| 1 | <?php |
| 2 | |
| 3 | /** |
| 4 | * SquirrelMail configtest script |
| 5 | * |
| 6 | * @copyright © 2003-2006 The SquirrelMail Project Team |
| 7 | * @license http://opensource.org/licenses/gpl-license.php GNU Public License |
| 8 | * @version $Id$ |
| 9 | * @package squirrelmail |
| 10 | * @subpackage config |
| 11 | */ |
| 12 | |
| 13 | /************************************************************ |
| 14 | * NOTE: you do not need to change this script! * |
| 15 | * If it throws errors you need to adjust your config. * |
| 16 | ************************************************************/ |
| 17 | |
| 18 | // This script could really use some restructuring as it has grown quite rapidly |
| 19 | // but is not very 'clean'. Feel free to get some structure into this thing. |
| 20 | |
| 21 | /** force verbose error reporting and turn on display of errors */ |
| 22 | error_reporting(E_ALL); |
| 23 | ini_set('display_errors',1); |
| 24 | |
| 25 | /** Blockcopy from init.php. Cleans globals. */ |
| 26 | if ((bool) ini_get('register_globals') && |
| 27 | strtolower(ini_get('register_globals'))!='off') { |
| 28 | /** |
| 29 | * Remove all globals that are not reserved by PHP |
| 30 | * 'value' and 'key' are used by foreach. Don't unset them inside foreach. |
| 31 | */ |
| 32 | foreach ($GLOBALS as $key => $value) { |
| 33 | switch($key) { |
| 34 | case 'HTTP_POST_VARS': |
| 35 | case '_POST': |
| 36 | case 'HTTP_GET_VARS': |
| 37 | case '_GET': |
| 38 | case 'HTTP_COOKIE_VARS': |
| 39 | case '_COOKIE': |
| 40 | case 'HTTP_SERVER_VARS': |
| 41 | case '_SERVER': |
| 42 | case 'HTTP_ENV_VARS': |
| 43 | case '_ENV': |
| 44 | case 'HTTP_POST_FILES': |
| 45 | case '_FILES': |
| 46 | case '_REQUEST': |
| 47 | case 'HTTP_SESSION_VARS': |
| 48 | case '_SESSION': |
| 49 | case 'GLOBALS': |
| 50 | case 'key': |
| 51 | case 'value': |
| 52 | break; |
| 53 | default: |
| 54 | unset($GLOBALS[$key]); |
| 55 | } |
| 56 | } |
| 57 | // Unset variables used in foreach |
| 58 | unset($GLOBALS['key']); |
| 59 | unset($GLOBALS['value']); |
| 60 | } |
| 61 | |
| 62 | |
| 63 | /** |
| 64 | * Displays error messages and warnings |
| 65 | * @param string $str message |
| 66 | * @param boolean $fatal fatal error or only warning |
| 67 | */ |
| 68 | function do_err($str, $fatal = TRUE) { |
| 69 | global $IND, $warnings; |
| 70 | $level = $fatal ? 'FATAL ERROR:' : 'WARNING:'; |
| 71 | echo '<p>'.$IND.'<font color="red"><b>' . $level . '</b></font> ' .$str. "</p>\n"; |
| 72 | if($fatal) { |
| 73 | echo '</body></html>'; |
| 74 | exit; |
| 75 | } else { |
| 76 | $warnings++; |
| 77 | } |
| 78 | } |
| 79 | |
| 80 | ob_implicit_flush(); |
| 81 | /** @ignore */ |
| 82 | define('SM_PATH', '../'); |
| 83 | /** load minimal function set */ |
| 84 | require(SM_PATH . 'functions/global.php'); |
| 85 | require(SM_PATH . 'functions/strings.php'); |
| 86 | |
| 87 | /** set default value in order to block remote access */ |
| 88 | $allow_remote_configtest=false; |
| 89 | |
| 90 | /** Load all configuration files before output begins */ |
| 91 | |
| 92 | /* load default configuration */ |
| 93 | require(SM_PATH . 'config/config_default.php'); |
| 94 | /* reset arrays in default configuration */ |
| 95 | $ldap_server = array(); |
| 96 | $plugins = array(); |
| 97 | $fontsets = array(); |
| 98 | $theme = array(); |
| 99 | $theme[0]['PATH'] = SM_PATH . 'themes/default_theme.php'; |
| 100 | $theme[0]['NAME'] = 'Default'; |
| 101 | $aTemplateSet = array(); |
| 102 | $aTemplateSet[0]['ID'] = 'default'; |
| 103 | $aTemplateSet[0]['NAME'] = 'Default'; |
| 104 | /* load site configuration */ |
| 105 | if (file_exists(SM_PATH . 'config/config.php')) { |
| 106 | require(SM_PATH . 'config/config.php'); |
| 107 | } |
| 108 | /* load local configuration overrides */ |
| 109 | if (file_exists(SM_PATH . 'config/config_local.php')) { |
| 110 | require(SM_PATH . 'config/config_local.php'); |
| 111 | } |
| 112 | |
| 113 | /** Warning counter */ |
| 114 | $warnings = 0; |
| 115 | |
| 116 | /** indent */ |
| 117 | $IND = str_repeat(' ',4); |
| 118 | |
| 119 | /** |
| 120 | * get_location starts session and must be run before output is started. |
| 121 | */ |
| 122 | $test_location = get_location(); |
| 123 | |
| 124 | ?><!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" |
| 125 | "http://www.w3.org/TR/1999/REC-html401-19991224/loose.dtd"> |
