ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/cf.schmorp.de/server/ext/login.ext
Revision: 1.134
Committed: Tue Feb 20 14:28:27 2018 UTC (6 years, 4 months ago) by root
Branch: MAIN
Changes since 1.133: +2 -0 lines
Log Message:
*** empty log message ***

File Contents

# Content
1 #! perl # mandatory depends=highscore
2
3 # login handling
4
5 use Fcntl;
6 use Coro::AIO;
7 use Deliantra::Util ();
8
9 CONF MAX_DISCONNECT_TIME = 3600;
10
11 our $VALID_LOGIN = qr<^[a-zA-Z0-9][a-zA-Z0-9\-_]{2,19}\z>;
12 our %LOGIN_LOCK;
13
14 # utility function to send messages to the client before
15 # we have a player object to format them for. does not
16 # escape anything.
17 sub send_log ($$$) {
18 $_[0]->send_packet ("msg $_[2] log $_[1]");
19 }
20
21 sub query {
22 my ($ns, $flags, $text) = @_;
23
24 $ns->query ($flags, $text, Coro::rouse_cb);
25 Coro::rouse_wait
26 }
27
28 sub can_cleanup {
29 return 0; # highscore list is not cleared out, rethink
30
31 my ($pl, $mtime) = @_;
32
33 my $age = time - $mtime;
34 my $level = $pl->ob->level;
35
36 ($level <= 3 && $age > 7 * 86400) # 7 days for level 0..3
37 || ($level <= 9 && $age > 90 * 86400) # 3 months for level 4..9
38 || ($level <= 20 && $age > 180 * 86400) # 6 months for level 10..20
39 || $age > 700 * 86400 # 2 years for everybody else
40 }
41
42 # return a guard object for a lock on the given username, if available
43 sub login_guard {
44 my ($user) = @_;
45
46 exists $LOGIN_LOCK{$user}
47 and return undef;
48
49 cf::player::find_active $user
50 and return undef;
51
52 undef $LOGIN_LOCK{$user};
53 Guard::guard { delete $LOGIN_LOCK{$user} }
54 }
55
56 sub safe_spot($) {
57 my ($pl) = @_;
58
59 my $ob = $pl->ob;
60
61 my $m = $ob->map
62 or return;
63 my $x = $ob->x;
64 my $y = $ob->y;
65
66 # never happens normally, but helps when shell users make mistakes
67 $m->linkable
68 or return 1;
69
70 scalar grep $_->type == cf::SAVEBED, $m->at ($x, $y)
71 }
72
73 sub enter_map {
74 my ($pl) = @_;
75
76 my $ob = $pl->ob;
77
78 my ($map, $x, $y)
79 = $ob->{_link_pos}
80 ? @{delete $ob->{_link_pos}}
81 : ($pl->maplevel, $ob->x, $ob->y);
82
83 $ob->enter_link;
84
85 my $m = cf::map::find $map;
86 my $time = delete $pl->{unclean_save};
87
88 if ($time && $m) {
89 if ($time < $m->{instantiate_time}) {
90 # the map was reset in the meantime
91 my $age = $cf::RUNTIME - $time;
92
93 cf::info $ob->name, " map reset after logout, logout age $age (>= $MAX_DISCONNECT_TIME)\n";#d#
94
95 if ($age >= $MAX_DISCONNECT_TIME) {
96 $ob->message (
97 "You didn't use a bed to reality to leave this realm, leaving your body in great danger. "
98 . "Unfortunately, nobody was near to help you when the monsters arrived to eat you. "
99 . "Maybe you can find comfort in the thought that your body was quite satisfying in taste... "
100 . "H<You disconnected too long without having used a savebed.>",
101 cf::NDI_RED | cf::NDI_REPLY
102 );
103 # kill them.
104 # reminds me of the famous badness 10000 syndrome...
