Compare commits
1 Commits
fix_new_ap
...
ffce2fc28b
| Author | SHA1 | Date | |
|---|---|---|---|
| ffce2fc28b |
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -13,8 +14,8 @@
|
|||||||
* See the License for the specific language governing permissions and
|
* See the License for the specific language governing permissions and
|
||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
class MatrixConnection
|
class MatrixConnection {
|
||||||
{
|
|
||||||
private $hs;
|
private $hs;
|
||||||
private $at;
|
private $at;
|
||||||
|
|
||||||
@@ -33,7 +34,7 @@ class MatrixConnection
|
|||||||
if (!$message) {
|
if (!$message) {
|
||||||
error_log("no message to send");
|
error_log("no message to send");
|
||||||
return false;
|
return false;
|
||||||
} elseif(is_array($message)) {
|
} elseif (is_array($message)) {
|
||||||
$send_message = $message;
|
$send_message = $message;
|
||||||
} elseif ($message instanceof MatrixMessage) {
|
} elseif ($message instanceof MatrixMessage) {
|
||||||
$send_message = $message->get_object();
|
$send_message = $message->get_object();
|
||||||
@@ -42,8 +43,8 @@ class MatrixConnection
|
|||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
|
|
||||||
$url="https://".$this->hs."/_matrix/client/r0/rooms/"
|
$url = "https://" . $this->hs . "/_matrix/client/r0/rooms/"
|
||||||
. urlencode($room_id) ."/send/m.room.message?access_token=".$this->at;
|
. urlencode($room_id) . "/send/m.room.message?access_token=" . $this->at;
|
||||||
$handle = curl_init($url);
|
$handle = curl_init($url);
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
||||||
@@ -65,10 +66,10 @@ class MatrixConnection
|
|||||||
|
|
||||||
function hasUser($username) {
|
function hasUser($username) {
|
||||||
if (!$username) {
|
if (!$username) {
|
||||||
throw new Exception ("no user given to lookup");
|
throw new Exception("no user given to lookup");
|
||||||
}
|
}
|
||||||
|
|
||||||
$url = "https://".$this->hs."/_matrix/client/r0/profile/@" . $username . ":" . $this->hs;
|
$url = "https://" . $this->hs . "/_matrix/client/r0/profile/@" . $username . ":" . $this->hs;
|
||||||
$handle = curl_init($url);
|
$handle = curl_init($url);
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
||||||
@@ -94,7 +95,7 @@ class MatrixConnection
|
|||||||
"password" => $password,
|
"password" => $password,
|
||||||
"mac" => $mac,
|
"mac" => $mac,
|
||||||
);
|
);
|
||||||
$url = "https://".$this->hs."/_matrix/client/v2_alpha/register";
|
$url = "https://" . $this->hs . "/_matrix/client/v2_alpha/register";
|
||||||
$handle = curl_init($url);
|
$handle = curl_init($url);
|
||||||
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
curl_setopt($handle, CURLOPT_RETURNTRANSFER, true);
|
||||||
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
curl_setopt($handle, CURLOPT_CONNECTTIMEOUT, 5);
|
||||||
@@ -132,10 +133,11 @@ class MatrixConnection
|
|||||||
}
|
}
|
||||||
return $response;
|
return $response;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class MatrixMessage
|
class MatrixMessage {
|
||||||
{
|
|
||||||
private $message;
|
private $message;
|
||||||
|
|
||||||
function __construct() {
|
function __construct() {
|
||||||
@@ -154,7 +156,7 @@ class MatrixMessage
|
|||||||
$this->message["body"] = $body;
|
$this->message["body"] = $body;
|
||||||
}
|
}
|
||||||
|
|
||||||
function set_formatted_body($fbody, $format="org.matrix.custom.html") {
|
function set_formatted_body($fbody, $format = "org.matrix.custom.html") {
|
||||||
$this->message["formatted_body"] = $fbody;
|
$this->message["formatted_body"] = $fbody;
|
||||||
$this->message["format"] = $format;
|
$this->message["format"] = $format;
|
||||||
}
|
}
|
||||||
@@ -162,5 +164,7 @@ class MatrixMessage
|
|||||||
function get_object() {
|
function get_object() {
|
||||||
return $this->message;
|
return $this->message;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
?>
|
?>
|
||||||
|
|||||||
@@ -1,26 +1,22 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
$config = [
|
$config = [
|
||||||
"homeserver" => "example.com",
|
"homeserver" => "example.com",
|
||||||
"access_token" => "To be used for sending the registration notification",
|
"access_token" => "To be used for sending the registration notification",
|
||||||
|
|
||||||
// Which e-mail-adresse shall the bot use to send e-mails?
