err give me an hour or so i'll take a look through what is going on
smiffy
// login //
if( !isset( $_SESSION['adminLogIn'] ) ) {
if( isset($_POST['user']) && $_POST['user'] != '' && isset($_POST['pass']) && $_POST['pass'] != '') {
if (!checkLog()) {
if( $_POST['user'] == RAZOR_SADMIN_USER and createHash($_POST['pass'],substr(RAZOR_SADMIN_PASS,0,(strlen(RAZOR_SADMIN_PASS)/2)),'sha1') == RAZOR_SADMIN_PASS ) {
$_SESSION['loginTimeStamp'] = $ts = time();
$_SESSION['adminLogIn'] = sha1($_SERVER['REMOTE_ADDR'].RAZOR_SADMIN_USER.$ts.$_SERVER['HTTP_USER_AGENT']);
$_SESSION['adminType'] = 'sadmin';
} else {
loginLog();
}
} else {
MsgBox(lt('You have exceeded the max amount of login attempts in').' '.(RAZOR_LOGAT_TIME/60).' '.lt('minutes'), 'redbox');
}
}
} else {
if($_SESSION['adminLogIn'] == sha1($_SERVER['REMOTE_ADDR'].RAZOR_SADMIN_USER.$_SESSION['loginTimeStamp'].$_SERVER['HTTP_USER_AGENT'])) {
$_SESSION['loginTimeStamp'] = $ts = time();
$_SESSION['adminLogIn'] = sha1($_SERVER['REMOTE_ADDR'].RAZOR_SADMIN_USER.$ts.$_SERVER['HTTP_USER_AGENT']);
$_SESSION['adminType'] = 'sadmin';
} else {
@session_destroy();
unset( $_SESSION['adminLogIn'] );
}
}
// end //////Users browsing this forum: No registered users and 1 guest