Refactor Google ReCaptcha code (#325)

Removed duplicated code (store it in function/general.php)

Captcha doesn't need cURL (made it configurable and optional)
This commit is contained in:
slawkens
2018-06-04 12:41:49 +02:00
committed by Stefan A. Brannfjell
parent b6f30e63fc
commit 0478566020
5 changed files with 36 additions and 62 deletions

View File

@@ -13,27 +13,8 @@ if ($config['mailserver']['accountRecovery']) {
if (!empty($_POST)) {
$status = true;
if ($config['use_captcha']) {
$captcha = (isset($_POST['g-recaptcha-response'])) ? $_POST['g-recaptcha-response'] : false;
if(!$captcha) {
if(!verifyGoogleReCaptcha($_POST['g-recaptcha-response'])) {
$status = false;
} else {
$secretKey = $config['captcha_secret_key'];
$ip = $_SERVER['REMOTE_ADDR'];
// curl start
$curl_connection = curl_init("https://www.google.com/recaptcha/api/siteverify");
$post_string = "secret=".$secretKey."&response=".$captcha."&remoteip=".$ip;
curl_setopt($curl_connection, CURLOPT_CONNECTTIMEOUT, 5);
curl_setopt($curl_connection, CURLOPT_RETURNTRANSFER, true);
curl_setopt($curl_connection, CURLOPT_SSL_VERIFYPEER, false);
curl_setopt($curl_connection, CURLOPT_FOLLOWLOCATION, 0);
curl_setopt($curl_connection, CURLOPT_POSTFIELDS, $post_string);
$response = curl_exec($curl_connection);
curl_close($curl_connection);
// Curl end
$responseKeys = json_decode($response,true);
if(intval($responseKeys["success"]) !== 1) {
$status = false;
}
}
}
if ($status) {