index.php 2.4 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273
  1. <?php
  2. session_start();
  3. define('NO_AUTH_REQUIRED',true);
  4. $TAB = 'LOGIN';
  5. // Logout
  6. if (isset($_GET['logout'])) {
  7. session_destroy();
  8. }
  9. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  10. // Login as someone else
  11. if (isset($_SESSION['user'])) {
  12. if ($_SESSION['user'] == 'admin' && !empty($_GET['loginas'])) {
  13. if ($_GET['loginas'] == 'admin') {
  14. unset($_SESSION['look']);
  15. } else {
  16. $_SESSION['look'] = $_GET['loginas'];
  17. $_SESSION['look_alert'] = $_GET['loginas'];
  18. }
  19. }
  20. header("Location: /");
  21. exit;
  22. }
  23. // Check system configuration
  24. exec (VESTA_CMD . "v-list-sys-config json", $output, $return_var);
  25. $data = json_decode(implode('', $output), true);
  26. $sys_arr = $data['config'];
  27. foreach ($sys_arr as $key => $value) {
  28. $_SESSION[$key] = $value;
  29. }
  30. // Set default language
  31. if (empty($_SESSION['language'])) $_SESSION['language']=$_SESSION['LANGUAGE'];
  32. if (empty($_SESSION['language'])) $_SESSION['language']='en';
  33. // Auth
  34. if (isset($_POST['user']) && isset($_POST['password'])) {
  35. $v_user = escapeshellarg($_POST['user']);
  36. $v_password = escapeshellarg($_POST['password']);
  37. exec(VESTA_CMD ."v-check-user-password ".$v_user." ".$v_password." '".$_SERVER["REMOTE_ADDR"]."'", $output, $return_var);
  38. if ( $return_var > 0 ) {
  39. $ERROR = "<a class=\"error\">".__('Invalid username or password')."</a>";
  40. require_once($_SERVER['DOCUMENT_ROOT'].'/inc/i18n/'.$_SESSION['language'].'.php');
  41. require_once('../templates/header.html');
  42. require_once('../templates/login.html');
  43. } else {
  44. unset($output);
  45. exec (VESTA_CMD . "v-list-user ".$v_user." json", $output, $return_var);
  46. $data = json_decode(implode('', $output), true);
  47. $_SESSION['language'] = $data[$_POST['user']]['LANGUAGE'];
  48. if (empty($_SESSION['language'])) $_SESSION['language'] = 'en';
  49. $_SESSION['user'] = $_POST['user'];
  50. if ($_POST['user'] == 'root') $_SESSION['user'] = 'admin';
  51. if (!empty($_SESSION['request_uri'])) {
  52. header("Location: ".$_SESSION['request_uri']);
  53. unset($_SESSION['request_uri']);
  54. exit;
  55. } else {
  56. header("Location: /");
  57. exit;
  58. }
  59. }
  60. } else {
  61. require_once($_SERVER['DOCUMENT_ROOT'].'/inc/i18n/'.$_SESSION['language'].'.php');
  62. require_once('../templates/header.html');
  63. require_once('../templates/login.html');
  64. }
  65. ?>