autodiscover.php 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243
  1. <?php
  2. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/lib/vendor/autoload.php';
  3. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/vars.inc.php';
  4. if(file_exists('inc/vars.local.inc.php')) {
  5. include_once 'inc/vars.local.inc.php';
  6. }
  7. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/functions.inc.php';
  8. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/functions.auth.inc.php';
  9. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/sessions.inc.php';
  10. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/functions.mailbox.inc.php';
  11. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/functions.ratelimit.inc.php';
  12. $default_autodiscover_config = $autodiscover_config;
  13. $autodiscover_config = array_merge($default_autodiscover_config, $autodiscover_config);
  14. // Redis
  15. $redis = new Redis();
  16. try {
  17. if (!empty(getenv('REDIS_SLAVEOF_IP'))) {
  18. $redis->connect(getenv('REDIS_SLAVEOF_IP'), getenv('REDIS_SLAVEOF_PORT'));
  19. }
  20. else {
  21. $redis->connect('redis-mailcow', 6379);
  22. }
  23. $redis->auth(getenv("REDISPASS"));
  24. }
  25. catch (Exception $e) {
  26. exit;
  27. }
  28. error_reporting(0);
  29. $data = trim(file_get_contents("php://input"));
  30. if (strpos($data, 'autodiscover/outlook/responseschema') !== false) {
  31. $autodiscover_config['autodiscoverType'] = 'imap';
  32. if ($autodiscover_config['useEASforOutlook'] == 'yes' &&
  33. // Office for macOS does not support EAS
  34. strpos($_SERVER['HTTP_USER_AGENT'], 'Mac') === false &&
  35. // Outlook 2013 (version 15) or higher
  36. preg_match('/(Outlook|Office).+1[5-9]\./', $_SERVER['HTTP_USER_AGENT'])
  37. ) {
  38. $autodiscover_config['autodiscoverType'] = 'activesync';
  39. }
  40. }
  41. if (getenv('SKIP_SOGO') == "y") {
  42. $autodiscover_config['autodiscoverType'] = 'imap';
  43. }
  44. //$dsn = $database_type . ":host=" . $database_host . ";dbname=" . $database_name;
  45. $dsn = $database_type . ":unix_socket=" . $database_sock . ";dbname=" . $database_name;
  46. $opt = [
  47. PDO::ATTR_ERRMODE => PDO::ERRMODE_EXCEPTION,
  48. PDO::ATTR_DEFAULT_FETCH_MODE => PDO::FETCH_ASSOC,
  49. PDO::ATTR_EMULATE_PREPARES => false,
  50. ];
  51. $pdo = new PDO($dsn, $database_user, $database_pass, $opt);
  52. // Init Identity Provider
  53. $iam_provider = identity_provider('init');
  54. $iam_settings = identity_provider('get');
  55. $login_user = strtolower(trim($_SERVER['PHP_AUTH_USER']));
  56. $login_pass = trim(htmlspecialchars_decode($_SERVER['PHP_AUTH_PW']));
  57. if (empty($_SERVER['PHP_AUTH_USER']) || empty($_SERVER['PHP_AUTH_PW'])) {
  58. $json = json_encode(
  59. array(
  60. "time" => time(),
  61. "ua" => $_SERVER['HTTP_USER_AGENT'],
  62. "user" => "none",
  63. "ip" => $_SERVER['REMOTE_ADDR'],
  64. "service" => "Error: must be authenticated"
  65. )
  66. );
  67. $redis->lPush('AUTODISCOVER_LOG', $json);
  68. header('WWW-Authenticate: Basic realm="' . $_SERVER['HTTP_HOST'] . '"');
  69. header('HTTP/1.0 401 Unauthorized');
  70. exit(0);
  71. }
  72. $login_role = check_login($login_user, $login_pass, array('eas' => TRUE));
  73. if ($login_role === "user") {
  74. header("Content-Type: application/xml");
  75. echo '<?xml version="1.0" encoding="utf-8" ?>' . PHP_EOL;
  76. ?>
  77. <Autodiscover xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">
  78. <?php
  79. if(!$data) {
  80. try {
  81. $json = json_encode(
  82. array(
  83. "time" => time(),
  84. "ua" => $_SERVER['HTTP_USER_AGENT'],
  85. "user" => $_SERVER['PHP_AUTH_USER'],
  86. "ip" => $_SERVER['REMOTE_ADDR'],
  87. "service" => "Error: invalid or missing request data"
  88. )
  89. );
  90. $redis->lPush('AUTODISCOVER_LOG', $json);
  91. $redis->lTrim('AUTODISCOVER_LOG', 0, 100);
  92. }
  93. catch (RedisException $e) {
  94. $_SESSION['return'][] = array(
  95. 'type' => 'danger',
  96. 'msg' => 'Redis: '.$e
  97. );
  98. return false;
  99. }
  100. list($usec, $sec) = explode(' ', microtime());
  101. ?>
  102. <Response>
  103. <Error Time="<?=date('H:i:s', $sec) . substr($usec, 0, strlen($usec) - 2);?>" Id="2477272013">
