comment.module 67.3 KB
Newer Older
1
<?php
2
// $Id$
Dries's avatar
 
Dries committed
3

Dries's avatar
 
Dries committed
4
function comment_help($section = "admin/help#comment") {
Dries's avatar
 
Dries committed
5 6 7
  $output = "";

  switch ($section) {
Dries's avatar
 
Dries committed
8
    case 'admin/help#comment':
Dries's avatar
 
Dries committed
9 10 11 12 13
      $output = t("
      <p>When enabled, the Drupal comment module creates a discussion board for each Drupal node. Users can post comments to discuss a forum topic, weblog post, collaborative book page, etc.</p>
      <h3>User control of comment display</h3>
      <p>Attached to each comment board is a control panel for customizing the way that comments are displayed. Users can control the chronological ordering of posts (newest or oldest first) and the number of posts to display on each page. Additional settings include:</p>
      <ul>
14
      <li><strong>Threaded</strong> -- Displays the posts grouped according to conversations and subconversations, much like the subject view of an e-mail client.</li>
Dries's avatar
 
Dries committed
15 16 17 18
      <li><strong>Flat</strong> --  Displays the posts in chronological order, in the order in which they are posted.</li>
      <li><strong>Expanded</strong> -- Displays the title and text for each post.</li>
      <li><strong>Collapsed</strong> -- Displays only the title for each post.</li>
      </ul>
19
      <p>When a user chooses <em>save settings</em>, the comments are then redisplayed using the user's new choices. Administrators can set the default settings for the comment control panel, along with other comment defaults, in <a href=\"%comment-config\">administer &raquo; configuration &raquo; modules &raquo; comment</a>.</p>
Dries's avatar
 
Dries committed
20
      <p>NOTE: When comment moderation is enabled, users will have another control panel option to control thresholds (see below).</p>
Dries's avatar
 
Dries committed
21

Dries's avatar
 
Dries committed
22
      <h3>Additional comment configurations</h3>
23
      <p>Comments behave like other user submissions in Drupal. Filters, smileys and HTML that work in nodes will also work with content. To prevent a single user from spamming the web site with too many comments, administrators can set a comment throttle in <a href=\"%site-config\">administer &raquo; configuration</a> under <em>Submission settings</em>.</p>
Dries's avatar
 
Dries committed
24 25 26 27 28 29 30 31 32
      <p>Administrators can control access to various comment module functions through <a href=\"%user-permissions\">administer &raquo; accounts &raquo; permissions</a>. Know that in a new Drupal installation, all comment permissions are disabled by default. The choice of which permissions to grant to which roles (groups of users) is left up to the site administrator.</p>
      <p>The following permissions can be enabled for anonymous users, authenticated users, or any other user roles that the administrator chooses to define:</p>
      <ul>
      <li><strong>Access comments</strong> -- Allows users to view comments.</li>
      <li><strong>Administrate comments</strong> -- Allows users complete control over configuring, editing and deleting all comments on the site. Best reserved for <strong>very</strong> trusted users.</li>
      <li><strong>Moderate comments</strong> -- Allows users to rate comment postings (see more on moderation below).</li>
      <li><strong>Post comments</strong> -- Allows users to post comments into an administrator moderation queue. Administrators then post the comment to the site.</li>
      <li><strong>Post comments without approval</strong> -- Allows users to directly post comments. This bypasses the administrator moderation queue.</li>
      </ul>
Dries's avatar
 
Dries committed
33

Dries's avatar
 
Dries committed
34 35 36 37
      <h3>Notification of new comments</h3>
      <p>Drupal provides specific features to inform site members when new comments have been posted:</p>
      <ul>
      <li>On the home page, Drupal displays the total number of comments attached to each node, and tracks comments read by individual site members. Members which have logged in will see a notice accompanying nodes which contain comments that they have not read.</li>
38 39
      <li>The <em>tracker</em> module, disabled by default, displays all the site's recent posts.  There is a link to the <a href=\"%tracker\">recent posts</a> page in the navigation block.  This page is a useful way to browse new or updated nodes and comments. Content which the user has not yet read is tagged with a red star (this graphic depends on the current theme). Visit the comment board for any node, and Drupal will display a red <em>\"new\"</em> label beside the text of unread comments.</li>
      <li>Some administrators may want to <a href=\"%download-notify\">download</a>, install and configure the notify module. Users can then request that Drupal send them an e-mail when new comments are posted (the notify module requires that cron.php be configured properly).</li>
Dries's avatar
 
Dries committed
40
      </ul>
Dries's avatar
 
Dries committed
41

Dries's avatar
 
Dries committed
42 43 44 45
      <h3>Comment moderation</h3>
      <p>On sites with active commenting from users, the administrator can turn over comment moderation to the community. </p>
      <p>With comment moderation, each comment is automatically assigned an initial rating. As users read comments, they can apply a vote which affects the comment rating. At the same time, users have an additional option in the control panel which allows them to set a threshold for the comments they wish to view. Those comments with ratings lower than the set threshold will not be shown.</p>
      <p>To enable moderation, the administrator must grant <a href=\"%permission\">moderate comments</a> permissions. Then, a number of options in <a href=\"%comment-moderation\">administer &raquo; comments &raquo; moderation</a> must be configured.</p>
Dries's avatar
 
Dries committed
46

Dries's avatar
 
Dries committed
47
      <h4>Moderation votes</h4>
48
      <p>The first step is to create moderation labels which allow users to rate a comment.  Go to <a href=\"%comment-votes\">administer &raquo; comments &raquo; moderation &raquo; votes</a>. In the <em>vote</em> field, enter the textual labels which users will see when casting their votes. Some examples are</p>
Dries's avatar
 
Dries committed
49 50 51 52 53 54 55 56 57 58
      <ul>
      <li>Excellent +3</li>
      <li>Insightful +2</li>
      <li>Caught My Attention +1</li>
      <li>Useful +1</li>
      <li>Redundant -1</li>
      <li>Flame -3</li>
      </ul>
      <p>So that users know how their votes affect the comment, these examples include the vote value as part of the label, although that is optional.</p>
      <p>Using the weight option, you can control the order in which the votes appear to users. Setting the weight heavier (positive numbers) will make the vote label appear at the bottom of the list. Lighter (a negative number) will push it to the top. To encourage positive voting, a useful order might be higher values, positive votes, at the top, with negative votes at the bottom.</p>
Dries's avatar
 
Dries committed
59

Dries's avatar
 
Dries committed
60
      <h4>Moderator vote/values matrix</h4>
Dries's avatar
 
Dries committed
61

Dries's avatar
 
Dries committed
62 63 64 65
      <p>Next go to <a href=\"%comment-matrix\">administer &raquo; comments &raquo; moderation &raquo; matrix</a>. Enter the values for the vote labels for each permission role in the vote matrix. The values entered here will be used to create the rating for each comment.</p>
      <p>NOTE: Comment ratings are calculated by averaging user votes with the initial rating.</p>
      <h4>Creating comment thresholds</h4>
      <p>In <a href=\"%comment-thresholds\">administer &raquo; comments &raquo; moderation &raquo; thresholds</a>, you'll have to create some comment thresholds to make the comment rating system useful. When comment moderation is enabled and the thresholds are created, users will find another comment control panel option for selecting their thresholds. They'll use the thresholds you enter here to filter out comments with low ratings. Consequently, you'll probably want to create more than one threshold to give users some flexibility in filtering comments.</p>
66
      <p>When creating the thresholds, note that the <em>Minimum score</em> is asking you for the lowest rating that a comment can have in order to be displayed.</p>
Dries's avatar
 
