dolibarr 23.0.3
security2.lib.php
Go to the documentation of this file.
1<?php
2/* Copyright (C) 2008-2011 Laurent Destailleur <eldy@users.sourceforge.net>
3 * Copyright (C) 2008-2017 Regis Houssin <regis.houssin@inodbox.com>
4 * Copyright (C) 2024 MDW <mdeweerd@users.noreply.github.com>
5 * Copyright (C) 2024 Frédéric France <frederic.france@free.fr>
6 *
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License as published by
9 * the Free Software Foundation; either version 3 of the License, or
10 * (at your option) any later version.
11 *
12 * This program is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 * GNU General Public License for more details.
16 *
17 * You should have received a copy of the GNU General Public License
18 * along with this program. If not, see <https://www.gnu.org/licenses/>.
19 * or see https://www.gnu.org/
20 */
21
37function dol_getwebuser($mode)
38{
39 $t = '?';
40 if ($mode == 'user') {
41 $t = getenv('APACHE_RUN_USER'); // $_ENV['APACHE_RUN_USER'] is empty
42 }
43 if ($mode == 'group') {
44 $t = getenv('APACHE_RUN_GROUP');
45 }
46 return $t;
47}
48
59function checkLoginPassEntity($usertotest, $passwordtotest, $entitytotest, $authmode, $context = '')
60{
61 global $conf, $langs;
62
63 // Check parameters
64 if ($entitytotest == '') {
65 $entitytotest = 1;
66 }
67
68 dol_syslog("checkLoginPassEntity usertotest=".$usertotest." entitytotest=".$entitytotest." authmode=".implode(',', $authmode));
69 $login = '';
70
71 // Validation of login/pass/entity with standard modules
72 if (empty($login)) {
73 $test = true;
74 foreach ($authmode as $mode) {
75 if ($test && $mode && !$login) {
76 // Validation of login/pass/entity for mode $mode
77 $mode = trim($mode);
78 $authfile = 'functions_'.$mode.'.php';
79 $fullauthfile = '';
80
81 $dirlogin = array_merge(array("/core/login"), (array) $conf->modules_parts['login']);
82 foreach ($dirlogin as $reldir) {
83 $dir = dol_buildpath($reldir, 0);
84 $newdir = dol_osencode($dir);
85
86 // Check if file found (do not use dol_is_file to avoid loading files.lib.php)
87 $tmpnewauthfile = $newdir.(preg_match('/\/$/', $newdir) ? '' : '/').$authfile;
88 if (is_file($tmpnewauthfile)) {
89 $fullauthfile = $tmpnewauthfile;
90 }
91 }
92
93 $result = false;
94 if ($fullauthfile) {
95 $result = include_once $fullauthfile;
96 }
97 if ($fullauthfile && $result) {
98 // Call function to check user/password
99 $function = 'check_user_password_'.$mode;
100 $login = call_user_func($function, $usertotest, $passwordtotest, $entitytotest, $context);
101 if ($login && $login != '--bad-login-validity--') {
102 // Login is successful with this method
103 $test = false; // To stop once at first login success
104 $conf->authmode = $mode; // This properties is defined only when logged to say what mode was successfully used
105 /*$dol_tz = GETPOST('tz');
106 $dol_dst = GETPOST('dst');
107 $dol_screenwidth = GETPOST('screenwidth');
108 $dol_screenheight = GETPOST('screenheight');*/
109 }
110 } else {
111 dol_syslog("Authentication KO - failed to load file '".$authfile."'", LOG_ERR);
112 sleep(1);
113 // Load translation files required by the page
114 $langs->loadLangs(array('other', 'main', 'errors'));
115
116 $_SESSION["dol_loginmesg"] = (empty($_SESSION["dol_loginmesg"]) ? '' : $_SESSION["dol_loginmesg"].', ').$langs->transnoentitiesnoconv("ErrorFailedToLoadLoginFileForMode", $mode);
117 }
118 }
119 }
120 }
121
122 return $login;
123}
124
125