| 126 | <html> |
| 127 | <head> |
| 128 | <meta name="robots" content="noindex,nofollow"> |
| 129 | <title>SquirrelMail configtest</title> |
| 130 | </head> |
| 131 | <body> |
| 132 | <h1>SquirrelMail configtest</h1> |
| 133 | |
| 134 | <p>This script will try to check some aspects of your SquirrelMail configuration |
| 135 | and point you to errors whereever it can find them. You need to go run <tt>conf.pl</tt> |
| 136 | in the <tt>config/</tt> directory first before you run this script.</p> |
| 137 | |
| 138 | <?php |
| 139 | |
| 140 | $included = array_map('basename', get_included_files() ); |
| 141 | if(!in_array('config.php', $included)) { |
| 142 | if(!file_exists(SM_PATH . 'config/config.php')) { |
| 143 | do_err('Config file '.SM_PATH . 'config/config.php does not exist!<br />'. |
| 144 | 'You need to run <tt>conf.pl</tt> first.'); |
| 145 | } |
| 146 | do_err('Could not read '.SM_PATH.'config/config.php! Check file permissions.'); |
| 147 | } |
| 148 | if(!in_array('strings.php', $included)) { |
| 149 | do_err('Could not include '.SM_PATH.'functions/strings.php!<br />'. |
| 150 | 'Check permissions on that file.'); |
| 151 | } |
| 152 | |
| 153 | /* Block remote use of script */ |
| 154 | if (! $allow_remote_configtest) { |
| 155 | sqGetGlobalVar('REMOTE_ADDR',$client_ip,SQ_SERVER); |
| 156 | sqGetGlobalVar('SERVER_ADDR',$server_ip,SQ_SERVER); |
| 157 | |
| 158 | if ((! isset($client_ip) || $client_ip!='127.0.0.1') && |
| 159 | (! isset($client_ip) || ! isset($server_ip) || $client_ip!=$server_ip)) { |
| 160 | do_err('Enable "Allow remote configtest" option in squirrelmail configuration in order to use this script.'); |
| 161 | } |
| 162 | } |
| 163 | /* checking PHP specs */ |
| 164 | |
| 165 | echo "<p><table>\n<tr><td>SquirrelMail version:</td><td><b>" . $version . "</b></td></tr>\n" . |
| 166 | '<tr><td>Config file version:</td><td><b>' . $config_version . "</b></td></tr>\n" . |
| 167 | '<tr><td>Config file last modified:</td><td><b>' . |
| 168 | date ('d F Y H:i:s', filemtime(SM_PATH . 'config/config.php')) . |
| 169 | "</b></td></tr>\n</table>\n</p>\n\n"; |
| 170 | |
| 171 | /* check $config_version */ |
| 172 | if ($config_version!='1.5.0') { |
| 173 | do_err('Configuration file version does not match required version. Please update your configuration file.'); |
| 174 | } |
| 175 | |
| 176 | echo "Checking PHP configuration...<br />\n"; |
| 177 | |
| 178 | if(!check_php_version(4,1,0)) { |
| 179 | do_err('Insufficient PHP version: '. PHP_VERSION . '! Minimum required: 4.1.0'); |
| 180 | } |
| 181 | |
| 182 | echo $IND . 'PHP version ' . PHP_VERSION . ' OK. (You have: ' . phpversion() . ". Minimum: 4.1.0)<br />\n"; |
| 183 | /* test for boolean false and any string that is not equal to 'off' */ |
| 184 | if ((bool) ini_get('register_globals') && |
| 185 | strtolower(ini_get('register_globals'))!='off') { |
| 186 | do_err('You have register_globals turned on. This is not an error, but it CAN be a security hazard. Consider turning register_globals off.', false); |
| 187 | } |
| 188 | $php_exts = array('session','pcre'); |
| 189 | $diff = array_diff($php_exts, get_loaded_extensions()); |
| 190 | if(count($diff)) { |
| 191 | do_err('Required PHP extensions missing: '.implode(', ',$diff) ); |
| 192 | } |
| 193 | |
| 194 | echo $IND . "PHP extensions OK.<br />\n"; |
| 195 | |
| 196 | /* dangerous php settings */ |
| 197 | /** |
| 198 | * mbstring.func_overload allows to replace original string and regexp functions |
| 199 | * with their equivalents from php mbstring extension. It causes problems when |
| 200 | * scripts analyze 8bit strings byte after byte or use 8bit strings in regexp tests. |
| 201 | * Setting can be controlled in php.ini (php 4.2.0), webserver config (php 4.2.0) |
| 202 | * and .htaccess files (php 4.3.5). |
| 203 | */ |
| 204 | if (function_exists('mb_internal_encoding') && |
| 205 | check_php_version(4,2,0) && |
| 206 | (int)ini_get('mbstring.func_overload')!=0) { |
| 207 | $mb_error='You have enabled mbstring overloading.' |
| 208 | .' It can cause problems with SquirrelMail scripts that rely on single byte string functions.'; |
| 209 | do_err($mb_error); |
| 210 | } |
| 211 | |
| 212 | /* checking paths */ |
| 213 | |
| 214 | echo "Checking paths...<br />\n"; |
| 215 | |
| 216 | if(!file_exists($data_dir)) { |
