28require
'../main.inc.php';
29require_once DOL_DOCUMENT_ROOT.
'/core/lib/admin.lib.php';
30require_once DOL_DOCUMENT_ROOT.
'/core/lib/oauth.lib.php';
35$urlwithouturlroot = preg_replace(
'/'.preg_quote(DOL_URL_ROOT,
'/').
'$/i',
'', trim($dolibarr_main_url_root));
36$urlwithroot = $urlwithouturlroot.DOL_URL_ROOT;
40$langs->loadLangs(array(
'admin',
'oauth',
'modulebuilder'));
47$action =
GETPOST(
'action',
'aZ09');
48$provider =
GETPOST(
'provider',
'aZ09');
49$label =
GETPOST(
'label',
'aZ09');
51$servicetoeditname =
GETPOST(
'servicetoeditname',
'aZ09');
60if ($action ==
'add') {
61 if ($provider && $provider !=
'-1') {
62 $constname = strtoupper($provider).($label ?
'-'.$label :
'').
'_ID';
65 setEventMessages($langs->trans(
"AOAuthEntryForThisProviderAndLabelAlreadyHasAKey"),
null,
'errors');
68 dolibarr_set_const($db, $constname, $langs->trans(
'ToComplete'),
'chaine', 0,
'', $conf->entity);
73if ($action ==
'update') {
74 foreach ($conf->global as $key => $val) {
75 if (!empty($val) && preg_match(
'/^OAUTH_.+_ID$/', $key)) {
76 $constvalue = str_replace(
'_ID',
'', $key);
77 $newconstvalue = $constvalue;
78 if (GETPOSTISSET($constvalue.
'_NAME')) {
79 $newconstvalue = preg_replace(
'/-.*$/',
'', $constvalue).
'-'.
GETPOST($constvalue.
'_NAME');
82 if (GETPOSTISSET($constvalue.
'_ID')) {
88 if (GETPOSTISSET($constvalue.
'_SECRET')) {
93 if (GETPOSTISSET($constvalue.
'_URL')) {
98 if (GETPOSTISSET($constvalue.
'_URLAUTHORIZE')) {
99 if (!
dolibarr_set_const($db, $newconstvalue.
'_URLAUTHORIZE',
GETPOST($constvalue.
'_URLAUTHORIZE'),
'chaine', 0,
'', $conf->entity)) {
103 if (GETPOSTISSET($constvalue.
'_TENANT')) {
108 if (GETPOSTISSET($constvalue.
'_SCOPE')) {
109 if (is_array(
GETPOST($constvalue.
'_SCOPE'))) {
110 $scopestring = implode(
',',
GETPOST($constvalue.
'_SCOPE'));
112 $scopestring =
GETPOST($constvalue.
'_SCOPE');
114 if (!
dolibarr_set_const($db, $newconstvalue.
'_SCOPE', $scopestring,
'chaine', 0,
'', $conf->entity)) {
117 } elseif ($newconstvalue !== $constvalue) {
118 if (!
dolibarr_set_const($db, $newconstvalue.
'_SCOPE',
'',
'chaine', 0,
'', $conf->entity)) {
124 if ($constvalue !== $newconstvalue) {
132 $oldname = preg_replace(
'/^OAUTH_/',
'', $constvalue);
133 $oldprovider = ucfirst(strtolower(preg_replace(
'/-.*$/',
'', $oldname)));
134 $oldlabel = preg_replace(
'/^.*-/',
'', $oldname);
135 $newlabel = preg_replace(
'/^.*-/',
'', $newconstvalue);
138 $sql =
"UPDATE ".MAIN_DB_PREFIX.
"oauth_token";
139 $sql.=
" SET service = '".$db->escape($oldprovider.
"-".$newlabel).
"'";
140 $sql.=
" WHERE service = '".$db->escape($oldprovider.
"-".$oldlabel).
"'";
143 $resql = $db->query($sql);
150 if (!
dolibarr_set_const($db,
'MAIN_MAIL_SMTPS_OAUTH_SERVICE', strtoupper($oldprovider).
