Bug 9827: remove 'insecure' system preference
[koha.git] / serials / subscription-add.pl
1 #!/usr/bin/perl
2
3 # This file is part of Koha.
4 #
5 # Koha is free software; you can redistribute it and/or modify it under the
6 # terms of the GNU General Public License as published by the Free Software
7 # Foundation; either version 2 of the License, or (at your option) any later
8 # version.
9 #
10 # Koha is distributed in the hope that it will be useful, but WITHOUT ANY
11 # WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR
12 # A PARTICULAR PURPOSE.  See the GNU General Public License for more details.
13 #
14 # You should have received a copy of the GNU General Public License along
15 # with Koha; if not, write to the Free Software Foundation, Inc.,
16 # 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
17
18 use strict;
19 use warnings;
20
21 use CGI;
22 use Date::Calc qw(Today Day_of_Year Week_of_Year Add_Delta_Days);
23 use C4::Koha;
24 use C4::Biblio;
25 use C4::Auth;
26 use C4::Dates qw/format_date format_date_in_iso/;
27 use C4::Acquisition;
28 use C4::Output;
29 use C4::Context;
30 use C4::Branch; # GetBranches
31 use C4::Serials;
32 use C4::Letters;
33 use Carp;
34
35 #use Smart::Comments;
36
37 our $query = CGI->new;
38 my $op = $query->param('op') || '';
39 my $dbh = C4::Context->dbh;
40 my $sub_length;
41
42 my @budgets;
43
44 # Permission needed if it is a modification : edit_subscription
45 # Permission needed otherwise (nothing or dup) : create_subscription
46 my $permission = ($op eq "modify") ? "edit_subscription" : "create_subscription";
47
48 my ($template, $loggedinuser, $cookie)
49 = get_template_and_user({template_name => "serials/subscription-add.tmpl",
50                                 query => $query,
51                                 type => "intranet",
52                                 authnotrequired => 0,
53                                 flagsrequired => {serials => $permission},
54                                 debug => 1,
55                                 });
56
57
58
59 my $sub_on;
60 my @subscription_types = (
61             'issues', 'weeks', 'months'
62         );
63 my @sub_type_data;
64
65 my $subs;
66 our $firstissuedate;
67
68 if ($op eq 'modify' || $op eq 'dup' || $op eq 'modsubscription') {
69
70     my $subscriptionid = $query->param('subscriptionid');
71     $subs = GetSubscription($subscriptionid);
72 ## FIXME : Check rights to edit if mod. Could/Should display an error message.
73     if ($subs->{'cannotedit'} && $op eq 'modify'){
74       carp "Attempt to modify subscription $subscriptionid by ".C4::Context->userenv->{'id'}." not allowed";
75       print $query->redirect("/cgi-bin/koha/serials/subscription-detail.pl?subscriptionid=$subscriptionid");
76     }
77     $firstissuedate = $subs->{firstacquidate} || '';  # in iso format.
78     for (qw(startdate firstacquidate histstartdate enddate histenddate)) {
79         next unless defined $subs->{$_};
80         # TODO : Handle date formats properly.
81          if ($subs->{$_} eq '0000-00-00') {
82             $subs->{$_} = ''
83         } else {
84             $subs->{$_} = format_date($subs->{$_});
85         }
86           }
87       if (!defined $subs->{letter}) {
88           $subs->{letter}= q{};
89       }
90     letter_loop($subs->{'letter'}, $template);
91     my $nextexpected = GetNextExpected($subscriptionid);
92     $nextexpected->{'isfirstissue'} = $nextexpected->{planneddate}->output('iso') eq $firstissuedate ;
93     $subs->{nextacquidate} = $nextexpected->{planneddate}->output()  if($op eq 'modify');
94     unless($op eq 'modsubscription') {
95         foreach my $length_unit (qw(numberlength weeklength monthlength)) {
96                         if ($subs->{$length_unit}){
97                                 $sub_length=$subs->{$length_unit};
98                                 $sub_on=$length_unit;
99                                 last;
100                         }
101                 }
102
103         $template->param( %{$subs} );
104         $template->param("dow".$subs->{'dow'} => 1) if defined $subs->{'dow'};
105         $template->param(
106                     $op => 1,
107                     "subtype_$sub_on" => 1,
108                     sublength =>$sub_length,
109                     history => ($op eq 'modify'),
110                     "periodicity".$subs->{'periodicity'} => 1,
111                     "numberpattern".$subs->{'numberpattern'} => 1,
112                     firstacquiyear => substr($firstissuedate,0,4),
113                     );
114     }
115
116     if ( $op eq 'dup' ) {
117         my $dont_copy_fields = C4::Context->preference('SubscriptionDuplicateDroppedInput');
118         my @fields_id = map { fieldid => $_ }, split '\|', $dont_copy_fields;
119         $template->param( dont_export_field_loop => \@fields_id );
120     }
121 }
122
123 my $onlymine=C4::Context->preference('IndependantBranches') &&
124              C4::Context->userenv &&
125              C4::Context->userenv->{flags} % 2 !=1 &&
126              C4::Context->userenv->{branch};
127 my $branches = GetBranches($onlymine);
128 my $branchloop;
129 for my $thisbranch (sort { $branches->{$a}->{branchname} cmp $branches->{$b}->{branchname} } keys %{$branches}) {
130     my $selected = 0;
131     $selected = 1 if (defined($subs) && $thisbranch eq $subs->{'branchcode'});
132     push @{$branchloop}, {
133         value => $thisbranch,
134         selected => $selected,
135         branchname => $branches->{$thisbranch}->{'branchname'},
136     };
137 }
138
139 my $locations_loop = GetAuthorisedValues("LOC",$subs->{'location'});
140
141 $template->param(branchloop => $branchloop,
142     locations_loop=>$locations_loop,
143 );
144 # prepare template variables common to all $op conditions:
145 if ($op!~/^mod/) {
146     letter_loop(q{}, $template);
147 }
148
149 if ($op eq 'addsubscription') {
150     redirect_add_subscription();
151 } elsif ($op eq 'modsubscription') {
152     redirect_mod_subscription();
153 } else {
154         while (@subscription_types) {
155            my $sub_type = shift @subscription_types;
156            my %row = ( 'name' => $sub_type );
157            if ( defined $sub_on and $sub_on eq $sub_type ) {
158              $row{'selected'} = ' selected';
159            } else {
160              $row{'selected'} = '';
161            }
162            push( @sub_type_data, \%row );
163         }
164     $template->param(subtype => \@sub_type_data);
165
166     letter_loop( '', $template ) if ($op ne 'modsubscription' && $op ne 'dup' && $op ne 'modify');
167
168     my $new_biblionumber = $query->param('biblionumber_for_new_subscription');
169     if (defined $new_biblionumber) {
170         my $bib = GetBiblioData($new_biblionumber);
171         if (defined $bib) {
172             $template->param(bibnum      => $new_biblionumber);
173             $template->param(bibliotitle => $bib->{title});
174         }
175     }
176         $template->param((uc(C4::Context->preference("marcflavour"))) => 1);
177         output_html_with_http_headers $query, $cookie, $template->output;
178 }
179
180 sub letter_loop {
181     my ($selected_letter, $templte) = @_;
182     my $letters = GetLetters('serial');
183     my $letterloop;
184     foreach my $thisletter (keys %{$letters}) {
185         push @{$letterloop}, {
186             value => $thisletter,
187             selected => $thisletter eq $selected_letter,
188             lettername => $letters->{$thisletter},
189         };
190     }
191     $templte->param(letterloop => $letterloop);
192     return;
193 }
194
195 sub _get_sub_length {
196     my ($type, $length) = @_;
197     return
198         (
199             $type eq 'numberlength' ? $length : 0,
200             $type eq 'weeklength'   ? $length : 0,
201             $type eq 'monthlength'  ? $length : 0,
202         );
203 }
204
205 sub redirect_add_subscription {
206     my $auser          = $query->param('user');
