source: branches/2.0/header.session.inc.php @ 2178

Revision 2178, 740 bytes checked in by niltonneto, 14 years ago (diff)

Ticket #922 - Forçar expirar sessão ao invalidar a mesma.

Line 
1<?php
2        if ( isset( $_COOKIE[ 'sessionid' ] ) )
3                session_id( $_COOKIE[ 'sessionid' ] );
4
5        session_start( );
6
7        $sess = $_SESSION[ 'phpgw_session' ];
8        $connection_id = "{$sess['session_id']}{$sess['session_ip']}".substr($_SERVER[ 'HTTP_USER_AGENT' ],0,199);
9
10
11        if (empty($_SESSION['phpgw_session']['session_id']) || ($_SESSION['connection_db_info']['user_auth'] && implode('',$_SESSION['connection_db_info']['user_auth']) !== $connection_id))
12        {
13                if($_SESSION['connection_db_info']['user_auth'])
14                        error_log( '[ INVALID SESSION ] >>>>' . implode('',$_SESSION['connection_db_info']['user_auth']) . '<<<< - >>>>' . $connection_id . '<<<<', 0 );
15                setcookie("PHPSESSID","",0);
16                setcookie ("sessionid","",0);   
17                unset($_SESSION);
18        }
19?>
Note: See TracBrowser for help on using the repository browser.