]>
git.p6c8.net - form-email.git/blob - form-email/mailer.php
6 # Versenden einer E-Mail, die ueber ein Kontaktformular
9 # Autor: Patrick Canterino <patrick@patshaping.de>
10 # Letzte Aenderung: 03.03.2012
12 # Copyright (C) 2002-2012 Patrick Canterino
14 # Diese Datei kann unter den Bedingungen der "Artistic License 2.0"
15 # weitergegeben und / oder veraendert werden.
17 # http://www.opensource.org/licenses/artistic-license-2.0
26 require('config.php');
27 require('functions.php');
28 require('class.Template.php');
30 if($_SERVER['REQUEST_METHOD'] != 'POST') show_fatal($err_only_post);
32 # Wenn Captchas aktiviert sind, Session starten
37 # Pruefen, ob die zulaessige Zahl der Falscheingaben bei Captchas ueberschritten wurde
39 if($captcha_max && isset($_SESSION['captcha_failed']) && $_SESSION['captcha_failed'] >= $captcha_max) {
40 show_fatal($err_captcha_max);
44 # Bestimmte Werte in Integers umwandeln
46 $name_min = intval($name_min);
47 $subject_min = intval($subject_min);
48 $text_min = intval($text_min);
49 $name_max = intval($name_max);
50 $subject_max = intval($subject_max);
51 $text_max = intval($text_max);
52 $line_break = intval($line_break);
54 # Formulardaten auslesen
56 $email = formdata('email');
57 $name = formdata('name');
58 $recipient = formdata('recipient');
59 $subject = formdata('subject');
60 $text = formdata('text');
62 # Pruefen, ob ueberhaupt was ausgefuellt wurde
64 if(!$name && !$email && !$text) show_user_error($err_nothing);
66 # Pruefen, ob alle wichtigen Formular-Felder ausgefuellt wurden
68 if(!$name) show_user_error($err_no_name);
69 if(!$email) show_user_error($err_no_email);
70 if(!$text) show_user_error($err_no_text);
72 if(!$subject) $subject = $default_subject; # Standard-Betreff
74 # Pruefen, ob Name, Betreff und Text lang genug sind
76 if($name_min && strlen($name) < $name_min) show_user_error($err_name_short);
77 if($subject_min && strlen($subject) < $subject_min) show_user_error($err_subject_short);
78 if($text_min && strlen($text) < $text_min) show_user_error($err_text_short);
80 # Pruefen, ob Name, Betreff und Text nicht zu lang sind
82 if($name_max && strlen($name) > $name_max) show_user_error($err_name_long);
83 if($subject_max && strlen($subject) > $subject_max) show_user_error($err_subject_long);
84 if($text_max && strlen($text) > $text_max) show_user_error($err_text_long);
86 # Pruefen, ob eingegebene E-Mail-Adresse gueltig ist
88 if(!filter_var($email,FILTER_VALIDATE_EMAIL
)) show_user_error($err_invalid_email);
90 # Individuelle Felder einlesen
92 $prepared_user_fields = array();
94 if(isset($user_fields)) {
95 while(list($user_field,$user_field_data) = each($user_fields)) {
96 $user_field_content = formdata($user_field);
98 # Pruefung, ob es ein Pflichtfeld ist
100 if(!$user_field_content) {
101 if(isset($user_field_data['required']) && $user_field_data['required']) {
102 if(isset($user_field_data['errors']['not_set'])) {
103 show_user_error($user_field_data['errors']['not_set']);
106 show_fatal($err_indiv_errmsg_miss,array('ERRMSG' => 'not_set', 'INDIVIDUAL' => $user_field));
110 # Wenn das Feld optional ist und nicht gesetzt wurde, brechen wir hier ab
111 # und machen mit dem naechsten Feld weiter
113 $prepared_user_fields[$user_field_data['tpl_var']] = '';