|
// Which e-mail-adresse shall the bot use to send e-mails?
|
||||||
"register_email" => 'register_bot@example.com',
|
"register_email" => 'register_bot@example.com',
|
||||||
// Where should the bot post registration requests to?
|
// Where should the bot post registration requests to?
|
||||||
"register_room" => '$registerRoomID:example.com',
|
"register_room" => '$registerRoomID:example.com',
|
||||||
|
|
||||||
// Where is the public part of the bot located? make sure you have a / at the end
|
// Where is the public part of the bot located? make sure you have a / at the end
|
||||||
"webroot" => "https://myregisterdomain.net/",
|
"webroot" => "https://myregisterdomain.net/",
|
||||||
|
|
||||||
// optional: Do you have a place where howTo's are located? If not leave this value out
|
// optional: Do you have a place where howTo's are located? If not leave this value out
|
||||||
"howToURL" => "https://my-url-for-storing-howTos.net",
|
"howToURL" => "https://my-url-for-storing-howTos.net",
|
||||||
|
|
||||||
// When you want to collect the password on registration set this to true
|
// When you want to collect the password on registration set this to true
|
||||||
"getPasswordOnRegistration" => false,
|
"getPasswordOnRegistration" => false,
|
||||||
|
|
||||||
// to define where the data should be stored:
|
// to define where the data should be stored:
|
||||||
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
"databaseURI" => "sqlite:" . dirname(__FILE__) . "/db_file.sqlite",
|
||||||
// credentials for sqlite not used
|
// credentials for sqlite not used
|
||||||
"databaseUser" => "dbUser123",
|
"databaseUser" => "dbUser123",
|
||||||
"databasePass" => "secretPassword",
|
"databasePass" => "secretPassword",
|
||||||
]
|
]
|
||||||
?>
|
?>
|
||||||
|
|||||||
24
cron.php
24
cron.php
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -18,12 +19,12 @@ require_once("mail_templates.php");
|
|||||||
require_once("database.php");
|
require_once("database.php");
|
||||||
|
|
||||||
$sql = "SELECT id, first_name, last_name, username, email, state, note, verify_token, admin_token FROM registrations "
|
$sql = "SELECT id, first_name, last_name, username, email, state, note, verify_token, admin_token FROM registrations "
|
||||||
."WHERE state = ". RegisterState::PendingEmailSend
|
. "WHERE state = " . RegisterState::PendingEmailSend
|
||||||
. " OR state = " . RegisterState::PendingAdminSend
|
. " OR state = " . RegisterState::PendingAdminSend
|
||||||
. " OR state = " . RegisterState::PendingRegistration
|
. " OR state = " . RegisterState::PendingRegistration
|
||||||
. " OR state = " . RegisterState::PendingSendRegistrationMail
|
. " OR state = " . RegisterState::PendingSendRegistrationMail
|
||||||
. " OR state = " . RegisterState::RegistrationDeclined
|
. " OR state = " . RegisterState::RegistrationDeclined
|
||||||
. " OR state = " . RegisterState::AllDone . ";";
|
. " OR state = " . RegisterState::AllDone . ";";
|
||||||
foreach ($mx_db->query($sql) as $row) {
|
foreach ($mx_db->query($sql) as $row) {
|
||||||
$first_name = $row["first_name"];
|
$first_name = $row["first_name"];
|
||||||
$last_name = $row["last_name"];
|
$last_name = $row["last_name"];
|
||||||
@@ -36,15 +37,12 @@ foreach ($mx_db->query($sql) as $row) {
|
|||||||
case RegisterState::PendingEmailSend:
|
case RegisterState::PendingEmailSend:
|
||||||
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
$verify_url = $config["webroot"] . "/verify.php?t=" . $row["verify_token"];
|
||||||
$success = send_mail_pending_verification(
|
$success = send_mail_pending_verification(
|
||||||
$config["homeserver"],
|