Dries committed
67
      <p>To see a common example of how thresholds work, you might visit <a href=\"%slashdot\">Slashdot</a> and view one of their comment boards associated with a story. You can reset the thresholds in their comment control panel.</p>
Dries's avatar
 
Dries committed
68

Dries's avatar
 
Dries committed
69
      <h4>Initial comment scores</h4>
70
      <p>Finally, you may want to enter some <em>initial comment scores</em>. In <a href=\"%comment-initial\">administer &raquo; comments &raquo; initial comment scores</a> you can assign a beginning rating for all comments posted by a particular permission role. If you do not assign any initial scores, Drupal will assign a rating of <strong>0</strong> as the default.</p>", array("%comment-config" => url("admin/system/modules/comment"), "%site-config" => url("admin/system"), "%user-permissions" => url("admin/user/permission"), "%tracker" => url("tracker"), "%download-notify" => "http://drupal.org/project/releases", "%permission" => url("admin/user/permission"), "%comment-moderation" => url("admin/comment/moderation"), "%comment-votes" => url("admin/comment/moderation/votes"), "%comment-matrix" => url("admin/comment/moderation/matrix"), "%comment-thresholds" => url("admin/comment/moderation/filters"), "%slashdot" => " http://slashdot.org", "%comment-initial" => url("admin/comment/moderation/roles")));
Dries's avatar
 
Dries committed
71
      break;
Dries's avatar
 
Dries committed
72
    case 'admin/system/modules#description':
Dries's avatar
 
Dries committed
73 74 75
      $output = t("Enables user to comment on content (nodes).");
      break;
    case 'admin/system/modules/comment':
76
      $output = t("Comments can be attached to any node. Below are the settings for comments. The display comes in two types, a \"flat list\" where everything is flush to the left side, and comments come in cronological order, and a \"threaded list\" where comments to other comments are placed immediately below and slightly indented forming an outline. They also come in two styles: \"expanded\", where you see both the title and the contents, and \"collapsed\" where you only see the title. To set the default threshold you first have to set up thresholds in the <a href=\"%threshold\">administer &raquo; comments &raquo; moderation &raquo; thresholds</a> area. Preview comment forces a user to look at their comment by clicking on a \"Preview\" button before they can actually add the comment. If \"New comment form\" is enabled then at the bottom of every comment page there will be a form too add a new comment.", array("%threshold" => url("admin/comment/moderation/filters")));
Dries's avatar
 
Dries committed
77 78 79 80 81
      break;
    case 'admin/comment':
      $output = t("Comments let users give feedback to content authors.  Here you may review/approve/deny recent comments, and configure moderation if desired.");
      break;
    case 'admin/comment/comments':
82
      $output = t("Click on <a href=\"%nup\">new or updated comments</a> to see your latest comments, or <a href=\"%queue\">comment approval queue</a> to approve new comments.", array("%nup" => url("admin/comment/comments/0"), "%queue" => url("admin/comment/comments/1")));
Dries's avatar
 
Dries committed
83 84 85 86 87
      break;
    case 'admin/comment/comments/0':
      $output = t("Below is a list of the latest comments posted your site. Click on a subject to see the comment, the author's name to edit the author's user information , \"edit comment\" to edit the comment, and \"delete comment\" to remove the comment.");
      break;
    case 'admin/comment/comments/1':
88
      $output = t("Below is a list of the comments posted to your site that need approval. To approve a comment click on <strong>\"edit comment\"</strong> and then change its <strong>moderation status</strong> to Approved.<br />Click on a subject to see the comment, the author's name to edit the author's user information, \"edit comment\" to edit the comment, and \"delete comment\" to remove the comment.");
Dries's avatar
 
Dries committed
89
      break;
Dries's avatar
 
Dries committed
90 91
    case 'admin/comment/moderation':
      $output = t("If you have a get a lot of comments, you can enable comment moderation. Once moderation is enabled users can vote on a comment based on dropdown menus. <a href=\"%votes\">Votes</a> sets up the names in the dropdown menu, and the order in which they appear, using weights. <a href=\"%matrix\">Matrix</a> sets up the value of each user's vote, and <a href=\"%threshhold\">threshhold</a> sets up the levels at which a comment will be displayed.", array("%votes" => url("admin/comment/moderation/votes"), "%matrix" => url("admin/comment/moderation/matrix"), "%threshhold" => url("admin/comment/moderation/filters")));
Dries's avatar
 
Dries committed
92 93
      break;
    case 'admin/comment/moderation/votes':
94
      $output = t("Here is where you setup the names of each type of vote. Weight lets you set the order of the drop down menu. Click <strong>edit</strong> to edit a current vote weight.<br />Notes: <ul><li>you can have more than one type with the same name. The system does not protect you from this.</li><li>To <strong>delete</strong> a name/weight combiniation go to the <strong>edit</strong> area.</li></ul>");
Dries's avatar
 
Dries committed
95 96
      break;
    case 'admin/comment/moderation/matrix':
97
      $output = t("Here is where you assign a value to each item in the dropdown menu. This value is added to the vote total, which is then divided by the number of users who have voted and rounded off to the nearest integer.<br />Notes:<ul><li>In order to use comment moderation, every text box on this page should be populated.</li><li>You must assign the <strong>moderate comments</strong> permission to at least one role in order to use this page.</li><li>Every box not filled in will have a value of zero, which will have the effect of <strong>lowering</strong> a comments over all score.</li></ul>");
Dries's avatar
 
Dries committed
98 99
      break;
    case 'admin/comment/moderation/filters':
100
      $output = t("<em>Optional</em> Here you can setup the name and minimum \"cut off\" score to help your users hide comments that they don't want too see. These thresholds appear in the Comment Control Panel. Click \"edit\" to edit the values of an already exsisting threashold. To <strong>delete</strong> a threshold click on \"edit\".");
Dries's avatar
 
Dries committed
101 102
      break;
    case 'admin/comment/moderation/roles':
103
      $output = t("Here you can setup the <strong>initial</strong> vote value of a comment posted by each user role. This value is used before any other users vote on the comment.<br />Note: Blank entries are valued at zero");
Dries's avatar
 
Dries committed
104
      break;
Dries's avatar
 
Dries committed
105
    case 'admin/comment/search':
Dries's avatar
 
Dries committed
106 107
      $output = t("Enter a simple pattern ( '*' maybe used as a wildcard match) to search for a comment.  For example, one may search for 'br' and Drupal might return 'bread brakers', 'our daily bread' and 'brenda'.");
      break;
Dries's avatar
 
