Compare commits
1 Commits
efdf3be08f
...
fix_langua
| Author | SHA1 | Date | |
|---|---|---|---|
| 81c3ff5dc0 |
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,8 +13,8 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
class MatrixConnection {
|
class MatrixConnection
|
||||||
|
{
|
||||||
private $hs;
|
private $hs;
|
||||||
private $at;
|
private $at;
|
||||||
|
|
||||||
@@ -108,6 +107,7 @@ class MatrixConnection {
|
|||||||
|
|
||||||
function exec_curl_request($handle) {
|
function exec_curl_request($handle) {
|
||||||
$response = curl_exec($handle);
|
$response = curl_exec($handle);
|
||||||
|
|
||||||
if ($response === false) {
|
if ($response === false) {
|
||||||
$errno = curl_errno($handle);
|
$errno = curl_errno($handle);
|
||||||
$error = curl_error($handle);
|
$error = curl_error($handle);
|
||||||
@@ -115,6 +115,7 @@ class MatrixConnection {
|
|||||||
curl_close($handle);
|
curl_close($handle);
|
||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
|
|
||||||
$http_code = intval(curl_getinfo($handle, CURLINFO_HTTP_CODE));
|
$http_code = intval(curl_getinfo($handle, CURLINFO_HTTP_CODE));
|
||||||
curl_close($handle);
|
curl_close($handle);
|
||||||
|
|
||||||
@@ -131,13 +132,13 @@ class MatrixConnection {
|
|||||||
} else {
|
} else {
|
||||||
$response = json_decode($response, true);
|
$response = json_decode($response, true);
|
||||||
}
|
}
|
||||||
|
|
||||||
return $response;
|
return $response;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class MatrixMessage {
|
class MatrixMessage
|
||||||
|
{
|
||||||
private $message;
|
private $message;
|
||||||
|
|
||||||
function __construct() {
|
function __construct() {
|
||||||
@@ -164,7 +165,5 @@ class MatrixMessage {
|
|||||||
function get_object() {
|
function get_object() {
|
||||||
return $this->message;
|
return $this->message;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
?>
|
?>
|
||||||
|
|||||||
25
README.md
25
README.md
@@ -14,34 +14,17 @@ This is done in several steps:
|
|||||||
|
|
||||||
2nd step: Implement the other apis to integrade [mxisd](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md)
|
2nd step: Implement the other apis to integrade [mxisd](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md)
|
||||||
|
|
||||||
This bot takes care for user accounts. So it stores the credentials itself and provides ways to access them via matrix-synapse-rest-auth or mxisd.
|
|
||||||
## How to install
|
## How to install
|
||||||
|
|
||||||
- Copy `config.sample.php` to `config.php` and configure the bot as you can find there
|
- Copy `config.sample.php` to `config.php` and configure the bot as you can find there
|
||||||
- Configure your webserver to publish the folder `public`.
|
- Configure your webserver to publish the folder `public` and configure.
|
||||||
The folder `internal` contains files that can be accessed by mxisd or matrix-synapse-rest-auth or else via a reverse proxy
|
The folder `internal` contains files that can be accessed by mxisd or matrix-synapse-rest-auth
|
||||||
- To integrate with [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth):
|
- To integrate with matrix-synapse-rest-auth:
|
||||||
- `/_matrix-internal/identity/v1/check_credentials` should map to `internal/login.php`
|
- `/_matrix-internal/identity/v1/check_credentials` should map to `internal/login.php`
|
||||||
- To integrate with [mxisd](https://github.com/kamax-io/mxisd): Have a look at [the docs](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md) and apply as follows:
|
- To integrate with mxisd: Have a look at [the docs](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md) and apply as follows:
|
||||||
|
|
||||||
|
|
||||||
| Key | file which handles that | Description |
|
| Key | file which handles that | Description |
|
||||||
|--------------------------------|-------------------------------|------------------------------------------------------|
|
|--------------------------------|-------------------------------|------------------------------------------------------|
|
||||||
| rest.endpoints.auth | internal/login.php | Validate credentials and get user profile |
|
| rest.endpoints.auth | internal/login.php | Validate credentials and get user profile |
|
||||||
| rest.endpoints.directory | internal/directory_search.php | Search for users by arbitrary input |
|
| rest.endpoints.directory | internal/directory_search.php | Search for users by arbitrary input |
|
||||||
| rest.endpoints.identity.single | internal/identity_single.php | Endpoint to query a single 3PID |
|
| rest.endpoints.identity.single | internal/identity_single.php | Endpoint to query a single 3PID |
|
||||||
| rest.endpoints.identity.bulk | internal/identity_bulk.php | Endpoint to query a list of 3PID |
|
| rest.endpoints.identity.bulk | internal/identity_bulk.php | Endpoint to query a list of 3PID |
|
||||||
|
|
||||||
|
|
||||||
## Implement usage of additional features:
|
|
||||||
### Use the ChangePasswortInterceptor:
|
|
||||||
|
|
||||||
You need a reverse proxy which maps `/_matrix/client/r0/account/password` to `internal/intercept_change_password.php`.
