Commit Graph

152 Commits

Author SHA1 Message Date
Filip Melík
85bc1fa265 Fix case when adding new user, make widget url variable in UI conditional to preven php warning 2025-02-23 13:28:41 +01:00
Filip Melík
1005238ccb Add settings UI + logic 2025-02-23 13:28:41 +01:00
Fabian Berg
636643810f adjust wording 2025-02-18 20:22:44 +01:00
int2001
41de424bed Default measurement to "K" if nothing provided 2025-02-18 08:26:02 +00:00
int2001
05bc18a2a6 Make dashboard-map user-configurable 2025-02-17 12:22:57 +00:00
Filip Melík
dca5bb58c6 Add QSO setting option, Enable saving the setting value in add/edit user methods 2025-01-30 21:09:20 +01:00
Fabian Berg
0f0af3f466 fixes (#4) 2025-01-30 07:44:48 +01:00
Filip Melík
441165d396 Save 'dashobard last qso count' setting when editing and adding user 2025-01-29 20:43:47 +01:00
Filip Melík
c127269551 Add comments 2025-01-29 20:00:27 +01:00
Filip Melík
0c1f40c3bc Pull duplicated page title to common place 2025-01-28 18:40:24 +01:00
Filip Melík
b933ed85ba Remove dead code 2025-01-28 18:38:36 +01:00
Joerg (DJ7NT)
0f4fcfd8c6 Revert "Dashboard improvements" 2025-01-28 12:41:00 +01:00
Filip Melík
8a8a5e32e9 Remove dead code 2025-01-27 20:03:08 +01:00
Filip Melík
34b6cc9aac Pull duplicated page title to common place 2025-01-27 20:00:18 +01:00
Filip Melík
58c865b096 Save last qso count on dashboard setting and honor it in dashboard map and dashboard table 2025-01-27 20:00:18 +01:00
phl0
e9949e742d Typo fixes 2025-01-20 16:31:42 +01:00
HB9HIL
eed874f3eb ability for an admin to unlock a user from the users table by using the actions modal 2025-01-19 09:44:54 +01:00
int2001
f600341649 Lock User after 3 failed attempts 2025-01-13 09:13:15 +00:00
Fabian Berg
e8c85b9d03 Merge branch 'dev' into firstlogin_wizard 2025-01-07 21:34:41 +01:00
HB9HIL
5e13f920c6 remove club permissions on conversion 2025-01-07 06:49:32 +01:00
HB9HIL
a588180063 First Login Wizard 2025-01-03 09:28:07 +01:00
Fabian Berg
c70c2ec5cd Clubstations for Wavelog (#1334)
* feat[clubstations]: New DB structure

* feat[clubstations]: Add clubstationstable in user managment

* feat[clubstations]: Show last operator

* feat[clubstations]: Better solution for last operator. tnx for the hint @int2001

* feat[clubstations]: New Club Model and Controller

* feat[clubstations]: Add "Add User" and "Edit User" functionality

* docs[clubstations]: move comment

* feat[clubstations]: Add "Delete Member" functionality

* feat[clubstations]: some enhancements and javascript

* fix[clubstations]: Wrong message class for flashmessages

* feat[clubstations]: Added Switch in the Header menu (not functional yet)

* feat[clubstations]: clubswitch modal

* fix[clubstations]: Load encryption library if not already loaded

* fix[clubstations]: Prevent direct login attempts to clubstations and enhance impersonation authorization

* fix[clubstations]: Typo

* feat[clubstations]: Only show the operator dialog if there is something fishy

* fix[user]: little UI bug

* feat[impersonate]: Add source uid to session data

* fix[impersonate]: logic adjustment

* feat[clubstations]: Add manage button in header menu for club officers

* fix[clubstations]: typo in permission level check

* fix[clubstations]: Full rights for the admin

* feat[impersonate]: Custom sessiondata

* feat[impersonate]: Implement stop impersonation feature with modal confirmation; "the way back"

* fix(modal): Fix bug where modal was hidden when mouse leaved the browser content

* docs(config): Adjust config description for special callsigns and clubstations

* feat(club): Add club access check helper

* typo

* fix[impersonation]: Better text

* feat(club): Selectize for a efficient user search

* feat(clubstations): Restrict clubstations based on users permission level part 1/x

* adjustments for dev merge

* Adjusted club right for the advanced logbook

* feat[user]: Refactoring of the Action Buttons in the user table

* fix[club_permissions]: normal button instead small one for club permissions

* remove unnecessary line break in modal body

* feat[clubstations]: Add Club Mode badge to the header

* fix[clubstations]: fix maintenance mode

* allow switch back on http

* feat(simplefle): display operator input based on club_access

* small UI adjustments

* small UI adjustments

* moved api page to a index.php file and added support for clubstations

* removed unused stuff

* typo

* radios and api keys

* missed one binding

* fix qso view, even officers do just see their own radios in QSO logging

* omit the need for a relogin to see the changes as an admin

* Omit the need for relogin after club changes in general. It's a question of UX. It's better to accept a little higher DB load (if clubstations are enabled) then the need of an user to relogin. There is some room for improvement by changing user_model->get_by_id() and adding a join there. This can be done later if we see that the load is too high

* If the user is not the creator of the API key, it's likely a clubstation. In this case the callsign of the clubstation can not be the same as the callsign of the user (operator call provided by the user). If this is the case, we need to use the callsign of the creator of the API key

* remove debug messages

* better UI in header

* found a typo

* full access in clubstations for admins (if accessed via admin usertable)

* adjusted text

* adjusted text

* adjust text

* reduce required chars

* bugfix: missing the correct authentication in case the admin was not member of the club. he wasn't able to switch back

* reduce debug messages

* fixed UI bug related to tooltips

* load js in controller

* upps..

