PluginProbe
Authorizer / 3.13.0
Authorizer v3.13.0
3.16.0 3.15.3 3.15.2 3.15.1 3.15.0 3.14.3 3.14.4 3.14.2 3.14.1 2.8.1 2.8.2 2.8.3 2.8.4 2.8.5 2.8.6 2.8.7 2.8.8 2.9.0 2.9.1 2.9.10 2.9.11 2.9.12 2.9.13 2.9.2 2.9.3 All 127 releases
← All changes | js/authorizer.js +414 -255 2.9.33.13.0 View file →
@@ -198,9 +198,9 @@
198 198 nonce: nonce,
199 199 }, function( response ) {
200 200 // Server responded, but if success isn't true it failed to save.
201 201 var succeeded = response.success;
202 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
202 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
203 203 var spinnerWait = succeeded ? 500 : 2000;
204 204
205 205 // Remove any new user entries that were rejected by the server.
206 206 if ( response.invalid_emails.length > 0 ) {
@@ -206,10 +206,10 @@
206 206 if ( response.invalid_emails.length > 0 ) {
207 207 for ( var i = 0; i < response.invalid_emails.length; i++ ) {
208 208 var duplicateEmail = response.invalid_emails[i];
209 209 $( 'li.new-user .auth-email[value="' + duplicateEmail + '"]' )
210 - .siblings( '.spinner' ).addClass( 'duplicate' ).append( '<span class="spinner-text" style="color: red;">' + authL10n.duplicate + '.</span>' )
211 - .parent().fadeOut( spinnerWait, function() { $( this ).remove(); }); // jshint ignore:line
210 + .siblings( '.spinner' ).addClass( 'duplicate' ).append( '<span class="spinner-text"><span class="attention">' + authL10n.duplicate + '.</span></span>' )
211 + .parent().fadeOut( 2000, function() { $( this ).remove(); }); // jshint ignore:line
212 212 }
213 213 }
214 214
215 215 // Show message ('Saved', 'Failed', or 'Saved, removing duplicates').
@@ -222,9 +222,9 @@
222 222 $( 'html' ).removeClass( 'busy' );
223 223 }).fail( function() {
224 224 // Fail fires if the server doesn't respond or responds with 500 codes
225 225 var succeeded = false;
226 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
226 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
227 227 var spinnerWait = succeeded ? 500 : 2000;
228 228 $( 'form .spinner:not(:has(.spinner-text))' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
229 229 $( this ).remove();
230 230 });
@@ -252,13 +252,12 @@
252 252 'background-color': '#f1f1f1',
253 253 'z-index': 1,
254 254 opacity: 0.8,
255 255 position: 'absolute',
256 - top: settings.position().top + 46,
257 - left: settings.position().left - 20,
258 - width: '100%',
259 - height: settings.height() + 20,
260 - 'padding-left': 20,
256 + top: settings.position().top,
257 + left: settings.position().left,
258 + width: settings.width(),
259 + height: settings.height() + 50,
261 260 });
262 261 overlay.show();
263 262 }
264 263 }
@@ -273,17 +272,16 @@
273 272
274 273 // Helper function to hide/show wordpress option
275 274 function animateOption( action, option ) {
276 275 if ( action === 'show' ) {
277 - $( 'div.animated_wrapper', option ).slideDown( animationSpeed );
278 - $( 'th', option ).animate({ padding: '20px 10px 20px 0' }, { duration: animationSpeed });
279 - $( 'td', option ).animate({ padding: '15px 10px' }, { duration: animationSpeed });
276 + option.fadeIn( animationSpeed );
277 + $( 'th, td', option ).removeClass( 'hide-animate hide-no-animate' );
280 278 } else if ( action === 'hide' ) {
281 - $( 'div.animated_wrapper', option ).slideUp( animationSpeed );
282 - $( 'td, th', option ).animate({ padding: '0px' }, { duration: animationSpeed });
279 + option.fadeOut( animationSpeed );
280 + $( 'td, th', option ).addClass( 'hide-animate' );
283 281 } else if ( action === 'hide_immediately' ) {
284 - $( 'div.animated_wrapper', option ).hide();
285 - $( 'td, th', option ).css({ padding: '0px' });
282 + option.hide();
283 + $( 'td, th', option ).addClass( 'hide-no-animate' );
286 284 }
287 285 }
288 286
289 287 // Helper function to grab a querystring param value by name
@@ -375,8 +373,9 @@
375 373 $( document ).ready( function() {
376 374 // Grab references to form elements that we will show/hide on page load
377 375 /* eslint-disable camelcase */
378 376 var auth_settings_access_role_receive_pending_emails = $( '#auth_settings_access_role_receive_pending_emails' ).closest( 'tr' );
377 + var auth_settings_access_users_receive_pending_emails = $( '#auth_settings_access_users_receive_pending_emails' ).closest( 'tr' );
379 378 var auth_settings_access_pending_redirect_to_message = $( '#wp-auth_settings_access_pending_redirect_to_message-wrap' ).closest( 'tr' );
380 379 var auth_settings_access_blocked_redirect_to_message = $( '#wp-auth_settings_access_blocked_redirect_to_message-wrap' ).closest( 'tr' );
381 380 var auth_settings_access_should_email_approved_users = $( '#auth_settings_access_should_email_approved_users' ).closest( 'tr' );
382 381 var auth_settings_access_email_approved_users_subject = $( '#auth_settings_access_email_approved_users_subject' ).closest( 'tr' );
@@ -384,25 +383,87 @@
384 383 var auth_settings_access_public_pages = $( '#auth_settings_access_public_pages' ).closest( 'tr' );
385 384 var auth_settings_access_redirect_to_login = $( '#radio_auth_settings_access_redirect_to_login' ).closest( 'tr' );
386 385 var auth_settings_access_public_warning = $( '#radio_auth_settings_access_public_warning' ).closest( 'tr' );
387 386 var auth_settings_access_redirect_to_message = $( '#wp-auth_settings_access_redirect_to_message-wrap' ).closest( 'tr' );
387 + var auth_settings_external_oauth2_auto_login = $( '#auth_settings_oauth2_auto_login' ).closest( 'tr' );
388 + var auth_settings_external_oauth2_num_servers = $( '#auth_settings_oauth2_num_servers' ).closest( 'tr' );
389 + var auth_settings_external_oauth2_servers = [];
390 + // OAuth2 settings below are for the first configured OAuth2 server.
391 + auth_settings_external_oauth2_servers.push( {
392 + provider: $( '#auth_settings_oauth2_provider' ).closest( 'tr' ),
393 + custom_label: $( '#auth_settings_oauth2_custom_label' ).closest( 'tr' ),
394 + clientid: $( '#auth_settings_oauth2_clientid' ).closest( 'tr' ),
395 + clientsecret: $( '#auth_settings_oauth2_clientsecret' ).closest( 'tr' ),
396 + hosteddomain: $( '#auth_settings_oauth2_hosteddomain' ).closest( 'tr' ),
397 + tenant_id: $( '#auth_settings_oauth2_tenant_id' ).closest( 'tr' ),
398 + url_authorize: $( '#auth_settings_oauth2_url_authorize' ).closest( 'tr' ),
399 + url_token: $( '#auth_settings_oauth2_url_token' ).closest( 'tr' ),
400 + url_resource: $( '#auth_settings_oauth2_url_resource' ).closest( 'tr' ),
401 + attr_username: $( '#auth_settings_oauth2_attr_username' ).closest( 'tr' ),
402 + attr_email: $( '#auth_settings_oauth2_attr_email' ).closest( 'tr' ),
403 + attr_first_name: $( '#auth_settings_oauth2_attr_first_name' ).closest( 'tr' ),
404 + attr_last_name: $( '#auth_settings_oauth2_attr_last_name' ).closest( 'tr' ),
405 + attr_update_on_login: $( '#auth_settings_oauth2_attr_update_on_login' ).closest( 'tr' ),
406 + } );
407 + // OAuth2 settings below are for any additional OAuth2 servers configured (up to 20).