'-'.$newlabel,
'chaine', 0,
'', $conf->entity)) {
166if ($action ==
'confirm_delete') {
167 $provider =
GETPOST(
'provider',
'aZ09');
170 $globalkey = empty($provider) ? $label : $label.
'-'.$provider;
173 $backtourl = DOL_URL_ROOT.
'/admin/oauth.php?action=delete_entry&provider='.$provider.
'&label='.$label.
'&token='.
newToken();
174 $urlwithouturlroot = preg_replace(
'/'.preg_quote(DOL_URL_ROOT,
'/').
'$/i',
'', trim($dolibarr_main_url_root));
175 $urlwithroot = $urlwithouturlroot.DOL_URL_ROOT;
176 $callbacktodel = $urlwithroot;
177 if ($label ==
'OAUTH_GOOGLE') {
178 $callbacktodel .=
'/core/modules/oauth/google_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
179 } elseif ($label ==
'OAUTH_GITHUB') {
180 $callbacktodel .=
'/core/modules/oauth/github_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
181 } elseif ($label ==
'OAUTH_STRIPE_LIVE') {
182 $callbacktodel .=
'/core/modules/oauth/stripelive_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
183 } elseif ($label ==
'OAUTH_STRIPE_TEST') {
184 $callbacktodel .=
'/core/modules/oauth/stripetest_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
185 } elseif ($label ==
'OAUTH_MICROSOFT') {
186 $callbacktodel .=
'/core/modules/oauth/microsoft_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
187 } elseif ($label ==
'OAUTH_MICROSOFT2') {
188 $callbacktodel .=
'/core/modules/oauth/microsoft2_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
189 } elseif ($label ==
'OAUTH_GENERIC') {
190 $callbacktodel .=
'/core/modules/oauth/generic_oauthcallback.php?action=delete&keyforprovider='.$provider.
'&token='.
newToken().
'&backtourl='.urlencode($backtourl);
192 header(
"Location: ".$callbacktodel);
195 $action =
'delete_entry';
199if ($action ==
'delete_entry') {
200 $provider =
GETPOST(
'provider',
'aZ09');
203 $globalkey = empty($provider) ? $label : $label.
'-'.$provider;
222$form =
new Form($db);
224$title = $langs->trans(
'ConfigOAuth');
225$help_url =
'EN:Module_OAuth|FR:Module_OAuth_FR|ES:Módulo_OAuth_ES';
227llxHeader(
'', $title, $help_url,
'', 0, 0,
'',
'',
'',
'mod-admin page-oauth');
230if ($action ==
'delete') {
231 $formquestion = array();
232 $formconfirm = $form->formconfirm($_SERVER[
"PHP_SELF"].
'?provider='.
GETPOST(
'provider').
'&label='.
GETPOST(
'label'), $langs->trans(
'OAuthServiceConfirmDeleteTitle'), $langs->trans(
'OAuthServiceConfirmDeleteMessage'),
'confirm_delete', $formquestion, 0, 1, 220);
237$linkback =
'<a href="'.DOL_URL_ROOT.
'/admin/modules.php?restore_lastsearch_values=1">'.$langs->trans(
"BackToModuleList").
'</a>';
240print
'<form action="'.$_SERVER[
"PHP_SELF"].
'" method="POST">';
241print
'<input type="hidden" name="token" value="'.newToken().
'">';
242print
'<input type="hidden" name="action" value="add">';
249print
'<span class="opacitymedium">'.$langs->trans(
"ListOfSupportedOauthProviders").
'</span><br><br>';
252print
'<select name="provider" id="provider" class="minwidth150">';
253print
'<option name="-1" value="-1">'.$langs->trans(
"OAuthProvider").
'</option>';
256foreach ($list as $key) {
258 $keyforsupportedoauth2array = $key[0];
260 if (in_array($keyforsupportedoauth2array, array_keys($supportedoauth2array))) {
267 print
'<option name="'.$keyforsupportedoauth2array.
'" value="'.str_replace(
'_NAME',
'', $keyforsupportedoauth2array).