$config["homeserver"], $row["first_name"] . " " . $row["last_name"], $row["email"], $verify_url);
|
||||||
$row["first_name"] . " " . $row["last_name"],
|
|
||||||
$row["email"],
|
|
||||||
$verify_url);
|
|
||||||
|
|
||||||
if ($success) {
|
if ($success) {
|
||||||
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
$mx_db->setRegistrationStateById(RegisterState::PendingEmailVerify, $row["id"]);
|
||||||
} else {
|
} else {
|
||||||
throw new Exception("Could not send mail to ".$row["first_name"]." ".$row["last_name"]."(".$row["id"].")");
|
throw new Exception("Could not send mail to " . $row["first_name"] . " " . $row["last_name"] . "(" . $row["id"] . ")");
|
||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case RegisterState::PendingAdminSend:
|
case RegisterState::PendingAdminSend:
|
||||||
@@ -57,7 +55,7 @@ foreach ($mx_db->query($sql) as $row) {
|
|||||||
. "Zum Bearbeiten hier klicken:\r\n" . $adminUrl);
|
. "Zum Bearbeiten hier klicken:\r\n" . $adminUrl);
|
||||||
$mxMsg->set_formatted_body($first_name . ' ' . $last_name . " möchte sich registrieren und hat folgende Notiz hinterlassen:<br />"
|
$mxMsg->set_formatted_body($first_name . ' ' . $last_name . " möchte sich registrieren und hat folgende Notiz hinterlassen:<br />"
|
||||||
. $row["note"] . "<br />"
|
. $row["note"] . "<br />"
|
||||||
. "Zum Bearbeiten <a href=\"". $adminUrl . "\">hier</a> klicken");
|
. "Zum Bearbeiten <a href=\"" . $adminUrl . "\">hier</a> klicken");
|
||||||
$mxMsg->set_type("m.text");
|
$mxMsg->set_type("m.text");
|
||||||
$response = $mxConn->send($config["register_room"], $mxMsg);
|
$response = $mxConn->send($config["register_room"], $mxMsg);
|
||||||
|
|
||||||
@@ -66,7 +64,7 @@ foreach ($mx_db->query($sql) as $row) {
|
|||||||
|
|
||||||
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
send_mail_pending_approval($config["homeserver"], $first_name . " " . $last_name, $email);
|
||||||
} else {
|
} else {
|
||||||
throw new Exception("Could not send notification for ".$row["first_name"]." ".$row["last_name"]."(".$row["id"].") to admins.");
|
throw new Exception("Could not send notification for " . $row["first_name"] . " " . $row["last_name"] . "(" . $row["id"] . ") to admins.");
|
||||||
}
|
}
|
||||||
break;
|
break;
|
||||||
case RegisterState::PendingRegistration:
|
case RegisterState::PendingRegistration:
|
||||||
|
|||||||
31
database.php
31
database.php
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -15,11 +16,11 @@
|
|||||||
*/
|
*/
|
||||||
require_once("config.php");
|
require_once("config.php");
|
||||||
if (!isset($config["databaseURI"])) {
|
if (!isset($config["databaseURI"])) {
|
||||||
throw new Exception ("malformed configuration: databaseURI not defined");
|
throw new Exception("malformed configuration: databaseURI not defined");
|
||||||
}
|
}
|
||||||
|
|
||||||
abstract class RegisterState
|
abstract class RegisterState {
|
||||||
{
|
|
||||||
// Sending an E-Mail failed in the first attempt. Will retry later
|
// Sending an E-Mail failed in the first attempt. Will retry later
|
||||||
const PendingEmailSend = 0;
|
const PendingEmailSend = 0;
|
||||||
// User got a mail. We wait for it to verfiy
|
// User got a mail. We wait for it to verfiy
|
||||||
@@ -30,21 +31,19 @@ abstract class RegisterState
|
|||||||
const PendingAdminVerify = 6;
|
const PendingAdminVerify = 6;
|
||||||
// Registration failed on first attempt. Will retry
|
// Registration failed on first attempt. Will retry
|
||||||
const PendingRegistration = 7;
|
const PendingRegistration = 7;
|
||||||
|
|
||||||
// in this case we have to reset the password of the user (or should we store it for this case?)
