当前位置: 首页>>代码示例>>PHP>>正文


PHP ldap_sasl_bind函数代码示例

本文整理汇总了PHP中ldap_sasl_bind函数的典型用法代码示例。如果您正苦于以下问题:PHP ldap_sasl_bind函数的具体用法?PHP ldap_sasl_bind怎么用?PHP ldap_sasl_bind使用的例子?那么, 这里精选的函数代码示例或许可以为您提供帮助。


在下文中一共展示了ldap_sasl_bind函数的15个代码示例,这些例子默认根据受欢迎程度排序。您可以为喜欢或者感觉有用的代码点赞,您的评价将有助于系统推荐出更棒的PHP代码示例。

示例1: bind

 /**
  * Bind to a directory.
  * $binddn string directory to bind (optional)
  * $password string (optional)
  */
 function bind($binddn = null, $password = null)
 {
     if (isset($this->settings['sasl'])) {
         // FIXME ldap_sasl_bind requires PHP5, haven't tested this
         return @ldap_sasl_bind($this->conn, $binddn, $password, $this->settings['saslmech'], $this->settings['saslrealm'], $this->settings['saslauthzid'], $this->settings['saslprop']);
     }
     return @ldap_bind($this->conn, $binddn, $password);
 }
开发者ID:yuricampos,项目名称:ojs,代码行数:13,代码来源:LDAPAuthPlugin.inc.php

示例2: authenticate

 /**
  * Validate a user's login credentials
  * 
  * @param string $username A user's AD username
  * @param string $password A user's AD password
  * @param bool optional $preventRebind
  * @return bool
  */
 public function authenticate($username, $password, $preventRebind = false)
 {
     // Prevent null binding
     if ($username === NULL || $password === NULL) {
         return false;
     }
     if (empty($username) || empty($password)) {
         return false;
     }
     // Allow binding over SSO for Kerberos
     if ($this->useSSO && $_SERVER['REMOTE_USER'] && $_SERVER['REMOTE_USER'] == $username && $this->adminUsername === NULL && $_SERVER['KRB5CCNAME']) {
         putenv("KRB5CCNAME=" . $_SERVER['KRB5CCNAME']);
         $this->ldapBind = @ldap_sasl_bind($this->ldapConnection, NULL, NULL, "GSSAPI");
         if (!$this->ldapBind) {
             throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
         } else {
             return true;
         }
     }
     // Bind as the user
     $ret = true;
     $this->ldapBind = @ldap_bind($this->ldapConnection, $username . $this->accountSuffix, $password);
     if (!$this->ldapBind) {
         $ret = false;
     }
     // Cnce we've checked their details, kick back into admin mode if we have it
     if ($this->adminUsername !== NULL && !$preventRebind) {
         $this->ldapBind = @ldap_bind($this->ldapConnection, $this->adminUsername . $this->accountSuffix, $this->adminPassword);
         if (!$this->ldapBind) {
             // This should never happen in theory
             throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
         }
     }
     return $ret;
 }
开发者ID:emircado,项目名称:pamgmt,代码行数:43,代码来源:adLDAP.php

