login.system 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319
  1. <!DOCTYPE HTML>
  2. <html>
  3. <head>
  4. <meta charset="UTF-8">
  5. <meta name="robots" content="noindex" />
  6. <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">
  7. <link rel="author" href="humans.txt"/>
  8. <title>ArozOS - Login</title>
  9. <link rel="stylesheet" href="script/tocas/tocas.css">
  10. <link rel="stylesheet" href="script/ao.css">
  11. <script type="application/javascript" src="script/tocas/tocas.js"></script>
  12. <script type="application/javascript" src="script/jquery.min.js"></script>
  13. <style>
  14. @media only screen and (max-height: 1000px) {
  15. .leftPictureFrame {
  16. height:auto !important;
  17. }
  18. }
  19. .leftPictureFrame{
  20. position:fixed;
  21. top:0px;
  22. left:0px;
  23. min-width:calc(100% - 500px);
  24. min-height:100%;
  25. background-color:#faf7eb;
  26. background-image:url("img/public/auth_bg.jpg");
  27. -webkit-background-size: cover;
  28. -moz-background-size: cover;
  29. -o-background-size: cover;
  30. background-size: cover;
  31. background-repeat: no-repeat, no-repeat;
  32. background-position:bottom left;
  33. }
  34. .rightLoginFrame{
  35. position:fixed;
  36. top:0;
  37. right:0;
  38. height:100%;
  39. width:500px;
  40. background-color:white;
  41. z-index:100%;
  42. padding-left: 30px;
  43. padding-right: 20px;
  44. }
  45. .fullHeightImage{
  46. height:100% !important;
  47. position:relative;
  48. left:-20px;
  49. }
  50. .bottombar{
  51. position:absolute;
  52. bottom:1em;
  53. left:0;
  54. padding-left: 20px;
  55. width:100%;
  56. }
  57. #animationFrame{
  58. position:absolute;
  59. bottom:0px;
  60. width:100%;
  61. }
  62. .textbox{
  63. margin-bottom:15px;
  64. }
  65. .themecolor{
  66. background-color: #5fa0d9 !important;
  67. }
  68. .subthemecolor{
  69. background-color: #99d0f2 !important;
  70. }
  71. .loginbtn{
  72. color:white !important;
  73. margin-top:4em;
  74. }
  75. .oauthbtn{
  76. color:white !important;
  77. margin-top:1em;
  78. }
  79. </style>
  80. </head>
  81. <body>
  82. <div class="leftPictureFrame">
  83. </div>
  84. <div id="loginInterface" class="rightLoginFrame">
  85. <br><br><br>
  86. <img class="ts medium image" src="data:image/png;base64, {{service_logo}}">
  87. <div class="ts borderless basic segment">
  88. <p><i class="key icon"></i> Sign in <span class="hostname">ArozOS</span> with your username and password</p>
  89. <div class="oauthonly" style="display:none;">
  90. <a class="ts fluid small button oauthbtn subthemecolor" href="system/auth/oauth/login">Sign In via OAuth 2.0</a><br>
  91. </div>
  92. <div class="ldaponly" style="display:none;">
  93. <a class="ts fluid small button oauthbtn subthemecolor" href="ldapLogin.system">Sign In via LDAP</a><br>
  94. </div>
  95. <br>
  96. <div class="ts fluid input textbox">
  97. <input id="username" type="text" placeholder="Username">
  98. </div>
  99. <div class="ts fluid input textbox">
  100. <input id="magic" type="password" placeholder="Password">
  101. </div>
  102. <div class="ts checkbox">
  103. <input id="rmbme" type="checkbox">
  104. <label for="rmbme">Remember Me</label>
  105. </div>
  106. <br>
  107. <button id="loginbtn" class="ts button loginbtn themecolor">Sign In</button><br>
  108. <div class="ts breadcrumb" style="margin-top:12px;">
  109. <a class="section signup" style="cursor:pointer; display:none;" href="public/register/register.system">Sign Up</a>
  110. <div class="divider signup"> / </div>
  111. <a id="forgetpw" class="section" style="cursor:pointer" href="reset.system">Forgot Password</a>
