php jede menge

This commit is contained in:
Peter Hoppe
2022-12-16 15:54:13 +01:00
parent accf248e3c
commit 147fd66fff
10 changed files with 437 additions and 116 deletions

View File

@ -8,99 +8,96 @@ header("Access-Control-Allow-Headers: Content-Type, Access-Control-Allow-Headers
session_start();
require __DIR__.'/classes/Database.php';
//require __DIR__.'/classes/JwtHandler.php';
function msg($success,$status,$message,$extra = []){
return array_merge([
'success' => $success,
'status' => $status,
'message' => $message
],$extra);
}
require __DIR__.'/classes/lib.php';
$db_connection = new Database();
$conn = $db_connection->dbConnection();
$data = json_decode(file_get_contents("php://input"));
$returnData = [];
$returnData = new CMsg(0);
// IF REQUEST METHOD IS NOT EQUAL TO POST
if($_SERVER["REQUEST_METHOD"] != "POST"):
$returnData = msg(0,404,'Page Not Found!');
if($_SERVER["REQUEST_METHOD"] != "POST")
{
$returnData = new CMsg(0,404,'Page Not Found!');
}
// CHECKING EMPTY FIELDS
elseif(!isset($data->email)
elseif(
!isset($data->qr_id)
|| !isset($data->password)
|| empty(trim($data->email))
|| empty(trim($data->qr_id))
|| empty(trim($data->password))
):
$fields = ['fields' => ['email','password']];
$returnData = msg(0,422,'Please Fill in all Required Fields!',$fields);
)
{
$fields = ['fields' => ['qr_id','password']];
$returnData = new CMsg(0,422,'Please Fill in all Required Fields!',$fields);
}
// IF THERE ARE NO EMPTY FIELDS THEN-
else:
$email = trim($data->email);
else
{
$qr_id = trim($data->qr_id);
$password = trim($data->password);
// CHECKING THE EMAIL FORMAT (IF INVALID FORMAT)
if(!filter_var($email, FILTER_VALIDATE_EMAIL)):
$returnData = msg(0,422,'Invalid Email Address!');
// IF PASSWORD IS LESS THAN 8 THE SHOW THE ERROR
elseif(strlen($password) < 8):
$returnData = msg(0,422,'Your password must be at least 8 characters long!');
if(strlen($password) < 8)
{
$returnData = new CMsg(0,422,'Your password must be at least 8 characters long!');
}
// THE USER IS ABLE TO PERFORM THE LOGIN ACTION
else:
else
{
try{
$fetch_user_by_email = "SELECT * FROM `users` WHERE `email`=:email";
$query_stmt = $conn->prepare($fetch_user_by_email);
$query_stmt->bindValue(':email', $email,PDO::PARAM_STR);
$fetch_user_by_qrid = "SELECT id, name, qr_id, email FROM `dogs` WHERE `qr_id`=:qr_id";
$query_stmt = $conn->prepare($fetch_user_by_qrid);
$query_stmt->bindValue(':qr_id', $qr_id,PDO::PARAM_STR);
$query_stmt->execute();
// IF THE USER IS FOUNDED BY EMAIL
if($query_stmt->rowCount()):
if($query_stmt->rowCount())
{
$row = $query_stmt->fetch(PDO::FETCH_ASSOC);
$check_password = password_verify($password, $row['password']);
// VERIFYING THE PASSWORD (IS CORRECT OR NOT?)
// IF PASSWORD IS CORRECT THEN SEND THE LOGIN TOKEN
if ($check_password):
if ($check_password)
{
// $jwt = new JwtHandler();
$user = array(
'id' => $row['id'],
'vorname' => $row['vorname'],
'nachname' => $row['nachname'],
'email' => $row['email']
$user = new CUser( $row['id'],
$row['qr_id'],
$row['email'],
$row['name']
);
$_SESSION['user'] = $user;
$returnData = [
'success' => 1,
'message' => 'You have successfully logged in.',
'user' => $user,
'session' => $_SESSION
];
$returnData = new CMsg(
1,
200,
'You have successfully logged in.',
$fields,
$user);
}
// IF INVALID PASSWORD
else:
$returnData = msg(0,422,'Invalid Password!');
endif;
else
{
$returnData = new CMsg(0,422,'Invalid Password!');
}
// IF THE USER IS NOT FOUNDED BY EMAIL THEN SHOW THE FOLLOWING ERROR
else:
$returnData = msg(0,422,'Invalid Email Address!');
endif;
}
else
{
$returnData = new CMsg(0,422,'Invalid Email Address!');
}
}
catch(PDOException $e){
$returnData = msg(0,500,$e->getMessage());
catch(PDOException $e)
{
$returnData = new CMsg(0,500,$e->getMessage());
}
}
}
endif;
endif;
echo json_encode($returnData);
echo $returnData->jsonarray();
?>