示例3: sasl_bind

 /**
  * Bind connection with (SASL-) user and password
  *
  * @param string $authc Authentication user
  * @param string $pass  Bind password
  * @param string $authz Autorization user
  *
  * @return boolean True on success, False on error
  */
 public function sasl_bind($authc, $pass, $authz = null)
 {
     if (!$this->conn) {
         return false;
     }
     if (!function_exists('ldap_sasl_bind')) {
         raise_error(array('code' => 100, 'type' => 'ldap', 'file' => __FILE__, 'line' => __LINE__, 'message' => "Unable to bind: ldap_sasl_bind() not exists"), true, true);
     }
     if (!empty($authz)) {
         $authz = 'u:' . $authz;
     }
     if (!empty($this->prop['auth_method'])) {
         $method = $this->prop['auth_method'];
     } else {
         $method = 'DIGEST-MD5';
     }
     $this->_debug("C: Bind [mech: {$method}, authc: {$authc}, authz: {$authz}] [pass: {$pass}]");
     if (ldap_sasl_bind($this->conn, NULL, $pass, $method, NULL, $authc, $authz)) {
         $this->_debug("S: OK");
         return true;
     }
     $this->_debug("S: " . ldap_error($this->conn));
     raise_error(array('code' => ldap_errno($this->conn), 'type' => 'ldap', 'file' => __FILE__, 'line' => __LINE__, 'message' => "Bind failed for authcid={$authc} " . ldap_error($this->conn)), true);
     return false;
 }
开发者ID:CodericSandbox,项目名称:roundcube-openshift-quickstart,代码行数:34,代码来源:rcube_ldap.php

示例4: ldap_connect

<?php

require "connect.inc";
$link = ldap_connect($host, $port);
ldap_set_option($link, LDAP_OPT_PROTOCOL_VERSION, $protocol_version);
// Invalid parameter count
var_dump(ldap_sasl_bind());
// Invalid DN
var_dump(ldap_sasl_bind($link, "Invalid DN", $passwd, 'DIGEST-MD5', 'realm', $sasl_user));
// Invalid user
var_dump(ldap_sasl_bind($link, null, "ThisIsNotCorrect{$passwd}", 'DIGEST-MD5', "realm", "invalid{$sasl_user}"));
// Invalid password
var_dump(ldap_sasl_bind($link, null, "ThisIsNotCorrect{$passwd}", 'DIGEST-MD5', "realm", $sasl_user));
var_dump(ldap_sasl_bind($link, null, $passwd, 'DIGEST-MD5', "realm", "Manager", "test"));
// Invalid DN syntax
var_dump(ldap_sasl_bind($link, "unexistingProperty=weirdValue,{$user}", $passwd));
?>
===DONE===
开发者ID:zaky-92,项目名称:php-1,代码行数:18,代码来源:ext_ldap_tests_ldap_sasl_bind_error.php

示例5: saslBind

 /**
  * @param string $dn
  * @param string $password
  * @param string $saslMech
  * @param string $saslRealm
  * @param string $saslAuthcId
  * @param string $saslAuthzId
  * @param string $props
  * @throws UnavailableException
  * @throws BindFailureException
  */
 public function saslBind($dn = null, $password = null, $saslMech = null, $saslRealm = null, $saslAuthcId = null, $saslAuthzId = null, $props = null)
 {
     $this->checkConnected();
     if (!ldap_sasl_bind($this->link, $dn, $password, $saslMech, $saslRealm, $saslAuthcId, $saslAuthzId, $props)) {
         throw new BindFailureException(ldap_error($this->link), ldap_errno($this->link));
     }
     $this->bound = true;
 }
开发者ID:daverandom,项目名称:ldapi,代码行数:19,代码来源:Directory.php

示例6: sasl_bind

 /**
  * Bind connection with (SASL-) user and password
  *
  * @param string $authc Authentication user
  * @param string $pass  Bind password
  * @param string $authz Autorization user
  *
  * @return boolean True on success, False on error
  */
 public function sasl_bind($authc, $pass, $authz = null)
 {
     if (!$this->conn) {
         return false;
     }
     if (!function_exists('ldap_sasl_bind')) {
         $this->_error("LDAP: Unable to bind. ldap_sasl_bind() not exists");
         return false;
     }
     if (!empty($authz)) {
         $authz = 'u:' . $authz;
     }
     $method = $this->config_get('auth_method');
     if (empty($method)) {
         $method = 'DIGEST-MD5';
     }
     $this->_debug("C: Bind [mech: {$method}, authc: {$authc}, authz: {$authz}]");
     if (ldap_sasl_bind($this->conn, null, $pass, $method, null, $authc, $authz)) {
         $this->_debug("S: OK");
         return true;
     }
     $this->_debug("S: " . ldap_error($this->conn));
     $this->_error("LDAP: Bind failed for authcid={$authc}. " . ldap_error($this->conn));
     return false;
 }
开发者ID:cretzu89,项目名称:EPESI,代码行数:34,代码来源:LDAP3.php