105 $ob->stats->hp (-10000); #] if they survive this they deserved to live
106 my $killer = cf::arch::get "killer_login"; $pl->killer ($killer); $killer->destroy;
107 } else {
108 ($map, $x, $y) = $pl->savebed;
109
110 $ob->message (
111 "You didn't use a bed to reality to leave this realm, leaving your body in great danger. "
112 . "Fortunately, some friendly dwellers found you, checked your passport, and brought you to safety. "
113 . "Better use a savebed next time, much worse things could have happened... "
114 . "H<You disconnected without having used a savebed. When you do that for too long, you might die.>",
115 cf::NDI_RED | cf::NDI_REPLY
116 );
117 }
118 } else {
119 $ob->message (
120 "You didn't use a bed to reality to leave this realm. This is very dangerous, "
121 . "as lots of things could happen when you leave by other means, such as cave-ins, "
122 . "or monsters suddenly snapping your body. Better use a savebed next time. "
123 . "H<Always apply a bed of reality to disconnect from the server.>",
124 cf::NDI_RED | cf::NDI_REPLY
125 );
126 }
127 }
128
129 $ob->goto ($map, $x, $y);
130 }
131
132 sub encode_password($) {
133 unpack "H*", Deliantra::Util::hash_pw $_[0]
134 }
135
136 sub compare_password($$) {
137 my ($pass, $token) = @_;
138
139 if ($token =~ /!!(.*)/) {
140 return +(substr $pass, 0, 8) eq pack "H*", $1;
141 } elsif ($token =~ /!(.*)/) {
142 return $pass eq pack "H*", $1;
143 } else {
144 return $token eq encode_password $pass;
145 }
146 }
147
148 # delete a player directory
149 sub nuke_playerdir {
150 my ($user) = @_;
151
152 my $lock = cf::lock_acquire "ext::login::nuke_playerdir";
153
154 my $temp = "$PLAYERDIR/~$Coro::current~deleting~";
155 aio_rename "$PLAYERDIR/$user", $temp;
156 IO::AIO::aio_rmtree $temp;
157 }
158
159 sub login {
160 my ($pl) = @_;
161
162 # handle character creation, if neccessary
163 # the rest of this function is character creation
164
165 my $ns = $pl->ns;
166 my $ob = $pl->ob;
167
168 if ($pl->{chargen} eq "init") {
169 $ob->goto ($pl->maplevel, $ob->x, $ob->y);
170
171 # create the playerdir, if necessary, as chargen_race_done did it before
172 # presumably because of unique maps
173 aio_mkdir playerdir $pl, 0770;
174 delete $pl->{deny_save}; # set by new
175 $pl->save;
176
177 $pl->{chargen} = "stats";
178 }
179
180 if ($pl->{chargen} eq "stats") {
181 while () {
182 $ob->update_stats;
183 $pl->save_stats;
184
185 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
186 "[y] to roll new stats [n] to use stats\n[1-7] [1-7] to swap stats.\nRoll again (y/n/1-7)?";
187
188 if ($res =~ /^[Nn]/) {
189 last;
190 } elsif ($res > 0 && $res <= 7) {
191 my $swap = query $ns, cf::CS_QUERY_SINGLECHAR, "Swap stat with (will not roll new stats) [1-7]?";
192
193 if ($swap > 0 && $swap <= 7) {
194 $ob->swap_stats ($res - 1, $swap - 1);
195 }
196 } else {
197 $ob->roll_stats;
198 }
199
200 Coro::Timer::sleep 0.05;
201 }
202
203 $ob->set_animation (2);
204 $ob->add_statbonus;
205
206 $pl->{chargen} = "race";
207 }
208
209 if ($pl->{chargen} eq "race") {
210 while () {
211 $ns->send_msg ("chargen-race-title", ucfirst $pl->title, -1);
212 my $msg = $ob->msg;
213 $msg =~ s/(?<=\S)\n(?=\S)/ /g;
214 $ns->send_msg ("chargen-race-description", $msg, cf::NDI_BLUE);
215
216 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
217 "Now choose a character.\nPress any key to change outlook.\nPress `d' when you're pleased.\n";
218
219 last if $res =~ /[dD]/;
220
221 $pl->chargen_race_next;
222 Coro::Timer::sleep 0.05;
223 }
224
225 $pl->chargen_race_done;
226 $pl->{chargen} = "gender";
227 }
228
229 if ($pl->{chargen} eq "race") {
230 while () {
231 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
232 "Now choose a gender.\nPress 'f' to become female, and 'm' to become male.\n";
233
234 if ($res =~ /^[fF]/) {
235 $pl->gender (1);
236 last;
237 } elsif ($res =~ /^[mM]/) {
238 $pl->gender (0);
239 last;
240 }
241 Coro::Timer::sleep 0.05;
242 }
243 $pl->{chargen} = "done";
244 }
245
246 $ns->state (cf::ST_PLAYING);
247
248 if ($pl->{chargen} eq "done") {
249 # XXX: Workaround for delayed client ext protocol handshake
250 $pl->esrv_new_player;
251
252 $pl->{chargen} = "done";
253 }
254
255 $ns->update_command_faces;
256
257 $ob->reply (undef, "Welcome to Deliantra!");
258
259 if (0 < Coro::AIO::aio_load "$cf::CONFDIR/motd", my $motd) {
260 $pl->ns->send_msg ("c/motd" => $motd, cf::NDI_CLEAR);
261 }
262 }
263
264 sub chargen {
265 my ($ns, $user, $hash) = @_;
266
267 # just to make sure nothing is left over
268 # normally, nothing is there.
