engelsystem/includes/pages/user_atom.php

55 lines
1.9 KiB
PHP
Raw Normal View History

2012-12-26 20:39:54 +01:00
<?php
// publically available page to feed the news to feedreaders
function user_atom() {
2016-08-21 18:00:24 +02:00
global $user, $DISPLAY_NEWS;
2016-08-22 19:23:23 +02:00
if (! isset($_REQUEST['key']) || ! preg_match("/^[0-9a-f]{32}$/", $_REQUEST['key'])) {
engelsystem_error("Missing key.");
}
2016-08-22 19:23:23 +02:00
$key = $_REQUEST['key'];
$user = User_by_api_key($key);
if ($user === false) {
engelsystem_error("Unable to find user.");
}
if ($user == null) {
engelsystem_error("Key invalid.");
}
if (! in_array('atom', privileges_for_user($user['UID']))) {
engelsystem_error("No privilege for atom.");
}
$news = sql_select("SELECT * FROM `News` " . (empty($_REQUEST['meetings']) ? '' : 'WHERE `Treffen` = 1 ') . "ORDER BY `ID` DESC LIMIT " . sql_escape($DISPLAY_NEWS));
$output = make_atom_entries_from_news($news);
2012-12-26 20:39:54 +01:00
header('Content-Type: application/atom+xml; charset=utf-8');
header("Content-Length: " . strlen($output));
2016-08-22 19:23:23 +02:00
raw_output($output);
}
function make_atom_entries_from_news($news_entries) {
2012-12-26 20:39:54 +01:00
$html = '<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
2012-12-26 20:39:54 +01:00
<title>Engelsystem</title>
<id>' . $_SERVER['HTTP_HOST'] . htmlspecialchars(preg_replace('#[&?]key=[a-f0-9]{32}#', '', $_SERVER['REQUEST_URI'])) . '</id>
2016-08-22 19:32:54 +02:00
<updated>' . date('Y-m-d\TH:i:sP', $news_entries[0]['Datum']) . "</updated>\n";
foreach ($news_entries as $news_entry) {
$html .= make_atom_entry_from_news($news_entry);
}
$html .= "</feed>";
return $html;
}
function make_atom_entry_from_news($news_entry) {
return " <entry>
2012-12-26 20:39:54 +01:00
<title>" . htmlspecialchars($news_entry['Betreff']) . "</title>
<link href=\"" . page_link_to_absolute("news_comments&amp;nid=") . "${news_entry['ID']}\"/>
<id>" . preg_replace('#^https?://#', '', page_link_to_absolute("news")) . "-${news_entry['ID']}</id>
<updated>" . date('Y-m-d\TH:i:sP', $news_entry['Datum']) . "</updated>
2012-12-26 20:39:54 +01:00
<summary type=\"html\">" . htmlspecialchars($news_entry['Text']) . "</summary>
</entry>\n";
}
2012-12-26 20:39:54 +01:00
?>