Various changes + Ashe's security fix

git-svn-id: file:///svn/phpbb/trunk@2741 89ea8834-ac86-4346-8a33-228a782c2dd0
This commit is contained in:
Paul S. Owen 2002-07-25 15:18:00 +00:00
parent d4483e3375
commit 42f2152a9f

View file

@ -111,11 +111,11 @@ class session {
{ {
$this->gc($current_time); $this->gc($current_time);
} }
setcookie($board_config['cookie_name'] . '_data', serialize($sessiondata), $current_time + 31536000, $board_config['cookie_path'], $board_config['cookie_domain'], $board_config['cookie_secure']);
setcookie($board_config['cookie_name'] . '_sid', $session_id, 0, $board_config['cookie_path'], $board_config['cookie_domain'], $board_config['cookie_secure']);
} }
setcookie($board_config['cookie_name'] . '_data', serialize($sessiondata), $current_time + 31536000, $board_config['cookie_path'], $board_config['cookie_domain'], $board_config['cookie_secure']);
setcookie($board_config['cookie_name'] . '_sid', $session_id, 0, $board_config['cookie_path'], $board_config['cookie_domain'], $board_config['cookie_secure']);
return $this->userdata; return $this->userdata;
} }
} }
@ -126,7 +126,7 @@ class session {
// using the cookie user_id if available to pull basic user prefs. // using the cookie user_id if available to pull basic user prefs.
// //
$autologin = ( isset($sessiondata['autologinid']) ) ? $sessiondata['autologinid'] : ''; $autologin = ( isset($sessiondata['autologinid']) ) ? $sessiondata['autologinid'] : '';
$user_id = ( isset($sessiondata['userid']) ) ? $sessiondata['userid'] : ANONYMOUS; $user_id = ( isset($sessiondata['userid']) ) ? intval($sessiondata['userid']) : ANONYMOUS;
$this->userdata = $this->create($session_id, $user_id, $autologin, $this_page, $session_browser); $this->userdata = $this->create($session_id, $user_id, $autologin, $this_page, $session_browser);