login.html 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377
  1. {% extends 'layout/layout.html' %}
  2. {% block html_base_css %}login-page nologin{% endblock %}
  3. {% block html_title %}{{ customizeService.generateCustomTitle(t('Sign in')) }}{% endblock %}
  4. {#
  5. # Remove default contents
  6. #}
  7. {% block html_head_loading_legacy %}
  8. {% endblock %}
  9. {% block html_head_loading_app %}
  10. {% endblock %}
  11. {% block layout_head_nav %}
  12. {% endblock %}
  13. {% block sidebar %}
  14. {% endblock %}
  15. {% block layout_main %}
  16. <div class="main container-fluid">
  17. <div class="row">
  18. <div class="login-header col-sm-offset-4 col-sm-4">
  19. <div class="logo">{% include 'widget/logo.html' %}</div>
  20. <h1>{{ appService.getAppTitle() }}</h1>
  21. <div class="login-form-errors">
  22. {% if isLdapSetupFailed() %}
  23. <div class="alert alert-warning small">
  24. <strong><i class="icon-fw icon-info"></i>LDAP is enabled but the configuration has something wrong.</strong>
  25. <br>
  26. (Please set the environment variables <code>DEBUG=crowi:service:PassportService</code> to get the logs)
  27. </div>
  28. {% endif %}
  29. {#
  30. # The case that there already exists a user whose username matches ID of the newly created LDAP user
  31. # https://github.com/weseek/growi/issues/193
  32. #}
  33. {% set failedProviderForDuplicatedUsernameException = req.flash('provider-DuplicatedUsernameException') %}
  34. {% if failedProviderForDuplicatedUsernameException != null %}
  35. <div class="alert alert-warning small">
  36. <p><strong><i class="icon-fw icon-ban"></i>DuplicatedUsernameException occured</strong></p>
  37. <p>
  38. Your {{ failedProviderForDuplicatedUsernameException }} authentication was succeess, but a new user could not be created.
  39. See the issue <a href="https://github.com/weseek/growi/issues/193">#193</a>.
  40. </p>
  41. </div>
  42. {% endif %}
  43. {% set success = req.flash('successMessage') %}
  44. {% if success.length %}
  45. <div class="alert alert-success">
  46. {{ success }}
  47. </div>
  48. {% endif %}
  49. {% set warn = req.flash('warningMessage') %}
  50. {% if warn.length %}
  51. {% for w in warn %}
  52. <div class="alert alert-warning">
  53. {{ w }}
  54. </div>
  55. {% endfor %}
  56. {% endif %}
  57. {% set error = req.flash('errorMessage') %}
  58. {% if error.length %}
  59. {% for e in error %}
  60. <div class="alert alert-danger">
  61. {{ e }}
  62. </div>
  63. {% endfor %}
  64. {% endif %}
  65. {% if req.form.errors.length > 0 %}
  66. <div class="alert alert-danger">
  67. <ul>
  68. {% for error in req.form.errors %}
  69. <li>{{ error }}</li>
  70. {% endfor %}
  71. </ul>
  72. </div>
  73. {% endif %}
  74. </div>
  75. <div id="register-form-errors">
  76. {% set message = req.flash('registerWarningMessage') %}
  77. {% if message.length %}
  78. <div class="alert alert-danger">
  79. {% for msg in message %}
  80. {{ msg }}<br>
  81. {% endfor %}
  82. </div>
  83. {% endif %}
  84. </div>
  85. </div>
  86. {% set isLocalOrLdapStrategiesEnabled = passportService.isLocalStrategySetup || passportService.isLdapStrategySetup %}
  87. {% set isExternalAuthCollapsible = isLocalOrLdapStrategiesEnabled %}
  88. {% set isRegistrationEnabled = passportService.isLocalStrategySetup && getConfig('crowi', 'security:registrationMode') != 'Closed' %}
  89. <div class="login-dialog p-b-10 col-sm-offset-4 col-sm-4 flipper {% if req.query.register or req.body.registerForm or isRegistering %}to-flip{% endif %}" id="login-dialog">
  90. <div class="front">
  91. {% if isLocalOrLdapStrategiesEnabled %}
  92. <form role="form" action="/login" method="post">
  93. <div class="input-group">
  94. <span class="input-group-addon"><i class="icon-user"></i></span>
  95. <input type="text" class="form-control" placeholder="Username or E-mail" name="loginForm[username]">
  96. {% if passportService.isLdapStrategySetup %}
  97. <span class="input-group-addon">
  98. <small class="text-success">
  99. <i class="icon-fw icon-check"></i> LDAP
  100. </small>
  101. </span>
  102. {% endif %}
  103. </div>
  104. <div class="input-group">
  105. <span class="input-group-addon"><i class="icon-lock"></i></span>
  106. <input type="password" class="form-control" placeholder="Password" name="loginForm[password]">
  107. </div>
  108. <div class="input-group m-t-30 m-b-20 d-flex justify-content-center">
  109. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  110. <button type="submit" class="fcbtn btn btn-danger btn-1b btn-login">
  111. <span class="btn-label"><i class="icon-login"></i></span>
  112. {{ t('Sign in') }}
  113. </button>
  114. </div>
  115. </form>
  116. {% endif %}
  117. {% if (
  118. getConfig('crowi', 'security:passport-google:isEnabled') ||
