Compare commits
34 Commits
f808615f22
...
track_decl
| Author | SHA1 | Date | |
|---|---|---|---|
| 39412e6b40 | |||
| 95e18a106c | |||
| d110322762 | |||
| db147d91c7 | |||
| 4682d34674 | |||
|
|
9334c61ab8 | ||
| 61e3465797 | |||
| c60a1bb2ac | |||
| 2e02fca7c3 | |||
| ad3af8092b | |||
| 3250792c9d | |||
| 16fa0db8ca | |||
| 661b01e1e6 | |||
| a6ad3e4e51 | |||
| 083c848347 | |||
| dda0e83abe | |||
| 21e20e87cb | |||
|
|
3eccf446d6 | ||
| 3fa2a2fe03 | |||
| f49f6cef73 | |||
| fe504f7ad7 | |||
| d130ba30c8 | |||
| 0ff9108220 | |||
| d9e65f4b5d | |||
| a6ce908f4b | |||
| 0a21e01540 | |||
| 629ead76e2 | |||
| d597a54353 | |||
| 0c1141dbb9 | |||
| 31ab9b816b | |||
| be88dfdc3d | |||
|
|
2c524ed066 | ||
|
|
31bacaeb36 | ||
| 79341b4c88 |
5
.gitignore
vendored
5
.gitignore
vendored
@@ -1,2 +1,5 @@
|
|||||||
config.php
|
config.php
|
||||||
db_file.sqlite
|
db_file.sqlite
|
||||||
|
|
||||||
|
# do not track sources which will be built by composer
|
||||||
|
/vendor/
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,154 +14,177 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
class MatrixConnection
|
|
||||||
{
|
|
||||||
private $hs;
|
|
||||||
private $at;
|
|
||||||
|
|
||||||
function __construct($homeserver, $access_token) {
|
require_once(__DIR__ . "/helpers.php");
|
||||||
$this->hs = $homeserver;
|
|
||||||
$this->at = $access_token;
|
|
||||||
}
|
|
||||||
|
|
||||||
function send($room_id, $message) {
|
class MatrixConnection {
|
||||||
if (!$this->at) {
|
|
||||||
error_log("No access token defined");
|
|
||||||
return false;
|
|
||||||
}
|
|
||||||
|
|
||||||
$send_message = NULL;
|
private $hs;
|
||||||
if (!$message) {
|
private $at;
|
||||||
error_log("no message to send");
|
|
||||||
return false;
|
|
||||||
} elseif(is_array($message)) {
|
|
||||||
$send_message = $message;
|
|
||||||
} elseif ($message instanceof MatrixMessage) {
|
|
||||||
$send_message = $message->get_object();
|
|
||||||
} else {
|
|
||||||
error_log("message is of not valid type\n");
|
|
||||||
return false;
|
|
||||||
}
|
|
||||||
|
|
||||||
$url="https://".$this->hs."/_matrix/client/r0/rooms/"
|
function __construct($homeserver, $access_token) {
|
||||||
. urlencode($room_id) ."/send/m.room.message?access_token=".$this->at;
|
$this->hs = $homeserver;
|
||||||
$handle = curl_init($url);
|
$this->at = $access_token;
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
}
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
|
||||||
curl_setopt($handle, CURLOPT_TIMEOUT, 60);
|
|
||||||
curl_setopt($handle, CURLOPT_POSTFIELDS, json_encode($send_message));
|
|
||||||
curl_setopt($handle, CURLOPT_HTTPHEADER, array("Content-Type: application/json"));
|
|
||||||
|
|
||||||
$response = $this->exec_curl_request($handle);
|
function send($room_id, $message) {
|
||||||
return isset($response["event_id"]);
|
if (!$this->at) {
|
||||||
}
|
error_log("No access token defined");
|
||||||
|
return false;
|
||||||
|
}
|
||||||
|
|
||||||
function send_msg($room_id, $message) {
|
$send_message = NULL;
|
||||||
return $this->send($room_id, array(
|
if (!$message) {
|
||||||
"msgtype" => "m.notice",
|
error_log("no message to send");
|
||||||
"body" => $message
|
return false;
|
||||||
)
|
} elseif (is_array($message)) {
|
||||||
);
|
$send_message = $message;
|
||||||
}
|
} elseif ($message instanceof MatrixMessage) {
|
||||||
|
$send_message = $message->get_object();
|
||||||
|
} else {
|
||||||
|
error_log("message is of not valid type\n");
|
||||||
|
return false;
|
||||||
|
}
|
||||||
|
|
||||||
function hasUser($username) {
|
$url = "https://" . $this->hs . "/_matrix/client/r0/rooms/"
|
||||||
if (!$username) {
|
. urlencode($room_id) . "/send/m.room.message?access_token=" . $this->at;
|
||||||
throw new Exception ("no user given to lookup");
|
$handle = getCurlHandle($url);
|
||||||
}
|
curl_setopt($handle, CURLOPT_POSTFIELDS, json_encode($send_message));
|
||||||
|
|
||||||
$url = "https://".$this->hs."/_matrix/client/r0/profile/@" . $username . ":" . $this->hs;
|
$response = $this->exec_curl_request($handle);
|
||||||
$handle = curl_init($url);
|
return isset($response["event_id"]);
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
}
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
|
||||||
curl_setopt($handle, CURLOPT_TIMEOUT, 60);
|
|
||||||
curl_setopt($handle, CURLOPT_HTTPHEADER, array("Content-Type: application/json"));
|
|
||||||
|
|
||||||
$res = $this->exec_curl_request($handle);
|
function send_msg($room_id, $message) {
|
||||||
return !(isset($res["errcode"]) && $res["errcode"] == "M_UNKNOWN");
|
return $this->send($room_id, array(
|
||||||
}
|
"msgtype" => "m.notice",
|
||||||
|
"body" => $message
|
||||||
|
)
|
||||||
|
);
|
||||||
|
}
|
||||||
|
|
||||||
function register($username, $password, $shared_secret) {
|
function hasUser($username) {
|
||||||
if (!$username) {
|
if (!$username) {
|
||||||
error_log("no username provided");
|
throw new Exception("no user given to lookup");
|
||||||
}
|
}
|
||||||
if (!$password) {
|
|
||||||
error_log("no message to send");
|
|
||||||
}
|
|
||||||
|
|
||||||
$mac = hash_hmac('sha1', $username, $shared_secret);
|
$url = "https://" . $this->hs . "/_matrix/client/r0/profile/@" . $username . ":" . $this->hs;
|
||||||
|
$handle = getCurlHandle($url);
|
||||||
|
|
||||||
$data = array(
|
$res = $this->exec_curl_request($handle);
|
||||||
"username" => $username,
|
return !(isset($res["errcode"]) && $res["errcode"] == "M_UNKNOWN");
|
||||||
"password" => $password,
|
}
|
||||||
"mac" => $mac,
|
|
||||||
);
|
|
||||||
$url = "https://".$this->hs."/_matrix/client/v2_alpha/register";
|
|
||||||
$handle = curl_init($url);
|
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
|
||||||
curl_setopt($handle, CURLOPT_TIMEOUT, 60);
|
|
||||||
curl_setopt($handle, CURLOPT_HTTPHEADER, array("Content-Type: application/json"));
|
|
||||||
curl_setopt($handle, CURLOPT_POSTFIELDS, json_encode($data));
|
|
||||||
|
|
||||||
return $this->exec_curl_request($handle);
|
function getRegisterNonce() {
|
||||||
}
|
$url = "https://" . $this->hs . "/_matrix/client/r0/admin/register";
|
||||||
|
$handle = getCurlHandle($url);
|
||||||
|
|
||||||
function exec_curl_request($handle) {
|
try {
|
||||||
$response = curl_exec($handle);
|
$response = $this->exec_curl_request($handle);
|
||||||
if ($response === false) {
|
if (is_array($response) && isset($response["nonce"])) {
|
||||||
$errno = curl_errno($handle);
|
return $response["nonce"];
|
||||||
$error = curl_error($handle);
|
}
|
||||||
error_log("Curl returned error $errno: $error\n");
|
throw new Exception("INVALID_RESPONSE_FROM_SERVER");
|
||||||
curl_close($handle);
|
} catch (Exception $e) {
|
||||||
return false;
|
if (strcmp("AUTHENTICATION_FAILED", $e->getMessage()) == 0) {
|
||||||
}
|
throw new Exception("WRONG_REGISTRATION_SHARED_SECRET");
|
||||||
$http_code = intval(curl_getinfo($handle, CURLINFO_HTTP_CODE));
|
} else {
|
||||||
curl_close($handle);
|
throw $e;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
function register($username, $password, $shared_secret) {
|
||||||
|
if (!$username) {
|
||||||
|
error_log("no username provided");
|
||||||
|
}
|
||||||
|
if (!$password) {
|
||||||
|
error_log("no password provided");
|
||||||
|
}
|
||||||
|
$nonce = $this->getRegisterNonce();
|
||||||
|
//TODO allow registering of admin.
|
||||||
|
$hmac_content = $nonce . "\x00" . $username . "\x00" . $password . "\x00notadmin";
|
||||||
|
$mac = hash_hmac('sha1', $hmac_content, $shared_secret);
|
||||||
|
|
||||||
|
$data = array(
|
||||||
|
"nonce" => $nonce,
|
||||||
|
"username" => $username,
|
||||||
|
"password" => $password,
|
||||||
|
"mac" => $mac,
|
||||||
|
);
|
||||||
|
$url = "https://" . $this->hs . "/_matrix/client/r0/admin/register";
|
||||||
|
$handle = getCurlHandle($url);
|
||||||
|
curl_setopt($handle, CURLOPT_POSTFIELDS, json_encode($data));
|
||||||
|
|
||||||
|
try {
|
||||||
|
return $this->exec_curl_request($handle);
|
||||||
|
} catch (Exception $e) {
|
||||||
|
if (strcmp("AUTHENTICATION_FAILED", $e->getMessage()) == 0) {
|
||||||
|
throw new Exception("WRONG_REGISTRATION_SHARED_SECRET");
|
||||||
|
} else {
|
||||||
|
throw $e;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
function exec_curl_request($handle) {
|
||||||
|
$response = curl_exec($handle);
|
||||||
|
if ($response === false) {
|
||||||
|
$errno = curl_errno($handle);
|
||||||
|
$error = curl_error($handle);
|
||||||
|
error_log("Curl returned error $errno: $error\n");
|
||||||
|
curl_close($handle);
|
||||||
|
return false;
|
||||||
|
}
|
||||||
|
$http_code = intval(curl_getinfo($handle, CURLINFO_HTTP_CODE));
|
||||||
|
curl_close($handle);
|
||||||
|
|
||||||
|
if ($http_code >= 500) {
|
||||||
|
// do not want to DDOS server if something goes wrong
|
||||||
|
sleep(10);
|
||||||
|
return false;
|
||||||
|
} else if ($http_code != 200) {
|
||||||
|
$response = json_decode($response, true);
|
||||||
|
error_log("Request has failed with error {$response['error']}\n");
|
||||||
|
if ($http_code == 401) {
|
||||||
|
throw new Exception("AUTHENTICATION_FAILED");
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
$response = json_decode($response, true);
|
||||||
|
}
|
||||||
|
return $response;
|
||||||
|
}
|
||||||
|
|
||||||
if ($http_code >= 500) {
|
|
||||||
// do not want to DDOS server if something goes wrong
|
|
||||||
sleep(10);
|
|
||||||
return false;
|
|
||||||
} else if ($http_code != 200) {
|
|
||||||
$response = json_decode($response, true);
|
|
||||||
error_log("Request has failed with error {$response['error']}\n");
|
|
||||||
if ($http_code == 401) {
|
|
||||||
throw new Exception('Invalid access token provided');
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
$response = json_decode($response, true);
|
|
||||||
}
|
|
||||||
return $response;
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class MatrixMessage
|
class MatrixMessage {
|
||||||
{
|
|
||||||
private $message;
|
|
||||||
|
|
||||||
function __construct() {
|
private $message;
|
||||||
$this->message = ["msgtype" => "m.notice"];
|
|
||||||
}
|
|
||||||
|
|
||||||
function set_type($msgtype) {
|
function __construct() {
|
||||||
$this->message["msgtype"] = $msgtype;
|
$this->message = ["msgtype" => "m.notice"];
|
||||||
}
|
}
|
||||||
|
|
||||||
function set_format($format) {
|
function set_type($msgtype) {
|
||||||
$this->message["format"] = $format;
|
$this->message["msgtype"] = $msgtype;
|
||||||
}
|
}
|
||||||
|
|
||||||
function set_body($body) {
|
function set_format($format) {
|
||||||
$this->message["body"] = $body;
|
$this->message["format"] = $format;
|
||||||
}
|
}
|
||||||
|
|
||||||
function set_formatted_body($fbody, $format="org.matrix.custom.html") {
|
function set_body($body) {
|
||||||
$this->message["formatted_body"] = $fbody;
|
$this->message["body"] = $body;
|
||||||
$this->message["format"] = $format;
|
}
|
||||||
}
|
|
||||||
|
|
||||||
function get_object() {
|
function set_formatted_body($fbody, $format = "org.matrix.custom.html") {
|
||||||
return $this->message;
|
$this->message["formatted_body"] = $fbody;
|
||||||
}
|
$this->message["format"] = $format;
|
||||||
|
}
|
||||||
|
|
||||||
|
function get_object() {
|
||||||
|
return $this->message;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
?>
|
?>
|
||||||
|
|||||||
69
README.md
69
README.md
@@ -1,28 +1,55 @@
|
|||||||
# matrix-register-bot
|
# matrix-register-bot
|
||||||
|

|
||||||
|
[](https://matrix.to/#/#matrix-register-bot:msg-net.de)
|
||||||
|
|
||||||
This bot provides a two-step-registration for matrix.
|
This bot provides a two-step-registration for matrix ([synapse](https://github.com/matrix-org/synapse)).
|
||||||
|
|
||||||
This is done in several steps:
|
This is done in several steps:
|
||||||
- potential new user registers on a bot-provided side
|
- potential new user registers on a bot-provided site
|
||||||
|
- user has to verify its mail address
|
||||||
- bot sends a message to predefined room with a registration notification.
|
- bot sends a message to predefined room with a registration notification.
|
||||||
- users in that room now can approve or decline the registration.
|
- users in that room now can approve or decline the registration.
|
||||||
- When approved
|
- When approved
|
||||||
- the bot creates credentials
|
- the bot creates short time credentials
|
||||||
- sends them to the user
|
- sends them to the user
|
||||||
- stores them encrypted in own database
|
- stores them encrypted in own databas or uses that as initial password for registration
|
||||||
- provides that credentials to [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth#integrate) which has to be configured to query login.php
|
|
||||||
|
|
||||||
2nd step: Implement the other apis to integrade [mxisd](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md)
|
There are two operation modes available:
|
||||||
|
- `operationMode=synapse`
|
||||||
|
- No adjustments on your running environment are required. This bot uses the the [Shared-Secret Registration of synapse](https://github.com/matrix-org/synapse/blob/master/docs/admin_api/register_api.rst) to register the users.
|
||||||
|
- `operationMode=local`:
|
||||||
|
- Bot handles user management. Therefore it stores the user-data and uses [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth#integrate) to authenticate the users.
|
||||||
|
- This way it is possible to set the display name of a user on first login (first- and lastname instead of username)
|
||||||
|
- The email address of the user can be used to implement third party lookup (requires [mxisd](https://github.com/kamax-io/mxisd/blob/master/docs/stores/rest.md))
|
||||||
|
- search for users you have not seen yet but are available on the server
|
||||||
|
|
||||||
|
## Requirements
|
||||||
|
|
||||||
|
- Working PHP environment with
|
||||||
|
- database connection provider \[one of sqlite, mysql, postgres\]
|
||||||
|
- curl extension
|
||||||
|
- mail capability to interact with the users (verification, approval (+ initial password), notifications)
|
||||||
|
- either via sendmail or with credentials
|
||||||
|
- [composer](https://getcomposer.org) installed
|
||||||
|
- [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth) when using `operationMode=local`
|
||||||
|
|
||||||
This bot takes care for user accounts. So it stores the credentials itself and provides ways to access them via matrix-synapse-rest-auth or mxisd.
|
|
||||||
## How to install
|
## How to install
|
||||||
|
|
||||||
- Copy `config.sample.php` to `config.php` and configure the bot as you can find there
|
```
|
||||||
- Configure your webserver to publish the folder `public`.
|
git clone https://github.com/krombel/matrix-register-bot
|
||||||
The folder `internal` contains files that can be accessed by mxisd or matrix-synapse-rest-auth or else via a reverse proxy
|
cd matrix-register-bot
|
||||||
|
composer install
|
||||||
|
cp config.sample.php config.php
|
||||||
|
editor config.php
|
||||||
|
```
|
||||||
|
- Configure your webserver to have the folder `public` accessible via web.
|
||||||
|
|
||||||
|
|
||||||
|
When running `operationMode=local`:
|
||||||
|
- Configure your webserver to provide the folder `internal` internally. This is only meant to be accessible by mxisd and matrix-synapse-rest-auth
|
||||||
- To integrate with [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth):
|
- To integrate with [matrix-synapse-rest-auth](https://github.com/kamax-io/matrix-synapse-rest-auth):
|
||||||
- `/_matrix-internal/identity/v1/check_credentials` should map to `internal/login.php`
|
- `/_matrix-internal/identity/v1/check_credentials` should map to `internal/login.php`
|
||||||
- To integrate with [mxisd](https://github.com/kamax-io/mxisd): Have a look at [the docs](https://github.com/kamax-io/mxisd/blob/master/docs/backends/rest.md) and apply as follows:
|
- To integrate with [mxisd](https://github.com/kamax-io/mxisd): Have a look at [the docs of mxisd](https://github.com/kamax-io/mxisd/blob/master/docs/stores/rest.md) and apply as follows:
|
||||||
|
|
||||||
|
|
||||||
| Key | file which handles that | Description |
|
| Key | file which handles that | Description |
|
||||||
@@ -33,15 +60,25 @@ This bot takes care for user accounts. So it stores the credentials itself and p
|
|||||||
| rest.endpoints.identity.bulk | internal/identity_bulk.php | Endpoint to query a list of 3PID |
|
| rest.endpoints.identity.bulk | internal/identity_bulk.php | Endpoint to query a list of 3PID |
|
||||||
|
|
||||||
|
|
||||||
## Implement usage of additional features:
|
## Further notes:
|
||||||
### Use the ChangePasswortInterceptor:
|
|
||||||
|
|
||||||
You need a reverse proxy which maps `/_matrix/client/r0/account/password` to `internal/intercept_change_password.php`.
|
### Security: Passwords from registration form are stored in clear text
|
||||||
|
Currently the passwords which are typed in while capturing the register request are stored in clear text.
|
||||||
|
The bot needs to access them to trigger a register request with correct credentials.
|
||||||
|
It is currently strongly recommended to set `"getPasswordOnRegistration" => false` in your config!
|
||||||
|
This leads to autocreating passwords which will then be send to the users directly without storing it.
|
||||||
|
|
||||||
|
### Use the ChangePasswortInterceptor (if `operationMode=local`)
|
||||||
|
|
||||||
|
To allow users to change their pasword you need a reverse proxy which maps `/_matrix/client/r0/account/password` to `internal/intercept_change_password.php`.
|
||||||
Here is an example for nginx:
|
Here is an example for nginx:
|
||||||
|
|
||||||
```
|
```
|
||||||
location /_matrix/client/r0/account/password {
|
location /_matrix/client/r0/account/password {
|
||||||
proxy_pass http://localhost/mxbot/internal/intercept_change_password.php;
|
proxy_pass http://localhost/mxbot/internal/intercept_change_password.php;
|
||||||
proxy_set_header X-Forwarded-For $remote_addr;
|
proxy_set_header X-Forwarded-For $remote_addr;
|
||||||
}
|
}
|
||||||
```
|
```
|
||||||
|
### The bot postpones some actions
|
||||||
|
There is a cron.php which implements retries and database cleanups (e.g. to remove a username claim)
|
||||||
|
For this run cron.php regularly with your system of choice.
