PluginProbe
Authorizer / 3.13.0
Authorizer v3.13.0
3.15.3 3.15.2 3.15.1 3.15.0 3.14.3 3.14.4 3.14.2 3.14.1 2.8.1 2.8.2 2.8.3 2.8.4 2.8.5 2.8.6 2.8.7 2.8.8 2.9.0 2.9.1 2.9.10 2.9.11 2.9.12 2.9.13 2.9.2 2.9.3 2.9.6 All 126 releases
← All changes | js/authorizer.js +375 -241 2.9.133.13.0 View file →
@@ -207,9 +207,9 @@
207 207 for ( var i = 0; i < response.invalid_emails.length; i++ ) {
208 208 var duplicateEmail = response.invalid_emails[i];
209 209 $( 'li.new-user .auth-email[value="' + duplicateEmail + '"]' )
210 210 .siblings( '.spinner' ).addClass( 'duplicate' ).append( '<span class="spinner-text"><span class="attention">' + authL10n.duplicate + '.</span></span>' )
211 - .parent().fadeOut( spinnerWait, function() { $( this ).remove(); }); // jshint ignore:line
211 + .parent().fadeOut( 2000, function() { $( this ).remove(); }); // jshint ignore:line
212 212 }
213 213 }
214 214
215 215 // Show message ('Saved', 'Failed', or 'Saved, removing duplicates').
@@ -272,15 +272,15 @@
272 272
273 273 // Helper function to hide/show wordpress option
274 274 function animateOption( action, option ) {
275 275 if ( action === 'show' ) {
276 - $( 'div.animated_wrapper', option ).slideDown( animationSpeed );
276 + option.fadeIn( animationSpeed );
277 277 $( 'th, td', option ).removeClass( 'hide-animate hide-no-animate' );
278 278 } else if ( action === 'hide' ) {
279 - $( 'div.animated_wrapper', option ).slideUp( animationSpeed );
279 + option.fadeOut( animationSpeed );
280 280 $( 'td, th', option ).addClass( 'hide-animate' );
281 281 } else if ( action === 'hide_immediately' ) {
282 - $( 'div.animated_wrapper', option ).hide();
282 + option.hide();
283 283 $( 'td, th', option ).addClass( 'hide-no-animate' );
284 284 }
285 285 }
286 286
@@ -373,8 +373,9 @@
373 373 $( document ).ready( function() {
374 374 // Grab references to form elements that we will show/hide on page load
375 375 /* eslint-disable camelcase */
376 376 var auth_settings_access_role_receive_pending_emails = $( '#auth_settings_access_role_receive_pending_emails' ).closest( 'tr' );
377 + var auth_settings_access_users_receive_pending_emails = $( '#auth_settings_access_users_receive_pending_emails' ).closest( 'tr' );
377 378 var auth_settings_access_pending_redirect_to_message = $( '#wp-auth_settings_access_pending_redirect_to_message-wrap' ).closest( 'tr' );
378 379 var auth_settings_access_blocked_redirect_to_message = $( '#wp-auth_settings_access_blocked_redirect_to_message-wrap' ).closest( 'tr' );
379 380 var auth_settings_access_should_email_approved_users = $( '#auth_settings_access_should_email_approved_users' ).closest( 'tr' );
380 381 var auth_settings_access_email_approved_users_subject = $( '#auth_settings_access_email_approved_users_subject' ).closest( 'tr' );
@@ -382,25 +383,87 @@
382 383 var auth_settings_access_public_pages = $( '#auth_settings_access_public_pages' ).closest( 'tr' );
383 384 var auth_settings_access_redirect_to_login = $( '#radio_auth_settings_access_redirect_to_login' ).closest( 'tr' );
384 385 var auth_settings_access_public_warning = $( '#radio_auth_settings_access_public_warning' ).closest( 'tr' );
385 386 var auth_settings_access_redirect_to_message = $( '#wp-auth_settings_access_redirect_to_message-wrap' ).closest( 'tr' );
387 + var auth_settings_external_oauth2_auto_login = $( '#auth_settings_oauth2_auto_login' ).closest( 'tr' );
388 + var auth_settings_external_oauth2_num_servers = $( '#auth_settings_oauth2_num_servers' ).closest( 'tr' );
389 + var auth_settings_external_oauth2_servers = [];
390 + // OAuth2 settings below are for the first configured OAuth2 server.
391 + auth_settings_external_oauth2_servers.push( {
392 + provider: $( '#auth_settings_oauth2_provider' ).closest( 'tr' ),
393 + custom_label: $( '#auth_settings_oauth2_custom_label' ).closest( 'tr' ),
394 + clientid: $( '#auth_settings_oauth2_clientid' ).closest( 'tr' ),
395 + clientsecret: $( '#auth_settings_oauth2_clientsecret' ).closest( 'tr' ),
396 + hosteddomain: $( '#auth_settings_oauth2_hosteddomain' ).closest( 'tr' ),
397 + tenant_id: $( '#auth_settings_oauth2_tenant_id' ).closest( 'tr' ),
398 + url_authorize: $( '#auth_settings_oauth2_url_authorize' ).closest( 'tr' ),
399 + url_token: $( '#auth_settings_oauth2_url_token' ).closest( 'tr' ),
400 + url_resource: $( '#auth_settings_oauth2_url_resource' ).closest( 'tr' ),
401 + attr_username: $( '#auth_settings_oauth2_attr_username' ).closest( 'tr' ),
402 + attr_email: $( '#auth_settings_oauth2_attr_email' ).closest( 'tr' ),
403 + attr_first_name: $( '#auth_settings_oauth2_attr_first_name' ).closest( 'tr' ),
404 + attr_last_name: $( '#auth_settings_oauth2_attr_last_name' ).closest( 'tr' ),
405 + attr_update_on_login: $( '#auth_settings_oauth2_attr_update_on_login' ).closest( 'tr' ),
406 + } );
407 + // OAuth2 settings below are for any additional OAuth2 servers configured (up to 20).
408 + for ( var i = 2; i <= parseInt( $( '#auth_settings_oauth2_num_servers' ).val() ) && i <= 20; i++ ) {
409 + auth_settings_external_oauth2_servers.push( {
410 + provider: $( '#auth_settings_oauth2_provider_' + i ).closest( 'tr' ),
411 + custom_label: $( '#auth_settings_oauth2_custom_label_' + i ).closest( 'tr' ),
412 + clientid: $( '#auth_settings_oauth2_clientid_' + i ).closest( 'tr' ),
413 + clientsecret: $( '#auth_settings_oauth2_clientsecret_' + i ).closest( 'tr' ),
414 + hosteddomain: $( '#auth_settings_oauth2_hosteddomain_' + i ).closest( 'tr' ),
415 + tenant_id: $( '#auth_settings_oauth2_tenant_id_' + i ).closest( 'tr' ),
416 + url_authorize: $( '#auth_settings_oauth2_url_authorize_' + i ).closest( 'tr' ),
417 + url_token: $( '#auth_settings_oauth2_url_token_' + i ).closest( 'tr' ),
418 + url_resource: $( '#auth_settings_oauth2_url_resource_' + i ).closest( 'tr' ),
419 + attr_username: $( '#auth_settings_oauth2_attr_username_' + i ).closest( 'tr' ),
420 + attr_email: $( '#auth_settings_oauth2_attr_email_' + i ).closest( 'tr' ),
421 + attr_first_name: $( '#auth_settings_oauth2_attr_first_name_' + i ).closest( 'tr' ),
422 + attr_last_name: $( '#auth_settings_oauth2_attr_last_name_' + i ).closest( 'tr' ),
423 + attr_update_on_login: $( '#auth_settings_oauth2_attr_update_on_login_' + i ).closest( 'tr' ),
424 + } );
425 + }
386 426 var auth_settings_external_google_clientid = $( '#auth_settings_google_clientid' ).closest( 'tr' );
387 427 var auth_settings_external_google_clientsecret = $( '#auth_settings_google_clientsecret' ).closest( 'tr' );
388 428 var auth_settings_external_google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).closest( 'tr' );
389 - var auth_settings_external_cas_custom_label = $( '#auth_settings_cas_custom_label' ).closest( 'tr' );
390 - var auth_settings_external_cas_host = $( '#auth_settings_cas_host' ).closest( 'tr' );
391 - var auth_settings_external_cas_port = $( '#auth_settings_cas_port' ).closest( 'tr' );
392 - var auth_settings_external_cas_path = $( '#auth_settings_cas_path' ).closest( 'tr' );
393 - var auth_settings_external_cas_version = $( '#auth_settings_cas_version' ).closest( 'tr' );
394 - var auth_settings_external_cas_attr_email = $( '#auth_settings_cas_attr_email' ).closest( 'tr' );
395 - var auth_settings_external_cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).closest( 'tr' );
396 - var auth_settings_external_cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).closest( 'tr' );
397 - var auth_settings_external_cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).closest( 'tr' );
398 429 var auth_settings_external_cas_auto_login = $( '#auth_settings_cas_auto_login' ).closest( 'tr' );
399 - var auth_settings_external_cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).closest( 'tr' );
430 + var auth_settings_external_cas_num_servers = $( '#auth_settings_cas_num_servers' ).closest( 'tr' );
431 + var auth_settings_external_cas_servers = [];
432 + // CAS settings below are for the first configured CAS server.
