LoginForm.tsx 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560
  1. import React, {
  2. useState, useEffect, useCallback,
  3. } from 'react';
  4. import type { IExternalAuthProviderType } from '@growi/core';
  5. import { LoadingSpinner } from '@growi/ui/dist/components';
  6. import { useTranslation } from 'next-i18next';
  7. import { useRouter } from 'next/router';
  8. import ReactCardFlip from 'react-card-flip';
  9. import { apiv3Post } from '~/client/util/apiv3-client';
  10. import { useTWithOpt } from '~/client/util/t-with-opt';
  11. import type { IExternalAccountLoginError } from '~/interfaces/errors/external-account-login-error';
  12. import { LoginErrorCode } from '~/interfaces/errors/login-error';
  13. import type { IErrorV3 } from '~/interfaces/errors/v3-error';
  14. import { RegistrationMode } from '~/interfaces/registration-mode';
  15. import { toArrayIfNot } from '~/utils/array-utils';
  16. import { CompleteUserRegistration } from '../CompleteUserRegistration';
  17. import { ExternalAuthButton } from './ExternalAuthButton';
  18. import styles from './LoginForm.module.scss';
  19. const moduleClass = styles['login-form'];
  20. type LoginFormProps = {
  21. username?: string,
  22. name?: string,
  23. email?: string,
  24. isEmailAuthenticationEnabled: boolean,
  25. registrationMode: RegistrationMode,
  26. registrationWhitelist: string[],
  27. isPasswordResetEnabled: boolean,
  28. isLocalStrategySetup: boolean,
  29. isLdapStrategySetup: boolean,
  30. isLdapSetupFailed: boolean,
  31. enabledExternalAuthType?: IExternalAuthProviderType[],
  32. isMailerSetup?: boolean,
  33. externalAccountLoginError?: IExternalAccountLoginError,
  34. minPasswordLength: number,
  35. }
  36. export const LoginForm = (props: LoginFormProps): JSX.Element => {
  37. const { t } = useTranslation();
  38. const router = useRouter();
  39. const {
  40. isLocalStrategySetup, isLdapStrategySetup, isLdapSetupFailed, isPasswordResetEnabled,
  41. isEmailAuthenticationEnabled, registrationMode, registrationWhitelist, isMailerSetup, enabledExternalAuthType, minPasswordLength,
  42. } = props;
  43. const isLocalOrLdapStrategiesEnabled = isLocalStrategySetup || isLdapStrategySetup;
  44. const isSomeExternalAuthEnabled = enabledExternalAuthType != null && enabledExternalAuthType.length > 0;
  45. // states
  46. const [isRegistering, setIsRegistering] = useState(false);
  47. const [isLoading, setIsLoading] = useState(false);
  48. // For Login
  49. const [usernameForLogin, setUsernameForLogin] = useState('');
  50. const [passwordForLogin, setPasswordForLogin] = useState('');
  51. const [loginErrors, setLoginErrors] = useState<IErrorV3[]>([]);
  52. // For Register
  53. const [usernameForRegister, setUsernameForRegister] = useState('');
  54. const [nameForRegister, setNameForRegister] = useState('');
  55. const [emailForRegister, setEmailForRegister] = useState('');
  56. const [passwordForRegister, setPasswordForRegister] = useState('');
  57. const [registerErrors, setRegisterErrors] = useState<IErrorV3[]>([]);
  58. // For UserActivation
  59. const [emailForRegistrationOrder, setEmailForRegistrationOrder] = useState('');
  60. const [isSuccessToRagistration, setIsSuccessToRagistration] = useState(false);
  61. const isRegistrationEnabled = isLocalStrategySetup && registrationMode !== RegistrationMode.CLOSED;
  62. const tWithOpt = useTWithOpt();
  63. useEffect(() => {
  64. const { hash } = window.location;
  65. if (hash === '#register') {
  66. setIsRegistering(true);
  67. }
  68. }, []);
  69. const resetLoginErrors = useCallback(() => {
  70. if (loginErrors.length === 0) return;
  71. setLoginErrors([]);
  72. }, [loginErrors.length]);
  73. const handleLoginWithLocalSubmit = useCallback(async(e) => {
  74. e.preventDefault();
  75. resetLoginErrors();
  76. setIsLoading(true);
