user.php 44 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697
  1. <?php
  2. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/prerequisites.inc.php';
  3. if (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] == 'domainadmin') {
  4. /*
  5. / DOMAIN ADMIN
  6. */
  7. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/header.inc.php';
  8. $_SESSION['return_to'] = $_SERVER['REQUEST_URI'];
  9. $tfa_data = get_tfa();
  10. $fido2_data = fido2(array("action" => "get_friendly_names"));
  11. $username = $_SESSION['mailcow_cc_username'];
  12. ?>
  13. <div class="container">
  14. <h3><?=$lang['user']['user_settings'];?></h3>
  15. <div class="panel panel-default">
  16. <div class="panel-heading"><?=$lang['user']['user_settings'];?></div>
  17. <div class="panel-body">
  18. <div class="row">
  19. <div class="col-sm-offset-3 col-sm-9">
  20. <p><a href="#pwChangeModal" data-toggle="modal">[<?=$lang['user']['change_password'];?>]</a></p>
  21. <p><small>
  22. <?php
  23. if ($_SESSION['mailcow_cc_last_login']['remote']):
  24. ?>
  25. <span style="margin-right:10px" class="glyphicon glyphicon-log-in"></span> <span data-time="<?=$_SESSION['mailcow_cc_last_login']['time'];?>" class="last_login_date"></span> (<?=$_SESSION['mailcow_cc_last_login']['remote'];?>)
  26. <?php
  27. else: echo $lang['user']['no_last_login']; endif;
  28. ?>
  29. </small></p>
  30. <p>
  31. </div>
  32. </div>
  33. <hr>
  34. <? // TFA ?>
  35. <div class="row">
  36. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['tfa'];?></div>
  37. <div class="col-sm-9 col-xs-7">
  38. <p id="tfa_pretty"><?=$tfa_data['pretty'];?></p>
  39. <table id="tfa_keys">
  40. <?php if (!empty($tfa_data['additional'])):
  41. foreach ($tfa_data['additional'] as $key_info): ?>
  42. <form style="display:inline;" method="post">
  43. <input type="hidden" name="unset_tfa_key" value="<?=$key_info['id'];?>" />
  44. <div class="label label-default">🔑 <?=$key_info['key_id'];?> <a href="#" style="font-weight:bold;color:white" onClick="$(this).closest('form').submit()">[<?=strtolower($lang['admin']['remove']);?>]</a></div>
  45. </form>
  46. <?php endforeach;
  47. endif;?>
  48. </table>
  49. <br />
  50. </div>
  51. </div>
  52. <div class="row">
  53. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['tfa']['set_tfa'];?></div>
  54. <div class="col-sm-9 col-xs-7">
  55. <select id="selectTFA" class="selectpicker" title="<?=$lang['tfa']['select'];?>">
  56. <option value="yubi_otp"><?=$lang['tfa']['yubi_otp'];?></option>
  57. <option value="u2f"><?=$lang['tfa']['u2f'];?></option>
  58. <option value="totp"><?=$lang['tfa']['totp'];?></option>
  59. <option value="none"><?=$lang['tfa']['none'];?></option>
  60. </select>
  61. </div>
  62. </div>
  63. <? // FIDO2 ?>
  64. <legend style="margin-top:20px">
  65. <svg xmlns="http://www.w3.org/2000/svg" width="24" height="24" viewBox="0 0 24 24" style="margin-bottom: -5px;">
  66. <path d="M17.81 4.47c-.08 0-.16-.02-.23-.06C15.66 3.42 14 3 12.01 3c-1.98 0-3.86.47-5.57 1.41-.24.13-.54.04-.68-.2-.13-.24-.04-.55.2-.68C7.82 2.52 9.86 2 12.01 2c2.13 0 3.99.47 6.03 1.52.25.13.34.43.21.67-.09.18-.26.28-.44.28zM3.5 9.72c-.1 0-.2-.03-.29-.09-.23-.16-.28-.47-.12-.7.99-1.4 2.25-2.5 3.75-3.27C9.98 4.04 14 4.03 17.15 5.65c1.5.77 2.76 1.86 3.75 3.25.16.22.11.54-.12.7-.23.16-.54.11-.7-.12-.9-1.26-2.04-2.25-3.39-2.94-2.87-1.47-6.54-1.47-9.4.01-1.36.7-2.5 1.7-3.4 2.96-.08.14-.23.21-.39.21zm6.25 12.07c-.13 0-.26-.05-.35-.15-.87-.87-1.34-1.43-2.01-2.64-.69-1.23-1.05-2.73-1.05-4.34 0-2.97 2.54-5.39 5.66-5.39s5.66 2.42 5.66 5.39c0 .28-.22.5-.5.5s-.5-.22-.5-.5c0-2.42-2.09-4.39-4.66-4.39-2.57 0-4.66 1.97-4.66 4.39 0 1.44.32 2.77.93 3.85.64 1.15 1.08 1.64 1.85 2.42.19.2.19.51 0 .71-.11.1-.24.15-.37.15zm7.17-1.85c-1.19 0-2.24-.3-3.1-.89-1.49-1.01-2.38-2.65-2.38-4.39 0-.28.22-.5.5-.5s.5.22.5.5c0 1.41.72 2.74 1.94 3.56.71.48 1.54.71 2.54.71.24 0 .64-.03 1.04-.1.27-.05.53.13.58.41.05.27-.13.53-.41.58-.57.11-1.07.12-1.21.12zM14.91 22c-.04 0-.09-.01-.13-.02-1.59-.44-2.63-1.03-3.72-2.1-1.4-1.39-2.17-3.24-2.17-5.22 0-1.62 1.38-2.94 3.08-2.94 1.7 0 3.08 1.32 3.08 2.94 0 1.07.93 1.94 2.08 1.94s2.08-.87 2.08-1.94c0-3.77-3.25-6.83-7.25-6.83-2.84 0-5.44 1.58-6.61 4.03-.39.81-.59 1.76-.59 2.8 0 .78.07 2.01.67 3.61.1.26-.03.55-.29.64-.26.1-.55-.04-.64-.29-.49-1.31-.73-2.61-.73-3.96 0-1.2.23-2.29.68-3.24 1.33-2.79 4.28-4.6 7.51-4.6 4.55 0 8.25 3.51 8.25 7.83 0 1.62-1.38 2.94-3.08 2.94s-3.08-1.32-3.08-2.94c0-1.07-.93-1.94-2.08-1.94s-2.08.87-2.08 1.94c0 1.71.66 3.31 1.87 4.51.95.94 1.86 1.46 3.27 1.85.27.07.42.35.35.61-.05.23-.26.38-.47.38z"/>