269 nuke_playerdir $user;
270
271 my $pl = cf::player::new $user;
272 $pl->password (unpack "H*", $hash);
273 $pl->connect ($ns);
274
275 $pl->{chargen} = "init";
276
277 login $pl;
278 }
279
280 cf::client->attach (on_addme => sub {
281 my ($ns) = @_;
282
283 $ns->{addme}++ and return $ns->destroy;
284
285 $ns->async (sub {
286 $Coro::current->{desc} = "addme init";
287
288 my ($user, $pass);
289
290 $ns->send_packet ("addme_success");
291
292 for (;;) {
293 delete $ns->{login_guard};
294
295 send_log $ns,
296 "Please enter your username now. If you are a new user, "
297 . "make one up that describes your character best. "
298 . "Only letters and digits are allowed, though.",
299 cf::NDI_BLUE | cf::NDI_REPLY
300 ;
301
302 # read username
303 while () {
304 $user = query $ns, 0, "What is your name? (login names are case-sensitive)\n:";
305
306 if ($user =~ $VALID_LOGIN) {
307 last;
308 } else {
309 send_log $ns,
310 "Your username contains illegal characters "
311 . "(only a-z, A-Z and 0-9 are allowed), "
312 . "or is not between 3 and 20 characters in length.",
313 cf::NDI_RED | cf::NDI_REPLY
314 ;
315 }
316 Coro::Timer::sleep 0.4;
317 }
318
319 $Coro::current->{desc} = "addme($user)";
320
321 send_log $ns,
322 "Welcome $user, please enter your password now. "
323 . "New users should now choose a password. "
324 . "Anything your client lets you enter is fine.",
325 cf::NDI_BLUE | cf::NDI_REPLY
326 ;
327
328 # read password
329 while () {
330 $pass = query $ns, cf::CS_QUERY_HIDEINPUT, "What is your password?\n:";
331 last if $pass =~ /.../;
332 send_log $ns,
333 "Try to use at least three characters as your password please, "
334 . "that cannot be too much to ask for :)",
335 cf::NDI_RED | cf::NDI_REPLY
336 ;
337 Coro::Timer::sleep 0.4;
338 }
339
340 $ns->{login_guard} = login_guard $user
341 or do {
342 send_log $ns,
343 "That user is already logged in (or is logging in)."
344 . "Chose another, or wait till the other session has ended.",
345 cf::NDI_RED | cf::NDI_REPLY
346 ;
347 next;
348 };
349
350 # try to read the user file and check the password
351 if (my $pl = cf::player::find $user) {
352 aio_stat $pl->path and next;
353 my $mtime = (stat _)[9];
354 my $token = $pl->password;
355
356 if ($cf::CFG{ext_login_nocheck} or compare_password $pass, $token) {
357 # player exists and passwords match - we can proceed
358
359 # password matches, wonderful
360 my $pl = cf::player::find $user or next;
361 $pl->connect ($ns);
362 enter_map $pl;
363 login $pl;
364 return;
365 } elsif (can_cleanup $pl, $mtime) {
366 Coro::Timer::sleep 1;
367
368 send_log $ns,
369 "Player exists, but password does not match. If this is your account, "
370 . "please try again. If not, you can now decide to take over this account "
371 . "because it has not been in-use for some time.",
372 cf::NDI_RED | cf::NDI_REPLY
373 ;
374
375 (query $ns, cf::CS_QUERY_SINGLECHAR, "Delete existing account and create a new one (Y/N)?") =~ /^[yY]/
376 or next;
377
378 # check if the file hasn't changed
379 aio_stat cf::player::path $user and next;
380 $mtime == (stat _)[9] or next;
381
382 $pl->quit_character;
383
384 # fall through to creation
385 } else {
386 Coro::Timer::sleep 1;
387
388 send_log $ns,
389 "Wrong username or password. Please try again "
390 . "(check for Numlock and other semi-obvious error sources).",
391 cf::NDI_RED | cf::NDI_REPLY
392 ;
393 next;
394 }
395 } else {
396 # unable to load the playerfile:
397 # check whether the player dir exists, which means the file is corrupted or
398 # something very similar.
