You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

135 lines
5.5 KiB

  1. <?php
  2. if (!defined('IN_DZZ')) {
  3. exit('Access Denied');
  4. }
  5. global $_G;
  6. $uid = $_G['uid'];
  7. $do = isset($_GET['do']) ? trim($_GET['do']) : '';
  8. if ($do == 'filelist') {
  9. if (!$_G['uid']) {
  10. $errorResponse = [
  11. "code" => 1,
  12. "msg" => lang('no_login_operation'),
  13. "count" => 0,
  14. "data" => [],
  15. ];
  16. exit(json_encode($errorResponse));
  17. }
  18. $order = isset($_GET['order']) ? $_GET['order'] : 'DESC';
  19. $field = isset($_GET['sort']) ? $_GET['sort'] : 'dateline';
  20. $limit = empty($_GET['limit']) ? 50 : $_GET['limit'];
  21. $startdate = isset($_GET['startdate']) ? trim($_GET['startdate']) : '';
  22. $enddate = isset($_GET['enddate']) ? trim($_GET['enddate']) : '';
  23. $page = (isset($_GET['page'])) ? intval($_GET['page']) : 1;
  24. $start = ($page - 1) * $limit;
  25. $validfields = ['orgname', 'username', 'dateline'];
  26. $validSortOrders = ['asc', 'desc'];
  27. if (in_array($field, $validfields) && in_array($order, $validSortOrders)) {
  28. $order = " ORDER BY $field $order";
  29. } else {
  30. $order = ' ORDER BY dateline DESC';
  31. }
  32. $limitsql = "limit $start,$limit";
  33. $params = array('organization', 1);
  34. $wheresql = " where `type` = %d";
  35. //日期筛选
  36. if ($startdate) {
  37. $startdate = strtotime($startdate);
  38. $wheresql .= " and dateline > %d";
  39. $params[] = $startdate;
  40. }
  41. if ($enddate) {
  42. $enddate = strtotime($enddate);
  43. $wheresql .= " and dateline <= %d";
  44. $params[] = $enddate;
  45. }
  46. if (isset($_GET['search']) && $_GET['search'] && $_GET['search'] != 'all') {
  47. $search = $_GET['search'];
  48. $orgids = C::t('organization')->fetch_all_orgid();//获取所有有管理权限的部门
  49. if ($search == 'manage') {
  50. $myorgid = array();
  51. foreach (DB::fetch_all("select ou.orgid from %t ou
  52. left join %t o on ou.orgid= o.orgid
  53. where ou.uid = %d and ou.admintype = %d and o.type = %d", array('organization_admin', 'organization', $uid, 1, 1)) as $v) {
  54. $myorgid[] = $v['orgid'];
  55. }
  56. $wheresql .= " and orgid in(%n)";
  57. $params[] = $myorgid;
  58. } elseif ($search == 'partake') {
  59. $partorgids = array();
  60. //获取参与的群组
  61. foreach (DB::fetch_all("select u.orgid from %t u
  62. left join %t o on u.orgid= o.orgid
  63. where u.uid = %d and o.type = %d", array('organization_user', 'organization', $uid, 1, 1)) as $v) {
  64. $partorgids[] = $v['orgid'];
  65. }
  66. //获取管理的群组并排除
  67. foreach (DB::fetch_all("select ou.orgid from %t ou
  68. left join %t o on ou.orgid= o.orgid
  69. where ou.uid = %d and o.type = %d", array('organization_admin', 'organization', $uid, 1)) as $v) {
  70. if (in_array($v['orgid'], $partorgids)) {
  71. $index = array_search($v['orgid'], $partorgids);
  72. unset($partorgids[$index]);
  73. }
  74. }
  75. $wheresql .= " and orgid in(%n)";
  76. $params[] = $partorgids;
  77. } elseif ($search == 'my') {
  78. $myorgid = array();
  79. foreach (DB::fetch_all("select ou.orgid from %t ou
  80. left join %t o on ou.orgid= o.orgid
  81. where ou.uid = %d and ou.admintype = %d and o.type = %d", array('organization_admin', 'organization', $uid, 2, 1)) as $v) {
  82. $myorgid[] = $v['orgid'];
  83. }
  84. $wheresql .= " and orgid in(%n)";
  85. $params[] = $myorgid;
  86. }
  87. } else {
  88. $wheresql .= " and orgid in(%n)";
  89. //获取用户所在群组id
  90. $params[] = C::t('organization_user')->fetch_org_by_uid($uid, 1);
  91. }
  92. $list = array();
  93. $count = DB::result_first("select count(*) from %t $wheresql $order", $params);
  94. if ($count) {
  95. $explorer_setting = get_resources_some_setting();
  96. if ($explorer_setting['grouponperm']) {
  97. $groupdata = DB::fetch_all("select * from %t $wheresql $order $limitsql", $params);
  98. foreach ($groupdata as $v) {
  99. if ($v['syatemon'] == 0) {//系统管理员关闭群组
  100. continue;
  101. } elseif ($v['syatemon'] == 1 && $v['manageon'] == 0 && C::t('organization_admin')->chk_memberperm($v['orgid'], $uid) == 0) {//管理员关闭群组,当前用户不具备管理员权限
  102. continue;
  103. }
  104. $list[] = [
  105. "orgname" => avatar_group($v['orgid']).$v['orgname'],
  106. "orgid" => $v['orgid'],
  107. "usernum" => C::t('organization_user')->fetch_usernums_by_orgid($v['orgid']),
  108. "creater" => C::t('organization_admin')->fetch_group_creater($v['orgid']),
  109. "dateline" => dgmdate($v['dateline'], 'Y-m-d H:i:s'),
  110. ];
  111. }
  112. }
  113. }
  114. header('Content-Type: application/json');
  115. $return = [
  116. "code" => 0,
  117. "msg" => "",
  118. "count" => $count ? $count : 0,
  119. "data" => $list ? $list : [],
  120. ];
  121. $jsonReturn = json_encode($return);
  122. if ($jsonReturn === false) {
  123. $errorMessage = json_last_error_msg();
  124. $errorResponse = [
  125. "code" => 1,
  126. "msg" => "JSON 编码失败,请刷新重试: " . $errorMessage,
  127. "count" => 0,
  128. "data" => [],
  129. ];
  130. exit(json_encode($errorResponse));
  131. }
  132. exit($jsonReturn);
  133. } else {
  134. Hook::listen('check_login');
  135. require template('mygroup');
  136. }