comment.module 67.3 KB
Newer Older
1
<?php
2
// $Id$
Dries's avatar
   
Dries committed
3

Dries's avatar
   
Dries committed
4
function comment_help($section = "admin/help#comment") {
Dries's avatar
   
Dries committed
5
6
7
  $output = "";

  switch ($section) {
Dries's avatar
   
Dries committed
8
    case 'admin/help#comment':
Dries's avatar
   
Dries committed
9
10
11
12
13
      $output = t("
      <p>When enabled, the Drupal comment module creates a discussion board for each Drupal node. Users can post comments to discuss a forum topic, weblog post, collaborative book page, etc.</p>
      <h3>User control of comment display</h3>
      <p>Attached to each comment board is a control panel for customizing the way that comments are displayed. Users can control the chronological ordering of posts (newest or oldest first) and the number of posts to display on each page. Additional settings include:</p>
      <ul>
14
      <li><strong>Threaded</strong> -- Displays the posts grouped according to conversations and subconversations, much like the subject view of an e-mail client.</li>
Dries's avatar
   
Dries committed
15
16
17
18
      <li><strong>Flat</strong> --  Displays the posts in chronological order, in the order in which they are posted.</li>
      <li><strong>Expanded</strong> -- Displays the title and text for each post.</li>
      <li><strong>Collapsed</strong> -- Displays only the title for each post.</li>
      </ul>
19
      <p>When a user chooses <em>save settings</em>, the comments are then redisplayed using the user's new choices. Administrators can set the default settings for the comment control panel, along with other comment defaults, in <a href=\"%comment-config\">administer &raquo; configuration &raquo; modules &raquo; comment</a>.</p>
Dries's avatar
   
Dries committed
20
      <p>NOTE: When comment moderation is enabled, users will have another control panel option to control thresholds (see below).</p>
Dries's avatar
   
Dries committed
21

Dries's avatar
   
Dries committed
22
      <h3>Additional comment configurations</h3>
23
      <p>Comments behave like other user submissions in Drupal. Filters, smileys and HTML that work in nodes will also work with content. To prevent a single user from spamming the web site with too many comments, administrators can set a comment throttle in <a href=\"%site-config\">administer &raquo; configuration</a> under <em>Submission settings</em>.</p>
Dries's avatar
   
Dries committed
24
25
26
27
28
29
30
31
32
      <p>Administrators can control access to various comment module functions through <a href=\"%user-permissions\">administer &raquo; accounts &raquo; permissions</a>. Know that in a new Drupal installation, all comment permissions are disabled by default. The choice of which permissions to grant to which roles (groups of users) is left up to the site administrator.</p>
      <p>The following permissions can be enabled for anonymous users, authenticated users, or any other user roles that the administrator chooses to define:</p>
      <ul>
      <li><strong>Access comments</strong> -- Allows users to view comments.</li>
      <li><strong>Administrate comments</strong> -- Allows users complete control over configuring, editing and deleting all comments on the site. Best reserved for <strong>very</strong> trusted users.</li>
      <li><strong>Moderate comments</strong> -- Allows users to rate comment postings (see more on moderation below).</li>
      <li><strong>Post comments</strong> -- Allows users to post comments into an administrator moderation queue. Administrators then post the comment to the site.</li>
      <li><strong>Post comments without approval</strong> -- Allows users to directly post comments. This bypasses the administrator moderation queue.</li>
      </ul>
Dries's avatar
   
Dries committed
33

Dries's avatar
   
Dries committed
34
35
36
37
      <h3>Notification of new comments</h3>
      <p>Drupal provides specific features to inform site members when new comments have been posted:</p>
      <ul>
      <li>On the home page, Drupal displays the total number of comments attached to each node, and tracks comments read by individual site members. Members which have logged in will see a notice accompanying nodes which contain comments that they have not read.</li>
38
39
      <li>The <em>tracker</em> module, disabled by default, displays all the site's recent posts.  There is a link to the <a href=\"%tracker\">recent posts</a> page in the navigation block.  This page is a useful way to browse new or updated nodes and comments. Content which the user has not yet read is tagged with a red star (this graphic depends on the current theme). Visit the comment board for any node, and Drupal will display a red <em>\"new\"</em> label beside the text of unread comments.</li>
      <li>Some administrators may want to <a href=\"%download-notify\">download</a>, install and configure the notify module. Users can then request that Drupal send them an e-mail when new comments are posted (the notify module requires that cron.php be configured properly).</li>
Dries's avatar
   
Dries committed
40
      </ul>
Dries's avatar
   
Dries committed
41

Dries's avatar
   
Dries committed
42
43
44
45
      <h3>Comment moderation</h3>
      <p>On sites with active commenting from users, the administrator can turn over comment moderation to the community. </p>
      <p>With comment moderation, each comment is automatically assigned an initial rating. As users read comments, they can apply a vote which affects the comment rating. At the same time, users have an additional option in the control panel which allows them to set a threshold for the comments they wish to view. Those comments with ratings lower than the set threshold will not be shown.</p>
      <p>To enable moderation, the administrator must grant <a href=\"%permission\">moderate comments</a> permissions. Then, a number of options in <a href=\"%comment-moderation\">administer &raquo; comments &raquo; moderation</a> must be configured.</p>
Dries's avatar
   
Dries committed
46

Dries's avatar
   
Dries committed
47
      <h4>Moderation votes</h4>
48
      <p>The first step is to create moderation labels which allow users to rate a comment.  Go to <a href=\"%comment-votes\">administer &raquo; comments &raquo; moderation &raquo; votes</a>. In the <em>vote</em> field, enter the textual labels which users will see when casting their votes. Some examples are</p>
Dries's avatar
   
Dries committed
49
50
51
52
53
54
55
56
57
58
      <ul>
      <li>Excellent +3</li>
      <li>Insightful +2</li>
      <li>Caught My Attention +1</li>
      <li>Useful +1</li>
      <li>Redundant -1</li>
      <li>Flame -3</li>
      </ul>
      <p>So that users know how their votes affect the comment, these examples include the vote value as part of the label, although that is optional.</p>
      <p>Using the weight option, you can control the order in which the votes appear to users. Setting the weight heavier (positive numbers) will make the vote label appear at the bottom of the list. Lighter (a negative number) will push it to the top. To encourage positive voting, a useful order might be higher values, positive votes, at the top, with negative votes at the bottom.</p>
Dries's avatar
   
Dries committed
59

Dries's avatar
   
Dries committed
60
      <h4>Moderator vote/values matrix</h4>
Dries's avatar
   
Dries committed
61

Dries's avatar
   
Dries committed
62
63
64
65
      <p>Next go to <a href=\"%comment-matrix\">administer &raquo; comments &raquo; moderation &raquo; matrix</a>. Enter the values for the vote labels for each permission role in the vote matrix. The values entered here will be used to create the rating for each comment.</p>
      <p>NOTE: Comment ratings are calculated by averaging user votes with the initial rating.</p>
      <h4>Creating comment thresholds</h4>
      <p>In <a href=\"%comment-thresholds\">administer &raquo; comments &raquo; moderation &raquo; thresholds</a>, you'll have to create some comment thresholds to make the comment rating system useful. When comment moderation is enabled and the thresholds are created, users will find another comment control panel option for selecting their thresholds. They'll use the thresholds you enter here to filter out comments with low ratings. Consequently, you'll probably want to create more than one threshold to give users some flexibility in filtering comments.</p>
66
      <p>When creating the thresholds, note that the <em>Minimum score</em> is asking you for the lowest rating that a comment can have in order to be displayed.</p>
Dries's avatar
   
Dries committed
67
      <p>To see a common example of how thresholds work, you might visit <a href=\"%slashdot\">Slashdot</a> and view one of their comment boards associated with a story. You can reset the thresholds in their comment control panel.</p>
Dries's avatar
   
