ViewVC Help
View File | Revision Log | Show Annotations | Download File
/cvs/deliantra/server/ext/login.ext
Revision: 1.131
Committed: Mon Nov 19 01:13:49 2012 UTC (11 years, 6 months ago) by root
Branch: MAIN
Changes since 1.130: +25 -18 lines
Log Message:
sigh

File Contents

# Content
1 #! perl # mandatory depends=highscore
2
3 # login handling
4
5 use Fcntl;
6 use Coro::AIO;
7 use Deliantra::Util ();
8
9 CONF MAX_DISCONNECT_TIME = 3600;
10
11 our $VALID_LOGIN = qr<^[a-zA-Z0-9][a-zA-Z0-9\-_]{2,19}\z>;
12 our %LOGIN_LOCK;
13
14 # utility function to send messages to the client before
15 # we have a player object to format them for. does not
16 # escape anything.
17 sub send_log ($$$) {
18 $_[0]->send_packet ("msg $_[2] log $_[1]");
19 }
20
21 sub query {
22 my ($ns, $flags, $text) = @_;
23
24 $ns->query ($flags, $text, Coro::rouse_cb);
25 Coro::rouse_wait
26 }
27
28 sub can_cleanup {
29 my ($pl, $mtime) = @_;
30
31 my $age = time - $mtime;
32 my $level = $pl->ob->level;
33
34 ($level <= 3 && $age > 7 * 86400) # 7 days for level 0..3
35 || ($level <= 9 && $age > 90 * 86400) # 3 months for level 4..9
36 || ($level <= 20 && $age > 180 * 86400) # 6 months for level 10..20
37 || $age > 700 * 86400 # 2 years for everybody else
38 }
39
40 # return a guard object for a lock on the given username, if available
41 sub login_guard {
42 my ($user) = @_;
43
44 exists $LOGIN_LOCK{$user}
45 and return undef;
46
47 cf::player::find_active $user
48 and return undef;
49
50 undef $LOGIN_LOCK{$user};
51 Guard::guard { delete $LOGIN_LOCK{$user} }
52 }
53
54 sub safe_spot($) {
55 my ($pl) = @_;
56
57 my $ob = $pl->ob;
58
59 my $m = $ob->map
60 or return;
61 my $x = $ob->x;
62 my $y = $ob->y;
63
64 # never happens normally, but helps when shell users make mistakes
65 $m->linkable
66 or return 1;
67
68 scalar grep $_->type == cf::SAVEBED, $m->at ($x, $y)
69 }
70
71 sub enter_map {
72 my ($pl) = @_;
73
74 my $ob = $pl->ob;
75
76 my ($map, $x, $y)
77 = $ob->{_link_pos}
78 ? @{delete $ob->{_link_pos}}
79 : ($pl->maplevel, $ob->x, $ob->y);
80
81 $ob->enter_link;
82
83 my $m = cf::map::find $map;
84 my $time = delete $pl->{unclean_save};
85
86 if ($time && $m) {
87 if ($time < $m->{instantiate_time}) {
88 # the map was reset in the meantime
89 my $age = $cf::RUNTIME - $time;
90
91 cf::info $ob->name, " map reset after logout, logout age $age (>= $MAX_DISCONNECT_TIME)\n";#d#
92
93 if ($age >= $MAX_DISCONNECT_TIME) {
94 $ob->message (
95 "You didn't use a bed to reality to leave this realm, leaving your body in great danger. "
96 . "Unfortunately, nobody was near to help you when the monsters arrived to eat you. "
97 . "Maybe you can find comfort in the thought that your body was quite satisfying in taste... "
98 . "H<You disconnected too long without having used a savebed.>",
99 cf::NDI_RED | cf::NDI_REPLY
100 );
101 # kill them.
102 # reminds me of the famous badness 10000 syndrome...