  112. </div>
  113. <p style="margin-top:18px;color:#ff7a70; display:none;font-size:1.2em;"><i class="remove icon"></i><span id="errmsg">Error. Incorrect username or password.</span></p>
  114. </div>
  115. <div class="bottombar">
  116. © <a href="https://arozos.com">ArozOS</a> 2017 - <span class="thisyear"></span><br>
  117. <small style="font-size: 80%">Request Time: <span id="requestTime"></span></small>
  118. </div>
  119. </div>
  120. <script>
  121. var redirectionAddress = "{{redirection_addr}}";
  122. var loginAddress = "{{login_addr}}";
  123. var systemUserCount = "{{usercount}}" - 0; //Magic way to convert string to int :)
  124. var autoRedirectTimer;
  125. var isMobile = false; //initiate as false
  126. // device detection
  127. if(/(android|bb\d+|meego).+mobile|avantgo|bada\/|blackberry|blazer|compal|elaine|fennec|hiptop|iemobile|ip(hone|od)|ipad|iris|kindle|Android|Silk|lge |maemo|midp|mmp|netfront|opera m(ob|in)i|palm( os)?|phone|p(ixi|re)\/|plucker|pocket|psp|series(4|6)0|symbian|treo|up\.(browser|link)|vodafone|wap|windows (ce|phone)|xda|xiino/i.test(navigator.userAgent)
  128. || /1207|6310|6590|3gso|4thp|50[1-6]i|770s|802s|a wa|abac|ac(er|oo|s\-)|ai(ko|rn)|al(av|ca|co)|amoi|an(ex|ny|yw)|aptu|ar(ch|go)|as(te|us)|attw|au(di|\-m|r |s )|avan|be(ck|ll|nq)|bi(lb|rd)|bl(ac|az)|br(e|v)w|bumb|bw\-(n|u)|c55\/|capi|ccwa|cdm\-|cell|chtm|cldc|cmd\-|co(mp|nd)|craw|da(it|ll|ng)|dbte|dc\-s|devi|dica|dmob|do(c|p)o|ds(12|\-d)|el(49|ai)|em(l2|ul)|er(ic|k0)|esl8|ez([4-7]0|os|wa|ze)|fetc|fly(\-|_)|g1 u|g560|gene|gf\-5|g\-mo|go(\.w|od)|gr(ad|un)|haie|hcit|hd\-(m|p|t)|hei\-|hi(pt|ta)|hp( i|ip)|hs\-c|ht(c(\-| |_|a|g|p|s|t)|tp)|hu(aw|tc)|i\-(20|go|ma)|i230|iac( |\-|\/)|ibro|idea|ig01|ikom|im1k|inno|ipaq|iris|ja(t|v)a|jbro|jemu|jigs|kddi|keji|kgt( |\/)|klon|kpt |kwc\-|kyo(c|k)|le(no|xi)|lg( g|\/(k|l|u)|50|54|\-[a-w])|libw|lynx|m1\-w|m3ga|m50\/|ma(te|ui|xo)|mc(01|21|ca)|m\-cr|me(rc|ri)|mi(o8|oa|ts)|mmef|mo(01|02|bi|de|do|t(\-| |o|v)|zz)|mt(50|p1|v )|mwbp|mywa|n10[0-2]|n20[2-3]|n30(0|2)|n50(0|2|5)|n7(0(0|1)|10)|ne((c|m)\-|on|tf|wf|wg|wt)|nok(6|i)|nzph|o2im|op(ti|wv)|oran|owg1|p800|pan(a|d|t)|pdxg|pg(13|\-([1-8]|c))|phil|pire|pl(ay|uc)|pn\-2|po(ck|rt|se)|prox|psio|pt\-g|qa\-a|qc(07|12|21|32|60|\-[2-7]|i\-)|qtek|r380|r600|raks|rim9|ro(ve|zo)|s55\/|sa(ge|ma|mm|ms|ny|va)|sc(01|h\-|oo|p\-)|sdk\/|se(c(\-|0|1)|47|mc|nd|ri)|sgh\-|shar|sie(\-|m)|sk\-0|sl(45|id)|sm(al|ar|b3|it|t5)|so(ft|ny)|sp(01|h\-|v\-|v )|sy(01|mb)|t2(18|50)|t6(00|10|18)|ta(gt|lk)|tcl\-|tdg\-|tel(i|m)|tim\-|t\-mo|to(pl|sh)|ts(70|m\-|m3|m5)|tx\-9|up(\.b|g1|si)|utst|v400|v750|veri|vi(rg|te)|vk(40|5[0-3]|\-v)|vm40|voda|vulc|vx(52|53|60|61|70|80|81|83|85|98)|w3c(\-| )|webc|whit|wi(g |nc|nw)|wmlb|wonu|x700|yas\-|your|zeto|zte\-/i.test(navigator.userAgent.substr(0,4))) {
  129. isMobile = true;
  130. }
  131. if (isMobile){
  132. //Full screen the login panel
  133. $("#loginInterface").css("width","100%");
  134. }
  135. if (systemUserCount == 0){
  136. //There are no user in this system yet. Rediect to user setup
  137. window.location.href = "/user.system";
  138. }
  139. $(document).ready(function(){
  140. var currentdate = new Date();
  141. var datetime = currentdate.getDate() + "/"
  142. + (currentdate.getMonth()+1) + "/"
  143. + currentdate.getFullYear() + " "
  144. + currentdate.getHours() + ":"
  145. + currentdate.getMinutes() + ":"
  146. + currentdate.getSeconds();
  147. $("#requestTime").text(datetime);
  148. //Check if the user already logged in
  149. $.get("system/auth/checkLogin",function(data){
  150. try{
  151. if (data === true || data.trim() == "true"){
  152. //User already logged in. Redirect to target page.
