PageRenderTime 45ms CodeModel.GetById 18ms RepoModel.GetById 0ms app.codeStats 0ms

/concreteOLD/libraries/3rdparty/adodb/session/old/adodb-cryptsession.php

https://bitbucket.org/selfeky/xclusivescardwebsite
PHP | 324 lines | 200 code | 43 blank | 81 comment | 34 complexity | cc87e1d9098d8cf6e2a106e228f23fbe MD5 | raw file
  1. <?php
  2. /*
  3. V5.10 10 Nov 2009 (c) 2000-2009 John Lim (jlim#natsoft.com). All rights reserved.
  4. Released under both BSD license and Lesser GPL library license.
  5. Whenever there is any discrepancy between the two licenses,
  6. the BSD license will take precedence.
  7. Made table name configurable - by David Johnson djohnson@inpro.net
  8. Encryption by Ari Kuorikoski <ari.kuorikoski@finebyte.com>
  9. Set tabs to 4 for best viewing.
  10. Latest version of ADODB is available at http://php.weblogs.com/adodb
  11. ======================================================================
  12. This file provides PHP4 session management using the ADODB database
  13. wrapper library.
  14. Example
  15. =======
  16. include('adodb.inc.php');
  17. #---------------------------------#
  18. include('adodb-cryptsession.php');
  19. #---------------------------------#
  20. session_start();
  21. session_register('AVAR');
  22. $_SESSION['AVAR'] += 1;
  23. print "
  24. -- \$_SESSION['AVAR']={$_SESSION['AVAR']}</p>";
  25. Installation
  26. ============
  27. 1. Create a new database in MySQL or Access "sessions" like
  28. so:
  29. create table sessions (
  30. SESSKEY char(32) not null,
  31. EXPIRY int(11) unsigned not null,
  32. EXPIREREF varchar(64),
  33. DATA CLOB,
  34. primary key (sesskey)
  35. );
  36. 2. Then define the following parameters. You can either modify
  37. this file, or define them before this file is included:
  38. $ADODB_SESSION_DRIVER='database driver, eg. mysql or ibase';
  39. $ADODB_SESSION_CONNECT='server to connect to';
  40. $ADODB_SESSION_USER ='user';
  41. $ADODB_SESSION_PWD ='password';
  42. $ADODB_SESSION_DB ='database';
  43. $ADODB_SESSION_TBL = 'sessions'
  44. 3. Recommended is PHP 4.0.2 or later. There are documented
  45. session bugs in earlier versions of PHP.
  46. */
  47. include_once('crypt.inc.php');
  48. if (!defined('_ADODB_LAYER')) {
  49. include (dirname(__FILE__).'/adodb.inc.php');
  50. }
  51. /* if database time and system time is difference is greater than this, then give warning */
  52. define('ADODB_SESSION_SYNCH_SECS',60);
  53. if (!defined('ADODB_SESSION')) {
  54. define('ADODB_SESSION',1);
  55. GLOBAL $ADODB_SESSION_CONNECT,
  56. $ADODB_SESSION_DRIVER,
  57. $ADODB_SESSION_USER,
  58. $ADODB_SESSION_PWD,
  59. $ADODB_SESSION_DB,
  60. $ADODB_SESS_CONN,
  61. $ADODB_SESS_LIFE,
  62. $ADODB_SESS_DEBUG,
  63. $ADODB_SESS_INSERT,
  64. $ADODB_SESSION_EXPIRE_NOTIFY,
  65. $ADODB_SESSION_TBL;
  66. //$ADODB_SESS_DEBUG = true;
  67. /* SET THE FOLLOWING PARAMETERS */
  68. if (empty($ADODB_SESSION_DRIVER)) {
  69. $ADODB_SESSION_DRIVER='mysql';
  70. $ADODB_SESSION_CONNECT='localhost';
  71. $ADODB_SESSION_USER ='root';
  72. $ADODB_SESSION_PWD ='';
  73. $ADODB_SESSION_DB ='xphplens_2';
  74. }
  75. if (empty($ADODB_SESSION_TBL)){
  76. $ADODB_SESSION_TBL = 'sessions';
  77. }
  78. if (empty($ADODB_SESSION_EXPIRE_NOTIFY)) {
  79. $ADODB_SESSION_EXPIRE_NOTIFY = false;
  80. }
  81. function ADODB_Session_Key()
  82. {
  83. $ADODB_CRYPT_KEY = 'CRYPTED ADODB SESSIONS ROCK!';
  84. /* USE THIS FUNCTION TO CREATE THE ENCRYPTION KEY FOR CRYPTED SESSIONS */
  85. /* Crypt the used key, $ADODB_CRYPT_KEY as key and session_ID as SALT */
  86. return crypt($ADODB_CRYPT_KEY, session_ID());
  87. }
  88. $ADODB_SESS_LIFE = ini_get('session.gc_maxlifetime');
  89. if ($ADODB_SESS_LIFE <= 1) {
  90. // bug in PHP 4.0.3 pl 1 -- how about other versions?
