admin.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308
  1. <?php
  2. require_once("inc/prerequisites.inc.php");
  3. if (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] == "admin") {
  4. require_once("inc/header.inc.php");
  5. $_SESSION['return_to'] = $_SERVER['REQUEST_URI'];
  6. $tfa_data = get_tfa();
  7. ?>
  8. <div class="container">
  9. <h4><span class="glyphicon glyphicon-user" aria-hidden="true"></span> <?=$lang['admin']['access'];?></h4>
  10. <div class="panel-group" id="accordion_access">
  11. <div class="panel panel-danger">
  12. <div class="panel-heading"><?=$lang['admin']['admin_details'];?></div>
  13. <div class="panel-body">
  14. <form class="form-horizontal" autocapitalize="none" autocorrect="off" role="form" method="post">
  15. <?php $admindetails = get_admin_details(); ?>
  16. <div class="form-group">
  17. <label class="control-label col-sm-3" for="admin_user"><?=$lang['admin']['admin'];?>:</label>
  18. <div class="col-sm-9">
  19. <input type="text" class="form-control" name="admin_user" id="admin_user" value="<?=htmlspecialchars($admindetails['username']);?>" required>
  20. &rdsh; <kbd>a-z A-Z - _ .</kbd>
  21. </div>
  22. </div>
  23. <div class="form-group">
  24. <label class="control-label col-sm-3" for="admin_pass"><?=$lang['admin']['password'];?>:</label>
  25. <div class="col-sm-9">
  26. <input type="password" class="form-control" name="admin_pass" id="admin_pass" placeholder="<?=$lang['admin']['unchanged_if_empty'];?>">
  27. </div>
  28. </div>
  29. <div class="form-group">
  30. <label class="control-label col-sm-3" for="admin_pass2"><?=$lang['admin']['password_repeat'];?>:</label>
  31. <div class="col-sm-9">
  32. <input type="password" class="form-control" name="admin_pass2" id="admin_pass2">
  33. </div>
  34. </div>
  35. <div class="form-group">
  36. <div class="col-sm-offset-3 col-sm-9">
  37. <button type="submit" name="edit_admin_account" class="btn btn-default"><?=$lang['admin']['save'];?></button>
  38. </div>
  39. </div>
  40. </form>
  41. <hr>
  42. <div class="row">
  43. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['tfa'];?>:</div>
  44. <div class="col-sm-9 col-xs-7">
  45. <p id="tfa_pretty"><?=$tfa_data['pretty'];?></p>
  46. <div id="tfa_additional">
  47. <?php if($tfa_data['additional']):
  48. foreach ($tfa_data['additional'] as $key_info): ?>
  49. <form style="display:inline;" method="post">
  50. <input type="hidden" name="unset_tfa_key" value="<?=$key_info['id'];?>" />
  51. <div class="label label-default">🔑 <?=$key_info['key_id'];?> <a href="#" style="font-weight:bold;color:white" onClick="$(this).closest('form').submit()">[<?=strtolower($lang['admin']['remove']);?>]</a></div>
  52. </form>
  53. <?php endforeach;
  54. endif;?>
  55. </div>
  56. <br />
  57. </div>
  58. </div>
  59. <div class="row">
  60. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['set_tfa'];?>:</div>
  61. <div class="col-sm-9 col-xs-7">
  62. <select data-width="auto" id="selectTFA" class="selectpicker" title="<?=$lang['tfa']['select'];?>">
  63. <option value="yubi_otp"><?=$lang['tfa']['yubi_otp'];?></option>
  64. <option value="u2f"><?=$lang['tfa']['u2f'];?></option>
  65. <option value="none"><?=$lang['tfa']['none'];?></option>
  66. </select>
  67. </div>
  68. </div>
  69. </div>
