init commit
This commit is contained in:
32
src/main/java/de/sebastianvonhelmersen/AuthInfos.java
Normal file
32
src/main/java/de/sebastianvonhelmersen/AuthInfos.java
Normal file
@@ -0,0 +1,32 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
import java.util.UUID;
|
||||
|
||||
public class AuthInfos {
|
||||
private UUID uuid;
|
||||
private AuthState state;
|
||||
private String username = null;
|
||||
private Database db;
|
||||
|
||||
public AuthInfos(Database db, UUID uuid) {
|
||||
this.uuid = uuid;
|
||||
assert db != null;
|
||||
this.db = db;
|
||||
this.state = checkState();
|
||||
}
|
||||
|
||||
/**
|
||||
* Checks the authstate in the Database
|
||||
* @return The determined AuthState
|
||||
*/
|
||||
private AuthState checkState() {
|
||||
return db.isAuthenticated(this.uuid.toString()) ? AuthState.AUTHENTICATED : AuthState.AUTH_WAITING_USERNAME;
|
||||
}
|
||||
public void setUsername(String username) {
|
||||
this.username = username;
|
||||
this.state = AuthState.AUTH_WAITING_PASSWORD;
|
||||
}
|
||||
public AuthState getState() { return this.state; }
|
||||
public String getUsername() { return this.username; }
|
||||
public void reset() { this.state = AuthState.AUTH_WAITING_USERNAME; }
|
||||
}
|
||||
8
src/main/java/de/sebastianvonhelmersen/AuthState.java
Normal file
8
src/main/java/de/sebastianvonhelmersen/AuthState.java
Normal file
@@ -0,0 +1,8 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
public enum AuthState {
|
||||
AUTHENTICATED,
|
||||
AUTH_FAILED,
|
||||
AUTH_WAITING_USERNAME,
|
||||
AUTH_WAITING_PASSWORD
|
||||
}
|
||||
64
src/main/java/de/sebastianvonhelmersen/Database.java
Normal file
64
src/main/java/de/sebastianvonhelmersen/Database.java
Normal file
@@ -0,0 +1,64 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
import java.io.File;
|
||||
import java.sql.*;
|
||||
|
||||
public class Database {
|
||||
private Statement statement;
|
||||
public Database(File dbFile) {
|
||||
try
|
||||
{
|
||||
String path = "jdbc:sqlite:" + dbFile.getAbsolutePath();
|
||||
// create a database connection
|
||||
Connection connection = DriverManager.getConnection(path);
|
||||
Statement statement = connection.createStatement();
|
||||
this.statement = statement;
|
||||
|
||||
statement.setQueryTimeout(30); // set timeout to 30 sec.
|
||||
|
||||
statement.executeUpdate(
|
||||
"CREATE TABLE IF NOT EXISTS players (" +
|
||||
"uuid VARCHAR(36) PRIMARY KEY, " +
|
||||
"uid VARCHAR(50), " +
|
||||
"mcusername VARCHAR(50), " +
|
||||
"ladp_username VARCHAR(50), " +
|
||||
"firstName VARCHAR(50), " +
|
||||
"lastName VARCHAR(50)," +
|
||||
"mail VARCHAR(320))"
|
||||
);
|
||||
}
|
||||
catch(SQLException e)
|
||||
{
|
||||
// if the error message is "out of memory",
|
||||
// it probably means no database file is found
|
||||
e.printStackTrace(System.err);
|
||||
}
|
||||
}
|
||||
|
||||
public boolean isAuthenticated(String uuid) {
|
||||
String query = "select * from players where uuid = ?";
|
||||
try(PreparedStatement prep_query = this.statement.getConnection().prepareStatement(query)){
|
||||
prep_query.setString(1, uuid);
|
||||
ResultSet rs = prep_query.executeQuery();
|
||||
return rs.next();
|
||||
} catch (SQLException e) {
|
||||
throw new RuntimeException(e);
|