Dries committed
68

Dries's avatar
   
Dries committed
69
      <h4>Initial comment scores</h4>
70
      <p>Finally, you may want to enter some <em>initial comment scores</em>. In <a href=\"%comment-initial\">administer &raquo; comments &raquo; initial comment scores</a> you can assign a beginning rating for all comments posted by a particular permission role. If you do not assign any initial scores, Drupal will assign a rating of <strong>0</strong> as the default.</p>", array("%comment-config" => url("admin/system/modules/comment"), "%site-config" => url("admin/system"), "%user-permissions" => url("admin/user/permission"), "%tracker" => url("tracker"), "%download-notify" => "http://drupal.org/project/releases", "%permission" => url("admin/user/permission"), "%comment-moderation" => url("admin/comment/moderation"), "%comment-votes" => url("admin/comment/moderation/votes"), "%comment-matrix" => url("admin/comment/moderation/matrix"), "%comment-thresholds" => url("admin/comment/moderation/filters"), "%slashdot" => " http://slashdot.org", "%comment-initial" => url("admin/comment/moderation/roles")));
Dries's avatar
   
Dries committed
71
      break;
Dries's avatar
   
Dries committed
72
    case 'admin/system/modules#description':
Dries's avatar
   
Dries committed
73
74
75
      $output = t("Enables user to comment on content (nodes).");
      break;
    case 'admin/system/modules/comment':
76
      $output = t("Comments can be attached to any node. Below are the settings for comments. The display comes in two types, a \"flat list\" where everything is flush to the left side, and comments come in cronological order, and a \"threaded list\" where comments to other comments are placed immediately below and slightly indented forming an outline. They also come in two styles: \"expanded\", where you see both the title and the contents, and \"collapsed\" where you only see the title. To set the default threshold you first have to set up thresholds in the <a href=\"%threshold\">administer &raquo; comments &raquo; moderation &raquo; thresholds</a> area. Preview comment forces a user to look at their comment by clicking on a \"Preview\" button before they can actually add the comment. If \"New comment form\" is enabled then at the bottom of every comment page there will be a form too add a new comment.", array("%threshold" => url("admin/comment/moderation/filters")));
Dries's avatar
   
Dries committed
77
78
79
80
81
      break;
    case 'admin/comment':
      $output = t("Comments let users give feedback to content authors.  Here you may review/approve/deny recent comments, and configure moderation if desired.");
      break;
    case 'admin/comment/comments':
82
      $output = t("Click on <a href=\"%nup\">new or updated comments</a> to see your latest comments, or <a href=\"%queue\">comment approval queue</a> to approve new comments.", array("%nup" => url("admin/comment/comments/0"), "%queue" => url("admin/comment/comments/1")));
Dries's avatar
   
Dries committed
83
84
85
86
87
      break;
    case 'admin/comment/comments/0':
      $output = t("Below is a list of the latest comments posted your site. Click on a subject to see the comment, the author's name to edit the author's user information , \"edit comment\" to edit the comment, and \"delete comment\" to remove the comment.");
      break;
    case 'admin/comment/comments/1':
88
      $output = t("Below is a list of the comments posted to your site that need approval. To approve a comment click on <strong>\"edit comment\"</strong> and then change its <strong>moderation status</strong> to Approved.<br />Click on a subject to see the comment, the author's name to edit the author's user information, \"edit comment\" to edit the comment, and \"delete comment\" to remove the comment.");
Dries's avatar
   
Dries committed
89
      break;
Dries's avatar
   
Dries committed
90
91
    case 'admin/comment/moderation':
      $output = t("If you have a get a lot of comments, you can enable comment moderation. Once moderation is enabled users can vote on a comment based on dropdown menus. <a href=\"%votes\">Votes</a> sets up the names in the dropdown menu, and the order in which they appear, using weights. <a href=\"%matrix\">Matrix</a> sets up the value of each user's vote, and <a href=\"%threshhold\">threshhold</a> sets up the levels at which a comment will be displayed.", array("%votes" => url("admin/comment/moderation/votes"), "%matrix" => url("admin/comment/moderation/matrix"), "%threshhold" => url("admin/comment/moderation/filters")));
Dries's avatar
   
Dries committed
92
93
      break;
    case 'admin/comment/moderation/votes':
94
      $output = t("Here is where you setup the names of each type of vote. Weight lets you set the order of the drop down menu. Click <strong>edit</strong> to edit a current vote weight.<br />Notes: <ul><li>you can have more than one type with the same name. The system does not protect you from this.</li><li>To <strong>delete</strong> a name/weight combiniation go to the <strong>edit</strong> area.</li></ul>");
Dries's avatar
   
Dries committed
95
96
      break;
    case 'admin/comment/moderation/matrix':
97
      $output = t("Here is where you assign a value to each item in the dropdown menu. This value is added to the vote total, which is then divided by the number of users who have voted and rounded off to the nearest integer.<br />Notes:<ul><li>In order to use comment moderation, every text box on this page should be populated.</li><li>You must assign the <strong>moderate comments</strong> permission to at least one role in order to use this page.</li><li>Every box not filled in will have a value of zero, which will have the effect of <strong>lowering</strong> a comments over all score.</li></ul>");
Dries's avatar
   
Dries committed
98
99
      break;
    case 'admin/comment/moderation/filters':
100
      $output = t("<em>Optional</em> Here you can setup the name and minimum \"cut off\" score to help your users hide comments that they don't want too see. These thresholds appear in the Comment Control Panel. Click \"edit\" to edit the values of an already exsisting threashold. To <strong>delete</strong> a threshold click on \"edit\".");
Dries's avatar
   
Dries committed
101
102
      break;
    case 'admin/comment/moderation/roles':
103
      $output = t("Here you can setup the <strong>initial</strong> vote value of a comment posted by each user role. This value is used before any other users vote on the comment.<br />Note: Blank entries are valued at zero");
Dries's avatar
   
Dries committed
104
      break;
Dries's avatar
   
Dries committed
105
    case 'admin/comment/search':
Dries's avatar
   
Dries committed
106
107
      $output = t("Enter a simple pattern ( '*' maybe used as a wildcard match) to search for a comment.  For example, one may search for 'br' and Drupal might return 'bread brakers', 'our daily bread' and 'brenda'.");
      break;
Dries's avatar
   
Dries committed
108
  }
Dries's avatar
   
Dries committed
109
  return $output;
Dries's avatar
   
Dries committed
110
111
}

Dries's avatar
   
Dries committed
112
function comment_help_page() {
Dries's avatar
   
Dries committed
113
  print theme("page", comment_help());
Dries's avatar
   
Dries committed
114
115
}

116
function comment_settings() {
Dries's avatar
   
Dries committed
117
118
119
120
  $group  = form_radios(t("Default display mode"), "comment_default_mode", variable_get("comment_default_mode", 4), _comment_get_modes(), t("The default view for comments. Expanded views display the body of the comment. Threaded views keep replies together."));
  $group .= form_radios(t("Default display order"), "comment_default_order", variable_get("comment_default_order", 1), _comment_get_orders(), t("The default sorting for new users and anonymous users while viewing comments. These users may change their view using the comment control panel. For registered users, this change is remembered as a persistent user preference."));
  $group .= form_select(t("Default comments per page"), "comment_default_per_page", variable_get("comment_default_per_page", "50"), _comment_per_page(), t("Default number of comments for each page: more comments are distributed in several pages."));
  $group .= form_radios(t("Comment controls"), "comment_controls", variable_get("comment_controls", 0), array(t("Display above the comments"), t("Display below the comments"), t("Display above and below the comments"), t("Do not display")), t("Position of the comment controls box.  The comment controls let the user change the default display mode and display order of comments."));
Dries's avatar
Dries committed
121
  $output = form_group(t('Comment viewing options'), $group);
Dries's avatar
   
Dries committed
122

Dries's avatar
   
Dries committed
123
124
125
  $group  = form_radios(t("Preview comment"), "comment_preview", variable_get("comment_preview", 1), array(t("Optional"), t("Required")), t("Must users preview comments before submitting?"));
  $group .= form_radios(t("Location of comment submission form"), "comment_form_location", variable_get("comment_form_location", 0), array(t("Display on separate page"), t("Display below post or comments")), t("The location of the comment submission form."));
  $output .= form_group(t('Comment posting settings'), $group);
Dries's avatar
   