示例7: startSASL

 /**
  * If SASL is configured, then start it
  * To be able to use SASL, PHP should have been compliled with --with-ldap-sasl=DIR
  *
  * @todo This has not been tested, please let the developers know if this function works as expected.
  */
 private function startSASL($resource, $method)
 {
     if (DEBUG_ENABLED && (($fargs = func_get_args()) || ($fargs = 'NOARGS'))) {
         debug_log('Entered (%%)', 17, 0, __FILE__, __LINE__, __METHOD__, $fargs);
     }
     static $CACHE = array();
     switch (strtolower($this->getValue('sasl', 'mech'))) {
         case 'gssapi':
             if (isset($_ENV['REDIRECT_KRB5CCNAME'])) {
                 putenv(sprintf('KRB5CCNAME={%s}', $_ENV['REDIRECT_KRB5CCNAME']));
             }
             break;
     }
     if (!$this->getValue('server', 'sasl') || !function_exists('ldap_start_tls')) {
         return false;
     }
     if (!isset($CACHE['login_dn'])) {
         $CACHE['login_dn'] = is_null($this->getLogin($method)) ? $this->getLogin('user') : $this->getLogin($method);
         $CACHE['login_pass'] = is_null($this->getPassword($method)) ? $this->getPassword('user') : $this->getPassword($method);
     }
     # Do we need to rewrite authz_id?
     if (!isset($CACHE['authz_id'])) {
         if (!trim($this->getValue('sasl', 'authz_id'))) {
             if (DEBUG_ENABLED) {
                 debug_log('Rewriting bind DN [%s] -> authz_id with regex [%s] and replacement [%s].', 9, 0, __FILE__, __LINE__, __METHOD__, $CACHE['login_dn'], $this->getValue('sasl', 'authz_id_regex'), $this->getValue('sasl', 'authz_id_replacement'));
             }
             $CACHE['authz_id'] = @preg_replace($this->getValue('sasl', 'authz_id_regex'), $this->getValue('sasl', 'authz_id_replacement'), $CACHE['login_dn']);
             # Invalid regex?
             if (is_null($CACHE['authz_id'])) {
                 error(sprintf(_('It seems that sasl_authz_id_regex "%s" contains invalid PCRE regular expression. The error is "%s".'), $this->getValue('sasl', 'authz_id_regex'), isset($php_errormsg) ? $php_errormsg : ''), 'error', 'index.php');
             }
             if (DEBUG_ENABLED) {
                 debug_log('Resource [%s], SASL OPTIONS: mech [%s], realm [%s], authz_id [%s], props [%s]', 9, 0, __FILE__, __LINE__, __METHOD__, $resource, $this->getValue('sasl', 'mech'), $this->getValue('sasl', 'realm'), $CACHE['authz_id'], $this->getValue('sasl', 'props'));
             }
         } else {
             $CACHE['authz_id'] = $this->getValue('sasl', 'authz_id');
         }
     }
     # @todo this function is different in PHP5.1 and PHP5.2
     return @ldap_sasl_bind($resource, $CACHE['login_dn'], $CACHE['login_pass'], $this->getValue('sasl', 'mech'), $this->getValue('sasl', 'realm'), $CACHE['authz_id'], $this->getValue('sasl', 'props'));
 }
开发者ID:kangaroot,项目名称:phpldapadmin,代码行数:47,代码来源:ds_ldap.php

