base.php 1.3 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859
  1. <?php
  2. class Auth_Base {
  3. protected $link;
  4. function __construct($link) {
  5. $this->link = $link;
  6. }
  7. function check_password($owner_uid, $password) {
  8. return false;
  9. }
  10. function authenticate($login, $password) {
  11. return false;
  12. }
  13. // Auto-creates specified user if allowed by system configuration
  14. // Can be used instead of find_user_by_login() by external auth modules
  15. function auto_create_user($login) {
  16. if ($login && defined('AUTH_AUTO_CREATE') && AUTH_AUTO_CREATE) {
  17. $user_id = $this->find_user_by_login($login);
  18. if (!$user_id) {
  19. $login = db_escape_string($this->link, $login);
  20. $salt = substr(bin2hex(get_random_bytes(125)), 0, 250);
  21. $pwd_hash = encrypt_password($password, $salt, true);
  22. $query = "INSERT INTO ttrss_users
  23. (login,access_level,last_login,created,pwd_hash,salt)
  24. VALUES ('$login', 0, null, NOW(), '$pwd_hash','$salt')";
  25. db_query($this->link, $query);
  26. return $this->find_user_by_login($login);
  27. } else {
  28. return $user_id;
  29. }
  30. }
  31. return $this->find_user_by_login($login);
  32. }
  33. function find_user_by_login($login) {
  34. $login = db_escape_string($this->link, $login);
  35. $result = db_query($this->link, "SELECT id FROM ttrss_users WHERE
  36. login = '$login'");
  37. if (db_num_rows($result) > 0) {
  38. return db_fetch_result($result, 0, "id");
  39. } else {
  40. return false;
  41. }
  42. }
  43. }
  44. ?>