dolibarr 21.0.0-alpha
passwordforgotten.tpl.php
1<?php
2/* Copyright (C) 2009-2010 Regis Houssin <regis.houssin@inodbox.com>
3 * Copyright (C) 2011-2024 Laurent Destailleur <eldy@users.sourceforge.net>
4 * Copyright (C) 2024 Frédéric France <frederic.france@free.fr>
5 *
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 3 of the License, or
9 * (at your option) any later version.
10 *
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
15 *
16 * You should have received a copy of the GNU General Public License
17 * along with this program. If not, see <https://www.gnu.org/licenses/>.
18 */
19
20// Page to ask email for password forgotten
21
22if (!defined('NOBROWSERNOTIF')) {
23 define('NOBROWSERNOTIF', 1);
24}
25
26// Protection to avoid direct call of template
27if (empty($conf) || !is_object($conf)) {
28 print "Error, template page can't be called as URL";
29 exit(1);
30}
31
32// DDOS protection
33$size = (int) ($_SERVER['CONTENT_LENGTH'] ?? 0);
34if ($size > 10000) {
35 $langs->loadLangs(array("errors", "install"));
36 httponly_accessforbidden('<center>'.$langs->trans("ErrorRequestTooLarge").'<br><a href="'.DOL_URL_ROOT.'">'.$langs->trans("ClickHereToGoToApp").'</a></center>', 413, 1);
37}
38
39require_once DOL_DOCUMENT_ROOT.'/core/lib/functions2.lib.php';
40
41header('Cache-Control: Public, must-revalidate');
42
43if (GETPOST('dol_hide_topmenu')) {
44 $conf->dol_hide_topmenu = 1;
45}
46if (GETPOST('dol_hide_leftmenu')) {
47 $conf->dol_hide_leftmenu = 1;
48}
49if (GETPOST('dol_optimize_smallscreen')) {
50 $conf->dol_optimize_smallscreen = 1;
51}
52if (GETPOST('dol_no_mouse_hover')) {
53 $conf->dol_no_mouse_hover = 1;
54}
55if (GETPOST('dol_use_jmobile')) {
56 $conf->dol_use_jmobile = 1;
57}
58
59// If we force to use jmobile, then we reenable javascript
60if (!empty($conf->dol_use_jmobile)) {
61 $conf->use_javascript_ajax = 1;
62}
63
64$php_self = $_SERVER['PHP_SELF'];
65$php_self .= dol_escape_htmltag($_SERVER["QUERY_STRING"]) ? '?'.dol_escape_htmltag($_SERVER["QUERY_STRING"]) : '';
66$php_self = str_replace('action=validatenewpassword', '', $php_self);
67
68$titleofpage = $langs->trans('SendNewPassword');
69
70// Javascript code on logon page only to detect user tz, dst_observed, dst_first, dst_second
71$arrayofjs = array();
72
73$disablenofollow = 1;
74if (!preg_match('/'.constant('DOL_APPLICATION_TITLE').'/', $title)) {
75 $disablenofollow = 0;
76}
77if (getDolGlobalString('MAIN_OPTIMIZEFORTEXTBROWSER')) {
78 $disablenofollow = 0;
79}
80
81top_htmlhead('', $titleofpage, 0, 0, $arrayofjs, array(), 1, $disablenofollow);
82
83
84$colorbackhmenu1 = '60,70,100'; // topmenu
85if (!isset($conf->global->THEME_ELDY_TOPMENU_BACK1)) {
86 $conf->global->THEME_ELDY_TOPMENU_BACK1 = $colorbackhmenu1;
87}
88$colorbackhmenu1 = getDolUserString('THEME_ELDY_ENABLE_PERSONALIZED') ? getDolUserString('THEME_ELDY_TOPMENU_BACK1', $colorbackhmenu1) : getDolGlobalString('THEME_ELDY_TOPMENU_BACK1', $colorbackhmenu1);
89$colorbackhmenu1 = implode(',', colorStringToArray($colorbackhmenu1)); // Normalize value to 'x,y,z'
90
91?>
92<!-- BEGIN PHP TEMPLATE PASSWORDFORGOTTEN.TPL.PHP -->
93
94<body class="body bodylogin"<?php print !getDolGlobalString('MAIN_LOGIN_BACKGROUND') ? '' : ' style="background-size: cover; background-position: center center; background-attachment: fixed; background-repeat: no-repeat; background-image: url(\''.DOL_URL_ROOT.'/viewimage.php?cache=1&noalt=1&modulepart=mycompany&file='.urlencode('logos/' . getDolGlobalString('MAIN_LOGIN_BACKGROUND')).'\')"'; ?>>
95
96<?php if (empty($conf->dol_use_jmobile)) { ?>
97<script>
98$(document).ready(function () {
99 // Set focus on correct field
