 for($y= $date['year']-4; $y<$date['year']+4; $y++){
396 $sambaKickoffTime_years[]= $y;
397 }
398 $sambaKickoffTime_months= array(_("January"), _("February"), _("March"), _("April"),
399 _("May"), _("June"), _("July"), _("August"), _("September"),
400 _("October"), _("November"), _("December"));
401 $smarty->assign("sambaKickoffTime_day", $sambaKickoffTime_date["mday"]-1);
402 $smarty->assign("sambaKickoffTime_days", $sambaKickoffTime_days);
403 $smarty->assign("sambaKickoffTime_months", $sambaKickoffTime_months);
404 $smarty->assign("sambaKickoffTime_month", $sambaKickoffTime_date["mon"]-1);
405 $smarty->assign("sambaKickoffTime_years", $sambaKickoffTime_years);
406 $smarty->assign("sambaKickoffTime_year", $sambaKickoffTime_date["year"]);
408 /* Fill boxes */
409 if ($this->samba3){
410 $domains= array();
411 foreach($this->config->data['SERVERS']['SAMBA'] as $name => $content){
412 $domains[]= $name;
413 }
414 $smarty->assign("domains", $domains);
415 }
416 $letters= array();
417 for ($i= 68; $i<91; $i++){
418 $letters[]= chr($i).":";
419 }
420 $smarty->assign("drives", $letters);
422 /* Fill terminal server settings */
423 if ($this->samba3){
424 foreach ($this->ctxattributes as $attr){
425 /* Fill common attributes */
426 if (isset($this->mungedObject->ctx[$attr])){
427 $smarty->assign("$attr", $this->mungedObject->ctx[$attr]);
428 // Set field to blank if value is 0
429 if(in_array($attr, array("CtxMaxConnectionTime", "CtxMaxDisconnectionTime", "CtxMaxIdleTime"))) {
430 if($this->mungedObject->ctx[$attr] == 0) {
431 $smarty->assign("$attr", "");
432 }
433 }
434 }
435 $smarty->assign("$attr"."ACL", chkacl($this->acl, $attr));
436 }
438 /* Assign enum values for preset items */
439 $shadowModeVals= array( "0" => _("disabled"),
440 "1" => _("input on, notify on"),
441 "2" => _("input on, notify off"),
442 "3" => _("input off, notify on"),
443 "4" => _("input off, nofify off"));
445 $brokenConnModeVals= array( "0" => _("disconnect"),
446 "1" => _("reset"));
448 $reConnModeVals= array( "0" => _("from any client"),
449 "1" => _("from previous client only"));
451 /* Fill preset items */
452 $smarty->assign("shadow", $shadowModeVals);
453 $smarty->assign("brokenconn", $brokenConnModeVals);
454 $smarty->assign("reconn", $reConnModeVals);
456 /* Fill preset items with values */
457 $smarty->assign("shadowmode", $this->mungedObject->getShadow());
458 $smarty->assign("shadowACL", chkacl($this->acl,"shadow"));
459 $smarty->assign("brokenconnmode", $this->mungedObject->getBrokenConn());
460 $smarty->assign("brokenconnACL", chkacl($this->acl,"brokenconn"));
461 $smarty->assign("reconnmode", $this->mungedObject->getReConn());
462 $smarty->assign("reconnACL", chkacl($this->acl,"reconn"));
464 /* Set checkboxes to checked or unchecked state */
465 $smarty->assign("tslogin", $this->mungedObject->getTsLogin()?"checked":"");
466 $smarty->assign("tsloginACL", chkacl($this->acl,"tslogin"));
467 $smarty->assign("inherit", $this->mungedObject->getInheritMode()?"checked":"");
468 $smarty->assign("inheritACL", chkacl($this->acl,"inherit"));
469 $smarty->assign("connectclientdrives",
470 $this->mungedObject->getConnectClientDrives()?"checked":"");
471 $smarty->assign("connectclientdrivesACL", chkacl($this->acl,"connectclientdrives"));
472 $smarty->assign("connectclientprinters",
473 $this->mungedObject->getConnectClientPrinters()?"checked":"");
474 $smarty->assign("connectclientprintersACL", chkacl($this->acl,"connectclientprinters"));
475 $smarty->assign("defaultprinter",
476 $this->mungedObject->getDefaultPrinter()?"checked":"");