|
|
||||||
Here is an example for nginx:
|
|
||||||
|
|
||||||
```
|
|
||||||
location /_matrix/client/r0/account/password {
|
|
||||||
proxy_pass http://localhost/mxbot/internal/intercept_change_password.php;
|
|
||||||
proxy_set_header X-Forwarded-For $remote_addr;
|
|
||||||
}
|
|
||||||
```
|
|
||||||
@@ -17,9 +17,6 @@ $config = [
|
|||||||
// When you want to collect the password on registration set this to true
|
// When you want to collect the password on registration set this to true
|
||||||
"getPasswordOnRegistration" => false,
|
"getPasswordOnRegistration" => false,
|
||||||
|
|
||||||
// default language: one of [ en-gb | de-de ]
|
|
||||||
"defaultLanguage" => "en-gb",
|
|
||||||
|
|
||||||
// to define where the data should be stored:
|
// to define where the data should be stored:
|
||||||
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
||||||
// credentials for sqlite not used
|
// credentials for sqlite not used
|
||||||
|
|||||||
6
cron.php
6
cron.php
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -37,7 +36,10 @@ foreach ($mx_db->query($sql) as $row) {
|
|||||||
case RegisterState::PendingEmailSend:
|
case RegisterState::PendingEmailSend:
|
||||||
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
||||||
$success = send_mail_pending_verification(
|
$success = send_mail_pending_verification(
|
||||||
$config["homeserver"], $row["first_name"] . " " . $row["last_name"], $row["email"], $verify_url);
|
$config["homeserver"],
|
||||||
|
$row["first_name"] . " " . $row["last_name"],
|
||||||
|
$row["email"],
|
||||||
|
$verify_url);
|
||||||
|
|
||||||
if ($success) {
|
if ($success) {
|
||||||
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
||||||
|
|||||||
35
database.php
35
database.php
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -19,8 +18,8 @@ if (!isset($config["databaseURI"])) {
|
|||||||
throw new Exception ("malformed configuration: databaseURI not defined");
|
throw new Exception ("malformed configuration: databaseURI not defined");
|
||||||
}
|
}
|
||||||
|
|
||||||
abstract class RegisterState {
|
abstract class RegisterState
|
||||||
|
{
|
||||||
// Sending an E-Mail failed in the first attempt. Will retry later
|
// Sending an E-Mail failed in the first attempt. Will retry later
|
||||||
const PendingEmailSend = 0;
|
const PendingEmailSend = 0;
|
||||||
// User got a mail. We wait for it to verfiy
|
// User got a mail. We wait for it to verfiy
|
||||||
@@ -31,19 +30,21 @@ abstract class RegisterState {
|
|||||||
const PendingAdminVerify = 6;
|
const PendingAdminVerify = 6;
|
||||||
// Registration failed on first attempt. Will retry
|
// Registration failed on first attempt. Will retry
|
||||||
const PendingRegistration = 7;
|
const PendingRegistration = 7;
|
||||||
|
|
||||||
// in this case we have to reset the password of the user (or should we store it for this case?)
|
// in this case we have to reset the password of the user (or should we store it for this case?)
|
||||||
const PendingSendRegistrationMail = 8;
|
const PendingSendRegistrationMail = 8;
|
||||||
|
|
||||||
// State to allow persisting in the database although an admin declined it.
|
// State to allow persisting in the database although an admin declined it.
|
||||||
// Will be removed regularly
|
// Will be removed regularly
|
||||||
const RegistrationAccepted = 7;
|
const RegistrationAccepted = 7;
|
||||||
const RegistrationDeclined = 13;
|
const RegistrationDeclined = 13;
|
||||||
|
|
||||||
// User got successfully registered. Will be cleaned up later
|
// User got successfully registered. Will be cleaned up later
|
||||||
const AllDone = 100;
|
const AllDone = 100;
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class mxDatabase {
|
class mxDatabase
|
||||||
|
{
|
||||||
private $db = NULL;
|
private $db = NULL;
|
||||||
|
|
||||||
/**
|
/**
|
||||||
@@ -163,7 +164,6 @@ class mxDatabase {
|
|||||||
}
|
}
|
||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
|
|
||||||
function userRegistered($username) {
|
function userRegistered($username) {
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
||||||
$res = $this->db->query($sql);
|
$res = $this->db->query($sql);
|
||||||
@@ -215,6 +215,7 @@ class mxDatabase {
|
|||||||
$sql = "SELECT COUNT(*) FROM registrations WHERE admin_token = '" . $admin_token . "'"
|
$sql = "SELECT COUNT(*) FROM registrations WHERE admin_token = '" . $admin_token . "'"
|
||||||
. " AND state = " . RegisterState::PendingAdminVerify . " LIMIT 1;";
|
. " AND state = " . RegisterState::PendingAdminVerify . " LIMIT 1;";
|
||||||
$res = $this->db->query($sql);
|
$res = $this->db->query($sql);
|
||||||
|
$first_name = NULL; $last_name = NULL; $username = NULL; $note = NULL; $email = NULL;
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
if ($res->fetchColumn() > 0) {
|
||||||
$sql = "SELECT first_name, last_name, username, note, email FROM registrations"
|
$sql = "SELECT first_name, last_name, username, note, email FROM registrations"
|
||||||
@@ -239,6 +240,7 @@ class mxDatabase {
|
|||||||
$sql = "SELECT COUNT(*) FROM registrations WHERE verify_token = '" . $verify_token . "'"
|
$sql = "SELECT COUNT(*) FROM registrations WHERE verify_token = '" . $verify_token . "'"
|
||||||
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
||||||
$res = $this->db->query($sql);
|
$res = $this->db->query($sql);
|
||||||
|
$first_name = NULL; $last_name = NULL; $username = NULL; $note = NULL; $email = NULL;
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
if ($res->fetchColumn() > 0) {
|
||||||
$sql = "SELECT first_name, last_name, note, email, admin_token FROM registrations "
|
$sql = "SELECT first_name, last_name, note, email, admin_token FROM registrations "
|
||||||
@@ -302,24 +304,6 @@ class mxDatabase {
|
|||||||