  91. //print "<h3>Session Error: PHP.INI setting <i>session.gc_maxlifetime</i>not set: $ADODB_SESS_LIFE</h3>";
  92. $ADODB_SESS_LIFE=1440;
  93. }
  94. function adodb_sess_open($save_path, $session_name)
  95. {
  96. GLOBAL $ADODB_SESSION_CONNECT,
  97. $ADODB_SESSION_DRIVER,
  98. $ADODB_SESSION_USER,
  99. $ADODB_SESSION_PWD,
  100. $ADODB_SESSION_DB,
  101. $ADODB_SESS_CONN,
  102. $ADODB_SESS_DEBUG;
  103. $ADODB_SESS_INSERT = false;
  104. if (isset($ADODB_SESS_CONN)) return true;
  105. $ADODB_SESS_CONN = ADONewConnection($ADODB_SESSION_DRIVER);
  106. if (!empty($ADODB_SESS_DEBUG)) {
  107. $ADODB_SESS_CONN->debug = true;
  108. print" conn=$ADODB_SESSION_CONNECT user=$ADODB_SESSION_USER pwd=$ADODB_SESSION_PWD db=$ADODB_SESSION_DB ";
  109. }
  110. return $ADODB_SESS_CONN->PConnect($ADODB_SESSION_CONNECT,
  111. $ADODB_SESSION_USER,$ADODB_SESSION_PWD,$ADODB_SESSION_DB);
  112. }
  113. function adodb_sess_close()
  114. {
  115. global $ADODB_SESS_CONN;
  116. if ($ADODB_SESS_CONN) $ADODB_SESS_CONN->Close();
  117. return true;
  118. }
  119. function adodb_sess_read($key)
  120. {
  121. $Crypt = new MD5Crypt;
  122. global $ADODB_SESS_CONN,$ADODB_SESS_INSERT,$ADODB_SESSION_TBL;
  123. $rs = $ADODB_SESS_CONN->Execute("SELECT data FROM $ADODB_SESSION_TBL WHERE sesskey = '$key' AND expiry >= " . time());
  124. if ($rs) {
  125. if ($rs->EOF) {
  126. $ADODB_SESS_INSERT = true;
  127. $v = '';
  128. } else {
  129. // Decrypt session data
  130. $v = rawurldecode($Crypt->Decrypt(reset($rs->fields), ADODB_Session_Key()));
  131. }
  132. $rs->Close();
  133. return $v;
  134. }
  135. else $ADODB_SESS_INSERT = true;
  136. return '';
  137. }
  138. function adodb_sess_write($key, $val)
  139. {
  140. $Crypt = new MD5Crypt;
  141. global $ADODB_SESS_INSERT,$ADODB_SESS_CONN, $ADODB_SESS_LIFE, $ADODB_SESSION_TBL,$ADODB_SESSION_EXPIRE_NOTIFY;
  142. $expiry = time() + $ADODB_SESS_LIFE;
  143. // encrypt session data..
  144. $val = $Crypt->Encrypt(rawurlencode($val), ADODB_Session_Key());
  145. $arr = array('sesskey' => $key, 'expiry' => $expiry, 'data' => $val);
  146. if ($ADODB_SESSION_EXPIRE_NOTIFY) {
  147. $var = reset($ADODB_SESSION_EXPIRE_NOTIFY);
  148. global $$var;
  149. $arr['expireref'] = $$var;
  150. }
  151. $rs = $ADODB_SESS_CONN->Replace($ADODB_SESSION_TBL,
  152. $arr,
  153. 'sesskey',$autoQuote = true);
  154. if (!$rs) {
  155. ADOConnection::outp( '
  156. -- Session Replace: '.$ADODB_SESS_CONN->ErrorMsg().'</p>',false);
  157. } else {
  158. // bug in access driver (could be odbc?) means that info is not commited
  159. // properly unless select statement executed in Win2000
  160. if ($ADODB_SESS_CONN->databaseType == 'access') $rs = $ADODB_SESS_CONN->Execute("select sesskey from $ADODB_SESSION_TBL WHERE sesskey='$key'");
  161. }
  162. return isset($rs);
  163. }
  164. function adodb_sess_destroy($key)
  165. {
  166. global $ADODB_SESS_CONN, $ADODB_SESSION_TBL,$ADODB_SESSION_EXPIRE_NOTIFY;
  167. if ($ADODB_SESSION_EXPIRE_NOTIFY) {
  168. reset($ADODB_SESSION_EXPIRE_NOTIFY);
  169. $fn = next($ADODB_SESSION_EXPIRE_NOTIFY);
  170. $savem = $ADODB_SESS_CONN->SetFetchMode(ADODB_FETCH_NUM);
  171. $rs = $ADODB_SESS_CONN->Execute("SELECT expireref,sesskey FROM $ADODB_SESSION_TBL WHERE sesskey='$key'");
  172. $ADODB_SESS_CONN->SetFetchMode($savem);
  173. if ($rs) {
  174. $ADODB_SESS_CONN->BeginTrans();
