2010-07-30 22:34:54 +02:00
< ? php
/**
* Multisite users administration panel .
*
* @ package WordPress
* @ subpackage Multisite
* @ since 3.0 . 0
*/
2010-11-10 15:27:15 +01:00
/** Load WordPress Administration Bootstrap */
2013-09-25 02:18:11 +02:00
require_once ( dirname ( __FILE__ ) . '/admin.php' );
2010-07-30 22:34:54 +02:00
2010-11-10 15:27:15 +01:00
if ( ! is_multisite () )
wp_die ( __ ( 'Multisite support is not enabled.' ) );
2010-12-16 09:43:22 +01:00
if ( ! current_user_can ( 'manage_network_users' ) )
wp_die ( __ ( 'You do not have permission to access this page.' ) );
2011-08-18 04:29:06 +02:00
function confirm_delete_users ( $users ) {
$current_user = wp_get_current_user ();
if ( ! is_array ( $users ) )
return false ;
?>
< h2 >< ? php esc_html_e ( 'Users' ); ?> </h2>
2014-03-05 20:20:14 +01:00
< p >< ? php _e ( 'Transfer or delete content before deleting users.' ); ?> </p>
2011-08-18 04:29:06 +02:00
< form action = " users.php?action=dodelete " method = " post " >
< input type = " hidden " name = " dodelete " />
< ? php
wp_nonce_field ( 'ms-users-delete' );
$site_admins = get_super_admins ();
$admin_out = " <option value=' $current_user->ID '> $current_user->user_login </option> " ;
foreach ( ( $allusers = ( array ) $_POST [ 'allusers' ] ) as $key => $val ) {
if ( $val != '' && $val != '0' ) {
2012-08-03 03:06:05 +02:00
$delete_user = get_userdata ( $val );
2011-08-18 04:29:06 +02:00
if ( ! current_user_can ( 'delete_user' , $delete_user -> ID ) )
wp_die ( sprintf ( __ ( 'Warning! User %s cannot be deleted.' ), $delete_user -> user_login ) );
if ( in_array ( $delete_user -> user_login , $site_admins ) )
2012-06-04 20:06:32 +02:00
wp_die ( sprintf ( __ ( 'Warning! User cannot be deleted. The user %s is a network administrator.' ), $delete_user -> user_login ) );
2011-08-18 04:29:06 +02:00
echo " <input type='hidden' name='user[]' value=' { $val } '/> \n " ;
$blogs = get_blogs_of_user ( $val , true );
if ( ! empty ( $blogs ) ) {
?>
2014-03-19 06:28:16 +01:00
< br />< fieldset >< p >< legend >< ? php printf ( __ ( " What should be done with content owned by %s? " ), '<em>' . $delete_user -> user_login . '</em>' ); ?> </legend></p>
2011-08-18 04:29:06 +02:00
< ? php
foreach ( ( array ) $blogs as $key => $details ) {
2013-12-01 12:58:09 +01:00
$blog_users = get_users ( array ( 'blog_id' => $details -> userblog_id , 'fields' => array ( 'ID' , 'user_login' ) ) );
2011-08-18 04:29:06 +02:00
if ( is_array ( $blog_users ) && ! empty ( $blog_users ) ) {
$user_site = " <a href=' " . esc_url ( get_home_url ( $details -> userblog_id ) ) . " '> { $details -> blogname } </a> " ;
$user_dropdown = " <select name='blog[ $val ][ { $key } ]'> " ;
$user_list = '' ;
foreach ( $blog_users as $user ) {
if ( ! in_array ( $user -> ID , $allusers ) )
$user_list .= " <option value=' { $user -> ID } '> { $user -> user_login } </option> " ;
}
if ( '' == $user_list )
$user_list = $admin_out ;
$user_dropdown .= $user_list ;
$user_dropdown .= " </select> \n " ;
?>
< ul style = " list-style:none; " >
< li >< ? php printf ( __ ( 'Site: %s' ), $user_site ); ?> </li>
< li >< label >< input type = " radio " id = " delete_option0 " name = " delete[<?php echo $details->userblog_id . '][' . $delete_user->ID ?>] " value = " delete " checked = " checked " />
