Go Back   vb.org Archive > vBulletin 3 Discussion > vB3 Programming Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #1  
Old 06-30-2006, 04:24 PM
IanM IanM is offline
 
Join Date: Sep 2003
Posts: 2
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default Authentication and sessions

Hi all

I'm trying to work out how to use the vBulletin members table to authenticate and then pass this data via a session.

I have a script which is completely seperate to vB, but it currently uses phpBB members to log in.

The code I use for this is:

PHP Code:
if( FORUM_BOARD == 'PHPBB' )
    {
        
$username = isset($_POST['username']) ? trim(htmlspecialchars($_POST['username'])) : '';
        
$username substr(str_replace("\\'""'"$username), 025);
        
$username str_replace("'""\\'"$username);
        
$password = isset($_POST['password']) ? $_POST['password'] : '';

        
$sql "SELECT user_id, username, user_password, user_active, user_level
                FROM " 
PHPBB_USERS_TABLE "
                WHERE username = '" 
str_replace("\\'""''"$username) . "'";
    
        
$result $sys->ExecSQL$sql );
        if( 
$row mysql_fetch_array($result) )
        {
            if( 
md5($password) == $row['user_password'] && $row['user_active'] )
            {
                
$session->Put('userid',intval($row['user_id']));
                
$session->Put('logged',1);
                
$session->Put('username',$row['username']);
                
$session->Store();
            }    
            else
                
$errors[] = 'You have specified an incorrect or inactive username, or an invalid password.';    
        }
        else
            
$errors[] = 'You have specified an incorrect or inactive username, or an invalid password.';    
    } 
What effectively happens is that when a user logs in, it takes the user_id key in both tables to allow the user to then perform another task in the seperate script.
This works fine.

However, I'm struggling doing this with vBulletin.
I currently have:

PHP Code:
if( FORUM_BOARD == 'vB' )
    {
        
$username    addslashes($_POST ['username']); // username  
        
$password     addslashes($_POST ['password']); // password
                                
        // Convert the password entered into the fancy vBulletin code 
        
$newpassword md5(md5($password) . $userinfo['salt']); 
        
        
$sql "SELECT userid, username, password
                FROM " 
vB_USERS_TABLE "
                WHERE username = '" 
str_replace("\\'""''"$username) . "'";

    
        
$result $sys->ExecSQL$sql );
        if( 
$row mysql_fetch_array($result) )
        {
            if( 
md5(password) == $row['newpassword'] )
            {
                
$session->Put('userid',intval($row['user_id']));
                
$session->Put('logged',1);
                
$session->Put('username',$row['username']);
                
$session->Store();
            }    
            else
                
$errors[] = 'You have specified an incorrect or inactive VB username, or an invalid password.';    
        }
        else
            
$errors[] = 'You have specified an incorrect or inactive VB username, or an invalid password.';    
    } 
Can anyone point me in the right direction.
The code listed here doesnt even authenticate, I'm struggling with the MD5 encryption I think.

Many thanks,
Ian
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 08:24 PM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2024, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.08782 seconds
  • Memory Usage 2,241KB
  • Queries Executed 11 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (2)bbcode_php
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)post_thanks_box
  • (1)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (1)post_thanks_postbit_info
  • (1)postbit
  • (1)postbit_onlinestatus
  • (1)postbit_wrapper
  • (1)showthread_list
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_threadedmode.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids_threaded
  • showthread_threaded_construct_link
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • fetch_musername
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete