logout.php 3.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293
  1. <?php
  2. /* Copyright (C) 2004 Rodolphe Quiedeville <rodolphe@quiedeville.org>
  3. * Copyright (C) 2003 Xavier Dutoit <doli@sydesy.com>
  4. * Copyright (C) 2004-2009 Laurent Destailleur <eldy@users.sourceforge.net>
  5. * Copyright (C) 2005-2012 Regis Houssin <regis.houssin@inodbox.com>
  6. *
  7. * This program is free software; you can redistribute it and/or modify
  8. * it under the terms of the GNU General Public License as published by
  9. * the Free Software Foundation; either version 3 of the License, or
  10. * (at your option) any later version.
  11. *
  12. * This program is distributed in the hope that it will be useful,
  13. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  14. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  15. * GNU General Public License for more details.
  16. *
  17. * You should have received a copy of the GNU General Public License
  18. * along with this program. If not, see <http://www.gnu.org/licenses/>.
  19. */
  20. /**
  21. * \file htdocs/user/logout.php
  22. * \brief Page called to disconnect a user
  23. */
  24. //if (! defined('NOTOKENRENEWAL')) define('NOTOKENRENEWAL','1'); // Uncomment creates pb to relogon after a disconnect
  25. if (! defined('NOREQUIREMENU')) define('NOREQUIREMENU','1');
  26. if (! defined('NOREQUIREHTML')) define('NOREQUIREHTML','1');
  27. if (! defined('NOREQUIREAJAX')) define('NOREQUIREAJAX','1');
  28. //if (! defined('NOREQUIRESOC')) define('NOREQUIRESOC','1'); // We need company to get correct logo onto home page
  29. if (! defined('EVEN_IF_ONLY_LOGIN_ALLOWED')) define('EVEN_IF_ONLY_LOGIN_ALLOWED','1');
  30. require_once '../main.inc.php';
  31. // This can happen only with a bookmark or forged url call.
  32. if (!empty($_SESSION["dol_authmode"]) && ($_SESSION["dol_authmode"] == 'forceuser' || $_SESSION["dol_authmode"] == 'http'))
  33. {
  34. unset($_SESSION["dol_login"]);
  35. die("Applicative disconnection should be useless when connection was made in mode ".$_SESSION["dol_authmode"]);
  36. }
  37. global $conf, $langs, $user;
  38. // Call triggers for the "security events" log
  39. include_once DOL_DOCUMENT_ROOT . '/core/class/interfaces.class.php';
  40. $interface=new Interfaces($db);
  41. $result=$interface->run_triggers('USER_LOGOUT',$user,$user,$langs,$conf);
  42. if ($result < 0) { $error++; }
  43. // End call triggers
  44. // Hooks on logout
  45. $action='';
  46. $hookmanager->initHooks(array('logout'));
  47. $parameters=array();
  48. $reshook=$hookmanager->executeHooks('afterLogout',$parameters,$user,$action); // Note that $action and $object may have been modified by some hooks
  49. if ($reshook < 0) { $error++; }
  50. // Define url to go after disconnect
  51. $urlfrom=empty($_SESSION["urlfrom"])?'':$_SESSION["urlfrom"];
  52. // Define url to go
  53. $url=DOL_URL_ROOT."/index.php"; // By default go to login page
  54. if ($urlfrom) $url=DOL_URL_ROOT.$urlfrom;
  55. if (! empty($conf->global->MAIN_LOGOUT_GOTO_URL)) $url=$conf->global->MAIN_LOGOUT_GOTO_URL;
  56. if (GETPOST('dol_hide_topmenu')) $url.=(preg_match('/\?/',$url)?'&':'?').'dol_hide_topmenu=1';
  57. if (GETPOST('dol_hide_leftmenu')) $url.=(preg_match('/\?/',$url)?'&':'?').'dol_hide_leftmenu=1';
  58. if (GETPOST('dol_optimize_smallscreen')) $url.=(preg_match('/\?/',$url)?'&':'?').'dol_optimize_smallscreen=1';
  59. if (GETPOST('dol_no_mouse_hover')) $url.=(preg_match('/\?/',$url)?'&':'?').'dol_no_mouse_hover=1';
  60. if (GETPOST('dol_use_jmobile')) $url.=(preg_match('/\?/',$url)?'&':'?').'dol_use_jmobile=1';
  61. // Destroy session
  62. /*$prefix=dol_getprefix('');
  63. $sessionname='DOLSESSID_'.$prefix;
  64. $sessiontimeout='DOLSESSTIMEOUT_'.$prefix;
  65. if (! empty($_COOKIE[$sessiontimeout])) ini_set('session.gc_maxlifetime',$_COOKIE[$sessiontimeout]);
  66. session_name($sessionname);
  67. session_destroy();
  68. dol_syslog("End of session ".$sessionname);
  69. */
  70. dol_syslog("End of session ".session_id());
  71. if (session_status() === PHP_SESSION_ACTIVE)
  72. {
  73. session_destroy();
  74. }
  75. // Not sure this is required
  76. unset($_SESSION['dol_login']);
  77. unset($_SESSION['dol_entity']);
  78. if (GETPOST('noredirect')) return;
  79. header("Location: ".$url); // Default behaviour is redirect to index.php page