Blame view

framework/security/MemberPassword.php 1.53 KB
0084d336   Administrator   Importers CRUD
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
  <?php
  /**
   * Keep track of users' previous passwords, so that we can check that new passwords aren't changed back to old ones.
   * @package framework
   * @subpackage security
   *
   * @property string Password
   * @property string Salt
   * @property string PasswordEncryption
   *
   * @property int MemberID ID of the Member
   *
   * @method Member Member() Owner of the password
   */
  class MemberPassword extends DataObject {
  	private static $db = array(
  		'Password' => 'Varchar(160)',
  		'Salt' => 'Varchar(50)',
  		'PasswordEncryption' => 'Varchar(50)',
  	);
  	
  	private static $has_one = array(
  		'Member' => 'Member'
  	);
  	
  	private static $has_many = array();
  	
  	private static $many_many = array();
  	
  	private static $belongs_many_many = array();
  	
  	/**
  	 * Log a password change from the given member.
  	 * Call MemberPassword::log($this) from within Member whenever the password is changed.
  	 */
  	public static function log($member) {
  		$record = new MemberPassword();
  		$record->MemberID = $member->ID;
  		$record->Password = $member->Password;
  		$record->PasswordEncryption = $member->PasswordEncryption;
  		$record->Salt = $member->Salt;
  		$record->write();
  	}
  	
  	/**
  	 * Check if the given password is the same as the one stored in this record.
  	 * See {@link Member->checkPassword()}.
  	 * 
  	 * @param String $password Cleartext password
  	 * @return Boolean
  	 */	
  	public function checkPassword($password) {
  		$e = PasswordEncryptor::create_for_algorithm($this->PasswordEncryption);
  		return $e->check($this->Password, $password, $this->Salt, $this->Member());
  	}
  	
  	
  }