433 + auth_settings_external_cas_servers.push( {
434 + custom_label: $( '#auth_settings_cas_custom_label' ).closest( 'tr' ),
435 + host: $( '#auth_settings_cas_host' ).closest( 'tr' ),
436 + port: $( '#auth_settings_cas_port' ).closest( 'tr' ),
437 + path: $( '#auth_settings_cas_path' ).closest( 'tr' ),
438 + method: $( '#auth_settings_cas_method' ).closest( 'tr' ),
439 + version: $( '#auth_settings_cas_version' ).closest( 'tr' ),
440 + attr_email: $( '#auth_settings_cas_attr_email' ).closest( 'tr' ),
441 + attr_first_name: $( '#auth_settings_cas_attr_first_name' ).closest( 'tr' ),
442 + attr_last_name: $( '#auth_settings_cas_attr_last_name' ).closest( 'tr' ),
443 + attr_update_on_login: $( '#auth_settings_cas_attr_update_on_login' ).closest( 'tr' ),
444 + link_on_username: $( '#auth_settings_cas_link_on_username' ).closest( 'tr' ),
445 + } );
446 + // CAS settings below are for any additional CAS servers configured (up to 10).
447 + for ( var i = 2; i <= parseInt( $( '#auth_settings_cas_num_servers' ).val() ) && i <= 10; i++ ) {
448 + auth_settings_external_cas_servers.push( {
449 + custom_label: $( '#auth_settings_cas_custom_label_' + i ).closest( 'tr' ),
450 + host: $( '#auth_settings_cas_host_' + i ).closest( 'tr' ),
451 + port: $( '#auth_settings_cas_port_' + i ).closest( 'tr' ),
452 + path: $( '#auth_settings_cas_path_' + i ).closest( 'tr' ),
453 + method: $( '#auth_settings_cas_method_' + i ).closest( 'tr' ),
454 + version: $( '#auth_settings_cas_version_' + i ).closest( 'tr' ),
455 + attr_email: $( '#auth_settings_cas_attr_email_' + i ).closest( 'tr' ),
456 + attr_first_name: $( '#auth_settings_cas_attr_first_name_' + i ).closest( 'tr' ),
457 + attr_last_name: $( '#auth_settings_cas_attr_last_name_' + i ).closest( 'tr' ),
458 + attr_update_on_login: $( '#auth_settings_cas_attr_update_on_login_' + i ).closest( 'tr' ),
459 + link_on_username: $( '#auth_settings_cas_link_on_username_' + i ).closest( 'tr' ),
460 + } );
461 + }
400 462 var auth_settings_external_ldap_host = $( '#auth_settings_ldap_host' ).closest( 'tr' );
401 463 var auth_settings_external_ldap_port = $( '#auth_settings_ldap_port' ).closest( 'tr' );
402 464 var auth_settings_external_ldap_search_base = $( '#auth_settings_ldap_search_base' ).closest( 'tr' );
465 + var auth_settings_external_ldap_search_filter = $( '#auth_settings_ldap_search_filter' ).closest( 'tr' );
403 466 var auth_settings_external_ldap_uid = $( '#auth_settings_ldap_uid' ).closest( 'tr' );
404 467 var auth_settings_external_ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).closest( 'tr' );
405 468 var auth_settings_external_ldap_user = $( '#auth_settings_ldap_user' ).closest( 'tr' );
406 469 var auth_settings_external_ldap_password = $( '#auth_settings_ldap_password' ).closest( 'tr' );
@@ -408,58 +471,16 @@
408 471 var auth_settings_external_ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).closest( 'tr' );
409 472 var auth_settings_external_ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).closest( 'tr' );
410 473 var auth_settings_external_ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).closest( 'tr' );
411 474 var auth_settings_external_ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).closest( 'tr' );
475 + var auth_settings_external_ldap_test_user = $( '#auth_settings_ldap_test_user' ).closest( 'tr' );
476 + var auth_settings_advanced_disable_wp_login_bypass_usernames = $( '#auth_settings_advanced_disable_wp_login_bypass_usernames' ).closest( 'tr' );
412 477 /* eslint-enable */
413 478
414 - // Wrap the th and td in the rows above so we can animate their heights (can't animate tr heights with jquery)
415 - $( 'th, td', auth_settings_access_role_receive_pending_emails ).wrapInner( '<div class="animated_wrapper" />' );
416 - $( 'th, td', auth_settings_access_pending_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
417 - $( 'th, td', auth_settings_access_blocked_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
418 - $( 'th, td', auth_settings_access_should_email_approved_users ).wrapInner( '<div class="animated_wrapper" />' );
419 - $( 'th, td', auth_settings_access_email_approved_users_subject ).wrapInner( '<div class="animated_wrapper" />' );
420 - $( 'th, td', auth_settings_access_email_approved_users_body ).wrapInner( '<div class="animated_wrapper" />' );
421 - $( 'th, td', auth_settings_access_public_pages ).wrapInner( '<div class="animated_wrapper" />' );
422 - $( 'th, td', auth_settings_access_redirect_to_login ).wrapInner( '<div class="animated_wrapper" />' );
423 - $( 'th, td', auth_settings_access_public_warning ).wrapInner( '<div class="animated_wrapper" />' );
424 - $( 'th, td', auth_settings_access_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
425 - $( 'th, td', auth_settings_external_google_clientid ).wrapInner( '<div class="animated_wrapper" />' );
426 - $( 'th, td', auth_settings_external_google_clientsecret ).wrapInner( '<div class="animated_wrapper" />' );
427 - $( 'th, td', auth_settings_external_google_hosteddomain ).wrapInner( '<div class="animated_wrapper" />' );
428 - $( 'th, td', auth_settings_external_cas_custom_label ).wrapInner( '<div class="animated_wrapper" />' );
429 - $( 'th, td', auth_settings_external_cas_host ).wrapInner( '<div class="animated_wrapper" />' );
430 - $( 'th, td', auth_settings_external_cas_port ).wrapInner( '<div class="animated_wrapper" />' );
431 - $( 'th, td', auth_settings_external_cas_path ).wrapInner( '<div class="animated_wrapper" />' );
432 - $( 'th, td', auth_settings_external_cas_version ).wrapInner( '<div class="animated_wrapper" />' );
433 - $( 'th, td', auth_settings_external_cas_attr_email ).wrapInner( '<div class="animated_wrapper" />' );
434 - $( 'th, td', auth_settings_external_cas_attr_first_name ).wrapInner( '<div class="animated_wrapper" />' );
435 - $( 'th, td', auth_settings_external_cas_attr_last_name ).wrapInner( '<div class="animated_wrapper" />' );
436 - $( 'th, td', auth_settings_external_cas_attr_update_on_login ).wrapInner( '<div class="animated_wrapper" />' );
437 - $( 'th, td', auth_settings_external_cas_auto_login ).wrapInner( '<div class="animated_wrapper" />' );
438 - $( 'th, td', auth_settings_external_cas_link_on_username ).wrapInner( '<div class="animated_wrapper" />' );
439 - $( 'th, td', auth_settings_external_ldap_host ).wrapInner( '<div class="animated_wrapper" />' );
440 - $( 'th, td', auth_settings_external_ldap_port ).wrapInner( '<div class="animated_wrapper" />' );
441 - $( 'th, td', auth_settings_external_ldap_search_base ).wrapInner( '<div class="animated_wrapper" />' );
442 - $( 'th, td', auth_settings_external_ldap_uid ).wrapInner( '<div class="animated_wrapper" />' );
443 - $( 'th, td', auth_settings_external_ldap_attr_email ).wrapInner( '<div class="animated_wrapper" />' );
444 - $( 'th, td', auth_settings_external_ldap_user ).wrapInner( '<div class="animated_wrapper" />' );
445 - $( 'th, td', auth_settings_external_ldap_password ).wrapInner( '<div class="animated_wrapper" />' );
446 - $( 'th, td', auth_settings_external_ldap_tls ).wrapInner( '<div class="animated_wrapper" />' );
447 - $( 'th, td', auth_settings_external_ldap_lostpassword_url ).wrapInner( '<div class="animated_wrapper" />' );
448 - $( 'th, td', auth_settings_external_ldap_attr_first_name ).wrapInner( '<div class="animated_wrapper" />' );
449 - $( 'th, td', auth_settings_external_ldap_attr_last_name ).wrapInner( '<div class="animated_wrapper" />' );
450 - $( 'th, td', auth_settings_external_ldap_attr_update_on_login ).wrapInner( '<div class="animated_wrapper" />' );
451 -
452 - // If we're viewing the dashboard widget, reset a couple of the relevant
453 - // option variables (since they aren't nested in table rows).