408 + for ( var i = 2; i <= parseInt( $( '#auth_settings_oauth2_num_servers' ).val() ) && i <= 20; i++ ) {
409 + auth_settings_external_oauth2_servers.push( {
410 + provider: $( '#auth_settings_oauth2_provider_' + i ).closest( 'tr' ),
411 + custom_label: $( '#auth_settings_oauth2_custom_label_' + i ).closest( 'tr' ),
412 + clientid: $( '#auth_settings_oauth2_clientid_' + i ).closest( 'tr' ),
413 + clientsecret: $( '#auth_settings_oauth2_clientsecret_' + i ).closest( 'tr' ),
414 + hosteddomain: $( '#auth_settings_oauth2_hosteddomain_' + i ).closest( 'tr' ),
415 + tenant_id: $( '#auth_settings_oauth2_tenant_id_' + i ).closest( 'tr' ),
416 + url_authorize: $( '#auth_settings_oauth2_url_authorize_' + i ).closest( 'tr' ),
417 + url_token: $( '#auth_settings_oauth2_url_token_' + i ).closest( 'tr' ),
418 + url_resource: $( '#auth_settings_oauth2_url_resource_' + i ).closest( 'tr' ),
419 + attr_username: $( '#auth_settings_oauth2_attr_username_' + i ).closest( 'tr' ),
420 + attr_email: $( '#auth_settings_oauth2_attr_email_' + i ).closest( 'tr' ),
421 + attr_first_name: $( '#auth_settings_oauth2_attr_first_name_' + i ).closest( 'tr' ),
422 + attr_last_name: $( '#auth_settings_oauth2_attr_last_name_' + i ).closest( 'tr' ),
423 + attr_update_on_login: $( '#auth_settings_oauth2_attr_update_on_login_' + i ).closest( 'tr' ),
424 + } );
425 + }
388 426 var auth_settings_external_google_clientid = $( '#auth_settings_google_clientid' ).closest( 'tr' );
389 427 var auth_settings_external_google_clientsecret = $( '#auth_settings_google_clientsecret' ).closest( 'tr' );
390 428 var auth_settings_external_google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).closest( 'tr' );
391 - var auth_settings_external_cas_custom_label = $( '#auth_settings_cas_custom_label' ).closest( 'tr' );
392 - var auth_settings_external_cas_host = $( '#auth_settings_cas_host' ).closest( 'tr' );
393 - var auth_settings_external_cas_port = $( '#auth_settings_cas_port' ).closest( 'tr' );
394 - var auth_settings_external_cas_path = $( '#auth_settings_cas_path' ).closest( 'tr' );
395 - var auth_settings_external_cas_version = $( '#auth_settings_cas_version' ).closest( 'tr' );
396 - var auth_settings_external_cas_attr_email = $( '#auth_settings_cas_attr_email' ).closest( 'tr' );
397 - var auth_settings_external_cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).closest( 'tr' );
398 - var auth_settings_external_cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).closest( 'tr' );
399 - var auth_settings_external_cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).closest( 'tr' );
400 429 var auth_settings_external_cas_auto_login = $( '#auth_settings_cas_auto_login' ).closest( 'tr' );
401 - var auth_settings_external_cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).closest( 'tr' );
430 + var auth_settings_external_cas_num_servers = $( '#auth_settings_cas_num_servers' ).closest( 'tr' );
431 + var auth_settings_external_cas_servers = [];
432 + // CAS settings below are for the first configured CAS server.
433 + auth_settings_external_cas_servers.push( {
434 + custom_label: $( '#auth_settings_cas_custom_label' ).closest( 'tr' ),
435 + host: $( '#auth_settings_cas_host' ).closest( 'tr' ),
436 + port: $( '#auth_settings_cas_port' ).closest( 'tr' ),
437 + path: $( '#auth_settings_cas_path' ).closest( 'tr' ),
438 + method: $( '#auth_settings_cas_method' ).closest( 'tr' ),
439 + version: $( '#auth_settings_cas_version' ).closest( 'tr' ),
440 + attr_email: $( '#auth_settings_cas_attr_email' ).closest( 'tr' ),
441 + attr_first_name: $( '#auth_settings_cas_attr_first_name' ).closest( 'tr' ),
442 + attr_last_name: $( '#auth_settings_cas_attr_last_name' ).closest( 'tr' ),
443 + attr_update_on_login: $( '#auth_settings_cas_attr_update_on_login' ).closest( 'tr' ),
444 + link_on_username: $( '#auth_settings_cas_link_on_username' ).closest( 'tr' ),
445 + } );
446 + // CAS settings below are for any additional CAS servers configured (up to 10).
447 + for ( var i = 2; i <= parseInt( $( '#auth_settings_cas_num_servers' ).val() ) && i <= 10; i++ ) {
448 + auth_settings_external_cas_servers.push( {
449 + custom_label: $( '#auth_settings_cas_custom_label_' + i ).closest( 'tr' ),
450 + host: $( '#auth_settings_cas_host_' + i ).closest( 'tr' ),
451 + port: $( '#auth_settings_cas_port_' + i ).closest( 'tr' ),
452 + path: $( '#auth_settings_cas_path_' + i ).closest( 'tr' ),
453 + method: $( '#auth_settings_cas_method_' + i ).closest( 'tr' ),
454 + version: $( '#auth_settings_cas_version_' + i ).closest( 'tr' ),
455 + attr_email: $( '#auth_settings_cas_attr_email_' + i ).closest( 'tr' ),
456 + attr_first_name: $( '#auth_settings_cas_attr_first_name_' + i ).closest( 'tr' ),
457 + attr_last_name: $( '#auth_settings_cas_attr_last_name_' + i ).closest( 'tr' ),
458 + attr_update_on_login: $( '#auth_settings_cas_attr_update_on_login_' + i ).closest( 'tr' ),
459 + link_on_username: $( '#auth_settings_cas_link_on_username_' + i ).closest( 'tr' ),
460 + } );
461 + }
402 462 var auth_settings_external_ldap_host = $( '#auth_settings_ldap_host' ).closest( 'tr' );
403 463 var auth_settings_external_ldap_port = $( '#auth_settings_ldap_port' ).closest( 'tr' );
404 464 var auth_settings_external_ldap_search_base = $( '#auth_settings_ldap_search_base' ).closest( 'tr' );
465 + var auth_settings_external_ldap_search_filter = $( '#auth_settings_ldap_search_filter' ).closest( 'tr' );
405 466 var auth_settings_external_ldap_uid = $( '#auth_settings_ldap_uid' ).closest( 'tr' );
406 467 var auth_settings_external_ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).closest( 'tr' );
407 468 var auth_settings_external_ldap_user = $( '#auth_settings_ldap_user' ).closest( 'tr' );
408 469 var auth_settings_external_ldap_password = $( '#auth_settings_ldap_password' ).closest( 'tr' );
@@ -410,58 +471,16 @@
410 471 var auth_settings_external_ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).closest( 'tr' );
411 472 var auth_settings_external_ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).closest( 'tr' );
412 473 var auth_settings_external_ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).closest( 'tr' );
413 474 var auth_settings_external_ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).closest( 'tr' );
475 + var auth_settings_external_ldap_test_user = $( '#auth_settings_ldap_test_user' ).closest( 'tr' );
476 + var auth_settings_advanced_disable_wp_login_bypass_usernames = $( '#auth_settings_advanced_disable_wp_login_bypass_usernames' ).closest( 'tr' );
414 477 /* eslint-enable */
415 478
416 - // Wrap the th and td in the rows above so we can animate their heights (can't animate tr heights with jquery)
417 - $( 'th, td', auth_settings_access_role_receive_pending_emails ).wrapInner( '<div class="animated_wrapper" />' );
418 - $( 'th, td', auth_settings_access_pending_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
419 - $( 'th, td', auth_settings_access_blocked_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
420 - $( 'th, td', auth_settings_access_should_email_approved_users ).wrapInner( '<div class="animated_wrapper" />' );
421 - $( 'th, td', auth_settings_access_email_approved_users_subject ).wrapInner( '<div class="animated_wrapper" />' );
422 - $( 'th, td', auth_settings_access_email_approved_users_body ).wrapInner( '<div class="animated_wrapper" />' );
423 - $( 'th, td', auth_settings_access_public_pages ).wrapInner( '<div class="animated_wrapper" />' );
424 - $( 'th, td', auth_settings_access_redirect_to_login ).wrapInner( '<div class="animated_wrapper" />' );
425 - $( 'th, td', auth_settings_access_public_warning ).wrapInner( '<div class="animated_wrapper" />' );
426 - $( 'th, td', auth_settings_access_redirect_to_message ).wrapInner( '<div class="animated_wrapper" />' );
427 - $( 'th, td', auth_settings_external_google_clientid ).wrapInner( '<div class="animated_wrapper" />' );
428 - $( 'th, td', auth_settings_external_google_clientsecret ).wrapInner( '<div class="animated_wrapper" />' );
429 - $( 'th, td', auth_settings_external_google_hosteddomain ).wrapInner( '<div class="animated_wrapper" />' );
430 - $( 'th, td', auth_settings_external_cas_custom_label ).wrapInner( '<div class="animated_wrapper" />' );
431 - $( 'th, td', auth_settings_external_cas_host ).wrapInner( '<div class="animated_wrapper" />' );
432 - $( 'th, td', auth_settings_external_cas_port ).wrapInner( '<div class="animated_wrapper" />' );
433 - $( 'th, td', auth_settings_external_cas_path ).wrapInner( '<div class="animated_wrapper" />' );
434 - $( 'th, td', auth_settings_external_cas_version ).wrapInner( '<div class="animated_wrapper" />' );
435 - $( 'th, td', auth_settings_external_cas_attr_email ).wrapInner( '<div class="animated_wrapper" />' );
436 - $( 'th, td', auth_settings_external_cas_attr_first_name ).wrapInner( '<div class="animated_wrapper" />' );
437 - $( 'th, td', auth_settings_external_cas_attr_last_name ).wrapInner( '<div class="animated_wrapper" />' );
438 - $( 'th, td', auth_settings_external_cas_attr_update_on_login ).wrapInner( '<div class="animated_wrapper" />' );
439 - $( 'th, td', auth_settings_external_cas_auto_login ).wrapInner( '<div class="animated_wrapper" />' );
440 - $( 'th, td', auth_settings_external_cas_link_on_username ).wrapInner( '<div class="animated_wrapper" />' );
441 - $( 'th, td', auth_settings_external_ldap_host ).wrapInner( '<div class="animated_wrapper" />' );
442 - $( 'th, td', auth_settings_external_ldap_port ).wrapInner( '<div class="animated_wrapper" />' );
443 - $( 'th, td', auth_settings_external_ldap_search_base ).wrapInner( '<div class="animated_wrapper" />' );
444 - $( 'th, td', auth_settings_external_ldap_uid ).wrapInner( '<div class="animated_wrapper" />' );
445 - $( 'th, td', auth_settings_external_ldap_attr_email ).wrapInner( '<div class="animated_wrapper" />' );
446 - $( 'th, td', auth_settings_external_ldap_user ).wrapInner( '<div class="animated_wrapper" />' );
447 - $( 'th, td', auth_settings_external_ldap_password ).wrapInner( '<div class="animated_wrapper" />' );
448 - $( 'th, td', auth_settings_external_ldap_tls ).wrapInner( '<div class="animated_wrapper" />' );
449 - $( 'th, td', auth_settings_external_ldap_lostpassword_url ).wrapInner( '<div class="animated_wrapper" />' );
450 - $( 'th, td', auth_settings_external_ldap_attr_first_name ).wrapInner( '<div class="animated_wrapper" />' );
451 - $( 'th, td', auth_settings_external_ldap_attr_last_name ).wrapInner( '<div class="animated_wrapper" />' );
452 - $( 'th, td', auth_settings_external_ldap_attr_update_on_login ).wrapInner( '<div class="animated_wrapper" />' );
453 -
454 - // If we're viewing the dashboard widget, reset a couple of the relevant
455 - // option variables (since they aren't nested in table rows).