'">';
269 $keyforsupportedoauth2array = preg_replace(
'/^OAUTH_/',
'', $keyforsupportedoauth2array);
270 $keyforsupportedoauth2array = preg_replace(
'/_NAME$/',
'', $keyforsupportedoauth2array);
271 $keyforsupportedoauth2array = preg_replace(
'/-.*$/',
'', $keyforsupportedoauth2array);
272 $keyforsupportedoauth2array =
'OAUTH_'.$keyforsupportedoauth2array.
'_NAME';
274 $label = $langs->trans($keyforsupportedoauth2array);
275 if ($label == $keyforsupportedoauth2array) {
276 print $supportedoauth2array[$keyforsupportedoauth2array][
'name'];
280 print
'</option>'.
"\n";
284print
' <input type="text" name="label" value="" placeholder="'.$langs->trans(
"Label").
'" pattern="^\S+$" title="'.$langs->trans(
"SpaceOrSpecialCharAreNotAllowed").
'">';
285print
' <input type="submit" class="button small" name="add" value="'.$langs->trans(
"Add").
'">';
296foreach ($conf->global as $key => $val) {
297 if (!empty($val) && preg_match(
'/^OAUTH_.*_ID$/', $key)) {
298 $provider = preg_replace(
'/_ID$/',
'', $key);
299 $listinsetup[] = array(
310if (count($listinsetup) > 0) {
311 print
'<form action="'.$_SERVER[
"PHP_SELF"].
'" method="POST">';
312 print
'<input type="hidden" name="token" value="'.newToken().
'">';
313 print
'<input type="hidden" name="action" value="update">';
315 print
'<div class="div-table-responsive-no-min">';
320 foreach ($listinsetup as $key) {
322 $keyforsupportedoauth2array = $key[0];
323 $keyforsupportedoauth2array = preg_replace(
'/^OAUTH_/',
'', $keyforsupportedoauth2array);
324 $keyforsupportedoauth2array = preg_replace(
'/_NAME$/',
'', $keyforsupportedoauth2array);
325 if (preg_match(
'/^.*-/', $keyforsupportedoauth2array)) {
326 $keybeforeprovider = preg_replace(
'/-.*$/',
'', $keyforsupportedoauth2array);
327 $keyforprovider = preg_replace(
'/^.*-/',
'', $keyforsupportedoauth2array);
329 $keybeforeprovider = $keyforsupportedoauth2array;
330 $keyforprovider =
'';
332 $keyforsupportedoauth2array = preg_replace(
'/-.*$/',
'', $keyforsupportedoauth2array);
333 $keyforsupportedoauth2array =
'OAUTH_'.$keyforsupportedoauth2array.
'_NAME';
335 if (in_array($keyforsupportedoauth2array, array_keys($supportedoauth2array))) {
344 print
'<table class="noborder centpercent">';
347 $label = $langs->trans($keyforsupportedoauth2array);
348 print
'<tr class="liste_titre'.($i > 1 ?
' liste_titre_add' :
'').
'">';
349 print
'<td class="titlefieldcreate">';
350 print
img_picto(
'', $supportedoauth2array[$keyforsupportedoauth2array][
'picto'],
'class="pictofixedwidth"');
351 if ($label == $keyforsupportedoauth2array) {
352 print $supportedoauth2array[$keyforsupportedoauth2array][
'name'];
356 if ($servicetoeditname == $key[0]) {
357 print
' (<input style="width: 20%" type="text" name="'.$key[0].
'" value="'.$keyforprovider.
'" >)';
358 } elseif ($keyforprovider) {
359 print
' (<b>'.$keyforprovider.
'</b>)';
361 print
' (<b>'.$langs->trans(
"NoName").
'</b>)';
363 if (!($servicetoeditname == $key[0])) {
364 print
'<a class="editfielda reposition" href="'.$_SERVER[
"PHP_SELF"].
'?token='.
newToken().
'&servicetoeditname='.urlencode($key[0]).
'">'.
img_edit($langs->transnoentitiesnoconv(
'Edit'), 1).