454 - if ( $( '#auth_dashboard_widget' ).length ) {
455 - // Remove the helper link, since there are no tabs on the dashboard widget
456 - $( '#dashboard_link_approved_users' ).contents().unwrap();
457 - }
458 -
459 479 // Hide settings unless "Only approved users" is checked
460 480 if ( ! $( '#radio_auth_settings_access_who_can_login_approved_users' ).is( ':checked' ) ) {
461 481 animateOption( 'hide_immediately', auth_settings_access_role_receive_pending_emails );
482 + animateOption( 'hide_immediately', auth_settings_access_users_receive_pending_emails );
462 483 animateOption( 'hide_immediately', auth_settings_access_pending_redirect_to_message );
463 484 animateOption( 'hide_immediately', auth_settings_access_blocked_redirect_to_message );
464 485 animateOption( 'hide_immediately', auth_settings_access_should_email_approved_users );
465 486 }
@@ -477,51 +498,45 @@
477 498 animateOption( 'hide_immediately', auth_settings_access_public_warning );
478 499 animateOption( 'hide_immediately', auth_settings_access_redirect_to_message );
479 500 }
480 501
481 - // Hide Google options if unchecked
482 - if ( ! $( '#auth_settings_google' ).is( ':checked' ) ) {
483 - animateOption( 'hide_immediately', auth_settings_external_google_clientid );
484 - animateOption( 'hide_immediately', auth_settings_external_google_clientsecret );
485 - animateOption( 'hide_immediately', auth_settings_external_google_hosteddomain );
486 - }
502 + // Hide External Service tabs if provider is unchecked.
503 + $( '.nav-tab-wrapper .nav-tab-external_oauth2' ).toggle( $( '#auth_settings_oauth2' ).is( ':checked' ) );
504 + $( '.nav-tab-wrapper .nav-tab-external_oidc' ).toggle( $( '#auth_settings_oidc' ).is( ':checked' ) );
505 + $( '.nav-tab-wrapper .nav-tab-external_google' ).toggle( $( '#auth_settings_google' ).is( ':checked' ) );
506 + $( '.nav-tab-wrapper .nav-tab-external_cas' ).toggle( $( '#auth_settings_cas' ).is( ':checked' ) );
507 + $( '.nav-tab-wrapper .nav-tab-external_ldap' ).toggle( $( '#auth_settings_ldap' ).is( ':checked' ) );
487 508
488 - // Hide CAS options if unchecked
489 - if ( ! $( '#auth_settings_cas' ).is( ':checked' ) ) {
490 - animateOption( 'hide_immediately', auth_settings_external_cas_custom_label );
491 - animateOption( 'hide_immediately', auth_settings_external_cas_host );
492 - animateOption( 'hide_immediately', auth_settings_external_cas_port );
493 - animateOption( 'hide_immediately', auth_settings_external_cas_path );
494 - animateOption( 'hide_immediately', auth_settings_external_cas_version );
495 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_email );
496 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_first_name );
497 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_last_name );
498 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_update_on_login );
499 - animateOption( 'hide_immediately', auth_settings_external_cas_auto_login );
500 - animateOption( 'hide_immediately', auth_settings_external_cas_link_on_username );
501 - }
509 + // Hide some OAuth2 options based on current settings.
510 + auth_settings_external_oauth2_servers.forEach( function( server ) {
511 + // Hide OAuth2 generic options if OAuth2 provider is unchecked or generic isn't chosen.
512 + if ( 'generic' !== server.provider.find( 'select' ).val() ) {
513 + animateOption( 'hide_immediately', server.url_authorize );
514 + animateOption( 'hide_immediately', server.url_token );
515 + animateOption( 'hide_immediately', server.url_resource );
516 + animateOption( 'hide_immediately', server.attr_username );
517 + animateOption( 'hide_immediately', server.attr_email );
518 + animateOption( 'hide_immediately', server.attr_first_name );
519 + animateOption( 'hide_immediately', server.attr_last_name );
520 + animateOption( 'hide_immediately', server.attr_update_on_login );
521 + }
522 + // Hide OAuth2 Tenant ID if OAuth2 provider is unchecked or azure isn't chosen.
523 + if ( 'azure' !== server.provider.find( 'select' ).val() ) {
524 + animateOption( 'hide_immediately', server.tenant_id );
525 + }
526 + } );
502 527
503 - // Hide LDAP options if unchecked
504 - if ( ! $( '#auth_settings_ldap' ).is( ':checked' ) ) {
505 - animateOption( 'hide_immediately', auth_settings_external_ldap_host );
506 - animateOption( 'hide_immediately', auth_settings_external_ldap_port );
507 - animateOption( 'hide_immediately', auth_settings_external_ldap_search_base );
508 - animateOption( 'hide_immediately', auth_settings_external_ldap_uid );
509 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_email );
510 - animateOption( 'hide_immediately', auth_settings_external_ldap_user );
511 - animateOption( 'hide_immediately', auth_settings_external_ldap_password );
512 - animateOption( 'hide_immediately', auth_settings_external_ldap_tls );
513 - animateOption( 'hide_immediately', auth_settings_external_ldap_lostpassword_url );
514 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_first_name );
515 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_last_name );
516 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_update_on_login );
528 + // Hide Bypass Usernames if Disable WordPress logins is unchecked.
529 + if ( ! $( '#auth_settings_advanced_disable_wp_login' ).is( ':checked' ) ) {
530 + animateOption( 'hide_immediately', auth_settings_advanced_disable_wp_login_bypass_usernames );
517 531 }
518 532
519 533 // Event handler: Hide "Handle unauthorized visitors" option if access is granted to "Everyone"
520 - $( 'input[name="auth_settings[access_who_can_login]"]' ).change( function() {
534 + $( 'input[name="auth_settings[access_who_can_login]"]' ).on( 'change', function() {
521 535 // Hide settings unless "Only approved users" is checked
522 536 var action = $( '#radio_auth_settings_access_who_can_login_approved_users' ).is( ':checked' ) ? 'show' : 'hide';
523 537 animateOption( action, auth_settings_access_role_receive_pending_emails );
538 + animateOption( action, auth_settings_access_users_receive_pending_emails );
524 539 animateOption( action, auth_settings_access_pending_redirect_to_message );
525 540 animateOption( action, auth_settings_access_blocked_redirect_to_message );
526 541 animateOption( action, auth_settings_access_should_email_approved_users );
527 542 action = action === 'show' && $( '#auth_settings_access_should_email_approved_users' ).is( ':checked' ) ? 'show' : 'hide_immediately';
@@ -529,9 +544,9 @@
529 544 animateOption( action, auth_settings_access_email_approved_users_body );
530 545 });
531 546
532 547 // Event handler: Hide Welcome email body/subject options if "Send welcome email" is off.