456 - if ( $( '#auth_dashboard_widget' ).length ) {
457 - // Remove the helper link, since there are no tabs on the dashboard widget
458 - $( '#dashboard_link_approved_users' ).contents().unwrap();
459 - }
460 -
461 479 // Hide settings unless "Only approved users" is checked
462 480 if ( ! $( '#radio_auth_settings_access_who_can_login_approved_users' ).is( ':checked' ) ) {
463 481 animateOption( 'hide_immediately', auth_settings_access_role_receive_pending_emails );
482 + animateOption( 'hide_immediately', auth_settings_access_users_receive_pending_emails );
464 483 animateOption( 'hide_immediately', auth_settings_access_pending_redirect_to_message );
465 484 animateOption( 'hide_immediately', auth_settings_access_blocked_redirect_to_message );
466 485 animateOption( 'hide_immediately', auth_settings_access_should_email_approved_users );
467 486 }
@@ -479,51 +498,45 @@
479 498 animateOption( 'hide_immediately', auth_settings_access_public_warning );
480 499 animateOption( 'hide_immediately', auth_settings_access_redirect_to_message );
481 500 }
482 501
483 - // Hide Google options if unchecked
484 - if ( ! $( '#auth_settings_google' ).is( ':checked' ) ) {
485 - animateOption( 'hide_immediately', auth_settings_external_google_clientid );
486 - animateOption( 'hide_immediately', auth_settings_external_google_clientsecret );
487 - animateOption( 'hide_immediately', auth_settings_external_google_hosteddomain );
488 - }
502 + // Hide External Service tabs if provider is unchecked.
503 + $( '.nav-tab-wrapper .nav-tab-external_oauth2' ).toggle( $( '#auth_settings_oauth2' ).is( ':checked' ) );
504 + $( '.nav-tab-wrapper .nav-tab-external_oidc' ).toggle( $( '#auth_settings_oidc' ).is( ':checked' ) );
505 + $( '.nav-tab-wrapper .nav-tab-external_google' ).toggle( $( '#auth_settings_google' ).is( ':checked' ) );
506 + $( '.nav-tab-wrapper .nav-tab-external_cas' ).toggle( $( '#auth_settings_cas' ).is( ':checked' ) );
507 + $( '.nav-tab-wrapper .nav-tab-external_ldap' ).toggle( $( '#auth_settings_ldap' ).is( ':checked' ) );
489 508
490 - // Hide CAS options if unchecked
491 - if ( ! $( '#auth_settings_cas' ).is( ':checked' ) ) {
492 - animateOption( 'hide_immediately', auth_settings_external_cas_custom_label );
493 - animateOption( 'hide_immediately', auth_settings_external_cas_host );
494 - animateOption( 'hide_immediately', auth_settings_external_cas_port );
495 - animateOption( 'hide_immediately', auth_settings_external_cas_path );
496 - animateOption( 'hide_immediately', auth_settings_external_cas_version );
497 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_email );
498 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_first_name );
499 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_last_name );
500 - animateOption( 'hide_immediately', auth_settings_external_cas_attr_update_on_login );
501 - animateOption( 'hide_immediately', auth_settings_external_cas_auto_login );
502 - animateOption( 'hide_immediately', auth_settings_external_cas_link_on_username );
503 - }
509 + // Hide some OAuth2 options based on current settings.
510 + auth_settings_external_oauth2_servers.forEach( function( server ) {
511 + // Hide OAuth2 generic options if OAuth2 provider is unchecked or generic isn't chosen.
512 + if ( 'generic' !== server.provider.find( 'select' ).val() ) {
513 + animateOption( 'hide_immediately', server.url_authorize );
514 + animateOption( 'hide_immediately', server.url_token );
515 + animateOption( 'hide_immediately', server.url_resource );
516 + animateOption( 'hide_immediately', server.attr_username );
517 + animateOption( 'hide_immediately', server.attr_email );
518 + animateOption( 'hide_immediately', server.attr_first_name );
519 + animateOption( 'hide_immediately', server.attr_last_name );
520 + animateOption( 'hide_immediately', server.attr_update_on_login );
521 + }
522 + // Hide OAuth2 Tenant ID if OAuth2 provider is unchecked or azure isn't chosen.
523 + if ( 'azure' !== server.provider.find( 'select' ).val() ) {
524 + animateOption( 'hide_immediately', server.tenant_id );
525 + }
526 + } );
504 527
505 - // Hide LDAP options if unchecked
506 - if ( ! $( '#auth_settings_ldap' ).is( ':checked' ) ) {
507 - animateOption( 'hide_immediately', auth_settings_external_ldap_host );
508 - animateOption( 'hide_immediately', auth_settings_external_ldap_port );
509 - animateOption( 'hide_immediately', auth_settings_external_ldap_search_base );
510 - animateOption( 'hide_immediately', auth_settings_external_ldap_uid );
511 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_email );
512 - animateOption( 'hide_immediately', auth_settings_external_ldap_user );
513 - animateOption( 'hide_immediately', auth_settings_external_ldap_password );
514 - animateOption( 'hide_immediately', auth_settings_external_ldap_tls );
515 - animateOption( 'hide_immediately', auth_settings_external_ldap_lostpassword_url );
516 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_first_name );
517 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_last_name );
518 - animateOption( 'hide_immediately', auth_settings_external_ldap_attr_update_on_login );
528 + // Hide Bypass Usernames if Disable WordPress logins is unchecked.
529 + if ( ! $( '#auth_settings_advanced_disable_wp_login' ).is( ':checked' ) ) {
530 + animateOption( 'hide_immediately', auth_settings_advanced_disable_wp_login_bypass_usernames );
519 531 }
520 532
521 533 // Event handler: Hide "Handle unauthorized visitors" option if access is granted to "Everyone"
522 - $( 'input[name="auth_settings[access_who_can_login]"]' ).change( function() {
534 + $( 'input[name="auth_settings[access_who_can_login]"]' ).on( 'change', function() {
523 535 // Hide settings unless "Only approved users" is checked
524 536 var action = $( '#radio_auth_settings_access_who_can_login_approved_users' ).is( ':checked' ) ? 'show' : 'hide';
525 537 animateOption( action, auth_settings_access_role_receive_pending_emails );
538 + animateOption( action, auth_settings_access_users_receive_pending_emails );
526 539 animateOption( action, auth_settings_access_pending_redirect_to_message );
527 540 animateOption( action, auth_settings_access_blocked_redirect_to_message );
528 541 animateOption( action, auth_settings_access_should_email_approved_users );
529 542 action = action === 'show' && $( '#auth_settings_access_should_email_approved_users' ).is( ':checked' ) ? 'show' : 'hide_immediately';
@@ -531,9 +544,9 @@
531 544 animateOption( action, auth_settings_access_email_approved_users_body );
532 545 });
533 546
534 547 // Event handler: Hide Welcome email body/subject options if "Send welcome email" is off.