126if (!function_exists('dol_loginfunction')) {
136 function dol_loginfunction($langs, $conf, $mysoc)
137 {
138 global $dolibarr_main_demo, $dolibarr_main_force_https;
139 global $db, $hookmanager;
140
141 $langs->loadLangs(array("main", "other", "help", "admin"));
142
143 // Instantiate hooks of thirdparty module only if not already define
144 $hookmanager->initHooks(array('mainloginpage'));
145
146 $main_authentication = $conf->file->main_authentication;
147
148 $session_name = session_name(); // Get current session name
149
150 $dol_url_root = DOL_URL_ROOT;
151
152 // Title
153 $appli = constant('DOL_APPLICATION_TITLE');
154 $title = $appli.(getDolGlobalString('MAIN_OPTIMIZEFORTEXTBROWSER') ? '' : ' '.constant('DOL_VERSION'));
155
156 $customapplication = getDolGlobalString('MAIN_APPLICATION_TITLE');
157 if ($customapplication) {
158 if (preg_match('/^\+/', $customapplication)) {
159 $title .= $customapplication;
160 } else {
161 $title = $customapplication;
162 }
163 }
164 $titletruedolibarrversion = constant('DOL_VERSION'); // $title used by login template after the @ to inform of true Dolibarr version
165
166 // Note: $conf->css looks like '/theme/eldy/style.css.php'
167 /*
168 $conf->css = "/theme/".(GETPOST('theme','aZ09')?GETPOST('theme','aZ09'):$conf->theme)."/style.css.php";
169 $themepath=dol_buildpath($conf->css,1);
170 if (!empty($conf->modules_parts['theme'])) // Using this feature slow down application
171 {
172 foreach($conf->modules_parts['theme'] as $reldir)
173 {
174 if (file_exists(dol_buildpath($reldir.$conf->css, 0)))
175 {
176 $themepath=dol_buildpath($reldir.$conf->css, 1);
177 break;
178 }
179 }
180 }
181 $conf_css = $themepath."?lang=".$langs->defaultlang;
182 */
183
184 // Select templates dir
185 $template_dir = '';
186 if (!empty($conf->modules_parts['tpl'])) { // Using this feature slow down application
187 $dirtpls = array_merge($conf->modules_parts['tpl'], array('/core/tpl/'));
188 foreach ($dirtpls as $reldir) {
189 $tmp = dol_buildpath($reldir.'login.tpl.php');
190 if (file_exists($tmp)) {
191 $template_dir = preg_replace('/login\.tpl\.php$/', '', $tmp);
192 break;
193 }
194 }
195 } else {
196 $template_dir = DOL_DOCUMENT_ROOT."/core/tpl/";
197 }
198
199 // Set cookie for timeout management. We set it as a cookie so we will be able to use it to set timeout on next page before the session start
200 // and the conf file is loaded.
201 $prefix = dol_getprefix('');
202 $sessiontimeout = 'DOLSESSTIMEOUT_'.$prefix;
203
204 if (getDolGlobalString('MAIN_SESSION_TIMEOUT')) {
205 if (session_status() != PHP_SESSION_ACTIVE) {
206 dolSetCookie($sessiontimeout, getDolGlobalString('MAIN_SESSION_TIMEOUT'), 0);
207 }
208 }
209
210 if (GETPOST('urlfrom', 'alpha')) {
211 $_SESSION["urlfrom"] = GETPOST('urlfrom', 'alpha');
212 } else {
213 unset($_SESSION["urlfrom"]);
214 }
215
216 if (!GETPOST("username", 'alpha')) {
217 $focus_element = 'username';
218 } else {
219 $focus_element = 'password';
220 }
221
222 $demologin = '';
223 $demopassword = '';
224 if (!empty($dolibarr_main_demo)) {
225 $tab = explode(',', $dolibarr_main_demo);
226 $demologin = $tab[0];
227 $demopassword = $tab[1];
228 }
229
230 // Execute hook getLoginPageOptions (for table)
231 $parameters = array('entity' => GETPOSTINT('entity'), 'switchentity' => GETPOSTINT('switchentity'));
232 $reshook = $hookmanager->executeHooks('getLoginPageOptions', $parameters); // Note that $action and $object may have been modified by some hooks.
