LdapSecuritySetting.jsx 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351
  1. import React from 'react';
  2. import PropTypes from 'prop-types';
  3. import { withTranslation } from 'react-i18next';
  4. import { createSubscribedElement } from '../../UnstatedUtils';
  5. import AppContainer from '../../../services/AppContainer';
  6. import AdminGeneralSecurityContainer from '../../../services/AdminGeneralSecurityContainer';
  7. import AdminLdapSecurityContainer from '../../../services/AdminLdapSecurityContainer';
  8. class LdapSecuritySetting extends React.Component {
  9. render() {
  10. const { t, adminGeneralSecurityContainer, adminLdapSecurityContainer } = this.props;
  11. const { isLdapEnabled } = adminGeneralSecurityContainer.state;
  12. return (
  13. <React.Fragment>
  14. <h2 className="alert-anchor border-bottom">
  15. LDAP { t('security_setting.configuration') }
  16. </h2>
  17. <div className="row mb-5">
  18. <strong className="col-xs-3 text-right">Use LDAP</strong>
  19. <div className="col-xs-6 text-left">
  20. <div className="checkbox checkbox-success">
  21. <input
  22. id="isLdapEnabled"
  23. type="checkbox"
  24. checked={isLdapEnabled}
  25. onChange={() => { adminGeneralSecurityContainer.switchIsLdapEnabled() }}
  26. />
  27. <label htmlFor="isLdapEnabled">
  28. { t('security_setting.ldap.enable_ldap') }
  29. </label>
  30. </div>
  31. </div>
  32. </div>
  33. {isLdapEnabled && (
  34. <React.Fragment>
  35. <div className="row mb-5">
  36. <label htmlFor="serverUrl" className="col-xs-3 control-label text-right">Server URL</label>
  37. <div className="col-xs-6">
  38. <input
  39. className="form-control"
  40. type="text"
  41. name="serverUrl"
  42. value={adminLdapSecurityContainer.state.serverUrl}
  43. onChange={e => adminLdapSecurityContainer.changeServerUrl(e.target.value)}
  44. />
  45. <small>
  46. <p
  47. className="help-block"
  48. // eslint-disable-next-line react/no-danger
  49. dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.server_url_detail') }}
  50. />
  51. { t('security_setting.example') }: <code>ldaps://ldap.company.com/ou=people,dc=company,dc=com</code>
  52. </small>
  53. </div>
  54. </div>
  55. <div className="row mb-5">
  56. <strong className="col-xs-3 text-right">{ t('security_setting.ldap.bind_mode') }</strong>
  57. <div className="col-xs-6 text-left">
  58. <div className="my-0 btn-group">
  59. <div className="dropdown">
  60. <button className="btn btn-default dropdown-toggle w-100" type="button" data-toggle="dropdown" aria-haspopup="true" aria-expanded="false">
  61. <span className="pull-left">{t(`security_setting.ldap.bind_${adminLdapSecurityContainer.state.bindMode}`)}</span>
  62. <span className="bs-caret pull-right">
  63. <span className="caret" />
  64. </span>
  65. </button>
  66. {/* TODO adjust dropdown after BS4 */}
  67. <ul className="dropdown-menu" role="menu">
  68. <li key="manager" role="presentation" type="button" onClick={() => { adminLdapSecurityContainer.changeLdapBindMode('manager') }}>
  69. <a role="menuitem">{ t('security_setting.ldap.bind_manager') }</a>
  70. </li>
  71. <li key="user" role="presentation" type="button" onClick={() => { adminLdapSecurityContainer.changeLdapBindMode('user') }}>
  72. <a role="menuitem">{ t('security_setting.ldap.bind_user') }</a>
  73. </li>
  74. </ul>
  75. </div>
  76. </div>
  77. </div>
  78. </div>
  79. <div className="row mb-5">
  80. <strong className="col-xs-3 text-right">Bind DN</strong>
  81. <div className="col-xs-6">
  82. <input
  83. className="form-control"
  84. type="text"
  85. name="bindDN"
  86. value={adminLdapSecurityContainer.state.bindDN}
  87. onChange={e => adminLdapSecurityContainer.changeBindDN(e.target.value)}
  88. />
  89. {(adminLdapSecurityContainer.state.bindMode === 'manager') ? (
  90. <p className="help-block passport-ldap-managerbind">
  91. <small>
  92. { t('security_setting.ldap.bind_DN_manager_detail') }<br />
  93. { t('security_setting.example') }1: <code>uid=admin,dc=domain,dc=com</code><br />
  94. { t('security_setting.example') }2: <code>admin@domain.com</code>
  95. </small>
  96. </p>
  97. ) : (
  98. <p className="help-block passport-ldap-userbind">
  99. <small>
  100. { t('security_setting.ldap.bind_DN_user_detail1')}<br />
  101. {/* eslint-disable-next-line react/no-danger */}
  102. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.bind_DN_user_detail2') }} /><br />