Dries committed
126

Dries's avatar
   
Dries committed
127
  $result = db_query("SELECT fid, filter FROM {moderation_filters} ");
Dries's avatar
   
Dries committed
128
129
  while ($filter = db_fetch_object($result)) {
    $thresholds[$filter->fid] = ($filter->filter);
Dries's avatar
   
Dries committed
130
  }
Dries's avatar
   
Dries committed
131
132
133
134
  if ($thresholds) {
    $group = form_select(t("Default threshold"), "comment_default_threshold", variable_get("comment_default_threshold", 0), $thresholds, t("Thresholds are values below which comments are hidden. These thresholds are useful for busy sites which want to hide poor comments from most users."));
    $output .= form_group(t('Comment moderation settings'), $group);
  }
Dries's avatar
   
Dries committed
135

Dries's avatar
   
Dries committed
136
  return $output;
Dries's avatar
   
Dries committed
137
138
}

Dries's avatar
   
Dries committed
139
140
function comment_user($type, $edit, &$user) {
  switch ($type) {
Dries's avatar
   
Dries committed
141
    case "edit":
Dries's avatar
   
Dries committed
142
      // when user tries to edit his own data
143
      return array(t('Personal information') => form_textarea(t("Signature"), "signature", $user->signature, 64, 3, t("Your signature will be publicly displayed at the end of your comments.") ."<br />". filter_tips_short()));
Dries's avatar
   
Dries committed
144
    case "edit":
Dries's avatar
   
Dries committed
145
      // validate user data editing
Dries's avatar
   
Dries committed
146
      return array("signature" => $edit["signature"]);
Dries's avatar
   
Dries committed
147
148
149
  }
}

Dries's avatar
   
Dries committed
150
function comment_access($op, $comment) {
Dries's avatar
   
Dries committed
151
152
  global $user;

Dries's avatar
   
Dries committed
153
154
155
156
157
158
159
160
161
162
163
  if ($op == "edit") {

    /*
    ** Authenticated users can edit their comments as long they have
    ** not been replied to.  This, in order to avoid people changing
    ** or revising their statements based on the replies their posts
    ** got. Furthermore, users can't reply to their own comments and
    ** are encouraged to extend their original comment.
    */

    return $user->uid && $user->uid == $comment->uid && comment_num_replies($comment->cid) == 0;
Dries's avatar
   
Dries committed
164
  }
Dries's avatar
   
Dries committed
165

Dries's avatar
   
Dries committed
166
}
Dries's avatar
   
Dries committed
167
function comment_referer_save() {
Dries's avatar
   
Dries committed
168
  $_SESSION["comment_referer"] = arg(0) ."/". arg(1) ."/". arg(2);
Dries's avatar
   
Dries committed
169
170
171
172
173
174
175
176
177
}

/*
** Restores the referer from a persistent variable:
*/

function comment_referer_load() {
  return $_SESSION["comment_referer"];
}
Dries's avatar
   
Dries committed
178

Dries's avatar
   
Dries committed
179
180
181
function comment_edit($cid) {
  global $user;

Dries's avatar
   
Dries committed
182
  $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status != 2", $cid));
Dries's avatar
   
Dries committed
183
  $comment = drupal_unpack($comment);
Dries's avatar
   
Dries committed
184
  if (comment_access("edit", $comment)) {
Dries's avatar
   
Dries committed
185
    return comment_preview(object2array($comment));
Dries's avatar
   
Dries committed
186
187
188
189
  }
}

function comment_reply($pid, $nid) {
Dries's avatar
   
Dries committed
190

Dries's avatar
   
Dries committed
191
  $output = "";
Dries's avatar
   
Dries committed
192

193
  if (user_access("access comments")) {
Dries's avatar
   
Dries committed
194
195
196
197
198

    /*
    ** Show comment
    */

Dries's avatar
   
Dries committed
199
    if ($pid) {
Dries's avatar
   
Dries committed
200
      $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.picture, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0", $pid));
Dries's avatar
   
Dries committed
201
      $comment = drupal_unpack($comment);
Dries's avatar
   
Dries committed
202
      $output .= theme("comment_view", $comment);
Dries's avatar
   
Dries committed
203
    }
Dries's avatar
   
Dries committed
204
    else if (user_access("access content")) {
Dries's avatar
   
Dries committed
205
      $output .= node_view(node_load(array("nid" => $nid)));
Dries's avatar
   
Dries committed
206
207
      $pid = 0;
    }
Dries's avatar
   
Dries committed
208

Dries's avatar
   
Dries committed
209
210
211
212
    /*
    ** If possible, show reply form
    */

Dries's avatar
   
Dries committed
213
    if (node_comment_mode($nid) != 2) {
Dries's avatar
   
Dries committed
214
      $output .= theme("box", t("Reply"), t("This discussion is closed: you can't post new comments."));
Kjartan's avatar
Kjartan committed
215
    }
Dries's avatar
   
Dries committed
216
    else if (user_access("post comments")) {
Dries's avatar
   
Dries committed
217
      $output .= theme("comment_form", array("pid" => $pid, "nid" => $nid), t("Reply"));
Dries's avatar
   
Dries committed
218
219
    }
    else {
Dries's avatar
   
Dries committed
220
      $output .= theme("box", t("Reply"), t("You are not authorized to post comments."));
Dries's avatar
   
Dries committed
221
    }
Kjartan's avatar
Kjartan committed
222
223
  }
  else {
Dries's avatar
   
Dries committed
224
    $output .= theme("box", t("Reply"), t("You are not authorized to view comments."));
Dries's avatar
   
Dries committed
225
  }
Dries's avatar
   
Dries committed
226
227

  return $output;
Dries's avatar
   
Dries committed
228
229
230
}

function comment_preview($edit) {
Dries's avatar
   
Dries committed
231
  global $user;
Dries's avatar
   
Dries committed
232

Dries's avatar
   
Dries committed
233
234
  $output = "";

Dries's avatar
   
Dries committed
235
236
237
238
  foreach ($edit as $key => $value) {
    $comment->$key = $value;
  }

Dries's avatar
   
Dries committed
239
  /*
Dries's avatar
   
Dries committed
240
  ** Attach the user and time information:
Dries's avatar
   
Dries committed
241
242
243
244
245
246
247
248
249
250
  */

  $comment->uid = $user->uid;
  $comment->name = $user->name;
  $comment->timestamp = time();

  /*
  ** Preview the comment:
  */

Dries's avatar
   
Dries committed
251
  $output .= theme("comment_view", $comment, theme('links', module_invoke_all('link', 'comment', $comment, 1)));
Dries's avatar
   
Dries committed
252
  $output .= theme("comment_form", $edit, t("Reply"));
Kjartan's avatar
Kjartan committed
253
254

  if ($edit["pid"]) {
Dries's avatar
   
Dries committed
255
    $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.picture, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0", $edit["pid"]));
Dries's avatar
   
Dries committed
256
    $comment = drupal_unpack($comment);
Dries's avatar
   
Dries committed
257
    $output .= theme("comment_view", $comment);
Kjartan's avatar
Kjartan committed
258
259
  }
  else {
Dries's avatar
   
Dries committed
260
    $output .= node_view(node_load(array("nid" => $edit["nid"])));
Kjartan's avatar
Kjartan committed
261
262
    $edit["pid"] = 0;
  }
Dries's avatar
   
Dries committed
263
264

  return $output;
Dries's avatar
   
Dries committed
265
266
267
}

function comment_post($edit) {
Dries's avatar
   
Dries committed
268
  global $user;
Dries's avatar
   
Dries committed
269

Dries's avatar
   
Dries committed
270
  if (user_access("post comments") && node_comment_mode($edit["nid"]) == 2) {
Dries's avatar
   