535 - $( 'input[name="auth_settings[access_should_email_approved_users]"]' ).change( function() {
548 + $( 'input[name="auth_settings[access_should_email_approved_users]"]' ).on( 'change', function() {
536 549 var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
537 550 animateOption( action, auth_settings_access_email_approved_users_subject );
538 551 animateOption( action, auth_settings_access_email_approved_users_body );
539 552 });
@@ -538,9 +551,9 @@
538 551 animateOption( action, auth_settings_access_email_approved_users_body );
539 552 });
540 553
541 554 // Event handler: Hide "Handle unauthorized visitors" option if access is granted to "Everyone"
542 - $( 'input[name="auth_settings[access_who_can_view]"]' ).change( function() {
555 + $( 'input[name="auth_settings[access_who_can_view]"]' ).on( 'change', function() {
543 556 var action = $( '#radio_auth_settings_access_who_can_view_everyone' ).is( ':checked' ) ? 'hide' : 'show';
544 557 animateOption( action, auth_settings_access_redirect_to_login );
545 558 animateOption( action, auth_settings_access_redirect_to_message );
546 559 animateOption( action, auth_settings_access_public_pages );
@@ -546,49 +559,75 @@
546 559 animateOption( action, auth_settings_access_public_pages );
547 560 animateOption( action, auth_settings_access_public_warning );
548 561 });
549 562
550 - // Event handler: Show/hide Google options based on checkbox
551 - $( 'input[name="auth_settings[google]"]' ).change( function() {
552 - var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
553 - animateOption( action, auth_settings_external_google_clientid );
554 - animateOption( action, auth_settings_external_google_clientsecret );
555 - animateOption( action, auth_settings_external_google_hosteddomain );
563 + // Event handler: Show/hide OAuth2 tab based on checkbox.
564 + $( 'input[name="auth_settings[oauth2]"]' ).on( 'change', function() {
565 + $( '.nav-tab-wrapper .nav-tab-external_oauth2' ).toggle( $( this ).is( ':checked' ) );
556 566 });
557 567
558 - // Event handler: Show/hide CAS options based on checkbox
559 - $( 'input[name="auth_settings[cas]"]' ).change( function() {
560 - var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
561 - animateOption( action, auth_settings_external_cas_custom_label );
562 - animateOption( action, auth_settings_external_cas_host );
563 - animateOption( action, auth_settings_external_cas_port );
564 - animateOption( action, auth_settings_external_cas_path );
565 - animateOption( action, auth_settings_external_cas_version );
566 - animateOption( action, auth_settings_external_cas_attr_email );
567 - animateOption( action, auth_settings_external_cas_attr_first_name );
568 - animateOption( action, auth_settings_external_cas_attr_last_name );
569 - animateOption( action, auth_settings_external_cas_attr_update_on_login );
570 - animateOption( action, auth_settings_external_cas_auto_login );
571 - animateOption( action, auth_settings_external_cas_link_on_username );
568 + // Event handler: Show/hide OAuth2 generic/azure options based on provider.
569 + auth_settings_external_oauth2_servers.forEach( function( server ) {
570 + server.provider.find( 'select' ).on( 'change', function() {
571 + var action = 'generic' === $( this ).val() ? 'show' : 'hide';
572 + animateOption( action, server.url_authorize );
573 + animateOption( action, server.url_token );
574 + animateOption( action, server.url_resource );
575 + animateOption( action, server.attr_username );
576 + animateOption( action, server.attr_email );
577 + animateOption( action, server.attr_first_name );
578 + animateOption( action, server.attr_last_name );
579 + animateOption( action, server.attr_update_on_login );
580 + action = 'azure' === $( this ).val() ? 'show' : 'hide';
581 + animateOption( action, server.tenant_id );
582 + });
572 583 });
573 584
574 - // Event handler: Show/hide LDAP options based on checkbox
575 - $( 'input[name="auth_settings[ldap]"]' ).change( function() {
585 + // Event handler: Show/hide OIDC tab based on checkbox
586 + $( 'input[name="auth_settings[oidc]"]' ).on( 'change', function() {
587 + $( '.nav-tab-wrapper .nav-tab-external_oidc' ).toggle( $( this ).is( ':checked' ) );
588 + });
589 +
590 + // Event handler: Show/hide Google tab based on checkbox
591 + $( 'input[name="auth_settings[google]"]' ).on( 'change', function() {
592 + $( '.nav-tab-wrapper .nav-tab-external_google' ).toggle( $( this ).is( ':checked' ) );
593 + });
594 +
595 + // Event handler: Show/hide CAS tab based on checkbox
596 + $( 'input[name="auth_settings[cas]"]' ).on( 'change', function() {
597 + $( '.nav-tab-wrapper .nav-tab-external_cas' ).toggle( $( this ).is( ':checked' ) );
598 + });
599 +
600 + // Event handler: Show/hide LDAP tab based on checkbox
601 + $( 'input[name="auth_settings[ldap]"]' ).on( 'change', function() {
602 + $( '.nav-tab-wrapper .nav-tab-external_ldap' ).toggle( $( this ).is( ':checked' ) );
603 + });
604 +
605 + // Event handler: Show/hide Bypass Usernames based on Disable WordPress Logins checkbox.
606 + $( 'input[name="auth_settings[advanced_disable_wp_login]"]' ).on( 'change', function() {
576 607 var action = $( this ).is( ':checked' ) ? 'show' : 'hide';
577 - animateOption( action, auth_settings_external_ldap_host );
578 - animateOption( action, auth_settings_external_ldap_port );
579 - animateOption( action, auth_settings_external_ldap_search_base );
580 - animateOption( action, auth_settings_external_ldap_uid );
581 - animateOption( action, auth_settings_external_ldap_attr_email );
582 - animateOption( action, auth_settings_external_ldap_user );
583 - animateOption( action, auth_settings_external_ldap_password );
584 - animateOption( action, auth_settings_external_ldap_tls );
585 - animateOption( action, auth_settings_external_ldap_lostpassword_url );
586 - animateOption( action, auth_settings_external_ldap_attr_first_name );
587 - animateOption( action, auth_settings_external_ldap_attr_last_name );
588 - animateOption( action, auth_settings_external_ldap_attr_update_on_login );
608 + animateOption( action, auth_settings_advanced_disable_wp_login_bypass_usernames );
589 609 });
590 610
611 + // Event handler: Test LDAP settings.
612 + $( '#ldap_test_user_submit' ).on( 'click', function( event ) {
613 + event.preventDefault();
614 + $( 'html' ).addClass( 'busy' );
615 + $( '#ldap_test_user_spinner' ).addClass( 'is-active' );
616 +
617 + $.post( ajaxurl, {
618 + action: 'auth_settings_ldap_test_user',
619 + username: $( 'input[name="auth_settings[ldap_test_user]"]' ).val(),
620 + password: $( 'input#auth_settings_ldap_test_pass' ).val(),
621 + nonce: $( '#nonce_save_auth_settings' ).val(),
622 + }).done( function ( data ) {
623 + $( '#ldap_test_user_result' ).show().val( data.message );
624 + }).always( function () {
625 + $( 'html' ).removeClass( 'busy' );
626 + $( '#ldap_test_user_spinner' ).removeClass( 'is-active' );
627 + });
628 + } );
629 +
591 630 // Show save button if usermeta field is modified.
592 631 $( 'form input.auth-usermeta' ).on( 'keyup', function( event ) {
593 632 // Don't do anything if tab or arrow keys were pressed.
594 633 if ( event.which === 9 || event.which === 37 || event.which === 38 || event.which === 39 || event.which === 40 ) {
@@ -627,22 +666,26 @@
627 666 selectableHeader: '<div class="custom-header">' + authL10n.private_pages + '</div>',
628 667 selectionHeader: '<div class="custom-header">' + authL10n.public_pages + '</div>',
629 668 });
630 669
631 - // Switch to the first tab (or the tab indicated in sessionStorage, or the querystring).
632 - var tab = '';
633 - if ( getQuerystringValuesByKey( 'tab' ).length > 0 ) {
634 - tab = getQuerystringValuesByKey( 'tab' )[0];
635 - } else if ( sessionStorage.getItem( 'tab' ) ) {
636 - tab = sessionStorage.getItem( 'tab' );
670 + // Switch to the first tab (or the tab indicated in sessionStorage, or the
671 + // querystring). Note: only do this on the settings page, not the dashboard
672 + // widget.
