autodiscover.php 5.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160
  1. <?php
  2. require_once 'inc/vars.inc.php';
  3. require_once 'inc/functions.inc.php';
  4. $default_autodiscover_config = $autodiscover_config;
  5. if(file_exists('inc/vars.local.inc.php')) {
  6. include_once 'inc/vars.local.inc.php';
  7. }
  8. $configuration = array_merge($default_autodiscover_config, $autodiscover_config);
  9. error_reporting(0);
  10. $data = trim(file_get_contents("php://input"));
  11. // Desktop client needs IMAP, unless it's Outlook 2013 or higher on Windows
  12. if (strpos($data, 'autodiscover/outlook/responseschema') !== false) { // desktop client
  13. $configuration['autodiscoverType'] = 'imap';
  14. if ($configuration['useEASforOutlook'] == 'yes' &&
  15. // Office for macOS does not support EAS
  16. strpos($_SERVER['HTTP_USER_AGENT'], 'Mac') === false &&
  17. // Outlook 2013 (version 15) or higher
  18. preg_match('/(Outlook|Office).+1[5-9]\./', $_SERVER['HTTP_USER_AGENT'])
  19. ) {
  20. $configuration['autodiscoverType'] = 'activesync';
  21. }
  22. }
  23. $dsn = $database_type . ":host=" . $database_host . ";dbname=" . $database_name;
  24. $opt = [
  25. PDO::ATTR_ERRMODE => PDO::ERRMODE_EXCEPTION,
  26. PDO::ATTR_DEFAULT_FETCH_MODE => PDO::FETCH_ASSOC,
  27. PDO::ATTR_EMULATE_PREPARES => false,
  28. ];
  29. $pdo = new PDO($dsn, $database_user, $database_pass, $opt);
  30. $login_user = strtolower(trim($_SERVER['PHP_AUTH_USER']));
  31. $login_role = check_login($login_user, $_SERVER['PHP_AUTH_PW']);
  32. if (!isset($_SERVER['PHP_AUTH_USER']) OR $login_role !== "user") {
  33. header('WWW-Authenticate: Basic realm=""');
  34. header('HTTP/1.0 401 Unauthorized');
  35. exit(0);
  36. }
  37. else {
  38. if (isset($_SERVER['PHP_AUTH_USER']) && isset($_SERVER['PHP_AUTH_PW'])) {
  39. if ($login_role === "user") {
  40. header("Content-Type: application/xml");
  41. echo '<?xml version="1.0" encoding="utf-8" ?>' . PHP_EOL;
  42. ?>
  43. <Autodiscover xmlns="http://schemas.microsoft.com/exchange/autodiscover/responseschema/2006">
  44. <?php
  45. if(!$data) {
  46. list($usec, $sec) = explode(' ', microtime());
  47. ?>
  48. <Response>
  49. <Error Time="<?=date('H:i:s', $sec) . substr($usec, 0, strlen($usec) - 2);?>" Id="2477272013">
  50. <ErrorCode>600</ErrorCode>
  51. <Message>Invalid Request</Message>
  52. <DebugData />
  53. </Error>
  54. </Response>
  55. </Autodiscover>
  56. <?php
  57. exit(0);
  58. }
  59. try {
  60. $discover = new SimpleXMLElement($data);
  61. $email = $discover->Request->EMailAddress;
  62. } catch (Exception $e) {
  63. $email = $_SERVER['PHP_AUTH_USER'];
  64. }
  65. $username = trim($email);
  66. try {
  67. $stmt = $pdo->prepare("SELECT `name` FROM `mailbox` WHERE `username`= :username");
  68. $stmt->execute(array(':username' => $username));
  69. $MailboxData = $stmt->fetch(PDO::FETCH_ASSOC);
  70. }
  71. catch(PDOException $e) {
  72. die("Failed to determine name from SQL");
  73. }
  74. if (!empty($MailboxData['name'])) {
  75. $displayname = utf8_encode($MailboxData['name']);
  76. }
  77. else {
  78. $displayname = $email;
  79. }
  80. if ($configuration['autodiscoverType'] == 'imap') {
  81. ?>
  82. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/outlook/responseschema/2006a">
  83. <User>
  84. <DisplayName><?=$displayname;?></DisplayName>
  85. </User>
  86. <Account>
  87. <AccountType>email</AccountType>
  88. <Action>settings</Action>
  89. <Protocol>
  90. <Type>IMAP</Type>
  91. <Server><?=$configuration['imap']['server'];?></Server>
  92. <Port><?=$configuration['imap']['port'];?></Port>
  93. <DomainRequired>off</DomainRequired>
  94. <LoginName><?=$email;?></LoginName>
  95. <SPA>off</SPA>
  96. <SSL>on</SSL>
  97. <AuthRequired>on</AuthRequired>
  98. </Protocol>
  99. <Protocol>
  100. <Type>SMTP</Type>
  101. <Server><?=$configuration['smtp']['server'];?></Server>
  102. <Port><?=$configuration['smtp']['port'];?></Port>
  103. <DomainRequired>off</DomainRequired>
  104. <LoginName><?=$email;?></LoginName>
  105. <SPA>off</SPA>
  106. <SSL>on</SSL>
  107. <AuthRequired>on</AuthRequired>
  108. <UsePOPAuth>on</UsePOPAuth>
  109. <SMTPLast>off</SMTPLast>
  110. </Protocol>
  111. <Protocol>
  112. <Type>CalDAV</Type>
  113. <Server>https://<?=$configuration['caldav']['server'];?><?php if ($configuration['caldav']['port'] != 443) echo ':'.$configuration['caldav']['port']; ?>/SOGo/dav/<?=$email;?>/Calendar</Server>
  114. <DomainRequired>off</DomainRequired>
  115. <LoginName><?=$email;?></LoginName>
  116. </Protocol>
  117. <Protocol>
  118. <Type>CardDAV</Type>
  119. <Server>https://<?=$configuration['carddav']['server'];?><?php if ($configuration['caldav']['port'] != 443) echo ':'.$configuration['carddav']['port']; ?>/SOGo/dav/<?=$email;?>/Contacts</Server>
  120. <DomainRequired>off</DomainRequired>
  121. <LoginName><?=$email;?></LoginName>
  122. </Protocol>
  123. </Account>
  124. </Response>
  125. <?php
  126. }
  127. else if ($configuration['autodiscoverType'] == 'activesync') {
  128. ?>
  129. <Response xmlns="http://schemas.microsoft.com/exchange/autodiscover/mobilesync/responseschema/2006">
  130. <Culture>en:en</Culture>
  131. <User>
  132. <DisplayName><?=$displayname;?></DisplayName>
  133. <EMailAddress><?=$email;?></EMailAddress>
  134. </User>
  135. <Action>
  136. <Settings>
  137. <Server>
  138. <Type>MobileSync</Type>
  139. <Url><?=$configuration['activesync']['url'];?></Url>
  140. <Name><?=$configuration['activesync']['url'];?></Name>
  141. </Server>
  142. </Settings>
  143. </Action>
  144. </Response>
  145. <?php
  146. }
  147. ?>
  148. </Autodiscover>
  149. <?php
  150. }
  151. }
  152. }
  153. ?>