X-Git-Url: http://git.rot13.org/?a=blobdiff_plain;f=members%2Fmember-password.pl;h=85e4b976ec03f8b025093bcda6fa026a6a164998;hb=7a58f14bfc4e774033e215ffe1cd54caf206a3b5;hp=0fefe4fa670d2818f53b1d49dcb019531d2aaaf1;hpb=7aa3a055914d4c8757455898208848619f5aaec5;p=koha.git diff --git a/members/member-password.pl b/members/member-password.pl index 0fefe4fa67..85e4b976ec 100755 --- a/members/member-password.pl +++ b/members/member-password.pl @@ -8,118 +8,146 @@ use strict; use warnings; use C4::Auth; +use Koha::AuthUtils; use C4::Output; use C4::Context; use C4::Members; use C4::Branch; use C4::Circulation; -use CGI; +use CGI qw ( -utf8 ); +use C4::Members::Attributes qw(GetBorrowerAttributes); +use Koha::Patron::Images; use Digest::MD5 qw(md5_base64); my $input = new CGI; my $theme = $input->param('theme') || "default"; - # only used if allowthemeoverride is set -my ($template, $loggedinuser, $cookie, $staffflags) - = get_template_and_user({template_name => "members/member-password.tmpl", - query => $input, - type => "intranet", - authnotrequired => 0, - flagsrequired => {borrowers => 1}, - debug => 1, - }); +# only used if allowthemeoverride is set -my $flagsrequired; -$flagsrequired->{borrowers}=1; +my ( $template, $loggedinuser, $cookie, $staffflags ) = get_template_and_user( + { + template_name => "members/member-password.tt", + query => $input, + type => "intranet", + authnotrequired => 0, + flagsrequired => { borrowers => 1 }, + debug => 1, + } +); -#my ($loggedinuser, $cookie, $sessionID) = checkauth($input, 0, $flagsrequired); +my $flagsrequired; +$flagsrequired->{borrowers} = 1; -my $member=$input->param('member'); -my $cardnumber = $input->param('cardnumber'); +my $member = $input->param('member'); +my $cardnumber = $input->param('cardnumber'); my $destination = $input->param('destination'); -my $errormsg; -my ($bor)=GetMember('borrowernumber' => $member); -if(( $member ne $loggedinuser ) && ($bor->{'category_type'} eq 'S' ) ) { - $errormsg = 'NOPERMISSION' unless($staffflags->{'superlibrarian'} || $staffflags->{'staffaccess'} ); - # need superlibrarian for koha-conf.xml fakeuser. +my $newpassword = $input->param('newpassword'); +my $newpassword2 = $input->param('newpassword2'); + +my @errors; + +my ($bor) = GetMember( 'borrowernumber' => $member ); + +if ( ( $member ne $loggedinuser ) && ( $bor->{'category_type'} eq 'S' ) ) { + push( @errors, 'NOPERMISSION' ) + unless ( $staffflags->{'superlibrarian'} || $staffflags->{'staffaccess'} ); + + # need superlibrarian for koha-conf.xml fakeuser. } -my $newpassword = $input->param('newpassword'); + +push( @errors, 'NOMATCH' ) if ( ( $newpassword && $newpassword2 ) && ( $newpassword ne $newpassword2 ) ); + my $minpw = C4::Context->preference('minPasswordLength'); -$errormsg = 'SHORTPASSWORD' if( $newpassword && $minpw && (length($newpassword) < $minpw ) ); - -if ( $newpassword && ! $errormsg ) { - my $digest=md5_base64($input->param('newpassword')); - my $uid = $input->param('newuserid'); - my $dbh=C4::Context->dbh; - if (changepassword($uid,$member,$digest)) { - $template->param(newpassword => $newpassword); - if ($destination eq 'circ') { - print $input->redirect("/cgi-bin/koha/circ/circulation.pl?findborrower=$cardnumber"); - } else { - print $input->redirect("/cgi-bin/koha/members/moremember.pl?borrowernumber=$member"); - } - } else { - $errormsg = 'BADUSERID'; - $template->param(othernames => $bor->{'othernames'}, - surname => $bor->{'surname'}, - firstname => $bor->{'firstname'}, - userid => $bor->{'userid'}, - defaultnewpassword => $newpassword - ); +push( @errors, 'SHORTPASSWORD' ) if ( $newpassword && $minpw && ( length($newpassword) < $minpw ) ); + +if ( $newpassword && !scalar(@errors) ) { + my $digest = Koha::AuthUtils::hash_password( $input->param('newpassword') ); + my $uid = $input->param('newuserid'); + my $dbh = C4::Context->dbh; + if ( changepassword( $uid, $member, $digest ) ) { + $template->param( newpassword => $newpassword ); + if ( $destination eq 'circ' ) { + print $input->redirect("/cgi-bin/koha/circ/circulation.pl?findborrower=$cardnumber"); + } + else { + print $input->redirect("/cgi-bin/koha/members/moremember.pl?borrowernumber=$member"); + } + } + else { + push( @errors, 'BADUSERID' ); } -} else { +} +else { my $userid = $bor->{'userid'}; - my $chars='abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789'; - my $length=int(rand(2))+C4::Context->preference("minPasswordLength"); - my $defaultnewpassword=''; - for (my $i=0; $i<$length; $i++) { - $defaultnewpassword.