| 217 | // data_dir is not that important in db_setups. |
| 218 | if (isset($prefs_dsn) && ! empty($prefs_dsn)) { |
| 219 | $data_dir_error = "Data dir ($data_dir) does not exist!\n"; |
| 220 | echo $IND .'<font color="red"><b>ERROR:</b></font> ' . $data_dir_error; |
| 221 | } else { |
| 222 | do_err("Data dir ($data_dir) does not exist!"); |
| 223 | } |
| 224 | } |
| 225 | // don't check if errors |
| 226 | if(!isset($data_dir_error) && !is_dir($data_dir)) { |
| 227 | if (isset($prefs_dsn) && ! empty($prefs_dsn)) { |
| 228 | $data_dir_error = "Data dir ($data_dir) is not a directory!\n"; |
| 229 | echo $IND . '<font color="red"><b>ERROR:</b></font> ' . $data_dir_error; |
| 230 | } else { |
| 231 | do_err("Data dir ($data_dir) is not a directory!"); |
| 232 | } |
| 233 | } |
| 234 | // datadir should be executable - but no clean way to test on that |
| 235 | if(!isset($data_dir_error) && !is_writable($data_dir)) { |
| 236 | if (isset($prefs_dsn) && ! empty($prefs_dsn)) { |
| 237 | $data_dir_error = "Data dir ($data_dir) is not writable!\n"; |
| 238 | echo $IND . '<font color="red"><b>ERROR:</b></font> ' . $data_dir_error; |
| 239 | } else { |
| 240 | do_err("Data dir ($data_dir) is not writable!"); |
| 241 | } |
| 242 | } |
| 243 | |
| 244 | if (isset($data_dir_error)) { |
| 245 | echo " Some plugins might need access to data directory.<br />\n"; |
| 246 | } else { |
| 247 | // todo_ornot: actually write something and read it back. |
| 248 | echo $IND . "Data dir OK.<br />\n"; |
| 249 | } |
| 250 | |
| 251 | if($data_dir == $attachment_dir) { |
| 252 | echo $IND . "Attachment dir is the same as data dir.<br />\n"; |
| 253 | if (isset($data_dir_error)) { |
| 254 | do_err($data_dir_error); |
| 255 | } |
| 256 | } else { |
| 257 | if(!file_exists($attachment_dir)) { |
| 258 | do_err("Attachment dir ($attachment_dir) does not exist!"); |
| 259 | } |
| 260 | if (!is_dir($attachment_dir)) { |
| 261 | do_err("Attachment dir ($attachment_dir) is not a directory!"); |
| 262 | } |
| 263 | if (!is_writable($attachment_dir)) { |
| 264 | do_err("I cannot write to attachment dir ($attachment_dir)!"); |
| 265 | } |
| 266 | echo $IND . "Attachment dir OK.<br />\n"; |
| 267 | } |
| 268 | |
| 269 | |
| 270 | /* check plugins and themes */ |
| 271 | //FIXME: check requirements given in plugin _info() function, such |
| 272 | // as required PHP extensions, Pear packages, other plugins, SM version, etc |
| 273 | // see development docs for list of returned info from that function |
| 274 | $bad_plugins = array( |
| 275 | 'attachment_common', // Integrated into SquirrelMail 1.2 core |
| 276 | 'auto_prune_sent', // Obsolete: See Proon Automatic Folder Pruning plugin |
| 277 | 'compose_new_window', // Integrated into SquirrelMail 1.4 core |
| 278 | 'delete_move_next', // Integrated into SquirrelMail 1.5 core |
| 279 | 'disk_quota', // Obsolete: See Check Quota plugin |
| 280 | 'email_priority', // Integrated into SquirrelMail 1.2 core |
| 281 | 'emoticons', // Obsolete: See HTML Mail plugin |
| 282 | 'focus_change', // Integrated into SquirrelMail 1.2 core |
| 283 | 'folder_settings', // Integrated into SquirrelMail 1.5.1 core |
| 284 | 'global_sql_addressbook', // Integrated into SquirrelMail 1.4 core |
| 285 | 'hancock', // Not Working: See Random Signature Taglines plugin |
| 286 | 'msg_flags', // Integrated into SquirrelMail 1.5.1 core |
| 287 | 'message_source', // Added to SquirrelMail 1.4 Core Plugins (message_details) |
| 288 | 'motd', // Integrated into SquirrelMail 1.2 core |
| 289 | 'paginator', // Integrated into SquirrelMail 1.2 core |
| 290 | 'printer_friendly', // Integrated into SquirrelMail 1.2 core |
| 291 | 'procfilter', // Obsolete: See Server Side Filter plugin |
| 292 | 'redhat_php_cgi_fix', // Integrated into SquirrelMail 1.1.1 core |
| 293 | 'send_to_semicolon', // Integrated into SquirrelMail 1.4.1 core |
| 294 | 'spamassassin', // Not working beyond SquirrelMail 1.2.7: See Spamassassin SpamFilter (Frontend) v2 plugin |
| 295 | 'sqcalendar', // Added to SquirrelMail 1.2 Core Plugins (calendar) |
| 296 | 'sqclock', // Integrated into SquirrelMail 1.2 core |
| 297 | 'sql_squirrel_logger', // Obsolete: See Squirrel Logger plugin |
| 298 | 'tmda', // Obsolete: See TMDA Tools plugin |
| 299 | 'vacation', // Obsolete: See Vacation Local plugin |
