admin.php 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414
  1. <?php
  2. require_once("inc/prerequisites.inc.php");
  3. if (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] == "admin") {
  4. require_once("inc/header.inc.php");
  5. $_SESSION['return_to'] = $_SERVER['REQUEST_URI'];
  6. $tfa_data = get_tfa();
  7. ?>
  8. <div class="container">
  9. <ul class="nav nav-tabs" role="tablist">
  10. <li role="presentation" class="active">
  11. <a href="#tab-access" aria-controls="tab-access" role="tab" data-toggle="tab"><?=$lang['admin']['access'];?></a>
  12. </li>
  13. <li role="presentation">
  14. <a href="#tab-config" aria-controls="tab-config" role="tab" data-toggle="tab"><?=$lang['admin']['configuration'];?></a>
  15. </li>
  16. <li class="dropdown">
  17. <a class="dropdown-toggle" data-toggle="dropdown" href="#">Logs
  18. <span class="caret"></span></a>
  19. <ul class="dropdown-menu">
  20. <li role="presentation"><a href="#tab-postfix-logs" aria-controls="tab-postfix-logs" role="tab" data-toggle="tab">Postfix</a></li>
  21. <li role="presentation"><a href="#tab-dovecot-logs" aria-controls="tab-dovecot-logs" role="tab" data-toggle="tab">Dovecot</a></li>
  22. <li role="presentation"><a href="#tab-sogo-logs" aria-controls="tab-sogo-logs" role="tab" data-toggle="tab">SOGo</a></li>
  23. <li role="presentation"><a href="#tab-fail2ban-logs" aria-controls="tab-fail2ban-logs" role="tab" data-toggle="tab">Fail2ban</a></li>
  24. <li role="presentation"><a href="#tab-rspamd-history" aria-controls="tab-rspamd-history" role="tab" data-toggle="tab">Rspamd</a></li>
  25. </ul>
  26. </li>
  27. </ul>
  28. <div class="tab-content" style="padding-top:20px">
  29. <div role="tabpanel" class="tab-pane active" id="tab-access">
  30. <div class="panel panel-danger">
  31. <div class="panel-heading"><?=$lang['admin']['admin_details'];?></div>
  32. <div class="panel-body">
  33. <form class="form-horizontal" autocapitalize="none" data-id="admin" autocorrect="off" role="form" method="post">
  34. <?php $admindetails = get_admin_details(); ?>
  35. <div class="form-group">
  36. <label class="control-label col-sm-3" for="admin_user"><?=$lang['admin']['admin'];?>:</label>
  37. <div class="col-sm-9">
  38. <input type="text" class="form-control" name="admin_user" id="admin_user" value="<?=htmlspecialchars($admindetails['username']);?>" required>
  39. &rdsh; <kbd>a-z A-Z - _ .</kbd>
  40. </div>
  41. </div>
  42. <div class="form-group">
  43. <label class="control-label col-sm-3" for="admin_pass"><?=$lang['admin']['password'];?>:</label>
  44. <div class="col-sm-9">
  45. <input type="password" class="form-control" name="admin_pass" id="admin_pass" placeholder="<?=$lang['admin']['unchanged_if_empty'];?>">
  46. </div>
  47. </div>
  48. <div class="form-group">
  49. <label class="control-label col-sm-3" for="admin_pass2"><?=$lang['admin']['password_repeat'];?>:</label>
  50. <div class="col-sm-9">
  51. <input type="password" class="form-control" name="admin_pass2" id="admin_pass2">
  52. </div>
  53. </div>
  54. <div class="form-group">
  55. <div class="col-sm-offset-3 col-sm-9">
  56. <button class="btn btn-default" id="edit_selected" data-id="admin" data-item="null" data-api-url='edit/admin' data-api-attr='{}' href="#"><?=$lang['admin']['save'];?></button>
  57. </div>
  58. </div>
  59. </form>
  60. <hr>
  61. <div class="row">
  62. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['tfa'];?>:</div>
  63. <div class="col-sm-9 col-xs-7">
  64. <p id="tfa_pretty"><?=$tfa_data['pretty'];?></p>
  65. <div id="tfa_additional">
  66. <?php if (!empty($tfa_data['additional'])):
  67. foreach ($tfa_data['additional'] as $key_info): ?>
  68. <form style="display:inline;" method="post">
  69. <input type="hidden" name="unset_tfa_key" value="<?=$key_info['id'];?>" />
  70. <div style="padding:4px;margin:4px" class="label label-<?=($_SESSION['tfa_id'] == $key_info['id']) ? 'success' : 'default'; ?>">
