EntityReference_SelectionHandler_Generic.class.php 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587
  1. <?php
  2. /**
  3. * A generic Entity handler.
  4. *
  5. * The generic base implementation has a variety of overrides to workaround
  6. * core's largely deficient entity handling.
  7. */
  8. class EntityReference_SelectionHandler_Generic implements EntityReference_SelectionHandler {
  9. /**
  10. * Implements EntityReferenceHandler::getInstance().
  11. */
  12. public static function getInstance($field, $instance = NULL, $entity_type = NULL, $entity = NULL) {
  13. $target_entity_type = $field['settings']['target_type'];
  14. // Check if the entity type does exist and has a base table.
  15. $entity_info = entity_get_info($target_entity_type);
  16. if (empty($entity_info['base table'])) {
  17. return EntityReference_SelectionHandler_Broken::getInstance($field, $instance);
  18. }
  19. if (class_exists($class_name = 'EntityReference_SelectionHandler_Generic_' . $target_entity_type)) {
  20. return new $class_name($field, $instance, $entity_type, $entity);
  21. }
  22. else {
  23. return new EntityReference_SelectionHandler_Generic($field, $instance, $entity_type, $entity);
  24. }
  25. }
  26. protected function __construct($field, $instance = NULL, $entity_type = NULL, $entity = NULL) {
  27. $this->field = $field;
  28. $this->instance = $instance;
  29. $this->entity_type = $entity_type;
  30. $this->entity = $entity;
  31. }
  32. /**
  33. * Implements EntityReferenceHandler::settingsForm().
  34. */
  35. public static function settingsForm($field, $instance) {
  36. $entity_info = entity_get_info($field['settings']['target_type']);
  37. // Merge-in default values.
  38. $field['settings']['handler_settings'] += array(
  39. 'target_bundles' => array(),
  40. 'sort' => array(
  41. 'type' => 'none',
  42. )
  43. );
  44. if (!empty($entity_info['entity keys']['bundle'])) {
  45. $bundles = array();
  46. foreach ($entity_info['bundles'] as $bundle_name => $bundle_info) {
  47. $bundles[$bundle_name] = $bundle_info['label'];
  48. }
  49. $form['target_bundles'] = array(
  50. '#type' => 'checkboxes',
  51. '#title' => t('Target bundles'),
  52. '#options' => $bundles,
  53. '#default_value' => $field['settings']['handler_settings']['target_bundles'],
  54. '#size' => 6,
  55. '#multiple' => TRUE,
  56. '#description' => t('The bundles of the entity type that can be referenced. Optional, leave empty for all bundles.'),
  57. '#element_validate' => array('_entityreference_element_validate_filter'),
  58. );
  59. }
  60. else {
  61. $form['target_bundles'] = array(
  62. '#type' => 'value',
  63. '#value' => array(),
  64. );
  65. }
  66. $form['sort']['type'] = array(
  67. '#type' => 'select',
  68. '#title' => t('Sort by'),
  69. '#options' => array(
  70. 'none' => t("Don't sort"),
  71. 'property' => t('A property of the base table of the entity'),
  72. 'field' => t('A field attached to this entity'),
  73. ),
  74. '#ajax' => TRUE,
  75. '#limit_validation_errors' => array(),
  76. '#default_value' => $field['settings']['handler_settings']['sort']['type'],
  77. );
  78. $form['sort']['settings'] = array(
  79. '#type' => 'container',
  80. '#attributes' => array('class' => array('entityreference-settings')),
  81. '#process' => array('_entityreference_form_process_merge_parent'),
  82. );
  83. if ($field['settings']['handler_settings']['sort']['type'] == 'property') {
  84. // Merge-in default values.