| 300 | 'view_as_html', // Integrated into SquirrelMail 1.5.1 core |
| 301 | 'xmailer' // Integrated into SquirrelMail 1.2 core |
| 302 | ); |
| 303 | |
| 304 | if (isset($plugins[0])) { |
| 305 | foreach($plugins as $plugin) { |
| 306 | if(!file_exists(SM_PATH .'plugins/'.$plugin)) { |
| 307 | do_err('You have enabled the <i>'.$plugin.'</i> plugin, but I cannot find it.', FALSE); |
| 308 | } elseif (!is_readable(SM_PATH .'plugins/'.$plugin.'/setup.php')) { |
| 309 | do_err('You have enabled the <i>'.$plugin.'</i> plugin, but I cannot read its setup.php file.', FALSE); |
| 310 | } elseif (in_array($plugin, $bad_plugins)) { |
| 311 | do_err('You have enabled the <i>'.$plugin.'</i> plugin, which causes problems with this version of SquirrelMail. Please check the ReleaseNotes or other documentation for more information.', false); |
| 312 | } |
| 313 | } |
| 314 | // load plugin functions |
| 315 | include_once(SM_PATH . 'functions/plugin.php'); |
| 316 | // turn on output buffering in order to prevent output of new lines |
| 317 | ob_start(); |
| 318 | foreach ($plugins as $name) { |
| 319 | use_plugin($name); |
| 320 | } |
| 321 | // get output and remove whitespace |
| 322 | $output = trim(ob_get_contents()); |
| 323 | ob_end_clean(); |
| 324 | // if plugins output more than newlines and spacing, stop script execution. |
| 325 | if (!empty($output)) { |
| 326 | $plugin_load_error = 'Some output is produced when plugins are loaded.' |
| 327 | .' Usually it means error. Output said: '.htmlspecialchars($output); |
| 328 | do_err($plugin_load_error); |
| 329 | } |
| 330 | /** |
| 331 | * Hook is added in 1.5.2. Plugins should print error message and return true |
| 332 | * if there is an error in plugin. |
| 333 | */ |
| 334 | $plugin_err = boolean_hook_function('configtest'); |
| 335 | if($plugin_err) { |
| 336 | do_err('Some plugin tests failed.'); |
| 337 | } else { |
| 338 | echo $IND . "Plugins OK.<br />\n"; |
| 339 | } |
| 340 | } else { |
| 341 | echo $IND . "Plugins are not enabled in config.<br />\n"; |
| 342 | } |
| 343 | foreach($theme as $thm) { |
| 344 | if(!file_exists($thm['PATH'])) { |
| 345 | do_err('You have enabled the <i>'.$thm['NAME'].'</i> theme but I cannot find it ('.$thm['PATH'].').', FALSE); |
| 346 | } elseif(!is_readable($thm['PATH'])) { |
| 347 | do_err('You have enabled the <i>'.$thm['NAME'].'</i> theme but I cannot read it ('.$thm['PATH'].').', FALSE); |
| 348 | } |
| 349 | } |
| 350 | |
| 351 | echo $IND . "Themes OK.<br />\n"; |
| 352 | |
| 353 | if ( $squirrelmail_default_language != 'en_US' ) { |
| 354 | $loc_path = SM_PATH .'locale/'.$squirrelmail_default_language.'/LC_MESSAGES/squirrelmail.mo'; |
| 355 | if( ! file_exists( $loc_path ) ) { |
| 356 | do_err('You have set <i>' . $squirrelmail_default_language . |
| 357 | '</i> as your default language, but I cannot find this translation (should be '. |
| 358 | 'in <tt>' . $loc_path . '</tt>). Please note that you have to download translations '. |
| 359 | 'separately from the main SquirrelMail package.', FALSE); |
| 360 | } elseif ( ! is_readable( $loc_path ) ) { |
| 361 | do_err('You have set <i>' . $squirrelmail_default_language . |
| 362 | '</i> as your default language, but I cannot read this translation (file '. |
| 363 | 'in <tt>' . $loc_path . '</tt> unreadable).', FALSE); |
| 364 | } else { |
| 365 | echo $IND . "Default language OK.<br />\n"; |
| 366 | } |
| 367 | } else { |
| 368 | echo $IND . "Default language OK.<br />\n"; |
| 369 | } |
| 370 | |
| 371 | echo $IND . "Base URL detected as: <tt>" . htmlspecialchars($test_location) . |
| 372 | "</tt> (location base " . (empty($config_location_base) ? 'autodetected' : 'set to <tt>' . |
| 373 | htmlspecialchars($config_location_base)."</tt>") . ")<br />\n"; |
| 374 | |
| 375 | /* check minimal requirements for other security options */ |
| 376 | |
| 377 | /* imaps or ssmtp */ |
| 378 | if($use_smtp_tls == 1 || $use_imap_tls == 1) { |
| 379 | if(!check_php_version(4,3,0)) { |
| 380 | do_err('You need at least PHP 4.3.0 for SMTP/IMAP TLS!'); |
| 381 | } |
| 382 | if(!extension_loaded('openssl')) { |
| 383 | do_err('You need the openssl PHP extension to use SMTP/IMAP TLS!'); |
| 384 | } |
| 385 | } |
| 386 | /* starttls extensions */ |
| 387 | if($use_smtp_tls === 2 || $use_imap_tls === 2) { |