Dries committed
108
  }
Dries's avatar
 
Dries committed
109
  return $output;
Dries's avatar
 
Dries committed
110 111
}

Dries's avatar
 
Dries committed
112
function comment_help_page() {
Dries's avatar
 
Dries committed
113
  print theme("page", comment_help());
Dries's avatar
 
Dries committed
114 115
}

116
function comment_settings() {
Dries's avatar
 
Dries committed
117 118 119 120
  $group  = form_radios(t("Default display mode"), "comment_default_mode", variable_get("comment_default_mode", 4), _comment_get_modes(), t("The default view for comments. Expanded views display the body of the comment. Threaded views keep replies together."));
  $group .= form_radios(t("Default display order"), "comment_default_order", variable_get("comment_default_order", 1), _comment_get_orders(), t("The default sorting for new users and anonymous users while viewing comments. These users may change their view using the comment control panel. For registered users, this change is remembered as a persistent user preference."));
  $group .= form_select(t("Default comments per page"), "comment_default_per_page", variable_get("comment_default_per_page", "50"), _comment_per_page(), t("Default number of comments for each page: more comments are distributed in several pages."));
  $group .= form_radios(t("Comment controls"), "comment_controls", variable_get("comment_controls", 0), array(t("Display above the comments"), t("Display below the comments"), t("Display above and below the comments"), t("Do not display")), t("Position of the comment controls box.  The comment controls let the user change the default display mode and display order of comments."));
Dries's avatar
Dries committed
121
  $output = form_group(t('Comment viewing options'), $group);
Dries's avatar
 
Dries committed
122

Dries's avatar
 
Dries committed
123 124 125
  $group  = form_radios(t("Preview comment"), "comment_preview", variable_get("comment_preview", 1), array(t("Optional"), t("Required")), t("Must users preview comments before submitting?"));
  $group .= form_radios(t("Location of comment submission form"), "comment_form_location", variable_get("comment_form_location", 0), array(t("Display on separate page"), t("Display below post or comments")), t("The location of the comment submission form."));
  $output .= form_group(t('Comment posting settings'), $group);
Dries's avatar
 
Dries committed
126

Dries's avatar
 
Dries committed
127
  $result = db_query("SELECT fid, filter FROM {moderation_filters} ");
Dries's avatar
 
Dries committed
128 129
  while ($filter = db_fetch_object($result)) {
    $thresholds[$filter->fid] = ($filter->filter);
Dries's avatar
 
Dries committed
130
  }
Dries's avatar
 
Dries committed
131 132 133 134
  if ($thresholds) {
    $group = form_select(t("Default threshold"), "comment_default_threshold", variable_get("comment_default_threshold", 0), $thresholds, t("Thresholds are values below which comments are hidden. These thresholds are useful for busy sites which want to hide poor comments from most users."));
    $output .= form_group(t('Comment moderation settings'), $group);
  }
Dries's avatar
 
Dries committed
135

Dries's avatar
 
Dries committed
136
  return $output;
Dries's avatar
 
Dries committed
137 138
}

Dries's avatar
 
Dries committed
139 140
function comment_user($type, $edit, &$user) {
  switch ($type) {
Dries's avatar
 
Dries committed
141
    case "edit":
Dries's avatar
 
Dries committed
142
      // when user tries to edit his own data
143
      return array(t('Personal information') => form_textarea(t("Signature"), "signature", $user->signature, 64, 3, t("Your signature will be publicly displayed at the end of your comments.") ."<br />". filter_tips_short()));
Dries's avatar
 
Dries committed
144
    case "edit":
Dries's avatar
 
Dries committed
145
      // validate user data editing
Dries's avatar
 
Dries committed
146
      return array("signature" => $edit["signature"]);
Dries's avatar
 
Dries committed
147 148 149
  }
}

Dries's avatar
 
Dries committed
150
function comment_access($op, $comment) {
Dries's avatar
 
Dries committed
151 152
  global $user;

Dries's avatar
 
Dries committed
153 154 155 156 157 158 159 160 161 162 163
  if ($op == "edit") {

    /*
    ** Authenticated users can edit their comments as long they have
    ** not been replied to.  This, in order to avoid people changing
    ** or revising their statements based on the replies their posts
    ** got. Furthermore, users can't reply to their own comments and
    ** are encouraged to extend their original comment.
    */

    return $user->uid && $user->uid == $comment->uid && comment_num_replies($comment->cid) == 0;
Dries's avatar
 
Dries committed
164
  }
Dries's avatar
 
Dries committed
165

Dries's avatar
 
Dries committed
166
}
Dries's avatar
 
Dries committed
167
function comment_referer_save() {
Dries's avatar
 
Dries committed
168
  $_SESSION["comment_referer"] = arg(0) ."/". arg(1) ."/". arg(2);
Dries's avatar
 
Dries committed
169 170 171 172 173 174 175 176 177
}

/*
** Restores the referer from a persistent variable:
*/

function comment_referer_load() {
  return $_SESSION["comment_referer"];
}
Dries's avatar
 
Dries committed
178

Dries's avatar
 
Dries committed
179 180 181
function comment_edit($cid) {
  global $user;

Dries's avatar
 
Dries committed
182
  $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status != 2", $cid));
Dries's avatar
 
Dries committed
183
  $comment = drupal_unpack($comment);
Dries's avatar
 
Dries committed
184
  if (comment_access("edit", $comment)) {
Dries's avatar
 
Dries committed
185
    return comment_preview(object2array($comment));
Dries's avatar
 
Dries committed
186 187 188 189
  }
}

function comment_reply($pid, $nid) {
Dries's avatar
 
Dries committed
190

Dries's avatar
 
Dries committed
191
  $output = "";
Dries's avatar
 
Dries committed
192

193
  if (user_access("access comments")) {
Dries's avatar
 
Dries committed
194 195 196 197 198

    /*
    ** Show comment
    */

Dries's avatar
 
Dries committed
199
    if ($pid) {
Dries's avatar
 
Dries committed
200
      $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.picture, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0", $pid));
Dries's avatar
 
Dries committed
201
      $comment = drupal_unpack($comment);
Dries's avatar
 
Dries committed
202
      $output .= theme("comment_view", $comment);
Dries's avatar
 
Dries committed
203
    }
Dries's avatar
 
Dries committed
204
    else if (user_access("access content")) {
Dries's avatar
 
Dries committed
205
      $output .= node_view(node_load(array("nid" => $nid)));
Dries's avatar
 
Dries committed
206 207
      $pid = 0;
    }
Dries's avatar
 
Dries committed
208

Dries's avatar
 
Dries committed
209 210 211 212
    /*
    ** If possible, show reply form
    */

Dries's avatar
 
Dries committed
213
    if (node_comment_mode($nid) != 2) {
Dries's avatar
 
Dries committed
214
      $output .= theme("box", t("Reply"), t("This discussion is closed: you can't post new comments."));
Kjartan's avatar
Kjartan committed
215
    }
Dries's avatar
 
Dries committed
216
    else if (user_access("post comments")) {
Dries's avatar
 
Dries committed
217
      $output .= theme("comment_form", array("pid" => $pid, "nid" => $nid), t("Reply"));
Dries's avatar
 
Dries committed
218 219
    }
    else {
Dries's avatar
 
Dries committed
220
      $output .= theme("box", t("Reply"), t("You are not authorized to post comments."));
Dries's avatar
 
Dries committed
221
    }
Kjartan's avatar
Kjartan committed
222 223
  }
  else {
Dries's avatar
 
Dries committed
224
    $output .= theme("box", t("Reply"), t("You are not authorized to view comments."));
Dries's avatar
 
