init commit

This commit is contained in:
sebivh
2025-10-14 13:24:20 +02:00
parent 7d953fdc5a
commit b0c613daf3
12 changed files with 805 additions and 0 deletions

View File

@@ -0,0 +1,32 @@
package de.sebastianvonhelmersen;
import java.util.UUID;
public class AuthInfos {
private UUID uuid;
private AuthState state;
private String username = null;
private Database db;
public AuthInfos(Database db, UUID uuid) {
this.uuid = uuid;
assert db != null;
this.db = db;
this.state = checkState();
}
/**
* Checks the authstate in the Database
* @return The determined AuthState
*/
private AuthState checkState() {
return db.isAuthenticated(this.uuid.toString()) ? AuthState.AUTHENTICATED : AuthState.AUTH_WAITING_USERNAME;
}
public void setUsername(String username) {
this.username = username;
this.state = AuthState.AUTH_WAITING_PASSWORD;
}
public AuthState getState() { return this.state; }
public String getUsername() { return this.username; }
public void reset() { this.state = AuthState.AUTH_WAITING_USERNAME; }
}

View File

@@ -0,0 +1,8 @@
package de.sebastianvonhelmersen;
public enum AuthState {
AUTHENTICATED,
AUTH_FAILED,
AUTH_WAITING_USERNAME,
AUTH_WAITING_PASSWORD
}

View File

@@ -0,0 +1,64 @@
package de.sebastianvonhelmersen;
import java.io.File;
import java.sql.*;
public class Database {
private Statement statement;
public Database(File dbFile) {
try
{
String path = "jdbc:sqlite:" + dbFile.getAbsolutePath();
// create a database connection
Connection connection = DriverManager.getConnection(path);
Statement statement = connection.createStatement();
this.statement = statement;
statement.setQueryTimeout(30); // set timeout to 30 sec.
statement.executeUpdate(
"CREATE TABLE IF NOT EXISTS players (" +
"uuid VARCHAR(36) PRIMARY KEY, " +
"uid VARCHAR(50), " +
"mcusername VARCHAR(50), " +
"ladp_username VARCHAR(50), " +
"firstName VARCHAR(50), " +
"lastName VARCHAR(50)," +
"mail VARCHAR(320))"
);
}
catch(SQLException e)
{
// if the error message is "out of memory",
// it probably means no database file is found
e.printStackTrace(System.err);
}
}
public boolean isAuthenticated(String uuid) {
String query = "select * from players where uuid = ?";
try(PreparedStatement prep_query = this.statement.getConnection().prepareStatement(query)){
prep_query.setString(1, uuid);
ResultSet rs = prep_query.executeQuery();
return rs.next();
} catch (SQLException e) {
throw new RuntimeException(e);
}
}
public void addPlayer(String uuid, String mcusername, LdapUser user) {
String query = "insert into players values (?, ?, ?, ?, ?, ?, ?)";
try(PreparedStatement prep_query = this.statement.getConnection().prepareStatement(query)){
prep_query.setString(1, uuid);
prep_query.setString(2, String.valueOf(user.uid));
prep_query.setString(3, mcusername);
prep_query.setString(4, user.ldapName);
prep_query.setString(5, user.firstName);
prep_query.setString(6, user.lastName);
prep_query.setString(7, user.email);
prep_query.executeUpdate();
} catch ( SQLException e ) {
throw new RuntimeException(e);
}
}
}

