install.php 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837
  1. <?php
  2. declare(strict_types=1);
  3. if (function_exists('opcache_reset')) {
  4. opcache_reset();
  5. }
  6. header("Content-Security-Policy: default-src 'self'");
  7. require(LIB_PATH . '/lib_install.php');
  8. Minz_Session::init('FreshRSS');
  9. if (isset($_GET['step'])) {
  10. define('STEP', (int)$_GET['step']);
  11. } else {
  12. define('STEP', 0);
  13. }
  14. if (STEP === 2 && isset($_POST['type'])) {
  15. Minz_Session::_param('bd_type', $_POST['type']);
  16. }
  17. function param(string $key, string $default = ''): string {
  18. return isset($_POST[$key]) && is_string($_POST[$key]) ? trim($_POST[$key]) : $default;
  19. }
  20. // gestion internationalisation
  21. function initTranslate(): void {
  22. Minz_Translate::init();
  23. $available_languages = Minz_Translate::availableLanguages();
  24. if (Minz_Session::paramString('language') == '') {
  25. Minz_Session::_param('language', get_best_language());
  26. }
  27. if (!in_array(Minz_Session::paramString('language'), $available_languages, true)) {
  28. Minz_Session::_param('language', 'en');
  29. }
  30. Minz_Translate::reset(Minz_Session::paramString('language'));
  31. }
  32. function get_best_language(): string {
  33. $accept = empty($_SERVER['HTTP_ACCEPT_LANGUAGE']) ? '' : $_SERVER['HTTP_ACCEPT_LANGUAGE'];
  34. return strtolower(substr($accept, 0, 2));
  35. }
  36. /*** SAUVEGARDES ***/
  37. function saveLanguage(): bool {
  38. if (!empty($_POST)) {
  39. if (!isset($_POST['language'])) {
  40. return false;
  41. }
  42. Minz_Session::_param('language', $_POST['language']);
  43. Minz_Session::_param('sessionWorking', 'ok');
  44. header('Location: index.php?step=1');
  45. }
  46. return true;
  47. }
  48. function saveStep1(): void {
  49. if (isset($_POST['freshrss-keep-install']) &&
  50. $_POST['freshrss-keep-install'] === '1') {
  51. // We want to keep our previous installation of FreshRSS
  52. // so we need to make next steps valid by setting $_SESSION vars
  53. // with values from the previous installation
  54. // First, we try to get previous configurations
  55. FreshRSS_Context::initSystem();
  56. FreshRSS_Context::initUser(FreshRSS_Context::systemConf()->default_user, false);
  57. // Then, we set $_SESSION vars
  58. Minz_Session::_params([
  59. 'title' => FreshRSS_Context::systemConf()->title,
  60. 'auth_type' => FreshRSS_Context::systemConf()->auth_type,
  61. 'default_user' => Minz_User::name() ?? '',
  62. 'passwordHash' => FreshRSS_Context::userConf()->passwordHash,
  63. 'bd_type' => FreshRSS_Context::systemConf()->db['type'] ?? '',
  64. 'bd_host' => FreshRSS_Context::systemConf()->db['host'] ?? '',
  65. 'bd_user' => FreshRSS_Context::systemConf()->db['user'] ?? '',
  66. 'bd_password' => FreshRSS_Context::systemConf()->db['password'] ?? '',
  67. 'bd_base' => FreshRSS_Context::systemConf()->db['base'] ?? '',
  68. 'bd_prefix' => FreshRSS_Context::systemConf()->db['prefix'] ?? '',
  69. 'bd_error' => false,
  70. ]);
  71. header('Location: index.php?step=4');
  72. }
  73. }
  74. function saveStep2(): void {
  75. if (!empty($_POST)) {
  76. if (Minz_Session::paramString('bd_type') === 'sqlite') {
  77. Minz_Session::_params([
  78. 'bd_base' => false,
  79. 'bd_host' => false,
  80. 'bd_user' => false,
  81. 'bd_password' => false,
  82. 'bd_prefix' => false,
  83. ]);
  84. } else {
  85. if (empty($_POST['type']) ||
  86. empty($_POST['host']) ||
  87. empty($_POST['user']) ||
  88. empty($_POST['base'])) {
  89. Minz_Session::_param('bd_error', 'Missing parameters!');
  90. }
  91. Minz_Session::_params([
  92. 'bd_base' => substr($_POST['base'], 0, 64),
  93. 'bd_host' => $_POST['host'],
  94. 'bd_user' => $_POST['user'],
  95. 'bd_password' => $_POST['pass'],
  96. 'bd_prefix' => substr($_POST['prefix'], 0, 16),
  97. ]);
  98. }
  99. if (Minz_Session::paramString('bd_type') === 'pgsql') {
  100. Minz_Session::_param('bd_base', strtolower(Minz_Session::paramString('bd_base')));