Dries committed
225
  }
Dries's avatar
 
Dries committed
226 227

  return $output;
Dries's avatar
 
Dries committed
228 229 230
}

function comment_preview($edit) {
Dries's avatar
 
Dries committed
231
  global $user;
Dries's avatar
 
Dries committed
232

Dries's avatar
 
Dries committed
233 234
  $output = "";

Dries's avatar
 
Dries committed
235 236 237 238
  foreach ($edit as $key => $value) {
    $comment->$key = $value;
  }

Dries's avatar
 
Dries committed
239
  /*
Dries's avatar
 
Dries committed
240
  ** Attach the user and time information:
Dries's avatar
 
Dries committed
241 242 243 244 245 246 247 248 249 250
  */

  $comment->uid = $user->uid;
  $comment->name = $user->name;
  $comment->timestamp = time();

  /*
  ** Preview the comment:
  */

Dries's avatar
 
Dries committed
251
  $output .= theme("comment_view", $comment, theme('links', module_invoke_all('link', 'comment', $comment, 1)));
Dries's avatar
 
Dries committed
252
  $output .= theme("comment_form", $edit, t("Reply"));
Kjartan's avatar
Kjartan committed
253 254

  if ($edit["pid"]) {
Dries's avatar
 
Dries committed
255
    $comment = db_fetch_object(db_query("SELECT c.*, u.uid, u.name, u.picture, u.data FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0", $edit["pid"]));
Dries's avatar
 
Dries committed
256
    $comment = drupal_unpack($comment);
Dries's avatar
 
Dries committed
257
    $output .= theme("comment_view", $comment);
Kjartan's avatar
Kjartan committed
258 259
  }
  else {
Dries's avatar
 
Dries committed
260
    $output .= node_view(node_load(array("nid" => $edit["nid"])));
Kjartan's avatar
Kjartan committed
261 262
    $edit["pid"] = 0;
  }
Dries's avatar
 
Dries committed
263 264

  return $output;
Dries's avatar
 
Dries committed
265 266 267
}

function comment_post($edit) {
Dries's avatar
 
Dries committed
268
  global $user;
Dries's avatar
 
Dries committed
269

Dries's avatar
 
Dries committed
270
  if (user_access("post comments") && node_comment_mode($edit["nid"]) == 2) {
Dries's avatar
 
Dries committed
271

Dries's avatar
 
Dries committed
272 273 274 275 276
    /*
    ** Validate the comment's subject.  If not specified, extract
    ** one from the comment's body.
    */

Dries's avatar
 
Dries committed
277
    $edit["subject"] = strip_tags($edit["subject"]);
Dries's avatar
 
Dries committed
278

Dries's avatar
 
Dries committed
279 280 281
    if ($edit["subject"] == "") {
      $edit["subject"] = substr(strip_tags($edit["comment"]), 0, 29);
    }
Dries's avatar
 
Dries committed
282 283 284 285 286

    /*
    ** Validate the comment's body.
    */

Dries's avatar
 
Dries committed
287 288 289 290
    if ($edit["comment"] == "") {
      return array(t("Empty comment"), t("The comment you submitted is empty."));
    }

Dries's avatar
 
Dries committed
291 292 293 294 295
    /*
    ** Check for duplicate comments.  Note that we have to use the
    ** validated/filtered data to perform such check.
    */

Dries's avatar
 
Dries committed
296
    $duplicate = db_result(db_query("SELECT COUNT(cid) FROM {comments} WHERE pid = %d AND nid = %d AND subject = '%s' AND comment = '%s'", $edit["pid"], $edit["nid"], $edit["subject"], $edit["comment"]), 0);
Dries's avatar
 
Dries committed
297 298

    if ($duplicate != 0) {
Dries's avatar
 
Dries committed
299
      watchdog("warning", "comment: duplicate '". $edit["subject"] ."'");
Dries's avatar
 
Dries committed
300
      return array(t("Duplicate comment"), t("The comment you submitted has already been inserted."));
Dries's avatar
 
Dries committed
301 302 303
    }
    else {

Dries's avatar
 
Dries committed
304
      if ($edit["cid"]) {
Dries's avatar
 
Dries committed
305

Dries's avatar
 
Dries committed
306 307 308 309 310 311
        /*
        ** Update the comment in the database.  Note that the update
        ** query will fail if the comment isn't owned by the current
        ** user.
        */

Dries's avatar
 
Dries committed
312
        db_query("UPDATE {comments} SET subject = '%s', comment = '%s' WHERE cid = %d AND uid = '$user->uid'", $edit["subject"], $edit["comment"], $edit["cid"]);
Dries's avatar
 
Dries committed
313 314 315 316 317 318

        /*
        ** Fire a hook
        */

        module_invoke_all("comment", "update", $edit);
Dries's avatar
 
Dries committed
319 320 321 322 323

        /*
        ** Add entry to the watchdog log:
        */

Dries's avatar
 
Dries committed
324
        watchdog("special", "comment: updated '". $edit["subject"] ."'", l(t("view comment"), "node/view/". $edit["nid"], NULL, NULL, "comment-". $edit["cid"]));
Dries's avatar
 
Dries committed
325 326 327 328 329 330
      }
      else {
        /*
        ** Add the comment to database:
        */

Dries's avatar
 
Dries committed
331 332 333 334 335
        $status = user_access("post comments without approval") ? 0 : 1;
        $roles = variable_get("comment_roles", array());
        $score = $roles[$user->rid] ? $roles[$user->rid] : 0;
        $users = serialize(array(0 => $score));

Dries's avatar
 
Dries committed
336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399
        /*
        ** Here we are building the thread field.  See the comment
        ** in comment_render().
        */

        if ($edit["pid"] == 0) {
          /*
          ** This is a comment with no parent comment (depth 0): we start
          ** by retrieving the maximum thread level.
          */

          $max = db_result(db_query("SELECT MAX(thread) FROM {comments} WHERE nid = %d", $edit["nid"]));

          // Strip the "/" from the end of the thread
          $max = rtrim($max, "/");

          /*
          ** Next, we increase this value by one.  Note that we can't
          ** use 1, 2, 3, ... 9, 10, 11 because we order by string and
          ** 10 would be right after 1.  We use 1, 2, 3, ..., 9, 91,
          ** 92, 93, ... instead.  Ugly but fast.
          */

          $decimals = (string)substr($max, 0, strlen($max) - 1);
          $units = substr($max, -1, 1);
          if ($units) {
            $units++;
          }
          else {
            $units = 1;
          }

          if ($units == 10) {
            $units = "90";
          }

          // Finally build the thread field for this new comment
          $thread = "$decimals$units/";
        }
        else {
          /*
          ** This is comment with a parent comment: we increase
          ** the part of the thread value at the proper depth.
          */

          // Get the parent comment:
          $parent = db_fetch_object(db_query("SELECT * FROM {comments} WHERE cid = '%d'", $edit["pid"]));

          // Strip the "/" from the end of the parent thread:
          $parent->thread = (string)rtrim((string)$parent->thread, "/");

