Subversion Repositories oidplus

Rev

Rev 294 | Go to most recent revision | Blame | Last modification | View Log | RSS feed

  1. <?php
  2.  
  3. /*
  4.  * OIDplus 2.0
  5.  * Copyright 2019 Daniel Marschall, ViaThinkSoft
  6.  *
  7.  * Licensed under the Apache License, Version 2.0 (the "License");
  8.  * you may not use this file except in compliance with the License.
  9.  * You may obtain a copy of the License at
  10.  *
  11.  *     http://www.apache.org/licenses/LICENSE-2.0
  12.  *
  13.  * Unless required by applicable law or agreed to in writing, software
  14.  * distributed under the License is distributed on an "AS IS" BASIS,
  15.  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  16.  * See the License for the specific language governing permissions and
  17.  * limitations under the License.
  18.  */
  19.  
  20. // TODO: Translate
  21.  
  22. require_once __DIR__ . '/../../../includes/oidplus.inc.php';
  23.  
  24. ob_start(); // allow cookie headers to be sent
  25.  
  26. header('Content-Type:text/html; charset=UTF-8');
  27.  
  28. OIDplus::init(true);
  29.  
  30. ob_start();
  31.  
  32. $step = 1;
  33. $errors_happened = false;
  34. $edits_possible = true;
  35.  
  36. ?><!DOCTYPE html>
  37. <html lang="en">
  38.  
  39. <head>
  40.         <title>OIDplus Setup</title>
  41.         <meta name="robots" content="noindex">
  42.         <meta name="viewport" content="width=device-width, initial-scale=1.0">
  43.         <link rel="stylesheet" href="../../../setup/setup.css">
  44.         <?php
  45.         if (OIDplus::baseConfig()->getValue('RECAPTCHA_ENABLED', false)) {
  46.         ?>
  47.         <script src="https://www.google.com/recaptcha/api.js"></script>
  48.         <?php
  49.         }
  50.         ?>
  51. </head>
  52.  
  53. <body>
  54.  
  55. <h1>OIDplus Setup - Initial Settings</h1>
  56.  
  57. <p>If you can read this, then your database login credentials are correct.</p>
  58.  
  59. <p>The following settings need to be configured once.<br>
  60. After setup is complete, you can change all these settings
  61. through the admin login area, if necessary.</p>
  62.  
  63. <form method="POST" action="oobe.php">
  64. <input type="hidden" name="sent" value="1">
  65.  
  66. <?php
  67. if (OIDplus::baseConfig()->getValue('RECAPTCHA_ENABLED', false)) {
  68.         echo '<p><u>Step '.($step++).': Solve CAPTCHA</u></p>';
  69.         echo '<noscript>';
  70.         echo '<p><font color="red">You need to enable JavaScript to solve the CAPTCHA.</font></p>';
  71.         echo '</noscript>';
  72.         echo '<script> grecaptcha.render(document.getElementById("g-recaptcha"), { "sitekey" : "'.OIDplus::baseConfig()->getValue('RECAPTCHA_PUBLIC', '').'" }); </script>';
  73.         echo '<p>Before logging in, please solve the following CAPTCHA</p>';
  74.         echo '<p>If the CAPTCHA does not work (e.g. because of wrong keys, please run <a href="<?php echo OIDplus::getSystemUrl(); ?>setup/">setup part 1</a> again or edit userdata/baseconfig/config.inc.php).</p>';
  75.         echo '<div id="g-recaptcha" class="g-recaptcha" data-sitekey="'.OIDplus::baseConfig()->getValue('RECAPTCHA_PUBLIC', '').'"></div>';
  76.  
  77.         if (isset($_REQUEST['sent'])) {
  78.                 $secret=OIDplus::baseConfig()->getValue('RECAPTCHA_PRIVATE', '');
  79.                 $response=$_POST["g-recaptcha-response"];
  80.                 $verify=file_get_contents("https://www.google.com/recaptcha/api/siteverify?secret={$secret}&response={$response}");
  81.                 $captcha_success=json_decode($verify);
  82.                 if ($captcha_success->success==false) {
  83.                         echo '<p><font color="red"><b>CAPTCHA not successfully verified</b></font></p>';
  84.                         $errors_happened = true;
  85.                         $edits_possible = false;
  86.                 }
  87.         }
  88. }
  89. ?>
  90.  
  91. <p><u>Step <?php echo $step++; ?>: Authenticate</u></p>
  92.  
  93. <p>Please enter the administrator password you have entered before.</p>
  94.  
  95. <p><input type="password" name="admin_password" value=""> (<a href="<?php echo OIDplus::getSystemUrl(); ?>setup/">Forgot?</a>) <?php