100 <?php if ($focus_element) {
101 ?>$('#<?php echo $focus_element; ?>').focus(); <?php
102 } ?> // Warning to use this only on visible element
103});
104</script>
105<?php } ?>
106
107<div class="login_center center"<?php
108if (!getDolGlobalString('ADD_UNSPLASH_LOGIN_BACKGROUND')) {
109 $backstyle = 'background: linear-gradient('.($conf->browser->layout == 'phone' ? '0deg' : '4deg').', rgb(240,240,240) 52%, rgb('.$colorbackhmenu1.') 52.1%);';
110 // old style: $backstyle = 'background-image: linear-gradient(rgb('.$colorbackhmenu1.',0.3), rgb(240,240,240));';
111 $backstyle = getDolGlobalString('MAIN_LOGIN_BACKGROUND_STYLE', $backstyle);
112 print !getDolGlobalString('MAIN_LOGIN_BACKGROUND') ? ' style="background-size: cover; background-position: center center; background-attachment: fixed; background-repeat: no-repeat; '.$backstyle.'"' : '';
113}
114?>>
115<div class="login_vertical_align">
116
117<form id="login" name="login" method="POST" action="<?php echo $php_self; ?>">
118<input type="hidden" name="token" value="<?php echo newToken(); ?>">
119<input type="hidden" name="action" value="buildnewpassword">
120
121
122<!-- Title with version -->
123<div class="login_table_title center" title="<?php echo dol_escape_htmltag($title); ?>">
124<?php
125if (!empty($disablenofollow)) {
126 echo '<a class="login_table_title" href="https://www.dolibarr.org" target="_blank" rel="noopener noreferrer external">';
127}
128echo dol_escape_htmltag($title);
129if (!empty($disablenofollow)) {
130 echo '</a>';
131}
132?>
133</div>
134
135
136
137<div class="login_table">
138
139<div id="login_line1">
140
141<div id="login_left">
142<img alt="" title="" src="<?php echo $urllogo; ?>" id="img_logo" />
143</div>
144
145<br>
146
147<div id="login_right">
148
149<div class="tagtable centpercent" title="Login pass" >
150
151<!-- Login -->
152<div class="trinputlogin">
153<div class="tagtd nowraponall center valignmiddle tdinputlogin">
154<!-- <span class="span-icon-user">-->
155<span class="fa fa-user"></span>
156<input type="text" maxlength="255" placeholder="<?php echo $langs->trans("Login"); ?>" <?php echo $disabled; ?> id="username" name="username" class="flat input-icon-user minwidth150" value="<?php echo dol_escape_htmltag($username); ?>" tabindex="1" autocapitalize="off" autocomplete="on" spellcheck="false" autocorrect="off" />
157</div>
158</div>
159
160<?php
161if (!empty($captcha)) {
162 // Add a variable param to force not using cache (jmobile)
163 $php_self = preg_replace('/[&\?]time=(\d+)/', '', $php_self); // Remove param time
164 if (preg_match('/\?/', $php_self)) {
165 $php_self .= '&time='.dol_print_date(dol_now(), 'dayhourlog');
166 } else {
167 $php_self .= '?time='.dol_print_date(dol_now(), 'dayhourlog');
168 }
169
170 $classfile = DOL_DOCUMENT_ROOT."/core/modules/security/captcha/modCaptcha".ucfirst($captcha).'.class.php';
171 include_once DOL_DOCUMENT_ROOT.'/core/lib/files.lib.php';
172 $captchaobj = null;
173 if (dol_is_file($classfile)) {
174 // Charging the numbering class
175 $classname = "modCaptcha".ucfirst($captcha);
176 require_once $classfile;
177
178 $captchaobj = new $classname($db, $conf, $langs, $user);
179 }
180
181 if (is_object($captchaobj) && method_exists($captchaobj, 'getCaptchaCodeForForm')) {
182 // TODO: get this code using a method of captcha
183 } else {
184 ?>
185 <!-- Captcha -->
186 <div class="trinputlogin">
187 <div class="tagtd tdinputlogin nowrap none valignmiddle">
188
189 <span class="fa fa-unlock"></span>
190 <span class="nofa inline-block">
191 <input id="securitycode" placeholder="<?php echo $langs->trans("SecurityCode"); ?>" class="flat input-icon-security width125" type="text" maxlength="5" name="code" tabindex="3" autocomplete="off" />
192 </span>
193 <span class="nowrap inline-block">
194 <img class="inline-block valignmiddle" src="<?php echo DOL_URL_ROOT ?>/core/antispamimage.php" border="0" width="80" height="32" id="img_securitycode" />
195 <a class="inline-block valignmiddle" href="<?php echo $php_self; ?>" tabindex="4"><?php echo img_picto($langs->trans("Refresh"), 'refresh', 'id="captcha_refresh_img"'); ?></a>
196 </span>
197
198 </div>
199 </div>
200 <?php
201 }
202}
203
204if (!empty($morelogincontent)) {
205 if (is_array($morelogincontent)) {
206 foreach ($morelogincontent as $format => $option) {
207 if ($format == 'table') {
208 echo '<!-- Option by hook -->';
209 echo $option;
210 }
211 }
212 } else {
213 echo '<!-- Option by hook -->';
214 echo $morelogincontent;
215 }
216}
217?>
218
219</div>
220
221</div> <!-- end div login_right -->
222
223</div> <!-- end div login_line1 -->
224
225
226<div id="login_line2" style="clear: both">
227
228<!-- Button "Regenerate and Send password" -->
229<br><input type="submit" <?php echo $disabled; ?> class="button small" name="button_password" value="<?php echo $langs->trans('SendNewPassword'); ?>" tabindex="4" />
230
231<br>
232<div class="center" style="margin-top: 15px;">
233 <?php
234 $moreparam = '';
235 if (!empty($conf->dol_hide_topmenu)) {
236 $moreparam .= (strpos($moreparam, '?') === false ? '?' : '&').'dol_hide_topmenu='.$conf->dol_hide_topmenu;
237 }
238 if (!empty($conf->dol_hide_leftmenu)) {
239 $moreparam .= (strpos($moreparam, '?') === false ? '?' : '&').'dol_hide_leftmenu='.$conf->dol_hide_leftmenu;
240 }
241 if (!empty($conf->dol_no_mouse_hover)) {
242 $moreparam .= (strpos($moreparam, '?') === false ? '?' : '&').'dol_no_mouse_hover='.$conf->dol_no_mouse_hover;
243 }
244 if (!empty($conf->dol_use_jmobile)) {
245 $moreparam .= (strpos($moreparam, '?') === false ? '?' : '&').'dol_use_jmobile='.$conf->dol_use_jmobile;
246 }
247
248 print '<a class="alogin" href="'.$dol_url_root.'/index.php'.$moreparam.'">'.$langs->trans('BackToLoginPage').'</a>';
249 ?>
250</div>
251
252</div>
253
254</div>
255
256</form>
257
258
259<?php
260if ($mode == 'dolibarr' || !$disabled) {
261 if ($action != 'validatenewpassword' && empty($message)) {
262 print '<div class="center login_main_home divpasswordmessagedesc paddingtopbottom'.(!getDolGlobalString('MAIN_LOGIN_BACKGROUND') ? '' : ' backgroundsemitransparent boxshadow').'" style="max-width: 70%">';
263 print '<span class="passwordmessagedesc opacitymedium">';
264 print $langs->trans('SendNewPasswordDesc');
265 print '</span>';
266 print '</div>';
267 }
268} else {
269 print '<div class="center login_main_home divpasswordmessagedesc paddingtopbottom'.(!getDolGlobalString('MAIN_LOGIN_BACKGROUND') ? '' : ' backgroundsemitransparent boxshadow').'" style="max-width: 70%">';
270 print '<div class="warning center">';
271 print $langs->trans('AuthenticationDoesNotAllowSendNewPassword', $mode);
272 print '</div>';
273 print '</div>';
274}
275?>
276
277
278<br>
279
280<?php if (!empty($message)) { ?>
281 <div class="center login_main_message">
282 <?php dol_htmloutput_mesg($message, [], '', 1); ?>
283 </div>
284<?php } ?>
285
286
287<!-- Common footer is not used for passwordforgotten page, this is same than footer but inside passwordforgotten tpl -->
288
289<?php
290if (getDolGlobalString('MAIN_HTML_FOOTER')) {
291 print $conf->global->MAIN_HTML_FOOTER;
292}
293
294if (!empty($morelogincontent) && is_array($morelogincontent)) {
295 foreach ($morelogincontent as $format => $option) {
296 if ($format == 'js') {