|
// in this case we have to reset the password of the user (or should we store it for this case?)
|
||||||
const PendingSendRegistrationMail = 8;
|
const PendingSendRegistrationMail = 8;
|
||||||
|
|
||||||
// State to allow persisting in the database although an admin declined it.
|
// State to allow persisting in the database although an admin declined it.
|
||||||
// Will be removed regularly
|
// Will be removed regularly
|
||||||
const RegistrationAccepted = 7;
|
const RegistrationAccepted = 7;
|
||||||
const RegistrationDeclined = 13;
|
const RegistrationDeclined = 13;
|
||||||
|
|
||||||
// User got successfully registered. Will be cleaned up later
|
// User got successfully registered. Will be cleaned up later
|
||||||
const AllDone = 100;
|
const AllDone = 100;
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
class mxDatabase
|
class mxDatabase {
|
||||||
{
|
|
||||||
private $db = NULL;
|
private $db = NULL;
|
||||||
|
|
||||||
/**
|
/**
|
||||||
@@ -164,6 +163,7 @@ class mxDatabase
|
|||||||
}
|
}
|
||||||
return false;
|
return false;
|
||||||
}
|
}
|
||||||
|
|
||||||
function userRegistered($username) {
|
function userRegistered($username) {
|
||||||
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
$sql = "SELECT COUNT(*) FROM logins WHERE localpart = '" . $username . "' LIMIT 1;";
|
||||||
$res = $this->db->query($sql);
|
$res = $this->db->query($sql);
|
||||||
@@ -197,11 +197,11 @@ class mxDatabase
|
|||||||
|
|
||||||
$this->db->exec("INSERT INTO registrations
|
$this->db->exec("INSERT INTO registrations
|
||||||
(first_name, last_name, username, note, email, verify_token, admin_token)
|
(first_name, last_name, username, note, email, verify_token, admin_token)
|
||||||
VALUES ('" . $first_name."','" . $last_name . "','" . $username . "','" . $note . "','"
|
VALUES ('" . $first_name . "','" . $last_name . "','" . $username . "','" . $note . "','"
|
||||||
. $email."','" .$verify_token."','" .$admin_token."')");
|
. $email . "','" . $verify_token . "','" . $admin_token . "')");
|
||||||
|
|
||||||
return [
|
return [
|
||||||
"verify_token"=> $verify_token,
|
"verify_token" => $verify_token,
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -290,10 +290,10 @@ class mxDatabase
|
|||||||
|
|
||||||
// generate a password with 10 characters
|
// generate a password with 10 characters
|
||||||
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
$password = bin2hex(openssl_random_pseudo_bytes(5));
|
||||||
$password_hash = password_hash($password, PASSWORD_BCRYPT, ["cost"=>12]);
|
$password_hash = password_hash($password, PASSWORD_BCRYPT, ["cost" => 12]);
|
||||||
|
|
||||||
$sql = "INSERT INTO logins (first_name, last_name, localpart, password_hash, email) VALUES "
|
$sql = "INSERT INTO logins (first_name, last_name, localpart, password_hash, email) VALUES "
|
||||||
. "('" . $first_name."','" . $last_name . "','" . $username . "','"
|
. "('" . $first_name . "','" . $last_name . "','" . $username . "','"
|
||||||
. $password_hash . "','" . $email . "');";
|
. $password_hash . "','" . $email . "');";
|
||||||
|
|
||||||
if ($this->db->exec($sql)) {
|
if ($this->db->exec($sql)) {
|
||||||
@@ -305,11 +305,11 @@ class mxDatabase
|
|||||||
function updatePassword($localpart, $old_password, $new_password) {
|
function updatePassword($localpart, $old_password, $new_password) {
|
||||||
$user = $this->getUserForLogin($localpart, $old_password);
|
$user = $this->getUserForLogin($localpart, $old_password);
|
||||||
if ($user == NULL) {
|
if ($user == NULL) {
|
||||||