  71. <?=$key_info['key_id'];?>
  72. <a href="#" style="font-weight:bold;color:white" onClick="$(this).closest('form').submit()">[<?=strtolower($lang['admin']['remove']);?>]</a>
  73. </div>
  74. </form>
  75. <?php endforeach;
  76. endif;?>
  77. </div>
  78. <br />
  79. </div>
  80. </div>
  81. <div class="row">
  82. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['set_tfa'];?>:</div>
  83. <div class="col-sm-9 col-xs-7">
  84. <select data-width="auto" id="selectTFA" class="selectpicker" title="<?=$lang['tfa']['select'];?>">
  85. <option value="yubi_otp"><?=$lang['tfa']['yubi_otp'];?></option>
  86. <option value="u2f"><?=$lang['tfa']['u2f'];?></option>
  87. <option value="totp"><?=$lang['tfa']['totp'];?></option>
  88. <option value="none"><?=$lang['tfa']['none'];?></option>
  89. </select>
  90. </div>
  91. </div>
  92. </div>
  93. </div>
  94. <div class="panel panel-default">
  95. <div class="panel-heading"><?=$lang['admin']['domain_admins'];?></div>
  96. <div class="panel-body">
  97. <div class="table-responsive">
  98. <table class="table table-striped" id="domainadminstable"></table>
  99. </div>
  100. <div class="mass-actions-admin">
  101. <div class="btn-group">
  102. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="domain_admins" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  103. <a class="btn btn-sm btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['mailbox']['quick_actions'];?> <span class="caret"></span></a>
  104. <ul class="dropdown-menu">
  105. <li><a id="edit_selected" data-id="domain_admins" data-api-url='edit/domain-admin' data-api-attr='{"active":"1"}' href="#"><?=$lang['mailbox']['activate'];?></a></li>
  106. <li><a id="edit_selected" data-id="domain_admins" data-api-url='edit/domain-admin' data-api-attr='{"active":"0"}' href="#"><?=$lang['mailbox']['deactivate'];?></a></li>
  107. <li role="separator" class="divider"></li>
  108. <li><a id="edit_selected" data-id="domain_admins" data-api-url='edit/domain-admin' data-api-attr='{"disable_tfa":"1"}' href="#"><?=$lang['tfa']['disable_tfa'];?></a></li>
  109. <li role="separator" class="divider"></li>
  110. <li><a id="delete_selected" data-id="domain_admins" data-api-url='delete/domain-admin' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  111. </ul>
  112. <a class="btn btn-sm btn-success" data-id="add_domain_admin" data-toggle="modal" data-target="#addDomainAdminModal" href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['admin']['add_domain_admin'];?></a>
  113. </div>
  114. </div>
  115. </div>
  116. </div>
  117. </div>
  118. <div role="tabpanel" class="tab-pane" id="tab-config">
  119. <div class="panel panel-default">
  120. <div class="panel-heading"><?=$lang['admin']['dkim_keys'];?></div>
  121. <div class="panel-body">
  122. <div class="mass-actions-admin">
  123. <div class="btn-group btn-group-sm">
  124. <button type="button" id="toggle_multi_select_all" data-id="dkim" class="btn btn-default"><?=$lang['mailbox']['toggle_all'];?></button>
  125. <button type="button" id="delete_selected" name="delete_selected" data-id="dkim" data-api-url="delete/dkim" class="btn btn-danger"><?=$lang['admin']['remove'];?></button>
  126. </div>
  127. </div>
  128. <?php
  129. foreach(mailbox('get', 'domains') as $domain) {
  130. if (!empty($dkim = dkim('details', $domain))) {
  131. ?>
  132. <div class="row">
  133. <div class="col-xs-1"><input type="checkbox" data-id="dkim" name="multi_select" value="<?=$domain;?>" /></div>
  134. <div class="col-xs-2">
  135. <p>Domain: <strong><?=htmlspecialchars($domain);?></strong><br />
  136. <span class="label label-success"><?=$lang['admin']['dkim_key_valid'];?></span>
  137. <span class="label label-primary">Selector '<?=$dkim['dkim_selector'];?>'</span>
  138. <span class="label label-info"><?=$dkim['length'];?> bit</span>
  139. </p>
  140. </div>
  141. <div class="col-xs-9">
  142. <pre><?=$dkim['dkim_txt'];?></pre>