          // Get the max value in _this_ thread:
          $max = db_result(db_query("SELECT MAX(thread) FROM {comments} WHERE thread LIKE '%s.%%' AND nid = '%d'", $parent->thread, $edit["nid"]));

          if ($max == "") {
            // First child of this parent
            $thread = "$parent->thread.1/";
          }
          else {
            // Strip the "/" at the end of the thread:
            $max = rtrim($max, "/");

            // We need to get the value at the correct depth:
            $parts = explode(".", $max);
Dries's avatar
 
Dries committed
400
            $parent_depth = count(explode(".", $parent->thread));
Dries's avatar
 
Dries committed
401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417
            $last = $parts[$parent_depth];

            /*
            ** Next, we increase this value by one.  Note that we can't
            ** use 1, 2, 3, ... 9, 10, 11 because we order by string and
            ** 10 would be right after 1.  We use 1, 2, 3, ..., 9, 91,
            ** 92, 93, ... instead.  Ugly but fast.
            */

            $decimals = (string)substr($last, 0, strlen($last) - 1);
            $units = substr($last, -1, 1);
            $units++;
            if ($units == 10) {
              $units = "90";
            }

            // Finally build the thread field for this new comment:
Dries's avatar
 
Dries committed
418
            $thread = "$parent->thread.". $decimals.$units ."/";
Dries's avatar
 
Dries committed
419 420 421 422
          }
        }


Dries's avatar
 
Dries committed
423
        $edit["cid"] = db_next_id("{comments}_cid");
Dries's avatar
 
Dries committed
424

Dries's avatar
 
Dries committed
425
        db_query("INSERT INTO {comments} (cid, nid, pid, uid, subject, comment, hostname, timestamp, status, score, users, thread) VALUES (%d, %d, %d, %d, '%s', '%s', '%s', %d, %d, %d, '%s', '%s')", $edit["cid"], $edit["nid"], $edit["pid"], $user->uid, $edit["subject"], $edit["comment"], $_SERVER['REMOTE_ADDR'], time(), $status, $score, $users, $thread);
Dries's avatar
 
Dries committed
426 427 428 429 430 431

        /*
        ** Tell the other modules a new comment has been submitted:
        */

        module_invoke_all("comment", "insert", $edit);
Dries's avatar
 
Dries committed
432 433 434 435

        /*
        ** Add entry to the watchdog log:
        */
Dries's avatar
 
Dries committed
436

Dries's avatar
 
Dries committed
437
        watchdog("special", "comment: added '". $edit["subject"] ."'", l(t("view comment"), "node/view/". $edit["nid"], NULL, NULL, "comment-". $edit["cid"]));
Dries's avatar
 
Dries committed
438
      }
Dries's avatar
 
Dries committed
439 440

      /*
Dries's avatar
 
Dries committed
441 442
      ** Clear the cache so an anonymous user can see his comment being
      ** added.
Dries's avatar
 
Dries committed
443
      */
Dries's avatar
 
Dries committed
444

Dries's avatar
 
Dries committed
445
      cache_clear_all();
Dries's avatar
 
Dries committed
446 447
    }
  }
Dries's avatar
 
Dries committed
448 449 450 451
  else {
    watchdog("error", "comment: unauthorized comment submitted or comment submitted to a closed node '". $edit["subject"] ."'");
    return array(t("Error"), t("You are not authorized to post comments, or this node doesn't accept new comments."));
  }
Dries's avatar
 
Dries committed
452 453

  /*
Dries's avatar
 
Dries committed
454
  ** Redirect the user the node he commented on, or explain queue
Dries's avatar
 
Dries committed
455 456
  */

Dries's avatar
 
Dries committed
457 458
  if ($status == 1) {
    return array(t("Comment queued"), t("Your comment has been queued for moderation by site administrators and will be published after approval."));
Dries's avatar
 
Dries committed
459 460 461 462
  }
}

function comment_links($comment, $return = 1) {
Dries's avatar
 
Dries committed
463
  global $user;
Dries's avatar
 
Dries committed
464

Dries's avatar
 
Dries committed
465
  $links = array();
Dries's avatar
 
Dries committed
466

Dries's avatar
 
Dries committed
467 468 469 470
  /*
  ** If we are viewing just this comment, we link back to the node
  */

Dries's avatar
 
Dries committed
471
  if ($return) {
Dries's avatar
 
Dries committed
472
    $links[] = l(t("parent"), comment_referer_load(), NULL, NULL, "comment-$comment->cid");
Dries's avatar
 
Dries committed
473
  }
Dries's avatar
 
Dries committed
474

Dries's avatar
 
Dries committed
475
  if (node_comment_mode($comment->nid) == 2) {
476 477 478 479 480 481
    if (user_access("administer comments") && user_access("access administration pages")) {
      $links[] = l(t("delete comment"), "admin/comment/delete/$comment->cid");
      $links[] = l(t("edit comment"), "admin/comment/edit/$comment->cid");
      $links[] = l(t("reply to this comment"), "comment/reply/$comment->nid/$comment->cid");
    }
    else if (user_access("post comments")) {
Dries's avatar
 
Dries committed
482
      if (comment_access("edit", $comment)) {
483
        $links[] = l(t("edit your comment"), "comment/edit/$comment->cid");
Dries's avatar
 
Dries committed
484
      }
Dries's avatar
 
Dries committed
485
      $links[] = l(t("reply to this comment"), "comment/reply/$comment->nid/$comment->cid");
Dries's avatar
 
Dries committed
486 487
    }
    else {
488
      $links[] = theme("comment_post_forbidden");
Dries's avatar
 
Dries committed
489
    }
Dries's avatar
 
Dries committed
490
  }
Dries's avatar
 
Dries committed
491

Dries's avatar
 
Dries committed
492
  if ($moderation = theme("comment_moderation_form", $comment)) {
Dries's avatar
 
Dries committed
493 494
    $links[] = $moderation;
  }
Dries's avatar
 
Dries committed
495

Dries's avatar
 
Dries committed
496
  return $links;
Dries's avatar
 
Dries committed
497 498
}

Dries's avatar
 
Dries committed
499
function comment_render($node, $cid = 0) {
Dries's avatar
 
Dries committed
500 501 502 503 504 505 506
  global $user;

  $mode = $_GET["mode"];
  $order = $_GET["order"];
  $threshold = $_GET["threshold"];
  $comments_per_page = $_GET["comments_per_page"];
  $comment_page = $_GET["comment_page"];
Dries's avatar
 
Dries committed
507

Dries's avatar
 
Dries committed
508 509
  $output = "";

Dries's avatar
 
Dries committed
510 511
  if (user_access("access comments")) {

Dries's avatar
 
Dries committed
512 513 514 515 516 517
    /*
    ** Save were we come from so we can go back after a reply
    */

    comment_referer_save();

Dries's avatar
 
Dries committed
518 519 520 521
    /*
    ** Pre-process variables:
    */

Dries's avatar
 
Dries committed
522
    $nid = $node->nid;
Dries's avatar
 
Dries committed
523 524
    if (empty($nid)) {
      $nid = 0;
Dries's avatar
 
Dries committed
525 526 527
    }

    if (empty($mode)) {
528
      $mode = $user->mode ? $user->mode : ($_SESSION["comment_mode"] ? $_SESSION["comment_mode"] : variable_get("comment_default_mode", 4));
Dries's avatar
 