| 388 | if (! function_exists('stream_socket_enable_crypto')) { |
| 389 | do_err('If you want to use STARTTLS extension, you need stream_socket_enable_crypto() function from PHP 5.1.0 and newer.'); |
| 390 | } |
| 391 | } |
| 392 | /* digest-md5 */ |
| 393 | if ($smtp_auth_mech=='digest-md5' || $imap_auth_mech =='digest-md5') { |
| 394 | if (!extension_loaded('xml')) { |
| 395 | do_err('You need the PHP XML extension to use Digest-MD5 authentication!'); |
| 396 | } |
| 397 | } |
| 398 | |
| 399 | /* check outgoing mail */ |
| 400 | |
| 401 | echo "Checking outgoing mail service....<br />\n"; |
| 402 | |
| 403 | if($useSendmail) { |
| 404 | // is_executable also checks for existance, but we want to be as precise as possible with the errors |
| 405 | if(!file_exists($sendmail_path)) { |
| 406 | do_err("Location of sendmail program incorrect ($sendmail_path)!"); |
| 407 | } |
| 408 | if(!is_executable($sendmail_path)) { |
| 409 | do_err("I cannot execute the sendmail program ($sendmail_path)!"); |
| 410 | } |
| 411 | |
| 412 | echo $IND . "sendmail OK<br />\n"; |
| 413 | } else { |
| 414 | $stream = fsockopen( ($use_smtp_tls==1?'tls://':'').$smtpServerAddress, $smtpPort, |
| 415 | $errorNumber, $errorString); |
| 416 | if(!$stream) { |
| 417 | do_err("Error connecting to SMTP server \"$smtpServerAddress:$smtpPort\".". |
| 418 | "Server error: ($errorNumber) ".htmlspecialchars($errorString)); |
| 419 | } |
| 420 | |
| 421 | // check for SMTP code; should be 2xx to allow us access |
| 422 | $smtpline = fgets($stream, 1024); |
| 423 | if(((int) $smtpline{0}) > 3) { |
| 424 | do_err("Error connecting to SMTP server. Server error: ". |
| 425 | htmlspecialchars($smtpline)); |
| 426 | } |
| 427 | |
| 428 | /* smtp starttls checks */ |
| 429 | if ($use_smtp_tls===2) { |
| 430 | // if something breaks, script should close smtp connection on exit. |
| 431 | |
| 432 | // say helo |
| 433 | fwrite($stream,"EHLO $client_ip\r\n"); |
| 434 | |
| 435 | $ehlo=array(); |
| 436 | $ehlo_error = false; |
| 437 | while ($line=fgets($stream, 1024)){ |
| 438 | if (preg_match("/^250(-|\s)(\S*)\s+(\S.*)/",$line,$match)|| |
| 439 | preg_match("/^250(-|\s)(\S*)\s+/",$line,$match)) { |
| 440 | if (!isset($match[3])) { |
| 441 | // simple one word extension |
| 442 | $ehlo[strtoupper($match[2])]=''; |
| 443 | } else { |
| 444 | // ehlo-keyword + ehlo-param |
| 445 | $ehlo[strtoupper($match[2])]=trim($match[3]); |
| 446 | } |
| 447 | if ($match[1]==' ') { |
| 448 | $ret = $line; |
| 449 | break; |
| 450 | } |
| 451 | } else { |
| 452 | // |
| 453 | $ehlo_error = true; |
| 454 | $ehlo[]=$line; |
| 455 | break; |
| 456 | } |
| 457 | } |
| 458 | if ($ehlo_error) { |
| 459 | do_err('SMTP EHLO failed. You need ESMTP support for SMTP STARTTLS'); |
| 460 | } elseif (!array_key_exists('STARTTLS',$ehlo)) { |
| 461 | do_err('STARTTLS support is not declared by SMTP server.'); |
| 462 | } |
| 463 | |
| 464 | fwrite($stream,"STARTTLS\r\n"); |
| 465 | $starttls_response=fgets($stream, 1024); |
| 466 | if ($starttls_response[0]!=2) { |
| 467 | $starttls_cmd_err = 'SMTP STARTTLS failed. Server replied: ' |
| 468 | .htmlspecialchars($starttls_response); |
| 469 | do_err($starttls_cmd_err); |
| 470 | } elseif(! stream_socket_enable_crypto($stream,true,STREAM_CRYPTO_METHOD_TLS_CLIENT)) { |
| 471 | do_err('Failed to enable encryption on SMTP STARTTLS connection.'); |
| 472 | } else { |
| 473 | echo $IND . "SMTP STARTTLS extension looks OK.<br />\n"; |
| 474 | } |
| 475 | // According to RFC we should second ehlo call here. |
| 476 | } |
| 477 | |
| 478 | fputs($stream, 'QUIT'); |
| 479 | fclose($stream); |
| 480 | echo $IND . 'SMTP server OK (<tt><small>'. |
| 481 | trim(htmlspecialchars($smtpline))."</small></tt>)<br />\n"; |
| 482 | |
| 483 | /* POP before SMTP */ |
| 484 | if($pop_before_smtp) { |
| 485 | $stream = fsockopen($smtpServerAddress, 110, $err_no, $err_str); |
| 486 | if (!$stream) { |
| 487 | do_err("Error connecting to POP Server ($smtpServerAddress:110) " |
| 488 | . $err_no . ' : ' . htmlspecialchars($err_str)); |
| 489 | } |
| 490 | |
| 491 | $tmp = fgets($stream, 1024); |
| 492 | if (substr($tmp, 0, 3) != '+OK') { |
| 493 | do_err("Error connecting to POP Server ($smtpServerAddress:110)" |
| 494 | . ' '.htmlspecialchars($tmp)); |
| 495 | } |
| 496 | fputs($stream, 'QUIT'); |
| 497 | fclose($stream); |
