Authorities framework Bug fixing
[koha.git] / admin / currency.pl
index e4dc61c..6c74842 100755 (executable)
 # if $op=delete_confirm
 #      - we delete the record having primkey=$primkey
 
+
+# Copyright 2000-2002 Katipo Communications
+#
+# This file is part of Koha.
+#
+# Koha is free software; you can redistribute it and/or modify it under the
+# terms of the GNU General Public License as published by the Free Software
+# Foundation; either version 2 of the License, or (at your option) any later
+# version.
+#
+# Koha is distributed in the hope that it will be useful, but WITHOUT ANY
+# WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR
+# A PARTICULAR PURPOSE.  See the GNU General Public License for more details.
+#
+# You should have received a copy of the GNU General Public License along with
+# Koha; if not, write to the Free Software Foundation, Inc., 59 Temple Place,
+# Suite 330, Boston, MA  02111-1307 USA
+
 use strict;
-use C4::Output;
+# use warnings; # FIXME
 use CGI;
-use C4::Search;
-use C4::Database;
+use C4::Context;
+use C4::Auth;
+use C4::Dates qw(format_date);
+use C4::Output;
 
 sub StringSearch  {
-       my ($env,$searchstring,$type)=@_;
-       my $dbh = &C4Connect;
-       $searchstring=~ s/\'/\\\'/g;
-       my @data=split(' ',$searchstring);
-       my $count=@data;
-       my $query="Select currency,rate from currency where (currency like \"$data[0]%\") order by currency";
-       my $sth=$dbh->prepare($query);
-       $sth->execute;
-       my @results;
-       my $cnt=0;
-       while (my $data=$sth->fetchrow_hashref){
-       push(@results,$data);
-       $cnt ++;
-       }
-       #  $sth->execute;
-       $sth->finish;
-       $dbh->disconnect;
-       return ($cnt,\@results);
+       my $query = "SELECT * FROM currency WHERE (currency LIKE ?) ORDER BY currency";
+    warn "$query :: @_[0]";
+       my $sth = C4::Context->dbh->prepare($query);
+       $sth->execute((shift || '') . '%');
+       return $sth->fetchall_arrayref({});
 }
 
 my $input = new CGI;
-my $searchfield=$input->param('searchfield');
-my $pkfield="currency";
-my $reqsel="select currency,rate from currency where $pkfield='$searchfield'";
-my $reqdel="delete from currency where $pkfield='$searchfield'";
-#my $branchcode=$input->param('branchcode');
-my $offset=$input->param('offset');
-my $script_name="/cgi-bin/koha/admin/currency.pl";
-
-my $pagesize=20;
-my $op = $input->param('op');
-$searchfield=~ s/\,//g;
-print $input->header;
-
-#start the page and read in includes
-print startpage();
-print startmenu('admin');
+my $searchfield = $input->param('searchfield') || $input->param('description') || '';
+my $offset      = $input->param('offset') || 0;
+my $op          = $input->param('op')     || '';
+my $script_name = "/cgi-bin/koha/admin/currency.pl";
+my $pagesize = 20;
+
+my ($template, $loggedinuser, $cookie) = get_template_and_user({
+    template_name => "admin/currency.tmpl",
+    query => $input,
+     type => "intranet",
+      flagsrequired => {parameters => 1},
+    authnotrequired => 0,
+    debug => 1,
+});
+
+$template->param(searchfield => $searchfield,
+                script_name => $script_name);
+
+my $dbh = C4::Context->dbh;
 
 ################## ADD_FORM ##################################
 # called by default. Used to create form to add or  modify a record
 if ($op eq 'add_form') {
+       $template->param(add_form => 1);
        #---- if primkey exists, it's a modify action, so read values to modify...
