Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 1 | <?php |
| 2 | /** |
| 3 | * CodeIgniter |
| 4 | * |
Andrey Andreev | bf6b11d | 2015-01-12 17:27:12 +0200 | [diff] [blame] | 5 | * An open source application development framework for PHP |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 6 | * |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 7 | * This content is released under the MIT License (MIT) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 8 | * |
Andrey Andreev | bf6b11d | 2015-01-12 17:27:12 +0200 | [diff] [blame] | 9 | * Copyright (c) 2014 - 2015, British Columbia Institute of Technology |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 10 | * |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 11 | * Permission is hereby granted, free of charge, to any person obtaining a copy |
| 12 | * of this software and associated documentation files (the "Software"), to deal |
| 13 | * in the Software without restriction, including without limitation the rights |
| 14 | * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell |
| 15 | * copies of the Software, and to permit persons to whom the Software is |
| 16 | * furnished to do so, subject to the following conditions: |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 17 | * |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 18 | * The above copyright notice and this permission notice shall be included in |
| 19 | * all copies or substantial portions of the Software. |
| 20 | * |
| 21 | * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR |
| 22 | * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, |
| 23 | * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE |
| 24 | * AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER |
| 25 | * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, |
| 26 | * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN |
| 27 | * THE SOFTWARE. |
| 28 | * |
| 29 | * @package CodeIgniter |
| 30 | * @author EllisLab Dev Team |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 31 | * @copyright Copyright (c) 2008 - 2014, EllisLab, Inc. (http://ellislab.com/) |
Andrey Andreev | bf6b11d | 2015-01-12 17:27:12 +0200 | [diff] [blame] | 32 | * @copyright Copyright (c) 2014 - 2015, British Columbia Institute of Technology (http://bcit.ca/) |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 33 | * @license http://opensource.org/licenses/MIT MIT License |
| 34 | * @link http://codeigniter.com |
| 35 | * @since Version 3.0.0 |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 36 | * @filesource |
| 37 | */ |
| 38 | defined('BASEPATH') OR exit('No direct script access allowed'); |
| 39 | |
| 40 | /** |
| 41 | * CodeIgniter Session Database Driver |
| 42 | * |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 43 | * @package CodeIgniter |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 44 | * @subpackage Libraries |
| 45 | * @category Sessions |
Andrey Andreev | 46f2f26 | 2014-11-11 14:37:51 +0200 | [diff] [blame] | 46 | * @author Andrey Andreev |
| 47 | * @link http://codeigniter.com/user_guide/libraries/sessions.html |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 48 | */ |
| 49 | class CI_Session_database_driver extends CI_Session_driver implements SessionHandlerInterface { |
| 50 | |
| 51 | /** |
| 52 | * DB object |
| 53 | * |
| 54 | * @var object |
| 55 | */ |
| 56 | protected $_db; |
| 57 | |
| 58 | /** |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 59 | * Row exists flag |
| 60 | * |
| 61 | * @var bool |
| 62 | */ |
| 63 | protected $_row_exists = FALSE; |
| 64 | |
| 65 | /** |
| 66 | * Lock "driver" flag |
| 67 | * |
| 68 | * @var string |
| 69 | */ |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 70 | protected $_platform; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 71 | |
| 72 | // ------------------------------------------------------------------------ |
| 73 | |
| 74 | /** |
| 75 | * Class constructor |
| 76 | * |
| 77 | * @param array $params Configuration parameters |
| 78 | * @return void |
| 79 | */ |
| 80 | public function __construct(&$params) |
| 81 | { |
| 82 | parent::__construct($params); |
| 83 | |
| 84 | $CI =& get_instance(); |
| 85 | isset($CI->db) OR $CI->load->database(); |
| 86 | $this->_db =& $CI->db; |
| 87 | |
| 88 | if ( ! $this->_db instanceof CI_DB_query_builder) |
| 89 | { |
| 90 | throw new Exception('Query Builder not enabled for the configured database. Aborting.'); |
| 91 | } |
| 92 | elseif ($this->_db->pconnect) |
| 93 | { |
| 94 | throw new Exception('Configured database connection is persistent. Aborting.'); |
| 95 | } |
| 96 | |
| 97 | $db_driver = $this->_db->dbdriver.(empty($this->_db->subdriver) ? '' : '_'.$this->_db->subdriver); |
| 98 | if (strpos($db_driver, 'mysql') !== FALSE) |
| 99 | { |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 100 | $this->_platform = 'mysql'; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 101 | } |
| 102 | elseif (in_array($db_driver, array('postgre', 'pdo_pgsql'), TRUE)) |