Dries committed
271

Dries's avatar
   
Dries committed
272
273
274
275
276
    /*
    ** Validate the comment's subject.  If not specified, extract
    ** one from the comment's body.
    */

Dries's avatar
   
Dries committed
277
    $edit["subject"] = strip_tags($edit["subject"]);
Dries's avatar
   
Dries committed
278

Dries's avatar
   
Dries committed
279
280
281
    if ($edit["subject"] == "") {
      $edit["subject"] = substr(strip_tags($edit["comment"]), 0, 29);
    }
Dries's avatar
   
Dries committed
282
283
284
285
286

    /*
    ** Validate the comment's body.
    */

Dries's avatar
   
Dries committed
287
288
289
290
    if ($edit["comment"] == "") {
      return array(t("Empty comment"), t("The comment you submitted is empty."));
    }

Dries's avatar
   
Dries committed
291
292
293
294
295
    /*
    ** Check for duplicate comments.  Note that we have to use the
    ** validated/filtered data to perform such check.
    */

Dries's avatar
   
Dries committed
296
    $duplicate = db_result(db_query("SELECT COUNT(cid) FROM {comments} WHERE pid = %d AND nid = %d AND subject = '%s' AND comment = '%s'", $edit["pid"], $edit["nid"], $edit["subject"], $edit["comment"]), 0);
Dries's avatar
   
Dries committed
297
298

    if ($duplicate != 0) {
Dries's avatar
   
Dries committed
299
      watchdog("warning", "comment: duplicate '". $edit["subject"] ."'");
Dries's avatar
   
Dries committed
300
      return array(t("Duplicate comment"), t("The comment you submitted has already been inserted."));
Dries's avatar
   
Dries committed
301
302
303
    }
    else {

Dries's avatar
   
Dries committed
304
      if ($edit["cid"]) {
Dries's avatar
   
Dries committed
305

Dries's avatar
   
Dries committed
306
307
308
309
310
311
        /*
        ** Update the comment in the database.  Note that the update
        ** query will fail if the comment isn't owned by the current
        ** user.
        */

Dries's avatar
   
Dries committed
312
        db_query("UPDATE {comments} SET subject = '%s', comment = '%s' WHERE cid = %d AND uid = '$user->uid'", $edit["subject"], $edit["comment"], $edit["cid"]);
Dries's avatar
   
Dries committed
313
314
315
316
317
318

        /*
        ** Fire a hook
        */

        module_invoke_all("comment", "update", $edit);
Dries's avatar
   
Dries committed
319
320
321
322
323

        /*
        ** Add entry to the watchdog log:
        */

Dries's avatar
   
Dries committed
324
        watchdog("special", "comment: updated '". $edit["subject"] ."'", l(t("view comment"), "node/view/". $edit["nid"], NULL, NULL, "comment-". $edit["cid"]));
Dries's avatar
   
Dries committed
325
326
327
328
329
330
      }
      else {
        /*
        ** Add the comment to database:
        */

Dries's avatar
   
Dries committed
331
332
333
334
335
        $status = user_access("post comments without approval") ? 0 : 1;
        $roles = variable_get("comment_roles", array());
        $score = $roles[$user->rid] ? $roles[$user->rid] : 0;
        $users = serialize(array(0 => $score));

Dries's avatar
   
Dries committed
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
        /*
        ** Here we are building the thread field.  See the comment
        ** in comment_render().
        */

        if ($edit["pid"] == 0) {
          /*
          ** This is a comment with no parent comment (depth 0): we start
          ** by retrieving the maximum thread level.
          */

          $max = db_result(db_query("SELECT MAX(thread) FROM {comments} WHERE nid = %d", $edit["nid"]));

          // Strip the "/" from the end of the thread
          $max = rtrim($max, "/");

          /*
          ** Next, we increase this value by one.  Note that we can't
          ** use 1, 2, 3, ... 9, 10, 11 because we order by string and
          ** 10 would be right after 1.  We use 1, 2, 3, ..., 9, 91,
          ** 92, 93, ... instead.  Ugly but fast.
          */

          $decimals = (string)substr($max, 0, strlen($max) - 1);
          $units = substr($max, -1, 1);
          if ($units) {
            $units++;
          }
          else {
            $units = 1;
          }

          if ($units == 10) {
            $units = "90";
          }

          // Finally build the thread field for this new comment
          $thread = "$decimals$units/";
        }
        else {
          /*
          ** This is comment with a parent comment: we increase
          ** the part of the thread value at the proper depth.
          */

          // Get the parent comment:
          $parent = db_fetch_object(db_query("SELECT * FROM {comments} WHERE cid = '%d'", $edit["pid"]));

          // Strip the "/" from the end of the parent thread:
          $parent->thread = (string)rtrim((string)$parent->thread, "/");

          // Get the max value in _this_ thread:
          $max = db_result(db_query("SELECT MAX(thread) FROM {comments} WHERE thread LIKE '%s.%%' AND nid = '%d'", $parent->thread, $edit["nid"]));

          if ($max == "") {
            // First child of this parent
            $thread = "$parent->thread.1/";
          }
          else {
            // Strip the "/" at the end of the thread:
            $max = rtrim($max, "/");

            // We need to get the value at the correct depth:
            $parts = explode(".", $max);
Dries's avatar
   
Dries committed
400
            $parent_depth = count(explode(".", $parent->thread));
Dries's avatar
   
Dries committed
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
            $last = $parts[$parent_depth];

            /*
            ** Next, we increase this value by one.  Note that we can't
            ** use 1, 2, 3, ... 9, 10, 11 because we order by string and
            ** 10 would be right after 1.  We use 1, 2, 3, ..., 9, 91,
            ** 92, 93, ... instead.  Ugly but fast.
            */

            $decimals = (string)substr($last, 0, strlen($last) - 1);
            $units = substr($last, -1, 1);
            $units++;
            if ($units == 10) {
              $units = "90";
            }

            // Finally build the thread field for this new comment:
Dries's avatar
   
Dries committed
418
            $thread = "$parent->thread.". $decimals.$units ."/";
Dries's avatar
   
Dries committed
419
420
421
422
          }
        }


Dries's avatar
   
Dries committed
423
        $edit["cid"] = db_next_id("{comments}_cid");
Dries's avatar
   
Dries committed
424

Dries's avatar
   
Dries committed
425
        db_query("INSERT INTO {comments} (cid, nid, pid, uid, subject, comment, hostname, timestamp, status, score, users, thread) VALUES (%d, %d, %d, %d, '%s', '%s', '%s', %d, %d, %d, '%s', '%s')", $edit["cid"], $edit["nid"], $edit["pid"], $user->uid, $edit["subject"], $edit["comment"], $_SERVER['REMOTE_ADDR'], time(), $status, $score, $users, $thread);
Dries's avatar
   
Dries committed
426
427
428
429
430
431

        /*
        ** Tell the other modules a new comment has been submitted:
        */

        module_invoke_all("comment", "insert", $edit);
Dries's avatar
   
Dries committed
432
433
434
435

        /*
        ** Add entry to the watchdog log:
        */
Dries's avatar
   
Dries committed
436

Dries's avatar
   
Dries committed
437
        watchdog("special", "comment: added '". $edit["subject"] ."'", l(t("view comment"), "node/view/". $edit["nid"], NULL, NULL, "comment-". $edit["cid"]));
Dries's avatar
   
Dries committed
438
      }
Dries's avatar
   
Dries committed
439
440

      /*
Dries's avatar
   
Dries committed
441
442
      ** Clear the cache so an anonymous user can see his comment being
      ** added.
Dries's avatar
   
Dries committed
443
      */
Dries's avatar
   
Dries committed
444

Dries's avatar
   
Dries committed
445
      cache_clear_all();
Dries's avatar
   
Dries committed
446
447
    }
  }
Dries's avatar
   
Dries committed
448
449
450
451
  else {
    watchdog("error", "comment: unauthorized comment submitted or comment submitted to a closed node '". $edit["subject"] ."'");
    return array(t("Error"), t("You are not authorized to post comments, or this node doesn't accept new comments."));
  }
Dries's avatar
   