  153. if (redirectionAddress == ""){
  154. //Redirect back to index
  155. window.location.href = "/";
  156. }else{
  157. console.log(data);
  158. //window.location.href = redirectionAddress;
  159. }
  160. }
  161. }catch(ex){
  162. //Assume not logged in
  163. console.log(data);
  164. }
  165. });
  166. //Check if the system is open for registry
  167. $.get("public/register/checkPublicRegister",function(data){
  168. if (data == true){
  169. $(".signup").show();
  170. }else{
  171. $(".signup").remove();
  172. }
  173. });
  174. //OAuth related code, check if system is open for ext login
  175. $.getJSON("system/auth/oauth/checkoauth",function(data){
  176. if (data.enabled == true){
  177. $(".oauthonly").show();
  178. }else{
  179. $(".oauthonly").hide();
  180. }
  181. //if auto redirect is on
  182. if(data.auto_redirect == true) {
  183. //checking if they come from desktop.system or mobile.system
  184. //if they come from that two pages, usually mean they are just logged out.
  185. if(document.referrer != ''){
  186. var path = new URL(document.referrer);
  187. } else {
  188. var path = new URL('http://0.0.0.0');
  189. }
  190. if(document.referrer != window.location.origin + "/desktop.system" && document.referrer != window.location.origin + "/mobile.system" && path.origin + path.pathname != window.location.origin + "/system/auth/oauth/authorize"){
  191. $(".ts.borderless.basic.segment").attr("style","display: none;");
  192. $(".ts.borderless.basic.segment").attr("id","aoLogin");
  193. $(".ts.borderless.basic.segment").after('<div id="autoRedirectSegment" class="ts borderless basic segment"><p><i class="key icon"></i>Redirecting to organization sign-in page in 5 seconds...</p><br><a style="cursor: pointer;" onclick="stopAutoRedirect()">Cancel</a></div>');
  194. autoRedirectTimer = setTimeout(function(){
  195. window.location.href = "system/auth/oauth/login?redirect=" + redirectionAddress;
  196. }, 3000);
  197. }
  198. }
  199. });
  200. //LDAP related code, check if system is open for ext login
  201. $.getJSON("system/auth/ldap/checkldap",function(data){
  202. if (data.enabled == true && window.location.pathname.toLowerCase() != "/ldaplogin.system"){
  203. $(".ldaponly").show();
  204. }else{
  205. $(".ldaponly").hide();
  206. }
  207. });
  208. if(get('redirect') != undefined){
  209. $(".section.signin").attr("href","system/auth/oauth/login?redirect=" + redirectionAddress);
  210. }
  211. //Get the system hostname and replace the hostname fields
  212. $.get("system/info/getArOZInfo", function(data){
  213. document.title = data.HostName + " - Sign In"
  214. $(".hostname").text(data.HostName);
  215. });
  216. });
  217. //Event handlers for buttons
  218. $("#loginbtn").on("click",function(){
  219. login();
  220. });
  221. $("input").on("keydown",function(event){
  222. if (event.keyCode === 13) {
  223. event.preventDefault();
  224. if ($(this).attr("id") == "magic"){
  225. login();
  226. }else{
  227. //Fuocus to password field
  228. $("#magic").focus();
  229. }
  230. }
  231. });
  232. //Login system with the given username and password
  233. function login(){
  234. var username = $("#username").val();
  235. var magic = $("#magic").val();
  236. var rmbme = document.getElementById("rmbme").checked;
  237. $("input").addClass('disabled');
  238. $.post(loginAddress, {"username": username, "password": magic, "rmbme": rmbme}).done(function(data){
  239. if (data.error !== undefined){
  240. //Something went wrong during the login
  241. $("#errmsg").text(data.error);
  242. $("#errmsg").parent().stop().finish().slideDown('fast').delay(5000).slideUp('fast');
  243. }else if(data.redirect !== undefined){
  244. //LDAP Related Code
  245. window.location.href = data.redirect;
  246. }else{
  247. //Login succeed
  248. if (redirectionAddress == ""){
  249. //Redirect back to index
  250. window.location.href = "./";
  251. }else{
  252. window.location.href = redirectionAddress;
  253. }
  254. }
  255. $("input").removeClass('disabled');
  256. });
  257. }
  258. function get(name){
  259. if(name=(new RegExp('[?&]'+encodeURIComponent(name)+'=([^&]*)')).exec(location.search))
  260. return decodeURIComponent(name[1]);
  261. }
  262. function stopAutoRedirect(){
  263. clearTimeout(autoRedirectTimer);
  264. $("#aoLogin").removeAttr("style");
  265. $("#autoRedirectSegment").attr("style", "display:none");
  266. }
  267. $(".thisyear").text(new Date().getFullYear());
  268. function updateRenderElements(){
  269. if (window.innerHeight < 520){
  270. $(".bottombar").hide();
  271. }else{
  272. $(".bottombar").show();
  273. }
  274. }
  275. updateRenderElements();
  276. $(window).on("resize", function(){
  277. updateRenderElements();
  278. });
  279. </script>
  280. </body>
  281. </html>