297 echo "\n".'<!-- Javascript by hook -->';
298 echo $option."\n";
299 }
300 }
301} elseif (!empty($moreloginextracontent)) {
302 echo '<!-- Javascript by hook -->';
303 echo $moreloginextracontent;
304}
305
306// Google Analytics
307// TODO Remove this, and add content into hook getPasswordForgottenPageExtraOptions() instead
308if (isModEnabled('google') && getDolGlobalString('MAIN_GOOGLE_AN_ID')) {
309 $tmptagarray = explode(',', getDolGlobalString('MAIN_GOOGLE_AN_ID'));
310 foreach ($tmptagarray as $tmptag) {
311 print "\n";
312 print "<!-- JS CODE TO ENABLE for google analtics tag -->\n";
313 print "
314 <!-- Global site tag (gtag.js) - Google Analytics -->
315 <script async src=\"https://www.googletagmanager.com/gtag/js?id=".trim($tmptag)."\"></script>
316 <script>
317 window.dataLayer = window.dataLayer || [];
318 function gtag(){dataLayer.push(arguments);}
319 gtag('js', new Date());
320
321 gtag('config', '".trim($tmptag)."');
322 </script>";
323 print "\n";
324 }
325}
326
327// TODO Replace this with a hook
328// Google Adsense (need Google module)
329if (isModEnabled('google') && getDolGlobalString('MAIN_GOOGLE_AD_CLIENT') && getDolGlobalString('MAIN_GOOGLE_AD_SLOT')) {
330 if (empty($conf->dol_use_jmobile)) {
331 ?>
332 <div class="center"><br>
333 <script><!--
334 google_ad_client = "<?php echo $conf->global->MAIN_GOOGLE_AD_CLIENT ?>";
335 google_ad_slot = "<?php echo $conf->global->MAIN_GOOGLE_AD_SLOT ?>";
336 google_ad_width = <?php echo $conf->global->MAIN_GOOGLE_AD_WIDTH ?>;
337 google_ad_height = <?php echo $conf->global->MAIN_GOOGLE_AD_HEIGHT ?>;
338 //-->
339 </script>
340 <script src="//pagead2.googlesyndication.com/pagead/show_ads.js"></script>
341 </div>
342 <?php
343 }
344}
345?>
346
347
348</div>
349</div> <!-- end of center -->
350
351
352</body>
353</html>
354<!-- END PHP TEMPLATE -->
print $object position
Definition edit.php:195
API that allows to log in with an user account.
dol_is_file($pathoffile)
Return if path is a file.
colorStringToArray($stringcolor, $colorifnotfound=array(88, 88, 88))
Convert a string RGB value ('FFFFFF', '255,255,255') into an array RGB array(255,255,...
img_picto($titlealt, $picto, $moreatt='', $pictoisfullpath=0, $srconly=0, $notitle=0, $alt='', $morecss='', $marginleftonlyshort=2)
Show picto whatever it's its name (generic function)
getDolUserString($key, $default='', $tmpuser=null)
Return Dolibarr user constant string value.
dol_now($mode='auto')
Return date for now.
newToken()
Return the value of token currently saved into session with name 'newtoken'.
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
dol_htmloutput_mesg($mesgstring='', $mesgarray=array(), $style='ok', $keepembedded=0)
Print formatted messages to output (Used to show messages on html output).
getDolGlobalString($key, $default='')
Return a Dolibarr global constant string value.
dol_escape_htmltag($stringtoescape, $keepb=0, $keepn=0, $noescapetags='', $escapeonlyhtmltags=0, $cleanalsojavascript=0)
Returns text escaped for inclusion in HTML alt or title or value tags, or into values of HTML input f...
top_htmlhead($head, $title='', $disablejs=0, $disablehead=0, $arrayofjs=array(), $arrayofcss=array(), $disableforlogin=0, $disablenofollow=0, $disablenoindex=0)
Output html header of a page.
if(preg_match('/crypted:/i', $dolibarr_main_db_pass)||!empty($dolibarr_main_db_encrypted_pass)) $conf db type
Definition repair.php:137
$conf db name
Only used if Module[ID]Name translation string is not found.
Definition repair.php:140
httponly_accessforbidden($message='1', $http_response_code=403, $stringalreadysanitized=0)
Show a message to say access is forbidden and stop program.