1 | <?php |
---|
2 | // +-----------------------------------------------------------------------+ |
---|
3 | // | PhpWebGallery - a PHP based picture gallery | |
---|
4 | // | Copyright (C) 2002-2003 Pierrick LE GALL - pierrick@phpwebgallery.net | |
---|
5 | // | Copyright (C) 2003-2005 PhpWebGallery Team - http://phpwebgallery.net | |
---|
6 | // +-----------------------------------------------------------------------+ |
---|
7 | // | branch : BSF (Best So Far) |
---|
8 | // | file : $RCSfile$ |
---|
9 | // | last update : $Date: 2006-03-15 22:44:35 +0000 (Wed, 15 Mar 2006) $ |
---|
10 | // | last modifier : $Author: plg $ |
---|
11 | // | revision : $Revision: 1082 $ |
---|
12 | // +-----------------------------------------------------------------------+ |
---|
13 | // | This program is free software; you can redistribute it and/or modify | |
---|
14 | // | it under the terms of the GNU General Public License as published by | |
---|
15 | // | the Free Software Foundation | |
---|
16 | // | | |
---|
17 | // | This program is distributed in the hope that it will be useful, but | |
---|
18 | // | WITHOUT ANY WARRANTY; without even the implied warranty of | |
---|
19 | // | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU | |
---|
20 | // | General Public License for more details. | |
---|
21 | // | | |
---|
22 | // | You should have received a copy of the GNU General Public License | |
---|
23 | // | along with this program; if not, write to the Free Software | |
---|
24 | // | Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, | |
---|
25 | // | USA. | |
---|
26 | // +-----------------------------------------------------------------------+ |
---|
27 | |
---|
28 | //--------------------------------------------------------------------- include |
---|
29 | define('PHPWG_ROOT_PATH','./'); |
---|
30 | include_once( PHPWG_ROOT_PATH.'include/common.inc.php' ); |
---|
31 | |
---|
32 | //-------------------------------------------------------------- identification |
---|
33 | $errors = array(); |
---|
34 | |
---|
35 | $redirect_to = ''; |
---|
36 | if ( !empty($_GET['redirect']) ) |
---|
37 | { |
---|
38 | $redirect_to = urldecode($_GET['redirect']); |
---|
39 | if ( $user['is_the_guest'] ) |
---|
40 | { |
---|
41 | array_push($errors, $lang['access_forbiden']); |
---|
42 | } |
---|
43 | } |
---|
44 | |
---|
45 | if (isset($_POST['login'])) |
---|
46 | { |
---|
47 | $redirect_to = isset($_POST['redirect']) ? $_POST['redirect'] : ''; |
---|
48 | $username = mysql_escape_string($_POST['username']); |
---|
49 | // retrieving the encrypted password of the login submitted |
---|
50 | $query = ' |
---|
51 | SELECT '.$conf['user_fields']['id'].' AS id, |
---|
52 | '.$conf['user_fields']['password'].' AS password |
---|
53 | FROM '.USERS_TABLE.' |
---|
54 | WHERE '.$conf['user_fields']['username'].' = \''.$username.'\' |
---|
55 | ;'; |
---|
56 | $row = mysql_fetch_array(pwg_query($query)); |
---|
57 | if ($row['password'] == $conf['pass_convert']($_POST['password'])) |
---|
58 | { |
---|
59 | $remember_me = false; |
---|
60 | if ($conf['authorize_remembering'] |
---|
61 | and isset($_POST['remember_me']) |
---|
62 | and $_POST['remember_me'] == 1) |
---|
63 | { |
---|
64 | $remember_me = true; |
---|
65 | } |
---|
66 | log_user( $row['id'], $remember_me); |
---|
67 | redirect(empty($redirect_to) ? make_index_url() : $redirect_to); |
---|
68 | } |
---|
69 | else |
---|
70 | { |
---|
71 | array_push( $errors, $lang['invalid_pwd'] ); |
---|
72 | } |
---|
73 | } |
---|
74 | //----------------------------------------------------- template initialization |
---|
75 | // |
---|
76 | // Start output of page |
---|
77 | // |
---|
78 | $title = $lang['identification']; |
---|
79 | $page['body_id'] = 'theIdentificationPage'; |
---|
80 | include(PHPWG_ROOT_PATH.'include/page_header.php'); |
---|
81 | |
---|
82 | $template->set_filenames( array('identification'=>'identification.tpl') ); |
---|
83 | |
---|
84 | $template->assign_vars( |
---|
85 | array( |
---|
86 | 'L_TITLE' => $lang['identification'], |
---|
87 | 'L_USERNAME' => $lang['login'], |
---|
88 | 'L_PASSWORD' => $lang['password'], |
---|
89 | 'L_LOGIN' => $lang['submit'], |
---|
90 | 'L_GUEST' => $lang['ident_guest_visit'], |
---|
91 | 'L_REGISTER' => $lang['ident_register'], |
---|
92 | 'L_FORGET' => $lang['ident_forgotten_password'], |
---|
93 | 'L_REMEMBER_ME'=>$lang['remember_me'], |
---|
94 | |
---|
95 | 'U_REGISTER' => PHPWG_ROOT_PATH.'register.php', |
---|
96 | 'U_LOST_PASSWORD' => PHPWG_ROOT_PATH.'password.php', |
---|
97 | 'U_HOME' => make_index_url(), |
---|
98 | 'U_REDIRECT' => $redirect_to, |
---|
99 | |
---|
100 | 'F_LOGIN_ACTION' => PHPWG_ROOT_PATH.'identification.php' |
---|
101 | )); |
---|
102 | |
---|
103 | if ($conf['authorize_remembering']) |
---|
104 | { |
---|
105 | $template->assign_block_vars('remember_me',array()); |
---|
106 | } |
---|
107 | //-------------------------------------------------------------- errors display |
---|
108 | if ( sizeof( $errors ) != 0 ) |
---|
109 | { |
---|
110 | $template->assign_block_vars('errors',array()); |
---|
111 | for ( $i = 0; $i < sizeof( $errors ); $i++ ) |
---|
112 | { |
---|
113 | $template->assign_block_vars('errors.error',array('ERROR'=>$errors[$i])); |
---|
114 | } |
---|
115 | } |
---|
116 | //-------------------------------------------------------------- visit as guest |
---|
117 | $template->assign_block_vars('free_access',array()); |
---|
118 | //----------------------------------------------------------- html code display |
---|
119 | $template->parse('identification'); |
---|
120 | include(PHPWG_ROOT_PATH.'include/page_tail.php'); |
---|
121 | ?> |
---|