  67. </svg>
  68. <?=$lang['fido2']['fido2_auth'];?></legend>
  69. <div class="row">
  70. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['fido2']['known_ids'];?>:</div>
  71. <div class="col-sm-9 col-xs-7">
  72. <div class="table-responsive">
  73. <table class="table table-striped table-hover table-condensed" id="fido2_keys">
  74. <tr>
  75. <th>ID</th>
  76. <th style="min-width:240px;text-align: right"><?=$lang['admin']['action'];?></th>
  77. </tr>
  78. <?php
  79. if (!empty($fido2_data)) {
  80. foreach ($fido2_data as $key_info) {
  81. ?>
  82. <tr>
  83. <td>
  84. <?=($_SESSION['fido2_cid'] == $key_info['cid']) ? '→ ' : NULL; ?><?=(!empty($key_info['fn']))?$key_info['fn']:$key_info['subject'];?>
  85. </td>
  86. <td style="min-width:240px;text-align: right">
  87. <form style="display:inline;" method="post">
  88. <input type="hidden" name="unset_fido2_key" value="<?=$key_info['cid'];?>" />
  89. <div class="btn-group">
  90. <a href="#" class="btn btn-xs btn-default" data-cid="<?=$key_info['cid'];?>" data-subject="<?=base64_encode($key_info['subject']);?>" data-toggle="modal" data-target="#fido2ChangeFn"><span class="glyphicon glyphicon-pencil"></span> <?=strtolower($lang['fido2']['rename']);?></a>
  91. <a href="#" onClick='return confirm("<?=$lang['admin']['ays'];?>")?$(this).closest("form").submit():"";' class="btn btn-xs btn-danger"><span class="glyphicon glyphicon-trash"></span> <?=strtolower($lang['admin']['remove']);?></a>
  92. </form>
  93. </div>
  94. </td>
  95. </tr>
  96. <?php
  97. }
  98. }
  99. ?>
  100. </table>
  101. </div>
  102. <br>
  103. </div>
  104. </div>
  105. <div class="row">
  106. <div class="col-sm-offset-3 col-sm-9">
  107. <button class="btn btn-sm btn-primary" id="register-fido2"><?=$lang['fido2']['set_fido2'];?></button>
  108. </div>
  109. </div>
  110. <br>
  111. <div class="row" id="status-fido2">
  112. <div class="col-sm-3 col-xs-5 text-right"><?=$lang['fido2']['register_status'];?>:</div>
  113. <div class="col-sm-9 col-xs-7">
  114. <div id="fido2-alerts">-</div>
  115. </div>
  116. <br>
  117. </div>
  118. </div>
  119. </div>
  120. </div>
  121. <?php
  122. }
  123. elseif (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] == 'user') {
  124. /*
  125. / USER
  126. */
  127. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/header.inc.php';
  128. $_SESSION['return_to'] = $_SERVER['REQUEST_URI'];
  129. $username = $_SESSION['mailcow_cc_username'];
  130. $mailboxdata = mailbox('get', 'mailbox_details', $username);
  131. $pushover_data = pushover('get', $username);
  132. $clientconfigstr = "host=" . urlencode($mailcow_hostname) . "&email=" . urlencode($username) . "&name=" . urlencode($mailboxdata['name']) . "&ui=" . urlencode(strtok($_SERVER['HTTP_HOST'], ':')) . "&port=" . urlencode($autodiscover_config['caldav']['port']);
  133. if ($autodiscover_config['useEASforOutlook'] == 'yes')
  134. $clientconfigstr .= "&outlookEAS=1";
  135. if (file_exists('thunderbird-plugins/version.csv')) {
  136. $fh = fopen('thunderbird-plugins/version.csv', 'r');
  137. if ($fh) {
  138. while (($row = fgetcsv($fh, 1000, ';')) !== FALSE) {
  139. if ($row[0] == 'sogo-connector@inverse.ca') {
  140. $clientconfigstr .= "&connector=" . urlencode($row[1]);
  141. }
  142. }
  143. fclose($fh);
  144. }
  145. }
  146. ?>
  147. <div class="container">
  148. <!-- Nav tabs -->
  149. <ul class="nav nav-tabs" role="tablist">
  150. <li role="presentation" class="active"><a href="#userSettings" aria-controls="userSettings" role="tab" data-toggle="tab"><?=$lang['user']['mailbox_details'];?></a></li>
  151. <li role="presentation"><a href="#SpamAliases" aria-controls="SpamAliases" role="tab" data-toggle="tab"><?=$lang['user']['spam_aliases'];?></a></li>