  70. </div>
  71. <div class="panel panel-default">
  72. <div style="cursor:pointer;" class="panel-heading" data-toggle="collapse" data-parent="#accordion_access" data-target="#collapseDomAdmins">
  73. <span class="accordion-toggle"><?=$lang['admin']['domain_admins'];?></span>
  74. </div>
  75. <div id="collapseDomAdmins" class="panel-collapse collapse">
  76. <div class="panel-body">
  77. <form method="post">
  78. <div class="table-responsive">
  79. <table class="table table-striped sortable-theme-bootstrap" data-sortable id="domainadminstable">
  80. <thead>
  81. <tr>
  82. <th class="sort-table" style="min-width: 100px;"><?=$lang['admin']['username'];?></th>
  83. <th class="sort-table" style="min-width: 166px;"><?=$lang['admin']['admin_domains'];?></th>
  84. <th class="sort-table" style="min-width: 76px;"><?=$lang['admin']['active'];?></th>
  85. <th class="sort-table" style="min-width: 76px;"><?=$lang['tfa']['tfa'];?></th>
  86. <th style="text-align: right; min-width: 200px;" data-sortable="false"><?=$lang['admin']['action'];?></th>
  87. </tr>
  88. </thead>
  89. <tbody>
  90. <?php
  91. foreach (get_domain_admins() as $domain_admin) {
  92. $da_data = get_domain_admin_details($domain_admin);
  93. if (!empty($da_data)):
  94. ?>
  95. <tr id="data">
  96. <td><?=htmlspecialchars(strtolower($domain_admin));?></td>
  97. <td>
  98. <?php
  99. foreach ($da_data['selected_domains'] as $domain) {
  100. echo htmlspecialchars($domain).'<br />';
  101. }
  102. ?>
  103. </td>
  104. <td><?=$da_data['active'];?></td>
  105. <td><?=empty($da_data['tfa_active_int']) ? "✘" : "✔";?></td>
  106. <td style="text-align: right;">
  107. <div class="btn-group">
  108. <a href="edit.php?domainadmin=<?=$domain_admin;?>" class="btn btn-xs btn-default"><span class="glyphicon glyphicon-pencil"></span> <?=$lang['admin']['edit'];?></a>
  109. <a href="delete.php?domainadmin=<?=$domain_admin;?>" class="btn btn-xs btn-danger"><span class="glyphicon glyphicon-trash"></span> <?=$lang['admin']['remove'];?></a>
  110. </div>
  111. </td>
  112. </td>
  113. </tr>
  114. <?php
  115. else:
  116. ?>
  117. <tr id="no-data"><td colspan="4" style="text-align: center; font-style: italic;"><?=$lang['admin']['no_record'];?></td></tr>
  118. <?php
  119. endif;
  120. }
  121. ?>
  122. </tbody>
  123. </table>
  124. </div>
  125. </form>
  126. <small>
  127. <legend><?=$lang['admin']['add_domain_admin'];?></legend>
  128. <form class="form-horizontal" role="form" method="post">
  129. <div class="form-group">
  130. <label class="control-label col-sm-2" for="username"><?=$lang['admin']['username'];?>:</label>
  131. <div class="col-sm-10">
  132. <input type="text" class="form-control" name="username" id="username" required>
  133. &rdsh; <kbd>a-z A-Z - _ .</kbd>
  134. </div>
  135. </div>
  136. <div class="form-group">
  137. <label class="control-label col-sm-2" for="name"><?=$lang['admin']['admin_domains'];?>:</label>
  138. <div class="col-sm-10">
  139. <select title="<?=$lang['admin']['search_domain_da'];?>" style="width:100%" name="domain[]" size="5" multiple>
  140. <?php
  141. foreach (mailbox_get_domains() as $domain) {
  142. echo "<option>".htmlspecialchars($domain)."</option>";
  143. }
  144. ?>
  145. </select>
  146. </div>
  147. </div>
  148. <div class="form-group">