return NULL;
|
return NULL;
|
||||||
}
|
}
|
||||||
|
|
||||||
function updatePassword($localpart, $old_password, $new_password) {
|
|
||||||
$user = $this->getUserForLogin($localpart, $old_password);
|
|
||||||
if ($user == NULL) {
|
|
||||||
throw new Exception("user with that credentials not found");
|
|
||||||
}
|
|
||||||
|
|
||||||
// The credentials were fine. So now set the new password
|
|
||||||
$password_hash = password_hash($new_password, PASSWORD_BCRYPT, ["cost" => 12]);
|
|
||||||
|
|
||||||
$sql = "UPDATE logins SET password_hash = '" . $password_hash . "'"
|
|
||||||
. "WHERE localpart = '" . $localpart . "'";
|
|
||||||
|
|
||||||
if ($this->db->exec($sql)) {
|
|
||||||
return true;
|
|
||||||
}
|
|
||||||
return false;
|
|
||||||
}
|
|
||||||
|
|
||||||
function searchUserByName($search_term) {
|
function searchUserByName($search_term) {
|
||||||
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
||||||
$result = array();
|
$result = array();
|
||||||
@@ -359,7 +343,6 @@ class mxDatabase {
|
|||||||
}
|
}
|
||||||
return $result;
|
return $result;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
if (!isset($mx_db)) {
|
if (!isset($mx_db)) {
|
||||||
|
|||||||
33
helpers.php
33
helpers.php
@@ -1,33 +0,0 @@
|
|||||||
<?php
|
|
||||||
|
|
||||||
/**
|
|
||||||
* Copyright 2018 Matthias Kesler
|
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
||||||
* you may not use this file except in compliance with the License.
|
|
||||||
* You may obtain a copy of the License at
|
|
||||||
*
|
|
||||||
* http://www.apache.org/licenses/LICENSE-2.0
|
|
||||||
*
|
|
||||||
* Unless required by applicable law or agreed to in writing, software
|
|
||||||
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
||||||
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
||||||
* See the License for the specific language governing permissions and
|
|
||||||
* limitations under the License.
|
|
||||||
*/
|
|
||||||
function stripLocalpart($mxid) {
|
|
||||||
$localpart = NULL;
|
|
||||||
if (!empty($mxid)) {
|
|
||||||
// A mxid would start with an @ so we start at the 2. position
|
|
||||||
$sepPos = strpos($mxid, ':', 1);
|
|
||||||
if ($sepPos === false) {
|
|
||||||
// : not found. Assume mxid is localpart
|
|
||||||
// TODO: further checks
|
|
||||||
$localpart = $mxid;
|
|
||||||
} else {
|
|
||||||
$localpart = substr($mxid, 1, strpos($mxid, ':') - 1);
|
|
||||||
}
|
|
||||||
}
|
|
||||||
return $localpart;
|
|
||||||
}
|
|
||||||
|
|
||||||
?>
|
|
||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -40,8 +39,9 @@ try {
|
|||||||
$response["result"] = $mx_db->searchUserByEmail($input["search_term"]);
|
$response["result"] = $mx_db->searchUserByEmail($input["search_term"]);
|
||||||
break;
|
break;
|
||||||
default:
|
default:
|
||||||
throw new Exception('unknown type for "by" param');
|
throw new Exception("unknown type for \"by\" param");
|
||||||
}
|
}
|
||||||
|
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
error_log("failed with error: " . $e->getMessage());
|
error_log("failed with error: " . $e->getMessage());
|
||||||
$response["error"] = $e->getMessage();
|
$response["error"] = $e->getMessage();
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -38,7 +37,7 @@ try {
|
|||||||
if (!isset($lookup["address"])) {
|
if (!isset($lookup["address"])) {
|
||||||
throw new Exception('"lookup.address" is not defined');
|
throw new Exception('"lookup.address" is not defined');
|
||||||
}
|
}
|
||||||
$res2 = NULL;
|
$res2 = array();
|
||||||
switch ($lookup["medium"]) {
|
switch ($lookup["medium"]) {
|
||||||
case "email":
|
case "email":
|
||||||
$res2 = $mx_db->searchUserByEmail($lookup["address"]);
|
$res2 = $mx_db->searchUserByEmail($lookup["address"]);
|
||||||
@@ -55,11 +54,9 @@ try {
|
|||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case "msisdn":
|
case "msisdn":
|
||||||
// This is reserved for number lookups
|
|
||||||
throw new Exception("unimplemented lookup medium");
|
|
||||||
break;
|
break;
|
||||||
default:
|
default:
|
||||||
throw new Exception("unknown lookup medium");
|
throw new Exception("unknown type for \"by\" param");
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -31,7 +30,7 @@ try {
|
|||||||
if (!isset($input["lookup"]["address"])) {
|
if (!isset($input["lookup"]["address"])) {
|
||||||
throw new Exception('"lookup.address" is not defined');
|
throw new Exception('"lookup.address" is not defined');
|
||||||
}
|
}
|
||||||
$res2 = NULL;
|
$res2 = array();
|
||||||
switch ($input["lookup"]["medium"]) {
|
switch ($input["lookup"]["medium"]) {
|
||||||
case "email":
|
case "email":
|
||||||
$res2 = $mx_db->searchUserByEmail($input["lookup"]["address"]);
|
$res2 = $mx_db->searchUserByEmail($input["lookup"]["address"]);
|
||||||
@@ -47,19 +46,15 @@ try {
|
|||||||
]
|
]
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
break;
|
|
||||||
case "msisdn":
|
|
||||||
// This is reserved for number lookups
|
|
||||||
throw new Exception("unimplemented lookup medium");
|
|
||||||
break;
|
break;
|
||||||
default:
|
default:
|
||||||
throw new Exception("unknown lookup medium");
|
throw new Exception("unknown type for \"by\" param");
|
||||||
}
|
}
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
error_log("ídentity_single failed with error: " . $e->getMessage());
|
error_log("ídentity_bulk failed with error: " . $e->getMessage());
|
||||||
$response = [
|
$response["error"] = $e->getMessage();
|
||||||
"error" => $e->getMessage()
|
|
||||||
];
|
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,69 +0,0 @@
|
|||||||
<?php
|
|
||||||
|
|
||||||
/**
|
|
||||||
* Copyright 2018 Matthias Kesler
|
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
||||||
* you may not use this file except in compliance with the License.