Dries committed
529 530 531
    }

    if (empty($order)) {
532
      $order = $user->sort ? $user->sort : ($_SESSION["comment_sort"] ? $_SESSION["comment_sort"] : variable_get("comment_default_order", 1));
Dries's avatar
 
Dries committed
533 534 535
    }

    if (empty($threshold)) {
536
      $threshold = $user->threshold ? $user->threshold : ($_SESSION["comment_threshold"] ? $_SESSION["comment_threshold"] : variable_get("comment_default_threshold", 0));
Dries's avatar
 
Dries committed
537
    }
Dries's avatar
 
Dries committed
538
    $threshold_min = db_result(db_query("SELECT minimum FROM {moderation_filters} WHERE fid = %d", $threshold));
Dries's avatar
 
Dries committed
539

Dries's avatar
 
Dries committed
540
    if (empty($comments_per_page)) {
541
      $comments_per_page = $user->comments_per_page ? $user->comments_per_page : ($_SESSION["comment_comments_per_page"] ? $_SESSION["comment_comments_per_page"] : variable_get("comment_default_per_page", "50"));
Dries's avatar
 
Dries committed
542
    }
Dries's avatar
 
Dries committed
543

Dries's avatar
 
Dries committed
544
    $output .= "<a id=\"comment\"></a>\n";
Dries's avatar
 
Dries committed
545 546


Kjartan's avatar
Kjartan committed
547
    if ($cid) {
Dries's avatar
 
Dries committed
548 549 550 551 552

      /*
      ** Single comment view
      */

Dries's avatar
 
Dries committed
553 554
      $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
      $output .= form_hidden("nid", $nid);
Dries's avatar
 
Dries committed
555

Dries's avatar
 
Dries committed
556
      $result = db_query("SELECT c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status = 0 GROUP BY c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users", $cid);
Dries's avatar
 
Dries committed
557

Dries's avatar
 
Dries committed
558
      if ($comment = db_fetch_object($result)) {
Dries's avatar
 
Dries committed
559
        $output .= theme("comment_view", $comment, theme('links', module_invoke_all('link', 'comment', $comment, 1)));
Dries's avatar
 
Dries committed
560
      }
Dries's avatar
 
Dries committed
561

Dries's avatar
 
Dries committed
562
      if ((comment_user_can_moderate($node)) && $user->uid != $comment->uid && !(comment_already_moderated($user->uid, $comment->users))) {
Dries's avatar
 
Dries committed
563
        $output .= "<div style=\"text-align: center;\">". form_submit(t("Moderate comment")) ."</div><br />";
Dries's avatar
 
Dries committed
564
      }
Dries's avatar
 
Dries committed
565
      $output .= "</div></form>";
Dries's avatar
 
Dries committed
566
    }
Dries's avatar
 
Dries committed
567
    else {
Dries's avatar
 
Dries committed
568

Dries's avatar
 
Dries committed
569 570 571 572
      /*
      ** Multiple comments view
      */

Dries's avatar
 
Dries committed
573
      $query .= "SELECT c.cid as cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users, c.thread FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.nid = '". check_query($nid) ."' AND c.status = 0";
Dries's avatar
 
Dries committed
574

Dries's avatar
 
Dries committed
575
      $query .= " GROUP BY c.cid, c.pid, c.nid, c.subject, c.comment, c.timestamp, u.uid, u.name, u.picture, u.data, c.score, c.users, c.thread";
Dries's avatar
 
Dries committed
576

Dries's avatar
 
Dries committed
577 578 579 580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602 603 604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622 623 624 625 626 627 628 629 630 631 632 633 634 635 636 637 638
      /*
      ** We want to use the standard pager, but threads would need every
      ** comment to build the thread structure, so we need to store some
      ** extra info.
      **
      ** We use a "thread" field to store this extra info. The basic idea
      ** is to store a value and to order by that value. The "thread" field
      ** keeps this data in a way which is easy to update and convenient
      ** to use.
      **
      ** A "thread" value starts at "1". If we add a child (A) to this
      ** comment, we assign it a "thread" = "1.1". A child of (A) will have
      ** "1.1.1". Next brother of (A) will get "1.2". Next brother of the
      ** parent of (A) will get "2" and so on.
      **
      ** First of all note that the thread field stores the depth of the
      ** comment: depth 0 will be "X", depth 1 "X.X", depth 2 "X.X.X", etc.
      **
      ** Now to get the ordering right, consider this example:
      **
      ** 1
      ** 1.1
      ** 1.1.1
      ** 1.2
      ** 2
      **
      ** If we "ORDER BY thread ASC" we get the above result, and this is
      ** the natural order sorted by time.  However, if we "ORDER BY thread
      ** DESC" we get:
      **
      ** 2
      ** 1.2
      ** 1.1.1
      ** 1.1
      ** 1
      **
      ** Clearly, this is not a natural way to see a thread, and users
      ** will get confused. The natural order to show a thread by time
      ** desc would be:
      **
      ** 2
      ** 1
      ** 1.2
      ** 1.1
      ** 1.1.1
      **
      ** which is what we already did before the standard pager patch. To
      ** achieve this we simply add a "/" at the end of each "thread" value.
      ** This way out thread fields will look like depicted below:
      **
      ** 1/
      ** 1.1/
      ** 1.1.1/
      ** 1.2/
      ** 2/
      **
      ** we add "/" since this char is, in ASCII, higher than every number,
      ** so if now we "ORDER BY thread DESC" we get the correct order.  Try
      ** it, it works ;).  However this would spoil the "ORDER BY thread ASC"
      ** Here, we do not need to consider the trailing "/" so we use a
      ** substring only.
      */
Dries's avatar
 
Dries committed
639 640

      if ($order == 1) {
Dries's avatar
 
Dries committed
641 642 643 644 645 646
        if ($mode == 1 || $mode == 2) {
          $query .= " ORDER BY c.timestamp DESC";
        }
        else {
          $query .= " ORDER BY c.thread DESC";
        }
Dries's avatar
 
Dries committed
647
      }
Dries's avatar
 
Dries committed
648
      else if ($order == 2) {
Dries's avatar
 
Dries committed
649 650 651 652 653 654 655 656 657 658 659 660 661
        if ($mode == 1 || $mode == 2) {
          $query .= " ORDER BY c.timestamp";
        }
        else {

          /*
          ** See comment above.  Analysis learns that this doesn't cost
          ** too much.  It scales much much better than having the whole
          ** comment structure.
          */

          $query .= " ORDER BY SUBSTRING(c.thread, 1, (LENGTH(c.thread) - 1))";
        }
Dries's avatar
 
Dries committed
662 663 664
      }

      /*
Dries's avatar
 
Dries committed
665
      ** Start a form, to use with comment control and moderation.
Dries's avatar
 
Dries committed
666 667
      */

Dries's avatar
 
Dries committed
668
      $result = pager_query($query, $comments_per_page, 0, "SELECT COUNT(*) FROM {comments} WHERE nid = '". check_query($nid) ."'");
669
      if (db_num_rows($result) && (variable_get("comment_controls", 0) == 0 || variable_get("comment_controls", 0) == 2)) {
Dries's avatar
 