  152. <li role="presentation"><a href="#Spamfilter" aria-controls="Spamfilter" role="tab" data-toggle="tab"><?=$lang['user']['spamfilter'];?></a></li>
  153. <li role="presentation"><a href="#Syncjobs" aria-controls="Syncjobs" role="tab" data-toggle="tab"><?=$lang['user']['sync_jobs'];?></a></li>
  154. <li role="presentation"><a href="#AppPasswds" aria-controls="AppPasswds" role="tab" data-toggle="tab"><?=$lang['user']['app_passwds'];?></a></li>
  155. <li role="presentation"><a href="#Pushover" aria-controls="Pushover" role="tab" data-toggle="tab">Pushover API</a></li>
  156. </ul>
  157. <hr>
  158. <div class="tab-content">
  159. <div role="tabpanel" class="tab-pane active" id="userSettings">
  160. <div class="panel panel-default">
  161. <div class="panel-heading"><?=$lang['user']['mailbox_details'];?></div>
  162. <div class="panel-body">
  163. <div class="row">
  164. <div class="col-sm-offset-3 col-sm-9">
  165. <?php if ($mailboxdata['attributes']['force_pw_update'] == "1"): ?>
  166. <div class="alert alert-danger"><?=$lang['user']['force_pw_update'];?></div>
  167. <?php endif; ?>
  168. <p><a href="#pwChangeModal" data-toggle="modal">[<?=$lang['user']['change_password'];?>]</a></p>
  169. <p><a target="_blank" href="https://mailcow.github.io/mailcow-dockerized-docs/client/#<?=$clientconfigstr;?>">[<?=$lang['user']['client_configuration'];?>]</a></p>
  170. <p><a href="#userFilterModal" data-toggle="modal">[<?=$lang['user']['show_sieve_filters'];?>]</a></p>
  171. <p><small>
  172. <?php
  173. if ($_SESSION['mailcow_cc_last_login']['remote']):
  174. ?>
  175. <span style="margin-right:10px" class="glyphicon glyphicon-log-in"></span> <span data-time="<?=$_SESSION['mailcow_cc_last_login']['time'];?>" class="last_login_date"></span> (<?=$_SESSION['mailcow_cc_last_login']['remote'];?>)
  176. <?php
  177. else: echo $lang['user']['no_last_login']; endif;
  178. ?>
  179. </small></p>
  180. </div>
  181. </div>
  182. <hr>
  183. <div class="row">
  184. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['apple_connection_profile'];?>:</div>
  185. <div class="col-md-9 col-xs-7">
  186. <p><span class="glyphicon glyphicon-download-alt" aria-hidden="true"></span> <a href="/mobileconfig.php?only_email"><?=$lang['user']['email'];?></a> <small>IMAP, SMTP</small></p>
  187. <p class="help-block"><?=$lang['user']['apple_connection_profile_mailonly'];?></p>
  188. <?php if (getenv('SKIP_SOGO') != "y") { ?>
  189. <p><span class="glyphicon glyphicon-download-alt" aria-hidden="true"></span> <a href="/mobileconfig.php"><?=$lang['user']['email_and_dav'];?></a> <small>IMAP, SMTP, Cal/CardDAV</small></p>
  190. <p class="help-block"><?=$lang['user']['apple_connection_profile_complete'];?></p>
  191. <?php } ?>
  192. </div>
  193. </div>
  194. <hr>
  195. <?php // Get user information about aliases
  196. $user_get_alias_details = user_get_alias_details($username);
  197. ?>
  198. <div class="row">
  199. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['direct_aliases'];?>:
  200. <p class="small"><?=$lang['user']['direct_aliases_desc'];?></p>
  201. </div>
  202. <div class="col-md-9 col-xs-7">
  203. <?php
  204. if ($user_get_alias_details['direct_aliases'] === false) {
  205. echo '&#10008;';
  206. }
  207. else {
  208. foreach (array_filter($user_get_alias_details['direct_aliases']) as $direct_alias => $direct_alias_meta) {
  209. (!empty($direct_alias_meta['public_comment'])) ?
  210. printf('%s &mdash; <span class="bg-info">%s</span><br>', $direct_alias, $direct_alias_meta['public_comment']) :
  211. printf('%s<br>', $direct_alias);
  212. }
  213. }
  214. ?>
  215. </div>
  216. </div>
  217. <div class="row">
  218. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['shared_aliases'];?>:
  219. <p class="small"><?=$lang['user']['shared_aliases_desc'];?></p>
  220. </div>
  221. <div class="col-md-9 col-xs-7">
  222. <?php
  223. if ($user_get_alias_details['shared_aliases'] === false) {
  224. echo '&#10008;';
  225. }
  226. else {
  227. foreach (array_filter($user_get_alias_details['shared_aliases']) as $shared_alias => $shared_alias_meta) {
  228. (!empty($shared_alias_meta['public_comment'])) ?