533 - $( 'input[name="auth_settings[access_should_email_approved_users]"]' ).change( function() {
548 + $( 'input[name="auth_settings[access_should_email_approved_users]"]' ).on( 'change', function() {
534 549 var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
535 550 animateOption( action, auth_settings_access_email_approved_users_subject );
536 551 animateOption( action, auth_settings_access_email_approved_users_body );
537 552 });
@@ -536,9 +551,9 @@
536 551 animateOption( action, auth_settings_access_email_approved_users_body );
537 552 });
538 553
539 554 // Event handler: Hide "Handle unauthorized visitors" option if access is granted to "Everyone"
540 - $( 'input[name="auth_settings[access_who_can_view]"]' ).change( function() {
555 + $( 'input[name="auth_settings[access_who_can_view]"]' ).on( 'change', function() {
541 556 var action = $( '#radio_auth_settings_access_who_can_view_everyone' ).is( ':checked' ) ? 'hide' : 'show';
542 557 animateOption( action, auth_settings_access_redirect_to_login );
543 558 animateOption( action, auth_settings_access_redirect_to_message );
544 559 animateOption( action, auth_settings_access_public_pages );
@@ -544,49 +559,75 @@
544 559 animateOption( action, auth_settings_access_public_pages );
545 560 animateOption( action, auth_settings_access_public_warning );
546 561 });
547 562
548 - // Event handler: Show/hide Google options based on checkbox
549 - $( 'input[name="auth_settings[google]"]' ).change( function() {
550 - var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
551 - animateOption( action, auth_settings_external_google_clientid );
552 - animateOption( action, auth_settings_external_google_clientsecret );
553 - animateOption( action, auth_settings_external_google_hosteddomain );
563 + // Event handler: Show/hide OAuth2 tab based on checkbox.
564 + $( 'input[name="auth_settings[oauth2]"]' ).on( 'change', function() {
565 + $( '.nav-tab-wrapper .nav-tab-external_oauth2' ).toggle( $( this ).is( ':checked' ) );
554 566 });
555 567
556 - // Event handler: Show/hide CAS options based on checkbox
557 - $( 'input[name="auth_settings[cas]"]' ).change( function() {
558 - var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
559 - animateOption( action, auth_settings_external_cas_custom_label );
560 - animateOption( action, auth_settings_external_cas_host );
561 - animateOption( action, auth_settings_external_cas_port );
562 - animateOption( action, auth_settings_external_cas_path );
563 - animateOption( action, auth_settings_external_cas_version );
564 - animateOption( action, auth_settings_external_cas_attr_email );
565 - animateOption( action, auth_settings_external_cas_attr_first_name );
566 - animateOption( action, auth_settings_external_cas_attr_last_name );
567 - animateOption( action, auth_settings_external_cas_attr_update_on_login );
568 - animateOption( action, auth_settings_external_cas_auto_login );
569 - animateOption( action, auth_settings_external_cas_link_on_username );
568 + // Event handler: Show/hide OAuth2 generic/azure options based on provider.
569 + auth_settings_external_oauth2_servers.forEach( function( server ) {
570 + server.provider.find( 'select' ).on( 'change', function() {
571 + var action = 'generic' === $( this ).val() ? 'show' : 'hide';
572 + animateOption( action, server.url_authorize );
573 + animateOption( action, server.url_token );
574 + animateOption( action, server.url_resource );
575 + animateOption( action, server.attr_username );
576 + animateOption( action, server.attr_email );
577 + animateOption( action, server.attr_first_name );
578 + animateOption( action, server.attr_last_name );
579 + animateOption( action, server.attr_update_on_login );
580 + action = 'azure' === $( this ).val() ? 'show' : 'hide';
581 + animateOption( action, server.tenant_id );
582 + });
570 583 });
571 584
572 - // Event handler: Show/hide LDAP options based on checkbox
573 - $( 'input[name="auth_settings[ldap]"]' ).change( function() {
585 + // Event handler: Show/hide OIDC tab based on checkbox
586 + $( 'input[name="auth_settings[oidc]"]' ).on( 'change', function() {
587 + $( '.nav-tab-wrapper .nav-tab-external_oidc' ).toggle( $( this ).is( ':checked' ) );
588 + });
589 +
590 + // Event handler: Show/hide Google tab based on checkbox
591 + $( 'input[name="auth_settings[google]"]' ).on( 'change', function() {
592 + $( '.nav-tab-wrapper .nav-tab-external_google' ).toggle( $( this ).is( ':checked' ) );
593 + });
594 +
595 + // Event handler: Show/hide CAS tab based on checkbox
596 + $( 'input[name="auth_settings[cas]"]' ).on( 'change', function() {
597 + $( '.nav-tab-wrapper .nav-tab-external_cas' ).toggle( $( this ).is( ':checked' ) );
598 + });
599 +
600 + // Event handler: Show/hide LDAP tab based on checkbox
601 + $( 'input[name="auth_settings[ldap]"]' ).on( 'change', function() {
602 + $( '.nav-tab-wrapper .nav-tab-external_ldap' ).toggle( $( this ).is( ':checked' ) );
603 + });
604 +
605 + // Event handler: Show/hide Bypass Usernames based on Disable WordPress Logins checkbox.
606 + $( 'input[name="auth_settings[advanced_disable_wp_login]"]' ).on( 'change', function() {
574 607 var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
575 - animateOption( action, auth_settings_external_ldap_host );
576 - animateOption( action, auth_settings_external_ldap_port );
577 - animateOption( action, auth_settings_external_ldap_search_base );
578 - animateOption( action, auth_settings_external_ldap_uid );
579 - animateOption( action, auth_settings_external_ldap_attr_email );
580 - animateOption( action, auth_settings_external_ldap_user );
581 - animateOption( action, auth_settings_external_ldap_password );
582 - animateOption( action, auth_settings_external_ldap_tls );
583 - animateOption( action, auth_settings_external_ldap_lostpassword_url );
584 - animateOption( action, auth_settings_external_ldap_attr_first_name );
585 - animateOption( action, auth_settings_external_ldap_attr_last_name );
586 - animateOption( action, auth_settings_external_ldap_attr_update_on_login );
608 + animateOption( action, auth_settings_advanced_disable_wp_login_bypass_usernames );
587 609 });
588 610
611 + // Event handler: Test LDAP settings.
612 + $( '#ldap_test_user_submit' ).on( 'click', function( event ) {
613 + event.preventDefault();
614 + $( 'html' ).addClass( 'busy' );
615 + $( '#ldap_test_user_spinner' ).addClass( 'is-active' );
616 +
617 + $.post( ajaxurl, {
618 + action: 'auth_settings_ldap_test_user',
619 + username: $( 'input[name="auth_settings[ldap_test_user]"]' ).val(),
620 + password: $( 'input#auth_settings_ldap_test_pass' ).val(),
621 + nonce: $( '#nonce_save_auth_settings' ).val(),
622 + }).done( function ( data ) {
623 + $( '#ldap_test_user_result' ).show().val( data.message );
624 + }).always( function () {
625 + $( 'html' ).removeClass( 'busy' );
626 + $( '#ldap_test_user_spinner' ).removeClass( 'is-active' );
627 + });
628 + } );
629 +
589 630 // Show save button if usermeta field is modified.
590 631 $( 'form input.auth-usermeta' ).on( 'keyup', function( event ) {
591 632 // Don't do anything if tab or arrow keys were pressed.
592 633 if ( event.which === 9 || event.which === 37 || event.which === 38 || event.which === 39 || event.which === 40 ) {
@@ -625,22 +666,26 @@
625 666 selectableHeader: '<div class="custom-header">' + authL10n.private_pages + '</div>',
626 667 selectionHeader: '<div class="custom-header">' + authL10n.public_pages + '</div>',
627 668 });
628 669
629 - // Switch to the first tab (or the tab indicated in sessionStorage, or the querystring).