Dries committed
670 671 672 673
        $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
        $output .= theme("comment_controls", $threshold, $mode, $order, $comments_per_page);
        $output .= form_hidden("nid", $nid);
        $output .= "</div></form>";
Dries's avatar
 
Dries committed
674
      }
Dries's avatar
 
Dries committed
675

Dries's avatar
 
Dries committed
676 677
      $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
      $output .= form_hidden("nid", $nid);
Dries's avatar
 
Dries committed
678

Dries's avatar
 
Dries committed
679
      while ($comment = db_fetch_object($result)) {
Dries's avatar
 
Dries committed
680
        $comment = drupal_unpack($comment);
Dries's avatar
 
Dries committed
681
        $comment->depth = count(explode(".", $comment->thread)) - 1;
Dries's avatar
 
Dries committed
682

Dries's avatar
 
Dries committed
683
        if ($mode == 1) {
Dries's avatar
 
Dries committed
684
          $output .= theme("comment_flat_collapsed", $comment, $threshold_min);
Dries's avatar
 
Dries committed
685
        }
Dries's avatar
 
Dries committed
686
        else if ($mode == 2) {
Dries's avatar
 
Dries committed
687
          $output .= theme("comment_flat_expanded", $comment, $threshold_min);
Dries's avatar
 
Dries committed
688
        }
Dries's avatar
 
Dries committed
689
        else if ($mode == 3) {
Dries's avatar
 
Dries committed
690
          $output .= theme("comment_thread_min", $comment, $threshold_min);
Dries's avatar
 
Dries committed
691
        }
Dries's avatar
 
Dries committed
692
        else if ($mode == 4) {
Dries's avatar
 
Dries committed
693
          $output .= theme("comment_thread_max", $comment, $threshold_min);
Dries's avatar
 
Dries committed
694 695
        }
      }
Dries's avatar
 
Dries committed
696

Dries's avatar
 
Dries committed
697 698 699 700
      /*
      ** Use the standard pager, $pager_total is the number of returned rows,
      ** is global and defined in pager.inc
      */
Dries's avatar
Dries committed
701
      if ($pager = theme("pager", NULL, $comments_per_page, 0, array("comments_per_page" => $comments_per_page))) {
Dries's avatar
 
Dries committed
702
        $output .= $pager;
Dries's avatar
 
Dries committed
703
      }
Dries's avatar
 
Dries committed
704

705
      if (db_num_rows($result) && comment_user_can_moderate($node)) {
Dries's avatar
 
Dries committed
706
        $output .= "<div align=\"center\">". form_submit(t("Moderate comments")) ."</div><br />";
Dries's avatar
 
Dries committed
707
      }
Dries's avatar
 
Dries committed
708

Dries's avatar
 
Dries committed
709
      $output .= "</div></form>";
Dries's avatar
 
Dries committed
710

711
      if (db_num_rows($result) && (variable_get("comment_controls", 0) == 1 || variable_get("comment_controls", 0) == 2)) {
Dries's avatar
 
Dries committed
712 713 714 715
        $output .= "<form method=\"post\" action=\"". url("comment") ."\"><div>\n";
        $output .= theme("comment_controls", $threshold, $mode, $order, $comments_per_page);
        $output .= form_hidden("nid", $nid);
        $output .= "</div></form>";
Dries's avatar
 
Dries committed
716
      }
Dries's avatar
 
Dries committed
717 718
    }

Dries's avatar
 
Dries committed
719 720 721 722
    /*
    ** If enabled, show new comment form
    */

Dries's avatar
 
Dries committed
723
    if (user_access("post comments") && node_comment_mode($nid) == 2 && variable_get("comment_form_location", 0)) {
Dries's avatar
 
Dries committed
724
      $output .= theme("comment_form", array("nid" => $nid), t("Post new comment"));
Dries's avatar
 
Dries committed
725
    }
Dries's avatar
 
Dries committed
726
  }
Dries's avatar
 
Dries committed
727
  return $output;
Dries's avatar
 
Dries committed
728 729
}

Dries's avatar
 
Dries committed
730 731 732
function comment_perm() {
  return array("access comments", "post comments", "administer comments", "moderate comments", "post comments without approval", "administer moderation");
}
Dries's avatar
 
Dries committed
733

Dries's avatar
 
Dries committed
734
function comment_link($type, $node = 0, $main = 0) {
Dries's avatar
 
Dries committed
735
  $links = array();
Dries's avatar
 
Dries committed
736

Dries's avatar
 
Dries committed
737
  if ($type == "node" && $node->comment) {
Dries's avatar
 
Dries committed
738 739 740 741 742 743 744 745

    if ($main) {

      /*
      ** Main page: display the number of comments that have been posted.
      */

      if (user_access("access comments")) {
Dries's avatar
 
Dries committed
746
        $all = comment_num_all($node->nid);
Dries's avatar
 
Dries committed
747
        $new = comment_num_new($node->nid);
Dries's avatar
 
Dries committed
748

Dries's avatar
 
Dries committed
749
        if ($all) {
Dries's avatar
 
Dries committed
750
          $links[] = l(format_plural($all, "1 comment", "%count comments"), "node/view/$node->nid", array("title" => t("Jump to the first comment of this posting.")), NULL, "comment");
Dries's avatar
 
Dries committed
751

Dries's avatar
 
Dries committed
752
          if ($new) {
Dries's avatar
 
Dries committed
753
            $links[] = l(format_plural($new, "1 new comment", "%count new comments"), "node/view/$node->nid", array("title" => t("Jump to the first new comment of this posting.")), NULL, "new");
Dries's avatar
 
Dries committed
754 755 756
          }
        }
        else {
Dries's avatar
 
Dries committed
757 758 759 760 761 762 763
          if ($node->comment == 2) {
            if (user_access("post comments")) {
              $links[] = l(t("add new comment"), "comment/reply/$node->nid", array("title" => t("Add a new comment to this page.")));
            }
            else {
              $links[] = theme("comment_post_forbidden");
            }
Dries's avatar
 
Dries committed
764 765
          }
        }
Dries's avatar
 
Dries committed
766 767 768 769 770
      }
    }
    else {
      /*
      ** Node page: add a "post comment" link if the user is allowed to
Dries's avatar
 
Dries committed
771
      ** post comments and if this node is not read-only
Dries's avatar
 
Dries committed
772 773
      */

Dries's avatar
 
Dries committed
774 775
      if ($node->comment == 2) {
        if (user_access("post comments")) {
Dries's avatar
 
Dries committed
776
          $links[] = l(t("add new comment"), "comment/reply/$node->nid", array("title" => t("Share your thoughts and opinions related to this posting.")), NULL, "comment");
Kjartan's avatar
Kjartan committed
777 778
        }
        else {
779
          $links[] = theme("comment_post_forbidden");
Dries's avatar
 
Dries committed
780
        }
Dries's avatar
 
Dries committed
781 782 783 784
      }
    }
  }

Dries's avatar
 
Dries committed
785 786 787 788
  if ($type == "comment") {
    $links = comment_links($node, $main);
  }

Dries's avatar
 
Dries committed
789 790 791
  if ($type == "system") {
    if (user_access("administer comments")) {

Dries's avatar
 
Dries committed
792
      menu("admin/comment", t("comments"), "comment_admin", 1);
Dries's avatar
 