  229. printf('%s &mdash; <span class="bg-info">%s</span><br>', $shared_alias, $shared_alias_meta['public_comment']) :
  230. printf('%s<br>', $shared_alias);
  231. }
  232. }
  233. ?>
  234. </div>
  235. </div>
  236. <hr>
  237. <div class="row">
  238. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['aliases_also_send_as'];?>:</div>
  239. <div class="col-md-9 col-xs-7">
  240. <p><?=($user_get_alias_details['aliases_also_send_as'] == '*') ? $lang['user']['sender_acl_disabled'] : $user_get_alias_details['aliases_also_send_as'];?></p>
  241. </div>
  242. </div>
  243. <div class="row">
  244. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['aliases_send_as_all'];?>:</div>
  245. <div class="col-md-9 col-xs-7">
  246. <p><?=$user_get_alias_details['aliases_send_as_all'];?></p>
  247. </div>
  248. </div>
  249. <div class="row">
  250. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['is_catch_all'];?>:</div>
  251. <div class="col-md-9 col-xs-7">
  252. <p><?=$user_get_alias_details['is_catch_all'];?></p>
  253. </div>
  254. </div>
  255. <hr>
  256. <div class="row">
  257. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['in_use'];?>:</div>
  258. <div class="col-md-5 col-xs-7">
  259. <div class="progress">
  260. <div class="progress-bar progress-bar-<?=$mailboxdata['percent_class'];?>" role="progressbar" aria-valuenow="<?=$mailboxdata['percent_in_use'];?>" aria-valuemin="0" aria-valuemax="100" style="min-width:2em;width: <?=$mailboxdata['percent_in_use'];?>%;">
  261. <?=$mailboxdata['percent_in_use'];?>%
  262. </div>
  263. </div>
  264. <p><?=formatBytes($mailboxdata['quota_used'], 2);?> / <?=($mailboxdata['quota'] == 0) ? '∞' : formatBytes($mailboxdata['quota'], 2);?><br><?=$mailboxdata['messages'];?> <?=$lang['user']['messages'];?></p>
  265. </div>
  266. </div>
  267. <hr>
  268. <?php
  269. // Show tagging options
  270. $get_tagging_options = mailbox('get', 'delimiter_action', $username);
  271. ?>
  272. <div class="row">
  273. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['tag_handling'];?>:</div>
  274. <div class="col-md-9 col-xs-7">
  275. <div class="btn-group" data-acl="<?=$_SESSION['acl']['delimiter_action'];?>">
  276. <button type="button" class="btn btn-sm btn-default <?=($get_tagging_options == "subfolder") ? 'active' : null; ?>"
  277. data-action="edit_selected"
  278. data-item="<?= htmlentities($username); ?>"
  279. data-id="delimiter_action"
  280. data-api-url='edit/delimiter_action'
  281. data-api-attr='{"tagged_mail_handler":"subfolder"}'><?=$lang['user']['tag_in_subfolder'];?></button>
  282. <button type="button" class="btn btn-sm btn-default <?=($get_tagging_options == "subject") ? 'active' : null; ?>"
  283. data-action="edit_selected"
  284. data-item="<?= htmlentities($username); ?>"
  285. data-id="delimiter_action"
  286. data-api-url='edit/delimiter_action'
  287. data-api-attr='{"tagged_mail_handler":"subject"}'><?=$lang['user']['tag_in_subject'];?></button>
  288. <button type="button" class="btn btn-sm btn-default <?=($get_tagging_options == "none") ? 'active' : null; ?>"
  289. data-action="edit_selected"
  290. data-item="<?= htmlentities($username); ?>"
  291. data-id="delimiter_action"
  292. data-api-url='edit/delimiter_action'
  293. data-api-attr='{"tagged_mail_handler":"none"}'><?=$lang['user']['tag_in_none'];?></button>
  294. </div>
  295. <p class="help-block"><?=$lang['user']['tag_help_explain'];?></p>
  296. <p class="help-block"><?=$lang['user']['tag_help_example'];?></p>
  297. </div>
  298. </div>
  299. <?php
  300. // Show TLS policy options
  301. $get_tls_policy = mailbox('get', 'tls_policy', $username);
  302. ?>
  303. <div class="row">
  304. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['tls_policy'];?>:</div>
  305. <div class="col-md-9 col-xs-7">
  306. <div class="btn-group" data-acl="<?=$_SESSION['acl']['tls_policy'];?>">
  307. <button type="button" class="btn btn-sm btn-default <?=($get_tls_policy['tls_enforce_in'] == "1") ? "active" : null;?>"
  308. data-action="edit_selected"
  309. data-item="<?= htmlentities($username); ?>"
  310. data-id="tls_policy"
  311. data-api-url='edit/tls_policy'
  312. data-api-attr='{"tls_enforce_in":<?=($get_tls_policy['tls_enforce_in'] == "1") ? "0" : "1";?>}'><?=$lang['user']['tls_enforce_in'];?></button>
  313. <button type="button" class="btn btn-sm btn-default <?=($get_tls_policy['tls_enforce_out'] == "1") ? "active" : null;?>"
  314. data-action="edit_selected"
  315. data-item="<?= htmlentities($username); ?>"
  316. data-id="tls_policy"
  317. data-api-url='edit/tls_policy'
  318. data-api-attr='{"tls_enforce_out":<?=($get_tls_policy['tls_enforce_out'] == "1") ? "0" : "1";?>}'><?=$lang['user']['tls_enforce_out'];?></button>
  319. </div>
  320. <p class="help-block"><?=$lang['user']['tls_policy_warning'];?></p>
  321. </div>
  322. </div>
  323. <?php
  324. // Show quarantine_notification options
  325. $quarantine_notification = mailbox('get', 'quarantine_notification', $username);
  326. $quarantine_category = mailbox('get', 'quarantine_category', $username);
  327. ?>
  328. <div class="row">
  329. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['quarantine_notification'];?>:</div>
  330. <div class="col-md-9 col-xs-7">