  77. const loginForm = {
  78. username: usernameForLogin,
  79. password: passwordForLogin,
  80. };
  81. try {
  82. const res = await apiv3Post('/login', { loginForm });
  83. const { redirectTo } = res.data;
  84. if (redirectTo != null) {
  85. return router.push(redirectTo);
  86. }
  87. return router.push('/');
  88. }
  89. catch (err) {
  90. const errs = toArrayIfNot(err);
  91. setLoginErrors(errs);
  92. setIsLoading(false);
  93. }
  94. return;
  95. }, [passwordForLogin, resetLoginErrors, router, usernameForLogin]);
  96. // separate errors based on error code
  97. const separateErrorsBasedOnErrorCode = useCallback((errors: IErrorV3[]) => {
  98. const loginErrorListForDangerouslySetInnerHTML: IErrorV3[] = [];
  99. const loginErrorList: IErrorV3[] = [];
  100. errors.forEach((err) => {
  101. if (err.code === LoginErrorCode.PROVIDER_DUPLICATED_USERNAME_EXCEPTION) {
  102. loginErrorListForDangerouslySetInnerHTML.push(err);
  103. }
  104. else {
  105. loginErrorList.push(err);
  106. }
  107. });
  108. return [loginErrorListForDangerouslySetInnerHTML, loginErrorList];
  109. }, []);
  110. // wrap error elements which use dangerouslySetInnerHtml
  111. const generateDangerouslySetErrors = useCallback((errors: IErrorV3[]): JSX.Element => {
  112. if (errors == null || errors.length === 0) return <></>;
  113. return (
  114. <div className="alert alert-danger">
  115. {errors.map((err) => {
  116. // eslint-disable-next-line react/no-danger
  117. return <small dangerouslySetInnerHTML={{ __html: tWithOpt(err.message, err.args) }}></small>;
  118. })}
  119. </div>
  120. );
  121. }, [tWithOpt]);
  122. // wrap error elements which do not use dangerouslySetInnerHtml
  123. const generateSafelySetErrors = useCallback((errors: (IErrorV3 | IExternalAccountLoginError)[]): JSX.Element => {
  124. if (errors == null || errors.length === 0) return <></>;
  125. return (
  126. <ul className="alert alert-danger">
  127. {errors.map((err, index) => (
  128. <li className={index > 0 ? 'mt-1' : ''}>
  129. {tWithOpt(err.message, err.args)}
  130. </li>
  131. ))}
  132. </ul>
  133. );
  134. }, [tWithOpt]);
  135. const renderLocalOrLdapLoginForm = useCallback(() => {
  136. const { isLdapStrategySetup } = props;
  137. // separate login errors into two arrays based on error code
  138. const [loginErrorListForDangerouslySetInnerHTML, loginErrorList] = separateErrorsBasedOnErrorCode(loginErrors);
  139. // Generate login error elements using dangerouslySetInnerHTML
  140. const loginErrorElementWithDangerouslySetInnerHTML = generateDangerouslySetErrors(loginErrorListForDangerouslySetInnerHTML);
  141. // Generate login error elements using <ul>, <li>
  142. const loginErrorElement = props.externalAccountLoginError != null
  143. ? generateSafelySetErrors([...loginErrorList, props.externalAccountLoginError])
  144. : generateSafelySetErrors(loginErrorList);
  145. return (
  146. <>
  147. {/* !! - DO NOT DELETE HIDDEN ELEMENT - !! -- 7.12 ryoji-s */}
  148. {/* https://github.com/weseek/growi/pull/7873 */}
  149. <div className="visually-hidden">
  150. <LoadingSpinner />
  151. </div>
  152. {/* !! - END OF HIDDEN ELEMENT - !! */}
  153. {isLdapSetupFailed && (
  154. <div className="alert alert-warning small">
  155. <strong><span className="material-symbols-outlined">info</span>{t('login.enabled_ldap_has_configuration_problem')}</strong><br />
  156. {/* eslint-disable-next-line react/no-danger */}
  157. <span dangerouslySetInnerHTML={{ __html: t('login.set_env_var_for_logs') }}></span>
  158. </div>
  159. )}
  160. {loginErrorElementWithDangerouslySetInnerHTML}
  161. {loginErrorElement}
  162. <form role="form" onSubmit={handleLoginWithLocalSubmit} id="login-form">
  163. <div className="input-group">
  164. <label className="text-white opacity-75 d-flex align-items-center" htmlFor="tiUsernameForLogin">