2014-03-05 20:20:14 +01:00
< ? php _e ( 'Delete all content.' ); ?> </label></li>
2011-08-18 04:29:06 +02:00
< li >< label >< input type = " radio " id = " delete_option1 " name = " delete[<?php echo $details->userblog_id . '][' . $delete_user->ID ?>] " value = " reassign " />
2014-03-05 20:20:14 +01:00
< ? php echo __ ( 'Attribute all content to:' ) . '</label>' . $user_dropdown ; ?> </li>
2011-08-18 04:29:06 +02:00
</ ul >
< ? php
}
}
echo " </fieldset> " ;
}
}
}
submit_button ( __ ( 'Confirm Deletion' ), 'delete' );
?>
</ form >
< ? php
return true ;
}
if ( isset ( $_GET [ 'action' ] ) ) {
2013-10-30 17:04:09 +01:00
/** This action is documented in wp-admin/network/edit.php */
do_action ( 'wpmuadminedit' );
2011-08-18 04:29:06 +02:00
switch ( $_GET [ 'action' ] ) {
case 'deleteuser' :
if ( ! current_user_can ( 'manage_network_users' ) )
wp_die ( __ ( 'You do not have permission to access this page.' ) );
check_admin_referer ( 'deleteuser' );
$id = intval ( $_GET [ 'id' ] );
if ( $id != '0' && $id != '1' ) {
$_POST [ 'allusers' ] = array ( $id ); // confirm_delete_users() can only handle with arrays
$title = __ ( 'Users' );
$parent_file = 'users.php' ;
2013-09-25 02:18:11 +02:00
require_once ( ABSPATH . 'wp-admin/admin-header.php' );
2011-08-18 04:29:06 +02:00
echo '<div class="wrap">' ;
confirm_delete_users ( $_POST [ 'allusers' ] );
echo '</div>' ;
2013-09-25 02:18:11 +02:00
require_once ( ABSPATH . 'wp-admin/admin-footer.php' );
2011-08-18 04:29:06 +02:00
} else {
wp_redirect ( network_admin_url ( 'users.php' ) );
}
exit ();
break ;
case 'allusers' :
if ( ! current_user_can ( 'manage_network_users' ) )
wp_die ( __ ( 'You do not have permission to access this page.' ) );
if ( ( isset ( $_POST [ 'action' ]) || isset ( $_POST [ 'action2' ] ) ) && isset ( $_POST [ 'allusers' ] ) ) {
check_admin_referer ( 'bulk-users-network' );
2012-03-02 23:01:41 +01:00
$doaction = $_POST [ 'action' ] != - 1 ? $_POST [ 'action' ] : $_POST [ 'action2' ];
2011-08-18 04:29:06 +02:00
$userfunction = '' ;
foreach ( ( array ) $_POST [ 'allusers' ] as $key => $val ) {
if ( ! empty ( $val ) ) {
switch ( $doaction ) {
case 'delete' :
if ( ! current_user_can ( 'delete_users' ) )
wp_die ( __ ( 'You do not have permission to access this page.' ) );
$title = __ ( 'Users' );
$parent_file = 'users.php' ;
2013-09-25 02:18:11 +02:00
require_once ( ABSPATH . 'wp-admin/admin-header.php' );
2011-08-18 04:29:06 +02:00
echo '<div class="wrap">' ;
confirm_delete_users ( $_POST [ 'allusers' ] );
echo '</div>' ;
2013-09-25 02:18:11 +02:00
require_once ( ABSPATH . 'wp-admin/admin-footer.php' );
2012-03-02 23:03:15 +01:00
exit ();
break ;
2011-08-18 04:29:06 +02:00
case 'spam' :
2012-08-03 03:06:05 +02:00
$user = get_userdata ( $val );
if ( is_super_admin ( $user -> ID ) )
2011-08-18 04:29:06 +02:00
wp_die ( sprintf ( __ ( 'Warning! User cannot be modified. The user %s is a network administrator.' ), esc_html ( $user -> user_login ) ) );
$userfunction = 'all_spam' ;
$blogs = get_blogs_of_user ( $val , true );
foreach ( ( array ) $blogs as $key => $details ) {
if ( $details -> userblog_id != $current_site -> blog_id ) // main blog not a spam !