|
|
||||||
* You may obtain a copy of the License at
|
|
||||||
*
|
|
||||||
* http://www.apache.org/licenses/LICENSE-2.0
|
|
||||||
*
|
|
||||||
* Unless required by applicable law or agreed to in writing, software
|
|
||||||
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
||||||
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
||||||
* See the License for the specific language governing permissions and
|
|
||||||
* limitations under the License.
|
|
||||||
*/
|
|
||||||
// URL for this: /_matrix/client/r0/account/password?access_token=$ACCESS_TOKEN
|
|
||||||
|
|
||||||
header('Access-Control-Allow-Origin: *');
|
|
||||||
header('Access-Control-Allow-Methods: POST, OPTIONS');
|
|
||||||
header('Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept, Authorization');
|
|
||||||
if ($_SERVER['REQUEST_METHOD'] === 'OPTIONS') {
|
|
||||||
print ("{}");
|
|
||||||
// return with success
|
|
||||||
exit();
|
|
||||||
}
|
|
||||||
$response = new stdClass;
|
|
||||||
try {
|
|
||||||
$inputJSON = file_get_contents('php://input');
|
|
||||||
$input = json_decode($inputJSON, TRUE);
|
|
||||||
if (empty($input)) {
|
|
||||||
throw new Exception('no valid json as input present');
|
|
||||||
}
|
|
||||||
if (!isset($input["auth"])) {
|
|
||||||
throw new Exception('"auth" is not defined');
|
|
||||||
}
|
|
||||||
if (!isset($input["auth"]["user"]) || !isset($input["auth"]["password"])) {
|
|
||||||
throw new Exception('"auth.user" or "auth.password" is not defined');
|
|
||||||
}
|
|
||||||
if (!isset($input["auth"]["type"]) || $input["auth"]["type"] !== "m.login.password") {
|
|
||||||
throw new Exception('no or unknown auth.type');
|
|
||||||
}
|
|
||||||
if (!isset($input["new_password"])) {
|
|
||||||
throw new Exception('"new_password" is not defined');
|
|
||||||
}
|
|
||||||
|
|
||||||
require_once("../helpers.php");
|
|
||||||
$localpart = stripLocalpart($input["auth"]["user"]);
|
|
||||||
|
|
||||||
if (empty($localpart)) {
|
|
||||||
throw new Exception("localpart cannot be identified");
|
|
||||||
}
|
|
||||||
|
|
||||||
require_once("../database.php");
|
|
||||||
if (!$mx_db->updatePassword(
|
|
||||||
$localpart, $input["auth"]["password"], $input["new_password"]
|
|
||||||
)) {
|
|
||||||
throw new Exception("invalid credentials or another error while updating");
|
|
||||||
}
|
|
||||||
} catch (Exception $e) {
|
|
||||||
header("HTTP/1.0 500 Internal Error");
|
|
||||||
error_log("failed with error: " . $e->getMessage());
|
|
||||||
$response = [
|
|
||||||
"errorcode" => "M_UNKNOWN",
|
|
||||||
"error" => $e->getMessage(),
|
|
||||||
];
|
|
||||||
}
|
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT));
|
|
||||||
?>
|
|
||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -21,21 +20,18 @@ $response = [
|
|||||||
];
|
];
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once("../database.php");
|
||||||
|
|
||||||
abstract class LoginRequester {
|
abstract class LoginRequester {
|
||||||
|
|
||||||
const UNDEFINED = 0;
|
const UNDEFINED = 0;
|
||||||
const MXISD = 1;
|
const MXISD = 1;
|
||||||
const RestAuth = 2;
|
const RestAuth = 2;
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
$loginRequester = LoginRequester::UNDEFINED;
|
$loginRequester = LoginRequester::UNDEFINED;
|
||||||
|
|
||||||
try {
|
try {
|
||||||
$inputJSON = file_get_contents('php://input');
|
$inputJSON = file_get_contents('php://input');
|
||||||
$input = json_decode($inputJSON, TRUE);
|
$input = json_decode($inputJSON, TRUE);
|
||||||
$mxid = $localpart = NULL;
|
$mxid = NULL;
|
||||||
|
$localpart = NULL;
|
||||||
if (isset($input["user"])) {
|
if (isset($input["user"])) {
|
||||||
if (isset($input["user"]["localpart"])) {
|
if (isset($input["user"]["localpart"])) {
|
||||||
$localpart = $input["user"]["localpart"];
|
$localpart = $input["user"]["localpart"];
|
||||||
@@ -49,15 +45,20 @@ try {
|
|||||||
$mxid = $input["user"]["mxid"];
|
$mxid = $input["user"]["mxid"];
|
||||||
$loginRequester = LoginRequester::MXISD;
|
$loginRequester = LoginRequester::MXISD;
|
||||||
}
|
}
|
||||||
} else {
|
|
||||||
throw new Exception('"user" not in request body');
|
|
||||||
}
|
}
|
||||||
|
|
||||||
// prefer the localpart attribute of mxisd. But in case of matrix-synapse-rest-auth
|
// prefer the localpart attribute of mxisd. But in case of matrix-synapse-rest-auth
|
||||||
// we have to parse it on our own