|
||||||
|
A suggested interval is once per day
|
||||||
15
composer.json
Normal file
15
composer.json
Normal file
@@ -0,0 +1,15 @@
|
|||||||
|
{
|
||||||
|
"name": "krombel/matrix-register-bot",
|
||||||
|
"description": "Register-Bot which implements a 2-factor registration for synapse servers to take part on matrix-communication",
|
||||||
|
"type": "project",
|
||||||
|
"require": {
|
||||||
|
"phpmailer/phpmailer": "^6.0"
|
||||||
|
},
|
||||||
|
"license": "Apache-2.0",
|
||||||
|
"authors": [
|
||||||
|
{
|
||||||
|
"name": "Krombel",
|
||||||
|
"email": "krombel@krombel.de"
|
||||||
|
}
|
||||||
|
]
|
||||||
|
}
|
||||||
84
composer.lock
generated
Normal file
84
composer.lock
generated
Normal file
@@ -0,0 +1,84 @@
|
|||||||
|
{
|
||||||
|
"_readme": [
|
||||||
|
"This file locks the dependencies of your project to a known state",
|
||||||
|
"Read more about it at https://getcomposer.org/doc/01-basic-usage.md#installing-dependencies",
|
||||||
|
"This file is @generated automatically"
|
||||||
|
],
|
||||||
|
"content-hash": "6d67203b6e9fc952ae681c538683a497",
|
||||||
|
"packages": [
|
||||||
|
{
|
||||||
|
"name": "phpmailer/phpmailer",
|
||||||
|
"version": "v6.0.6",
|
||||||
|
"source": {
|
||||||
|
"type": "git",
|
||||||
|
"url": "https://github.com/PHPMailer/PHPMailer.git",
|
||||||
|
"reference": "8190d73eb5def11a43cfb020b7f36db65330698c"
|
||||||
|
},
|
||||||
|
"dist": {
|
||||||
|
"type": "zip",
|
||||||
|
"url": "https://api.github.com/repos/PHPMailer/PHPMailer/zipball/8190d73eb5def11a43cfb020b7f36db65330698c",
|
||||||
|
"reference": "8190d73eb5def11a43cfb020b7f36db65330698c",
|
||||||
|
"shasum": ""
|
||||||
|
},
|
||||||
|
"require": {
|
||||||
|
"ext-ctype": "*",
|
||||||
|
"ext-filter": "*",
|
||||||
|
"php": ">=5.5.0"
|
||||||
|
},
|
||||||
|
"require-dev": {
|
||||||
|
"doctrine/annotations": "1.2.*",
|
||||||
|
"friendsofphp/php-cs-fixer": "^2.2",
|
||||||
|
"phpdocumentor/phpdocumentor": "2.*",
|
||||||
|
"phpunit/phpunit": "^4.8 || ^5.7",
|
||||||
|
"zendframework/zend-eventmanager": "3.0.*",
|
||||||
|
"zendframework/zend-i18n": "2.7.3",
|
||||||
|
"zendframework/zend-serializer": "2.7.*"
|
||||||
|
},
|
||||||
|
"suggest": {
|
||||||
|
"ext-mbstring": "Needed to send email in multibyte encoding charset",
|
||||||
|
"hayageek/oauth2-yahoo": "Needed for Yahoo XOAUTH2 authentication",
|
||||||
|
"league/oauth2-google": "Needed for Google XOAUTH2 authentication",
|
||||||
|
"psr/log": "For optional PSR-3 debug logging",
|
||||||
|
"stevenmaguire/oauth2-microsoft": "Needed for Microsoft XOAUTH2 authentication",
|
||||||
|
"symfony/polyfill-mbstring": "To support UTF-8 if the Mbstring PHP extension is not enabled (^1.2)"
|
||||||
|
},
|
||||||
|
"type": "library",
|
||||||
|
"autoload": {
|
||||||
|
"psr-4": {
|
||||||
|
"PHPMailer\\PHPMailer\\": "src/"
|
||||||
|
}
|
||||||
|
},
|
||||||
|
"notification-url": "https://packagist.org/downloads/",
|
||||||
|
"license": [
|
||||||
|
"LGPL-2.1"
|
||||||
|
],
|
||||||
|
"authors": [
|
||||||
|
{
|
||||||
|
"name": "Jim Jagielski",
|
||||||
|
"email": "jimjag@gmail.com"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"name": "Marcus Bointon",
|
||||||
|
"email": "phpmailer@synchromedia.co.uk"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"name": "Andy Prevost",
|
||||||
|
"email": "codeworxtech@users.sourceforge.net"
|
||||||
|
},
|
||||||
|
{
|
||||||
|
"name": "Brent R. Matzelle"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"description": "PHPMailer is a full-featured email creation and transfer class for PHP",
|
||||||
|
"time": "2018-11-16T00:41:32+00:00"
|
||||||
|
}
|
||||||
|
],
|
||||||
|
"packages-dev": [],
|
||||||
|
"aliases": [],
|
||||||
|
"minimum-stability": "stable",
|
||||||
|
"stability-flags": [],
|
||||||
|
"prefer-stable": false,
|
||||||
|
"prefer-lowest": false,
|
||||||
|
"platform": [],
|
||||||
|
"platform-dev": []
|
||||||
|
}
|
||||||
@@ -1,26 +1,51 @@
|
|||||||
<?php
|
<?php
|
||||||
$config = [
|
$config = [
|
||||||
"homeserver" => "example.com",
|
"homeserver" => "example.com",
|
||||||
"access_token" => "To be used for sending the registration notification",
|
"access_token" => "To be used for sending the registration notification",
|
||||||
|
|
||||||
// Which e-mail-adresse shall the bot use to send e-mails?
|
// Which e-mail-adresse shall the bot use to send e-mails?
|
||||||
"register_email" => 'register_bot@example.com',
|
"register_email" => 'register_bot@example.com',
|
||||||
// Where should the bot post registration requests to?
|
|
||||||
"register_room" => '$registerRoomID:example.com',
|
|
||||||
|
|
||||||
// Where is the public part of the bot located? make sure you have a / at the end
|
// which settings should be used to send via SMTP Gateway?
|
||||||
"webroot" => "https://myregisterdomain.net/",
|
"smtp" => [
|
||||||
|
"host" => "localhost",
|
||||||
|
"port" => "25",
|
||||||
|
// use authentication?
|
||||||
|
"user" => "register@example.com",
|
||||||
|
"password" => "SecretEMailPassword",
|
||||||
|
// Use some encryption to SMTP-Server? [ssl, tls] or unset
|
||||||
|
"encryption" => False
|
||||||
|
],
|
||||||
|
|
||||||
// optional: Do you have a place where howTo's are located? If not leave this value out
|
// Where should the bot post registration requests to?
|
||||||
"howToURL" => "https://my-url-for-storing-howTos.net",
|
"register_room" => '$registerRoomID:example.com',
|
||||||
|
|
||||||
// When you want to collect the password on registration set this to true
|
// Where is the public part of the bot located? make sure you have a / at the end
|
||||||
"getPasswordOnRegistration" => false,
|
"webroot" => "https://myregisterdomain.net/",
|
||||||
|
|
||||||
// to define where the data should be stored:
|
// optional: Do you have a place where howTo's are located? If not leave this value out
|
||||||
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
"howToURL" => "https://my-url-for-storing-howTos.net",
|
||||||
// credentials for sqlite not used
|
|
||||||
"databaseUser" => "dbUser123",
|
// set the mode of operation. Basically this defines where the data is stored:
|
||||||
"databasePass" => "secretPassword",
|
// - synapse (using the register endpoint - so no further auth config necessary
|
||||||
]
|
// - local (recommended; using a table in the database to store credentials;
|
||||||
|
// synapse has to be configured to use that)
|
||||||
|
"operationMode" => "local",
|
||||||
|
|
||||||
|
// This setting is only required for operationMode = synapse
|
||||||
|
"registration_shared_secret" => "SOME_SECRET_KEY_FROM_HOMESERVER_CONFIG",
|
||||||
|
|
||||||
|
// When you want to collect the password on registration set this to true
|
||||||
|
// only evaluated when operationMode = local
|
||||||
|
"getPasswordOnRegistration" => false,
|
||||||
|
|
||||||
|
// default language: one of [ en-gb | de-de ]
|
||||||
|
"defaultLanguage" => "en-gb",
|
||||||
|
|
||||||
|
// to define where the data should be stored:
|
||||||
|
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
||||||
|
// credentials for sqlite not used
|
||||||
|
"databaseUser" => "dbUser123",
|
||||||
|
"databasePass" => "secretPassword",
|
||||||
|
]
|
||||||
?>
|
?>
|
||||||
|
|||||||
204
cron.php
204
cron.php
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,94 +14,133 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("config.php");
|
require_once(__DIR__ . "/config.php");
|
||||||
require_once("mail_templates.php");
|
require_once(__DIR__ . "/language.php");
|
||||||
require_once("database.php");
|
require_once(__DIR__ . "/mail_templates.php");
|
||||||
|
require_once(__DIR__ . "/database.php");
|
||||||
|
|
||||||
$sql = "SELECT id, first_name, last_name, username, email, state, note, verify_token, admin_token FROM registrations "
|
$sql = "SELECT id, first_name, last_name, username, password, email,"
|
||||||
."WHERE state = ". RegisterState::PendingEmailSend
|
. " state, note, verify_token, admin_token "
|
||||||
. " OR state = " . RegisterState::PendingAdminSend
|
. "FROM registrations "
|
||||||
. " OR state = " . RegisterState::PendingRegistration
|
. "WHERE state = " . RegisterState::PendingEmailSend
|
||||||
. " OR state = " . RegisterState::PendingSendRegistrationMail
|
. " OR state = " . RegisterState::PendingAdminSend
|
||||||
. " OR state = " . RegisterState::RegistrationDeclined
|
. " OR state = " . RegisterState::PendingRegistration
|
||||||
. " OR state = " . RegisterState::AllDone . ";";
|
. " OR state = " . RegisterState::PendingSendRegistrationMail . ";";
|
||||||
foreach ($mx_db->query($sql) as $row) {
|
foreach ($mx_db->query($sql) as $row) {
|
||||||
$first_name = $row["first_name"];
|
$first_name = $row["first_name"];
|
||||||
$last_name = $row["last_name"];
|
$last_name = $row["last_name"];
|
||||||
$username = $row["username"];
|
$username = $row["username"];
|
||||||
$email = $row["email"];
|
$email = $row["email"];
|
||||||
$state = $row["state"];
|
$state = $row["state"];
|
||||||
|
|
||||||
try {
|
try {
|
||||||
switch ($state) {
|
switch ($state) {
|
||||||
case RegisterState::PendingEmailSend:
|
case RegisterState::PendingEmailSend:
|
||||||
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
||||||
$success = send_mail_pending_verification(
|
$success = send_mail_pending_verification(
|
||||||
$config["homeserver"],
|
$config["homeserver"], $row["first_name"] . " " . $row["last_name"], $row["email"], $verify_url);
|
||||||
$row["first_name"] . " " . $row["last_name"],
|
|
||||||
$row["email"],
|
|
||||||
$verify_url);
|
|
||||||
|
|
||||||
if ($success) {
|
if ($success) {
|
||||||
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
||||||
} else {
|
} else {
|
||||||
throw new Exception("Could not send mail to ".$row["first_name"]." ".$row["last_name"]."(".$row["id"].")");
|
throw new Exception("Could not send mail to " . $row["first_name"] . " " . $row["last_name"] . "(" . $row["id"] . ")");
|
||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case RegisterState::PendingAdminSend:
|
case RegisterState::PendingAdminSend:
|
||||||
require_once("MatrixConnection.php");
|
require_once(__DIR__ . "/MatrixConnection.php");
|
||||||
$adminUrl = $config["webroot"] . "/verify_admin.php?t=" . $row["admin_token"];
|
$adminUrl = $config["webroot"] . "/verify_admin.php?t=" . $row["admin_token"];
|
||||||
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
||||||
$mxMsg = new MatrixMessage();
|
$mxMsg = new MatrixMessage();
|
||||||
$mxMsg->set_body($first_name . ' ' . $last_name . " möchte sich registrieren und hat folgende Notiz hinterlassen:\r\n"
|
$mxMsg->set_body(strtr($language["MSG_USER_WANTS_REGISTER"], [
|
||||||
. $row["note"] . "\r\n"
|
"@name" => (strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username),
|
||||||
. "Zum Bearbeiten hier klicken:\r\n" . $adminUrl);
|
"@note" => $note,
|
||||||
$mxMsg->set_formatted_body($first_name . ' ' . $last_name . " möchte sich registrieren und hat folgende Notiz hinterlassen:<br />"
|
"@adminUrl" => $adminUrl
|
||||||
. $row["note"] . "<br />"
|
]));
|
||||||
. "Zum Bearbeiten <a href=\"". $adminUrl . "\">hier</a> klicken");
|
if (isset($language["MSG_USER_WANTS_REGISTER_FORMATTED"])) {
|
||||||
$mxMsg->set_type("m.text");
|
$mxMsg->set_formatted_body(strtr($language["MSG_USER_WANTS_REGISTER_FORMATTED"], [
|
||||||
$response = $mxConn->send($config["register_room"], $mxMsg);
|
"@name" => (strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username),
|
||||||
|
"@note" => $note,
|
||||||
|
"@adminUrl" => $adminUrl
|
||||||
|
]));
|
||||||
|
}
|
||||||
|
$mxMsg->set_type("m.text");
|
||||||
|
$response = $mxConn->send($config["register_room"], $mxMsg);
|
||||||
|
|
||||||
if ($response) {
|
if ($response) {
|
||||||
$mx_db->setRegistrationStateById(RegisterState::PendingAdminVerify, $row["id"]);
|
$mx_db->setRegistrationStateById(RegisterState::PendingAdminVerify, $row["id"]);
|
||||||
|
|
||||||
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
||||||
} else {
|
} else {
|
||||||
throw new Exception("Could not send notification for ".$row["first_name"]." ".$row["last_name"]."(".$row["id"].") to admins.");
|
throw new Exception("Could not send notification for " . $row["first_name"] . " " . $row["last_name"] . "(" . $row["id"] . ") to admins.");
|
||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case RegisterState::PendingRegistration:
|
case RegisterState::PendingRegistration:
|
||||||
// Registration got accepted but registration failed
|
// Registration got accepted but registration failed
|
||||||
|
switch ($config["operationMode"]) {
|
||||||
|
case "synapse":
|
||||||
|
// register with registration_shared_secret
|
||||||
|
// generate a password with 10 characters
|
||||||
|
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
||||||
|
$res = $mxConn->register($row["username"], $password, $config["registration_shared_secret"]);
|
||||||
|
if (!$res) {
|
||||||
|
// something went wrong while registering
|
||||||
|
$password = NULL;
|
||||||
|
}
|
||||||
|
break;
|
||||||
|
case "local":
|
||||||
|
// register by adding a user to the local database
|
||||||
|
$password = $mx_db->addUser($row["first_name"], $row["last_name"], $row["username"], $row["password"], $row["email"]);
|
||||||
|
break;
|
||||||
|
default:
|
||||||
|
throw new Exception("Unknown operationMode");
|
||||||
|
}
|
||||||
|
if ($password != NULL) {
|
||||||
|
// send registration_success
|
||||||
|
$res = send_mail_registration_success(
|
||||||
|
$config["homeserver"], strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username, $email, $username, $password, $config["howToURL"]
|
||||||
|
);
|
||||||
|
if ($res) {
|
||||||
|
$mx_db->setRegistrationStateById(RegisterState::AllDone, $row["id"]);
|
||||||
|
} else {
|
||||||
|
$mx_db->setRegistrationStateById(RegisterState::PendingSendRegistrationMail, $row["id"]);
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
send_mail_registration_allowed_but_failed($config["homeserver"], $first_name . " " . $last_name, $email);
|
||||||
|
$mxMsg = new MatrixMessage();
|
||||||
|
$mxMsg->set_type("m.text");
|
||||||
|
$mxMsg->set_body(strtr($language["REGISTRATION_FAILED_FOR"], [
|
||||||
|
"@name" => strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username,
|
||||||
|
]));
|
||||||
|
$mxConn->send($config["register_room"], $mxMsg);
|
||||||
|
throw new Exception($language["REGISTRATION_FAILED"]);
|
||||||
|
}
|
||||||
|
break;
|
||||||
|
case RegisterState::PendingSendRegistrationMail:
|
||||||
|
print ("Error: Unhandled state: PendingSendRegistrationMail for " . $first_name . " " . $last_name . " (" . $username . ")\n");
|
||||||
|
break;
|
||||||
|
}
|
||||||
|
} catch (Exception $e) {
|
||||||
|
print("Error while handling cron for " . $first_name . " " . $last_name . " (" . $username . ")\n");
|
||||||
|
print($e->getMessage());
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
$password = $mx_db->addUser($row["first_name"], $row["last_name"], $row["username"], $row["email"]);
|
try {
|
||||||
if ($password != NULL) {
|
//cleanup: all finished entries older than one month
|
||||||
// send registration_success
|
$timestamp = date('Y-m-d H:m:s', strtotime("-1 month"));
|
||||||
$res = send_mail_registration_success($config["homeserver"], $first_name . " " . $last_name, $email, $username, $password, $config["howToURL"]);
|
$mx_db->query("DELETE FROM registrations "
|
||||||
if ($res) {
|
. "WHERE request_date < '$timestamp'"
|
||||||
$mx_db->setRegistrationStateById(RegisterState::AllDone, $row["id"]);
|
. " AND (state = " . RegisterState::RegistrationDeclined
|
||||||
} else {
|
. " OR state = " . RegisterState::AllDone . " );"
|
||||||
$mx_db->setRegistrationStateById(RegisterState::PendingSendRegistrationMail, $row["id"]);
|
);
|
||||||
}
|
//cleanup: all entries which are pending email registration older than two days
|
||||||
} else {
|
$timestamp = date('Y-m-d H:m:s', strtotime("-2 days"));
|
||||||
send_mail_registration_allowed_but_failed($config["homeserver"], $first_name . " " . $last_name, $email);
|
$mx_db->query("DELETE FROM registrations "
|
||||||
$mxMsg = new MatrixMessage();
|
. "WHERE request_date < '$timestamp'"
|
||||||
$mxMsg->set_type("m.text");
|
. " AND state = " . RegisterState::PendingEmailVerify . ";"
|
||||||
$mxMsg->set_body("Fehler beim Registrieren von " . $first_name . " " . $last_name . ".");
|
);
|
||||||
$mxConn->send($config["register_room"], $mxMsg);
|
} catch (Exception $e) {
|
||||||
throw new Exception($language["REGISTRATION_FAILED"]);
|
print("Error while database cleanup\n");
|
||||||
}
|
print($e->getMessage());
|
||||||
break;
|
|
||||||
case RegisterState::PendingSendRegistrationMail:
|
|
||||||
print ("Error: Unhandled state: PendingSendRegistrationMail for " . $first_name . " " . $last_name . " (" . $username . ")\n");
|
|
||||||
break;
|
|
||||||
case RegisterState::RegistrationDeclined:
|
|
||||||
case RegisterState::AllDone:
|
|
||||||
// do reqular cleanup
|
|
||||||
break;
|
|
||||||
}
|
|
||||||
} catch (Exception $e) {
|
|
||||||
print("Error while handling cron for " . $first_name . " " . $last_name . " (" . $username . ")\n");
|
|
||||||
print($e->getMessage());
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
?>
|
?>
|
||||||
|
|||||||
574
database.php
574
database.php
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,80 +14,78 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("config.php");
|
require_once(__DIR__ . "/config.php");
|
||||||
if (!isset($config["databaseURI"])) {
|
if (!isset($config["databaseURI"])) {
|
||||||
throw new Exception ("malformed configuration: databaseURI not defined");
|
throw new Exception("malformed configuration: databaseURI not defined");
|
||||||
}
|
}
|
||||||
|
|
||||||
abstract class RegisterState
|
abstract class RegisterState {
|
||||||
{
|
|
||||||
// Sending an E-Mail failed in the first attempt. Will retry later
|
|
||||||
const PendingEmailSend = 0;
|
|
||||||
// User got a mail. We wait for it to verfiy
|
|
||||||
const PendingEmailVerify = 1;
|
|
||||||
// Sending a message to the register room failed on first attempt
|
|
||||||
const PendingAdminSend = 5;
|
|
||||||
// No admin has verified the registration yet
|
|
||||||
const PendingAdminVerify = 6;
|
|
||||||
// Registration failed on first attempt. Will retry
|
|
||||||
const PendingRegistration = 7;
|
|
||||||
|
|
||||||
// in this case we have to reset the password of the user (or should we store it for this case?)
