Files
人事系统开发 1ba6efd8ed MRBS 1.12.2 等保2.0二级整改完整提交
包含:登录失败锁定、90天密码有效期、30分钟会话超时、
强制改密、登录审计日志、屏幕水印、企业背景图、
备案信息固定底部、favicon、JS空集合保护、
会话过期体验优化(403 JSON)、display_errors 关闭、
固定 key 根治 Integrity check failed 等全部改动

注意:config.inc.php/.htaccess/.user.ini 含敏感信息,
通过 .gitignore 排除,勿推送到公开仓库。
2026-09-09 16:55:02 +08:00

44 lines
686 B
PHP

<?php
namespace MRBS\Auth;
class AuthNw extends Auth
{
public function validateUser(
#[\SensitiveParameter]
?string $user,
#[\SensitiveParameter]
?string $pass)
{
global $auth;
// Check if we do not have a username/password
if (empty($user) || empty($pass))
{
return false;
}
// Generate the command line
$cmd = $auth["prog"] . " -S " . $auth["params"] . " -U '$user'";
// Run the program, sending the password to stdin.
$p = popen($cmd, "w");
if (!$p)
{
return false;
}
fputs($p, $pass);
if (pclose($p) == 0)
{
return $user;
}
// return failure
return false;
}
}