| 498 | echo $IND . "POP-before-SMTP OK.<br />\n"; |
| 499 | } |
| 500 | } |
| 501 | |
| 502 | /** |
| 503 | * Check the IMAP server |
| 504 | */ |
| 505 | echo "Checking IMAP service....<br />\n"; |
| 506 | |
| 507 | /** Can we open a connection? */ |
| 508 | $stream = fsockopen( ($use_imap_tls==1?'tls://':'').$imapServerAddress, $imapPort, |
| 509 | $errorNumber, $errorString); |
| 510 | if(!$stream) { |
| 511 | do_err("Error connecting to IMAP server \"$imapServerAddress:$imapPort\".". |
| 512 | "Server error: ($errorNumber) ". |
| 513 | htmlspecialchars($errorString)); |
| 514 | } |
| 515 | |
| 516 | /** Is the first response 'OK'? */ |
| 517 | $imapline = fgets($stream, 1024); |
| 518 | if(substr($imapline, 0,4) != '* OK') { |
| 519 | do_err('Error connecting to IMAP server. Server error: '. |
| 520 | htmlspecialchars($imapline)); |
| 521 | } |
| 522 | |
| 523 | echo $IND . 'IMAP server ready (<tt><small>'. |
| 524 | htmlspecialchars(trim($imapline))."</small></tt>)<br />\n"; |
| 525 | |
| 526 | /** Check capabilities */ |
| 527 | fputs($stream, "A001 CAPABILITY\r\n"); |
| 528 | $capline = ''; |
| 529 | while ($line=fgets($stream, 1024)){ |
| 530 | if (preg_match("/A001.*/",$line)) { |
| 531 | break; |
| 532 | } else { |
| 533 | $capline.=$line; |
| 534 | } |
| 535 | } |
| 536 | |
| 537 | /* don't display capabilities before STARTTLS */ |
| 538 | if ($use_imap_tls===2 && stristr($capline, 'STARTTLS') === false) { |
| 539 | do_err('Your server doesn\'t support STARTTLS.'); |
| 540 | } elseif($use_imap_tls===2) { |
| 541 | /* try starting starttls */ |
| 542 | fwrite($stream,"A002 STARTTLS\r\n"); |
| 543 | $starttls_line=fgets($stream, 1024); |
| 544 | if (! preg_match("/^A002 OK.*/i",$starttls_line)) { |
| 545 | $imap_starttls_err = 'IMAP STARTTLS failed. Server replied: ' |
| 546 | .htmlspecialchars($starttls_line); |
| 547 | do_err($imap_starttls_err); |
| 548 | } elseif (! stream_socket_enable_crypto($stream,true,STREAM_CRYPTO_METHOD_TLS_CLIENT)) { |
| 549 | do_err('Failed to enable encryption on IMAP connection.'); |
| 550 | } else { |
| 551 | echo $IND . "IMAP STARTTLS extension looks OK.<br />\n"; |
| 552 | } |
| 553 | |
| 554 | // get new capability line |
| 555 | fwrite($stream,"A003 CAPABILITY\r\n"); |
| 556 | $capline=''; |
| 557 | while ($line=fgets($stream, 1024)){ |
| 558 | if (preg_match("/A003.*/",$line)) { |
| 559 | break; |
| 560 | } else { |
| 561 | $capline.=$line; |
| 562 | } |
| 563 | } |
| 564 | } |
| 565 | |
| 566 | echo $IND . 'Capabilities: <tt>'.htmlspecialchars($capline)."</tt><br />\n"; |
| 567 | |
| 568 | if($imap_auth_mech == 'login' && stristr($capline, 'LOGINDISABLED') !== FALSE) { |
| 569 | do_err('Your server doesn\'t allow plaintext logins. '. |
| 570 | 'Try enabling another authentication mechanism like CRAM-MD5, DIGEST-MD5 or TLS-encryption '. |
| 571 | 'in the SquirrelMail configuration.', FALSE); |
| 572 | } |
| 573 | |
| 574 | if (stristr($capline, 'XMAGICTRASH') !== false) { |
| 575 | $magic_trash = 'It looks like IMAP_MOVE_EXPUNGE_TO_TRASH option is turned on ' |
| 576 | .'in your Courier IMAP configuration. Courier does not provide tools that ' |
| 577 | .'allow to detect folder used for Trash or commands are not documented. ' |
| 578 | .'SquirrelMail can\'t detect special trash folder. SquirrelMail manages ' |
| 579 | .'all message deletion or move operations internally and ' |
| 580 | .'IMAP_MOVE_EXPUNGE_TO_TRASH option can cause errors in message and ' |
| 581 | .'folder management operations. Please turn off IMAP_MOVE_EXPUNGE_TO_TRASH ' |
| 582 | .'option in Courier imapd configuration.'; |
| 583 | do_err($magic_trash,false); |
| 584 | } |
| 585 | |
| 586 | /* add warning about IMAP delivery */ |
| 587 | if (stristr($capline, 'XCOURIEROUTBOX') !== false) { |
| 588 | $courier_outbox = 'OUTBOX setting is enabled in your Courier imapd ' |
| 589 | .'configuration. SquirrelMail uses standard SMTP protocol or sendmail ' |
| 590 | .'binary to send emails. Courier IMAP delivery method is not supported' |
| 591 | .' and can create duplicate email messages.'; |
| 592 | do_err($courier_outbox,false); |
| 593 | } |
| 594 | |
| 595 | /** OK, close connection */ |
| 596 | fputs($stream, "A004 LOGOUT\r\n"); |
| 597 | fclose($stream); |
| 598 | |
| 599 | echo "Checking internationalization (i18n) settings...<br />\n"; |