  331. <div class="btn-group" data-acl="<?=$_SESSION['acl']['quarantine_notification'];?>">
  332. <button type="button" class="btn btn-sm btn-default <?=($quarantine_notification == "never") ? "active" : null;?>"
  333. data-action="edit_selected"
  334. data-item="<?= htmlentities($username); ?>"
  335. data-id="quarantine_notification"
  336. data-api-url='edit/quarantine_notification'
  337. data-api-attr='{"quarantine_notification":"never"}'><?=$lang['user']['never'];?></button>
  338. <button type="button" class="btn btn-sm btn-default <?=($quarantine_notification == "hourly") ? "active" : null;?>"
  339. data-action="edit_selected"
  340. data-item="<?= htmlentities($username); ?>"
  341. data-id="quarantine_notification"
  342. data-api-url='edit/quarantine_notification'
  343. data-api-attr='{"quarantine_notification":"hourly"}'><?=$lang['user']['hourly'];?></button>
  344. <button type="button" class="btn btn-sm btn-default <?=($quarantine_notification == "daily") ? "active" : null;?>"
  345. data-action="edit_selected"
  346. data-item="<?= htmlentities($username); ?>"
  347. data-id="quarantine_notification"
  348. data-api-url='edit/quarantine_notification'
  349. data-api-attr='{"quarantine_notification":"daily"}'><?=$lang['user']['daily'];?></button>
  350. <button type="button" class="btn btn-sm btn-default <?=($quarantine_notification == "weekly") ? "active" : null;?>"
  351. data-action="edit_selected"
  352. data-item="<?= htmlentities($username); ?>"
  353. data-id="quarantine_notification"
  354. data-api-url='edit/quarantine_notification'
  355. data-api-attr='{"quarantine_notification":"weekly"}'><?=$lang['user']['weekly'];?></button>
  356. </div>
  357. <p class="help-block"><?=$lang['user']['quarantine_notification_info'];?></p>
  358. </div>
  359. </div>
  360. <div class="row">
  361. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['quarantine_category'];?>:</div>
  362. <div class="col-md-9 col-xs-7">
  363. <div class="btn-group" data-acl="<?=$_SESSION['acl']['quarantine_category'];?>">
  364. <button type="button" class="btn btn-sm btn-default <?=($quarantine_category == "reject") ? "active" : null;?>"
  365. data-action="edit_selected"
  366. data-item="<?= htmlentities($username); ?>"
  367. data-id="quarantine_category"
  368. data-api-url='edit/quarantine_category'
  369. data-api-attr='{"quarantine_category":"reject"}'><?=$lang['user']['q_reject'];?></button>
  370. <button type="button" class="btn btn-sm btn-default <?=($quarantine_category == "add_header") ? "active" : null;?>"
  371. data-action="edit_selected"
  372. data-item="<?= htmlentities($username); ?>"
  373. data-id="quarantine_category"
  374. data-api-url='edit/quarantine_category'
  375. data-api-attr='{"quarantine_category":"add_header"}'><?=$lang['user']['q_add_header'];?></button>
  376. <button type="button" class="btn btn-sm btn-default <?=($quarantine_category == "all") ? "active" : null;?>"
  377. data-action="edit_selected"
  378. data-item="<?= htmlentities($username); ?>"
  379. data-id="quarantine_category"
  380. data-api-url='edit/quarantine_category'
  381. data-api-attr='{"quarantine_category":"all"}'><?=$lang['user']['q_all'];?></button>
  382. </div>
  383. <p class="help-block"><?=$lang['user']['quarantine_category_info'];?></p>
  384. </div>
  385. </div>
  386. <?php if (getenv('SKIP_SOGO') != "y") { ?>
  387. <hr>
  388. <div class="row">
  389. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['eas_reset'];?>:</div>
  390. <div class="col-md-9 col-xs-7">
  391. <button class="btn btn-xs btn-default" data-acl="<?=$_SESSION['acl']['eas_reset'];?>" data-action="delete_selected" data-text="<?=$lang['user']['eas_reset'];?>?" data-item="<?= htmlentities($username); ?>" data-id="eas_cache" data-api-url='delete/eas_cache' href="#"><?=$lang['user']['eas_reset_now'];?></button>
  392. <p class="help-block"><?=$lang['user']['eas_reset_help'];?></p>
  393. </div>
  394. </div>
  395. <div class="row">
  396. <div class="col-md-3 col-xs-5 text-right"><?=$lang['user']['sogo_profile_reset'];?>:</div>
  397. <div class="col-md-9 col-xs-7">
  398. <button class="btn btn-xs btn-default" data-acl="<?=$_SESSION['acl']['sogo_profile_reset'];?>" data-action="delete_selected" data-text="<?=$lang['user']['sogo_profile_reset'];?>?" data-item="<?= htmlentities($username); ?>" data-id="sogo_profile" data-api-url='delete/sogo_profile' href="#"><?=$lang['user']['sogo_profile_reset_now'];?></button>
  399. <p class="help-block"><?=$lang['user']['sogo_profile_reset_help'];?></p>
  400. </div>
  401. </div>
  402. <?php } ?>
  403. </div>
  404. </div>
  405. </div>
  406. <div role="tabpanel" class="tab-pane" id="SpamAliases">
  407. <div class="row">
  408. <div class="col-md-12 col-sm-12 col-xs-12">
  409. <div class="table-responsive">
  410. <table class="table table-striped" id="tla_table"></table>
  411. </div>
  412. </div>
  413. </div>
  414. <div class="mass-actions-user">
  415. <div class="btn-group" data-acl="<?=$_SESSION['acl']['spam_alias'];?>">
  416. <div class="btn-group">
  417. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="tla" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  418. <a class="btn btn-sm btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['mailbox']['quick_actions'];?> <span class="caret"></span></a>