        my $data;
        if ($searchfield) {
-               my $dbh = &C4Connect;
-               my $sth=$dbh->prepare("select currency,rate from currency where currency='$searchfield'");
-               $sth->execute;
+               my $sth=$dbh->prepare("select * from currency where currency=?");
+               $sth->execute($searchfield);
                $data=$sth->fetchrow_hashref;
-               $sth->finish;
-       }
-       print <<printend
-       <script>
-       /////////////////////////////////////////////////////////////////////////////////////////////////////////////////
-       function isNotNull(f,noalert) {
-               if (f.value.length ==0) {
-   return false;
-               }
-               return true;
-       }
-       /////////////////////////////////////////////////////////////////////////////////////////////////////////////////
-       function toUC(f) {
-               var x=f.value.toUpperCase();
-               f.value=x;
-               return true;
-       }
-       /////////////////////////////////////////////////////////////////////////////////////////////////////////////////
-       function isNum(v,maybenull) {
-       var n = new Number(v.value);
-       if (isNaN(n)) {
-               return false;
-               }
-       if (maybenull==0 && v.value=='') {
-               return false;
-       }
-       return true;
-       }
-       /////////////////////////////////////////////////////////////////////////////////////////////////////////////////
-       function isDate(f) {
-               var t = Date.parse(f.value);
-               if (isNaN(t)) {
-                       return false;
-               }
-       }
-       /////////////////////////////////////////////////////////////////////////////////////////////////////////////////
-       function Check(f) {
-               var ok=1;
-               var _alertString="";
-               var alertString2;
-               if (f.currency.value.length==0) {
-                       _alertString += "- currency missing\\n";
-               }
-               if (!isNum(f.rate)) {
-                       _alertString += "- Rate not numeric\\n";
-               }
-               if (_alertString.length==0) {
-                       document.Aform.submit();
-               } else {
-                       alertString2 = "Form not submitted because of the following problem(s)\\n";
-                       alertString2 += "------------------------------------------------------------------------------------\\n\\n";
-                       alertString2 += _alertString;
-                       alert(alertString2);
-               }
        }
-       </SCRIPT>
-printend
-;#/
-       if ($searchfield) {
-               print "<h1>Modify currency</h1>";
-       } else {
-               print "<h1>Add currency</h1>";
+       foreach (keys %$data) {
+               $template->param($_ => $data->{$_});
        }
-       print "<form action='$script_name' name=Aform method=post>";
-       print "<input type=hidden name=op value='add_validate'>";
-       print "<table>";
-       if ($searchfield) {
-               print "<tr><td>Currency</td><td><input type=hidden name=currency value=$searchfield>$searchfield</td></tr>";
-       } else {
-               print "<tr><td>Currency</td><td><input type=text name=currency size=5 maxlength=5 onBlur=toUC(this)></td></tr>";
-       }
-       print "<tr><td>Rate</td><td><input type=text name=rate size=10 maxlength=10 value='$data->{'rate'}'>&nbsp;</td></tr>";
-       print "<tr><td>&nbsp;</td><td><INPUT type=button value='OK' onClick='Check(this.form)'></td></tr>";
-       print "</table>";
-       print "</form>";
-;
+       my $date = $template->param('timestamp');
+       ($date) and $template->param('timestamp' => format_date($date));
                                                                                                        # END $OP eq ADD_FORM
 ################## ADD_VALIDATE ##################################
 # called by add_form, used to insert/modify data in DB
 } elsif ($op eq 'add_validate') {
-       my $dbh=C4Connect;
-       my $query = "replace currency (currency,rate) values (";
-       $query.= $dbh->quote($input->param('currency')).",";
-       $query.= $dbh->quote($input->param('rate')).")";
-       my $sth=$dbh->prepare($query);
-       $sth->execute;
-       $sth->finish;
-       print "data recorded";
-       print "<form action='$script_name' method=post>";
-       print "<input type=submit value=OK>";
-       print "</form>";
+       $template->param(add_validate => 1);
+       my $check = $dbh->prepare("select * from currency where currency = ?");
+       $check->execute($input->param('currency'));
+       if ( $check->fetchrow ) {
+               my $sth = $dbh->prepare("UPDATE currency SET rate = ?, symbol = ?, timestamp = ? WHERE currency = ?");
+               $sth->execute($input->param('rate'),$input->param('symbol'),C4::Dates->new->output('iso'),$input->param('currency'));
+       } else {
+               my $sth = $dbh->prepare("INSERT INTO currency (currency, rate, symbol) VALUES (?,?,?)");
+               $sth->execute($input->param('currency'),$input->param('rate'),$input->param('symbol'));
+       }        
                                                                                                        # END $OP eq ADD_VALIDATE
 ################## DELETE_CONFIRM ##################################
 # called by default form, used to confirm deletion of data in DB
 } elsif ($op eq 'delete_confirm') {
-       my $dbh = &C4Connect;
-       my $sth=$dbh->prepare("select count(*) as total from aqbooksellers where currency='$searchfield'");