477 $smarty->assign("defaultprinterACL", chkacl($this->acl,"defaultprinter"));
478 $smarty->assign("CtxMaxConnectionTimeF",
479 $this->mungedObject->getCtxMaxConnectionTimeF()?"checked":"");
480 $smarty->assign("CtxMaxDisconnectionTimeF",
481 $this->mungedObject->getCtxMaxDisconnectionTimeF()?"checked":"");
482 $smarty->assign("CtxMaxIdleTimeF",
483 $this->mungedObject->getCtxMaxIdleTimeF()?"checked":"");
485 /* Fill sambaUserWorkstations */
486 $ws= split(",", $this->sambaUserWorkstations);
487 sort($ws);
488 $smarty->assign("workstations", $ws);
489 $smarty->assign("sambaUserWorkstationACL", chkacl($this->acl,"sambauserworkstation"));
490 }
492 /* Variables */
493 foreach($this->attributes as $val){
494 $smarty->assign("$val", $this->$val);
495 $smarty->assign("$val"."ACL", chkacl($this->acl,$val));
496 }
498 /* Checkboxes */
499 foreach(array(
500 "N" => "no_password_required",
501 "D" => "temporary_disable",
502 "L" => "automatically_disable")
503 as $key => $val){
504 if (is_integer(strpos($this->sambaAcctFlags, "$key"))) {
505 $smarty->assign("flags$key", "checked");
506 } else {
507 $smarty->assign("flags$key", "");
508 }
509 $smarty->assign("$val"."ACL", chkacl($this->acl, "$val"));
510 }
511 if ($this->pwdCanChange=="1"){
512 $smarty->assign("flagsP", "checked");
513 }
514 if ($this->password_expires=="1"){
515 $smarty->assign("flagsC", "checked");
516 }
517 if ($this->logon_time_set=="1"){
518 $smarty->assign("flagsT", "checked");
519 }
520 if ($this->logoff_time_set=="1"){
521 $smarty->assign("flagsO", "checked");
522 }
523 if ($this->kickoff_time_set=="1"){
524 $smarty->assign("flagsK", "checked");
525 }
527 $smarty->assign("allow_pwchangeACL", chkacl($this->acl, "allow_pwchange"));
528 $smarty->assign("password_expiresACL", chkacl($this->acl, "password_expires"));
529 $smarty->assign("sambaDomainNameACL", chkacl($this->acl, "sambaDomainName"));
530 $smarty->assign("logon_time_setACL", chkacl($this->acl, "logon_time_set"));
531 $smarty->assign("logoff_time_setACL", chkacl($this->acl, "logoff_time_set"));
532 $smarty->assign("kickoff_time_setACL", chkacl($this->acl, "kickoff_time_set"));
533 $smarty->assign("sambaLogonTimeACL", chkacl($this->acl, "sambaLogonTime"));
534 $smarty->assign("sambaLogoffTimeACL", chkacl($this->acl, "sambaLogoffTime"));
535 $smarty->assign("sambaKickoffTimeACL", chkacl($this->acl, "sambaKickoffTime"));
538 /* In case of javascript, disable some fields on demand */
539 if ($this->samba3 && $_SESSION['js']){
540 foreach($this->mungedObject->getOnDemandFlags() as $key => $value) {
541 $smarty->assign("$key", "$value");
542 }
543 }
545 /* Show main page */
546 if ($this->samba3){
547 $display.= $smarty->fetch (get_template_path('samba3.tpl', TRUE, dirname(__FILE__)));
548 } else {
549 $display.= $smarty->fetch (get_template_path('samba2.tpl', TRUE, dirname(__FILE__)));
550 }
552 return ($display);
553 }
555 function remove_from_parent()
556 {
557 /* Cancel if there's nothing to do here */
558 if (!$this->initially_was_account){
559 return;
560 }
562 /* include global link_info */
563 $ldap= $this->config->get_ldap_link();
565 plugin::remove_from_parent();
567 /* Keep uid attribute for gosaAccount */
568 unset($this->attrs['uid']);
569 unset($this->attrs['uidNumber']);
570 unset($this->attrs['gidNumber']);
571 @DEBUG (DEBUG_LDAP, __LINE__, __FUNCTION__, __FILE__,
572 $this->attributes, "Save");
573 $ldap->cd($this->dn);
574 $ldap->modify($this->attrs);
575 show_ldap_error($ldap->get_error());
577 /* Optionally execute a command after we're done */
578 $this->handle_post_events("remove");