  104. <ErrorCode>600</ErrorCode>
  105. <Message>Invalid Request</Message>
  106. <DebugData />
  107. </Error>
  108. </Response>
  109. </Autodiscover>
  110. <?php
  111. exit(0);
  112. }
  113. try {
  114. $discover = new SimpleXMLElement($data);
  115. $email = $discover->Request->EMailAddress;
  116. } catch (Exception $e) {
  117. $email = $_SERVER['PHP_AUTH_USER'];
  118. }
  119. $username = trim($email);
  120. try {
  121. $stmt = $pdo->prepare("SELECT `name` FROM `mailbox` WHERE `username`= :username");
  122. $stmt->execute(array(':username' => $username));
  123. $MailboxData = $stmt->fetch(PDO::FETCH_ASSOC);
  124. }
  125. catch(PDOException $e) {
  126. die("Failed to determine name from SQL");
  127. }
  128. if (!empty($MailboxData['name'])) {
  129. $displayname = $MailboxData['name'];
  130. }
  131. else {
  132. $displayname = $email;
  133. }
  134. try {
  135. $json = json_encode(
  136. array(
  137. "time" => time(),
  138. "ua" => $_SERVER['HTTP_USER_AGENT'],
  139. "user" => $_SERVER['PHP_AUTH_USER'],
  140. "ip" => $_SERVER['REMOTE_ADDR'],
  141. "service" => $autodiscover_config['autodiscoverType']
  142. )
  143. );
  144. $redis->lPush('AUTODISCOVER_LOG', $json);
  145. $redis->lTrim('AUTODISCOVER_LOG', 0, 100);
  146. }
  147. catch (RedisException $e) {
  148. $_SESSION['return'][] = array(
  149. 'type' => 'danger',
  150. 'msg' => 'Redis: '.$e
  151. );
  152. return false;
  153. }
  154. if ($autodiscover_config['autodiscoverType'] == 'imap') {
  155. ?>
  156. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/outlook/responseschema/2006a">
  157. <User>
  158. <DisplayName><?=htmlspecialchars($displayname, ENT_XML1 | ENT_QUOTES, 'UTF-8');?></DisplayName>
  159. </User>
  160. <Account>
  161. <AccountType>email</AccountType>
  162. <Action>settings</Action>
  163. <Protocol>
  164. <Type>IMAP</Type>
  165. <Server><?=$autodiscover_config['imap']['server'];?></Server>
  166. <Port><?=$autodiscover_config['imap']['port'];?></Port>
  167. <DomainRequired>off</DomainRequired>
  168. <LoginName><?=$email;?></LoginName>
  169. <SPA>off</SPA>
  170. <SSL>on</SSL>
  171. <AuthRequired>on</AuthRequired>
  172. </Protocol>
  173. <Protocol>
  174. <Type>SMTP</Type>
  175. <Server><?=$autodiscover_config['smtp']['server'];?></Server>
  176. <Port><?=$autodiscover_config['smtp']['port'];?></Port>
  177. <DomainRequired>off</DomainRequired>
  178. <LoginName><?=$email;?></LoginName>
  179. <SPA>off</SPA>
  180. <SSL>on</SSL>
  181. <AuthRequired>on</AuthRequired>
  182. <UsePOPAuth>on</UsePOPAuth>
  183. <SMTPLast>off</SMTPLast>
  184. </Protocol>
  185. <?php
  186. if (getenv('SKIP_SOGO') != "y") {
  187. ?>
  188. <Protocol>
  189. <Type>CalDAV</Type>
  190. <Server>https://<?=$autodiscover_config['caldav']['server'];?><?php if ($autodiscover_config['caldav']['port'] != 443) echo ':'.$autodiscover_config['caldav']['port']; ?>/SOGo/dav/<?=$email;?>/</Server>
  191. <DomainRequired>off</DomainRequired>
  192. <LoginName><?=$email;?></LoginName>
  193. </Protocol>
  194. <Protocol>
  195. <Type>CardDAV</Type>
  196. <Server>https://<?=$autodiscover_config['carddav']['server'];?><?php if ($autodiscover_config['caldav']['port'] != 443) echo ':'.$autodiscover_config['carddav']['port']; ?>/SOGo/dav/<?=$email;?>/</Server>
  197. <DomainRequired>off</DomainRequired>
  198. <LoginName><?=$email;?></LoginName>
  199. </Protocol>
  200. <?php
  201. }
  202. ?>
  203. </Account>
  204. </Response>
  205. <?php
  206. }
  207. else if ($autodiscover_config['autodiscoverType'] == 'activesync') {
  208. ?>
  209. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/mobilesync/responseschema/2006">
  210. <Culture>en:en</Culture>
  211. <User>
  212. <DisplayName><?=htmlspecialchars($displayname, ENT_XML1 | ENT_QUOTES, 'UTF-8');?></DisplayName>
  213. <EMailAddress><?=$email;?></EMailAddress>
  214. </User>
  215. <Action>
  216. <Settings>
  217. <Server>
  218. <Type>MobileSync</Type>
  219. <Url><?=$autodiscover_config['activesync']['url'];?></Url>
  220. <Name><?=$autodiscover_config['activesync']['url'];?></Name>
  221. </Server>
  222. </Settings>
  223. </Action>
  224. </Response>
  225. <?php
  226. }
  227. ?>
  228. </Autodiscover>
  229. <?php
  230. }
  231. ?>