=substr($chars, int(rand(length($chars))),1); - } - - if ( $bor->{'category_type'} eq 'C') { - my ( $catcodes, $labels ) = GetborCatFromCatType( 'A', 'WHERE category_type = ?' ); - my $cnt = scalar(@$catcodes); - $template->param( 'CATCODE_MULTI' => 1) if $cnt > 1; - $template->param( 'catcode' => $catcodes->[0]) if $cnt == 1; + my $chars = 'abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789'; + my $length = int( rand(2) ) + C4::Context->preference("minPasswordLength"); + my $defaultnewpassword = ''; + for ( my $i = 0 ; $i < $length ; $i++ ) { + $defaultnewpassword .= substr( $chars, int( rand( length($chars) ) ), 1 ); } - + + $template->param( defaultnewpassword => $defaultnewpassword ); +} + +if ( $bor->{'category_type'} eq 'C' ) { + my ( $catcodes, $labels ) = GetborCatFromCatType( 'A', 'WHERE category_type = ?' ); + my $cnt = scalar(@$catcodes); + $template->param( 'CATCODE_MULTI' => 1 ) if $cnt > 1; + $template->param( 'catcode' => $catcodes->[0] ) if $cnt == 1; +} + $template->param( adultborrower => 1 ) if ( $bor->{'category_type'} eq 'A' ); -my ($picture, $dberror) = GetPatronImage($bor->{'cardnumber'}); -$template->param( picture => 1 ) if $picture; - - $template->param( othernames => $bor->{'othernames'}, - surname => $bor->{'surname'}, - firstname => $bor->{'firstname'}, - borrowernumber => $bor->{'borrowernumber'}, - cardnumber => $bor->{'cardnumber'}, - categorycode => $bor->{'categorycode'}, - category_type => $bor->{'category_type'}, - categoryname => $bor->{'description'}, - address => $bor->{'address'}, - address2 => $bor->{'address2'}, - city => $bor->{'city'}, - state => $bor->{'state'}, - zipcode => $bor->{'zipcode'}, - country => $bor->{'country'}, - phone => $bor->{'phone'}, - email => $bor->{'email'}, - branchcode => $bor->{'branchcode'}, - branchname => GetBranchName($bor->{'branchcode'}), - userid => $bor->{'userid'}, - destination => $destination, - is_child => ($bor->{'category_type'} eq 'C'), - defaultnewpassword => $defaultnewpassword - ); +my $patron_image = Koha::Patron::Images->find($bor->{borrowernumber}); +$template->param( picture => 1 ) if $patron_image; +if ( C4::Context->preference('ExtendedPatronAttributes') ) { + my $attributes = GetBorrowerAttributes( $bor->{'borrowernumber'} ); + $template->param( + ExtendedPatronAttributes => 1, + extendedattributes => $attributes + ); } -$template->param( member => $member, - errormsg => $errormsg, - $errormsg => 1 , - minPasswordLength => $minpw ); +$template->param( + othernames => $bor->{'othernames'}, + surname => $bor->{'surname'}, + firstname => $bor->{'firstname'}, + borrowernumber => $bor->{'borrowernumber'}, + cardnumber => $bor->{'cardnumber'}, + categorycode => $bor->{'categorycode'}, + category_type => $bor->{'category_type'}, + categoryname => $bor->{'description'}, + address => $bor->{address}, + address2 => $bor->{'address2'}, + streettype => $bor->{streettype}, + city => $bor->{'city'}, + state => $bor->{'state'}, + zipcode => $bor->{'zipcode'}, + country => $bor->{'country'}, + phone => $bor->{'phone'}, + phonepro => $bor->{'phonepro'}, + mobile => $bor->{'mobile'}, + email => $bor->{'email'}, + emailpro => $bor->{'emailpro'}, + branchcode => $bor->{'branchcode'}, + branchname => GetBranchName( $bor->{'branchcode'} ), + userid => $bor->{'userid'}, + destination => $destination, + is_child => ( $bor->{'category_type'} eq 'C' ), + activeBorrowerRelationship => ( C4::Context->preference('borrowerRelationship') ne '' ), + minPasswordLength => $minpw, + RoutingSerials => C4::Context->preference('RoutingSerials'), +); + +if ( scalar(@errors) ) { + $template->param( errormsg => 1 ); + foreach my $error (@errors) { + $template->param($error) || $template->param( $error => 1 ); + } +} output_html_with_http_headers $input, $cookie, $template->output;