630 - var tab = '';
631 - if ( getQuerystringValuesByKey( 'tab' ).length > 0 ) {
632 - tab = getQuerystringValuesByKey( 'tab' )[0];
633 - } else if ( sessionStorage.getItem( 'tab' ) ) {
634 - tab = sessionStorage.getItem( 'tab' );
670 + // Switch to the first tab (or the tab indicated in sessionStorage, or the
671 + // querystring). Note: only do this on the settings page, not the dashboard
672 + // widget.
673 + if ( ! $( '#auth_dashboard_widget' ).length ) {
674 + var tab = '';
675 + if ( getQuerystringValuesByKey( 'tab' ).length > 0 ) {
676 + tab = getQuerystringValuesByKey( 'tab' )[0];
677 + } else if ( sessionStorage.getItem( 'tab' ) ) {
678 + tab = sessionStorage.getItem( 'tab' );
679 + }
680 + if ( $.inArray( tab, [ 'access_lists', 'access_login', 'access_public', 'external', 'external_oauth2', 'external_oidc', 'external_google', 'external_cas', 'external_ldap', 'advanced' ] ) < 0 ) {
681 + tab = 'access_lists';
682 + }
683 + window.chooseTab( tab, animationSpeed );
635 684 }
636 - if ( $.inArray( tab, [ 'access_lists', 'access_login', 'access_public', 'external', 'advanced' ] ) < 0 ) {
637 - tab = 'access_lists';
638 - }
639 - window.chooseTab( tab, animationSpeed );
640 685
641 686 // Hide/show multisite settings based on override checkbox.
642 - $( 'input[name="auth_settings[multisite_override]"]' ).change( function() {
687 + $( 'input[name="auth_settings[multisite_override]"]' ).on( 'change', function() {
643 688 hideMultisiteSettingsIfDisabled();
644 689 });
645 690 hideMultisiteSettingsIfDisabled();
646 691
@@ -692,10 +737,40 @@
692 737
693 738 // Enable growable textarea for config fields.
694 739 $( 'textarea#auth_settings_ldap_host' ).autogrow();
695 740 $( 'textarea#auth_settings_ldap_search_base' ).autogrow();
741 + $( 'textarea#auth_settings_ldap_search_filter' ).autogrow();
742 + $( 'textarea#auth_settings_oauth2_hosteddomain' ).autogrow();
696 743 $( 'textarea#auth_settings_google_hosteddomain' ).autogrow();
744 + $( 'textarea#auth_settings_advanced_disable_wp_login_bypass_usernames' ).autogrow();
697 745
746 + // Enable select2 new user email notification dropdown.
747 + $( 'select#auth_settings_access_users_receive_pending_emails' ).select2({
748 + ajax: {
749 + url: ajaxurl,
750 + dataType: 'json',
751 + method: 'POST',
752 + data: function ( params ) {
753 + return {
754 + action: 'auth_settings_search_users',
755 + nonce: $( '#nonce_save_auth_settings' ).val(),
756 + query: params.term,
757 + page: params.page || 1,
758 + };
759 + },
760 + delay: 250, // Delay in milliseconds after user stops typing before sending the request.
761 + },
762 + closeOnSelect: true, // Controls whether the dropdown is closed after a selection is made.
763 + maximumInputLength: 50, // Maximum number of characters that may be provided for a search term.
764 + minimumInputLength: 1, // Minimum number of characters required to start a search.
765 + placeholder: authL10n.select_users,
766 + templateSelection: function( data ) {
767 + // Show just the username (data.id); fall back to the full display: username (email).
768 + return data.id || data.text;
769 + },
770 + width: '100%',
771 + // minimumResultsForSearch: 10,
772 + });
698 773 });
699 774
700 775
701 776 /**
@@ -737,9 +812,9 @@
737 812 // Hide (with overlay) site options if overridden by a multisite option.
738 813 window.hideMultisiteOverriddenOptions = function() {
739 814 $( '.auth_multisite_override_overlay' ).each( function() {
740 815 // Option to hide is stored in the overlay's id with 'overlay-hide-' prefix.
741 - var optionContainerToHide = $( this ).closest( 'tr' );
816 + var optionContainerToHide = $( this ).closest( 'td' );
742 817 if ( optionContainerToHide.length > 0 ) {
743 818 $( this ).css({
744 819 'background-color': '#f1f1f1',
745 820 'z-index': 1,
@@ -744,10 +819,9 @@
744 819 'background-color': '#f1f1f1',
745 820 'z-index': 1,
746 821 opacity: 0.8,
747 822 position: 'absolute',
748 - top: optionContainerToHide.position().top,
749 - left: optionContainerToHide.position().left,
823 + top: optionContainerToHide.css('padding-top'),
750 824 width: '100%',
751 825 height: optionContainerToHide.height(),
752 826 });
753 827 $( this ).show();
@@ -794,9 +868,8 @@
794 868
795 869 // Enable inputs, remove spinner.
796 870 $caller.removeAttr( 'disabled' );
797 871 $usermeta.removeAttr( 'disabled' );
798 - $caller.css( 'display', 'none' );
799 872 $( 'form .spinner:not(:has(.spinner-text))' ).animate( { width: '60px' }, 'fast' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
800 873 $( this ).remove();
801 874 });
802 875 $( 'html' ).removeClass( 'busy' );
@@ -808,9 +881,8 @@
808 881
809 882 // Enable inputs, remove spinner.
810 883 $caller.removeAttr( 'disabled' );
811 884 $usermeta.removeAttr( 'disabled' );
812 - $caller.css( 'display', 'none' );
813 885 $( 'form .spinner:not(:has(.spinner-text))' ).animate( { width: '60px' }, 'fast' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
814 886 $( this ).remove();
815 887 });
816 888 $( 'html' ).removeClass( 'busy' );
@@ -923,13 +995,12 @@
923 995 })
924 996 );
925 997
926 998 // Add the new item.
927 - var authJsPrefix = isMultisite ? 'authMultisite' : 'auth';
928 - var banButton = ! isMultisite ? '<a class="button' + ( list === 'approved' ? '' : ' invisible' ) + '" id="block_user_' + nextId + '" onclick="' + authJsPrefix + 'AddUser( this, \'blocked\', false ); ' + authJsPrefix + 'IgnoreUser( this, \'approved\' );" title="' + authL10n.block_ban_user + '"><span class="glyphicon glyphicon-ban-circle"></span></a>' : '';
929 - var ignoreButton = '<a class="button" id="ignore_user_' + nextId + '" onclick="' + authJsPrefix + 'IgnoreUser( this, \'' + list + '\' );" title="' + authL10n.remove_user + '"><span class="glyphicon glyphicon-remove"></span></a>';
930 - var localIcon = '&nbsp;<a title="' + authL10n.local_wordpress_user + '" class="auth-local-user' + ( shouldCreateLocalAccount ? '' : ' invisible' ) + '"><span class="glyphicon glyphicon-user"></span></a>';
931 - var multisiteIcon = '&nbsp;<a title="WordPress Multisite user" class="auth-multisite-user'+ ( isMultisite ? '' : ' invisible' ) + '"><span class="glyphicon glyphicon-globe"></span></a>';
999 + var authJsPrefix = isMultisite ? 'authMultisite' : 'auth';
1000 + var multisiteIcon = isMultisite ? '<a title="WordPress Multisite user" class="button disabled auth-multisite-user dashicons-before dashicons-admin-site"></a>' : '';
1001 + var banButton = isMultisite || 'approved' !== list ? '' : '<a class="button button-primary dashicons-before dashicons-remove" id="block_user_' + nextId + '" onclick="' + authJsPrefix + 'AddUser( this, \'blocked\', false ); ' + authJsPrefix + 'IgnoreUser( this, \'approved\' );" title="' + authL10n.block_ban_user + '"></a>';
1002 + var ignoreButton = '<a class="button dashicons-before dashicons-no" id="ignore_user_' + nextId + '" onclick="' + authJsPrefix + 'IgnoreUser( this, \'' + list + '\' );" title="' + authL10n.remove_user + '"></a>';
932 1003 $( ' \
933 1004 <li id="new_user_' + nextId + '" class="new-user" style="display: none;"> \
934 1005 <input type="text" id="auth_settings_access_users_' + list + '_' + nextId + '" name="auth_settings[access_users_' + list + '][' + nextId + '][email]" value="' + user.email + '" readonly="true" class="auth-email" /> \
935 1006 <select name="auth_settings[access_users_' + list + '][' + nextId + '][role]" class="auth-role" onchange="' + authJsPrefix + 'ChangeRole( this );"> \
@@ -934,9 +1005,9 @@
934 1005 <input type="text" id="auth_settings_access_users_' + list + '_' + nextId + '" name="auth_settings[access_users_' + list + '][' + nextId + '][email]" value="' + user.email + '" readonly="true" class="auth-email" /> \
935 1006 <select name="auth_settings[access_users_' + list + '][' + nextId + '][role]" class="auth-role" onchange="' + authJsPrefix + 'ChangeRole( this );"> \
936 1007 </select> \
937 1008 <input type="text" name="auth_settings[access_users_' + list + '][' + nextId + '][date_added]" value="' + getShortDate() + '" readonly="true" class="auth-date-added" /> \
938 - ' + banButton + ignoreButton + localIcon + multisiteIcon + ' \
1009 + ' + multisiteIcon + banButton + ignoreButton + ' \
939 1010 <span class="spinner is-active"></span> \
940 1011 </li> \
941 1012 ' ).appendTo( '#list_auth_settings_access_users_' + list ).slideDown( 250 );
942 1013
@@ -1040,18 +1111,23 @@
1040 1111 left: $( caller ).position().left + $( caller ).width() + 20,
1041 1112 });
1042 1113 $( caller ).after( $spinner );
1043 1114
1044 - // Get form elements to save
1045 - var nonce_save_auth_settings = $( '#nonce_save_auth_settings' ).val();
1115 + // Get form elements to save.
