File: login.php

package info (click to toggle)
irm 1.5.3.1-1
  • links: PTS
  • area: main
  • in suites: sarge
  • size: 2,436 kB
  • ctags: 3,308
  • sloc: php: 16,796; sh: 127; perl: 97; pascal: 56; makefile: 48
file content (57 lines) | stat: -rw-r--r-- 1,897 bytes parent folder | download | duplicates (2)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
<?php

#    IRM - The Information Resource Manager
#    Copyright (C) 2001 Yann Ramin
#
#    This program is free software; you can redistribute it and/or modify
#    it under the terms of the GNU General Public License as published by
#    the Free Software Foundation; either version 2 of the License, or
#    (at your option) any later version.
#
#    This program is distributed in the hope that it will be useful,
#    but WITHOUT ANY WARRANTY; without even the implied warranty of
#    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
#    GNU General Public License (in file COPYING) for more details.
#
#    You should have received a copy of the GNU General Public License
#    along with this program; if not, write to the Free Software
#    Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
#

require_once 'include/irm.inc';
require_once 'include/User.php';
require_once 'include/functions.php';

if (!@$_REQUEST['name'])
{
	header('Location: index.php');
	echo _('Redirecting to').' '._('the login page');
}

$_SESSION['_sess_database'] = $_REQUEST['dbuse'];

// The sooper-sekrit anonymous user IRMConnect gets a free pass
if (($_REQUEST['name'] != 'IRMConnect')
	&& (!User::Authenticate($_REQUEST['name'], $_REQUEST['password'])))
{
 	logevent(-1, "IRM", 1, "login",
			_(sprintf("Failed login: %s, database %s",
					$_REQUEST['name'],
					$_SESSION['_sess_database'])));
 	$dest = urlencode(@$_REQUEST['redirect']);
	header('Location: index.php?auth=fail&redirect='.$dest);
	echo _('Redirecting to').' <a href="index.php?auth=fail">'._('the login page').'</a>';
	exit;
}

$_SESSION['_sess_username'] = @$_REQUEST['name'];

if (@$_REQUEST['redirect'])
{
	header("Location: ".Config::AbsLoc($_REQUEST['redirect']));
}
else
{
	header("Location: ".Config::AbsLoc('users/index.php'));
}
echo _('Redirecting to').' <a href="users/">'._('the system index').'</a>';