  101. }
  102. // We use dirname to remove the /i part
  103. $base_url = dirname(Minz_Request::guessBaseUrl());
  104. $config_array = [
  105. 'salt' => generateSalt(),
  106. 'base_url' => $base_url,
  107. 'default_user' => '_',
  108. 'db' => [
  109. 'type' => Minz_Session::paramString('bd_type'),
  110. 'host' => Minz_Session::paramString('bd_host'),
  111. 'user' => Minz_Session::paramString('bd_user'),
  112. 'password' => Minz_Session::paramString('bd_password'),
  113. 'base' => Minz_Session::paramString('bd_base'),
  114. 'prefix' => Minz_Session::paramString('bd_prefix'),
  115. 'pdo_options' => [],
  116. ],
  117. 'pubsubhubbub_enabled' => Minz_Request::serverIsPublic($base_url),
  118. ];
  119. if (Minz_Session::paramString('title') != '') {
  120. $config_array['title'] = Minz_Session::paramString('title');
  121. }
  122. $customConfigPath = DATA_PATH . '/config.custom.php';
  123. if (file_exists($customConfigPath)) {
  124. $customConfig = include($customConfigPath);
  125. if (is_array($customConfig)) {
  126. $config_array = array_merge($customConfig, $config_array);
  127. }
  128. }
  129. @unlink(DATA_PATH . '/config.php'); //To avoid access-rights problems
  130. file_put_contents(DATA_PATH . '/config.php', "<?php\n return " . var_export($config_array, true) . ";\n");
  131. if (function_exists('opcache_reset')) {
  132. opcache_reset();
  133. }
  134. FreshRSS_Context::initSystem(true);
  135. $ok = false;
  136. try {
  137. Minz_User::change($config_array['default_user']);
  138. $error = initDb();
  139. Minz_User::change();
  140. if ($error != '') {
  141. Minz_Session::_param('bd_error', $error);
  142. } else {
  143. $ok = true;
  144. }
  145. } catch (Exception $ex) {
  146. Minz_Session::_param('bd_error', $ex->getMessage());
  147. $ok = false;
  148. }
  149. if (!$ok) {
  150. @unlink(join_path(DATA_PATH, 'config.php'));
  151. }
  152. if ($ok) {
  153. Minz_Session::_param('bd_error');
  154. header('Location: index.php?step=3');
  155. } elseif (Minz_Session::paramString('bd_error') == '') {
  156. Minz_Session::_param('bd_error', 'Unknown error!');
  157. }
  158. }
  159. invalidateHttpCache();
  160. }
  161. function saveStep3(): bool {
  162. FreshRSS_Context::initSystem();
  163. Minz_Translate::init(Minz_Session::paramString('language'));
  164. if (!empty($_POST)) {
  165. $auth_type = param('auth_type', 'form');
  166. if (in_array($auth_type, ['form', 'http_auth', 'none'], true)) {
  167. FreshRSS_Context::systemConf()->auth_type = $auth_type;
  168. Minz_Session::_param('auth_type', FreshRSS_Context::systemConf()->auth_type);
  169. } else {
  170. return false;
  171. }
  172. $password_plain = param('passwordPlain', '');
  173. if (FreshRSS_Context::systemConf()->auth_type === 'form' && $password_plain == '') {
  174. return false;
  175. }
  176. if (FreshRSS_user_Controller::checkUsername(param('default_user', ''))) {
  177. FreshRSS_Context::systemConf()->default_user = param('default_user', '');
  178. Minz_Session::_param('default_user', FreshRSS_Context::systemConf()->default_user);
  179. } else {
  180. return false;
  181. }
  182. if (FreshRSS_Context::systemConf()->auth_type === 'http_auth' &&
  183. connectionRemoteAddress() !== '' &&
  184. empty($_SERVER['REMOTE_USER']) && empty($_SERVER['REDIRECT_REMOTE_USER']) && // No safe authentication HTTP headers
  185. (!empty($_SERVER['HTTP_REMOTE_USER']) || !empty($_SERVER['HTTP_X_WEBAUTH_USER'])) // but has unsafe authentication HTTP headers
  186. ) {
  187. // Trust by default the remote IP address (e.g. last proxy) used during install to provide remote user name via unsafe HTTP header
  188. FreshRSS_Context::systemConf()->trusted_sources[] = connectionRemoteAddress();
  189. FreshRSS_Context::systemConf()->trusted_sources = array_unique(FreshRSS_Context::systemConf()->trusted_sources);
  190. }
  191. // Create default user files but first, we delete previous data to
  192. // avoid access right problems.