  165. <span className="material-symbols-outlined" aria-label="Username or E-mail">person</span>
  166. </label>
  167. <input
  168. id="tiUsernameForLogin"
  169. type="text"
  170. className={`form-control rounded ms-2 ${isLdapStrategySetup ? 'ldap-space' : ''}`}
  171. data-testid="tiUsernameForLogin"
  172. placeholder="Username or E-mail"
  173. onChange={(e) => { setUsernameForLogin(e.target.value) }}
  174. name="usernameForLogin"
  175. />
  176. {isLdapStrategySetup && (
  177. <small className="badge text-bg-success input-ldap d-flex align-items-center">
  178. <span className="material-symbols-outlined">network_node</span>
  179. <span className="">LDAP</span>
  180. </small>
  181. )}
  182. </div>
  183. <div className="input-group">
  184. <label className="text-white opacity-75 d-flex align-items-center" htmlFor="tiPasswordForLogin">
  185. <span className="material-symbols-outlined" aria-label="Password">lock</span>
  186. </label>
  187. <input
  188. id="tiPasswordForLogin"
  189. type="password"
  190. className="form-control rounded ms-2"
  191. data-testid="tiPasswordForLogin"
  192. placeholder="Password"
  193. onChange={(e) => { setPasswordForLogin(e.target.value) }}
  194. name="passwordForLogin"
  195. />
  196. </div>
  197. <div className="input-group my-4">
  198. <button
  199. type="submit"
  200. className="btn btn-secondary btn-login col-7 mx-auto d-flex"
  201. data-testid="btnSubmitForLogin"
  202. disabled={isLoading}
  203. >
  204. <span>
  205. {isLoading ? (
  206. <LoadingSpinner />
  207. ) : (
  208. <span className="material-symbols-outlined" aria-label="Login">login</span>
  209. )}
  210. </span>
  211. <span className="flex-grow-1">{t('Sign in')}</span>
  212. </button>
  213. </div>
  214. </form>
  215. </>
  216. );
  217. }, [
  218. props, separateErrorsBasedOnErrorCode, loginErrors, generateDangerouslySetErrors, generateSafelySetErrors,
  219. isLdapSetupFailed, t, handleLoginWithLocalSubmit, isLoading,
  220. ]);
  221. const renderExternalAuthLoginForm = useCallback(() => {
  222. const { enabledExternalAuthType } = props;
  223. if (enabledExternalAuthType == null) {
  224. return <></>;
  225. }
  226. return (
  227. <>
  228. <div className="mt-2">
  229. { enabledExternalAuthType.map(authType => <ExternalAuthButton authType={authType} />) }
  230. </div>
  231. </>
  232. );
  233. }, [props]);
  234. const resetRegisterErrors = useCallback(() => {
  235. if (registerErrors.length === 0) return;
  236. setRegisterErrors([]);
  237. }, [registerErrors.length]);
  238. const handleRegisterFormSubmit = useCallback(async(e, requestPath) => {
  239. e.preventDefault();
  240. setEmailForRegistrationOrder('');
  241. setIsSuccessToRagistration(false);
  242. setIsLoading(true);
  243. const registerForm = {
  244. username: usernameForRegister,
  245. name: nameForRegister,
  246. email: emailForRegister,
  247. password: passwordForRegister,
  248. };
  249. try {
  250. const res = await apiv3Post(requestPath, { registerForm });
  251. setIsSuccessToRagistration(true);
  252. resetRegisterErrors();
  253. const { redirectTo } = res.data;
  254. if (redirectTo != null) {
  255. router.push(redirectTo);
  256. }
  257. if (isEmailAuthenticationEnabled) {
  258. setEmailForRegistrationOrder(emailForRegister);
  259. return;
  260. }
  261. }
  262. catch (err) {
  263. // Execute if error exists
  264. if (err != null || err.length > 0) {
  265. setRegisterErrors(err);
  266. }
  267. setIsLoading(false);
  268. }
  269. return;
  270. }, [usernameForRegister, nameForRegister, emailForRegister, passwordForRegister, resetRegisterErrors, router, isEmailAuthenticationEnabled]);
  271. const switchForm = useCallback(() => {
  272. setIsRegistering(!isRegistering);
  273. resetLoginErrors();
  274. resetRegisterErrors();