207     my $branchcode     = $query->param('branchcode');
208     my $aqbooksellerid = $query->param('aqbooksellerid');
209     my $cost           = $query->param('cost');
210     my $aqbudgetid     = $query->param('aqbudgetid');
211     my $periodicity    = $query->param('periodicity');
212     my $dow            = $query->param('dow');
213     my @irregularity   = $query->param('irregularity_select');
214     my $numberpattern  = $query->param('numbering_pattern');
215     my $graceperiod    = $query->param('graceperiod') || 0;
216
217     my ( $numberlength, $weeklength, $monthlength )
218         = _get_sub_length( $query->param('subtype'), $query->param('sublength') );
219     my $add1              = $query->param('add1');
220     my $every1            = $query->param('every1');
221     my $whenmorethan1     = $query->param('whenmorethan1');
222     my $setto1            = $query->param('setto1');
223     my $lastvalue1        = $query->param('lastvalue1');
224     my $innerloop1        = $query->param('innerloop1');
225     my $add2              = $query->param('add2');
226     my $every2            = $query->param('every2');
227     my $whenmorethan2     = $query->param('whenmorethan2');
228     my $setto2            = $query->param('setto2');
229     my $innerloop2        = $query->param('innerloop2');
230     my $lastvalue2        = $query->param('lastvalue2');
231     my $add3              = $query->param('add3');
232     my $every3            = $query->param('every3');
233     my $whenmorethan3     = $query->param('whenmorethan3');
234     my $setto3            = $query->param('setto3');
235     my $lastvalue3        = $query->param('lastvalue3');
236     my $innerloop3        = $query->param('innerloop3');
237     my $numberingmethod   = $query->param('numberingmethod');
238     my $status            = 1;
239     my $biblionumber      = $query->param('biblionumber');
240     my $callnumber        = $query->param('callnumber');
241     my $notes             = $query->param('notes');
242     my $internalnotes     = $query->param('internalnotes');
243     my $hemisphere        = $query->param('hemisphere') || 1;
244     my $letter            = $query->param('letter');
245     my $manualhistory     = $query->param('manualhist');
246     my $serialsadditems   = $query->param('serialsadditems');
247     my $staffdisplaycount = $query->param('staffdisplaycount');
248     my $opacdisplaycount  = $query->param('opacdisplaycount');
249     my $location          = $query->param('location');
250     my $startdate = format_date_in_iso( $query->param('startdate') );
251     my $enddate = format_date_in_iso( $query->param('enddate') );
252     my $firstacquidate  = format_date_in_iso($query->param('firstacquidate'));
253     my $histenddate = format_date_in_iso($query->param('histenddate'));
254     my $histstartdate = format_date_in_iso($query->param('histstartdate'));
255     my $recievedlist = $query->param('recievedlist');
256     my $missinglist = $query->param('missinglist');
257     my $opacnote = $query->param('opacnote');
258     my $librariannote = $query->param('librariannote');
259         my $subscriptionid = NewSubscription($auser,$branchcode,$aqbooksellerid,$cost,$aqbudgetid,$biblionumber,
260                                         $startdate,$periodicity,$dow,$numberlength,$weeklength,$monthlength,
261                                         $add1,$every1,$whenmorethan1,$setto1,$lastvalue1,$innerloop1,
262                                         $add2,$every2,$whenmorethan2,$setto2,$lastvalue2,$innerloop2,
263                                         $add3,$every3,$whenmorethan3,$setto3,$lastvalue3,$innerloop3,
264                                         $numberingmethod, $status, $notes,$letter,$firstacquidate,join(",",@irregularity),
265                     $numberpattern, $callnumber, $hemisphere,($manualhistory?$manualhistory:0),$internalnotes,
266                     $serialsadditems,$staffdisplaycount,$opacdisplaycount,$graceperiod,$location,$enddate
267                                 );
268     ModSubscriptionHistory ($subscriptionid,$histstartdate,$histenddate,$recievedlist,$missinglist,$opacnote,$librariannote);
269
270     print $query->redirect("/cgi-bin/koha/serials/subscription-detail.pl?subscriptionid=$subscriptionid");
271     return;
272 }
273
274 sub redirect_mod_subscription {
275     my $subscriptionid = $query->param('subscriptionid');
276           my @irregularity = $query->param('irregularity_select');
277     my $auser = $query->param('user');
278     my $librarian => $query->param('librarian'),
279     my $branchcode = $query->param('branchcode');
280     my $cost = $query->param('cost');
281     my $aqbooksellerid = $query->param('aqbooksellerid');
282     my $biblionumber = $query->param('biblionumber');
283     my $aqbudgetid = $query->param('aqbudgetid');
284     my $startdate = format_date_in_iso($query->param('startdate'));
285     my $nextacquidate = $query->param('nextacquidate') ?