Dries committed
793
      menu("admin/comment/comments", t("overview"), "comment_admin", 2);
Dries's avatar
 
Dries committed
794 795
      menu("admin/comment/comments/0", t("new/updated"), "comment_admin", 1);
      menu("admin/comment/comments/1", t("approval queue"), "comment_admin", 2);
Dries's avatar
 
Dries committed
796
      menu("admin/comment/help", t("help"), "comment_help_page", 9);
Dries's avatar
 
Dries committed
797
      menu("admin/comment/edit", t("edit comment"), "comment_admin", 0, MENU_HIDE);
798
      menu("admin/comment/delete", t("delete comment"), "comment_admin", 0, MENU_HIDE);
Dries's avatar
 
Dries committed
799 800 801
      if (module_exist('search')) {
        menu("admin/comment/search", t("search"), "comment_admin", 8);
      }
Dries's avatar
 
Dries committed
802 803 804

      // comment settings:
      if (user_access("administer moderation")) {
Dries's avatar
 
Dries committed
805
        menu("admin/comment/moderation", t("moderation"), "comment_admin", 3);
Dries's avatar
 
Dries committed
806 807 808 809
        menu("admin/comment/moderation/votes", t("votes"), "comment_admin");
        menu("admin/comment/moderation/matrix", t("matrix"), "comment_admin");
        menu("admin/comment/moderation/filters", t("thresholds"), "comment_admin");
        menu("admin/comment/moderation/roles", t("initial scores"), "comment_admin", 6);
Dries's avatar
 
Dries committed
810
      }
Dries's avatar
 
Dries committed
811
    }
Dries's avatar
 
Dries committed
812
    menu("comment", t("comments"), "comment_page", 0, MENU_HIDE);
Dries's avatar
 
Dries committed
813 814
  }

Dries's avatar
 
Dries committed
815
  return $links;
Dries's avatar
 
Dries committed
816 817
}

Dries's avatar
 
Dries committed
818
function comment_page() {
Dries's avatar
 
Dries committed
819 820
  $op = $_POST["op"];
  $edit = $_POST["edit"];
Dries's avatar
 
Dries committed
821 822 823 824

  if (empty($op)) {
    $op = arg(1);
  }
Dries's avatar
 
Dries committed
825 826 827

  switch ($op) {
    case "edit":
Dries's avatar
 
Dries committed
828
      print theme("page", comment_edit(check_query(arg(2))), t("Edit comment"));;
Dries's avatar
 
Dries committed
829
      break;
Dries's avatar
 
Dries committed
830 831 832
    case t("Moderate comments"):
    case t("Moderate comment"):
      comment_moderate($edit);
Dries's avatar
Dries committed
833
      drupal_goto(comment_referer_load());
Dries's avatar
 
Dries committed
834
      break;
Dries's avatar
 
Dries committed
835
    case "reply":
Dries's avatar
 
Dries committed
836
      print theme("page", comment_reply(check_query(arg(3)), check_query(arg(2))), t("Add new comment"));
Dries's avatar
 
Dries committed
837 838
      break;
    case t("Preview comment"):
Dries's avatar
 
Dries committed
839
      print theme("page", comment_preview($edit), t("Preview comment"));
Dries's avatar
 
Dries committed
840 841
      break;
    case t("Post comment"):
Dries's avatar
 
Dries committed
842 843
      list($error_title, $error_body) = comment_post($edit);
      if ($error_body) {
Dries's avatar
 
Dries committed
844
        print theme("page", $error_body, $error_title);
Dries's avatar
 
Dries committed
845 846
      }
      else {
Dries's avatar
Dries committed
847
        drupal_goto(comment_referer_load());
Dries's avatar
 
Dries committed
848
      }
Dries's avatar
 
Dries committed
849
      break;
850
    case t("Save settings"):
Dries's avatar
 
Dries committed
851 852 853 854 855
      $mode = $_POST["mode"];
      $order = $_POST["order"];
      $threshold = $_POST["threshold"];
      $comments_per_page = $_POST["comments_per_page"];

856
      comment_save_settings(check_query($mode), check_query($order), check_query($threshold), check_query($comments_per_page));
Dries's avatar
Dries committed
857
      drupal_goto(comment_referer_load());
Dries's avatar
 
Dries committed
858 859 860 861
      break;
  }
}

Dries's avatar
 
Dries committed
862 863 864
/**
*** admin functions
**/
Dries's avatar
 
Dries committed
865

Dries's avatar
 
Dries committed
866
function comment_node_link($node) {
Dries's avatar
 
Dries committed
867

Dries's avatar
 
Dries committed
868
  if (user_access("administer comments")) {
Dries's avatar
 
Dries committed
869

Dries's avatar
 
Dries committed
870 871 872
    /*
    ** Edit comments:
    */
Dries's avatar
 
Dries committed
873

Dries's avatar
 
Dries committed
874
    $result = db_query("SELECT c.cid, c.subject, u.uid, u.name FROM {comments} c INNER JOIN {users} u ON u.uid = c.uid WHERE nid = %d AND c.status = 0 ORDER BY c.timestamp", $node->nid);
Dries's avatar
 
Dries committed
875

Dries's avatar
 
Dries committed
876 877

    $header = array(t("title"), t("author"), array("data" => t("operations"), "colspan" => 3));
Dries's avatar
 
Dries committed
878 879

    while ($comment = db_fetch_object($result)) {
Dries's avatar
 
Dries committed
880
      $rows[] = array(l($comment->subject, "node/view/$node->nid", NULL, NULL, "comment-$comment->cid"), format_name($comment), l(t("view comment"), "node/view/$node->nid", NULL, NULL, $comment->cid), l(t("edit comment"), "admin/comment/edit/$comment->cid"), l(t("delete comment"), "admin/comment/delete/$comment->cid"));
Dries's avatar
 
Dries committed
881 882
    }

Dries's avatar
 
Dries committed
883 884
    if ($rows) {
      $output  = "<h3>". t("Edit comments") ."</h3>";
Dries's avatar
 
Dries committed
885
      $output .= theme("table", $header, $rows);
Dries's avatar
 
Dries committed
886
    }
Dries's avatar
 
Dries committed
887 888

    return $output;
Dries's avatar
 
Dries committed
889
  }
Dries's avatar
 
Dries committed
890
}
Dries's avatar
 
Dries committed
891

Dries's avatar
 
Dries committed
892 893
function comment_admin_edit($id) {

Dries's avatar
 
Dries committed
894
  $result = db_query("SELECT c.*, u.name, u.uid FROM {comments} c INNER JOIN {users} u ON c.uid = u.uid WHERE c.cid = %d AND c.status != 2", $id);
Dries's avatar
 
Dries committed
895
  $comment = db_fetch_object($result);
Dries's avatar
 
Dries committed
896
  $comment = drupal_unpack($comment);
Dries's avatar
 
Dries committed
897 898 899 900

  if ($comment) {
    $form .= form_item(t("Author"), format_name($comment));
    $form .= form_textfield(t("Subject"), "subject", $comment->subject, 70, 128);
Dries's avatar
 
Dries committed
901
    $form .= form_textarea(t("Comment"), "comment", $comment->comment, 70, 15, filter_tips_short());
902
    $form .= form_radios(t("Status"), "status", $comment->status, array("published"