throw new Exception ("user with that credentials not found");
|
throw new Exception("user with that credentials not found");
|
||||||
}
|
}
|
||||||
|
|
||||||
// The credentials were fine. So now set the new password
|
// The credentials were fine. So now set the new password
|
||||||
$password_hash = password_hash($new_password, PASSWORD_BCRYPT, ["cost"=>12]);
|
$password_hash = password_hash($new_password, PASSWORD_BCRYPT, ["cost" => 12]);
|
||||||
|
|
||||||
$sql = "UPDATE logins SET password_hash = '" . $password_hash . "'"
|
$sql = "UPDATE logins SET password_hash = '" . $password_hash . "'"
|
||||||
. "WHERE localpart = '" . $localpart . "'";
|
. "WHERE localpart = '" . $localpart . "'";
|
||||||
@@ -359,6 +359,7 @@ class mxDatabase
|
|||||||
}
|
}
|
||||||
return $result;
|
return $result;
|
||||||
}
|
}
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
if (!isset($mx_db)) {
|
if (!isset($mx_db)) {
|
||||||
|
|||||||
19
helpers.php
19
helpers.php
@@ -1,15 +1,30 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Copyright 2018 Matthias Kesler
|
||||||
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
* you may not use this file except in compliance with the License.
|
||||||
|
* You may obtain a copy of the License at
|
||||||
|
*
|
||||||
|
* http://www.apache.org/licenses/LICENSE-2.0
|
||||||
|
*
|
||||||
|
* Unless required by applicable law or agreed to in writing, software
|
||||||
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
||||||
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
||||||
|
* See the License for the specific language governing permissions and
|
||||||
|
* limitations under the License.
|
||||||
|
*/
|
||||||
function stripLocalpart($mxid) {
|
function stripLocalpart($mxid) {
|
||||||
$localpart = NULL;
|
$localpart = NULL;
|
||||||
if (!empty($mxid)) {
|
if (!empty($mxid)) {
|
||||||
// A mxid would start with an @ so we start at the 2. position
|
// A mxid would start with an @ so we start at the 2. position
|
||||||
$sepPos = strpos($mxid,':', 1);
|
$sepPos = strpos($mxid, ':', 1);
|
||||||
if ($sepPos === false) {
|
if ($sepPos === false) {
|
||||||
// : not found. Assume mxid is localpart
|
// : not found. Assume mxid is localpart
|
||||||
// TODO: further checks
|
// TODO: further checks
|
||||||
$localpart = $mxid;
|
$localpart = $mxid;
|
||||||
} else {
|
} else {
|
||||||
$localpart = substr($mxid, 1, strpos($mxid,':') - 1 );
|
$localpart = substr($mxid, 1, strpos($mxid, ':') - 1);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
return $localpart;
|
return $localpart;
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,7 +15,7 @@
|
|||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
require_once("../database.php");
|
require_once("../database.php");
|
||||||
$response=[
|
$response = [
|
||||||
"limited" => false,
|
"limited" => false,
|
||||||
"result" => [],
|
"result" => [],
|
||||||
];
|
];
|
||||||
@@ -41,7 +42,6 @@ try {
|
|||||||
default:
|
default:
|
||||||
throw new Exception('unknown type for "by" param');
|
throw new Exception('unknown type for "by" param');
|
||||||
}
|
}
|
||||||
|
|
||||||
} catch (Exception $e) {
|
} catch (Exception $e) {
|
||||||
error_log("failed with error: " . $e->getMessage());
|
error_log("failed with error: " . $e->getMessage());
|
||||||
$response["error"] = $e->getMessage();
|
$response["error"] = $e->getMessage();
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
|||||||
@@ -53,9 +53,7 @@ try {
|
|||||||
|
|
||||||
require_once("../database.php");
|
require_once("../database.php");
|
||||||
if (!$mx_db->updatePassword(
|