  149. <label class="control-label col-sm-2" for="password"><?=$lang['admin']['password'];?>:</label>
  150. <div class="col-sm-10">
  151. <input type="password" class="form-control" name="password" id="password" placeholder="">
  152. </div>
  153. </div>
  154. <div class="form-group">
  155. <label class="control-label col-sm-2" for="password2"><?=$lang['admin']['password_repeat'];?>:</label>
  156. <div class="col-sm-10">
  157. <input type="password" class="form-control" name="password2" id="password2" placeholder="">
  158. </div>
  159. </div>
  160. <div class="form-group">
  161. <div class="col-sm-offset-2 col-sm-10">
  162. <div class="checkbox">
  163. <label><input type="checkbox" name="active" checked> <?=$lang['admin']['active'];?></label>
  164. </div>
  165. </div>
  166. </div>
  167. <div class="form-group">
  168. <div class="col-sm-offset-2 col-sm-10">
  169. <button type="submit" name="add_domain_admin" class="btn btn-default"><?=$lang['admin']['add'];?></button>
  170. </div>
  171. </div>
  172. </form>
  173. </small>
  174. </div>
  175. </div>
  176. </div>
  177. </div>
  178. <h4><span class="glyphicon glyphicon-wrench" aria-hidden="true"></span> <?=$lang['admin']['configuration'];?></h4>
  179. <div class="panel panel-default">
  180. <div class="panel-heading"><?=$lang['admin']['dkim_keys'];?></div>
  181. <div id="collapseDKIM" class="panel-collapse">
  182. <div class="panel-body">
  183. <p style="margin-bottom:40px"><?=$lang['admin']['dkim_key_hint'];?></p>
  184. <?php
  185. foreach(mailbox_get_domains() as $domain) {
  186. if (!empty($dkim = dkim_get_key_details($domain))) {
  187. ?>
  188. <div class="row">
  189. <div class="col-xs-3">
  190. <p>Domain: <strong><?=htmlspecialchars($domain);?></strong><br />
  191. <span class="label label-success"><?=$lang['admin']['dkim_key_valid'];?></span>
  192. <span class="label label-info"><?=$dkim['length'];?> bit</span>
  193. </p>
  194. </div>
  195. <div class="col-xs-8">
  196. <pre><?=$dkim['dkim_txt'];?></pre>
  197. </div>
  198. <div class="col-xs-1">
  199. <form class="form-inline" method="post">
  200. <input type="hidden" name="domain" value="<?=$domain;?>">
  201. <input type="hidden" name="dkim_delete_key" value="1">
  202. <a href="#" onclick="$(this).closest('form').submit()" data-toggle="tooltip" data-placement="top" title="<?=$lang['user']['delete_now'];?>"><span class="glyphicon glyphicon-remove"></span></a>
  203. </form>
  204. </div>
  205. </div>
  206. <?php
  207. }
  208. else {
  209. ?>
  210. <div class="row">
  211. <div class="col-xs-3">
  212. <p>Domain: <strong><?=htmlspecialchars($domain);?></strong><br /><span class="label label-danger"><?=$lang['admin']['dkim_key_missing'];?></span></p>
  213. </div>
  214. <div class="col-xs-8"><pre>-</pre></div>
  215. <div class="col-xs-1">&nbsp;</div>
  216. </div>
  217. <?php
  218. }
  219. foreach(mailbox_get_alias_domains($domain) as $alias_domain) {
  220. if (!empty($dkim = dkim_get_key_details($alias_domain))) {
  221. ?>
  222. <div class="row">
  223. <div class="col-xs-offset-1 col-xs-2">
  224. <p><small>↳ Alias-Domain: <strong><?=htmlspecialchars($alias_domain);?></strong><br /></small>
  225. <span class="label label-success"><?=$lang['admin']['dkim_key_valid'];?></span>
