admin.php 9.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261
  1. <?php
  2. require_once("inc/prerequisites.inc.php");
  3. if (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] == "admin") {
  4. require_once("inc/header.inc.php");
  5. $_SESSION['return_to'] = $_SERVER['REQUEST_URI'];
  6. ?>
  7. <div class="container">
  8. <h4><span class="glyphicon glyphicon-user" aria-hidden="true"></span> <?=$lang['admin']['access'];?></h4>
  9. <div class="panel-group" id="accordion_access">
  10. <div class="panel panel-danger">
  11. <div class="panel-heading"><?=$lang['admin']['admin_details'];?></div>
  12. <div class="panel-body">
  13. <form class="form-horizontal" autocapitalize="none" autocorrect="off" role="form" method="post">
  14. <?php
  15. try {
  16. $stmt = $pdo->prepare("SELECT `username` FROM `admin`
  17. WHERE `superadmin`='1' and active='1'");
  18. $stmt->execute();
  19. $AdminData = $stmt->fetch(PDO::FETCH_ASSOC);
  20. }
  21. catch(PDOException $e) {
  22. $_SESSION['return'] = array(
  23. 'type' => 'danger',
  24. 'msg' => 'MySQL: '.$e
  25. );
  26. }
  27. ?>
  28. <input type="hidden" name="admin_user_now" value="<?=htmlspecialchars($AdminData['username']);?>">
  29. <div class="form-group">
  30. <label class="control-label col-sm-2" for="admin_user"><?=$lang['admin']['admin'];?>:</label>
  31. <div class="col-sm-10">
  32. <input type="text" class="form-control" name="admin_user" id="admin_user" value="<?=htmlspecialchars($AdminData['username']);?>" required>
  33. &rdsh; <kbd>a-z A-Z - _ .</kbd>
  34. </div>
  35. </div>
  36. <div class="form-group">
  37. <label class="control-label col-sm-2" for="admin_pass"><?=$lang['admin']['password'];?>:</label>
  38. <div class="col-sm-10">
  39. <input type="password" class="form-control" name="admin_pass" id="admin_pass" placeholder="<?=$lang['admin']['unchanged_if_empty'];?>">
  40. </div>
  41. </div>
  42. <div class="form-group">
  43. <label class="control-label col-sm-2" for="admin_pass2"><?=$lang['admin']['password_repeat'];?>:</label>
  44. <div class="col-sm-10">
  45. <input type="password" class="form-control" name="admin_pass2" id="admin_pass2">
  46. </div>
  47. </div>
  48. <div class="form-group">
  49. <div class="col-sm-offset-2 col-sm-10">
  50. <button type="submit" name="trigger_set_admin" class="btn btn-default"><?=$lang['admin']['save'];?></button>
  51. </div>
  52. </div>
  53. </form>
  54. </div>
  55. </div>
  56. <div class="panel panel-default">
  57. <div style="cursor:pointer;" class="panel-heading" data-toggle="collapse" data-parent="#accordion_access" data-target="#collapseDomAdmins">
  58. <span class="accordion-toggle"><?=$lang['admin']['domain_admins'];?></span>
  59. </div>
  60. <div id="collapseDomAdmins" class="panel-collapse collapse">
  61. <div class="panel-body">
  62. <form method="post">
  63. <div class="table-responsive">
  64. <table class="table table-striped sortable-theme-bootstrap" data-sortable id="domainadminstable">
  65. <thead>
  66. <tr>
  67. <th class="sort-table" style="min-width: 100px;"><?=$lang['admin']['username'];?></th>
  68. <th class="sort-table" style="min-width: 166px;"><?=$lang['admin']['admin_domains'];?></th>
  69. <th class="sort-table" style="min-width: 76px;"><?=$lang['admin']['active'];?></th>
  70. <th style="text-align: right; min-width: 200px;" data-sortable="false"><?=$lang['admin']['action'];?></th>
  71. </tr>
  72. </thead>
  73. <tbody>
  74. <?php
  75. try {
  76. $stmt = $pdo->query("SELECT DISTINCT