| 600 | echo "$IND gettext - "; |
| 601 | if (function_exists('gettext')) { |
| 602 | echo 'Gettext functions are available.' |
| 603 | .' On some systems you must have appropriate system locales compiled.' |
| 604 | ."<br />\n"; |
| 605 | |
| 606 | /* optional setlocale() tests. Should work only on glibc systems. */ |
| 607 | if (sqgetGlobalVar('testlocales',$testlocales,SQ_GET)) { |
| 608 | include_once(SM_PATH . 'include/languages.php'); |
| 609 | echo $IND . $IND . 'Testing translations:<br>'; |
| 610 | foreach ($languages as $lang_code => $lang_data) { |
| 611 | /* don't test aliases */ |
| 612 | if (isset($lang_data['NAME'])) { |
| 613 | /* locale can be $lang_code or $lang_data['LOCALE'] */ |
| 614 | if (isset($lang_data['LOCALE'])) { |
| 615 | $setlocale = $lang_data['LOCALE']; |
| 616 | } else { |
| 617 | $setlocale = $lang_code; |
| 618 | } |
| 619 | /* prepare information about tested locales */ |
| 620 | if (is_array($setlocale)) { |
| 621 | $display_locale = implode(', ',$setlocale); |
| 622 | $locale_count = count($setlocale); |
| 623 | } else { |
| 624 | $display_locale = $setlocale; |
| 625 | $locale_count = 1; |
| 626 | } |
| 627 | $tested_locales_msg = 'Tested '.htmlspecialchars($display_locale).' ' |
| 628 | .($locale_count>1 ? 'locales':'locale'). '.'; |
| 629 | |
| 630 | echo $IND . $IND .$IND . $lang_data['NAME'].' (' .$lang_code. ') - '; |
| 631 | $retlocale = sq_setlocale(LC_ALL,$setlocale); |
| 632 | if (is_bool($retlocale)) { |
| 633 | echo '<font color="red">unsupported</font>. '; |
| 634 | echo $tested_locales_msg; |
| 635 | } else { |
| 636 | echo 'supported. ' |
| 637 | .$tested_locales_msg |
| 638 | .' setlocale() returned "'.htmlspecialchars($retlocale).'"'; |
| 639 | } |
| 640 | echo "<br />\n"; |
| 641 | } |
| 642 | } |
| 643 | echo $IND . $IND . '<a href="configtest.php">Don\'t test translations</a>'; |
| 644 | } else { |
| 645 | echo $IND . $IND . '<a href="configtest.php?testlocales=1">Test translations</a>. ' |
| 646 | .'This test is not accurate and might work only on some systems.' |
| 647 | ."\n"; |
| 648 | } |
| 649 | echo "<br />\n"; |
| 650 | /* end of translation tests */ |
| 651 | } else { |
| 652 | echo 'Gettext functions are unavailable.' |
| 653 | .' SquirrelMail will use slower internal gettext functions.' |
| 654 | ."<br />\n"; |
| 655 | } |
| 656 | echo "$IND mbstring - "; |
| 657 | if (function_exists('mb_detect_encoding')) { |
| 658 | echo "Mbstring functions are available.<br />\n"; |
| 659 | } else { |
| 660 | echo 'Mbstring functions are unavailable.' |
| 661 | ." Japanese translation won't work.<br />\n"; |
| 662 | } |
| 663 | echo "$IND recode - "; |
| 664 | if (function_exists('recode')) { |
| 665 | echo "Recode functions are available.<br />\n"; |
| 666 | } elseif (isset($use_php_recode) && $use_php_recode) { |
| 667 | echo "Recode functions are unavailable.<br />\n"; |
| 668 | do_err('Your configuration requires recode support, but recode support is missing.'); |
| 669 | } else { |
| 670 | echo "Recode functions are unavailable.<br />\n"; |
| 671 | } |
| 672 | echo "$IND iconv - "; |
| 673 | if (function_exists('iconv')) { |
| 674 | echo "Iconv functions are available.<br />\n"; |
| 675 | } elseif (isset($use_php_iconv) && $use_php_iconv) { |
| 676 | echo "Iconv functions are unavailable.<br />\n"; |
| 677 | do_err('Your configuration requires iconv support, but iconv support is missing.'); |
| 678 | } else { |
| 679 | echo "Iconv functions are unavailable.<br />\n"; |
| 680 | } |
| 681 | // same test as in include/init.php + date_default_timezone_set check |
| 682 | echo "$IND timezone - "; |
| 683 | if ( (!ini_get('safe_mode')) || function_exists('date_default_timezone_set') || |
| 684 | !strcmp(ini_get('safe_mode_allowed_env_vars'),'') || |
| 685 | preg_match('/^([\w_]+,)*TZ/', ini_get('safe_mode_allowed_env_vars')) ) { |
| 686 | echo "Webmail users can change their time zone settings. \n"; |
| 687 | } else { |
| 688 | echo "Webmail users can't change their time zone settings. \n"; |
| 689 | } |
| 690 | if (isset($_ENV['TZ'])) { |
| 691 | echo 'Default time zone is '.htmlspecialchars($_ENV['TZ']); |
| 692 | } else { |
| 693 | echo 'Current time zone is '.date('T'); |
| 694 | } |
| 695 | echo ".<br />\n"; |
| 696 | |
| 697 | // Pear DB tests |
| 698 | echo "Checking database functions...<br />\n"; |