  419. <ul class="dropdown-menu">
  420. <li><a data-action="edit_selected" data-id="tla" data-api-url='edit/time_limited_alias' data-api-attr='{"validity":"1"}' href="#"><?=$lang['user']['expire_in'];?> 1 <?=$lang['user']['hour'];?></a></li>
  421. <li><a data-action="edit_selected" data-id="tla" data-api-url='edit/time_limited_alias' data-api-attr='{"validity":"6"}' href="#"><?=$lang['user']['expire_in'];?> 6 <?=$lang['user']['hours'];?></a></li>
  422. <li><a data-action="edit_selected" data-id="tla" data-api-url='edit/time_limited_alias' data-api-attr='{"validity":"24"}' href="#"><?=$lang['user']['expire_in'];?> 1 <?=$lang['user']['day'];?></a></li>
  423. <li><a data-action="edit_selected" data-id="tla" data-api-url='edit/time_limited_alias' data-api-attr='{"validity":"168"}' href="#"><?=$lang['user']['expire_in'];?> 1 <?=$lang['user']['week'];?></a></li>
  424. <li><a data-action="edit_selected" data-id="tla" data-api-url='edit/time_limited_alias' data-api-attr='{"validity":"672"}' href="#"><?=$lang['user']['expire_in'];?> 4 <?=$lang['user']['weeks'];?></a></li>
  425. <li role="separator" class="divider"></li>
  426. <li><a data-action="delete_selected" data-id="tla" data-api-url='delete/time_limited_alias' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  427. </ul>
  428. </div>
  429. <div class="btn-group">
  430. <a class="btn btn-sm btn-success dropdown-toggle" data-toggle="dropdown" href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['user']['alias_create_random'];?> <span class="caret"></span></a>
  431. <ul class="dropdown-menu">
  432. <li><a data-action="add_item" data-api-url='add/time_limited_alias' data-api-attr='{"validity":"1"}' href="#">1 <?=$lang['user']['hour'];?></a></li>
  433. <li><a data-action="add_item" data-api-url='add/time_limited_alias' data-api-attr='{"validity":"6"}' href="#">6 <?=$lang['user']['hours'];?></a></li>
  434. <li><a data-action="add_item" data-api-url='add/time_limited_alias' data-api-attr='{"validity":"24"}' href="#">1 <?=$lang['user']['day'];?></a></li>
  435. <li><a data-action="add_item" data-api-url='add/time_limited_alias' data-api-attr='{"validity":"168"}' href="#">1 <?=$lang['user']['week'];?></a></li>
  436. <li><a data-action="add_item" data-api-url='add/time_limited_alias' data-api-attr='{"validity":"672"}' href="#">4 <?=$lang['user']['weeks'];?></a></li>
  437. </ul>
  438. </div>
  439. </div>
  440. </div>
  441. </div>
  442. <div role="tabpanel" class="tab-pane" id="Spamfilter">
  443. <h4><?=$lang['user']['spamfilter_behavior'];?></h4>
  444. <form class="form-horizontal" role="form" data-id="spam_score" method="post">
  445. <div class="form-group">
  446. <div class="col-lg-6 col-sm-12">
  447. <input data-acl="<?=$_SESSION['acl']['spam_score'];?>" name="spam_score" id="spam_score" type="text" style="width: 100%;"
  448. data-provide="slider"
  449. data-slider-min="1"
  450. data-slider-max="2000"
  451. data-slider-scale='logarithmic'
  452. data-slider-step="0.5"
  453. data-slider-range="true"
  454. data-slider-tooltip='always'
  455. data-slider-id="slider1"
  456. data-slider-value="[<?=mailbox('get', 'spam_score', $username);?>]"
  457. data-slider-step="1" />
  458. <br /><br />
  459. <ul>
  460. <li><?=$lang['user']['spamfilter_green'];?></li>
  461. <li><?=$lang['user']['spamfilter_yellow'];?></li>
  462. <li><?=$lang['user']['spamfilter_red'];?></li>
  463. </ul>
  464. <p><?=$lang['user']['spamfilter_hint'];?></p>
  465. </div>
  466. </div>
  467. <div class="form-group">
  468. <div class="col-sm-10">
  469. </div>
  470. <div class="btn-group" data-acl="<?=$_SESSION['acl']['spam_policy'];?>">
  471. <a type="button" class="btn btn-sm btn-success" data-action="edit_selected"
  472. data-item="<?= htmlentities($username); ?>"
  473. data-id="spam_score"
  474. data-api-url='edit/spam-score'
  475. data-api-attr='{}'><?=$lang['user']['save_changes'];?></a>
  476. <a type="button" class="btn btn-sm btn-default" data-action="edit_selected"
  477. data-item="<?= htmlentities($username); ?>"
  478. data-id="spam_score_reset"
  479. data-api-url='edit/spam-score'
  480. data-api-attr='{"spam_score":"default"}'><?=$lang['user']['spam_score_reset'];?></a>
  481. </div>
  482. </div>
  483. </form>
  484. <hr>
  485. <div class="row">
  486. <div class="col-sm-6">
  487. <h4><?=$lang['user']['spamfilter_wl'];?></h4>
  488. <p><?=$lang['user']['spamfilter_wl_desc'];?></p>
  489. <div class="table-responsive">
  490. <table class="table table-striped table-condensed" id="wl_policy_mailbox_table"></table>
  491. </div>
  492. <div class="mass-actions-user">
  493. <div class="btn-group" data-acl="<?=$_SESSION['acl']['spam_policy'];?>">
  494. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="policy_wl_mailbox" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  495. <a class="btn btn-sm btn-danger" data-action="delete_selected" data-id="policy_wl_mailbox" data-api-url='delete/mailbox-policy' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  496. </div>
  497. </div>
  498. <form class="form-inline" data-id="add_wl_policy_mailbox">
  499. <div class="input-group" data-acl="<?=$_SESSION['acl']['spam_policy'];?>">
