autodiscover.php 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154
  1. <?php
  2. require_once 'inc/vars.inc.php';
  3. require_once 'inc/functions.inc.php';
  4. $default_autodiscover_config = $autodiscover_config;
  5. if(file_exists('inc/vars.local.inc.php')) {
  6. include_once 'inc/vars.local.inc.php';
  7. }
  8. $configuration = array_merge($default_autodiscover_config, $autodiscover_config);
  9. error_reporting(0);
  10. $data = trim(file_get_contents("php://input"));
  11. // Desktop client needs IMAP, unless it's Outlook 2013 or higher on Windows
  12. if (strpos($data, 'autodiscover/outlook/responseschema')) { // desktop client
  13. $configuration['autodiscoverType'] = 'imap';
  14. if ($configuration['useEASforOutlook'] == 'yes' &&
  15. // Office for macOS does not support EAS
  16. strpos($_SERVER['HTTP_USER_AGENT'], 'Mac') === false &&
  17. // Outlook 2013 (version 15) or higher
  18. preg_match('/(Outlook|Office).+1[5-9]\./', $_SERVER['HTTP_USER_AGENT'])) {
  19. $configuration['autodiscoverType'] = 'activesync';
  20. }
  21. }
  22. $dsn = $database_type . ":host=" . $database_host . ";dbname=" . $database_name;
  23. $opt = [
  24. PDO::ATTR_ERRMODE => PDO::ERRMODE_EXCEPTION,
  25. PDO::ATTR_DEFAULT_FETCH_MODE => PDO::FETCH_ASSOC,
  26. PDO::ATTR_EMULATE_PREPARES => false,
  27. ];
  28. $pdo = new PDO($dsn, $database_user, $database_pass, $opt);
  29. $login_user = strtolower(trim($_SERVER['PHP_AUTH_USER']));
  30. $login_role = check_login($login_user, $_SERVER['PHP_AUTH_PW']);
  31. if (!isset($_SERVER['PHP_AUTH_USER']) OR $login_role !== "user") {
  32. header('WWW-Authenticate: Basic realm=""');
  33. header('HTTP/1.0 401 Unauthorized');
  34. exit(0);
  35. }
  36. else {
  37. if (isset($_SERVER['PHP_AUTH_USER']) && isset($_SERVER['PHP_AUTH_PW'])) {
  38. if ($login_role === "user") {
  39. header("Content-Type: application/xml");
  40. echo '<?xml version="1.0" encoding="utf-8" ?>' . PHP_EOL;
  41. ?>
  42. <Autodiscover xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">
  43. <?php
  44. if(!$data) {
  45. list($usec, $sec) = explode(' ', microtime());
  46. ?>
  47. <Response>
  48. <Error Time="<?=date('H:i:s', $sec) . substr($usec, 0, strlen($usec) - 2);?>" Id="2477272013">
  49. <ErrorCode>600</ErrorCode>
  50. <Message>Invalid Request</Message>
  51. <DebugData />
  52. </Error>
  53. </Response>
  54. </Autodiscover>
  55. <?php
  56. exit(0);
  57. }
  58. $discover = new SimpleXMLElement($data);
  59. $email = $discover->Request->EMailAddress;
  60. if ($configuration['autodiscoverType'] == 'imap') {
  61. ?>
  62. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/outlook/responseschema/2006a">
  63. <User>
  64. <DisplayName><?=$displayname;?></DisplayName>
  65. </User>
  66. <Account>
  67. <AccountType>email</AccountType>
  68. <Action>settings</Action>
  69. <Protocol>
  70. <Type>IMAP</Type>
  71. <Server><?=$configuration['imap']['server'];?></Server>
  72. <Port><?=$configuration['imap']['port'];?></Port>
  73. <DomainRequired>off</DomainRequired>
  74. <LoginName><?=$email;?></LoginName>
  75. <SPA>off</SPA>
  76. <SSL>on</SSL>
  77. <AuthRequired>on</AuthRequired>
  78. </Protocol>
  79. <Protocol>
  80. <Type>SMTP</Type>
  81. <Server><?=$configuration['smtp']['server'];?></Server>
  82. <Port><?=$configuration['smtp']['port'];?></Port>
  83. <DomainRequired>off</DomainRequired>
  84. <LoginName><?=$email;?></LoginName>
  85. <SPA>off</SPA>
  86. <SSL>on</SSL>
  87. <AuthRequired>on</AuthRequired>
  88. <UsePOPAuth>on</UsePOPAuth>
  89. <SMTPLast>off</SMTPLast>
  90. </Protocol>
  91. <Protocol>
  92. <Type>CalDAV</Type>
  93. <Server><?=$configuration['caldav']['server'];?>/SOGo/dav/<?=$email;?>/Calendar</Server>
  94. <DomainRequired>off</DomainRequired>
  95. <LoginName><?=$email;?></LoginName>
  96. </Protocol>
  97. <Protocol>
  98. <Type>CardDAV</Type>
  99. <Server><?=$configuration['carddav']['server'];?>/SOGo/dav/<?=$email;?>/Contacts</Server>
  100. <DomainRequired>off</DomainRequired>
  101. <LoginName><?=$email;?></LoginName>
  102. </Protocol>
  103. </Account>
  104. </Response>
  105. <?php
  106. }
  107. else if ($configuration['autodiscoverType'] == 'activesync') {
  108. $username = trim($email);
  109. try {
  110. $stmt = $pdo->prepare("SELECT `name` FROM `mailbox` WHERE `username`= :username");
  111. $stmt->execute(array(':username' => $username));
  112. $MailboxData = $stmt->fetch(PDO::FETCH_ASSOC);
  113. }
  114. catch(PDOException $e) {
  115. die("Failed to determine name from SQL");
  116. }
  117. if (!empty($MailboxData['name'])) {
  118. $displayname = utf8_encode($MailboxData['name']);
  119. }
  120. else {
  121. $displayname = $email;
  122. }
  123. ?>
  124. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/mobilesync/responseschema/2006">
  125. <Culture>en:en</Culture>
  126. <User>
  127. <DisplayName><?=$displayname;?></DisplayName>
  128. <EMailAddress><?=$email;?></EMailAddress>
  129. </User>
  130. <Action>
  131. <Settings>
  132. <Server>
  133. <Type>MobileSync</Type>
  134. <Url><?=$configuration['activesync']['url'];?></Url>
  135. <Name><?=$configuration['activesync']['url'];?></Name>
  136. </Server>
  137. </Settings>
  138. </Action>
  139. </Response>
  140. <?php
  141. }
  142. ?>
  143. </Autodiscover>
  144. <?php
  145. }
  146. }
  147. }
  148. ?>