233 $morelogincontent = $hookmanager->resPrint;
234
235 // Execute hook getLoginPageExtraOptions (eg for js)
236 $parameters = array('entity' => GETPOSTINT('entity'), 'switchentity' => GETPOSTINT('switchentity'));
237 $reshook = $hookmanager->executeHooks('getLoginPageExtraOptions', $parameters); // Note that $action and $object may have been modified by some hooks.
238 $moreloginextracontent = $hookmanager->resPrint;
239
240 //Redirect after connection
241 $parameters = array('entity' => GETPOSTINT('entity'), 'switchentity' => GETPOSTINT('switchentity'));
242 $reshook = $hookmanager->executeHooks('redirectAfterConnection', $parameters); // Note that $action and $object may have been modified by some hooks.
243 $php_self = $hookmanager->resPrint;
244
245 // Login
246 $login = (!empty($hookmanager->resArray['username']) ? $hookmanager->resArray['username'] : (GETPOST("username", "alpha") ? GETPOST("username", "alpha") : $demologin));
247 $password = $demopassword;
248
249 // Show logo (search in order: small company logo, large company logo, theme logo, common logo)
250 $width = 0;
251 $urllogo = DOL_URL_ROOT.'/theme/common/login_logo.png';
252
253 if (!empty($mysoc->logo_small) && is_readable($conf->mycompany->dir_output.'/logos/thumbs/'.$mysoc->logo_small)) {
254 $urllogo = DOL_URL_ROOT.'/viewimage.php?cache=1&amp;modulepart=mycompany&amp;file='.urlencode('logos/thumbs/'.$mysoc->logo_small);
255 } elseif (!empty($mysoc->logo) && is_readable($conf->mycompany->dir_output.'/logos/'.$mysoc->logo)) {
256 $urllogo = DOL_URL_ROOT.'/viewimage.php?cache=1&amp;modulepart=mycompany&amp;file='.urlencode('logos/'.$mysoc->logo);
257 $width = 128;
258 } elseif (!empty($mysoc->logo_squarred_small) && is_readable($conf->mycompany->dir_output.'/logos/thumbs/'.$mysoc->logo_squarred_small)) {
259 $urllogo = DOL_URL_ROOT.'/viewimage.php?cache=1&amp;modulepart=mycompany&amp;file='.urlencode('logos/thumbs/'.$mysoc->logo_squarred_small);
260 } elseif (is_readable(DOL_DOCUMENT_ROOT.'/theme/dolibarr_logo.svg')) {
261 $urllogo = DOL_URL_ROOT.'/theme/dolibarr_logo.svg';
262 }
263
264 // Security graphical code
265 $captcha = '';
266 if (getDolGlobalString('MAIN_SECURITY_ENABLECAPTCHA')) {
267 $captcha = getDolGlobalString('MAIN_SECURITY_ENABLECAPTCHA_HANDLER', 'standard');
268 }
269
270 // Extra link
271 $forgetpasslink = 0;
272 $helpcenterlink = 0;
273 if (!getDolGlobalString('MAIN_SECURITY_DISABLEFORGETPASSLINK') || getDolGlobalString('MAIN_HELPCENTER_LINKTOUSE')) {
274 if (!getDolGlobalString('MAIN_SECURITY_DISABLEFORGETPASSLINK')) {
275 $forgetpasslink = 1;
276 }
277
278 if (getDolGlobalString('MAIN_HELPCENTER_LINKTOUSE')) {
279 $helpcenterlink = 1;
280 }
281 }
282
283 // Home message
284 $main_home = '';
285 if (getDolGlobalString('MAIN_HOME')) {
286 $substitutionarray = getCommonSubstitutionArray($langs);
287 complete_substitutions_array($substitutionarray, $langs);
288 $texttoshow = make_substitutions(getDolGlobalString('MAIN_HOME'), $substitutionarray, $langs);
289
290 $main_home = dol_htmlcleanlastbr($texttoshow);
291 }
292
293 // Google AD
294 $main_google_ad_client = ((getDolGlobalString('MAIN_GOOGLE_AD_CLIENT') && getDolGlobalString('MAIN_GOOGLE_AD_SLOT')) ? 1 : 0);