  193. recursive_unlink(USERS_PATH . '/' . Minz_Session::paramString('default_user'));
  194. $ok = false;
  195. try {
  196. $ok = FreshRSS_user_Controller::createUser(
  197. Minz_Session::paramString('default_user'),
  198. '', //TODO: Add e-mail
  199. $password_plain,
  200. [
  201. 'language' => Minz_Session::paramString('language'),
  202. 'is_admin' => true,
  203. 'enabled' => true,
  204. ]
  205. );
  206. } catch (Exception $e) {
  207. Minz_Session::_param('bd_error', $e->getMessage());
  208. $ok = false;
  209. }
  210. if (!$ok) {
  211. return false;
  212. }
  213. FreshRSS_Context::systemConf()->save();
  214. header('Location: index.php?step=4');
  215. }
  216. return true;
  217. }
  218. /*** VÉRIFICATIONS ***/
  219. function checkStep(): void {
  220. $s0 = checkStep0();
  221. $s1 = checkRequirements();
  222. $s2 = checkStep2();
  223. $s3 = checkStep3();
  224. if (STEP > 0 && $s0['all'] !== 'ok') {
  225. header('Location: index.php?step=0');
  226. } elseif (STEP > 1 && $s1['all'] !== 'ok') {
  227. header('Location: index.php?step=1');
  228. } elseif (STEP > 2 && $s2['all'] !== 'ok') {
  229. header('Location: index.php?step=2');
  230. } elseif (STEP > 3 && $s3['all'] !== 'ok') {
  231. header('Location: index.php?step=3');
  232. }
  233. Minz_Session::_param('actualize_feeds', true);
  234. }
  235. /** @return array<string,string> */
  236. function checkStep0(): array {
  237. $languages = Minz_Translate::availableLanguages();
  238. $language = Minz_Session::paramString('language') != '' && in_array(Minz_Session::paramString('language'), $languages, true);
  239. $sessionWorking = Minz_Session::paramString('sessionWorking') === 'ok';
  240. return [
  241. 'language' => $language ? 'ok' : 'ko',
  242. 'sessionWorking' => $sessionWorking ? 'ok' : 'ko',
  243. 'all' => $language && $sessionWorking ? 'ok' : 'ko',
  244. ];
  245. }
  246. function freshrss_already_installed(): bool {
  247. $conf_path = join_path(DATA_PATH, 'config.php');
  248. if (!file_exists($conf_path)) {
  249. return false;
  250. }
  251. // A configuration file already exists, we try to load it.
  252. $system_conf = null;
  253. try {
  254. $system_conf = FreshRSS_SystemConfiguration::init($conf_path);
  255. } catch (Minz_FileNotExistException $e) {
  256. return false;
  257. }
  258. // ok, the global conf exists… but what about default user conf?
  259. $current_user = $system_conf->default_user;
  260. try {
  261. FreshRSS_UserConfiguration::init(USERS_PATH . '/' . $current_user . '/config.php');
  262. } catch (Minz_FileNotExistException $e) {
  263. return false;
  264. }
  265. // ok, ok, default user exists too!
  266. return true;
  267. }
  268. /** @return array<string,string> */
  269. function checkStep2(): array {
  270. $conf = is_writable(join_path(DATA_PATH, 'config.php'));
  271. $bd = Minz_Session::paramString('bd_type') != '';
  272. $conn = Minz_Session::paramString('bd_error') == '';
  273. return [
  274. 'bd' => $bd ? 'ok' : 'ko',
  275. 'conn' => $conn ? 'ok' : 'ko',
  276. 'conf' => $conf ? 'ok' : 'ko',
  277. 'all' => $bd && $conn && $conf ? 'ok' : 'ko',
  278. ];
  279. }
  280. /** @return array<string,string> */
  281. function checkStep3(): array {
  282. $conf = Minz_Session::paramString('default_user') != '';
  283. $form = Minz_Session::paramString('auth_type') != '';
  284. $defaultUser = empty($_POST['default_user']) ? null : $_POST['default_user'];
  285. if ($defaultUser === null) {
  286. $defaultUser = Minz_Session::paramString('default_user') == '' ? '' : Minz_Session::paramString('default_user');
  287. }
  288. $data = is_writable(join_path(USERS_PATH, $defaultUser, 'config.php'));
  289. return [
  290. 'conf' => $conf ? 'ok' : 'ko',
  291. 'form' => $form ? 'ok' : 'ko',
  292. 'data' => $data ? 'ok' : 'ko',
  293. 'all' => $conf && $form && $data ? 'ok' : 'ko',
  294. ];
  295. }
  296. /* select language */
  297. function printStep0(): void {