120 if(isset($user_field_data['min']) && $user_field_data['min']) {
121 if(strlen($user_field_content) < $user_field_data['min']) {
122 if(isset($user_field_data['errors']['too_short'])) {
123 show_user_error($user_field_data['errors']['too_short']);
126 show_fatal($err_indiv_errmsg_miss,array('ERRMSG' => 'too_short', 'INDIVIDUAL' => $user_field));
131 if(isset($user_field_data['min']) && $user_field_data['max']) {
132 if(strlen($user_field_content) > $user_field_data['max']) {
133 if(isset($user_field_data['errors']['too_long'])) {
134 show_user_error($user_field_data['errors']['too_long']);
137 show_fatal($err_indiv_errmsg_miss,array('ERRMSG' => 'too_long', 'INDIVIDUAL' => $user_field));
142 # Pruefung gegen frei definierbare Pruef-Funktion
144 if(isset($user_field_data['check']) && $user_field_data['check'] != '') {
145 if(function_exists($user_field_data['check']) && call_user_func($user_field_data['check'],$user_field_content) === false) {
146 if(isset($user_field_data['errors']['check_fail'])) {
147 show_user_error($user_field_data['errors']['check_fail']);
150 show_fatal($err_indiv_errmsg_miss,array('ERRMSG' => 'check_fail', 'INDIVIDUAL' => $user_field));
155 # Pruefung gegen frei definierbaren regulaeren Ausdruck
157 if(isset($user_field_data['regex']) && $user_field_data['regex'] != '') {
158 if(!preg_match($user_field_data['regex'],$user_field_content)) {
159 if(isset($user_field_data['errors']['match_fail'])) {
160 show_user_error($user_field_data['errors']['match_fail']);
163 show_fatal($err_indiv_errmsg_miss,array('ERRMSG' => 'match_fail', 'INDIVIDUAL' => $user_field));
168 # Formularfeld durch frei definierbare Funktion bearbeiten
170 if(isset($user_field_data['prepare']) && $user_field_data['prepare'] != '') {
171 if(function_exists($user_field_data['check'])) {
172 $user_field_content = call_user_func($user_field_data['prepare'],$user_field_content);
176 # Name der Template-Variable ermitteln
178 if(isset($user_field_data['tpl_var']) && $user_field_data['tpl_var'] != '') {
179 $tpl_var = $user_field_data['tpl_var'];
182 $tpl_var = 'USER_'.$user_field;
185 # Fertige Formulardaten wegkopieren und fuer spaeter zur Verfuegung stellen
187 $prepared_user_fields[$tpl_var] = $user_field_content;
191 # Captcha ueberpruefen
193 if($captcha_enable) {
194 $captcha_input = formdata('captcha');
195 $captcha_incorrect = false;
197 if(isset($_SESSION) && isset($_SESSION['captcha'])) {
199 if(!$captcha_input ||
empty($captcha_input) ||
$captcha_input != $_SESSION['captcha']) $captcha_incorrect = true;
202 if(!$captcha_input ||
empty($captcha_input) ||
strtolower($captcha_input) != strtolower($_SESSION['captcha'])) $captcha_incorrect = true;
205 if($captcha_incorrect) {
207 if(isset($_SESSION['captcha_failed']) && $_SESSION['captcha_failed']) {
208 $_SESSION['captcha_failed']++
;
211 $_SESSION['captcha_failed'] = 1;
215 if($captcha_max && isset($_SESSION['captcha_failed']) && $_SESSION['captcha_failed'] >= $captcha_max) {
216 show_fatal($err_captcha_max);
219 show_user_error($err_captcha_incorrect);
224 show_fatal($err_captcha_session_failure);
228 # Referer ueberpruefen
231 $referer_ok = semicolon_split($referer_ok);
233 $referer_parts = parse_url($_SERVER['HTTP_REFERER']);
234 $referer_host = $referer_parts['host'];
