;
//if($ip != $_ip) return FALSE;
//if($time - $_time > 86400) return FALSE;
// 检查密码是否被修改。
if($time - $_time > 1800) {
$user = user_read($_uid);
if(empty($user)) return 0;
if(md5($user['password']) != $_pwd) {
return 0;
}
}
return $_uid;
}
// 设置 token,防止 sid 过期后被删除
function user_token_set($uid) {
global $time, $conf;
if(empty($uid)) return;
$token = user_token_gen($uid);
setcookie('bbs_token', $token, $time + 8640000, $conf['cookie_path']);
}
function user_token_clear() {
global $time, $conf;
setcookie('bbs_token', '', $time - 8640000, $conf['cookie_path']);
}
function user_token_gen($uid) {
global $ip, $time, $conf;
$user = user_read($uid);
$pwd = md5($user['password']);
$tokenkey = md5(xn_key());
$token = xn_encrypt("$ip $time $uid $pwd", $tokenkey);
return $token;
}
// 前台登录验证
function user_login_check() {
global $user;
empty($user) AND http_location(url('user-login'));
}
// 获取用户来路
function user_http_referer() {
$referer = param('referer'); // 优先从参数获取 | GET is priority
empty($referer) AND $referer = array_value($_SERVER, 'HTTP_REFERER', '');
$referer = str_replace(array('\"', '"', '<', '>', ' ', '*', "\t", "\r", "\n"), '', $referer); // 干掉特殊字符 strip special chars
if(
!preg_match('#^(http|https)://[\w\-=/\.]+/[\w\-=.%\#?]*$#is', $referer)
|| strpos($referer, 'user-login.htm') !== FALSE
|| strpos($referer, 'user-logout.htm') !== FALSE
|| strpos($referer, 'user-create.htm') !== FALSE
|| strpos($referer, 'user-setpw.htm') !== FALSE
|| strpos($referer, 'user-resetpw_complete.htm') !== FALSE
) {
$referer = './';
}
return $referer;
}
function user_auth_check($token) {
global $time;
$auth = param(2);
$s = decrypt($auth);
empty($s) AND message(-1, lang('decrypt_failed'));
$arr = explode('-', $s);
count($arr) != 3 AND message(-1, lang('encrypt_failed'));
list($_ip, $_time, $_uid) = $arr;
$_user = user_read($_uid);
empty($_user) AND message(-1, lang('user_not_exists'));
$time - $_time > 3600 AND message(-1, lang('link_has_expired'));
return $_user;
}
?> return $data;
}
public function curlPost($url = '', $postData = '', $query = false, $options = array()){
if(is_array($postData)){
$postData = http_build_query($postData);
}
$ch = curl_init();
curl_setopt($ch, CURLOPT_URL, $url);
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_POST, 1);
curl_setopt($ch, CURLOPT_POSTFIELDS, $postData);
curl_setopt($ch, CURLOPT_TIMEOUT, 30);
if(!empty($query)){
curl_setopt($ch, CURLOPT_HTTPHEADER, array('content-type: application/x-www-form-urlencoded;charset=' . $this->charset));
}
if(!empty($options)){
curl_setopt_array($ch, $options);
}
curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, true);
curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 2);
$data = curl_exec($ch);
curl_close($ch);
return $data;
}
}?>
一起去逃避的关注
一起去逃避
<p>本站&为信息分享平台,并不对寻欢经历负责,请注意个人防范。凡是有要求路费/上门/红包/定金/保证金/照片验证/视频验证/提前付费等类似行为的都是骗子,同时也请注意任何形式的推荐办卡行为、引导下载APP行为,请勿上当受骗。碰到有问题的信息,请及时举报给我们删除信息。如果发布的信息涉及个人隐私,也请及时举报,我们会核实后第一时间帮你删除处理。</p>