|
// we have to parse it on our own
|
||||||
if (empty($localpart)) {
|
if (empty($localpart) && !empty($mxid)) {
|
||||||
require_once("../helpers.php");
|
// A mxid would start with an @ so we start at the 2. position
|
||||||
$localpart = stripLocalpart($mxid);
|
$sepPos = strpos($mxid,':', 1);
|
||||||
|
if ($sepPos === false) {
|
||||||
|
// : not found. Assume mxid is localpart
|
||||||
|
// TODO: further checks
|
||||||
|
$localpart = $mxid;
|
||||||
|
} else {
|
||||||
|
$localpart = substr($mxid, 1, strpos($mxid,':') - 1 );
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
if (empty($localpart)) {
|
if (empty($localpart)) {
|
||||||
@@ -65,7 +66,7 @@ try {
|
|||||||
}
|
}
|
||||||
|
|
||||||
$password = NULL;
|
$password = NULL;
|
||||||
if (isset($input["user"]["password"])) {
|
if (isset($input["user"]) && isset($input["user"]["password"])) {
|
||||||
$password = $input["user"]["password"];
|
$password = $input["user"]["password"];
|
||||||
}
|
}
|
||||||
if (empty($password)) {
|
if (empty($password)) {
|
||||||
@@ -101,7 +102,6 @@ try {
|
|||||||
// only return that it was successful.
|
// only return that it was successful.
|
||||||
// we do not know how the data shall be transmitted so we do nothing with it
|
// we do not know how the data shall be transmitted so we do nothing with it
|
||||||
$response["auth"]["success"] = false;
|
$response["auth"]["success"] = false;
|
||||||
$response["auth"]["error"] = "unidentified requester";
|
|
||||||
break;
|
break;
|
||||||
}
|
}
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
|||||||
@@ -1,41 +0,0 @@
|
|||||||
<?php
|
|
||||||
/**
|
|
||||||
* Copyright 2018 Matthias Kesler
|
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
||||||
* you may not use this file except in compliance with the License.
|
|
||||||
* You may obtain a copy of the License at
|
|
||||||
*
|
|
||||||
* http://www.apache.org/licenses/LICENSE-2.0
|
|
||||||
*
|
|
||||||
* Unless required by applicable law or agreed to in writing, software
|
|
||||||
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
||||||
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
||||||
* See the License for the specific language governing permissions and
|
|
||||||
* limitations under the License.
|
|
||||||
*/
|
|
||||||
$language = array(
|
|
||||||
"NO_CONFIGURATION" => "No configuration found",
|
|
||||||
"UNKNOWN_SESSION" => "Session token not found of invalid.",
|
|
||||||
"UNKNOWN_USERNAME" => "username unknown",
|
|
||||||
"UNKNOWN_TOKEN" => "Token is unknown",
|
|
||||||
"USERNAME_LENGTH_INVALID" => "Username cpnsists pf more than 20 or less than 3 characters",
|
|
||||||
"USERNAME_NOT_ALNUM" => "Username is not alphanumeric",
|
|
||||||
"USERNAME_PENDING_REGISTRATION" => "This username is locked for registration. Try again later or try again with a different username",
|
|
||||||
"USERNAME_REGISTERED" => "This username is already registered. Please try again with another username",
|
|
||||||
"PASSWORD_NOT_MATCH" => "passwords do not match",
|
|
||||||
"NOTE_LENGTH_EXEEDED" => "Note consists of more than 50 characters",
|
|
||||||
"EMAIL_INVALID_FORMAT" => "no valid email address",
|
|
||||||
"FIRSTNAME_INVALID_FORMAT" => "First name with invalid formatting",
|
|
||||||
"SIRNAME_INVALID_FORMAT" => "Sirname with invalid formatting",
|
|
||||||
"SEND_MAIL_FAIL" => "Email could not be sent",
|
|
||||||
"SEND_MATRIX_FAIL" => "Sending a message to the admins failed",
|
|
||||||
"REGISTRATION_REQUEST_FAILED" => "Registration request failed",
|
|
||||||
"REGISTRATION_FAILED" => "Registration failed",
|
|
||||||
"VERIFICATION_SUCEEDED" => "Verification suceeded",
|
|
||||||
"VERIFICATION_FAILED" => "Verification failed",
|
|
||||||
"VERIFICATION_SUCCESS_BODY" => "Thank you. The admins got informed",
|
|
||||||
"ADMIN_VERIFY_SITE_TITLE" => "Handle registration request",
|
|
||||||
"ADMIN_REGISTER_ACCEPTED_BODY" => "The registration request got accepted. The user got notified per email.",
|
|
||||||
"ADMIN_REGISTER_DECLINED_BODY" => "The registration request got declined. The user got notified per email.",
|
|
||||||
);
|
|
||||||
?>
|
|
||||||
@@ -1,124 +0,0 @@
|
|||||||
<?php
|
|
||||||
/**
|
|
||||||
* Copyright 2018 Matthias Kesler
|
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
||||||
* you may not use this file except in compliance with the License.