  143. </div>
  144. </div>
  145. <?php
  146. }
  147. else {
  148. ?>
  149. <div class="row">
  150. <div class="col-xs-1"><input type="checkbox" data-id="dkim" name="multi_select" value="<?=$domain;?>" disabled /></div>
  151. <div class="col-xs-2">
  152. <p>Domain: <strong><?=htmlspecialchars($domain);?></strong><br /><span class="label label-danger"><?=$lang['admin']['dkim_key_missing'];?></span></p>
  153. </div>
  154. <div class="col-xs-9"><pre>-</pre></div>
  155. </div>
  156. <?php
  157. }
  158. foreach(mailbox('get', 'alias_domains', $domain) as $alias_domain) {
  159. if (!empty($dkim = dkim('details', $alias_domain))) {
  160. ?>
  161. <div class="row">
  162. <div class="col-xs-1"><input type="checkbox" data-id="dkim" name="multi_select" value="<?=$alias_domain;?>" /></div>
  163. <div class="col-xs-1 col-xs-offset-1">
  164. <p><small>↳ Alias-Domain: <strong><?=htmlspecialchars($alias_domain);?></strong><br /></small>
  165. <span class="label label-success"><?=$lang['admin']['dkim_key_valid'];?></span>
  166. <span class="label label-primary">Selector '<?=$dkim['dkim_selector'];?>'</span>
  167. <span class="label label-info"><?=$dkim['length'];?> bit</span>
  168. </p>
  169. </div>
  170. <div class="col-xs-9">
  171. <pre><?=$dkim['dkim_txt'];?></pre>
  172. </div>
  173. </div>
  174. <?php
  175. }
  176. else {
  177. ?>
  178. <div class="row">
  179. <div class="col-xs-1"><input type="checkbox" data-id="dkim" name="multi_select" value="<?=$domain;?>" disabled /></div>
  180. <div class="col-xs-1 col-xs-offset-1">
  181. <p><small>↳ Alias-Domain: <strong><?=htmlspecialchars($alias_domain);?></strong><br /></small><span class="label label-danger"><?=$lang['admin']['dkim_key_missing'];?></span></p>
  182. </div>
  183. <div class="col-xs-9"><pre>-</pre></div>
  184. </div>
  185. <?php
  186. }
  187. }
  188. }
  189. foreach(dkim('blind') as $blind) {
  190. if (!empty($dkim = dkim('details', $blind))) {
  191. ?>
  192. <div class="row">
  193. <div class="col-xs-1"><input type="checkbox" data-id="dkim" name="multi_select" value="<?=$blind;?>" /></div>
  194. <div class="col-xs-2">
  195. <p>Domain: <strong><?=htmlspecialchars($blind);?></strong><br />
  196. <span class="label label-warning"><?=$lang['admin']['dkim_key_unused'];?></span>
  197. <span class="label label-primary">Selector '<?=$dkim['dkim_selector'];?>'</span>
  198. <span class="label label-info"><?=$dkim['length'];?> bit</span>
  199. </p>
  200. </div>
  201. <div class="col-xs-9">
  202. <pre><?=$dkim['dkim_txt'];?></pre>
  203. </div>
  204. </div>
  205. <?php
  206. }
  207. }
  208. ?>
  209. <legend style="margin-top:40px"><?=$lang['admin']['dkim_add_key'];?></legend>
  210. <form class="form-inline" data-id="dkim" role="form" method="post">
  211. <div class="form-group">
  212. <label for="domain">Domain</label>
  213. <input class="form-control" id="domain" name="domain" placeholder="example.org" required>
  214. </div>
  215. <div class="form-group">
  216. <label for="domain">Selector</label>
  217. <input class="form-control" id="dkim_selector" name="dkim_selector" value="dkim" required>
  218. </div>
  219. <div class="form-group">
  220. <select data-width="200px" class="form-control" id="key_size" name="key_size" title="<?=$lang['admin']['dkim_key_length'];?>" required>
  221. <option data-subtext="bits">1024</option>
  222. <option data-subtext="bits">2048</option>
  223. </select>
  224. </div>
  225. <button class="btn btn-default" id="add_item" data-id="dkim" data-api-url='add/dkim' data-api-attr='{}' href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['admin']['add'];?></button>
  226. </form>
  227. </div>
  228. </div>
  229. <div class="panel panel-default">
  230. <div class="panel-heading"><?=$lang['admin']['forwarding_hosts'];?></div>
  231. <div class="panel-body">
  232. <p style="margin-bottom:40px"><?=$lang['admin']['forwarding_hosts_hint'];?></p>