||||
}
|
||||
}
|
||||
|
||||
public void addPlayer(String uuid, String mcusername, LdapUser user) {
|
||||
String query = "insert into players values (?, ?, ?, ?, ?, ?, ?)";
|
||||
try(PreparedStatement prep_query = this.statement.getConnection().prepareStatement(query)){
|
||||
prep_query.setString(1, uuid);
|
||||
prep_query.setString(2, String.valueOf(user.uid));
|
||||
prep_query.setString(3, mcusername);
|
||||
prep_query.setString(4, user.ldapName);
|
||||
prep_query.setString(5, user.firstName);
|
||||
prep_query.setString(6, user.lastName);
|
||||
prep_query.setString(7, user.email);
|
||||
prep_query.executeUpdate();
|
||||
} catch ( SQLException e ) {
|
||||
throw new RuntimeException(e);
|
||||
}
|
||||
}
|
||||
}
|
||||
102
src/main/java/de/sebastianvonhelmersen/Ldap.java
Normal file
102
src/main/java/de/sebastianvonhelmersen/Ldap.java
Normal file
@@ -0,0 +1,102 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
import javax.naming.Context;
|
||||
import javax.naming.NamingEnumeration;
|
||||
import javax.naming.directory.*;
|
||||
import java.util.Hashtable;
|
||||
|
||||
public class Ldap {
|
||||
|
||||
/*
|
||||
private static final String LDAP_URL = "ldap://192.168.1.11:389";
|
||||
private static final String BASE_DN = "dc=authentik,dc=vonhelmersen,dc=online";
|
||||
private static final String ADMIN_DN = "cn=akadmin,ou=users,dc=authentik,dc=vonhelmersen,dc=online"; // service account
|
||||
private static final String ADMIN_PASSWORD = "cuwgoH-9biqto-xiddin";
|
||||
*/
|
||||
|
||||
private static final String LDAP_URL = "ldap://juri:389";
|
||||
private static final String BASE_DN = "dc=fet,dc=htu,dc=tuwien,dc=ac,dc=at";
|
||||
private static final String ADMIN_DN = "cn=admin,dc=fet,dc=htu,dc=tuwien,dc=ac,dc=at"; // service account
|
||||
public static LdapUser authenticate(String username, String password) {
|
||||
|
||||
try {
|
||||
// 1. Bind as admin/service account
|
||||
Hashtable<String, String> env = new Hashtable<>();
|
||||
env.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
|
||||
env.put(Context.PROVIDER_URL, LDAP_URL);
|
||||
env.put(Context.SECURITY_AUTHENTICATION, "simple");
|
||||
env.put(Context.SECURITY_PRINCIPAL, ADMIN_DN);
|
||||
env.put(Context.SECURITY_CREDENTIALS, ADMIN_PASSWORD);
|
||||
|
||||
DirContext ctx = new InitialDirContext(env);
|
||||
|
||||
// 2. Search for user DN
|
||||
String filter = "(uid=" + escapeLDAPSearchFilter(username) + ")";
|
||||
SearchControls controls = new SearchControls();
|
||||
controls.setSearchScope(SearchControls.SUBTREE_SCOPE);
|
||||
NamingEnumeration<SearchResult> results = ctx.search(BASE_DN, filter, controls);
|
||||
|
||||
if (!results.hasMore()) {
|
||||
ctx.close();
|
||||
return null; // user not found
|
||||
}
|
||||
|
||||
/*
|
||||
{
|
||||
givenname=givenName: Sebastian,
|
||||
sn=sn: Helmersen,
|
||||
userpassword=userPassword: [B@2b6cb5b5,
|
||||
loginshell=loginShell: /bin/bash,
|
||||
gidnumber=gidNumber: 2000,
|
||||
uidnumber=uidNumber: 1196,
|
||||
mail=mail: helmi@fet.at,
|
||||
objectclass=objectClass: posixAccount,
|
||||
inetOrgPerson,
|
||||
organizationalPerson,
|
||||
person,
|
||||
uid=uid: helmi,
|
||||
cn=cn: Sebastian Helmersen,
|
||||
homedirectory=homeDirectory: /home/helmi
|
||||
}
