index.php 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316
  1. <?php
  2. // Init
  3. error_reporting(NULL);
  4. ob_start();
  5. session_start();
  6. $TAB = 'USER';
  7. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  8. // Header
  9. include($_SERVER['DOCUMENT_ROOT'].'/templates/header.html');
  10. // Are you admin?
  11. if ($_SESSION['user'] == 'admin') {
  12. // Check user argument?
  13. if (empty($_GET['user'])) {
  14. header("Location: /list/user/");
  15. exit;
  16. }
  17. // Check user
  18. $v_username = escapeshellarg($_GET['user']);
  19. exec (VESTA_CMD."v-list-user ".$v_username." json", $output, $return_var);
  20. if ($return_var != 0) {
  21. $error = implode('<br>', $output);
  22. if (empty($error)) $error = __('Error code:',$return_var);
  23. $_SESSION['error_msg'] = $error;
  24. } else {
  25. $data = json_decode(implode('', $output), true);
  26. unset($output);
  27. $v_username = $_GET['user'];
  28. $v_password = "••••••••";
  29. $v_email = $data[$v_username]['CONTACT'];
  30. $v_template = $data[$v_username]['TEMPLATE'];
  31. $v_package = $data[$v_username]['PACKAGE'];
  32. $v_language = $data[$v_username]['LANGUAGE'];
  33. $v_fname = $data[$v_username]['FNAME'];
  34. $v_lname = $data[$v_username]['LNAME'];
  35. $v_shell = $data[$v_username]['SHELL'];
  36. $v_ns = $data[$v_username]['NS'];
  37. $nameservers = explode(", ", $v_ns);
  38. $v_ns1 = $nameservers[0];
  39. $v_ns2 = $nameservers[1];
  40. $v_ns3 = $nameservers[2];
  41. $v_ns4 = $nameservers[3];
  42. $v_suspended = $data[$v_username]['SUSPENDED'];
  43. if ( $v_suspended == 'yes' ) {
  44. $v_status = 'suspended';
  45. } else {
  46. $v_status = 'active';
  47. }
  48. $v_time = $data[$v_username]['TIME'];
  49. $v_date = $data[$v_username]['DATE'];
  50. exec (VESTA_CMD."v-list-user-packages json", $output, $return_var);
  51. $packages = json_decode(implode('', $output), true);
  52. unset($output);
  53. exec (VESTA_CMD."v-list-sys-languages json", $output, $return_var);
  54. $languages = json_decode(implode('', $output), true);
  55. unset($output);
  56. exec (VESTA_CMD."v-list-web-templates json", $output, $return_var);
  57. $templates = json_decode(implode('', $output), true);
  58. unset($output);
  59. exec (VESTA_CMD."v-list-sys-shells json", $output, $return_var);
  60. $shells = json_decode(implode('', $output), true);
  61. unset($output);
  62. }
  63. // Action
  64. if (!empty($_POST['save'])) {
  65. $v_username = escapeshellarg($_POST['v_username']);
  66. // Change password
  67. if (($v_password != $_POST['v_password']) && (empty($_SESSION['error_msg']))) {
  68. $v_password = escapeshellarg($_POST['v_password']);
  69. exec (VESTA_CMD."v-change-user-password ".$v_username." ".$v_password, $output, $return_var);
  70. if ($return_var != 0) {
  71. $error = implode('<br>', $output);
  72. if (empty($error)) $error = __('Error code:',$return_var);
  73. $_SESSION['error_msg'] = $error;
  74. }
  75. $v_password = "••••••••";
  76. unset($output);
  77. }
  78. // Change package
  79. if (($v_package != $_POST['v_package']) && (empty($_SESSION['error_msg']))) {
  80. $v_package = escapeshellarg($_POST['v_package']);
  81. exec (VESTA_CMD."v-change-user-package ".$v_username." ".$v_package, $output, $return_var);
  82. if ($return_var != 0) {
  83. $error = implode('<br>', $output);
  84. if (empty($error)) $error = __('Error code:',$return_var);
  85. $_SESSION['error_msg'] = $error;
  86. }
  87. unset($output);
  88. }
  89. // Change language
  90. if (($v_language != $_POST['v_language']) && (empty($_SESSION['error_msg']))) {
  91. $v_language = escapeshellarg($_POST['v_language']);
  92. exec (VESTA_CMD."v-change-user-language ".$v_username." ".$v_language, $output, $return_var);
  93. if ($return_var != 0) {
  94. $error = implode('<br>', $output);
  95. if (empty($error)) $error = __('Error code:',$return_var);
  96. $_SESSION['error_msg'] = $error;
  97. } else {
  98. if ($_GET['user'] == 'admin') $_SESSION['language'] = $_POST['v_language'];
  99. }
  100. unset($output);
  101. }
  102. // Change template
  103. if (($v_template != $_POST['v_template']) && (empty($_SESSION['error_msg']))) {
  104. $v_template = escapeshellarg($_POST['v_template']);
  105. exec (VESTA_CMD."v-change-user-template ".$v_username." ".$v_template, $output, $return_var);
  106. if ($return_var != 0) {
  107. $error = implode('<br>', $output);
  108. if (empty($error)) $error = __('Error code:',$return_var);
  109. $_SESSION['error_msg'] = $error;
  110. }
  111. unset($output);
  112. }
  113. // Change shell
  114. if (($v_shell != $_POST['v_shell']) && (empty($_SESSION['error_msg']))) {
  115. $v_shell = escapeshellarg($_POST['v_shell']);
  116. exec (VESTA_CMD."v-change-user-shell ".$v_username." ".$v_shell, $output, $return_var);
  117. if ($return_var != 0) {
  118. $error = implode('<br>', $output);
  119. if (empty($error)) $error = __('Error code:',$return_var);
  120. $_SESSION['error_msg'] = $error;
  121. }
  122. unset($output);
  123. }
  124. // Change contact email
  125. if (($v_email != $_POST['v_email']) && (empty($_SESSION['error_msg']))) {
  126. // Validate email
  127. if (!filter_var($_POST['v_email'], FILTER_VALIDATE_EMAIL)) {
  128. $_SESSION['error_msg'] = __('Please enter valid email address.');
  129. } else {
  130. $v_email = escapeshellarg($_POST['v_email']);
  131. exec (VESTA_CMD."v-change-user-contact ".$v_username." ".$v_email, $output, $return_var);
  132. if ($return_var != 0) {
  133. $error = implode('<br>', $output);
  134. if (empty($error)) $error = __('Error code:',$return_var);
  135. $_SESSION['error_msg'] = $error;
  136. }
  137. }
  138. unset($output);
  139. }
  140. // Change Name
  141. if (($v_fname != $_POST['v_fname']) || ($v_lname != $_POST['v_lname']) && (empty($_SESSION['error_msg']))) {
  142. $v_fname = escapeshellarg($_POST['v_fname']);
  143. $v_lname = escapeshellarg($_POST['v_lname']);
  144. exec (VESTA_CMD."v-change-user-name ".$v_username." ".$v_fname." ".$v_lname, $output, $return_var);
  145. if ($return_var != 0) {
  146. $error = implode('<br>', $output);
  147. if (empty($error)) $error = __('Error code:',$return_var);
  148. $_SESSION['error_msg'] = $error;
  149. }
  150. unset($output);
  151. }
  152. // Change NameServers
  153. if (($v_ns1 != $_POST['v_ns1']) || ($v_ns2 != $_POST['v_ns2']) || ($v_ns3 != $_POST['v_ns3']) || ($v_ns4 != $_POST['v_ns4']) && (empty($_SESSION['error_msg']))) {
  154. $v_ns1 = escapeshellarg($_POST['v_ns1']);
  155. $v_ns2 = escapeshellarg($_POST['v_ns2']);
  156. $v_ns3 = escapeshellarg($_POST['v_ns3']);
  157. $v_ns4 = escapeshellarg($_POST['v_ns4']);
  158. $ns_cmd = VESTA_CMD."v-change-user-ns ".$v_username." ".$v_ns1." ".$v_ns2;
  159. if (!empty($_POST['v_ns3'])) $ns_cmd = $ns_cmd." ".$v_ns3;
  160. if (!empty($_POST['v_ns4'])) $ns_cmd = $ns_cmd." ".$v_ns4;
  161. exec ($ns_cmd, $output, $return_var);
  162. if ($return_var != 0) {
  163. $error = implode('<br>', $output);
  164. if (empty($error)) $error = __('Error code:',$return_var);
  165. $_SESSION['error_msg'] = $error;
  166. }
  167. unset($output);
  168. }
  169. if (empty($_SESSION['error_msg'])) {
  170. $_SESSION['ok_msg'] = __('Changes has been saved.');
  171. }
  172. }
  173. // Panel
  174. top_panel($user,$TAB);
  175. include($_SERVER['DOCUMENT_ROOT'].'/templates/admin/edit_user.html');
  176. unset($_SESSION['error_msg']);
  177. unset($_SESSION['ok_msg']);
  178. } else {
  179. // Check user argument?
