2 /* vim: set ts=4 tw=0 sw=4 noet: */
3 require_once $CFG->root
.'config.php';
7 private static $_instance = null;
13 private $header = '<!DOCTYPE html>
16 <meta charset="utf-8">
17 <link rel="stylesheet" href="css/styles.css">
19 var timeout = __TIMEOUT__;
21 <script src="__ROOT__js/timer.js"></script>
22 <script src="__ROOT__js/checkbox.js"></script>
23 <title>__TITLE__</title>
26 private $footer = '<p class="footer">Powered by <a href="https://qtadmin.datanom.net"
27 title="Goto QtAdmin homepage">QtAdmin</a>. © 2015 by Michael Rasmussen</p></body></html>';
28 private $heading = '<p id="time" class="time">Session timeout:
29 <span id="timer"></span></p><h1 class="h1">__TITLE__</h1>';
31 private function __construct() {
34 $this->server
= $_SERVER;
37 $this->is_admin
= false;
38 $this->loginStatus
= 'Not logged in';
40 $this->startSession();
42 if (isset($_SESSION['user'])) {
43 $this->user
= $_SESSION['user'];
44 $this->loginStatus
= 'OK';
45 $this->is_admin
= $_SESSION['is_admin'];
47 if ($CFG->auth_method
== 'HTTP_AUTH') {
48 if (isset($this->server
['PHP_AUTH_USER'])) {
49 $this->user
= $this->server
['PHP_AUTH_USER'];
50 $this->loginStatus
= 'OK';
51 if ($CFG->admin_user
== $this->user
)
52 $this->is_admin
= true;
56 $_SESSION['user'] = $this->user
;
57 $_SESSION['is_admin'] = $this->is_admin
;
60 private function __clone() {}
62 private function startSession() {
65 if (isset($CFG->session_timeout
)) {
66 $this->timeout
= $CFG->session_timeout
* 60;
68 $this->timeout
= 20 * 60;
71 if (ini_get('session.gc_maxlifetime') != $this->timeout
)
72 ini_set('session.gc_maxlifetime', $this->timeout
);
73 if (ini_get('session.cookie_lifetime') != $this->timeout
)
74 ini_set('session.cookie_lifetime', $this->timeout
);
78 //echo ini_get('session.gc_maxlifetime').':'.ini_get('session.cookie_lifetime');
81 public static function getInstance() {
84 if (!is_object(self
::$_instance)) {
85 self
::$_instance = new Utils();
88 $time = $_SERVER['REQUEST_TIME'];
89 if (isset($_SESSION['LAST_ACTIVITY']) &&
90 ($time - $_SESSION['LAST_ACTIVITY']) >= self
::$_instance->timeout
) {
93 self
::$_instance->user
= null;
94 self
::$_instance->is_admin
= false;
96 $_SESSION['LAST_ACTIVITY'] = $time;
99 return self
::$_instance;
102 public function logout() {
104 if (ini_get('session.use_cookies')) {
105 $params = session_get_cookie_params();
106 setcookie(session_name(), '', time() - 42000,
107 $params['path'], $params['domain'],
108 $params['secure'], $params['httponly']);
113 $this->is_admin
= false;
116 public function isAdmin() {
117 //file_put_contents('/tmp/login.txt', var_export($this, true));
118 return $this->is_admin
;
121 public function login($user, $pw) {
125 unset($_SESSION['user']);
126 unset($_SESSION['is_admin']);
128 $this->is_admin
= false;
130 $p = explode('@', $user);
131 if (count($p) != 2) {
132 $this->loginStatus
= 'Bad username';
136 $dn = "mail=$user,ou=Users,domainName=$domain,$CFG->ldap_base_dn";
137 $filter = "(&(objectclass=mailUser)(accountStatus=active)(mail=$user))";
138 $ds = @ldap_connect
($CFG->ldap_dsn
);
140 @ldap_set_option
($ds, LDAP_OPT_PROTOCOL_VERSION
, 3);
141 $r = @ldap_bind
($ds, $dn, $pw);
143 $sr = @ldap_search
($ds, $CFG->ldap_base_dn
, $filter, array('mail','domainglobaladmin'));
144 $info = @ldap_get_entries
($ds, $sr); // array
145 if ($info['count'] > 0) {
146 $_SESSION['user'] = $user;
149 $this->loginStatus
= 'OK';
151 if (isset($info[0]['domainglobaladmin'])) {
152 $admin = $info[0]['domainglobaladmin'][0];
153 $admin = strtoupper($admin);
155 $this->is_admin
= ($admin == 'YES') ?
true : false;
156 $_SESSION['is_admin'] = $this->is_admin
;
158 $this->loginStatus
= 'Login failed';
161 $this->loginStatus
= ldap_error($ds);
165 $this->loginStatus
= 'Connect to LDAP server failed';
171 public function getLoginStatus() {
172 return $this->loginStatus
;
175 public function isLoggedIn() {
181 } else if (isset($_SESSION['user'])) {
182 $this->user
= $_SESSION['user'];
185 if ($CFG->auth_method
== 'HTTP_AUTH') {
186 if (isset($this->server
['PHP_AUTH_USER'])) {
187 $this->user
= $this->server
['PHP_AUTH_USER'];
196 public function getUser() {
201 public function getHeader() {
202 return $this->header
;
205 public function getFooter() {
206 return $this->footer
;
209 public function getHeading() {
210 return $this->heading
;
213 public function setHeading($heading) {
216 $timeout = $CFG->session_timeout
* 60 * 1000;
217 $this->heading
= str_replace('__TITLE__', $heading, $this->heading
);
218 $this->header
= str_replace('__TITLE__', $heading, $this->header
);
219 $this->header
= str_replace('__ROOT__', $CFG->wwwroot
, $this->header
);
220 $this->header
= str_replace('__TIMEOUT__', $timeout, $this->header
);
223 public function convertContent($code) {
237 $string = $table[$code];