  77. `username`,
  78. CASE WHEN `active`='1' THEN '".$lang['admin']['yes']."' ELSE '".$lang['admin']['no']."' END AS `active`
  79. FROM `domain_admins`
  80. WHERE `username` IN (
  81. SELECT `username` FROM `admin`
  82. WHERE `superadmin`!='1'
  83. )");
  84. $rows_username = $stmt->fetchAll(PDO::FETCH_ASSOC);
  85. }
  86. catch(PDOException $e) {
  87. $_SESSION['return'] = array(
  88. 'type' => 'danger',
  89. 'msg' => 'MySQL: '.$e
  90. );
  91. }
  92. if(!empty($rows_username)):
  93. while ($row_user_state = array_shift($rows_username)):
  94. ?>
  95. <tr id="data">
  96. <td><?=htmlspecialchars(strtolower($row_user_state['username']));?></td>
  97. <td>
  98. <?php
  99. try {
  100. $stmt = $pdo->prepare("SELECT `domain` FROM `domain_admins` WHERE `username` = :username");
  101. $stmt->execute(array('username' => $row_user_state['username']));
  102. $rows_domain = $stmt->fetchAll(PDO::FETCH_ASSOC);
  103. }
  104. catch(PDOException $e) {
  105. $_SESSION['return'] = array(
  106. 'type' => 'danger',
  107. 'msg' => 'MySQL: '.$e
  108. );
  109. }
  110. while ($row_domain = array_shift($rows_domain)) {
  111. echo htmlspecialchars($row_domain['domain']).'<br />';
  112. }
  113. ?>
  114. </td>
  115. <td><?=$row_user_state['active'];?></td>
  116. <td style="text-align: right;">
  117. <div class="btn-group">
  118. <a href="edit.php?domainadmin=<?=$row_user_state['username'];?>" class="btn btn-xs btn-default"><span class="glyphicon glyphicon-pencil"></span> <?=$lang['admin']['edit'];?></a>
  119. <a href="delete.php?domainadmin=<?=$row_user_state['username'];?>" class="btn btn-xs btn-danger"><span class="glyphicon glyphicon-trash"></span> <?=$lang['admin']['remove'];?></a>
  120. </div>
  121. </td>
  122. </td>
  123. </tr>
  124. <?php
  125. endwhile;
  126. else:
  127. ?>
  128. <tr id="no-data"><td colspan="4" style="text-align: center; font-style: italic;"><?=$lang['admin']['no_record'];?></td></tr>
  129. <?php
  130. endif;
  131. ?>
  132. </tbody>
  133. </table>
  134. </div>
  135. </form>
  136. <small>
  137. <legend><?=$lang['admin']['add_domain_admin'];?></legend>
  138. <form class="form-horizontal" role="form" method="post">
  139. <div class="form-group">
  140. <label class="control-label col-sm-2" for="username"><?=$lang['admin']['username'];?>:</label>
  141. <div class="col-sm-10">
  142. <input type="text" class="form-control" name="username" id="username" required>
  143. &rdsh; <kbd>a-z A-Z - _ .</kbd>
  144. </div>
  145. </div>
  146. <div class="form-group">
  147. <label class="control-label col-sm-2" for="name"><?=$lang['admin']['admin_domains'];?>:</label>
  148. <div class="col-sm-10">
  149. <select title="<?=$lang['admin']['search_domain_da'];?>" style="width:100%" name="domain[]" size="5" multiple>
  150. <?php
  151. try {
  152. $stmt = $pdo->query("SELECT domain FROM domain");
  153. $rows = $stmt->fetchAll(PDO::FETCH_ASSOC);
  154. }
  155. catch(PDOException $e) {
  156. $_SESSION['return'] = array(
  157. 'type' => 'danger',
  158. 'msg' => 'MySQL: '.$e
  159. );
  160. }
  161. while ($row = array_shift($rows)) {
  162. echo "<option>".htmlspecialchars($row['domain'])."</option>";
  163. }
  164. ?>
  165. </select>
  166. </div>
  167. </div>
  168. <div class="form-group">
  169. <label class="control-label col-sm-2" for="password"><?=$lang['admin']['password'];?>:</label>
  170. <div class="col-sm-10">
  171. <input type="password" class="form-control" name="password" id="password" placeholder="">