  103. { t('security_setting.example') }1: <code>uid={'{{ username }}'},dc=domain,dc=com</code><br />
  104. { t('security_setting.example') }2: <code>{'{{ username }}'}@domain.com</code>
  105. </small>
  106. </p>
  107. )}
  108. </div>
  109. </div>
  110. <div className="row mb-5">
  111. <label htmlFor="bindDNPassword" className="col-xs-3 text-right">{ t('security_setting.ldap.bind_DN_password') }</label>
  112. <div className="col-xs-6">
  113. <input
  114. className="form-control passport-ldap-managerbind"
  115. type="password"
  116. name="bindDNPassword"
  117. value={adminLdapSecurityContainer.state.bindDNPassword}
  118. onChange={e => adminLdapSecurityContainer.changeBindDNPassword(e.target.value)}
  119. />
  120. {(adminLdapSecurityContainer.state.bindMode === 'manager') ? (
  121. <p className="help-block passport-ldap-managerbind">
  122. <small>
  123. { t('security_setting.ldap.bind_DN_password_manager_detail') }
  124. </small>
  125. </p>
  126. ) : (
  127. <p className="help-block passport-ldap-userbind">
  128. <small>
  129. { t('security_setting.ldap.bind_DN_password_user_detail') }
  130. </small>
  131. </p>
  132. )}
  133. </div>
  134. </div>
  135. <div className="row mb-5">
  136. <strong className="col-xs-3 text-right">{ t('security_setting.ldap.search_filter') }</strong>
  137. <div className="col-xs-6">
  138. <input
  139. className="form-control"
  140. type="text"
  141. name="searchFilter"
  142. value={adminLdapSecurityContainer.state.searchFilter}
  143. onChange={e => adminLdapSecurityContainer.changeSearchFilter(e.target.value)}
  144. />
  145. <p className="help-block">
  146. <small>
  147. { t('security_setting.ldap.search_filter_detail1') }<br />
  148. {/* eslint-disable-next-line react/no-danger */}
  149. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.search_filter_detail2') }} /><br />
  150. {/* eslint-disable-next-line react/no-danger */}
  151. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.search_filter_detail3') }} />
  152. </small>
  153. </p>
  154. <p className="help-block">
  155. <small>
  156. { t('security_setting.example') }1 - { t('security_setting.ldap.search_filter_example1') }:
  157. <code>(|(uid={'{{ username }}'})(mail={'{{ username }}'}))</code><br />
  158. { t('security_setting.example') }2 - { t('security_setting.ldap.search_filter_example2') }:
  159. <code>(sAMAccountName={'{{ username }}'})</code>
  160. </small>
  161. </p>
  162. </div>
  163. </div>
  164. <h3 className="alert-anchor border-bottom">
  165. Attribute Mapping ({ t('security_setting.optional') })
  166. </h3>
  167. <div className="row mb-5">
  168. <strong htmlFor="attrMapUsername" className="col-xs-3 text-right">{t('username')}</strong>
  169. <div className="col-xs-6">
  170. <input
  171. className="form-control"
  172. type="text"
  173. placeholder="Default: uid"
  174. name="attrMapUsername"
  175. value={adminLdapSecurityContainer.state.attrMapUsername}
  176. onChange={e => adminLdapSecurityContainer.changeAttrMapUsername(e.target.value)}
  177. />
  178. <p className="help-block">
  179. {/* eslint-disable-next-line react/no-danger */}
  180. <small dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.username_detail') }} />
  181. </p>
  182. </div>
  183. </div>
  184. <div className="row mb-5">
  185. <div className="col-xs-offset-3 col-xs-6 text-left">
  186. <div className="checkbox checkbox-success">
  187. <input
  188. id="cbSameUsernameTreatedAsIdenticalUser"
  189. type="checkbox"
  190. checked={adminLdapSecurityContainer.state.cbSameUsernameTreatedAsIdenticalUser}
  191. onChange={() => { adminLdapSecurityContainer.switchCbSameUsernameTreatedAsIdenticalUser() }}
  192. />
  193. <label
  194. htmlFor="cbSameUsernameTreatedAsIdenticalUser"
  195. // eslint-disable-next-line react/no-danger
  196. dangerouslySetInnerHTML={{ __html: t('security_setting.Treat username matching as identical') }}
  197. />
  198. </div>
  199. <p className="help-block">
  200. {/* eslint-disable-next-line react/no-danger */}
  201. <small dangerouslySetInnerHTML={{ __html: t('security_setting.Treat username matching as identical_warn') }} />
  202. </p>
  203. </div>
  204. </div>
  205. <div className="row mb-5">
  206. <strong htmlFor="attrMapMail" className="col-xs-3 text-right">{ t('Email') }</strong>
  207. <div className="col-xs-6">
  208. <input
  209. className="form-control"
  210. type="text"
  211. placeholder="Default: mail"
  212. name="attrMapMail"