  298. $actual = Minz_Translate::language();
  299. $languages = Minz_Translate::availableLanguages();
  300. $s0 = checkStep0();
  301. ?>
  302. <?php if ($s0['all'] === 'ok') { ?>
  303. <p class="alert alert-success"><span class="alert-head"><?= _t('gen.short.ok') ?></span> <?= _t('install.language.defined') ?></p>
  304. <?php } elseif (!empty($_POST) && $s0['sessionWorking'] !== 'ok') { ?>
  305. <p class="alert alert-error"><span class="alert-head"><?= _t('gen.short.damn') ?></span> <?= _t('install.session.nok') ?></p>
  306. <?php } ?>
  307. <div class="form-group">
  308. <label class="group-name"><?= _t('index.about') ?></label>
  309. <div class="group-controls">
  310. <?= _t('index.about.freshrss_description') ?>
  311. </div>
  312. </div>
  313. <div class="form-group">
  314. <label class="group-name"><?= _t('index.about.project_website') ?></label>
  315. <div class="group-controls">
  316. <a href="<?= FRESHRSS_WEBSITE ?>" target="_blank"><?= FRESHRSS_WEBSITE ?></a>
  317. </div>
  318. </div>
  319. <div class="form-group">
  320. <label class="group-name"><?= _t('index.about.documentation') ?></label>
  321. <div class="group-controls">
  322. <a href="<?= FRESHRSS_WIKI ?>" target="_blank"><?= FRESHRSS_WIKI ?></a>
  323. </div>
  324. </div>
  325. <div class="form-group">
  326. <label class="group-name"><?= _t('index.about.version') ?></label>
  327. <div class="group-controls">
  328. <?= FRESHRSS_VERSION ?>
  329. </div>
  330. </div>
  331. <h2><?= _t('install.language.choose') ?></h2>
  332. <form action="index.php?step=0" method="post">
  333. <div class="form-group">
  334. <label class="group-name" for="language"><?= _t('install.language') ?></label>
  335. <div class="group-controls">
  336. <select name="language" id="language" tabindex="1" >
  337. <?php foreach ($languages as $lang) { ?>
  338. <option value="<?= $lang ?>"<?= $actual == $lang ? ' selected="selected"' : '' ?>>
  339. <?= _t('gen.lang.' . $lang) ?>
  340. </option>
  341. <?php } ?>
  342. </select>
  343. </div>
  344. </div>
  345. <div class="form-group form-actions">
  346. <div class="group-controls">
  347. <button type="submit" class="btn btn-important" tabindex="2" ><?= _t('gen.action.submit') ?></button>
  348. <?php if ($s0['all'] == 'ok') { ?>
  349. <a class="next-step" href="?step=1" tabindex="4" ><?= _t('install.action.next_step') ?></a>
  350. <?php } ?>
  351. </div>
  352. </div>
  353. </form>
  354. <?php
  355. }
  356. /**
  357. * Alert box template
  358. * @param array<string> $messageParams
  359. * */
  360. function printStep1Template(string $key, string $value, array $messageParams = []): void {
  361. if ('ok' === $value) {
  362. $message = _t("install.check.{$key}.ok", ...$messageParams);
  363. ?><p class="alert alert-success"><span class="alert-head"><?= _t('gen.short.ok') ?></span> <?= $message ?></p><?php
  364. } else {
  365. $message = _t("install.check.{$key}.nok", ...$messageParams);
  366. ?><p class="alert alert-error"><span class="alert-head"><?= _t('gen.short.damn') ?></span> <?= $message ?></p><?php
  367. }
  368. }
  369. function getProcessUsername(): string {
  370. if (function_exists('posix_getpwuid') && function_exists('posix_geteuid')) {
  371. $processUser = posix_getpwuid(posix_geteuid()) ?: [];
  372. if (!empty($processUser['name'])) {
  373. return $processUser['name'];
  374. }
  375. }
  376. if (function_exists('exec')) {
  377. exec('whoami', $output);
  378. if (!empty($output[0])) {
  379. return $output[0];
  380. }
  381. }
  382. return _t('install.check.unknown_process_username');
  383. }
  384. // @todo refactor this view with the check_install action
  385. /* check system environment */
  386. function printStep1(): void {
  387. $res = checkRequirements();
  388. $processUsername = getProcessUsername();
  389. ?>
  390. <h2><?= _t('admin.check_install.php') ?></h2>
  391. <noscript><p class="alert alert-warn"><span class="alert-head"><?= _t('gen.short.attention') ?></span> <?= _t('install.javascript_is_better') ?></p></noscript>