示例8: setupConnection

 /**
  * Setup LDAP connection
  *
  * @param string $user
  * @param string $pass
  *
  * @return  bool
  *
  * @throws  \Comodojo\Exception\LdaphException
  */
 private function setupConnection($user = null, $pass = null)
 {
     $this->ldaph = $this->ssl ? ldap_connect("ldaps://" . $this->server, $this->port) : ldap_connect($this->server, $this->port);
     if (!$this->ldaph) {
         throw new LdaphException(ldap_error($this->ldaph), 1403);
     }
     ldap_set_option($this->ldaph, LDAP_OPT_PROTOCOL_VERSION, $this->version);
     ldap_set_option($this->ldaph, LDAP_OPT_REFERRALS, 0);
     if ($this->tls) {
         $tls = @ldap_start_tls($this->ldaph);
         if ($tls === false) {
             throw new LdaphException(ldap_error($this->ldaph), 1403);
         }
     }
     if ($this->sso and $_SERVER['REMOTE_USER'] and $_SERVER["REMOTE_USER"] == $user and $_SERVER["KRB5CCNAME"]) {
         putenv("KRB5CCNAME=" . $_SERVER["KRB5CCNAME"]);
         $bind = @ldap_sasl_bind($this->ldaph, null, null, "GSSAPI");
     } elseif (is_null($user) or is_null($pass)) {
         $bind = @ldap_bind($this->ldaph);
     } else {
         $user_dn = str_replace('USERNAME', $user, $this->dn);
         $bind = @ldap_bind($this->ldaph, $user_dn, $pass);
     }
     if (!$bind) {
         throw new LdaphException(ldap_error($this->ldaph), 1402);
     }
     return true;
 }
开发者ID:comodojo,项目名称:ldaph,代码行数:38,代码来源:Ldaph.php

示例9: saslBind

 /**
  * Bind to LDAP directory using SASL
  *
  * @param  string $bindDn
  * @param  string $bindPassword
  * @param  string $saslMech
  * @param  string $saslRealm
  * @param  string $saslAuthcId
  * @param  string $saslAuthzId
  * @param  string $props
  * @return self
  */
 public function saslBind($bindDn = null, $bindPassword = null, $saslMech = null, $saslRealm = null, $saslAuthcId = null, $saslAuthzId = null, $props = null)
 {
     @ldap_sasl_bind($this->resource, $bindDn, $bindPassword, $saslMech, $saslRealm, $saslAuthcId, $saslAuthzId, $props);
     $this->verifyOperation();
     return $this;
 }
开发者ID:dreamscapes,项目名称:ldap-core,代码行数:18,代码来源:Ldap.php

示例10: bindAs

 /**
  * Tries to bind using SASL.
  *
  * @param string $userDN DN to bind as
  * @param string $password password to use
  * @param string $saslMech optionally selected SASL mech
  * @param string $saslRealm optionally selected SASL realm
  * @return server current instance
  */
 public function bindAs($dn, $password, $saslMech, $saslRealm)
 {
     $this->boundAs = @ldap_sasl_bind($this->link, $dn, $password, $saslMech, $saslRealm) ? $dn : false;
     return $this;
 }
开发者ID:cepharum,项目名称:txf,代码行数:14,代码来源:server.php