View File

@@ -0,0 +1,102 @@
package de.sebastianvonhelmersen;
import javax.naming.Context;
import javax.naming.NamingEnumeration;
import javax.naming.directory.*;
import java.util.Hashtable;
public class Ldap {
/*
private static final String LDAP_URL = "ldap://192.168.1.11:389";
private static final String BASE_DN = "dc=authentik,dc=vonhelmersen,dc=online";
private static final String ADMIN_DN = "cn=akadmin,ou=users,dc=authentik,dc=vonhelmersen,dc=online"; // service account
private static final String ADMIN_PASSWORD = "cuwgoH-9biqto-xiddin";
*/
private static final String LDAP_URL = "ldap://juri:389";
private static final String BASE_DN = "dc=fet,dc=htu,dc=tuwien,dc=ac,dc=at";
private static final String ADMIN_DN = "cn=admin,dc=fet,dc=htu,dc=tuwien,dc=ac,dc=at"; // service account
public static LdapUser authenticate(String username, String password) {
try {
// 1. Bind as admin/service account
Hashtable<String, String> env = new Hashtable<>();
env.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
env.put(Context.PROVIDER_URL, LDAP_URL);
env.put(Context.SECURITY_AUTHENTICATION, "simple");
env.put(Context.SECURITY_PRINCIPAL, ADMIN_DN);
env.put(Context.SECURITY_CREDENTIALS, ADMIN_PASSWORD);
DirContext ctx = new InitialDirContext(env);
// 2. Search for user DN
String filter = "(uid=" + escapeLDAPSearchFilter(username) + ")";
SearchControls controls = new SearchControls();
controls.setSearchScope(SearchControls.SUBTREE_SCOPE);
NamingEnumeration<SearchResult> results = ctx.search(BASE_DN, filter, controls);
if (!results.hasMore()) {
ctx.close();
return null; // user not found
}
/*
{
givenname=givenName: Sebastian,
sn=sn: Helmersen,
userpassword=userPassword: [B@2b6cb5b5,
loginshell=loginShell: /bin/bash,
gidnumber=gidNumber: 2000,
uidnumber=uidNumber: 1196,
mail=mail: helmi@fet.at,
objectclass=objectClass: posixAccount,
inetOrgPerson,
organizationalPerson,
person,
uid=uid: helmi,
cn=cn: Sebastian Helmersen,
homedirectory=homeDirectory: /home/helmi
}
*/
// System.out.println("Results: " + results.toString());
SearchResult result = results.next();
String userDN = result.getNameInNamespace();
ctx.close();
// 3. Try binding with userDN + password
Hashtable<String, String> authEnv = new Hashtable<>();
authEnv.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
authEnv.put(Context.PROVIDER_URL, LDAP_URL);
authEnv.put(Context.SECURITY_AUTHENTICATION, "simple");
authEnv.put(Context.SECURITY_PRINCIPAL, userDN);
authEnv.put(Context.SECURITY_CREDENTIALS, password);
new InitialDirContext(authEnv).close(); // bind attempt
return new LdapUser(result.getAttributes()); // success
} catch (Exception e) {
e.printStackTrace();
return null; // failed (invalid credentials or LDAP error)
}
}
public static String escapeLDAPSearchFilter(String input) {
StringBuilder sb = new StringBuilder();
for (int i = 0; i < input.length(); i++) {
char c = input.charAt(i);
switch (c) {
case '\\': sb.append("\\5c"); break;
case '*': sb.append("\\2a"); break;
case '(': sb.append("\\28"); break;
case ')': sb.append("\\29"); break;
case '\u0000': sb.append("\\00"); break;
default: sb.append(c);
}
}
return sb.toString();
}
}

View File

@@ -0,0 +1,32 @@
package de.sebastianvonhelmersen;
import javax.naming.directory.Attribute;
import javax.naming.directory.Attributes;
import java.util.regex.Matcher;
import java.util.regex.Pattern;
public class LdapUser {
public String firstName;
public String lastName;
public String email;
public int uid;
public int gid;
public String ldapName;
public LdapUser(Attributes attributes) {
firstName = trimAttribute(attributes.get("givenname"));
lastName = trimAttribute(attributes.get("sn"));
email = trimAttribute(attributes.get("mail"));
uid = Integer.parseInt(trimAttribute(attributes.get("uidnumber")));
gid = Integer.parseInt(trimAttribute(attributes.get("gidnumber")));
ldapName = trimAttribute(attributes.get("uid"));
}
private String trimAttribute(Attribute raw) {
Pattern pattern = Pattern.compile("^[^:]+:\\s*(.+)$");
Matcher matcher = pattern.matcher(raw.toString());
if (!matcher.find()) return "";
return matcher.group(1).trim();
}
}