  85. $field['settings']['handler_settings']['sort'] += array(
  86. 'property' => NULL,
  87. );
  88. $form['sort']['settings']['property'] = array(
  89. '#type' => 'select',
  90. '#title' => t('Sort property'),
  91. '#required' => TRUE,
  92. '#options' => drupal_map_assoc($entity_info['schema_fields_sql']['base table']),
  93. '#default_value' => $field['settings']['handler_settings']['sort']['property'],
  94. );
  95. }
  96. elseif ($field['settings']['handler_settings']['sort']['type'] == 'field') {
  97. // Merge-in default values.
  98. $field['settings']['handler_settings']['sort'] += array(
  99. 'field' => NULL,
  100. );
  101. $fields = array();
  102. foreach (field_info_instances($field['settings']['target_type']) as $bundle_name => $bundle_instances) {
  103. foreach ($bundle_instances as $instance_name => $instance_info) {
  104. $field_info = field_info_field($instance_name);
  105. foreach ($field_info['columns'] as $column_name => $column_info) {
  106. $fields[$instance_name . ':' . $column_name] = t('@label (column @column)', array('@label' => $instance_info['label'], '@column' => $column_name));
  107. }
  108. }
  109. }
  110. $form['sort']['settings']['field'] = array(
  111. '#type' => 'select',
  112. '#title' => t('Sort field'),
  113. '#required' => TRUE,
  114. '#options' => $fields,
  115. '#default_value' => $field['settings']['handler_settings']['sort']['field'],
  116. );
  117. }
  118. if ($field['settings']['handler_settings']['sort']['type'] != 'none') {
  119. // Merge-in default values.
  120. $field['settings']['handler_settings']['sort'] += array(
  121. 'direction' => 'ASC',
  122. );
  123. $form['sort']['settings']['direction'] = array(
  124. '#type' => 'select',
  125. '#title' => t('Sort direction'),
  126. '#required' => TRUE,
  127. '#options' => array(
  128. 'ASC' => t('Ascending'),
  129. 'DESC' => t('Descending'),
  130. ),
  131. '#default_value' => $field['settings']['handler_settings']['sort']['direction'],
  132. );
  133. }
  134. return $form;
  135. }
  136. /**
  137. * Implements EntityReferenceHandler::getReferencableEntities().
  138. */
  139. public function getReferencableEntities($match = NULL, $match_operator = 'CONTAINS', $limit = 0) {
  140. $options = array();
  141. $entity_type = $this->field['settings']['target_type'];
  142. $query = $this->buildEntityFieldQuery($match, $match_operator);
  143. if ($limit > 0) {
  144. $query->range(0, $limit);
  145. }
  146. $results = $query->execute();
  147. if (!empty($results[$entity_type])) {
  148. $entities = entity_load($entity_type, array_keys($results[$entity_type]));
  149. foreach ($entities as $entity_id => $entity) {
  150. list(,, $bundle) = entity_extract_ids($entity_type, $entity);
  151. $options[$bundle][$entity_id] = check_plain($this->getLabel($entity));
  152. }
  153. }
  154. return $options;
  155. }
  156. /**
  157. * Implements EntityReferenceHandler::countReferencableEntities().
  158. */
  159. public function countReferencableEntities($match = NULL, $match_operator = 'CONTAINS') {
  160. $query = $this->buildEntityFieldQuery($match, $match_operator);
  161. return $query
  162. ->count()
  163. ->execute();
  164. }
  165. /**
  166. * Implements EntityReferenceHandler::validateReferencableEntities().
  167. */
  168. public function validateReferencableEntities(array $ids) {
  169. if ($ids) {
  170. $entity_type = $this->field['settings']['target_type'];
  171. $query = $this->buildEntityFieldQuery();
  172. $query->entityCondition('entity_id', $ids, 'IN');
  173. $result = $query->execute();
  174. if (!empty($result[$entity_type])) {
  175. return array_keys($result[$entity_type]);
  176. }
  177. }
  178. return array();
  179. }
  180. /**
  181. * Implements EntityReferenceHandler::validateAutocompleteInput().
  182. */
  183. public function validateAutocompleteInput($input, &$element, &$form_state, $form) {
  184. $entities = $this->getReferencableEntities($input, '=', 6);
  185. if (empty($entities)) {
  186. // Error if there are no entities available for a required field.
