X-Git-Url: https://git.nubati.net/cgi-bin/gitweb.cgi?p=e-DoKo.git;a=blobdiff_plain;f=include%2Fregister.php;h=7f3266bba19d0fa4885a60d73f3758a5d6f038ac;hp=03be8038cda9a04c02403fc253e3f78446a1426a;hb=0bb6975e8b766bfe5dfd150285d8dc06b3a2832d;hpb=880dfb2e715a3770de56fb525f5c90d28a6ccb4c
diff --git a/include/register.php b/include/register.php
index 03be803..7f3266b 100644
--- a/include/register.php
+++ b/include/register.php
@@ -1,5 +1,5 @@
";
$ok=0;
}
- if(DB_get_userid('email',$_REQUEST["Remail"]))
+ /* check if email address is already used */
+ if(DB_get_userid('email',$_REQUEST['Remail']))
{
echo "this email address is already used ?!
";
$ok=0;
}
+ /* check against robots */
+ $robots=0; /* at least one anti-robot question needs to be answered */
+ if(myisset('Robotproof0'))
+ {
+ if($_REQUEST['Robotproof0']!=42)
+ $ok=0;
+ else
+ $robot=1;
+ }
+ else if(myisset('Robotproof1'))
+ {
+ if($_REQUEST['Robotproof1']!=35)
+ $ok=0;
+ else
+ $robot=1;
+ }
+ else if(myisset('Robotproof2'))
+ {
+ if($_REQUEST['Robotproof2']!=28)
+ $ok=0;
+ else
+ $robot=1;
+ }
+ else if(myisset('Robotproof3'))
+ {
+ if($_REQUEST['Robotproof3']!=21)
+ $ok=0;
+ else
+ $robot=1;
+ }
+ else if(myisset('Robotproof4'))
+ {
+ if($_REQUEST['Robotproof4']!=14)
+ $ok=0;
+ else
+ $robot=1;
+ }
+ if($robot==0)
+ {
+ echo "You answered the math question wrong.
\n";
+ $ok=0;
+ }
+
+ /* everything ok, go ahead and create user */
if($ok)
{
$r=DB_query("INSERT INTO User VALUES(NULL,".DB_quote_smart($_REQUEST["Rfullname"]).
",".DB_quote_smart($_REQUEST["Remail"]).
",".DB_quote_smart(md5($_REQUEST["Rpassword"])).
- ",".DB_quote_smart($_REQUEST["Rtimezone"]).",NULL,NULL)");
-
+ ",".DB_quote_smart($_REQUEST["Rtimezone"]).",NULL,NULL)");
+
if($r)
{
/* Set session, so that new user doesn't need to log in */
$myname = DB_get_name('email',$_REQUEST['Remail']);
$_SESSION["name"] = $myname;
-
- echo "myname $myname --";
-
+
echo " Welcome to e-DoKo, you are now registered, please visit the".
" homepage to continue.";
}
else
echo " something went wrong, couldn't add you to the database, please contact $ADMIN_NAME at $ADMIN_EMAIL.";
}
- }
-/* page for registration */
+ else
+ {
+ echo "Couldn't register you. Please try again! \n";
+ }
+ }
else
{
- echo "IMPORTANT: passwords are going over the net as clear text, so pick an easy password. No need to pick anything complicated here ;)
";
+ /* No information for new user given, ouput a page for registration */
+ echo "
IMPORTANT: passwords are going over the net as clear text, so pick an easy password. ".
+ "No need to pick anything complicated here ;)
";
+ echo "N.B. Your email address will be exposed to other players whom you play games with. ";
+ echo "