update_blog_status ( $details -> userblog_id , 'spam' , '1' );
}
update_user_status ( $val , 'spam' , '1' );
break ;
case 'notspam' :
$userfunction = 'all_notspam' ;
$blogs = get_blogs_of_user ( $val , true );
foreach ( ( array ) $blogs as $key => $details )
update_blog_status ( $details -> userblog_id , 'spam' , '0' );
update_user_status ( $val , 'spam' , '0' );
break ;
}
}
}
2011-12-10 19:26:48 +01:00
wp_safe_redirect ( add_query_arg ( array ( 'updated' => 'true' , 'action' => $userfunction ), wp_get_referer () ) );
2011-08-18 04:29:06 +02:00
} else {
$location = network_admin_url ( 'users.php' );
if ( ! empty ( $_REQUEST [ 'paged' ] ) )
$location = add_query_arg ( 'paged' , ( int ) $_REQUEST [ 'paged' ], $location );
wp_redirect ( $location );
}
exit ();
break ;
case 'dodelete' :
check_admin_referer ( 'ms-users-delete' );
if ( ! ( current_user_can ( 'manage_network_users' ) && current_user_can ( 'delete_users' ) ) )
wp_die ( __ ( 'You do not have permission to access this page.' ) );
if ( ! empty ( $_POST [ 'blog' ] ) && is_array ( $_POST [ 'blog' ] ) ) {
foreach ( $_POST [ 'blog' ] as $id => $users ) {
foreach ( $users as $blogid => $user_id ) {
if ( ! current_user_can ( 'delete_user' , $id ) )
continue ;
if ( ! empty ( $_POST [ 'delete' ] ) && 'reassign' == $_POST [ 'delete' ][ $blogid ][ $id ] )
remove_user_from_blog ( $id , $blogid , $user_id );
else
remove_user_from_blog ( $id , $blogid );
}
}
}
$i = 0 ;
if ( is_array ( $_POST [ 'user' ] ) && ! empty ( $_POST [ 'user' ] ) )
foreach ( $_POST [ 'user' ] as $id ) {
if ( ! current_user_can ( 'delete_user' , $id ) )
continue ;
wpmu_delete_user ( $id );
$i ++ ;
}
if ( $i == 1 )
$deletefunction = 'delete' ;
else
$deletefunction = 'all_delete' ;
wp_redirect ( add_query_arg ( array ( 'updated' => 'true' , 'action' => $deletefunction ), network_admin_url ( 'users.php' ) ) );
exit ();
2011-12-09 00:02:33 +01:00
break ;
2011-08-18 04:29:06 +02:00
}
}
2011-01-16 22:47:24 +01:00
$wp_list_table = _get_list_table ( 'WP_MS_Users_List_Table' );
2011-01-25 20:20:20 +01:00
$pagenum = $wp_list_table -> get_pagenum ();
2010-08-22 13:22:46 +02:00
$wp_list_table -> prepare_items ();
2011-01-25 20:20:20 +01:00
$total_pages = $wp_list_table -> get_pagination_arg ( 'total_pages' );
2010-07-30 22:34:54 +02:00
2011-01-26 10:56:17 +01:00
if ( $pagenum > $total_pages && $total_pages > 0 ) {
2011-01-25 20:20:20 +01:00
wp_redirect ( add_query_arg ( 'paged' , $total_pages ) );
exit ;
}
2010-07-30 22:34:54 +02:00
$title = __ ( 'Users' );
$parent_file = 'users.php' ;
2011-10-07 06:57:12 +02:00
add_screen_option ( 'per_page' , array ( 'label' => _x ( 'Users' , 'users per page (screen options)' )) );
2011-10-02 08:59:36 +02:00
2011-12-01 03:22:07 +01:00
get_current_screen () -> add_help_tab ( array (
'id' => 'overview' ,
'title' => __ ( 'Overview' ),
'content' =>
'<p>' . __ ( 'This table shows all users across the network and the sites to which they are assigned.' ) . '</p>' .
2013-11-25 03:05:10 +01:00
'<p>' . __ ( 'Hover over any user on the list to make the edit links appear. The Edit link on the left will take you to their Edit User profile page; the Edit link on the right by any site name goes to an Edit Site screen for that site.' ) . '</p>' .