|
||||
*/
|
||||
// System.out.println("Results: " + results.toString());
|
||||
|
||||
|
||||
SearchResult result = results.next();
|
||||
String userDN = result.getNameInNamespace();
|
||||
ctx.close();
|
||||
|
||||
// 3. Try binding with userDN + password
|
||||
Hashtable<String, String> authEnv = new Hashtable<>();
|
||||
authEnv.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
|
||||
authEnv.put(Context.PROVIDER_URL, LDAP_URL);
|
||||
authEnv.put(Context.SECURITY_AUTHENTICATION, "simple");
|
||||
authEnv.put(Context.SECURITY_PRINCIPAL, userDN);
|
||||
authEnv.put(Context.SECURITY_CREDENTIALS, password);
|
||||
|
||||
new InitialDirContext(authEnv).close(); // bind attempt
|
||||
|
||||
return new LdapUser(result.getAttributes()); // success
|
||||
|
||||
} catch (Exception e) {
|
||||
e.printStackTrace();
|
||||
return null; // failed (invalid credentials or LDAP error)
|
||||
}
|
||||
}
|
||||
|
||||
public static String escapeLDAPSearchFilter(String input) {
|
||||
StringBuilder sb = new StringBuilder();
|
||||
for (int i = 0; i < input.length(); i++) {
|
||||
char c = input.charAt(i);
|
||||
switch (c) {
|
||||
case '\\': sb.append("\\5c"); break;
|
||||
case '*': sb.append("\\2a"); break;
|
||||
case '(': sb.append("\\28"); break;
|
||||
case ')': sb.append("\\29"); break;
|
||||
case '\u0000': sb.append("\\00"); break;
|
||||
default: sb.append(c);
|
||||
}
|
||||
}
|
||||
return sb.toString();
|
||||
}
|
||||
}
|
||||
32
src/main/java/de/sebastianvonhelmersen/LdapUser.java
Normal file
32
src/main/java/de/sebastianvonhelmersen/LdapUser.java
Normal file
@@ -0,0 +1,32 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
import javax.naming.directory.Attribute;
|
||||
import javax.naming.directory.Attributes;
|
||||
import java.util.regex.Matcher;
|
||||
import java.util.regex.Pattern;
|
||||
|
||||
public class LdapUser {
|
||||
public String firstName;
|
||||
public String lastName;
|
||||
public String email;
|
||||
public int uid;
|
||||
public int gid;
|
||||
public String ldapName;
|
||||
|
||||
public LdapUser(Attributes attributes) {
|
||||
firstName = trimAttribute(attributes.get("givenname"));
|
||||
lastName = trimAttribute(attributes.get("sn"));
|
||||
email = trimAttribute(attributes.get("mail"));
|
||||
uid = Integer.parseInt(trimAttribute(attributes.get("uidnumber")));
|
||||
gid = Integer.parseInt(trimAttribute(attributes.get("gidnumber")));
|
||||
ldapName = trimAttribute(attributes.get("uid"));
|
||||
}
|
||||
|
||||
private String trimAttribute(Attribute raw) {
|
||||
Pattern pattern = Pattern.compile("^[^:]+:\\s*(.+)$");
|
||||
Matcher matcher = pattern.matcher(raw.toString());
|
||||
if (!matcher.find()) return "";
|
||||
|
||||
return matcher.group(1).trim();
|
||||
}
|
||||
}
|
||||
187
src/main/java/de/sebastianvonhelmersen/fetmcplugin.java
Normal file
187
src/main/java/de/sebastianvonhelmersen/fetmcplugin.java
Normal file
@@ -0,0 +1,187 @@
|
||||
package de.sebastianvonhelmersen;
|
||||
|
||||
import net.kyori.adventure.text.Component;
|
||||
import org.bukkit.Bukkit;
|
||||
import org.bukkit.GameMode;
|
||||
import org.bukkit.entity.Player;
|
||||
import org.bukkit.event.EventHandler;
|
||||
import org.bukkit.event.Listener;
|
||||
import org.bukkit.event.block.BlockPlaceEvent;