  233. <div class="table-responsive">
  234. <table class="table table-striped table-condensed" id="forwardinghoststable"></table>
  235. </div>
  236. <div class="mass-actions-admin">
  237. <div class="btn-group btn-group-sm">
  238. <button type="button" id="toggle_multi_select_all" data-id="fwdhosts" class="btn btn-default"><?=$lang['mailbox']['toggle_all'];?></button>
  239. <a class="btn btn-sm btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['mailbox']['quick_actions'];?> <span class="caret"></span></a>
  240. <ul class="dropdown-menu">
  241. <li><a id="edit_selected" data-id="fwdhosts" data-api-url='edit/fwdhost' data-api-attr='{"keep_spam":"0"}' href="#">Enable spam filter</a></li>
  242. <li><a id="edit_selected" data-id="fwdhosts" data-api-url='edit/fwdhost' data-api-attr='{"keep_spam":"1"}' href="#">Disable spam filter</a></li>
  243. <li role="separator" class="divider"></li>
  244. <li><a id="delete_selected" data-id="fwdhosts" data-api-url='delete/fwdhost' href="#"><?=$lang['admin']['remove'];?></a></li>
  245. </ul>
  246. </div>
  247. </div>
  248. <legend><?=$lang['admin']['add_forwarding_host'];?></legend>
  249. <p class="help-block"><?=$lang['admin']['forwarding_hosts_add_hint'];?></p>
  250. <form class="form-inline" data-id="fwdhost" role="form" method="post">
  251. <div class="form-group">
  252. <label for="hostname"><?=$lang['admin']['host'];?></label>
  253. <input class="form-control" id="hostname" name="hostname" placeholder="example.org" required>
  254. </div>
  255. <div class="form-group">
  256. <select data-width="200px" class="form-control" id="filter_spam" name="filter_spam" title="<?=$lang['user']['spamfilter'];?>" required>
  257. <option value="1"><?=$lang['admin']['active'];?></option>
  258. <option value="0"><?=$lang['admin']['inactive'];?></option>
  259. </select>
  260. </div>
  261. <button class="btn btn-default" id="add_item" data-id="fwdhost" data-api-url='add/fwdhost' data-api-attr='{}' href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['admin']['add'];?></button>
  262. </form>
  263. </div>
  264. </div>
  265. <div class="panel panel-default">
  266. <div class="panel-heading">Fail2Ban parameters</div>
  267. <div class="panel-body">
  268. <?php
  269. $f2b_data = get_f2b_parameters();
  270. ?>
  271. <form class="form" data-id="f2b" role="form" method="post">
  272. <div class="form-group">
  273. <label for="ban_time">Ban time (s):</label>
  274. <input type="number" class="form-control" id="ban_time" name="ban_time" value="<?=$f2b_data['ban_time'];?>" required>
  275. </div>
  276. <div class="form-group">
  277. <label for="max_attempts">Max. attempts:</label>
  278. <input type="number" class="form-control" id="max_attempts" name="max_attempts" value="<?=$f2b_data['max_attempts'];?>" required>
  279. </div>
  280. <div class="form-group">
  281. <label for="retry_window">Retry window (s) for max. attempts:</label>
  282. <input type="number" class="form-control" id="retry_window" name="retry_window" value="<?=$f2b_data['retry_window'];?>" required>
  283. </div>
  284. <div class="form-group">
  285. <label for="retry_window">Whitelisted networks/hosts</label>
  286. <textarea class="form-control" id="whitelist" name="whitelist" rows="5"><?=$f2b_data['whitelist'];?></textarea>
  287. </div>
  288. <button class="btn btn-default" id="add_item" data-id="f2b" data-api-url='edit/fail2ban' data-api-attr='{}' href="#"><span class="glyphicon glyphicon-check"></span> <?=$lang['admin']['save'];?></button>
  289. </form>
  290. </div>
  291. </div>
  292. </div>
  293. <div role="tabpanel" class="tab-pane" id="tab-postfix-logs">
  294. <div class="panel panel-default">
  295. <div class="panel-heading">Postfix
  296. <div class="btn-group pull-right">
  297. <a class="btn btn-xs btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['admin']['action'];?> <span class="caret"></span></a>
  298. <ul class="dropdown-menu">