Dries committed
452
453

  /*
Dries's avatar
   
Dries committed
454
  ** Redirect the user the node he commented on, or explain queue
Dries's avatar
   
Dries committed
455
456
  */

Dries's avatar
   
Dries committed
457
458
  if ($status == 1) {
    return array(t("Comment queued"), t("Your comment has been queued for moderation by site administrators and will be published after approval."));
Dries's avatar
   
Dries committed
459
460
461
462
  }
}

function comment_links($comment, $return = 1) {
Dries's avatar
   
Dries committed
463
  global $user;
Dries's avatar
   
Dries committed
464

Dries's avatar
   
Dries committed
465
  $links = array();
Dries's avatar
   
Dries committed
466

Dries's avatar
   
Dries committed
467
468
469
470
  /*
  ** If we are viewing just this comment, we link back to the node
  */

Dries's avatar
   
Dries committed
471
  if ($return) {
Dries's avatar
   
Dries committed
472
    $links[] = l(t("parent"), comment_referer_load(), NULL, NULL, "comment-$comment->cid");
Dries's avatar
   
Dries committed
473
  }
Dries's avatar
   
Dries committed
474

Dries's avatar
   
Dries committed
475
  if (node_comment_mode($comment->nid) == 2) {
476
477
478
479
480
481
    if (user_access("administer comments") && user_access("access administration pages")) {
      $links[] = l(t("delete comment"), "admin/comment/delete/$comment->cid");
      $links[] = l(t("edit comment"), "admin/comment/edit/$comment->cid");
      $links[] = l(t("reply to this comment"), "comment/reply/$comment->nid/$comment->cid");
    }
    else if (user_access("post comments")) {
Dries's avatar
   
Dries committed
482
      if (comment_access("edit", $comment)) {
483
        $links[] = l(t("edit your comment"), "comment/edit/$comment->cid");
Dries's avatar
   
Dries committed
484
      }
Dries's avatar
   
Dries committed
485
      $links[] = l(t("reply to this comment"), "comment/reply/$comment->nid/$comment->cid");
Dries's avatar
   
Dries committed
486
487
    }
    else {
488
      $links[] = theme("comment_post_forbidden");
Dries's avatar
   
Dries committed
489
    }
Dries's avatar
   
Dries committed
490
  }
Dries's avatar
   
Dries committed
491

Dries's avatar
   
Dries committed
492
  if ($moderation = theme("comment_moderation_form", $comment)) {
Dries's avatar
   
Dries committed
493
494
    $links[] = $moderation;
  }
Dries's avatar
   
Dries committed
495

Dries's avatar
   
Dries committed
496
  return $links;
Dries's avatar
   
Dries committed
497
498
}

Dries's avatar
   
Dries committed
499
function comment_render($node, $cid = 0) {
Dries's avatar
   
Dries committed
500
501
502
503
504
505
506
  global $user;

  $mode = $_GET["mode"];
  $order = $_GET["order"];
  $threshold = $_GET["threshold"];
  $comments_per_page = $_GET["comments_per_page"];
  $comment_page = $_GET["comment_page"];
Dries's avatar
   
Dries committed
507

Dries's avatar
   
Dries committed
508
509
  $output = "";

Dries's avatar
   
Dries committed
510
511
  if (user_access("access comments")) {

Dries's avatar
   
Dries committed
512
513
514
515
516
517
    /*
    ** Save were we come from so we can go back after a reply
    */

    comment_referer_save();

Dries's avatar
   
Dries committed
518
519
520
521
    /*
    ** Pre-process variables:
    */

Dries's avatar
   
Dries committed
522
    $nid = $node->nid;
Dries's avatar
   
Dries committed
523
524
    if (empty($nid)) {
      $nid = 0;
Dries's avatar
   
Dries committed
525
526
527
    }

    if (empty($mode)) {
528
      $mode = $user->mode ? $user->mode : ($_SESSION["comment_mode"] ? $_SESSION["comment_mode"] : variable_get("comment_default_mode", 4));
Dries's avatar
   
Dries committed
529
530
531
    }

    if (empty($order)) {
532
      $order = $user->sort ? $user->sort : ($_SESSION["comment_sort"] ? $_SESSION["comment_sort"] : variable_get("comment_default_order", 1));
Dries's avatar
   
Dries committed
533
534
535
    }

    if (empty($threshold)) {
536
      $threshold = $user->threshold ? $user->threshold : ($_SESSION["comment_threshold"] ? $_SESSION["comment_threshold"] : variable_get("comment_default_threshold", 0));
Dries's avatar
   
Dries committed
537
    }
Dries's avatar
   
Dries committed
538
    $threshold_min = db_result(db_query("SELECT minimum FROM {moderation_filters} WHERE fid = %d", $threshold));
Dries's avatar
   
Dries committed
539

Dries's avatar
   
Dries committed
540
    if (empty($comments_per_page)) {
541
      $comments_per_page = $user->comments_per_page ? $user->comments_per_page : ($_SESSION["comment_comments_per_page"] ? $_SESSION["comment_comments_per_page"] : variable_get("comment_default_per_page", "50"));
Dries's avatar
   
Dries committed
542
    }
Dries's avatar
   
Dries committed
543

Dries's avatar
   
Dries committed
544
    $output .= "<a id=\"comment\"></a>\n";
Dries's avatar
   
Dries committed
545
546


Kjartan's avatar
Kjartan committed
547
    if ($cid) {
Dries's avatar
   
Dries committed
548
549
550
551
552

      /*
      ** Single comment view
      */

Dries's avatar
   
Dries committed
553
554
      $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
      $output .= form_hidden("nid", $nid);
Dries's avatar
   
Dries committed
555

Dries's avatar
   
Dries committed
556
      $result = db_query("SELECT c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0 GROUP BY c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users", $cid);
Dries's avatar
   
Dries committed
557

Dries's avatar
   
Dries committed
558
      if ($comment = db_fetch_object($result)) {
Dries's avatar
   
Dries committed
559
        $output .= theme("comment_view", $comment, theme('links', module_invoke_all('link', 'comment', $comment, 1)));
Dries's avatar
   
Dries committed
560
      }
Dries's avatar
   
Dries committed
561

Dries's avatar
   
Dries committed
562
      if ((comment_user_can_moderate($node)) && $user->uid != $comment->uid && !(comment_already_moderated($user->uid, $comment->users))) {
Dries's avatar
   
Dries committed
563
        $output .= "<div style=\"text-align: center;\">". form_submit(t("Moderate comment")) ."</div><br />";
Dries's avatar
   
Dries committed
564
      }
Dries's avatar
   
Dries committed
565
      $output .= "</div></form>";
Dries's avatar
   
Dries committed
566
    }
Dries's avatar
   
Dries committed
567
    else {
Dries's avatar
   
Dries committed
568

Dries's avatar
   
Dries committed
569
570
571
572
      /*
      ** Multiple comments view
      */

Dries's avatar
   
Dries committed
573
      $query .= "SELECT c.cid as cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users, c.thread FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.nid = '". check_query($nid) ."' AND c.status = 0";
Dries's avatar
   
Dries committed
574

Dries's avatar
   
Dries committed
575
      $query .= " GROUP BY c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users, c.thread";
Dries's avatar
   