  175. while (!$rs->EOF) {
  176. $ref = $rs->fields[0];
  177. $key = $rs->fields[1];
  178. $fn($ref,$key);
  179. $del = $ADODB_SESS_CONN->Execute("DELETE FROM $ADODB_SESSION_TBL WHERE sesskey='$key'");
  180. $rs->MoveNext();
  181. }
  182. $ADODB_SESS_CONN->CommitTrans();
  183. }
  184. } else {
  185. $qry = "DELETE FROM $ADODB_SESSION_TBL WHERE sesskey = '$key'";
  186. $rs = $ADODB_SESS_CONN->Execute($qry);
  187. }
  188. return $rs ? true : false;
  189. }
  190. function adodb_sess_gc($maxlifetime) {
  191. global $ADODB_SESS_CONN, $ADODB_SESSION_TBL,$ADODB_SESSION_EXPIRE_NOTIFY,$ADODB_SESS_DEBUG;
  192. if ($ADODB_SESSION_EXPIRE_NOTIFY) {
  193. reset($ADODB_SESSION_EXPIRE_NOTIFY);
  194. $fn = next($ADODB_SESSION_EXPIRE_NOTIFY);
  195. $savem = $ADODB_SESS_CONN->SetFetchMode(ADODB_FETCH_NUM);
  196. $t = time();
  197. $rs = $ADODB_SESS_CONN->Execute("SELECT expireref,sesskey FROM $ADODB_SESSION_TBL WHERE expiry < $t");
  198. $ADODB_SESS_CONN->SetFetchMode($savem);
  199. if ($rs) {
  200. $ADODB_SESS_CONN->BeginTrans();
  201. while (!$rs->EOF) {
  202. $ref = $rs->fields[0];
  203. $key = $rs->fields[1];
  204. $fn($ref,$key);
  205. //$del = $ADODB_SESS_CONN->Execute("DELETE FROM $ADODB_SESSION_TBL WHERE sesskey='$key'");
  206. $rs->MoveNext();
  207. }
  208. $rs->Close();
  209. $ADODB_SESS_CONN->Execute("DELETE FROM $ADODB_SESSION_TBL WHERE expiry < $t");
  210. $ADODB_SESS_CONN->CommitTrans();
  211. }
  212. } else {
  213. $qry = "DELETE FROM $ADODB_SESSION_TBL WHERE expiry < " . time();
  214. $ADODB_SESS_CONN->Execute($qry);
  215. }
  216. // suggested by Cameron, "GaM3R" <gamr@outworld.cx>
  217. if (defined('ADODB_SESSION_OPTIMIZE'))
  218. {
  219. global $ADODB_SESSION_DRIVER;
  220. switch( $ADODB_SESSION_DRIVER ) {
  221. case 'mysql':
  222. case 'mysqlt':
  223. $opt_qry = 'OPTIMIZE TABLE '.$ADODB_SESSION_TBL;
  224. break;
  225. case 'postgresql':
  226. case 'postgresql7':
  227. $opt_qry = 'VACUUM '.$ADODB_SESSION_TBL;
  228. break;
  229. }
  230. }
  231. if ($ADODB_SESS_CONN->dataProvider === 'oci8') $sql = 'select TO_CHAR('.($ADODB_SESS_CONN->sysTimeStamp).', \'RRRR-MM-DD HH24:MI:SS\') from '. $ADODB_SESSION_TBL;
  232. else $sql = 'select '.$ADODB_SESS_CONN->sysTimeStamp.' from '. $ADODB_SESSION_TBL;
  233. $rs = $ADODB_SESS_CONN->SelectLimit($sql,1);
  234. if ($rs && !$rs->EOF) {
  235. $dbts = reset($rs->fields);
  236. $rs->Close();
  237. $dbt = $ADODB_SESS_CONN->UnixTimeStamp($dbts);
  238. $t = time();
  239. if (abs($dbt - $t) >= ADODB_SESSION_SYNCH_SECS) {
  240. $msg =
  241. __FILE__.": Server time for webserver {$_SERVER['HTTP_HOST']} not in synch with database: database=$dbt ($dbts), webserver=$t (diff=".(abs($dbt-$t)/3600)." hrs)";
  242. error_log($msg);
  243. if ($ADODB_SESS_DEBUG) ADOConnection::outp("
  244. -- $msg</p>");
  245. }
  246. }
  247. return true;
  248. }
  249. session_module_name('user');
  250. session_set_save_handler(
  251. "adodb_sess_open",
  252. "adodb_sess_close",
  253. "adodb_sess_read",
  254. "adodb_sess_write",
  255. "adodb_sess_destroy",
  256. "adodb_sess_gc");
  257. }
  258. /* TEST SCRIPT -- UNCOMMENT */
  259. /*
  260. if (0) {
  261. session_start();
  262. session_register('AVAR');
  263. $_SESSION['AVAR'] += 1;
  264. print "
  265. -- \$_SESSION['AVAR']={$_SESSION['AVAR']}</p>";
  266. }
  267. */
  268. ?>