  392. <?php
  393. $version = function_exists('curl_version') ? curl_version() : [];
  394. printStep1Template('php', $res['php'], [PHP_VERSION, FRESHRSS_MIN_PHP_VERSION]);
  395. printStep1Template('pdo', $res['pdo']);
  396. printStep1Template('curl', $res['curl'], [$version['version'] ?? '']);
  397. printStep1Template('json', $res['json']);
  398. printStep1Template('pcre', $res['pcre']);
  399. printStep1Template('ctype', $res['ctype']);
  400. printStep1Template('dom', $res['dom']);
  401. printStep1Template('xml', $res['xml']);
  402. printStep1Template('mbstring', $res['mbstring']);
  403. printStep1Template('fileinfo', $res['fileinfo']);
  404. ?>
  405. <h2><?= _t('admin.check_install.files') ?></h2>
  406. <?php
  407. printStep1Template('data', $res['data'], [DATA_PATH, $processUsername]);
  408. printStep1Template('cache', $res['cache'], [CACHE_PATH, $processUsername]);
  409. printStep1Template('tmp', $res['tmp'], [TMP_PATH, $processUsername]);
  410. printStep1Template('users', $res['users'], [USERS_PATH, $processUsername]);
  411. printStep1Template('favicons', $res['favicons'], [DATA_PATH . '/favicons', $processUsername]);
  412. ?>
  413. <?php if (freshrss_already_installed() && $res['all'] == 'ok') { ?>
  414. <p class="alert alert-warn"><span class="alert-head"><?= _t('gen.short.attention') ?></span> <?= _t('install.check.already_installed') ?></p>
  415. <div class="form-group form-actions">
  416. <div class="group-controls">
  417. <form action="index.php?step=1" method="post">
  418. <input type="hidden" name="freshrss-keep-install" value="1" />
  419. <button type="submit" class="btn btn-important" tabindex="1"><?= _t('install.action.keep_install') ?></button>
  420. <a class="btn btn-attention confirm" data-str-confirm="<?= _t('install.js.confirm_reinstall') ?>"
  421. href="?step=2" tabindex="2"><?= _t('install.action.reinstall') ?></a>
  422. </form>
  423. </div>
  424. </div>
  425. <?php } elseif ($res['all'] == 'ok') { ?>
  426. <div class="form-group form-actions">
  427. <div class="group-controls">
  428. <a class="btn btn-important" href="?step=2" tabindex="1"><?= _t('install.action.next_step') ?></a>
  429. </div>
  430. </div>
  431. <?php } else { ?>
  432. <p class="alert alert-error"><?= _t('install.action.fix_errors_before') ?></p>
  433. <div class="form-group form-actions">
  434. <div class="group-controls">
  435. <a id="actualize" class="btn" href="./index.php?step=1" title="<?= _t('install.check.reload') ?>" tabindex="1">
  436. <img class="icon" src="../themes/icons/refresh.svg" alt="🔃" loading="lazy" />
  437. </a>
  438. </div>
  439. </div>
  440. <?php } ?>
  441. <?php
  442. }
  443. /**
  444. * Select database & configuration
  445. * @throws Minz_ConfigurationNamespaceException
  446. */
  447. function printStep2(): void {
  448. $system_default_config = FreshRSS_SystemConfiguration::get('default_system');
  449. $s2 = checkStep2();
  450. if ($s2['all'] == 'ok') { ?>
  451. <p class="alert alert-success"><span class="alert-head"><?= _t('gen.short.ok') ?></span> <?= _t('install.bdd.conf.ok') ?></p>
  452. <?php } elseif ($s2['conn'] == 'ko') { ?>
  453. <p class="alert alert-error"><span class="alert-head"><?= _t('gen.short.damn') ?></span> <?= _t('install.bdd.conf.ko'),
  454. (empty($_SESSION['bd_error']) ? '' : ' : ' . $_SESSION['bd_error']) ?></p>
  455. <?php } ?>
  456. <h2><?= _t('install.bdd.conf') ?></h2>
  457. <form action="index.php?step=2" method="post" autocomplete="off">
  458. <div class="form-group">
  459. <label class="group-name" for="type"><?= _t('install.bdd.type') ?></label>
  460. <div class="group-controls">
  461. <select name="type" id="type" tabindex="1">
  462. <?php if (extension_loaded('pdo_sqlite')) {?>
  463. <option value="sqlite"
  464. <?= isset($_SESSION['bd_type']) && $_SESSION['bd_type'] === 'sqlite' ? 'selected="selected"' : '' ?>>
  465. SQLite