|
|
||||||
* You may obtain a copy of the License at
|
|
||||||
*
|
|
||||||
* http://www.apache.org/licenses/LICENSE-2.0
|
|
||||||
*
|
|
||||||
* Unless required by applicable law or agreed to in writing, software
|
|
||||||
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
||||||
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
||||||
* See the License for the specific language governing permissions and
|
|
||||||
* limitations under the License.
|
|
||||||
*/
|
|
||||||
function send_mail($receiver, $subject, $body) {
|
|
||||||
include("config.php");
|
|
||||||
$headers = "From: " . $config["register_email"] . "\r\n"
|
|
||||||
. "Content-Type: text/plain;charset=utf-8";
|
|
||||||
return mail($receiver, $subject, $body, $headers);
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
|
||||||
$subject = "Bitte bestätige Registrierung auf $homeserver";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Du hast anscheinend versucht dich auf $homeserver zu registrieren.
|
|
||||||
Hier gibt es eine zweistufige Registrierung.
|
|
||||||
|
|
||||||
Wir möchten dich bitten, dass du kurz bestätigst, dass du die Registrierung durchgeführt hast.
|
|
||||||
Gehe dafür auf folgenden Link:
|
|
||||||
$verify_url
|
|
||||||
|
|
||||||
Erst anschließend werden die Administratoren über deine Registrierungsanfrage informiert.
|
|
||||||
|
|
||||||
Hinweis: Du hast ca. 48 Stunden Zeit um die Bestätigung durchzuführen.
|
|
||||||
Danach ist eine Re-Registrierung mit deinem gewünschten Nutzernamen für andere wieder möglich.
|
|
||||||
|
|
||||||
Vielen Dank für dein Verständnis.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
|
||||||
$subject = "Registrierung wartet auf Bestätigung durch Administratoren";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde verifiziert und wird nun durch die Administratoren überprüft.
|
|
||||||
|
|
||||||
Du bekommst eine weitere E-Mail, sobald deine Registrierung bestätigt oder ablehnt wurde.
|
|
||||||
|
|
||||||
Vielen Dank für dein Verständnis.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
|
||||||
$subject = "Registrierung auf $homeserver genehmigt";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
|
||||||
|
|
||||||
Leider ist beim Registrieren ein Fehler aufgetaucht. Der Registrierungversuch wird bald wiederholt.
|
|
||||||
Wir hoffen, das Problem ist bald behoben.
|
|
||||||
Wir melden uns, wenn die Registrierung erfolgreich war.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
|
||||||
$subject = "Registrierung auf $homeserver erfolgreich";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
|
||||||
|
|
||||||
Zum Anmelden kannst du folgende Zugangsdaten verwenden:
|
|
||||||
Nutzername: $username
|
|
||||||
Passwort: $password
|
|
||||||
|
|
||||||
Hinweis: Das Passwort kannst du aktuell über die App selbst ändern. Auch wenn das Passwort nirgends
|
|
||||||
im Klartext gespeichert wird, kann jemand Zugriff auf diese Mail erlangen und so den Zugriff bekommen.
|
|
||||||
";
|
|
||||||
/*
|
|
||||||
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
|
||||||
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
|
||||||
erhalten und so deinen Account kompromittieren.
|
|
||||||
*/
|
|
||||||
if (!empty($howToURL)) {
|
|
||||||
$body .= "
|
|
||||||
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
|
||||||
Anleitungen zu verschiedenen Clients:
|
|
||||||
$howToURL\n";
|
|
||||||
}
|
|
||||||
$body .= "
|
|
||||||
Viel Spaß bei der Verwendung von $homeserver.
|
|
||||||
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
|
||||||
$subject = "Registrierung auf $homeserver abgelehnt";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren abgelehnt.\n";
|
|
||||||
|
|
||||||
if (empty($reason)) {
|
|
||||||
$body .= "\nEs wurde kein Grund angegeben\n";
|
|
||||||
} else {
|
|
||||||
$body .= "\nAls Grund wurde folgendes angegeben:\n$reason\n";
|
|
||||||
}
|
|
||||||
|
|
||||||
$body .= "
|
|
||||||
Wir hoffen, dass du dies akzeptieren kannst.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
?>
|
|
||||||
@@ -1,118 +0,0 @@
|
|||||||
<?php
|
|
||||||
/**
|
|
||||||
* Copyright 2018 Matthias Kesler
|
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
||||||
* you may not use this file except in compliance with the License.