-       $sth->execute;
+       $template->param(delete_confirm => 1);
+       my $sth=$dbh->prepare("select count(*) as total from aqbooksellers where currency=?");
+       $sth->execute($searchfield);
        my $total = $sth->fetchrow_hashref;
-       $sth->finish;
-       my $sth=$dbh->prepare($reqsel);
-       $sth->execute;
-       my $data=$sth->fetchrow_hashref;
-       $sth->finish;
-       print mktablehdr;
-       print mktablerow(2,'#99cc33',bold('Currency'),bold("$searchfield"),'/images/background-mem.gif');
-       print "<form action='$script_name' method=post><input type=hidden name=op value=delete_confirmed><input type=hidden name=searchfield value='$searchfield'>";
-       print "<tr><td>Rate</td><td>$data->{'rate'}</td></tr>";
+       my $sth2=$dbh->prepare("select currency,rate from currency where currency=?");
+       $sth2->execute($searchfield);
+       my $data=$sth2->fetchrow_hashref;
+
        if ($total->{'total'} >0) {
-               print "<tr><td colspan=2 align=center><b>This record is used $total->{'total'} times. Deletion not possible</b></td></tr>";
-               print "<tr><td colspan=2></form><form action='$script_name' method=post><input type=submit value=OK></form></td></tr>";
-       } else {
-               print "<tr><td colspan=2 align=center>CONFIRM DELETION</td></tr>";
-               print "<tr><td><INPUT type=submit value='YES'></form></td><td><form action='$script_name' method=post><input type=submit value=NO></form></td></tr>";
+               $template->param(totalgtzero => 1);
        }
+
+       $template->param(rate => $data->{'rate'},
+                        total => $total);
                                                                                                        # END $OP eq DELETE_CONFIRM
 ################## DELETE_CONFIRMED ##################################
 # called by delete_confirm, used to effectively confirm deletion of data in DB
 } elsif ($op eq 'delete_confirmed') {
-       my $dbh=C4Connect;
-#      my $searchfield=$input->param('branchcode');
-       my $sth=$dbh->prepare($reqdel);
-       $sth->execute;
-       $sth->finish;
-       print "data deleted";
-       print "<form action='$script_name' method=post>";
-       print "<input type=submit value=OK>";
-       print "</form>";
+       $template->param(delete_confirmed => 1);
+       my $sth=$dbh->prepare("delete from currency where currency=?");
+       $sth->execute($searchfield);
                                                                                                        # END $OP eq DELETE_CONFIRMED
 ################## DEFAULT ##################################
 } else { # DEFAULT
-       my @inputs=(["text","searchfield",$searchfield],
-               ["reset","reset","clr"]);
-       print mkheadr(2,'Currencies admin');
-       print mkformnotable("$script_name",@inputs);
-       print <<printend
-
-printend
-       ;
-       if  ($searchfield ne '') {
-               print "You Searched for <b>$searchfield<b><p>";
-       }
-       print mktablehdr;
-       print mktablerow(4,'#99cc33',bold('Currency'),bold('Rate'),
-       '&nbsp;','&nbsp;','/images/background-mem.gif');
-       my $env;
-       my ($count,$results)=StringSearch($env,$searchfield,'web');
-       my $toggle="white";
+       $template->param(else => 1);
+
+       my $results = StringSearch($searchfield);
+    my $count = scalar(@$results);
+       my @loop;
        for (my $i=$offset; $i < ($offset+$pagesize<$count?$offset+$pagesize:$count); $i++){
-               #find out stats
-       #       my ($od,$issue,$fines)=categdata2($env,$results->[$i]{'borrowernumber'});
-       #       $fines=$fines+0;
-               if ($toggle eq 'white'){
-                       $toggle="#ffffcc";
-               } else {
-                       $toggle="white";
-               }
-               print mktablerow(4,$toggle,$results->[$i]{'currency'},$results->[$i]{'rate'},
-               mklink("$script_name?op=add_form&searchfield=".$results->[$i]{'currency'},'Edit'),
-               mklink("$script_name?op=delete_confirm&searchfield=".$results->[$i]{'currency'},'Delete'));
+        push @loop, {
+                       currency => $results->[$i]{'currency'},
+                           rate => $results->[$i]{'rate'},
+                         symbol => $results->[$i]{'symbol'},
+                  timestamp => format_date($results->[$i]{'timestamp'}),
+               };
        }
-       print mktableft;
-       print "<form action='$script_name' method=post>";
-       print "<input type=hidden name=op value=add_form>";
+       $template->param(loop => \@loop);
+
        if ($offset>0) {
-               my $prevpage = $offset-$pagesize;
-               print mklink("$script_name?offset=".$prevpage,'&lt;&lt; Prev');
+               $template->param(offsetgtzero => 1,
+                                prevpage => $offset-$pagesize);
        }
-       print "&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;";
-       if ($offset+$pagesize<$count) {
-               my $nextpage =$offset+$pagesize;
-               print mklink("$script_name?offset=".$nextpage,'Next &gt;&gt;');
+
+       if ($offset+$pagesize < scalar @$results) {
+               $template->param(ltcount => 1,
+                                nextpage => $offset+$pagesize);
        }
-       print "<br><input type=image src=\"/images/button-add-new.gif\"  WIDTH=188  HEIGHT=44  ALT=\"Add budget\" BORDER=0 ></a><br>";
-       print "</form>";
 } #---- END $OP eq DEFAULT
-print endmenu('admin');
-print endpage();
+output_html_with_http_headers $input, $cookie, $template->output;
+