* some UI adjustments

* corrected permissions

* if user gets delete we need to remove data in club_permissions and also api keys which were created by this user

* Notify members about new memberships or changes in permission level

* add spinner to save button

* make login/logout process more bulletproof

* remove the relogin cookie after the attempt

* better strategy

* bug where switch back failed if user is no admin

* make api keys more secure

* mask not owned api keys

* removed annoying link

* if a user gets removed from a club we also should delete the corresponding api keys and cat radios

* adjusted wiki link

* Auto creation of logbook and location when new user is created

* store and display locator in uppercase

* same for callsign

* fixed a bug in user/club creation

* Revert "Auto creation of logbook and location when new user is created"
We found another solution to which will be addressed in a second PR
This reverts commit f05f4b7bf0.

* Optimized SQL for stats at userlist

* Source query for lastop "out", because mysql<9.0 can't handle Windowed functions

* adjust migration

* add new columns to users table to get created_at and modified_at

* added a partial down function

* add operator dropdown for clubstations

* fix mig version

* Add some backend restrictions in case a user wants to try something funny with the club

---------

Co-authored-by: Andreas Kristiansen <6977712+AndreasK79@users.noreply.github.com>
Co-authored-by: int2001 <joerg@dj7nt.de>
2025-01-02 10:22:23 +01:00
HB9HIL
86c7add745 fix gettext warning 2024-11-19 02:10:32 +01:00
HB9HIL
89ce91aa00 json for the other mails 2024-10-28 13:01:59 +01:00
HB9HIL
98f153259a forgot password email 2024-10-28 11:03:20 +01:00
HB9HIL
1606d66666 password reset email 2024-10-28 10:50:32 +01:00
HB9HIL
d92258e9ae fix other expire times 2024-09-02 14:25:23 +02:00
toseppo
9b87017d8a Fix user login / edit set cookies 2024-08-31 12:34:09 +03:00
HB9HIL
c41e6e68dd update user session with impersonation flag 2024-08-27 23:06:22 +02:00
HB9HIL
5d2b8c998e add config switch to disabled impersonate 2024-08-19 21:07:26 +02:00
HB9HIL
f52323b6b3 improved security 2024-08-19 20:35:56 +02:00
HB9HIL
9e4dabfae9 custom_date_format and other UI adjustments 2024-08-17 12:17:16 +02:00
HB9HIL
c7da716893 adjusted comments 2024-08-17 11:35:30 +02:00
HB9HIL
5bb31d8b8e rename user/main.php to user/index.php to match our default naming 2024-08-17 09:40:21 +02:00
HB9HIL
356595eb85 comments 2024-08-17 08:40:32 +02:00
HB9HIL
05295d1694 thanks to POST we can remove url_encoding and prevent issues here 2024-08-17 00:45:09 +02:00
HB9HIL
14433d46cb use POST instead of GET 2024-08-16 20:36:39 +02:00
HB9HIL
1601af3e7d Merge remote-tracking branch 'upstream/dev' into impersonate 2024-08-16 20:07:50 +02:00
HB9HIL
016f3767c1 catch the case if no $hash is given 2024-08-16 19:56:35 +02:00
HB9HIL
aa85437702 Merge pull request #761 from HB9HIL/dashboard_warnings 2024-08-16 12:41:10 +02:00
Andreas Kristiansen
bf339a59c2 Easier fix, thanks @HB9HIL 2024-08-16 11:54:53 +02:00
HB9HIL
e69c551857 if the encryption_key is still the flossie thing you can't use the impersonate for security reasons 2024-08-16 11:24:07 +02:00
HB9HIL
ee05431223 added a TODO 2024-08-16 11:09:37 +02:00
HB9HIL
47afd9d284 small adjustments 2024-08-16 11:06:21 +02:00
Andreas Kristiansen
c48b29c8ea Fixing qrg unit saving, and only load on login or change 2024-08-16 11:05:43 +02:00
HB9HIL
65ca7681d3 encrypt the uid with the instance encryption key to make it more secure 2024-08-16 10:43:40 +02:00
HB9HIL
5dee1b9968 You're not allowed to do that! 2024-08-16 10:08:44 +02:00
HB9HIL
4b0517b9b4 show layout/messages on the dashboard 2024-08-16 10:05:59 +02:00
HB9HIL
da42dc9224 first mockup of impersonat function 2024-08-16 09:06:14 +02:00
HB9HIL
b281143aa8 make use of the config for cookie names 2024-08-13 08:30:54 +02:00