  180. if (empty($_GET['user'])) {
  181. header("Location: /list/user/");
  182. exit;
  183. }
  184. // Check user
  185. $v_username = escapeshellarg($_GET['user']);
  186. exec (VESTA_CMD."v-list-user ".$v_username." json", $output, $return_var);
  187. if ($return_var != 0) {
  188. $error = implode('<br>', $output);
  189. if (empty($error)) $error = __('Error code:',$return_var);
  190. $_SESSION['error_msg'] = $error;
  191. } else {
  192. $data = json_decode(implode('', $output), true);
  193. unset($output);
  194. $v_username = $_GET['user'];
  195. $v_password = "••••••••";
  196. $v_email = $data[$v_username]['CONTACT'];
  197. $v_fname = $data[$v_username]['FNAME'];
  198. $v_lname = $data[$v_username]['LNAME'];
  199. $v_language = $data[$v_username]['LANGUAGE'];
  200. $v_ns = $data[$v_username]['NS'];
  201. $nameservers = explode(", ", $v_ns);
  202. $v_ns1 = $nameservers[0];
  203. $v_ns2 = $nameservers[1];
  204. $v_ns3 = $nameservers[2];
  205. $v_ns4 = $nameservers[3];
  206. $v_suspended = $data[$v_username]['SUSPENDED'];
  207. if ( $v_suspended == 'yes' ) {
  208. $v_status = 'suspended';
  209. } else {
  210. $v_status = 'active';
  211. }
  212. $v_time = $data[$v_username]['TIME'];
  213. $v_date = $data[$v_username]['DATE'];
  214. exec (VESTA_CMD."v-list-sys-languages json", $output, $return_var);
  215. $languages = json_decode(implode('', $output), true);
  216. unset($output);
  217. }
  218. // Action
  219. if (!empty($_POST['save'])) {
  220. $v_username = escapeshellarg($_POST['v_username']);
  221. // Change password
  222. if (($v_password != $_POST['v_password']) && (empty($_SESSION['error_msg']))) {
  223. $v_password = escapeshellarg($_POST['v_password']);
  224. exec (VESTA_CMD."v-change-user-password ".$v_username." ".$v_password, $output, $return_var);
  225. if ($return_var != 0) {
  226. $error = implode('<br>', $output);
  227. if (empty($error)) $error = __('Error code:',$return_var);
  228. $_SESSION['error_msg'] = $error;
  229. }
  230. $v_password = "••••••••";
  231. unset($output);
  232. }
  233. // Change language
  234. if (($v_language != $_POST['v_language']) && (empty($_SESSION['error_msg']))) {
  235. $v_language = escapeshellarg($_POST['v_language']);
  236. exec (VESTA_CMD."v-change-user-language ".$v_username." ".$v_language, $output, $return_var);
  237. if ($return_var != 0) {
  238. $error = implode('<br>', $output);
  239. if (empty($error)) $error = __('Error code:',$return_var);
  240. $_SESSION['error_msg'] = $error;
  241. } else {
  242. $_SESSION['language'] = $_POST['v_language'];
  243. }
  244. unset($output);
  245. }
  246. // Change contact email
  247. if (($v_email != $_POST['v_email']) && (empty($_SESSION['error_msg']))) {
  248. $v_email = escapeshellarg($_POST['v_email']);
  249. exec (VESTA_CMD."v-change-user-contact ".$v_username." ".$v_email, $output, $return_var);
  250. if ($return_var != 0) {
  251. $error = implode('<br>', $output);
  252. if (empty($error)) $error = __('Error code:',$return_var);
  253. $_SESSION['error_msg'] = $error;
  254. }
  255. unset($output);
  256. }
  257. // Change NameServers
  258. if (($v_ns1 != $_POST['v_ns1']) || ($v_ns2 != $_POST['v_ns2']) || ($v_ns3 != $_POST['v_ns3']) || ($v_ns4 != $_POST['v_ns4']) && (empty($_SESSION['error_msg']))) {
  259. $v_ns1 = escapeshellarg($_POST['v_ns1']);
  260. $v_ns2 = escapeshellarg($_POST['v_ns2']);
  261. $v_ns3 = escapeshellarg($_POST['v_ns3']);
  262. $v_ns4 = escapeshellarg($_POST['v_ns4']);
  263. $ns_cmd = VESTA_CMD."v-change-user-ns ".$v_username." ".$v_ns1." ".$v_ns2;
  264. if (!empty($_POST['v_ns3'])) $ns_cmd = $ns_cmd." ".$v_ns3;
  265. if (!empty($_POST['v_ns4'])) $ns_cmd = $ns_cmd." ".$v_ns4;
  266. exec ($ns_cmd, $output, $return_var);
  267. if ($return_var != 0) {
  268. $error = implode('<br>', $output);
  269. if (empty($error)) $error = __('Error code:',$return_var);
  270. $_SESSION['error_msg'] = $error;
  271. }
  272. unset($output);
  273. }
  274. if (empty($_SESSION['error_msg'])) {
  275. $_SESSION['ok_msg'] = __('Changes has been saved.');
  276. }
  277. }
  278. // Panel
  279. top_panel($user,$TAB);
  280. include($_SERVER['DOCUMENT_ROOT'].'/templates/user/edit_user.html');
  281. unset($_SESSION['error_msg']);
  282. unset($_SESSION['ok_msg']);
  283. }
  284. // Footer
  285. include($_SERVER['DOCUMENT_ROOT'].'/templates/footer.html');