NCLoginWeb.swift 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343
  1. //
  2. // NCLoginWeb.swift
  3. // Nextcloud
  4. //
  5. // Created by Marino Faggiana on 21/08/2019.
  6. // Copyright © 2019 Marino Faggiana. All rights reserved.
  7. //
  8. // Author Marino Faggiana <marino.faggiana@nextcloud.com>
  9. //
  10. // This program is free software: you can redistribute it and/or modify
  11. // it under the terms of the GNU General Public License as published by
  12. // the Free Software Foundation, either version 3 of the License, or
  13. // (at your option) any later version.
  14. //
  15. // This program is distributed in the hope that it will be useful,
  16. // but WITHOUT ANY WARRANTY; without even the implied warranty of
  17. // MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  18. // GNU General Public License for more details.
  19. //
  20. // You should have received a copy of the GNU General Public License
  21. // along with this program. If not, see <http://www.gnu.org/licenses/>.
  22. //
  23. import UIKit
  24. import WebKit
  25. import NextcloudKit
  26. import FloatingPanel
  27. class NCLoginWeb: UIViewController {
  28. var activityIndicator: UIActivityIndicatorView!
  29. var webView: WKWebView?
  30. let appDelegate = UIApplication.shared.delegate as! AppDelegate
  31. var titleView: String = ""
  32. var urlBase = ""
  33. var configServerUrl: String?
  34. var configUsername: String?
  35. var configPassword: String?
  36. var loginFlowV2Available = false
  37. var loginFlowV2Token = ""
  38. var loginFlowV2Endpoint = ""
  39. var loginFlowV2Login = ""
  40. // MARK: - View Life Cycle
  41. override func viewDidLoad() {
  42. super.viewDidLoad()
  43. let accountCount = NCManageDatabase.shared.getAccounts()?.count ?? 0
  44. if NCBrandOptions.shared.use_login_web_personalized && accountCount > 0 {
  45. navigationItem.leftBarButtonItem = UIBarButtonItem(barButtonSystemItem: .stop, target: self, action: #selector(self.closeView(sender:)))
  46. }
  47. if accountCount > 0 {
  48. navigationItem.rightBarButtonItem = UIBarButtonItem(image: UIImage(named: "users")!.image(color: .label, size: 35), style: .plain, target: self, action: #selector(self.changeUser(sender:)))
  49. }
  50. let config = WKWebViewConfiguration()
  51. config.websiteDataStore = WKWebsiteDataStore.nonPersistent()
  52. webView = WKWebView(frame: CGRect.zero, configuration: config)
  53. webView!.navigationDelegate = self
  54. view.addSubview(webView!)
  55. webView!.translatesAutoresizingMaskIntoConstraints = false
  56. webView!.leadingAnchor.constraint(equalTo: view.leadingAnchor, constant: 0).isActive = true
  57. webView!.rightAnchor.constraint(equalTo: view.rightAnchor, constant: 0).isActive = true
  58. webView!.topAnchor.constraint(equalTo: view.topAnchor, constant: 0).isActive = true
  59. webView!.bottomAnchor.constraint(equalTo: view.bottomAnchor, constant: 0).isActive = true
  60. activityIndicator = UIActivityIndicatorView(style: .medium)
  61. activityIndicator.center = self.view.center
  62. activityIndicator.startAnimating()
  63. self.view.addSubview(activityIndicator)
  64. // load AppConfig
  65. if let serverConfig = UserDefaults.standard.dictionary(forKey: "com.apple.configuration.managed") {
  66. if let serverUrl = serverConfig[NCGlobal.shared.configuration_serverUrl] as? String {
  67. self.configServerUrl = serverUrl
  68. }
  69. if let username = serverConfig[NCGlobal.shared.configuration_username] as? String, !username.isEmpty, username.lowercased() != "username" {
  70. self.configUsername = username
  71. }
  72. if let password = serverConfig[NCGlobal.shared.configuration_password] as? String, !password.isEmpty, password.lowercased() != "password" {
  73. self.configPassword = password
  74. }
  75. }
  76. if let serverUrl = configServerUrl {
  77. if let username = self.configUsername, let password = configPassword {
  78. self.getAppPassword(serverUrl: serverUrl, username: username, password: password)
  79. return
  80. } else {
  81. urlBase = serverUrl
  82. }
  83. }
  84. // ADD end point for Web Flow
  85. if urlBase != NCBrandOptions.shared.linkloginPreferredProviders {
  86. if loginFlowV2Available {
  87. urlBase = loginFlowV2Login
  88. } else {
  89. urlBase += "/index.php/login/flow"
  90. }
  91. }
  92. if let url = URL(string: urlBase) {
  93. loadWebPage(webView: webView!, url: url)
  94. } else {
  95. let error = NKError(errorCode: NCGlobal.shared.errorInternalError, errorDescription: "_login_url_error_")