  466. </option>
  467. <?php }?>
  468. <?php if (extension_loaded('pdo_mysql')) {?>
  469. <option value="mysql"
  470. <?= isset($_SESSION['bd_type']) && $_SESSION['bd_type'] === 'mysql' ? 'selected="selected"' : '' ?>>
  471. MySQL / MariaDB
  472. </option>
  473. <?php }?>
  474. <?php if (extension_loaded('pdo_pgsql')) {?>
  475. <option value="pgsql"
  476. <?= isset($_SESSION['bd_type']) && $_SESSION['bd_type'] === 'pgsql' ? 'selected="selected"' : '' ?>>
  477. PostgreSQL
  478. </option>
  479. <?php }?>
  480. </select>
  481. </div>
  482. </div>
  483. <div id="mysql">
  484. <div class="form-group">
  485. <label class="group-name" for="host"><?= _t('install.bdd.host') ?></label>
  486. <div class="group-controls">
  487. <input type="text" id="host" name="host" pattern="[0-9A-Z/a-z_.\-]{1,64}(:[0-9]{2,5})?" value="<?=
  488. $_SESSION['bd_host'] ?? $system_default_config->db['host'] ?? '' ?>" tabindex="2" />
  489. </div>
  490. </div>
  491. <div class="form-group">
  492. <label class="group-name" for="user"><?= _t('install.bdd.username') ?></label>
  493. <div class="group-controls">
  494. <input type="text" id="user" name="user" maxlength="64" pattern="[0-9A-Za-z@_.\-]{1,64}" value="<?=
  495. $_SESSION['bd_user'] ?? '' ?>" tabindex="3" />
  496. </div>
  497. </div>
  498. <div class="form-group">
  499. <label class="group-name" for="pass"><?= _t('install.bdd.password') ?></label>
  500. <div class="group-controls">
  501. <div class="stick">
  502. <input type="password" id="pass" name="pass" value="<?=
  503. $_SESSION['bd_password'] ?? '' ?>" tabindex="4" autocomplete="off" />
  504. <a class="btn toggle-password" data-toggle="pass" tabindex="5"><?= FreshRSS_Themes::icon('key') ?></a>
  505. </div>
  506. </div>
  507. </div>
  508. <div class="form-group">
  509. <label class="group-name" for="base"><?= _t('install.bdd') ?></label>
  510. <div class="group-controls">
  511. <input type="text" id="base" name="base" maxlength="64" pattern="[0-9A-Za-z_\-]{1,64}" value="<?=
  512. $_SESSION['bd_base'] ?? '' ?>" tabindex="6" />
  513. </div>
  514. </div>
  515. <div class="form-group">
  516. <label class="group-name" for="prefix"><?= _t('install.bdd.prefix') ?></label>
  517. <div class="group-controls">
  518. <input type="text" id="prefix" name="prefix" maxlength="16" pattern="[0-9A-Za-z_]{1,16}" value="<?=
  519. $_SESSION['bd_prefix'] ?? $system_default_config->db['prefix'] ?? '' ?>" tabindex="7" />
  520. </div>
  521. </div>
  522. </div>
  523. <div class="form-group form-actions">
  524. <div class="group-controls">
  525. <button type="submit" class="btn btn-important" tabindex="8" ><?= _t('gen.action.submit') ?></button>
  526. <button type="reset" class="btn" tabindex="9" ><?= _t('gen.action.cancel') ?></button>
  527. <?php if ($s2['all'] == 'ok') { ?>
  528. <a class="next-step" href="?step=3" tabindex="10" ><?= _t('install.action.next_step') ?></a>
  529. <?php } ?>
  530. </div>
  531. </div>
  532. </form>
  533. <?php
  534. }
  535. function no_auth(string $auth_type): bool {
  536. return !in_array($auth_type, ['form', 'http_auth', 'none'], true);
  537. }
  538. /* Create default user */
  539. function printStep3(): void {
  540. $auth_type = $_SESSION['auth_type'] ?? '';
  541. $s3 = checkStep3();
  542. if ($s3['all'] == 'ok') { ?>
  543. <p class="alert alert-success"><span class="alert-head"><?= _t('gen.short.ok') ?></span> <?= _t('install.conf.ok') ?></p>
  544. <?php } elseif (!empty($_POST)) { ?>
  545. <p class="alert alert-error"><?= _t('install.fix_errors_before') ?></p>
  546. <?php } ?>
  547. <h2><?= _t('install.conf') ?></h2>
  548. <form action="index.php?step=3" method="post">
  549. <div class="form-group">
  550. <label class="group-name" for="default_user"><?= _t('install.default_user') ?></label>
  551. <div class="group-controls">
  552. <input type="text" id="default_user" name="default_user" autocomplete="username" required="required" size="16"