if (!$mx_db->updatePassword(
|
||||||
$localpart,
|
$localpart, $input["auth"]["password"], $input["new_password"]
|
||||||
$input["auth"]["password"],
|
|
||||||
$input["new_password"]
|
|
||||||
)) {
|
)) {
|
||||||
throw new Exception("invalid credentials or another error while updating");
|
throw new Exception("invalid credentials or another error while updating");
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -20,11 +21,15 @@ $response = [
|
|||||||
];
|
];
|
||||||
|
|
||||||
require_once("../database.php");
|
require_once("../database.php");
|
||||||
|
|
||||||
abstract class LoginRequester {
|
abstract class LoginRequester {
|
||||||
|
|
||||||
const UNDEFINED = 0;
|
const UNDEFINED = 0;
|
||||||
const MXISD = 1;
|
const MXISD = 1;
|
||||||
const RestAuth = 2;
|
const RestAuth = 2;
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
$loginRequester = LoginRequester::UNDEFINED;
|
$loginRequester = LoginRequester::UNDEFINED;
|
||||||
|
|
||||||
try {
|
try {
|
||||||
@@ -56,7 +61,7 @@ try {
|
|||||||
}
|
}
|
||||||
|
|
||||||
if (empty($localpart)) {
|
if (empty($localpart)) {
|
||||||
throw new Exception ("localpart cannot be identified");
|
throw new Exception("localpart cannot be identified");
|
||||||
}
|
}
|
||||||
|
|
||||||
$password = NULL;
|
$password = NULL;
|
||||||
@@ -64,7 +69,7 @@ try {
|
|||||||
$password = $input["user"]["password"];
|
$password = $input["user"]["password"];
|
||||||
}
|
}
|
||||||
if (empty($password)) {
|
if (empty($password)) {
|
||||||
throw new Exception ("password is not present");
|
throw new Exception("password is not present");
|
||||||
}
|
}
|
||||||
|
|
||||||
$user = $mx_db->getUserForLogin($localpart, $password);
|
$user = $mx_db->getUserForLogin($localpart, $password);
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -14,10 +15,10 @@
|
|||||||
* limitations under the License.
|
* limitations under the License.
|
||||||
*/
|
*/
|
||||||
$lang = "de-de";
|
$lang = "de-de";
|
||||||
if(isset($_GET['lang'])){
|
if (isset($_GET['lang'])) {
|
||||||
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
$lang = filter_var($_GET['lang'], FILTER_SANITIZE_STRING);
|
||||||
}
|
}
|
||||||
$lang_file = dirname(__FILE__) . "/lang/lang.".$lang.".php";
|
$lang_file = dirname(__FILE__) . "/lang/lang." . $lang . ".php";
|
||||||
if (!file_exists($lang_file)) {
|
if (!file_exists($lang_file)) {
|
||||||
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
error_log("Translation for " . $lang . " not found. Fallback to 'de-de'");
|
||||||
$lang = "de-de";
|
$lang = "de-de";
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
<?php
|
<?php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* Copyright 2018 Matthias Kesler
|
* Copyright 2018 Matthias Kesler
|
||||||
* Licensed under the Apache License, Version 2.0 (the "License");
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
||||||
@@ -39,7 +40,7 @@ Danach ist eine Re-Registrierung mit deinem gewünschten Nutzernamen für andere
|
|||||||
Vielen Dank für dein Verständnis.
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
Das Administratoren-Team von " . $homeserver;
|
||||||
return send_mail($receiver, $subject, $body );
|
return send_mail($receiver, $subject, $body);
|
||||||
}
|
}
|
||||||
|
|
||||||
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
function send_mail_pending_approval($homeserver, $user, $receiver) {
|
||||||
@@ -53,7 +54,7 @@ Du bekommst eine weitere E-Mail, sobald deine Registrierung bestätigt oder able
|
|||||||
Vielen Dank für dein Verständnis.
|
Vielen Dank für dein Verständnis.