236 if(in_array($referer_host,$referer_ok) === false) show_fatal($err_referer_not_ok);
239 # Zeilenumbrueche in Namen und Betreff durch Leerzeichen ersetzen
241 $name = preg_replace("/\015\012|\012|\015/",' ',$name);
242 $subject = preg_replace("/\015\012|\012|\015/",' ',$subject);
244 # Uhrzeit formatieren
248 date_default_timezone_set($timezone);
249 $time = strftime($timeformat,$timestamp);
255 if($friendly_sender) {
256 if($friendly_sender == 2) {
257 if(preg_match("/[\200-\377]/",$name)) {
258 # Absendernamen mit Base64 codieren
260 $encoded_name = base64_encode($name);
261 $encoded_name = wordwrap($encoded_name,56,"\015\012",1);
262 $encoded_name = "=?$charset?B?$encoded_name?=";
263 $encoded_name = str_replace("\015\012","?=\015\012 =?$charset?B?",$encoded_name);
266 # Bestimmte Zeichen im Absendernamen codieren
268 $encoded_name = str_replace('"','\"',$name);
269 $encoded_name = str_replace('(','\\(',$encoded_name);
270 $encoded_name = str_replace(')','\\)',$encoded_name);
271 $encoded_name = '"'.$encoded_name.'"';
274 $header = "From: $encoded_name <$email>\n";
276 else $header = "From: $email\n";
280 if(!$friendly_sender) $header .= "Reply-To: $email\n";
281 $header .= 'Content-Type: text/plain; charset="'.$charset.'"'."\n";
282 $header .= 'Content-Transfer-Encoding: 8bit'."\n";
283 $header .= 'MIME-Version: 1.0'."\n";
284 $header .= 'X-Mailer: Form E-Mail '.$VERSION."\n";
285 $header .= 'X-Sender-IP: ['.$_SERVER['REMOTE_ADDR'].']';
287 else $header .= "Reply-To: $email";
289 $header = preg_replace("/\015\012|\012|\015/","\n",$header);
291 # Betreff mit Base64 codieren, wenn er Zeichen enthaelt,
292 # die nicht aus dem ASCII-Zeichensatz stammen
294 if(preg_match("/[\200-\377]/",$subject)) {
295 $encoded_subject = base64_encode($subject);
296 $encoded_subject = wordwrap($encoded_subject,56,"\015\012",1);
297 $encoded_subject = "=?$charset?B?$encoded_subject?=";
298 $encoded_subject = str_replace("\015\012","?=\015\012 =?$charset?B?",$encoded_subject);
300 else $encoded_subject = $subject;
302 # Mailtext formatieren...
304 $mtpl = new Template
;
305 $mtpl->read_file($tpl_mail);
307 $mtpl->set_var('EMAIL', $email);
308 $mtpl->set_var('NAME', $name);
309 $mtpl->set_var('SUBJECT',$subject);
310 $mtpl->set_var('TIME', $time);
312 # ... Umgebungsvariablen einfuegen...
314 if(isset($allowed_envs) && is_array($allowed_envs)) {
315 foreach($allowed_envs as $allowed_env) {
316 if(isset($_SERVER[$allowed_env])) {
317 $mtpl->set_var('ENV_'.$allowed_env,$_SERVER[$allowed_env]);
320 $mtpl->set_var('ENV_'.$allowed_env,'');
325 # ... eigene Felder einfuegen
327 while(list($tpl_var,$user_field_content) = each($prepared_user_fields)) {
328 $mtpl->set_var($tpl_var,$user_field_content);
331 $mtpl->set_var('TEXT',$text);
335 $mailtext = $mtpl->get_template();
337 if($line_break) $mailtext = wordwrap($mailtext,$line_break);
339 $mailtext = preg_replace("/\015\012|\012|\015/","\n",$mailtext);
341 # ... und die Mail abschicken (bei einem Fehler erscheint eine Meldung)
343 if($recipient && is_array($aliases) && $aliases[$recipient]) {
344 # Empfaenger mit Alias-Namen
346 $mailto = $aliases[$recipient];
349 $mailto = semicolon_split($mailto);
351 for($x=0;$x<count($mailto);$x++
) {
352 mail($mailto[$x],$encoded_subject,$mailtext,$header) or show_fatal($err_send_error);