579 }
582 /* Check for input problems */
583 function check()
584 {
585 $message= array();
587 if ($this->samba3){
589 /* Strings */
590 foreach (array( "sambaHomePath" => _("Home directory"),
591 "sambaProfilePath" => _("Profile path")) as $key => $val){
592 if (!$this->mungedObject->is_samba_path($this->$key)){
593 $message[]= sprintf(_("The value specified as '%s' contains invalid characters!"), $val);
594 }
595 }
597 /* Numeric values */
598 foreach (array( "CtxMaxConnectionTime" => _("Connection"),
599 "CtxMaxDisconnectionTime" => _("Disconnection"),
600 "CtxMaxIdleTime" => _("IDLE")) as $key => $val){
602 if (isset($this->mungedObject->ctx[$key]) && !is_id($this->mungedObject->ctx[$key]) && $val != 0){
603 $message[]= sprintf(_("The timeout property '%s' is checked and contains invalid or no characters!"), $val);
604 }
605 }
607 /* Too many workstations? Windows usrmgr only supports eight */
608 if (substr_count($this->sambaUserWorkstations, ",") >= 8){
609 $message[]= _("The windows user manager only allows eight clients. You've specified more than eight.");
610 }
611 }
613 return ($message);
614 }
617 /* Save data to object */
618 function save_object()
619 {
620 /* We only care if we are on the sambaTab... */
621 if (isset($_POST['sambaTab'])){
622 plugin::save_object();
624 /* Take care about access options */
625 if (chkacl ($this->acl, "acctFlags") == ""){
626 if ($this->samba3){
627 $attrname= "sambaPwdCanChange";
628 } else {
629 $attrname= "pwdCanChange";
630 }
631 if (isset($_POST["allow_pwchange"]) && $_POST["allow_pwchange"] == 1){
632 $tmp= 1;
633 } else {
634 $tmp= 0;
635 }
636 if ($this->$attrname != $tmp){
637 $this->is_modified= TRUE;
638 }
639 $this->pwdCanChange= $tmp;
640 $this->sambaPwdCanChange= $tmp;
641 }
642 $tmp= "UX";
643 if (isset($_POST["no_password_required"])){
644 if ($_POST["no_password_required"] == 1){
645 $tmp.= "N";
646 }
647 }
648 if (isset($_POST["password_expires"])){
649 if ($_POST["password_expires"] == 1){
650 $this->password_expires= 1;
651 }
652 } else {
653 $this->password_expires= 0;
654 }
655 if (isset($_POST["temporary_disable"])){
656 if ($_POST["temporary_disable"] == 1){
657 $tmp.= "D";
658 }
659 }
660 if (isset($_POST["logon_time_set"])){
661 if ($_POST["logon_time_set"] == 1){
662 $this->logon_time_set= 1;
663 }
664 } else {
665 $this->logon_time_set= 0;
666 }
667 if (isset($_POST["logoff_time_set"])){
668 if ($_POST["logoff_time_set"] == 1){
669 $this->logoff_time_set= 1;
670 }
671 } else {
672 $this->logoff_time_set= 0;
673 }
674 if (isset($_POST["kickoff_time_set"])){
675 if ($_POST["kickoff_time_set"] == 1){
676 $this->kickoff_time_set= 1;
677 }
678 } else {
679 $this->kickoff_time_set= 0;
680 }
682 $fill= "";
683 for ($i= strlen($tmp); $i<12; $i++){
684 $fill.= " ";
685 }
687 $tmp= "[$tmp$fill]";
689 /* Only save if acl's are set */
690 if (chkacl ($this->acl, "acctFlags") == ""){
691 if ($this->samba3){
692 $attrname= "sambaAcctFlags";
693 } else {
694 $attrname= "acctFlags";
695 }
696 if ($this->$attrname != $tmp){
697 $this->is_modified= TRUE;
698 }
699 $this->$attrname= $tmp;
700 }
702 /* Save sambaDomain attribute */
703 if (chkacl ($this->acl, "sambaDomainName") == "" && $this->samba3 &&
704 isset ($_POST['sambaDomainName'])){
706 $this->sambaDomainName= validate($_POST['sambaDomainName']);
707 }
709 /* Save CTX values */
710 if ($this->samba3){
711 /* Save obvious values */
712 foreach($this->ctxattributes as $val){
713 if (isset($_POST[$val]) && chkacl($this->acl, "$val") == ""){
714 if (get_magic_quotes_gpc()) {