|
// Sending an E-Mail failed in the first attempt. Will retry later
|
||||||
const PendingSendRegistrationMail = 8;
|
const PendingEmailSend = 0;
|
||||||
|
// User got a mail. We wait for it to verfiy
|
||||||
|
const PendingEmailVerify = 1;
|
||||||
|
// Sending a message to the register room failed on first attempt
|
||||||
|
const PendingAdminSend = 5;
|
||||||
|
// No admin has verified the registration yet
|
||||||
|
const PendingAdminVerify = 6;
|
||||||
|
// Registration failed on first attempt. Will retry
|
||||||
|
const PendingRegistration = 7;
|
||||||
|
// in this case we have to reset the password of the user (or should we store it for this case?)
|
||||||
|
const PendingSendRegistrationMail = 8;
|
||||||
|
// State to allow persisting in the database although an admin declined it.
|
||||||
|
// Will be removed regularly
|
||||||
|
const RegistrationAccepted = 7;
|
||||||
|
const RegistrationDeclined = 13;
|
||||||
|
// User got successfully registered. Will be cleaned up later
|
||||||
|
const AllDone = 100;
|
||||||
|
|
||||||
// State to allow persisting in the database although an admin declined it.
|
|
||||||
// Will be removed regularly
|
|
||||||
const RegistrationAccepted = 7;
|
|
||||||
const RegistrationDeclined = 13;
|
|
||||||
|
|
||||||
// User got successfully registered. Will be cleaned up later
|
|
||||||
const AllDone = 100;
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class mxDatabase
|
class mxDatabase {
|
||||||
{
|
|
||||||
private $db = NULL;
|
|
||||||
|
|
||||||
/**
|
private $db = NULL;
|
||||||
* Creates mxDatabase object
|
|
||||||
* @param config object which has following members:
|
/**
|
||||||
* databaseURI: path to the sqlite file where the credentials should be stored
|
* Creates mxDatabase object
|
||||||
* or a param which can be used to connect to a database with PDO
|
* @param config object which has following members:
|
||||||
* databaseUser and databasePass when authentication is required
|
* databaseURI: path to the sqlite file where the credentials should be stored
|
||||||
* register_email which email does the register bot have (here used for providing lookup)
|
* or a param which can be used to connect to a database with PDO
|
||||||
*/
|
* databaseUser and databasePass when authentication is required
|
||||||
function __construct($config) {
|
* register_email which email does the register bot have (here used for providing lookup)
|
||||||
if (empty($config)) {
|
*/
|
||||||
throw new Exception("config is empty");
|
function __construct($config) {
|
||||||
}
|
if (empty($config)) {
|
||||||
if (!isset($config["databaseURI"])) {
|
throw new Exception("config is empty");
|
||||||
throw new Exception("'databaseURI' not defined");
|
}
|
||||||
}
|
if (!isset($config["databaseURI"])) {
|
||||||
$db_input = $config["databaseURI"];
|
throw new Exception("'databaseURI' not defined");
|
||||||
$user = '';
|
}
|
||||||
$password = '';
|
$db_input = $config["databaseURI"];
|
||||||
if (isset($config["databaseUser"]) && isset($config["databasePass"])) {
|
$user = '';
|
||||||
// only use it when both are defined
|
$password = '';
|
||||||
$user = $config["databaseUser"];
|
if (isset($config["databaseUser"]) && isset($config["databasePass"])) {
|
||||||
$password = $config["databasePass"];
|
// only use it when both are defined
|
||||||
}
|
$user = $config["databaseUser"];
|
||||||
// create database file when not existent yet
|
$password = $config["databasePass"];
|
||||||
$this->db = new PDO($db_input, $user, $password);
|
}
|
||||||
$this->db->setAttribute(PDO::ATTR_ERRMODE, PDO::ERRMODE_EXCEPTION);
|
// create database file when not existent yet
|
||||||
$this->db->exec("CREATE TABLE IF NOT EXISTS registrations(
|
$this->db = new PDO($db_input, $user, $password);
|
||||||
|
$this->db->setAttribute(PDO::ATTR_ERRMODE, PDO::ERRMODE_EXCEPTION);
|
||||||
|
$this->db->exec("CREATE TABLE IF NOT EXISTS registrations(
|
||||||
id SERIAL PRIMARY KEY,
|
id SERIAL PRIMARY KEY,
|
||||||
state INT DEFAULT 0,
|
state INT DEFAULT 0,
|
||||||
first_name TEXT,
|
first_name TEXT,
|
||||||
last_name TEXT,
|
last_name TEXT,
|
||||||
username TEXT,
|
username TEXT,
|
||||||
password_hash TEXT DEFAULT '',
|
password TEXT DEFAULT '',
|
||||||
note TEXT,
|
note TEXT,
|
||||||
email TEXT,
|
email TEXT,
|
||||||
verify_token TEXT,
|
verify_token TEXT,
|
||||||
admin_token TEXT,
|
admin_token TEXT,
|
||||||
request_date TIMESTAMP DEFAULT CURRENT_TIMESTAMP
|
request_date TIMESTAMP DEFAULT CURRENT_TIMESTAMP
|
||||||
)");
|
)");
|
||||||
$this->db->exec("CREATE TABLE IF NOT EXISTS logins (
|
$this->db->exec("CREATE TABLE IF NOT EXISTS logins (
|
||||||
id SERIAL PRIMARY KEY,
|
id SERIAL PRIMARY KEY,
|
||||||
active INT DEFAULT 1,
|
active INT DEFAULT 1,
|
||||||
first_name TEXT,
|
first_name TEXT,
|
||||||
@@ -97,271 +96,276 @@ class mxDatabase
|
|||||||
create_date TIMESTAMP DEFAULT CURRENT_TIMESTAMP,
|
create_date TIMESTAMP DEFAULT CURRENT_TIMESTAMP,
|
||||||
last_modified TIMESTAMP DEFAULT CURRENT_TIMESTAMP
|
last_modified TIMESTAMP DEFAULT CURRENT_TIMESTAMP
|
||||||
)");
|
)");
|
||||||
// make sure the bot is allowed to login
|
// make sure the bot is allowed to login
|
||||||
if (!$this->userRegistered("register_bot")) {
|
if (!$this->userRegistered("register_bot")) {
|
||||||
$password = $this->addUser("Register", "Bot", "register_bot", $config["register_email"]);
|
$password = $this->addUser("Register", "Bot", "register_bot", NULL, $config["register_email"]);
|
||||||
$config["register_password"] = $password;
|
$config["register_password"] = $password;
|
||||||
$myfile = fopen(dirname(__FILE__) . "/config.json", "w");
|
$myfile = fopen(dirname(__FILE__) . "/config.json", "w");
|
||||||
fwrite($myfile, json_encode($config, JSON_PRETTY_PRINT));
|
fwrite($myfile, json_encode($config, JSON_PRETTY_PRINT));
|
||||||
fclose($myfile);
|
fclose($myfile);
|
||||||
}
|
}
|
||||||
|
|
||||||
// set writeable when not set already
|
// set writeable when not set already
|
||||||
if (strpos($db_input, "sqlite") === 0) {
|
if (strpos($db_input, "sqlite") === 0) {
|
||||||
$sqlite_file = substr($db_input, strlen("sqlite:"));
|
$sqlite_file = substr($db_input, strlen("sqlite:"));
|
||||||
if (!is_writable($sqlite_file)) {
|
if (!is_writable($sqlite_file)) {
|
||||||
chmod($sqlite_file, 0660);
|
chmod($sqlite_file, 0660);
|
||||||
}
|
}
|
||||||
unset($sqlite_file);
|
unset($sqlite_file);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* WARNING: This allows accessing the database directly.
|
* WARNING: This allows accessing the database directly.
|
||||||
* This was only be added for convenience. You are advised to not use this function extensively
|
* This was only be added for convenience. You are advised to not use this function extensively
|
||||||
*
|
*
|
||||||
* @param sql String wich will be passed directly to the database
|
* @param sql String wich will be passed directly to the database
|
||||||
* @return Response of PDO::query()
|
* @return Response of PDO::query()
|
||||||
*/
|
*/
|
||||||
function query($sql) {
|
function query($sql) {
|
||||||
return $this->db->query($sql);
|
return $this->db->query($sql);
|
||||||
}
|
}
|
||||||
|
|
||||||
function setRegistrationStateVerify($state, $token) {
|
function setRegistrationStateVerify($state, $token) {
|
||||||
$sql = "UPDATE registrations SET state = " . $state
|
$sql = "UPDATE registrations SET state = " . $state
|
||||||
. " WHERE verify_token = '" . $token . "';";
|
. " WHERE verify_token = '" . $token . "';";
|
||||||
|
|
||||||
return $this->db->exec($sql);
|
return $this->db->exec($sql);
|
||||||
}
|
}
|
||||||
|
|
||||||
function setRegistrationStateById($state, $id) {
|
function setRegistrationStateById($state, $id) {
|
||||||
$sql = "UPDATE registrations SET state = " . $state
|
$sql = "UPDATE registrations SET state = " . $state
|
||||||
. " WHERE id = '" . $id . "';";
|
. " WHERE id = '" . $id . "';";
|
||||||
|
|
||||||
return $this->db->exec($sql);
|
return $this->db->exec($sql);
|
||||||
}
|
}
|
||||||
|
|
||||||
function setRegistrationStateAdmin($state, $token) {
|
function setRegistrationStateAdmin($state, $token) {
|
||||||
$sql = "UPDATE registrations SET state = " . $state
|
$sql = "UPDATE registrations SET state = " . $state
|
||||||
. " WHERE admin_token = '" . $token . "';";
|
. " WHERE admin_token = '" . $token . "';";
|
||||||
|
|
||||||
return $this->db->exec($sql);
|
return $this->db->exec($sql);
|
||||||
}
|
}
|
||||||
|
|
||||||
function setRegistrationState($state, $token) {
|
function setRegistrationState($state, $token) {
|
||||||
$sql = "UPDATE registrations SET state = " . $state
|
$sql = "UPDATE registrations SET state = " . $state
|
||||||
. " WHERE verify_token = '" . $token . "' OR admin_token = '" . $token . "';";
|
. " WHERE verify_token = '" . $token . "' OR admin_token = '" . $token . "';";
|
||||||
|
|
||||||
return $this->db->exec($sql);
|
return $this->db->exec($sql);
|
||||||
}
|
}
|
||||||
|
|
||||||
function userPendingRegistrations($username) {
|
function userPendingRegistrations($username) {
|
||||||
$sql = "SELECT COUNT(*) FROM registrations WHERE username = '" . $username . "' AND NOT state = "
|
$sql = "SELECT COUNT(*) FROM registrations WHERE username = '" . $username . "' AND NOT state = "
|
||||||
. RegisterState::RegistrationDeclined . " LIMIT 1;";
|
. RegisterState::RegistrationDeclined . " LIMIT 1;";
|
||||||
$res = $this->db->query($sql);
|
$res = $this->db->query($sql);
|
||||||
if ($res->fetchColumn() > 0) {
|
if ($res->fetchColumn() > 0) {
|
||||||
return true;
|
return true;
|
||||||
}
|
}
|
||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
function userRegistered($username) {
|
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
|
||||||
$res = $this->db->query($sql);
|
|
||||||
if ($res->fetchColumn() > 0) {
|
|
||||||
return true;
|
|
||||||
}
|
|
||||||
return false;
|
|
||||||
}
|
|
||||||
|
|
||||||
/**
|
function userRegistered($username) {
|
||||||
* Adds user to the database. Next steps should be sending a verify-mail to the user
|
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
||||||
* @param first_name First name of the user
|
$res = $this->db->query($sql);
|
||||||
* @param last_name Sirname of the user
|
if ($res->fetchColumn() > 0) {
|
||||||
* @param username the future localpart of that user
|
return true;
|
||||||
* @param note Note the user typed in to give a hint
|
}
|
||||||
* @param email E-Mail-Adress which will be stored into the database.
|
return false;
|
||||||
* This will be send to the server on first login
|
}
|
||||||
*
|
|
||||||
* @return ["verify_token"]
|
|
||||||
*/
|
|
||||||
function addRegistration($first_name, $last_name, $username, $note, $email) {
|
|
||||||
if ($this->userPendingRegistrations($username)) {
|
|
||||||
throw new Exception("USERNAME_PENDING_REGISTRATION");
|
|
||||||
}
|
|
||||||
if ($this->userRegistered($username)) {
|
|
||||||
throw new Exception("USERNAME_REGISTERED");
|
|
||||||
}
|
|
||||||
|
|
||||||
$verify_token = bin2hex(random_bytes(16));
|
/**
|
||||||
$admin_token = bin2hex(random_bytes(16));
|
* Adds user to the database. Next steps should be sending a verify-mail to the user
|
||||||
|
* @param first_name First name of the user
|
||||||
|
* @param last_name Sirname of the user
|
||||||
|
* @param username the future localpart of that user
|
||||||
|
* @param note Note the user typed in to give a hint
|
||||||
|
* @param email E-Mail-Adress which will be stored into the database.
|
||||||
|
* This will be send to the server on first login
|
||||||
|
*
|
||||||
|
* @return ["verify_token"]
|
||||||
|
*/
|
||||||
|
function addRegistration($first_name, $last_name, $username, $password, $note, $email) {
|
||||||
|
if ($this->userPendingRegistrations($username)) {
|
||||||
|
throw new Exception("USERNAME_PENDING_REGISTRATION");
|
||||||
|
}
|
||||||
|
if ($this->userRegistered($username)) {
|
||||||
|
throw new Exception("USERNAME_REGISTERED");
|
||||||
|
}
|
||||||
|
|
||||||
$this->db->exec("INSERT INTO registrations
|
$verify_token = bin2hex(random_bytes(16));
|
||||||
(first_name, last_name, username, note, email, verify_token, admin_token)
|
$admin_token = bin2hex(random_bytes(16));
|
||||||
VALUES ('" . $first_name."','" . $last_name . "','" . $username . "','" . $note . "','"
|
|
||||||
. $email."','" .$verify_token."','" .$admin_token."')");
|
|
||||||
|
|
||||||
return [
|
$this->db->exec("INSERT INTO registrations
|
||||||
"verify_token"=> $verify_token,
|
(first_name, last_name, username, password, note, email, verify_token, admin_token)
|
||||||
];
|
VALUES ('" . $first_name . "','" . $last_name . "','"
|
||||||
}
|
. $username . "','" . $password . "','" . $note . "','"
|
||||||
|
. $email . "','" . $verify_token . "','" . $admin_token . "')");
|
||||||
|
|
||||||
/**
|
return [
|
||||||
* Gets the user for the verify_admin page.
|
"verify_token" => $verify_token,
|
||||||
*
|
];
|
||||||
* @return ArrayOfUser|NULL Array with "first_name, last_name, username, note and email"
|
}
|
||||||
* as members
|
|
||||||
*/
|
|
||||||
function getUserForApproval($admin_token) {
|
|
||||||
$sql = "SELECT COUNT(*) FROM registrations WHERE admin_token = '" . $admin_token . "'"
|
|
||||||
. " AND state = " . RegisterState::PendingAdminVerify . " LIMIT 1;";
|
|
||||||
$res = $this->db->query($sql);
|
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
/**
|
||||||
$sql = "SELECT first_name, last_name, username, note, email FROM registrations"
|
* Gets the user for the verify_admin page.
|
||||||
. " WHERE admin_token = '" . $admin_token . "'"
|
*
|
||||||
. " AND state = " . RegisterState::PendingAdminVerify
|
* @return ArrayOfUser|NULL Array with "first_name, last_name, username, note and email"
|
||||||
. " LIMIT 1;";
|
* as members
|
||||||
foreach ($this->db->query($sql) as $row) {
|
*/
|
||||||
// will only be executed once
|
function getUserForApproval($admin_token) {
|
||||||
return $row;
|
$sql = "SELECT COUNT(*) FROM registrations WHERE admin_token = '" . $admin_token . "'"
|
||||||
}
|
. " AND state = " . RegisterState::PendingAdminVerify . " LIMIT 1;";
|
||||||
}
|
$res = $this->db->query($sql);
|
||||||
return NULL;
|
|
||||||
}
|
|
||||||
|
|
||||||
/**
|
if ($res->fetchColumn() > 0) {
|
||||||
* Gets the user when it opens the page to verify its mail
|
$sql = "SELECT first_name, last_name, username, password, note, email FROM registrations"
|
||||||
*
|
. " WHERE admin_token = '" . $admin_token . "'"
|
||||||
* @return ArrayOfUser|NULL Array with "first_name, last_name, note, email and admin_token"
|
. " AND state = " . RegisterState::PendingAdminVerify
|
||||||
* as members
|
. " LIMIT 1;";
|
||||||
*/
|
foreach ($this->db->query($sql) as $row) {
|
||||||
function getUserForVerify($verify_token) {
|
// will only be executed once
|
||||||
$sql = "SELECT COUNT(*) FROM registrations WHERE verify_token = '" . $verify_token . "'"
|
return $row;
|
||||||
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
}
|
||||||
$res = $this->db->query($sql);
|
}
|
||||||
|
return NULL;
|
||||||
|
}
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
/**
|
||||||
$sql = "SELECT first_name, last_name, note, email, admin_token FROM registrations "
|
* Gets the user when it opens the page to verify its mail
|
||||||
. " WHERE verify_token = '" . $verify_token . "'"
|
*
|
||||||
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
* @return ArrayOfUser|NULL Array with "first_name, last_name, note, email and admin_token"
|
||||||
foreach ($this->db->query($sql) as $row) {
|
* as members
|
||||||
// will only be executed once
|
*/
|
||||||
return $row;
|
function getUserForVerify($verify_token) {
|
||||||
}
|
$sql = "SELECT COUNT(*) FROM registrations WHERE verify_token = '" . $verify_token . "'"
|
||||||
}
|
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
||||||
return NULL;
|
$res = $this->db->query($sql);
|
||||||
}
|
|
||||||
|
|
||||||
function getUserForLogin($localpart, $password) {
|
if ($res->fetchColumn() > 0) {
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $localpart
|
$sql = "SELECT first_name, last_name, note, email, username, admin_token FROM registrations "
|
||||||
. "' AND active = 1 LIMIT 1;";
|
. " WHERE verify_token = '" . $verify_token . "'"
|
||||||
$res = $this->db->query($sql);
|
. " AND state = " . RegisterState::PendingEmailVerify . " LIMIT 1;";
|
||||||
|
foreach ($this->db->query($sql) as $row) {
|
||||||
|
// will only be executed once
|
||||||
|
return $row;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return NULL;
|
||||||
|
}
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
function getUserForLogin($localpart, $password) {
|
||||||
$sql = "SELECT first_name, last_name, email, password_hash FROM logins "
|
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $localpart
|
||||||
. " WHERE localpart = '" . $localpart . "' AND active = 1 LIMIT 1;";
|
. "' AND active = 1 LIMIT 1;";
|
||||||
foreach ($this->db->query($sql) as $row) {
|
$res = $this->db->query($sql);
|
||||||
if (password_verify($password, $row["password_hash"])) {
|
|
||||||
return $row;
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
return NULL;
|
|
||||||
}
|
|
||||||
|
|
||||||
/**
|
if ($res->fetchColumn() > 0) {
|
||||||
* adds User to be able to login afterwards.
