1 (* COCANWIKI - a wiki written in Objective CAML.
2 * Written by Richard W.M. Jones <rich@merjis.com>.
3 * Copyright (C) 2004 Merjis Ltd.
4 * $Id: login.ml,v 1.7 2005/11/21 15:28:35 rich Exp $
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 2 of the License, or
9 * (at your option) any later version.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License
17 * along with this program; see the file COPYING. If not, write to
18 * the Free Software Foundation, Inc., 59 Temple Place - Suite 330,
19 * Boston, MA 02111-1307, USA.
30 let expires = "Wed, 18-May-2033 04:33:20 GMT"
32 let run r (q : cgi) (dbh : Dbi.connection) hostid _ _ =
33 let username = q#param "username" in
34 let password = q#param "password" in
35 let permanent = try "1" = q#param "permanent" with Not_found -> false in
36 let redirect = try q#param "redirect" with Not_found -> "/" in
38 let sth = dbh#prepare_cached "select id, force_password_change from users
39 where name = ? and password = ?
41 sth#execute [`String username; `String password; `Int hostid];
44 let userid, force_password_change =
45 match sth#fetch1 () with
46 [ `Int userid; `Bool force_password_change ] ->
47 userid, force_password_change
48 | _ -> assert false in
50 (* Create a cookie. *)
51 let cookie = random_sessionid () in
52 let sth = dbh#prepare_cached "insert into usercookies (userid, cookie)
54 sth#execute [`Int userid; `String cookie];
58 (* Force password change? *)
60 if force_password_change then "/_bin/change_password_form.cmo"
65 Cookie.cookie "auth" cookie ~path:"/" ~expires
67 Cookie.cookie "auth" cookie ~path:"/" in
69 let ok_button = ok_button redirect in
71 if redirect <> "/" && redirect <> "/index" then (
73 [ { Template.StdPages.label = " Home Page ";
74 Template.StdPages.link = "/";
75 Template.StdPages.method_ = None;
76 Template.StdPages.params = [] } ]
77 ) else [ ok_button ] in
79 ok ~title:"Logged in" ~buttons ~cookie
80 q ("Welcome " ^ username ^ "." ^
81 if force_password_change then " Please change your password now."
86 ~title:"Bad name or password"
88 q "The name or password was wrong."