Merge pull request #15710 from hregis/fix_add_hook_for_security
FIX rename hook to be more explicit and $test = false
This commit is contained in:
commit
dca5b5b1d3
@ -565,12 +565,15 @@ if (!defined('NOLOGIN'))
|
|||||||
// Hooks for security access
|
// Hooks for security access
|
||||||
$action = '';
|
$action = '';
|
||||||
$hookmanager->initHooks(array('login'));
|
$hookmanager->initHooks(array('login'));
|
||||||
$parameters = array('dol_authmode'=>$dol_authmode);
|
$parameters = array();
|
||||||
$reshook = $hookmanager->executeHooks('loginCheckSecurityAccess', $parameters, $user, $action); // Note that $action and $object may have been modified by some hooks
|
$reshook = $hookmanager->executeHooks('beforeLoginAuthentication', $parameters, $user, $action); // Note that $action and $object may have been modified by some hooks
|
||||||
if ($reshook < 0) $error++;
|
if ($reshook < 0) {
|
||||||
|
$test = false;
|
||||||
|
$error++;
|
||||||
|
}
|
||||||
|
|
||||||
// Verification security graphic code
|
// Verification security graphic code
|
||||||
if (GETPOST("username", "alpha", 2) && !empty($conf->global->MAIN_SECURITY_ENABLECAPTCHA) && !isset($_SESSION['dol_bypass_antispam']))
|
if ($test && GETPOST("username", "alpha", 2) && !empty($conf->global->MAIN_SECURITY_ENABLECAPTCHA) && !isset($_SESSION['dol_bypass_antispam']))
|
||||||
{
|
{
|
||||||
$sessionkey = 'dol_antispam_value';
|
$sessionkey = 'dol_antispam_value';
|
||||||
$ok = (array_key_exists($sessionkey, $_SESSION) === true && (strtolower($_SESSION[$sessionkey]) == strtolower($_POST['code'])));
|
$ok = (array_key_exists($sessionkey, $_SESSION) === true && (strtolower($_SESSION[$sessionkey]) == strtolower($_POST['code'])));
|
||||||
|
|||||||
Loading…
Reference in New Issue
Block a user