|
$sql = "SELECT first_name, last_name, email, password_hash FROM logins "
|
||||||
* @param first_name First name of the user
|
. " WHERE localpart = '" . $localpart . "' AND active = 1 LIMIT 1;";
|
||||||
* @param last_name Sirname of the user
|
foreach ($this->db->query($sql) as $row) {
|
||||||
* @param username the future localpart of that user
|
if (password_verify($password, $row["password_hash"])) {
|
||||||
* @param email E-Mail-Adress which will be stored into the database.
|
return $row;
|
||||||
* This will be send to the server on first login
|
}
|
||||||
*
|
}
|
||||||
* @return password|NULL with member password as this method generates a
|
}
|
||||||
* password and saves that into the database
|
return NULL;
|
||||||
* NULL when failed
|
}
|
||||||
*
|
|
||||||
*/
|
|
||||||
function addUser($first_name, $last_name, $username, $email) {
|
|
||||||
// check if user already exists and abort in that case
|
|
||||||
if ($this->userRegistered($username)) {
|
|
||||||
return NULL;
|
|
||||||
}
|
|
||||||
|
|
||||||
// generate a password with 10 characters
|
/**
|
||||||
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
* adds User to be able to login afterwards.
|
||||||
$password_hash = password_hash($password, PASSWORD_BCRYPT, ["cost"=>12]);
|
* @param first_name First name of the user
|
||||||
|
* @param last_name Sirname of the user
|
||||||
|
* @param username the future localpart of that user
|
||||||
|
* @param email E-Mail-Adress which will be stored into the database.
|
||||||
|
* This will be send to the server on first login
|
||||||
|
*
|
||||||
|
* @return password|NULL with member password as this method generates a
|
||||||
|
* password and saves that into the database
|
||||||
|
* NULL when failed
|
||||||
|
*
|
||||||
|
*/
|
||||||
|
function addUser($first_name, $last_name, $username, $password, $email) {
|
||||||
|
// check if user already exists and abort in that case
|
||||||
|
if ($this->userRegistered($username)) {
|
||||||
|
return NULL;
|
||||||
|
}
|
||||||
|
|
||||||
$sql = "INSERT INTO logins (first_name, last_name, localpart, password_hash, email) VALUES "
|
if ($password == NULL) {
|
||||||
. "('" . $first_name."','" . $last_name . "','" . $username . "','"
|
// generate a password with 10 characters
|
||||||
. $password_hash . "','" . $email . "');";
|
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
||||||
|
}
|
||||||
|
$password_hash = password_hash($password, PASSWORD_BCRYPT, ["cost" => 12]);
|
||||||
|
|
||||||
if ($this->db->exec($sql)) {
|
$sql = "INSERT INTO logins (first_name, last_name, localpart, password_hash, email) VALUES "
|
||||||
return $password;
|
. "('" . $first_name . "','" . $last_name . "','" . $username . "','"
|
||||||
}
|
. $password_hash . "','" . $email . "');";
|
||||||
return NULL;
|
|
||||||
}
|
|
||||||
|
|
||||||
function updatePassword($localpart, $old_password, $new_password) {
|
if ($this->db->exec($sql)) {
|
||||||
$user = $this->getUserForLogin($localpart, $old_password);
|
return $password;
|
||||||
if ($user == NULL) {
|
}
|
||||||
throw new Exception ("user with that credentials not found");
|
return NULL;
|
||||||
}
|
}
|
||||||
|
|
||||||
// The credentials were fine. So now set the new password
|
function updatePassword($localpart, $old_password, $new_password) {
|
||||||
$password_hash = password_hash($new_password, PASSWORD_BCRYPT, ["cost"=>12]);
|
$user = $this->getUserForLogin($localpart, $old_password);
|
||||||
|
if ($user == NULL) {
|
||||||
|
throw new Exception("user with that credentials not found");
|
||||||
|
}
|
||||||
|
|
||||||
$sql = "UPDATE logins SET password_hash = '" . $password_hash . "'"
|
// The credentials were fine. So now set the new password
|
||||||
. "WHERE localpart = '" . $localpart . "'";
|
$password_hash = password_hash($new_password, PASSWORD_BCRYPT, ["cost" => 12]);
|
||||||
|
|
||||||
if ($this->db->exec($sql)) {
|
$sql = "UPDATE logins SET password_hash = '" . $password_hash . "'"
|
||||||
return true;
|
. "WHERE localpart = '" . $localpart . "'";
|
||||||
}
|
|
||||||
return false;
|
|
||||||
}
|
|
||||||
|
|
||||||
function searchUserByName($search_term) {
|
if ($this->db->exec($sql)) {
|
||||||
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
return true;
|
||||||
$result = array();
|
}
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE"
|
return false;
|
||||||
. " localpart LIKE '" . $term . "%' AND active = 1;";
|
}
|
||||||
$res = $this->db->query($sql);
|
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
function searchUserByName($search_term) {
|
||||||
$sql = "SELECT first_name, last_name, localpart FROM logins WHERE"
|
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
||||||
. " localpart LIKE '" . $term . "%' AND active = 1;";
|
$result = array();
|
||||||
foreach ($this->db->query($sql) as $row) {
|
$sql = "SELECT COUNT(*) FROM logins WHERE"
|
||||||
array_push($result, [
|
. " localpart LIKE '" . $term . "%' AND active = 1;";
|
||||||
"display_name" => $row["first_name"] . " " . $row["last_name"],
|
$res = $this->db->query($sql);
|
||||||
"user_id" => $row["localpart"],
|
|
||||||
]);
|
|
||||||
}
|
|
||||||
}
|
|
||||||
return $result;
|
|
||||||
}
|
|
||||||
|
|
||||||
function searchUserByEmail($search_term) {
|
if ($res->fetchColumn() > 0) {
|
||||||
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
$sql = "SELECT first_name, last_name, localpart FROM logins WHERE"
|
||||||
$result = array();
|
. " localpart LIKE '" . $term . "%' AND active = 1;";
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE"
|
foreach ($this->db->query($sql) as $row) {
|
||||||
. " email = '" . $term . "' AND active = 1;";
|
array_push($result, [
|
||||||
$res = $this->db->query($sql);
|
"display_name" => $row["first_name"] . " " . $row["last_name"],
|
||||||
|
"user_id" => $row["localpart"],
|
||||||
|
]);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return $result;
|
||||||
|
}
|
||||||
|
|
||||||
|
function searchUserByEmail($search_term) {
|
||||||
|
$term = filter_var($search_term, FILTER_SANITIZE_STRING);
|
||||||
|
$result = array();
|
||||||
|
$sql = "SELECT COUNT(*) FROM logins WHERE"
|
||||||
|
. " email = '" . $term . "' AND active = 1;";
|
||||||
|
$res = $this->db->query($sql);
|
||||||
|
|
||||||
|
if ($res->fetchColumn() > 0) {
|
||||||
|
$sql = "SELECT first_name, last_name, localpart FROM logins WHERE"
|
||||||
|
. " email = '" . $term . "' AND active = 1;";
|
||||||
|
foreach ($this->db->query($sql) as $row) {
|
||||||
|
array_push($result, [
|
||||||
|
"display_name" => $row["first_name"] . " " . $row["last_name"],
|
||||||
|
"user_id" => $row["localpart"],
|
||||||
|
]);
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return $result;
|
||||||
|
}
|
||||||
|
|
||||||
if ($res->fetchColumn() > 0) {
|
|
||||||
$sql = "SELECT first_name, last_name, localpart FROM logins WHERE"
|
|
||||||
. " email = '" . $term . "' AND active = 1;";
|
|
||||||
foreach ($this->db->query($sql) as $row) {
|
|
||||||
array_push($result, [
|
|
||||||
"display_name" => $row["first_name"] . " " . $row["last_name"],
|
|
||||||
"user_id" => $row["localpart"],
|
|
||||||
]);
|
|
||||||
}
|
|
||||||
}
|
|
||||||
return $result;
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
if (!isset($mx_db)) {
|
if (!isset($mx_db)) {
|
||||||
$mx_db = new mxDatabase($config);
|
$mx_db = new mxDatabase($config);
|
||||||
}
|
}
|
||||||
?>
|
?>
|
||||||
|
|||||||
50
helpers.php
50
helpers.php
@@ -1,18 +1,42 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Copyright 2018 Matthias Kesler
|
||||||
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
* you may not use this file except in compliance with the License.
|
||||||
|
* You may obtain a copy of the License at
|
||||||
|
*
|
||||||
|
* http://www.apache.org/licenses/LICENSE-2.0
|
||||||
|
*
|
||||||
|
* Unless required by applicable law or agreed to in writing, software
|
||||||
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
||||||
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
||||||
|
* See the License for the specific language governing permissions and
|
||||||
|
* limitations under the License.
|
||||||
|
*/
|
||||||
function stripLocalpart($mxid) {
|
function stripLocalpart($mxid) {
|
||||||
$localpart = NULL;
|
$localpart = NULL;
|
||||||
if (!empty($mxid)) {
|
if (!empty($mxid)) {
|
||||||
// A mxid would start with an @ so we start at the 2. position
|
// A mxid would start with an @ so we start at the 2. position
|
||||||
$sepPos = strpos($mxid,':', 1);
|
$sepPos = strpos($mxid, ':', 1);
|
||||||
if ($sepPos === false) {
|
if ($sepPos === false) {
|
||||||
// : not found. Assume mxid is localpart
|
// : not found. Assume mxid is localpart
|
||||||
// TODO: further checks
|
// TODO: further checks
|
||||||
$localpart = $mxid;
|
$localpart = $mxid;
|
||||||
} else {
|
} else {
|
||||||
$localpart = substr($mxid, 1, strpos($mxid,':') - 1 );
|
$localpart = substr($mxid, 1, strpos($mxid, ':') - 1);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
return $localpart;
|
return $localpart;
|
||||||
|
}
|
||||||
|
|
||||||
|
function getCurlHandle($url) {
|
||||||
|
$handle = curl_init($url);
|
||||||
|
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
||||||
|
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
||||||
|
curl_setopt($handle, CURLOPT_TIMEOUT, 60);
|
||||||
|
curl_setopt($handle, CURLOPT_HTTPHEADER, array("Content-Type: application/json"));
|
||||||
|
return $handle;
|
||||||
}
|
}
|
||||||
|
|
||||||
?>
|
?>
|
||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,8 +14,8 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
$response=[
|
$response = [
|
||||||
"limited" => false,
|
"limited" => false,
|
||||||
"result" => [],
|
"result" => [],
|
||||||
];
|
];
|
||||||
@@ -23,7 +24,7 @@ try {
|
|||||||
$inputJSON = file_get_contents('php://input');
|
$inputJSON = file_get_contents('php://input');
|
||||||
$input = json_decode($inputJSON, TRUE);
|
$input = json_decode($inputJSON, TRUE);
|
||||||
if (empty($input)) {
|
if (empty($input)) {
|
||||||
throw new Exception('no valid json as input present');
|
throw new Exception('no valid json as input present');
|
||||||
}
|
}
|
||||||
if (!isset($input["by"])) {
|
if (!isset($input["by"])) {
|
||||||
throw new Exception('"by" is not defined');
|
throw new Exception('"by" is not defined');
|
||||||
@@ -41,10 +42,9 @@ try {
|
|||||||
default:
|
default:
|
||||||
throw new Exception('unknown type for "by" param');
|
throw new Exception('unknown type for "by" param');
|
||||||
}
|
}
|
||||||
|
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
error_log("failed with error: " . $e->getMessage());
|
error_log("failed with error: " . $e->getMessage());
|
||||||
$response["error"] = $e->getMessage();
|
$response["error"] = $e->getMessage();
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
print (json_encode($response, JSON_PRETTY_PRINT));
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,7 +14,7 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
$response = [
|
$response = [
|
||||||
"lookup" => []
|
"lookup" => []
|
||||||
];
|
];
|
||||||
@@ -21,7 +22,7 @@ try {
|
|||||||
$inputJSON = file_get_contents('php://input');
|
$inputJSON = file_get_contents('php://input');
|
||||||
$input = json_decode($inputJSON, TRUE);
|
$input = json_decode($inputJSON, TRUE);
|
||||||
if (!isset($input)) {
|
if (!isset($input)) {
|
||||||
throw new Exception('request body is no valid json');
|
throw new Exception('request body is no valid json');
|
||||||
}
|
}
|
||||||
|
|
||||||
if (!isset($input["lookup"])) {
|
if (!isset($input["lookup"])) {
|
||||||
@@ -43,16 +44,16 @@ try {
|
|||||||
$res2 = $mx_db->searchUserByEmail($lookup["address"]);
|
$res2 = $mx_db->searchUserByEmail($lookup["address"]);
|
||||||
if (!empty($res2)) {
|
if (!empty($res2)) {
|
||||||
array_push($response["lookup"], [
|
array_push($response["lookup"], [
|
||||||
"medium" => $lookup["medium"],
|
"medium" => $lookup["medium"],
|
||||||
"address" => $lookup["address"],
|
"address" => $lookup["address"],
|
||||||
"id" => [
|
"id" => [
|
||||||
"type" => "localpart",
|
"type" => "localpart",
|
||||||
"value" => $res2[0]["user_id"],
|
"value" => $res2[0]["user_id"],
|
||||||
]
|
|
||||||
]
|
]
|
||||||
|
]
|
||||||
);
|
);
|
||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case "msisdn":
|
case "msisdn":
|
||||||
// This is reserved for number lookups
|
// This is reserved for number lookups
|
||||||
throw new Exception("unimplemented lookup medium");
|
throw new Exception("unimplemented lookup medium");
|
||||||
@@ -65,5 +66,5 @@ try {
|
|||||||
error_log("ídentity_bulk failed with error: " . $e->getMessage());
|
error_log("ídentity_bulk failed with error: " . $e->getMessage());
|
||||||
$response["error"] = $e->getMessage();
|
$response["error"] = $e->getMessage();
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
print (json_encode($response, JSON_PRETTY_PRINT));
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,13 +14,13 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
$response = new stdClass;
|
$response = new stdClass;
|
||||||
try {
|
try {
|
||||||
$inputJSON = file_get_contents('php://input');
|
$inputJSON = file_get_contents('php://input');
|
||||||
$input = json_decode($inputJSON, TRUE);
|
$input = json_decode($inputJSON, TRUE);
|
||||||
if (empty($input)) {
|
if (empty($input)) {
|
||||||
throw new Exception('no valid json as input present');
|
throw new Exception('no valid json as input present');
|
||||||
}
|
}
|
||||||
if (!isset($input["lookup"])) {
|
if (!isset($input["lookup"])) {
|
||||||
throw new Exception('"lookup" is not defined');
|
throw new Exception('"lookup" is not defined');
|
||||||
@@ -60,5 +61,5 @@ try {
|
|||||||
"error" => $e->getMessage()
|
"error" => $e->getMessage()
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
print (json_encode($response, JSON_PRETTY_PRINT));
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -20,52 +20,50 @@ header('Access-Control-Allow-Origin: *');
|
|||||||
header('Access-Control-Allow-Methods: POST, OPTIONS');
|
header('Access-Control-Allow-Methods: POST, OPTIONS');
|
||||||
header('Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept, Authorization');
|
header('Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept, Authorization');
|
||||||
if ($_SERVER['REQUEST_METHOD'] === 'OPTIONS') {
|
if ($_SERVER['REQUEST_METHOD'] === 'OPTIONS') {
|
||||||
print ("{}");
|
print ("{}");
|
||||||
// return with success
|
// return with success
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
$response = new stdClass;
|
$response = new stdClass;
|
||||||
try {
|
try {
|
||||||
$inputJSON = file_get_contents('php://input');
|
$inputJSON = file_get_contents('php://input');
|
||||||
$input = json_decode($inputJSON, TRUE);
|
$input = json_decode($inputJSON, TRUE);
|
||||||
if (empty($input)) {
|
if (empty($input)) {
|
||||||
throw new Exception('no valid json as input present');
|
throw new Exception('no valid json as input present');
|
||||||
}
|
}
|
||||||
if (!isset($input["auth"])) {
|
if (!isset($input["auth"])) {
|
||||||
throw new Exception('"auth" is not defined');
|
throw new Exception('"auth" is not defined');
|
||||||
}
|
}
|
||||||
if (!isset($input["auth"]["user"]) || !isset($input["auth"]["password"])) {
|
if (!isset($input["auth"]["user"]) || !isset($input["auth"]["password"])) {
|
||||||
throw new Exception('"auth.user" or "auth.password" is not defined');
|
throw new Exception('"auth.user" or "auth.password" is not defined');
|
||||||
}
|
}
|
||||||
if (!isset($input["auth"]["type"]) || $input["auth"]["type"] !== "m.login.password") {
|
if (!isset($input["auth"]["type"]) || $input["auth"]["type"] !== "m.login.password") {
|
||||||
throw new Exception('no or unknown auth.type');
|
throw new Exception('no or unknown auth.type');
|
||||||
}
|
}
|
||||||
if (!isset($input["new_password"])) {
|
if (!isset($input["new_password"])) {
|
||||||
throw new Exception('"new_password" is not defined');
|
throw new Exception('"new_password" is not defined');
|
||||||
}
|
}
|
||||||
|
|
||||||
require_once("../helpers.php");
|
require_once(__DIR__ . "/../helpers.php");
|
||||||
$localpart = stripLocalpart($input["auth"]["user"]);
|
$localpart = stripLocalpart($input["auth"]["user"]);
|
||||||
|
|
||||||
if (empty($localpart)) {
|
if (empty($localpart)) {
|
||||||
throw new Exception("localpart cannot be identified");
|
throw new Exception("localpart cannot be identified");
|
||||||
}
|
}
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
if (!$mx_db->updatePassword(
|
if (!$mx_db->updatePassword(
|
||||||
$localpart,
|
$localpart, $input["auth"]["password"], $input["new_password"]
|
||||||
$input["auth"]["password"],
|
)) {
|
||||||
$input["new_password"]
|
throw new Exception("invalid credentials or another error while updating");
|
||||||
)) {
|
}
|
||||||
throw new Exception("invalid credentials or another error while updating");
|
|
||||||
}
|
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
header("HTTP/1.0 500 Internal Error");
|
header("HTTP/1.0 500 Internal Error");
|
||||||
error_log("failed with error: " . $e->getMessage());
|
error_log("failed with error: " . $e->getMessage());
|
||||||
$response = [
|
$response = [
|
||||||
"errorcode" => "M_UNKNOWN",
|
"errorcode" => "M_UNKNOWN",
|
||||||
"error" => $e->getMessage(),
|
"error" => $e->getMessage(),
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT));
|
print (json_encode($response, JSON_PRETTY_PRINT));
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -19,12 +20,16 @@ $response = [
|
|||||||
]
|
]
|
||||||
];
|
];
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
|
|
||||||
abstract class LoginRequester {
|
abstract class LoginRequester {
|
||||||
|
|
||||||
const UNDEFINED = 0;