673 + if ( ! $( '#auth_dashboard_widget' ).length ) {
674 + var tab = '';
675 + if ( getQuerystringValuesByKey( 'tab' ).length > 0 ) {
676 + tab = getQuerystringValuesByKey( 'tab' )[0];
677 + } else if ( sessionStorage.getItem( 'tab' ) ) {
678 + tab = sessionStorage.getItem( 'tab' );
679 + }
680 + if ( $.inArray( tab, [ 'access_lists', 'access_login', 'access_public', 'external', 'external_oauth2', 'external_oidc', 'external_google', 'external_cas', 'external_ldap', 'advanced' ] ) < 0 ) {
681 + tab = 'access_lists';
682 + }
683 + window.chooseTab( tab, animationSpeed );
637 684 }
638 - if ( $.inArray( tab, [ 'access_lists', 'access_login', 'access_public', 'external', 'advanced' ] ) < 0 ) {
639 - tab = 'access_lists';
640 - }
641 - window.chooseTab( tab, animationSpeed );
642 685
643 686 // Hide/show multisite settings based on override checkbox.
644 - $( 'input[name="auth_settings[multisite_override]"]' ).change( function() {
687 + $( 'input[name="auth_settings[multisite_override]"]' ).on( 'change', function() {
645 688 hideMultisiteSettingsIfDisabled();
646 689 });
647 690 hideMultisiteSettingsIfDisabled();
648 691
@@ -692,11 +735,42 @@
692 735 // Enable growable textarea for new user field.
693 736 $( 'textarea#new_approved_user_email' ).autogrow();
694 737
695 738 // Enable growable textarea for config fields.
739 + $( 'textarea#auth_settings_ldap_host' ).autogrow();
696 740 $( 'textarea#auth_settings_ldap_search_base' ).autogrow();
741 + $( 'textarea#auth_settings_ldap_search_filter' ).autogrow();
742 + $( 'textarea#auth_settings_oauth2_hosteddomain' ).autogrow();
697 743 $( 'textarea#auth_settings_google_hosteddomain' ).autogrow();
744 + $( 'textarea#auth_settings_advanced_disable_wp_login_bypass_usernames' ).autogrow();
698 745
746 + // Enable select2 new user email notification dropdown.
747 + $( 'select#auth_settings_access_users_receive_pending_emails' ).select2({
748 + ajax: {
749 + url: ajaxurl,
750 + dataType: 'json',
751 + method: 'POST',
752 + data: function ( params ) {
753 + return {
754 + action: 'auth_settings_search_users',
755 + nonce: $( '#nonce_save_auth_settings' ).val(),
756 + query: params.term,
757 + page: params.page || 1,
758 + };
759 + },
760 + delay: 250, // Delay in milliseconds after user stops typing before sending the request.
761 + },
762 + closeOnSelect: true, // Controls whether the dropdown is closed after a selection is made.
763 + maximumInputLength: 50, // Maximum number of characters that may be provided for a search term.
764 + minimumInputLength: 1, // Minimum number of characters required to start a search.
765 + placeholder: authL10n.select_users,
766 + templateSelection: function( data ) {
767 + // Show just the username (data.id); fall back to the full display: username (email).
768 + return data.id || data.text;
769 + },
770 + width: '100%',
771 + // minimumResultsForSearch: 10,
772 + });
699 773 });
700 774
701 775
702 776 /**
@@ -729,8 +803,11 @@
729 803
730 804 // Save user's active tab to sessionStorage (so we can restore it on reload).
731 805 // Note: session storage persists until the browser tab is closed.
732 806 sessionStorage.setItem( 'tab', listName );
807 +
808 + // Check whether to fade logo.
809 + fadeLogo();
733 810 };
734 811
735 812 // Hide (with overlay) site options if overridden by a multisite option.
736 813 window.hideMultisiteOverriddenOptions = function() {
@@ -735,9 +812,9 @@
735 812 // Hide (with overlay) site options if overridden by a multisite option.
736 813 window.hideMultisiteOverriddenOptions = function() {
737 814 $( '.auth_multisite_override_overlay' ).each( function() {
738 815 // Option to hide is stored in the overlay's id with 'overlay-hide-' prefix.
739 - var optionContainerToHide = $( this ).closest( 'tr' );
816 + var optionContainerToHide = $( this ).closest( 'td' );
740 817 if ( optionContainerToHide.length > 0 ) {
741 818 $( this ).css({
742 819 'background-color': '#f1f1f1',
743 820 'z-index': 1,
@@ -742,10 +819,9 @@
742 819 'background-color': '#f1f1f1',
743 820 'z-index': 1,
744 821 opacity: 0.8,
745 822 position: 'absolute',
746 - top: optionContainerToHide.position().top,
747 - left: optionContainerToHide.position().left,
823 + top: optionContainerToHide.css('padding-top'),
748 824 width: '100%',
749 825 height: optionContainerToHide.height(),
750 826 });
751 827 $( this ).show();
@@ -786,15 +862,14 @@
786 862 usermeta: usermeta,
787 863 nonce: nonce,
788 864 }, function( response ) {
789 865 var succeeded = response === 'success';
790 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
866 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
791 867 var spinnerWait = succeeded ? 500 : 2000;
792 868
793 869 // Enable inputs, remove spinner.
794 870 $caller.removeAttr( 'disabled' );
795 871 $usermeta.removeAttr( 'disabled' );
796 - $caller.css( 'display', 'none' );
797 872 $( 'form .spinner:not(:has(.spinner-text))' ).animate( { width: '60px' }, 'fast' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
798 873 $( this ).remove();
799 874 });
800 875 $( 'html' ).removeClass( 'busy' );
@@ -800,15 +875,14 @@
800 875 $( 'html' ).removeClass( 'busy' );
801 876
802 877 }).fail( function() {
803 878 var succeeded = false;
804 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
879 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
805 880 var spinnerWait = succeeded ? 500 : 2000;
806 881
807 882 // Enable inputs, remove spinner.
808 883 $caller.removeAttr( 'disabled' );
809 884 $usermeta.removeAttr( 'disabled' );
810 - $caller.css( 'display', 'none' );
811 885 $( 'form .spinner:not(:has(.spinner-text))' ).animate( { width: '60px' }, 'fast' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
812 886 $( this ).remove();
813 887 });
814 888 $( 'html' ).removeClass( 'busy' );
@@ -921,11 +995,12 @@
921 995 })
922 996 );
923 997
924 998 // Add the new item.
925 - var authJsPrefix = isMultisite ? 'authMultisite' : 'auth';
926 - var localIcon = shouldCreateLocalAccount ? '&nbsp;<a title="' + authL10n.local_wordpress_user + '" class="auth-local-user"><span class="glyphicon glyphicon-user"></span></a>' : '';
927 - var banButton = list === 'approved' && ! isMultisite ? '<a class="button" id="block_user_' + nextId + '" onclick="' + authJsPrefix + 'AddUser( this, \'blocked\', false ); ' + authJsPrefix + 'IgnoreUser( this, \'approved\' );" title="' + authL10n.block_ban_user + '"><span class="glyphicon glyphicon-ban-circle"></span></a>' : '';
999 + var authJsPrefix = isMultisite ? 'authMultisite' : 'auth';
1000 + var multisiteIcon = isMultisite ? '<a title="WordPress Multisite user" class="button disabled auth-multisite-user dashicons-before dashicons-admin-site"></a>' : '';
1001 + var banButton = isMultisite || 'approved' !== list ? '' : '<a class="button button-primary dashicons-before dashicons-remove" id="block_user_' + nextId + '" onclick="' + authJsPrefix + 'AddUser( this, \'blocked\', false ); ' + authJsPrefix + 'IgnoreUser( this, \'approved\' );" title="' + authL10n.block_ban_user + '"></a>';
1002 + var ignoreButton = '<a class="button dashicons-before dashicons-no" id="ignore_user_' + nextId + '" onclick="' + authJsPrefix + 'IgnoreUser( this, \'' + list + '\' );" title="' + authL10n.remove_user + '"></a>';
928 1003 $( ' \
929 1004 <li id="new_user_' + nextId + '" class="new-user" style="display: none;"> \
930 1005 <input type="text" id="auth_settings_access_users_' + list + '_' + nextId + '" name="auth_settings[access_users_' + list + '][' + nextId + '][email]" value="' + user.email + '" readonly="true" class="auth-email" /> \
931 1006 <select name="auth_settings[access_users_' + list + '][' + nextId + '][role]" class="auth-role" onchange="' + authJsPrefix + 'ChangeRole( this );"> \
@@ -930,11 +1005,9 @@
930 1005 <input type="text" id="auth_settings_access_users_' + list + '_' + nextId + '" name="auth_settings[access_users_' + list + '][' + nextId + '][email]" value="' + user.email + '" readonly="true" class="auth-email" /> \
931 1006 <select name="auth_settings[access_users_' + list + '][' + nextId + '][role]" class="auth-role" onchange="' + authJsPrefix + 'ChangeRole( this );"> \
932 1007 </select> \
933 1008 <input type="text" name="auth_settings[access_users_' + list + '][' + nextId + '][date_added]" value="' + getShortDate() + '" readonly="true" class="auth-date-added" /> \
934 - ' + banButton + ' \
935 - <a class="button" id="ignore_user_' + nextId + '" onclick="' + authJsPrefix + 'IgnoreUser( this, \'' + list + '\' );" title="' + authL10n.remove_user + '"><span class="glyphicon glyphicon-remove"></span></a> \
936 - ' + localIcon + ' \
1009 + ' + multisiteIcon + banButton + ignoreButton + ' \
937 1010 <span class="spinner is-active"></span> \
938 1011 </li> \
939 1012 ' ).appendTo( '#list_auth_settings_access_users_' + list ).slideDown( 250 );
940 1013
@@ -1038,18 +1111,23 @@
1038 1111 left: $( caller ).position().left + $( caller ).width() + 20,
1039 1112 });
1040 1113 $( caller ).after( $spinner );
1041 1114
1042 - // Get form elements to save
1043 - var nonce_save_auth_settings = $( '#nonce_save_auth_settings' ).val();
1115 + // Get form elements to save.