295
296 // Set jquery theme
297 $dol_loginmesg = (!empty($_SESSION["dol_loginmesg"]) ? $_SESSION["dol_loginmesg"] : '');
298
299 $favicon = DOL_URL_ROOT.'/theme/dolibarr_256x256_color.png';
300 if (!empty($mysoc->logo_squarred_mini)) {
301 $favicon = DOL_URL_ROOT.'/viewimage.php?cache=1&modulepart=mycompany&file='.urlencode('logos/thumbs/'.$mysoc->logo_squarred_mini);
302 }
303 if (getDolGlobalString('MAIN_FAVICON_URL')) {
304 $favicon = getDolGlobalString('MAIN_FAVICON_URL');
305 }
306
307 $jquerytheme = 'base';
308 if (getDolGlobalString('MAIN_USE_JQUERY_THEME')) {
309 $jquerytheme = getDolGlobalString('MAIN_USE_JQUERY_THEME');
310 }
311
312 // Set dol_hide_topmenu, dol_hide_leftmenu, dol_optimize_smallscreen, dol_no_mouse_hover
313 $dol_hide_topmenu = GETPOSTINT('dol_hide_topmenu');
314 $dol_hide_leftmenu = GETPOSTINT('dol_hide_leftmenu');
315 $dol_optimize_smallscreen = GETPOSTINT('dol_optimize_smallscreen');
316 $dol_no_mouse_hover = GETPOSTINT('dol_no_mouse_hover');
317 $dol_use_jmobile = GETPOSTINT('dol_use_jmobile');
318
319 // Include login page template
320 include $template_dir.'login.tpl.php';
321
322 // Global html output events ($mesgs, $errors, $warnings)
324
325 $_SESSION["dol_loginmesg"] = '';
326 }
327}
328
337function makesalt($type = CRYPT_SALT_LENGTH)
338{
339 dol_syslog("makesalt type=".$type);
340 switch ($type) {
341 case 12: // 8 + 4
342 $saltlen = 8;
343 $saltprefix = '$1$';
344 $saltsuffix = '$';
345 break;
346 case 8: // 8 (For compatibility, do not use this)
347 $saltlen = 8;
348 $saltprefix = '$1$';
349 $saltsuffix = '$';
350 break;
351 case 2: // 2
352 default: // by default, fall back on Standard DES (should work everywhere)
353 $saltlen = 2;
354 $saltprefix = '';
355 $saltsuffix = '';
356 break;
357 }
358 $salt = '';
359 while (dol_strlen($salt) < $saltlen) {
360 $salt .= chr(mt_rand(64, 126));
361 }
362
363 $result = $saltprefix.$salt.$saltsuffix;
364 dol_syslog("makesalt return=".$result);
365 return $result;
366}
367
374function encodedecode_dbpassconf($level = 0)
375{
376 dol_syslog("encodedecode_dbpassconf level=".$level, LOG_DEBUG);
377 $config = '';
378 $passwd = '';
379 $passwd_crypted = '';
380
381 if ($fp = fopen(DOL_DOCUMENT_ROOT.'/conf/conf.php', 'r')) {
382 while (!feof($fp)) {
383 $buffer = fgets($fp, 4096);
384
385 $lineofpass = 0;
386
387 $reg = array();
388 $mode = '';
389 if (preg_match('/^[^#]*dolibarr_main_db_encrypted_pass[\s]*=[\s]*(.*)/i', $buffer, $reg)) { // Old way to save encrypted value
390 $val = trim($reg[1]); // This also remove CR/LF
391 $val = preg_replace('/^["\']/', '', $val);
392 $val = preg_replace('/["\'][\s;]*$/', '', $val);
393 if (!empty($val)) {
394 $passwd_crypted = $val;
395 // method dol_encode/dol_decode
396 $val = dol_decode($val);
397 //$val = dolEncrypt($val);
398 $passwd = $val;
399 $lineofpass = 1;
400 }
401 } elseif (preg_match('/^[^#]*dolibarr_main_db_pass[\s]*=[\s]*(.*)/i', $buffer, $reg)) {
402 $val = trim($reg[1]); // This also remove CR/LF
403 $val = preg_replace('/^["\']/', '', $val);
404 $val = preg_replace('/["\'][\s;]*$/', '', $val);
405 if (preg_match('/crypted:/i', $buffer)) {
