2008-10-06 03:46:54 +04:00
|
|
|
<?php
|
|
|
|
/*
|
2013-03-07 01:22:53 +04:00
|
|
|
* Copyright 2005-2013 the original author or authors.
|
|
|
|
*
|
|
|
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
* you may not use this file except in compliance with the License.
|
|
|
|
* You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
2008-10-06 03:46:54 +04:00
|
|
|
*/
|
|
|
|
|
2012-09-13 17:35:25 +04:00
|
|
|
require_once('../libs/init.php');
|
2008-10-06 03:46:54 +04:00
|
|
|
require_once('../libs/operator.php');
|
2009-03-23 00:22:51 +03:00
|
|
|
require_once('../libs/operator_settings.php');
|
2008-10-06 03:46:54 +04:00
|
|
|
|
|
|
|
$operator = check_login();
|
2012-06-27 11:51:16 +04:00
|
|
|
csrfchecktoken();
|
2008-10-06 03:46:54 +04:00
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
$opId = verifyparam("op", "/^\d{1,9}$/");
|
2009-04-10 18:12:57 +04:00
|
|
|
$page = array('opid' => $opId, 'avatar' => '');
|
2008-10-06 03:46:54 +04:00
|
|
|
$errors = array();
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
$canmodify = ($opId == $operator['operatorid'] && is_capable($can_modifyprofile, $operator))
|
|
|
|
|| is_capable($can_administrate, $operator);
|
2009-05-31 20:13:22 +04:00
|
|
|
|
2008-10-06 04:45:25 +04:00
|
|
|
$op = operator_by_id($opId);
|
2008-10-06 03:46:54 +04:00
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
if (!$op) {
|
2008-10-06 04:45:25 +04:00
|
|
|
$errors[] = getlocal("no_such_operator");
|
2008-10-06 03:46:54 +04:00
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
} else if (isset($_POST['op'])) {
|
2008-10-06 04:45:25 +04:00
|
|
|
$avatar = $op['vcavatar'];
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
if (!$canmodify) {
|
2009-04-10 18:12:57 +04:00
|
|
|
$errors[] = getlocal('page_agent.cannot_modify');
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
} else if (isset($_FILES['avatarFile']) && $_FILES['avatarFile']['name']) {
|
2013-03-05 02:57:42 +04:00
|
|
|
$valid_types = array("gif", "jpg", "png", "tif", "jpeg");
|
2011-02-26 17:06:19 +03:00
|
|
|
|
|
|
|
$orig_filename = $_FILES['avatarFile']['name'];
|
|
|
|
$tmp_file_name = $_FILES['avatarFile']['tmp_name'];
|
|
|
|
|
|
|
|
$ext = strtolower(substr($orig_filename, 1 + strrpos($orig_filename, ".")));
|
|
|
|
$new_file_name = "$opId.$ext";
|
|
|
|
|
|
|
|
$file_size = $_FILES['avatarFile']['size'];
|
2012-07-16 18:26:53 +04:00
|
|
|
if ($file_size == 0 || $file_size > Settings::get('max_uploaded_file_size')) {
|
2011-02-26 17:06:19 +03:00
|
|
|
$errors[] = failed_uploading_file($orig_filename, "errors.file.size.exceeded");
|
|
|
|
} elseif (!in_array($ext, $valid_types)) {
|
|
|
|
$errors[] = failed_uploading_file($orig_filename, "errors.invalid.file.type");
|
|
|
|
} else {
|
|
|
|
$avatar_local_dir = "../images/avatar/";
|
|
|
|
$full_file_path = $avatar_local_dir . $new_file_name;
|
|
|
|
if (file_exists($full_file_path)) {
|
|
|
|
unlink($full_file_path);
|
|
|
|
}
|
2013-03-05 02:57:42 +04:00
|
|
|
if (!@move_uploaded_file($_FILES['avatarFile']['tmp_name'], $full_file_path)) {
|
2011-02-26 17:06:19 +03:00
|
|
|
$errors[] = failed_uploading_file($orig_filename, "errors.file.move.error");
|
|
|
|
} else {
|
|
|
|
$avatar = "$webimroot/images/avatar/$new_file_name";
|
|
|
|
}
|
|
|
|
}
|
|
|
|
} else {
|
|
|
|
$errors[] = "No file selected";
|
|
|
|
}
|
|
|
|
|
|
|
|
if (count($errors) == 0) {
|
|
|
|
update_operator_avatar($op['operatorid'], $avatar);
|
2008-10-06 03:46:54 +04:00
|
|
|
|
2011-02-26 16:43:30 +03:00
|
|
|
if ($opId && $avatar && $_SESSION["${mysqlprefix}operator"] && $operator['operatorid'] == $opId) {
|
|
|
|
$_SESSION["${mysqlprefix}operator"]['vcavatar'] = $avatar;
|
2008-10-06 03:46:54 +04:00
|
|
|
}
|
2008-10-06 04:45:25 +04:00
|
|
|
header("Location: $webimroot/operator/avatar.php?op=$opId");
|
2008-10-06 03:46:54 +04:00
|
|
|
exit;
|
|
|
|
} else {
|
2008-10-06 04:45:25 +04:00
|
|
|
$page['avatar'] = topage($op['vcavatar']);
|
2008-10-06 03:46:54 +04:00
|
|
|
}
|
|
|
|
|
|
|
|
} else {
|
2009-05-31 20:13:22 +04:00
|
|
|
if (isset($_GET['delete']) && $_GET['delete'] == "true" && $canmodify) {
|
2011-02-26 17:06:19 +03:00
|
|
|
update_operator_avatar($op['operatorid'], '');
|
2008-10-06 04:45:25 +04:00
|
|
|
header("Location: $webimroot/operator/avatar.php?op=$opId");
|
|
|
|
exit;
|
2008-10-06 03:46:54 +04:00
|
|
|
}
|
2008-10-06 04:45:25 +04:00
|
|
|
$page['avatar'] = topage($op['vcavatar']);
|
2008-10-06 03:46:54 +04:00
|
|
|
}
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
$page['currentop'] = $op ? topage(get_operator_name($op)) . " (" . $op['vclogin'] . ")" : "-not found-";
|
2009-05-31 20:13:22 +04:00
|
|
|
$page['canmodify'] = $canmodify ? "1" : "";
|
2008-10-06 03:46:54 +04:00
|
|
|
|
2009-03-16 04:20:04 +03:00
|
|
|
prepare_menu($operator);
|
2011-02-26 17:06:19 +03:00
|
|
|
setup_operator_settings_tabs($opId, 1);
|
2008-10-06 03:46:54 +04:00
|
|
|
start_html_output();
|
|
|
|
require('../view/avatar.php');
|
2013-03-13 01:03:50 +04:00
|
|
|
?>
|