399 if (!aio_stat cf::player::playerdir $user) {
400 send_log $ns,
401 "Unable to retrieve this player. It might be a locked or broken account. "
402 . "If this is your account, ask a dungeon master for assistance. "
403 . "Otherwise choose a different login name.",
404 cf::NDI_RED | cf::NDI_REPLY
405 ;
406 next;
407 }
408 }
409
410 my $pass2 = query $ns, cf::CS_QUERY_HIDEINPUT, "Please type your password again.";
411
412 if ($pass2 ne $pass) {
413 send_log $ns,
414 "The passwords do not match, please try again.",
415 cf::NDI_RED | cf::NDI_REPLY
416 ;
417 Coro::Timer::sleep 0.5;
418 next;
419 }
420
421 last;
422 }
423
424 chargen $ns, $user, Deliantra::Util::hash_pw $pass;
425 });
426 });
427
428 cf::client->attach (
429 on_version => sub {
430 my ($ns, $arg) = @_;
431
432 # perl probably uses lrand48, which is not secure at all
433 # maybe require linux and use /dev/urandom.
434 $ns->{nonces} = [map { join "", map { chr rand 256 } 0..63 } 1..2];
435 $ns->ext_msg (nonces => @{ $ns->{nonces} });
436 },
437 );
438
439 cf::register_async_exticmd create_login => sub {
440 my ($ns, $reply, $user, $pass) = @_;
441
442 $ns->{addme}++ and return $ns->destroy;
443
444 $ns->async (sub {
445 my $fail = sub {
446 $reply->(0, $_[0]);
447 $ns->flush; # does not ensure that the data reaches the client - TODO
448 # need to do this in another thread, as this one gets canceled
449 Coro::async_pool {
450 Coro::AnyEvent::sleep 0.1; # TODO, see above, extra hack
451 $ns->destroy if $ns->valid;
452 };
453 Coro::schedule; # do the destroy, should not return
454 };
455
456 $user =~ $VALID_LOGIN
457 or return $fail (
458 "Your username contains illegal characters (only a-z, A-Z and 0-9 are allowed), "
459 . "or is not between 3 and 20 characters in length."
460 );
461
462 $ns->{login_guard} = login_guard $user
463 or return $fail->("User name '$user' is in use - try another login name.");
464
465 cf::player::find $user
466 and return $fail->("User name '$user' is already registered - choose another login name.");
467
468 $reply->(1, "Account Created");
469
470 chargen $ns, $user, $pass;
471 });
472 };
473
474 cf::register_async_exticmd login => sub {
475 my ($ns, $reply, $user, $hash) = @_;
476
477 $ns->{addme}++ and return $ns->destroy;
478
479 $ns->async (sub {
480 $Coro::current->{desc} = "login($user)";
481
482 my $fail = sub {
483 $reply->(0, $_[0]);
484 $ns->flush; # does not ensure that the data reaches the client - TODO
485 # need to do this in another thread, as this one gets canceled
486 Coro::async_pool {
487 Coro::AnyEvent::sleep 0.1; # TODO, see above, extra hack
488 $ns->destroy if $ns->valid;
489 };
490 Coro::schedule; # do the destroy, should not return
491 };
492
493 $ns->{login_guard} = login_guard $user
494 or return $fail->("User '$user' is currently playing or logging in in another session. If that is your "
495 . "user name, make sure you are not running two clients. When in doubt, reboot.");
496
497 # try to read the user file and check the password
498 my $pl = cf::player::find $user
499 or return $fail->("User '$user' does not exist - wrong spelling?");
500
501 aio_stat $pl->path
502 and return $ns->destroy;
503
504 my $mtime = (stat _)[9];
505 my $token = $pl->password;
506
507 $token = $token =~ /^!/
508 ? Deliantra::Util::hash_pw pack "H*", substr $token, 1
509 : pack "H*", $token;
510
511 $token = Deliantra::Util::auth_pw $token, $ns->{nonces}[0], $ns->{nonces}[1];
512
513 $token eq $hash
514 or $cf::CFG{ext_login_nocheck}
515 or return $fail->("User exists, but the password doesn't match - check your spelling, NumLock/CapsLock etc.");
516
517 # player exists and passwords match - we can proceed
518
519 $reply->(1, "Success");
520
521 $pl->connect ($ns);