'</a>';
368 if (!empty($supportedoauth2array[$keyforsupportedoauth2array][
'urlforcredentials'])) {
369 print $langs->trans(
"OAUTH_URL_FOR_CREDENTIAL", $supportedoauth2array[$keyforsupportedoauth2array][
'urlforcredentials']);
375 $label = preg_replace(
'/_NAME$/',
'', $keyforsupportedoauth2array);
376 print
'<a href="'.$_SERVER[
"PHP_SELF"].
'?action=delete&token='.
newToken().
'&provider='.urlencode($keyforprovider).
'&label='.urlencode($label).
'">';
386 $redirect_uri = $urlwithroot.
'/core/modules/oauth/'.$supportedoauth2array[$keyforsupportedoauth2array][
'callbackfile'].
'_oauthcallback.php';
387 print
'<tr class="oddeven value">';
388 print
'<td>'.$form->textwithpicto($langs->trans(
"RedirectURL"), $langs->trans(
"UseTheFollowingUrlAsRedirectURI")).
'</td>';
389 print
'<td><input style="width: 80%" type="text" name="uri'.$keyforsupportedoauth2array.
'" id="uri'.$keyforsupportedoauth2array.$keyforprovider.
'" value="'.$redirect_uri.
'" disabled>';
390 print
ajax_autoselect(
'uri'.$keyforsupportedoauth2array.$keyforprovider);
395 if ($keyforsupportedoauth2array ==
'OAUTH_GENERIC_NAME') {
396 print
'<tr class="oddeven value">';
398 $tooltiphelp = $langs->trans(
"Example").
'<br>https://mastodon.example.com<br>https://mastodon.social';
399 print $form->textwithpicto($langs->trans(
"URLOfOAuthServiceEndpoints"), $tooltiphelp);
401 print
'<td><input style="width: 80%" type="text" name="'.$key[3].
'" value="'.
getDolGlobalString($key[3]).
'" >';
407 print
'<tr class="oddeven value">';
408 print
'<td>'.$langs->trans(
"UseTheFollowingUrlAsRedirectURI").
'</td>';
409 print
'<td>'.$langs->trans(
"FeatureNotYetSupported").
'</td>';
416 print
'<tr class="oddeven value">';
417 print
'<td><label for="'.$key[1].
'">'.$langs->trans(
"OAUTH_ID").
'</label></td>';
418 print
'<td><input type="text" size="100" id="'.$key[1].
'" name="'.$key[1].
'" value="'.
getDolGlobalString($key[1]).
'">';
424 print
'<tr class="oddeven value">';
425 print
'<td><label for="'.$key[2].
'">'.$langs->trans(
"OAUTH_SECRET").
'</label></td>';
426 print
'<td><input type="password" size="100" id="'.$key[2].
'" name="'.$key[2].
'" value="'.
getDolGlobalString($key[2]).
'">';
432 if ($keybeforeprovider ==
'MICROSOFT' || $keybeforeprovider ==
'MICROSOFT2') {
433 print
'<tr class="oddeven value">';
434 print
'<td><label for="'.$key[2].
'">'.$langs->trans(
"OAUTH_TENANT").
'</label></td>';
435 print
'<td><input type="text" size="100" id="OAUTH_'.$keybeforeprovider.($keyforprovider ?
'-'.$keyforprovider :
'').
'_TENANT" name="OAUTH_'.$keybeforeprovider.($keyforprovider ?
'-'.$keyforprovider :
'').
'_TENANT" value="'.
getDolGlobalString(
'OAUTH_'.$keybeforeprovider.($keyforprovider ?
'-'.$keyforprovider :
'').
'_TENANT').
'">';
443 if ($keyforsupportedoauth2array ==
'OAUTH_GENERIC_NAME') {
444 print
'<tr class="oddeven value">';
446 print $form->textwithpicto($langs->trans(
"Scopes"), $langs->trans(
"ScopesDesc"));
449 print
'<input style="width: 80%" type"text" name="'.$key[4].