  553. pattern="<?= FreshRSS_user_Controller::USERNAME_PATTERN ?>" value="<?= $_SESSION['default_user'] ?? '' ?>"
  554. placeholder="<?= httpAuthUser(false) == '' ? 'alice' : httpAuthUser(false) ?>" tabindex="1" />
  555. <p class="help"><?= _i('help') ?> <?= _t('install.default_user.max_char') ?></p>
  556. </div>
  557. </div>
  558. <div class="form-group">
  559. <label class="group-name" for="auth_type"><?= _t('install.auth.type') ?></label>
  560. <div class="group-controls">
  561. <select id="auth_type" name="auth_type" required="required" tabindex="2">
  562. <option value="form"<?= $auth_type === 'form' || (no_auth($auth_type) && cryptAvailable()) ? ' selected="selected"' : '',
  563. cryptAvailable() ? '' : ' disabled="disabled"' ?>><?= _t('install.auth.form') ?></option>
  564. <option value="http_auth"<?= $auth_type === 'http_auth' ? ' selected="selected"' : '',
  565. httpAuthUser(false) == '' ? ' disabled="disabled"' : '' ?>>
  566. <?= _t('install.auth.http') ?> (REMOTE_USER = '<?= httpAuthUser(false) ?>')</option>
  567. <option value="none"<?= $auth_type === 'none' || (no_auth($auth_type) && !cryptAvailable()) ? ' selected="selected"' : ''
  568. ?>><?= _t('install.auth.none') ?></option>
  569. </select>
  570. </div>
  571. </div>
  572. <div class="form-group">
  573. <label class="group-name" for="passwordPlain"><?= _t('install.auth.password_form') ?></label>
  574. <div class="group-controls">
  575. <div class="stick">
  576. <input type="password" id="passwordPlain" name="passwordPlain" pattern=".{7,}"
  577. autocomplete="off" <?= $auth_type === 'form' ? ' required="required"' : '' ?> tabindex="3" />
  578. <button type="button" class="btn toggle-password" data-toggle="passwordPlain" tabindex="4"><?= FreshRSS_Themes::icon('key') ?></button>
  579. </div>
  580. <p class="help"><?= _i('help') ?> <?= _t('install.auth.password_format') ?></p>
  581. <noscript><b><?= _t('gen.js.should_be_activated') ?></b></noscript>
  582. </div>
  583. </div>
  584. <div class="form-group form-actions">
  585. <div class="group-controls">
  586. <button type="submit" class="btn btn-important" tabindex="5" ><?= _t('gen.action.submit') ?></button>
  587. <button type="reset" class="btn" tabindex="6" ><?= _t('gen.action.cancel') ?></button>
  588. <?php if ($s3['all'] == 'ok') { ?>
  589. <a class="next-step" href="?step=4" tabindex="7" ><?= _t('install.action.next_step') ?></a>
  590. <?php } ?>
  591. </div>
  592. </div>
  593. </form>
  594. <?php
  595. }
  596. /* congrats. Installation successful completed */
  597. function printStep4(): void {
  598. ?>
  599. <p class="alert alert-success"><span class="alert-head"><?= _t('install.congratulations') ?></span> <?= _t('install.ok') ?></p>
  600. <div class="form-group form-actions">
  601. <div class="group-controls">
  602. <a class="btn btn-important" href="?step=5" tabindex="1"><?= _t('install.action.finish') ?></a>
  603. </div>
  604. </div>
  605. <?php
  606. }
  607. /* failed */
  608. function printStep5(): void {
  609. ?>
  610. <p class="alert alert-error">
  611. <span class="alert-head"><?= _t('gen.short.damn') ?></span>
  612. <?= _t('install.missing_applied_migrations', DATA_PATH . '/applied_migrations.txt') ?>
  613. </p>
  614. <?php
  615. }
  616. initTranslate();
  617. checkStep();
  618. switch (STEP) {
  619. case 0:
  620. default:
  621. saveLanguage();
  622. break;
  623. case 1:
  624. saveStep1();
  625. break;
  626. case 2:
  627. saveStep2();
  628. break;
  629. case 3:
  630. saveStep3();
  631. break;
  632. case 4:
  633. break;
  634. case 5:
  635. if (setupMigrations()) {
  636. header('Location: index.php');
  637. }
  638. break;
  639. }
  640. ?>
  641. <!DOCTYPE html>
  642. <html <?php
  643. if (_t('gen.dir') === 'rtl') {
  644. echo ' dir="rtl" class="rtl"';
  645. }
  646. ?>>
  647. <head>
  648. <meta charset="UTF-8" />
  649. <meta name="viewport" content="initial-scale=1.0" />
  650. <script id="jsonVars" type="application/json">{}</script>