  187. form_error($element, t('There are no entities matching "%value"', array('%value' => $input)));
  188. }
  189. elseif (count($entities) > 5) {
  190. // Error if there are more than 5 matching entities.
  191. form_error($element, t('Many entities are called %value. Specify the one you want by appending the id in parentheses, like "@value (@id)"', array(
  192. '%value' => $input,
  193. '@value' => $input,
  194. '@id' => key($entities),
  195. )));
  196. }
  197. elseif (count($entities) > 1) {
  198. // More helpful error if there are only a few matching entities.
  199. $multiples = array();
  200. foreach ($entities as $id => $name) {
  201. $multiples[] = $name . ' (' . $id . ')';
  202. }
  203. form_error($element, t('Multiple entities match this reference; "%multiple"', array('%multiple' => implode('", "', $multiples))));
  204. }
  205. else {
  206. // Take the one and only matching entity.
  207. return key($entities);
  208. }
  209. }
  210. /**
  211. * Build an EntityFieldQuery to get referencable entities.
  212. */
  213. protected function buildEntityFieldQuery($match = NULL, $match_operator = 'CONTAINS') {
  214. $query = new EntityFieldQuery();
  215. $query->entityCondition('entity_type', $this->field['settings']['target_type']);
  216. if (!empty($this->field['settings']['handler_settings']['target_bundles'])) {
  217. $query->entityCondition('bundle', $this->field['settings']['handler_settings']['target_bundles'], 'IN');
  218. }
  219. if (isset($match)) {
  220. $entity_info = entity_get_info($this->field['settings']['target_type']);
  221. if (isset($entity_info['entity keys']['label'])) {
  222. $query->propertyCondition($entity_info['entity keys']['label'], $match, $match_operator);
  223. }
  224. }
  225. // Add a generic entity access tag to the query.
  226. $query->addTag($this->field['settings']['target_type'] . '_access');
  227. $query->addTag('entityreference');
  228. $query->addMetaData('field', $this->field);
  229. $query->addMetaData('entityreference_selection_handler', $this);
  230. // Add the sort option.
  231. if (!empty($this->field['settings']['handler_settings']['sort'])) {
  232. $sort_settings = $this->field['settings']['handler_settings']['sort'];
  233. if ($sort_settings['type'] == 'property') {
  234. $query->propertyOrderBy($sort_settings['property'], $sort_settings['direction']);
  235. }
  236. elseif ($sort_settings['type'] == 'field') {
  237. list($field, $column) = explode(':', $sort_settings['field'], 2);
  238. $query->fieldOrderBy($field, $column, $sort_settings['direction']);
  239. }
  240. }
  241. return $query;
  242. }
  243. /**
  244. * Implements EntityReferenceHandler::entityFieldQueryAlter().
  245. */
  246. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  247. }
  248. /**
  249. * Helper method: pass a query to the alteration system again.
  250. *
  251. * This allow Entity Reference to add a tag to an existing query, to ask
  252. * access control mechanisms to alter it again.
  253. */
  254. protected function reAlterQuery(SelectQueryInterface $query, $tag, $base_table) {
  255. // Save the old tags and metadata.
  256. // For some reason, those are public.
  257. $old_tags = $query->alterTags;
  258. $old_metadata = $query->alterMetaData;
  259. $query->alterTags = array($tag => TRUE);
  260. $query->alterMetaData['base_table'] = $base_table;
  261. drupal_alter(array('query', 'query_' . $tag), $query);
  262. // Restore the tags and metadata.
  263. $query->alterTags = $old_tags;
  264. $query->alterMetaData = $old_metadata;
  265. }
  266. /**
  267. * Implements EntityReferenceHandler::getLabel().
  268. */
  269. public function getLabel($entity) {
  270. $target_type = $this->field['settings']['target_type'];
  271. return entity_access('view', $target_type, $entity) ? entity_label($target_type, $entity) : t('- Restricted access -');
  272. }
  273. /**
  274. * Ensure a base table exists for the query.