| 103 | { |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 104 | $this->_platform = 'postgre'; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 105 | } |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 106 | |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 107 | isset($this->_config['save_path']) OR $this->_config['save_path'] = config_item('sess_table_name'); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 108 | } |
| 109 | |
| 110 | // ------------------------------------------------------------------------ |
| 111 | |
| 112 | public function open($save_path, $name) |
| 113 | { |
| 114 | return empty($this->_db->conn_id) |
| 115 | ? ( ! $this->_db->autoinit && $this->_db->db_connect()) |
| 116 | : TRUE; |
| 117 | } |
| 118 | |
| 119 | // ------------------------------------------------------------------------ |
| 120 | |
| 121 | public function read($session_id) |
| 122 | { |
Andrey Andreev | d069b9b | 2014-09-16 10:18:16 +0300 | [diff] [blame] | 123 | if ($this->_get_lock($session_id) !== FALSE) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 124 | { |
Andrey Andreev | 7474a67 | 2014-10-31 23:35:32 +0200 | [diff] [blame] | 125 | // Needed by write() to detect session_regenerate_id() calls |
| 126 | $this->_session_id = $session_id; |
| 127 | |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 128 | $this->_db |
| 129 | ->select('data') |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 130 | ->from($this->_config['save_path']) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 131 | ->where('id', $session_id); |
| 132 | |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 133 | if ($this->_config['match_ip']) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 134 | { |
| 135 | $this->_db->where('ip_address', $_SERVER['REMOTE_ADDR']); |
| 136 | } |
| 137 | |
| 138 | if (($result = $this->_db->get()->row()) === NULL) |
| 139 | { |
| 140 | $this->_fingerprint = md5(''); |
| 141 | return ''; |
| 142 | } |
| 143 | |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 144 | // PostgreSQL's variant of a BLOB datatype is Bytea, which is a |
| 145 | // PITA to work with, so we use base64-encoded data in a TEXT |
| 146 | // field instead. |
| 147 | if ($this->_platform === 'postgre') |
| 148 | { |
| 149 | $result = base64_decode(rtrim($result->data)); |
| 150 | } |
| 151 | |
| 152 | $this->_fingerprint = md5(rtrim($result)); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 153 | $this->_row_exists = TRUE; |
| 154 | return $result->data; |
| 155 | } |
| 156 | |
| 157 | $this->_fingerprint = md5(''); |
| 158 | return ''; |
| 159 | } |
| 160 | |
| 161 | public function write($session_id, $session_data) |
| 162 | { |
Andrey Andreev | 7474a67 | 2014-10-31 23:35:32 +0200 | [diff] [blame] | 163 | // Was the ID regenerated? |
Shakespeare2000 | 305186d | 2014-11-02 11:28:47 +0100 | [diff] [blame] | 164 | if ($session_id !== $this->_session_id) |
Andrey Andreev | 7474a67 | 2014-10-31 23:35:32 +0200 | [diff] [blame] | 165 | { |
| 166 | if ( ! $this->_release_lock() OR ! $this->_get_lock($session_id)) |
| 167 | { |
| 168 | return FALSE; |
| 169 | } |
| 170 | |
| 171 | $this->_row_exists = FALSE; |
| 172 | $this->_session_id = $session_id; |
| 173 | } |
Shakespeare2000 | 305186d | 2014-11-02 11:28:47 +0100 | [diff] [blame] | 174 | elseif ($this->_lock === FALSE) |
| 175 | { |
| 176 | return FALSE; |
| 177 | } |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 178 | |
| 179 | if ($this->_row_exists === FALSE) |
| 180 | { |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 181 | if ($this->_db->insert($this->_config['save_path'], array('id' => $session_id, 'ip_address' => $_SERVER['REMOTE_ADDR'], 'timestamp' => time(), 'data' => base64_encode($session_data)))) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 182 | { |
| 183 | $this->_fingerprint = md5($session_data); |
| 184 | return $this->_row_exists = TRUE; |
| 185 | } |
| 186 | |
| 187 | return FALSE; |
| 188 | } |
| 189 | |
| 190 | $this->_db->where('id', $session_id); |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 191 | if ($this->_config['match_ip']) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 192 | { |
| 193 | $this->_db->where('ip_address', $_SERVER['REMOTE_ADDR']); |
| 194 | } |
| 195 | |
| 196 | $update_data = ($this->_fingerprint === md5($session_data)) |
| 197 | ? array('timestamp' => time()) |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 198 | : array('timestamp' => time(), 'data' => base64_encode($session_data)); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 199 | |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 200 | if ($this->_db->update($this->_config['save_path'], $update_data)) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 201 | { |
| 202 | $this->_fingerprint = md5($session_data); |
| 203 | return TRUE; |
| 204 | } |
| 205 | |
| 206 | return FALSE; |
| 207 | } |
| 208 | |
| 209 | // ------------------------------------------------------------------------ |
| 210 | |
| 211 | public function close() |
| 212 | { |
| 213 | return ($this->_lock) |
| 214 | ? $this->_release_lock() |