|
const UNDEFINED = 0;
|
||||||
const MXISD = 1;
|
const MXISD = 1;
|
||||||
const RestAuth = 2;
|
const RestAuth = 2;
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
$loginRequester = LoginRequester::UNDEFINED;
|
$loginRequester = LoginRequester::UNDEFINED;
|
||||||
|
|
||||||
try {
|
try {
|
||||||
@@ -51,12 +56,12 @@ try {
|
|||||||
// prefer the localpart attribute of mxisd. But in case of matrix-synapse-rest-auth
|
// prefer the localpart attribute of mxisd. But in case of matrix-synapse-rest-auth
|
||||||
// we have to parse it on our own
|
// we have to parse it on our own
|
||||||
if (empty($localpart)) {
|
if (empty($localpart)) {
|
||||||
require_once("../helpers.php");
|
require_once(__DIR__ . "/../helpers.php");
|
||||||
$localpart = stripLocalpart($mxid);
|
$localpart = stripLocalpart($mxid);
|
||||||
}
|
}
|
||||||
|
|
||||||
if (empty($localpart)) {
|
if (empty($localpart)) {
|
||||||
throw new Exception ("localpart cannot be identified");
|
throw new Exception("localpart cannot be identified");
|
||||||
}
|
}
|
||||||
|
|
||||||
$password = NULL;
|
$password = NULL;
|
||||||
@@ -64,7 +69,7 @@ try {
|
|||||||
$password = $input["user"]["password"];
|
$password = $input["user"]["password"];
|
||||||
}
|
}
|
||||||
if (empty($password)) {
|
if (empty($password)) {
|
||||||
throw new Exception ("password is not present");
|
throw new Exception("password is not present");
|
||||||
}
|
}
|
||||||
|
|
||||||
$user = $mx_db->getUserForLogin($localpart, $password);
|
$user = $mx_db->getUserForLogin($localpart, $password);
|
||||||
@@ -103,5 +108,5 @@ try {
|
|||||||
error_log("Auth failed with error: " . $e->getMessage());
|
error_log("Auth failed with error: " . $e->getMessage());
|
||||||
$response["auth"]["error"] = $e->getMessage();
|
$response["auth"]["error"] = $e->getMessage();
|
||||||
}
|
}
|
||||||
print (json_encode($response, JSON_PRETTY_PRINT) . "\n");
|
print (json_encode($response, JSON_PRETTY_PRINT));
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,28 +15,60 @@
|
|||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
$language = array(
|
$language = array(
|
||||||
|
"ACCEPT" => "Akzeptieren",
|
||||||
|
"DECLINE" => "Ablehnen",
|
||||||
|
"DECLINE_REASON" => "Grund für die Ablehnung",
|
||||||
|
"SUBMIT" => "Abschicken",
|
||||||
|
"MAKE_A_SELECTION" => "Treffe eine Auswahl",
|
||||||
|
"SUCCESS" => "Erfolgreich",
|
||||||
|
"FIRST_NAME" => "Vorname",
|
||||||
|
"LAST_NAME" => "Nachname",
|
||||||
|
"USERNAME" => "Nutzername (für den Login)",
|
||||||
|
"PASSWORD" => "Passwort",
|
||||||
|
"PASSWORD_CONFIRM" => "Passwort bestätigen",
|
||||||
|
"EMAIL_ADDRESS" => "E-Mail-Adresse",
|
||||||
|
"REGISTER" => "Registrieren",
|
||||||
|
"NOTE" => "Hinweis",
|
||||||
"NO_CONFIGURATION" => "Es konnte keine Konfiguration gefunden werden.",
|
"NO_CONFIGURATION" => "Es konnte keine Konfiguration gefunden werden.",
|
||||||
|
"UNKNOWN_ERROR" => "Unbekannter Fehler",
|
||||||
"UNKNOWN_SESSION" => "Sitzungstoken nicht vorhanden oder ungültig.",
|
"UNKNOWN_SESSION" => "Sitzungstoken nicht vorhanden oder ungültig.",
|
||||||
"UNKNOWN_USERNAME" => "Nutzername fehlt",
|
"UNKNOWN_USERNAME" => "Nutzername fehlt",
|
||||||
"UNKNOWN_TOKEN" => "Token ist unbekannt",
|
"UNKNOWN_TOKEN" => "Token ist unbekannt",
|
||||||
"USERNAME_LENGTH_INVALID" => "Entweder mehr als 20 oder weniger als 3 Zeichen für den Nutzernamen verwendet",
|
"AUTHENTICATION_FAILED" => "Authentifizierung fehlgeschlagen",
|
||||||
|
"WRONG_REGISTRATION_SHARED_SECRET" => "registration_shared_secret fehlerhaft",
|
||||||
|
"USERNAME_INVALID" => "Nutzername muss aus 3 bis 20 Kleinbuchstaben und Zahlen bestehen",
|
||||||
"USERNAME_NOT_ALNUM" => "Nutzername ist nicht alphanumerisch",
|
"USERNAME_NOT_ALNUM" => "Nutzername ist nicht alphanumerisch",
|
||||||
"USERNAME_PENDING_REGISTRATION" => "Dieser Nutzername wurde bereits zur Registrierung vorgemerkt. Versuche es später noch einmal oder wähle einen anderen Nutzernamen",
|
"USERNAME_PENDING_REGISTRATION" => "Dieser Nutzername wurde bereits zur Registrierung vorgemerkt. Versuche es später noch einmal oder wähle einen anderen Nutzernamen",
|
||||||
"USERNAME_REGISTERED" => "Dieser Nutzername wurde bereits registriert. Bitte wähle einen anderen Nutzernamen",
|
"USERNAME_REGISTERED" => "Dieser Nutzername wurde bereits registriert. Bitte wähle einen anderen Nutzernamen",
|
||||||
|
"PASSWORD_NOT_PROVIDED" => "Ein oder beide Passwörter wurden nicht gesetzt",
|
||||||
"PASSWORD_NOT_MATCH" => "Passwörter stimmen nicht überein",
|
"PASSWORD_NOT_MATCH" => "Passwörter stimmen nicht überein",
|
||||||
"NOTE_LENGTH_EXEEDED" => "Notiz ist länger als die erlaubten 50 Zeichen",
|
"NOTE_LENGTH_EXEEDED" => "Notiz ist länger als die erlaubten 50 Zeichen",
|
||||||
|
"PLACEHOLDER_NOTE_ABOUT_YOURSELF" => "Notiz zu dir (max. 50 Zeichen)",
|
||||||
"EMAIL_INVALID_FORMAT" => "Keine valide E-Mail-Adresse angegeben",
|
"EMAIL_INVALID_FORMAT" => "Keine valide E-Mail-Adresse angegeben",
|
||||||
"FIRSTNAME_INVALID_FORMAT" => "Vorname hat ungültiges Format",
|
"FIRSTNAME_INVALID_FORMAT" => "Vorname muss das Format <Großbuchstabe><Kleinbuchstaben> haben",
|
||||||
"SIRNAME_INVALID_FORMAT" => "Nachname hat ungültiges Format",
|
"SIRNAME_INVALID_FORMAT" => "Nachname muss das Format <Großbuchstabe><Kleinbuchstaben> haben",
|
||||||
"SEND_MAIL_FAIL" => "Senden der E-Mail fehlgeschlagen",
|
"SEND_MAIL_FAIL" => "Senden der E-Mail fehlgeschlagen",
|
||||||
"SEND_MATRIX_FAIL" => "Senden einer Nachricht an die Administratoren fehlgeschlagen",
|
"SEND_MATRIX_FAIL" => "Senden einer Nachricht an die Administratoren fehlgeschlagen",
|
||||||
|
"TASK_CHECK_YOUR_EMAIL_VERIFY" => "Bitte prüfe deine E-Mails um deine Adresse zu bestätigen",
|
||||||
"REGISTRATION_REQUEST_FAILED" => "Registrierungsanfrage ist fehlgeschlagen",
|
"REGISTRATION_REQUEST_FAILED" => "Registrierungsanfrage ist fehlgeschlagen",
|
||||||
"REGISTRATION_FAILED" => "Registrierung ist fehlgeschlagen",
|
"REGISTRATION_FAILED" => "Registrierung ist fehlgeschlagen",
|
||||||
|
"REGISTRATION_FAILED_FOR" => "Registrierung für @user ist fehlgeschlagen",
|
||||||
"VERIFICATION_SUCEEDED" => "Verifizierung erfolgreich",
|
"VERIFICATION_SUCEEDED" => "Verifizierung erfolgreich",
|
||||||
"VERIFICATION_FAILED" => "Verifizierung fehlgeschlagen",
|
"VERIFICATION_FAILED" => "Verifizierung fehlgeschlagen",
|
||||||
"VERIFICATION_SUCCESS_BODY" => "Vielen Dank. Die Administratoren wurden informiert",
|
"VERIFICATION_SUCCESS_BODY" => "Vielen Dank. Die Administratoren wurden informiert",
|
||||||
"ADMIN_VERIFY_SITE_TITLE" => "Registrierungsanfrage bearbeiten",
|
"ADMIN_VERIFY_SITE_TITLE" => "Registrierungsanfrage bearbeiten",
|
||||||
"ADMIN_REGISTER_ACCEPTED_BODY" => "Die Registrierungsanfrage wurde akzeptiert. Der Nutzer wurde per Mail informiert.",
|
"ADMIN_REGISTER_ACCEPTED_BODY" => "Die Registrierungsanfrage wurde akzeptiert. Der Nutzer wurde per Mail informiert.",
|
||||||
"ADMIN_REGISTER_DECLINED_BODY" => "Die Registrierungsanfrage wurde angelehnt. Der Nutzer wurde per Mail informiert.",
|
"ADMIN_REGISTER_DECLINED_BODY" => "Die Registrierungsanfrage wurde angelehnt. Der Nutzer wurde per Mail informiert.",
|
||||||
|
"JUMP_TO_HOMEPAGE" => "Zur Startseite",
|
||||||
|
"TOPIC_PLEASE_REGISTER" => "Bitte für @homeserver registrieren",
|
||||||
|
"TOPIC_PLEASE_REGISTER_NOTE" => "2-Schritt-Registrierung",
|
||||||
|
"NOTE_FOR_REGISTRATION" => "@homeserver ist ein geschlossenes Chat-Netzwerk in dem jeder Nutzer bestätigt werden muss.<br />
|
||||||
|
Du bekommst eine E-Mail wenn jemand deine Mitgliedschaft bestätigt hat. An diese wird auch dein initiales Passwort gesendet.
|
||||||
|
Hinterlasse also bitte einen Hinweis zu dir (den nur die Administratoren sehen werden).<br />
|
||||||
|
Liebe Grüße vom Team von @homeserver",
|
||||||
|
"MSG_USER_WANTS_REGISTER" => "@name möchte sich registrieren und hat folgende Notiz hinterlassen:
|
||||||
|
@note \r\nZum Bearbeiten hier klicken:\r\n @adminUrl",
|
||||||
|
"MSG_USER_WANTS_REGISTER_FORMATTED" => "@name möchte sich registrieren und hat folgende Notiz hinterlassen:<br />
|
||||||
|
@note <br />Zum Bearbeiten <a href=\"@adminUrl\">hier</a> klicken",
|
||||||
);
|
);
|
||||||
?>
|
?>
|
||||||
|
|||||||
74
lang/lang.en-gb.php
Normal file
74
lang/lang.en-gb.php
Normal file
@@ -0,0 +1,74 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Copyright 2018 Matthias Kesler
|
||||||
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
* you may not use this file except in compliance with the License.
|
||||||
|
* You may obtain a copy of the License at
|
||||||
|
*
|
||||||
|
* http://www.apache.org/licenses/LICENSE-2.0
|
||||||
|
*
|
||||||
|
* Unless required by applicable law or agreed to in writing, software
|
||||||
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
||||||
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
||||||
|
* See the License for the specific language governing permissions and
|
||||||
|
* limitations under the License.
|
||||||
|
*/
|
||||||
|
$language = array(
|
||||||
|
"ACCEPT" => "Accept",
|
||||||
|
"DECLINE" => "Decline",
|
||||||
|
"DECLINE_REASON" => "Reason for declining",
|
||||||
|
"SUBMIT" => "Submit",
|
||||||
|
"MAKE_A_SELECTION" => "Make a selection",
|
||||||
|
"SUCCESS" => "Success",
|
||||||
|
"FIRST_NAME" => "First name",
|
||||||
|
"LAST_NAME" => "Last name",
|
||||||
|
"USERNAME" => "username (for login)",
|
||||||
|
"PASSWORD" => "Password",
|
||||||
|
"PASSWORD_CONFIRM" => "Confirm password",
|
||||||
|
"EMAIL_ADDRESS" => "EMail Address",
|
||||||
|
"REGISTER" => "Register",
|
||||||
|
"NOTE" => "Note",
|
||||||
|
"NO_CONFIGURATION" => "No configuration found",
|
||||||
|
"UNKNOWN_ERROR" => "Unknown Error",
|
||||||
|
"UNKNOWN_SESSION" => "Session token not found of invalid.",
|
||||||
|
"UNKNOWN_USERNAME" => "username unknown",
|
||||||
|
"UNKNOWN_TOKEN" => "Token is unknown",
|
||||||
|
"AUTHENTICATION_FAILED" => "Authentication failed",
|
||||||
|
"WRONG_REGISTRATION_SHARED_SECRET" => "wrong registration_shared_secret",
|
||||||
|
"USERNAME_INVALID" => "Username has to consist of 3 to 20 small letters and numbers",
|
||||||
|
"USERNAME_NOT_ALNUM" => "Username is not alphanumeric",
|
||||||
|
"USERNAME_PENDING_REGISTRATION" => "This username is locked for registration. Try again later or try again with a different username",
|
||||||
|
"USERNAME_REGISTERED" => "This username is already registered. Please try again with another username",
|
||||||
|
"PASSWORD_NOT_PROVIDED" => "One or both passwords are not provided",
|
||||||
|
"PASSWORD_NOT_MATCH" => "passwords do not match",
|
||||||
|
"NOTE_LENGTH_EXEEDED" => "Note consists of more than 50 characters",
|
||||||
|
"PLACEHOLDER_NOTE_ABOUT_YOURSELF" => "Note about yourself (max. 50 characters)",
|
||||||
|
"EMAIL_INVALID_FORMAT" => "no valid email address",
|
||||||
|
"FIRSTNAME_INVALID_FORMAT" => "First name with invalid formatting",
|
||||||
|
"SIRNAME_INVALID_FORMAT" => "Sirname with invalid formatting",
|
||||||
|
"SEND_MAIL_FAIL" => "Email could not be sent",
|
||||||
|
"SEND_MATRIX_FAIL" => "Sending a message to the admins failed",
|
||||||
|
"TASK_CHECK_YOUR_EMAIL_VERIFY" => "Please check your emails to verify your email address",
|
||||||
|
"REGISTRATION_REQUEST_FAILED" => "Registration request failed",
|
||||||
|
"REGISTRATION_FAILED" => "Registration failed",
|
||||||
|
"REGISTRATION_FAILED_FOR" => "Registrierung für @user ist fehlgeschlagen",
|
||||||
|
"VERIFICATION_SUCEEDED" => "Verification suceeded",
|
||||||
|
"VERIFICATION_FAILED" => "Verification failed",
|
||||||
|
"VERIFICATION_SUCCESS_BODY" => "Thank you. The admins got informed",
|
||||||
|
"ADMIN_VERIFY_SITE_TITLE" => "Handle registration request",
|
||||||
|
"ADMIN_REGISTER_ACCEPTED_BODY" => "The registration request got accepted. The user got notified per email.",
|
||||||
|
"ADMIN_REGISTER_DECLINED_BODY" => "The registration request got declined. The user got notified per email.",
|
||||||
|
"JUMP_TO_HOMEPAGE" => "To homepage",
|
||||||
|
"TOPIC_PLEASE_REGISTER" => "Please register for @homeserver",
|
||||||
|
"TOPIC_PLEASE_REGISTER_NOTE" => "2-Step-Registration",
|
||||||
|
"NOTE_FOR_REGISTRATION" => "@homeserver is a closed chat network where every user has to be confirmed.<br />
|
||||||
|
You will get an email once sb. approved your registration. An initial password will be send to you afterwards.
|
||||||
|
Please leave a note about yourself (that will only be shown to the admins).<br />
|
||||||
|
Greetings from the team of @homeserver",
|
||||||
|
"MSG_USER_WANTS_REGISTER" => "@name wants to register and left the following note:
|
||||||
|
@note \r\nTo handle that request:\r\n @adminUrl",
|
||||||
|
"MSG_USER_WANTS_REGISTER_FORMATTED" => "@name wants to register and left the following note:<br />
|
||||||
|
@note <br />To handle that request click <a href=\"@adminUrl\">here</a>",
|
||||||
|
);
|
||||||
|
?>
|
||||||
118
lang/mail.de-de.php
Normal file
118
lang/mail.de-de.php
Normal file
@@ -0,0 +1,118 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Copyright 2018 Matthias Kesler
|
||||||
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
* you may not use this file except in compliance with the License.
|
||||||
|
* You may obtain a copy of the License at
|
||||||
|
*
|
||||||
|
* http://www.apache.org/licenses/LICENSE-2.0
|
||||||
|
*
|
||||||
|
* Unless required by applicable law or agreed to in writing, software
|
||||||
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
||||||
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
||||||
|
* See the License for the specific language governing permissions and
|
||||||
|
* limitations under the License.
|
||||||
|
*/
|
||||||
|
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
||||||
|
$subject = "Bitte bestätige Registrierung auf $homeserver";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Du hast anscheinend versucht dich auf $homeserver zu registrieren.
|
||||||
|
Hier gibt es eine zweistufige Registrierung.
|
||||||
|
|
||||||
|
Wir möchten dich bitten, dass du kurz bestätigst, dass du die Registrierung durchgeführt hast.
|
||||||
|
Gehe dafür auf folgenden Link:
|
||||||
|
$verify_url
|
||||||
|
|
||||||
|
Erst anschließend werden die Administratoren über deine Registrierungsanfrage informiert.
|
||||||
|
|
||||||
|
Hinweis: Du hast ca. 48 Stunden Zeit um die Bestätigung durchzuführen.
|
||||||
|
Danach ist eine Re-Registrierung mit deinem gewünschten Nutzernamen für andere wieder möglich.
|
||||||
|
|
||||||
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registrierung wartet auf Bestätigung durch Administratoren";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde verifiziert und wird nun durch die Administratoren überprüft.
|
||||||
|
|
||||||
|
Du bekommst eine weitere E-Mail, sobald deine Registrierung bestätigt oder ablehnt wurde.
|
||||||
|
|
||||||
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registrierung auf $homeserver genehmigt";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
||||||
|
|
||||||
|
Leider ist beim Registrieren ein Fehler aufgetaucht. Der Registrierungversuch wird bald wiederholt.
|
||||||
|
Wir hoffen, das Problem ist bald behoben.
|
||||||
|
Wir melden uns, wenn die Registrierung erfolgreich war.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
||||||
|
$subject = "Registrierung auf $homeserver erfolgreich";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
||||||
|
|
||||||
|
Zum Anmelden kannst du folgende Zugangsdaten verwenden:
|
||||||
|
Nutzername: $username
|
||||||
|
Passwort: " . (empty($password) ? "wie selbst gesetzt": $password) . "
|
||||||
|
|
||||||
|
Hinweis: Das Passwort kannst du aktuell über die App selbst ändern. Auch wenn das Passwort nirgends
|
||||||
|
im Klartext gespeichert wird, kann jemand Zugriff auf diese Mail erlangen und so den Zugriff bekommen.
|
||||||
|
";
|
||||||
|
/*
|
||||||
|
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
||||||
|
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
||||||
|
erhalten und so deinen Account kompromittieren.
|
||||||
|
*/
|
||||||
|
if (!empty($howToURL)) {
|
||||||
|
$body .= "
|
||||||
|
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
||||||
|
Anleitungen zu verschiedenen Clients:
|
||||||
|
$howToURL\n";
|
||||||
|
}
|
||||||
|
$body .= "
|
||||||
|
Viel Spaß bei der Verwendung von $homeserver.
|
||||||
|
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
||||||
|
$subject = "Registrierung auf $homeserver abgelehnt";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Deine Registrierungsanfrage wurde durch die Administratoren abgelehnt.\n";
|
||||||
|
|
||||||
|
if (empty($reason)) {
|
||||||
|
$body .= "\nEs wurde kein Grund angegeben\n";
|
||||||
|
} else {
|
||||||
|
$body .= "\nAls Grund wurde folgendes angegeben:\n$reason\n";
|
||||||
|
}
|
||||||
|
|
||||||
|
$body .= "
|
||||||
|
Wir hoffen, dass du dies akzeptieren kannst.
|
||||||
|
|
||||||
|
Das Administratoren-Team von " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
?>
|
||||||
112
lang/mail.en-gb.php
Normal file
112
lang/mail.en-gb.php
Normal file
@@ -0,0 +1,112 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Copyright 2018 Matthias Kesler
|
||||||
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
* you may not use this file except in compliance with the License.
|
||||||
|
* You may obtain a copy of the License at
|
||||||
|
*
|
||||||
|
* http://www.apache.org/licenses/LICENSE-2.0
|
||||||
|
*
|
||||||
|
* Unless required by applicable law or agreed to in writing, software
|
||||||
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
||||||
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
||||||
|
* See the License for the specific language governing permissions and
|
||||||
|
* limitations under the License.
|
||||||
|
*/
|
||||||
|
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
||||||
|
$subject = "Pleast approve your registration request on $homeserver";
|
||||||
|
$body = "Dear " . $user . ",
|
||||||
|
|
||||||
|
It seems that you tried to register on $homeserver.
|
||||||
|
This homeserver requires a two step registration.
|
||||||
|
|
||||||
|
For this we want you to verify that you want to register. For this please click on this link:
|
||||||
|
$verify_url
|
||||||
|
|
||||||
|
The admins will informed about your registration request once you clicked on this link.
|
||||||
|
|
||||||
|
Note: This registration request will be cleaned up in 48 hours.
|
||||||
|
Others might take your username afterwards.
|
||||||
|
|
||||||
|
Thanks for your patience.
|
||||||
|
|
||||||
|
The admin team of " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registration is pending verification from an admin";
|
||||||
|
$body = "Dear " . $user . ",
|
||||||
|
|
||||||
|
You have verified your registration request. The admins are now checking your request.
|
||||||
|
|
||||||
|
You will get an email once they approve or decline your request.
|
||||||
|
|
||||||
|
Sincerely,
|
||||||
|
|
||||||
|
The admin team of " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
||||||
|
$subject = "Registration on $homeserver got approved";
|
||||||
|
$body = "Dear " . $user . ",
|
||||||
|
|
||||||
|
Your registration request got approved by the admin team.
|
||||||
|
|
||||||
|
But there was a problem when triggering the registration request. It will be retried in a few minutes.
|
||||||
|
We hope that the issue will be fixed soon.
|
||||||
|
You will get another email with initial credentials once the registration got handled completely.
|
||||||
|
|
||||||
|
The admin team of " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
||||||
|
$subject = "Registration on $homeserver got approved";
|
||||||
|
$body = "Dear " . $user . ",
|
||||||
|
|
||||||
|
Your registration request got verified by the admin team.
|
||||||
|
|
||||||
|
To log in you can use the following credentials::
|
||||||
|
Username: $username
|
||||||
|
Passwort: " . (empty($password) ? "as self-set": $password) . "
|
||||||
|
|
||||||
|
Important: Please change your password as soon as possible after your first login.
|
||||||
|
The password is not stored in clear text on the server but people could get access to this mail
|
||||||
|
and compromise your account.
|
||||||
|
";
|
||||||
|
if (!empty($howToURL)) {
|
||||||
|
$body .= "
|
||||||
|
You can find further help here::
|
||||||
|
$howToURL\n";
|
||||||
|
}
|
||||||
|
$body .= "
|
||||||
|
Enjoy your usage of $homeserver.
|
||||||
|
You can ask further questions inside of the chat system.
|
||||||
|
|
||||||
|
The admin team of " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
||||||
|
$subject = "Registration on $homeserver declined.";
|
||||||
|
$body = "Guten Tag " . $user . ",
|
||||||
|
|
||||||
|
Your registration request got declined by the admin team.\n";
|
||||||
|
|
||||||
|
if (empty($reason)) {
|
||||||
|
$body .= "\nThey did not provide any reason for this\n";
|
||||||
|
} else {
|
||||||
|
$body .= "\nThey provide following hint for you:\n$reason\n";
|
||||||
|
}
|
||||||
|
|
||||||
|
$body .= "
|
||||||
|
We hope that you can understand this reason.
|
||||||
|
|
||||||
|
The admin team of " . $homeserver;
|
||||||
|
return send_mail($receiver, $subject, $body);
|
||||||
|
}
|
||||||
|
|
||||||
|
?>
|
||||||
16
language.php
16
language.php
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,15 +14,18 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
$lang = "de-de";
|
require_once(__DIR__ . "/config.php");
|
||||||
if(isset($_GET['lang'])){
|
$lang = $config["defaultLanguage"];
|
||||||
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
|
||||||
|
if (isset($_GET['lang'])) {
|
||||||
|
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
||||||
}
|
}
|
||||||
$lang_file = dirname(__FILE__) . "/lang/lang.".$lang.".php";
|
$lang_file = dirname(__FILE__) . "/lang/lang." . $lang . ".php";
|
||||||
if (!file_exists($lang_file)) {
|
if (!file_exists($lang_file)) {
|
||||||
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
||||||
$lang = "de-de";
|
$lang = "de-de";
|
||||||
}
|
}
|
||||||
|
$lang_file = __DIR__ . "/lang/lang." . $lang . ".php";
|
||||||
require_once($lang_file);
|
require_once($lang_file);
|
||||||
unset($lang_file);
|
unset($lang_file);
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,109 +14,65 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
|
require_once(__DIR__ . "/config.php");
|
||||||
|
|
||||||
|
use PHPMailer\PHPMailer\PHPMailer;
|
||||||
|
use PHPMailer\PHPMailer\Exception;
|
||||||
|
require_once(__DIR__ . "/vendor/autoload.php");
|
||||||
|
|
||||||
|
// standard mail implementation
|
||||||
function send_mail($receiver, $subject, $body) {
|
function send_mail($receiver, $subject, $body) {
|
||||||
include("config.php");
|
// somehow $config is not available when called again => reinit here
|
||||||
$headers = "From: " . $config["register_email"] . "\r\n"
|
include(__DIR__ . "/config.php");
|
||||||
. "Content-Type: text/plain;charset=utf-8";
|
|
||||||
return mail($receiver, $subject, $body, $headers);
|
$mail = new PHPMailer(true);
|
||||||
|
try {
|
||||||
|
$mail->CharSet = 'utf-8'; // Enable utf-8 support for umlauts
|
||||||
|
|
||||||
|
if (is_array($config["smtp"])) {
|
||||||
|
$smtp_conf = $config["smtp"];
|
||||||
|
$mail->isSMTP(); // Set mailer to use SMTP
|
||||||
|
$mail->Host = $smtp_conf["host"]; // Specify main and backup SMTP servers
|
||||||
|
$mail->Port = $smtp_conf["port"]; // TCP port to connect to
|
||||||
|
if (!empty($smtp_conf["user"])) {
|
||||||
|
$mail->SMTPAuth = true; // Enable SMTP authentication
|
||||||
|
$mail->Username = $smtp_conf["user"]; // SMTP username
|
||||||
|
if (!empty($smtp_conf["password"])) {
|
||||||
|
$mail->Password = $smtp_conf["password"]; // SMTP password
|
||||||
|
}
|
||||||
|
}
|
||||||
|
if (!empty($smtp_conf["encryption"])) {
|
||||||
|
$mail->SMTPSecure = $smtp_conf["encryption"]; // Enable TLS encryption, `ssl` also accepted
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
// fallback to sendmail functionality (as before)
|
||||||
|
$mail->isSendmail();
|
||||||
|
}
|
||||||
|
|
||||||
|
//Recipients
|
||||||
|
$mail->setFrom($config["register_email"], 'Register Service');
|
||||||
|
$mail->addAddress($receiver);
|
||||||
|
$mail->Subject = $subject;
|
||||||
|
$mail->Body = $body;
|
||||||
|
|
||||||
|
$mail->send();
|
||||||
|
return True;
|
||||||
|
} catch (Exception $e) {
|
||||||
|
error_log('Message could not be sent. Mailer Error: ' . $mail->ErrorInfo);
|
||||||
|
return False;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
function send_mail_pending_verification($homeserver, $user, $receiver, $verify_url) {
|
$lang = $config["defaultLanguage"];
|
||||||
$subject = "Bitte bestätige Registrierung auf $homeserver";
|
if (isset($_GET['lang'])) {
|
||||||
$body = "Guten Tag " . $user . ",
|
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
||||||
|
|
||||||
Du hast anscheinend versucht dich auf $homeserver zu registrieren.
|
|
||||||
Hier gibt es eine zweistufige Registrierung.
|
|
||||||
|
|
||||||
Wir möchten dich bitten, dass du kurz bestätigst, dass du die Registrierung durchgeführt hast.
|
|
||||||
Gehe dafür auf folgenden Link:
|
|
||||||
$verify_url
|
|
||||||
|
|
||||||
Erst anschließend werden die Administratoren über deine Registrierungsanfrage informiert.
|
|
||||||
|
|
||||||
Hinweis: Du hast ca. 48 Stunden Zeit um die Bestätigung durchzuführen.
|
|
||||||
Danach ist eine Re-Registrierung mit deinem gewünschten Nutzernamen für andere wieder möglich.
|
|
||||||
|
|
||||||
Vielen Dank für dein Verständnis.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
}
|
||||||
|
$lang_file = __DIR__ . "/lang/mail." . $lang . ".php";
|
||||||
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
if (!file_exists($lang_file)) {
|
||||||
$subject = "Registrierung wartet auf Bestätigung durch Administratoren";
|
error_log("Mail templates for '" . $lang . "' not found. Fallback to 'de-de'");
|
||||||
$body = "Guten Tag " . $user . ",
|
$lang = "de-de";
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde verifiziert und wird nun durch die Administratoren überprüft.
|
|
||||||
|
|
||||||
Du bekommst eine weitere E-Mail, sobald deine Registrierung bestätigt oder ablehnt wurde.
|
|
||||||
|
|
||||||
Vielen Dank für dein Verständnis.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
|
||||||
$subject = "Registrierung auf $homeserver genehmigt.";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
|
||||||
|
|
||||||
Leider ist beim Registrieren ein Fehler aufgetaucht. Der Registrierungversuch wird bald wiederholt.
|
|
||||||
Wir hoffen, das Problem ist bald behoben.
|
|
||||||
Wir melden uns, wenn die Registrierung erfolgreich war.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
|
|
||||||
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
|
||||||
$subject = "Registrierung auf $homeserver erfolgreich.";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren bestätigt.
|
|
||||||
|
|
||||||
Zum Anmelden kannst du folgende Zugangsdaten verwenden:
|
|
||||||
Nutzername: $username
|
|
||||||
Passwort: $password
|
|
||||||
|
|
||||||
Hinweis: Das Passwort kannst du aktuell über die App selbst ändern. Auch wenn das Passwort nirgends
|
|
||||||
im Klartext gespeichert wird, kann jemand Zugriff auf diese Mail erlangen und so den Zugriff bekommen.
|
|
||||||
";
|
|
||||||
/*
|
|
||||||
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
|
||||||
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
|
||||||
erhalten und so deinen Account kompromittieren.
|
|
||||||
*/
|
|
||||||
if (!empty($howToURL)) {
|
|
||||||
$body .= "
|
|
||||||
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
|
||||||
Anleitungen zu verschiedenen Clients:
|
|
||||||
$howToURL\n";
|
|
||||||
}
|
|
||||||
$body .= "
|
|
||||||
Viel Spaß bei der Verwendung von $homeserver.
|
|
||||||
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body);
|
|
||||||
|
|
||||||
}
|
|
||||||
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
|
||||||
$subject = "Registrierung auf $homeserver abgelehnt.";
|
|
||||||
$body = "Guten Tag " . $user . ",
|
|
||||||
|
|
||||||
Deine Registrierungsanfrage wurde durch die Administratoren abgelehnt.\n";
|
|
||||||
|
|
||||||
if (empty($reason)) {
|
|
||||||
$body .= "\nEs wurde kein Grund angegeben\n";
|
|
||||||
} else {
|
|
||||||
$body .= "\nAls Grund wurde folgendes angegeben:\n$reason\n";
|
|
||||||
}
|
|
||||||
|
|
||||||
$body .= "\nDas Administratoren-Team von " . $homeserver;
|
|
||||||
return send_mail($receiver, $subject, $body );
|
|
||||||
}
|
}
|
||||||
|
$lang_file = __DIR__ . "/lang/mail." . $lang . ".php";
|
||||||
|
require_once($lang_file);
|
||||||
|
unset($lang_file);
|
||||||
?>
|
?>
|
||||||
|
|||||||
425
public/index.php
425
public/index.php
@@ -13,222 +13,247 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once "../language.php";
|
|
||||||
if (!file_exists("../config.php")) {
|
|
||||||
print($language["NO_CONFIGURATION"]);
|
|
||||||
exit();
|
|
||||||
}
|
|
||||||
require_once "../config.php";
|
|
||||||
|
|
||||||
// enforce admin via https
|
// enforce admin via https
|
||||||
if (!isset($_SERVER['HTTPS'])) {
|
if (!isset($_SERVER['HTTPS'])) {
|
||||||
header('Location: https://'.$_SERVER['HTTP_HOST'].$_SERVER['REQUEST_URI'], true, 301);
|
header('Location: https://' . $_SERVER['HTTP_HOST'] . $_SERVER['REQUEST_URI'], true, 301);
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
|
|
||||||
|
require_once(__DIR__ . "/../language.php");
|
||||||
|
if (!file_exists(__DIR__ . "/../config.php")) {
|
||||||
|
print($language["NO_CONFIGURATION"]);
|
||||||
|
exit();
|
||||||
|
}
|
||||||
|
require_once(__DIR__ . "/../config.php");
|
||||||
|
|
||||||
|
// this values will not be used when using the register operation type
|
||||||
|
$storeFirstLastName = false;
|
||||||
|
if (isset($config["operationMode"]) && $config["operationMode"] === "local") {
|
||||||
|
$storeFirstLastName = true;
|
||||||
|
}
|
||||||
|
|
||||||
|
// currently the case to store the password on our own is the only supported one
|
||||||
|
$storePassword = false;
|
||||||
|
if (isset($config["getPasswordOnRegistration"]) && $config["getPasswordOnRegistration"] &&
|
||||||
|
isset($config["operationMode"]) && $config["operationMode"] === "synapse") {
|
||||||
|
$storePassword = true;
|
||||||
|
}
|
||||||
session_start();
|
session_start();
|
||||||
|
|
||||||
if ($_SERVER["REQUEST_METHOD"] == "POST") {
|
if ($_SERVER["REQUEST_METHOD"] == "POST") {
|
||||||
try {
|
try {
|
||||||
if (!isset($_SESSION["token"]) || !isset($_POST["token"]) || $_SESSION["token"] != $_POST["token"]) {
|
if (!isset($_SESSION["token"]) || !isset($_POST["token"]) || $_SESSION["token"] != $_POST["token"]) {
|
||||||
// token not present or invalid
|
// token not present or invalid
|
||||||
throw new Exception("UNKNOWN_SESSION");
|
throw new Exception("UNKNOWN_SESSION");
|
||||||
}
|
}
|
||||||
if (!isset($_POST["username"])) {
|
$username = filter_input(INPUT_POST, "username", FILTER_SANITIZE_STRING);
|
||||||
throw new Exception("UNKNOWN_USERNAME");
|
if (empty($username)) {
|
||||||
}
|
throw new Exception("UNKNOWN_USERNAME");
|
||||||
if (strlen($_POST["username"] > 20 || strlen($_POST["username"]) < 3)) {
|
}
|
||||||
throw new Exception("USERNAME_LENGTH_INVALID");
|
if (strlen($username) > 20 || strlen($username) < 3) {
|
||||||
}
|
throw new Exception("USERNAME_INVALID");
|
||||||
if (ctype_alnum($_POST['username']) != true) {
|
}
|
||||||
throw new Exception("USERNAME_NOT_ALNUM");
|
if (!ctype_alnum($username)) {
|
||||||
}
|
throw new Exception("USERNAME_NOT_ALNUM");
|
||||||
if (isset($config["getPasswordOnRegistration"]) && $config["getPasswordOnRegistration"] &&
|
}
|
||||||
$_POST["password"] != $_POST["password_confirm"]) {
|
if (strcmp($username, strtolower($username)) !== 0) {
|
||||||
throw new Exception("PASSWORD_NOT_MATCH");
|
throw new Exception("USERNAME_INVALID");
|
||||||
}
|
}
|
||||||
if (isset($_POST["note"]) && strlen($_POST["note"]) > 50) {
|
if ($storePassword && (!isset($_POST["password"]) || !isset($_POST["password_confirm"]))) {
|
||||||
throw new Exception("NOTE_LENGTH_EXEEDED");
|
throw new Exception("PASSWORD_NOT_PROVIDED");
|
||||||
}
|
}
|
||||||
if (!isset($_POST["email"]) || !filter_var($_POST["email"], FILTER_VALIDATE_EMAIL)) {
|
if ($storePassword && $_POST["password"] != $_POST["password_confirm"]) {
|
||||||
throw new Exception("EMAIL_INVALID_FORMAT");
|
throw new Exception("PASSWORD_NOT_MATCH");
|
||||||
}
|
}
|
||||||
if (isset($_POST["first_name"]) && ! preg_match("/[A-Z][a-z]+/", $_POST["first_name"])) {
|
if (isset($_POST["note"]) && strlen($_POST["note"]) > 50) {
|
||||||
throw new Exception("FIRSTNAME_INVALID_FORMAT");
|
throw new Exception("NOTE_LENGTH_EXEEDED");
|
||||||
}
|
}
|
||||||
if (isset($_POST["last_name"]) && ! preg_match("/[A-Z][a-z]+/", $_POST["last_name"])) {
|
if (!isset($_POST["email"]) || !filter_var($_POST["email"], FILTER_VALIDATE_EMAIL)) {
|
||||||
throw new Exception("SIRNAME_INVALID_FORMAT");
|
throw new Exception("EMAIL_INVALID_FORMAT");
|
||||||
}
|
}
|
||||||
|
if ($storeFirstLastName) {
|
||||||
|
// only require first_name and last_name when we will evaluate them
|
||||||
|
if (!isset($_POST["first_name"]) || !preg_match("/[A-Z][a-z]+/", $_POST["first_name"])) {
|
||||||
|
throw new Exception("FIRSTNAME_INVALID_FORMAT");
|
||||||
|
}
|
||||||
|
if (!isset($_POST["last_name"]) || !preg_match("/[A-Z][a-z]+/", $_POST["last_name"])) {
|
||||||
|
throw new Exception("SIRNAME_INVALID_FORMAT");
|
||||||
|
}
|
||||||
|
$first_name = filter_var($_POST["first_name"], FILTER_SANITIZE_STRING);
|
||||||
|
$last_name = filter_var($_POST["last_name"], FILTER_SANITIZE_STRING);
|
||||||
|
} else {
|
||||||
|
$first_name = $last_name = "";
|
||||||
|
}
|
||||||
|
|
||||||
$first_name = filter_var($_POST["first_name"], FILTER_SANITIZE_STRING);
|
$password = "";
|
||||||
$last_name = filter_var($_POST["last_name"], FILTER_SANITIZE_STRING);
|
if ($storePassword && isset($_POST["password"])) {
|
||||||
$username = filter_var($_POST["username"], FILTER_SANITIZE_STRING);
|
$password = filter_var($_POST["password"], FILTER_SANITIZE_STRING);
|
||||||
if (isset($_POST["password"])) {
|
}
|
||||||
$password = filter_var($_POST["password"], FILTER_SANITIZE_STRING);
|
$note = filter_var($_POST["note"], FILTER_SANITIZE_STRING);
|
||||||
}
|
$email = filter_var($_POST["email"], FILTER_VALIDATE_EMAIL);
|
||||||
$note = filter_var($_POST["note"], FILTER_SANITIZE_STRING);
|
|
||||||
$email = filter_var($_POST["email"], FILTER_VALIDATE_EMAIL);
|
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
$res = $mx_db->addRegistration($first_name, $last_name, $username, $note, $email);
|
$res = $mx_db->addRegistration($first_name, $last_name, $username, $password, $note, $email);
|
||||||
|
|
||||||
if (!isset($res["verify_token"])) {
|
if (!isset($res["verify_token"])) {
|
||||||
error_log("sth. went wrong. registration did not throw but admin_token not set");
|
error_log("sth. went wrong. registration did not throw but admin_token not set");
|
||||||
throw Exception ("Unknown Error");
|
throw Exception("UNKNOWN_ERROR");
|
||||||
}
|
}
|
||||||
$verify_token = $res["verify_token"];
|
$verify_token = $res["verify_token"];
