dolibarr  19.0.0-dev
functions_http.php
Go to the documentation of this file.
1 <?php
2 /* Copyright (C) 2007 Laurent Destailleur <eldy@users.sourceforge.net>
3  *
4  * This program is free software; you can redistribute it and/or modify
5  * it under the terms of the GNU General Public License as published by
6  * the Free Software Foundation; either version 3 of the License, or
7  * (at your option) any later version.
8  *
9  * This program is distributed in the hope that it will be useful,
10  * but WITHOUT ANY WARRANTY; without even the implied warranty of
11  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12  * GNU General Public License for more details.
13  *
14  * You should have received a copy of the GNU General Public License
15  * along with this program. If not, see <https://www.gnu.org/licenses/>.
16  */
17 
34 function check_user_password_http($usertotest, $passwordtotest, $entitytotest)
35 {
36  global $db, $langs;
37 
38  dol_syslog("functions_http::check_user_password_http _SERVER[REMOTE_USER]=".(empty($_SERVER["REMOTE_USER"]) ? '' : $_SERVER["REMOTE_USER"]));
39 
40  $login = '';
41  if (!empty($_SERVER["REMOTE_USER"])) {
42  $login = $_SERVER["REMOTE_USER"];
43 
44  require_once DOL_DOCUMENT_ROOT.'/core/lib/date.lib.php';
45 
46  // Note: Test on validity is done later natively with isNotIntoValidityDateRange() by core after calling checkLoginPassEntity() that call this method
47  /*
48  $tmpuser = new User($db);
49  $tmpuser->fetch('', $login, '', 1, ($entitytotest > 0 ? $entitytotest : -1));
50 
51  $now = dol_now();
52  if ($tmpuser->datestartvalidity && $db->jdate($tmpuser->datestartvalidity) >= $now) {
53  // Load translation files required by the page
54  $langs->loadLangs(array('main', 'errors'));
55  $_SESSION["dol_loginmesg"] = $langs->transnoentitiesnoconv("ErrorLoginDateValidity");
56  return '--bad-login-validity--';
57  }
58  if ($tmpuser->dateendvalidity && $db->jdate($tmpuser->dateendvalidity) <= dol_get_first_hour($now)) {
59  // Load translation files required by the page
60  $langs->loadLangs(array('main', 'errors'));
61  $_SESSION["dol_loginmesg"] = $langs->transnoentitiesnoconv("ErrorLoginDateValidity");
62  return '--bad-login-validity--';
63  }
64  */
65  }
66 
67  return $login;
68 }
69 
70 
80 function decodeHttpBasicAuth($value)
81 {
82  $encoded_basic_auth = substr($value, 6); // Remove the "Basic " string
83  $decoded_basic_auth = base64_decode($encoded_basic_auth);
84  $credentials_basic_auth = explode(':', $decoded_basic_auth);
85 
86  return (object) [
87  'username'=> $credentials_basic_auth[0],
88  'password' => $credentials_basic_auth[1]
89  ];
90 }
dol_syslog($message, $level=LOG_INFO, $ident=0, $suffixinfilename='', $restricttologhandler='', $logcontext=null)
Write log message into outputs.
check_user_password_http($usertotest, $passwordtotest, $entitytotest)
Check validity of user/password/entity If test is ko, reason must be filled into $_SESSION["dol_login...
decodeHttpBasicAuth($value)
Decode the value found into the Authorization HTTP header.