示例11: authenticate

 /**
  * Validate a user's login credentials
  * 
  * @param string $username A user's AD username
  * @param string $password A user's AD password
  * @param bool optional $preventRebind
  * @return bool
  */
 public function authenticate($username, $password, $preventRebind = false)
 {
     // Prevent null binding
     if ($username === NULL || $password === NULL) {
         return false;
     }
     if (empty($username) || empty($password)) {
         return false;
     }
     try {
         $user = \App\User::where('uid', $username)->firstOrFail();
     } catch (\Illuminate\Database\Eloquent\ModelNotFoundException $e) {
         $user = null;
     }
     if ($user != null) {
         if (password_verify($password, $user->password)) {
             // Password is correct
             return true;
         } else {
             // Password is incorrect
             $passwordMismatch = true;
         }
     }
     if ($user == null || $passwordMismatch) {
         // If user's not in our database
         // or the passwords didn't match, check LDAP
         // Allow binding over SSO for Kerberos
         if ($this->useSSO && $_SERVER['REMOTE_USER'] && $_SERVER['REMOTE_USER'] == $username && $this->adminUsername === NULL && $_SERVER['KRB5CCNAME']) {
             putenv("KRB5CCNAME=" . $_SERVER['KRB5CCNAME']);
             $this->ldapBind = @ldap_sasl_bind($this->ldapConnection, NULL, NULL, "GSSAPI");
             if (!$this->ldapBind) {
                 throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
             } else {
                 return true;
             }
         }
         // Bind as the user
         $ret = true;
         $groups = explode(',', env("LDAP_GROUPS"));
         $baseDN = $this->getBaseDn();
         foreach ($groups as $group) {
             // Check all groups for a binding
             $this->ldapBind = @ldap_bind($this->ldapConnection, "cn=" . $username . ",cn=" . $group . "," . $baseDN . $this->accountSuffix, $password);
             if ($this->ldapBind) {
                 // If we find a match, break out of the loop
                 break;
             }
         }
         if (!$this->ldapBind) {
             $ret = false;
         }
         // Cnce we've checked their details, kick back into admin mode if we have it
         if ($this->adminUsername !== NULL && !$preventRebind) {
             $this->ldapBind = @ldap_bind($this->ldapConnection, $this->adminUsername . $this->accountSuffix, $this->adminPassword);
             if (!$this->ldapBind) {
                 // This should never happen in theory
                 throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
             }
         }
         return $ret;
     }
 }
开发者ID:UCCNetworkingSociety,项目名称:NetsocAdmin,代码行数:70,代码来源:adLDAP.php

示例12: __construct

 /**
  * Initializes a new connection to CIF LDAP.
  * This method is protected to ensure that new CifLdap instances
  * can't be created with the `new` keyword.
  */
 protected function __construct()
 {
     if (!putenv('LDAPTLS_CACERT=' . self::TLS_CERT)) {
         trigger_error('Unable to set TLS certificate', E_USER_WARNING);
     }
     $this->log('Connecting to CIF LDAP.');
     self::$connection = ldap_connect(self::LDAP_SERVER);
     if (!self::$connection) {
         $this->log_and_except('Unable to open connection to CIF LDAP.');
     }
     if (self::DEBUG) {
         ldap_set_option(self::$connection, LDAP_OPT_DEBUG_LEVEL, 7);
     }
     if (!ldap_start_tls(self::$connection)) {
         $this->log_and_except('Unable to secure CIF LDAP connection.');
     }
     ldap_set_option(self::$connection, LDAP_OPT_PROTOCOL_VERSION, 3);
     ldap_set_option(self::$connection, LDAP_OPT_REFERRALS, 0);
     // Don't follow referals from the server
     $this->log('Binding to CIF LDAP.');
     if (!ldap_sasl_bind(self::$connection, null, null, 'GSSAPI', null, null, null, 'maxssf=1')) {
         $this->log_and_except('Unable to perform SASL bind to CIF LDAP.');
     }
 }
开发者ID:CIF-Rochester,项目名称:Panel,代码行数:29,代码来源:CifLdap.php

示例13: saslBind

 /**
  * @link http://php.net/manual/en/function.ldap-sasl-bind.php
  * @param $link
  * @param null $binddn
  * @param null $password
  * @param null $saslMech
  * @param null $saslRealm
  * @param null $saslAuthcId
  * @param null $saslAuthzId
  * @param null $props
  * @return bool
  */
 public function saslBind($link, $binddn = null, $password = null, $saslMech = null, $saslRealm = null, $saslAuthcId = null, $saslAuthzId = null, $props = null)
 {
     return ldap_sasl_bind($link, $binddn, $password, $saslMech, $saslRealm, $saslAuthcId, $saslAuthzId, $props);
 }
开发者ID:CarnegieLearningWeb,项目名称:ldap-orm-bundle,代码行数:16,代码来源:Core.php