|
||||||
|
|
||||||
$verify_url = $config["webroot"] . "/verify.php?t=" . $verify_token;
|
$verify_url = $config["webroot"] . "/verify.php?t=" . $verify_token;
|
||||||
require_once "../mail_templates.php";
|
require_once(__DIR__ . "/../mail_templates.php");
|
||||||
$success = send_mail_pending_verification(
|
$success = send_mail_pending_verification(
|
||||||
$config["homeserver"],
|
$config["homeserver"], $storeFirstLastName ? $first_name . " " . $last_name : $username, $email, $verify_url);
|
||||||
$first_name . " " . $last_name,
|
|
||||||
$email,
|
|
||||||
$verify_url);
|
|
||||||
|
|
||||||
$mx_db->setRegistrationStateVerify(
|
$mx_db->setRegistrationStateVerify(
|
||||||
($success ? RegisterState::PendingEmailVerify : RegisterState::PendingEmailSend),
|
($success ? RegisterState::PendingEmailVerify : RegisterState::PendingEmailSend), $verify_token);
|
||||||
$verify_token);
|
|
||||||
|
|
||||||
print("<title>Erfolgreich</title>");
|
print("<title>" . $language["SUCCESS"] . "</title>");
|
||||||
print("</head><body>");
|
print("</head><body>");
|
||||||
print("<h1>Erfolgreich</h1>");
|
print("<h1>" . $language["SUCCESS"] . "</h1>");
|
||||||
print("<p>Bitte überprüfe deine E-Mails um deine E-Mail-Adresse zu bestätigen.</p>");
|
print("<p>" . $language["TASK_CHECK_YOUR_EMAIL_VERIFY"] . "</p>");
|
||||||
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">Zur Registrierungsseite</a>");
|
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">" . $language["JUMP_TO_HOMEPAGE"] . "</a>");
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
print("<title>" . $language["REGISTRATION_REQUEST_FAILED"] . "</title>");
|
print("<title>" . $language["REGISTRATION_REQUEST_FAILED"] . "</title>");
|
||||||
print("</head><body>");
|
print("</head><body>");
|
||||||
print("<h1>" . $language["REGISTRATION_REQUEST_FAILED"] . "</h1>");
|
print("<h1>" . $language["REGISTRATION_REQUEST_FAILED"] . "</h1>");
|
||||||
if (isset($language[$e->getMessage()])) {
|
if (isset($language[$e->getMessage()])) {
|
||||||
print("<p>" . $language[$e->getMessage()] . "</p>");
|
print("<p>" . $language[$e->getMessage()] . "</p>");
|
||||||
} else {
|
} else {
|
||||||
print("<p>" . $e->getMessage() . "</p>");
|
print("<p>" . $e->getMessage() . "</p>");
|
||||||
}
|
}
|
||||||
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">Zur Registrierungsseite</a>");
|
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">" . $language["JUMP_TO_HOMEPAGE"] . "</a>");
|
||||||
}
|
}
|
||||||
} else {
|
} else {
|
||||||
$_SESSION["token"] = bin2hex(random_bytes(16));
|
$_SESSION["token"] = bin2hex(random_bytes(16));
|
||||||
?>
|
?>
|
||||||
<title>Registriere dich für <?php echo $config["homeserver"]; ?></title>
|
<title><?php echo strtr($language["TOPIC_PLEASE_REGISTER"], ["@homeserver" => $config["homeserver"]]); ?></title>
|
||||||
<link href="//netdna.bootstrapcdn.com/bootstrap/3.1.0/css/bootstrap.min.css" rel="stylesheet">
|
<link href="//netdna.bootstrapcdn.com/bootstrap/3.1.0/css/bootstrap.min.css" rel="stylesheet">
|
||||||
<style>
|
<style>
|
||||||
body{
|
body{
|
||||||
background-color: #525252;
|
background-color: #525252;
|
||||||
}
|
}
|
||||||
.centered-form{
|
.centered-form{
|
||||||
margin-top: 60px;
|
margin-top: 60px;
|
||||||
}
|
}
|
||||||
|
|
||||||
.centered-form .panel{
|
.centered-form .panel{
|
||||||
background: rgba(255, 255, 255, 0.8);
|
background: rgba(255, 255, 255, 0.8);
|
||||||
box-shadow: rgba(0, 0, 0, 0.3) 20px 20px 20px;
|
box-shadow: rgba(0, 0, 0, 0.3) 20px 20px 20px;
|
||||||
}
|
}
|
||||||
</style>
|
</style>
|
||||||
<script type="text/javascript" src="//code.jquery.com/jquery-1.11.1.min.js"></script>
|
<script type="text/javascript" src="//code.jquery.com/jquery-1.11.1.min.js"></script>
|
||||||
<script type="text/javascript" src="//netdna.bootstrapcdn.com/bootstrap/3.1.0/js/bootstrap.min.js"></script>
|
<script type="text/javascript" src="//netdna.bootstrapcdn.com/bootstrap/3.1.0/js/bootstrap.min.js"></script>
|
||||||
</head>
|
</head>
|
||||||
<body>
|
<body>
|
||||||
<div class="container">
|
<div class="container">
|
||||||
<div class="row centered-form">
|
<div class="row centered-form">
|
||||||
<div class="col-xs-12 col-sm-8 col-md-4 col-sm-offset-2 col-md-offset-4">
|
<div class="col-xs-12 col-sm-8 col-md-4 col-sm-offset-2 col-md-offset-4">
|
||||||
<div class="panel panel-default">
|
<div class="panel panel-default">
|
||||||
<div class="panel-heading">
|
<div class="panel-heading">
|
||||||
<h3 class="panel-title">Bitte für <?php echo $config["homeserver"]; ?> registrieren<small>2-Schritt-Registrierung</small></h3>
|
<h3 class="panel-title"><?php
|
||||||
</div>
|
echo strtr($language["TOPIC_PLEASE_REGISTER"], ["@homeserver" => $config["homeserver"]])
|
||||||
<div class="panel-body">
|
. "<small>" . $language["TOPIC_PLEASE_REGISTER_NOTE"] . "</small>";
|
||||||
<form name="regForm" role="form" action="index.php" method="post">
|
?></h3>
|
||||||
<div class="row">
|
</div>
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
<div class="panel-body">
|
||||||
<div class="form-group">
|
<form name="regForm" role="form" action="index.php" method="post">
|
||||||
<input type="text" name="first_name" id="first_name" class="form-control input-sm"
|
<?php if ($storeFirstLastName) { ?>
|
||||||
placeholder="Vorname" pattern="[A-Z][a-z]+">
|
<div class="row">
|
||||||
</div>
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
</div>
|
<div class="form-group">
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
<input type="text" name="first_name" id="first_name" class="form-control input-sm"
|
||||||
<div class="form-group">
|
placeholder="<?php echo $language["FIRST_NAME"]; ?>" pattern="[A-Z][a-z]+">
|
||||||
<input type="text" name="last_name" id="last_name" class="form-control input-sm"
|
</div>
|
||||||
placeholder="Nachname" pattern="[A-Z][a-z]+">
|
</div>
|
||||||
</div>
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
</div>
|
<div class="form-group">
|
||||||
</div>
|
<input type="text" name="last_name" id="last_name" class="form-control input-sm"
|
||||||
|
placeholder="<?php echo $language["LAST_NAME"]; ?>" pattern="[A-Z][a-z]+">
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
<?php } ?>
|
||||||
|
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="email" name="email" id="email" class="form-control input-sm" placeholder="E-Mail-Adresse" required>
|
<input type="email" name="email" id="email" class="form-control input-sm" placeholder="<?php echo $language["EMAIL_ADDRESS"]; ?>" required>
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="text" name="note" id="note" class="form-control input-sm" placeholder="Notiz zu dir (max. 50 Zeichen)">
|
<input type="text" name="note" id="note" class="form-control input-sm" placeholder="<?php echo $language["PLACEHOLDER_NOTE_ABOUT_YOURSELF"]; ?>">
|
||||||
</div>
|
</div>
|
||||||
|
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="text" name="username" id="username" class="form-control input-sm"
|
<input type="text" name="username" id="username" class="form-control input-sm"
|
||||||
placeholder="Nutzername (für den Login)" pattern="[a-z1-9]{3,20}" required>
|
placeholder="<?php echo $language["USERNAME"]; ?>" pattern="[a-z1-9]{3,20}" required>
|
||||||
</div>
|
</div>
|
||||||
<?php if (isset($config["getPasswordOnRegistration"]) && $config["getPasswordOnRegistration"]) { ?>
|
<?php if ($storePassword) { ?>
|
||||||
<div class="row">
|
<div class="row">
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="password" name="password" id="password" class="form-control input-sm" placeholder="Passwort" required>
|
<input type="password" name="password" id="password" class="form-control input-sm" placeholder="<?php echo $language["PASSWORD"]; ?>" required>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="password" name="password_confirm" id="password_confirm" class="form-control input-sm" placeholder="Passwort bestätigen" required>
|
<input type="password" name="password_confirm" id="password_confirm" class="form-control input-sm" placeholder="<?php echo $language["PASSWORD_CONFIRM"]; ?>" required>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
|
<?php } ?>
|
||||||
|
<input type="hidden" name="token" id="token" value="<?php echo $_SESSION["token"]; ?>">
|
||||||
|
<input type="submit" value="<?php echo $language["REGISTER"]; ?>" class="btn btn-info btn-block">
|
||||||
|
|
||||||
|
</form>
|
||||||
|
<?php
|
||||||
|
if (isset($language["NOTE_FOR_REGISTRATION"])) {
|
||||||
|
echo "<p>" . $language["NOTE"] . ": <br />";
|
||||||
|
echo strtr($language["NOTE_FOR_REGISTRATION"], ["@homeserver" => $config["homeserver"]]);
|
||||||
|
echo "</p>";
|
||||||
|
}
|
||||||
|
?>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
<script type="text/javascript">
|
||||||
|
var user_name = document.getElementById("username");
|
||||||
|
user_name.oninvalid = function (event) {
|
||||||
|
event.target.setCustomValidity("<?php echo $language["USERNAME_INVALID"]; ?>");
|
||||||
|
}
|
||||||
|
user_name.onkeyup = function (event) {
|
||||||
|
event.target.setCustomValidity("");
|
||||||
|
}
|
||||||
|
<?php if ($storeFirstLastName) { ?>
|
||||||
|
var first_name = document.getElementById("first_name");
|
||||||
|
first_name.oninvalid = function (event) {
|
||||||
|
event.target.setCustomValidity("<?php echo $language["FIRSTNAME_INVALID_FORMAT"]; ?>");
|
||||||
|
}
|
||||||
|
first_name.onkeyup = function (event) {
|
||||||
|
event.target.setCustomValidity("");
|
||||||
|
}
|
||||||
|
var last_name = document.getElementById("last_name");
|
||||||
|
last_name.oninvalid = function (event) {
|
||||||
|
event.target.setCustomValidity("<?php echo $language["SIRNAME_INVALID_FORMAT"]; ?>");
|
||||||
|
}
|
||||||
|
last_name.onkeyup = function (event) {
|
||||||
|
event.target.setCustomValidity("");
|
||||||
|
}
|
||||||
|
<?php } if ($storePassword) { ?>
|
||||||
|
var password = document.getElementById("password")
|
||||||
|
, confirm_password = document.getElementById("password_confirm");
|
||||||
|
function validatePassword() {
|
||||||
|
if (password.value != confirm_password.value) {
|
||||||
|
confirm_password.setCustomValidity("<?php echo $language["PASSWORD_NOT_MATCH"]; ?>");
|
||||||
|
} else {
|
||||||
|
confirm_password.setCustomValidity('');
|
||||||
|
}
|
||||||
|
}
|
||||||
|
password.onchange = validatePassword;
|
||||||
|
confirm_password.onkeyup = validatePassword;
|
||||||
<?php } ?>
|
<?php } ?>
|
||||||
<input type="hidden" name="token" id="token" value="<?php echo $_SESSION["token"]; ?>">
|
</script>
|
||||||
<input type="submit" value="Registrieren" class="btn btn-info btn-block">
|
<?php } ?>
|
||||||
|
</body></html>
|
||||||
</form>
|
|
||||||
<p>Hinweis: <br />
|
|
||||||
<?php echo $config["homeserver"]; ?> ist ein geschlossenes Chat-Netzwerk in dem jeder Nutzer bestätigt werden muss.<br />
|
|
||||||
Du bekommst eine E-Mail wenn jemand deine Mitgliedschaft bestätigt hat. An diese wird auch dein initiales Passwort gesendet.
|
|
||||||
Hinterlasse also bitte einen Hinweis zu dir (der nur den entsprechenden Personen gezeigt wird).<br />
|
|
||||||
Liebe Grüße vom Team von <?php echo $config["homeserver"]; ?>
|
|
||||||
</p>
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
</div>
|
|
||||||
<script type="text/javascript">
|
|
||||||
var first_name = document.getElementById("first_name");
|
|
||||||
first_name.oninvalid = function(event) {
|
|
||||||
event.target.setCustomValidity("Vorname muss das Format <Großbuchstabe><Kleinbuchstaben> haben");
|
|
||||||
}
|
|
||||||
first_name.onkeyup = function(event) {
|
|
||||||
event.target.setCustomValidity("");
|
|
||||||
}
|
|
||||||
var last_name = document.getElementById("last_name");
|
|
||||||
last_name.oninvalid = function(event) {
|
|
||||||
event.target.setCustomValidity("Nachname muss das Format <Großbuchstabe><Kleinbuchstaben> haben");
|
|
||||||
}
|
|
||||||
last_name.onkeyup = function(event) {
|
|
||||||
event.target.setCustomValidity("");
|
|
||||||
}
|
|
||||||
var user_name = document.getElementById("username");
|
|
||||||
user_name.oninvalid = function(event) {
|
|
||||||
event.target.setCustomValidity("Nutzername darf zwischen 3 und 20 kleine Buchstaben und Zahlen enthalten");
|
|
||||||
}
|
|
||||||
user_name.onkeyup = function (event) {
|
|
||||||
event.target.setCustomValidity("");
|
|
||||||
}
|
|
||||||
<?php if (isset($config["getPasswordOnRegistration"]) && $config["getPasswordOnRegistration"]) { ?>
|
|
||||||
var password = document.getElementById("password")
|
|
||||||
, confirm_password = document.getElementById("password_confirm");
|
|
||||||
function validatePassword(){
|
|
||||||
if(password.value != confirm_password.value) {
|
|
||||||
confirm_password.setCustomValidity("Passwörter stimmen nicht überein");
|
|
||||||
} else {
|
|
||||||
confirm_password.setCustomValidity('');
|
|
||||||
}
|
|
||||||
}
|
|
||||||
password.onchange = validatePassword;
|
|
||||||
confirm_password.onkeyup = validatePassword;
|
|
||||||
<?php } ?>
|
|
||||||
</script>
|
|
||||||
<?php } ?>
|
|
||||||
</body>
|
|
||||||
</html>
|
|
||||||
|
|||||||
@@ -13,81 +13,90 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once "../language.php";
|
require_once(__DIR__ . "/../language.php");
|
||||||
if (!file_exists("../config.php")) {
|
if (!file_exists("../config.php")) {
|
||||||
print($language["NO_CONFIGURATION"]);
|
print($language["NO_CONFIGURATION"]);
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
require_once "../config.php";
|
require_once(__DIR__ . "/../config.php");
|
||||||
require_once "../mail_templates.php";
|
require_once(__DIR__ . "/../mail_templates.php");
|
||||||
|
|
||||||
// enforce admin via https
|
// enforce admin via https
|
||||||
if (!isset($_SERVER['HTTPS'])) {
|
if (!isset($_SERVER['HTTPS'])) {
|
||||||
header('Location: https://'.$_SERVER['HTTP_HOST'].$_SERVER['REQUEST_URI'], true, 301);
|
header('Location: https://' . $_SERVER['HTTP_HOST'] . $_SERVER['REQUEST_URI'], true, 301);
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
|
|
||||||
session_start();
|
session_start();
|
||||||
|
|
||||||
try {
|
try {
|
||||||
if ($_SERVER["REQUEST_METHOD"] != "GET") {
|
if ($_SERVER["REQUEST_METHOD"] != "GET") {
|
||||||
throw new Exception("Method not allowed");
|
throw new Exception("Method not allowed");
|
||||||
}
|
}
|
||||||
if (!isset($_GET["t"])) {
|
if (!isset($_GET["t"])) {
|
||||||
throw new Exception("UNKNOWN_TOKEN");
|
throw new Exception("UNKNOWN_TOKEN");
|
||||||
}
|
}
|
||||||
$token = filter_var($_GET["t"], FILTER_SANITIZE_STRING);
|
$token = filter_var($_GET["t"], FILTER_SANITIZE_STRING);
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
|
|
||||||
$user = $mx_db->getUserForVerify($token);
|
$user = $mx_db->getUserForVerify($token);
|
||||||
if ($user == NULL) {
|
if ($user == NULL) {
|
||||||
throw new Exception("UNKNOWN_TOKEN");
|
throw new Exception("UNKNOWN_TOKEN");
|
||||||
}
|
}
|
||||||
$first_name = $user["first_name"];
|
$first_name = $user["first_name"];
|
||||||
$last_name = $user["last_name"];
|
$last_name = $user["last_name"];
|
||||||
$note = $user["note"];
|
$username = $user["username"];
|
||||||
$email = $user["email"];
|
$note = $user["note"];
|
||||||
$admin_token = $user["admin_token"];
|
$email = $user["email"];
|
||||||
|
$admin_token = $user["admin_token"];
|
||||||
|
|
||||||
require_once("../MatrixConnection.php");
|
// we have 2 cases: first and last name or just the username
|
||||||
$adminUrl = $config["webroot"] . "/verify_admin.php?t=" . $admin_token;
|
$call_name = strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username;
|
||||||
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
|
||||||
$mxMsg = new MatrixMessage();
|
|
||||||
$mxMsg->set_body($first_name . ' ' . $last_name . "möchte sich registrieren und hat folgende Notiz hinterlassen:\r\n"
|
|
||||||
. $note . "\r\n"
|
|
||||||
. "Zum Bearbeiten hier klicken:\r\n" . $adminUrl);
|
|
||||||
$mxMsg->set_formatted_body($first_name . ' ' . $last_name . " möchte sich registrieren und hat folgende Notiz hinterlassen:<br />"
|
|
||||||
. $note . "<br />"
|
|
||||||
. "Zum Bearbeiten <a href=\"". $adminUrl . "\">hier</a> klicken");
|
|
||||||
$mxMsg->set_type("m.text");
|
|
||||||
$response = $mxConn->send($config["register_room"], $mxMsg);
|
|
||||||
|
|
||||||
if ($response) {
|
require_once(__DIR__ . "/../MatrixConnection.php");
|
||||||
$message = $language["SEND_MATRIX_FAIL"];
|
$adminUrl = $config["webroot"] . "/verify_admin.php?t=" . $admin_token;
|
||||||
}
|
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
||||||
$mx_db->setRegistrationStateVerify(
|
$mxMsg = new MatrixMessage();
|
||||||
($response ? RegisterState::PendingAdminVerify : RegisterState::PendingAdminSend),
|
$mxMsg->set_body(strtr($language["MSG_USER_WANTS_REGISTER"], [
|
||||||
$token);
|
"@name" => $call_name,
|
||||||
|
"@note" => $note,
|
||||||
|
"@adminUrl" => $adminUrl
|
||||||
|
]));
|
||||||
|
if (isset($language["MSG_USER_WANTS_REGISTER_FORMATTED"])) {
|
||||||
|
$mxMsg->set_formatted_body(strtr($language["MSG_USER_WANTS_REGISTER_FORMATTED"], [
|
||||||
|
"@name" => $call_name,
|
||||||
|
"@note" => $note,
|
||||||
|
"@adminUrl" => $adminUrl
|
||||||
|
]));
|
||||||
|
}
|
||||||
|
$mxMsg->set_type("m.text");
|
||||||
|
$response = $mxConn->send($config["register_room"], $mxMsg);
|
||||||
|
|
||||||
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
if ($response) {
|
||||||
|