  275. }, [isRegistering, resetLoginErrors, resetRegisterErrors]);
  276. const renderRegisterForm = useCallback(() => {
  277. let registerAction = '/register';
  278. let submitText = t('Sign up');
  279. if (isEmailAuthenticationEnabled) {
  280. registerAction = '/user-activation/register';
  281. submitText = t('page_register.send_email');
  282. }
  283. return (
  284. <React.Fragment>
  285. {registrationMode === RegistrationMode.RESTRICTED && (
  286. <p className="alert alert-warning">
  287. {t('page_register.notice.restricted')}
  288. <br />
  289. {t('page_register.notice.restricted_defail')}
  290. </p>
  291. )}
  292. { (!isMailerSetup && isEmailAuthenticationEnabled) && (
  293. <p className="alert alert-danger">
  294. <span>{t('commons:alert.please_enable_mailer')}</span>
  295. </p>
  296. )}
  297. {
  298. registerErrors != null && registerErrors.length > 0 && (
  299. <p className="alert alert-danger">
  300. {registerErrors.map(err => (
  301. <span>
  302. {tWithOpt(err.message, err.args)}<br />
  303. </span>
  304. ))}
  305. </p>
  306. )
  307. }
  308. {
  309. (isEmailAuthenticationEnabled && isSuccessToRagistration) && (
  310. <p className="alert alert-success">
  311. <span>{t('message.successfully_send_email_auth', { email: emailForRegistrationOrder })}</span>
  312. </p>
  313. )
  314. }
  315. <form role="form" onSubmit={e => handleRegisterFormSubmit(e, registerAction)} id="register-form">
  316. {!isEmailAuthenticationEnabled && (
  317. <div>
  318. <div className="input-group" id="input-group-username">
  319. <span className="text-white opacity-75 d-flex align-items-center">
  320. <span className="material-symbols-outlined">person</span>
  321. </span>
  322. {/* username */}
  323. <input
  324. type="text"
  325. className="form-control rounded ms-2"
  326. onChange={(e) => { setUsernameForRegister(e.target.value) }}
  327. placeholder={t('User ID')}
  328. name="username"
  329. defaultValue={props.username}
  330. required
  331. />
  332. </div>
  333. <p className="form-text text-danger">
  334. <span id="help-block-username"></span>
  335. </p>
  336. <div className="input-group">
  337. <span className="text-white opacity-75 d-flex align-items-center">
  338. <span className="material-symbols-outlined">sell</span>
  339. </span>
  340. {/* name */}
  341. <input
  342. type="text"
  343. className="form-control rounded ms-2"
  344. onChange={(e) => { setNameForRegister(e.target.value) }}
  345. placeholder={t('Name')}
  346. name="name"
  347. defaultValue={props.name}
  348. required
  349. />
  350. </div>
  351. </div>
  352. )}
  353. <div className="input-group">
  354. <span className="text-white opacity-75 d-flex align-items-center">
  355. <span className="material-symbols-outlined">mail</span>
  356. </span>
  357. {/* email */}
  358. <input
  359. type="email"
  360. disabled={!isMailerSetup && isEmailAuthenticationEnabled}
  361. className="form-control rounded ms-2"
  362. onChange={(e) => { setEmailForRegister(e.target.value) }}
  363. placeholder={t('Email')}
  364. name="email"
  365. defaultValue={props.email}
  366. required
  367. />
  368. </div>
  369. {registrationWhitelist.length > 0 && (
  370. <>
  371. <p className="form-text">{t('page_register.form_help.email')}</p>
  372. <ul>
  373. {registrationWhitelist.map((elem) => {
  374. return (
  375. <li key={elem}>
  376. <code>{elem}</code>
  377. </li>
  378. );
  379. })}
  380. </ul>
  381. </>
  382. )}
  383. {!isEmailAuthenticationEnabled && (
  384. <div>
  385. <div className="input-group">
  386. <span className="text-white opacity-75 d-flex align-items-center">
  387. <span className="material-symbols-outlined">lock</span>
  388. </span>
  389. {/* Password */}
  390. <input
  391. type="password"
  392. className="form-control rounded ms-2"
  393. onChange={(e) => { setPasswordForRegister(e.target.value) }}