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
Das Administratoren-Team von " . $homeserver;
|
||||||
return send_mail($receiver, $subject, $body );
|
return send_mail($receiver, $subject, $body);
|
||||||
}
|
}
|
||||||
|
|
||||||
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
function send_mail_registration_allowed_but_failed($homeserver, $user, $receiver) {
|
||||||
@@ -68,7 +69,6 @@ Wir melden uns, wenn die Registrierung erfolgreich war.
|
|||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
Das Administratoren-Team von " . $homeserver;
|
||||||
return send_mail($receiver, $subject, $body);
|
return send_mail($receiver, $subject, $body);
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
function send_mail_registration_success($homeserver, $user, $receiver, $username, $password, $howToURL) {
|
||||||
@@ -84,25 +84,25 @@ Passwort: $password
|
|||||||
Hinweis: Das Passwort kannst du aktuell über die App selbst ändern. Auch wenn das Passwort nirgends
|
Hinweis: Das Passwort kannst du aktuell über die App selbst ändern. Auch wenn das Passwort nirgends
|
||||||
im Klartext gespeichert wird, kann jemand Zugriff auf diese Mail erlangen und so den Zugriff bekommen.
|
im Klartext gespeichert wird, kann jemand Zugriff auf diese Mail erlangen und so den Zugriff bekommen.
|
||||||
";
|
";
|
||||||
/*
|
/*
|
||||||
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
Wichtig: Bitte ändere das Passwort direkt nach der Anmeldung.
|
||||||
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
Es wird zwar von unserer Seite nicht gespeichert, doch fremde könnten Zugriff auf diese E-Mail
|
||||||
erhalten und so deinen Account kompromittieren.
|
erhalten und so deinen Account kompromittieren.
|
||||||
*/
|
*/
|
||||||
if (!empty($howToURL)) {
|
if (!empty($howToURL)) {
|
||||||
$body .= "
|
$body .= "
|
||||||
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
Zu weiteren Hilfestellungen findest du hier eine Auflistung von verschiedenen
|
||||||
Anleitungen zu verschiedenen Clients:
|
Anleitungen zu verschiedenen Clients:
|
||||||
$howToURL\n";
|
$howToURL\n";
|
||||||
}
|
}
|
||||||
$body .= "
|
$body .= "
|
||||||
Viel Spaß bei der Verwendung von $homeserver.
|
Viel Spaß bei der Verwendung von $homeserver.
|
||||||
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
Bei Fragen findest du nach der Anmeldung ein paar Räume in denen du sie stellen kannst.
|
||||||
|
|
||||||
Das Administratoren-Team von " . $homeserver;
|
Das Administratoren-Team von " . $homeserver;
|
||||||
return send_mail($receiver, $subject, $body);
|
return send_mail($receiver, $subject, $body);
|
||||||
|
|
||||||
}
|
}
|
||||||
|
|
||||||
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
function send_mail_registration_decline($homeserver, $user, $receiver, $reason) {
|
||||||
$subject = "Registrierung auf $homeserver abgelehnt.";
|
$subject = "Registrierung auf $homeserver abgelehnt.";
|
||||||
$body = "Guten Tag " . $user . ",
|
$body = "Guten Tag " . $user . ",
|
||||||
@@ -116,6 +116,7 @@ Deine Registrierungsanfrage wurde durch die Administratoren abgelehnt.\n";
|
|||||||
}
|
}
|
||||||
|
|
||||||
$body .= "\nDas Administratoren-Team von " . $homeserver;
|
$body .= "\nDas Administratoren-Team von " . $homeserver;
|
||||||
return send_mail($receiver, $subject, $body );
|
return send_mail($receiver, $subject, $body);
|
||||||
}
|
}
|
||||||
|
|
||||||
?>
|
?>
|
||||||
|
|||||||
Reference in New Issue
Block a user