'" value="'.
getDolGlobalString($key[4]).
'" >';
454 $availablescopes = array_flip(explode(
',', $supportedoauth2array[$keyforsupportedoauth2array][
'availablescopes']));
456 $scopestodispay = array();
457 foreach ($availablescopes as $keyscope => $valscope) {
458 if (in_array($keyscope, $currentscopes)) {
459 $scopestodispay[$keyscope] = 1;
461 $scopestodispay[$keyscope] = 0;
465 print
'<tr class="oddeven value">';
466 print
'<td>'.$langs->trans(
"Scopes").
'</td>';
468 foreach ($scopestodispay as $scope => $val) {
469 print
'<input type="checkbox" id="'.$keyforprovider.$scope.
'" name="'.$key[4].
'[]" value="'.$scope.
'"'.($val ?
' checked' :
'').
'>';
470 print
'<label style="margin-right: 10px" for="'.$keyforprovider.$scope.
'">'.$scope.
'</label>';
477 print
'<tr class="oddeven value">';
478 print
'<td>'.$langs->trans(
"UseTheFollowingUrlAsRedirectURI").
'</td>';
479 print
'<td>'.$langs->trans(
"FeatureNotYetSupported").
'</td>';
485 print
'</table>'.
"\n";
492 print $form->buttonsSaveCancel(
"Save",
'');
dolibarr_set_const($db, $name, $value, $type='chaine', $visible=0, $note='', $entity=1)
Insert a parameter (key,value) into database (delete old key then insert it again).
dolibarr_del_const($db, $name, $entity=1)
Delete a constant.
ajax_combobox($htmlname, $events=array(), $minLengthToAutocomplete=0, $forcefocus=0, $widthTypeOfAutocomplete='resolve', $idforemptyvalue='-1', $morecss='')
Convert a html select field into an ajax combobox.
if(!defined('NOREQUIRESOC')) if(!defined( 'NOREQUIRETRAN')) if(!defined('NOTOKENRENEWAL')) if(!defined( 'NOREQUIREMENU')) if(!defined('NOREQUIREHTML')) if(!defined( 'NOREQUIREAJAX')) llxHeader($head='', $title='', $help_url='', $target='', $disablejs=0, $disablehead=0, $arrayofjs='', $arrayofcss='', $morequerystring='', $morecssonbody='', $replacemainareaby='', $disablenofollow=0, $disablenoindex=0)
Empty header.
load_fiche_titre($title, $morehtmlright='', $picto='generic', $pictoisfullpath=0, $id='', $morecssontable='', $morehtmlcenter='')
Load a title with picto.
setEventMessages($mesg, $mesgs, $style='mesgs', $messagekey='', $noduplicate=0, $attop=0)
Set event messages in dol_events session object.
img_picto($titlealt, $picto, $moreatt='', $pictoisfullpath=0, $srconly=0, $notitle=0, $alt='', $morecss='', $marginleftonlyshort=2)
Show picto whatever it's its name (generic function)
dol_get_fiche_head($links=array(), $active='', $title='', $notab=0, $picto='', $pictoisfullpath=0, $morehtmlright='', $morecss='', $limittoshow=0, $moretabssuffix='', $dragdropfile=0)
Show tabs of a record.
dol_get_fiche_end($notab=0)
Return tab footer of a card.
ajax_autoselect($htmlname, $addlink='', $textonlink='Link')
Make content of an input box selected when we click into input field.
newToken()
Return the value of token currently saved into session with name 'newtoken'.
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
getDolGlobalString($key, $default='')
Return a Dolibarr global constant string value.
img_edit($titlealt='default', $float=0, $other='')
Show logo edit/modify fiche.
getAllOauth2Array()
Return array of possible OAUTH2 services.
getSupportedOauth2Array()
Return array of tabs to used on pages to setup cron module.
oauthadmin_prepare_head()
Return array of tabs to used on pages to setup cron module.
accessforbidden($message='', $printheader=1, $printfooter=1, $showonlymessage=0, $params=null)
Show a message to say access is forbidden and stop program.