  275. *
  276. * If we have a field-only query, we want to assure we have a base-table
  277. * so we can later alter the query in entityFieldQueryAlter().
  278. *
  279. * @param $query
  280. * The Select query.
  281. *
  282. * @return
  283. * The alias of the base-table.
  284. */
  285. public function ensureBaseTable(SelectQueryInterface $query) {
  286. $tables = $query->getTables();
  287. // Check the current base table.
  288. foreach ($tables as $table) {
  289. if (empty($table['join'])) {
  290. $alias = $table['alias'];
  291. break;
  292. }
  293. }
  294. if (strpos($alias, 'field_data_') !== 0) {
  295. // The existing base-table is the correct one.
  296. return $alias;
  297. }
  298. // Join the known base-table.
  299. $target_type = $this->field['settings']['target_type'];
  300. $entity_info = entity_get_info($target_type);
  301. $id = $entity_info['entity keys']['id'];
  302. // Return the alias of the table.
  303. return $query->innerJoin($target_type, NULL, "%alias.$id = $alias.entity_id");
  304. }
  305. }
  306. /**
  307. * Override for the Node type.
  308. *
  309. * This only exists to workaround core bugs.
  310. */
  311. class EntityReference_SelectionHandler_Generic_node extends EntityReference_SelectionHandler_Generic {
  312. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  313. // Adding the 'node_access' tag is sadly insufficient for nodes: core
  314. // requires us to also know about the concept of 'published' and
  315. // 'unpublished'. We need to do that as long as there are no access control
  316. // modules in use on the site. As long as one access control module is there,
  317. // it is supposed to handle this check.
  318. if (!user_access('bypass node access') && !count(module_implements('node_grants'))) {
  319. $base_table = $this->ensureBaseTable($query);
  320. $query->condition("$base_table.status", NODE_PUBLISHED);
  321. }
  322. }
  323. }
  324. /**
  325. * Override for the User type.
  326. *
  327. * This only exists to workaround core bugs.
  328. */
  329. class EntityReference_SelectionHandler_Generic_user extends EntityReference_SelectionHandler_Generic {
  330. /**
  331. * Implements EntityReferenceHandler::settingsForm().
  332. */
  333. public static function settingsForm($field, $instance) {
  334. $settings = $field['settings']['handler_settings'];
  335. $form = parent::settingsForm($field, $instance);
  336. $form['referenceable_roles'] = array(
  337. '#type' => 'checkboxes',
  338. '#title' => t('User roles that can be referenced'),
  339. '#default_value' => isset($settings['referenceable_roles']) ? array_filter($settings['referenceable_roles']) : array(),
  340. '#options' => user_roles(TRUE),
  341. );
  342. $form['referenceable_status'] = array(
  343. '#type' => 'checkboxes',
  344. '#title' => t('User status that can be referenced'),
  345. '#default_value' => isset($settings['referenceable_status']) ? array_filter($settings['referenceable_status']) : array('active' => 'active'),
  346. '#options' => array('active' => t('Active'), 'blocked' => t('Blocked')),
  347. );
  348. return $form;
  349. }
  350. public function buildEntityFieldQuery($match = NULL, $match_operator = 'CONTAINS') {
  351. $query = parent::buildEntityFieldQuery($match, $match_operator);
  352. // The user entity doesn't have a label column.
  353. if (isset($match)) {
  354. $query->propertyCondition('name', $match, $match_operator);
  355. }
  356. $field = $this->field;
  357. $settings = $field['settings']['handler_settings'];
  358. $referenceable_roles = isset($settings['referenceable_roles']) ? array_filter($settings['referenceable_roles']) : array();
  359. $referenceable_status = isset($settings['referenceable_status']) ? array_filter($settings['referenceable_status']) : array('active' => 'active');
  360. // If this filter is not filled, use the users access permissions.
