4 use vars qw($cgi $session_id $form_max $template_dir);
5 use subs qw(do_template);
7 use CGI::Carp qw(fatalsToBrowser);
9 use FS::SelfService qw(login customer_info invoice);
17 unless ( defined $cgi->param('session') ) {
18 do_template('login',{});
22 if ( $cgi->param('session') eq 'login' ) {
24 $cgi->param('username') =~ /^\s*([a-z0-9_\-\.\&]{0,$form_max})\s*$/i
25 or die "illegal username";
28 $cgi->param('domain') =~ /^\s*([\w\-\.]{0,$form_max})\s*$/
29 or die "illegal domain";
32 $cgi->param('password') =~ /^(.{0,$form_max})$/
33 or die "illegal password";
37 'username' => $username,
39 'password' => $password,
42 do_template('login', {
43 'error' => $rv->{error},
44 'username' => $username,
49 $cgi->param('session' => $rv->{session_id} );
50 $cgi->param('action' => 'myaccount' );
54 $session_id = $cgi->param('session');
56 $cgi->param('action') =~ /^(myaccount|view_invoice)$/
57 or die "unknown action ". $cgi->param('action');
60 my $result = eval "&$action();";
63 if ( $result->{error} eq "Can't resume session" ) { #ick
64 do_template('login',{});
68 #warn $result->{'open_invoices'};
69 #warn scalar(@{$result->{'open_invoices'}});
71 do_template($action, {
72 'session_id' => $session_id,
78 sub myaccount { customer_info( 'session_id' => $session_id ); }
82 $cgi->param('invnum') =~ /^(\d+)$/ or die "illegal invnum";
85 invoice( 'session_id' => $session_id,
98 $fill_in->{'self_url'} = $cgi->self_url;
100 my $template = new Text::Template( TYPE => 'FILE',
101 SOURCE => "$template_dir/$name.html",
102 DELIMITERS => [ '<%=', '%>' ],
104 or die $Text::Template::ERROR;
106 print $cgi->header( '-expires' => 'now' ),
107 $template->fill_in( HASH => $fill_in );