2011-12-01 03:22:07 +01:00
'<p>' . __ ( 'You can also go to the user’s profile page by clicking on the individual username.' ) . '</p>' .
'<p>' . __ ( 'You can sort the table by clicking on any of the bold headings and switch between list and excerpt views by using the icons in the upper right.' ) . '</p>' .
'<p>' . __ ( 'The bulk action will permanently delete selected users, or mark/unmark those selected as spam. Spam users will have posts removed and will be unable to sign up again with the same email addresses.' ) . '</p>' .
'<p>' . __ ( 'You can make an existing user an additional super admin by going to the Edit User profile page and checking the box to grant that privilege.' ) . '</p>'
) );
2011-11-02 06:33:53 +01:00
2011-11-02 22:32:16 +01:00
get_current_screen () -> set_help_sidebar (
2010-07-30 22:34:54 +02:00
'<p><strong>' . __ ( 'For more information:' ) . '</strong></p>' .
2010-12-18 19:27:12 +01:00
'<p>' . __ ( '<a href="http://codex.wordpress.org/Network_Admin_Users_Screen" target="_blank">Documentation on Network Users</a>' ) . '</p>' .
2014-03-08 05:14:15 +01:00
'<p>' . __ ( '<a href="https://wordpress.org/support/forum/multisite/" target="_blank">Support Forums</a>' ) . '</p>'
2010-07-30 22:34:54 +02:00
);
2013-09-25 02:18:11 +02:00
require_once ( ABSPATH . 'wp-admin/admin-header.php' );
2010-08-11 23:54:51 +02:00
if ( isset ( $_REQUEST [ 'updated' ] ) && $_REQUEST [ 'updated' ] == 'true' && ! empty ( $_REQUEST [ 'action' ] ) ) {
2010-07-30 22:34:54 +02:00
?>
< div id = " message " class = " updated " >< p >
< ? php
2010-08-11 23:54:51 +02:00
switch ( $_REQUEST [ 'action' ] ) {
2010-07-30 22:34:54 +02:00
case 'delete' :
_e ( 'User deleted.' );
break ;
case 'all_spam' :
_e ( 'Users marked as spam.' );
break ;
case 'all_notspam' :
_e ( 'Users removed from spam.' );
break ;
case 'all_delete' :
_e ( 'Users deleted.' );
break ;
case 'add' :
_e ( 'User added.' );
break ;
}
?>
</ p ></ div >
< ? php
}
?>
2010-08-11 23:54:51 +02:00
< div class = " wrap " >
2011-05-10 21:18:16 +02:00
< h2 >< ? php esc_html_e ( 'Users' );
if ( current_user_can ( 'create_users' ) ) : ?>
2011-05-12 02:22:22 +02:00
< a href = " <?php echo network_admin_url('user-new.php'); ?> " class = " add-new-h2 " >< ? php echo esc_html_x ( 'Add New' , 'user' ); ?> </a><?php
2011-05-10 21:18:16 +02:00
endif ;
2011-12-09 00:02:33 +01:00
2011-05-10 21:18:16 +02:00
if ( ! empty ( $usersearch ) )
printf ( '<span class="subtitle">' . __ ( 'Search results for “%s”' ) . '</span>' , esc_html ( $usersearch ) );
2010-07-30 22:34:54 +02:00
?>
</ h2 >
2010-11-10 15:27:15 +01:00
< ? php $wp_list_table -> views (); ?>
2010-08-12 02:38:46 +02:00
< form action = " " method = " get " class = " search-form " >
2012-03-24 05:54:58 +01:00
< ? php $wp_list_table -> search_box ( __ ( 'Search Users' ), 'all-user' ); ?>
2010-07-30 22:34:54 +02:00
</ form >
2011-08-18 04:29:06 +02:00
< form id = " form-user-list " action = 'users.php?action=allusers' method = 'post' >
2010-08-22 13:22:46 +02:00
< ? php $wp_list_table -> display (); ?>
2010-08-11 23:54:51 +02:00
</ form >
</ div >
2010-07-30 22:34:54 +02:00
2013-09-25 02:18:11 +02:00
< ? php require_once ( ABSPATH . 'wp-admin/admin-footer.php' ); ?>