View File

@@ -0,0 +1,187 @@
package de.sebastianvonhelmersen;
import net.kyori.adventure.text.Component;
import org.bukkit.Bukkit;
import org.bukkit.GameMode;
import org.bukkit.entity.Player;
import org.bukkit.event.EventHandler;
import org.bukkit.event.Listener;
import org.bukkit.event.block.BlockPlaceEvent;
import org.bukkit.event.entity.EntityDamageEvent;
import org.bukkit.event.entity.EntityTargetLivingEntityEvent;
import org.bukkit.event.player.AsyncPlayerChatEvent;
import org.bukkit.event.player.PlayerJoinEvent;
import org.bukkit.event.player.PlayerMoveEvent;
import org.bukkit.plugin.java.JavaPlugin;
import java.io.File;
import java.util.HashMap;
import java.util.Map;
import java.util.UUID;
import java.util.logging.Level;
public class fetmcplugin extends JavaPlugin implements Listener {
private Database db;
private Map<UUID, AuthInfos> allInfos = HashMap.newHashMap(0);
@Override
public void onEnable() {
// Make sure the plugin's data folder exists
File dataFolder = this.getDataFolder();
if (!dataFolder.exists()) {
dataFolder.mkdirs();
}
// Define the actual SQLite database file
File dbFile = new File(dataFolder, "auth.db");
Bukkit.getPluginManager().registerEvents(this, this);
this.db = new Database(dbFile);
}
@EventHandler
public void onPlayerJoin(PlayerJoinEvent event) {
UUID uuid = event.getPlayer().getUniqueId();
AuthInfos authInfos = new AuthInfos(db, uuid);
getLogger().log(Level.INFO,"Detected new Player with Auth State " + authInfos.getState().toString());
if( authInfos.getState() == AuthState.AUTHENTICATED ) {
return;
}
allInfos.put(uuid, authInfos);
String greeting = "Hallo, " + event.getPlayer().getName() +"! Willkommen auf dem MC Server der FET!\nBitte registriere dich mit deinen Anmeldedaten um zu beginnen!";
// Set timings: fadeIn = 0, stay = very long, fadeOut = 0
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TIMES,
net.kyori.adventure.title.Title.Times.times(
java.time.Duration.ZERO,
java.time.Duration.ofSeconds(9999), // basically "forever"
java.time.Duration.ZERO
)
);
// Send the title text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
Component.text("§cBenutzername"));
// Send the subtitle text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
Component.text("§eBitte gib den Benutzernamen deines FET Accounts ein!"));
event.getPlayer().sendMessage(greeting);
event.getPlayer().setGameMode(GameMode.ADVENTURE);
}
@EventHandler
public void onPlayerMove(PlayerMoveEvent event) {
UUID uuid = event.getPlayer().getUniqueId();
event.getPlayer().setAllowFlight(true);
if ( allInfos.containsKey(uuid) ) {
event.setCancelled(true);
return;
}
}
@EventHandler
public void onPlayerDamage(EntityDamageEvent event) {
if ( event.getEntity() instanceof Player) {
UUID uuid = event.getEntity().getUniqueId();
if ( allInfos.containsKey(uuid) ) {
event.setCancelled(true);
return;
}
}
}
@EventHandler
public void onBlockPlace(BlockPlaceEvent event) {
UUID uuid = event.getPlayer().getUniqueId();
if ( allInfos.containsKey(uuid) ) {
event.setCancelled(true);
return;
}
}
@EventHandler
public void onEntityTarget(EntityTargetLivingEntityEvent event) {
if (event.getTarget() instanceof Player) {
UUID uuid = event.getTarget().getUniqueId();
if ( allInfos.containsKey(uuid) ) {
event.setCancelled(true);
return;
}
}
}
@EventHandler
public void onChat(AsyncPlayerChatEvent event) {
UUID uuid = event.getPlayer().getUniqueId();
if (!allInfos.containsKey(uuid)) {
return;
}
AuthInfos info = allInfos.get(uuid);
String message = event.getMessage();
switch ( info.getState() ) {
case AUTHENTICATED, AUTH_FAILED:
break;
case AUTH_WAITING_USERNAME:
getLogger().log(Level.INFO, "Auth Waiting for Player " + event.getPlayer().getName());
allInfos.get(uuid).setUsername(message.trim());
getLogger().log(Level.INFO, "Got Username '" + message.trim() + "'");
event.setCancelled(true);
event.getRecipients().clear();
// Send the title text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
Component.text("§cPasswort"));
// Send the subtitle text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
Component.text("§eBitte gib das Password deines FET Accounts ein!"));
break;
case AUTH_WAITING_PASSWORD:
LdapUser user = checkLdap(info.getUsername(), message.trim());
event.setCancelled(true);
event.getRecipients().clear();
if(user != null) {
allInfos.remove(uuid);
this.db.addPlayer(uuid.toString(), event.getPlayer().getName(), user);
Bukkit.getScheduler().runTask(this, () -> {
event.getPlayer().sendMessage(
"Der Account " + event.getPlayer().getName() + " wurde erfolgreich mit dem FET Account " + user.ldapName + " verbunden!\r\n" +
"Danke " + user.firstName + " " + user.lastName + " das du dich für den FET Server angemeldet hast! Ab jetzt kannst du so spielen wie du es gewohnt bist!");
event.getPlayer().setGameMode(GameMode.SURVIVAL);
event.getPlayer().setHealth(20);
event.getPlayer().setFoodLevel(20);
event.getPlayer().setAllowFlight(false);
event.getPlayer().resetTitle();
});
} else {
event.getPlayer().sendMessage("That did not work, please try again!\nPlease enter your Username");
// Send the title text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
Component.text("§cBenutzername"));
// Send the subtitle text
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
Component.text("§eBitte gib den Benutzernamen deines FET Accounts ein!"));
allInfos.get(uuid).reset();
}
break;
}
return;
}
private LdapUser checkLdap(String username, String password) {
getLogger().log(Level.INFO, "Checking LDAP for user " + username);
return Ldap.authenticate(username, password);
//return true;
}
}