diff --git a/.gitignore b/.gitignore index e371d95..b06f450 100644 --- a/.gitignore +++ b/.gitignore @@ -16,4 +16,11 @@ node_modules # ignore dist folder (this repo only contains source code!) /dist -*.secret.json \ No newline at end of file +*.secret.json + +# ignore all latex files except .tex +*.aux +*.fls +*.synctex.gz +*.fdb_latexmk +._wordcount_selection.tex \ No newline at end of file diff --git a/assets/basicTicketTemplate/README.md b/assets/basicTicketTemplate/README.md new file mode 100644 index 0000000..21a4e9c --- /dev/null +++ b/assets/basicTicketTemplate/README.md @@ -0,0 +1,3 @@ +# Ticket Template + +This template can be used by libreevent if you do not edit the template. It is entirely copyleft and you can change it to your liking. The LaTex document is included with libreevent. \ No newline at end of file diff --git a/assets/basicTicketTemplate/basicTicketTemplate.pdf b/assets/basicTicketTemplate/basicTicketTemplate.pdf new file mode 100644 index 0000000..f8f3532 Binary files /dev/null and b/assets/basicTicketTemplate/basicTicketTemplate.pdf differ diff --git a/assets/basicTicketTemplate/basicTicketTemplate.tex b/assets/basicTicketTemplate/basicTicketTemplate.tex new file mode 100644 index 0000000..c7b96e8 --- /dev/null +++ b/assets/basicTicketTemplate/basicTicketTemplate.tex @@ -0,0 +1,25 @@ +\documentclass[11pt]{article} + +% Imports % +\usepackage{amsmath} +\usepackage{graphicx} +\usepackage{subcaption} +\usepackage[export]{adjustbox} +\usepackage{tcolorbox} +\usepackage{xcolor} +\usepackage[utf8]{inputenc} +\usepackage[a4paper]{geometry} + +\addtolength{\oddsidemargin}{-0.5in} +\addtolength{\textwidth}{1in} +\addtolength{\evensidemargin}{-0.55in} +\addtolength{\topmargin}{-0.75in} +\addtolength{\textheight}{1.5in} + +\begin{document} + +\begin{tcolorbox}[colback=gray!5!white,colframe=black!75!black,title=Your Ticket - libreevent event management solution] +\vspace{6cm} +\end{tcolorbox} + +\end{document} \ No newline at end of file diff --git a/src/server/admin/adminRoutes.js b/src/server/admin/adminRoutes.js index ae9364f..5e67174 100644 --- a/src/server/admin/adminRoutes.js +++ b/src/server/admin/adminRoutes.js @@ -28,10 +28,9 @@ module.exports = ( app, settings ) => { if ( request.body.mail && request.body.password ) { pwdmanager.checkpassword( request.body.mail, request.body.password ).then( data => { request.session.username = request.body.mail; - if ( data ) { + if ( data.status ) { request.session.username = request.body.mail; - // TODO: Check if user has 2fa enabled - if ( settings.twoFA === 'standard' ) { + if ( data.twoFA === 'simple' ) { ( async () => { let tok = twoFA.registerStandardAuthentication()[ 'token' ]; let ipRetrieved = request.headers[ 'x-forwarded-for' ]; @@ -40,7 +39,7 @@ module.exports = ( app, settings ) => { request.session.token = tok; response.send( { 'status': '2fa' } ); } )(); - } else if ( settings.twoFA === 'enhanced' ) { + } else if ( data.twoFA === 'enhanced' ) { ( async () => { let res = twoFA.registerEnhancedAuthentication(); let ipRetrieved = request.headers[ 'x-forwarded-for' ]; @@ -50,7 +49,7 @@ module.exports = ( app, settings ) => { response.send( { 'status': '2fa+', 'code': res.code } ); } )(); } else { - request.session.loggedInUser = true; + request.session.loggedInAdmin = true; response.send( { 'status': 'ok' } ); } } else { @@ -63,7 +62,6 @@ module.exports = ( app, settings ) => { } ); app.get( '/admin/2fa', ( request, response ) => { - // TODO: Add multi language let tokType = twoFA.verifySimple( request.query.token ); if ( tokType === 'standard' ) { request.session.loggedInAdmin = true; diff --git a/src/server/admin/api/getHandler.js b/src/server/admin/api/getHandler.js index 9e8c648..8a2be51 100644 --- a/src/server/admin/api/getHandler.js +++ b/src/server/admin/api/getHandler.js @@ -42,7 +42,13 @@ class GETHandler { } ); } else if ( call === 'getLocations' ) { db.getJSONData( 'locations' ).then( data => { - resolve( data ); + resolve( data ?? {} ); + } ).catch( error => { + reject( { 'code': 500, 'error': error } ); + } ); + } else if ( call === 'getTicketTemplate' ) { + db.getJSONDataSimple( 'tickets', query.ticket ).then( data => { + resolve( data ?? {} ); } ).catch( error => { reject( { 'code': 500, 'error': error } ); } ); diff --git a/src/server/admin/pwdmanager.js b/src/server/admin/pwdmanager.js index cf6b816..10cbf61 100644 --- a/src/server/admin/pwdmanager.js +++ b/src/server/admin/pwdmanager.js @@ -24,7 +24,7 @@ module.exports.checkpassword = ( username, password ) => { if ( data ) { if ( data[ 0 ] ) { bcrypt.compare( password, data[ 0 ].pass ).then( res => { - resolve( res ); + resolve( { 'status': res, 'twoFA': data[ 0 ].two_fa } ); } ); } else { resolve( false ); diff --git a/src/server/app.js b/src/server/app.js index 78cca10..95155f7 100644 --- a/src/server/app.js +++ b/src/server/app.js @@ -101,6 +101,6 @@ app.use( ( request, response ) => { console.log( '\n\n[ Server ] loading complete!\n\n' ); -const PORT = process.env.PORT || 8081; +const PORT = process.env.PORT || 8080; console.log( '[ Server ] listening on port ' + PORT ); http.createServer( app ).listen( PORT ); \ No newline at end of file diff --git a/src/server/backend/api/getHandler.js b/src/server/backend/api/getHandler.js index bd7954c..55bf42b 100644 --- a/src/server/backend/api/getHandler.js +++ b/src/server/backend/api/getHandler.js @@ -30,7 +30,7 @@ class GETHandler { if ( query.event ) { db.getJSONDataSimple( 'booked', query.event ).then( data => { db.getDataSimple( 'temp', 'user_id', session.id ).then( dat => { - resolve( { 'booked': data ? data.booked : {}, 'user': dat[ 0 ] ? JSON.parse( dat[ 0 ].data )[ query.event ] ?? {} : {} } ); + resolve( { 'booked': data ?? {}, 'user': dat[ 0 ] ? JSON.parse( dat[ 0 ].data )[ query.event ] ?? {} : {} } ); } ); } ).catch( error => { reject( { 'code': 500, 'message': error } ); diff --git a/src/server/backend/api/postHandler.js b/src/server/backend/api/postHandler.js index f9551b1..ca17cab 100644 --- a/src/server/backend/api/postHandler.js +++ b/src/server/backend/api/postHandler.js @@ -39,7 +39,9 @@ class POSTHandler { return; } transmit[ data.eventID ][ data.id ] = data; + // TODO: Prevent seat selection if already taken (also if in booked!) // TODO: Respect max ticket count per user + // TODO: maybe move to per event setting let totalUserTickets = 0; for ( let event in transmit ) { for ( let ticket in transmit[ event ] ) { diff --git a/src/server/backend/db/data/tickets.json b/src/server/backend/db/data/tickets.json index 9e26dfe..eb27a54 100644 --- a/src/server/backend/db/data/tickets.json +++ b/src/server/backend/db/data/tickets.json @@ -1 +1 @@ -{} \ No newline at end of file +{"test2":{"basePdf":"data:application/pdf;base64,","schemas":[{"locationAndTime":{"type":"text","position":{"x":90,"y":70},"width":85,"height":10,"fontName":"Roboto"},"eventName":{"type":"text","position":{"x":89.7,"y":30},"width":85,"height":15,"alignment":"left","fontSize":18,"characterSpacing":0,"lineHeight":1,"fontName":"Roboto"},"ticketName":{"type":"text","position":{"x":90,"y":55},"width":85,"height":10,"fontName":"Roboto","alignment":"left"},"ticketQRCode":{"type":"qrcode","position":{"x":25,"y":30.05},"width":50,"height":50}}],"columns":["locationAndTime","eventName","ticketName","ticketQRCode"],"sampledata":[{"locationAndTime":"Time and date of event","eventName":"Your Event name goes here","ticketName":"Ticket details go here (Ticket name)","ticketQRCode":"QR-Code for entry control will appear here"}]}} \ No newline at end of file diff --git a/src/server/backend/db/db.js b/src/server/backend/db/db.js index 233926d..11307ac 100644 --- a/src/server/backend/db/db.js +++ b/src/server/backend/db/db.js @@ -58,6 +58,16 @@ module.exports.writeDataSimple = ( db, column, searchQuery, data ) => { } ); }; +module.exports.deleteDataSimple = ( db, column, searchQuery ) => { + return new Promise( ( resolve, reject ) => { + dbh.query( { 'command': 'deleteData', 'property': column, 'searchQuery': searchQuery }, dbRef[ db ] ).then( dat => { + resolve( dat ); + } ).catch( error => { + reject( error ); + } ); + } ); +}; + module.exports.checkDataAvailability = ( db, column, searchQuery ) => { return new Promise( ( resolve, reject ) => { dbh.query( { 'command': 'checkDataAvailability', 'property': column, 'searchQuery': searchQuery }, dbRef[ db ] ).then( res => { diff --git a/src/server/backend/db/mysqldb.js b/src/server/backend/db/mysqldb.js index 4fad8a4..6ddce97 100644 --- a/src/server/backend/db/mysqldb.js +++ b/src/server/backend/db/mysqldb.js @@ -55,7 +55,7 @@ class SQLDB { if ( error ) throw error; if ( results[ 0 ][ '@@default_storage_engine' ] !== 'InnoDB' ) return 'DB HAS TO USE InnoDB!'; } ); - this.sqlConnection.query( 'CREATE TABLE libreevent_users ( account_id INT ( 10 ) NOT NULL AUTO_INCREMENT, email TINYTEXT NOT NULL, pass TEXT, name TEXT, first_name TEXT, two_fa TINYTEXT, user_data VARCHAR( 60000 ), mail_confirmed TINYTEXT, marketing_ok TINYTEXT, PRIMARY KEY ( account_id ) ) ENGINE=INNODB;', ( error ) => { + this.sqlConnection.query( 'CREATE TABLE libreevent_users ( account_id INT ( 10 ) NOT NULL AUTO_INCREMENT, email TINYTEXT NOT NULL, pass TEXT, name TEXT, first_name TEXT, two_fa TINYTEXT, user_data VARCHAR( 60000 ), mail_confirmed TINYTEXT, marketing TINYTEXT, PRIMARY KEY ( account_id ) ) ENGINE=INNODB;', ( error ) => { if ( error ) if ( error.code !== 'ER_TABLE_EXISTS_ERROR' ) throw error; this.sqlConnection.query( 'CREATE TABLE libreevent_orders ( order_id INT ( 10 ) NOT NULL AUTO_INCREMENT, order_name TINYTEXT, account_id INT ( 10 ) NOT NULL, tickets VARCHAR( 60000 ), processed TINYTEXT, PRIMARY KEY ( order_id ), FOREIGN KEY ( account_id ) REFERENCES libreevent_users( account_id ) ) ENGINE=INNODB;', ( error ) => { if ( error ) if ( error.code !== 'ER_TABLE_EXISTS_ERROR' ) throw error; @@ -103,7 +103,11 @@ class SQLDB { - addData: - operation.data (key-value pair with all data as values and column to insert into as key) - + + - deleteData: + - operation.property (the column to search for the value) + - operation.searchQuery (the value to search for [will be sanitised by method]) + - updateData: - operation.newValues (a object with keys being the column and value being the value to be inserted into that column, values are being sanitised by the function) diff --git a/src/server/backend/plugins/payments/stripe/stripeRoutes.js b/src/server/backend/plugins/payments/stripe/stripeRoutes.js index 53ccb01..4d441a1 100644 --- a/src/server/backend/plugins/payments/stripe/stripeRoutes.js +++ b/src/server/backend/plugins/payments/stripe/stripeRoutes.js @@ -40,6 +40,7 @@ module.exports = ( app, settings ) => { if ( dat[ 0 ] ) { db.getJSONData( 'events' ).then( events => { let data = JSON.parse( dat[ 0 ].data ); + console.log( data ); ( async () => { for ( let event in data ) { for ( let item in data[ event ] ) { @@ -116,7 +117,7 @@ module.exports = ( app, settings ) => { } } ); - app.post( '/payments/webhook', bodyParser.raw( { type: 'application/json' } ), ( req, res ) => { + app.post( '/payments/webhook', bodyParser.raw( { type: 'application/json' } ), async ( req, res ) => { const payload = req.body; const sig = req.headers[ 'stripe-signature' ]; @@ -139,9 +140,26 @@ module.exports = ( app, settings ) => { db.getDataSimple( 'users', 'email', sessionReference[ event.data.object.id ][ 'email' ] ).then( user => { if ( user[ 0 ] ) { console.log( sessionReference[ event.data.object.id ][ 'tok' ] ); + const tickets = JSON.parse( dat[ 0 ].data ); db.writeDataSimple( 'orders', 'account_id', user[ 0 ].account_id, { 'account_id': user[ 0 ].account_id, 'tickets': dat[ 0 ].data, 'order_name': sessionReference[ event.data.object.id ][ 'tok' ] } ).then( () => { TicketGenerator.generateTickets( sessionReference[ event.data.object.id ] ); } ); + db.getJSONData( 'booked' ).then( ret => { + let booked = ret ?? {}; + for ( let event in tickets ) { + if ( !booked[ String( event ) ] ) { + booked[ String( event ) ] = {}; + } + for ( let tik in tickets[ event ] ) { + booked[ event ][ tik ] = tickets[ event ][ tik ]; + } + } + db.writeJSONData( 'booked', booked ); + } ); + + db.deleteDataSimple( 'temp', 'user_id', sessionReference[ event.data.object.id ][ 'tok' ] ).catch( error => { + console.error( '[ STRIPE ] ERROR whilst deleting data from DB: ' + error ); + } ); } else { console.log( sessionReference[ event.data.object.id ][ 'email' ] ); console.error( 'user not found' ); diff --git a/src/server/backend/tickets/ticketGenerator.js b/src/server/backend/tickets/ticketGenerator.js index 2948f2f..1f578a1 100644 --- a/src/server/backend/tickets/ticketGenerator.js +++ b/src/server/backend/tickets/ticketGenerator.js @@ -35,7 +35,7 @@ class TicketGenerator { this.runningTickets = {}; } - // TODO: Save to disk in case of crash of server / reboot / whatever + // TODO: Save to disk / DB in case of crash of server / reboot / whatever // and continue processing once back online generateTickets ( order ) { this.ticketQueue[ this.jobId ] = { 'order': order }; @@ -114,15 +114,18 @@ class TicketGenerator { for ( let event in order ) { const template = this.tickets[ event ]; for ( let ticket in order[ event ] ) { - const data = [ { - 'locationAndTime': this.events[ event ][ 'date' ], - 'ticketName': order[ event ][ ticket ][ 'name' ], - 'ticketQRCode': ord[ 0 ].order_name + '_' + order[ event ][ ticket ][ 'id' ], - } ]; - const page = await pdfLib.PDFDocument.load( await pdfme.generate( { 'template': template, 'inputs': data } ) ); - const p = await doc.copyPages( page, page.getPageIndices() ); - pages.push( p ); - p.forEach( ( page ) => doc.addPage( page ) ); + for ( let tik = 0; tik < ( order[ event ][ ticket ].count ?? 1 ); tik++ ) { + const data = [ { + 'eventName': this.events[ event ][ 'name' ], + 'locationAndTime': new Date( this.events[ event ][ 'date' ] ).toLocaleString(), + 'ticketName': order[ event ][ ticket ][ 'name' ], + 'ticketQRCode': ord[ 0 ].order_name + '_' + order[ event ][ ticket ][ 'id' ], + } ]; + const page = await pdfLib.PDFDocument.load( await pdfme.generate( { 'template': template, 'inputs': data } ) ); + const p = await doc.copyPages( page, page.getPageIndices() ); + pages.push( p ); + p.forEach( ( page ) => doc.addPage( page ) ); + } } } const f = path.join( __dirname + '/store/' + ord[ 0 ].order_name + '.pdf' ); diff --git a/src/server/backend/userRoutes.js b/src/server/backend/userRoutes.js index 1c3ae8e..0d12c3b 100644 --- a/src/server/backend/userRoutes.js +++ b/src/server/backend/userRoutes.js @@ -49,8 +49,8 @@ module.exports = ( app, settings ) => { app.post( '/user/login', bodyParser.json(), ( request, response ) => { if ( request.body.mail && request.body.password ) { pwdmanager.checkpassword( request.body.mail, request.body.password ).then( data => { - request.session.username = request.body.mail; if ( data.status ) { + request.session.username = request.body.mail; if ( data.twoFA === 'simple' ) { ( async () => { let tok = twoFA.registerStandardAuthentication()[ 'token' ]; @@ -83,7 +83,6 @@ module.exports = ( app, settings ) => { } ); app.get( '/user/2fa', ( request, response ) => { - // TODO: Add multi language let tokType = twoFA.verifySimple( request.query.token ); if ( tokType === 'standard' ) { request.session.loggedInUser = true; @@ -154,7 +153,7 @@ module.exports = ( app, settings ) => { mailManager.sendMail( request.body.mail, await twoFA.generateSignupEmail( tok, settings.yourDomain, settings.name ), 'Confirm your email', settings.mailSender ); } )(); pwdmanager.hashPassword( request.body.password ).then( hash => { - db.writeDataSimple( 'users', 'email', request.body.mail, { 'email': request.body.mail, 'pass': hash, 'first_name': request.body.firstName, 'name': request.body.name, 'two_fa': 'disabled', 'user_data': JSON.stringify( { 'country': request.body.country } ) } ).then( () => { + db.writeDataSimple( 'users', 'email', request.body.mail, { 'email': request.body.mail, 'pass': hash, 'first_name': request.body.firstName, 'name': request.body.name, 'two_fa': 'disabled', 'user_data': JSON.stringify( { 'country': request.body.country } ), 'marketing': request.body.newsletter ? generator.generateToken( 60 ) : null } ).then( () => { request.session.loggedInUser = true; request.session.username = request.body.mail; response.send( 'ok' ); diff --git a/src/server/config/settings.config.json b/src/server/config/settings.config.json index 7322949..667c4c0 100644 --- a/src/server/config/settings.config.json +++ b/src/server/config/settings.config.json @@ -5,6 +5,6 @@ "db": "mysql", "payments": "stripe", "name": "libreevent", - "yourDomain": "http://localhost:8081", + "yourDomain": "http://localhost:8080", "mailSender": "libreevent " } \ No newline at end of file diff --git a/src/webapp/main/notes.md b/src/webapp/main/notes.md index fa294ac..b4eab6f 100644 --- a/src/webapp/main/notes.md +++ b/src/webapp/main/notes.md @@ -3,11 +3,13 @@ - make pricing groups changeable in UI (event categories) -- create function that parses DB every 15 minutes and clears out junk +- create function that parses DB every 15 minutes and clears out junk --> Also update data in db when user goes to purchase to prevent clearing during purchase - Require user to confirm email before purchasing -- Guest purchase in the future (remove from matura shit) + + +- Guest purchase in the future (maybe remove from matura) - Create password changing endpoint (to reset forgotten pwd) - Add Admin profile (page to change account settings per person like changing pwd) @@ -19,7 +21,9 @@ - Implement Permission system -- Seat numbering +- Seat numbering!! + +- Add localization for date - add webpack (or any other minifying tool) to project website to decrease file size (OPTIONAL) \ No newline at end of file diff --git a/src/webapp/main/src/components/seatplan/editor/window.vue b/src/webapp/main/src/components/seatplan/editor/window.vue index 1664d6e..8d6a09c 100644 --- a/src/webapp/main/src/components/seatplan/editor/window.vue +++ b/src/webapp/main/src/components/seatplan/editor/window.vue @@ -169,7 +169,7 @@ } ); if ( !sessionStorage.getItem( 'seatplan-history' ) ) { - sessionStorage.setItem( 'seatplaTODO:n-history', JSON.stringify( { '1': this.scaleDown( this.draggables ) } ) ); + sessionStorage.setItem( 'seatplan-history', JSON.stringify( { '1': this.scaleDown( this.draggables ) } ) ); } let history = sessionStorage.getItem( 'seatplan-history' ) ? JSON.parse( sessionStorage.getItem( 'seatplan-history' ) ) : {}; diff --git a/src/webapp/main/src/components/seatplan/userApp/userWindow.vue b/src/webapp/main/src/components/seatplan/userApp/userWindow.vue index 3f54322..f733261 100644 --- a/src/webapp/main/src/components/seatplan/userApp/userWindow.vue +++ b/src/webapp/main/src/components/seatplan/userApp/userWindow.vue @@ -9,7 +9,6 @@