|
|
||||||
* You may obtain a copy of the License at
|
|
||||||
*
|
|
||||||
* http://www.apache.org/licenses/LICENSE-2.0
|
|
||||||
*
|
|
||||||
* Unless required by applicable law or agreed to in writing, software
|
|
||||||
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
||||||
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
||||||
* See the License for the specific language governing permissions and
|
|
||||||
* limitations under the License.
|
|
||||||
*/
|
|
||||||
function send_mail($receiver, $subject, $body) {
|
|
||||||
include("config.php");
|
|
||||||
$headers = "From: " . $config["register_email"] . "\r\n"
|
|
||||||
. "Content-Type: text/plain;charset=utf-8";
|
|
||||||
return mail($receiver, $subject, $body, $headers);
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
|
||||||
$subject = "Pleast approve your registration request on $homeserver";
|
|
||||||
$body = "Dear " . $user . ",
|
|
||||||
|
|
||||||
It seems that you tried to register on $homeserver.
|
|
||||||
This homeserver requires a two step registration.
|
|
||||||
|
|
||||||
For this we want you to verify that you want to register. For this please click on this link:
|
|
||||||
$verify_url
|
|
||||||
|
|
||||||
The admins will informed about your registration request once you clicked on this link.
|
|
||||||
|
|
||||||
Note: This registration request will be cleaned up in 48 hours.
|
|
||||||
Others might take your username afterwards.
|
|
||||||
|
|
||||||
Thanks for your patience.
|
|
||||||
|
|
||||||
The admin team of " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
|
||||||
$subject = "Registration is pending verification from an admin";
|
|
||||||
$body = "Dear " . $user . ",
|
|
||||||
|
|
||||||
You have verified your registration request. The admins are now checking your request.
|
|
||||||
|
|
||||||
You will get an email once they approve or decline your request.
|
|
||||||
|
|
||||||
Sincerely,
|
|
||||||
|
|
||||||
The admin team of " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
|
||||||
$subject = "Registration on $homeserver got approved";
|
|
||||||
$body = "Dear " . $user . ",
|
|
||||||
|
|
||||||
Your registration request got approved by the admin team.
|
|
||||||
|
|
||||||
But there was a problem when triggering the registration request. It will be retried in a few minutes.
|
|
||||||
We hope that the issue will be fixed soon.
|
|
||||||
You will get another email with initial credentials once the registration got handled completely.
|
|
||||||
|
|
||||||
The admin team of " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
|
||||||
$subject = "Registration on $homeserver got approved";
|
|
||||||
$body = "Dear " . $user . ",
|
|
||||||
|
|
||||||
Your registration request got verified by the admin team.
|
|
||||||
|
|
||||||
To log in you can use the following credentials::
|
|
||||||
Username: $username
|
|
||||||
Password: $password
|
|
||||||
|
|
||||||
Important: Please change your password as soon as possible after your first login.
|
|
||||||
The password is not stored in clear text on the server but people could get access to this mail
|
|
||||||
and compromise your account.
|
|
||||||
";
|
|
||||||
if (!empty($howToURL)) {
|
|
||||||
$body .= "
|
|
||||||
You can find further help here::
|
|
||||||
$howToURL\n";
|
|
||||||
}
|
|
||||||
$body .= "
|
|
||||||
Enjoy your usage of $homeserver.
|
|
||||||
You can ask further questions inside of the chat system.
|
|
||||||
|
|
||||||
The admin team of " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
|
||||||
$subject = "Registration on $homeserver declined.";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Your registration request got declined by the admin team.\n";
|
|
||||||
|
|
||||||
if (empty($reason)) {
|
|
||||||
$body .= "\nThey did not provide any reason for this\n";
|
|
||||||
} else {
|
|
||||||
$body .= "\nThey provide following hint for you:\n$reason\n";
|
|
||||||
}
|
|
||||||
|
|
||||||
$body .= "
|
|
||||||
We hope that you can understand this reason.
|
|
||||||
|
|
||||||
The admin team of " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
?>
|
|
||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,9 +13,7 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("config.php");
|
$lang = "de-de";
|
||||||
$lang = $config["defaultLanguage"];
|
|
||||||
|
|
||||||
if(isset($_GET['lang'])){
|
if(isset($_GET['lang'])){
|
||||||
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
||||||
}
|
}
|
||||||
@@ -25,7 +22,6 @@ if (!file_exists($lang_file)) {
|
|||||||
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
||||||
$lang = "de-de";
|
$lang = "de-de";
|
||||||
}
|
}
|
||||||
$lang_file = dirname(__FILE__) . "/lang/lang." . $lang . ".php";
|
|
||||||
require_once($lang_file);
|
require_once($lang_file);
|
||||||
unset($lang_file);
|
unset($lang_file);
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,5 +1,4 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,16 +13,109 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("config.php");
|
function send_mail($receiver, $subject, $body) {
|
||||||
$lang = $config["defaultLanguage"];
|
include("config.php");
|
||||||
if (isset($_GET['lang'])) {
|
$headers = "From: " . $config["register_email"] . "\r\n"
|
||||||
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
. "Content-Type: text/plain;charset=utf-8";
|
||||||
|
return mail($receiver, $subject, $body, $headers);
|
||||||
}
|
}
|
||||||
$lang_file = dirname(__FILE__) . "/lang/mail." . $lang . ".php";
|
|
||||||
if (!file_exists($lang_file)) {
|
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
||||||
error_log("Mail templates for '" . $lang . "' not found. Fallback to 'de-de'");
|
$subject = "Bitte bestätige Registrierung auf $homeserver";
|
||||||
$lang = "de-de";
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Du hast anscheinend versucht dich auf $homeserver zu registrieren.