103 $ob->stats->hp (-10000); #] if they survive this they deserved to live
104 my $killer = cf::arch::get "killer_login"; $pl->killer ($killer); $killer->destroy;
105 } else {
106 ($map, $x, $y) = $pl->savebed;
107
108 $ob->message (
109 "You didn't use a bed to reality to leave this realm, leaving your body in great danger. "
110 . "Fortunately, some friendly dwellers found you, checked your passport, and brought you to safety. "
111 . "Better use a savebed next time, much worse things could have happened... "
112 . "H<You disconnected without having used a savebed. When you do that for too long, you might die.>",
113 cf::NDI_RED | cf::NDI_REPLY
114 );
115 }
116 } else {
117 $ob->message (
118 "You didn't use a bed to reality to leave this realm. This is very dangerous, "
119 . "as lots of things could happen when you leave by other means, such as cave-ins, "
120 . "or monsters suddenly snapping your body. Better use a savebed next time. "
121 . "H<Always apply a bed of reality to disconnect from the server.>",
122 cf::NDI_RED | cf::NDI_REPLY
123 );
124 }
125 }
126
127 $ob->goto ($map, $x, $y);
128 }
129
130 sub encode_password($) {
131 unpack "H*", Deliantra::Util::hash_pw $_[0]
132 }
133
134 sub compare_password($$) {
135 my ($pass, $token) = @_;
136
137 if ($token =~ /!!(.*)/) {
138 return +(substr $pass, 0, 8) eq pack "H*", $1;
139 } elsif ($token =~ /!(.*)/) {
140 return $pass eq pack "H*", $1;
141 } else {
142 return $token eq crypt $pass, $token;
143 }
144 }
145
146 # delete a player directory
147 sub nuke_playerdir {
148 my ($user) = @_;
149
150 my $lock = cf::lock_acquire "ext::login::nuke_playerdir";
151
152 my $temp = "$PLAYERDIR/~$Coro::current~deleting~";
153 aio_rename "$PLAYERDIR/$user", $temp;
154 IO::AIO::aio_rmtree $temp;
155 }
156
157 sub login {
158 my ($pl) = @_;
159
160 # handle character creation, if neccessary
161 # the rest of this function is character creation
162
163 my $ns = $pl->ns;
164 my $ob = $pl->ob;
165
166 if ($pl->{chargen} eq "init") {
167 $ob->goto ($pl->maplevel, $ob->x, $ob->y);
168
169 # create the playerdir, if necessary, as chargen_race_done did it before
170 # presumably because of unique maps
171 aio_mkdir playerdir $pl, 0770;
172 delete $pl->{deny_save}; # set by new
173 $pl->save;
174
175 $pl->{chargen} = "stats";
176 }
177
178 if ($pl->{chargen} eq "stats") {
179 while () {
180 $ob->update_stats;
181 $pl->save_stats;
182
183 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
184 "[y] to roll new stats [n] to use stats\n[1-7] [1-7] to swap stats.\nRoll again (y/n/1-7)?";
185
186 if ($res =~ /^[Nn]/) {
187 last;
188 } elsif ($res > 0 && $res <= 7) {
189 my $swap = query $ns, cf::CS_QUERY_SINGLECHAR, "Swap stat with (will not roll new stats) [1-7]?";
190
191 if ($swap > 0 && $swap <= 7) {
192 $ob->swap_stats ($res - 1, $swap - 1);
193 }
194 } else {
195 $ob->roll_stats;
196 }
197
198 Coro::Timer::sleep 0.05;
199 }
200
201 $ob->set_animation (2);
202 $ob->add_statbonus;
203
204 $pl->{chargen} = "race";
205 }
206
207 if ($pl->{chargen} eq "race") {
208 while () {
209 $ns->send_msg ("chargen-race-title", ucfirst $pl->title, -1);
210 my $msg = $ob->msg;
211 $msg =~ s/(?<=\S)\n(?=\S)/ /g;
212 $ns->send_msg ("chargen-race-description", $msg, cf::NDI_BLUE);
213
214 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
215 "Now choose a character.\nPress any key to change outlook.\nPress `d' when you're pleased.\n";
216
217 last if $res =~ /[dD]/;
218
219 $pl->chargen_race_next;
220 Coro::Timer::sleep 0.05;
221 }
222
223 $pl->chargen_race_done;
224 $pl->{chargen} = "gender";
225 }
226
227 if ($pl->{chargen} eq "race") {
228 while () {
229 my $res = query $ns, cf::CS_QUERY_SINGLECHAR,
230 "Now choose a gender.\nPress 'f' to become female, and 'm' to become male.\n";
231
232 if ($res =~ /^[fF]/) {
233 $pl->gender (1);
234 last;
235 } elsif ($res =~ /^[mM]/) {
236 $pl->gender (0);
237 last;
238 }
239 Coro::Timer::sleep 0.05;
240 }
241 $pl->{chargen} = "done";
242 }
243
244 $ns->state (cf::ST_PLAYING);
245
246 if ($pl->{chargen} eq "done") {
247 # XXX: Workaround for delayed client ext protocol handshake
248 $pl->esrv_new_player;
249
250 $pl->{chargen} = "done";
251 }
252
253 $ob->reply (undef, "Welcome to Deliantra!");
254
255 if (0 < Coro::AIO::aio_load "$cf::CONFDIR/motd", my $motd) {
256 $pl->ns->send_msg ("c/motd" => $motd, cf::NDI_CLEAR);
257 }
258 }
259
260 sub chargen {
261 my ($ns, $user, $hash) = @_;
262
263 # just to make sure nothing is left over
264 # normally, nothing is there.