1116 + var params = {
1117 + action: 'save_auth_multisite_settings',
1118 + nonce: $( '#nonce_save_auth_settings' ).val(),
1119 + };
1044 1120
1045 - var multisite_override = $( '#auth_settings_multisite_override' ).is( ':checked' ) ? '1' : '';
1121 + params.multisite_override = $( '#auth_settings_multisite_override' ).is( ':checked' ) ? '1' : '';
1046 1122
1047 - var access_who_can_login = $( 'form input[name="auth_settings[access_who_can_login]"]:checked' ).val();
1123 + params.prevent_override_multisite = $( '#auth_settings_prevent_override_multisite' ).is( ':checked' ) ? '1' : '';
1048 1124
1049 - var access_who_can_view = $( 'form input[name="auth_settings[access_who_can_view]"]:checked' ).val();
1125 + params.access_who_can_login = $( 'form input[name="auth_settings[access_who_can_login]"]:checked' ).val();
1050 1126
1051 - var access_users_approved = {};
1127 + params.access_who_can_view = $( 'form input[name="auth_settings[access_who_can_view]"]:checked' ).val();
1128 +
1129 + params.access_users_approved = {};
1052 1130 $( '#list_auth_settings_access_users_approved li' ).each( function( index ) {
1053 1131 var user = {};
1054 1132 user.email = $( '.auth-email', this ).val();
1055 1133 user.role = $( '.auth-role', this ).val();
@@ -1054,46 +1132,140 @@
1054 1132 user.email = $( '.auth-email', this ).val();
1055 1133 user.role = $( '.auth-role', this ).val();
1056 1134 user.date_added = $( '.auth-date-added', this ).val();
1057 1135 user.local_user = $( '.auth-local-user', this ).length !== 0;
1058 - access_users_approved[index] = user;
1136 + params.access_users_approved[index] = user;
1059 1137 });
1060 1138
1061 - var access_default_role = $( '#auth_settings_access_default_role' ).val();
1139 + params.access_default_role = $( '#auth_settings_access_default_role' ).val();
1062 1140
1063 - var google = $( '#auth_settings_google' ).is( ':checked' ) ? '1' : '';
1064 - var google_clientid = $( '#auth_settings_google_clientid' ).val();
1065 - var google_clientsecret = $( '#auth_settings_google_clientsecret' ).val();
1066 - var google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).val();
1141 + params.oauth2 = $( '#auth_settings_oauth2' ).is( ':checked' ) ? '1' : '';
1142 + params.oauth2_auto_login = $( '#auth_settings_oauth2_auto_login' ).val();
1143 + params.oauth2_num_servers = parseInt( $( '#auth_settings_oauth2_num_servers' ).val() );
1144 + params.oauth2_provider = $( '#auth_settings_oauth2_provider' ).val();
1145 + params.oauth2_custom_label = $( '#auth_settings_oauth2_custom_label' ).val();
1146 + params.oauth2_clientid = $( '#auth_settings_oauth2_clientid' ).val();
1147 + params.oauth2_clientsecret = $( '#auth_settings_oauth2_clientsecret' ).val();
1148 + params.oauth2_hosteddomain = $( '#auth_settings_oauth2_hosteddomain' ).val();
1149 + params.oauth2_tenant_id = $( '#auth_settings_oauth2_tenant_id' ).val();
1150 + params.oauth2_url_authorize = $( '#auth_settings_oauth2_url_authorize' ).val();
1151 + params.oauth2_url_token = $( '#auth_settings_oauth2_url_token' ).val();
1152 + params.oauth2_url_resource = $( '#auth_settings_oauth2_url_resource' ).val();
1153 + params.oauth2_attr_username = $( '#auth_settings_oauth2_attr_username' ).val();
1154 + params.oauth2_attr_email = $( '#auth_settings_oauth2_attr_email' ).val();
1155 + params.oauth2_attr_first_name = $( '#auth_settings_oauth2_attr_first_name' ).val();
1156 + params.oauth2_attr_last_name = $( '#auth_settings_oauth2_attr_last_name' ).val();
1157 + params.oauth2_attr_update_on_login = $( '#auth_settings_oauth2_attr_update_on_login' ).val();
1158 + if ( params.oauth2_num_servers > 1 ) {
1159 + for ( var oauth2_num_server = 2; oauth2_num_server <= params.oauth2_num_servers && oauth2_num_server <= 20; oauth2_num_server++ ) {
1160 + params['oauth2_provider_' + oauth2_num_server] = $( '#auth_settings_oauth2_provider_' + oauth2_num_server ).val();
1161 + params['oauth2_custom_label_' + oauth2_num_server] = $( '#auth_settings_oauth2_custom_label_' + oauth2_num_server ).val();
1162 + params['oauth2_clientid_' + oauth2_num_server] = $( '#auth_settings_oauth2_clientid_' + oauth2_num_server ).val();
1163 + params['oauth2_clientsecret_' + oauth2_num_server] = $( '#auth_settings_oauth2_clientsecret_' + oauth2_num_server ).val();
1164 + params['oauth2_hosteddomain_' + oauth2_num_server] = $( '#auth_settings_oauth2_hosteddomain_' + oauth2_num_server ).val();
1165 + params['oauth2_tenant_id_' + oauth2_num_server] = $( '#auth_settings_oauth2_tenant_id_' + oauth2_num_server ).val();
1166 + params['oauth2_url_authorize_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_authorize_' + oauth2_num_server ).val();
1167 + params['oauth2_url_token_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_token_' + oauth2_num_server ).val();
1168 + params['oauth2_url_resource_' + oauth2_num_server] = $( '#auth_settings_oauth2_url_resource_' + oauth2_num_server ).val();
1169 + params['oauth2_attr_username_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_username_' + oauth2_num_server ).val();
1170 + params['oauth2_attr_email_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_email_' + oauth2_num_server ).val();
1171 + params['oauth2_attr_first_name_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_first_name_' + oauth2_num_server ).val();
1172 + params['oauth2_attr_last_name_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_last_name_' + oauth2_num_server ).val();
1173 + params['oauth2_attr_update_on_login_' + oauth2_num_server] = $( '#auth_settings_oauth2_attr_update_on_login_' + oauth2_num_server ).val();
1174 + }
1175 + }
1067 1176
1068 - var cas = $( '#auth_settings_cas' ).is( ':checked' ) ? '1' : '';
1069 - var cas_custom_label = $( '#auth_settings_cas_custom_label' ).val();
1070 - var cas_host = $( '#auth_settings_cas_host' ).val();
1071 - var cas_port = $( '#auth_settings_cas_port' ).val();
1072 - var cas_path = $( '#auth_settings_cas_path' ).val();
1073 - var cas_version = $( '#auth_settings_cas_version' ).val();
1074 - var cas_attr_email = $( '#auth_settings_cas_attr_email' ).val();
1075 - var cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).val();
1076 - var cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).val();
1077 - var cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).is( ':checked' ) ? '1' : '';
1078 - var cas_auto_login = $( '#auth_settings_cas_auto_login' ).is( ':checked' ) ? '1' : '';
1079 - var cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).is( ':checked' ) ? '1' : '';
1177 + params.oidc = $( '#auth_settings_oidc' ).is( ':checked' ) ? '1' : '';
1178 + params.oidc_auto_login = $( '#auth_settings_oidc_auto_login' ).val();
1179 + params.oidc_num_servers = parseInt( $( '#auth_settings_oidc_num_servers' ).val() );
1180 + params.oidc_custom_label = $( '#auth_settings_oidc_custom_label' ).val();
1181 + params.oidc_issuer = $( '#auth_settings_oidc_issuer' ).val();
1182 + params.oidc_client_id = $( '#auth_settings_oidc_client_id' ).val();
1183 + params.oidc_client_secret = $( '#auth_settings_oidc_client_secret' ).val();
1184 + params.oidc_scopes = $( '#auth_settings_oidc_scopes' ).val();