406 // method dol_encode/dol_decode
407 $mode = 'crypted:';
408 $val = preg_replace('/crypted:/i', '', $val);
409 $passwd_crypted = $val;
410 $val = dol_decode($val);
411 $passwd = $val;
412 } elseif (preg_match('/^dolcrypt:([^:]+):(.*)$/i', $val, $reg)) {
413 // method dolEncrypt/dolDecrypt
414 $mode = 'dolcrypt:';
415 //$val = preg_replace('/dolcrypt:/i', '', $val);
416 $passwd_crypted = $reg[1].':'.$reg[2];
417 $val = dolDecrypt($val);
418 $passwd = $val;
419 } else {
420 $passwd = $val;
421 /* old method
422 $mode = 'crypted:';
423 $val = dol_encode($val);
424 */
425 $mode = 'dolcrypt:';
426 $passwd_crypted = preg_replace('/^dolcrypt:/', '', dolEncrypt($val));
427 }
428 $lineofpass = 1;
429 }
430
431 // Output line
432 if ($lineofpass) {
433 // Add value at end of file
434 if ($level == 0) {
435 $config .= '$dolibarr_main_db_pass=\''.$passwd.'\';'."\n";
436 }
437 if ($level == 1) {
438 $config .= '$dolibarr_main_db_pass=\''.$mode.$passwd_crypted.'\';'."\n";
439 }
440
441 //print 'passwd = '.$passwd.' - passwd_crypted = '.$passwd_crypted;
442 //exit;
443 } else {
444 $config .= $buffer;
445 }
446 }
447 fclose($fp);
448
449 // Write new conf file
450 $file = DOL_DOCUMENT_ROOT.'/conf/conf.php';
451 if ($fp = @fopen($file, 'w')) {
452 fwrite($fp, $config);
453 fflush($fp);
454 fclose($fp);
455 clearstatcache();
456
457 // It's config file, so we set read permission for creator only.
458 // Should set permission to web user and groups for users used by batch
459 //dolChmod($file, '0600');
460
461 return 1;
462 } else {
463 dol_syslog("encodedecode_dbpassconf Failed to open conf.php file for writing", LOG_WARNING);
464 return -1;
465 }
466 } else {
467 dol_syslog("encodedecode_dbpassconf Failed to read conf.php", LOG_ERR);
468 return -2;
469 }
470}
471
481function getRandomPassword($generic = false, $replaceambiguouschars = null, $length = 32)
482{
483 global $db, $conf, $langs, $user;
484
485 $generated_password = '';
486 if ($generic) {
487 $lowercase = "qwertyuiopasdfghjklzxcvbnm";
488 $uppercase = "ASDFGHJKLZXCVBNMQWERTYUIOP";
489 $numbers = "1234567890";
490 $randomCode = "";
491 $nbofchar = round($length / 3);
492 $nbofcharlast = ($length - 2 * $nbofchar);
493 //var_dump($nbofchar.'-'.$nbofcharlast);
494 if (function_exists('random_int')) { // Cryptographic random
495 $max = strlen($lowercase) - 1;
496 for ($x = 0; $x < $nbofchar; $x++) {
497 $tmp = random_int(0, $max);
498 $randomCode .= $lowercase[$tmp];
499 }
500 $max = strlen($uppercase) - 1;
501 for ($x = 0; $x < $nbofchar; $x++) {
502 $tmp = random_int(0, $max);
503 $randomCode .= $uppercase[$tmp];
504 }
505 $max = strlen($numbers) - 1;
506 for ($x = 0; $x < $nbofcharlast; $x++) {
507 $tmp = random_int(0, $max);
508 $randomCode .= $numbers[$tmp];
509 }
510
511 $generated_password = str_shuffle($randomCode);
512 } else {
513 // Old platform, non cryptographic random
514 $max = strlen($lowercase) - 1;
515 for ($x = 0; $x < $nbofchar; $x++) {
516 $tmp = mt_rand(0, $max);
517 $randomCode .= $lowercase[$tmp];
518 }
519 $max = strlen($uppercase) - 1;
520 for ($x = 0; $x < $nbofchar; $x++) {
521 $tmp = mt_rand(0, $max);
522 $randomCode .= $uppercase[$tmp];
523 }