  226. <span class="label label-info"><?=$dkim['length'];?> bit</span>
  227. </p>
  228. </div>
  229. <div class="col-xs-8">
  230. <pre><?=$dkim['dkim_txt'];?></pre>
  231. </div>
  232. <div class="col-xs-1">
  233. <form class="form-inline" method="post">
  234. <input type="hidden" name="domain" value="<?=$alias_domain;?>">
  235. <input type="hidden" name="dkim_delete_key" value="1">
  236. <a href="#" onclick="$(this).closest('form').submit()" data-toggle="tooltip" data-placement="top" title="<?=$lang['user']['delete_now'];?>"><span class="glyphicon glyphicon-remove"></span></a>
  237. </form>
  238. </div>
  239. </div>
  240. <?php
  241. }
  242. else {
  243. ?>
  244. <div class="row">
  245. <div class="col-xs-2 col-xs-offset-1">
  246. <p><small>↳ Alias-Domain: <strong><?=htmlspecialchars($alias_domain);?></strong><br /></small><span class="label label-danger"><?=$lang['admin']['dkim_key_missing'];?></span></p>
  247. </div>
  248. <div class="col-xs-8"><pre>-</pre></div>
  249. <div class="col-xs-1">&nbsp;</div>
  250. </div>
  251. <?php
  252. }
  253. }
  254. }
  255. foreach(dkim_get_blind_keys() as $blind) {
  256. if (!empty($dkim = dkim_get_key_details($blind))) {
  257. ?>
  258. <div class="row">
  259. <div class="col-xs-3">
  260. <p>Domain: <strong><?=htmlspecialchars($blind);?></strong><br /><span class="label label-warning"><?=$lang['admin']['dkim_key_unused'];?></span></p>
  261. </div>
  262. <div class="col-xs-8">
  263. <pre><?=$dkim['dkim_txt'];?></pre>
  264. </div>
  265. <div class="col-xs-1">
  266. <form class="form-inline" method="post">
  267. <input type="hidden" name="domain" value="<?=$blind;?>">
  268. <input type="hidden" name="dkim_delete_key" value="1">
  269. <a href="#" onclick="$(this).closest('form').submit()" data-toggle="tooltip" data-placement="top" title="<?=$lang['user']['delete_now'];?>"><span class="glyphicon glyphicon-remove"></span></a>
  270. </form>
  271. </div>
  272. </div>
  273. <?php
  274. }
  275. }
  276. ?>
  277. <legend style="margin-top:40px"><?=$lang['admin']['dkim_add_key'];?></legend>
  278. <form class="form-inline" role="form" method="post">
  279. <div class="form-group">
  280. <label for="domain">Domain</label>
  281. <input class="form-control" id="domain" name="domain" placeholder="example.org" required>
  282. </div>
  283. <div class="form-group">
  284. <select data-width="200px" class="form-control" id="key_size" name="key_size" title="<?=$lang['admin']['dkim_key_length'];?>" required>
  285. <option data-subtext="bits">1024</option>
  286. <option data-subtext="bits">2048</option>
  287. </select>
  288. </div>
  289. <button type="submit" name="dkim_add_key" class="btn btn-default"><span class="glyphicon glyphicon-plus"></span> <?=$lang['admin']['add'];?></button>
  290. </form>
  291. </div>
  292. </div>
  293. </div>
  294. </div> <!-- /container -->
  295. <script src="https://cdnjs.cloudflare.com/ajax/libs/jqueryui/1.11.4/jquery-ui.min.js" integrity="sha384-YWP9O4NjmcGo4oEJFXvvYSEzuHIvey+LbXkBNJ1Kd0yfugEZN9NCQNpRYBVC1RvA" crossorigin="anonymous"></script>
  296. <script src="js/sorttable.js"></script>
  297. <script src="js/admin.js"></script>
  298. <?php
  299. require_once("inc/footer.inc.php");
  300. } else {
  301. header('Location: /');
  302. exit();
  303. }
  304. ?>