Portions created by the Initial Developer are Copyright (C) 2016-2018 the Initial Developer. All Rights Reserved. Contributor(s): Mark J Crane */ //includes require_once "root.php"; require_once "resources/require.php"; require_once "resources/check_auth.php"; //check permissions if (permission_exists('message_view')) { //access granted } else { echo "access denied"; exit; } //add multi-lingual support $language = new text; $text = $language->get(); //get the action if (is_array($_POST["messages"])) { $messages = $_POST["messages"]; foreach($messages as $row) { if ($row['action'] == 'delete') { $action = 'delete'; break; } } } //delete the messages if (permission_exists('message_delete')) { if ($action == "delete") { //download $obj = new messages; $obj->delete($messages); //delete message message::add($text['message-delete']); } } //get variables used to control the order $order_by = check_str($_GET["order_by"]); $order = check_str($_GET["order"]); //add the search term $search = strtolower(check_str($_GET["search"])); if (strlen($search) > 0) { $sql_search = " ("; $sql_search .= "lower(message_type) like '%".$search."%' "; $sql_search .= "or lower(message_direction) like '%".$search."%' "; $sql_search .= "or lower(message_date) like '%".$search."%' "; $sql_search .= "or lower(message_from) like '%".$search."%' "; $sql_search .= "or lower(message_to) like '%".$search."%' "; $sql_search .= "or lower(message_text) like '%".$search."%' "; $sql_search .= "or lower(message_media_type) like '%".$search."%' "; $sql_search .= ") "; } //additional includes require_once "resources/header.php"; require_once "resources/paging.php"; //prepare to page the results $sql = "select count(message_uuid) as num_rows from v_messages "; if ($_GET['show'] == "all" && permission_exists('message_all')) { if (isset($sql_search)) { $sql .= "where ".$sql_search; } } else { $sql .= "where user_uuid = '".$_SESSION['user_uuid']."' "; $sql .= "and (domain_uuid = '".$domain_uuid."' or domain_uuid is null) "; if (isset($sql_search)) { $sql .= "and ".$sql_search; } } $prep_statement = $db->prepare($sql); if ($prep_statement) { $prep_statement->execute(); $row = $prep_statement->fetch(PDO::FETCH_ASSOC); if ($row['num_rows'] > 0) { $num_rows = $row['num_rows']; } else { $num_rows = '0'; } } //prepare to page the results $rows_per_page = ($_SESSION['domain']['paging']['numeric'] != '') ? $_SESSION['domain']['paging']['numeric'] : 50; $param = "&search=".$search; if ($_GET['show'] == "all" && permission_exists('message_all')) { $param .= "&show=all"; } $page = $_GET['page']; if (strlen($page) == 0) { $page = 0; $_GET['page'] = 0; } list($paging_controls, $rows_per_page, $var3) = paging($num_rows, $param, $rows_per_page); $offset = $rows_per_page * $page; //get the list $sql = "select * from v_messages "; if ($_GET['show'] == "all" && permission_exists('message_all')) { if (isset($sql_search)) { $sql .= "where ".$sql_search; } } else { $sql .= "where user_uuid = '".$_SESSION['user_uuid']."' "; $sql .= "and (domain_uuid = '".$domain_uuid."' or domain_uuid is null) "; if (isset($sql_search)) { $sql .= "and ".$sql_search; } } $sql .= "order by message_date desc "; $sql .= "limit $rows_per_page offset $offset "; $prep_statement = $db->prepare(check_sql($sql)); $prep_statement->execute(); $messages = $prep_statement->fetchAll(PDO::FETCH_NAMED); unset ($prep_statement, $sql); //alternate the row style $c = 0; $row_style["0"] = "row_style0"; $row_style["1"] = "row_style1"; //define the checkbox_toggle function echo "\n"; //show the content echo "\n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo "
".$text['title-message_log']."

\n"; echo " \n"; if (permission_exists('message_all')) { if ($_GET['show'] == 'all') { echo " "; } else { echo " \n"; } } echo " \n"; echo " \n"; echo "
\n"; echo "
\n"; echo "\n"; if (is_array($messages)) { $x = 0; foreach($messages as $row) { if ($x == 0) { echo " \n"; echo th_order_by('message_type', $text['label-message_type'], $order_by, $order); echo th_order_by('message_direction', $text['label-message_direction'], $order_by, $order); echo th_order_by('message_date', $text['label-message_date'], $order_by, $order); echo th_order_by('message_from', $text['label-message_from'], $order_by, $order); echo th_order_by('message_to', $text['label-message_to'], $order_by, $order); echo th_order_by('message_text', $text['label-message_text'], $order_by, $order); echo " \n"; echo "\n"; } if (permission_exists('message_edit')) { $tr_link = "href='message_edit.php?id=".escape($row['message_uuid'])."'"; } echo "\n"; //echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo "\n"; $x++; if ($c==0) { $c=1; } else { $c=0; } } //end foreach unset($sql, $messages); } //end if results echo "\n"; echo "\n"; echo "\n"; echo "
\n"; echo " \n"; echo " "; echo "  \n"; echo "
".escape($row['user_uuid'])." "; switch ($row['message_type']) { case 'sms': echo $text['label-sms']; break; case 'mms': echo $text['label-mms']; break; case 'chat': echo $text['label-chat']; break; } echo " "; switch ($row['message_direction']) { case "inbound": echo $text['label-inbound']; break; case "outbound": echo $text['label-outbound']; break; } echo " ".escape($row['message_date'])." ".escape(format_phone($row['message_from']))." ".escape(format_phone($row['message_to']))." ".escape($row['message_text'])." "; if (permission_exists('message_edit')) { echo "$v_link_label_edit"; } if (permission_exists('message_delete')) { echo "$v_link_label_delete"; } echo "
\n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo " \n"; echo "
 $paging_controls"; echo "  "; echo "
\n"; echo "
"; echo "
\n"; echo "

"; //include the footer require_once "resources/footer.php"; ?>