autodiscover.php 7.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220
  1. <?php
  2. require_once 'inc/vars.inc.php';
  3. require_once 'inc/functions.inc.php';
  4. $default_autodiscover_config = $autodiscover_config;
  5. if(file_exists('inc/vars.local.inc.php')) {
  6. include_once 'inc/vars.local.inc.php';
  7. }
  8. $autodiscover_config = array_merge($default_autodiscover_config, $autodiscover_config);
  9. // Redis
  10. $redis = new Redis();
  11. $redis->connect('redis-mailcow', 6379);
  12. error_reporting(0);
  13. $data = trim(file_get_contents("php://input"));
  14. if (strpos($data, 'autodiscover/outlook/responseschema') !== false) {
  15. $autodiscover_config['autodiscoverType'] = 'imap';
  16. if ($autodiscover_config['useEASforOutlook'] == 'yes' &&
  17. // Office for macOS does not support EAS
  18. strpos($_SERVER['HTTP_USER_AGENT'], 'Mac') === false &&
  19. // Outlook 2013 (version 15) or higher
  20. preg_match('/(Outlook|Office).+15\./', $_SERVER['HTTP_USER_AGENT'])
  21. ) {
  22. $autodiscover_config['autodiscoverType'] = 'activesync';
  23. }
  24. }
  25. $dsn = $database_type . ":host=" . $database_host . ";dbname=" . $database_name;
  26. $opt = [
  27. PDO::ATTR_ERRMODE => PDO::ERRMODE_EXCEPTION,
  28. PDO::ATTR_DEFAULT_FETCH_MODE => PDO::FETCH_ASSOC,
  29. PDO::ATTR_EMULATE_PREPARES => false,
  30. ];
  31. $pdo = new PDO($dsn, $database_user, $database_pass, $opt);
  32. $login_user = strtolower(trim($_SERVER['PHP_AUTH_USER']));
  33. $login_pass = trim(htmlspecialchars_decode($_SERVER['PHP_AUTH_PW']));
  34. $login_role = check_login($login_user, $login_pass);
  35. if (!isset($_SERVER['PHP_AUTH_USER']) OR $login_role !== "user") {
  36. try {
  37. $json = json_encode(
  38. array(
  39. "time" => time(),
  40. "ua" => $_SERVER['HTTP_USER_AGENT'],
  41. "user" => "none",
  42. "service" => "Error: must be authenticated"
  43. )
  44. );
  45. $redis->lPush('AUTODISCOVER_LOG', $json);
  46. $redis->lTrim('AUTODISCOVER_LOG', 0, 100);
  47. }
  48. catch (RedisException $e) {
  49. $_SESSION['return'] = array(
  50. 'type' => 'danger',
  51. 'msg' => 'Redis: '.$e
  52. );
  53. return false;
  54. }
  55. header('WWW-Authenticate: Basic realm="' . $_SERVER['HTTP_HOST'] . '"');
  56. header('HTTP/1.0 401 Unauthorized');
  57. exit(0);
  58. }
  59. else {
  60. if (isset($_SERVER['PHP_AUTH_USER']) && isset($_SERVER['PHP_AUTH_PW'])) {
  61. if ($login_role === "user") {
  62. header("Content-Type: application/xml");
  63. echo '<?xml version="1.0" encoding="utf-8" ?>' . PHP_EOL;
  64. ?>
  65. <Autodiscover xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">
  66. <?php
  67. if(!$data) {
  68. try {
  69. $json = json_encode(
  70. array(
  71. "time" => time(),
  72. "ua" => $_SERVER['HTTP_USER_AGENT'],
  73. "user" => $_SERVER['PHP_AUTH_USER'],
  74. "service" => "Error: invalid or missing request data"
  75. )
  76. );
  77. $redis->lPush('AUTODISCOVER_LOG', $json);
  78. $redis->lTrim('AUTODISCOVER_LOG', 0, 100);
  79. }
  80. catch (RedisException $e) {
  81. $_SESSION['return'] = array(
  82. 'type' => 'danger',
  83. 'msg' => 'Redis: '.$e
  84. );
  85. return false;
  86. }
  87. list($usec, $sec) = explode(' ', microtime());
  88. ?>
  89. <Response>
  90. <Error Time="<?=date('H:i:s', $sec) . substr($usec, 0, strlen($usec) - 2);?>" Id="2477272013">
  91. <ErrorCode>600</ErrorCode>
  92. <Message>Invalid Request</Message>
  93. <DebugData />
  94. </Error>
  95. </Response>
  96. </Autodiscover>
  97. <?php
  98. exit(0);
  99. }
  100. try {
  101. $discover = new SimpleXMLElement($data);
  102. $email = $discover->Request->EMailAddress;
  103. } catch (Exception $e) {
  104. $email = $_SERVER['PHP_AUTH_USER'];
  105. }