Dries committed
576

Dries's avatar
   
Dries committed
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
      /*
      ** We want to use the standard pager, but threads would need every
      ** comment to build the thread structure, so we need to store some
      ** extra info.
      **
      ** We use a "thread" field to store this extra info. The basic idea
      ** is to store a value and to order by that value. The "thread" field
      ** keeps this data in a way which is easy to update and convenient
      ** to use.
      **
      ** A "thread" value starts at "1". If we add a child (A) to this
      ** comment, we assign it a "thread" = "1.1". A child of (A) will have
      ** "1.1.1". Next brother of (A) will get "1.2". Next brother of the
      ** parent of (A) will get "2" and so on.
      **
      ** First of all note that the thread field stores the depth of the
      ** comment: depth 0 will be "X", depth 1 "X.X", depth 2 "X.X.X", etc.
      **
      ** Now to get the ordering right, consider this example:
      **
      ** 1
      ** 1.1
      ** 1.1.1
      ** 1.2
      ** 2
      **
      ** If we "ORDER BY thread ASC" we get the above result, and this is
      ** the natural order sorted by time.  However, if we "ORDER BY thread
      ** DESC" we get:
      **
      ** 2
      ** 1.2
      ** 1.1.1
      ** 1.1
      ** 1
      **
      ** Clearly, this is not a natural way to see a thread, and users
      ** will get confused. The natural order to show a thread by time
      ** desc would be:
      **
      ** 2
      ** 1
      ** 1.2
      ** 1.1
      ** 1.1.1
      **
      ** which is what we already did before the standard pager patch. To
      ** achieve this we simply add a "/" at the end of each "thread" value.
      ** This way out thread fields will look like depicted below:
      **
      ** 1/
      ** 1.1/
      ** 1.1.1/
      ** 1.2/
      ** 2/
      **
      ** we add "/" since this char is, in ASCII, higher than every number,
      ** so if now we "ORDER BY thread DESC" we get the correct order.  Try
      ** it, it works ;).  However this would spoil the "ORDER BY thread ASC"
      ** Here, we do not need to consider the trailing "/" so we use a
      ** substring only.
      */
Dries's avatar
   
Dries committed
639
640

      if ($order == 1) {
Dries's avatar
   
Dries committed
641
642
643
644
645
646
        if ($mode == 1 || $mode == 2) {
          $query .= " ORDER BY c.timestamp DESC";
        }
        else {
          $query .= " ORDER BY c.thread DESC";
        }
Dries's avatar
   
Dries committed
647
      }
Dries's avatar
   
Dries committed
648
      else if ($order == 2) {
Dries's avatar
   
Dries committed
649
650
651
652
653
654
655
656
657
658
659
660
661
        if ($mode == 1 || $mode == 2) {
          $query .= " ORDER BY c.timestamp";
        }
        else {

          /*
          ** See comment above.  Analysis learns that this doesn't cost
          ** too much.  It scales much much better than having the whole
          ** comment structure.
          */

          $query .= " ORDER BY SUBSTRING(c.thread, 1, (LENGTH(c.thread) - 1))";
        }
Dries's avatar
   
Dries committed
662
663
664
      }

      /*
Dries's avatar
   
Dries committed
665
      ** Start a form, to use with comment control and moderation.
Dries's avatar
   
Dries committed
666
667
      */

Dries's avatar
   
Dries committed
668
      $result = pager_query($query, $comments_per_page, 0, "SELECT COUNT(*) FROM {comments} WHERE nid = '". check_query($nid) ."'");
669
      if (db_num_rows($result) && (variable_get("comment_controls", 0) == 0 || variable_get("comment_controls", 0) == 2)) {
Dries's avatar
   
Dries committed
670
671
672
673
        $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
        $output .= theme("comment_controls", $threshold, $mode, $order, $comments_per_page);
        $output .= form_hidden("nid", $nid);
        $output .= "</div></form>";
Dries's avatar
   
Dries committed
674
      }
Dries's avatar
   
Dries committed
675

Dries's avatar
   
Dries committed
676
677
      $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
      $output .= form_hidden("nid", $nid);
Dries's avatar
   
Dries committed
678

Dries's avatar
   
Dries committed
679
      while ($comment = db_fetch_object($result)) {
Dries's avatar
   
Dries committed
680
        $comment = drupal_unpack($comment);
Dries's avatar
   
Dries committed
681
        $comment->depth = count(explode(".", $comment->thread)) - 1;
Dries's avatar
   
Dries committed
682

Dries's avatar
   
Dries committed
683
        if ($mode == 1) {
Dries's avatar
   
Dries committed
684
          $output .= theme("comment_flat_collapsed", $comment, $threshold_min);
Dries's avatar
   
Dries committed
685
        }
Dries's avatar
   
Dries committed
686
        else if ($mode == 2) {
Dries's avatar
   
Dries committed
687
          $output .= theme("comment_flat_expanded", $comment, $threshold_min);
Dries's avatar
   
Dries committed
688
        }
Dries's avatar
   
Dries committed
689
        else if ($mode == 3) {
Dries's avatar
   
Dries committed
690
          $output .= theme("comment_thread_min", $comment, $threshold_min);
Dries's avatar
   
Dries committed
691
        }
Dries's avatar
   
Dries committed
692
        else if ($mode == 4) {
Dries's avatar
   
Dries committed
693
          $output .= theme("comment_thread_max", $comment, $threshold_min);
Dries's avatar
   
Dries committed
694
695
        }
      }
Dries's avatar
   
Dries committed
696

Dries's avatar
   
Dries committed
697
698
699
700
      /*
      ** Use the standard pager, $pager_total is the number of returned rows,
      ** is global and defined in pager.inc
      */
Dries's avatar
Dries committed
701
      if ($pager = theme("pager", NULL, $comments_per_page, 0, array("comments_per_page" => $comments_per_page))) {
Dries's avatar
   
Dries committed
702
        $output .= $pager;
Dries's avatar
   
Dries committed
703
      }
Dries's avatar
   
Dries committed
704

705
      if (db_num_rows($result) && comment_user_can_moderate($node)) {
Dries's avatar
   
Dries committed
706
        $output .= "<div align=\"center\">". form_submit(t("Moderate comments")) ."</div><br />";
Dries's avatar
   
Dries committed
707
      }
Dries's avatar
   
Dries committed
708

Dries's avatar
   
Dries committed
709
      $output .= "</div></form>";
Dries's avatar
   
Dries committed
710

711
      if (db_num_rows($result) && (variable_get("comment_controls", 0) == 1 || variable_get("comment_controls", 0) == 2)) {
Dries's avatar
   
Dries committed
712
713
714
715
        $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
        $output .= theme("comment_controls", $threshold, $mode, $order, $comments_per_page);
        $output .= form_hidden("nid", $nid);
        $output .= "</div></form>";
Dries's avatar
   
Dries committed
716
      }
Dries's avatar
   
Dries committed
717
718
    }

Dries's avatar
   
Dries committed
719
720
721
722
    /*
    ** If enabled, show new comment form
    */

Dries's avatar
   
Dries committed
723
    if (user_access("post comments") && node_comment_mode($nid) == 2 && variable_get("comment_form_location", 0)) {
Dries's avatar
   
Dries committed
724
      $output .= theme("comment_form", array("nid" => $nid), t("Post new comment"));
Dries's avatar
   
Dries committed
725
    }
Dries's avatar
   
Dries committed
726
  }
Dries's avatar
   
Dries committed
727
  return $output;
Dries's avatar
   
Dries committed
728
729
}

Dries's avatar
   
Dries committed
730
731
732
function comment_perm() {
  return array("access comments", "post comments", "administer comments", "moderate comments", "post comments without approval", "administer moderation");
}
Dries's avatar
   
Dries committed
733

Dries's avatar
   
Dries committed
734
function comment_link($type, $node = 0, $main = 0) {
Dries's avatar
   
Dries committed
735
  $links = array();
Dries's avatar
   
Dries committed
736

Dries's avatar
   
Dries committed
737
  if ($type == "node" && $node->comment) {
Dries's avatar
   
Dries committed
738
739
740
741
742
743
744
745

    if ($main) {

      /*
      ** Main page: display the number of comments that have been posted.
      */

      if (user_access("access comments")) {
Dries's avatar
   
Dries committed
746
        $all = comment_num_all($node->nid);
Dries's avatar
   
Dries committed
747
        $new = comment_num_new($node->nid);
Dries's avatar
   
Dries committed
748

Dries's avatar
   
Dries committed
749
        if ($all) {
Dries's avatar
   
Dries committed
750
          $links[] = l(format_plural($all, "1 comment", "%count comments"), "node/view/$node->nid", array("title" => t("Jump to the first comment of this posting.")), NULL, "comment");
Dries's avatar
   