1116 + var params = {
1117 + action: 'save_auth_multisite_settings',
1118 + nonce: $( '#nonce_save_auth_settings' ).val(),
1119 + };
1046 1120
1047 - var multisite_override = $( '#auth_settings_multisite_override' ).is( ':checked' ) ? '1' : '';
1121 + params.multisite_override = $( '#auth_settings_multisite_override' ).is( ':checked' ) ? '1' : '';
1048 1122
1049 - var access_who_can_login = $( 'form input[name="auth_settings[access_who_can_login]"]:checked' ).val();
1123 + params.prevent_override_multisite = $( '#auth_settings_prevent_override_multisite' ).is( ':checked' ) ? '1' : '';
1050 1124
1051 - var access_who_can_view = $( 'form input[name="auth_settings[access_who_can_view]"]:checked' ).val();
1125 + params.access_who_can_login = $( 'form input[name="auth_settings[access_who_can_login]"]:checked' ).val();
1052 1126
1053 - var access_users_approved = {};
1127 + params.access_who_can_view = $( 'form input[name="auth_settings[access_who_can_view]"]:checked' ).val();
1128 +
1129 + params.access_users_approved = {};
1054 1130 $( '#list_auth_settings_access_users_approved li' ).each( function( index ) {
1055 1131 var user = {};
1056 1132 user.email = $( '.auth-email', this ).val();
1057 1133 user.role = $( '.auth-role', this ).val();
@@ -1056,46 +1132,140 @@
1056 1132 user.email = $( '.auth-email', this ).val();
1057 1133 user.role = $( '.auth-role', this ).val();
1058 1134 user.date_added = $( '.auth-date-added', this ).val();
1059 1135 user.local_user = $( '.auth-local-user', this ).length !== 0;
1060 - access_users_approved[index] = user;
1136 + params.access_users_approved[index] = user;
1061 1137 });
1062 1138
1063 - var access_default_role = $( '#auth_settings_access_default_role' ).val();
1139 + params.access_default_role = $( '#auth_settings_access_default_role' ).val();
1064 1140
1065 - var google = $( '#auth_settings_google' ).is( ':checked' ) ? '1' : '';
1066 - var google_clientid = $( '#auth_settings_google_clientid' ).val();
1067 - var google_clientsecret = $( '#auth_settings_google_clientsecret' ).val();
1068 - var google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).val();
1141 + params.oauth2 = $( '#auth_settings_oauth2' ).is( ':checked' ) ? '1' : '';
1142 + params.oauth2_auto_login = $( '#auth_settings_oauth2_auto_login' ).val();
1143 + params.oauth2_num_servers = parseInt( $( '#auth_settings_oauth2_num_servers' ).val() );
1144 + params.oauth2_provider = $( '#auth_settings_oauth2_provider' ).val();
1145 + params.oauth2_custom_label = $( '#auth_settings_oauth2_custom_label' ).val();
1146 + params.oauth2_clientid = $( '#auth_settings_oauth2_clientid' ).val();
1147 + params.oauth2_clientsecret = $( '#auth_settings_oauth2_clientsecret' ).val();
1148 + params.oauth2_hosteddomain = $( '#auth_settings_oauth2_hosteddomain' ).val();
1149 + params.oauth2_tenant_id = $( '#auth_settings_oauth2_tenant_id' ).val();
1150 + params.oauth2_url_authorize = $( '#auth_settings_oauth2_url_authorize' ).val();
1151 + params.oauth2_url_token = $( '#auth_settings_oauth2_url_token' ).val();
1152 + params.oauth2_url_resource = $( '#auth_settings_oauth2_url_resource' ).val();
1153 + params.oauth2_attr_username = $( '#auth_settings_oauth2_attr_username' ).val();
1154 + params.oauth2_attr_email = $( '#auth_settings_oauth2_attr_email' ).val();
1155 + params.oauth2_attr_first_name = $( '#auth_settings_oauth2_attr_first_name' ).val();
1156 + params.oauth2_attr_last_name = $( '#auth_settings_oauth2_attr_last_name' ).val();
1157 + params.oauth2_attr_update_on_login = $( '#auth_settings_oauth2_attr_update_on_login' ).val();
1158 + if ( params.oauth2_num_servers > 1 ) {
1159 + for ( var oauth2_num_server = 2; oauth2_num_server <= params.oauth2_num_servers && oauth2_num_server <= 20; oauth2_num_server++ ) {
1160 + params['oauth2_provider_' + oauth2_num_server] = $( '#auth_settings_oauth2_provider_' + oauth2_num_server ).val();
1161 + params['oauth2_custom_label_' + oauth2_num_server] = $( '#auth_settings_oauth2_custom_label_' + oauth2_num_server ).val();
1162 + params['oauth2_clientid_' + oauth2_num_server] = $( '#auth_settings_oauth2_clientid_' + oauth2_num_server ).val();
1163 + params['oauth2_clientsecret_' + oauth2_num_server] = $( '#auth_settings_oauth2_clientsecret_' + oauth2_num_server ).val();
1164 + params['oauth2_hosteddomain_' + oauth2_num_server] = $( '#auth_settings_oauth2_hosteddomain_' + oauth2_num_server ).val();
1165 + params['oauth2_tenant_id_' + oauth2_num_server] = $( '#auth_settings_oauth2_tenant_id_' + oauth2_num_server ).val();
1166 + params['oauth2_url_authorize_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_authorize_' + oauth2_num_server ).val();
1167 + params['oauth2_url_token_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_token_' + oauth2_num_server ).val();
1168 + params['oauth2_url_resource_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_resource_' + oauth2_num_server ).val();
1169 + params['oauth2_attr_username_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_username_' + oauth2_num_server ).val();
1170 + params['oauth2_attr_email_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_email_' + oauth2_num_server ).val();
1171 + params['oauth2_attr_first_name_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_first_name_' + oauth2_num_server ).val();
1172 + params['oauth2_attr_last_name_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_last_name_' + oauth2_num_server ).val();
1173 + params['oauth2_attr_update_on_login_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_update_on_login_' + oauth2_num_server ).val();
1174 + }
1175 + }
1069 1176
1070 - var cas = $( '#auth_settings_cas' ).is( ':checked' ) ? '1' : '';
1071 - var cas_custom_label = $( '#auth_settings_cas_custom_label' ).val();
1072 - var cas_host = $( '#auth_settings_cas_host' ).val();
1073 - var cas_port = $( '#auth_settings_cas_port' ).val();
1074 - var cas_path = $( '#auth_settings_cas_path' ).val();
1075 - var cas_version = $( '#auth_settings_cas_version' ).val();
1076 - var cas_attr_email = $( '#auth_settings_cas_attr_email' ).val();
1077 - var cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).val();
1078 - var cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).val();
1079 - var cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).is( ':checked' ) ? '1' : '';
1080 - var cas_auto_login = $( '#auth_settings_cas_auto_login' ).is( ':checked' ) ? '1' : '';
1081 - var cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).is( ':checked' ) ? '1' : '';
1177 + params.oidc = $( '#auth_settings_oidc' ).is( ':checked' ) ? '1' : '';
1178 + params.oidc_auto_login = $( '#auth_settings_oidc_auto_login' ).val();