|
||||
import org.bukkit.event.entity.EntityDamageEvent;
|
||||
import org.bukkit.event.entity.EntityTargetLivingEntityEvent;
|
||||
import org.bukkit.event.player.AsyncPlayerChatEvent;
|
||||
import org.bukkit.event.player.PlayerJoinEvent;
|
||||
import org.bukkit.event.player.PlayerMoveEvent;
|
||||
import org.bukkit.plugin.java.JavaPlugin;
|
||||
|
||||
import java.io.File;
|
||||
import java.util.HashMap;
|
||||
import java.util.Map;
|
||||
import java.util.UUID;
|
||||
import java.util.logging.Level;
|
||||
|
||||
public class fetmcplugin extends JavaPlugin implements Listener {
|
||||
private Database db;
|
||||
private Map<UUID, AuthInfos> allInfos = HashMap.newHashMap(0);
|
||||
|
||||
@Override
|
||||
public void onEnable() {
|
||||
// Make sure the plugin's data folder exists
|
||||
File dataFolder = this.getDataFolder();
|
||||
|
||||
if (!dataFolder.exists()) {
|
||||
dataFolder.mkdirs();
|
||||
}
|
||||
|
||||
// Define the actual SQLite database file
|
||||
File dbFile = new File(dataFolder, "auth.db");
|
||||
|
||||
Bukkit.getPluginManager().registerEvents(this, this);
|
||||
this.db = new Database(dbFile);
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onPlayerJoin(PlayerJoinEvent event) {
|
||||
UUID uuid = event.getPlayer().getUniqueId();
|
||||
AuthInfos authInfos = new AuthInfos(db, uuid);
|
||||
getLogger().log(Level.INFO,"Detected new Player with Auth State " + authInfos.getState().toString());
|
||||
|
||||
if( authInfos.getState() == AuthState.AUTHENTICATED ) {
|
||||
return;
|
||||
}
|
||||
|
||||
allInfos.put(uuid, authInfos);
|
||||
String greeting = "Hallo, " + event.getPlayer().getName() +"! Willkommen auf dem MC Server der FET!\nBitte registriere dich mit deinen Anmeldedaten um zu beginnen!";
|
||||
// Set timings: fadeIn = 0, stay = very long, fadeOut = 0
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TIMES,
|
||||
net.kyori.adventure.title.Title.Times.times(
|
||||
java.time.Duration.ZERO,
|
||||
java.time.Duration.ofSeconds(9999), // basically "forever"
|
||||
java.time.Duration.ZERO
|
||||
)
|
||||
);
|
||||
|
||||
// Send the title text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
|
||||
Component.text("§cBenutzername"));
|
||||
|
||||
// Send the subtitle text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
|
||||
Component.text("§eBitte gib den Benutzernamen deines FET Accounts ein!"));
|
||||
|
||||
event.getPlayer().sendMessage(greeting);
|
||||
event.getPlayer().setGameMode(GameMode.ADVENTURE);
|
||||
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onPlayerMove(PlayerMoveEvent event) {
|
||||
UUID uuid = event.getPlayer().getUniqueId();
|
||||
event.getPlayer().setAllowFlight(true);
|
||||
|
||||
if ( allInfos.containsKey(uuid) ) {
|
||||
event.setCancelled(true);
|
||||
return;
|
||||
}
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onPlayerDamage(EntityDamageEvent event) {
|
||||
if ( event.getEntity() instanceof Player) {
|
||||
UUID uuid = event.getEntity().getUniqueId();
|
||||
if ( allInfos.containsKey(uuid) ) {
|
||||
event.setCancelled(true);
|
||||
return;
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onBlockPlace(BlockPlaceEvent event) {
|
||||
UUID uuid = event.getPlayer().getUniqueId();
|
||||