Dries committed
751

Dries's avatar
   
Dries committed
752
          if ($new) {
Dries's avatar
   
Dries committed
753
            $links[] = l(format_plural($new, "1 new comment", "%count new comments"), "node/view/$node->nid", array("title" => t("Jump to the first new comment of this posting.")), NULL, "new");
Dries's avatar
   
Dries committed
754
755
756
          }
        }
        else {
Dries's avatar
   
Dries committed
757
758
759
760
761
762
763
          if ($node->comment == 2) {
            if (user_access("post comments")) {
              $links[] = l(t("add new comment"), "comment/reply/$node->nid", array("title" => t("Add a new comment to this page.")));
            }
            else {
              $links[] = theme("comment_post_forbidden");
            }
Dries's avatar
   
Dries committed
764
765
          }
        }
Dries's avatar
   
Dries committed
766
767
768
769
770
      }
    }
    else {
      /*
      ** Node page: add a "post comment" link if the user is allowed to
Dries's avatar
   
Dries committed
771
      ** post comments and if this node is not read-only
Dries's avatar
   
Dries committed
772
773
      */

Dries's avatar
   
Dries committed
774
775
      if ($node->comment == 2) {
        if (user_access("post comments")) {
Dries's avatar
   
Dries committed
776
          $links[] = l(t("add new comment"), "comment/reply/$node->nid", array("title" => t("Share your thoughts and opinions related to this posting.")), NULL, "comment");
Kjartan's avatar
Kjartan committed
777
778
        }
        else {
779
          $links[] = theme("comment_post_forbidden");
Dries's avatar
   
Dries committed
780
        }
Dries's avatar
   
Dries committed
781
782
783
784
      }
    }
  }

Dries's avatar
   
Dries committed
785
786
787
788
  if ($type == "comment") {
    $links = comment_links($node, $main);
  }

Dries's avatar
   
Dries committed
789
790
791
  if ($type == "system") {
    if (user_access("administer comments")) {

Dries's avatar
   
Dries committed
792
      menu("admin/comment", t("comments"), "comment_admin", 1);
Dries's avatar
   
Dries committed
793
      menu("admin/comment/comments", t("overview"), "comment_admin", 2);
Dries's avatar
   
Dries committed
794
795
      menu("admin/comment/comments/0", t("new/updated"), "comment_admin", 1);
      menu("admin/comment/comments/1", t("approval queue"), "comment_admin", 2);
Dries's avatar
   
Dries committed
796
      menu("admin/comment/help", t("help"), "comment_help_page", 9);
Dries's avatar
   
Dries committed
797
      menu("admin/comment/edit", t("edit comment"), "comment_admin", 0, MENU_HIDE);
798
      menu("admin/comment/delete", t("delete comment"), "comment_admin", 0, MENU_HIDE);
Dries's avatar
   
Dries committed
799
800
801
      if (module_exist('search')) {
        menu("admin/comment/search", t("search"), "comment_admin", 8);
      }
Dries's avatar
   
Dries committed
802
803
804

      // comment settings:
      if (user_access("administer moderation")) {
Dries's avatar
   
Dries committed
805
        menu("admin/comment/moderation", t("moderation"), "comment_admin", 3);
Dries's avatar
   
Dries committed
806
807
808
809
        menu("admin/comment/moderation/votes", t("votes"), "comment_admin");
        menu("admin/comment/moderation/matrix", t("matrix"), "comment_admin");
        menu("admin/comment/moderation/filters", t("thresholds"), "comment_admin");
        menu("admin/comment/moderation/roles", t("initial scores"), "comment_admin", 6);
Dries's avatar
   
Dries committed
810
      }
Dries's avatar
   
Dries committed
811
    }
Dries's avatar
   
Dries committed
812
    menu("comment", t("comments"), "comment_page", 0, MENU_HIDE);
Dries's avatar
   
Dries committed
813
814
  }

Dries's avatar
   
Dries committed
815
  return $links;
Dries's avatar
   
Dries committed
816
817
}

Dries's avatar
   
Dries committed
818
function comment_page() {
Dries's avatar
   
Dries committed
819
820
  $op = $_POST["op"];
  $edit = $_POST["edit"];
Dries's avatar
   
Dries committed
821
822
823
824

  if (empty($op)) {
    $op = arg(1);
  }
Dries's avatar
   
Dries committed
825
826
827

  switch ($op) {
    case "edit":
Dries's avatar
   
Dries committed
828
      print theme("page", comment_edit(check_query(arg(2))), t("Edit comment"));;
Dries's avatar
   
Dries committed
829
      break;
Dries's avatar
   
Dries committed
830
831
832
    case t("Moderate comments"):
    case t("Moderate comment"):
      comment_moderate($edit);
Dries's avatar
Dries committed
833
      drupal_goto(comment_referer_load());
Dries's avatar
   
Dries committed
834
      break;
Dries's avatar
   
Dries committed
835
    case "reply":
Dries's avatar
   
Dries committed
836
      print theme("page", comment_reply(check_query(arg(3)), check_query(arg(2))), t("Add new comment"));
Dries's avatar
   
Dries committed
837
838
      break;
    case t("Preview comment"):
Dries's avatar
   
Dries committed
839
      print theme("page", comment_preview($edit), t("Preview comment"));
Dries's avatar
   
Dries committed
840
841
      break;
    case t("Post comment"):
Dries's avatar
   
Dries committed
842
843
      list($error_title, $error_body) = comment_post($edit);
      if ($error_body) {
Dries's avatar
   
Dries committed
844
        print theme("page", $error_body, $error_title);
Dries's avatar
   
Dries committed
845
846
      }
      else {
Dries's avatar
Dries committed
847
        drupal_goto(comment_referer_load());
Dries's avatar
   
Dries committed
848
      }
Dries's avatar
   
Dries committed
849
      break;
850
    case t("Save settings"):
Dries's avatar
   
Dries committed
851
852
853
854
855
      $mode = $_POST["mode"];
      $order = $_POST["order"];
      $threshold = $_POST["threshold"];
      $comments_per_page = $_POST["comments_per_page"];

856
      comment_save_settings(check_query($mode), check_query($order), check_query($threshold), check_query($comments_per_page));
Dries's avatar
Dries committed
857
      drupal_goto(comment_referer_load());
Dries's avatar
   
Dries committed
858
859
860
861
      break;
  }
}

Dries's avatar
   
Dries committed
862
863
864
/**
*** admin functions
**/
Dries's avatar
   
Dries committed
865

Dries's avatar
   
Dries committed
866
function comment_node_link($node) {
Dries's avatar
   
Dries committed
867

Dries's avatar
   
Dries committed
868
  if (user_access("administer comments")) {
Dries's avatar
   
Dries committed
869

Dries's avatar
   
Dries committed
870
871
872
    /*
    ** Edit comments:
    */
Dries's avatar
   
Dries committed
873

Dries's avatar
   
Dries committed
874
    $result = db_query("SELECT c.cid, c.subject, u.uid, u.name FROM {comments} c INNER JOIN {users} u ON u.uid = c.uid WHERE nid = %d AND c.status = 0 ORDER BY c.timestamp", $node->nid);
Dries's avatar
   
Dries committed
875

Dries's avatar
   
Dries committed
876
877

    $header = array(t("title"), t("author"), array("data" => t("operations"), "colspan" => 3));
Dries's avatar
   
Dries committed
878
879

    while ($comment = db_fetch_object($result)) {
Dries's avatar
   
Dries committed
880
      $rows[] = array(l($comment->subject, "node/view/$node->nid", NULL, NULL, "comment-$comment->cid"), format_name($comment), l(t("view comment"), "node/view/$node->nid", NULL, NULL, $comment->cid), l(t("edit comment"), "admin/comment/edit/$comment->cid"), l(t("delete comment"), "admin/comment/delete/$comment->cid"));
Dries's avatar
   