| 699 | if($addrbook_dsn || $prefs_dsn || $addrbook_global_dsn) { |
| 700 | @include_once('DB.php'); |
| 701 | if (class_exists('DB')) { |
| 702 | echo "$IND PHP Pear DB support is present.<br />\n"; |
| 703 | $db_functions=array( |
| 704 | 'dbase' => 'dbase_open', |
| 705 | 'fbsql' => 'fbsql_connect', |
| 706 | 'interbase' => 'ibase_connect', |
| 707 | 'informix' => 'ifx_connect', |
| 708 | 'msql' => 'msql_connect', |
| 709 | 'mssql' => 'mssql_connect', |
| 710 | 'mysql' => 'mysql_connect', |
| 711 | 'mysqli' => 'mysqli_connect', |
| 712 | 'oci8' => 'ocilogon', |
| 713 | 'odbc' => 'odbc_connect', |
| 714 | 'pgsql' => 'pg_connect', |
| 715 | 'sqlite' => 'sqlite_open', |
| 716 | 'sybase' => 'sybase_connect' |
| 717 | ); |
| 718 | |
| 719 | $dsns = array(); |
| 720 | if($prefs_dsn) { |
| 721 | $dsns['preferences'] = $prefs_dsn; |
| 722 | } |
| 723 | if($addrbook_dsn) { |
| 724 | $dsns['addressbook'] = $addrbook_dsn; |
| 725 | } |
| 726 | if($addrbook_global_dsn) { |
| 727 | $dsns['global addressbook'] = $addrbook_global_dsn; |
| 728 | } |
| 729 | |
| 730 | foreach($dsns as $type => $dsn) { |
| 731 | $aDsn = explode(':', $dsn); |
| 732 | $dbtype = array_shift($aDsn); |
| 733 | if(isset($db_functions[$dbtype]) && function_exists($db_functions[$dbtype])) { |
| 734 | echo "$IND$dbtype database support present.<br />\n"; |
| 735 | |
| 736 | // now, test this interface: |
| 737 | |
| 738 | $dbh = DB::connect($dsn, true); |
| 739 | if (DB::isError($dbh)) { |
| 740 | do_err('Database error: '. htmlspecialchars(DB::errorMessage($dbh)) . |
| 741 | ' in ' .$type .' DSN.'); |
| 742 | } |
| 743 | $dbh->disconnect(); |
| 744 | echo "$IND$type database connect successful.<br />\n"; |
| 745 | |
| 746 | } else { |
| 747 | do_err($dbtype.' database support not present!'); |
| 748 | } |
| 749 | } |
| 750 | } else { |
| 751 | $db_error='Required PHP PEAR DB support is not available.' |
| 752 | .' Is PEAR installed and is the include path set correctly to find <tt>DB.php</tt>?' |
| 753 | .' The include path is now:<tt>' . ini_get('include_path') . '</tt>.'; |
| 754 | do_err($db_error); |
| 755 | } |
| 756 | } else { |
| 757 | echo $IND."not using database functionality.<br />\n"; |
| 758 | } |
| 759 | |
| 760 | // LDAP DB tests |
| 761 | echo "Checking LDAP functions...<br />\n"; |
| 762 | if( empty($ldap_server) ) { |
| 763 | echo $IND."not using LDAP functionality.<br />\n"; |
| 764 | } else { |
| 765 | if ( !function_exists('ldap_connect') ) { |
| 766 | do_err('Required LDAP support is not available.'); |
| 767 | } else { |
| 768 | echo "$IND LDAP support present.<br />\n"; |
| 769 | foreach ( $ldap_server as $param ) { |
| 770 | |
| 771 | $linkid = @ldap_connect($param['host'], (empty($param['port']) ? 389 : $param['port']) ); |
| 772 | |
| 773 | if ( $linkid ) { |
| 774 | echo "$IND LDAP connect to ".$param['host']." successful: ".$linkid."<br />\n"; |
| 775 | |
| 776 | if ( !empty($param['protocol']) && |
| 777 | !ldap_set_option($linkid, LDAP_OPT_PROTOCOL_VERSION, $param['protocol']) ) { |
| 778 | do_err('Unable to set LDAP protocol'); |
| 779 | } |
| 780 | |
| 781 | if ( empty($param['binddn']) ) { |
| 782 | $bind = @ldap_bind($linkid); |
| 783 | } else { |
| 784 | $bind = @ldap_bind($param['binddn'], $param['bindpw']); |
| 785 | } |
| 786 | |
| 787 | if ( $bind ) { |
| 788 | echo "$IND LDAP Bind Successful <br />"; |
| 789 | } else { |
| 790 | do_err('Unable to Bind to LDAP Server'); |
| 791 | } |
| 792 | |
| 793 | @ldap_close($linkid); |
| 794 | } else { |
| 795 | do_err('Connection to LDAP failed'); |
| 796 | } |
| 797 | } |
| 798 | } |
| 799 | } |
| 800 | |
| 801 | echo '<hr width="75%" align="center">'; |
| 802 | echo '<h2 align="center">Summary</h2>'; |
| 803 | $footer = '<hr width="75%" align="center">'; |
| 804 | if ($warnings) { |
| 805 | echo '<p>No fatal errors were found, but there was at least 1 warning. Please check the flagged issue(s) carefully, as correcting them may prevent erratic, undefined, or incorrect behavior (or flat out breakage).</p>'; |
| 806 | echo $footer; |
| 807 | } else { |
| 808 | print <<< EOF |
| 809 | <p>Congratulations, your SquirrelMail setup looks fine to me!</p> |
| 810 | |
| 811 | <p><a href="login.php">Login now</a></p> |
| 812 | |
| 813 | </body> |
| 814 | </html> |
| 815 | EOF; |
| 816 | echo $footer; |
| 817 | } |
| 818 | ?> |