1185 + params.oidc_prompt = $( '#auth_settings_oidc_prompt' ).val();
1186 + params.oidc_login_hint = $( '#auth_settings_oidc_login_hint' ).val();
1187 + params.oidc_max_age = $( '#auth_settings_oidc_max_age' ).val();
1188 + params.oidc_attr_username = $( '#auth_settings_oidc_attr_username' ).val();
1189 + params.oidc_attr_email = $( '#auth_settings_oidc_attr_email' ).val();
1190 + params.oidc_attr_first_name = $( '#auth_settings_oidc_attr_first_name' ).val();
1191 + params.oidc_attr_last_name = $( '#auth_settings_oidc_attr_last_name' ).val();
1192 + params.oidc_attr_update_on_login = $( '#auth_settings_oidc_attr_update_on_login' ).val();
1193 + params.oidc_require_verified_email = $( '#auth_settings_oidc_require_verified_email' ).is( ':checked' ) ? '1' : '';
1194 + params.oidc_link_on_username = $( '#auth_settings_oidc_link_on_username' ).is( ':checked' ) ? '1' : '';
1195 + params.oidc_hosteddomain = $( '#auth_settings_oidc_hosteddomain' ).val();
1196 + if ( params.oidc_num_servers > 1 ) {
1197 + for ( var oidc_num_server = 2; oidc_num_server <= params.oidc_num_servers && oidc_num_server <= 20; oidc_num_server++ ) {
1198 + params['oidc_custom_label_' + oidc_num_server] = $( '#auth_settings_oidc_custom_label_' + oidc_num_server ).val();
1199 + params['oidc_issuer_' + oidc_num_server] = $( '#auth_settings_oidc_issuer_' + oidc_num_server ).val();
1200 + params['oidc_client_id_' + oidc_num_server] = $( '#auth_settings_oidc_client_id_' + oidc_num_server ).val();
1201 + params['oidc_client_secret_' + oidc_num_server] = $( '#auth_settings_oidc_client_secret_' + oidc_num_server ).val();
1202 + params['oidc_scopes_' + oidc_num_server] = $( '#auth_settings_oidc_scopes_' + oidc_num_server ).val();
1203 + params['oidc_prompt_' + oidc_num_server] = $( '#auth_settings_oidc_prompt_' + oidc_num_server ).val();
1204 + params['oidc_login_hint_' + oidc_num_server] = $( '#auth_settings_oidc_login_hint_' + oidc_num_server ).val();
1205 + params['oidc_max_age_' + oidc_num_server] = $( '#auth_settings_oidc_max_age_' + oidc_num_server ).val();
1206 + params['oidc_attr_username_' + oidc_num_server] = $( '#auth_settings_oidc_attr_username_' + oidc_num_server ).val();
1207 + params['oidc_attr_email_' + oidc_num_server] = $( '#auth_settings_oidc_attr_email_' + oidc_num_server ).val();
1208 + params['oidc_attr_first_name_' + oidc_num_server] = $( '#auth_settings_oidc_attr_first_name_' + oidc_num_server ).val();
1209 + params['oidc_attr_last_name_' + oidc_num_server] = $( '#auth_settings_oidc_attr_last_name_' + oidc_num_server ).val();
1210 + params['oidc_attr_update_on_login_' + oidc_num_server] = $( '#auth_settings_oidc_attr_update_on_login_' + oidc_num_server ).val();
1211 + params['oidc_require_verified_email_' + oidc_num_server] = $( '#auth_settings_oidc_require_verified_email_' + oidc_num_server ).is( ':checked' ) ? '1' : '';
1212 + params['oidc_link_on_username_' + oidc_num_server] = $( '#auth_settings_oidc_link_on_username_' + oidc_num_server ).is( ':checked' ) ? '1' : '';
1213 + }
1214 + }
1080 1215
1081 - var ldap = $( '#auth_settings_ldap' ).is( ':checked' ) ? '1' : '';
1082 - var ldap_host = $( '#auth_settings_ldap_host' ).val();
1083 - var ldap_port = $( '#auth_settings_ldap_port' ).val();
1084 - var ldap_search_base = $( '#auth_settings_ldap_search_base' ).val();
1085 - var ldap_uid = $( '#auth_settings_ldap_uid' ).val();
1086 - var ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).val();
1087 - var ldap_user = $( '#auth_settings_ldap_user' ).val();
1088 - var ldap_password = $( '#auth_settings_ldap_password' ).val();
1089 - var ldap_tls = $( '#auth_settings_ldap_tls' ).is( ':checked' ) ? '1' : '';
1090 - var ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).val();
1091 - var ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).val();
1092 - var ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).val();
1093 - var ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).is( ':checked' ) ? '1' : '';
1216 + params.google = $( '#auth_settings_google' ).is( ':checked' ) ? '1' : '';
1217 + params.google_clientid = $( '#auth_settings_google_clientid' ).val();
1218 + params.google_clientsecret = $( '#auth_settings_google_clientsecret' ).val();
1219 + params.google_hosteddomain = $( '#auth_settings_google_hosteddomain' ).val();
1094 1220
1095 - var advanced_lockouts = {
1221 + params.cas = $( '#auth_settings_cas' ).is( ':checked' ) ? '1' : '';
1222 + params.cas_auto_login = $( '#auth_settings_cas_auto_login' ).val();
1223 + params.cas_num_servers = parseInt( $( '#auth_settings_cas_num_servers' ).val() );
1224 + params.cas_custom_label = $( '#auth_settings_cas_custom_label' ).val();
1225 + params.cas_host = $( '#auth_settings_cas_host' ).val();
1226 + params.cas_port = $( '#auth_settings_cas_port' ).val();
1227 + params.cas_path = $( '#auth_settings_cas_path' ).val();
1228 + params.cas_method = $( '#auth_settings_cas_method' ).val();
1229 + params.cas_version = $( '#auth_settings_cas_version' ).val();
1230 + params.cas_attr_email = $( '#auth_settings_cas_attr_email' ).val();
1231 + params.cas_attr_first_name = $( '#auth_settings_cas_attr_first_name' ).val();
1232 + params.cas_attr_last_name = $( '#auth_settings_cas_attr_last_name' ).val();
1233 + params.cas_attr_update_on_login = $( '#auth_settings_cas_attr_update_on_login' ).val();
1234 + params.cas_link_on_username = $( '#auth_settings_cas_link_on_username' ).is( ':checked' ) ? '1' : '';
1235 + if ( params.cas_num_servers > 1 ) {
1236 + for ( var cas_num_server = 2; cas_num_server <= params.cas_num_servers && cas_num_server <= 10; cas_num_server++ ) {
1237 + params['cas_custom_label_' + cas_num_server] = $( '#auth_settings_cas_custom_label_' + cas_num_server ).val();
1238 + params['cas_host_' + cas_num_server] = $( '#auth_settings_cas_host_' + cas_num_server ).val();
1239 + params['cas_port_' + cas_num_server] = $( '#auth_settings_cas_port_' + cas_num_server ).val();
1240 + params['cas_path_' + cas_num_server] = $( '#auth_settings_cas_path_' + cas_num_server ).val();
1241 + params['cas_method_' + cas_num_server] = $( '#auth_settings_cas_method_' + cas_num_server ).val();
1242 + params['cas_version_' + cas_num_server] = $( '#auth_settings_cas_version_' + cas_num_server ).val();
1243 + params['cas_attr_email_' + cas_num_server] = $( '#auth_settings_cas_attr_email_' + cas_num_server ).val();
1244 + params['cas_attr_first_name_' + cas_num_server] = $( '#auth_settings_cas_attr_first_name_' + cas_num_server ).val();
1245 + params['cas_attr_last_name_' + cas_num_server] = $( '#auth_settings_cas_attr_last_name_' + cas_num_server ).val();
1246 + params['cas_attr_update_on_login_' + cas_num_server] = $( '#auth_settings_cas_attr_update_on_login_' + cas_num_server ).val();
1247 + params['cas_link_on_username_' + cas_num_server] = $( '#auth_settings_cas_link_on_username_' + cas_num_server ).is( ':checked' ) ? '1' : '';
1248 + }
1249 + }
1250 +
1251 + params.ldap = $( '#auth_settings_ldap' ).is( ':checked' ) ? '1' : '';
1252 + params.ldap_host = $( '#auth_settings_ldap_host' ).val();
1253 + params.ldap_port = $( '#auth_settings_ldap_port' ).val();
1254 + params.ldap_search_base = $( '#auth_settings_ldap_search_base' ).val();