  119. getConfig('crowi', 'security:passport-github:isEnabled') ||
  120. getConfig('crowi', 'security:passport-facebook:isEnabled') ||
  121. getConfig('crowi', 'security:passport-twitter:isEnabled')||
  122. getConfig('crowi', 'security:passport-oidc:isEnabled') ||
  123. getConfig('crowi', 'security:passport-saml:isEnabled') ||
  124. getConfig('crowi', 'security:passport-basic:isEnabled')
  125. ) %}
  126. <hr class="mb-1">
  127. <div id="external-auth" class="external-auth {% if isExternalAuthCollapsible %}collapse collapse-external-auth collapse-anchor{% endif %}">
  128. <div class="spacer"></div>
  129. <div class="d-flex flex-row justify-content-between flex-wrap">
  130. {% if getConfig('crowi', 'security:passport-google:isEnabled') %}
  131. <form role="form" action="/passport/google" class="d-inline-flex flex-column">
  132. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-flex" id="google">
  133. <span class="btn-label"><i class="fa fa-google"></i></span>
  134. <span class="btn-label-text">{{ t('Sign in') }}</span>
  135. </button>
  136. <div class="small text-right">by Google Account</div>
  137. </form>
  138. {% endif %}
  139. {% if getConfig('crowi', 'security:passport-github:isEnabled') %}
  140. <form role="form" action="/passport/github" class="d-inline-flex flex-column">
  141. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  142. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="github">
  143. <span class="btn-label"><i class="fa fa-github"></i></span>
  144. <span class="btn-label-text">{{ t('Sign in') }}</span>
  145. </button>
  146. <div class="small text-right">by GitHub Account</div>
  147. </form>
  148. {% endif %}
  149. {% if getConfig('crowi', 'security:passport-facebook:isEnabled') %}
  150. <form role="form" action="/passport/facebook" class="d-inline-flex flex-column">
  151. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  152. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="facebook">
  153. <span class="btn-label"><i class="fa fa-facebook"></i></span>
  154. <span class="btn-label-text">{{ t('Sign in') }}</span>
  155. </button>
  156. <div class="small text-right">by Facebook Account</div>
  157. </form>
  158. {% endif %}
  159. {% if getConfig('crowi', 'security:passport-twitter:isEnabled') %}
  160. <form role="form" action="/passport/twitter" class="d-inline-flex flex-column">
  161. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  162. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="twitter">
  163. <span class="btn-label"><i class="fa fa-twitter"></i></span>
  164. <span class="btn-label-text">{{ t('Sign in') }}</span>
  165. </button>
  166. <div class="small text-right">by Twitter Account</div>
  167. </form>
  168. {% endif %}
  169. {% if getConfig('crowi', 'security:passport-oidc:isEnabled') %}
  170. <form role="form" action="/passport/oidc" class="d-inline-flex flex-column">
  171. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  172. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="oidc">
  173. <span class="btn-label"><i class="fa fa-openid"></i></span>
  174. <span class="btn-label-text">{{ t('Sign in') }}</span>
  175. </button>
  176. <div class="small text-right">{{ getConfig('crowi', 'security:passport-oidc:providerName') || "OpenID Connect" }}</div>
  177. </form>
  178. {% endif %}
  179. {% if getConfig('crowi', 'security:passport-saml:isEnabled') %}
  180. <form role="form" action="/passport/saml" class="d-inline-flex flex-column">
  181. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  182. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="saml">
  183. <span class="btn-label"><i class="fa fa-key"></i></span>
  184. <span class="btn-label-text">{{ t('Sign in') }}</span>
  185. </button>
  186. <div class="small text-right">with SAML</div>
  187. </form>
  188. {% endif %}
  189. {% if getConfig('crowi', 'security:passport-basic:isEnabled') %}
  190. <form role="form" action="/passport/basic" class="d-inline-flex flex-column">
  191. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  192. <button type="submit" class="fcbtn btn btn-1b btn-login-oauth d-inline-flex" id="basic">
  193. <span class="btn-label"><i class="fa fa-lock"></i></span>
  194. <span class="btn-label-text">{{ t('Sign in') }}</span>
  195. </button>
  196. <div class="small text-right">with Basic Auth</div>
  197. </form>
  198. {% endif %}
  199. </div>{# ./d-flex flex-row flex-wrap #}
  200. <div class="spacer"></div>
  201. </div>
  202. <hr class="mt-2 mb-0">
  203. <div class="text-center">
  204. <button class="collapse-anchor btn btn-xs btn-collapse-external-auth mb-3"
  205. data-toggle="{% if isExternalAuthCollapsible %}collapse{% endif %}" data-target="#external-auth" aria-expanded="false" aria-controls="external-auth">