  299. <li><a href="#" id="refresh_postfix_log"><?=$lang['admin']['refresh'];?></a></li>
  300. </ul>
  301. </div>
  302. </div>
  303. <div class="panel-body">
  304. <div class="table-responsive">
  305. <table class="table table-striped table-condensed" id="postfix_log"></table>
  306. </div>
  307. </div>
  308. </div>
  309. </div>
  310. <div role="tabpanel" class="tab-pane" id="tab-dovecot-logs">
  311. <div class="panel panel-default">
  312. <div class="panel-heading">Dovecot
  313. <div class="btn-group pull-right">
  314. <a class="btn btn-xs btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['admin']['action'];?> <span class="caret"></span></a>
  315. <ul class="dropdown-menu">
  316. <li><a href="#" id="refresh_dovecot_log"><?=$lang['admin']['refresh'];?></a></li>
  317. </ul>
  318. </div>
  319. </div>
  320. <div class="panel-body">
  321. <div class="table-responsive">
  322. <table class="table table-striped table-condensed" id="dovecot_log"></table>
  323. </div>
  324. </div>
  325. </div>
  326. </div>
  327. <div role="tabpanel" class="tab-pane" id="tab-sogo-logs">
  328. <div class="panel panel-default">
  329. <div class="panel-heading">SOGo
  330. <div class="btn-group pull-right">
  331. <a class="btn btn-xs btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['admin']['action'];?> <span class="caret"></span></a>
  332. <ul class="dropdown-menu">
  333. <li><a href="#" id="refresh_sogo_log"><?=$lang['admin']['refresh'];?></a></li>
  334. </ul>
  335. </div>
  336. </div>
  337. <div class="panel-body">
  338. <div class="table-responsive">
  339. <table class="table table-striped table-condensed" id="sogo_log"></table>
  340. </div>
  341. </div>
  342. </div>
  343. </div>
  344. <div role="tabpanel" class="tab-pane" id="tab-fail2ban-logs">
  345. <div class="panel panel-default">
  346. <div class="panel-heading">Fail2ban
  347. <div class="btn-group pull-right">
  348. <a class="btn btn-xs btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['admin']['action'];?> <span class="caret"></span></a>
  349. <ul class="dropdown-menu">
  350. <li><a href="#" id="refresh_fail2ban_log"><?=$lang['admin']['refresh'];?></a></li>
  351. </ul>
  352. </div>
  353. </div>
  354. <div class="panel-body">
  355. <div class="table-responsive">
  356. <table class="table table-striped table-condensed" id="fail2ban_log"></table>
  357. </div>
  358. </div>
  359. </div>
  360. </div>
  361. <div role="tabpanel" class="tab-pane" id="tab-rspamd-history">
  362. <div class="panel panel-default">
  363. <div class="panel-heading">Rspamd history
  364. <div class="btn-group pull-right">
  365. <a class="btn btn-xs btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['admin']['action'];?> <span class="caret"></span></a>
  366. <ul class="dropdown-menu">
  367. <li><a href="#" id="refresh_rspamd_history"><?=$lang['admin']['refresh'];?></a></li>
  368. </ul>
  369. </div>
  370. </div>
  371. <div class="panel-body">
  372. <div class="table-responsive">
  373. <table class="table table-striped table-condensed" id="rspamd_history"></table>
  374. </div>
  375. </div>
  376. </div>
  377. </div>
  378. </div>
  379. </div> <!-- /container -->
  380. <?php
  381. require_once $_SERVER['DOCUMENT_ROOT'] . '/modals/admin.php';
  382. ?>
  383. <script type='text/javascript'>
  384. <?php
  385. $lang_admin = json_encode($lang['admin']);
  386. echo "var lang = ". $lang_admin . ";\n";
  387. echo "var csrf_token = '". $_SESSION['CSRF']['TOKEN'] . "';\n";
  388. echo "var pagination_size = '". $PAGINATION_SIZE . "';\n";
  389. echo "var log_pagination_size = '". $LOG_PAGINATION_SIZE . "';\n";
  390. ?>
  391. </script>
  392. <script src="js/footable.min.js"></script>
  393. <script src="js/admin.js"></script>
  394. <?php
  395. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/footer.inc.php';
  396. } else {
  397. header('Location: /');
  398. exit();
  399. }
  400. ?>