265 nuke_playerdir $user;
266
267 my $pl = cf::player::new $user;
268 $pl->password (unpack "H*", $hash);
269 $pl->connect ($ns);
270
271 $pl->{chargen} = "init";
272
273 login $pl;
274 }
275
276 cf::client->attach (on_addme => sub {
277 my ($ns) = @_;
278
279 $ns->{addme}++ and return $ns->destroy;
280
281 $ns->async (sub {
282 $Coro::current->{desc} = "addme init";
283
284 my ($user, $pass);
285
286 $ns->send_packet ("addme_success");
287
288 for (;;) {
289 delete $ns->{login_guard};
290
291 send_log $ns,
292 "Please enter your username now. If you are a new user, "
293 . "make one up that describes your character best. "
294 . "Only letters and digits are allowed, though.",
295 cf::NDI_BLUE | cf::NDI_REPLY
296 ;
297
298 # read username
299 while () {
300 $user = query $ns, 0, "What is your name? (login names are case-sensitive)\n:";
301
302 if ($user =~ $VALID_LOGIN) {
303 last;
304 } else {
305 send_log $ns,
306 "Your username contains illegal characters "
307 . "(only a-z, A-Z and 0-9 are allowed), "
308 . "or is not between 3 and 20 characters in length.",
309 cf::NDI_RED | cf::NDI_REPLY
310 ;
311 }
312 Coro::Timer::sleep 0.4;
313 }
314
315 $Coro::current->{desc} = "addme($user)";
316
317 send_log $ns,
318 "Welcome $user, please enter your password now. "
319 . "New users should now choose a password. "
320 . "Anything your client lets you enter is fine.",
321 cf::NDI_BLUE | cf::NDI_REPLY
322 ;
323
324 # read password
325 while () {
326 $pass = query $ns, cf::CS_QUERY_HIDEINPUT, "What is your password?\n:";
327 last if $pass =~ /.../;
328 send_log $ns,
329 "Try to use at least three characters as your password please, "
330 . "that cannot be too much to ask for :)",
331 cf::NDI_RED | cf::NDI_REPLY
332 ;
333 Coro::Timer::sleep 0.4;
334 }
335
336 $ns->{login_guard} = login_guard $user
337 or do {
338 send_log $ns,
339 "That user is already logged in (or is logging in)."
340 . "Chose another, or wait till the other session has ended.",
341 cf::NDI_RED | cf::NDI_REPLY
342 ;
343 next;
344 };
345
346 # try to read the user file and check the password
347 if (my $pl = cf::player::find $user) {
348 aio_stat $pl->path and next;
349 my $mtime = (stat _)[9];
350 my $token = $pl->password;
351
352 if ($cf::CFG{ext_login_nocheck} or compare_password $pass, $token) {
353 # player exists and passwords match - we can proceed
354
355 # password matches, wonderful
356 my $pl = cf::player::find $user or next;
357 $pl->connect ($ns);
358 enter_map $pl;
359 login $pl;
360 return;
361 } elsif (can_cleanup $pl, $mtime) {
362 Coro::Timer::sleep 1;
363
364 send_log $ns,
365 "Player exists, but password does not match. If this is your account, "
366 . "please try again. If not, you can now decide to take over this account "
367 . "because it has not been in-use for some time.",
368 cf::NDI_RED | cf::NDI_REPLY
369 ;
370
371 (query $ns, cf::CS_QUERY_SINGLECHAR, "Delete existing account and create a new one (Y/N)?") =~ /^[yY]/
372 or next;
373
374 # check if the file hasn't changed
375 aio_stat cf::player::path $user and next;
376 $mtime == (stat _)[9] or next;
377
378 $pl->quit_character;
379
380 # fall through to creation
381 } else {
382 Coro::Timer::sleep 1;
383
384 send_log $ns,
385 "Wrong username or password. Please try again "
386 . "(check for Numlock and other semi-obvious error sources).",
387 cf::NDI_RED | cf::NDI_REPLY
388 ;
389 next;
390 }
391 } else {
392 # unable to load the playerfile:
393 # check whether the player dir exists, which means the file is corrupted or
394 # something very similar.