  361. if (empty($referenceable_status)) {
  362. // Adding the 'user_access' tag is sadly insufficient for users: core
  363. // requires us to also know about the concept of 'blocked' and 'active'.
  364. if (!user_access('administer users')) {
  365. $query->propertyCondition('status', 1);
  366. }
  367. }
  368. elseif (count($referenceable_status) == 1) {
  369. $values = array('active' => 1, 'blocked' => 0);
  370. $query->propertyCondition('status', $values[key($referenceable_status)]);
  371. }
  372. return $query;
  373. }
  374. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  375. if (user_access('administer users')) {
  376. // In addition, if the user is administrator, we need to make sure to
  377. // match the anonymous user, that doesn't actually have a name in the
  378. // database.
  379. $conditions = &$query->conditions();
  380. foreach ($conditions as $key => $condition) {
  381. if ($key !== '#conjunction' && is_string($condition['field']) && $condition['field'] === 'users.name') {
  382. // Remove the condition.
  383. unset($conditions[$key]);
  384. // Re-add the condition and a condition on uid = 0 so that we end up
  385. // with a query in the form:
  386. // WHERE (name LIKE :name) OR (:anonymous_name LIKE :name AND uid = 0)
  387. $or = db_or();
  388. $or->condition($condition['field'], $condition['value'], $condition['operator']);
  389. // Sadly, the Database layer doesn't allow us to build a condition
  390. // in the form ':placeholder = :placeholder2', because the 'field'
  391. // part of a condition is always escaped.
  392. // As a (cheap) workaround, we separately build a condition with no
  393. // field, and concatenate the field and the condition separately.
  394. $value_part = db_and();
  395. $value_part->condition('anonymous_name', $condition['value'], $condition['operator']);
  396. $value_part->compile(Database::getConnection(), $query);
  397. $or->condition(db_and()
  398. ->where(str_replace('anonymous_name', ':anonymous_name', (string) $value_part), $value_part->arguments() + array(':anonymous_name' => format_username(user_load(0))))
  399. ->condition('users.uid', 0)
  400. );
  401. $query->condition($or);
  402. }
  403. }
  404. }
  405. }
  406. }
  407. /**
  408. * Override for the Comment type.
  409. *
  410. * This only exists to workaround core bugs.
  411. */
  412. class EntityReference_SelectionHandler_Generic_comment extends EntityReference_SelectionHandler_Generic {
  413. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  414. // Adding the 'comment_access' tag is sadly insufficient for comments: core
  415. // requires us to also know about the concept of 'published' and
  416. // 'unpublished'.
  417. if (!user_access('administer comments')) {
  418. $base_table = $this->ensureBaseTable($query);
  419. $query->condition("$base_table.status", COMMENT_PUBLISHED);
  420. }
  421. // The Comment module doesn't implement any proper comment access,
  422. // and as a consequence doesn't make sure that comments cannot be viewed
  423. // when the user doesn't have access to the node.
  424. $tables = $query->getTables();
  425. $base_table = key($tables);
  426. $node_alias = $query->innerJoin('node', 'n', '%alias.nid = ' . $base_table . '.nid');
  427. // Pass the query to the node access control.
  428. $this->reAlterQuery($query, 'node_access', $node_alias);
  429. // Alas, the comment entity exposes a bundle, but doesn't have a bundle column
  430. // in the database. We have to alter the query ourself to go fetch the
  431. // bundle.
  432. $conditions = &$query->conditions();
  433. foreach ($conditions as $key => &$condition) {
  434. if ($key !== '#conjunction' && is_string($condition['field']) && $condition['field'] === 'node_type') {
  435. $condition['field'] = $node_alias . '.type';
  436. foreach ($condition['value'] as &$value) {
  437. if (substr($value, 0, 13) == 'comment_node_') {
  438. $value = substr($value, 13);
  439. }
  440. }
  441. break;
  442. }
  443. }
  444. // Passing the query to node_query_node_access_alter() is sadly
  445. // insufficient for nodes.