286                             format_date_in_iso($query->param('nextacquidate')):
287                             format_date_in_iso($query->param('startdate'));
288     my $enddate = format_date_in_iso($query->param('enddate'));
289     my $periodicity = $query->param('periodicity');
290     my $dow = $query->param('dow');
291
292     my ($numberlength, $weeklength, $monthlength)
293         = _get_sub_length( $query->param('subtype'), $query->param('sublength') );
294     my $numberpattern = $query->param('numbering_pattern');
295     my $add1 = $query->param('add1');
296     my $every1 = $query->param('every1');
297     my $whenmorethan1 = $query->param('whenmorethan1');
298     my $setto1 = $query->param('setto1');
299     my $lastvalue1 = $query->param('lastvalue1');
300     my $innerloop1 = $query->param('innerloop1');
301     my $add2 = $query->param('add2');
302     my $every2 = $query->param('every2');
303     my $whenmorethan2 = $query->param('whenmorethan2');
304     my $setto2 = $query->param('setto2');
305     my $lastvalue2 = $query->param('lastvalue2');
306     my $innerloop2 = $query->param('innerloop2');
307     my $add3 = $query->param('add3');
308     my $every3 = $query->param('every3');
309     my $whenmorethan3 = $query->param('whenmorethan3');
310     my $setto3 = $query->param('setto3');
311     my $lastvalue3 = $query->param('lastvalue3');
312     my $innerloop3 = $query->param('innerloop3');
313     my $numberingmethod = $query->param('numberingmethod');
314     my $status = 1;
315     my $callnumber = $query->param('callnumber');
316     my $notes = $query->param('notes');
317     my $internalnotes = $query->param('internalnotes');
318     my $hemisphere = $query->param('hemisphere');
319     my $letter = $query->param('letter');
320     my $manualhistory = $query->param('manualhist');
321     my $serialsadditems = $query->param('serialsadditems');
322     # subscription history
323     my $histenddate = format_date_in_iso($query->param('histenddate'));
324     my $histstartdate = format_date_in_iso($query->param('histstartdate'));
325     my $recievedlist = $query->param('recievedlist');
326     my $missinglist = $query->param('missinglist');
327     my $opacnote = $query->param('opacnote');
328     my $librariannote = $query->param('librariannote');
329         my $staffdisplaycount = $query->param('staffdisplaycount');
330         my $opacdisplaycount = $query->param('opacdisplaycount');
331     my $graceperiod     = $query->param('graceperiod') || 0;
332     my $location = $query->param('location');
333     my $nextexpected = GetNextExpected($subscriptionid);
334         #  If it's  a mod, we need to check the current 'expected' issue, and mod it in the serials table if necessary.
335     if ( $nextacquidate ne $nextexpected->{planneddate}->output('iso') ) {
336         ModNextExpected($subscriptionid,C4::Dates->new($nextacquidate,'iso'));
337         # if we have not received any issues yet, then we also must change the firstacquidate for the subs.
338         $firstissuedate = $nextacquidate if($nextexpected->{isfirstissue});
339     }
340
341         ModSubscription(
342             $auser,           $branchcode,   $aqbooksellerid, $cost,
343             $aqbudgetid,      $startdate,    $periodicity,    $firstissuedate,
344             $dow,             join(q{,},@irregularity), $numberpattern,  $numberlength,
345             $weeklength,      $monthlength,  $add1,           $every1,
346             $whenmorethan1,   $setto1,       $lastvalue1,     $innerloop1,
347             $add2,            $every2,       $whenmorethan2,  $setto2,
348             $lastvalue2,      $innerloop2,   $add3,           $every3,
349             $whenmorethan3,   $setto3,       $lastvalue3,     $innerloop3,
350             $numberingmethod, $status,       $biblionumber,   $callnumber,
351             $notes,           $letter,       $hemisphere,     $manualhistory,$internalnotes,
352             $serialsadditems, $staffdisplaycount,$opacdisplaycount,$graceperiod,$location,$enddate,$subscriptionid
353         );
354         ModSubscriptionHistory ($subscriptionid,$histstartdate,$histenddate,$recievedlist,$missinglist,$opacnote,$librariannote);
355     print $query->redirect("/cgi-bin/koha/serials/subscription-detail.pl?subscriptionid=$subscriptionid");
356     return;
357 }