  96.  
  97. if (isset($_REQUEST['sent'])) {
  98.         if (!OIDplusAuthUtils::adminCheckPassword($_REQUEST['admin_password'])) {
  99.                 $errors_happened = true;
  100.                 $edits_possible = false;
  101.                 echo '<font color="red"><b>Wrong password</b></font>';
  102.         }
  103. }
  104.  
  105. ?></p>
  106.  
  107. <?php
  108. #------------------------
  109. $do_edits = isset($_REQUEST['sent']) && $edits_possible;;
  110. #------------------------
  111.  
  112. # ---
  113.  
  114. function step_admin_email($step, $do_edits, &$errors_happened) {
  115.         echo "<p><u>Step $step: Please enter the email address of the system administrator</u></p>";
  116.         echo '<input type="text" name="admin_email" value="';
  117.  
  118.         $msg = '';
  119.         if (isset($_REQUEST['sent'])) {
  120.                 echo htmlentities($_REQUEST['admin_email']);
  121.                 if ($do_edits) {
  122.                         try {
  123.                                 OIDplus::config()->setValue('admin_email', $_REQUEST['admin_email']);
  124.                         } catch (Exception $e) {
  125.                                 $msg = $e->getMessage();
  126.                                 $errors_happened = true;
  127.                         }
  128.                 }
  129.         } else {
  130.                 echo htmlentities(OIDplus::config()->getValue('admin_email'));
  131.         }
  132.  
  133.         echo '" size="25"> <font color="red"><b>'.$msg.'</b></font>';
  134. }
  135. step_admin_email($step++, $do_edits, $errors_happened);
  136.  
  137. # ---
  138.  
  139. function step_system_title($step, $do_edits, &$errors_happened) {
  140.         echo "<p><u>Step $step: What title should your Registration Authority / OIDplus instance have?</u></p>";
  141.         echo '<input type="text" name="system_title" value="';
  142.  
  143.         $msg = '';
  144.         if (isset($_REQUEST['sent'])) {
  145.                 echo htmlentities($_REQUEST['system_title']);
  146.                 if ($do_edits) {
  147.                         try {
  148.                                 OIDplus::config()->setValue('system_title', $_REQUEST['system_title']);
  149.                         } catch (Exception $e) {
  150.                                 $msg = $e->getMessage();
  151.                                 $errors_happened = true;
  152.                         }
  153.                 }
  154.         } else {
  155.                 echo htmlentities(OIDplus::config()->getValue('system_title'));
  156.         }
  157.  
  158.         echo '" size="50"> <font color="red"><b>'.$msg.'</b></font>';
  159. }
  160. step_system_title($step++, $do_edits, $errors_happened);
  161.  
  162. # ---
  163.  
  164. foreach (OIDplus::getPagePlugins() as $plugin) {
  165.         if ($plugin->implementsFeature('1.3.6.1.4.1.37476.2.5.2.3.1')) {
  166.                 $plugin->oobeEntry($step++, $do_edits, $errors_happened);
  167.         }
  168. }
  169.  
  170. # ---
  171.  
  172. echo '<p><u>Submit</u></p>';
  173. echo '<input type="submit" value="Save and start OIDplus!">';
  174. echo '</form>';
  175.  
  176. $pki_status = OIDplus::getPkiStatus();
  177.  
  178. if ($pki_status) {
  179.  
  180. echo '<p><u>Your OIDplus system ID (derived from the public key) is:</u></p>';
  181.  
  182. echo '<b>';
  183. $sysid_oid = OIDplus::getSystemId(true);
  184. if (!$sysid_oid) $sysid_oid = _L('Unknown!');
  185. echo htmlentities($sysid_oid);
  186. echo '</b>';
  187.  
  188. echo '<p><u>Your public key is</u></p>';
  189.  
  190. $val = OIDplus::config()->getValue('oidplus_public_key');
  191. if ($val) {
  192.         echo '<pre>'.htmlentities($val).'</pre>';
  193. } else {
  194.         echo '<p>Private/Public key creation failed</p>';
  195. }
  196.  
  197. }
  198.  
  199. echo '</body>';
  200.  
  201. echo '</html>';
  202.  
  203. $cont = ob_get_contents();
  204. ob_end_clean();
  205.  
  206. if ($do_edits && !$errors_happened)  {
  207.         OIDplus::config()->setValue('reg_wizard_done', '1');
  208.         header('Location:../../../');
  209. } else {
  210.         echo $cont;
  211. }