  96. NCContentPresenter.shared.showError(error: error, priority: .max)
  97. }
  98. // TITLE
  99. titleView = urlBase
  100. if let host = URL(string: urlBase)?.host {
  101. if let account = NCManageDatabase.shared.getActiveAccount(), CCUtility.getPassword(account.account).isEmpty {
  102. titleView = NSLocalizedString("_user_", comment: "") + " " + account.userId + " " + NSLocalizedString("_in_", comment: "") + " " + host
  103. }
  104. }
  105. self.title = titleView
  106. }
  107. override func viewDidAppear(_ animated: Bool) {
  108. super.viewDidAppear(animated)
  109. // Stop timer error network
  110. appDelegate.timerErrorNetworking?.invalidate()
  111. // ITMS-90076: Potential Loss of Keychain Access
  112. if appDelegate.errorITMS90076, !CCUtility.getPresentErrorITMS90076() {
  113. let message = "\n" + NSLocalizedString("_ITMS-90076_", comment: "")
  114. let alertController = UIAlertController(title: titleView, message: message, preferredStyle: .alert)
  115. alertController.addAction(UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default, handler: { _ in }))
  116. present(alertController, animated: true, completion: {
  117. CCUtility.setPresentErrorITMS90076(true)
  118. })
  119. } else if let account = NCManageDatabase.shared.getActiveAccount(), CCUtility.getPassword(account.account).isEmpty {
  120. let message = "\n" + NSLocalizedString("_password_not_present_", comment: "")
  121. let alertController = UIAlertController(title: titleView, message: message, preferredStyle: .alert)
  122. alertController.addAction(UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default, handler: { _ in }))
  123. present(alertController, animated: true)
  124. }
  125. }
  126. override func viewDidDisappear(_ animated: Bool) {
  127. super.viewDidDisappear(animated)
  128. // Start timer error network
  129. appDelegate.startTimerErrorNetworking()
  130. }
  131. func loadWebPage(webView: WKWebView, url: URL) {
  132. let language = NSLocale.preferredLanguages[0] as String
  133. var request = URLRequest(url: url)
  134. if let deviceName = "\(UIDevice.current.name) (\(NCBrandOptions.shared.brand) iOS)".cString(using: .utf8),
  135. let deviceUserAgent = String(cString: deviceName, encoding: .ascii) {
  136. webView.customUserAgent = deviceUserAgent
  137. } else {
  138. webView.customUserAgent = CCUtility.getUserAgent()
  139. }
  140. request.addValue("true", forHTTPHeaderField: "OCS-APIRequest")
  141. request.addValue(language, forHTTPHeaderField: "Accept-Language")
  142. webView.load(request)
  143. }
  144. func getAppPassword(serverUrl: String, username: String, password: String) {
  145. NextcloudKit.shared.getAppPassword(serverUrl: serverUrl, username: username, password: password) { token, data, error in
  146. self.activityIndicator.stopAnimating()
  147. if error == .success, let password = token {
  148. self.createAccount(server: serverUrl, username: username, password: password)
  149. } else {
  150. NCContentPresenter.shared.showError(error: error)
  151. }
  152. }
  153. }
  154. @objc func closeView(sender: UIBarButtonItem) {
  155. self.dismiss(animated: true, completion: nil)
  156. }
  157. @objc func changeUser(sender: UIBarButtonItem) {
  158. toggleMenu()
  159. }
  160. }
  161. extension NCLoginWeb: WKNavigationDelegate {
  162. func webView(_ webView: WKWebView, didReceiveServerRedirectForProvisionalNavigation navigation: WKNavigation!) {
  163. guard let url = webView.url else { return }
  164. let urlString: String = url.absoluteString.lowercased()
  165. // prevent http redirection
  166. if urlBase.lowercased().hasPrefix("https://") && urlString.lowercased().hasPrefix("http://") {
  167. let alertController = UIAlertController(title: NSLocalizedString("_error_", comment: ""), message: NSLocalizedString("_prevent_http_redirection_", comment: ""), preferredStyle: .alert)
  168. alertController.addAction(UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default, handler: { _ in
  169. _ = self.navigationController?.popViewController(animated: true)
  170. }))
  171. self.present(alertController, animated: true)
  172. return
  173. }
  174. if urlString.hasPrefix(NCBrandOptions.shared.webLoginAutenticationProtocol) == true && urlString.contains("login") == true {
  175. var server: String = ""
  176. var user: String = ""
  177. var password: String = ""
  178. let keyValue = url.path.components(separatedBy: "&")
  179. for value in keyValue {
  180. if value.contains("server:") { server = value }
  181. if value.contains("user:") { user = value }