示例14: bind

 /**
  * Binds to the current LDAP connection. If SASL
  * is true, we'll set up a SASL bind instead.
  *
  * @param string $username
  * @param string $password
  * @param bool   $sasl
  *
  * @return bool
  */
 public function bind($username, $password, $sasl = false)
 {
     if ($sasl) {
         if ($this->suppressErrors) {
             return $this->bound = @ldap_sasl_bind($this->getConnection(), null, null, 'GSSAPI');
         }
         return $this->bound = ldap_sasl_bind($this->getConnection(), null, null, 'GSSAPI');
     } else {
         if ($this->suppressErrors) {
             return $this->bound = @ldap_bind($this->getConnection(), $username, $password);
         }
         return $this->bound = ldap_bind($this->getConnection(), $username, $password);
     }
 }
开发者ID:HarkiratGhotra,项目名称:application,代码行数:24,代码来源:Ldap.php

示例15: authenticate

 /**
  * Validate a user's login credentials
  * 
  * @param string $username A user's AD username
  * @param string $password A user's AD password
  * @param bool optional $preventRebind
  * @return bool
  */
 public function authenticate($username, $password, $preventRebind = false)
 {
     $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": Auth as {$username}";
     // Prevent null binding
     if ($username === NULL || $password === NULL) {
         $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": username or password is null... [" . basename(__FILE__) . "]";
         return false;
     }
     if (empty($username) || empty($password)) {
         $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": username or password is empty... [" . basename(__FILE__) . "]";
         return false;
     }
     // Allow binding over SSO for Kerberos
     if ($this->useSSO && $_SERVER['REMOTE_USER'] && $_SERVER['REMOTE_USER'] == $username && $this->adminUsername === NULL && $_SERVER['KRB5CCNAME']) {
         putenv("KRB5CCNAME=" . $_SERVER['KRB5CCNAME']);
         $this->ldapBind = @ldap_sasl_bind($this->ldapConnection, NULL, NULL, "GSSAPI");
         if (!$this->ldapBind) {
             $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ":Rebind to Active Directory failed. AD said: " . $this->getLastError();
             throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
         } else {
             $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ":useSSO -> TRUE";
             return true;
         }
     }
     // Bind as the user
     $ret = true;
     $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": ->ldap_bind({$username}{$this->accountSuffix},{$password})";
     $this->ldapBind = @ldap_bind($this->ldapConnection, $username . $this->accountSuffix, $password);
     if (!$this->ldapBind) {
         $ret = false;
         $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": ->ldap_bind(.. FAILED [" . basename(__FILE__) . "]";
         $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": " . $this->getLastError() . " [" . basename(__FILE__) . "]";
     }
     // Cnce we've checked their details, kick back into admin mode if we have it
     if ($this->adminUsername !== NULL && !$preventRebind) {
         $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": ->ldap_bind({$this->adminUsername},{$this->adminPassword})";
         $this->ldapBind = @ldap_bind($this->ldapConnection, $this->adminUsername . $this->accountSuffix, $this->adminPassword);
         if (!$this->ldapBind) {
             $GLOBALS["CLASS_ACTV"][] = __FUNCTION__ . ": LINE:" . __LINE__ . ": -> Rebind to Active Directory failed [" . basename(__FILE__) . "]";
             throw new adLDAPException('Rebind to Active Directory failed. AD said: ' . $this->getLastError());
         }
     }
     return $ret;
 }
开发者ID:BillTheBest,项目名称:1.6.x,代码行数:52,代码来源:adLDAP.php


注:本文中的ldap_sasl_bind函数示例由纯净天空整理自Github/MSDocs等开源代码及文档管理平台,相关代码片段筛选自各路编程大神贡献的开源项目,源码版权归原作者所有,传播和使用请参考对应项目的License;未经允许,请勿转载。