Proyectos de Subversion Moodle

Rev

Rev 1 | | Comparar con el anterior | Ultima modificación | Ver Log |

Rev Autor Línea Nro. Línea
1 efrain 1
<?php
2
 
3
// This file is part of Moodle - http://moodle.org/
4
//
5
// Moodle is free software: you can redistribute it and/or modify
6
// it under the terms of the GNU General Public License as published by
7
// the Free Software Foundation, either version 3 of the License, or
8
// (at your option) any later version.
9
//
10
// Moodle is distributed in the hope that it will be useful,
11
// but WITHOUT ANY WARRANTY; without even the implied warranty of
12
// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
13
// GNU General Public License for more details.
14
//
15
// You should have received a copy of the GNU General Public License
16
// along with Moodle.  If not, see <http://www.gnu.org/licenses/>.
17
 
18
/**
19
 * Change password form definition.
20
 *
21
 * @package    core
22
 * @subpackage auth
23
 * @copyright  2006 Petr Skoda {@link http://skodak.org}
24
 * @license    http://www.gnu.org/copyleft/gpl.html GNU GPL v3 or later
25
 */
26
 
27
defined('MOODLE_INTERNAL') || die();
28
 
29
require_once($CFG->libdir.'/formslib.php');
30
require_once($CFG->dirroot.'/user/lib.php');
31
require_once('lib.php');
32
 
33
class login_change_password_form extends moodleform {
34
 
35
    function definition() {
36
        global $USER, $CFG;
37
 
38
        $mform = $this->_form;
39
        $mform->setDisableShortforms(true);
40
 
41
        $mform->addElement('header', 'changepassword', get_string('changepassword'), '');
42
 
43
        // visible elements
44
        $mform->addElement('static', 'username', get_string('username'), $USER->username);
45
 
46
        $policies = array();
47
        if (!empty($CFG->passwordpolicy)) {
48
            $policies[] = print_password_policy();
49
        }
50
        if (!empty($CFG->passwordreuselimit) and $CFG->passwordreuselimit > 0) {
51
            $policies[] = get_string('informminpasswordreuselimit', 'auth', $CFG->passwordreuselimit);
52
        }
53
        if ($policies) {
54
            $mform->addElement('static', 'passwordpolicyinfo', '', implode('<br />', $policies));
55
        }
56
        $purpose = user_edit_map_field_purpose($USER->id, 'password');
57
        $mform->addElement('password', 'password', get_string('oldpassword'), $purpose);
58
        $mform->addRule('password', get_string('required'), 'required', null, 'client');
59
        $mform->setType('password', PARAM_RAW);
60
 
61
        $mform->addElement('password', 'newpassword1', get_string('newpassword'),
62
            ['autocomplete' => 'new-password', 'maxlength' => MAX_PASSWORD_CHARACTERS]);
63
        $mform->addRule('newpassword1', get_string('required'), 'required', null, 'client');
64
        $mform->addRule('password', get_string('maximumchars', '', MAX_PASSWORD_CHARACTERS),
65
            'maxlength', MAX_PASSWORD_CHARACTERS, 'client');
66
        $mform->setType('newpassword1', PARAM_RAW);
67
 
68
        $mform->addElement('password', 'newpassword2', get_string('newpassword').' ('.get_String('again').')',
69
            ['autocomplete' => 'new-password', 'maxlength' => MAX_PASSWORD_CHARACTERS]);
70
        $mform->addRule('newpassword2', get_string('required'), 'required', null, 'client');
71
        $mform->setType('newpassword2', PARAM_RAW);
72
 
1441 ariadna 73
        $mform->addElement('checkbox', 'logoutothersessions', get_string('logoutothersessions', 'report_usersessions'));
74
        $mform->addHelpButton('logoutothersessions', 'logoutothersessions', 'report_usersessions');
75
        $mform->setDefault('logoutothersessions', 1);
76
        if (!empty($CFG->passwordchangelogout)) {
77
            $mform->getElement('logoutothersessions')->freeze();
78
        }
79
 
80
        if (!empty(webservice::get_active_tokens($USER->id))) {
1 efrain 81
            $mform->addElement('advcheckbox', 'signoutofotherservices', get_string('signoutofotherservices'));
82
            $mform->addHelpButton('signoutofotherservices', 'signoutofotherservices');
83
            $mform->setDefault('signoutofotherservices', 1);
1441 ariadna 84
            if (!empty($CFG->passwordchangetokendeletion)) {
85
                $mform->getElement('signoutofotherservices')->freeze();
86
            }
1 efrain 87
        }
88
 
89
        // hidden optional params
90
        $mform->addElement('hidden', 'id', 0);
91
        $mform->setType('id', PARAM_INT);
92
 
93
        // Hook for plugins to extend form definition.
94
        core_login_extend_change_password_form($mform, $USER);
95
 
96
        // buttons
97
        if (get_user_preferences('auth_forcepasswordchange')) {
98
            $this->add_action_buttons(false);
99
        } else {
100
            $this->add_action_buttons(true);
101
        }
102
    }
103
 
104
/// perform extra password change validation
105
    function validation($data, $files) {
106
        global $USER;
107
        $errors = parent::validation($data, $files);
108
        $reason = null;
109
 
110
        // Extend validation for any form extensions from plugins.
111
        $errors = array_merge($errors, core_login_validate_extend_change_password_form($data, $USER));
112
 
113
        // ignore submitted username
114
        if (!$user = authenticate_user_login($USER->username, $data['password'], true, $reason, false)) {
115
            $errors['password'] = get_string('invalidlogin');
116
            return $errors;
117
        }
118
 
119
        if ($data['newpassword1'] <> $data['newpassword2']) {
120
            $errors['newpassword1'] = get_string('passwordsdiffer');
121
            $errors['newpassword2'] = get_string('passwordsdiffer');
122
            return $errors;
123
        }
124
 
125
        if ($data['password'] == $data['newpassword1']){
126
            $errors['newpassword1'] = get_string('mustchangepassword');
127
            $errors['newpassword2'] = get_string('mustchangepassword');
128
            return $errors;
129
        }
130
 
131
        if (user_is_previously_used_password($USER->id, $data['newpassword1'])) {
132
            $errors['newpassword1'] = get_string('errorpasswordreused', 'core_auth');
133
            $errors['newpassword2'] = get_string('errorpasswordreused', 'core_auth');
134
        }
135
 
136
        $errmsg = '';//prevents eclipse warnings
137
        if (!check_password_policy($data['newpassword1'], $errmsg, $USER)) {
138
            $errors['newpassword1'] = $errmsg;
139
            $errors['newpassword2'] = $errmsg;
140
            return $errors;
141
        }
142
 
143
        return $errors;
144
    }
145
}