203 lines
5.6 KiB
Perl
203 lines
5.6 KiB
Perl
package WebGUI::Form::Captcha;
|
|
|
|
=head1 LEGAL
|
|
|
|
-------------------------------------------------------------------
|
|
WebGUI is Copyright 2001-2012 Plain Black Corporation.
|
|
-------------------------------------------------------------------
|
|
Please read the legal notices (docs/legal.txt) and the license
|
|
(docs/license.txt) that came with this distribution before using
|
|
this software.
|
|
-------------------------------------------------------------------
|
|
http://www.plainblack.com info@plainblack.com
|
|
-------------------------------------------------------------------
|
|
|
|
=cut
|
|
|
|
use strict;
|
|
use base 'WebGUI::Form::Text';
|
|
use WebGUI::International;
|
|
use WebGUI::Storage;
|
|
use LWP::UserAgent;
|
|
|
|
=head1 NAME
|
|
|
|
Package WebGUI::Form::Captcha
|
|
|
|
=head1 DESCRIPTION
|
|
|
|
Creates a captcha form element that helps verify a human is submitting the form rather than a bot.
|
|
|
|
=head1 SEE ALSO
|
|
|
|
This is a subclass of WebGUI::Form::Text.
|
|
|
|
=head1 METHODS
|
|
|
|
The following methods are specifically available from this class. Check the superclass for additional methods.
|
|
|
|
=cut
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 definition ( [ additionalTerms ] )
|
|
|
|
See the super class for additional details.
|
|
|
|
=head3 additionalTerms
|
|
|
|
The following additional parameters have been added via this sub class.
|
|
|
|
=head3 label
|
|
|
|
Defaults to "Verify Your Humanity"
|
|
|
|
=cut
|
|
|
|
sub definition {
|
|
my $class = shift;
|
|
my $session = shift;
|
|
my $definition = shift || [];
|
|
my $i18n = WebGUI::International->new($session,"Form_Captcha");
|
|
push(@{$definition}, {
|
|
label => {
|
|
defaultValue=>$i18n->get("verify your humanity")
|
|
},
|
|
});
|
|
return $class->SUPER::definition($session, $definition);
|
|
}
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 getDatabaseFieldType ( )
|
|
|
|
Returns "BOOLEAN".
|
|
|
|
=cut
|
|
|
|
sub getDatabaseFieldType {
|
|
return "BOOLEAN";
|
|
}
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 getName ( session )
|
|
|
|
Returns the human readable name of this control.
|
|
|
|
=cut
|
|
|
|
sub getName {
|
|
my ($self, $session) = @_;
|
|
return WebGUI::International->new($session, 'Form_Captcha')->get('topicName');
|
|
}
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 getValue ( )
|
|
|
|
Returns a boolean indicating whether the string typed matched the image.
|
|
|
|
=cut
|
|
|
|
sub getValue {
|
|
my $self = shift;
|
|
|
|
if ($self->session->setting->get('useRecaptcha')) {
|
|
my $privKey = $self->session->setting->get('recaptchaPrivateKey');
|
|
my $challenge = $self->session->form->param('recaptcha_challenge_field');
|
|
my $response = $self->session->form->param('recaptcha_response_field');
|
|
|
|
my $ua = LWP::UserAgent->new;
|
|
my $res = $ua->post('http://www.google.com/recaptcha/api/verify', {
|
|
privatekey => $privKey,
|
|
remoteip => $self->session->request->env->{REMOTE_ADDR},
|
|
challenge => $challenge,
|
|
response => $response,
|
|
});
|
|
if ($res->is_success) {
|
|
my ($answer, $error) = split /\n/, $res->content, 2;
|
|
$self->{_error} = $error;
|
|
return $answer eq 'true';
|
|
}
|
|
return undef;
|
|
}
|
|
|
|
my $value = $self->SUPER::getValue(@_);
|
|
my $challenge = $self->session->scratch->get("captcha_".$self->get("name"));
|
|
$self->session->scratch->delete("captcha_".$self->get("name"));
|
|
my $passed = lc $value eq lc $challenge;
|
|
$self->session->log->info(
|
|
"Checking CAPTCHA '" . $self->get("name") . "': " . ( $passed ? "PASSED!" : "FAILED!" )
|
|
. " Got: '" . $value . "', Wanted: '" . $challenge . "'"
|
|
);
|
|
return $passed;
|
|
}
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 isDynamicCompatible ( )
|
|
|
|
A class method that returns a boolean indicating whether this control is compatible with the DynamicField control.
|
|
|
|
=cut
|
|
|
|
sub isDynamicCompatible {
|
|
return 1;
|
|
}
|
|
|
|
#-------------------------------------------------------------------
|
|
|
|
=head2 toHtml ( )
|
|
|
|
Renders a captcha field.
|
|
|
|
=cut
|
|
|
|
sub toHtml {
|
|
my $self = shift;
|
|
|
|
if ($self->session->setting->get('useRecaptcha')) {
|
|
my $pubKey = $self->session->setting->get('recaptchaPublicKey');
|
|
my $server = "http://www.google.com/recaptcha/api";
|
|
if ($self->session->request->secure) {
|
|
$server = "https://www.google.com/recaptcha/api";
|
|
}
|
|
return
|
|
'<script type="text/javascript" src="' . $server . '/challenge?k=' . $pubKey . '"></script>'
|
|
. '<noscript>'
|
|
. '<iframe src="' . $server . '/noscript?k=' . $pubKey
|
|
. '" height="300" width="500" frameborder="0"></iframe>'
|
|
. '<textarea name="recaptcha_challenge_field" rows="3" cols="40"></textarea>'
|
|
. '<input type="hidden" name="recaptcha_response_field" value="manual_challenge" />'
|
|
. '</noscript>';
|
|
}
|
|
|
|
my $storage = WebGUI::Storage->createTemp($self->session);
|
|
my ($filename, $challenge) = $storage->addFileFromCaptcha;
|
|
$self->set("size", 6);
|
|
$self->set("maxlength", 6);
|
|
$self->set("extras", 'class="wg-captchaForm"');
|
|
$self->session->scratch->set("captcha_".$self->get("name"), $challenge);
|
|
return $self->SUPER::toHtml.'<img src="'.$storage->getUrl($filename).'" class="wg-captchaImage" alt="captcha" />';
|
|
}
|
|
|
|
=head2 getErrorMessage ( )
|
|
|
|
Returns an internationalized error message based on which kind of captcha is being used.
|
|
|
|
=cut
|
|
|
|
sub getErrorMessage {
|
|
my $self = shift;
|
|
my $session = $self->session;
|
|
my $i18n = WebGUI::International->new($session,"Form_Captcha");
|
|
if ($session->setting->get('useRecaptcha')) {
|
|
return $i18n->get("recaptcha failure");
|
|
}
|
|
return $i18n->get("captcha failure");
|
|
}
|
|
|
|
|
|
1;
|
|
|