  500. <input type="text" class="form-control" name="object_from" placeholder="*@example.org" required>
  501. <span class="input-group-btn">
  502. <button class="btn btn-default" data-action="add_item" data-id="add_wl_policy_mailbox" data-api-url='add/mailbox-policy' data-api-attr='{"username":<?= json_encode($username); ?>,"object_list":"wl"}' href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['user']['spamfilter_table_add'];?></button>
  503. </span>
  504. </div>
  505. </form>
  506. </div>
  507. <div class="col-sm-6">
  508. <h4><?=$lang['user']['spamfilter_bl'];?></h4>
  509. <p><?=$lang['user']['spamfilter_bl_desc'];?></p>
  510. <div class="table-responsive">
  511. <table class="table table-striped table-condensed" id="bl_policy_mailbox_table"></table>
  512. </div>
  513. <div class="mass-actions-user">
  514. <div class="btn-group" data-acl="<?=$_SESSION['acl']['spam_policy'];?>">
  515. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="policy_bl_mailbox" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  516. <a class="btn btn-sm btn-danger" data-action="delete_selected" data-id="policy_bl_mailbox" data-api-url='delete/mailbox-policy' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  517. </div>
  518. </div>
  519. <form class="form-inline" data-id="add_bl_policy_mailbox">
  520. <div class="input-group" data-acl="<?=$_SESSION['acl']['spam_policy'];?>">
  521. <input type="text" class="form-control" name="object_from" placeholder="*@example.org" required>
  522. <span class="input-group-btn">
  523. <button class="btn btn-default" data-action="add_item" data-id="add_bl_policy_mailbox" data-api-url='add/mailbox-policy' data-api-attr='{"username":<?= json_encode($username); ?>,"object_list":"bl"}' href="#"><span class="glyphicon glyphicon-plus"></span> <?=$lang['user']['spamfilter_table_add'];?></button>
  524. </span>
  525. </div>
  526. </form>
  527. </div>
  528. </div>
  529. </div>
  530. <div role="tabpanel" class="tab-pane" id="Syncjobs">
  531. <div class="table-responsive">
  532. <table class="table table-striped" id="sync_job_table"></table>
  533. </div>
  534. <div class="mass-actions-user">
  535. <div class="btn-group" data-acl="<?=$_SESSION['acl']['syncjobs'];?>">
  536. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="syncjob" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  537. <a class="btn btn-sm btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['mailbox']['quick_actions'];?> <span class="caret"></span></a>
  538. <ul class="dropdown-menu">
  539. <li><a data-action="edit_selected" data-id="syncjob" data-api-url='edit/syncjob' data-api-attr='{"active":"1"}' href="#"><?=$lang['mailbox']['activate'];?></a></li>
  540. <li><a data-action="edit_selected" data-id="syncjob" data-api-url='edit/syncjob' data-api-attr='{"active":"0"}' href="#"><?=$lang['mailbox']['deactivate'];?></a></li>
  541. <li role="separator" class="divider"></li>
  542. <li><a data-action="delete_selected" data-id="syncjob" data-api-url='delete/syncjob' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  543. </ul>
  544. <a class="btn btn-sm btn-success" href="#" data-toggle="modal" data-target="#addSyncJobModal"><span class="glyphicon glyphicon-plus"></span> <?=$lang['user']['create_syncjob'];?></a>
  545. </div>
  546. </div>
  547. </div>
  548. <div role="tabpanel" class="tab-pane" id="Pushover">
  549. <form data-id="pushover" class="form well" method="post">
  550. <input type="hidden" value="0" name="evaluate_x_prio">
  551. <input type="hidden" value="0" name="only_x_prio">
  552. <input type="hidden" value="0" name="active">
  553. <div class="row">
  554. <div class="col-sm-1">
  555. <p class="help-block"><a href="https://pushover.net" target="_blank"><img src="" class="img img-fluid"></a></p>
  556. </div>
  557. <div class="col-sm-10">
  558. <p class="help-block"><?=sprintf($lang['user']['pushover_info'], $username);?></p>
  559. <p class="help-block"><?=$lang['user']['pushover_vars'];?>: <code>{SUBJECT}</code>, <code>{SENDER}</code></p>
  560. <div class="form-group">
  561. <div class="row">
  562. <div class="col-sm-6">
  563. <div class="form-group">
  564. <label for="token">API Token/Key (Application)</label>
  565. <input type="text" class="form-control" name="token" maxlength="30" value="<?=$pushover_data['token'];?>" required>
  566. </div>
  567. </div>
  568. <div class="col-sm-6">
  569. <div class="form-group">
  570. <label for="key">User/Group Key</label>
  571. <input type="text" class="form-control" name="key" maxlength="30" value="<?=$pushover_data['key'];?>" required>
  572. </div>
  573. </div>
  574. <div class="col-sm-6">
  575. <div class="form-group">
  576. <label for="title"><?=$lang['user']['pushover_title'];?></label>
  577. <input type="text" class="form-control" name="title" value="<?=$pushover_data['title'];?>" placeholder="Mail">
  578. </div>
  579. </div>
  580. <div class="col-sm-6">
  581. <div class="form-group">
  582. <label for="text"><?=$lang['user']['pushover_text'];?></label>
  583. <input type="text" class="form-control" name="text" value="<?=$pushover_data['text'];?>" placeholder="You've got mail 📧">
  584. </div>
  585. </div>
  586. <div class="col-sm-12">
  587. <div class="form-group">
  588. <label for="text"><?=$lang['user']['pushover_sender_array'];?></label>