522 enter_map $pl;
523 login $pl;
524 });
525 };
526
527 cf::register_command password => sub {
528 my ($pl, $arg) = @_;
529
530 unless ($pl->flag (cf::FLAG_WIZ)) {
531 $pl->message (
532 "The password can currently only changed by a DM.",
533 cf::NDI_UNIQUE | cf::NDI_REPLY);
534 return;
535 }
536
537 $pl->message (#d#
538 "Passwords cannot currently be changed.",#d#
539 cf::NDI_UNIQUE | cf::NDI_REPLY);#d#
540 return;#d#
541
542 my (@args) = split /\s+/, $arg;
543 my ($player, $new_pw) = @args;
544
545 if ($pl->flag (cf::FLAG_WIZ) && $player eq '') {
546 $pl->message (
547 "Usage: password <player> [<new password>]",
548 cf::NDI_UNIQUE | cf::NDI_REPLY);
549 return;
550 }
551
552 if ($new_pw eq '') {
553 $new_pw =
554 join '',
555 map { ('.', '/', 0..9, 'A'..'Z', 'a'..'z')[(cf::rndm 64)] }
556 1..9;
557 }
558
559 cf::async {
560 my $plc = cf::player::find $player;
561 if ($plc) {
562 $plc->password (encode_password $new_pw);
563 $pl->message (
564 "Ok, changed password of '$player' to '$new_pw'!",
565 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
566 } else {
567 $pl->message (
568 "Fail! Couldn't set password for '$player', "
569 . "he doesn't seem to exist!",
570 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
571 }
572 };
573 };
574
575 cf::register_command quit => sub {
576 my ($ob, $arg) = @_;
577
578 $ob->send_msg (undef,
579 "Quitting will delete your character PERMANENTLY: It will be gone forever and any progress will be lost. "
580 . "If you are sure you want to do this, then use the quit_character command instead of quit.",
581 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
582 };
583
584 cf::register_command quit_character => sub {
585 my ($ob, $arg) = @_;
586
587 my $pl = $ob->contr;
588
589 $pl->ns->query (cf::CS_QUERY_SINGLECHAR, "Do you want to PERMANENTLY delete your character and all associated data (y/n)?", sub {
590 if ($_[0] !~ /^[yY]/) {
591 $ob->send_msg (undef, "Ok, not not quitting then.", cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
592 } else {
593 $ob->send_msg (undef, "Ok, quitting, hope to see you again.", cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
594 cf::async {
595 $pl->quit_character;
596 };
597 }
598 });
599 };
600
601 cf::object->attach (
602 type => cf::SAVEBED,
603 on_apply => sub {
604 my ($bed, $ob) = @_;
605
606 return cf::override 0 unless $ob->type == cf::PLAYER;
607
608 my $pl = $ob->contr;
609
610 # update respawn position
611 $pl->savebed ($bed->map->path, $bed->x, $bed->y);
612
613 cf::async {
614 my $killer = cf::arch::get "killer_logout"; $pl->killer ($killer); $killer->destroy;
615 ext::highscore::check $ob;
616
617 $pl->save;
618
619 $ob->send_msg ($cf::SAY_CHANNEL => "In the future, you will wake up here when you die.", cf::NDI_DEF | cf::NDI_REPLY);
620
621 my $ns = $pl->ns
622 or return;
623
624 $ns->query (cf::CS_QUERY_SINGLECHAR, "Do you want to continue playing (y/n)?", sub {
625 if ($_[0] !~ /^[yY]/) {
626 $pl->invoke (cf::EVENT_PLAYER_LOGOUT, 1);
627 $pl->deactivate;
628 $pl->ns->destroy;
629 }
630 });
631 };
632 },
633 );
634
635 cf::player->attach (
636 on_login => sub {
637 my ($pl) = @_;
638 my $name = $pl->ob->name;
639
640 $_->ob->message ("$name has entered the game.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
641 },
642 on_logout => sub {
643 my ($pl, $cleanly) = @_;
644 my $name = $pl->ob->name;
645
646 if ($cleanly) {
647 $_->ob->message ("$name left the game.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
648 } else {
649 $_->ob->message ("$name uncerimoniously disconnected.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
650 $pl->{unclean_save} = $cf::RUNTIME
651 unless safe_spot $pl;
652 }
653 },
654 );
655