altocompta/include/otp-link.php
2025-11-29 08:09:35 +01:00

216 lines
5.2 KiB
PHP

<?php
/*
* This file is part of NOALYSS.
*
* NOALYSS is free software; you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation; either version 2 of the License, or
* (at your option) any later version.
*
* NOALYSS is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU General Public License for more details.
*
* You should have received a copy of the GNU General Public License
* along with NOALYSS; if not, write to the Free Software
* Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
*/
// Copyright Author Dany De Bontridder danydb@aevalys.eu 22/10/23
/**
* @file
* @brief generate a QRCode for setting up freeOTP
*
*
*/
if (!file_exists($dirname . '/config.inc.php')) {
die("system not installed");
}
require_once __DIR__ . '/constant.php';
?>
<style>
/***
* LOGO
*************************************/
#logo_id {
position:static;
top : 0px;
left:0px;
width:60px;
height:auto;
margin-left:10px;
}
/** small **/
@media (min-width : 576px) {
#logo_id {
top : 10px;
left:20px;
width: 90px;
margin-left:20px;
}
}
/** medium**/
@media (min-width : 768px) {
#logo_id {
}
}
/** large**/
@media (min-width : 992px) {
#logo_id {
}
}
/** XL **/
@media (min-width : 1200px) {
#logo_id {
}
}
div.content {
}
@media (min-width: 576px) {
div.content {
margin-left: 16px;
}
}
/* MeDium */
@media (min-width: 768px) {
div.content {
margin-left: 32px;
}
}
/* LarGe */
@media (min-width: 992px) {
div.content {
margin-left: 64px;
}
}
/* eXtraLarge */
@media (min-width: 1200px) {
div.content {
margin-left: 128px;
}
}
#vrf_code {
font-size:200%;
width:9rem;
padding:0.5rem;
}
input[type=submit]{
font-size:200%;
width:9rem;
padding:0.5rem;
}
form {
width:70%;
margin-left:15%;
}
</style>
<img id="logo_id" src="image/logo10000.png" >
<div class="content">
<?php
use Endroid\QrCode\Color\Color;
use Endroid\QrCode\Encoding\Encoding;
use Endroid\QrCode\ErrorCorrectionLevel;
use Endroid\QrCode\QrCode;
use Endroid\QrCode\Label\Label;
use Endroid\QrCode\Logo\Logo;
use Endroid\QrCode\RoundBlockSizeMode;
use Endroid\QrCode\Writer\PngWriter;
use Endroid\QrCode\Writer\ValidationException;
use chillerlan\Authenticator\{
Authenticator,
AuthenticatorOptions
};
use chillerlan\Authenticator\Authenticators\AuthenticatorInterface;
$http = new HttpInput();
try {
$uuid = $http->get('otp');
$repository = new \Database(0);
// remove old request (> 24 hours)
$repository->exec_sql("delete from otp_send_secret where os_timestamp < now()-interval '12 hours'");
// check if UUID exist
$id = $repository->get_value("select os_id from otp_send_secret where os_request=$1",
[$uuid]);
// if UUID doesn't exist exit
if ($repository->count() == 0) {
echo _("Expiré : vous devez redemander le renvoi de la clef");
return;
}
// get email from id
$otp_send = new Otp_Send_Secret_SQL($repository, $id);
$user = new Noalyss_User($repository, $otp_send->get('use_id'));
$secret = $user->get_otp_secret();
// OTP
$authenticator = new \Noalyss\OTP();
$authenticator->get_authenticator()->setSecret($secret);
$data= $authenticator->get_authenticator()->getUri(label:"noalyss:".$user->getEmail(),issuer:"noalyss.eu");
// load secret for this id
//echo "use with php -S localhost:5000 puis ouvrir index.html ";
$writer = new PngWriter();
// Create QR code
$qrCode = new QrCode(
data: $data,
encoding: new Encoding('UTF-8'),
errorCorrectionLevel: ErrorCorrectionLevel::Medium,
size: 600,
margin: 10,
roundBlockSizeMode: RoundBlockSizeMode::Margin,
foregroundColor: new Color(0, 0, 0),
backgroundColor: new Color(255, 255, 255)
);
$result = $writer->write($qrCode);
echo '<div style="margin:4rem">';
// generate the QRCode
echo '<h1>',_("Scanner ceci avec votre application OTP"),'</h1>';
?>
<ol>
<li>
<a href="https://play.google.com/store/apps/details?id=org.fedorahosted.freeotp" target="_blank">FreeOTP (libre)</a>
</li>
<li>
<a href="https://play.google.com/store/apps/details?id=com.beemdevelopment.aegis" target="_blank">AEgis Authenticator (libre)</a>
</li>
<li>
<a href="https://play.google.com/store/apps/details?id=com.google.android.apps.authenticator2" target="_blank">Google Authenticator</a>
</li>
</ol>
<?php
echo '<p>';
echo _("Scanner ce QRCode avec votre application OTP afin de l'ajouter");
if ( DEBUGNOALYSS > 1) { echo "code attendu",$authenticator->code();}
echo '</p>';
printf('<img src="data:image/png;base64,%s">', base64_encode($result->getString()));
} catch (Exception $exc) {
record_log($e);
return;
}
?>
</div>