  651. <title><?= _t('install.title') ?>: <?= _t('install.step', STEP + 1) ?></title>
  652. <link rel="stylesheet" href="../themes/base-theme/frss.css?<?= @filemtime(PUBLIC_PATH . '/themes/base-theme/frss.css') ?>" />
  653. <link rel="stylesheet" href="../themes/Origine/origine.css?<?= @filemtime(PUBLIC_PATH . '/themes/Origine/origine.css') ?>" />
  654. <link rel="shortcut icon" id="favicon" type="image/x-icon" sizes="16x16 64x64" href="../favicon.ico" />
  655. <link rel="icon msapplication-TileImage apple-touch-icon" type="image/png" sizes="256x256" href="../themes/icons/favicon-256.png" />
  656. <link rel="apple-touch-icon" href="../themes/icons/apple-touch-icon.png" />
  657. <meta name="apple-mobile-web-app-capable" content="yes" />
  658. <meta name="apple-mobile-web-app-status-bar-style" content="black" />
  659. <meta name="apple-mobile-web-app-title" content="FreshRSS">
  660. <meta name="robots" content="noindex,nofollow" />
  661. </head>
  662. <body>
  663. <header class="header">
  664. <div class="item title">
  665. <div id="logo-wrapper">
  666. <a href="./">
  667. <img class="logo" src="../themes/icons/FreshRSS-logo.svg" alt="" loading="lazy">
  668. </a>
  669. </div>
  670. </div>
  671. <div class="item"></div>
  672. <div class="item configure">
  673. <a class="btn only-mobile" href="#aside"><?= _i('view-normal') ?></a>
  674. </div>
  675. </header>
  676. <div id="global">
  677. <nav class="nav nav-list aside" id="aside">
  678. <a class="toggle_aside" href="#close"><img class="icon" src="../themes/icons/close.svg" loading="lazy" alt="❌"></a>
  679. <ul>
  680. <li class="item nav-section">
  681. <div class="nav-header"><?= _t('install.steps') ?></div>
  682. <ol>
  683. <li class="item<?= STEP == 0 ? ' active' : '' ?>">
  684. <a href="?step=0" title="<?= _t('install.step', 0) ?>: <?= _t('install.language') ?>"><?= _t('install.language') ?></a>
  685. </li>
  686. <li class="item<?= STEP == 1 ? ' active' : '' ?>">
  687. <?php if (STEP > 0) {?>
  688. <a href="?step=1" title="<?= _t('install.step', 1) ?>: <?= _t('install.check') ?>"><?= _t('install.check') ?></a>
  689. <?php } else { ?>
  690. <span><?= _t('install.check') ?></span>
  691. <?php } ?>
  692. </li>
  693. <li class="item<?= STEP == 2 ? ' active' : '' ?>">
  694. <?php if (STEP > 1) {?>
  695. <a href="?step=2" title="<?= _t('install.step', 2) ?>: <?= _t('install.bdd.conf') ?>"><?= _t('install.bdd.conf') ?></a>
  696. <?php } else { ?>
  697. <span><?= _t('install.bdd.conf') ?></span>
  698. <?php } ?>
  699. </li>
  700. <li class="item<?= STEP == 3 ? ' active' : '' ?>">
  701. <?php if (STEP > 2) {?>
  702. <a href="?step=3" title="<?= _t('install.step', 3) ?>: <?= _t('install.conf') ?>"><?= _t('install.conf') ?></a>
  703. <?php } else { ?>
  704. <span><?= _t('install.conf') ?></span>
  705. <?php } ?>
  706. </li>
  707. <li class="item<?= STEP == 4 ? ' active' : '' ?>">
  708. <?php if (STEP > 3) {?>
  709. <a href="?step=4" title="<?= _t('install.step', 4) ?>: <?= _t('install.this_is_the_end') ?>"><?= _t('install.this_is_the_end') ?></a>
  710. <?php } else { ?>
  711. <span><?= _t('install.this_is_the_end') ?></span>
  712. <?php } ?>
  713. </li>
  714. </ol>
  715. </li>
  716. </ul>
  717. </nav>
  718. <a class="close-aside" href="#close">❌</a>
  719. <main class="post">
  720. <h1><?= _t('install.title') ?>: <?= _t('install.step', STEP + 1) ?></h1>
  721. <?php
  722. switch (STEP) {
  723. case 0:
  724. default:
  725. printStep0();
  726. break;
  727. case 1:
  728. printStep1();
  729. break;
  730. case 2:
  731. printStep2();
  732. break;
  733. case 3:
  734. printStep3();
  735. break;
  736. case 4:
  737. printStep4();
  738. break;
  739. case 5:
  740. printStep5();
  741. break;
  742. }
  743. ?>
  744. </main>
  745. </div>
  746. <script src="../scripts/install.js?<?= @filemtime(PUBLIC_PATH . '/scripts/install.js') ?>"></script>
  747. </body>
  748. </html>