$message = $language["SEND_MATRIX_FAIL"];
|
||||||
|
}
|
||||||
|
$mx_db->setRegistrationStateVerify(
|
||||||
|
($response ? RegisterState::PendingAdminVerify : RegisterState::PendingAdminSend), $token);
|
||||||
|
|
||||||
print("<title>" . $language["VERIFICATION_SUCEEDED"] . "</title>");
|
send_mail_pending_approval($config["homeserver"], $call_name, $email);
|
||||||
print("</head><body>");
|
|
||||||
print("<h1>" . $language["VERIFICATION_SUCEEDED"] . "</h1>");
|
print("<title>" . $language["VERIFICATION_SUCEEDED"] . "</title>");
|
||||||
print("<p>" . $language["VERIFICATION_SUCCESS_BODY"] . "</p>");
|
print("</head><body>");
|
||||||
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">Zur Registrierungsseite</a>");
|
print("<h1>" . $language["VERIFICATION_SUCEEDED"] . "</h1>");
|
||||||
|
print("<p>" . $language["VERIFICATION_SUCCESS_BODY"] . "</p>");
|
||||||
|
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">" . $language["JUMP_TO_HOMEPAGE"] . "</a>");
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
print("<title>" . $language["VERIFICATION_FAILED"] . "</title>");
|
print("<title>" . $language["VERIFICATION_FAILED"] . "</title>");
|
||||||
print("</head><body>");
|
print("</head><body>");
|
||||||
print("<h1>" . $language["VERIFICATION_FAILED"] . "</h1>");
|
print("<h1>" . $language["VERIFICATION_FAILED"] . "</h1>");
|
||||||
if (isset($language[$e->getMessage()])) {
|
if (isset($language[$e->getMessage()])) {
|
||||||
print("<p>" . $language[$e->getMessage()] . "</p>");
|
print("<p>" . $language[$e->getMessage()] . "</p>");
|
||||||
} else {
|
} else {
|
||||||
print("<p>" . $e->getMessage() . "</p>");
|
print("<p>" . $e->getMessage() . "</p>");
|
||||||
}
|
}
|
||||||
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">Zur Registrierungsseite</a>");
|
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">" . $language["JUMP_TO_HOMEPAGE"] . "</a>");
|
||||||
}
|
}
|
||||||
?>
|
?>
|
||||||
</body>
|
</body>
|
||||||
</html>
|
</html>
|
||||||
|
|||||||
@@ -13,172 +13,238 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once "../language.php";
|
require_once(__DIR__ . "/../language.php");
|
||||||
if (!file_exists("../config.php")) {
|
if (!file_exists("../config.php")) {
|
||||||
print($language["NO_CONFIGURATION"]);
|
print($language["NO_CONFIGURATION"]);
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
require_once "../config.php";
|
require_once(__DIR__ . "/../config.php");
|
||||||
require_once "../mail_templates.php";
|
require_once(__DIR__ . "/../mail_templates.php");
|
||||||
|
|
||||||
// enforce admin via https
|
// enforce admin via https
|
||||||
if (!isset($_SERVER['HTTPS'])) {
|
if (!isset($_SERVER['HTTPS'])) {
|
||||||
header('Location: https://'.$_SERVER['HTTP_HOST'].$_SERVER['REQUEST_URI'], true, 301);
|
header('Location: https://' . $_SERVER['HTTP_HOST'] . $_SERVER['REQUEST_URI'], true, 301);
|
||||||
exit();
|
exit();
|
||||||
}
|
}
|
||||||
|
|
||||||
session_start();
|
session_start();
|
||||||
|
|
||||||
try {
|
try {
|
||||||
if ($_SERVER["REQUEST_METHOD"] != "GET") {
|
if ($_SERVER["REQUEST_METHOD"] != "GET") {
|
||||||
throw new Exception("Method not allowed");
|
throw new Exception("Method not allowed");
|
||||||
}
|
}
|
||||||
if (!isset($_GET["t"])) {
|
$token = filter_input(INPUT_GET, "t", FILTER_SANITIZE_STRING);
|
||||||
throw new Exception("UNKNOWN_TOKEN");
|
if (empty($token)) {
|
||||||
}
|
throw new Exception("UNKNOWN_TOKEN");
|
||||||
$token = filter_var($_GET["t"], FILTER_SANITIZE_STRING);
|
}
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once(__DIR__ . "/../database.php");
|
||||||
|
|
||||||
$action = NULL;
|
$param_action = filter_input(INPUT_GET, "d", FILTER_SANITIZE_STRING);
|
||||||
if (isset($_GET["allow"])) {
|
if ($param_action == "allow") {
|
||||||
$action = RegisterState::RegistrationAccepted;
|
$action = RegisterState::RegistrationAccepted;
|
||||||
}
|
} elseif ($param_action == "deny") {
|
||||||
$decline_reason = NULL;
|
$action = RegisterState::RegistrationDeclined;
|
||||||
if (isset($_GET["deny"])) {
|
$decline_reason = filter_input(INPUT_GET, "decline_reason", FILTER_SANITIZE_STRING);
|
||||||
$action = RegisterState::RegistrationDeclined;
|
}
|
||||||
if (isset($_GET["reason"])) {
|
|
||||||
$decline_reason = filter_var($_GET["reason"], FILTER_SANITIZE_STRING);
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
$user = $mx_db->getUserForApproval($token);
|
$user = $mx_db->getUserForApproval($token);
|
||||||
if ($user == NULL) {
|
if ($user == NULL) {
|
||||||
throw new Exception("UNKNOWN_TOKEN");
|
throw new Exception("UNKNOWN_TOKEN");
|
||||||
}
|
}
|
||||||
|
|
||||||
$first_name = $user["first_name"];
|
$first_name = $user["first_name"];
|
||||||
$last_name = $user["last_name"];
|
$last_name = $user["last_name"];
|
||||||
$username = $user["username"];
|
$username = $user["username"];
|
||||||
$note = $user["note"];
|
// we have 2 cases: first and last name or just the username
|
||||||
$email = $user["email"];
|
$call_name = strlen($first_name . $last_name) > 0 ? $first_name . " " . $last_name : $username;
|
||||||
|
|
||||||
if ($action == RegisterState::RegistrationAccepted) {
|
$note = $user["note"];
|
||||||
$mx_db->setRegistrationStateAdmin(RegisterState::PendingRegistration, $token);
|
$email = $user["email"];
|
||||||
|
|
||||||
// register user
|
if ($action == RegisterState::RegistrationAccepted) {
|
||||||
require_once("../MatrixConnection.php");
|
$mx_db->setRegistrationStateAdmin(RegisterState::PendingRegistration, $token);
|
||||||
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
|
||||||
|
|
||||||
// generate a password with 8 characters
|
// register user
|
||||||
$password = $mx_db->addUser($first_name, $last_name, $username, $email);
|
require_once(__DIR__ . "/../MatrixConnection.php");
|
||||||
if ($password != NULL) {
|
$mxConn = new MatrixConnection($config["homeserver"], $config["access_token"]);
|
||||||
// send registration_success
|
|
||||||
$res = send_mail_registration_success($config["homeserver"], $first_name . " " . $last_name, $email, $username, $password, $config["howToURL"]);
|
|
||||||
if ($res) {
|
|
||||||
$mx_db->setRegistrationStateAdmin(RegisterState::AllDone, $token);
|
|
||||||
} else {
|
|
||||||
$mx_db->setRegistrationStateAdmin(RegisterState::PendingSendRegistrationMail, $token);
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
send_mail_registration_allowed_but_failed($config["homeserver"], $first_name . " " . $last_name, $email);
|
|
||||||
$mxMsg = new MatrixMessage();
|
|
||||||
$mxMsg->set_type("m.text");
|
|
||||||
$mxMsg->set_body("Fehler beim Registrieren von " . $first_name . " " . $last_name . ".");
|
|
||||||
$mxConn->send($config["register_room"], $mxMsg);
|
|
||||||
throw new Exception("REGISTRATION_FAILED");
|
|
||||||
}
|
|
||||||
|
|
||||||
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
$password = NULL;
|
||||||
print("</head><body>");
|
$use_db_password = (isset($config["getPasswordOnRegistration"]) && $config["getPasswordOnRegistration"]);
|
||||||
print("<h1>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</h1>");
|
if ($use_db_password && isset($user["password"]) && strlen($user["password"]) > 0) {
|
||||||
print("<p>" . $language["ADMIN_REGISTER_ACCEPTED_BODY"] . "</p>");
|
$password = $user["password"];
|
||||||
} elseif ($action == RegisterState::RegistrationDeclined) {
|
} else {
|
||||||
$mx_db->setRegistrationStateAdmin(RegisterState::RegistrationDeclined, $token);
|
$use_db_password = false;
|
||||||
send_mail_registration_decline($config["homeserver"], $first_name . " " . $last_name, $email, $decline_reason);
|
// generate a password with 10 characters
|
||||||
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
||||||
print("</head><body>");
|
}
|
||||||
print("<h1>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</h1>");
|
switch ($config["operationMode"]) {
|
||||||
print("<p>" . $language["ADMIN_REGISTER_DECLINED_BODY"] . "</p>");
|
case "synapse":
|
||||||
} else {
|
// register with registration_shared_secret
|
||||||
|
$res = $mxConn->register($username, $password, $config["registration_shared_secret"]);
|
||||||
|
if (!$res) {
|
||||||
|
// something went wrong while registering
|
||||||
|
$password = NULL;
|
||||||
|
}
|
||||||
|
break;
|
||||||
|
case "local":
|
||||||
|
// register by adding a user to the local database
|
||||||
|
$password = $mx_db->addUser($first_name, $last_name, $username, $password, $email);
|
||||||
|
break;
|
||||||
|
default:
|
||||||
|
throw new Exception("Unknown operationMode");
|
||||||
|
}
|
||||||
|
if ($password != NULL) {
|
||||||
|
// send registration_success
|
||||||
|
$res = send_mail_registration_success(
|
||||||
|
$config["homeserver"],
|
||||||
|
$call_name,
|
||||||
|
$email,
|
||||||
|
$username,
|
||||||
|
// only send password when auto-created
|
||||||
|
($use_db_password ? NULL : $password),
|
||||||
|
$config["howToURL"]
|
||||||
|
);
|
||||||
|
if ($res) {
|
||||||
|
$mx_db->setRegistrationStateAdmin(RegisterState::AllDone, $token);
|
||||||
|
} else {
|
||||||
|
$mx_db->setRegistrationStateAdmin(RegisterState::PendingSendRegistrationMail, $token);
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
send_mail_registration_allowed_but_failed($config["homeserver"], $call_name, $email);
|
||||||
|
$mxMsg = new MatrixMessage();
|
||||||
|
$mxMsg->set_type("m.text");
|
||||||
|
$mxMsg->set_body(strtr($language["REGISTRATION_FAILED_FOR"], [
|
||||||
|
"@name" => $call_name,
|
||||||
|
]));
|
||||||
|
$mxConn->send($config["register_room"], $mxMsg);
|
||||||
|
throw new Exception("REGISTRATION_FAILED");
|
||||||
|
}
|
||||||
|
|
||||||
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
||||||
?>
|
print("</head><body>");
|
||||||
<link href="//netdna.bootstrapcdn.com/bootstrap/3.1.0/css/bootstrap.min.css" rel="stylesheet">
|
print("<h1>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</h1>");
|
||||||
<style>
|
print("<p>" . $language["ADMIN_REGISTER_ACCEPTED_BODY"] . "</p>");
|
||||||
body{
|
} elseif ($action == RegisterState::RegistrationDeclined) {
|
||||||
background-color: #525252;
|
$mx_db->setRegistrationStateAdmin(RegisterState::RegistrationDeclined, $token);
|
||||||
}
|
send_mail_registration_decline(
|
||||||
.centered-form{
|
$config["homeserver"], $call_name, $email, $decline_reason
|
||||||
margin-top: 60px;
|
);
|
||||||
}
|
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
||||||
|
print("</head><body>");
|
||||||
|
print("<h1>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</h1>");
|
||||||
|
print("<p>" . $language["ADMIN_REGISTER_DECLINED_BODY"] . "</p>");
|
||||||
|
} else {
|
||||||
|
print("<title>" . $language["ADMIN_VERIFY_SITE_TITLE"] . "</title>");
|
||||||
|
?>
|
||||||
|
<link href="//netdna.bootstrapcdn.com/bootstrap/3.1.0/css/bootstrap.min.css" rel="stylesheet">
|
||||||
|
<style>
|
||||||
|
body{
|
||||||
|
background-color: #525252;
|
||||||
|
}
|
||||||
|
.centered-form{
|
||||||
|
margin-top: 60px;
|
||||||
|
}
|
||||||
|
|
||||||
.centered-form .panel{
|
.centered-form .panel{
|
||||||
background: rgba(255, 255, 255, 0.8);
|
background: rgba(255, 255, 255, 0.8);
|
||||||
box-shadow: rgba(0, 0, 0, 0.3) 20px 20px 20px;
|
box-shadow: rgba(0, 0, 0, 0.3) 20px 20px 20px;
|
||||||
}
|
}
|
||||||
</style>
|
</style>
|
||||||
<script type="text/javascript" src="//code.jquery.com/jquery-1.11.1.min.js"></script>
|
<script type="text/javascript" src="//code.jquery.com/jquery-1.11.1.min.js"></script>
|
||||||
<script type="text/javascript" src="//netdna.bootstrapcdn.com/bootstrap/3.1.0/js/bootstrap.min.js"></script>
|
<script type="text/javascript" src="//netdna.bootstrapcdn.com/bootstrap/3.1.0/js/bootstrap.min.js"></script>
|
||||||
</head>
|
</head>
|
||||||
<body>
|
<body>
|
||||||
<div class="container">
|
<div class="container">
|
||||||
<div class="row centered-form">
|
<div class="row centered-form">
|
||||||
<div class="col-xs-12 col-sm-8 col-md-4 col-sm-offset-2 col-md-offset-4">
|
<div class="col-xs-12 col-sm-8 col-md-4 col-sm-offset-2 col-md-offset-4">
|
||||||
<div class="panel panel-default">
|
<div class="panel panel-default">
|
||||||
<div class="panel-heading">
|
<div class="panel-heading">
|
||||||
<h3 class="panel-title"><?php echo $language["ADMIN_VERIFY_SITE_TITLE"] ; ?></h3>
|
<h3 class="panel-title"><?php echo $language["ADMIN_VERIFY_SITE_TITLE"]; ?></h3>
|
||||||
</div>
|
</div>
|
||||||
<div class="panel-body">
|
<div class="panel-body">
|
||||||
<form name="appForm" role="form" action="verify_admin.php" method="GET">
|
<form name="appForm" role="form" onsubmit="return submitForm()" action="verify_admin.php" method="GET">
|
||||||
<div class="row">
|
<?php
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
if (isset($config["operationMode"]) && $config["operationMode"] === "local") {
|
||||||
<div class="form-group">
|
// this values will not be used when using the register operation type
|
||||||
<input type="text" id="first_name" class="form-control input-sm"
|
?>
|
||||||
value="<?php echo $first_name; ?>" disabled=true>
|
<div class="row">
|
||||||
</div>
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
</div>
|
<div class="form-group">
|
||||||
<div class="col-xs-6 col-sm-6 col-md-6">
|
<input type="text" id="first_name" class="form-control input-sm"
|
||||||
<div class="form-group">
|
value="<?php echo $first_name; ?>" disabled=true>
|
||||||
<input type="text" id="last_name" class="form-control input-sm"
|
</div>
|
||||||
value="<?php echo $last_name; ?>" disabled=true>
|
</div>
|
||||||
</div>
|
<div class="col-xs-6 col-sm-6 col-md-6">
|
||||||
</div>
|
<div class="form-group">
|
||||||
</div>
|
<input type="text" id="last_name" class="form-control input-sm"
|
||||||
|
value="<?php echo $last_name; ?>" disabled=true>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
</div>
|
||||||
|
<?php } ?>
|
||||||
|
<div class="form-group">
|
||||||
|
<input type="text" id="note" class="form-control input-sm" value="<?php echo $note; ?>" disabled=true>
|
||||||
|
</div>
|
||||||
|
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="text" id="note" class="form-control input-sm" value="<?php echo $note; ?>" disabled=true>
|
<input type="text" id="username" class="form-control input-sm"
|
||||||
</div>
|
value="<?php echo $username; ?>" disabled=true>
|
||||||
|
</div>
|
||||||
<div class="form-group">
|
<div class="form-group">
|
||||||
<input type="text" id="username" class="form-control input-sm"
|
<input type="hidden" name="decline_reason" class="form-control input-sm"
|
||||||
value="<?php echo $username; ?>" disabled=true>
|
placeholder="<?php echo $language["DECLINE_REASON"]; ?>">
|
||||||
</div>
|
</div>
|
||||||
<input type="hidden" name="t" id="token" value="<?php echo $token; ?>">
|
<input type="hidden" name="t" id="token" value="<?php echo $token; ?>">
|
||||||
<input type="submit" name="allow" value="Bestätigen" class="btn btn-info btn-block">
|
<div class="form-group">
|
||||||
<input type="submit" name="deny" value="Ablehnen" class="btn btn-info btn-block">
|
<input type="radio" name="d" value="allow"><?php echo $language["ACCEPT"]; ?>
|
||||||
|
<input type="radio" name="d" value="deny"><?php echo $language["DECLINE"]; ?>
|
||||||
</form>
|
</div>
|
||||||
</div>
|
<input type="submit" value="<?php echo $language["SUBMIT"]; ?>" class="btn btn-info btn-block">
|
||||||
</div>
|
</form>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
</div>
|
</div>
|
||||||
<script type="text/javascript">
|
</div>
|
||||||
|
</div>
|
||||||
<?php
|
<script type="text/javascript">
|
||||||
} // else - no action provided
|
var rad = document.appForm.d;
|
||||||
} catch (Exception $e) {
|
function isSelected() {
|
||||||
print("<title>" . $language["REGISTRATION_FAILED"] . "</title>");
|
for (var i=0; i<rad.length; i++)
|
||||||
print("</head><body>");
|
if (rad[i].checked)
|
||||||
print("<h1>" . $language["REGISTRATION_FAILED"] . "</h1>");
|
return true;
|
||||||
if (isset($language[$e->getMessage()])) {
|
return false;
|
||||||
print("<p>" . $language[$e->getMessage()] . "</p>");
|
}
|
||||||
} else {
|
function submitForm() {
|
||||||
print("<p>" . $e->getMessage() . "</p>");
|
if (isSelected()) {
|
||||||
}
|
return true;
|
||||||
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">Zur Registrierungsseite</a>");
|
}
|
||||||
}
|
alert("<?php echo $language["MAKE_A_SELECTION"];?>");
|
||||||
?>
|
return false;
|
||||||
</body>
|
}
|
||||||
|
for(var i = 0; i < rad.length; i++) {
|
||||||
|
rad[i].onclick = function() {
|
||||||
|
if (this.value === "deny") {
|
||||||
|
document.appForm.decline_reason.type = "text";
|
||||||
|
} else {
|
||||||
|
document.appForm.decline_reason.type = "hidden";
|
||||||
|
}
|
||||||
|
};
|
||||||
|
}
|
||||||
|
</script>
|
||||||
|
<?php
|
||||||
|
} // else - no action provided
|
||||||
|
} catch (Exception $e) {
|
||||||
|
print("<title>" . $language["REGISTRATION_FAILED"] . "</title>");
|
||||||
|
print("</head><body>");
|
||||||
|
print("<h1>" . $language["REGISTRATION_FAILED"] . "</h1>");
|
||||||
|
if (isset($language[$e->getMessage()])) {
|
||||||
|
print("<p>" . $language[$e->getMessage()] . "</p>");
|
||||||
|
} else {
|
||||||
|
print("<p>" . $e->getMessage() . "</p>");
|
||||||
|
}
|
||||||
|
print("<a href=\"" . $config["webroot"] . "/index.php" . "\">" . $language["JUMP_TO_HOMEPAGE"] . "</a>");
|
||||||
|
}
|
||||||
|
?>
|
||||||
|
</body>
|
||||||
</html>
|
</html>
|
||||||
|
|||||||
Reference in New Issue
Block a user