  446. // @see EntityReferenceHandler_node::entityFieldQueryAlter()
  447. if (!user_access('bypass node access') && !count(module_implements('node_grants'))) {
  448. $query->condition($node_alias . '.status', 1);
  449. }
  450. }
  451. }
  452. /**
  453. * Override for the File type.
  454. *
  455. * This only exists to workaround core bugs.
  456. */
  457. class EntityReference_SelectionHandler_Generic_file extends EntityReference_SelectionHandler_Generic {
  458. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  459. // Core forces us to know about 'permanent' vs. 'temporary' files.
  460. $tables = $query->getTables();
  461. $base_table = key($tables);
  462. $query->condition('status', FILE_STATUS_PERMANENT);
  463. // Access control to files is a very difficult business. For now, we are not
  464. // going to give it a shot.
  465. // @todo: fix this when core access control is less insane.
  466. return $query;
  467. }
  468. public function getLabel($entity) {
  469. // The file entity doesn't have a label. More over, the filename is
  470. // sometimes empty, so use the basename in that case.
  471. return $entity->filename !== '' ? $entity->filename : basename($entity->uri);
  472. }
  473. }
  474. /**
  475. * Override for the Taxonomy term type.
  476. *
  477. * This only exists to workaround core bugs.
  478. */
  479. class EntityReference_SelectionHandler_Generic_taxonomy_term extends EntityReference_SelectionHandler_Generic {
  480. public function entityFieldQueryAlter(SelectQueryInterface $query) {
  481. // The Taxonomy module doesn't implement any proper taxonomy term access,
  482. // and as a consequence doesn't make sure that taxonomy terms cannot be viewed
  483. // when the user doesn't have access to the vocabulary.
  484. $base_table = $this->ensureBaseTable($query);
  485. $vocabulary_alias = $query->innerJoin('taxonomy_vocabulary', 'n', '%alias.vid = ' . $base_table . '.vid');
  486. $query->addMetadata('base_table', $vocabulary_alias);
  487. // Pass the query to the taxonomy access control.
  488. $this->reAlterQuery($query, 'taxonomy_vocabulary_access', $vocabulary_alias);
  489. // Also, the taxonomy term entity exposes a bundle, but doesn't have a bundle
  490. // column in the database. We have to alter the query ourself to go fetch
  491. // the bundle.
  492. $conditions = &$query->conditions();
  493. foreach ($conditions as $key => &$condition) {
  494. if ($key !== '#conjunction' && is_string($condition['field']) && $condition['field'] === 'vocabulary_machine_name') {
  495. $condition['field'] = $vocabulary_alias . '.machine_name';
  496. break;
  497. }
  498. }
  499. }
  500. /**
  501. * Implements EntityReferenceHandler::getReferencableEntities().
  502. */
  503. public function getReferencableEntities($match = NULL, $match_operator = 'CONTAINS', $limit = 0) {
  504. if ($match || $limit) {
  505. return parent::getReferencableEntities($match , $match_operator, $limit);
  506. }
  507. $options = array();
  508. $entity_type = $this->field['settings']['target_type'];
  509. // We imitate core by calling taxonomy_get_tree().
  510. $entity_info = entity_get_info('taxonomy_term');
  511. $bundles = !empty($this->field['settings']['handler_settings']['target_bundles']) ? $this->field['settings']['handler_settings']['target_bundles'] : array_keys($entity_info['bundles']);
  512. foreach ($bundles as $bundle) {
  513. if ($vocabulary = taxonomy_vocabulary_machine_name_load($bundle)) {
  514. if ($terms = taxonomy_get_tree($vocabulary->vid, 0, NULL, TRUE)) {
  515. foreach ($terms as $term) {
  516. $options[$vocabulary->machine_name][$term->tid] = str_repeat('-', $term->depth) . check_plain($term->name);
  517. }
  518. }
  519. }
  520. }
  521. return $options;
  522. }
  523. }