  213. value={adminLdapSecurityContainer.state.attrMapMail}
  214. onChange={e => adminLdapSecurityContainer.changeAttrMapMail(e.target.value)}
  215. />
  216. <p className="help-block">
  217. <small>
  218. { t('security_setting.ldap.mail_detail') }
  219. </small>
  220. </p>
  221. </div>
  222. </div>
  223. <div className="row mb-5">
  224. <strong htmlFor="attrMapName" className="col-xs-3 text-right">{ t('Name') }</strong>
  225. <div className="col-xs-6">
  226. <input
  227. className="form-control"
  228. type="text"
  229. name="attrMapName"
  230. value={adminLdapSecurityContainer.state.attrMapName}
  231. onChange={e => adminLdapSecurityContainer.changeAttrMapName(e.target.value)}
  232. />
  233. <p className="help-block">
  234. <small>
  235. { t('security_setting.ldap.name_detail') }
  236. </small>
  237. </p>
  238. </div>
  239. </div>
  240. <h3 className="alert-anchor border-bottom">
  241. { t('security_setting.ldap.group_search_filter') } ({ t('security_setting.optional') })
  242. </h3>
  243. <div className="row mb-5">
  244. <strong htmlFor="groupSearchBase" className="col-xs-3 text-right">{ t('security_setting.ldap.group_search_base_DN') }</strong>
  245. <div className="col-xs-6">
  246. <input
  247. className="form-control"
  248. type="text"
  249. name="groupSearchBase"
  250. value={adminLdapSecurityContainer.state.groupSearchBase}
  251. onChange={e => adminLdapSecurityContainer.changeGroupSearchBase(e.target.value)}
  252. />
  253. <p className="help-block">
  254. <small>
  255. {/* eslint-disable-next-line react/no-danger */}
  256. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_base_DN_detail') }} /><br />
  257. { t('security_setting.example') }: <code>ou=groups,dc=domain,dc=com</code>
  258. </small>
  259. </p>
  260. </div>
  261. </div>
  262. <div className="row mb-5">
  263. <strong htmlFor="groupSearchFilter" className="col-xs-3 text-right">{ t('security_setting.ldap.group_search_filter') }</strong>
  264. <div className="col-xs-6">
  265. <input
  266. className="form-control"
  267. type="text"
  268. name="groupSearchFilter"
  269. value={adminLdapSecurityContainer.state.groupSearchFilter}
  270. onChange={e => adminLdapSecurityContainer.changeGroupSearchFilter(e.target.value)}
  271. />
  272. <p className="help-block">
  273. <small>
  274. {/* eslint-disable react/no-danger */}
  275. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_filter_detail1') }} /><br />
  276. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_filter_detail2') }} /><br />
  277. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_filter_detail3') }} />
  278. {/* eslint-enable react/no-danger */}
  279. </small>
  280. </p>
  281. <p className="help-block">
  282. <small>
  283. { t('security_setting.example') }:
  284. {/* eslint-disable-next-line react/no-danger */}
  285. <span dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_filter_detail4') }} />
  286. </small>
  287. </p>
  288. </div>
  289. </div>
  290. <div className="row mb-5">
  291. <label htmlFor="groupDnProperty" className="col-xs-3 text-right">{ t('security_setting.ldap.group_search_user_DN_property') }</label>
  292. <div className="col-xs-6">
  293. <input
  294. className="form-control"
  295. type="text"
  296. placeholder="Default: uid"
  297. name="groupDnProperty"
  298. value={adminLdapSecurityContainer.state.groupDnProperty}
  299. onChange={e => adminLdapSecurityContainer.changeGroupDnProperty(e.target.value)}
  300. />
  301. <p className="help-block">
  302. {/* eslint-disable-next-line react/no-danger */}
  303. <small dangerouslySetInnerHTML={{ __html: t('security_setting.ldap.group_search_user_DN_property_detail') }} />
  304. </p>
  305. </div>
  306. </div>
  307. </React.Fragment>
  308. )}
  309. </React.Fragment>
  310. );
  311. }
  312. }
  313. LdapSecuritySetting.propTypes = {
  314. t: PropTypes.func.isRequired, // i18next
  315. appContainer: PropTypes.instanceOf(AppContainer).isRequired,
  316. adminGeneralSecurityContainer: PropTypes.instanceOf(AdminGeneralSecurityContainer).isRequired,
  317. adminLdapSecurityContainer: PropTypes.instanceOf(AdminLdapSecurityContainer).isRequired,
  318. };
  319. const LdapSecuritySettingWrapper = (props) => {
  320. return createSubscribedElement(LdapSecuritySetting, props, [AppContainer, AdminGeneralSecurityContainer, AdminLdapSecurityContainer]);
  321. };
  322. export default withTranslation()(LdapSecuritySettingWrapper);