server/lib/private/ocs/privatedata.php

112 lines
3.8 KiB
PHP
Raw Normal View History

2012-07-30 12:42:18 +00:00
<?php
/**
2015-03-26 10:44:34 +00:00
* @author Andreas Fischer <bantu@owncloud.com>
* @author Bart Visscher <bartv@thisnet.nl>
* @author Frank Karlitschek <frank@owncloud.org>
2015-10-05 18:54:56 +00:00
* @author Lukas Reschke <lukas@owncloud.com>
2015-03-26 10:44:34 +00:00
* @author Morris Jobke <hey@morrisjobke.de>
* @author Thomas Müller <thomas.mueller@tmit.eu>
* @author Tom Needham <tom@owncloud.com>
*
2016-01-12 14:02:16 +00:00
* @copyright Copyright (c) 2016, ownCloud, Inc.
2015-03-26 10:44:34 +00:00
* @license AGPL-3.0
*
* This code is free software: you can redistribute it and/or modify
* it under the terms of the GNU Affero General Public License, version 3,
* as published by the Free Software Foundation.
*
* This program is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU Affero General Public License for more details.
*
* You should have received a copy of the GNU Affero General Public License, version 3,
* along with this program. If not, see <http://www.gnu.org/licenses/>
*
*/
2012-07-30 12:42:18 +00:00
class OC_OCS_Privatedata {
2013-10-30 18:36:29 +00:00
/**
* read keys
* test: curl http://login:passwd@oc/core/ocs/v1.php/privatedata/getattribute/testy/123
* test: curl http://login:passwd@oc/core/ocs/v1.php/privatedata/getattribute/testy
* @param array $parameters The OCS parameter
* @return \OC_OCS_Result
*/
public static function get($parameters) {
2012-07-30 19:13:29 +00:00
$user = OC_User::getUser();
$app = addslashes(strip_tags($parameters['app']));
2013-10-31 09:24:28 +00:00
$key = isset($parameters['key']) ? addslashes(strip_tags($parameters['key'])) : null;
2013-10-30 18:36:29 +00:00
if(empty($key)) {
$query = \OCP\DB::prepare('SELECT `key`, `app`, `value` FROM `*PREFIX*privatedata` WHERE `user` = ? AND `app` = ? ');
$result = $query->execute(array($user, $app));
} else {
$query = \OCP\DB::prepare('SELECT `key`, `app`, `value` FROM `*PREFIX*privatedata` WHERE `user` = ? AND `app` = ? AND `key` = ? ');
$result = $query->execute(array($user, $app, $key));
}
$xml = array();
2013-10-30 18:36:29 +00:00
while ($row = $result->fetchRow()) {
$data=array();
$data['key']=$row['key'];
$data['app']=$row['app'];
$data['value']=$row['value'];
$xml[] = $data;
2012-07-30 12:42:18 +00:00
}
2013-10-30 18:36:29 +00:00
return new OC_OCS_Result($xml);
2012-07-30 12:42:18 +00:00
}
2013-01-14 19:30:39 +00:00
2013-10-30 18:36:29 +00:00
/**
* set a key
* test: curl http://login:passwd@oc/core/ocs/v1.php/privatedata/setattribute/testy/123 --data "value=foobar"
* @param array $parameters The OCS parameter
* @return \OC_OCS_Result
*/
public static function set($parameters) {
2012-07-31 20:19:11 +00:00
$user = OC_User::getUser();
$app = addslashes(strip_tags($parameters['app']));
$key = addslashes(strip_tags($parameters['key']));
$value = (string)$_POST['value'];
2013-10-30 18:36:29 +00:00
// update in DB
$query = \OCP\DB::prepare('UPDATE `*PREFIX*privatedata` SET `value` = ? WHERE `user` = ? AND `app` = ? AND `key` = ?');
$numRows = $query->execute(array($value, $user, $app, $key));
2013-10-30 18:36:29 +00:00
if ($numRows === false || $numRows === 0) {
2013-10-30 18:36:29 +00:00
// store in DB
$query = \OCP\DB::prepare('INSERT INTO `*PREFIX*privatedata` (`user`, `app`, `key`, `value`)' . ' VALUES(?, ?, ?, ?)');
$query->execute(array($user, $app, $key, $value));
2012-07-30 12:42:18 +00:00
}
2013-10-30 18:36:29 +00:00
return new OC_OCS_Result(null, 100);
2012-07-30 12:42:18 +00:00
}
2013-01-14 19:30:39 +00:00
2013-10-30 18:36:29 +00:00
/**
* delete a key
* test: curl http://login:passwd@oc/core/ocs/v1.php/privatedata/deleteattribute/testy/123 --data "post=1"
* @param array $parameters The OCS parameter
* @return \OC_OCS_Result
*/
public static function delete($parameters) {
2012-07-31 20:19:11 +00:00
$user = OC_User::getUser();
2013-10-31 09:24:28 +00:00
if (!isset($parameters['app']) or !isset($parameters['key'])) {
//key and app are NOT optional here
return new OC_OCS_Result(null, 101);
}
2012-07-31 20:19:11 +00:00
$app = addslashes(strip_tags($parameters['app']));
$key = addslashes(strip_tags($parameters['key']));
2013-10-31 09:24:28 +00:00
2013-10-30 18:36:29 +00:00
// delete in DB
$query = \OCP\DB::prepare('DELETE FROM `*PREFIX*privatedata` WHERE `user` = ? AND `app` = ? AND `key` = ? ');
$query->execute(array($user, $app, $key ));
return new OC_OCS_Result(null, 100);
2012-07-30 12:42:18 +00:00
}
}
2013-10-30 18:36:29 +00:00