include dirname(__FILE__).'/inc/poche/config.inc.php';
-#XSRF protection with token
-// if (!empty($_POST)) {
-// if (!Session::isToken($_POST['token'])) {
-// die(_('Wrong token'));
-// // TODO remettre le test
-// }
-// unset($_SESSION['tokens']);
-// }
-
+# Parse GET & REFERER vars
$referer = empty($_SERVER['HTTP_REFERER']) ? '' : $_SERVER['HTTP_REFERER'];
-$view = Tools::checkVar('view');
+$view = Tools::checkVar('view', 'home');
$action = Tools::checkVar('action');
$id = Tools::checkVar('id');
-$_SESSION['sort'] = Tools::checkVar('sort');
+$_SESSION['sort'] = Tools::checkVar('sort', 'id');
$url = new Url((isset ($_GET['url'])) ? $_GET['url'] : '');
+# poche actions
if (isset($_GET['login'])) {
# hello you
$poche->login($referer);
$poche->updatePassword();
}
elseif (isset($_GET['import'])) {
- $poche->import($_GET['from']);
+ $import = $poche->import($_GET['from']);
}
elseif (isset($_GET['export'])) {
$poche->export();
}
+# vars to send to templates
$tpl_vars = array(
'referer' => $referer,
'view' => $view,
$tpl_file = 'login.twig';
}
-# Aaaaaaand action !
+# because messages can be added in $poche->action(), we have to add this entry now (we can add it before)
+$messages = $poche->messages->display('all', FALSE);
+$tpl_vars = array_merge($tpl_vars, array('messages' => $messages));
+
+# display poche
echo $poche->tpl->render($tpl_file, $tpl_vars);
\ No newline at end of file