355 # Mails auf Festplatte speichern
357 if(isset($store_mails) && $store_mails) {
358 # Standard-Werte fuer einige Variablen
360 if(!isset($store_mails_dir) ||
$store_mails_dir == '') $store_mails_dir = 'stored_mails';
361 if(!isset($store_mails_prefix) ||
$store_mails_prefix == '') $store_mails_prefix = 'feml_';
363 # Verzeichnis ggf. anlegen
365 if(!is_dir($store_mails_dir)) mkdir($store_mails_dir);
369 $clean_subject = str_replace(' ','_',$subject);
370 $clean_subject = preg_replace('/[^a-z0-9\-_]/i','',$clean_subject);
372 # Eindeutigen Dateinamen der Mail zusammensetzen
374 $file_name = $store_mails_dir.'/'.uniqid($store_mails_prefix.$email.'_'.$clean_subject.'_'.strftime('%d%m%Y-%H%M%S',$timestamp));
376 # Daten in Datei schreiben
378 file_put_contents($file_name,$mailtext) or show_fatal($err_store_error);
380 # Alte Dateien loeschen
382 if(isset($store_mails_max) && $store_mails_max > 0) {
383 $dp = opendir($store_mails_dir);
385 while($stored_mail_file = readdir($dp)) {
386 if($stored_mail_file != '.' && $stored_mail_file != '..' && substr($stored_mail_file,0,strlen($store_mails_prefix)) == $store_mails_prefix) {
387 $stored_mail_files[$store_mails_dir.'/'.$stored_mail_file] = filemtime($store_mails_dir.'/'.$stored_mail_file);
393 arsort($stored_mail_files);
397 foreach(array_keys($stored_mail_files) as $stored_mail_filename) {
400 if($x > $store_mails_max) {
401 unlink($stored_mail_filename);
407 if($captcha_enable) session_destroy();
409 # Mail wurde erfolgreich versendet, also wird die Dankesseite angezeigt
412 # Per Redirect auf Seite umleiten
414 if(strpos($return_url,'://') === false) {
415 # URL vervollstaendigen
417 $http_host = ($_SERVER['HTTP_HOST']) ?
$_SERVER['HTTP_HOST'] : $_SERVER['SERVER_NAME'];
422 if(isset($_SERVER['HTTPS'])) {
423 # SSL-verschluesseltes HTTP
425 $protocol = 'https://';
426 if($_SERVER['SERVER_PORT'] != 443) $port = ':'.$_SERVER['SERVER_PORT'];
431 $protocol = 'http://';
432 if($_SERVER['SERVER_PORT'] != 80) $port = ':'.$_SERVER['SERVER_PORT'];
435 if(substr($return_url,0,1) == '/') {
436 $return_url = $protocol.$http_host.$port.$return_url;
439 if(substr($_SERVER['SCRIPT_NAME'],-1,1) == '/') {
440 $path = substr($_SERVER['SCRIPT_NAME'],0,-1);
443 $path = $_SERVER['SCRIPT_NAME'];
446 $path = substr($path,0,strrpos($path,'/')+
1);
447 if(substr($path,0,1) != '/') $path = '/'.$path;
449 $return_url = $protocol.$http_host.$port.$path.$return_url;
453 header('Status: 303 See Other');
454 header('Location: '.$return_url);
457 # Mit Template formatierte Seite anzeigen
459 $stpl = new Template
;
460 $stpl->read_file($tpl_sent);
462 $stpl->set_var('EMAIL', plain($email));
463 $stpl->set_var('MAIL', plain($mailtext));
464 $stpl->set_var('NAME', plain($name));
465 $stpl->set_var('SUBJECT',plain($subject));
466 $stpl->set_var('TEXT', plain($text));
467 $stpl->set_var('TIME', plain($time));
469 if(isset($user_fields)) {
472 while(list($user_field,$user_field_data) = each($user_fields)) {
473 if(isset($user_field_data['tpl_var']) && $user_field_data['tpl_var'] != '') {
474 $tpl_var = $user_field_data['tpl_var'];
477 $tpl_var = 'USER_'.$user_field;
480 $stpl->set_var($tpl_var,htmlspecialchars(formdata($user_field)));
486 print $stpl->get_template();
patrick-canterino.de