395 if (!aio_stat cf::player::playerdir $user) {
396 send_log $ns,
397 "Unable to retrieve this player. It might be a locked or broken account. "
398 . "If this is your account, ask a dungeon master for assistance. "
399 . "Otherwise choose a different login name.",
400 cf::NDI_RED | cf::NDI_REPLY
401 ;
402 next;
403 }
404 }
405
406 my $pass2 = query $ns, cf::CS_QUERY_HIDEINPUT, "Please type your password again.";
407
408 if ($pass2 ne $pass) {
409 send_log $ns,
410 "The passwords do not match, please try again.",
411 cf::NDI_RED | cf::NDI_REPLY
412 ;
413 Coro::Timer::sleep 0.5;
414 next;
415 }
416
417 last;
418 }
419
420 chargen $ns, $user, Deliantra::Util::hash_pw $pass;
421 });
422 });
423
424 cf::client->attach (
425 on_version => sub {
426 my ($ns, $arg) = @_;
427
428 # perl probably uses lrand48, which is not secure at all
429 # maybe require linux and use /dev/urandom.
430 $ns->{nonces} = [map { join "", map { chr rand 256 } 0..63 } 1..2];
431 $ns->ext_msg (nonces => @{ $ns->{nonces} });
432 },
433 );
434
435 cf::register_async_exticmd create_login => sub {
436 my ($ns, $reply, $user, $pass) = @_;
437
438 $ns->{addme}++ and return $ns->destroy;
439
440 $ns->async (sub {
441 my $fail = sub {
442 $reply->(0, $_[0]);
443 $ns->flush; # does not ensure that the data reaches the client - TODO
444 # need to do this in another thread, as this one gets canceled
445 Coro::async_pool {
446 Coro::AnyEvent::sleep 0.1; # TODO, see above, extra hack
447 $ns->destroy if $ns->valid;
448 };
449 Coro::schedule; # do the destroy, should not return
450 };
451
452 $user =~ $VALID_LOGIN
453 or return $fail (
454 "Your username contains illegal characters (only a-z, A-Z and 0-9 are allowed), "
455 . "or is not between 3 and 20 characters in length."
456 );
457
458 $ns->{login_guard} = login_guard $user
459 or return $fail->("User name '$user' is in use - try another login name.");
460
461 cf::player::find $user
462 and return $fail->("User name '$user' is already registered - choose another login name.");
463
464 $reply->(1, "Account Created");
465
466 chargen $ns, $user, $pass;
467 });
468 };
469
470 cf::register_async_exticmd login => sub {
471 my ($ns, $reply, $user, $hash) = @_;
472
473 $ns->{addme}++ and return $ns->destroy;
474
475 $ns->async (sub {
476 $Coro::current->{desc} = "login($user)";
477
478 my $fail = sub {
479 $reply->(0, $_[0]);
480 $ns->flush; # does not ensure that the data reaches the client - TODO
481 # need to do this in another thread, as this one gets canceled
482 Coro::async_pool {
483 Coro::AnyEvent::sleep 0.1; # TODO, see above, extra hack
484 $ns->destroy if $ns->valid;
485 };
486 Coro::schedule; # do the destroy, should not return
487 };
488
489 $ns->{login_guard} = login_guard $user
490 or return $fail->("User '$user' is currently playing or logging in in another session. If that is your "
491 . "user name, make sure you are not running two clients. When in doubt, reboot.");
492
493 # try to read the user file and check the password
494 my $pl = cf::player::find $user
495 or return $fail->("User '$user' does not exist - wrong spelling?");
496
497 aio_stat $pl->path
498 and return $ns->destroy;
499
500 my $mtime = (stat _)[9];
501 my $token = $pl->password;
502
503 $token = $token =~ /^!/
504 ? Deliantra::Util::hash_pw pack "H*", substr $token, 1
505 : pack "H*", $token;
506
507 $token = Deliantra::Util::auth_pw $token, $ns->{nonces}[0], $ns->{nonces}[1];
508
509 $token eq $hash
510 or $cf::CFG{ext_login_nocheck}
511 or return $fail->("User exists, but the password doesn't match - check your spelling, NumLock/CapsLock etc.");
512
513 # player exists and passwords match - we can proceed
514
515 $reply->(1, "Success");
516
517 $pl->connect ($ns);
