The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
|
#1
|
||||
|
||||
md5 password authentication on non-vb pages.
I've got a contest in development on my site where members will vote on a winning. However, I require that they be members before that can upload entries and submit a vote (when the contest is in the voting stage).
I had this working before VB3.. with VB2.. however now it no longer works. Below is the code I used for VB2 and VB3 to compare the submitted password with the one stored in the database. I realize the password is encrypted in the database and can not be reversed. However I guess I need to encrypt the password the member inputs and then compare that to the one stored in the database. IF they match.. access granted.. if they don't.. end. Here's the VB2 Code: Code:
$query = "select password, userid from user where username='$username'"; $result = mysql_query($query) or die("Query failed"); $row=mysql_fetch_array($result); $userid = $row['userid']; if ($row['password'] == md5($password)) { print "Password correct<br><br>"; } else { die("password not correct!"); } Code:
$query = "SELECT password FROM user WHERE username='$username' AND password = MD5(CONCAT(MD5('$password'), salt))"; $result = mysql_query($query) or die("Query failed"); $row=mysql_fetch_array($result); $userid = $row['userid']; /* THIS IS WHERE THE PROBLEM IS */ if ($row['password'] == MD5(CONCAT(MD5('$password'), salt)) { print "Password correct!<br><br>"; } else { die("password not correct!"); } Aceman |
Thread Tools | |
Display Modes | |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|