524 $max = strlen($numbers) - 1;
525 for ($x = 0; $x < $nbofcharlast; $x++) {
526 $tmp = mt_rand(0, $max);
527 $randomCode .= $numbers[$tmp];
528 }
529
530 $generated_password = str_shuffle($randomCode);
531 }
532 } elseif (getDolGlobalString('USER_PASSWORD_GENERATED')) {
533 $nomclass = "modGeneratePass".ucfirst($conf->global->USER_PASSWORD_GENERATED);
534 $nomfichier = $nomclass.".class.php";
535 //print DOL_DOCUMENT_ROOT."/core/modules/security/generate/".$nomclass;
536 require_once DOL_DOCUMENT_ROOT."/core/modules/security/generate/".$nomfichier;
537 $genhandler = new $nomclass($db, $conf, $langs, $user);
538 '@phan-var-force ModeleGenPassword $genhandler';
539 $generated_password = $genhandler->getNewGeneratedPassword();
540 unset($genhandler);
541 }
542
543 // Do we have to discard some alphabetic characters ?
544 if (is_array($replaceambiguouschars) && count($replaceambiguouschars) > 0) {
545 $numbers = "ABCDEF";
546 $max = strlen($numbers) - 1;
547 if (function_exists('random_int')) { // Cryptographic random
548 $tmp = random_int(0, $max);
549 $generated_password = str_replace($replaceambiguouschars, $numbers[$tmp], $generated_password);
550 } else {
551 $tmp = mt_rand(0, $max);
552 $generated_password = str_replace($replaceambiguouschars, $numbers[$tmp], $generated_password);
553 }
554 }
555
556 return $generated_password;
557}
558
568function dolJSToSetRandomPassword($htmlname, $htmlnameofbutton = 'generate_token', $generic = 1)
569{
570 global $conf;
571
572 $out = '';
573
574 if (!empty($conf->use_javascript_ajax)) {
575 $out .= "\n".'<!-- Js code to suggest a security key -->';
576 $out .= '<script nonce="'.getNonce().'" type="text/javascript">';
577 $out .= 'jQuery(document).ready(function () {
578 jQuery("#'.dol_escape_js($htmlnameofbutton).'").click(function() {
579 var currenttoken = jQuery("meta[name=anti-csrf-currenttoken]").attr("content");
580 console.log("We click on the button '.dol_escape_js($htmlnameofbutton).' to suggest a key. anti-csrf-currenttoken is "+currenttoken+". We will fill '.dol_escape_js($htmlname).'");
581 jQuery.get( "'.DOL_URL_ROOT.'/core/ajax/security.php", {
582 action: \'getrandompassword\',
583 generic: '.($generic ? '1' : '0').',
584 token: currenttoken
585 },
586 function(result) {
587 if (jQuery("input#'.dol_escape_js($htmlname).'").attr("type") == "password") {
588 jQuery("input#'.dol_escape_js($htmlname).'").attr("type", "text");
589 }
590 jQuery("#'.dol_escape_js($htmlname).'").val(result);
591 });
592 });
593 });'."\n";
594 $out .= '</script>';
595 }
596
597 return $out;
598}
599
607function showEyeForField($htmlname, $htmlnameofinput)
608{
609 return '<!-- code to manage the eye hide/show -->
610<span id="'.$htmlname.'" tabindex="-1"><span class="fa fa-eye"></span></span>
611<script nonce="'.getNonce().'">
612 $(document).ready(function () {
613 $(\'#'.$htmlname.'\').on(\'click\', function (e) {
614 e.preventDefault();
615 if (event.detail === 0) return false; // Ignore keyboard "clicks"
616 console.log("We click on '.$htmlname.'");
617 const $passwordInput = $(\'#'.$htmlnameofinput.'\');
618
619 if ($passwordInput.is(\'[type=password]\')) {