715 $this->mungedObject->ctx[$val]= stripcslashes(validate($_POST[$val]));
716 } else {
717 $this->mungedObject->ctx[$val]= validate($_POST[$val]);
718 }
719 }
720 }
722 /* Save checkbox states. */
723 $this->mungedObject->setTsLogin(!isset($_POST['tslogin'])
724 && chkacl($this->acl, "tslogin") == "");
725 $this->mungedObject->setBrokenConn($_POST['brokenconn'] == '1'
726 && chkacl($this->acl, "brokenconn") == "");
727 $this->mungedObject->setReConn($_POST['reconn'] == '1'
728 && chkacl($this->acl, "reconn") == "");
729 $this->mungedObject->setInheritMode(isset($_POST['inherit'])
730 && chkacl($this->acl, "inherit") == "");
731 $this->mungedObject->setCtxMaxConnectionTimeF(!isset($_POST['CtxMaxConnectionTimeF'])
732 && chkacl($this->acl, "CtxMaxConnectionTime") == "");
733 $this->mungedObject->setCtxMaxDisconnectionTimeF(
734 !isset($_POST['CtxMaxDisconnectionTimeF'])
735 && chkacl($this->acl, "CtxMaxDisconnectionTime") == "");
736 $this->mungedObject->setCtxMaxIdleTimeF(!isset($_POST['CtxMaxIdleTimeF'])
737 && chkacl($this->acl, "CtxMaxIdleTime") == "");
738 $this->mungedObject->setConnectClientDrives(isset($_POST['connectclientdrives'])
739 && chkacl($this->acl, "connectclientdrives") == "");
740 $this->mungedObject->setConnectClientPrinters(isset($_POST['connectclientprinters'])
741 && chkacl($this->acl, "connectclientprinters") == "");
742 $this->mungedObject->setDefaultPrinter(isset($_POST['defaultprinter'])
743 && chkacl($this->acl, "defaultprinter") == "");
745 /* Save combo boxes. Takes two values */
746 $this->mungedObject->setShadow((isset($_POST['shadow'])
747 && chkacl($this->acl, "shadow") == ""), $_POST['shadow']);
749 /* Check for changes */
750 if ($this->sambaMungedDial != $this->mungedObject->getMunged()){
751 $this->is_modified= TRUE;
752 }
753 }
754 }
756 }
759 /* Save to LDAP */
760 function save()
761 {
762 /* Load uid and gid of this 'dn' */
763 $ldap= $this->config->get_ldap_link();
764 $ldap->cat($this->dn);
765 $tmp= $ldap->fetch();
766 $this->uidNumber= $tmp['uidNumber'][0];
767 $this->gidNumber= $tmp['gidNumber'][0];
769 plugin::save();
771 /* Remove objectClass for sambaIdmapEntry */
772 $tmp= array();
773 for ($i= 0; $i<count($this->attrs["objectClass"]); $i++){
774 if ($this->attrs['objectClass'][$i] != 'sambaIdmapEntry'){
775 $tmp[]= $this->attrs['objectClass'][$i];
776 }
777 }
778 $this->attrs['objectClass']= $tmp;
780 /* Generate rid / primaryGroupId */
781 if ($this->samba3){
782 if (!isset($this->config->data['SERVERS']['SAMBA'][$this->sambaDomainName]['SID'])){
783 print_red (_("Warning: This account has an undefined samba SID assigned. The problem can not be fixed by GOsa!"));
784 } else {
785 $this->SID= $this->config->data['SERVERS']['SAMBA'][$this->sambaDomainName]['SID'];
786 $this->ridBase= $this->config->data['SERVERS']['SAMBA'][$this->sambaDomainName]['RIDBASE'];
787 }
789 /* Need to generate a new uniqe uid/gid combination? */
790 if ($this->sambaSID == "" || $this->orig_sambaDomainName != $this->sambaDomainName){
791 $uidNumber= $this->uidNumber;
792 while(TRUE){
793 $sid= $this->SID."-".($uidNumber*2 + $this->ridBase);
794 $ldap->cd($this->config->current['BASE']);
795 $ldap->search("(sambaSID=$sid)", array("sambaSID"));
796 if ($ldap->count() == 0){
797 break;
798 }
799 $uidNumber++;
800 }
801 $this->attrs['sambaSID']= $sid;
803 /* Check for users primary group */
804 $ldap->cd($this->config->current['BASE']);
805 $ldap->search("(&(objectClass=posixGroup)(gidNumber=".$this->gidNumber."))",
806 array("cn"));
807 if ($ldap->count() != 1){