518 enter_map $pl;
519 login $pl;
520 });
521 };
522
523 cf::register_command password => sub {
524 my ($pl, $arg) = @_;
525
526 unless ($pl->flag (cf::FLAG_WIZ)) {
527 $pl->message (
528 "The password can currently only changed by a DM.",
529 cf::NDI_UNIQUE | cf::NDI_REPLY);
530 return;
531 }
532
533 $pl->message (#d#
534 "Passwords cannot currently be changed.",#d#
535 cf::NDI_UNIQUE | cf::NDI_REPLY);#d#
536 return;#d#
537
538 my (@args) = split /\s+/, $arg;
539 my ($player, $new_pw) = @args;
540
541 if ($pl->flag (cf::FLAG_WIZ) && $player eq '') {
542 $pl->message (
543 "Usage: password <player> [<new password>]",
544 cf::NDI_UNIQUE | cf::NDI_REPLY);
545 return;
546 }
547
548 if ($new_pw eq '') {
549 $new_pw =
550 join '',
551 map { ('.', '/', 0..9, 'A'..'Z', 'a'..'z')[(cf::rndm 64)] }
552 1..9;
553 }
554
555 cf::async {
556 my $plc = cf::player::find $player;
557 if ($plc) {
558 $plc->password (encode_password $new_pw);
559 $pl->message (
560 "Ok, changed password of '$player' to '$new_pw'!",
561 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
562 } else {
563 $pl->message (
564 "Fail! Couldn't set password for '$player', "
565 . "he doesn't seem to exist!",
566 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
567 }
568 };
569 };
570
571 cf::register_command quit => sub {
572 my ($ob, $arg) = @_;
573
574 $ob->send_msg (undef,
575 "Quitting will delete your character PERMANENTLY: It will be gone forever and any progress will be lost. "
576 . "If you are sure you want to do this, then use the quit_character command instead of quit.",
577 cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
578 };
579
580 cf::register_command quit_character => sub {
581 my ($ob, $arg) = @_;
582
583 my $pl = $ob->contr;
584
585 $pl->ns->query (cf::CS_QUERY_SINGLECHAR, "Do you want to PERMANENTLY delete your character and all associated data (y/n)?", sub {
586 if ($_[0] !~ /^[yY]/) {
587 $ob->send_msg (undef, "Ok, not not quitting then.", cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
588 } else {
589 $ob->send_msg (undef, "Ok, quitting, hope to see you again.", cf::NDI_UNIQUE | cf::NDI_RED | cf::NDI_REPLY);
590 cf::async {
591 $pl->quit_character;
592 };
593 }
594 });
595 };
596
597 cf::object->attach (
598 type => cf::SAVEBED,
599 on_apply => sub {
600 my ($bed, $ob) = @_;
601
602 return cf::override 0 unless $ob->type == cf::PLAYER;
603
604 my $pl = $ob->contr;
605
606 # update respawn position
607 $pl->savebed ($bed->map->path, $bed->x, $bed->y);
608
609 cf::async {
610 my $killer = cf::arch::get "killer_logout"; $pl->killer ($killer); $killer->destroy;
611 ext::highscore::check $ob;
612
613 $pl->save;
614
615 $ob->send_msg ($cf::SAY_CHANNEL => "In the future, you will wake up here when you die.", cf::NDI_DEF | cf::NDI_REPLY);
616
617 my $ns = $pl->ns
618 or return;
619
620 $ns->query (cf::CS_QUERY_SINGLECHAR, "Do you want to continue playing (y/n)?", sub {
621 if ($_[0] !~ /^[yY]/) {
622 $pl->invoke (cf::EVENT_PLAYER_LOGOUT, 1);
623 $pl->deactivate;
624 $pl->ns->destroy;
625 }
626 });
627 };
628 },
629 );
630
631 cf::player->attach (
632 on_login => sub {
633 my ($pl) = @_;
634 my $name = $pl->ob->name;
635
636 $_->ob->message ("$name has entered the game.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
637 },
638 on_logout => sub {
639 my ($pl, $cleanly) = @_;
640 my $name = $pl->ob->name;
641
642 if ($cleanly) {
643 $_->ob->message ("$name left the game.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
644 } else {
645 $_->ob->message ("$name uncerimoniously disconnected.", cf::NDI_DK_ORANGE | cf::NDI_UNIQUE) for cf::player::list;
646 $pl->{unclean_save} = $cf::RUNTIME
647 unless safe_spot $pl;
648 }
649 },
650 );
651