[ Index ]

PHP Cross Reference of MantisBT

title

Body

[close]

/ -> manage_user_reset.php (source)

   1  <?php
   2  # MantisBT - A PHP based bugtracking system
   3  
   4  # MantisBT is free software: you can redistribute it and/or modify
   5  # it under the terms of the GNU General Public License as published by
   6  # the Free Software Foundation, either version 2 of the License, or
   7  # (at your option) any later version.
   8  #
   9  # MantisBT is distributed in the hope that it will be useful,
  10  # but WITHOUT ANY WARRANTY; without even the implied warranty of
  11  # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
  12  # GNU General Public License for more details.
  13  #
  14  # You should have received a copy of the GNU General Public License
  15  # along with MantisBT.  If not, see <http://www.gnu.org/licenses/>.
  16  
  17  /**
  18   * @package MantisBT
  19   * @copyright Copyright (C) 2000 - 2002  Kenzaburo Ito - kenito@300baud.org
  20   * @copyright Copyright (C) 2002 - 2011  MantisBT Team - mantisbt-dev@lists.sourceforge.net
  21   * @link http://www.mantisbt.org
  22   *
  23   * @uses core.php
  24   * @uses access_api.php
  25   * @uses authentication_api.php
  26   * @uses config_api.php
  27   * @uses constant_inc.php
  28   * @uses form_api.php
  29   * @uses gpc_api.php
  30   * @uses html_api.php
  31   * @uses lang_api.php
  32   * @uses print_api.php
  33   * @uses user_api.php
  34   */
  35  
  36  /**
  37   * MantisBT Core API's
  38   */
  39  require_once ( 'core.php' );
  40  require_api( 'access_api.php' );
  41  require_api( 'authentication_api.php' );
  42  require_api( 'config_api.php' );
  43  require_api( 'constant_inc.php' );
  44  require_api( 'form_api.php' );
  45  require_api( 'gpc_api.php' );
  46  require_api( 'html_api.php' );
  47  require_api( 'lang_api.php' );
  48  require_api( 'print_api.php' );
  49  require_api( 'user_api.php' );
  50  
  51  form_security_validate('manage_user_reset');
  52  
  53  auth_reauthenticate();
  54  access_ensure_global_level( config_get( 'manage_user_threshold' ) );
  55  
  56  $f_user_id = gpc_get_int( 'user_id' );
  57  
  58  user_ensure_exists( $f_user_id );
  59  
  60  $t_user = user_get_row( $f_user_id );
  61  
  62  # Ensure that the account to be reset is of equal or lower access to the
  63  # current user.
  64  access_ensure_global_level( $t_user['access_level'] );
  65  
  66  $t_result = user_reset_password( $f_user_id );
  67  $t_redirect_url = 'manage_user_page.php';
  68  
  69  form_security_purge('manage_user_reset');
  70  
  71  html_page_top( null, $t_result ? $t_redirect_url : null );
  72  
  73  echo '<br />';
  74  echo '<div>';
  75  
  76  if ( false == $t_result ) {
  77      # PROTECTED
  78      echo lang_get( 'account_reset_protected_msg' ) . '<br />';
  79  } else {
  80      # SUCCESS
  81      if ( ( ON == config_get( 'send_reset_password' ) ) && ( ON == config_get( 'enable_email_notification' ) ) ) {
  82          # send the new random password via email
  83          echo lang_get( 'account_reset_msg' ) . '<br />';
  84      } else {
  85          # email notification disabled, then set the password to blank
  86          echo lang_get( 'account_reset_msg2' ) . '<br />';
  87      }
  88  }
  89  
  90  print_bracket_link( $t_redirect_url, lang_get( 'proceed' ) );
  91  echo '</div>';
  92  html_page_bottom();


Generated: Thu Jul 28 15:48:31 2011 Cross-referenced by PHPXref 0.7