  172. </div>
  173. </div>
  174. <div class="form-group">
  175. <label class="control-label col-sm-2" for="password2"><?=$lang['admin']['password_repeat'];?>:</label>
  176. <div class="col-sm-10">
  177. <input type="password" class="form-control" name="password2" id="password2" placeholder="">
  178. </div>
  179. </div>
  180. <div class="form-group">
  181. <div class="col-sm-offset-2 col-sm-10">
  182. <div class="checkbox">
  183. <label><input type="checkbox" name="active" checked> <?=$lang['admin']['active'];?></label>
  184. </div>
  185. </div>
  186. </div>
  187. <div class="form-group">
  188. <div class="col-sm-offset-2 col-sm-10">
  189. <button type="submit" name="trigger_add_domain_admin" class="btn btn-default"><?=$lang['admin']['add'];?></button>
  190. </div>
  191. </div>
  192. </form>
  193. </small>
  194. </div>
  195. </div>
  196. </div>
  197. </div>
  198. <h4><span class="glyphicon glyphicon-wrench" aria-hidden="true"></span> <?=$lang['admin']['configuration'];?></h4>
  199. <div class="panel panel-default">
  200. <div class="panel-heading"><?=$lang['admin']['dkim_keys'];?></div>
  201. <div id="collapseDKIM" class="panel-collapse">
  202. <div class="panel-body">
  203. <?php
  204. $dnstxt_folder = scandir($GLOBALS["MC_DKIM_TXTS"]);
  205. $dnstxt_files = array_diff($dnstxt_folder, array('.', '..'));
  206. foreach($dnstxt_files as $file) {
  207. $pubKey = file_get_contents($GLOBALS["MC_DKIM_TXTS"]."/".$file);
  208. $domain = substr($file, 0, -5);
  209. ?>
  210. <div class="row">
  211. <div class="col-xs-2">
  212. <p>Domain: <strong><?=htmlspecialchars($domain);?></strong> (dkim._domainkey)</p>
  213. </div>
  214. <div class="col-xs-9">
  215. <pre>v=DKIM1;k=rsa;t=s;s=email;p=<?=$pubKey;?></pre>
  216. </div>
  217. <div class="col-xs-1">
  218. <form class="form-inline" role="form" method="post">
  219. <a href="#" onclick="$(this).closest('form').submit()"><span class="glyphicon glyphicon-remove-circle"></span></a>
  220. <input type="hidden" name="delete_dkim_record" value="<?=htmlspecialchars($file);?>">
  221. <input type="hidden" name="dkim[domain]" value="<?=$domain;?>">
  222. </form>
  223. </div>
  224. </div>
  225. <?php
  226. }
  227. ?>
  228. <legend><?=$lang['admin']['dkim_add_key'];?></legend>
  229. <form class="form-inline" role="form" method="post">
  230. <div class="form-group">
  231. <label for="dkim_domain">Domain</label>
  232. <input class="form-control" id="dkim_domain" name="dkim[domain]" placeholder="example.org" required>
  233. </div>
  234. <div class="form-group">
  235. <select class="form-control" id="dkim_key_size" name="dkim[key_size]" title="<?=$lang['admin']['dkim_key_length'];?>" required>
  236. <option>1024</option>
  237. <option>2048</option>
  238. </select>
  239. </div>
  240. <button type="submit" name="add_dkim_record" class="btn btn-default"><span class="glyphicon glyphicon-plus"></span> <?=$lang['admin']['add'];?></button>
  241. </form>
  242. </div>
  243. </div>
  244. </div>
  245. </div> <!-- /container -->
  246. <script src="https://cdnjs.cloudflare.com/ajax/libs/jqueryui/1.11.4/jquery-ui.min.js" integrity="sha384-YWP9O4NjmcGo4oEJFXvvYSEzuHIvey+LbXkBNJ1Kd0yfugEZN9NCQNpRYBVC1RvA" crossorigin="anonymous"></script>
  247. <script src="js/sorttable.js"></script>
  248. <script src="js/admin.js"></script>
  249. <?php
  250. require_once("inc/footer.inc.php");
  251. } else {
  252. header('Location: /');
  253. exit();
  254. }
  255. ?>