  589. <input type="text" class="form-control" name="senders" value="<?=$pushover_data['senders'];?>" placeholder="sender1@example.com, sender2@example.com">
  590. </div>
  591. </div>
  592. <div class="col-sm-12">
  593. <div class="checkbox">
  594. <label><input type="checkbox" value="1" name="active" <?=($pushover_data['active']=="1") ? "checked" : null;?>> <?=$lang['user']['active'];?></label>
  595. </div>
  596. </div>
  597. <div class="col-sm-12">
  598. <legend style="cursor:pointer;margin-top:10px" data-target="#po_advanced" class="arrow-toggle" unselectable="on" data-toggle="collapse">
  599. <span style="font-size:12px" class="arrow rotate glyphicon glyphicon-menu-down"></span> <?=$lang['user']['advanced_settings'];?>
  600. </legend>
  601. </div>
  602. <div class="col-sm-12">
  603. <div id="po_advanced" class="collapse">
  604. <div class="form-group">
  605. <label for="text"><?=$lang['user']['pushover_sender_regex'];?></label>
  606. <input type="text" class="form-control" name="senders_regex" value="<?=$pushover_data['senders_regex'];?>" placeholder="/(.*@example\.org$|^foo@example\.com$)/i" regex="true">
  607. <div class="checkbox">
  608. <label><input type="checkbox" value="1" name="evaluate_x_prio" <?=($pushover_data['attributes']['evaluate_x_prio']=="1") ? "checked" : null;?>> <?=$lang['user']['pushover_evaluate_x_prio'];?></label>
  609. </div>
  610. <div class="checkbox">
  611. <label><input type="checkbox" value="1" name="only_x_prio" <?=($pushover_data['attributes']['only_x_prio']=="1") ? "checked" : null;?>> <?=$lang['user']['pushover_only_x_prio'];?></label>
  612. </div>
  613. </div>
  614. </div>
  615. </div>
  616. </div>
  617. </div>
  618. <div class="btn-group" data-acl="<?=$_SESSION['acl']['pushover'];?>">
  619. <a class="btn btn-sm btn-default" data-action="edit_selected" data-id="pushover" data-item="<?=htmlspecialchars($username);?>" data-api-url='edit/pushover' data-api-attr='{}' href="#"><?=$lang['user']['save'];?></a>
  620. <a class="btn btn-sm btn-default" data-action="edit_selected" data-id="pushover-test" data-item="<?=htmlspecialchars($username);?>" data-api-url='edit/pushover-test' data-api-attr='{}' href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['user']['pushover_verify'];?></a>
  621. <a id="pushover_delete" class="btn btn-sm btn-danger" data-action="edit_selected" data-id="pushover-delete" data-item="<?=htmlspecialchars($username);?>" data-api-url='edit/pushover' data-api-attr='{"delete":"true"}' href="#"><span class="glyphicon glyphicon-trash" aria-hidden="true"></span> <?=$lang['user']['remove'];?></a>
  622. </div>
  623. </div>
  624. </div>
  625. </form>
  626. </div>
  627. <div role="tabpanel" class="tab-pane" id="AppPasswds">
  628. <p><?=$lang['user']['app_hint'];?></p>
  629. <div class="table-responsive">
  630. <table class="table table-striped" id="app_passwd_table"></table>
  631. </div>
  632. <div class="mass-actions-user">
  633. <div class="btn-group" data-acl="<?=$_SESSION['acl']['app_passwds'];?>">
  634. <a class="btn btn-sm btn-default" id="toggle_multi_select_all" data-id="apppasswd" href="#"><span class="glyphicon glyphicon-check" aria-hidden="true"></span> <?=$lang['mailbox']['toggle_all'];?></a>
  635. <a class="btn btn-sm btn-default dropdown-toggle" data-toggle="dropdown" href="#"><?=$lang['mailbox']['quick_actions'];?> <span class="caret"></span></a>
  636. <ul class="dropdown-menu">
  637. <li><a data-action="edit_selected" data-id="apppasswd" data-api-url='edit/app-passwd' data-api-attr='{"active":"1"}' href="#"><?=$lang['mailbox']['activate'];?></a></li>
  638. <li><a data-action="edit_selected" data-id="apppasswd" data-api-url='edit/app-passwd' data-api-attr='{"active":"0"}' href="#"><?=$lang['mailbox']['deactivate'];?></a></li>
  639. <li role="separator" class="divider"></li>
  640. <li><a data-action="delete_selected" data-id="apppasswd" data-api-url='delete/app-passwd' href="#"><?=$lang['mailbox']['remove'];?></a></li>
  641. </ul>
  642. <a class="btn btn-sm btn-success" href="#" data-toggle="modal" data-target="#addAppPasswdModal"><span class="glyphicon glyphicon-plus"></span> <?=$lang['user']['create_app_passwd'];?></a>
  643. </div>
  644. </div>
  645. </div>
  646. </div>
  647. </div><!-- /container -->
  648. <div style="margin-bottom:200px;"></div>
  649. <?php
  650. }
  651. if (isset($_SESSION['mailcow_cc_role']) && $_SESSION['mailcow_cc_role'] != 'admin') {
  652. require_once $_SERVER['DOCUMENT_ROOT'] . '/modals/user.php';
  653. ?>
  654. <script type='text/javascript'>
  655. <?php
  656. $lang_user = json_encode($lang['user']);
  657. echo "var lang = ". $lang_user . ";\n";
  658. echo "var acl = '". json_encode($_SESSION['acl']) . "';\n";
  659. echo "var csrf_token = '". $_SESSION['CSRF']['TOKEN'] . "';\n";
  660. echo "var mailcow_cc_username = '". $_SESSION['mailcow_cc_username'] . "';\n";
  661. echo "var pagination_size = '". $PAGINATION_SIZE . "';\n";
  662. ?>
  663. </script>
  664. <?php
  665. $js_minifier->add('/web/js/site/user.js');
  666. $js_minifier->add('/web/js/site/pwgen.js');
  667. require_once $_SERVER['DOCUMENT_ROOT'] . '/inc/footer.inc.php';
  668. }
  669. else {
  670. header('Location: /');
  671. exit();
  672. }
  673. ?>