620 $passwordInput.attr(\'type\', \'text\');
621 jQuery(\'#'.$htmlname.' .fa-eye\').attr(\'class\', \'fa fa-eye-slash\');
622 } else {
623 $passwordInput.attr(\'type\', \'password\');
624 jQuery(\'#'.$htmlname.' .fa-eye-slash\').attr(\'class\', \'fa fa-eye\');
625 }
626
627 return false; // This prevents the click from reloading the page
628 });
629 });
630</script>';
631}
global $mysoc
GETPOSTINT($paramname, $method=0)
Return the value of a $_GET or $_POST supervariable, converted into integer.
dol_osencode($str)
Return a string encoded into OS filesystem encoding.
dol_strlen($string, $stringencoding='UTF-8')
Make a strlen call.
dolSetCookie(string $cookiename, string $cookievalue, int $expire=-1)
Set a cookie.
dol_escape_js($stringtoescape, $mode=0, $noescapebackslashn=0)
Returns text escaped for inclusion into javascript code.
dol_htmlcleanlastbr($stringtodecode)
This function remove all ending and br at end.
dol_htmloutput_events($disabledoutputofmessages=0)
Print formatted messages to output (Used to show messages on html output).
complete_substitutions_array(&$substitutionarray, $outputlangs, $object=null, $parameters=null, $callfunc="completesubstitutionarray")
Complete the $substitutionarray with more entries coming from external module that had set the "subst...
make_substitutions($text, $substitutionarray, $outputlangs=null, $converttextinhtmlifnecessary=0)
Make substitution into a text string, replacing keys with vals from $substitutionarray (oldval=>newva...
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
dol_buildpath($path, $type=0, $returnemptyifnotfound=0)
Return path of url or filesystem.
getNonce()
Return a random string to be used as a nonce value for js.
getDolGlobalString($key, $default='')
Return a Dolibarr global constant string value.
dol_syslog($message, $level=LOG_INFO, $ident=0, $suffixinfilename='', $restricttologhandler='', $logcontext=null)
Write log message into outputs.
conf($dolibarr_main_document_root)
Load conf file (file must exists)
Definition inc.php:426
$context
@method int call_trigger(string $triggerName, ?User $user)
Definition logout.php:42
showEyeForField($htmlname, $htmlnameofinput)
Output the eye picto to show/hide a password HTML field.
dolJSToSetRandomPassword($htmlname, $htmlnameofbutton='generate_token', $generic=1)
Output javascript to autoset a generated password using default module into a HTML element.
dol_getwebuser($mode)
Return user/group account of web server.
encodedecode_dbpassconf($level=0)
Encode or decode database password in config file.
checkLoginPassEntity($usertotest, $passwordtotest, $entitytotest, $authmode, $context='')
Return a login if login/pass was successful.
getRandomPassword($generic=false, $replaceambiguouschars=null, $length=32)
Return a generated password using default module.
if(!function_exists( 'dol_loginfunction')) makesalt($type=CRYPT_SALT_LENGTH)
Initialise the salt for the crypt function.
dolEncrypt($chain, $key='', $ciphering='', $forceseed='')
Encode a string with a symmetric encryption.
dol_decode($chain, $key='1')
Decode a base 64 encoded + specific delta change.
dolDecrypt($chain, $key='')
Decode a string with a symmetric encryption.