  206. External Auth
  207. </button>
  208. </div>
  209. {% else %}
  210. <hr>
  211. {% endif %}
  212. {% if isExternalAuthCollapsible %}
  213. <script>
  214. const isMobile = /iphone|ipad|android/.test(window.navigator.userAgent.toLowerCase());
  215. if (!isMobile) {
  216. $(".collapse-anchor").hover(
  217. function() {
  218. $('.collapse-external-auth').collapse('show');
  219. },
  220. function() {
  221. $('.collapse-external-auth').collapse('hide');
  222. }
  223. );
  224. }
  225. </script>
  226. {% endif %}
  227. <div class="row">
  228. <div class="col-xs-12 text-right">
  229. {% if isRegistrationEnabled %}
  230. <a href="#register" id="register" class="link-switch">
  231. <i class="ti-check-box"></i> {{ t('Sign up is here') }}
  232. </a>
  233. {% else %}
  234. &nbsp;
  235. {% endif %}
  236. </div>
  237. </div>
  238. </div>
  239. {% if isRegistrationEnabled %}
  240. <div class="back">
  241. {% if getConfig('crowi', 'security:registrationMode') == 'Restricted' %}
  242. <p class="alert alert-warning">
  243. {{ t('page_register.notice.restricted') }}<br>
  244. {{ t('page_register.notice.restricted_defail') }}
  245. </p>
  246. {% endif %}
  247. <form role="form" method="post" action="/register" id="register-form">
  248. <div class="input-group" id="input-group-username">
  249. <span class="input-group-addon"><i class="icon-user"></i></span>
  250. <input type="text" class="form-control" placeholder="{{ t('User ID') }}" name="registerForm[username]" value="{{ req.body.registerForm.username }}" required>
  251. </div>
  252. <p class="help-block">
  253. <span id="help-block-username"></span>
  254. </p>
  255. <div class="input-group">
  256. <span class="input-group-addon"><i class="icon-tag"></i></span>
  257. <input type="text" class="form-control" placeholder="{{ t('Name') }}" name="registerForm[name]" value="{{ req.body.registerForm.name }}" required>
  258. </div>
  259. <div class="input-group">
  260. <span class="input-group-addon"><i class="icon-envelope"></i></span>
  261. <input type="email" class="form-control" placeholder="{{ t('Email') }}" name="registerForm[email]" value="{{ req.body.registerForm.email }}" required>
  262. </div>
  263. {% if getConfig('crowi', 'security:registrationWhiteList') && getConfig('crowi', 'security:registrationWhiteList').length %}
  264. <p class="help-block">
  265. {{ t('page_register.form_help.email') }}
  266. </p>
  267. <ul>
  268. {% for em in getConfig('crowi', 'security:registrationWhiteList') %}
  269. <li><code>{{ em }}</code></li>
  270. {% endfor %}
  271. </ul>
  272. {% endif %}
  273. <div class="input-group">
  274. <span class="input-group-addon"><i class="icon-lock"></i></span>
  275. <input type="password" class="form-control" placeholder="{{ t('Password') }}" name="registerForm[password]" required>
  276. </div>
  277. <input type="hidden" name="_csrf" value="{{ csrf() }}">
  278. <div class="input-group m-t-30 m-b-20 d-flex justify-content-center">
  279. <button type="submit" class="fcbtn btn btn-success btn-1b btn-register">
  280. <span class="btn-label"><i class="icon-user-follow"></i></span>
  281. <span class="btn-label-text">{{ t('Sign up') }}</span>
  282. </button>
  283. </div>
  284. </form>
  285. <hr>
  286. <div class="row">
  287. <div class="col-xs-12 text-right">
  288. <a href="#login" id="login" class="link-switch">
  289. <i class="icon-fw icon-login"></i>{{ t('Sign in is here') }}
  290. </a>
  291. </div>
  292. </div>
  293. </div>
  294. {% endif %} {# if isRegistrationEnabled id false #}
  295. <a href="https://growi.org" class="link-growi-org">
  296. <span class="growi">GROWI</span>.<span class="org">ORG
  297. </a>
  298. </div>
  299. </div>
  300. </div>
  301. {% endblock %}
  302. {% block body_end %}
  303. <script>
  304. // login
  305. $('#register').on('click', function() {
  306. $('#login-dialog').addClass('to-flip');
  307. return false;
  308. });
  309. $('#login').on('click', function() {
  310. $('#login-dialog').removeClass('to-flip');
  311. return false;
  312. });
  313. $('#register-form input[name="registerForm[username]"]').change(function(e) {
  314. var username = $(this).val();
  315. $('#login-dialog').removeClass('has-error');
  316. $('#input-group-username').removeClass('has-error');
  317. $('#help-block-username').html("");
  318. $.getJSON('/_api/check_username', {username: username}, function(json) {
  319. if (!json.valid) {
  320. $('#help-block-username').html(
  321. '<i class="icon-fw icon-ban"></i> This User ID is not available.'
  322. );
  323. $('#login-dialog').addClass('has-error');
  324. $('#input-group-username').addClass('has-error');
  325. }
  326. });
  327. });
  328. </script>
  329. {% endblock %}