source: trunk/identification.php @ 1511

Last change on this file since 1511 was 1511, checked in by nikrou, 18 years ago

Fix bug 451: improvement
small problem with reconnexion after session timeout
add auto-login function
all staff for session (connexion, auto-login and logout)
is now in include/user.inc.php

  • Property svn:eol-style set to native
  • Property svn:keywords set to Author Date Id Revision
File size: 4.7 KB
Line 
1<?php
2// +-----------------------------------------------------------------------+
3// | PhpWebGallery - a PHP based picture gallery                           |
4// | Copyright (C) 2002-2003 Pierrick LE GALL - pierrick@phpwebgallery.net |
5// | Copyright (C) 2003-2005 PhpWebGallery Team - http://phpwebgallery.net |
6// +-----------------------------------------------------------------------+
7// | branch        : BSF (Best So Far)
8// | file          : $RCSfile$
9// | last update   : $Date: 2006-07-28 09:34:27 +0000 (Fri, 28 Jul 2006) $
10// | last modifier : $Author: nikrou $
11// | revision      : $Revision: 1511 $
12// +-----------------------------------------------------------------------+
13// | This program is free software; you can redistribute it and/or modify  |
14// | it under the terms of the GNU General Public License as published by  |
15// | the Free Software Foundation                                          |
16// |                                                                       |
17// | This program is distributed in the hope that it will be useful, but   |
18// | WITHOUT ANY WARRANTY; without even the implied warranty of            |
19// | MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU      |
20// | General Public License for more details.                              |
21// |                                                                       |
22// | You should have received a copy of the GNU General Public License     |
23// | along with this program; if not, write to the Free Software           |
24// | Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, |
25// | USA.                                                                  |
26// +-----------------------------------------------------------------------+
27
28//--------------------------------------------------------------------- include
29define('PHPWG_ROOT_PATH','./');
30include_once( PHPWG_ROOT_PATH.'include/common.inc.php' );
31
32//-------------------------------------------------------------- identification
33$errors = array();
34
35$redirect_to = '';
36if ( !empty($_GET['redirect']) )
37{
38  $redirect_to = urldecode($_GET['redirect']);
39  if ( $user['is_the_guest'] )
40  {
41    array_push($errors, $lang['access_forbiden']);
42  }
43}
44
45if (isset($_POST['login']))
46{
47  $redirect_to = isset($_POST['redirect']) ? $_POST['redirect'] : '';
48  $username = mysql_escape_string($_POST['username']);
49  // retrieving the encrypted password of the login submitted
50  $query = '
51SELECT '.$conf['user_fields']['id'].' AS id,
52       '.$conf['user_fields']['password'].' AS password
53  FROM '.USERS_TABLE.'
54  WHERE '.$conf['user_fields']['username'].' = \''.$username.'\'
55;';
56  $row = mysql_fetch_array(pwg_query($query));
57  if ($row['password'] == $conf['pass_convert']($_POST['password']))
58  {
59    $remember_me = false;
60    if ($conf['authorize_remembering']
61        and isset($_POST['remember_me'])
62        and $_POST['remember_me'] == 1)
63    {
64      $remember_me = true;
65    }
66    log_user($row['id'], $remember_me);
67    redirect(empty($redirect_to) ? make_index_url() : $redirect_to);
68  }
69  else
70  {
71    array_push( $errors, $lang['invalid_pwd'] );
72  }
73}
74elseif (!empty($_COOKIE[$conf['remember_me_name']]))
75{
76  auto_login();
77}
78//----------------------------------------------------- template initialization
79//
80// Start output of page
81//
82$title = $lang['identification'];
83$page['body_id'] = 'theIdentificationPage';
84include(PHPWG_ROOT_PATH.'include/page_header.php');
85
86$template->set_filenames( array('identification'=>'identification.tpl') );
87
88$template->assign_vars(
89  array(
90    'L_TITLE' => $lang['identification'],
91    'L_USERNAME' => $lang['login'],
92    'L_PASSWORD' => $lang['password'],
93    'L_LOGIN' => $lang['submit'],
94    'L_GUEST' => $lang['ident_guest_visit'],
95    'L_REGISTER' => $lang['ident_register'],
96    'L_FORGET' => $lang['ident_forgotten_password'],
97    'L_REMEMBER_ME'=>$lang['remember_me'],
98
99    'U_REGISTER' => PHPWG_ROOT_PATH.'register.php',
100    'U_LOST_PASSWORD' => PHPWG_ROOT_PATH.'password.php',
101    'U_HOME' => make_index_url(),
102    'U_REDIRECT' => $redirect_to,
103
104    'F_LOGIN_ACTION' => PHPWG_ROOT_PATH.'identification.php'
105    ));
106
107if ($conf['authorize_remembering'])
108{
109  $template->assign_block_vars('remember_me',array());
110}
111//-------------------------------------------------------------- errors display
112if ( sizeof( $errors ) != 0 )
113{
114  $template->assign_block_vars('errors',array());
115  for ( $i = 0; $i < sizeof( $errors ); $i++ )
116  {
117    $template->assign_block_vars('errors.error',array('ERROR'=>$errors[$i]));
118  }
119}
120//-------------------------------------------------------------- visit as guest
121$template->assign_block_vars('free_access',array());
122//----------------------------------------------------------- html code display
123$template->parse('identification');
124include(PHPWG_ROOT_PATH.'include/page_tail.php');
125?>
Note: See TracBrowser for help on using the repository browser.