1179 + params.oidc_num_servers = parseInt( $( '#auth_settings_oidc_num_servers' ).val() );
1180 + params.oidc_custom_label = $( '#auth_settings_oidc_custom_label' ).val();
1181 + params.oidc_issuer = $( '#auth_settings_oidc_issuer' ).val();
1182 + params.oidc_client_id = $( '#auth_settings_oidc_client_id' ).val();
1183 + params.oidc_client_secret = $( '#auth_settings_oidc_client_secret' ).val();
1184 + params.oidc_scopes = $( '#auth_settings_oidc_scopes' ).val();
1185 + params.oidc_prompt = $( '#auth_settings_oidc_prompt' ).val();
1186 + params.oidc_login_hint = $( '#auth_settings_oidc_login_hint' ).val();
1187 + params.oidc_max_age = $( '#auth_settings_oidc_max_age' ).val();
1188 + params.oidc_attr_username = $( '#auth_settings_oidc_attr_username' ).val();
1189 + params.oidc_attr_email = $( '#auth_settings_oidc_attr_email' ).val();
1190 + params.oidc_attr_first_name = $( '#auth_settings_oidc_attr_first_name' ).val();
1191 + params.oidc_attr_last_name = $( '#auth_settings_oidc_attr_last_name' ).val();
1192 + params.oidc_attr_update_on_login = $( '#auth_settings_oidc_attr_update_on_login' ).val();
1193 + params.oidc_require_verified_email = $( '#auth_settings_oidc_require_verified_email' ).is( ':checked' ) ? '1' : '';
1194 + params.oidc_link_on_username = $( '#auth_settings_oidc_link_on_username' ).is( ':checked' ) ? '1' : '';
1195 + params.oidc_hosteddomain = $( '#auth_settings_oidc_hosteddomain' ).val();
1196 + if ( params.oidc_num_servers > 1 ) {
1197 + for ( var oidc_num_server = 2; oidc_num_server <= params.oidc_num_servers && oidc_num_server <= 20; oidc_num_server++ ) {
1198 + params['oidc_custom_label_' + oidc_num_server] = $( '#auth_settings_oidc_custom_label_' + oidc_num_server ).val();
1199 + params['oidc_issuer_' + oidc_num_server] = $( '#auth_settings_oidc_issuer_' + oidc_num_server ).val();
1200 + params['oidc_client_id_' + oidc_num_server] = $( '#auth_settings_oidc_client_id_' + oidc_num_server ).val();
1201 + params['oidc_client_secret_' + oidc_num_server] = $( '#auth_settings_oidc_client_secret_' + oidc_num_server ).val();
1202 + params['oidc_scopes_' + oidc_num_server] = $( '#auth_settings_oidc_scopes_' + oidc_num_server ).val();
1203 + params['oidc_prompt_' + oidc_num_server] = $( '#auth_settings_oidc_prompt_' + oidc_num_server ).val();
1204 + params['oidc_login_hint_' + oidc_num_server] = $( '#auth_settings_oidc_login_hint_' + oidc_num_server ).val();
1205 + params['oidc_max_age_' + oidc_num_server] = $( '#auth_settings_oidc_max_age_' + oidc_num_server ).val();
1206 + params['oidc_attr_username_' + oidc_num_server] = $( '#auth_settings_oidc_attr_username_' + oidc_num_server ).val();
1207 + params['oidc_attr_email_' + oidc_num_server] = $( '#auth_settings_oidc_attr_email_' + oidc_num_server ).val();
1208 + params['oidc_attr_first_name_' + oidc_num_server] = $( '#auth_settings_oidc_attr_first_name_' + oidc_num_server ).val();
1209 + params['oidc_attr_last_name_' + oidc_num_server] = $( '#auth_settings_oidc_attr_last_name_' + oidc_num_server ).val();
1210 + params['oidc_attr_update_on_login_' + oidc_num_server] = $( '#auth_settings_oidc_attr_update_on_login_' + oidc_num_server ).val();
1211 + params['oidc_require_verified_email_' + oidc_num_server] = $( '#auth_settings_oidc_require_verified_email_' + oidc_num_server ).is( ':checked' ) ? '1' : '';
1212 + params['oidc_link_on_username_' + oidc_num_server] = $( '#auth_settings_oidc_link_on_username_' + oidc_num_server ).is( ':checked' ) ? '1' : '';
1213 + }
1214 + }
1082 1215
1083 - var ldap = $( '#auth_settings_ldap' ).is( ':checked' ) ? '1' : '';
1084 - var ldap_host = $( '#auth_settings_ldap_host' ).val();
1085 - var ldap_port = $( '#auth_settings_ldap_port' ).val();
1086 - var ldap_search_base = $( '#auth_settings_ldap_search_base' ).val();
1087 - var ldap_uid = $( '#auth_settings_ldap_uid' ).val();
1088 - var ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).val();
1089 - var ldap_user = $( '#auth_settings_ldap_user' ).val();
1090 - var ldap_password = $( '#auth_settings_ldap_password' ).val();
1091 - var ldap_tls = $( '#auth_settings_ldap_tls' ).is( ':checked' ) ? '1' : '';
1092 - var ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).val();
1093 - var ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).val();
1094 - var ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).val();
1095 - var ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).is( ':checked' ) ? '1' : '';
1216 + params.google = $( '#auth_settings_google' ).is( ':checked' ) ? '1' : '';
1217 + params.google_clientid = $( '#auth_settings_google_clientid' ).val();
1218 + params.google_clientsecret = $( '#auth_settings_google_clientsecret' ).val();
1219 + params.google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).val();
1096 1220
1097 - var advanced_lockouts = {
1221 + params.cas = $( '#auth_settings_cas' ).is( ':checked' ) ? '1' : '';
1222 + params.cas_auto_login = $( '#auth_settings_cas_auto_login' ).val();
1223 + params.cas_num_servers = parseInt( $( '#auth_settings_cas_num_servers' ).val() );
1224 + params.cas_custom_label = $( '#auth_settings_cas_custom_label' ).val();
1225 + params.cas_host = $( '#auth_settings_cas_host' ).val();
1226 + params.cas_port = $( '#auth_settings_cas_port' ).val();
1227 + params.cas_path = $( '#auth_settings_cas_path' ).val();
1228 + params.cas_method = $( '#auth_settings_cas_method' ).val();
1229 + params.cas_version = $( '#auth_settings_cas_version' ).val();
1230 + params.cas_attr_email = $( '#auth_settings_cas_attr_email' ).val();
1231 + params.cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).val();
1232 + params.cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).val();
1233 + params.cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).val();
1234 + params.cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).is( ':checked' ) ? '1' : '';
1235 + if ( params.cas_num_servers > 1 ) {
1236 + for ( var cas_num_server = 2; cas_num_server <= params.cas_num_servers && cas_num_server <= 10; cas_num_server++ ) {
1237 + params['cas_custom_label_' + cas_num_server] = $( '#auth_settings_cas_custom_label_' + cas_num_server ).val();
1238 + params['cas_host_' + cas_num_server] = $( '#auth_settings_cas_host_' + cas_num_server ).val();
1239 + params['cas_port_' + cas_num_server] = $( '#auth_settings_cas_port_' + cas_num_server ).val();
1240 + params['cas_path_' + cas_num_server] = $( '#auth_settings_cas_path_' + cas_num_server ).val();
1241 + params['cas_method_' + cas_num_server] = $( '#auth_settings_cas_method_' + cas_num_server ).val();
1242 + params['cas_version_' + cas_num_server] = $( '#auth_settings_cas_version_' + cas_num_server ).val();