  182. if value.contains("password:") { password = value }
  183. }
  184. if server != "" && user != "" && password != "" {
  185. let server: String = server.replacingOccurrences(of: "/server:", with: "")
  186. let username: String = user.replacingOccurrences(of: "user:", with: "").replacingOccurrences(of: "+", with: " ")
  187. let password: String = password.replacingOccurrences(of: "password:", with: "")
  188. createAccount(server: server, username: username, password: password)
  189. }
  190. }
  191. }
  192. func webView(_ webView: WKWebView, didFailProvisionalNavigation navigation: WKNavigation!, withError error: Error) {
  193. var errorMessage = error.localizedDescription
  194. for (key, value) in (error as NSError).userInfo {
  195. let message = "\(key) \(value)\n"
  196. errorMessage += message
  197. }
  198. let alertController = UIAlertController(title: NSLocalizedString("_error_", comment: ""), message: errorMessage, preferredStyle: .alert)
  199. alertController.addAction(UIAlertAction(title: NSLocalizedString("_ok_", comment: ""), style: .default, handler: { _ in }))
  200. self.present(alertController, animated: true)
  201. }
  202. func webView(_ webView: WKWebView, didReceive challenge: URLAuthenticationChallenge, completionHandler: @escaping (URLSession.AuthChallengeDisposition, URLCredential?) -> Void) {
  203. if let serverTrust = challenge.protectionSpace.serverTrust {
  204. completionHandler(Foundation.URLSession.AuthChallengeDisposition.useCredential, URLCredential(trust: serverTrust))
  205. } else {
  206. completionHandler(URLSession.AuthChallengeDisposition.useCredential, nil)
  207. }
  208. }
  209. func webView(_ webView: WKWebView, decidePolicyFor navigationAction: WKNavigationAction, decisionHandler: @escaping (WKNavigationActionPolicy) -> Void) {
  210. decisionHandler(.allow)
  211. }
  212. func webView(_ webView: WKWebView, didStartProvisionalNavigation navigation: WKNavigation!) {
  213. print("didStartProvisionalNavigation")
  214. }
  215. func webView(_ webView: WKWebView, didFinish navigation: WKNavigation!) {
  216. activityIndicator.stopAnimating()
  217. print("didFinishProvisionalNavigation")
  218. if loginFlowV2Available {
  219. DispatchQueue.main.asyncAfter(deadline: .now() + 1) {
  220. NextcloudKit.shared.getLoginFlowV2Poll(token: self.loginFlowV2Token, endpoint: self.loginFlowV2Endpoint) { server, loginName, appPassword, data, error in
  221. if error == .success && server != nil && loginName != nil && appPassword != nil {
  222. self.createAccount(server: server!, username: loginName!, password: appPassword!)
  223. }
  224. }
  225. }
  226. }
  227. }
  228. // MARK: -
  229. func createAccount(server: String, username: String, password: String) {
  230. var urlBase = server
  231. // Normalized
  232. if urlBase.last == "/" {
  233. urlBase = String(urlBase.dropLast())
  234. }
  235. // Create account
  236. let account: String = "\(username) \(urlBase)"
  237. // NO account found, clear all
  238. if NCManageDatabase.shared.getAccounts() == nil {
  239. NCUtility.shared.removeAllSettings()
  240. }
  241. // Add new account
  242. NCManageDatabase.shared.deleteAccount(account)
  243. NCManageDatabase.shared.addAccount(account, urlBase: urlBase, user: username, password: password)
  244. guard let tableAccount = NCManageDatabase.shared.setAccountActive(account) else {
  245. self.dismiss(animated: true, completion: nil)
  246. return
  247. }
  248. appDelegate.settingAccount(account, urlBase: urlBase, user: username, userId: tableAccount.userId, password: password)
  249. if CCUtility.getIntro() {
  250. NotificationCenter.default.postOnMainThread(name: NCGlobal.shared.notificationCenterInitialize)
  251. self.dismiss(animated: true)
  252. } else {
  253. CCUtility.setIntro(true)
  254. if self.presentingViewController == nil {
  255. if let viewController = UIStoryboard(name: "Main", bundle: nil).instantiateInitialViewController() {
  256. viewController.modalPresentationStyle = .fullScreen
  257. NotificationCenter.default.postOnMainThread(name: NCGlobal.shared.notificationCenterInitialize)
  258. viewController.view.alpha = 0
  259. appDelegate.window?.rootViewController = viewController
  260. appDelegate.window?.makeKeyAndVisible()
  261. UIView.animate(withDuration: 0.5) {
  262. viewController.view.alpha = 1
  263. }
  264. }
  265. } else {
  266. NotificationCenter.default.postOnMainThread(name: NCGlobal.shared.notificationCenterInitialize)
  267. self.dismiss(animated: true)
  268. }
  269. }
  270. }
  271. }