| 215 | : TRUE; |
| 216 | } |
| 217 | |
| 218 | // ------------------------------------------------------------------------ |
| 219 | |
| 220 | public function destroy($session_id) |
| 221 | { |
| 222 | if ($this->_lock) |
| 223 | { |
| 224 | $this->_db->where('id', $session_id); |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 225 | if ($this->_config['match_ip']) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 226 | { |
| 227 | $this->_db->where('ip_address', $_SERVER['REMOTE_ADDR']); |
| 228 | } |
| 229 | |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 230 | return $this->_db->delete($this->_config['save_path']) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 231 | ? ($this->close() && $this->_cookie_destroy()) |
| 232 | : FALSE; |
| 233 | } |
| 234 | |
| 235 | return ($this->close() && $this->_cookie_destroy()); |
| 236 | } |
| 237 | |
| 238 | // ------------------------------------------------------------------------ |
| 239 | |
| 240 | public function gc($maxlifetime) |
| 241 | { |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 242 | return $this->_db->delete($this->_config['save_path'], 'timestamp < '.(time() - $maxlifetime)); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 243 | } |
| 244 | |
| 245 | // ------------------------------------------------------------------------ |
| 246 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 247 | protected function _get_lock($session_id) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 248 | { |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 249 | if ($this->_platform === 'mysql') |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 250 | { |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 251 | $arg = $session_id.($this->_config['match_ip'] ? '_'.$_SERVER['REMOTE_ADDR'] : ''); |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 252 | if ($this->_db->query("SELECT GET_LOCK('".$arg."', 10) AS ci_session_lock")->row()->ci_session_lock) |
| 253 | { |
| 254 | $this->_lock = $arg; |
| 255 | return TRUE; |
| 256 | } |
| 257 | |
| 258 | return FALSE; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 259 | } |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 260 | elseif ($this->_platform === 'postgre') |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 261 | { |
Andrey Andreev | dfb39be | 2014-10-06 01:50:14 +0300 | [diff] [blame] | 262 | $arg = "hashtext('".$session_id."')".($this->_config['match_ip'] ? ", hashtext('".$_SERVER['REMOTE_ADDR']."')" : ''); |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 263 | if ($this->_db->simple_query('SELECT pg_advisory_lock('.$arg.')')) |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 264 | { |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 265 | $this->_lock = $arg; |
| 266 | return TRUE; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 267 | } |
| 268 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 269 | return FALSE; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 270 | } |
| 271 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 272 | return parent::_get_lock($session_id); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 273 | } |
| 274 | |
| 275 | // ------------------------------------------------------------------------ |
| 276 | |
| 277 | protected function _release_lock() |
| 278 | { |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 279 | if ( ! $this->_lock) |
| 280 | { |
| 281 | return TRUE; |
| 282 | } |
| 283 | |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 284 | if ($this->_platform === 'mysql') |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 285 | { |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 286 | if ($this->_db->query("SELECT RELEASE_LOCK('".$this->_lock."') AS ci_session_lock")->row()->ci_session_lock) |
| 287 | { |
| 288 | $this->_lock = FALSE; |
| 289 | return TRUE; |
| 290 | } |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 291 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 292 | return FALSE; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 293 | } |
Andrey Andreev | e9ca012 | 2015-01-15 17:42:17 +0200 | [diff] [blame^] | 294 | elseif ($this->_platform === 'postgre') |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 295 | { |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 296 | if ($this->_db->simple_query('SELECT pg_advisory_unlock('.$this->_lock.')')) |
| 297 | { |
| 298 | $this->_lock = FALSE; |
| 299 | return TRUE; |
| 300 | } |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 301 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 302 | return FALSE; |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 303 | } |
| 304 | |
Andrey Andreev | 93d9fa7 | 2014-08-27 22:14:36 +0300 | [diff] [blame] | 305 | return parent::_release_lock(); |
Andrey Andreev | 47a47fb | 2014-05-31 16:08:30 +0300 | [diff] [blame] | 306 | } |
| 307 | |
| 308 | } |
| 309 | |
| 310 | /* End of file Session_database_driver.php */ |
| 311 | /* Location: ./system/libraries/Session/drivers/Session_database_driver.php */ |