1243 + params['cas_attr_email_' + cas_num_server] = $( '#auth_settings_cas_attr_email_' + cas_num_server ).val();
1244 + params['cas_attr_first_name_' + cas_num_server] = $( '#auth_settings_cas_attr_first_name_' + cas_num_server ).val();
1245 + params['cas_attr_last_name_' + cas_num_server] = $( '#auth_settings_cas_attr_last_name_' + cas_num_server ).val();
1246 + params['cas_attr_update_on_login_' + cas_num_server] = $( '#auth_settings_cas_attr_update_on_login_' + cas_num_server ).val();
1247 + params['cas_link_on_username_' + cas_num_server] = $( '#auth_settings_cas_link_on_username_' + cas_num_server ).is( ':checked' ) ? '1' : '';
1248 + }
1249 + }
1250 +
1251 + params.ldap = $( '#auth_settings_ldap' ).is( ':checked' ) ? '1' : '';
1252 + params.ldap_host = $( '#auth_settings_ldap_host' ).val();
1253 + params.ldap_port = $( '#auth_settings_ldap_port' ).val();
1254 + params.ldap_search_base = $( '#auth_settings_ldap_search_base' ).val();
1255 + params.ldap_search_filter = $( '#auth_settings_ldap_search_filter' ).val();
1256 + params.ldap_uid = $( '#auth_settings_ldap_uid' ).val();
1257 + params.ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).val();
1258 + params.ldap_user = $( '#auth_settings_ldap_user' ).val();
1259 + params.ldap_password = $( '#auth_settings_ldap_password' ).val();
1260 + params.ldap_tls = $( '#auth_settings_ldap_tls' ).is( ':checked' ) ? '1' : '';
1261 + params.ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).val();
1262 + params.ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).val();
1263 + params.ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).val();
1264 + params.ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).val();
1265 + params.ldap_test_user = $( '#auth_settings_ldap_test_user' ).val();
1266 +
1267 + params.advanced_lockouts = {
1098 1268 attempts_1: $( '#auth_settings_advanced_lockouts_attempts_1' ).val(),
1099 1269 duration_1: $( '#auth_settings_advanced_lockouts_duration_1' ).val(),
1100 1270 attempts_2: $( '#auth_settings_advanced_lockouts_attempts_2' ).val(),
1101 1271 duration_2: $( '#auth_settings_advanced_lockouts_duration_2' ).val(),
@@ -1100,60 +1270,17 @@
1100 1270 attempts_2: $( '#auth_settings_advanced_lockouts_attempts_2' ).val(),
1101 1271 duration_2: $( '#auth_settings_advanced_lockouts_duration_2' ).val(),
1102 1272 reset_duration: $( '#auth_settings_advanced_lockouts_reset_duration' ).val(),
1103 1273 };
1104 - var advanced_hide_wp_login = $( '#auth_settings_advanced_hide_wp_login' ).is( ':checked' ) ? '1' : '';
1105 - var advanced_disable_wp_login = $( '#auth_settings_advanced_disable_wp_login' ).is( ':checked' ) ? '1' : '';
1106 - var advanced_widget_enabled = $( '#auth_settings_advanced_widget_enabled' ).is( ':checked' ) ? '1' : '';
1107 - var advanced_users_per_page = $( '#auth_settings_advanced_users_per_page' ).val();
1108 - var advanced_users_sort_by = $( '#auth_settings_advanced_users_sort_by' ).val();
1109 - var advanced_users_sort_order = $( '#auth_settings_advanced_users_sort_order' ).val();
1274 + params.advanced_hide_wp_login = $( '#auth_settings_advanced_hide_wp_login' ).is( ':checked' ) ? '1' : '';
1275 + params.advanced_disable_wp_login = $( '#auth_settings_advanced_disable_wp_login' ).is( ':checked' ) ? '1' : '';
1276 + params.advanced_disable_wp_login_bypass_usernames = $( '#auth_settings_advanced_disable_wp_login_bypass_usernames' ).val();
1277 + params.advanced_widget_enabled = $( '#auth_settings_advanced_widget_enabled' ).is( ':checked' ) ? '1' : '';
1278 + params.advanced_users_per_page = $( '#auth_settings_advanced_users_per_page' ).val();
1279 + params.advanced_users_sort_by = $( '#auth_settings_advanced_users_sort_by' ).val();
1280 + params.advanced_users_sort_order = $( '#auth_settings_advanced_users_sort_order' ).val();
1110 1281
1111 - $.post( ajaxurl, {
1112 - action: 'save_auth_multisite_settings',
1113 - nonce: nonce_save_auth_settings,
1114 - multisite_override: multisite_override,
1115 - access_who_can_login: access_who_can_login,
1116 - access_who_can_view: access_who_can_view,
1117 - access_users_approved: access_users_approved,
1118 - access_default_role: access_default_role,
1119 - google: google,
1120 - google_clientid: google_clientid,
1121 - google_clientsecret: google_clientsecret,
1122 - google_hosteddomain: google_hosteddomain,
1123 - cas: cas,
1124 - cas_custom_label: cas_custom_label,
1125 - cas_host: cas_host,
1126 - cas_port: cas_port,
1127 - cas_path: cas_path,
1128 - cas_version: cas_version,
1129 - cas_attr_email: cas_attr_email,
1130 - cas_attr_first_name: cas_attr_first_name,
1131 - cas_attr_last_name: cas_attr_last_name,
1132 - cas_attr_update_on_login: cas_attr_update_on_login,
1133 - cas_auto_login: cas_auto_login,
1134 - cas_link_on_username: cas_link_on_username,
1135 - ldap: ldap,
1136 - ldap_host: ldap_host,
1137 - ldap_port: ldap_port,
1138 - ldap_search_base: ldap_search_base,
1139 - ldap_uid: ldap_uid,
1140 - ldap_attr_email: ldap_attr_email,
1141 - ldap_user: ldap_user,
1142 - ldap_password: ldap_password,
1143 - ldap_tls: ldap_tls,
1144 - ldap_lostpassword_url: ldap_lostpassword_url,
1145 - ldap_attr_first_name: ldap_attr_first_name,
1146 - ldap_attr_last_name: ldap_attr_last_name,
1147 - ldap_attr_update_on_login: ldap_attr_update_on_login,
1148 - advanced_lockouts: advanced_lockouts,
1149 - advanced_hide_wp_login: advanced_hide_wp_login,
1150 - advanced_disable_wp_login: advanced_disable_wp_login,
1151 - advanced_users_per_page: advanced_users_per_page,
1152 - advanced_users_sort_by: advanced_users_sort_by,
1153 - advanced_users_sort_order: advanced_users_sort_order,
1154 - advanced_widget_enabled: advanced_widget_enabled,
1155 - }, function( response ) {
1282 + $.post( ajaxurl, params, function( response ) {
1156 1283 var succeeded = response === 'success';
1157 1284 var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
1158 1285 var spinnerWait = succeeded ? 500 : 2000;
1159 1286 $( 'form .spinner:not(:has(.spinner-text))' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
@@ -1162,8 +1289,15 @@
1162 1289 $( caller ).removeAttr( 'disabled' );
1163 1290
1164 1291 // Disable wait cursor.
1165 1292 $( 'html' ).removeClass( 'busy' );
1293 +
1294 + // If the save was successful, and we have more than 1 CAS or OAuth2
1295 + // servers configured, reload the page to render the additional CAS/Oauth2
1296 + // server settings fields.
1297 + if ( succeeded && ( params.cas_num_servers > 1 || params.oauth2_num_servers > 1 ) ) {
1298 + location.reload();
1299 + }
1166 1300 }).fail( function() {
1167 1301 // Fail fires if the server doesn't respond
1168 1302 var succeeded = false;
1169 1303 var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';