# The LearningOnline Network # User Authentication Module # 5/21/99,5/22,5/25,5/26,5/27,5/29,6/2,6/11,6/14,6/15 # 16/11,12/16, # 1/14 Gerd Kortemeyer package Apache::lonauth; use Apache::Constants qw(:common); use Apache::File; use CGI qw(:standard); use CGI::Cookie(); use Apache::lonnet(); # ------------------------------------------------------------ Successful login sub success { my ($r, $username, $domain, $authhost) = @_; my $lonids=$r->dir_config('lonIDsDir'); # See if old ID present, if so, remove my $cookie; while ($cookie=<$lonids/$username\_*\_$domain\_$authhost.id>) { unlink($cookie); } # Give them a new cookie my $now=time; $cookie="$username\_$now\_$domain\_$authhost"; my $rolesdump=Apache::lonnet::reply("dump:$domain:$username:roles", $authhost); my $userroles=''; if ($rolesdump ne '') { map { my ($area,$role)=split(/=/,$_); my ($trole,$tend,$tstart)=split(/_/,$role); if ($tend!=0) { if ($tend<$now) { my $localtime=localtime($tend); $trole="Role expired $localtime"; } } if ($tstart!=0) { if ($tstart>$now) { my $localtime=localtime($tend); $trole="Role becomes active $localtime"; } } if ($area ne '') { $userroles.="user.role.$area=$trole\n"; } } split(/&/,$rolesdump); } { my $idf=Apache::File->new(">$lonids/$cookie.id"); print $idf "user.name=$username\n"; print $idf "user.domain=$domain\n"; print $idf "user.home=$authhost\n"; if ($userroles ne '') { print $idf "$userroles" }; } $cookie="lonID=$cookie; path=/"; $r->send_cgi_header(<print(< Successful Login to the LearningOnline Network with CAPA ENDSUCCESS } # --------------------------------------------------------------- Failed login! sub failed { my ($r,$message) = @_; $r->send_cgi_header(<print(< Unsuccessful Login to the LearningOnline Network with CAPA

Sorry ...

$message to use the LearningOnline Network with CAPA

ENDFAILED } # ---------------------------------------------------------------- Main handler sub handler { my $r = shift; my $buffer; $r->read($buffer,$r->header_in('Content-length')); my @pairs=split(/&/,$buffer); my $pair; my $name; my $value; my %FORM; foreach $pair (@pairs) { ($name,$value) = split(/=/,$pair); $FORM{$name}=$value; } if ((!$FORM{'uname'}) || (!$FORM{'upass'}) || (!$FORM{'udom'})) { failed($r,'Username, password and domain need to be specified'); return OK; } $FORM{'uname'} =~ s/\W//g; $FORM{'upass'} =~ s/\W//g; $FORM{'udom'} =~ s/\W//g; my $role = $r->dir_config('lonRole'); my $domain = $r->dir_config('lonDefDomain'); my $prodir = $r->dir_config('lonUsersDir'); # ---------------------------------------------------------------- Authenticate my $authhost=Apache::lonnet::authenticate($FORM{'uname'}, $FORM{'upass'}, $FORM{'udom'}); # --------------------------------------------------------------------- Failed? if ($authhost eq 'no_host') { failed($r,'Username and/or password could not be authenticated'); return OK; } my %cookies=CGI::Cookie->parse($r->header_in('Cookie')); my $lonurl=$cookies{'lonURL'}; if (!$lonurl) { failed($r,'Cookies need to be activated'); return OK; } my $lowerurl=$lonurl->value; success($r,$FORM{'uname'},$FORM{'udom'},$authhost); return OK; } 1; __END__