808 print_red(_("Warning: Can't identify users primary group - no conversion to a samba group possible!"));
809 } else {
810 $attrs= $ldap->fetch();
811 $g= new group($this->config, $ldap->getDN());
812 if ($g->sambaSID == ""){
813 $g->sambaDomainName= $this->sambaDomainName;
814 $g->smbgroup= TRUE;
815 $g->save ();
816 }
817 $this->attrs['sambaPrimaryGroupSID']= $g->sambaSID;
818 }
819 }
821 if ($this->sambaHomeDrive == ""){
822 $this->attrs["sambaHomeDrive"]= array();
823 }
825 /* Generate munged dial value */
826 $this->attrs["sambaMungedDial"]= $this->mungedObject->getMunged();
828 /* User wants me to fake the idMappings? This is useful for
829 making winbind resolve the user names in a reasonable amount
830 of time in combination with larger databases. */
831 if (isset($this->config->current['SAMBAIDMAPPING']) &&
832 preg_match('/true/i', $this->config->current['SAMBAIDMAPPING'])){
833 $this->attrs['objectClass'][]= "sambaIdmapEntry";
834 }
837 /* Password expiery */
838 if ($this->password_expires == "1"){
839 $this->attrs['sambaPwdMustChange']= $this->sambaPwdMustChange;
840 } else {
841 $this->attrs['sambaPwdMustChange']= array();
842 }
843 /* Account expiery */
844 if ($this->logon_time_set == "1"){
845 $this->attrs['sambaLogonTime']= $this->sambaLogonTime;
846 } else {
847 # $this->attrs['sambaLogonTime']= array();
848 # Set more useful default setting
849 $this->attrs['sambaLogonTime']= 0;
850 }
851 if ($this->logoff_time_set == "1"){
852 $this->attrs['sambaLogoffTime']= $this->sambaLogoffTime;
853 } else {
854 # $this->attrs['sambaLogoffTime']= array();
855 # Set more useful default setting
856 $this->attrs['sambaLogoffTime']= 2147483647;
857 }
858 if ($this->kickoff_time_set == "1"){
859 # Add one day in unixtime format to be compatible with usrmgr
860 $this->attrs['sambaKickoffTime']= $this->sambaKickoffTime + 86400;
861 } else {
862 # $this->attrs['sambaKickoffTime']= array();
863 # Set more useful default setting
864 $this->attrs['sambaKickoffTime']= 2147483647;
865 }
867 } else {
868 /* Not samba3 */
869 $this->attrs['rid']= $this->uidNumber*2 + 1000;
870 $this->attrs['primaryGroupID']= $this->gidNumber*2 +1001;
872 if ($this->homeDrive == ""){
873 $this->attrs["homeDrive"]= array();
874 }
876 /* Password expiery */
877 if ($this->password_expires == "1"){
878 $this->attrs['pwdMustChange']= $this->pwdMustChange;
879 } else {
880 $this->attrs['pwdMustChange']= 2147483647;
881 }
882 /* Account expiery */
883 if ($this->logon_time_set == "1"){
884 $this->attrs['logonTime']= $this->logonTime;
885 } else {
886 $this->attrs['logonTime']= 0;
887 }
888 if ($this->logoff_time_set == "1"){
889 $this->attrs['logoffTime']= $this->logoffTime;
890 } else {
891 $this->attrs['logoffTime']= 2147483647;
892 }
893 if ($this->kickoff_time_set == "1"){
894 # Add one day in unixtime format to be compatible with usrmgr
895 $this->attrs['kickoffTime']= $this->kickoffTime + 86400;
896 } else {
897 $this->attrs['kickoffTime']= 2147483647;
898 }
899 }
901 /* Write back to ldap */
902 $ldap->cd($this->dn);
903 $ldap->modify($this->attrs);
904 show_ldap_error($ldap->get_error());
906 /* Optionally execute a command after we're done */
907 if ($this->initially_was_account == $this->is_account){
908 if ($this->is_modified){
909 $this->handle_post_events("modify");
910 }
911 } else {
912 $this->handle_post_events("add");
913 }
915 }
917 function adapt_from_template($dn)
918 {
919 plugin::adapt_from_template($dn);
920 $this->sambaSID= "";
921 $this->sambaPrimaryGroupSID= "";
922 }
924 }
926 // vim:tabstop=2:expandtab:shiftwidth=2:filetype=php:syntax:ruler:
927 ?>