1255 + params.ldap_search_filter = $( '#auth_settings_ldap_search_filter' ).val();
1256 + params.ldap_uid = $( '#auth_settings_ldap_uid' ).val();
1257 + params.ldap_attr_email = $( '#auth_settings_ldap_attr_email' ).val();
1258 + params.ldap_user = $( '#auth_settings_ldap_user' ).val();
1259 + params.ldap_password = $( '#auth_settings_ldap_password' ).val();
1260 + params.ldap_tls = $( '#auth_settings_ldap_tls' ).is( ':checked' ) ? '1' : '';
1261 + params.ldap_lostpassword_url = $( '#auth_settings_ldap_lostpassword_url' ).val();
1262 + params.ldap_attr_first_name = $( '#auth_settings_ldap_attr_first_name' ).val();
1263 + params.ldap_attr_last_name = $( '#auth_settings_ldap_attr_last_name' ).val();
1264 + params.ldap_attr_update_on_login = $( '#auth_settings_ldap_attr_update_on_login' ).val();
1265 + params.ldap_test_user = $( '#auth_settings_ldap_test_user' ).val();
1266 +
1267 + params.advanced_lockouts = {
1096 1268 attempts_1: $( '#auth_settings_advanced_lockouts_attempts_1' ).val(),
1097 1269 duration_1: $( '#auth_settings_advanced_lockouts_duration_1' ).val(),
1098 1270 attempts_2: $( '#auth_settings_advanced_lockouts_attempts_2' ).val(),
1099 1271 duration_2: $( '#auth_settings_advanced_lockouts_duration_2' ).val(),
@@ -1098,60 +1270,19 @@
1098 1270 attempts_2: $( '#auth_settings_advanced_lockouts_attempts_2' ).val(),
1099 1271 duration_2: $( '#auth_settings_advanced_lockouts_duration_2' ).val(),
1100 1272 reset_duration: $( '#auth_settings_advanced_lockouts_reset_duration' ).val(),
1101 1273 };
1102 - var advanced_hide_wp_login = $( '#auth_settings_advanced_hide_wp_login' ).is( ':checked' ) ? '1' : '';
1103 - var advanced_widget_enabled = $( '#auth_settings_advanced_widget_enabled' ).is( ':checked' ) ? '1' : '';
1104 - var advanced_users_per_page = $( '#auth_settings_advanced_users_per_page' ).val();
1105 - var advanced_users_sort_by = $( '#auth_settings_advanced_users_sort_by' ).val();
1106 - var advanced_users_sort_order = $( '#auth_settings_advanced_users_sort_order' ).val();
1274 + params.advanced_hide_wp_login = $( '#auth_settings_advanced_hide_wp_login' ).is( ':checked' ) ? '1' : '';
1275 + params.advanced_disable_wp_login = $( '#auth_settings_advanced_disable_wp_login' ).is( ':checked' ) ? '1' : '';
1276 + params.advanced_disable_wp_login_bypass_usernames = $( '#auth_settings_advanced_disable_wp_login_bypass_usernames' ).val();
1277 + params.advanced_widget_enabled = $( '#auth_settings_advanced_widget_enabled' ).is( ':checked' ) ? '1' : '';
1278 + params.advanced_users_per_page = $( '#auth_settings_advanced_users_per_page' ).val();
1279 + params.advanced_users_sort_by = $( '#auth_settings_advanced_users_sort_by' ).val();
1280 + params.advanced_users_sort_order = $( '#auth_settings_advanced_users_sort_order' ).val();
1107 1281
1108 - $.post( ajaxurl, {
1109 - action: 'save_auth_multisite_settings',
1110 - nonce: nonce_save_auth_settings,
1111 - multisite_override: multisite_override,
1112 - access_who_can_login: access_who_can_login,
1113 - access_who_can_view: access_who_can_view,
1114 - access_users_approved: access_users_approved,
1115 - access_default_role: access_default_role,
1116 - google: google,
1117 - google_clientid: google_clientid,
1118 - google_clientsecret: google_clientsecret,
1119 - google_hosteddomain: google_hosteddomain,
1120 - cas: cas,
1121 - cas_custom_label: cas_custom_label,
1122 - cas_host: cas_host,
1123 - cas_port: cas_port,
1124 - cas_path: cas_path,
1125 - cas_version: cas_version,
1126 - cas_attr_email: cas_attr_email,
1127 - cas_attr_first_name: cas_attr_first_name,
1128 - cas_attr_last_name: cas_attr_last_name,
1129 - cas_attr_update_on_login: cas_attr_update_on_login,
1130 - cas_auto_login: cas_auto_login,
1131 - cas_link_on_username: cas_link_on_username,
1132 - ldap: ldap,
1133 - ldap_host: ldap_host,
1134 - ldap_port: ldap_port,
1135 - ldap_search_base: ldap_search_base,
1136 - ldap_uid: ldap_uid,
1137 - ldap_attr_email: ldap_attr_email,
1138 - ldap_user: ldap_user,
1139 - ldap_password: ldap_password,
1140 - ldap_tls: ldap_tls,
1141 - ldap_lostpassword_url: ldap_lostpassword_url,
1142 - ldap_attr_first_name: ldap_attr_first_name,
1143 - ldap_attr_last_name: ldap_attr_last_name,
1144 - ldap_attr_update_on_login: ldap_attr_update_on_login,
1145 - advanced_lockouts: advanced_lockouts,
1146 - advanced_hide_wp_login: advanced_hide_wp_login,
1147 - advanced_users_per_page: advanced_users_per_page,
1148 - advanced_users_sort_by: advanced_users_sort_by,
1149 - advanced_users_sort_order: advanced_users_sort_order,
1150 - advanced_widget_enabled: advanced_widget_enabled,
1151 - }, function( response ) {
1282 + $.post( ajaxurl, params, function( response ) {
1152 1283 var succeeded = response === 'success';
1153 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
1284 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
1154 1285 var spinnerWait = succeeded ? 500 : 2000;
1155 1286 $( 'form .spinner:not(:has(.spinner-text))' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
1156 1287 $( this ).remove();
1157 1288 });
@@ -1158,12 +1289,19 @@
1158 1289 $( caller ).removeAttr( 'disabled' );
1159 1290
1160 1291 // Disable wait cursor.
1161 1292 $( 'html' ).removeClass( 'busy' );
1293 +
1294 + // If the save was successful, and we have more than 1 CAS or OAuth2
1295 + // servers configured, reload the page to render the additional CAS/Oauth2
1296 + // server settings fields.
1297 + if ( succeeded && ( params.cas_num_servers > 1 || params.oauth2_num_servers > 1 ) ) {
1298 + location.reload();
1299 + }
1162 1300 }).fail( function() {
1163 1301 // Fail fires if the server doesn't respond
1164 1302 var succeeded = false;
1165 - var spinnerText = succeeded ? authL10n.saved + '.' : '<span style="color: red;">' + authL10n.failed + '.</span>';
1303 + var spinnerText = succeeded ? authL10n.saved + '.' : '<span class="attention">' + authL10n.failed + '.</span>';
1166 1304 var spinnerWait = succeeded ? 500 : 2000;
1167 1305 $( 'form .spinner:not(:has(.spinner-text))' ).append( '<span class="spinner-text">' + spinnerText + '</span>' ).delay( spinnerWait ).hide( animationSpeed, function() {
1168 1306 $( this ).remove();
1169 1307 });
@@ -1173,8 +1311,29 @@
1173 1311 $( 'html' ).removeClass( 'busy' );
1174 1312 });
1175 1313 };
1176 1314 /* eslint-enable camelcase */
1315 +
1316 + // Fade in/out Authorizer logo in bottom right on Settings.
1317 + $(document).on( 'scroll', function () {
1318 + fadeLogo();
1319 + });
1320 +
1321 + function fadeLogo() {
1322 + if ( getScrollPercent() < 90 ) {
1323 + $( '#wpwrap' ).removeClass( 'not-faded' );
1324 + } else {
1325 + $( '#wpwrap' ).addClass( 'not-faded' );
1326 + }
1327 + }
1328 +
1329 + function getScrollPercent() {
1330 + var h = document.documentElement,
1331 + b = document.body,
1332 + st = 'scrollTop',
1333 + sh = 'scrollHeight';
1334 + return ( h[st] || b[st] ) / ( ( h[sh] || b[sh] ) - h.clientHeight ) * 100;
1335 + }
1177 1336
1178 1337 /* ========================================================================
1179 1338 * Portions below from Bootstrap.
1180 1339 * ========================================================================