  106. $username = trim($email);
  107. try {
  108. $stmt = $pdo->prepare("SELECT `name` FROM `mailbox` WHERE `username`= :username");
  109. $stmt->execute(array(':username' => $username));
  110. $MailboxData = $stmt->fetch(PDO::FETCH_ASSOC);
  111. }
  112. catch(PDOException $e) {
  113. die("Failed to determine name from SQL");
  114. }
  115. if (!empty($MailboxData['name'])) {
  116. $displayname = $MailboxData['name'];
  117. }
  118. else {
  119. $displayname = $email;
  120. }
  121. try {
  122. $json = json_encode(
  123. array(
  124. "time" => time(),
  125. "ua" => $_SERVER['HTTP_USER_AGENT'],
  126. "user" => $_SERVER['PHP_AUTH_USER'],
  127. "service" => $autodiscover_config['autodiscoverType']
  128. )
  129. );
  130. $redis->lPush('AUTODISCOVER_LOG', $json);
  131. $redis->lTrim('AUTODISCOVER_LOG', 0, 100);
  132. }
  133. catch (RedisException $e) {
  134. $_SESSION['return'] = array(
  135. 'type' => 'danger',
  136. 'msg' => 'Redis: '.$e
  137. );
  138. return false;
  139. }
  140. if ($autodiscover_config['autodiscoverType'] == 'imap') {
  141. ?>
  142. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/outlook/responseschema/2006a">
  143. <User>
  144. <DisplayName><?=htmlspecialchars($displayname, ENT_XML1 | ENT_QUOTES, 'UTF-8');?></DisplayName>
  145. </User>
  146. <Account>
  147. <AccountType>email</AccountType>
  148. <Action>settings</Action>
  149. <Protocol>
  150. <Type>IMAP</Type>
  151. <Server><?=$autodiscover_config['imap']['server'];?></Server>
  152. <Port><?=$autodiscover_config['imap']['port'];?></Port>
  153. <DomainRequired>off</DomainRequired>
  154. <LoginName><?=$email;?></LoginName>
  155. <SPA>off</SPA>
  156. <SSL>on</SSL>
  157. <AuthRequired>on</AuthRequired>
  158. </Protocol>
  159. <Protocol>
  160. <Type>SMTP</Type>
  161. <Server><?=$autodiscover_config['smtp']['server'];?></Server>
  162. <Port><?=$autodiscover_config['smtp']['port'];?></Port>
  163. <DomainRequired>off</DomainRequired>
  164. <LoginName><?=$email;?></LoginName>
  165. <SPA>off</SPA>
  166. <SSL>on</SSL>
  167. <AuthRequired>on</AuthRequired>
  168. <UsePOPAuth>on</UsePOPAuth>
  169. <SMTPLast>off</SMTPLast>
  170. </Protocol>
  171. <Protocol>
  172. <Type>CalDAV</Type>
  173. <Server>https://<?=$autodiscover_config['caldav']['server'];?><?php if ($autodiscover_config['caldav']['port'] != 443) echo ':'.$autodiscover_config['caldav']['port']; ?>/SOGo/dav/<?=$email;?>/</Server>
  174. <DomainRequired>off</DomainRequired>
  175. <LoginName><?=$email;?></LoginName>
  176. </Protocol>
  177. <Protocol>
  178. <Type>CardDAV</Type>
  179. <Server>https://<?=$autodiscover_config['carddav']['server'];?><?php if ($autodiscover_config['caldav']['port'] != 443) echo ':'.$autodiscover_config['carddav']['port']; ?>/SOGo/dav/<?=$email;?>/</Server>
  180. <DomainRequired>off</DomainRequired>
  181. <LoginName><?=$email;?></LoginName>
  182. </Protocol>
  183. </Account>
  184. </Response>
  185. <?php
  186. }
  187. else if ($autodiscover_config['autodiscoverType'] == 'activesync') {
  188. ?>
  189. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/mobilesync/responseschema/2006">
  190. <Culture>en:en</Culture>
  191. <User>
  192. <DisplayName><?=htmlspecialchars($displayname, ENT_XML1 | ENT_QUOTES, 'UTF-8');?></DisplayName>
  193. <EMailAddress><?=$email;?></EMailAddress>
  194. </User>
  195. <Action>
  196. <Settings>
  197. <Server>
  198. <Type>MobileSync</Type>
  199. <Url><?=$autodiscover_config['activesync']['url'];?></Url>
  200. <Name><?=$autodiscover_config['activesync']['url'];?></Name>
  201. </Server>
  202. </Settings>
  203. </Action>
  204. </Response>
  205. <?php
  206. }
  207. ?>
  208. </Autodiscover>
  209. <?php
  210. }
  211. }
  212. }
  213. ?>