<?php
/************************************************************************/
/* ajax_delete_message.php                                              */
/*----------------------------------------------------------------------*/
/* Permanently deletes messages from the server's database.             */
// Ajax handler for $mailserver->DeleteMessages() which in turn calls   */
/* COM::DeleteMessages()                                                */
/*----------------------------------------------------------------------*/
/* Copyright (c) 2008-2009 Avaya Inc.                                   */
/************************************************************************/

// This script is stored out of the way in the ajax folder, but needs to
// act as if it were called from folder above (scripts) so that paths
// used in require_once files remain valid. Hence, chdir to the dir above.
chdir('..');

// For Disinfect
require_once('inc/common.php');

// Include mailserver module
require_once('inc/mailserver.php');

// Recreate $_SESSION variable
session_start();

// Record client's time for this request
$ajax_timestamp = 0;
if( isset( $_GET['timestamp'] ) )
{
  $l = strlen($_GET['timestamp']);
  if( $l > 3 )
  {
    $time_string = substr($_GET['timestamp'],0,$l-3);
    $ajax_timestamp = (int)$time_string;
  }
}

// Record page access (also writes session id)
GetEventLog()->LogAccess();

// Check that visitor should be here. Authenticate populates $user record.
$user = null;
$mailserver = null;
$reason = GetSessionHandler()->Authenticate( session_id(), $user );
if ( $reason != SessionHandler::AUTH_SUCCESS )
{
  $res = 'auth+++ajax_delete_message+++'. $reason;
  GetSessionHandler()->DestroySession();
  GetEventLog()->WriteError( gettext('Authentication failed:') . ' ' . GetSessionHandler()->ErrorText($reason) );
  header('Content-Type: text/plain; charset="utf-8"');
  header('Content-Length: ' . strlen($res));
  echo $res;
  exit;
}
else
{
  // Connect to mail server
  $mailserver = GetMailserver();
  if( !$mailserver )
  {
    $res = 'error+++ajax_delete_message+++' . gettext("Can't connect to mailserver.");
    GetEventLog()->WriteError( gettext("Can't connect to mailserver.") );
    header('Content-Type: text/plain; charset="utf-8"');
    header('Content-Length: ' . strlen($res));
    echo $res;
    exit;
  }

  // Keep session active
  $mailserver->UpdateLastAction( session_id(), $user->id, 0 );

}

//session_write_close();

// Initialise script output
$res = false;

// Get parameters from query string
if( !isset( $_POST['msgIds'] ) )
{
  $res = 'error+++ajax_delete_message+++Request is missing parameters.';
  GetEventLog()->WriteError( gettext("Request is missing parameters.") . " msgIds=\"" . isset($_GET['msgIds']) . "\"" );
}
else
{
  $msgIds = Disinfect( $_POST['msgIds'] );

  $res = $mailserver->DeleteMessages(session_id(), $msgIds);

}

// Output to the stream the resulting HTML
header('Content-Type: text/plain; charset="utf-8"');
header('Content-Length: ' . strlen($res));
echo $res;

?>