|
||||||
|
Hier gibt es eine zweistufige Registrierung.
|
||||||
|
|
||||||
|
Wir möchten dich bitten, dass du kurz bestätigst, dass du die Registrierung durchgeführt hast.
|
||||||
|
Gehe dafür auf folgenden Link:
|
||||||
|
$verify_url
|
||||||
|
|
||||||
|
Erst anschließend werden die Administratoren über deine Registrierungsanfrage informiert.
|
||||||
|
|
||||||
|
Hinweis: Du hast ca. 48 Stunden Zeit um die Bestätigung durchzuführen.
|
||||||
|
Danach ist eine Re-Registrierung mit deinem gewünschten Nutzernamen für andere wieder möglich.
|
||||||
|
|
||||||
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body );
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registrierung wartet auf Bestätigung durch Administratoren";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde verifiziert und wird nun durch die Administratoren überprüft.
|
||||||
|
|
||||||
|
Du bekommst eine weitere E-Mail, sobald deine Registrierung bestätigt oder ablehnt wurde.
|
||||||
|
|
||||||
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body );
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registrierung auf $homeserver genehmigt.";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
||||||
|
|
||||||
|
Leider ist beim Registrieren ein Fehler aufgetaucht. Der Registrierungversuch wird bald wiederholt.
|
||||||
|
Wir hoffen, das Problem ist bald behoben.
|
||||||
|
Wir melden uns, wenn die Registrierung erfolgreich war.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
||||||
|
$subject = "Registrierung auf $homeserver erfolgreich.";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
||||||
|
|
||||||
|
Zum Anmelden kannst du folgende Zugangsdaten verwenden:
|
||||||
|
Nutzername: $username
|
||||||
|
Passwort: $password
|
||||||
|
|
||||||
|
Hinweis: Aktuell ist es nicht möglich, das Passwort selbst zu ändern. Sobald die Funktionalität zur
|
||||||
|
Verfügung steht, gibt es aber einen Hinweis.
|
||||||
|
";
|
||||||
|
/*
|
||||||
|
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
||||||
|
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
||||||
|
erhalten und so deinen Account kompromittieren.
|
||||||
|
*/
|
||||||
|
if (!empty($howToURL)) {
|
||||||
|
$body .= "
|
||||||
|
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
||||||
|
Anleitungen zu verschiedenen Clients:
|
||||||
|
$howToURL\n";
|
||||||
|
}
|
||||||
|
$body .= "
|
||||||
|
Viel Spaß bei der Verwendung von $homeserver.
|
||||||
|
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
|
||||||
|
}
|
||||||
|
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
||||||
|
$subject = "Registrierung auf $homeserver abgelehnt.";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren abgelehnt.\n";
|
||||||
|
|
||||||
|
if (empty($reason)) {
|
||||||
|
$body .= "\nEs wurde kein Grund angegeben\n";
|
||||||
|
} else {
|
||||||
|
$body .= "\nAls Grund wurde folgendes angegeben:\n$reason\n";
|
||||||
|
}
|
||||||
|
|
||||||
|
$body .= "\nDas Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body );
|
||||||
}
|
}
|
||||||
require_once($lang_file);
|
|
||||||
unset($lang_file);
|
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -81,10 +81,14 @@ if ($_SERVER["REQUEST_METHOD"] == "POST") {
|
|||||||
$verify_url = $config["webroot"] . "/verify.php?t=" . $verify_token;
|
$verify_url = $config["webroot"] . "/verify.php?t=" . $verify_token;
|
||||||
require_once "../mail_templates.php";
|
require_once "../mail_templates.php";
|
||||||
$success = send_mail_pending_verification(
|
$success = send_mail_pending_verification(
|
||||||
$config["homeserver"], $first_name . " " . $last_name, $email, $verify_url);
|
$config["homeserver"],
|
||||||
|
$first_name . " " . $last_name,
|
||||||
|
$email,
|
||||||
|
$verify_url);
|
||||||
|
|
||||||
$mx_db->setRegistrationStateVerify(
|
$mx_db->setRegistrationStateVerify(
|
||||||
($success ? RegisterState::PendingEmailVerify : RegisterState::PendingEmailSend), $verify_token);
|
($success ? RegisterState::PendingEmailVerify : RegisterState::PendingEmailSend),
|
||||||
|
$verify_token);
|
||||||
|
|
||||||
print("<title>Erfolgreich</title>");
|
print("<title>Erfolgreich</title>");
|
||||||
print("</head><body>");
|
print("</head><body>");
|
||||||
|
|||||||
@@ -67,7 +67,8 @@ try {
|
|||||||
$message = $language["SEND_MATRIX_FAIL"];
|
$message = $language["SEND_MATRIX_FAIL"];
|
||||||
}
|
}
|
||||||
$mx_db->setRegistrationStateVerify(
|
$mx_db->setRegistrationStateVerify(
|
||||||
($response ? RegisterState::PendingAdminVerify : RegisterState::PendingAdminSend), $token);
|
($response ? RegisterState::PendingAdminVerify : RegisterState::PendingAdminSend),
|
||||||
|
$token);
|
||||||
|
|
||||||
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user