if ( allInfos.containsKey(uuid) ) {
|
||||
event.setCancelled(true);
|
||||
return;
|
||||
}
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onEntityTarget(EntityTargetLivingEntityEvent event) {
|
||||
if (event.getTarget() instanceof Player) {
|
||||
UUID uuid = event.getTarget().getUniqueId();
|
||||
if ( allInfos.containsKey(uuid) ) {
|
||||
event.setCancelled(true);
|
||||
return;
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
@EventHandler
|
||||
public void onChat(AsyncPlayerChatEvent event) {
|
||||
UUID uuid = event.getPlayer().getUniqueId();
|
||||
|
||||
if (!allInfos.containsKey(uuid)) {
|
||||
return;
|
||||
}
|
||||
|
||||
AuthInfos info = allInfos.get(uuid);
|
||||
String message = event.getMessage();
|
||||
|
||||
switch ( info.getState() ) {
|
||||
case AUTHENTICATED, AUTH_FAILED:
|
||||
break;
|
||||
case AUTH_WAITING_USERNAME:
|
||||
getLogger().log(Level.INFO, "Auth Waiting for Player " + event.getPlayer().getName());
|
||||
allInfos.get(uuid).setUsername(message.trim());
|
||||
getLogger().log(Level.INFO, "Got Username '" + message.trim() + "'");
|
||||
event.setCancelled(true);
|
||||
event.getRecipients().clear();
|
||||
// Send the title text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
|
||||
Component.text("§cPasswort"));
|
||||
|
||||
// Send the subtitle text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
|
||||
Component.text("§eBitte gib das Password deines FET Accounts ein!"));
|
||||
break;
|
||||
case AUTH_WAITING_PASSWORD:
|
||||
LdapUser user = checkLdap(info.getUsername(), message.trim());
|
||||
event.setCancelled(true);
|
||||
event.getRecipients().clear();
|
||||
if(user != null) {
|
||||
allInfos.remove(uuid);
|
||||
this.db.addPlayer(uuid.toString(), event.getPlayer().getName(), user);
|
||||
Bukkit.getScheduler().runTask(this, () -> {
|
||||
event.getPlayer().sendMessage(
|
||||
"Der Account " + event.getPlayer().getName() + " wurde erfolgreich mit dem FET Account " + user.ldapName + " verbunden!\r\n" +
|
||||
"Danke " + user.firstName + " " + user.lastName + " das du dich für den FET Server angemeldet hast! Ab jetzt kannst du so spielen wie du es gewohnt bist!");
|
||||
event.getPlayer().setGameMode(GameMode.SURVIVAL);
|
||||
event.getPlayer().setHealth(20);
|
||||
event.getPlayer().setFoodLevel(20);
|
||||
event.getPlayer().setAllowFlight(false);
|
||||
event.getPlayer().resetTitle();
|
||||
});
|
||||
} else {
|
||||
event.getPlayer().sendMessage("That did not work, please try again!\nPlease enter your Username");
|
||||
// Send the title text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.TITLE,
|
||||
Component.text("§cBenutzername"));
|
||||
|
||||
// Send the subtitle text
|
||||
event.getPlayer().sendTitlePart(net.kyori.adventure.title.TitlePart.SUBTITLE,
|
||||
Component.text("§eBitte gib den Benutzernamen deines FET Accounts ein!"));
|
||||
allInfos.get(uuid).reset();
|
||||
}
|
||||
break;
|
||||
}
|
||||
return;
|
||||
|
||||
}
|
||||
|
||||
private LdapUser checkLdap(String username, String password) {
|
||||
getLogger().log(Level.INFO, "Checking LDAP for user " + username);
|
||||
return Ldap.authenticate(username, password);
|
||||
//return true;
|
||||
}
|
||||
|
||||
}
|
||||
Reference in New Issue
Block a user