Dries committed
881
882
    }

Dries's avatar
   
Dries committed
883
884
    if ($rows) {
      $output  = "<h3>". t("Edit comments") ."</h3>";
Dries's avatar
   
Dries committed
885
      $output .= theme("table", $header, $rows);
Dries's avatar
   
Dries committed
886
    }
Dries's avatar
   
Dries committed
887
888

    return $output;
Dries's avatar
   
Dries committed
889
  }
Dries's avatar
   
Dries committed
890
}
Dries's avatar
   
Dries committed
891

Dries's avatar
   
Dries committed
892
893
function comment_admin_edit($id) {

Dries's avatar
   
Dries committed
894
  $result = db_query("SELECT c.*, u.name, u.uid FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status != 2", $id);
Dries's avatar
   
Dries committed
895
  $comment = db_fetch_object($result);
Dries's avatar
   
Dries committed
896
  $comment = drupal_unpack($comment);
Dries's avatar
   
Dries committed
897
898
899
900

  if ($comment) {
    $form .= form_item(t("Author"), format_name($comment));
    $form .= form_textfield(t("Subject"), "subject", $comment->subject, 70, 128);
Dries's avatar
   
Dries committed
901
    $form .= form_textarea(t("Comment"), "comment", $comment->comment, 70, 15, filter_tips_short());
902
    $form .= form_radios(t("Status"), "status", $comment->status, array("published", "not published"));
Dries's avatar
   
Dries committed
903
904
905
906
907
    $form .= form_hidden("cid", $id);
    $form .= form_submit(t("Submit"));

    return form($form);
  }
Dries's avatar
   
Dries committed
908
909
}

910
911
912
913
914
915
916
917
function _comment_delete_thread($comment) {
  // Delete the comment:
  db_query("DELETE FROM {comments} WHERE cid = %d", $comment->cid);
  watchdog("special", "comment: deleted '$comment->subject'");

  // Delete the comment's replies:
  $result = db_query("SELECT cid, subject FROM {comments} WHERE pid = %d", $comment->cid);
  while ($comment = db_fetch_object($result)) {
918
    _comment_delete_thread($comment);
919
920
921
922
923
924
925
926
927
928
929
930
931
932
933
934
935
936
937
938
939
940
941
942
943
944
945
946
947
  }
}

function comment_delete($cid, $confirmed = 0) {
  $comment = db_fetch_object(db_query("SELECT c.*, u.name, u.uid FROM {comments} c INNER JOIN {users} u ON u.uid = c.uid WHERE c.cid = %d", $cid));

  if ($comment->cid) {
    if ($confirmed) {
      drupal_set_message(t("the comment and all its replies have been deleted."));

      /*
      ** Delete the comment and all of its replies:
      */

      _comment_delete_thread($comment);

      /*
      ** Clear the cache so an anonymous user can see his comment being
      ** added.
      */

      cache_clear_all();
    }
    else {
      drupal_set_message(t("do you want to delete this comment and all its replies?"));

      /*
      ** Print a confirmation screen:
      */
Dries's avatar
   
Dries committed
948

949
950
951
952
953
      $output  = theme("comment", $comment);
      $output .= form_submit(t("Delete comment"));

      return form($output);
    }
Dries's avatar
   
Dries committed
954
955
  }
  else {
956
    drupal_set_message(t("the comment no longer exists."));
Dries's avatar
   
Dries committed
957
  }
Dries's avatar
   
Dries committed
958
959
}

Dries's avatar
   
Dries committed
960
function comment_save($id, $edit) {
Dries's avatar
   
Dries committed
961
  db_query("UPDATE {comments} SET subject = '%s', comment = '%s', status = %d WHERE cid = %d", $edit["subject"], $edit["comment"], $edit["status"], $id);
Dries's avatar
   
Dries committed
962
  watchdog("special", "comment: modified '". $edit["subject"] ."'");
963
  drupal_set_message(t("the comment has been saved."));
Dries's avatar
   
Dries committed
964
965
}

Dries's avatar
   
Dries committed
966
function comment_admin_overview($status = 0) {
Dries's avatar
   
Dries committed
967

Dries's avatar
   
Dries committed
968
  $header = array(
Dries's avatar
Dries committed
969
970
971
    array("data" => t("subject"), "field" => "subject"),
    array("data" => t("author"), "field" => "u.name"),
    array("data" => t("status"), "field" => "status"),
Dries's avatar
Dries committed
972
    array("data" => t("time"), "field" => "c.timestamp", "sort" => "desc"),
Dries's avatar
   
Dries committed
973
974
975
    array("data" => t("operations"), "colspan" => 2)
  );

Dries's avatar
   
Dries committed
976
  $sql = "SELECT c.*, u.name, u.uid FROM {comments} c INNER JOIN {users} u ON u.uid = c.uid WHERE c.status = ". check_query($status);
Dries's avatar
   
Dries committed
977
978
  $sql .= tablesort_sql($header);
  $result = pager_query($sql,  50);
Dries's avatar
   
Dries committed
979
980

  while ($comment = db_fetch_object($result)) {
Dries's avatar
   
Dries committed
981
    $rows[] = array(l($comment->subject, "node/view/$comment->nid/$comment->cid", array("title" => htmlspecialchars(substr($comment->comment, 0, 128))), NULL, "comment-$comment->cid") ." ". (node_is_new($comment->nid, $comment->timestamp) ? theme("mark") : ""), format_name($comment), ($comment->status == 0 ? t("published") : t("not published")) ."</td><td>". format_date($comment->timestamp, "small") ."</td><td>". l(t("edit comment"), "admin/comment/edit/$comment->cid"), l(t("delete comment"), "admin/comment/delete/$comment->cid"));
Dries's avatar
   
Dries committed
982
983
  }

Dries's avatar
Dries committed
984
  if ($pager = theme("pager", NULL, 50, 0, tablesort_pager())) {
Dries's avatar
   
Dries committed
985
    $rows[] = array(array("data" => $pager, "colspan" => 6));
Dries's avatar
   
Dries committed
986
987
  }

Dries's avatar
   
Dries committed
988
  return theme("table", $header, $rows);
Dries's avatar
   
Dries committed
989
990
991
992
}

function comment_mod_matrix($edit) {

Dries's avatar
   
Dries committed
993
  $output .= "<h3>Moderation vote/value matrix</h3>";
Dries's avatar
   
Dries committed
994

Dries's avatar
Dries committed
995
  if ($edit) {
Dries's avatar
   
Dries committed
996
    db_query("DELETE FROM {moderation_roles} ");
Dries's avatar
Dries committed
997
    foreach ($edit as $role_id => $votes) {
Dries's avatar
   
Dries committed
998
      foreach ($votes as $mid => $value) {
Dries's avatar
   
Dries committed
999
        $sql[] = "('$mid', '$role_id', '". ($value ? $value : 0) ."')";
Dries's avatar
   
Dries committed
1000
1001
      }
    }
Dries's avatar
   
Dries committed
1002
    db_query("INSERT INTO {moderation_roles} (mid, rid, value) VALUES ". implode(", ", $sql));
1003
    drupal_set_message(t("the vote values have been saved."));
Dries's avatar
   
Dries committed
1004
1005
  }

Dries's avatar
   
Dries committed
1006
  $result = db_query("SELECT r.rid, r.name FROM {role} r, {permission} p WHERE r.rid = p.rid AND p.perm LIKE '%moderate comments%'");
Dries's avatar
   
Dries committed
1007
1008
1009
1010
1011
  $role_names = array();
  while ($role = db_fetch_object($result)) {
    $role_names[$role->rid] = $role->name;
  }

Dries's avatar
   
Dries committed
1012
  $result = db_query("SELECT rid, mid, value FROM {moderation_roles} ");
Dries's avatar
   
Dries committed
1013
1014
1015
1016
  while ($role = db_fetch_object($result)) {
    $mod_roles[$role->rid