  394. placeholder={t('Password')}
  395. name="password"
  396. required
  397. minLength={minPasswordLength}
  398. />
  399. </div>
  400. </div>
  401. )}
  402. {/* Sign up button (submit) */}
  403. <div className="input-group justify-content-center my-4">
  404. <button
  405. type="submit"
  406. className="btn btn-secondary btn-register d-flex col-7"
  407. disabled={(!isMailerSetup && isEmailAuthenticationEnabled) || isLoading}
  408. >
  409. <span>
  410. {isLoading ? (
  411. <LoadingSpinner />
  412. ) : (
  413. <span className="material-symbols-outlined">person_add</span>
  414. )}
  415. </span>
  416. <span className="flex-grow-1">{submitText}</span>
  417. </button>
  418. </div>
  419. </form>
  420. <div className="row">
  421. <div className="text-end col-12 mb-5">
  422. <a
  423. href="#login"
  424. className="btn btn-sm btn-secondary btn-function col-10 col-sm-9 mx-auto py-1 d-flex"
  425. style={{ pointerEvents: isLoading ? 'none' : undefined }}
  426. onClick={switchForm}
  427. >
  428. <span className="material-symbols-outlined fs-5">login</span>
  429. <span className="flex-grow-1">{t('Sign in is here')}</span>
  430. </a>
  431. </div>
  432. </div>
  433. </React.Fragment>
  434. );
  435. }, [
  436. t, isEmailAuthenticationEnabled, registrationMode, isMailerSetup, registerErrors, isSuccessToRagistration, emailForRegistrationOrder,
  437. props.username, props.name, props.email, registrationWhitelist, minPasswordLength, isLoading, switchForm, tWithOpt, handleRegisterFormSubmit,
  438. ]);
  439. if (registrationMode === RegistrationMode.RESTRICTED && isSuccessToRagistration && !isEmailAuthenticationEnabled) {
  440. return <CompleteUserRegistration />;
  441. }
  442. return (
  443. <div className={moduleClass}>
  444. <div className="nologin-dialog mx-auto rounded-4 rounded-top-0" id="nologin-dialog" data-testid="login-form">
  445. <div className="row mx-0">
  446. <div className="col-12 px-md-4 pb-5">
  447. <ReactCardFlip isFlipped={isRegistering} flipDirection="horizontal" cardZIndex="3">
  448. <div className="front">
  449. {isLocalOrLdapStrategiesEnabled && renderLocalOrLdapLoginForm()}
  450. {isLocalOrLdapStrategiesEnabled && isSomeExternalAuthEnabled && (
  451. <div className="text-center text-line d-flex align-items-center mb-3">
  452. <p className="text-white mb-0">{t('or')}</p>
  453. </div>
  454. )}
  455. {isSomeExternalAuthEnabled && renderExternalAuthLoginForm()}
  456. {isLocalOrLdapStrategiesEnabled && isPasswordResetEnabled && (
  457. <div className="mt-4">
  458. <a
  459. href="/forgot-password"
  460. className="btn btn-sm btn-secondary btn-function col-10 col-sm-9 mx-auto py-1 d-flex"
  461. style={{ pointerEvents: isLoading ? 'none' : 'auto' }}
  462. >
  463. <span className="material-symbols-outlined">vpn_key</span>
  464. <span className="flex-grow-1">{t('forgot_password.forgot_password')}</span>
  465. </a>
  466. </div>
  467. )}
  468. {/* Sign up link */}
  469. {isRegistrationEnabled && (
  470. <div className="mt-2">
  471. <a
  472. href="#register"
  473. className="btn btn-sm btn-secondary btn-function col-10 col-sm-9 mx-auto py-1 d-flex"
  474. style={{ pointerEvents: isLoading ? 'none' : 'auto' }}
  475. onClick={switchForm}
  476. >
  477. <span className="material-symbols-outlined">person_add</span>
  478. <span className="flex-grow-1">{t('Sign up is here')}</span>
  479. </a>
  480. </div>
  481. )}
  482. </div>
  483. <div className="back">
  484. {/* Register form for /login#register */}
  485. {isRegistrationEnabled && renderRegisterForm()}
  486. </div>
  487. </ReactCardFlip>
  488. </div>
  489. </div>
  490. <a href="https://growi.org" className="link-growi-org ps-3">
  491. <span className="growi">GROWI</span><span className="org">.org</span>
  492. </a>
  493. </div>
  494. </div>
  495. );
  496. };